Arama butonu
Bu konudaki kullanıcılar: 1 misafir
2
Cevap
1133
Tıklama
0
Öne Çıkarma
Programların yanıt vermeme problemi.
S
8 yıl
Teğmen
Konu Sahibi

Merhaba arkadaşlar. Öncelikle sorun çok ilginç ve ilk defa karşılaşıyorum. Bazı zamanlar gün içerisinde hiç olmazken bazı zamanlarda peş peşe oluyor. Mouse işlem yapıyormuş cursoruna geçiyor ve tüm programlar yanıt vermiyor. ctrl+alt+del bile cevap vermiyor fakat mouse hareket edebiliyor. Bir süre sonra ctrl+alt+del ekranı geliyor ve herşey normale dönüyor.

Bu olay yeni format sonrası oldu fakat daha öncesinde format attıgım bir pc vardı, harici diskte onun yedeklerinin olduğu klasöre girdikten sonra bu durum oldu diye düşünüyorum. Aşağıda hijackthis log u mevcut. Malwarebytes anti-malware / hijackthis / combofix / chkdsk / spyware taramalarının hepsini yaptım ve bitdefender kurulu pc'de. Format harici bu sorunu çözebileceğim bir durum bilen varsa yardımcı olabilirse çok iyi olur.

Logfile of Trend Micro HijackThis v2.0.4 
Scan saved at 18:07:57, on 16.12.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Program Files (x86)\MOUSE Editor\MouseEditor.exe
E:\Oyunlar\Steam\Steam.exe
E:\Oyunlar\Steam\bin\steamwebhelper.exe
E:\Oyunlar\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\İndirilen Klasörü\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Sound Blaster Tactic3D Control Panel] "C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" /r
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [IObit Malware Fighter] "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
O4 - HKLM\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKLM\..\RunOnce: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Advanced SystemCare 9] "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto
O4 - HKCU\..\Run: [OscarEditor] "C:\Program Files (x86)\MOUSE Editor\MouseEditor.exe" Minimum
O4 - Global Startup: forteManager.lnk = ?
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone:http://*.hola.org
O17 - HKLM\System\CCS\Services\Tcpip\..\{62013A5C-A4F5-4201-B378-5EF618FA24F2}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{62013A5C-A4F5-4201-B378-5EF618FA24F2}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS2\Services\Tcpip\..\{62013A5C-A4F5-4201-B378-5EF618FA24F2}: NameServer = 8.8.8.8,8.8.4.4
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 9 (AdvancedSystemCareService9) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: ACP User Service (amdacpusrsvc) - Advanced Micro Devices - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - D:\Programlar\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Bitdefender Desktop Parental Control (BdDesktopParental) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Güncelleme Hizmeti (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Güncelleme Hizmeti (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: iPod Servisi (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Oyunlar\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: SafeBox - Bitdefender - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - D:\Programlar\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: Bitdefender Virus Shield (VSSERV) - Bitdefender - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11102 bytes


Combofix Logu:
ComboFix 15-12-16.01 - Serhat 16.12.2015  18:27:25.2.8 - x64 
Microsoft Windows 7 Ultimate 6.1.7601.1.1254.90.1033.18.8159.5019 [GMT 2:00]
Running from: D:\ComboFix.exe
AV: Bitdefender Antivirus *Disabled/Updated* {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
FW: Bitdefender Firewall *Enabled* {A23392FD-84B9-F933-2C71-81E751F6EF46}
SP: Bitdefender Antispyware *Disabled/Updated* {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
SP: IObit Malware Fighter *Disabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\Windows\security\logs\scecomp.log


((((((((((((((((((((((((( Files Created from 2015-11-16 to 2015-12-16 )))))))))))))))))))))))))))))))


2015-12-16 16:35:40 . 2015-12-16 16:35:40 -------- d-----w- C:\Users\Public\AppData\Local\temp
2015-12-16 16:35:40 . 2015-12-16 16:35:40 -------- d-----w- C:\Users\Default\AppData\Local\temp
2015-12-16 16:31:02 . 2015-12-16 16:31:02 -------- d-----w- C:\Users\Serhat\AppData\Local\Microsoft Games
2015-12-16 15:26:34 . 2015-12-16 15:26:34 82544 ----a-w- C:\Windows\system32\RtNicProp64.dll
2015-12-16 15:26:34 . 2015-12-16 15:26:34 1026304 ----a-w- C:\Windows\system32\drivers\Rt64win7.sys
2015-12-16 13:44:16 . 2015-12-16 13:44:41 -------- d-----w- C:\Program Files (x86)\MOUSE Editor
2015-12-15 19:02:10 . 2015-12-15 19:02:10 -------- d-----w- C:\Users\Serhat\AppData\Local\Apple Computer
2015-12-15 19:02:02 . 2015-12-15 19:02:02 -------- d-----w- C:\Program Files\iPod
2015-12-15 19:02:02 . 2015-12-15 19:02:02 -------- d-----w- C:\Program Files (x86)\iTunes
2015-12-15 19:02:01 . 2015-12-15 19:02:09 -------- d-----w- C:\Program Files\iTunes
2015-12-15 19:02:01 . 2015-12-15 19:02:01 -------- d-----w- C:\ProgramData\Apple Computer
2015-12-15 19:00:38 . 2015-12-15 19:00:38 -------- d-----w- C:\Users\Serhat\AppData\Local\Apple
2015-12-15 19:00:37 . 2015-12-15 19:00:37 -------- d-----w- C:\Program Files (x86)\Apple Software Update
2015-12-15 19:00:30 . 2015-12-15 19:00:30 -------- d-----w- C:\Program Files\Bonjour
2015-12-15 19:00:30 . 2015-12-15 19:00:30 -------- d-----w- C:\Program Files (x86)\Bonjour
2015-12-15 19:00:26 . 2015-12-15 19:02:01 -------- d-----w- C:\Program Files\Common Files\Apple
2015-12-15 19:00:19 . 2015-12-15 19:00:36 -------- d-----w- C:\ProgramData\Apple
2015-12-15 19:00:19 . 2015-12-15 19:00:34 -------- d-----w- C:\Program Files (x86)\Common Files\Apple
2015-12-15 16:21:44 . 2015-12-15 16:23:45 -------- d-----w- C:\Users\Serhat\AppData\Roaming\Mount&Blade With Fire and Sword
2015-12-11 14:49:40 . 2015-12-11 14:49:40 -------- d-----w- C:\Users\Serhat\AppData\Local\Incomedia
2015-12-11 14:49:28 . 2015-12-11 14:49:39 -------- d-----w- C:\Program Files (x86)\WebSite X5 v12 - Home
2015-12-10 19:47:23 . 2015-12-10 19:47:23 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
2015-12-10 19:47:15 . 2015-12-10 19:47:17 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2015-12-09 09:14:24 . 2015-12-09 09:14:24 -------- d-----w- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2015-12-09 09:13:03 . 2015-12-09 09:13:03 26528 ----a-w- C:\Windows\SysWow64\drivers\HWiNFO64A.SYS
2015-12-08 17:25:12 . 2015-01-10 13:32:16 128288 ----a-w- C:\Windows\SysWow64\IObitSmartDefragExtension.dll
2015-12-08 17:25:12 . 2015-01-10 13:32:16 128288 ----a-w- C:\Windows\system32\IObitSmartDefragExtension.dll
2015-12-08 17:25:12 . 2014-06-04 13:17:30 34080 ----a-w- C:\Windows\system32\SmartDefragBootTime.exe
2015-12-08 17:25:11 . 2014-06-04 13:17:30 21184 ----a-w- C:\Windows\system32\drivers\SmartDefragDriver.sys
2015-12-07 00:13:14 . 2015-12-07 00:14:15 -------- d-----w- C:\Users\Serhat\AppData\Roaming\Notepad++
2015-12-05 16:38:27 . 2015-12-05 16:38:27 -------- d-----w- C:\Users\Serhat\AppData\Roaming\Golden Software
2015-12-05 16:38:18 . 2015-12-05 16:38:27 -------- dc-h--w- C:\ProgramData\{C3076908-ADF6-4259-BCFE-2965190EEBFD}
2015-12-04 12:08:18 . 2015-12-04 12:08:18 -------- d-----w- C:\ProgramData\ATI
2015-11-29 21:54:13 . 2015-11-29 21:54:13 -------- d--h--w- C:\ProgramData\CanonIJETV
2015-11-29 21:19:32 . 2015-11-29 21:19:32 118608 ----a-w- C:\Windows\system32\amdave64.dll
2015-11-29 21:19:32 . 2015-11-29 21:19:32 110344 ----a-w- C:\Windows\SysWow64\amdave32.dll
2015-11-29 21:19:24 . 2015-11-29 21:19:24 141792 ----a-w- C:\Windows\system32\amdhcp64.dll
2015-11-29 21:19:24 . 2015-11-29 21:19:24 128384 ----a-w- C:\Windows\SysWow64\amdhcp32.dll
2015-11-29 21:19:20 . 2015-11-29 21:19:20 78432 ----a-w- C:\Windows\system32\atimpc64.dll
2015-11-29 21:19:20 . 2015-11-29 21:19:20 78432 ----a-w- C:\Windows\system32\amdpcom64.dll
2015-11-29 21:19:18 . 2015-11-29 21:19:18 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2015-11-29 21:19:18 . 2015-11-29 21:19:18 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2015-11-29 21:19:06 . 2015-11-29 21:19:06 152568 ----a-w- C:\Windows\system32\atiuxp64.dll
2015-11-29 21:19:04 . 2015-11-29 21:19:04 133016 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2015-11-29 21:19:02 . 2015-11-29 21:19:02 120656 ----a-w- C:\Windows\system32\atiu9p64.dll
2015-11-29 21:19:00 . 2015-11-29 21:19:00 102616 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2015-11-29 21:18:56 . 2015-11-29 21:18:56 1497248 ----a-w- C:\Windows\system32\aticfx64.dll
2015-11-29 21:18:52 . 2015-11-29 21:18:52 1229984 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2015-11-29 21:18:46 . 2015-11-29 21:18:46 13189336 ----a-w- C:\Windows\system32\atidxx64.dll
2015-11-29 21:18:40 . 2015-11-29 21:18:40 10907328 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2015-11-29 21:18:32 . 2015-11-29 21:18:32 8089248 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2015-11-29 21:18:24 . 2015-11-29 21:18:24 9070320 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2015-11-29 21:18:16 . 2015-11-29 21:18:16 9017808 ----a-w- C:\Windows\system32\atiumd6a.dll
2015-11-29 21:18:10 . 2015-11-29 21:18:10 10815664 ----a-w- C:\Windows\system32\atiumd64.dll
2015-11-29 21:15:50 . 2015-11-29 21:15:50 296648 ----a-w- C:\Windows\system32\drivers\amdacpksd.sys
2015-11-29 21:12:28 . 2015-11-29 21:12:28 23961088 ----a-w- C:\Windows\system32\drivers\atikmdag.sys
2015-11-29 21:08:18 . 2015-11-29 21:08:18 235008 ----a-w- C:\Windows\system32\clinfo.exe
2015-11-29 21:08:12 . 2015-11-29 21:08:12 49984512 ----a-w- C:\Windows\system32\amdocl64.dll
2015-11-29 21:05:54 . 2015-11-29 21:05:54 65024 ----a-w- C:\Windows\system32\OpenCL.dll
2015-11-29 21:05:52 . 2015-11-29 21:05:52 59392 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2015-11-29 21:04:26 . 2015-11-29 21:04:26 27596288 ----a-w- C:\Windows\system32\amdocl12cl64.dll
2015-11-29 20:44:06 . 2015-11-29 20:44:06 677888 ----a-w- C:\Windows\system32\amdlvr64.dll
2015-11-29 20:43:52 . 2015-11-29 20:43:52 562688 ----a-w- C:\Windows\SysWow64\amdlvr32.dll
2015-11-29 20:43:38 . 2015-11-29 20:43:38 127488 ----a-w- C:\Windows\system32\mantle64.dll
2015-11-29 20:43:34 . 2015-11-29 20:43:34 113664 ----a-w- C:\Windows\SysWow64\mantle32.dll
2015-11-29 20:43:28 . 2015-11-29 20:43:28 6643200 ----a-w- C:\Windows\system32\amdmantle64.dll
2015-11-29 20:38:38 . 2015-11-29 20:38:38 5223936 ----a-w- C:\Windows\SysWow64\amdmantle32.dll
2015-11-29 20:35:32 . 2015-11-29 20:35:32 31376896 ----a-w- C:\Windows\system32\atio6axx.dll
2015-11-29 20:34:46 . 2015-11-29 20:34:46 96256 ----a-w- C:\Windows\system32\mantleaxl64.dll
2015-11-29 20:34:44 . 2015-11-29 20:34:44 89088 ----a-w- C:\Windows\SysWow64\mantleaxl32.dll
2015-11-29 20:32:14 . 2015-11-29 20:32:14 367104 ----a-w- C:\Windows\system32\atiapfxx.exe
2015-11-29 20:29:38 . 2015-11-29 20:29:38 50688 ----a-w- C:\Windows\system32\amdmmcl6.dll
2015-11-29 20:29:34 . 2015-11-29 20:29:34 39424 ----a-w- C:\Windows\SysWow64\amdmmcl.dll
2015-11-29 20:29:34 . 2015-11-29 20:29:34 25840128 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2015-11-29 20:25:16 . 2015-11-29 20:25:16 62464 ----a-w- C:\Windows\system32\aticalrt64.dll
2015-11-29 20:25:14 . 2015-11-29 20:25:14 52224 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2015-11-29 20:25:12 . 2015-11-29 20:25:12 55808 ----a-w- C:\Windows\system32\aticalcl64.dll
2015-11-29 20:25:12 . 2015-11-29 20:25:12 49152 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2015-11-29 20:25:06 . 2015-11-29 20:25:06 15711744 ----a-w- C:\Windows\system32\aticaldd64.dll
2015-11-29 20:24:16 . 2015-11-29 20:24:16 14302208 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2015-11-29 20:20:48 . 2015-11-29 20:20:48 442368 ----a-w- C:\Windows\system32\atidemgy.dll
2015-11-29 20:20:46 . 2015-11-29 20:20:46 223744 ----a-w- C:\Windows\system32\dgtrayicon.exe
2015-11-29 20:20:42 . 2015-11-29 20:20:42 162304 ----a-w- C:\Windows\system32\atieah64.exe
2015-11-29 20:20:40 . 2015-11-29 20:20:40 145408 ----a-w- C:\Windows\SysWow64\atieah32.exe
2015-11-29 20:20:38 . 2015-11-29 20:20:38 204800 ----a-w- C:\Windows\system32\amdgfxinfo64.dll
2015-11-29 20:20:38 . 2015-11-29 20:20:38 189952 ----a-w- C:\Windows\SysWow64\amdgfxinfo32.dll
2015-11-29 20:20:36 . 2015-11-29 20:20:36 31744 ----a-w- C:\Windows\system32\atimuixx.dll
2015-11-29 20:20:34 . 2015-11-29 20:20:34 552448 ----a-w- C:\Windows\system32\atieclxx.exe
2015-11-29 20:20:26 . 2015-11-29 20:20:26 246272 ----a-w- C:\Windows\system32\atiesrxx.exe
2015-11-29 20:20:12 . 2015-11-29 20:20:12 190976 ----a-w- C:\Windows\system32\atitmm64.dll
2015-11-29 20:18:40 . 2015-11-29 20:18:40 89088 ----a-w- C:\Windows\system32\atisamu64.dll
2015-11-29 20:18:36 . 2015-11-29 20:18:36 80896 ----a-w- C:\Windows\SysWow64\atisamu32.dll
2015-11-29 20:18:10 . 2015-11-29 20:18:10 1272832 ----a-w- C:\Windows\system32\atiadlxx.dll
2015-11-29 20:18:02 . 2015-11-29 20:18:02 75776 ----a-w- C:\Windows\system32\atig6pxx.dll
2015-11-29 20:18:02 . 2015-11-29 20:18:02 70144 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2015-11-29 20:18:02 . 2015-11-29 20:18:02 70144 ----a-w- C:\Windows\system32\atiglpxx.dll
2015-11-29 20:18:00 . 2015-11-29 20:18:00 157696 ----a-w- C:\Windows\system32\atig6txx.dll
2015-11-29 20:17:54 . 2015-11-29 20:17:54 671232 ----a-w- C:\Windows\system32\drivers\atikmpag.sys
2015-11-29 20:17:38 . 2015-11-29 20:17:38 43520 ----a-w- C:\Windows\system32\drivers\ati2erec.dll
2015-11-29 20:17:04 . 2015-11-29 20:17:04 195072 ----a-w- C:\Windows\system32\hsa-thunk64.dll
2015-11-29 20:17:02 . 2015-11-29 20:17:02 174592 ----a-w- C:\Windows\SysWow64\hsa-thunk.dll
2015-11-29 18:10:10 . 2015-11-29 21:35:58 -------- d-----w- C:\Program Files\Hola
2015-11-29 13:33:24 . 2015-11-29 13:33:24 364544 ----a-w- C:\Windows\system32\amdacpusl.dll
2015-11-29 13:33:24 . 2015-11-29 13:33:24 248832 ----a-w- C:\Windows\SysWow64\amdacpusl.dll
2015-11-28 19:37:34 . 2015-11-28 19:37:34 0 ---ha-w- C:\Users\Serhat\AppData\Local\BIT4FE3.tmp
2015-11-28 10:47:42 . 2015-11-28 10:47:42 -------- d-----w- C:\Users\Serhat\AppData\Roaming\11bitstudios
2015-11-27 19:55:57 . 2015-11-27 19:55:57 -------- d-----w- C:\Users\Serhat\AppData\Roaming\The Creative Assembly
2015-11-27 19:44:51 . 2015-11-27 19:44:51 -------- d-----w- C:\Users\Serhat\AppData\Roaming\Kalypso Media
2015-11-27 19:36:32 . 2015-11-27 19:36:32 -------- d-----w- C:\ProgramData\pwd
2015-11-27 16:37:54 . 2015-11-27 16:37:54 -------- d-----w- C:\ProgramData\bdch
2015-11-22 11:29:38 . 2015-11-29 21:37:47 -------- d-----w- C:\Users\Serhat\AppData\Local\ElevatedDiagnostics
2015-11-21 00:23:51 . 2015-11-21 00:27:31 -------- d-----w- C:\Users\Serhat\AppData\Local\ArmA 2 OA
2015-11-21 00:23:51 . 2015-11-21 00:23:51 -------- d-----w- C:\ProgramData\Bohemia Interactive Studio
2015-11-21 00:23:43 . 2015-11-21 00:23:49 -------- d-----w- C:\Program Files (x86)\Common Files\BattlEye
2015-11-20 23:47:38 . 2015-11-20 23:47:38 -------- d-----w- C:\Users\Serhat\AppData\Roaming\MathWorks
2015-11-20 23:23:36 . 2015-11-20 23:23:36 560184 ----a-w- C:\Windows\system32\drivers\sptd.sys
2015-11-19 20:54:05 . 2015-11-19 20:54:05 -------- d-----w- C:\Users\Serhat\AppData\Local\Logitech
2015-11-19 20:42:29 . 2015-11-19 20:42:29 -------- d-----w- C:\Program Files\Logitech
2015-11-19 20:42:29 . 2015-11-19 20:42:29 -------- d-----w- C:\Program Files\Common Files\Logitech
2015-11-19 11:07:18 . 2007-05-03 15:19:38 14032 ----a-w- C:\Windows\system32\drivers\se64a.sys
2015-11-19 11:05:13 . 2015-11-19 11:05:13 22200 ----a-w- C:\Windows\SysWow64\drivers\DrvAgent64.SYS
2015-11-19 11:05:13 . 2015-11-19 11:05:13 -------- d-----w- C:\Users\Serhat\AppData\Local\eSupport.com
2015-11-19 11:05:11 . 2015-11-19 11:09:57 -------- d-----w- C:\Program Files (x86)\eSupport.com
2015-11-18 03:40:34 . 2015-11-29 20:32:22 865280 ----a-w- C:\Windows\system32\coinst_15.30.dll
2015-11-17 19:23:23 . 2015-11-17 19:23:23 -------- d-----w- C:\Users\Serhat\Tracing


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2015-12-16 16:07:24 . 2015-11-06 18:03:38 25640 ----a-w- C:\Windows\etdrv.sys
2015-12-16 15:32:12 . 2015-11-06 19:10:58 796864 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2015-12-16 15:32:12 . 2015-11-06 19:10:58 142528 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2015-12-16 15:26:34 . 2015-11-06 15:54:59 116304 ----a-w- C:\Windows\system32\RTNUninst64.dll
2015-12-16 14:14:11 . 2015-11-06 18:51:12 226168 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2015-12-16 14:14:11 . 2015-11-06 18:51:12 226168 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2015-12-16 11:30:02 . 2015-11-06 15:02:03 30528 ----a-w- C:\Windows\GVTDrv64.sys
2015-12-16 11:29:54 . 2015-11-06 15:01:55 25640 ----a-w- C:\Windows\gdrv.sys
2015-12-15 00:33:16 . 2015-11-06 15:34:51 65536 ----a-w- C:\Windows\system32\spu_storage.bin
2015-12-10 19:15:06 . 2015-11-06 19:26:45 76152 ----a-w- C:\Windows\system32\PnkBstrA.exe
2015-12-09 12:01:52 . 2015-11-06 18:51:12 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2015-11-29 21:07:00 . 2015-11-03 22:32:16 41510912 ----a-w- C:\Windows\SysWow64\amdocl.dll
2015-11-29 21:04:18 . 2015-11-03 22:29:32 22348800 ----a-w- C:\Windows\SysWow64\amdocl12cl.dll
2015-11-29 20:30:00 . 2015-11-03 21:44:46 941568 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2015-11-29 20:30:00 . 2015-11-03 21:44:46 941568 ----a-w- C:\Windows\SysWow64\atiadlxx.dll
2015-11-29 20:17:58 . 2015-11-03 21:44:38 142336 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2015-11-07 10:09:23 . 2015-11-07 10:09:23 74000 ----a-w- C:\Windows\system32\bdsandboxuiskin32.dll
2015-11-06 20:23:38 . 2015-11-06 20:23:38 466520 ----a-w- C:\Windows\system32\wrap_oal.dll
2015-11-06 20:23:38 . 2015-11-06 20:23:38 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2015-11-06 20:23:38 . 2015-11-06 20:23:38 123480 ----a-w- C:\Windows\system32\OpenAL32.dll
2015-11-06 20:23:38 . 2015-11-06 20:23:38 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2015-11-06 15:58:48 . 2015-10-31 11:52:24 17280 ----a-w- C:\Windows\system32\drivers\USBDrv_AMD64.sys
2015-11-06 15:23:21 . 2015-11-06 15:23:21 3271912 ----a-w- C:\Windows\system32\RtkApi64.dll
2015-11-06 15:23:21 . 2015-11-06 15:23:21 23704 ----a-w- C:\Windows\system32\RtkCoLDR64.dll
2015-11-06 15:23:21 . 2015-11-06 15:23:21 195192 ----a-w- C:\Windows\system32\RtkCfg64.dll
2015-11-06 15:23:20 . 2015-11-06 15:23:20 2958904 ----a-w- C:\Windows\system32\RltkAPO64.dll
2015-11-06 15:22:39 . 2015-11-06 15:54:59 117824 ----a-w- C:\Windows\system32\SETA412.tmp
2015-11-06 15:20:27 . 2015-11-06 15:20:27 4096 ----a-w- C:\Windows\SysWow64\detoured.dll
2015-11-06 15:20:27 . 2015-11-06 15:20:27 4096 ----a-w- C:\Windows\system32\detoured.dll
2015-11-06 15:20:11 . 2015-11-06 15:20:11 51200 ----a-w- C:\Windows\system32\ATIODCLI.exe
2015-11-06 15:20:11 . 2015-11-06 15:20:11 332800 ----a-w- C:\Windows\system32\ATIODE.exe
2015-11-06 15:19:59 . 2015-11-06 15:19:58 1061902 ----a-w- C:\Windows\system32\amdocl_ld64.exe
2015-11-06 15:19:58 . 2015-11-06 15:19:58 995342 ----a-w- C:\Windows\SysWow64\amdocl_as32.exe
2015-11-06 15:19:58 . 2015-11-06 15:19:58 798734 ----a-w- C:\Windows\SysWow64\amdocl_ld32.exe
2015-11-06 15:19:58 . 2015-11-06 15:19:58 1187342 ----a-w- C:\Windows\system32\amdocl_as64.exe
2015-11-06 15:18:11 . 2015-11-06 15:18:11 11944 ----a-w- C:\Windows\system32\drivers\amdide64.sys
2015-11-06 15:17:52 . 2015-11-06 15:17:52 42496 ----a-w- C:\Windows\AddCat.exe
2015-11-06 15:17:52 . 2015-11-06 15:17:52 287744 ----a-w- C:\Windows\system32\UHSpld64.dll
2015-11-06 15:17:52 . 2015-11-06 15:17:52 2418944 ----a-w- C:\Windows\system32\UHSAPO64.dll
2015-11-06 15:17:52 . 2015-11-06 15:17:52 236544 ----a-w- C:\Windows\system32\UHScInst.dll
2015-11-06 15:17:52 . 2015-11-06 15:17:52 23552 ----a-w- C:\Windows\system32\drivers\UHSfiltv.sys
2015-11-06 15:17:52 . 2015-11-06 15:17:52 2025216 ----a-w- C:\Windows\SysWow64\UHSAPO32.dll
2015-11-06 15:17:52 . 2015-11-06 15:17:52 11264 ----a-w- C:\Windows\UHSDefE.exe
2015-11-06 15:17:41 . 2015-11-06 15:17:41 296960 ----a-w- C:\Windows\system32\drivers\xhcdrv.sys
2015-09-18 00:38:18 . 2015-09-18 00:38:18 96256 ----a-w- C:\Windows\system32\drivers\AtihdW76.sys
2015-09-18 00:37:44 . 2015-09-18 00:37:44 103424 ----a-w- C:\Windows\system32\DelayAPO.dll


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"="C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2004-04-17 10:41:30 196608]
"Bitdefender Wallet Agent"="C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe" [2015-06-12 15:24:34 790880]
"Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe" [2015-11-13 13:44:26 50137728]
"Advanced SystemCare 9"="C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" [2015-11-30 11:53:26 2010912]
"OscarEditor"="C:\Program Files (x86)\MOUSE Editor\MouseEditor.exe" [2015-12-16 13:43:35 3333632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"ISUSScheduler"="C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 04:07:18 69632]
"Sound Blaster Tactic3D Control Panel"="C:\Program Files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" [2014-07-03 16:11:28 2091008]
"IJNetworkScannerSelectorEX"="C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" [2013-02-19 14:38:58 453736]
"IObit Malware Fighter"="C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" [2015-11-12 15:08:18 5893920]
"Raptr"="C:\PROGRA~2\Raptr\raptrstub.exe" [2015-12-11 22:25:00 56080]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
forteManager.lnk - C:\Program Files (x86)\LG Soft India\forteManager\bin\Monitor.exe -startup [2015-11-6 1683456]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSimpleNetIDList"= 1 (0x1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 LiveUpdateSvc;LiveUpdate;C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe;C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [x]
R3 AndnetBus;LGE Mobile USB Composite Device;C:\Windows\system32\DRIVERS\lgandnetbus64.sys;C:\Windows\SYSNATIVE\DRIVERS\lgandnetbus64.sys [x]
R3 AndNetDiag;LGE AndroidNet USB Serial Port;C:\Windows\system32\DRIVERS\lgandnetdiag64.sys;C:\Windows\SYSNATIVE\DRIVERS\lgandnetdiag64.sys [x]
R3 ANDNetModem;LGE AndroidNet USB Modem;C:\Windows\system32\DRIVERS\lgandnetmodem64.sys;C:\Windows\SYSNATIVE\DRIVERS\lgandnetmodem64.sys [x]
R3 AppleChargerSrv;AppleChargerSrv;C:\Windows\system32\AppleChargerSrv.exe;C:\Windows\SYSNATIVE\AppleChargerSrv.exe [x]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys;C:\Windows\SYSNATIVE\drivers\AtihdW76.sys [x]
R3 awUSB;awUSB;C:\Windows\system32\DRIVERS\USBDrv_AMD64.sys;C:\Windows\SYSNATIVE\DRIVERS\USBDrv_AMD64.sys [x]
R3 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service;D:\Programlar\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe;D:\Programlar\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [x]
R3 BdDesktopParental;Bitdefender Desktop Parental Control;C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe;C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [x]
R3 bdfwfpf_pc;bdfwfpf_pc;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [x]
R3 BDSandBox;BDSandBox;C:\Windows\system32\drivers\bdsandbox.sys;C:\Windows\SYSNATIVE\drivers\bdsandbox.sys [x]
R3 BEService;BattlEye Service;C:\Program Files (x86)\Common Files\BattlEye\BEService.exe;C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 dmvsc;dmvsc;C:\Windows\system32\drivers\dmvsc.sys;C:\Windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 DrvAgent64;DrvAgent64;C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS;C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 GVTDrv64;GVTDrv64;C:\Windows\GVTDrv64.sys;C:\Windows\GVTDrv64.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 LGDDCDevice;LGDDCDevice;C:\Program Files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys;C:\Program Files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys [x]
R3 LGII2CDevice;LGII2CDevice;C:\Program Files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys;C:\Program Files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys [x]
R3 Origin Client Service;Origin Client Service;E:\Oyunlar\Origin\OriginClientService.exe;E:\Oyunlar\Origin\OriginClientService.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\system32\drivers\rdpvideominiport.sys;C:\Windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 se64a;EnTech softEngine;C:\Windows\system32\drivers\se64a.sys;C:\Windows\SYSNATIVE\drivers\se64a.sys [x]
R3 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe;C:\Program Files (x86)\Skype\Updater\Updater.exe [x]
R3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 Synth3dVsc;Synth3dVsc;C:\Windows\system32\drivers\synth3dvsc.sys;C:\Windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\system32\drivers\terminpt.sys;C:\Windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys;C:\Windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys;C:\Windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;tsusbhub [x]
R4 FileMonitor;FileMonitor;C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys;C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [x]
S0 amd_sata;amd_sata;C:\Windows\system32\DRIVERS\amd_sata.sys;C:\Windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;C:\Windows\system32\DRIVERS\amd_xata.sys;C:\Windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 amdide64;amdide64;C:\Windows\system32\DRIVERS\amdide64.sys;C:\Windows\SYSNATIVE\DRIVERS\amdide64.sys [x]
S0 avc3;avc3;C:\Windows\system32\DRIVERS\avc3.sys;C:\Windows\SYSNATIVE\DRIVERS\avc3.sys [x]
S0 gzflt;gzflt;C:\Windows\system32\DRIVERS\gzflt.sys;C:\Windows\SYSNATIVE\DRIVERS\gzflt.sys [x]
S0 SmartDefragDriver;SmartDefragDriver;C:\Windows\System32\Drivers\SmartDefragDriver.sys;C:\Windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x]
S0 sptd;sptd;C:\Windows\\SystemRoot\System32\Drivers\sptd.sys;C:\Windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 AppleCharger;AppleCharger;C:\Windows\system32\DRIVERS\AppleCharger.sys;C:\Windows\SYSNATIVE\DRIVERS\AppleCharger.sys [x]
S1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [x]
S1 bdfwfpf;bdfwfpf;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [x]
S1 BDVEDISK;BDVEDISK;C:\Windows\system32\DRIVERS\bdvedisk.sys;C:\Windows\SYSNATIVE\DRIVERS\bdvedisk.sys [x]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS;C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [x]
S2 AdvancedSystemCareService9;Advanced SystemCare Service 9;C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe;C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe;C:\Windows\SYSNATIVE\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe;C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 amdacpksd;ACP Kernel Service Driver;C:\Windows\system32\drivers\amdacpksd.sys;C:\Windows\SYSNATIVE\drivers\amdacpksd.sys [x]
S2 amdacpusrsvc;ACP User Service;C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe;C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [x]
S2 AODDriver4.3;AODDriver4.3;C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys;C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [x]
S2 Apple Mobile Device Service;Apple Mobile Device Service;C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe;C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [x]
S2 IMFservice;IMF Service;C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe;C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [x]
S2 SafeBox;SafeBox;C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe;C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [x]
S3 avchv;avchv Function Driver;C:\Windows\system32\DRIVERS\avchv.sys;C:\Windows\SYSNATIVE\DRIVERS\avchv.sys [x]
S3 avckf;avckf;C:\Windows\system32\DRIVERS\avckf.sys;C:\Windows\SYSNATIVE\DRIVERS\avckf.sys [x]
S3 etdrv;etdrv;C:\Windows\etdrv.sys;C:\Windows\etdrv.sys [x]
S3 RegFilter;RegFilter;C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys;C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys;C:\Windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]


[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-12-10 22:10:47 1000264 ----a-w- C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\Installer\chrmstp.exe

Contents of the 'Scheduled Tasks' folder

2015-12-16 C:\Windows\Tasks\Adobe Flash Player Updater.job
- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-06 19:10:58 . 2015-12-16 15:32:12]

2015-12-16 C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-06 15:50:58 . 2015-11-06 14:56:12]

2015-12-16 C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-06 15:50:58 . 2015-11-06 14:56:12]


--------- X64 Entries -----------


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
2015-09-21 08:49:36 2472224 ----a-w- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2015-11-04 12:01:02 775496 ----a-w- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2015-11-04 12:01:02 775496 ----a-w- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2015-11-04 12:01:02 775496 ----a-w- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox1]
@="{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}"
[HKEY_CLASSES_ROOT\CLSID\{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}]
2014-07-04 15:58:23 206352 ----a-w- C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxshell.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox2]
@="{342DAA0B-D796-460D-8566-901E08A1CCAD}"
[HKEY_CLASSES_ROOT\CLSID\{342DAA0B-D796-460D-8566-901E08A1CCAD}]
2014-07-04 15:58:23 206352 ----a-w- C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxshell.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox3]
@="{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}"
[HKEY_CLASSES_ROOT\CLSID\{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}]
2014-07-04 15:58:23 206352 ----a-w- C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxshell.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox4]
@="{33816773-98AE-4723-ADE0-EBE54C8B5A67}"
[HKEY_CLASSES_ROOT\CLSID\{33816773-98AE-4723-ADE0-EBE54C8B5A67}]
2014-07-04 15:58:23 206352 ----a-w- C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxshell.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" [2015-11-06 15:23:21 8712960]
"Bdagent"="C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe" [2015-06-12 15:39:22 1695744]
"AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 04:09:46 446392]
"Start WingMan Profiler"="C:\Program Files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 14:18:10 190536]
"StartCN"="C:\Program Files\AMD\CNext\CNext\cnext.exe" [2015-11-29 14:14:28 4866760]

------- Supplementary Scan -------

uLocal Page = C:\Windows\system32\blank.htm
uStart Page = about:blank
mStart Page = about:blank
mLocal Page = C:\Windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
Trusted Zone: hola.org
TCP: DhcpNameServer = 195.175.39.40 195.175.39.39 192.168.1.1
TCP: Interfaces\{62013A5C-A4F5-4201-B378-5EF618FA24F2}: NameServer = 8.8.8.8,8.8.4.4
FF - ProfilePath - C:\Users\Serhat\AppData\Roaming\Mozilla\Firefox\Profiles\nio6jao8.default\
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: content.notify.ontimer - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0


------- File Associations -------

inifile="%SystemRoot%\system32\NOTEPAD.EXE" %1
txtfile="%SystemRoot%\system32\NOTEPAD.EXE" %1

- - - - ORPHANS REMOVED - - - -

Wow6432Node-HKCU-Run-AdobeBridge - (no file)
ShellIconOverlayIdentifiers-{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} - (no file)



--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (LocalSystem)
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"=hex:51,66,7a,6c,4c,1d,38,12,df,c1,0b,
27,57,07,ba,54,e4,0e,43,d0,22,fb,89,5b
"{1DAC0C53-7D23-4AB3-856A-B04D98CD982A}"=hex:51,66,7a,6c,4c,1d,38,12,3d,0f,bf,
19,11,33,dd,0f,fa,7c,f3,0d,9d,93,dc,3e
"{759D9886-0C6F-4498-BAB6-4A5F47C6C72F}"=hex:51,66,7a,6c,4c,1d,38,12,e8,9b,8e,
71,5d,42,f6,01,c5,a0,09,1f,42,98,83,3b
"{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}"=hex:51,66,7a,6c,4c,1d,38,12,c3,d3,96,
33,cd,f1,98,02,c0,4d,e6,c7,c4,3c,ba,cd
"{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}"=hex:51,66,7a,6c,4c,1d,38,12,c0,08,7b,
68,6e,2b,53,0b,f0,d2,a5,e5,25,9d,9d,3c
"{AA58ED58-01DD-4D91-8333-CF10577473F7}"=hex:51,66,7a,6c,4c,1d,38,12,36,ee,4b,
ae,ef,4f,ff,08,fc,25,8c,50,52,2a,37,e3
"{21347690-EC41-4F9A-8887-1F4AEE672439}"=hex:51,66,7a,6c,4c,1d,38,12,fe,75,27,
25,73,a2,f4,0a,f7,91,5c,0a,eb,39,60,2d

[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:69,9c,87,eb,1b,2d,d1,01

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_20_0_0_228_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_20_0_0_228_ActiveX.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_20_0_0_228_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_20_0_0_228_ActiveX.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_20_0_0_228.ocx"
"ThreadingModel"="Apartment"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.20"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_20_0_0_228.ocx, 1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_20_0_0_228.ocx"
"ThreadingModel"="Apartment"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_20_0_0_228.ocx, 1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)

Completion time: 2015-12-16 18:48:27
ComboFix-quarantined-files.txt 2015-12-16 16:48:23
ComboFix2.txt 2015-11-13 21:27:01

Pre-Run: 66.116.845.568 bayt boş
Post-Run: 66.685.390.848 bayt boş

- - End Of File - - 8C9312538A19BB7A4185E9F85E736C93
A36C5E4F47E84449FF07ED3517B43A31


Combofix Quarantined:
 
2015-12-16 16:45:25 . 2015-12-16 16:45:25 97 ----a-w- C:\Qoobox\Quarantine\Registry_backups\Wow6432Node-HKCU-Run-AdobeBridge.reg.dat
2015-12-16 15:30:00 . 2015-12-16 15:30:20 3,836 ----a-w- C:\Qoobox\Quarantine\C\Windows\security\logs\scecomp.log.vir
2015-11-13 21:26:55 . 2015-11-13 21:26:55 512 ----a-w- C:\Qoobox\Quarantine\MBR_HardDisk0.mbr
2015-11-13 21:25:20 . 2015-12-16 16:46:38 244 ----a-w- C:\Qoobox\Quarantine\Registry_backups\ShellIconOverlayIdentifiers-{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}.reg.dat
2015-11-13 21:08:10 . 2015-12-16 16:30:06 4,256 ----a-w- C:\Qoobox\Quarantine\Registry_backups\tcpip.reg
2015-11-13 21:04:38 . 2015-12-16 16:26:13 102 ----a-w- C:\Qoobox\Quarantine\catchme.log
2015-11-06 21:28:42 . 2015-11-06 21:28:42 591,793 ----a-w- C:\Qoobox\Quarantine\C\ProgramData\1446844971.bdinstall.bin.vir


Combofix2.txt
ComboFix 15-11-09.01 - Serhat 13.11.2015  23:05:47.1.8 - x64 
Microsoft Windows 7 Ultimate 6.1.7601.1.1254.90.1033.18.8159.5238 [GMT 2:00]
Running from: d:\¦ndirilen klas÷r³\ComboFix.exe
AV: Bitdefender Antivirus *Disabled/Updated* {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
FW: Bitdefender Firewall *Disabled* {A23392FD-84B9-F933-2C71-81E751F6EF46}
SP: Bitdefender Antispyware *Disabled/Updated* {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\1446844971.bdinstall.bin
.
.
((((((((((((((((((((((((( Files Created from 2015-10-13 to 2015-11-13 )))))))))))))))))))))))))))))))
.
.
2015-11-13 21:13 . 2015-11-13 21:13 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-11-13 11:34 . 2015-11-13 11:34 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2015-11-13 10:00 . 2015-11-13 10:00 -------- d-----w- c:\program files (x86)\HD Tune Pro
2015-11-10 17:24 . 2015-11-10 17:24 -------- d-----w- c:\programdata\Xilisoft
2015-11-07 19:05 . 2015-11-07 19:05 -------- d-----w- c:\programdata\Sony
2015-11-07 19:05 . 2015-11-07 19:05 -------- d-----w- c:\program files\Sony
2015-11-07 19:05 . 2015-11-07 19:05 -------- d-----w- c:\program files (x86)\Sony
2015-11-07 16:12 . 2015-11-07 16:12 -------- d-----w- c:\program files\7-Zip
2015-11-07 16:04 . 2015-11-07 16:21 -------- d-----w- c:\programdata\CanonIJPLM
2015-11-07 15:51 . 2015-11-07 15:51 -------- d-----w- c:\programdata\Canon IJ Network Tool
2015-11-07 15:51 . 2013-02-04 13:10 321536 ----a-w- c:\windows\SysWow64\CNC_BVL.dll
2015-11-07 15:51 . 2008-08-25 16:02 15872 ----a-w- c:\windows\SysWow64\CNHMCA.dll
2015-11-07 15:51 . 2015-11-07 15:51 -------- d-----w- c:\windows\system32\STRING
2015-11-07 15:51 . 2013-01-24 07:24 39424 ----a-w- c:\windows\system32\CNMN6UI.DLL
2015-11-07 15:51 . 2013-01-24 07:24 359936 ----a-w- c:\windows\system32\CNMN6PPM.DLL
2015-11-07 15:51 . 2013-01-24 07:23 366592 ----a-w- c:\windows\SysWow64\CNMNPPM.DLL
2015-11-07 15:41 . 2015-11-07 15:41 -------- d-----w- c:\programdata\CanonIJWSpt
2015-11-07 15:37 . 2015-11-07 15:39 -------- d-----w- c:\program files\Canon
2015-11-07 15:36 . 2015-11-07 15:36 -------- d--h--w- c:\programdata\CanonBJ
2015-11-07 15:36 . 2013-04-04 03:00 30208 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPDBV.DLL
2015-11-07 15:36 . 2013-04-04 03:00 101888 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNMPPBV.DLL
2015-11-07 15:31 . 2013-04-04 03:00 391168 ----a-w- c:\windows\system32\CNMLMBV.DLL
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\tr-TR
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\SysWow64\XPSViewer
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\SysWow64\wbem\tr-TR
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\SysWow64\tr
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\SysWow64\drivers\tr-TR
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\system32\drivers\tr-TR
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\system32\wbem\tr-TR
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\system32\tr
2015-11-07 15:11 . 2015-11-07 15:11 -------- d-----w- c:\windows\system32\drivers\UMDF\tr-TR
2015-11-07 15:09 . 2009-07-13 16:48 3584 ----a-w- c:\windows\system32\Spool\prtprocs\x64\tr-TR\LXKPTPRC.DLL.mui
2015-11-07 15:05 . 2015-11-07 16:04 -------- d-----w- c:\program files (x86)\Canon
2015-11-07 10:09 . 2015-11-07 10:09 -------- d-----w- c:\program files\Common Files\AV
2015-11-07 10:09 . 2015-11-07 10:09 74000 ----a-w- c:\windows\system32\bdsandboxuiskin32.dll
2015-11-07 01:23 . 2015-11-06 15:09 -------- d-----w- c:\windows\Panther
2015-11-06 21:27 . 2015-11-07 16:13 -------- d-----w- c:\programdata\BDLogging
2015-11-06 21:27 . 2015-05-29 07:50 1730304 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2015-11-06 21:27 . 2012-04-17 12:34 76944 ----a-w- c:\windows\system32\drivers\bdvedisk.sys
2015-11-06 21:27 . 2015-01-09 09:59 82824 ----a-w- c:\windows\system32\drivers\bdsandbox.sys
2015-11-06 21:27 . 2015-01-09 09:44 74000 ----a-w- c:\windows\SysWow64\bdsandboxuiskin32.dll
2015-11-06 21:27 . 2014-12-15 16:04 93600 ----a-w- c:\windows\system32\drivers\BdfNdisf6.sys
2015-11-06 21:27 . 2007-04-11 09:11 511328 ----a-w- c:\windows\capicom.dll
2015-11-06 21:27 . 2015-05-29 07:50 271272 ----a-w- c:\windows\system32\drivers\avchv.sys
2015-11-06 21:27 . 2015-05-28 12:21 747120 ----a-w- c:\windows\system32\drivers\avckf.sys
2015-11-06 21:27 . 2015-05-28 11:37 1369288 ----a-w- c:\windows\system32\drivers\avc3.sys
2015-11-06 21:24 . 2013-08-13 11:38 3271472 ---ha-w- C:\bdr-bz01
2015-11-06 21:23 . 2015-11-06 21:28 -------- d-----w- c:\programdata\Bitdefender
2015-11-06 21:23 . 2015-11-06 21:24 -------- d-----w- c:\program files\Bitdefender
2015-11-06 21:23 . 2015-06-02 12:21 477272 ----a-w- c:\windows\system32\drivers\trufos.sys
2015-11-06 21:23 . 2015-04-29 11:32 160032 ----a-w- c:\windows\system32\drivers\gzflt.sys
2015-11-06 21:23 . 2015-01-09 09:44 84848 ----a-w- c:\windows\system32\BDSandBoxUISkin.dll
2015-11-06 21:23 . 2015-01-09 09:44 33360 ----a-w- c:\windows\system32\BDSandBoxUH.dll
2015-11-06 21:22 . 2015-11-06 21:23 -------- d-----w- c:\program files\Common Files\Bitdefender
2015-11-06 21:13 . 2015-11-06 21:13 -------- d-----w- c:\program files (x86)\LG Electronics
2015-11-06 21:10 . 2015-11-07 09:39 -------- d-----w- c:\programdata\Creative
2015-11-06 20:24 . 2015-11-06 20:24 -------- d-----w- c:\program files (x86)\Common Files\Creative
2015-11-06 20:24 . 2015-11-06 20:24 -------- d--h--w- c:\program files (x86)\Creative Installation Information
2015-11-06 19:26 . 2015-11-06 19:26 76152 ----a-w- c:\windows\system32\PnkBstrA.exe
2015-11-06 19:10 . 2015-11-06 19:10 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-11-06 19:10 . 2015-11-06 19:10 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-11-06 19:10 . 2015-11-06 19:10 -------- d-----w- c:\windows\system32\Macromed
2015-11-06 19:10 . 2015-11-06 19:10 -------- d-----w- c:\windows\SysWow64\Macromed
2015-11-06 18:52 . 2015-11-06 18:52 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2015-11-06 18:52 . 2015-11-06 18:52 -------- d-----w- c:\program files (x86)\Battlelog Web Plugins
2015-11-06 18:51 . 2015-11-13 18:54 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2015-11-06 18:51 . 2015-11-13 18:54 214392 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2015-11-06 18:51 . 2015-11-06 18:52 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2015-11-06 18:17 . 2015-11-06 18:55 -------- d-----w- c:\programdata\Electronic Arts
2015-11-06 18:11 . 2015-11-06 18:11 -------- d-----w- c:\programdata\InstallShield
2015-11-06 18:11 . 2008-10-10 14:01 26624 ----a-r- c:\windows\SysWow64\LGDispDrv.dll
2015-11-06 18:11 . 2008-10-10 14:01 147456 ----a-r- c:\windows\SysWow64\LgExport.dll
2015-11-06 18:11 . 2015-11-06 18:11 -------- d-----w- c:\program files (x86)\LG Soft India
2015-11-06 18:11 . 2004-04-16 09:24 61440 ----a-w- c:\windows\SysWow64\ISUSPM.cpl
2015-11-06 18:03 . 2015-11-07 17:53 25640 ----a-w- c:\windows\etdrv.sys
2015-11-06 16:04 . 2015-11-06 16:04 -------- d-----w- c:\users\Default\AppData\Local\Google
2015-11-06 15:53 . 2014-04-10 04:19 3959384 ----a-w- c:\windows\system32\MaxxAudioVnN64.dll
2015-11-06 15:53 . 2014-04-10 04:19 28343384 ----a-w- c:\windows\system32\MaxxAudioVnA64.dll
2015-11-06 15:53 . 2014-04-10 04:20 1934424 ----a-w- c:\windows\system32\MaxxAudioRealtek264.dll
2015-11-06 15:53 . 2014-04-10 04:19 900696 ----a-w- c:\windows\SysWow64\MaxxAudioAPOShell.dll
2015-11-06 15:53 . 2015-11-06 15:54 -------- d-----w- c:\program files (x86)\Realtek
2015-11-06 15:53 . 2015-11-06 20:24 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2015-11-06 15:53 . 2015-11-06 15:54 -------- d--h--w- c:\program files (x86)\Temp
2015-11-06 15:53 . 2014-05-19 02:47 2080472 ------r- c:\windows\RtlExUpd.dll
2015-11-06 15:53 . 2015-11-06 18:11 -------- d-----w- c:\program files (x86)\Common Files\InstallShield
2015-11-06 15:51 . 2015-11-06 15:51 -------- d-----w- c:\program files (x86)\Microsoft.NET
2015-11-06 15:51 . 2015-11-06 15:51 -------- d-----w- c:\program files\Google
2015-11-06 15:50 . 2015-11-13 16:17 -------- d-sh--w- c:\windows\Installer
2015-11-06 15:50 . 2015-11-06 15:51 -------- d-----w- c:\program files (x86)\Google
2015-11-06 15:47 . 2015-11-13 21:14 -------- d-----w- c:\programdata\Origin
2015-11-06 15:35 . 2015-11-06 15:35 -------- d-----w- c:\users\Serhat
2015-11-06 15:35 . 2015-11-06 15:35 -------- d-----w- C:\Recovery
2015-11-06 15:34 . 2015-11-06 15:34 -------- d-----w- c:\programdata\ATI
2015-11-06 15:34 . 2015-11-06 15:34 0 ----a-w- c:\windows\ativpsrm.bin
2015-11-06 15:34 . 2015-11-13 21:14 65536 ----a-w- c:\windows\system32\spu_storage.bin
2015-11-06 15:28 . 2015-11-06 15:30 -------- d-----w- c:\program files (x86)\Raptr
2015-11-06 15:28 . 2015-11-06 15:28 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2015-11-06 15:27 . 2015-11-11 20:22 -------- d-----w- c:\program files (x86)\Common Files\Steam
2015-11-06 15:24 . 2015-11-06 15:24 -------- d-----w- c:\windows\system32\DAX2
2015-11-06 15:22 . 2015-11-06 15:22 981744 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2015-11-06 15:22 . 2015-11-06 15:22 84072 ----a-w- c:\windows\system32\RtNicProp64.dll
2015-11-06 15:21 . 2015-11-06 15:21 -------- d-----w- C:\AMD
2015-11-06 15:21 . 2015-11-06 15:28 -------- d-----w- c:\program files\AMD
2015-11-06 15:21 . 2015-11-06 15:21 -------- d-----w- c:\program files\Common Files\ATI Technologies
2015-11-06 15:20 . 2015-11-06 15:20 4096 ----a-w- c:\windows\SysWow64\detoured.dll
2015-11-06 15:20 . 2015-11-06 15:20 4096 ----a-w- c:\windows\system32\detoured.dll
2015-11-06 15:20 . 2015-11-03 21:44 865792 ----a-w- c:\windows\system32\coinst_15.20.dll
2015-11-06 15:20 . 2015-11-06 15:20 51200 ----a-w- c:\windows\system32\ATIODCLI.exe
2015-11-06 15:20 . 2015-11-06 15:20 332800 ----a-w- c:\windows\system32\ATIODE.exe
2015-11-06 15:19 . 2015-11-06 15:19 1061902 ----a-w- c:\windows\system32\amdocl_ld64.exe
2015-11-06 15:19 . 2015-11-06 15:19 995342 ----a-w- c:\windows\SysWow64\amdocl_as32.exe
2015-11-06 15:19 . 2015-11-06 15:19 798734 ----a-w- c:\windows\SysWow64\amdocl_ld32.exe
2015-11-06 15:19 . 2015-11-06 15:19 1187342 ----a-w- c:\windows\system32\amdocl_as64.exe
2015-11-06 15:19 . 2015-11-06 15:19 113400 ----a-w- c:\windows\system32\DelayAPO.dll
2015-11-06 15:19 . 2015-11-06 15:19 104984 ----a-w- c:\windows\system32\drivers\AtihdW76.sys
2015-11-06 15:18 . 2015-11-06 15:18 11944 ----a-w- c:\windows\system32\drivers\amdide64.sys
2015-11-06 15:17 . 2015-11-06 15:17 42496 ----a-w- c:\windows\AddCat.exe
2015-11-06 15:17 . 2015-11-06 15:17 23552 ----a-w- c:\windows\system32\drivers\UHSfiltv.sys
2015-11-06 15:17 . 2015-11-06 15:17 11264 ----a-w- c:\windows\UHSDefE.exe
2015-11-06 15:17 . 2015-11-06 15:17 296960 ----a-w- c:\windows\system32\drivers\xhcdrv.sys
2015-11-06 15:04 . 2015-11-13 16:31 -------- d-----w- c:\programdata\ProductData
2015-11-06 15:03 . 2015-11-06 15:03 -------- d-----w- c:\programdata\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2015-11-06 15:03 . 2015-11-06 18:08 -------- d-----w- c:\programdata\IObit
2015-11-06 15:03 . 2015-11-06 15:03 -------- d-----w- c:\program files (x86)\Common Files\IObit
2015-11-06 15:03 . 2015-11-06 15:04 -------- d-----w- c:\program files (x86)\IObit
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 8"="c:\program files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" [2014-11-25 2426144]
"ISUSPM Startup"="c:\progra~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2004-04-17 196608]
"EADM"="e:\oyunlar\Origin\Origin.exe" [2015-11-11 3638256]
"Bitdefender Wallet Agent"="c:\program files\Bitdefender\Bitdefender 2015\bdwtxag.exe" [2015-06-12 790880]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2015-11-03 767176]
"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2015-10-01 56080]
"ISUSScheduler"="c:\program files (x86)\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 69632]
"Sound Blaster Tactic3D Control Panel"="c:\program files (x86)\Creative\Sound Blaster Tactic(3D)\Sound Blaster Tactic(3D) Control Panel\Tactic3D.exe" [2014-07-03 2091008]
"IJNetworkScannerSelectorEX"="c:\program files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" [2013-02-19 453736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"EasyTuneVI"="c:\program files (x86)\GIGABYTE\ET6\ETCall.exe" [2012-07-09 40960]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
forteManager.lnk - c:\program files (x86)\LG Soft India\forteManager\bin\Monitor.exe -startup [2015-11-6 1683456]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 LiveUpdateSvc;LiveUpdate;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe;c:\program files (x86)\IObit\LiveUpdate\LiveUpdate.exe [x]
R3 AndnetBus;LGE Mobile USB Composite Device;c:\windows\system32\DRIVERS\lgandnetbus64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetbus64.sys [x]
R3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\DRIVERS\lgandnetdiag64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetdiag64.sys [x]
R3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\DRIVERS\lgandnetmodem64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetmodem64.sys [x]
R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe;c:\windows\SYSNATIVE\AppleChargerSrv.exe [x]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
R3 avckf;avckf;c:\windows\system32\DRIVERS\avckf.sys;c:\windows\SYSNATIVE\DRIVERS\avckf.sys [x]
R3 awUSB;awUSB;c:\windows\system32\DRIVERS\USBDrv_AMD64.sys;c:\windows\SYSNATIVE\DRIVERS\USBDrv_AMD64.sys [x]
R3 BdDesktopParental;Bitdefender Desktop Parental Control;c:\program files\Bitdefender\Bitdefender 2015\bdparentalservice.exe;c:\program files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [x]
R3 bdfwfpf_pc;bdfwfpf_pc;c:\program files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys;c:\program files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [x]
R3 BDSandBox;BDSandBox;c:\windows\system32\drivers\bdsandbox.sys;c:\windows\SYSNATIVE\drivers\bdsandbox.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 etdrv;etdrv;c:\windows\etdrv.sys;c:\windows\etdrv.sys [x]
R3 GVTDrv64;GVTDrv64;c:\windows\GVTDrv64.sys;c:\windows\GVTDrv64.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 LGDDCDevice;LGDDCDevice;c:\program files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys;c:\program files (x86)\LG Soft India\forteManager\bin\I2CDriver.sys [x]
R3 LGII2CDevice;LGII2CDevice;c:\program files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys;c:\program files (x86)\LG Soft India\forteManager\bin\PII2CDriver.sys [x]
R3 Origin Client Service;Origin Client Service;e:\oyunlar\Origin\OriginClientService.exe;e:\oyunlar\Origin\OriginClientService.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys;c:\windows\SYSNATIVE\drivers\terminpt.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 tsusbhub;tsusbhub;tsusbhub [x]
S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S0 amdide64;amdide64;c:\windows\system32\DRIVERS\amdide64.sys;c:\windows\SYSNATIVE\DRIVERS\amdide64.sys [x]
S0 avc3;avc3;c:\windows\system32\DRIVERS\avc3.sys;c:\windows\SYSNATIVE\DRIVERS\avc3.sys [x]
S0 gzflt;gzflt;c:\windows\system32\DRIVERS\gzflt.sys;c:\windows\SYSNATIVE\DRIVERS\gzflt.sys [x]
S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys;c:\windows\SYSNATIVE\DRIVERS\AppleCharger.sys [x]
S1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [x]
S1 bdfwfpf;bdfwfpf;c:\program files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys;c:\program files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [x]
S1 BDVEDISK;BDVEDISK;c:\windows\system32\DRIVERS\bdvedisk.sys;c:\windows\SYSNATIVE\DRIVERS\bdvedisk.sys [x]
S2 AdvancedSystemCareService8;Advanced SystemCare Service 8;c:\program files (x86)\IObit\Advanced SystemCare 8\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\AMD\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 amdacpksd;ACP Kernel Service Driver;c:\windows\system32\drivers\amdacpksd.sys;c:\windows\SYSNATIVE\drivers\amdacpksd.sys [x]
S2 amdacpusrsvc;ACP User Service;c:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe;c:\program files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [x]
S2 AODDriver4.3;AODDriver4.3;c:\program files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys;c:\program files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [x]
S2 SafeBox;SafeBox;c:\program files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe;c:\program files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [x]
S3 avchv;avchv Function Driver;c:\windows\system32\DRIVERS\avchv.sys;c:\windows\SYSNATIVE\DRIVERS\avchv.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-11-11 21:02 997704 ----a-w- c:\program files (x86)\Google\Chrome\Application\46.0.2490.86\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2015-11-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-06 19:10]
.
2015-11-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-11-06 14:56]
.
2015-11-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-11-06 14:56]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
2015-11-06 15:04 2471744 ----a-w- c:\program files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2015-10-12 10:08 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2015-10-12 10:08 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2015-10-12 10:08 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox1]
@="{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}"
[HKEY_CLASSES_ROOT\CLSID\{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}]
2014-07-04 15:58 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox2]
@="{342DAA0B-D796-460D-8566-901E08A1CCAD}"
[HKEY_CLASSES_ROOT\CLSID\{342DAA0B-D796-460D-8566-901E08A1CCAD}]
2014-07-04 15:58 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox3]
@="{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}"
[HKEY_CLASSES_ROOT\CLSID\{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}]
2014-07-04 15:58 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox4]
@="{33816773-98AE-4723-ADE0-EBE54C8B5A67}"
[HKEY_CLASSES_ROOT\CLSID\{33816773-98AE-4723-ADE0-EBE54C8B5A67}]
2014-07-04 15:58 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2015-11-06 8712960]
"Bdagent"="c:\program files\Bitdefender\Bitdefender 2015\bdagent.exe" [2015-06-12 1695744]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = about:blank
mStart Page = about:blank
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 195.175.39.40 195.175.39.39 192.168.1.1
FF - ProfilePath - c:\users\Serhat\AppData\Roaming\Mozilla\Firefox\Profiles\nio6jao8.default\
.
.
------- File Associations -------
.
inifile="%SystemRoot%\system32\NOTEPAD.EXE" %1
txtfile="%SystemRoot%\system32\NOTEPAD.EXE" %1
.
- - - - ORPHANS REMOVED - - - -
.
ShellIconOverlayIdentifiers-{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Creative\Shared Files\CTAudSvc.exe
c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE
c:\program files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
c:\windows\system32\PnkBstrA.exe
c:\progra~2\Raptr\raptr.exe
c:\progra~2\Raptr\raptr_im.exe
c:\program files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
c:\program files (x86)\Windows Media Player\wmplayer.exe
.
**************************************************************************
.
Completion time: 2015-11-13 23:26:48 - machine was rebooted
ComboFix-quarantined-files.txt 2015-11-13 21:26
.
Pre-Run: 74.072.326.144 bayt boş
Post-Run: 75.031.707.648 bayt boş
.
- - End Of File - - 170DE13A249630F0D6D9F8AB7C135E37
A36C5E4F47E84449FF07ED3517B43A31


< Resime gitmek için tıklayın >
< Resime gitmek için tıklayın >


http://forum.donanimhaber.com/m_56183364/tm.htm Birnevi şu arkadaş gibi bir problemim var fakat sorun donanımda değil arkadaşlar. Ram-Ekran Kartı-Anakart-Cpu ve ısınma problemi değil. Şu anda tekrar combofix deneyeceğim.

Yardımcı olacak arkadaşlara şimdiden teşekkürler.[code][/code]





< Bu mesaj bu kişi tarafından değiştirildi Skyr3x -- 16 Aralık 2015; 18:59:23 >

R
8 yıl
Yüzbaşı

S
8 yıl
Teğmen
Konu Sahibi

quote:

Orijinalden alıntı: RyDeR

Temizinden At bir format

Problemin format atmak ile çözülebileceğini biliyorum fakat bir o kadarda tekrar download edilecek/yüklenecek oyunlar ve programlar var ki. Özellikle de Origin'in Steam gibi yedek alma ya da kurulu oyunu direkt olarak görme gibi bir potansiyeli olmadığı için tekrar özellikle Originle uğraşıp oyunları download etmeden göstermeye uğraşmak istemiyorum açıkçası :)



DH Mobil uygulaması ile devam edin. Mobil tarayıcınız ile mümkün olanların yanı sıra, birçok yeni ve faydalı özelliğe erişin. Gizle ve güncelleme çıkana kadar tekrar gösterme.