Ekran kartını 20 gun once aldım. Modeli: ASUS HD7790 DIRECTCU II O.C. GDDR5 2GB 128BIT AMD RADEON DX11.1 EKRAN KARTI

League Of Legends oynarken bazen 60 fps veriyor, bazen de 20 fps'ye duşuyor. Ekran kartı boştayken aşağıdaki gibi bir durum oluyor:












Combofix programını yukledim, program calışırken aktivite ve sıcaklık değerlerinin duştuğunu gordum. Aktivite 0 olmuştu, sıcaklık da 38 civarına kadar duştu. Sonra bilgisayarı yeniden başlattığımda durum yine bu şekildeydi. combofiks raporunu da ekliyorum, yardımcı olabilirseniz sevinirim. Bilgisayar konusunda fazla da bir bilgim yok.







Kod:Panoya kopyala
ComboFix 13-12-13.01 - zxz 13.12.2013 23:14:11.1.6 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1254.90.1055.18.8094.6243 [GMT 2:00] Running from: c:userszxzDownloadsComboFix.exe AV: Microsoft Security Essentials *Enabled/Updated* SP: Microsoft Security Essentials *Enabled/Updated* SP: Windows Defender *Disabled/Updated* . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . crogram files (x86)DealPly crogram files (x86)DealPlyDealPly.crx crogram files (x86)DealPlyDealPly.xpi crogram files (x86)DealPlyDealPlyIE.dll crogram files (x86)DealPlyDealPlyIE64.dll crogram files (x86)DealPlyDealPlyUpdate.exe crogram files (x86)DealPlyDealPlyUpdateRun.exe crogram files (x86)DealPlyDealPlyUpdateVer.exe crogram files (x86)DealPlyicon.ico crogram files (x86)DealPlyuninst.exe crogram files (x86)DefaultTab crogram files (x86)DefaultTabDefaultTab.crx crogram files (x86)DefaultTabDefaultTabSearch.exe crogram files (x86)DefaultTabuid crogram files (x86)SoftwareUpdaterKeyGen.dll c:userszxzAppDataLocalGoogleChromeUser DataDefaultdatabaseschrome-extension_ahmilhmcinpmpohfoiccaplbhgelbnim_0 c:userszxzAppDataLocalGoogleChromeUser DataDefaultdatabaseschrome-extension_ahmilhmcinpmpohfoiccaplbhgelbnim_04 c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0background.html c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0crossriderManifest.json c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDatamanifest.xml c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins.json c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins1_base.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins1000020_analytics. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins1000025_analyticsF ront.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins1000030_mz.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins102_dealply_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins103_intext_5_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins104_jollywallet_m. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins105_corticas_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins108_icm_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins117_coupons_intext _ads_5_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins119_similar_web_m. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins120_luck_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins123_intext_adv_m.j s c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins124_superfish_no_s earch_no_coupons_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins125_arcadi2_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins126_revizer_ws_m.j s c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins127_revizer_p_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins128_superfish_pric ora_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins13_CrossriderAppUt ils.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins135_arcadi3_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins138_getdeal_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins14_CrossriderUtils .js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins141_corticas_ru_m. js.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins142_intext_fa_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins155_ibario_pops_m. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins158_50onred_ads_on ly_no_fb_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins159_cortica_rollov er_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins17_jQuery.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins171_arcadi2_source ID_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins174_arcadi_serp_dy namic_id_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins175_coolmirage_m.j s c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins178_revizer_ws_dyn amic_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins179_revizer_p_dyna mic_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins180_bpo_serp_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins184_noproblemppc_m .js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins189_active_sanity. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins19_CHAppAPIWrapper .js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins190_pops_5_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins191_ciuvo_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins192_revizer_ws_dyn amic_b2b_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins193_revizer_p_dyna mic_b2b_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins194_retargeting_bi _m.js.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins21_debug.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins22_resources.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins28_initializer.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins4_jquery_1_7_1.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins47_resources_backg round.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins64_appApiMessage.j s c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins7_hooks.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins72_appApiValidatio n.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins78_CrossriderInfo. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins80_CHPopupAppAPI.j s c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins87_ginyas_wrapper. js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins9_search_engine_ho ok.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins91_monetizationLoa der.js.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins93_superfish_no_co upons_m.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDataplugins97_resourceApiWrap per.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDatauserCodebackground.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0extensionDatauserCodeextension.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0iconsactions1.png c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0iconsicon128.png c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0iconsicon16.png c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0iconsicon48.png c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsapichrome.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsapicookie.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsapimessage.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsapipageAction.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsapipageActionBG.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsbackground.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibapp_api.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibbg_app_api.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibconsts.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibcookie_store.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibcrossriderAPI.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibdelegate.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibevents.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibextensionDataStore.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibinstaller.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsliblogFile.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsliblogging.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibonBGDocumentLoad.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibpopupResourcenewPopup.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibpopupResourcepopup.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibreports.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibstorageWrapper.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibupdateManager.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibutil.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jslibxhr.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0jsmain.js c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0manifest.json c:userszxzAppDataLocalGoogleChromeUser DataDefaultExtensionsahmilhmcinpmpohfoiccaplbhgelb nim1.25.30_0popup.html c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension Settingsahmilhmcinpmpohfoiccaplbhgelbnim c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension Settingsahmilhmcinpmpohfoiccaplbhgelbnim00236.ldb c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension Settingsahmilhmcinpmpohfoiccaplbhgelbnim00251.log c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension SettingsahmilhmcinpmpohfoiccaplbhgelbnimCURRENT c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension SettingsahmilhmcinpmpohfoiccaplbhgelbnimLOCK c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension SettingsahmilhmcinpmpohfoiccaplbhgelbnimLOG c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension SettingsahmilhmcinpmpohfoiccaplbhgelbnimLOG.old c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Extension SettingsahmilhmcinpmpohfoiccaplbhgelbnimMANIFEST-000249 c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Storagechrome-extension_ahmilhmcinpmpohfoiccaplbhgelbnim_0.local storage-journal c:userszxzAppDataLocalGoogleChromeUser DataDefaultLocal Storagechrome-extension_ahmilhmcinpmpohfoiccaplbhgelbnim_0.local storage c:userszxzAppDataLocallollipop c:userszxzAppDataLocalTemp_MEI34842_ctypes.pyd c:userszxzAppDataLocalTemp_MEI34842_elementtree.py d c:userszxzAppDataLocalTemp_MEI34842_hashlib.pyd c:userszxzAppDataLocalTemp_MEI34842_multiprocessin g.pyd c:userszxzAppDataLocalTemp_MEI34842_socket.pyd c:userszxzAppDataLocalTemp_MEI34842_ssl.pyd c:userszxzAppDataLocalTemp_MEI34842msvcp100.dll c:userszxzAppDataLocalTemp_MEI34842msvcr100.dll c:userszxzAppDataLocalTemp_MEI34842pyexpat.pyd c:userszxzAppDataLocalTemp_MEI34842pysqlite2._sqli te.pyd c:userszxzAppDataLocalTemp_MEI34842python27.dll c:userszxzAppDataLocalTemp_MEI34842pythoncom27.dll c:userszxzAppDataLocalTemp_MEI34842PyWinTypes27.dl l c:userszxzAppDataLocalTemp_MEI34842select.pyd c:userszxzAppDataLocalTemp_MEI34842unicodedata.pyd c:userszxzAppDataLocalTemp_MEI34842win32api.pyd c:userszxzAppDataLocalTemp_MEI34842win32com.shell. shell.pyd c:userszxzAppDataLocalTemp_MEI34842win32crypt.pyd c:userszxzAppDataLocalTemp_MEI34842win32event.pyd c:userszxzAppDataLocalTemp_MEI34842win32file.pyd c:userszxzAppDataLocalTemp_MEI34842win32inet.pyd c:userszxzAppDataLocalTemp_MEI34842win32pdh.pyd c:userszxzAppDataLocalTemp_MEI34842win32process.py d c:userszxzAppDataLocalTemp_MEI34842win32profile.py d c:userszxzAppDataLocalTemp_MEI34842win32security.p yd c:userszxzAppDataLocalTemp_MEI34842win32ts.pyd c:userszxzAppDataLocalTemp_MEI34842windows._cachei nvalidation.pyd c:userszxzAppDataLocalTemp_MEI34842wx._controls_.p yd c:userszxzAppDataLocalTemp_MEI34842wx._core_.pyd c:userszxzAppDataLocalTemp_MEI34842wx._gdi_.pyd c:userszxzAppDataLocalTemp_MEI34842wx._html2.pyd c:userszxzAppDataLocalTemp_MEI34842wx._misc_.pyd c:userszxzAppDataLocalTemp_MEI34842wx._windows_.py d c:userszxzAppDataLocalTemp_MEI34842wx._wizard.pyd c:userszxzAppDataLocalTemp_MEI34842wxbase294u_net_ vc90.dll c:userszxzAppDataLocalTemp_MEI34842wxbase294u_vc90 .dll c:userszxzAppDataLocalTemp_MEI34842wxmsw294u_adv_v c90.dll c:userszxzAppDataLocalTemp_MEI34842wxmsw294u_core_ vc90.dll c:userszxzAppDataLocalTemp_MEI34842wxmsw294u_html_ vc90.dll c:userszxzAppDataLocalTemp_MEI34842wxmsw294u_webvi ew_vc90.dll c:userszxzAppDataRoamingDefaultTabDefaultTab c:userszxzAppDataRoamingDefaultTabDefaultTabaddon. ico c:userszxzAppDataRoamingDefaultTabDefaultTabamazon _ie.ico c:userszxzAppDataRoamingDefaultTabDefaultTabAppsRe latedLinksBHO.dll c:userszxzAppDataRoamingDefaultTabDefaultTabblockl ist.json c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabBHO.cfg c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabBHO.dll c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabStart.exe c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabStart64.exe c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabUninstaller.exe c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabWrap.dll c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabWrap64.dll c:userszxzAppDataRoamingDefaultTabDefaultTabDT.ico c:userszxzAppDataRoamingDefaultTabDefaultTabDTUpda te.exe c:userszxzAppDataRoamingDefaultTabDefaultTabebay_i e.ico c:userszxzAppDataRoamingDefaultTabDefaultTabfacebo ok_ie.ico c:userszxzAppDataRoamingDefaultTabDefaultTabsearch _here_ie.ico c:userszxzAppDataRoamingDefaultTabDefaultTabsearch here.ico c:userszxzAppDataRoamingDefaultTabDefaultTabtwitte r_ie.ico c:userszxzAppDataRoamingDefaultTabDefaultTabuninst alldt.exe c:userszxzAppDataRoamingDefaultTabDefaultTabupdate .exe c:userszxzAppDataRoamingDefaultTabDefaultTabwikipe dia_ie.ico c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chrome.manifest c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentcommon.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentjquery-1.8.3.min.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentoptions.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentoptions.xul c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentoverlay.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentoverlay.xul c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentpopup.html c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentpopup.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontentsuperfish_domains.json c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromecontenttabs_listener.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromelocaleen-USsettings.dtd c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeskinclassicbutton.png c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeskinclassicicon.png c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeskinclassicmain.css c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeskinclassicoverlay.css c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeskinclassicwebsiterecommendation.css c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]install.rdf c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected] c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbappbar.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsaddonfs.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsaddonmgr.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsautoinst.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsbarnavig.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsbranding.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsbrowserUsage.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsdaylystat.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsdistribution.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsincoming.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsinstaller.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsnativebarplugin.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsnativecompapi.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsnativencparser.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsnativenpwidget.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsnative_comps.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsoverlay_prov.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartspacman.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatform.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformblacklist.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformmanifest.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformpackage.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformpermissions.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformpreset-with-manifest.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformpreset.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsplatformunit.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsstatlogger.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsstrbundle.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsupdate.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsvendorCookie.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartswidgetlib.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxb.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviour.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviouraction.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourattribute.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourbutton.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourcheckbox.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourchecked.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourcomputed.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourenabled.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourextra-text.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourgrid.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourimage.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourmenu.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourstyle.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourtext.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourtooltip.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehavioururl.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourwidget.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuibehaviourxml.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuielements.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbuievent-listener.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbbase.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbcache.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbcalcnodes.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbfuncs.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbnetwork.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbparser.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbtypes.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbui.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]cbapppartsxbxbwidget.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chrome.manifest c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]chromeyasearch.jar c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentscore.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIXBDataProvider.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIXBPackage.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIXBProtocolHandler.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIXBURL.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIYaPassManager.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsIYaSearch.xpt c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsSearchSuggestions.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsYaPassManager.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsnsYaSearch.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]componentsxbProtocol.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]config.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]defaultsdynamic-preferencessafebrowsing.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]defaultspreferencesyasearch.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]install.rdf c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]META-INFmanifest.mf c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]META-INFzigbert.rsa c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]META-INFzigbert.sf c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesAddonManager.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesDataURI.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesExtConstants.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesFoundation.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationdlqueue.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationecustom.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationfileutils.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationlegacy.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationmisc.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationnetutils.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationpatterns.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationstrutils.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationsysutils.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesfoundationxmlutils.js c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesJSONvsXML.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesLog4Moz.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesPreferences.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesprefRoot.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesSimpleProtocol.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]moduleswc.jsm c:userszxzAppDataRoamingMozillaFirefoxProfilesnahd 6ha2.defaultextensionsstaged[email protected]modulesWindowListener.jsm c:userszxzAppDataRoamingokitspace c:userszxzAppDataRoamingokitspaceChromeOKitSpace.c rx c:userszxzAppDataRoamingokitspaceFirefoxchrome.man ifest c:userszxzAppDataRoamingokitspaceFirefoxchromecont entbackground.html c:userszxzAppDataRoamingokitspaceFirefoxchromecont entcontent.xul c:userszxzAppDataRoamingokitspaceFirefoxchromecont enticonsokitspace-19x19.png c:userszxzAppDataRoamingokitspaceFirefoxchromecont enticonsokitspace-48x48.png c:userszxzAppDataRoamingokitspaceFirefoxchromecont entmain.js c:userszxzAppDataRoamingokitspaceFirefoxchromeskin overlay.css c:userszxzAppDataRoamingokitspaceFirefoxinstall.rd f c:userszxzAppDataRoamingokitspaceIEconfig c:userszxzAppDataRoamingokitspaceIEOkitSpace.dll c:userszxzAppDataRoamingokitspaceprotectconfig.xml c:userszxzAppDataRoamingokitspaceprotectfilescrxID c:userszxzAppDataRoamingokitspaceprotectfilesOkitS pace.crx c:userszxzAppDataRoamingokitspaceprotectfilesOkitS pace.dll c:userszxzAppDataRoamingokitspaceprotectfilesOkitS pace.xpi c:userszxzAppDataRoamingokitspaceprotectfilesversi on c:userszxzAppDataRoamingokitspaceprotectInterop.Sh ell32.dll c:userszxzAppDataRoamingokitspaceprotectPluginProt ect.exe c:userszxzAppDataRoamingokitspaceprotectPluginProt ect.exe_old c:userszxzAppDataRoamingokitspaceprotectsqlite3.ex e c:userszxzAppDataRoamingokitspaceprotectutilsDll.d ll c:userszxzAppDataRoamingokitspaceprotectversionPPS rv c:userszxzAppDataRoamingokitspaceuninstallkit.exe . . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------Service_DefaultTabSearch -------Service_S -------Service_srvPlgProtect -------Service_DefaultTabUpdate -------Service_DefaultTabUpdate . . ((((((((((((((((((((((((( Files Created from 2013-11-13 to 2013-12-13 ))))))))))))))))))))))))))))))) . . 2013-12-13 20:48 . 2013-11-07 17:12 10285968 ----a-w- crogramdataMicrosoftMicrosoft AntimalwareDefinition Updatesmpengine.dll 2013-12-12 23:09 . 2013-05-10 04:30 167424 ----a-w- crogram filesWindows Media Playerwmplayer.exe 2013-12-12 23:09 . 2013-05-10 03:48 164864 ----a-w- crogram files (x86)Windows Media Playerwmplayer.exe 2013-12-12 23:09 . 2013-05-10 05:56 12625920 ----a-w- c:windowssystem32wmploc.DLL 2013-12-12 23:09 . 2013-05-10 04:56 12625408 ----a-w- c:windowsSysWow64wmploc.DLL 2013-12-12 23:09 . 2013-05-10 05:56 14631424 ----a-w- c:windowssystem32wmp.dll 2013-12-12 19:32 . 2013-12-12 19:32 106408 ----a-w- c:windowsSysWow64steam_api.dll 2013-12-12 19:32 . 2013-12-12 19:32 -------- d-----w- crogramdataLogs 2013-12-12 19:32 . 2013-11-25 12:44 19392 ----a-w- c:windowssystem32roboot64.exe 2013-12-12 19:31 . 2013-12-12 19:32 -------- d-----w- crogram files (x86)Dll-Files.com Fixer 2013-12-12 18:35 . 2013-12-12 18:34 965000 ------w- crogramdataMicrosoftMicrosoft AntimalwareDefinition Updatesgapaengine.dll 2013-12-12 18:35 . 2013-11-07 17:12 10285968 ----a-w- crogramdataMicrosoftMicrosoft AntimalwareDefinition UpdatesBackupmpengine.dll 2013-12-12 18:31 . 2013-12-12 18:31 -------- d-----w- crogram files (x86)Microsoft Security Client 2013-12-12 18:31 . 2013-12-12 18:31 -------- d-----w- crogram filesMicrosoft Security Client 2013-12-12 14:19 . 2013-11-17 23:28 10285968 ----a-w- crogramdataMicrosoftWindows DefenderDefinition Updatesmpengine.dll 2013-12-11 23:28 . 2013-12-11 23:28 -------- d-----w- crogram filesCCleaner 2013-12-11 23:28 . 2013-12-11 23:28 -------- d-----w- crogram files (x86)Mirillis 2013-12-11 11:47 . 2013-12-11 11:47 -------- d-----w- crogramdataSteam 2013-12-11 10:20 . 2013-12-12 20:54 -------- d-----w- crogram files (x86)WRC 4 FIA World Rally Championship 2013-12-11 10:11 . 2013-12-11 10:11 -------- d-----w- C:found.000 2013-12-10 14:16 . 2013-12-10 14:16 -------- d-----w- c:userswangjihua 2013-12-10 11:22 . 2013-12-10 11:22 -------- d-----w- c:usersDefaultAppDataLocalMicrosoft Help 2013-12-10 09:51 . 2012-02-11 06:36 559104 ----a-w- c:windowssystem32spoolsv.exe 2013-12-10 09:51 . 2012-02-11 06:36 67072 ----a-w- c:windowssplwow64.exe 2013-12-09 21:47 . 2012-07-26 05:39 2560 ----a-w- c:windowssystem32driverstr-TRwdf01000.sys.mui 2013-12-09 21:43 . 2012-07-26 02:26 87040 ----a-w- c:windowssystem32driversWUDFPf.sys 2013-12-09 21:43 . 2012-07-26 02:26 198656 ----a-w- c:windowssystem32driversWUDFRd.sys 2013-12-09 21:43 . 2012-07-26 03:08 84992 ----a-w- c:windowssystem32WUDFSvc.dll 2013-12-09 21:43 . 2012-07-26 03:08 194048 ----a-w- c:windowssystem32WUDFPlatform.dll 2013-12-09 21:43 . 2012-07-26 03:08 229888 ----a-w- c:windowssystem32WUDFHost.exe 2013-12-09 21:43 . 2012-07-26 03:08 744448 ----a-w- c:windowssystem32WUDFx.dll 2013-12-09 21:43 . 2012-07-26 03:08 45056 ----a-w- c:windowssystem32WUDFCoinstaller.dll 2013-12-09 19:54 . 2013-10-04 02:28 190464 ----a-w- c:windowssystem32SmartcardCredentialProvider.dll 2013-12-09 19:53 . 2013-05-10 05:49 30720 ----a-w- c:windowssystem32cryptdlg.dll 2013-12-09 19:53 . 2013-05-10 03:20 24576 ----a-w- c:windowsSysWow64cryptdlg.dll 2013-12-09 19:53 . 2013-04-17 07:02 1230336 ----a-w- c:windowsSysWow64WindowsCodecs.dll 2013-12-09 19:53 . 2013-04-17 06:24 1424384 ----a-w- c:windowssystem32WindowsCodecs.dll 2013-12-09 19:53 . 2013-01-24 06:01 223752 ----a-w- c:windowssystem32driversfvevol.sys 2013-12-09 19:53 . 2012-05-05 08:36 503808 ----a-w- c:windowssystem32srcore.dll 2013-12-09 19:53 . 2012-05-05 07:46 43008 ----a-w- c:windowsSysWow64srclient.dll 2013-12-09 19:49 . 2013-08-28 01:12 461312 ----a-w- c:windowssystem32scavengeui.dll 2013-12-09 18:28 . 2013-12-09 18:28 -------- d-----w- c:windowsPCHEALTH 2013-12-09 18:26 . 2013-12-09 18:26 -------- d-----w- crogram filesMicrosoft Office 2013-12-09 18:26 . 2013-12-09 18:26 -------- d-----w- crogram files (x86)Microsoft Analysis Services 2013-12-09 18:25 . 2013-12-12 23:10 -------- d-----w- crogramdataMicrosoft Help 2013-12-09 18:25 . 2013-12-09 18:25 -------- d-----r- C:MSOCache 2013-12-08 19:03 . 2013-12-08 19:04 -------- d-----w- crogram files (x86)OpenOffice.org 3 2013-12-08 19:03 . 2013-12-08 19:03 -------- d-----w- crogram files (x86)Common FilesJava 2013-12-08 19:03 . 2013-12-08 19:03 472808 ----a-w- c:windowsSysWow64deployJava1.dll 2013-12-08 19:03 . 2013-12-08 19:03 -------- d-----w- crogram files (x86)Java 2013-12-08 08:23 . 2013-12-08 08:24 -------- d-----w- crogram filesMSI Kombustor 3.0 2013-12-08 08:03 . 2013-12-08 08:04 -------- d-----w- c:windowssystem32MRT 2013-12-07 20:48 . 2013-12-07 20:48 -------- d-----w- crogram files (x86)MSI Kombustor 2.5 2013-12-07 20:35 . 2013-12-07 20:35 -------- d-----w- crogram filesPerformanceTest 2013-12-06 22:51 . 2013-12-11 15:38 71048 ----a-w- c:windowsSysWow64FlashPlayerCPLApp.cpl 2013-12-06 22:51 . 2013-12-11 15:38 692616 ----a-w- c:windowsSysWow64FlashPlayerApp.exe 2013-12-06 22:51 . 2013-12-06 22:51 -------- d-----w- c:windowsSysWow64Macromed 2013-12-06 22:51 . 2013-12-06 22:51 -------- d-----w- c:windowssystem32Macromed 2013-12-05 04:09 . 2013-09-04 12:12 343040 ----a-w- c:windowssystem32driversusbhub.sys 2013-12-05 04:09 . 2013-09-04 12:11 325120 ----a-w- c:windowssystem32driversusbport.sys 2013-12-05 04:09 . 2013-09-04 12:11 99840 ----a-w- c:windowssystem32driversusbccgp.sys 2013-12-05 04:09 . 2013-09-04 12:11 52736 ----a-w- c:windowssystem32driversusbehci.sys 2013-12-05 04:09 . 2013-09-04 12:11 30720 ----a-w- c:windowssystem32driversusbuhci.sys 2013-12-05 04:09 . 2013-09-04 12:11 25600 ----a-w- c:windowssystem32driversusbohci.sys 2013-12-05 04:09 . 2013-09-04 12:11 7808 ----a-w- c:windowssystem32driversusbd.sys 2013-12-04 18:24 . 2013-12-04 18:24 -------- d-----w- crogram filesMicrosoft Silverlight 2013-12-04 18:24 . 2013-12-04 18:24 -------- d-----w- crogram files (x86)Microsoft Silverlight 2013-12-04 12:38 . 2013-10-14 16:00 28368 ----a-w- c:windowssystem32IEUDINIT.EXE 2013-12-04 12:34 . 2013-12-04 12:34 878080 ----a-w- c:windowssystem32advapi32.dll 2013-12-04 12:33 . 2013-12-04 12:33 327168 ----a-w- c:windowssystem32mswsock.dll 2013-12-04 12:33 . 2013-12-04 12:33 231424 ----a-w- c:windowsSysWow64mswsock.dll 2013-12-04 12:33 . 2013-12-04 12:33 1903552 ----a-w- c:windowssystem32driverstcpip.sys 2013-12-04 05:09 . 2013-12-04 05:09 1887232 ----a-w- c:windowssystem32d3d11.dll 2013-12-04 05:09 . 2013-12-04 05:09 1505280 ----a-w- c:windowsSysWow64d3d11.dll 2013-12-04 04:53 . 2012-03-01 06:46 23408 ----a-w- c:windowssystem32driversfs_rec.sys 2013-12-04 04:53 . 2012-03-01 06:28 5120 ----a-w- c:windowssystem32wmi.dll 2013-12-04 04:53 . 2012-03-01 05:29 5120 ----a-w- c:windowsSysWow64wmi.dll 2013-12-04 01:14 . 2013-08-02 02:12 6656 ----a-w- c:windowssystem32apisetschema.dll 2013-12-04 01:13 . 2013-06-15 04:35 1111552 ----a-w- c:windowssystem32rdpcorets.dll 2013-12-04 01:12 . 2013-07-20 10:33 102608 ----a-w- c:windowsSysWow64PresentationCFFRasterizerNative_v 0300.dll 2013-12-03 17:52 . 2008-07-12 06:18 467984 ----a-w- c:windowsSysWow64d3dx10_39.dll 2013-12-03 17:52 . 2008-07-12 06:18 1493528 ----a-w- c:windowsSysWow64D3DCompiler_39.dll 2013-12-03 17:52 . 2008-07-12 06:18 3851784 ----a-w- c:windowsSysWow64D3DX9_39.dll 2013-12-03 17:51 . 2013-12-03 17:51 -------- d-sh--w- c:windowsSysWow64AI_RecycleBin 2013-12-03 17:51 . 2013-12-03 17:51 -------- d-----w- C:Riot Games 2013-12-03 17:49 . 2013-12-03 17:49 -------- d-----w- crogram files (x86)Pando Networks 2013-12-03 08:16 . 2013-12-03 08:16 -------- d-----w- c:windowssystem32appmgmt 2013-12-03 08:05 . 2012-02-17 06:38 1031680 ----a-w- c:windowssystem32rdpcore.dll 2013-12-03 08:05 . 2012-02-17 05:34 826880 ----a-w- c:windowsSysWow64rdpcore.dll 2013-12-03 08:05 . 2012-02-17 04:57 23552 ----a-w- c:windowssystem32driverstdtcp.sys 2013-12-03 07:59 . 2012-06-02 22:19 2428952 ----a-w- c:windowssystem32wuaueng.dll 2013-12-03 07:59 . 2012-06-02 22:19 57880 ----a-w- c:windowssystem32wuauclt.exe 2013-12-03 07:59 . 2012-06-02 22:19 44056 ----a-w- c:windowssystem32wups2.dll 2013-12-03 07:59 . 2012-06-02 22:15 2622464 ----a-w- c:windowssystem32wucltux.dll 2013-12-03 07:59 . 2012-06-02 22:19 38424 ----a-w- c:windowssystem32wups.dll 2013-12-03 07:59 . 2012-06-02 22:19 701976 ----a-w- c:windowssystem32wuapi.dll 2013-12-03 07:59 . 2012-06-02 22:15 99840 ----a-w- c:windowssystem32wudriver.dll 2013-12-03 07:59 . 2012-06-02 13:19 186752 ----a-w- c:windowssystem32wuwebv.dll 2013-12-03 07:59 . 2012-06-02 13:15 36864 ----a-w- c:windowssystem32wuapp.exe 2013-12-02 23:48 . 2013-12-02 23:49 -------- d-----w- crogram files (x86)Google 2013-12-02 23:17 . 2013-12-02 23:17 -------- d-----w- crogram files (x86)SmartTweak 2013-12-02 23:02 . 2013-12-02 23:02 -------- d-----w- crogram files (x86)SecretSauce 2013-12-02 23:02 . 2013-12-02 23:02 -------- d-----w- crogram files (x86)Torntv V6.0 2013-12-02 23:01 . 2013-12-02 23:27 -------- d-----w- crogram files (x86)TornTV.com 2013-12-02 22:55 . 2008-10-27 08:04 518480 ----a-w- c:windowssystem32XAudio2_3.dll 2013-12-02 22:09 . 2013-12-02 22:09 -------- d-----w- crogramdataDealPlyLive 2013-12-02 22:09 . 2013-12-02 22:09 -------- d-----w- crogram files (x86)DealPlyLive 2013-12-02 22:05 . 2013-12-02 22:05 -------- d-----w- crogram files (x86)WhiteSmoke Search 2013-12-02 19:18 . 2013-12-02 19:18 -------- d-----w- crogramdataPassMark 2013-12-02 19:13 . 2013-12-02 19:13 -------- d-----w- crogram files (x86)Wepla 2013-12-02 19:12 . 2013-12-03 08:10 -------- dc-h--w- crogramdata 2013-12-02 19:03 . 2013-12-02 19:03 -------- d-----w- crogram files (x86)AMD APP 2013-12-02 18:45 . 2013-12-11 00:03 65536 ----a-w- c:windowssystem32spu_storage.bin 2013-11-30 11:11 . 2013-11-30 11:11 -------- d-----w- crogramdataATI 2013-11-30 11:06 . 2013-11-30 11:06 0 ----a-w- c:windowsativpsrm.bin 2013-11-30 11:05 . 2013-11-30 11:05 -------- d-----w- crogram files (x86)AMD AVT 2013-11-30 11:05 . 2013-11-30 11:05 -------- d-----w- crogram filesAMD 2013-11-30 11:05 . 2013-11-30 11:05 -------- d-----w- crogram files (x86)AMD 2013-11-30 11:05 . 2013-11-30 11:05 -------- d-----w- crogram files (x86)Common FilesATI Technologies 2013-11-30 11:04 . 2013-11-30 11:05 -------- d-----w- crogramdataAMD 2013-11-30 11:04 . 2013-11-30 11:04 -------- d-----w- crogram filesCommon FilesATI Technologies 2013-11-30 11:04 . 2013-12-02 19:03 -------- d-----w- crogram files (x86)ATI Technologies 2013-11-30 11:00 . 2013-12-13 21:03 -------- d-sh--w- c:windowsInstaller 2013-11-30 11:00 . 2013-11-30 11:03 -------- d-----w- crogramdataPackage Cache 2013-11-30 11:00 . 2013-11-30 11:05 -------- d-----w- crogram filesATI Technologies . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )) . 2013-12-04 12:34 . 2013-12-04 12:34 44032 ----a-w- c:windowsapppatchacwow64.dll 2013-11-19 01:33 . 2010-11-21 03:27 267936 ------w- c:windowssystem32MpSigStub.exe 2013-10-08 14:01 . 2013-10-08 14:01 156712 ----a-w- c:windowssystem32amdhcp64.dll 2013-10-08 14:01 . 2013-10-08 14:01 141256 ----a-w- c:windowsSysWow64amdhcp32.dll 2013-10-08 14:01 . 2013-10-08 14:01 78432 ----a-w- c:windowssystem32atimpc64.dll 2013-10-08 14:01 . 2013-10-08 14:01 78432 ----a-w- c:windowssystem32amdpcom64.dll 2013-10-08 14:01 . 2013-10-08 14:01 71704 ----a-w- c:windowsSysWow64atimpc32.dll 2013-10-08 14:01 . 2013-10-08 14:01 71704 ----a-w- c:windowsSysWow64amdpcom32.dll 2013-10-08 14:01 . 2013-10-08 14:01 142792 ----a-w- c:windowssystem32atiuxp64.dll 2013-10-08 14:01 . 2013-10-08 14:01 125824 ----a-w- c:windowsSysWow64atiuxpag.dll 2013-10-08 14:01 . 2013-10-08 14:01 97984 ----a-w- c:windowsSysWow64atiu9pag.dll 2013-10-08 14:01 . 2013-10-08 14:01 114488 ----a-w- c:windowssystem32atiu9p64.dll 2013-10-08 14:01 . 2013-10-08 14:01 1237200 ----a-w- c:windowssystem32aticfx64.dll 2013-10-08 14:01 . 2013-10-08 14:01 1030128 ----a-w- c:windowsSysWow64aticfx32.dll 2013-10-08 14:00 . 2013-10-08 14:00 9464840 ----a-w- c:windowssystem32atidxx64.dll 2013-10-08 14:00 . 2013-10-08 14:00 8215992 ----a-w- c:windowsSysWow64atidxx32.dll 2013-10-08 14:00 . 2013-10-08 14:00 6176008 ----a-w- c:windowsSysWow64atiumdva.dll 2013-10-08 14:00 . 2013-10-08 14:00 6189416 ----a-w- c:windowsSysWow64atiumdag.dll 2013-10-08 14:00 . 2013-10-08 14:00 6767240 ----a-w- c:windowssystem32atiumd6a.dll 2013-10-08 14:00 . 2013-10-08 14:00 7256496 ----a-w- c:windowssystem32atiumd64.dll 2013-10-08 13:58 . 2013-10-08 13:58 12534784 ----a-w- c:windowssystem32driversatikmdag.sys 2013-10-08 13:39 . 2013-10-08 13:39 229376 ----a-w- c:windowssystem32clinfo.exe 2013-10-08 13:39 . 2013-10-08 13:39 1187342 ----a-w- c:windowssystem32amdocl_as64.exe 2013-10-08 13:39 . 2013-10-08 13:39 1061902 ----a-w- c:windowssystem32amdocl_ld64.exe 2013-10-08 13:39 . 2013-10-08 13:39 995342 ----a-w- c:windowsSysWow64amdocl_as32.exe 2013-10-08 13:39 . 2013-10-08 13:39 798734 ----a-w- c:windowsSysWow64amdocl_ld32.exe 2013-10-08 13:39 . 2013-10-08 13:39 98816 ----a-w- c:windowssystem32OpenVideo64.dll 2013-10-08 13:38 . 2013-10-08 13:38 83456 ----a-w- c:windowsSysWow64OpenVideo.dll 2013-10-08 13:38 . 2013-10-08 13:38 127488 ----a-w- c:windowssystem32coinst_13.152.1.8.dll 2013-10-08 13:38 . 2013-10-08 13:38 86528 ----a-w- c:windowssystem32OVDecode64.dll 2013-10-08 13:38 . 2013-10-08 13:38 73216 ----a-w- c:windowsSysWow64OVDecode.dll 2013-10-08 13:38 . 2013-10-08 13:38 28192256 ----a-w- c:windowssystem32amdocl64.dll 2013-10-08 13:36 . 2013-10-08 13:36 23761408 ----a-w- c:windowsSysWow64amdocl.dll 2013-10-08 13:34 . 2013-10-08 13:34 63488 ----a-w- c:windowssystem32OpenCL.dll 2013-10-08 13:34 . 2013-10-08 13:34 57344 ----a-w- c:windowsSysWow64OpenCL.dll 2013-10-08 13:17 . 2013-10-08 13:17 25385984 ----a-w- c:windowssystem32atio6axx.dll 2013-10-08 13:13 . 2013-10-08 13:13 368640 ----a-w- c:windowssystem32atiapfxx.exe 2013-10-08 13:13 . 2013-10-08 13:13 62464 ----a-w- c:windowssystem32aticalrt64.dll 2013-10-08 13:13 . 2013-10-08 13:13 52224 ----a-w- c:windowsSysWow64aticalrt.dll 2013-10-08 13:13 . 2013-10-08 13:13 55808 ----a-w- c:windowssystem32aticalcl64.dll 2013-10-08 13:13 . 2013-10-08 13:13 49152 ----a-w- c:windowsSysWow64aticalcl.dll 2013-10-08 13:13 . 2013-10-08 13:13 15716352 ----a-w- c:windowssystem32aticaldd64.dll 2013-10-08 13:09 . 2013-10-08 13:09 14302208 ----a-w- c:windowsSysWow64aticaldd.dll 2013-10-08 13:00 . 2013-10-08 13:00 21400064 ----a-w- c:windowsSysWow64atioglxx.dll 2013-10-08 12:54 . 2013-10-08 12:54 442368 ----a-w- c:windowssystem32atidemgy.dll 2013-10-08 12:53 . 2013-10-08 12:53 26112 ----a-w- c:windowssystem32atimuixx.dll 2013-10-08 12:53 . 2013-10-08 12:53 576512 ----a-w- c:windowssystem32atieclxx.exe 2013-10-08 12:52 . 2013-10-08 12:52 239616 ----a-w- c:windowssystem32atiesrxx.exe 2013-10-08 12:51 . 2013-10-08 12:51 190976 ----a-w- c:windowssystem32atitmm64.dll 2013-10-08 12:29 . 2013-10-08 12:29 96256 ----a-w- c:windowssystem32amdave64.dll 2013-10-08 12:28 . 2013-10-08 12:28 90624 ----a-w- c:windowsSysWow64amdave32.dll 2013-10-08 12:28 . 2013-10-08 12:28 89088 ----a-w- c:windowssystem32atisamu64.dll 2013-10-08 12:28 . 2013-10-08 12:28 784384 ----a-w- c:windowssystem32atiadlxx.dll 2013-10-08 12:28 . 2013-10-08 12:28 80896 ----a-w- c:windowsSysWow64atisamu32.dll 2013-10-08 12:28 . 2013-10-08 12:28 594944 ----a-w- c:windowsSysWow64atiadlxy.dll 2013-10-08 12:28 . 2013-10-08 12:28 75264 ----a-w- c:windowssystem32atig6pxx.dll 2013-10-08 12:28 . 2013-10-08 12:28 69632 ----a-w- c:windowsSysWow64atiglpxx.dll 2013-10-08 12:28 . 2013-10-08 12:28 69632 ----a-w- c:windowssystem32atiglpxx.dll 2013-10-08 12:28 . 2013-10-08 12:28 100352 ----a-w- c:windowssystem32atig6txx.dll 2013-10-08 12:27 . 2013-10-08 12:27 96768 ----a-w- c:windowsSysWow64atigktxx.dll 2013-10-08 12:27 . 2013-10-08 12:27 619008 ----a-w- c:windowssystem32driversatikmpag.sys 2013-10-08 12:24 . 2013-10-08 12:24 43520 ----a-w- c:windowssystem32driversati2erec.dll 2013-10-08 07:50 . 2013-10-08 07:50 51200 ----a-w- c:windowssystem32kdbsdk64.dll 2013-10-08 07:45 . 2013-10-08 07:45 38912 ----a-w- c:windowsSysWow64kdbsdk32.dll 2013-09-27 07:53 . 2013-09-27 07:53 248240 ----a-w- c:windowssystem32driversMpFilter.sys 2013-09-27 07:53 . 2013-09-27 07:53 134944 ----a-w- c:windowssystem32driversNisDrvWFP.sys . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_LOCAL_MACHINESOFTWAREWow6432Node~Browser Helper Objects] 2010-11-21 03:24 297808 ----a-w- c:windowsSystem32mscoree.dll . [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVe rsionRun] "DAEMON Tools Lite"="crogram files (x86)DAEMON Tools LiteDTLite.exe" [2013-03-14 3672640] "HydraVisionDesktopManager"="crogram files (x86)ATI TechnologiesHydraVisionHydraDM.exe" [2013-02-15 389120] "uTorrent"="c:userszxzAppDataRoaminguTorrentuTorre nt.exe" [2013-12-02 1142864] "NextLive"="c:userszxzAppDataRoamingnewnext.meneng ine.dll" [2013-11-14 1283584] "GoogleDriveSync"="crogram files (x86)GoogleDrivegoogledrivesync.exe" [2013-09-25 20133824] . [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftWind owsCurrentVersionRun] "StartCCC"="crogram files (x86)ATI TechnologiesATI.ACECore-Staticamd64CLIStart.exe" [2013-10-08 766208] "mobilegeni daemon"="crogram files (x86)MobogenieDaemonProcess.exe" [2013-12-11 761024] "GPULoader"="crogram files (x86)VLC Player GPU+GPULog.exe" [2013-11-28 1309408] "SunJavaUpdateSched"="crogram files (x86)Common FilesJavaJava Updatejusched.exe" [2010-05-14 248552] . c:userszxzAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup OpenOffice.org 3.3.lnk - crogram files (x86)OpenOffice.org 3programquickstart.exe [2010-12-13 1198592] . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionpoliciessystem] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSa feBootMinimalMsMpSvc] @="Service" . [HKEY_LOCAL_MACHINEsoftwaremicrosoftsecurity center] "AntiVirusOverride"=dword:00000001 "AntiVirusDisableNotify"=dword:00000001 "FirewallDisableNotify"=dword:00000001 "FirewallOverride"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "UacDisableNotify"=dword:00000001 . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:windowsMicrosoft.NETFramework64v4 .0.30319mscorsvw.exe;c:windowsMicrosoft.NETFramewo rk64v4.0.30319mscorsvw.exe [x] R2 dealplylive;Google Güncelleme Hizmeti (dealplylive);crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe;crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe [x] R3 dealplylivem;Google Güncelleme Hizmeti (dealplylivem);crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe;crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe [x] R3 DIRECTIO;DIRECTIO;crogram filesPerformanceTestDirectIo64.sys;crogram filesPerformanceTestDirectIo64.sys [x] R3 dmvsc;dmvsc;c:windowssystem32driversdmvsc.sys;c:wi ndowsSYSNATIVEdriversdmvsc.sys [x] R3 GPU-Z;GPU-Z;c:userszxzAppDataLocalTempGPU-Z.sys;c:userszxzAppDataLocalTempGPU-Z.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:windowssystem32IEEtwCollector.exe;c:wind owsSYSNATIVEIEEtwCollector.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:windowssystem32driversrdpvideominiport.sy s;c:windowsSYSNATIVEdriversrdpvideominiport.sys [x] R3 Synth3dVsc;Synth3dVsc;c:windowssystem32driverssynt h3dvsc.sys;c:windowsSYSNATIVEdriverssynth3dvsc.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:windowssystem32driversterminpt.sys;c:wind owsSYSNATIVEdriversterminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:windowssystem32driverstsusbflt .sys;c:windowsSYSNATIVEdriverstsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:windowssystem32driversTsUsbGD.sys;c:windo wsSYSNATIVEdriversTsUsbGD.sys [x] R3 tsusbhub;tsusbhub;c:windowssystem32driverstsusbhub .sys;c:windowsSYSNATIVEdriverstsusbhub.sys [x] R3 VGPU;VGPU;c:windowssystem32driversrdvgkmd.sys;c:wi ndowsSYSNATIVEdriversrdvgkmd.sys [x] R3 WatAdminSvc;Windows Etkinleştirme Teknolojileri Hizmeti;c:windowssystem32WatWatAdminSvc.exe;c:wind owsSYSNATIVEWatWatAdminSvc.exe [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:windowssystem32DRIVERSdtsoftbus01.sys;c:w indowsSYSNATIVEDRIVERSdtsoftbus01.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:windowssystem32atiesrxx.exe;c:windowsSYS NATIVEatiesrxx.exe [x] S2 AMD FUEL Service;AMD FUEL Service;crogram filesATI TechnologiesATI.ACEFuelFuel.Service.exe;crogram filesATI TechnologiesATI.ACEFuelFuel.Service.exe [x] S2 AODDriver4.2;AODDriver4.2;crogram filesATI TechnologiesATI.ACEFuelamd64AODDriver2.sys;crogr am filesATI TechnologiesATI.ACEFuelamd64AODDriver2.sys [x] S2 NisDrv;Microsoft Network Inspection System;c:windowssystem32DRIVERSNisDrvWFP.sys;c:win dowsSYSNATIVEDRIVERSNisDrvWFP.sys [x] S2 Peerinator;Peerinator;crogram files (x86)PeerinatorPeerinator.exe;crogram files (x86)PeerinatorPeerinator.exe [x] S2 Wpm;Wpm Service;crogramdataWPMwprotectmanager.exe;crog ramdataWPMwprotectmanager.exe [x] S3 asmthub3;ASMedia USB3 Hub Service;c:windowssystem32DRIVERSasmthub3.sys;c:win dowsSYSNATIVEDRIVERSasmthub3.sys [x] S3 asmtxhci;ASMEDIA XHCI Service;c:windowssystem32DRIVERSasmtxhci.sys;c:win dowsSYSNATIVEDRIVERSasmtxhci.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:windowssystem32driversAtihdW76.sys;c:win dowsSYSNATIVEdriversAtihdW76.sys [x] S3 NisSrv;Microsoft Ağ İnceleme;crogram filesMicrosoft Security ClientNisSrv.exe;crogram filesMicrosoft Security ClientNisSrv.exe [x] S3 RTL8167;Realtek 8167 NT Driver;c:windowssystem32DRIVERSRt64win7.sys;c:wind owsSYSNATIVEDRIVERSRt64win7.sys [x] . . --- Other Services/Drivers In Memory --- . *NewlyCreated* - WS2IFSL . Contents of the 'Scheduled Tasks' folder . 2013-12-13 c:windowsTasksAdobe Flash Player Updater.job - c:windowsSysWOW64MacromedFlashFlashPlayerUpdateSer vice.exe [2013-12-06 15:38] . 2013-12-13 c:windowsTasksAmiUpdXp.job - c:userszxzAppDataLocalSwvUpdaterUpdater.exe [2013-12-02 21:57] . 2013-12-13 c:windowsTasksDealPlyLiveUpdateTaskMachineCore.job - crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe [2013-12-02 22:09] . 2013-12-13 c:windowsTasksDealPlyLiveUpdateTaskMachineUA.job - crogram files (x86)DealPlyLiveUpdateDealPlyLive.exe [2013-12-02 22:09] . 2013-12-13 c:windowsTasksDLL-Files FixerASKUSER.job - crogram files (x86)Dll-Files.com FixerDLLFixer.exe [2013-12-12 12:44] . 2013-12-13 c:windowsTasksDLL-Files.Com Fixer_MONTHLY.job - crogram files (x86)Dll-Files.com FixerDLLFixer.exe [2013-12-12 12:44] . 2013-12-13 c:windowsTasksDLL-Files.Com Fixer_Updates.job - crogram files (x86)Dll-Files.com FixerDLLFixer.exe [2013-12-12 12:44] . 2013-12-13 c:windowsTasksGoogleUpdateTaskMachineCore.job - crogram files (x86)GoogleUpdateGoogleUpdate.exe [2013-12-02 23:48] . 2013-12-13 c:windowsTasksGoogleUpdateTaskMachineUA.job - crogram files (x86)GoogleUpdateGoogleUpdate.exe [2013-12-02 23:48] . 2013-12-12 c:windowsTasksGoogleUpdateTaskUserS-1-5-21-3752596857-823812960-1052167195-1000Core.job - c:userszxzAppDataLocalGoogleUpdateGoogleUpdate.exe [2013-11-30 10:45] . 2013-12-13 c:windowsTasksGoogleUpdateTaskUserS-1-5-21-3752596857-823812960-1052167195-1000UA.job - c:userszxzAppDataLocalGoogleUpdateGoogleUpdate.exe [2013-11-30 10:45] . 2013-12-13 c:windowsTasksTorntv V6.0-chromeinstaller.job - crogram files (x86)Torntv V6.0Torntv V6.0-chromeinstaller.exe [2013-12-02 23:02] . 2013-12-13 c:windowsTasksTorntv V6.0-updater.job - crogram files (x86)Torntv V6.0Torntv V6.0-updater.exe [2013-12-02 23:02] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionexplorershelliconoverlayidentifiersGDriveBla cklistedOverlay] @="" [HKEY_CLASSES_ROOTCLSID] 2013-09-25 15:37 778704 ----a-w- crogram files (x86)GoogleDrivegoogledrivesync64.dll . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionexplorershelliconoverlayidentifiersGDriveSha redEditOverlay] @="" [HKEY_CLASSES_ROOTCLSID] 2013-09-25 15:37 778704 ----a-w- crogram files (x86)GoogleDrivegoogledrivesync64.dll . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionexplorershelliconoverlayidentifiersGDriveSha redViewOverlay] @="" [HKEY_CLASSES_ROOTCLSID] 2013-09-25 15:37 778704 ----a-w- crogram files (x86)GoogleDrivegoogledrivesync64.dll . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionexplorershelliconoverlayidentifiersGDriveSyn cedOverlay] @="" [HKEY_CLASSES_ROOTCLSID] 2013-09-25 15:37 778704 ----a-w- crogram files (x86)GoogleDrivegoogledrivesync64.dll . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionexplorershelliconoverlayidentifiersGDriveSyn cingOverlay] @="" [HKEY_CLASSES_ROOTCLSID] 2013-09-25 15:37 778704 ----a-w- crogram files (x86)GoogleDrivegoogledrivesync64.dll . [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentV ersionRun] "MSC"="crogram filesMicrosoft Security Clientmsseces.exe" [2013-10-23 1266912] . ------- Supplementary Scan ------- . uLocal Page = c:windowssystem32blank.htm uStart Page = hxxp://do-search.com/?type=hp&ts=1386022413&from=adks&uid=SAMSUNGXHD103 SJ_S246J90B106580 mDefault_Search_URL = hxxp://do-search.com/web/?type=ds&ts=1386022413&from=adks&uid=SAMSUNGXHD103 SJ_S246J90B106580&q= mLocal Page = c:windowsSysWOW64blank.htm mSearch Page = hxxp://do-search.com/web/?type=ds&ts=1386022413&from=adks&uid=SAMSUNGXHD103 SJ_S246J90B106580&q= IE: E&xport to Microsoft Excel - crogram files (x86)MICROS~4Office14EXCEL.EXE/3000 IE: Se&nd to OneNote - crogram files (x86)MICROS~4Office14ONBttnIE.dll/105 TCP: DhcpNameServer = 195.175.39.40 195.175.39.39 TCP: Interfaces: NameServer = 4.2.2.2,4.2.2.1 . - - - - ORPHANS REMOVED - - - - . BHO- - c:userszxzAppDataRoamingDefaultTabDefaultTabDefaul tTabBHO.dll BHO- - c:userszxzAppDataRoamingDefaultTabDefaultTabAppsRe latedLinksBHO.dll BHO- - crogram files (x86)DealPlyDealPlyIE.dll Toolbar- - c:userszxzAppDataRoamingDefaultTabDefaultTabAppsRe latedLinksBHO.dll Wow6432Node-HKCU-Run-ChicaPasswordManager - crogram files (x86)ChicaLogicChica Password Managerstpass.exe Wow6432Node-HKLM-Run-GPUTemp - c:userszxzAppDataLocalTempGPUTemp.exe HKLM_Wow6432Node-ActiveSetup- - start AddRemove-DealPly - crogram files (x86)DealPlyuninst.exe AddRemove-DefaultTab - c:userszxzAppDataRoamingDefaultTabDefaultTabuninst alldt.exe . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftOffi ceCommonSmart TagActions] @Denied: (A) (Everyone) "Solution"="" . [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftSche ma LibraryActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftSche ma LibraryActionsPane3] "Key"="ActionsPane3" "Location"="c:\Program Files (x86)\Common Files\Microsoft Shared\VSTO\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlPCWSec urity] @Denied: (Full) (Everyone) . ------------------------ Other Running Processes ------------------------ . crogram files (x86)GoogleUpdate1.3.22.3GoogleCrashHandler.exe c:userszxzAppDataLocalFilesFrog Update Checkerupdate_checker.exe c:windowsSysWOW64rundll32.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe c:userszxzAppDataLocalGoogleChromeApplicationchrom e.exe . ************************************************** ************************ . Completion time: 2013-12-13 23:38:07 - machine was rebooted ComboFix-quarantined-files.txt 2013-12-13 21:38 . Pre-Run: 458.651.930.624 bayt boş Post-Run: 458.229.989.376 bayt boş . - - End Of File - - 59A602D3766BE72BA7E5359DC3A65365 A36C5E4F47E84449FF07ED3517B43A31