1543056134722.png


Sisteminizde yaşadığınız performans düşüşü, kilitlenme, zararlı etkisi, uygulama hatalarından kaynaklanan sorunsalları analiz etmek ve performans iyileştirmesi, zararlı etkisini inaktif etmek için bize HijackThis yazılımı ile yaptığınız tarama Logunu burada paylaşmanız gerekmektedir.



Kullanımı:

1)
Bir geliştirici tarafından yeni özellikler kazandırılan güncel sürümünü buradan indirip, arşiv dosyasından masaüstüne uygulamayı çıkartın.

Alternatif: Download HiJackThis Fork - MajorGeeks

Eski Sürüm: HiJackThis | Free software downloads at SourceForge.net

2) Bilgisayarınızı yeniden başlatın 3 dk işlem yapmadan bekleyin.

3) HijackThis yazılımına sağ tıklayıp yönetici olarak çalıştırın (XP için geçerli değil).

1543056459730.png


4) Açılan arayüzde, "Do a system scan and save a log file" butonuna tıklayın.

1543053000396.png


5) Otomatik olarak Hijackthis taraması başlayacak, taramanın tamamlanması sürece fare ve klavyeyi kullanmayın.
1543053111358.png


6) Tarama tamamlandığında HijackThis raporunu içeren bir Log dosyası karşınıza gelecektir.

1543053449185.png



*7) Log dosyasını incelememiz için buraya cevaplama bölümünden eklemeniz gerekmektedir.

1543053710016.png

Kod'a tıklayın.

1543053809056.png


Log'da yazanları mavi bölmenin içine yapıştırıp "Devam Et" butonuna basın.

Uyarı: Sitede kod eklemede sorun yaşarsanız kod paylaşımlarını altta verilen sitelerden birine yapıştırıp linki paylaşmanız gerekmektedir. Bu durumda *7. seçeneği şu anlık kullanmayın.

Paste ofCode

8) Ayrıca sisteminizde var olan sorunu detaylıca (Performans düşüşü, Malware varlığı şüphesi vb.) belirterek konuyu cevaplayın.
(Bunu yapmayana cevap verilmeyecektir)

Fixleme:

Konuda şahsım tarafından veya uzman kişilerden geri dönüş yapıldığında Hijackthis uygulama arayüzünden söylediğimiz satırların başlarına tik işareti koyun. Ardından "Fix checked" butonuna basın.
1543054420492.png
 
Son düzenleme:

Merhaba, bilgisayar açılışta paylaştığım ekran görüntüsündeki hatayı veriyor. Linkte hijackthis raporunu paylaştım. Sorunları inceleyebilirseniz sevinirim.
 

Dosya Ekleri

  • Ekran görüntüsü 2025-05-10 110000.png
    Ekran görüntüsü 2025-05-10 110000.png
    94,9 KB · Görüntüleme: 35
Merhaba, bilgisayar açılışta paylaştığım ekran görüntüsündeki hatayı veriyor. Linkte HijackThis raporunu paylaştım. Sorunları inceleyebilirseniz sevinirim.
Rapor linki sorunlu.

Resimden Miner zararlısı girdiğini varsayıyorum sadece. MBAM ile temizleyebilirsiniz. Taratmadıysanız taratın sonra raporu paylaşın tekrar devam ederse.
 
Rapor linki sorunlu.

Resimden Miner zararlısı girdiğini varsayıyorum sadece. MBAM ile temizleyebilirsiniz. Taratmadıysanız taratın sonra raporu paylaşın tekrar devam ederse.

Evet 1 hafta sonra siliyormuş logu site. Tekrar deniyorum. :) Paste ofCode

MBAM yüklü. Bu Crypto klasörü gerekli bir klasörmüş sanırım? Hatadan sıkıldım, vbs dosyasını bulup sildim ama iyi mi yaptım bilmiyorum. Hata gitti. Başka soeun var mı? Teşekkürler.
 
Kod:
Logfile of HiJackThis+ build 2025-01-16 Beta v.3.4.0.17

Platform: x64 Windows 11 (Home), 10.0.26100.4061 (ReleaseId: 2009, 24H2), Service Pack: 0
Time: 29.05.2025 - 12:55 (UTC+03:00)
Language: OS: Turkish (0x41F). Display: Turkish (0x41F). Non-Unicode: Turkish (0x41F)
Memory: 10,84 GiB Free / 16. Loading RAM (31 %), CPU (8 %)
Disk C: 123,83 GiB Free / 232 (SSD, GPT)
Elevated: Yes.
Ran by: ibrahim42 (group: Administrators; type: Microsoft) on IBRAHIM, FirstRun: yes.

Internet Explorer: 11.0.26100.1882
Default: "C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe" --single-argument %1 (Brave)

Boot mode: Normal (Secure Boot: On) (Code Integrity: On)

Running processes:
Number | Path.
 1 C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
 6 C:\Program Files (x86)\Microsoft\EdgeWebView\Application\136.0.3240.92\msedgewebview2.exe
 1 C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
 4 C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe
 1 C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
 1 C:\Program Files\AMD\CNext\CNext\amdow.exe
 1 C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
 1 C:\Program Files\AMD\CNext\CNext\cncmd.exe
 1 C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
 1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
 1 C:\Program Files\LGHUB\lghub_agent.exe
 1 C:\Program Files\LGHUB\lghub_updater.exe
 1 C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
 1 C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
 1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
 1 C:\Program Files\Norton\Suite\afwServ.exe
 1 C:\Program Files\Norton\Suite\aswEngSrv.exe
 1 C:\Program Files\Norton\Suite\aswidsagent.exe
 1 C:\Program Files\Norton\Suite\AvDump.exe
 1 C:\Program Files\Norton\Suite\nllToolsSvc.exe
 1 C:\Program Files\Norton\Suite\NortonSvc.exe
 1 C:\Program Files\Norton\Suite\NortonUI.exe
 1 C:\Program Files\Norton\Suite\wsc_proxy.exe
 1 C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe
 1 C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\gamingservices.exe
 1 C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
 1 C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
 1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.25042.85.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
 1 C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
 1 C:\SCP-DS-Driver-Package-1.2.0.160\ScpServer\bin\ScpService.exe
 1 C:\TrafficMonitor_V1.85.1_x64\TrafficMonitor\TrafficMonitor.exe
 6 C:\Users\ibrahim42\AppData\Local\Discord\app-1.0.9192\Discord.exe
 1 C:\Users\ibrahim42\Desktop\HiJackThis\HiJackThis.exe
 1 C:\Windows\explorer.exe
 1 C:\Windows\servicing\TrustedInstaller.exe
 1 C:\Windows\System32\AggregatorHost.exe
 1 C:\Windows\System32\AudioDeviceService.exe
 1 C:\Windows\System32\audiodg.exe
 9 C:\Windows\System32\backgroundTaskHost.exe
 1 C:\Windows\System32\cmd.exe
 3 C:\Windows\System32\conhost.exe
 2 C:\Windows\System32\csrss.exe
 1 C:\Windows\System32\ctfmon.exe
 1 C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
 1 C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
 1 C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
 1 C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_2c6939fa3ca49312\RtkAudUService64.exe
 1 C:\Windows\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atieclxx.exe
 1 C:\Windows\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atiesrxx.exe
 1 C:\Windows\System32\dwm.exe
 2 C:\Windows\System32\fontdrvhost.exe
 1 C:\Windows\System32\LsaIso.exe
 1 C:\Windows\System32\lsass.exe
 1 C:\Windows\System32\NgcIso.exe
 6 C:\Windows\System32\RuntimeBroker.exe
 1 C:\Windows\System32\SearchIndexer.exe
 1 C:\Windows\System32\SecurityHealthService.exe
 1 C:\Windows\System32\SecurityHealthSystray.exe
 1 C:\Windows\System32\services.exe
 1 C:\Windows\System32\ShellHost.exe
 1 C:\Windows\System32\sihost.exe
 1 C:\Windows\System32\smartscreen.exe
 1 C:\Windows\System32\smss.exe
 1 C:\Windows\System32\spoolsv.exe
 76 C:\Windows\System32\svchost.exe
 2 C:\Windows\System32\taskhostw.exe
 2 C:\Windows\System32\wbem\unsecapp.exe
 2 C:\Windows\System32\wbem\WmiPrvSE.exe
 1 C:\Windows\System32\wininit.exe
 1 C:\Windows\System32\winlogon.exe
 1 C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
 1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
 1 C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
 1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
 1 C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
 1 C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.26100.4060_none_a55287a7772b57c2\TiWorker.exe
 1 F:\TxGameAssistant\AppMarket\AppMarket.exe
 3 F:\TxGameAssistant\AppMarket\cef_frame_render.exe
 1 F:\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe
 1 F:\TxGameAssistant\AppMarket\PcyybAssistant.exe
 1 F:\TxGameAssistant\AppMarket\QMEmulatorService.exe
 1 F:\TxGameAssistant\AppMarket\wmpf_installer.exe

O1 - Hosts.ICS: 172.20.80.1 ibrahim.mshome.net # 2030 4 2 16 16 23 6 953.
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_251\bin\jp2ssv.dll (sign: 'Oracle America, Inc.')
O2 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_251\bin\ssv.dll (sign: 'Oracle America, Inc.')
O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_441\bin\jp2ssv.dll (sign: 'Oracle America, Inc.')
O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_441\bin\ssv.dll (sign: 'Oracle America, Inc.')
O4 - ActiveSetup: HKLM\..\{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}: [StubPath] = C:\Program Files\BraveSoftware\Brave-Browser\Application\136.1.78.102\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level (sign: 'Brave Software, Inc.')
O4 - HKCU\..\Run: [Discord] = C:\Users\ibrahim42\AppData\Local\Discord\Update.exe --processStart Discord.exe (sign: 'Discord Inc.')
O4 - HKCU\..\Run: [LGHUB] = C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe --minimized (sign: 'Logitech Inc')
O4 - HKCU\..\Run: [Steam] = F:\Steam\steam.exe -silent (sign: 'Valve Corp.')
O4 - HKCU\..\StartupApproved\Run: [AMDNoiseSuppression] = C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe (file missing) (2025/03/02)
O4 - HKCU\..\StartupApproved\Run: [EADM] = C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe -silent (2025/03/03) (sign: 'Electronic Arts, Inc.')
O4 - HKCU\..\StartupApproved\Run: [EpicGamesLauncher] = F:\Epic Games\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe -silent -launchcontext=boot (2025/03/06) (sign: 'Epic Games Inc.')
O4 - HKCU\..\StartupApproved\Run: [Free Download Manager] = C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe --hidden (2025/05/28) (not signed - Softdeluxe - E59780B4F65D0B00D637B88C2362119A0FA499EE)
O4 - HKCU\..\StartupApproved\Run: [MicrosoftEdgeAutoLaunch_F910AA0677ACBD9CC54F656E2635C116] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (2025/03/02) (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files\Microsoft OneDrive\OneDrive.exe /background (2025/03/02) (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [PlanetVPN] = C:\Program Files (x86)\PlanetVPN\PlanetVPN.exe (2025/05/29) (sign: 'FREE VPN PLANET S.R.L.')
O4 - HKCU\..\StartupApproved\Run: [RiotClient] = F:\Riot Games\Riot Client\RiotClientServices.exe --launch-background-mode (2025/05/28) (sign: 'Riot Games, Inc.')
O4 - HKLM\..\Run: [NortonUI.exe] = C:\Program Files\Norton\Suite\AvLaunch.exe /gui (sign: 'NortonLifeLock Inc.')
O4 - HKLM\..\StartupApproved\Run: [Riot Vanguard] = C:\Program Files\Riot Vanguard\vgtray.exe (2025/05/28) (sign: 'Riot Games, Inc.')
O4 - HKLM\..\StartupApproved\Run: [RtkAudUService] = C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_2c6939fa3ca49312\RtkAudUService64.exe -background (2025/03/03) (sign: 'Realtek Semiconductor Corp.')
O4 - HKLM\..\StartupApproved\Run32: [PWRISOVM.EXE] = C:\Program Files\PowerISO\PWRISOVM.EXE -startup (2025/03/24) (sign: 'Power Software Limited')
O4 - HKLM\..\StartupApproved\Run32: [Rampage Gaming Headset] = C:\Program Files (x86)\Rampage Gaming Headset\Rampage Gaming Headset.exe -boot (2025/05/28) (invalid sign - Solid State System - EFBA30679C6DA53381945959F052759605576614)
O4 - HKLM\..\StartupApproved\Run32: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (2025/03/09) (sign: 'Oracle America, Inc.')
O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local service') (sign: 'Microsoft')
O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Network service') (sign: 'Microsoft')
O4 - MountPoints2: HKCU\..\G\shell\AutoRun\command: (default) = G:\Setup.exe (file missing)
O7 - Policy: HKLM\Software\Microsoft\Windows Defender: [DisableAntiSpyware] = 1
O7 - Policy: HKLM\Software\Microsoft\Windows Defender: [DisableAntiVirus] = 1
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\E&xport to Microsoft Excel: (default) = C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE (file missing)
O17 - DHCP DNS 1: 192.168.1.1
O18 - HKLM\Software\Classes\Protocols\Filter\application/octet-stream: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-complus: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-msdownload: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb.16: [CLSID] = {42089D2D-912D-4018-9087-2B87803E93FB} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb-roaming.16: [CLSID] = {83C25742-A9F7-49FB-9138-434302C88D07} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf.16: [CLSID] = {5504BE45-A83B-4808-900A-3A5C36E7F77A} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf-roaming.16: [CLSID] = {42089D2D-912D-4018-9087-2B87803E93FB} - (no file)
O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:/Program Files/Norton/Suite/ashShell.dll (sign: 'NortonLifeLock Inc.')
O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Norton\Suite\ashShell.dll (sign: 'NortonLifeLock Inc.')
O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Norton\Suite\x86\ashShell.dll (sign: 'NortonLifeLock Inc.')
O22 - Tasks: (disabled) \Microsoft\Office\Office Apps Prewarm - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Office\Office Apps Prewarm Recurring - C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Servicing\OOBEFodSetup - C:\WINDOWS\system32\OOBEFodSetup.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\SharedPC\Account Cleanup - {7750564D-D61C-4557-8A9D-7DF56BDCFF96} - C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\WindowsAI\Recall\InitialConfiguration - {709FD5EF-7296-4154-BD3A-E9830FCFA60A} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\WINDOWS\system32\sc.exe start InventorySvc (sign: '')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun express (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Sustainability\SustainabilityTelemetry - {6EE41D75-D091-4FB7-9AD5-018760DD25D4} - C:\WINDOWS\system32\EcoScoreTask.dll (sign: 'Microsoft')
O22 - Tasks: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7156.0{AE8F768A-0219-4908-A971-FC047E1CDC5D} - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7156.0\updater.exe --wake --system (file missing)
O22 - Tasks: \Microsoft\Office\Office Background Push Maintenance - C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\opushutil.exe /pushregistration (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\AccountHealth\RecoverabilityToastTask - {B7F5B442-EBF8-46CD-9F0B-D8E45ED43492},-flow showtoast -checkup recoverability - C:\WINDOWS\system32\AccountHealth.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Diagnosis\UnexpectedCodepath - C:\WINDOWS\system32\UCConfigTask.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\WINDOWS\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver - {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemoteMouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteMouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemotePenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemotePenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemoteTouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteTouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Network Connectivity Status Indicator\NcsiIdentifyUserProxies - {706B965A-8308-4CD4-9900-87C2D79C121B} - C:\Windows\System32\netprofm.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\PerformanceTrace\RequestTrace - {9EFEB182-2EE3-4AF9-AFFA-521410D110D1} - C:\WINDOWS\system32\PerformanceTraceHandler.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\ReFsDedupSvc\Initialization - {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} - C:\WINDOWS\System32\ReFsDedupSvc.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Sustainability\PowerGridForecastTask - {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} - C:\WINDOWS\system32\PowerGridForecastTask.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\TPM\Tpm-PreAttestationHealthCheck - {5014B7C8-934E-4262-9816-887FA745A6C4},TpmPreAttestationHealthCheck - C:\WINDOWS\system32\TpmTasks.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - C:\WINDOWS\system32\UIEOrchestrator.exe /SendHeartbeat (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (file missing)
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UUS Failover Task - C:\WINDOWS\System32\MLEngineStub.exe HandleUusFailoverEvaluationSignalFromWnf (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\WindowsAI\Recall\PolicyConfiguration - {0BE6820D-B667-4CB6-931B-C153A77DA895} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: \Norton\Norton 360 Patcher - C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe /update:norton-suite /silent /only_patch (sign: 'NortonLifeLock Inc.')
O22 - Tasks: \Norton\Overseer - C:\Program Files\Common Files\Norton\Overseer\overseer.exe /from_scheduler:1 (sign: 'NortonLifeLock Inc.')
O22 - Tasks: \Norton\Suite Emergency Update - C:\Program Files\Norton\Suite\AvEmUpdate.exe (sign: 'NortonLifeLock Inc.')
O22 - Tasks: \TrafficMonitor\Autorun for ibrahim42 - C:\TrafficMonitor_V1.85.1_x64\TrafficMonitor\TrafficMonitor.exe (not signed - By ZhongYang - A70599DA65C98EB45C5C6B0B501A8A4ECA2A6973)
O22 - Tasks: AMDInstallLauncher - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe /InstallAUEP (sign: 'Advanced Micro Devices')
O22 - Tasks: AMDLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -AMDLinkUpdate (sign: 'Advanced Micro Devices')
O22 - Tasks: BraveSoftwareUpdateTaskMachineCore{D3583C12-0EAF-403D-9BE1-B7F686F16739} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /c (sign: 'Brave Software, Inc.')
O22 - Tasks: BraveSoftwareUpdateTaskMachineUA{90301695-F50D-42AC-A646-099501656D3E} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /ua /installsource scheduler (sign: 'Brave Software, Inc.')
O22 - Tasks: EOSv3 Scheduler onLogOn - C:\Users\ibrahim42\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (file missing)
O22 - Tasks: EOSv3 Scheduler onTime - C:\Users\ibrahim42\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (file missing)
O22 - Tasks: FreeDownloadManagerHelperService - C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe (not signed - Softdeluxe - 760691A51B651457E62586711008F9823B5AB125)
O22 - Tasks: ModifyLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -UpdateCurrentUser (sign: 'Advanced Micro Devices')
O22 - Tasks: npcapwatchdog - C:\Program Files\Npcap\CheckStatus.bat (not signed - no company - 40E20B9CDDE036E5078ABC2467E8783DFFFEC199)
O22 - Tasks: OneDrive Reporting Task-S-1-5-21-3484971039-3397963769-1461463754-1001 - C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft')
O22 - Tasks: OneDrive Reporting Task-S-1-5-21-3484971039-3397963769-1461463754-1002 - C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft')
O22 - Tasks: OneDrive Startup Task-S-1-5-21-3484971039-3397963769-1461463754-1001 - C:\Program Files\Microsoft OneDrive\25.080.0427.0003\OneDriveLauncher.exe /startInstances (sign: 'Microsoft')
O22 - Tasks: OneDrive Startup Task-S-1-5-21-3484971039-3397963769-1461463754-1002 - C:\Program Files\Microsoft OneDrive\25.080.0427.0003\OneDriveLauncher.exe /startInstances (sign: 'Microsoft')
O22 - Tasks: SamsungMagician - C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe --disable-gpu-sandbox /AUTOHIDE (sign: 'Samsung Electronics Co., Ltd.')
O22 - Tasks: StartCN - C:\Program Files\AMD\CNext\CNext\cncmd.exe startwithdelay (sign: 'Advanced Micro Devices')
O22 - Tasks: StartDVR - C:\Program Files\AMD\CNext\CNext\RSServCmd.exe (sign: 'Advanced Micro Devices')
O22 - Tasks: updater - C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpUpdater.exe (file missing)
O23 - Service R2: AMD Crash Defender Service - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe (sign: 'Microsoft')
O23 - Service R2: AMD External Events Utility - C:\WINDOWS\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atiesrxx.exe (sign: 'Advanced Micro Devices')
O23 - Service R2: AudioDeviceService - C:\WINDOWS\system32\AudioDeviceService.exe (sign: 'Solid State System Co., Ltd.')
O23 - Service R2: CMigrationService - C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe (sign: 'Samsung Electronics Co., Ltd.')
O23 - Service R2: Gaming Services - (GamingServices) - C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\GamingServices.exe (sign: 'Microsoft')
O23 - Service R2: Gaming Services - (GamingServicesNet) - C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe (sign: 'Microsoft')
O23 - Service R2: Intel(R) Dynamic Application Loader Host Interface Service - (jhi_service) - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (sign: 'Intel Corporation')
O23 - Service R2: Intel(R) Management Engine WMI Provider Registration - (WMIRegistrationService) - C:\WINDOWS\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (sign: 'Intel Corporation')
O23 - Service R2: LGHUB Updater Service - (LGHUBUpdaterService) - C:\Program Files\LGHUB\lghub_updater.exe --run-as-service (sign: 'Logitech Inc')
O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (sign: 'Malwarebytes Inc') (+safe mode)
O23 - Service R2: Norton Antivirus - C:\Program Files\Norton\Suite\NortonSvc.exe /runassvc (sign: 'NortonLifeLock Inc.')
O23 - Service R2: Norton Firewall Service - (Norton Firewall) - C:\Program Files\Norton\Suite\afwServ.exe (sign: 'NortonLifeLock Inc.')
O23 - Service R2: Norton Tools - C:\Program Files\Norton\Suite\nllToolsSvc.exe /runassvc (sign: 'NortonLifeLock Inc.')
O23 - Service R2: nortonAvDumper64 - C:\Program Files\Norton\Suite\AvDump.exe /runassvc (sign: 'NortonLifeLock Inc.')
O23 - Service R2: NortonWscReporter - C:\Program Files\Norton\Suite\wsc_proxy.exe /runassvc /rpcserver (sign: 'NortonLifeLock Inc.')
O23 - Service R2: QMEmulatorService - F:\TxGameAssistant\AppMarket\QMEmulatorService.exe (sign: 'Tencent Technology(Shenzhen) Company Limited')
O23 - Service R2: Realtek Audio Universal Service - (RtkAudioUniversalService) - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_2c6939fa3ca49312\RtkAudUService64.exe (sign: 'Realtek Semiconductor Corp.')
O23 - Service R2: SamsungMagicianSVC - C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe (sign: 'Samsung Electronics Co., Ltd.')
O23 - Service R2: SCP DS3 Service - (Ds3Service) - C:\SCP-DS-Driver-Package-1.2.0.160\ScpServer\bin\ScpService.exe (not signed - Scarlet.Crush Productions - 0C7C83206BB8249B23C9D68088F41B234A5DC4B1)
O23 - Service R3: nllbIDSAgent - C:\Program Files\Norton\Suite\aswidsagent.exe (sign: 'NortonLifeLock Inc.')
O23 - Service S2: AsusUpdateCheck - C:\WINDOWS\System32\AsusUpdateCheck.exe (sign: 'ASUSTeK COMPUTER INC.')
O23 - Service S2: Brave Güncelleme Hizmeti (brave) - (brave) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /svc (sign: 'Brave Software, Inc.')
O23 - Service S2: GlassWire Control Service - (GlassWire) - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe (file missing)
O23 - Service S2: Google Güncelleyici Dahili Hizmeti (GoogleUpdaterInternalService138.0.7156.0) - (GoogleUpdaterInternalService138.0.7156.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7156.0\updater.exe --system --windows-service --service=update-internal (file missing)
O23 - Service S2: Intel(R) Platform License Manager Service - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe (sign: 'Intel Corporation')
O23 - Service S2: RAV VPN Service - (rsVPNSvc) - C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe (file missing)
O23 - Service S2: Reason Security DNS Client Service - (rsDNSClientSvc) - C:\Program Files\ReasonLabs\DNS\rsDNSClientSvc.exe Files\ReasonLabs\DNS\rsDNSClientSvc.exe (file missing)
O23 - Service S2: Reason Security VPN Client Service - (rsVPNClientSvc) - C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe Files\ReasonLabs\VPN\rsVPNClientSvc.exe (file missing)
O23 - Service S2: Safer Web DNS Resolver - (rsDNSResolver) - C:\Program Files\ReasonLabs\DNS\rsDNSResolver.exe (file missing)
O23 - Service S2: Safer Web Service - (rsDNSSvc) - C:\Program Files\ReasonLabs\DNS\rsDNSSvc.exe (file missing)
O23 - Service S3: AppShell Elevation Service (AppShellElevationService) - (AppShellElevationService) - C:\Program Files\TikTok LIVE Studio\0.84.4\elevation_service.exe (sign: 'TikTok Pte. Ltd.')
O23 - Service S3: BattlEye Service - (BEService) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe (sign: 'BattlEye Innovations e.K.')
O23 - Service S3: Brave Elevation Service (BraveElevationService) - (BraveElevationService) - C:\Program Files\BraveSoftware\Brave-Browser\Application\136.1.78.102\elevation_service.exe (sign: 'Brave Software, Inc.')
O23 - Service S3: Brave Güncelleme Hizmeti (bravem) - (bravem) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /medsvc (sign: 'Brave Software, Inc.')
O23 - Service S3: EAAntiCheatService - C:\Program Files\EA\AC\eaanticheat.gameservice.exe (sign: 'Electronic Arts, Inc.')
O23 - Service S3: EABackgroundService - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (sign: 'Electronic Arts, Inc.')
O23 - Service S3: Epic Games Updater - (EpicGamesUpdater) - F:\Epic Games\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe (sign: 'Epic Games Inc.')
O23 - Service S3: FileSyncHelper - C:\Program Files\Microsoft OneDrive\25.080.0427.0003\FileSyncHelper.exe (sign: 'Microsoft')
O23 - Service S3: MBVpnTunnelService - C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe (sign: 'Malwarebytes Inc.')
O23 - Service S3: Microsoft Defender Çekirdek Hizmeti - (MDCoreSvc) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe (sign: 'Microsoft')
O23 - Service S3: OneDrive Updater Service - C:\Program Files\Microsoft OneDrive\25.080.0427.0003\OneDriveUpdaterService.exe (sign: 'Microsoft')
O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService (sign: 'Valve Corp.')
O23 - Service S3: updater - C:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpUpdater.exe /runservice (file missing)
O23 - Service S3: vgc - C:\Program Files\Riot Vanguard\vgc.exe (sign: 'Riot Games, Inc.')
O23 - Service S3: Zakynthos Service - (zksvc) - C:\Program Files\Common Files\PUBG\zksvc.exe (sign: 'KRAFTON, Inc.')
O23 - Driver R: PowerISO Virtual Drive - C:\WINDOWS\System32\Drivers\SCDEmu.SYS (sign: 'Power Software Limited')
O23 - Driver R0: AMD PCI Root Bus Lower Filter - (amdkmpfd) - C:\WINDOWS\System32\drivers\amdkmpfd.sys (+safe mode) (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R0: nllArDisk - C:\WINDOWS\system32\drivers\nllArDisk.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbidsh - C:\WINDOWS\system32\drivers\nllbidsh.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbuniv - C:\WINDOWS\system32\drivers\nllbuniv.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllRvrt - C:\WINDOWS\system32\drivers\nllRvrt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllVmm - C:\WINDOWS\system32\drivers\nllVmm.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: GlassWire Generic Driver - (gwdrv) - C:\WINDOWS\System32\drivers\gwdrv.sys (+safe mode) (sign: 'Microsoft' - Domotz Inc)
O23 - Driver R1: Malwarebytes Anti-Exploit - (ESProtectionDriver) - C:\WINDOWS\system32\drivers\mbae64.sys (sign: 'Microsoft' - Malwarebytes)
O23 - Driver R1: nllArPot - C:\WINDOWS\system32\drivers\nllArPot.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllbidsdriver - C:\WINDOWS\system32\drivers\nllbidsdriver.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllKbd - C:\WINDOWS\system32\drivers\nllKbd.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllMonFlt - C:\WINDOWS\system32\drivers\nllMonFlt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllNetHub - C:\WINDOWS\system32\drivers\nllNetHub.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllRdr - C:\WINDOWS\system32\drivers\nllRdr2.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSnx - C:\WINDOWS\system32\drivers\nllSnx.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSP - C:\WINDOWS\system32\drivers\nllSP.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: Nox Limited Service - (YSDrv) - C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys (sign: 'Microsoft' - Nox Limited Corporation)
O23 - Driver R1: Npcap Packet Driver (NPCAP) - (npcap) - C:\WINDOWS\system32\DRIVERS\npcap.sys (+safe mode) (sign: 'Microsoft' - Insecure.Com LLC.)
O23 - Driver R1: TBox Support Driver - (TBoxDrv) - C:\Program Files\AndroidTbox\TBoxDrv.sys (sign: 'Tencent Technology(Shenzhen) Company Limited')
O23 - Driver R2: aow_drv - F:\TxGameAssistant\UI\3.21.5341.80\aow_drv_x64_ev.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Driver R2: Ld9BoxSup - C:\Program Files\ldplayer9box\Ld9BoxSup.sys (sign: 'Shanghai Chang Zhi Network Technology Co,. Ltd.')
O23 - Driver R2: MBAMChameleon - (mbamchameleon) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys (sign: 'Microsoft' - Malwarebytes)
O23 - Driver R3: AMD Crash Defender Driver - (amdfendr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendr.sys (sign: 'Microsoft' - Advanced Micro Devices, Inc.)
O23 - Driver R3: AMD Crash Defender Manager Driver - (amdfendrmgr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys (sign: 'Microsoft' - Advanced Micro Devices, Inc.)
O23 - Driver R3: AMD Function Driver for HD Audio Service - (AtiHDAudioService) - C:\WINDOWS\System32\DriverStore\FileRepository\atihdwt6.inf_amd64_5bf3de4243c61001\AtihdWT6.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Link Controller Emulation - (AMDXE) - C:\WINDOWS\System32\drivers\amdxe.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMDSAFD - C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_960126269e89c62e\amdsafd.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: amdwddmg - C:\WINDOWS\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\amdkmdag.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: Intel(R) Management Engine Interface - (MEIx64) - C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_6b6e8cc42a3d1f09\x64\TeeDriverW10x64.sys (sign: 'Intel Corporation')
O23 - Driver R3: Intel(R) Serial IO GPIO Driver v2 - (iaLPSS2_GPIO2_ADL) - C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_6f8ae740d22247ce\iaLPSS2_GPIO2_ADL.sys (sign: 'Intel Corporation')
O23 - Driver R3: Intel(R) Serial IO I2C Driver v2 - (iaLPSS2_I2C_ADL) - C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_563fbcd35feb69a6\iaLPSS2_I2C_ADL.sys (+safe mode) (sign: 'Intel Corporation')
O23 - Driver R3: Logitech G HUB Translation Layer Driver - (logi_joy_xlcore) - C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys (sign: 'Logitech Inc')
O23 - Driver R3: Logitech G HUB Virtual Bus Enumerator Driver - (logi_joy_bus_enum) - C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys (sign: 'Logitech Inc')
O23 - Driver R3: Logitech G HUB Virtual HID Device Driver - (logi_joy_vir_hid) - C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys (sign: 'Logitech Inc')
O23 - Driver R3: MBAMFarflt - C:\WINDOWS\System32\Drivers\farflt11.sys (sign: 'Malwarebytes Inc')
O23 - Driver R3: MBAMProtection - C:\WINDOWS\System32\Drivers\mbam.sys (sign: 'Microsoft' - Malwarebytes)
O23 - Driver R3: MBAMSwissArmy - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys (sign: 'Microsoft' - Malwarebytes)
O23 - Driver R3: MBAMWebProtection - C:\WINDOWS\system32\DRIVERS\mwac.sys (sign: 'Malwarebytes Inc')
O23 - Driver R3: nllStm - C:\WINDOWS\system32\drivers\nllStm.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R3: Realtek NetAdapter Driver - (rt68cx21) - C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_2708e69601f40462\rt68cx21x64.sys (sign: 'Realtek Semiconductor Corp.')
O23 - Driver R3: Scp Virtual Bus Driver - (ScpVBus) - C:\WINDOWS\System32\drivers\ScpVBus.sys (sign: 'Bruce James')
O23 - Driver R3: Service for Realtek HD Audio (WDM) - (IntcAzAudAddService) - C:\WINDOWS\system32\drivers\RTKVHD64.sys (sign: 'Realtek Semiconductor Corp.')
O23 - Driver R3: TAP-Windows Adapter V9 - (tap0901) - C:\WINDOWS\System32\drivers\tap0901.sys (+safe mode) (not signed - The OpenVPN Project - DAEBE266073616E5FC931C319470FCF42A06867A)
O23 - Driver R3: UAExt - C:\WINDOWS\System32\DRIVERS\UAExt.sys (sign: 'Solid State System Co., Ltd.')
O23 - Driver S3: "Microsoft Bluetooth A2dp driver" ; {Placeholder="Microsoft Bluetooth"} - (BthA2dp) - C:\WINDOWS\System32\drivers\BthA2dp.sys (not signed - Microsoft Corporation - CF741BA3AF83110B20AB03AB65A668E2E2D15D6F)
O23 - Driver S3: "Microsoft Bluetooth Hands-Free Profile driver" ; {Placeholder="Microsoft Bluetooth"} - (BthHFEnum) - C:\WINDOWS\System32\drivers\bthhfenum.sys (not signed - Microsoft Corporation - E8EE10F8D8904DA747E71CADF9A414196896F488)
O23 - Driver S3: EAAntiCheat - C:\WINDOWS\system32\drivers\eaanticheat.sys (file missing)
O23 - Driver S3: Intel(R) Serial IO GPIO Controller Driver - (iaLPSSi_GPIO) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys (sign: 'Intel Corporation - Client Components Group')
O23 - Driver S3: Revoflt - C:\WINDOWS\system32\DRIVERS\revoflt.sys (sign: 'Microsoft' - VS Revo Group)
O23 - Driver S3: rsDwf - C:\WINDOWS\system32\DRIVERS\rsDwf.sys (sign: 'Reason CyberSecurity Inc.')
O23 - Driver S3: SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) - (ssudmdm) - C:\WINDOWS\system32\DRIVERS\ssudmdm.sys (sign: 'Samsung Electronics CO., LTD.')
O23 - Driver S3: SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) - (dg_ssudbus) - C:\WINDOWS\system32\DRIVERS\ssudbus2.sys (+safe mode) (sign: 'Samsung Electronics CO., LTD.')
O23 - Driver S3: UniFairy_x64 - C:\WINDOWS\system32\drivers\UniFairy_x64.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Driver S3: unirsdt - C:\WINDOWS\system32\drivers\unirsdt.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'gwdrv'.
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'nllNetHub'.
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'nllStm'.
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'npcap'.
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'tap0901'.
O26 - Office Addin: HKLM\..\MicrosoftDataStreamerforExcel - (regfile) -> C:\Program Files (x86)\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\MicrosoftDataStreamerforExcel.vsto (not signed - no company - A9DA61511D2073E5B80ED742394B35C61D96DE3A)
O26-32 - Office Addin: HKLM\..\UCAddin.UCAddin.1 - (regfile) -> (no file)

--
End of file - Time spent: 19,7 sec. - 77430 bytes, CRC32: FFFFFFFF. Sign: 啥羚

Malware ve trojan olma olasılığı var mıdır? Steam bakiyemi aldılar ve Discord'tan free gift mesajı atılmış.
 
Evet 1 hafta sonra siliyormuş logu site. Tekrar deniyorum. :) Paste ofCode
Maalesef sorunlu kod olarak sosyale paylaşın çıktıyı.

Runtime Broker'ın yüksek CPU kullanımına bağlı olarak bu konuyu keşfettim. Biraz içime kurt düştü ve testi ben de yapmak istedim. HijackThis log buyurun: HiJackThis.log
hosts dosyasını sıfırlayın.

Çok fazla RGB ve üretici yazılımı yüklü temiz önyükleme yapın. FDM kaldırıp farklı bir İndirme aracı kullanın.

Bunları fixleyin:
Kod:
O4 - ActiveSetup: HKLM\..\{8A69D345-D564-463c-AFF1-A69D9E530F96}: [StubPath] = C:\Program Files\Google\Chrome\Application\136.0.7103.114\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level --channel=stable (sign: 'Google LLC')
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_C0BEC9F2F163305137F2B9EA772ACA16] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files\Microsoft OneDrive\OneDrive.exe /background (2025/01/26) (sign: 'Microsoft')
O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] = C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe (file missing)
O4 - HKLM\..\StartupApproved\Run: [PDF24] = C:\Program Files\PDF24\pdf24.exe (2024/07/08) (sign: 'Geek Software GmbH')
O23 - Driver R1: dokan1 - C:\WINDOWS\system32\DRIVERS\dokan1.sys (+safe mode) (sign: 'Microsoft' - Dokan Project)
O26 - Office Addin: HKLM\..\MicrosoftDataStreamerforExcel - (Microsoft Data Streamer for Excel) -> C:\Program Files\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\MicrosoftDataStreamerforExcel.vsto (not signed - no company - A9DA61511D2073E5B80ED742394B35C61D96DE3A)

Malware ve trojan olma olasılığı var mıdır? Steam bakiyemi aldılar ve Discord'tan free gift mesajı atılmış.
FDM kaldırın, Gameloop doğru yerden indirdiğinize emin olun.
F:\TxGameAssistant\AppMarket\PcyybAssistant.exe
Bu dosyayı VT de taratıp zararlı tespit edilirse paylaşın.

Reason dahil birçok güvenlik aracı ve yazılımı yüklenmiş bu sistemi çöp eder. Bu yüzden format atmanız yararlı olacaktır. Bilinçsizce bu tür yazılımları yüklemeyin.

Bunları fixleyin:
Kod:
O4 - HKCU\..\StartupApproved\Run: [Free Download Manager] = C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe --hidden (2025/05/28) (not signed - Softdeluxe - E59780B4F65D0B00D637B88C2362119A0FA499EE)
O4 - HKCU\..\StartupApproved\Run: [MicrosoftEdgeAutoLaunch_F910AA0677ACBD9CC54F656E2635C116] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (2025/03/02) (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files\Microsoft OneDrive\OneDrive.exe /background (2025/03/02) (sign: 'Microsoft')
O23 - Driver R0: nllArDisk - C:\WINDOWS\system32\drivers\nllArDisk.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbidsh - C:\WINDOWS\system32\drivers\nllbidsh.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbuniv - C:\WINDOWS\system32\drivers\nllbuniv.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllRvrt - C:\WINDOWS\system32\drivers\nllRvrt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllVmm - C:\WINDOWS\system32\drivers\nllVmm.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllArPot - C:\WINDOWS\system32\drivers\nllArPot.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllbidsdriver - C:\WINDOWS\system32\drivers\nllbidsdriver.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllKbd - C:\WINDOWS\system32\drivers\nllKbd.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllMonFlt - C:\WINDOWS\system32\drivers\nllMonFlt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllNetHub - C:\WINDOWS\system32\drivers\nllNetHub.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllRdr - C:\WINDOWS\system32\drivers\nllRdr2.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSnx - C:\WINDOWS\system32\drivers\nllSnx.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSP - C:\WINDOWS\system32\drivers\nllSP.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R3: nllStm - C:\WINDOWS\system32\drivers\nllStm.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
 
Son düzenleme:
Maalesef sorunlu kod olarak sosyale paylaşın çıktıyı.

Hosts dosyasını sıfırlayın.

Çok fazla RGB ve üretici yazılımı yüklü temiz önyükleme yapın. FDM kaldırıp farklı bir indirme aracı kullanın.

Bunları fixleyin:
Kod:
O4 - ActiveSetup: HKLM\..\{8A69D345-D564-463c-AFF1-A69D9E530F96}: [StubPath] = C:\Program Files\Google\Chrome\Application\136.0.7103.114\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level --channel=stable (sign: 'Google LLC')
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_C0BEC9F2F163305137F2B9EA772ACA16] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files\Microsoft OneDrive\OneDrive.exe /background (2025/01/26) (sign: 'Microsoft')
O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] = C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe (file missing)
O4 - HKLM\..\StartupApproved\Run: [PDF24] = C:\Program Files\PDF24\pdf24.exe (2024/07/08) (sign: 'Geek Software GmbH')
O23 - Driver R1: dokan1 - C:\WINDOWS\system32\DRIVERS\dokan1.sys (+safe mode) (sign: 'Microsoft' - Dokan Project)
O26 - Office Addin: HKLM\..\MicrosoftDataStreamerforExcel - (Microsoft Data Streamer for Excel) -> C:\Program Files\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\MicrosoftDataStreamerforExcel.vsto (not signed - no company - A9DA61511D2073E5B80ED742394B35C61D96DE3A)

FDM kaldırın, GameLoop doğru yerden indirdiğinize emin olun.
F:\TxGameAssistant\AppMarket\PcyybAssistant.exe
Bu dosyayı vt de taratıp zararlı tespit edilirse paylaşın.

Reason dahil birçok güvenlik aracı ve yazılımı yüklenmiş bu sistemi çöp eder. Bu yüzden format atmanız yararlı olacaktır. Bilinçsizce bu tür yazılımları yüklemeyin.

Bunları fixleyin:
Kod:
O4 - HKCU\..\StartupApproved\Run: [Free Download Manager] = C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe --hidden (2025/05/28) (not signed - Softdeluxe - E59780B4F65D0B00D637B88C2362119A0FA499EE)
O4 - HKCU\..\StartupApproved\Run: [MicrosoftEdgeAutoLaunch_F910AA0677ACBD9CC54F656E2635C116] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (2025/03/02) (sign: 'Microsoft')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Program Files\Microsoft OneDrive\OneDrive.exe /background (2025/03/02) (sign: 'Microsoft')
O23 - Driver R0: nllArDisk - C:\WINDOWS\system32\drivers\nllArDisk.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbidsh - C:\WINDOWS\system32\drivers\nllbidsh.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllbuniv - C:\WINDOWS\system32\drivers\nllbuniv.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllRvrt - C:\WINDOWS\system32\drivers\nllRvrt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R0: nllVmm - C:\WINDOWS\system32\drivers\nllVmm.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllArPot - C:\WINDOWS\system32\drivers\nllArPot.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllbidsdriver - C:\WINDOWS\system32\drivers\nllbidsdriver.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllKbd - C:\WINDOWS\system32\drivers\nllKbd.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllMonFlt - C:\WINDOWS\system32\drivers\nllMonFlt.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllNetHub - C:\WINDOWS\system32\drivers\nllNetHub.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllRdr - C:\WINDOWS\system32\drivers\nllRdr2.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSnx - C:\WINDOWS\system32\drivers\nllSnx.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R1: nllSP - C:\WINDOWS\system32\drivers\nllSP.sys (sign: 'Microsoft' - Gen Digital Inc.)
O23 - Driver R3: nllStm - C:\WINDOWS\system32\drivers\nllStm.sys (+safe mode) (sign: 'Microsoft' - Gen Digital Inc.)

Cevap çok geç gelince format atmıştım hocam güvenlik araçlarını bilerek yukledim bazi antivirüs programı her virüsü bulamıyor onlarda bir şey bulamayinca format atma gereği bulmustum.
 
Kod:
Boot mode: Normal (Secure Boot: On) (Code Integrity: On)

Running processes:
Number | Path
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
   1  C:\Program Files (x86)\Common Files\Steam\steamservice.exe
   2  C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe
   2  C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avp.exe
   1  C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avpui.exe
   7  C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
   1  C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
  12  C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.68\msedgewebview2.exe
   7  C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
   1  C:\Program Files (x86)\Steam\steam.exe
   1  C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
   1  C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
   1  C:\Program Files\AMD\CNext\CNext\cncmd.exe
   1  C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
   1  C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
  21  C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
   1  C:\Program Files\HitmanPro\hmpsched.exe
   1  C:\Program Files\Riot Vanguard\vgtray.exe
   1  C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
   1  C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MsMpEng.exe
   1  C:\Riot Games\Riot Client\RiotClientCrashHandler.exe
   1  C:\Riot Games\Riot Client\RiotClientServices.exe
   1  C:\Users\kadir\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\FileCoAuth.exe
   1  C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDrive.exe
   2  C:\Users\kadir\AppData\Local\Temp\Google9560_1104073090\bin\updater.exe
   2  C:\Users\kadir\Downloads\ChromeSetup.exe
   1  C:\Users\kadir\Downloads\HiJackThis\HiJackThis.exe
   1  C:\Users\kadir\Downloads\setup-gridinsoft-fix.exe
   1  C:\Windows\explorer.exe
   1  C:\Windows\ImmersiveControlPanel\SystemSettings.exe
   1  C:\Windows\System32\AggregatorHost.exe
   1  C:\Windows\System32\ApplicationFrameHost.exe
   1  C:\Windows\System32\audiodg.exe
   1  C:\Windows\System32\cmd.exe
   1  C:\Windows\System32\conhost.exe
   2  C:\Windows\System32\csrss.exe
   1  C:\Windows\System32\ctfmon.exe
   1  C:\Windows\System32\dllhost.exe
   1  C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
   1  C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe
   1  C:\Windows\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atieclxx.exe
   1  C:\Windows\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atiesrxx.exe
   1  C:\Windows\System32\dwm.exe
   2  C:\Windows\System32\fontdrvhost.exe
   1  C:\Windows\System32\LsaIso.exe
   1  C:\Windows\System32\lsass.exe
   1  C:\Windows\System32\NgcIso.exe
   1  C:\Windows\System32\oobe\UserOOBEBroker.exe
   3  C:\Windows\System32\RuntimeBroker.exe
   1  C:\Windows\System32\SearchIndexer.exe
   1  C:\Windows\System32\SecurityHealthService.exe
   1  C:\Windows\System32\SecurityHealthSystray.exe
   1  C:\Windows\System32\services.exe
   1  C:\Windows\System32\ShellHost.exe
   1  C:\Windows\System32\sihost.exe
   1  C:\Windows\System32\smartscreen.exe
   1  C:\Windows\System32\smss.exe
   1  C:\Windows\System32\spoolsv.exe
  75  C:\Windows\System32\svchost.exe
   2  C:\Windows\System32\taskhostw.exe
   1  C:\Windows\System32\wbem\WmiPrvSE.exe
   1  C:\Windows\System32\wininit.exe
   1  C:\Windows\System32\winlogon.exe
   1  C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
   1  C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
   1  C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsCopilotRuntimeActions.exe
   1  C:\Windows\SysWOW64\wbem\WmiPrvSE.exe

O4 - ActiveSetup: HKLM\..\{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}: [StubPath] = C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level (sign: 'Brave Software, Inc.')
O4 - HKCU\..\Run: [AMDNoiseSuppression] = C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe (sign: 'Advanced Micro Devices Inc.')
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_6FF164B186DCD2A2BBE4415511015F17] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (sign: 'Microsoft')
O4 - HKCU\..\Run: [OneDrive] = C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (sign: 'Microsoft')
O4 - HKCU\..\Run: [RiotClient] = C:\Riot Games\Riot Client\RiotClientServices.exe --launch-background-mode (sign: 'Riot Games, Inc.')
O4 - HKCU\..\Run: [Steam] = C:\Program Files (x86)\Steam\steam.exe -silent (sign: 'Valve Corp.')
O4 - HKLM\..\Run: [Riot Vanguard] = C:\Program Files\Riot Vanguard\vgtray.exe (sign: 'Riot Games, Inc.')
O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local service') (sign: 'Microsoft')
O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Network service') (sign: 'Microsoft')
O17 - DHCP DNS 1: 192.168.1.1
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Clip\LicenseImdsIntegration - C:\WINDOWS\system32\fclip.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Device Setup\Driver Recovery on Reboot - {452f6ddc-7930-4b57-8794-19cd7420241d} - C:\WINDOWS\System32\DeviceSetupManagerAPI.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Servicing\OOBEFodSetup - C:\WINDOWS\system32\OOBEFodSetup.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\SharedPC\Account Cleanup - {7750564D-D61C-4557-8A9D-7DF56BDCFF96} - C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\WindowsAI\Recall\InitialConfiguration - {709FD5EF-7296-4154-BD3A-E9830FCFA60A} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -foScheduledTelemetryRun (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\WINDOWS\system32\sc.exe start InventorySvc (sign: '')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -foScheduledTelemetryRun express (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Sustainability\SustainabilityTelemetry - {6EE41D75-D091-4FB7-9AD5-018760DD25D4} - C:\WINDOWS\system32\EcoScoreTask.dll (sign: 'Microsoft')
O22 - Tasks: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{4FB01D62-8902-48E2-BFF4-A6307683CB00} - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --wake --system (sign: 'Google LLC')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\AccountHealth\RecoverabilityToastTask - {B7F5B442-EBF8-46CD-9F0B-D8E45ED43492},-flow showtoast -checkup recoverability - C:\WINDOWS\system32\AccountHealth.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Containers\CmCleanup - {F50E9363-6BC8-4DC5-8CAB-7D9F8C1B81B4} - C:\WINDOWS\System32\cmcleanup.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Diagnosis\UnexpectedCodepath - C:\WINDOWS\system32\UCConfigTask.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\WINDOWS\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver - {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Hotpatch\Monitoring - C:\WINDOWS\system32\cmd.exe /d /c C:\WINDOWS\system32\hpatchmonTask.cmd (sign: '')
O22 - Tasks: \Microsoft\Windows\Input\RemoteMouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteMouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemotePenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemotePenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemoteTouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteTouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Network Connectivity Status Indicator\NcsiIdentifyUserProxies - {706B965A-8308-4CD4-9900-87C2D79C121B} - C:\Windows\System32\netprofm.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\PerformanceTrace\RequestTrace - {9EFEB182-2EE3-4AF9-AFFA-521410D110D1} - C:\WINDOWS\system32\PerformanceTraceHandler.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\ReFsDedupSvc\Initialization - {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} - C:\WINDOWS\System32\ReFsDedupSvc.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Sustainability\PowerGridForecastTask - {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} - C:\WINDOWS\system32\PowerGridForecastTask.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\TPM\Tpm-PreAttestationHealthCheck - {5014B7C8-934E-4262-9816-887FA745A6C4},TpmPreAttestationHealthCheck - C:\WINDOWS\system32\TpmTasks.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - C:\WINDOWS\system32\UIEOrchestrator.exe /SendHeartbeat (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (file missing)
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UUS Failover Task - C:\WINDOWS\System32\MLEngineStub.exe HandleUusFailoverEvaluationSignalFromWnf (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\WindowsAI\Recall\PolicyConfiguration - {0BE6820D-B667-4CB6-931B-C153A77DA895} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: AMD Install Manager - Check For Updates - C:\Program Files\AMD\AMDInstallManager\AMDInstallManager.exe -CheckForUpdates (sign: 'Advanced Micro Devices')
O22 - Tasks: AMDInstallLauncher - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe /InstallAUEP (sign: 'Advanced Micro Devices')
O22 - Tasks: AMDRyzenMasterSDKTask - C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe (sign: 'Advanced Micro Devices')
O22 - Tasks: BraveSoftwareUpdateTaskMachineCore{E0FAD46A-AB22-4731-8BDC-DECB2BB44E81} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /c (sign: 'Brave Software, Inc.')
O22 - Tasks: BraveSoftwareUpdateTaskMachineUA{E65F0038-C14F-4A0F-AD3D-13DDF26F73F9} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /ua /installsource scheduler (sign: 'Brave Software, Inc.')
O22 - Tasks: Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} - C:\Program Files\Common Files\AV\Kaspersky\upgrade.exe /waitUpgrade (sign: 'AO Kaspersky Lab')
O22 - Tasks: ModifyLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -UpdateCurrentUser (sign: 'Advanced Micro Devices')
O22 - Tasks: OneDrive Reporting Task-S-1-5-21-4249722491-556105573-393004023-1001 - C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft')
O22 - Tasks: OneDrive Startup Task-S-1-5-21-4249722491-556105573-393004023-1001 - C:\Users\kadir\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\OneDriveLauncher.exe /startInstances (sign: 'Microsoft')
O22 - Tasks: StartCN - C:\Program Files\AMD\CNext\CNext\cncmd.exe startwithdelay (sign: 'Advanced Micro Devices')
O22 - Tasks: StartDVR - C:\Program Files\AMD\CNext\CNext\RSServCmd.exe (sign: 'Advanced Micro Devices')
O23 - Service R2: AMD Crash Defender Service - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe (sign: 'Microsoft')
O23 - Service R2: AMD External Events Utility - C:\WINDOWS\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atiesrxx.exe (sign: 'Advanced Micro Devices')
O23 - Service R2: Google Güncelleyici Hizmeti (GoogleUpdaterService138.0.7194.0) - (GoogleUpdaterService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update (sign: 'Google LLC')
O23 - Service R2: HitmanPro Scheduler - (HitmanProScheduler) - C:\Program Files\HitmanPro\hmpsched.exe (sign: 'Sophos BV')
O23 - Service R2: Kaspersky Hizmeti 21.21 - (AVP21.21) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avp.exe -r (sign: 'Microsoft')
O23 - Service R2: Logitech LampArray Service - (logi_lamparray_service) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe (sign: 'Logitech Inc')
O23 - Service R2: Microsoft Defender Çekirdek Hizmeti - (MDCoreSvc) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe (sign: 'Microsoft')
O23 - Service R3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\steamservice.exe /RunAsService (sign: 'Valve Corp.')
O23 - Service S2: Brave Güncelleme Hizmeti (brave) - (brave) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /svc (sign: 'Brave Software, Inc.')
O23 - Service S2: Google Güncelleyici Dahili Hizmeti (GoogleUpdaterInternalService138.0.7194.0) - (GoogleUpdaterInternalService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update-internal (sign: 'Google LLC')
O23 - Service S3: Brave Elevation Service (BraveElevationService) - (BraveElevationService) - C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe (sign: 'Brave Software, Inc.')
O23 - Service S3: Brave Güncelleme Hizmeti (bravem) - (bravem) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /medsvc (sign: 'Brave Software, Inc.')
O23 - Service S3: Kaspersky Volume Shadow Copy Service Bridge 21.21 - (klvssbridge64_21.21) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\x64\vssbridge64.exe (sign: 'AO Kaspersky Lab')
O23 - Service S3: vgc - C:\Program Files\Riot Vanguard\vgc.exe (sign: 'Riot Games, Inc.')
O23 - Driver R0: AO Kaspersky Lab Cryptographic Module x64 (56 bit) - (cm_km) - C:\WINDOWS\system32\DRIVERS\cm_km.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R0: klupd_K4W-21-21_arkmon - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_arkmon.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R0: klupd_K4W-21-21_klbg - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_klbg.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Anti-Virus NDIS 6 Filter - (klim6) - C:\WINDOWS\system32\DRIVERS\klim6.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Driver.K4W-21-21 - (KLIF.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klif.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab format recognizer driver.K4W-21-21 - (klpd.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klpd.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Kernel DLL.K4W-21-21 - (klflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klbackupdisk.K4W-21-21 - (klbackupdisk.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klbackupdisk.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klbackupflt.K4W-21-21 - (klbackupflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klbackupflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab KLKBDFLT.K4W-21-21 - (klkbdflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klkbdflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klpnpflt.K4W-21-21 - (klpnpflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klpnpflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Security Extender Driver.K4W-21-21 - (klgse.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klgse.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab service driver.K4W-21-21 - (klhk.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klhk.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: kldisk.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\kldisk.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: klwtp.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klwtp.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: kneps.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\kneps.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: vgk - C:\Program Files\Riot Vanguard\vgk.sys (sign: 'Riot Games, Inc.')
O23 - Driver R2: AMDRyzenMasterDriverV28 - C:\WINDOWS\system32\AMDRyzenMasterDriver.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Controller Emulation - (AMDXE) - C:\WINDOWS\System32\drivers\amdxe.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD Crash Defender Driver - (amdfendr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendr.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Crash Defender Manager Driver - (amdfendrmgr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Function Driver for HD Audio Service - (AtiHDAudioService) - C:\WINDOWS\System32\DriverStore\FileRepository\atihdwt6.inf_amd64_21c8ef1919e76bac\AtihdWT6.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD GPIO Client Driver - (amdgpio2) - C:\WINDOWS\System32\drivers\amdgpio2.sys (sign: 'Advanced Micro Devices INC.')
O23 - Driver R3: AMDSAFD - C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_66bdd11a4e97edd1\amdsafd.sys (sign: 'Microsoft' - Advanced Micro Devices)
O23 - Driver R3: amduw23g-416003-55c70b53 - C:\WINDOWS\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\amdkmdag.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: Kaspersky Lab KLMOUFLT.K4W-21-21 - (klmouflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klmouflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klids.K4W-21-21 - C:\ProgramData\Kaspersky Lab\AVP21.21\Bases\klids.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klupd_K4W-21-21_klark - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_klark.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klupd_K4W-21-21_mark - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_mark.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: Logitech LampArray Device Driver - (logi_lamparray) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray.sys (sign: 'Logitech Inc')
O23 - Driver S3: amduw23g - C:\WINDOWS\System32\DriverStore\FileRepository\u0398259.inf_amd64_2f4e11853a0a1f05\B397998\amdkmdag.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver S3: Intel(R) Serial IO GPIO Controller Driver - (iaLPSSi_GPIO) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys (sign: 'Intel Corporation - Client Components Group')
O26 - Office Addin: HKLM\..\OutlookKLAvPlg.Addin_6A81B6CF-E964-4C41-B967-48EBD097D3C0 - (Kaspersky4Win Outlook Anti-Virus Addin) -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\x64\mcou.dll (sign: 'AO Kaspersky Lab')
O26-32 - Office Addin: HKLM\..\OutlookKLAvPlg.Addin_6A81B6CF-E964-4C41-B967-48EBD097D3C0 - (Kaspersky4Win Outlook Anti-Virus Addin) -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\mcou.dll (sign: 'AO Kaspersky Lab')

ACİL BİR ŞEKİLDE BAKACAK BİR UZMAN VAR MI

Boot mode: Normal (Secure Boot: On) (Code Integrity: On)

Running processes:
Number | Path
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
   1  C:\Program Files (x86)\Common Files\Steam\steamservice.exe
   7  C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
  12  C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.68\msedgewebview2.exe
   7  C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
   1  C:\Program Files (x86)\Steam\steam.exe
   1  C:\Program Files\AMD\CNext\CNext\amdow.exe
   1  C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
   1  C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
   1  C:\Program Files\AMD\CNext\CNext\cncmd.exe
   1  C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
   1  C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
   7  C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
   1  C:\Program Files\Riot Vanguard\vgc.exe
   1  C:\Program Files\Riot Vanguard\vgtray.exe
   1  C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
   1  C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_2.624.1111.0_x64__8wekyb3d8bbwe\GameBar.exe
   1  C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MsMpEng.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\NisSrv.exe
   1  C:\Riot Games\Riot Client\RiotClientCrashHandler.exe
   1  C:\Riot Games\Riot Client\RiotClientServices.exe
   4  C:\Riot Games\VALORANT\live\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
   1  C:\Riot Games\VALORANT\live\ShooterGame\Binaries\Win64\VALORANT-Win64-Shipping.exe
   1  C:\Riot Games\VALORANT\live\VALORANT.exe
   1  C:\Users\kadir\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\FileCoAuth.exe
   1  C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDrive.exe
   1  C:\Users\kadir\Downloads\HiJackThis\HiJackThis.exe
   1  C:\Windows\explorer.exe
   1  C:\Windows\ImmersiveControlPanel\SystemSettings.exe
   1  C:\Windows\System32\AggregatorHost.exe
   1  C:\Windows\System32\ApplicationFrameHost.exe
   1  C:\Windows\System32\audiodg.exe
   1  C:\Windows\System32\cmd.exe
   1  C:\Windows\System32\conhost.exe
   2  C:\Windows\System32\csrss.exe
   1  C:\Windows\System32\ctfmon.exe
   1  C:\Windows\System32\dllhost.exe
   1  C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
   1  C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe
   1  C:\Windows\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atieclxx.exe
   1  C:\Windows\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atiesrxx.exe
   1  C:\Windows\System32\dwm.exe
   2  C:\Windows\System32\fontdrvhost.exe
   1  C:\Windows\System32\GameBarPresenceWriter.exe
   1  C:\Windows\System32\LsaIso.exe
   1  C:\Windows\System32\lsass.exe
   1  C:\Windows\System32\NgcIso.exe
   1  C:\Windows\System32\oobe\UserOOBEBroker.exe
   1  C:\Windows\System32\RuntimeBroker.exe
   1  C:\Windows\System32\SearchIndexer.exe
   1  C:\Windows\System32\SecurityHealthService.exe
   1  C:\Windows\System32\SecurityHealthSystray.exe
   1  C:\Windows\System32\services.exe
   1  C:\Windows\System32\ShellHost.exe
   1  C:\Windows\System32\sihost.exe
   1  C:\Windows\System32\smartscreen.exe
   1  C:\Windows\System32\smss.exe
   1  C:\Windows\System32\spoolsv.exe
  74  C:\Windows\System32\svchost.exe
   2  C:\Windows\System32\taskhostw.exe
   2  C:\Windows\System32\wbem\WmiPrvSE.exe
   1  C:\Windows\System32\wininit.exe
   1  C:\Windows\System32\winlogon.exe
   1  C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsCopilotRuntimeActions.exe

O4 - ActiveSetup: HKLM\..\{8A69D345-D564-463c-AFF1-A69D9E530F96}: [StubPath] = C:\Program Files\Google\Chrome\Application\137.0.7151.104\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level --channel=stable (sign: 'Google LLC')
O4 - ActiveSetup: HKLM\..\{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}: [StubPath] = C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level (sign: 'Brave Software, Inc.')
O4 - HKCU\..\Run: [AMDNoiseSuppression] = C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe (sign: 'Advanced Micro Devices Inc.')
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_6FF164B186DCD2A2BBE4415511015F17] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (sign: 'Microsoft')
O4 - HKCU\..\Run: [OneDrive] = C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (sign: 'Microsoft')
O4 - HKCU\..\Run: [RiotClient] = C:\Riot Games\Riot Client\RiotClientServices.exe --launch-background-mode (sign: 'Riot Games, Inc.')
O4 - HKCU\..\Run: [Steam] = C:\Program Files (x86)\Steam\steam.exe -silent (sign: 'Valve Corp.')
O4 - HKLM\..\Run: [Riot Vanguard] = C:\Program Files\Riot Vanguard\vgtray.exe (sign: 'Riot Games, Inc.')
O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local service') (sign: 'Microsoft')
O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Network service') (sign: 'Microsoft')
O17 - DHCP DNS 1: 192.168.1.1
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Clip\LicenseImdsIntegration - C:\WINDOWS\system32\fclip.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Device Setup\Driver Recovery on Reboot - {452f6ddc-7930-4b57-8794-19cd7420241d} - C:\WINDOWS\System32\DeviceSetupManagerAPI.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Servicing\OOBEFodSetup - C:\WINDOWS\system32\OOBEFodSetup.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\SharedPC\Account Cleanup - {7750564D-D61C-4557-8A9D-7DF56BDCFF96} - C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\WindowsAI\Recall\InitialConfiguration - {709FD5EF-7296-4154-BD3A-E9830FCFA60A} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -foScheduledTelemetryRun (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\WINDOWS\system32\sc.exe start InventorySvc (sign: '')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -foScheduledTelemetryRun express (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Sustainability\SustainabilityTelemetry - {6EE41D75-D091-4FB7-9AD5-018760DD25D4} - C:\WINDOWS\system32\EcoScoreTask.dll (sign: 'Microsoft')
O22 - Tasks: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{4FB01D62-8902-48E2-BFF4-A6307683CB00} - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --wake --system (sign: 'Google LLC')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\AccountHealth\RecoverabilityToastTask - {B7F5B442-EBF8-46CD-9F0B-D8E45ED43492},-flow showtoast -checkup recoverability - C:\WINDOWS\system32\AccountHealth.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Containers\CmCleanup - {F50E9363-6BC8-4DC5-8CAB-7D9F8C1B81B4} - C:\WINDOWS\System32\cmcleanup.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Diagnosis\UnexpectedCodepath - C:\WINDOWS\system32\UCConfigTask.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\WINDOWS\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver - {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Hotpatch\Monitoring - C:\WINDOWS\system32\cmd.exe /d /c C:\WINDOWS\system32\hpatchmonTask.cmd (sign: '')
O22 - Tasks: \Microsoft\Windows\Input\RemoteMouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteMouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemotePenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemotePenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Input\RemoteTouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteTouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Network Connectivity Status Indicator\NcsiIdentifyUserProxies - {706B965A-8308-4CD4-9900-87C2D79C121B} - C:\Windows\System32\netprofm.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\PerformanceTrace\RequestTrace - {9EFEB182-2EE3-4AF9-AFFA-521410D110D1} - C:\WINDOWS\system32\PerformanceTraceHandler.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\ReFsDedupSvc\Initialization - {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} - C:\WINDOWS\System32\ReFsDedupSvc.exe (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Sustainability\PowerGridForecastTask - {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} - C:\WINDOWS\system32\PowerGridForecastTask.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\TPM\Tpm-PreAttestationHealthCheck - {5014B7C8-934E-4262-9816-887FA745A6C4},TpmPreAttestationHealthCheck - C:\WINDOWS\system32\TpmTasks.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - C:\WINDOWS\system32\UIEOrchestrator.exe /SendHeartbeat (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (file missing)
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UUS Failover Task - C:\WINDOWS\System32\MLEngineStub.exe HandleUusFailoverEvaluationSignalFromWnf (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\WindowsAI\Recall\PolicyConfiguration - {0BE6820D-B667-4CB6-931B-C153A77DA895} - C:\WINDOWS\system32\ShellConfigTask.dll (sign: 'Microsoft')
O22 - Tasks: AMD Install Manager - Check For Updates - C:\Program Files\AMD\AMDInstallManager\AMDInstallManager.exe -CheckForUpdates (sign: 'Advanced Micro Devices')
O22 - Tasks: AMDInstallLauncher - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe /InstallAUEP (sign: 'Advanced Micro Devices')
O22 - Tasks: AMDRyzenMasterSDKTask - C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe (sign: 'Advanced Micro Devices')
O22 - Tasks: BraveSoftwareUpdateTaskMachineCore{E0FAD46A-AB22-4731-8BDC-DECB2BB44E81} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /c (sign: 'Brave Software, Inc.')
O22 - Tasks: BraveSoftwareUpdateTaskMachineUA{E65F0038-C14F-4A0F-AD3D-13DDF26F73F9} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /ua /installsource scheduler (sign: 'Brave Software, Inc.')
O22 - Tasks: ModifyLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -UpdateCurrentUser (sign: 'Advanced Micro Devices')
O22 - Tasks: OneDrive Reporting Task-S-1-5-21-4249722491-556105573-393004023-1001 - C:\Users\kadir\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft')
O22 - Tasks: OneDrive Startup Task-S-1-5-21-4249722491-556105573-393004023-1001 - C:\Users\kadir\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\OneDriveLauncher.exe /startInstances (sign: 'Microsoft')
O22 - Tasks: StartCN - C:\Program Files\AMD\CNext\CNext\cncmd.exe startwithdelay (sign: 'Advanced Micro Devices')
O22 - Tasks: StartDVR - C:\Program Files\AMD\CNext\CNext\RSServCmd.exe (sign: 'Advanced Micro Devices')
O23 - Service R2: AMD Crash Defender Service - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe (sign: 'Microsoft')
O23 - Service R2: AMD External Events Utility - C:\WINDOWS\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\atiesrxx.exe (sign: 'Advanced Micro Devices')
O23 - Service R2: Logitech LampArray Service - (logi_lamparray_service) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe (sign: 'Logitech Inc')
O23 - Service R2: Microsoft Defender Çekirdek Hizmeti - (MDCoreSvc) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe (sign: 'Microsoft')
O23 - Service R3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\steamservice.exe /RunAsService (sign: 'Valve Corp.')
O23 - Service R3: vgc - C:\Program Files\Riot Vanguard\vgc.exe (sign: 'Riot Games, Inc.')
O23 - Service S2: Brave Güncelleme Hizmeti (brave) - (brave) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /svc (sign: 'Brave Software, Inc.')
O23 - Service S2: Google Güncelleyici Dahili Hizmeti (GoogleUpdaterInternalService138.0.7194.0) - (GoogleUpdaterInternalService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update-internal (sign: 'Google LLC')
O23 - Service S2: Google Güncelleyici Hizmeti (GoogleUpdaterService138.0.7194.0) - (GoogleUpdaterService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update (sign: 'Google LLC')
O23 - Service S3: Brave Elevation Service (BraveElevationService) - (BraveElevationService) - C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe (sign: 'Brave Software, Inc.')
O23 - Service S3: Brave Güncelleme Hizmeti (bravem) - (bravem) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /medsvc (sign: 'Brave Software, Inc.')
O23 - Service S3: Google Chrome Elevation Service (GoogleChromeElevationService) - (GoogleChromeElevationService) - C:\Program Files\Google\Chrome\Application\137.0.7151.104\elevation_service.exe (sign: 'Google LLC')
O23 - Driver R1: vgk - C:\Program Files\Riot Vanguard\vgk.sys (sign: 'Riot Games, Inc.')
O23 - Driver R2: AMDRyzenMasterDriverV28 - C:\WINDOWS\system32\AMDRyzenMasterDriver.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Controller Emulation - (AMDXE) - C:\WINDOWS\System32\drivers\amdxe.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD Crash Defender Driver - (amdfendr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendr.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Crash Defender Manager Driver - (amdfendrmgr) - C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD Function Driver for HD Audio Service - (AtiHDAudioService) - C:\WINDOWS\System32\DriverStore\FileRepository\atihdwt6.inf_amd64_21c8ef1919e76bac\AtihdWT6.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD GPIO Client Driver - (amdgpio2) - C:\WINDOWS\System32\drivers\amdgpio2.sys (sign: 'Advanced Micro Devices INC.')
O23 - Driver R3: AMDSAFD - C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_66bdd11a4e97edd1\amdsafd.sys (sign: 'Microsoft' - Advanced Micro Devices)
O23 - Driver R3: amduw23g-416003-55c70b53 - C:\WINDOWS\System32\DriverStore\FileRepository\u0416003.inf_amd64_706cc64a85ddf686\B415817\amdkmdag.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: Logitech LampArray Device Driver - (logi_lamparray) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray.sys (sign: 'Logitech Inc')
O23 - Driver S3: amduw23g - C:\WINDOWS\System32\DriverStore\FileRepository\u0398259.inf_amd64_2f4e11853a0a1f05\B397998\amdkmdag.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver S3: Intel(R) Serial IO GPIO Controller Driver - (iaLPSSi_GPIO) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys (sign: 'Intel Corporation - Client Components Group')

Bir yetkili veya uzman arkadaş kontrol edip geri dönüş sağlayabilir mi? Bilgisayarıma virüs bulaştı temizlemeye çalıştım format attım BIOS vs. sıfırladım ters bir durum görünüyor mu ya da daha derinlemesine bakabileceğim bir uygulama var mıdır?
 
Son düzenleyen: Moderatör:
Kod:
Logfile of HiJackThis+ build 2025-01-16 Beta v.3.4.0.17

Platform:  x64 Windows 11 (Pro), 10.0.22631.5335 (ReleaseId: 2009, 23H2), Service Pack: 0
Time:      12.06.2025 - 12:24 (UTC+03:00)
Language:  OS: Turkish (0x41F). Display: Turkish (0x41F). Non-Unicode: Turkish (0x41F)
Memory:    10,66 GiB Free / 16. Loading RAM (33 %), CPU (2 %)
Disk C:    89,59 GiB Free / 232 (SSD, GPT)
Elevated:  Yes
Ran by:    dark_    (group: Administrators; type: Microsoft) on S3RH4T, FirstRun: yes

Chrome:  137.0.7151.70
Internet Explorer: 11.0.22621.3527
Default: "C:\Program Files\Google\Chrome\Application\chrome.exe" --single-argument %1 (Google Chrome)

Boot mode: Normal (Secure Boot: Off)

Running processes:
Number | Path
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
   1  C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
   1  C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
   1  C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
   1  C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe
   1  C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\GraphicsCardEngine.exe
   1  C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\GraphicsCardEngineStarter.exe
   1  C:\Program Files (x86)\Gigabyte\GService\GCloud.exe
   1  C:\Program Files (x86)\Gigabyte\RGBFusion\RGBFusion.exe
   1  C:\Program Files (x86)\Internet Download Manager\IDMan.exe
   4  C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avp.exe
   1  C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avpui.exe
   1  C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.20\ksde.exe
   1  C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.20\ksdeui.exe
   6  C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.68\msedgewebview2.exe
   1  C:\Program Files\Gigabyte\Smart Backup\RPMDaemon.exe
   4  C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
   5  C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe
   1  C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
   1  C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2522.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
   1  C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
   1  C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\gamingservices.exe
   1  C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
   1  C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
   1  C:\Program Files\WindowsApps\Microsoft.YourPhone_1.25042.96.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
   1  C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe
   1  C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MsMpEng.exe
   1  C:\Users\dark_\OneDrive\Desktop\HiJackThis\HiJackThis.exe
   1  C:\Windows\explorer.exe
   1  C:\Windows\ImmersiveControlPanel\SystemSettings.exe
   1  C:\Windows\System32\AggregatorHost.exe
   1  C:\Windows\System32\amdfendrsr.exe
   1  C:\Windows\System32\ApplicationFrameHost.exe
   1  C:\Windows\System32\audiodg.exe
   1  C:\Windows\System32\CastSrv.exe
   1  C:\Windows\System32\conhost.exe
   2  C:\Windows\System32\csrss.exe
   1  C:\Windows\System32\ctfmon.exe
   1  C:\Windows\System32\dasHost.exe
   1  C:\Windows\System32\dllhost.exe
   1  C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray_service.exe
   2  C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\Display.NvContainer\NVDisplay.Container.exe
   2  C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c2fa179f72a88c18\RtkAudUService64.exe
   1  C:\Windows\System32\dwm.exe
   2  C:\Windows\System32\fontdrvhost.exe
   1  C:\Windows\System32\GigabyteUpdateService.exe
   1  C:\Windows\System32\LocationNotificationWindows.exe
   1  C:\Windows\System32\lsass.exe
   1  C:\Windows\System32\oobe\UserOOBEBroker.exe
   3  C:\Windows\System32\RuntimeBroker.exe
   1  C:\Windows\System32\SearchIndexer.exe
   1  C:\Windows\System32\SecurityHealthService.exe
   1  C:\Windows\System32\SecurityHealthSystray.exe
   1  C:\Windows\System32\services.exe
   1  C:\Windows\System32\sihost.exe
   1  C:\Windows\System32\smartscreen.exe
   1  C:\Windows\System32\smss.exe
   1  C:\Windows\System32\spoolsv.exe
  88  C:\Windows\System32\svchost.exe
   2  C:\Windows\System32\taskhostw.exe
   1  C:\Windows\System32\wbem\WMIADAP.exe
   2  C:\Windows\System32\wbem\WmiPrvSE.exe
   1  C:\Windows\System32\wininit.exe
   1  C:\Windows\System32\winlogon.exe
   1  C:\Windows\System32\wlanext.exe
   1  C:\Windows\System32\WUDFHost.exe
   1  C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
   1  C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
   1  C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
   1  E:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe

R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [SuggestionsURL_JSON] = hxxps://suggest.yandex.com.tr/suggest-ff.cgi?srv=ie11&uil=tr&part={searchTerms}&clid=2233630 - Yandex
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [URL] = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630 - Yandex
O2 - HKLM\..\BHO: GBHO.BHO - {45d30484-7ded-43d9-957a-d2fd1f046511} - (no file)
O2 - HKLM\..\BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (sign: 'Tonec Inc.')
O2-32 - HKLM\..\BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (sign: 'Tonec Inc.')
O3 - HKLM\..\Toolbar: Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - (no file)
O4 - ActiveSetup: HKLM\..\{8A69D345-D564-463c-AFF1-A69D9E530F96}: [StubPath] = C:\Program Files\Google\Chrome\Application\137.0.7151.70\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level --channel=stable (sign: 'Google LLC')
O4 - ActiveSetup: HKLM\..\{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}: [StubPath] = C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level (sign: 'Brave Software, Inc.')
O4 - HKCU\..\Run: [IDMan] = C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot (sign: 'Tonec Inc.')
O4 - HKCU\..\Run: [Opera GX Browser Assistant] = C:\Users\dark_\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe (sign: 'Opera Software AS')
O4 - HKCU\..\StartupApproved\Run: [Discord] = C:\Users\dark_\AppData\Local\Discord\Update.exe --processStart Discord.exe (2025/02/13) (sign: 'Discord Inc.')
O4 - HKCU\..\StartupApproved\Run: [EADM] = C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe -minimized (2025/02/11) (sign: 'Electronic Arts, Inc.')
O4 - HKCU\..\StartupApproved\Run: [EpicGamesLauncher] = E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe -silent -launchcontext=boot (2025/02/15) (sign: 'Epic Games Inc.')
O4 - HKCU\..\StartupApproved\Run: [FACEIT] = C:\Users\dark_\AppData\Local\FACEIT\update.exe --processStart "FACEIT.exe" (2025/02/15) (sign: 'ESL Gaming GmbH')
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Users\dark_\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (2025/02/10) (sign: 'Microsoft')
O4 - HKLM\..\Run: [RtkAudUService] = C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c2fa179f72a88c18\RtkAudUService64.exe -background (sign: 'Realtek Semiconductor Corp.')
O4 - HKLM\..\RunOnce: [RPMKickstart] = C:\Program Files\Gigabyte\Smart Backup\RPMKickstartEx.exe (not signed - TODO: <Company name> - A803049F1C32D8A941CB30ABA5EB67A94CD33EF5)
O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local service') (sign: 'Microsoft')
O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Network service') (sign: 'Microsoft')
O4-32 - HKLM\..\RunOnce: [PreRun] = C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O4-32 - HKLM\..\RunOnce: [SelLed] = C:\Program Files (x86)\GIGABYTE\RGBFusion\RunLed.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\IDM ile indir: (default) = C:\Program Files (x86)\Internet Download Manager\IEExt.htm (not signed - no company - 1A49C5F7A98580F8002AC1D6115AB39CB753975B)
O17 - DHCP DNS 1: 208.67.222.222 (Well-known DNS: Cisco Umbrella)
O17 - DHCP DNS 2: 208.67.220.220 (Well-known DNS: Cisco Umbrella)
O17 - HKLM\System\CCS\Services\Tcpip\..\{c5247991-2c71-4c85-a65d-4a5a49079df8}: [NameServer] = 208.67.220.220 (Well-known DNS: Cisco Umbrella)
O17 - HKLM\System\CCS\Services\Tcpip\..\{c5247991-2c71-4c85-a65d-4a5a49079df8}: [NameServer] = 208.67.222.222 (Well-known DNS: Cisco Umbrella)
O17 - HKLM\System\CCS\Services\Tcpip\..\{e98434c7-5195-4d5a-8e6d-d5ec05332c73}: [NameServer] = 198.51.100.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{e98434c7-5195-4d5a-8e6d-d5ec05332c73}: [NameServer] = 198.51.100.2
O18 - HKLM\Software\Classes\Protocols\Filter\application/octet-stream: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-complus: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O18 - HKLM\Software\Classes\Protocols\Filter\application/x-msdownload: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file)
O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll (sign: 'Tonec Inc.')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Clip\LicenseImdsIntegration - C:\WINDOWS\system32\fclip.exe (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft')
O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\WINDOWS\system32\sc.exe start InventorySvc (sign: '')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaWallpaperAppDetect - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaWallpaperAppDetect (sign: 'Microsoft')
O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft')
O22 - Tasks: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{D39EC5F6-9702-4511-B5CE-506873D1F215} - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --wake --system (sign: 'Google LLC')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\WINDOWS\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver - {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} - C:\WINDOWS\System32\fcon.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\input\RemoteMouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteMouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\input\RemotePenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemotePenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\input\RemoteTouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteTouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - C:\WINDOWS\system32\UIEOrchestrator.exe /SendHeartbeat (sign: 'Microsoft')
O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (file missing)
O22 - Tasks: BraveSoftwareUpdateTaskMachineCore{7DC1DEA7-F54F-43B3-A5D5-02C4150C0510} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /c (sign: 'Brave Software, Inc.')
O22 - Tasks: BraveSoftwareUpdateTaskMachineUA{660D9CDA-DE0F-4343-8A18-BFBC860BA94A} - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /ua /installsource scheduler (sign: 'Brave Software, Inc.')
O22 - Tasks: EasyTune - C:\Program Files (x86)\GIGABYTE\EasyTune\etinit.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O22 - Tasks: EasyTune 1 - C:\Program Files (x86)\GIGABYTE\EasyTune\etocfile.exe --DeleteProfile (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O22 - Tasks: GraphicsCardEngine - C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngineStarter.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O22 - Tasks: Launch Adobe CCXProcess - C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (file missing)
O22 - Tasks: NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe (sign: 'NVIDIA Corporation')
O22 - Tasks: OneDrive Reporting Task-S-1-5-21-2943630661-2764376449-2455644402-1001 - C:\Users\dark_\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft')
O22 - Tasks: OneDrive Startup Task-S-1-5-21-2943630661-2764376449-2455644402-1001 - C:\Users\dark_\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\OneDriveLauncher.exe /startInstances (sign: 'Microsoft')
O22 - Tasks: Opera GX scheduled assistant Autoupdate 1748961289 - C:\Users\dark_\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate --component-name=assistant --component-path="C:\Users\dark_\AppData\Local\Programs\Opera GX\assistant" $(Arg0) (file missing)
O22 - Tasks: Opera GX scheduled Autoupdate 1748002470 - C:\Users\dark_\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (sign: 'Opera Norway AS')
O23 - Service R2: AMD Crash Defender Service - C:\WINDOWS\System32\amdfendrsr.exe (sign: 'Microsoft')
O23 - Service R2: EasyTuneEngineService - C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O23 - Service R2: Gaming Services - (GamingServices) - C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\GamingServices.exe (sign: 'Microsoft')
O23 - Service R2: Gaming Services - (GamingServicesNet) - C:\Program Files\WindowsApps\Microsoft.GamingServices_28.100.8001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe (sign: 'Microsoft')
O23 - Service R2: GIGABYTE Adjust - (MyService1) - C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe (not signed - no company - 5ED286E95710B515F8D2C70D99309EE63459D2F8)
O23 - Service R2: GIGABYTE Update Service - (GigabyteUpdateService) - C:\WINDOWS\system32\GigabyteUpdateService.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O23 - Service R2: Gservice - C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O23 - Service R2: Kaspersky Hizmeti 21.21 - (AVP21.21) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\avp.exe -r (sign: 'Microsoft')
O23 - Service R2: Kaspersky VPN Secure Connection Hizmeti 5.20 - (KSDE5.20) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.20\ksde.exe -r (sign: 'Kaspersky Lab JSC')
O23 - Service R2: Logitech LampArray Service - (logi_lamparray_service) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray_service.exe (sign: 'Logitech Inc')
O23 - Service R2: Microsoft Defender Çekirdek Hizmeti - (MDCoreSvc) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25040.2-0\MpDefenderCoreService.exe (sign: 'Microsoft')
O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem /ert (sign: 'NVIDIA Corporation')
O23 - Service R2: NVIDIA LocalSystem Container - (NvContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA Corporation\NVIDIA app\NvContainer\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000  -ert (sign: 'NVIDIA Corporation')
O23 - Service R2: QMEmulatorService - E:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe (sign: 'Tencent Technology(Shenzhen) Company Limited')
O23 - Service R2: Realtek Audio Universal Service - (RtkAudioUniversalService) - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c2fa179f72a88c18\RtkAudUService64.exe (sign: 'Realtek Semiconductor Corp.')
O23 - Service S2: Brave Güncelleme Hizmeti (brave) - (brave) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /svc (sign: 'Brave Software, Inc.')
O23 - Service S2: GoodbyeDPI - D:\GoodbyeDPI\x86_64\goodbyedpi.exe -5 --set-ttl 5 --dns-addr 77.88.8.8 --dns-port 1253 --dnsv6-addr 2a02:6b8::feed:0ff --dnsv6-port 1253 (not signed - no company - 478F336AB054623ABFA691F11F12BC3BE31DEABE)
O23 - Service S2: Google Güncelleyici Dahili Hizmeti (GoogleUpdaterInternalService138.0.7194.0) - (GoogleUpdaterInternalService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update-internal (sign: 'Google LLC')
O23 - Service S2: Google Güncelleyici Hizmeti (GoogleUpdaterService138.0.7194.0) - (GoogleUpdaterService138.0.7194.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe --system --windows-service --service=update (sign: 'Google LLC')
O23 - Service S2: OCButtonService - C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\OcButtonService.exe (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O23 - Service S3: Battle.net Update Helper Svc - (battlenet_helpersvc) - C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe (sign: 'Blizzard Entertainment, Inc.')
O23 - Service S3: BattlEye Service - (BEService) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe (sign: 'BattlEye Innovations e.K.')
O23 - Service S3: Brave Elevation Service (BraveElevationService) - (BraveElevationService) - C:\Program Files\BraveSoftware\Brave-Browser\Application\137.1.79.123\elevation_service.exe (sign: 'Brave Software, Inc.')
O23 - Service S3: Brave Güncelleme Hizmeti (bravem) - (bravem) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe /medsvc (sign: 'Brave Software, Inc.')
O23 - Service S3: EAAntiCheatService - C:\Program Files\EA\AC\eaanticheat.gameservice.exe (sign: 'Electronic Arts, Inc.')
O23 - Service S3: EABackgroundService - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (sign: 'Electronic Arts, Inc.')
O23 - Service S3: Easy Anti-Cheat (Epic Online Services) - (EasyAntiCheat_EOS) - C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe (sign: 'EasyAntiCheat Oy')
O23 - Service S3: EasyAntiCheat - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe (sign: 'EasyAntiCheat Oy')
O23 - Service S3: Epic Games Updater - (EpicGamesUpdater) - E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe (sign: 'Epic Games Inc.')
O23 - Service S3: Epic Online Services - (EpicOnlineServices) - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe (sign: 'Epic Games Inc.')
O23 - Service S3: Google Chrome Elevation Service (GoogleChromeElevationService) - (GoogleChromeElevationService) - C:\Program Files\Google\Chrome\Application\137.0.7151.70\elevation_service.exe (sign: 'Google LLC')
O23 - Service S3: Kaspersky Volume Shadow Copy Service Bridge 21.21 - (klvssbridge64_21.21) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\x64\vssbridge64.exe (sign: 'AO Kaspersky Lab')
O23 - Service S3: nProtect GameGuard Service - (npggsvc) - C:\WINDOWS\system32\GameMon.des -service (file missing)
O23 - Service S3: NVIDIA FrameView SDK service - (FvSvc) - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe -service (sign: 'NVIDIA Corporation')
O23 - Service S3: Rockstar Game Library Service - (Rockstar Service) - E:\Program Files\Rockstar Games\Launcher\RockstarService.exe (sign: 'Rockstar Games, Inc.')
O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\steamservice.exe /RunAsService (sign: 'Valve Corp.')
O23 - Service S3: Visual Studio Installer Elevation Service - (VSInstallerElevationService) - C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe (sign: 'Microsoft')
O23 - Service S3: Zakynthos Service - (zksvc) - C:\Program Files\Common Files\PUBG\zksvc.exe (sign: 'KRAFTON, Inc.')
O23 - Driver R0: AMD PSP Service - (amdpsp) - C:\WINDOWS\System32\drivers\amdpsp.sys (sign: 'Advanced Micro Devices')
O23 - Driver R0: AO Kaspersky Lab Cryptographic Module x64 (56 bit) - (cm_km) - C:\WINDOWS\system32\DRIVERS\cm_km.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R0: klupd_K4W-21-21_arkmon - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_arkmon.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R0: klupd_K4W-21-21_klbg - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_klbg.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R0: pwdrvio - C:\WINDOWS\system32\pwdrvio.sys (sign: 'MiniTool Solution Ltd')
O23 - Driver R1: CTIIO - C:\WINDOWS\system32\drivers\CtiIo64.sys (sign: 'Microsoft' - Creative Technology Innovation Co., LTd.)
O23 - Driver R1: Kaspersky Anti-Virus NDIS 6 Filter - (klim6) - C:\WINDOWS\system32\DRIVERS\klim6.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Driver.K4W-21-21 - (klif.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klif.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab format recognizer driver.K4W-21-21 - (klpd.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klpd.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Kernel DLL.K4W-21-21 - (klflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klbackupdisk.K4W-21-21 - (klbackupdisk.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klbackupdisk.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klbackupflt.K4W-21-21 - (klbackupflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klbackupflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab KLKBDFLT.K4W-21-21 - (klkbdflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klkbdflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab klpnpflt.K4W-21-21 - (klpnpflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klpnpflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab Security Extender Driver.K4W-21-21 - (klgse.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klgse.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: Kaspersky Lab service driver.K4W-21-21 - (KLHK.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klhk.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: kldisk.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\kldisk.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: klwtp.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klwtp.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: kneps.K4W-21-21 - C:\WINDOWS\system32\DRIVERS\K4W-21-21\kneps.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R1: TBox Support Driver - (TBoxDrv) - C:\Program Files\AndroidTbox\TBoxDrv.sys (sign: 'Tencent Technology(Shenzhen) Company Limited')
O23 - Driver R2: aow_drv - E:\Program Files\TxGameAssistant\UI\3.91.5340.81\aow_drv_x64_ev.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Driver R2: IDMWFP - C:\WINDOWS\System32\drivers\idmwfp.sys (sign: 'Microsoft' - Tonec Inc.)
O23 - Driver R3: AMD Crash Defender Driver - (amdfendr) - C:\WINDOWS\System32\drivers\amdfendr.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD Crash Defender Manager Driver - (amdfendrmgr) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD GPIO Client Driver - (amdgpio2) - C:\WINDOWS\System32\drivers\amdgpio2.sys (sign: 'Advanced Micro Devices')
O23 - Driver R3: AMD GPIO Client Driver - (amdgpio3) - C:\WINDOWS\System32\drivers\amdgpio3.sys (sign: 'ASMedia Technology Inc.')
O23 - Driver R3: AMD Link Controller Emulation - (AMDXE) - C:\WINDOWS\System32\drivers\amdxe.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD PCI - (AMDPCIDev) - C:\WINDOWS\System32\drivers\AMDPCIDev.sys (sign: 'Advanced Micro Devices Inc.')
O23 - Driver R3: AMD Special Tools Driver - (AmdTools64) - C:\WINDOWS\System32\drivers\AmdTools64.sys (sign: 'Microsoft' - no company)
O23 - Driver R3: gdrv3 - C:\WINDOWS\System32\drivers\gdrv3.sys (sign: 'GIGA-BYTE TECHNOLOGY CO., LTD.')
O23 - Driver R3: Kaspersky Lab KLMOUFLT.K4W-21-21 - (klmouflt.K4W-21-21) - C:\WINDOWS\system32\DRIVERS\K4W-21-21\klmouflt.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: Kaspersky VPN - (kltun) - C:\WINDOWS\system32\DRIVERS\kltun.sys (+safe mode) (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klids.K4W-21-21 - C:\ProgramData\Kaspersky Lab\AVP21.21\Bases\klids.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klupd_K4W-21-21_klark - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_klark.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: klupd_K4W-21-21_mark - C:\WINDOWS\System32\Drivers\klupd_K4W-21-21_mark.sys (sign: 'Microsoft' - AO Kaspersky Lab)
O23 - Driver R3: Logitech LampArray Device Driver - (logi_lamparray) - C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_3786a31d1dad269d\logi_lamparray.sys (sign: 'Logitech Inc')
O23 - Driver R3: Mediatek PCI LE Extensible Wireless LAN Card Driver - (mtkwlex) - C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_8850e1ae0c5876c8\mtkwl6ex.sys (+safe mode) (sign: 'Microsoft' - MediaTek Inc.)
O23 - Driver R3: MTK BT Filter Driver - (MTKBTFilterx64) - C:\WINDOWS\system32\DRIVERS\mtkbtfilterx.sys (sign: 'Microsoft' - MediaTek Inc.)
O23 - Driver R3: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) - (nvvad_WaveExtensible) - C:\WINDOWS\system32\drivers\nvvad64v.sys (sign: 'NVIDIA Corporation')
O23 - Driver R3: nvlddmkm - C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2c61c4d89b199ea8\nvlddmkm.sys (sign: 'NVIDIA Corporation')
O23 - Driver R3: Realtek RT640 NT Driver - (rt640x64) - C:\WINDOWS\System32\drivers\rt640x64.sys (+safe mode) (sign: 'Realtek Semiconductor Corp.')
O23 - Driver R3: Service for NVIDIA High Definition Audio Driver - (NVHDA) - C:\WINDOWS\system32\drivers\nvhda64v.sys (sign: 'NVIDIA Corporation')
O23 - Driver R3: Service for Realtek HD Audio (WDM) - (IntcAzAudAddService) - C:\WINDOWS\system32\drivers\RTKVHD64.sys (sign: 'Realtek Semiconductor Corp.')
O23 - Driver S3: AMD Function Driver for HD Audio Service - (AtiHDAudioService) - C:\WINDOWS\System32\DriverStore\FileRepository\atihdwt6.inf_amd64_5bf3de4243c61001\AtihdWT6.sys (sign: 'Advanced Micro Devices')
O23 - Driver S3: Apple KMDF Filter Driver - (AppleKmdfFilter) - C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys (sign: 'Apple Inc.')
O23 - Driver S3: Apple Lower Filter Driver - (AppleLowerFilter) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys (sign: 'Apple Inc.')
O23 - Driver S3: EAAntiCheat - C:\WINDOWS\system32\drivers\eaanticheat.sys (file missing)
O23 - Driver S3: HP Application Driver - (HPCustomCapDriver) - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys (+safe mode) (sign: 'HP Inc.')
O23 - Driver S3: HP Omen Driver - (HPOmenCustomCapDriver) - C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys (+safe mode) (sign: 'HP Inc.')
O23 - Driver S3: Intel(R) Serial IO GPIO Controller Driver - (iaLPSSi_GPIO) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys (sign: 'Intel Corporation - Client Components Group')
O23 - Driver S3: Logitech G HUB HID Filter Driver - (logi_joy_hid_filter) - C:\WINDOWS\system32\drivers\logi_joy_hid_filter.sys (sign: 'Logitech Inc')
O23 - Driver S3: Logitech G HUB KMDF HID IO Filter Driver - (logi_generic_hid_filter) - C:\WINDOWS\system32\drivers\logi_generic_hid_filter.sys (sign: 'Logitech Inc')
O23 - Driver S3: Logitech G HUB Translation Layer Driver - (logi_joy_xlcore) - C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys (sign: 'Logitech Inc')
O23 - Driver S3: Logitech G HUB USB Filter Driver - (logi_joy_hid_lo) - C:\WINDOWS\system32\drivers\logi_joy_hid_lo.sys (sign: 'Logitech Inc')
O23 - Driver S3: Logitech G HUB Virtual Bus Enumerator Driver - (logi_joy_bus_enum) - C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys (sign: 'Logitech Inc')
O23 - Driver S3: Logitech G HUB Virtual HID Device Driver - (logi_joy_vir_hid) - C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys (sign: 'Logitech Inc')
O23 - Driver S3: NVIDIA USB Type-C PPC Service - (UcmCxUcsiNvppc) - C:\WINDOWS\System32\DriverStore\FileRepository\nvppc.inf_amd64_fecb683ef442b542\UcmCxUcsiNvppc.sys (sign: 'Nvidia Corporation')
O23 - Driver S3: pwdspio - C:\WINDOWS\system32\pwdspio.sys (sign: 'MiniTool Solution Ltd')
O23 - Driver S3: Realtek NetAdapter Driver - (rt25cx21) - C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys (sign: 'Realtek Semiconductor Corp.')
O23 - Driver S3: Realtek USB Card Reader - UER - (RTSUER) - C:\WINDOWS\system32\Drivers\RtsUer.sys (sign: 'Realtek Semiconductor Corp.')
O23 - Driver S3: SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) - (dg_ssudbus) - C:\WINDOWS\System32\drivers\ssudbus2.sys (+safe mode) (sign: 'Samsung Electronics CO., LTD.')
O23 - Driver S3: SAMSUNG Mobile USB QCRMNET Filter Driver - (ssudqcfilter) - C:\WINDOWS\System32\drivers\ssudqcfilter.sys (sign: 'Samsung Electronics CO., LTD.')
O23 - Driver S3: UniFairy_x64 - C:\WINDOWS\system32\drivers\UniFairy_x64.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Driver S3: unirsdt - C:\WINDOWS\system32\drivers\unirsdt.sys (sign: 'Tencent Technology (Shenzhen) Company Limited')
O23 - Driver S3: Virtual Gamepad Emulation Service - (ViGEmBus) - C:\WINDOWS\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys (sign: 'HP Inc.')
O23 - Driver S3: WinDivert - D:\GoodbyeDPI\x86_64\WinDivert64.sys (file missing)
O23 - Driver S3: xhunter1 - C:\WINDOWS\xhunter1.sys (sign: 'Wellbia.com Co., Ltd.')
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service:  'klim6'
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service:  'kltun'
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service:  'klwtp.K4W-21-21'
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service:  'mtkwlex'
O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service:  'rt640x64'
O26 - Office Addin: HKLM\..\OutlookKLAvPlg.Addin_6A81B6CF-E964-4C41-B967-48EBD097D3C0 - (Kaspersky4Win Outlook Anti-Virus Addin) -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\x64\mcou.dll (sign: 'AO Kaspersky Lab')
O26-32 - Office Addin: HKLM\..\OutlookKLAvPlg.Addin_6A81B6CF-E964-4C41-B967-48EBD097D3C0 - (Kaspersky4Win Outlook Anti-Virus Addin) -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.21\mcou.dll (sign: 'AO Kaspersky Lab')


--
End of file - Time spent: 22,5 sec. - 71542 bytes, CRC32: FFFFFFFF. Sign: 柂펉
 
Bir yetkili veya uzman arkadaş kontrol edip geri dönüş sağlayabilir mi? Bilgisayarıma virüs bulaştı temizlemeye çalıştım format attım BIOS vs. sıfırladım ters bir durum görünüyor mu ya da daha derinlemesine bakabileceğim bir uygulama var mıdır?
Bir sorun gözükmüyor. Fazla güvenlik yazılımı ve araç kullanmayın bunlar daha çok riske atar sizi.
Ek olarak AMD sürücülerinizin güncelliğini bir kontrol edin.
 

Technopat Haberler

Yeni konular

Geri
Yukarı