Bilgisayarda işlemler engelleniyor

TéQ10

Kilopat
Katılım
11 Ağustos 2017
Mesajlar
1.535
Çözümler
5
Bilgisayarımda ESET kullanıyordum, şimdi ESET'i Sosyal'dekilerin önerisiyle sileceğim. MalvareBytes'a geçeceğim. Ama ESET'i ve MalvareBytes'ın korumasını kapatsam bile bir şey uygulamaların çalışmasını engelliyor. Bu büyük ihtimalle antivirüs uygulamasıyla alakalı değil. Bu büyük ihtimalle virüs ve bunu MalvareBytes ve ESET derin tarama sonucu bulamıyorlar. Bu sorunu nasıl çözebilirim?
Not: ESET'i biraz önce sildim hala ESET çalışıyor hatası alıyorum.

Tencent Gaming Buddy, Minecraft gibi uygulamalar güncelleme yapamıyor, Windows güvenlik duvarı açılmıyor, tarayıcılar gereğinden fazla RAM kullanıyor.
Not 2: Bilgisayarımda Miner yok.
Bu arada bir rapor gerekiyor mu?
 
Çözüm
Merhaba,

Dün size cevap yazamadım forum yöneticilerinin lüzumsuz Türkçe uygulamaları nedeni ile. Bu nedenle, bu konuda işim bittikten sonra artık forumdan tamamen ayrılıyorum.

Loglarınızı inceledim. Yapılması gereken çok iş var. İzin ve erişim sorunlarınız, kaldırılması gereken yazılımlar, halen sisteminizde bulunan antivirüs kalıntıları falan. Benimle bunları çözmeye hala istekli iseniz, adım adım ilerleyebilmek için aşağıda verdiğim işlemleri yapın. Yoksa yukarıda yazdığım gibi.

Task: {81769E9B-F0AB-48D6-B832-559185A6990A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\lamer\AppData\Local\Temp\scoped_dir7704_28056\AdwCleaner.exe [2018-09-16] (Malwarebytes) <==== ATTENTION
UmmyVideoDownloader (HKLM-x32\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.8.3.3 - ) <==== ATTENTION
UmmyVideoDownloader ve Adwcleaner yazılımlarını kaldırın. UmmyVideoDownloader yazılımını RevoUninstaller Free ile kaldırmanızı öneririm.

RevoUninstaller yazılımını açmışken alttaki yazılımları da kaldırmanızı öneririm. Bu yazılımları hiç kullanmamanız en iyisidir. Bu sadece bir öneridir ve kaldırmayacaksanız yazın bileyim. Çünkü, kaldırmamız gereken birçok bilgi satırı var. Onlarla beraber bu yazılımlara ait bilgileri de eklemem gerekecek listeye.

Wise Registry Cleaner
Wise Game Booster
Wise Memory Optimizer
IObit Uninstaller 8 (IObit klasörünü tamamen)

================================================================
C:\Users\lamer\Downloads\CReaTive_HacKs.rar
C:\Users\lamer\NTUSER.rhk
C:\Users\lamer\Desktop\cpppckaiebkfps.exe

Bunlar hakkında bilginiz var mı?
-----------------------------------------------------------------------------

Windows Defender:
===================================
Date: 2018-08-21 16:12:41.625
Description:
Windows Defender Virüsten Koruma kötü amaçlı yazılım veya başka bir istenmeyebilecek yazılım algıladı.
Daha fazla bilgi için lütfen aşağıya bakın:
Trojan:Win32/Tiggre!rfn threat description - Windows Defender Security Intelligence
Ad: Trojan:Win32/Tiggre!rfn
Kimlik: 2147723625
Önem Derecesi: Ciddi
Kategori: Truva Atı
Yol: file:_C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe; process:_pid:8292,ProcessStart:131793305823454899
Algılama Başlangıç Noktası: Yerel makine
Algılama Türü: Somut
Algılama Kaynağı: Sistem
Kullanıcı: NT AUTHORITY\SYSTEM
İşlem Adı: C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe
İmza Sürümü: AV: 1.273.1749.0, AS: 1.273.1749.0, NIS: 1.273.1749.0
Altyapı Sürümü: AM: 1.1.15100.1, NIS: 1.1.15100.1

Date: 2018-08-21 16:10:08.156
Description:
Windows Defender Virüsten Koruma kötü amaçlı yazılım veya başka bir istenmeyebilecek yazılım algıladı.
Daha fazla bilgi için lütfen aşağıya bakın:
Trojan:Win32/Tiggre!rfn threat description - Windows Defender Security Intelligence
Ad: Trojan:Win32/Tiggre!rfn
Kimlik: 2147723625
Önem Derecesi: Ciddi
Kategori: Truva Atı
Yol: file:_C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe
Yukarıdaki bulgu için, Kasperky yazılımını durdurun. Defender ile tam tarama yaparak bulunanları silin.

Yukarıdaki yaptığınız işlem adımları ile ilgili beni de bilgilendirin. Sonra diğer işlemlere geçelim.
Yüksek ihtimaldir'ki eset antivirüsün dosyaları hala bilgisayarınızda mevcut eset'i tekrar kurun ve kayıt defteri ile silen programlar ile kaldırın. Revo unnistaller tavsiyemdir kolay gelsin
 
@102035 ESET'i sildim. Konuyu okumadan cevap vermeyin.
Eset'i sildiyseniz diğer açmış olduğunuz konuda işlemleri yaptığınıza dair cevap yazmalısınız. Burada herkes size yardımcı olmaya çalışıyor. Diğer konuda verdiğim eset kaldırma işlemlerini yapmışsanız sisteminizden kalkmıştır. Aksini düşünüyorsanız demekki yazılanları tam olarak yapamadınız demektir.

Farbar Recovery Scan Tool yazılımını masaüzerinde çalıştırın. Size iki log verecek.Logları bizimle paylaşın.
Download Farbar Recovery Scan Tool
 
FRST.TXT:
Kod:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15.09.2018
Ran by lamer (administrator) on DESKTOP-508NC26 (16-09-2018 13:37:41)
Running from C:\Users\lamer\AppData\Local\Temp\scoped_dir8108_22656
Loaded Profiles: lamer (Available Profiles: lamer)
Platform: Windows 10 Pro Version 1803 17134.285 (X64) Language: Türkçe (Türkiye)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Malwarebytes) C:\Users\lamer\AppData\Local\Temp\scoped_dir7704_28056\AdwCleaner.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(cFos Software GmbH) C:\cFosSpeed\spd.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Kaspersky Lab) C:\Users\lamer\AppData\Local\Temp\scoped_dir8108_18700\startup_14716.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(WiseCleaner.com) C:\Users\lamer\Desktop\Wise Registry Cleaner\WiseRegCleaner.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe
(Opera Software) C:\Program Files\Opera\55.0.2994.56\opera.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3125896 2018-05-18] (Logitech, Inc.)
HKLM\...\Run: [cFosSpeed] => C:\cFosSpeed\cFosSpeed.exe [1644376 2018-08-29] (cFos Software GmbH)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
GroupPolicy: Restriction ? <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{03cf7540-4f74-44b7-9012-fbe9d7dbfb33}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{27aa922b-05df-4d94-858b-8a3c04bc0e7b}: [DhcpNameServer] 194.187.251.67 185.93.180.131 83.143.245.42

Internet Explorer:
==================
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=625119&clcid=0x41F
SearchScopes: HKU\S-1-5-21-1315265887-1540288157-3388349337-1001 -> DefaultScope {8C3078A0-9AAB-4371-85D1-656CA8E46EE8} URL = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630
SearchScopes: HKU\S-1-5-21-1315265887-1540288157-3388349337-1001 -> {8C3078A0-9AAB-4371-85D1-656CA8E46EE8} URL = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-08-06] (Oracle Corporation)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2018-05-18] (Logitech, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-08-06] (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2018-05-04] (HP Inc.)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2018-05-18] (Logitech, Inc.)

Edge:
======
Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.11.0_neutral__d55gg7py3s0m0 [2018-05-31]

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2018-08-11] [not signed]
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-01-24] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-08-06] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-08-06] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-01-24] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-04-24] (Adobe Systems)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-01-24] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181 x32\bin\dtplugin\npDeployJava1.dll [2018-08-06] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181 x32\bin\plugin2\npjp2.dll [2018-08-06] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-01-24] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-04-24] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1315265887-1540288157-3388349337-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-01-24] (Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1315265887-1540288157-3388349337-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\lamer\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2017-05-18] (Unity Technologies ApS)

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com.tr/"
CHR NewTab: Default ->  Not-active:"chrome-extension://ecfnoapfedndbghojfaillliflooafkp/newtab.html"
CHR Profile: C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default [2018-09-14]
CHR Extension: (Ads Link Skiper) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkpeohkfimdfogdnpcnokjkbpankkmil [2018-08-03]
CHR Extension: (Adblock Plus) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-09-11]
CHR Extension: (Orbitum Speed Dial) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbaonaocldpohelilahfhnkmjankmbcc [2018-05-12]
CHR Extension: (Tampermonkey) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-09-04]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2018-05-11]
CHR Extension: (Çoklu Arama) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecfnoapfedndbghojfaillliflooafkp [2018-05-12]
CHR Extension: (Arcane Legends) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibmlkgieigeddcedpbijnpojheoddido [2018-09-11]
CHR Extension: (Gamekit) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeedakojomhhndjiacgkhlkknflflchl [2018-06-30]
CHR Extension: (Chrome Web Mağazası Ödemeleri) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Chrome Media Router) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-05-30]
CHR Extension: (Browse Faster) - C:\Users\lamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ponhjlldbpnmeieenmaacddmlfpdielh [2018-04-07]

Opera:
=======
OPR Extension: (Avira Browser Safety) - C:\Users\lamer\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2018-09-02]
OPR Extension: (Install Chrome Extensions) - C:\Users\lamer\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2018-09-03]
OPR Extension: (Mining Blocker) - C:\Users\lamer\AppData\Roaming\Opera Software\Opera Stable\Extensions\nbpfigdgbjgoejmnffbpgmbcnppjjokp [2018-09-02]
OPR Extension: (Adblock Plus) - C:\Users\lamer\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2018-09-11]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-04-24] (Adobe Systems Incorporated)
S3 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
S2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0331246.inf_amd64_7dbd15b8c381571a\B330925\atiesrxx.exe [473904 2018-07-19] (AMD)
S2 AUEPLauncher; C:\Program Files (x86)\AMD\Performance Profile Client\AUEPLauncher.exe [7680 2018-07-11] () [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7252656 2018-09-02] ()
R2 cFosSpeedS; C:\cFosSpeed\spd.exe [604504 2018-02-19] (cFos Software GmbH)
S2 CG6Service; C:\Program Files\CyberGhost\CyberGhost.Service.exe [232528 2017-08-31] (CyberGhost S.A.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3639400 2018-03-21] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-09-02] (EasyAntiCheat Ltd)
S3 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3346856 2018-05-30] (LogMeIn Inc.)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [File not signed]
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R3 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc.)
S2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [353768 2018-05-03] (Intel Corporation)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [149776 2018-06-28] (IObit)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)
S3 npggsvc; C:\Windows\system32\GameMon.des [8019808 2018-03-29] (INCA Internet Co., Ltd.)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [8156880 2017-04-10] (INCA Internet Co., Ltd.)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2201920 2018-07-04] (Electronic Arts)
S4 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3072328 2018-07-04] (Electronic Arts)
S4 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1967432 2018-07-01] (Overwolf LTD)
S3 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [66872 2018-05-14] ()
S4 QMEmulatorService; D:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [342776 2018-06-21] (Tencent)
S4 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [147792 2017-08-12] (Razer Inc)
S4 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532352 2017-11-07] (Razer Inc.)
S4 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [502144 2017-11-13] (Razer Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-07-15] (Microsoft Corporation)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S3 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated)
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11293936 2018-04-03] (TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe [3905952 2018-08-01] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe [110944 2018-08-01] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53752 2018-05-15] (HP)
S3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2018-03-06] (The OpenVPN Project)
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0331246.inf_amd64_7dbd15b8c381571a\B330925\atikmdag.sys [44331304 2018-07-19] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0331246.inf_amd64_7dbd15b8c381571a\B330925\atikmpag.sys [559408 2018-07-19] (Advanced Micro Devices, Inc.)
R2 aow_drv; D:\Program Files\TxGameAssistant\UI\2.0.6418.123\aow_drv_x64_ev.sys [853776 2018-09-14] (Tencent)
R4 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [243400 2018-01-27] (AO Kaspersky Lab)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-04-05] (Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-04-05] (Disc Soft Ltd)
S3 ESETCleanersDriver; C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [181160 2018-08-05] (ESET)
S3 FairplayKD; C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [87048 2018-09-07] (Multi Theft Auto)
S3 h647906; C:\WINDOWS\System32\drivers\h647906.sys [63856 2008-08-08] (Your Corporation)
S3 h648101; C:\WINDOWS\System32\drivers\h648101.sys [65776 2008-08-08] (Your Corporation)
S3 h648103; C:\WINDOWS\System32\drivers\h648103.sys [62960 2008-08-08] (Your Corporation)
R3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2018-05-30] (LogMeIn Inc.)
S3 hid7906; C:\Windows\SysWOW64\drivers\hid7906.sys [41272 2008-08-08] (Your Corporation)
S3 hid8101; C:\Windows\SysWOW64\drivers\hid8101.sys [43192 2008-08-08] (Your Corporation)
S3 hid8103; C:\Windows\SysWOW64\drivers\hid8103.sys [40856 2008-08-08] (Your Corporation)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [40960 2018-05-15] (HP)
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37184 2018-05-12] (IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [43392 2018-05-15] (IObit)
R4 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [87752 2018-07-20] (AO Kaspersky Lab)
R4 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [220360 2018-09-16] (AO Kaspersky Lab)
R4 KLHK; C:\WINDOWS\System32\drivers\klhk.sys [1193160 2018-09-16] (AO Kaspersky Lab)
R4 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1112264 2018-09-16] (AO Kaspersky Lab)
R4 klkbdflt2; C:\WINDOWS\system32\DRIVERS\klkbdflt2.sys [48320 2018-01-14] (AO Kaspersky Lab)
R4 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [50648 2017-05-30] (AO Kaspersky Lab)
R4 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [203968 2018-02-24] (AO Kaspersky Lab)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193256 2018-09-16] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [117472 2018-09-16] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [52328 2018-09-16] (Malwarebytes)
R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [259360 2018-09-16] (Malwarebytes)
R3 netr28x; C:\WINDOWS\System32\drivers\netr28x.sys [2537984 2018-04-12] (MediaTek Inc.)
U5 PROCMON24; C:\Windows\System32\Drivers\PROCMON24.sys [93960 2018-07-18] (Sysinternals - www.sysinternals.com)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2018-04-12] (Realtek )
R3 rtbth; C:\WINDOWS\System32\drivers\rtbth.sys [1219200 2015-06-03] (Ralink Technology, Corp.)
S3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [751632 2015-05-14] (Realsil Semiconductor Corporation)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [139704 2017-08-19] (Razer, Inc.)
R1 SMR521; C:\WINDOWS\System32\drivers\SMR521.SYS [119888 2018-09-16] (Symantec Corporation)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [213080 2018-07-16] (Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [222864 2018-07-16] (Oracle Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46584 2018-08-01] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [340008 2018-08-01] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61992 2018-08-01] (Microsoft Corporation)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [1 2018-09-12] ()

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-09-16 13:37 - 2018-09-16 13:37 - 011329536 _____ C:\Users\lamer\NTUSER.rhk
2018-09-16 13:36 - 2018-09-16 13:37 - 000000000 ____D C:\FRST
2018-09-16 13:35 - 2018-09-16 13:35 - 002413568 _____ (Farbar) C:\Users\lamer\Desktop\FRST64.exe
2018-09-16 13:34 - 2018-09-16 13:36 - 000000000 ____D C:\Users\lamer\Desktop\Wise Registry Cleaner
2018-09-16 13:34 - 2018-09-16 13:34 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Wise Euask
2018-09-16 13:32 - 2018-09-16 13:33 - 003179067 _____ C:\Users\lamer\Downloads\WRCFree.zip
2018-09-16 13:31 - 2018-09-16 13:31 - 000003222 _____ C:\WINDOWS\System32\Tasks\AdwCleaner_onReboot
2018-09-16 13:30 - 2018-09-16 13:31 - 000000020 _____ C:\WINDOWS\system32\Drivers\SMR521.dat
2018-09-16 13:30 - 2018-09-16 13:30 - 000119888 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SMR521.SYS
2018-09-16 13:30 - 2018-09-16 13:30 - 000000000 ____D C:\Users\lamer\AppData\Local\NPE
2018-09-16 13:30 - 2018-09-16 13:30 - 000000000 ____D C:\ProgramData\Norton
2018-09-16 13:29 - 2018-09-16 13:31 - 000000000 ____D C:\AdwCleaner
2018-09-16 13:29 - 2018-09-16 13:30 - 009497720 _____ (Symantec Corporation) C:\Users\lamer\Desktop\NPE.exe
2018-09-16 13:28 - 2018-09-16 13:29 - 007567568 _____ (Malwarebytes) C:\Users\lamer\Desktop\AdwCleaner.exe
2018-09-16 13:27 - 2018-09-16 13:27 - 002538880 _____ (Kaspersky Lab) C:\Users\lamer\Desktop\startup_14716.exe
2018-09-16 13:25 - 2018-09-16 13:31 - 000000804 _____ C:\PureRa.txt
2018-09-16 13:25 - 2011-07-31 16:14 - 000076565 _____ (RaProducts.org) C:\Users\lamer\Desktop\PureRa.exe
2018-09-16 13:24 - 2018-09-16 13:24 - 000027505 _____ C:\Users\lamer\Downloads\PureRa.zip
2018-09-16 13:22 - 2018-09-16 13:24 - 006625600 _____ (Zemana Ltd. ) C:\Users\lamer\Desktop\Zemana.AntiMalware.Setup.exe
2018-09-16 13:17 - 2018-09-16 13:25 - 000000000 ____D C:\Program Files\Common Files\AV
2018-09-16 13:17 - 2018-09-16 13:17 - 000003392 _____ C:\WINDOWS\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2018-09-16 13:16 - 2018-09-16 13:17 - 000000000 ____D C:\Users\lamer\Desktop\backups
2018-09-16 13:16 - 2018-09-16 13:16 - 000236488 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys
2018-09-16 13:16 - 2018-09-16 13:16 - 000177848 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys
2018-09-16 13:16 - 2018-09-16 13:16 - 000109248 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2018-09-16 13:16 - 2018-09-16 13:16 - 000087584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys
2018-09-16 13:14 - 2018-09-16 13:25 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2018-09-16 13:14 - 2018-09-16 13:14 - 001193160 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys
2018-09-16 13:14 - 2018-09-16 13:14 - 001112264 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys
2018-09-16 13:14 - 2018-09-16 13:14 - 000220360 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys
2018-09-16 13:14 - 2018-09-16 13:14 - 000152360 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\klhkum.dll
2018-09-16 13:02 - 2018-09-16 13:02 - 002681216 _____ (Kaspersky Lab) C:\Users\lamer\Desktop\startup_14704.exe
2018-09-16 12:38 - 2018-09-16 12:38 - 000003142 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2018-09-16 12:34 - 2018-09-16 12:34 - 000117472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2018-09-16 12:34 - 2018-09-16 12:34 - 000052328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2018-09-16 12:34 - 2018-09-16 12:34 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2018-09-16 12:24 - 2018-09-16 12:24 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1315265887-1540288157-3388349337-1001
2018-09-16 12:23 - 2018-09-16 12:24 - 000002341 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-09-16 12:17 - 2018-09-16 12:17 - 000388608 _____ (Trend Micro Inc.) C:\Users\lamer\Desktop\HijackThis.exe
2018-09-16 10:58 - 2018-09-16 10:58 - 000259360 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-09-16 10:50 - 2018-09-16 10:50 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2018-09-16 10:49 - 2018-09-16 10:49 - 000193256 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2018-09-16 10:27 - 2018-09-16 10:27 - 001090168 _____ (ESET) C:\Users\lamer\Desktop\esetuninstaller.exe
2018-09-16 07:26 - 2018-09-16 10:56 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForlamer.job
2018-09-16 07:26 - 2018-09-16 07:26 - 000003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForlamer
2018-09-15 23:30 - 2018-09-15 23:30 - 001790024 _____ (Malwarebytes) C:\Users\lamer\Desktop\JRT.exe
2018-09-15 23:11 - 2018-09-15 23:11 - 000872960 _____ (None) C:\Users\lamer\Desktop\Antivirus Remover.exe
2018-09-15 11:59 - 2018-09-15 11:59 - 002504715 _____ C:\Users\lamer\Downloads\com.apkpure.installer_1.3.apk
2018-09-15 09:53 - 2018-09-15 11:39 - 1551422677 _____ C:\Users\lamer\Downloads\pubg-mobile-0-8-0.xapk
2018-09-15 09:15 - 2018-09-15 09:15 - 000001085 _____ C:\Users\lamer\Desktop\PUBG MOBILE.lnk
2018-09-14 22:23 - 2018-09-14 22:23 - 000000903 _____ C:\Users\lamer\Desktop\Tencent Gaming Buddy.lnk
2018-09-14 22:21 - 2018-09-14 22:22 - 009089784 _____ (Tencent) C:\Users\lamer\Desktop\GameDownload_PUBG_MOBILE_100103_1.0.5727.123.exe
2018-09-14 21:25 - 2018-09-14 21:25 - 000879332 _____ C:\Users\lamer\Documents\Tencent Gaming Buddy Tanılama Sonuçları.zip
2018-09-14 20:59 - 2018-09-14 21:25 - 000000000 ____D C:\Users\lamer\Documents\MobileGamePC
2018-09-14 18:08 - 2018-09-15 10:04 - 000000000 ____D C:\Users\lamer\AppData\Roaming\.minecraft
2018-09-14 18:07 - 2018-09-14 18:07 - 000001038 _____ C:\Users\Public\Desktop\Minecraft.lnk
2018-09-14 17:52 - 2018-05-14 15:00 - 001086602 _____ () C:\Users\lamer\Desktop\CandyCraft Launcher (Windows).exe
2018-09-14 17:51 - 2018-09-14 17:51 - 000739995 _____ C:\Users\lamer\Downloads\CandyCraft Launcher (Windows).zip
2018-09-14 17:42 - 2018-09-14 17:44 - 039260160 _____ C:\Users\lamer\Desktop\MinecraftInstaller.msi
2018-09-14 17:33 - 2017-11-12 20:25 - 000081920 _____ (MCLeaks) C:\Users\lamer\Downloads\MCLeaksAuthenticator.exe
2018-09-14 17:20 - 2018-09-14 17:20 - 000043633 _____ C:\Users\lamer\Downloads\MCLeaksAuthenticator.zip
2018-09-14 15:46 - 2018-09-05 01:36 - 001476904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2018-09-14 15:10 - 2018-09-14 14:57 - 000090112 _____ C:\Users\lamer\Desktop\Deneme 3.exe
2018-09-14 15:09 - 2018-09-14 15:09 - 000000000 ____D C:\Users\lamer\Desktop\Deneme 3
2018-09-14 11:15 - 2018-09-14 11:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2018-09-14 11:13 - 2018-09-14 11:13 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2018-09-14 11:13 - 2018-09-14 11:13 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2018-09-14 11:10 - 2018-09-14 11:10 - 000000000 ____D C:\WINDOWS\symbols
2018-09-14 11:08 - 2018-09-14 11:08 - 000000000 ____D C:\Users\Default\Documents\Visual Studio 2010
2018-09-14 11:08 - 2018-09-14 11:08 - 000000000 ____D C:\Users\Default User\Documents\Visual Studio 2010
2018-09-14 11:05 - 2018-09-14 11:05 - 000000000 ____D C:\ProgramData\VS
2018-09-14 10:52 - 2018-09-14 15:09 - 000000000 ____D C:\Users\lamer\AppData\Local\Temporary Projects
2018-09-13 20:18 - 2018-09-13 20:18 - 000000000 ____D C:\Users\lamer\Desktop\Deneme 2
2018-09-13 15:23 - 2018-09-13 15:23 - 000000000 ____D C:\Users\lamer\Desktop\Denemeee
2018-09-13 11:36 - 2018-09-13 11:36 - 000000000 ____D C:\Users\lamer\Desktop\CReaTive_HacKs
2018-09-13 11:35 - 2018-09-13 11:35 - 000787926 _____ C:\Users\lamer\Downloads\CReaTive_HacKs.rar
2018-09-13 11:35 - 2018-09-13 11:35 - 000787926 _____ C:\Users\lamer\Desktop\CReaTive_HacKs.rar
2018-09-13 11:26 - 2018-09-13 11:26 - 000000000 ____D C:\Program Files\Microsoft Synchronization Services
2018-09-13 11:26 - 2018-09-13 11:26 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2018-09-13 11:26 - 2018-09-13 11:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2018-09-13 11:26 - 2018-09-13 11:26 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2018-09-13 11:26 - 2018-09-13 11:26 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2018-09-13 11:25 - 2018-09-14 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express
2018-09-13 11:25 - 2018-09-13 11:30 - 000000000 ____D C:\Users\lamer\Documents\Visual Studio 2010
2018-09-13 11:23 - 2018-09-13 11:27 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2018-09-13 11:22 - 2018-09-13 11:22 - 000000000 ____D C:\Program Files\Microsoft Visual Studio 10.0
2018-09-13 11:22 - 2018-09-13 11:22 - 000000000 ____D C:\Program Files\Microsoft Help Viewer
2018-09-13 11:22 - 2018-09-13 11:22 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2018-09-13 10:57 - 2018-09-13 10:57 - 000001470 _____ C:\WINDOWS\ODBCINST.INI
2018-09-13 10:57 - 2018-09-13 10:57 - 000000288 _____ C:\WINDOWS\ODBC.INI
2018-09-13 10:56 - 2018-09-13 11:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 6.0
2018-09-13 10:56 - 2018-09-13 10:56 - 000001273 _____ C:\WINDOWS\VB.INI
2018-09-13 10:56 - 2018-09-13 10:56 - 000000035 _____ C:\WINDOWS\vbaddin.ini
2018-09-13 10:56 - 2018-09-13 10:56 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Web Publishing
2018-09-13 10:56 - 2018-09-13 10:56 - 000000000 ____D C:\Program Files (x86)\Web Publish
2018-09-13 10:56 - 2018-09-13 10:56 - 000000000 _____ C:\WINDOWS\wplog.txt
2018-09-13 10:54 - 2018-09-13 10:54 - 000000000 ____D C:\WINDOWS\msapps
2018-09-13 10:51 - 2018-09-13 10:51 - 000143300 _____ C:\WINDOWS\vssetup.ttf
2018-09-13 10:51 - 2018-09-13 10:51 - 000001409 _____ C:\WINDOWS\vssetup.for
2018-09-13 10:32 - 2018-09-13 10:32 - 000000000 ____D C:\WINDOWS\Java
2018-09-13 10:32 - 1998-06-02 14:46 - 000361744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\javart.dll
2018-09-13 10:32 - 1998-06-02 14:46 - 000155920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msawt.dll
2018-09-13 10:32 - 1998-06-02 14:45 - 000843024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjava.dll
2018-09-13 10:32 - 1998-06-02 14:45 - 000140048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jit.dll
2018-09-13 10:32 - 1998-06-02 13:10 - 000209168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\javacypt.dll
2018-09-13 10:32 - 1998-06-02 13:10 - 000032528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\javaprxy.dll
2018-09-13 10:32 - 1998-06-02 12:44 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\clspack.exe
2018-09-13 10:32 - 1998-06-02 12:43 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vmhelper.dll
2018-09-13 10:32 - 1998-06-02 12:41 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\setdebug.exe
2018-09-13 10:32 - 1998-06-02 12:29 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\jview.exe
2018-09-13 10:32 - 1998-06-02 12:29 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\wjview.exe
2018-09-13 10:32 - 1998-06-02 12:29 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\javaee.dll
2018-09-13 10:32 - 1998-06-02 12:29 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jdbgmgr.exe
2018-09-13 10:32 - 1998-06-02 12:28 - 000007356 _____ C:\WINDOWS\SysWOW64\javasup.vxd
2018-09-13 10:32 - 1998-06-02 12:05 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\extrac32.exe
2018-09-13 10:32 - 1998-06-02 12:05 - 000000113 _____ C:\WINDOWS\SysWOW64\zonedon.reg
2018-09-13 10:32 - 1998-06-02 12:05 - 000000113 _____ C:\WINDOWS\SysWOW64\zonedoff.reg
2018-09-13 10:32 - 1998-06-02 11:57 - 000006550 _____ C:\WINDOWS\jautoexp.dat
2018-09-13 10:32 - 1998-06-02 11:56 - 000313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dx3j.dll
2018-09-13 10:32 - 1998-06-02 11:56 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjdbc10.dll
2018-09-13 10:32 - 1998-06-02 11:46 - 000021444 _____ C:\WINDOWS\SysWOW64\javasec.hlp
2018-09-13 10:32 - 1998-06-02 11:46 - 000011403 _____ C:\WINDOWS\SysWOW64\javaperm.hlp
2018-09-13 10:14 - 2018-09-13 10:27 - 313307109 _____ C:\Users\lamer\Downloads\VS6ProfessionalEdition.rar
2018-09-13 09:52 - 2018-09-13 09:52 - 001703922 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2018-09-13 09:49 - 2018-09-13 09:49 - 000000000 ____D C:\WINDOWS\SysWOW64\URTTEMP
2018-09-13 09:44 - 2018-09-13 09:44 - 000000708 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2017.lnk
2018-09-12 20:24 - 2018-09-12 20:24 - 000000001 _____ C:\WINDOWS\xspirit.sys
2018-09-12 10:50 - 2018-09-12 10:50 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2018-09-12 10:49 - 2018-09-12 10:49 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2018-09-12 10:49 - 2018-09-12 10:49 - 000134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2018-09-12 10:39 - 2018-08-31 10:27 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2018-09-12 10:39 - 2018-08-31 10:24 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-09-12 10:39 - 2018-08-31 10:22 - 001855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-09-12 10:39 - 2018-08-31 09:55 - 001455960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-09-12 10:39 - 2018-08-31 09:53 - 001327504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-09-12 10:39 - 2018-08-31 09:41 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2018-09-12 10:39 - 2018-08-31 09:37 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-09-12 10:39 - 2018-08-31 09:37 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-09-12 10:39 - 2018-08-31 06:44 - 001030952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-09-12 10:39 - 2018-08-31 06:44 - 000076256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-09-12 10:39 - 2018-08-31 06:42 - 000604640 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-09-12 10:39 - 2018-08-31 06:28 - 006043680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-09-12 10:39 - 2018-08-31 06:28 - 001989496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-09-12 10:39 - 2018-08-31 06:28 - 000568568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-09-12 10:39 - 2018-08-31 06:16 - 006661120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-09-12 10:39 - 2018-08-31 06:15 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-09-12 10:39 - 2018-08-31 06:15 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-09-12 10:39 - 2018-08-31 06:15 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2018-09-12 10:39 - 2018-08-31 06:15 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2018-09-12 10:39 - 2018-08-31 06:14 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-09-12 10:39 - 2018-08-31 06:14 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-09-12 10:39 - 2018-08-31 06:14 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-09-12 10:39 - 2018-08-31 06:13 - 002738688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-09-12 10:39 - 2018-08-31 06:13 - 000402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2018-09-12 10:39 - 2018-08-31 06:11 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-09-12 10:39 - 2018-08-31 06:11 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-09-12 10:39 - 2018-08-31 06:10 - 005777920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-09-12 10:39 - 2018-08-31 06:10 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-09-12 10:39 - 2018-08-31 06:10 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-09-12 10:39 - 2018-08-31 06:10 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2018-09-12 10:39 - 2018-08-31 06:10 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2018-09-12 10:39 - 2018-08-31 06:09 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2018-09-12 10:39 - 2018-08-31 06:07 - 001627648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-09-12 10:39 - 2018-08-31 06:07 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2018-09-12 10:39 - 2018-08-09 12:12 - 002084864 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2018-09-12 10:39 - 2018-08-09 12:12 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2018-09-12 10:39 - 2018-08-09 12:10 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2018-09-12 10:39 - 2018-08-09 11:24 - 011901952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-09-12 10:39 - 2018-08-09 11:22 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2018-09-12 10:39 - 2018-08-09 11:21 - 002894848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-09-12 10:39 - 2018-08-09 11:21 - 002016768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2018-09-12 10:39 - 2018-08-09 11:20 - 002401792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2018-09-12 10:39 - 2018-08-09 07:55 - 000230304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2018-09-12 10:39 - 2018-08-09 07:54 - 000375704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-09-12 10:39 - 2018-08-09 07:54 - 000170912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-09-12 10:39 - 2018-08-09 07:53 - 002765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-09-12 10:39 - 2018-08-09 07:53 - 001026456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-09-12 10:39 - 2018-08-09 07:30 - 000829856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2018-09-12 10:39 - 2018-08-09 07:29 - 002253584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-09-12 10:39 - 2018-08-09 07:26 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-09-12 10:39 - 2018-08-09 07:24 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-09-12 10:39 - 2018-08-09 07:23 - 002172928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-09-12 10:39 - 2018-08-09 07:23 - 000916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2018-09-12 10:39 - 2018-08-09 07:22 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-09-12 10:39 - 2018-08-09 07:11 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-09-12 10:39 - 2018-08-09 07:10 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2018-09-12 10:39 - 2018-08-09 07:09 - 004191232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-09-12 10:38 - 2018-08-31 10:43 - 001524152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-09-12 10:38 - 2018-08-31 10:42 - 001636232 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-09-12 10:38 - 2018-08-31 10:23 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-09-12 10:38 - 2018-08-31 06:44 - 001222440 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-09-12 10:38 - 2018-08-31 06:43 - 002719216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-09-12 10:38 - 2018-08-31 06:42 - 009090016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-09-12 10:38 - 2018-08-31 06:42 - 007520064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-09-12 10:38 - 2018-08-31 06:42 - 007436192 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-09-12 10:38 - 2018-08-31 06:42 - 002824672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-09-12 10:38 - 2018-08-31 06:42 - 002461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-09-12 10:38 - 2018-08-31 06:42 - 001097720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-09-12 10:38 - 2018-08-31 06:42 - 000885928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-09-12 10:38 - 2018-08-31 06:28 - 006570040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-09-12 10:38 - 2018-08-31 06:28 - 001129728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-09-12 10:38 - 2018-08-31 06:26 - 025847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-09-12 10:38 - 2018-08-31 06:21 - 022008320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-09-12 10:38 - 2018-08-31 06:20 - 022715904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-09-12 10:38 - 2018-08-31 06:18 - 008189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-09-12 10:38 - 2018-08-31 06:17 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-09-12 10:38 - 2018-08-31 06:16 - 019404288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-09-12 10:38 - 2018-08-31 06:16 - 004382720 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-09-12 10:38 - 2018-08-31 06:15 - 007577088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-09-12 10:38 - 2018-08-31 06:15 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-09-12 10:38 - 2018-08-31 06:14 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-09-12 10:38 - 2018-08-31 06:11 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-09-12 10:38 - 2018-08-31 06:10 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-09-12 10:38 - 2018-08-28 10:17 - 023862784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2018-09-12 10:38 - 2018-08-28 09:48 - 001274368 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2018-09-12 10:38 - 2018-08-09 12:32 - 004527680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-09-12 10:38 - 2018-08-09 12:14 - 012709376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-09-12 10:38 - 2018-08-09 12:13 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2018-09-12 10:38 - 2018-08-09 12:11 - 003652608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-09-12 10:38 - 2018-08-09 08:02 - 001035144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-09-12 10:38 - 2018-08-09 07:53 - 000932136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2018-09-12 10:38 - 2018-08-09 07:28 - 003395072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-09-12 10:38 - 2018-08-09 07:25 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-09-12 10:38 - 2018-08-09 07:24 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-09-12 10:38 - 2018-08-09 07:23 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-09-12 10:38 - 2018-08-09 07:22 - 004615680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-09-12 10:38 - 2018-08-09 07:22 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-09-12 10:38 - 2018-08-09 07:11 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-09-12 10:38 - 2018-08-09 07:10 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-09-12 10:38 - 2018-08-09 07:09 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-09-12 10:37 - 2018-08-31 10:46 - 000542504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-09-12 10:37 - 2018-08-31 10:45 - 000348328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-09-12 10:37 - 2018-08-31 10:27 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2018-09-12 10:37 - 2018-08-31 10:26 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys
2018-09-12 10:37 - 2018-08-31 10:25 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2018-09-12 10:37 - 2018-08-31 10:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2018-09-12 10:37 - 2018-08-31 10:24 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2018-09-12 10:37 - 2018-08-31 10:24 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2018-09-12 10:37 - 2018-08-31 10:23 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2018-09-12 10:37 - 2018-08-31 10:22 - 001661440 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2018-09-12 10:37 - 2018-08-31 09:41 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2018-09-12 10:37 - 2018-08-31 09:40 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
2018-09-12 10:37 - 2018-08-31 09:37 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2018-09-12 10:37 - 2018-08-31 09:36 - 001469952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2018-09-12 10:37 - 2018-08-31 06:50 - 000273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-09-12 10:37 - 2018-08-31 06:50 - 000270648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-09-12 10:37 - 2018-08-31 06:44 - 001064744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-09-12 10:37 - 2018-08-31 06:44 - 000568600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-09-12 10:37 - 2018-08-31 06:44 - 000136488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-09-12 10:37 - 2018-08-31 06:43 - 000722880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-09-12 10:37 - 2018-08-31 06:42 - 001767064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2018-09-12 10:37 - 2018-08-31 06:42 - 001458552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-09-12 10:37 - 2018-08-31 06:42 - 001258352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-09-12 10:37 - 2018-08-31 06:42 - 001142000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-09-12 10:37 - 2018-08-31 06:42 - 000983080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-09-12 10:37 - 2018-08-31 06:42 - 000632296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpx.dll
2018-09-12 10:37 - 2018-08-31 06:42 - 000527328 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-09-12 10:37 - 2018-08-31 06:42 - 000494472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2018-09-12 10:37 - 2018-08-31 06:42 - 000155112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2018-09-12 10:37 - 2018-08-31 06:28 - 001514352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2018-09-12 10:37 - 2018-08-31 06:28 - 000453104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpx.dll
2018-09-12 10:37 - 2018-08-31 06:28 - 000134936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2018-09-12 10:37 - 2018-08-31 06:17 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\netevent.dll
2018-09-12 10:37 - 2018-08-31 06:14 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2018-09-12 10:37 - 2018-08-31 06:13 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-09-12 10:37 - 2018-08-31 06:12 - 000736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2018-09-12 10:37 - 2018-08-31 06:12 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netevent.dll
2018-09-12 10:37 - 2018-08-31 06:11 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-09-12 10:37 - 2018-08-31 06:11 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-09-12 10:37 - 2018-08-31 06:11 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-09-12 10:37 - 2018-08-31 06:11 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-09-12 10:37 - 2018-08-31 06:10 - 001375744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-09-12 10:37 - 2018-08-31 06:10 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-09-12 10:37 - 2018-08-31 06:10 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2018-09-12 10:37 - 2018-08-31 06:09 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-09-12 10:37 - 2018-08-31 06:08 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2018-09-12 10:37 - 2018-08-31 06:07 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-09-12 10:37 - 2018-08-31 06:06 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-09-12 10:37 - 2018-08-31 04:57 - 000001308 _____ C:\WINDOWS\system32\tcbres.wim
2018-09-12 10:37 - 2018-08-28 09:56 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2018-09-12 10:37 - 2018-08-28 09:49 - 000677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll
2018-09-12 10:37 - 2018-08-28 09:45 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2018-09-12 10:37 - 2018-08-28 08:51 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-09-12 10:37 - 2018-08-14 05:14 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2018-09-12 10:37 - 2018-08-14 05:14 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2018-09-12 10:37 - 2018-08-09 12:37 - 002267944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2018-09-12 10:37 - 2018-08-09 12:31 - 001617728 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-09-12 10:37 - 2018-08-09 12:31 - 000766872 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2018-09-12 10:37 - 2018-08-09 12:31 - 000253544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2018-09-12 10:37 - 2018-08-09 12:31 - 000236624 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2018-09-12 10:37 - 2018-08-09 12:17 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-09-12 10:37 - 2018-08-09 12:16 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2018-09-12 10:37 - 2018-08-09 12:14 - 000466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2018-09-12 10:37 - 2018-08-09 12:14 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollUI.dll
2018-09-12 10:37 - 2018-08-09 12:14 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdeploy.dll
2018-09-12 10:37 - 2018-08-09 12:13 - 000521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2018-09-12 10:37 - 2018-08-09 12:13 - 000517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\certreq.exe
2018-09-12 10:37 - 2018-08-09 12:13 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsExt.dll
2018-09-12 10:37 - 2018-08-09 12:12 - 001787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2018-09-12 10:37 - 2018-08-09 12:11 - 002051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2018-09-12 10:37 - 2018-08-09 12:11 - 001004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2018-09-12 10:37 - 2018-08-09 12:11 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2018-09-12 10:37 - 2018-08-09 12:11 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2018-09-12 10:37 - 2018-08-09 12:10 - 001557504 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2018-09-12 10:37 - 2018-08-09 12:10 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2018-09-12 10:37 - 2018-08-09 12:09 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll
2018-09-12 10:37 - 2018-08-09 12:09 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll
2018-09-12 10:37 - 2018-08-09 12:09 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2018-09-12 10:37 - 2018-08-09 12:09 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageInspector.exe
2018-09-12 10:37 - 2018-08-09 11:38 - 001538976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2018-09-12 10:37 - 2018-08-09 11:36 - 000660896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2018-09-12 10:37 - 2018-08-09 11:36 - 000221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2018-09-12 10:37 - 2018-08-09 11:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdeploy.dll
2018-09-12 10:37 - 2018-08-09 11:23 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2018-09-12 10:37 - 2018-08-09 11:23 - 001308160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2018-09-12 10:37 - 2018-08-09 11:23 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollUI.dll
2018-09-12 10:37 - 2018-08-09 11:22 - 001452544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2018-09-12 10:37 - 2018-08-09 11:22 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2018-09-12 10:37 - 2018-08-09 11:22 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certreq.exe
2018-09-12 10:37 - 2018-08-09 11:21 - 001274368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2018-09-12 10:37 - 2018-08-09 11:21 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2018-09-12 10:37 - 2018-08-09 11:20 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2018-09-12 10:37 - 2018-08-09 11:20 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput8.dll
2018-09-12 10:37 - 2018-08-09 11:20 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput.dll
2018-09-12 10:37 - 2018-08-09 11:19 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2018-09-12 10:37 - 2018-08-09 08:01 - 000777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2018-09-12 10:37 - 2018-08-09 07:54 - 001019016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2018-09-12 10:37 - 2018-08-09 07:54 - 000709824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-09-12 10:37 - 2018-08-09 07:54 - 000203568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2018-09-12 10:37 - 2018-08-09 07:53 - 001947720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-09-12 10:37 - 2018-08-09 07:53 - 000714792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-09-12 10:37 - 2018-08-09 07:53 - 000482480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-09-12 10:37 - 2018-08-09 07:53 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2018-09-12 10:37 - 2018-08-09 07:53 - 000125600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2018-09-12 10:37 - 2018-08-09 07:30 - 000183992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2018-09-12 10:37 - 2018-08-09 07:29 - 001620880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-09-12 10:37 - 2018-08-09 07:29 - 001174552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2018-09-12 10:37 - 2018-08-09 07:29 - 000581696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-09-12 10:37 - 2018-08-09 07:29 - 000099208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll
2018-09-12 10:37 - 2018-08-09 07:28 - 001589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2018-09-12 10:37 - 2018-08-09 07:27 - 000428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-09-12 10:37 - 2018-08-09 07:27 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2018-09-12 10:37 - 2018-08-09 07:27 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2018-09-12 10:37 - 2018-08-09 07:26 - 000990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2018-09-12 10:37 - 2018-08-09 07:26 - 000572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2018-09-12 10:37 - 2018-08-09 07:26 - 000528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2018-09-12 10:37 - 2018-08-09 07:26 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-09-12 10:37 - 2018-08-09 07:26 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsAuth.dll
2018-09-12 10:37 - 2018-08-09 07:26 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsCfg.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000797184 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2018-09-12 10:37 - 2018-08-09 07:25 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2018-09-12 10:37 - 2018-08-09 07:23 - 003148288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2018-09-12 10:37 - 2018-08-09 07:22 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2018-09-12 10:37 - 2018-08-09 07:21 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-09-12 10:37 - 2018-08-09 07:13 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2018-09-12 10:37 - 2018-08-09 07:13 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2018-09-12 10:37 - 2018-08-09 07:12 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2018-09-12 10:37 - 2018-08-09 07:11 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2018-09-12 10:37 - 2018-08-09 07:11 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2018-09-12 10:37 - 2018-08-09 07:11 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TtlsAuth.dll
2018-09-12 10:37 - 2018-08-09 07:11 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TtlsCfg.dll
2018-09-12 10:37 - 2018-08-09 07:11 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2018-09-12 10:37 - 2018-08-09 07:10 - 002893824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2018-09-12 10:37 - 2018-08-09 07:08 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2018-09-12 10:37 - 2018-08-09 06:08 - 000806416 _____ C:\WINDOWS\SysWOW64\locale.nls
2018-09-12 10:37 - 2018-08-09 06:08 - 000806416 _____ C:\WINDOWS\system32\locale.nls
2018-09-12 09:41 - 2018-09-05 02:04 - 000835144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-09-12 09:41 - 2018-09-05 02:04 - 000179808 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2018-09-11 22:11 - 2018-09-11 22:13 - 012296192 _____ C:\Users\lamer\Desktop\cpppckaiebkfps.exe
2018-09-11 11:39 - 2018-09-11 11:39 - 000000003 _____ C:\WINDOWS\SysWOW64\HRUPPROG.TXT
2018-09-11 11:39 - 2018-09-11 11:39 - 000000003 _____ C:\WINDOWS\SysWOW64\HRUPPROG.EXIT
2018-09-10 12:43 - 2018-09-10 12:43 - 000003956 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1524661770
2018-09-10 12:43 - 2018-09-10 12:43 - 000001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera tarayıcı.lnk
2018-09-09 20:38 - 2018-09-09 20:38 - 000000000 ____D C:\Users\lamer\AppData\LocalLow\Two Point Studios
2018-09-09 20:05 - 2018-09-09 20:05 - 000000730 _____ C:\Users\lamer\Desktop\Two Point Hospital.lnk
2018-09-09 20:05 - 2018-09-09 20:05 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Two Point Hospital
2018-09-08 18:30 - 2018-09-08 18:30 - 000000567 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rules of Survival.lnk
2018-09-08 13:03 - 2018-09-09 11:51 - 000000000 ____D C:\Users\lamer\TrailMakers
2018-09-08 13:03 - 2018-09-08 13:14 - 000000000 ____D C:\Users\lamer\Documents\TrailMakers
2018-09-08 13:01 - 2018-09-08 13:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hob [GOG.com]
2018-09-08 12:59 - 2018-09-08 12:59 - 000000000 ____D C:\Users\lamer\AppData\LocalLow\Flashbulb
2018-09-08 11:27 - 2018-09-08 11:27 - 000000000 ____D C:\Users\lamer\AppData\LocalLow\Annapurna Interactive
2018-09-08 11:07 - 2018-09-08 18:04 - 2263276424 _____ C:\Users\lamer\Downloads\ros_publish_146_publish_1.192527.193882.zip
2018-09-07 18:07 - 2018-09-13 09:26 - 000001363 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk
2018-09-07 18:06 - 2018-09-13 10:33 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Visual Studio Setup
2018-09-07 18:06 - 2018-09-07 18:06 - 000000000 ____D C:\Users\lamer\AppData\Roaming\vstelemetry
2018-09-07 18:06 - 2018-09-07 18:06 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft Visual Studio
2018-09-07 18:06 - 2018-09-07 18:06 - 000000000 ____D C:\Users\lamer\AppData\Local\ServiceHub
2018-09-07 17:58 - 2018-09-07 17:58 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio
2018-09-07 17:55 - 2018-09-10 14:14 - 000000000 ____D C:\Users\lamer\AppData\Roaming\PE Explorer
2018-09-07 17:54 - 2018-09-11 14:34 - 000001108 _____ C:\Users\lamer\Desktop\PE Explorer.lnk
2018-09-07 17:54 - 2018-09-07 17:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PE Explorer
2018-09-07 17:54 - 2018-09-07 17:54 - 000000000 ____D C:\Program Files (x86)\PE Explorer
2018-09-07 12:55 - 2018-09-07 12:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2018-09-07 12:34 - 2018-09-07 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTA San Andreas 1.5
2018-09-07 10:44 - 2018-09-07 10:44 - 000002684 _____ C:\Users\lamer\Desktop\µTorrent.lnk
2018-09-07 09:40 - 2018-09-07 13:21 - 000000000 ____D C:\ProgramData\MTA San Andreas All
2018-09-05 23:12 - 2018-09-05 23:12 - 000001199 _____ C:\Users\Public\Desktop\Borderless Gaming.lnk
2018-09-05 20:55 - 2018-09-05 20:55 - 000000000 ___RD C:\Users\lamer\Desktop\Custom_Desktop_Logo_V2.1
2018-09-05 20:54 - 2018-09-05 23:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Borderless Gaming
2018-09-05 20:54 - 2018-09-05 23:12 - 000000000 ____D C:\Program Files (x86)\Borderless Gaming
2018-09-05 20:54 - 2018-09-05 20:54 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Andrew Sampson
2018-09-05 20:46 - 2018-09-05 21:00 - 000000000 ____D C:\ProgramData\ASUS
2018-09-05 19:41 - 2018-09-05 20:35 - 000000000 ____D C:\Users\lamer\AppData\Roaming\EpicPen
2018-09-05 19:40 - 2018-09-05 19:40 - 000001149 _____ C:\Users\Public\Desktop\Epic Pen.lnk
2018-09-05 19:40 - 2018-09-05 19:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Pen
2018-09-05 19:40 - 2018-09-05 19:40 - 000000000 ____D C:\Program Files (x86)\Epic Pen
2018-09-04 21:17 - 2018-09-04 21:17 - 000000000 ____D C:\Users\lamer\AppData\LocalLow\Empyrean
2018-09-04 21:09 - 2018-09-04 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\House Flipper
2018-09-04 14:11 - 2018-09-04 14:11 - 000000815 _____ C:\Users\lamer\Desktop\Antin Quntin Chat Bot.lnk
2018-09-04 11:23 - 2018-09-04 11:23 - 000020208 _____ (EasyAntiCheat Oy) C:\WINDOWS\system32\eac_usermode_355942403066819.dll
2018-09-03 22:45 - 2018-09-03 22:45 - 000001747 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter.lnk
2018-09-03 22:45 - 2018-09-03 22:45 - 000000000 ____D C:\Users\lamer\Documents\Rainmeter
2018-09-03 22:45 - 2018-09-03 22:45 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Rainmeter
2018-09-03 22:45 - 2018-09-03 22:45 - 000000000 ____D C:\Program Files\Rainmeter
2018-09-03 16:16 - 2018-09-03 16:17 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2018-09-03 15:54 - 2018-09-03 16:09 - 000000000 ____D C:\Users\lamer\AppData\Roaming\EasyAntiCheat
2018-09-03 12:32 - 2018-09-03 13:14 - 000000000 ____D C:\Users\lamer\AppData\Roaming\LiquidSky
2018-09-03 11:07 - 2018-09-03 11:07 - 000000000 ____D C:\Users\lamer\AppData\LocalLow\8floor
2018-09-02 13:52 - 2018-09-02 13:52 - 000000000 ____D C:\Users\lamer\AppData\Local\mbam
2018-09-02 13:47 - 2018-09-02 13:47 - 000001920 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-09-02 13:47 - 2018-09-02 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-09-02 13:47 - 2018-09-02 13:47 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-09-02 13:47 - 2018-09-02 13:47 - 000000000 ____D C:\Program Files\Malwarebytes
2018-09-02 13:47 - 2018-07-12 08:42 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-09-01 14:29 - 2018-09-01 14:29 - 000000000 ____D C:\Users\lamer\Documents\SavedGames
2018-09-01 14:08 - 2018-09-01 14:08 - 000000000 ____D C:\WINDOWS\Panther
2018-08-30 17:21 - 2018-08-30 18:12 - 000000905 _____ C:\Users\lamer\Desktop\LaunchBox.lnk
2018-08-30 17:21 - 2018-08-30 17:21 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LaunchBox
2018-08-30 17:20 - 2018-09-06 19:48 - 000000000 ____D C:\Users\lamer\AppData\Local\LolScreenSaver
2018-08-30 17:20 - 2018-08-30 17:36 - 000000000 ____D C:\Users\lamer\LaunchBox
2018-08-30 17:20 - 2018-08-30 17:20 - 000001832 _____ C:\Users\lamer\Desktop\LoL Görüntüleri.lnk
2018-08-30 17:20 - 2018-08-30 17:20 - 000000000 ____D C:\Riot Games
2018-08-30 11:00 - 2018-09-16 10:22 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2018-08-30 11:00 - 2018-08-30 11:00 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2018-08-30 10:59 - 2018-08-30 18:12 - 000001171 _____ C:\Users\lamer\Desktop\MSI Afterburner.lnk
2018-08-30 10:59 - 2018-08-30 12:30 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-08-30 10:59 - 2018-08-30 10:59 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2018-08-30 10:50 - 2018-08-30 10:50 - 000002220 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Complete Internet Repair.lnk
2018-08-29 12:22 - 2018-08-29 12:25 - 000000000 ____D C:\cFosSpeed
2018-08-29 12:22 - 2018-08-29 12:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\cFosSpeed Traffic Shaping
2018-08-29 12:22 - 2018-02-19 14:19 - 001537968 _____ (cFos Software GmbH) C:\WINDOWS\system32\Drivers\cfosspeed6.sys
2018-08-29 12:21 - 2018-08-29 12:23 - 000023871 _____ C:\WINDOWS\cFosSpeed_Setup_Log.txt
2018-08-28 21:44 - 2018-08-28 21:44 - 000000000 ____D C:\Users\lamer\AppData\Local\Cat_Goes_Fishing
2018-08-28 21:42 - 2018-08-31 13:03 - 000000000 ____D C:\Users\lamer\Documents\MEGAsync Downloads
2018-08-28 21:17 - 2018-09-16 03:16 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2018-08-28 19:32 - 2018-08-28 19:32 - 000000000 ____D C:\Users\lamer\Documents\GOMPlayer
2018-08-28 17:52 - 2018-08-28 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sleeping Dogs
2018-08-28 16:53 - 2018-08-28 16:53 - 000000279 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geri Dönüşüm Kutusu.lnk
2018-08-28 11:49 - 2018-08-28 11:49 - 000000000 ____D C:\Users\lamer\Documents\MEGA
2018-08-28 11:47 - 2018-08-28 11:47 - 000000000 ____D C:\WINDOWS\System32\Tasks\MEGA
2018-08-28 11:47 - 2018-08-28 11:47 - 000000000 ____D C:\Users\lamer\AppData\Local\Mega Limited
2018-08-28 11:47 - 2018-08-28 11:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2018-08-28 11:47 - 2018-08-28 11:47 - 000000000 ____D C:\ProgramData\MEGAsync
2018-08-28 11:37 - 2018-08-28 11:37 - 000000000 ____D C:\Users\lamer\AppData\Local\keepassx
2018-08-28 11:01 - 2018-08-28 11:01 - 000003274 _____ C:\WINDOWS\System32\Tasks\Adobe Uninstaller
2018-08-28 10:45 - 2018-08-28 10:45 - 000001434 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2018-08-28 10:44 - 2018-08-28 10:44 - 000002956 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_lamer
2018-08-25 22:05 - 2018-08-25 22:10 - 000000000 ____D C:\Users\lamer\Documents\Witcher 2
2018-08-25 22:05 - 2018-08-25 22:05 - 000000000 ____D C:\Users\lamer\AppData\Local\The Witcher 2
2018-08-25 21:21 - 2018-08-25 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2018-08-24 20:01 - 2018-08-24 20:01 - 000000765 _____ C:\Users\lamer\Documents\3D Nesneler - Kısayol.lnk
2018-08-24 13:05 - 2018-08-24 13:05 - 000002030 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imo Messenger.lnk
2018-08-23 18:32 - 2018-08-23 18:32 - 000000000 ____D C:\Users\lamer\Documents\Curse
2018-08-23 18:22 - 2018-08-23 18:22 - 000000000 ____D C:\ProgramData\Twitch
2018-08-23 18:21 - 2018-09-01 14:13 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Twitch
2018-08-23 18:21 - 2018-08-23 18:21 - 000000958 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2018-08-18 21:50 - 2018-08-18 22:31 - 000000000 ____D C:\Users\lamer\AppData\Local\FalloutShelter
2018-08-17 16:44 - 2018-08-17 16:44 - 000000000 ____D C:\Users\lamer\AppData\Local\Arm
2018-08-17 13:47 - 2018-08-17 13:47 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Worms W.M.D Wormhole

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-09-16 13:37 - 2018-06-14 12:49 - 000000000 ____D C:\Users\lamer
2018-09-16 13:25 - 2018-04-12 02:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2018-09-16 13:25 - 2018-04-12 02:36 - 000000000 ____D C:\WINDOWS\INF
2018-09-16 13:19 - 2018-06-09 16:49 - 000000000 ____D C:\Program Files (x86)\IDA
2018-09-16 12:38 - 2018-04-25 16:08 - 000000000 ____D C:\Program Files\Opera
2018-09-16 12:34 - 2018-03-31 10:32 - 000000000 __SHD C:\Users\lamer\IntelGraphicsProfiles
2018-09-16 12:33 - 2018-04-12 02:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-09-16 12:32 - 2018-06-14 13:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-09-16 12:32 - 2018-06-14 12:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-09-16 12:24 - 2018-03-31 10:10 - 000000000 ___RD C:\Users\lamer\OneDrive
2018-09-16 10:55 - 2018-04-12 00:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2018-09-16 02:10 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-09-15 20:32 - 2018-05-08 15:56 - 000000000 ____D C:\Zula
2018-09-15 20:31 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-09-15 20:22 - 2018-04-12 02:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-09-15 15:04 - 2018-04-12 02:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-09-15 15:04 - 2018-04-02 14:34 - 000000000 ____D C:\Users\lamer\AppData\Local\Packages
2018-09-14 22:23 - 2018-08-01 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software
2018-09-14 19:52 - 2018-03-31 10:32 - 000000000 ____D C:\Intel
2018-09-14 18:07 - 2018-04-18 12:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2018-09-14 18:05 - 2018-04-18 12:29 - 000000000 ____D C:\Program Files (x86)\Minecraft
2018-09-14 10:01 - 2018-03-31 12:11 - 000000000 ____D C:\WINDOWS\KMSAutoS
2018-09-13 11:22 - 2018-04-12 02:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-09-13 11:08 - 2018-03-31 10:04 - 000000000 ____D C:\Users\lamer\AppData\Local\VirtualStore
2018-09-13 10:56 - 2018-04-12 02:38 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2018-09-13 10:56 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\Help
2018-09-13 10:56 - 2018-03-31 10:17 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2018-09-13 10:54 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\System
2018-09-13 10:49 - 2018-05-13 20:53 - 000000000 ____D C:\ProgramData\ProductData
2018-09-13 10:41 - 2018-07-28 11:09 - 000416584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2018-09-13 10:37 - 2018-04-12 18:45 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2018-09-13 10:37 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-09-13 10:37 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2018-09-13 10:37 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-09-13 10:37 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-09-13 10:37 - 2018-04-12 00:04 - 000000000 ____D C:\WINDOWS\system32\Dism
2018-09-13 09:54 - 2018-06-14 12:28 - 000000000 ____D C:\Program Files (x86)\MSBuild
2018-09-13 09:52 - 2018-04-12 18:43 - 000711716 _____ C:\WINDOWS\system32\perfh01F.dat
2018-09-13 09:52 - 2018-04-12 18:43 - 000148498 _____ C:\WINDOWS\system32\perfc01F.dat
2018-09-13 09:52 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\Registration
2018-09-12 21:16 - 2018-03-31 18:42 - 000000001 _____ C:\WINDOWS\xhunter1.sys
2018-09-11 19:44 - 2018-04-15 21:16 - 000000000 ____D C:\Program Files (x86)\Steam
2018-09-11 18:21 - 2018-06-14 13:12 - 000004586 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-09-11 18:20 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2018-09-11 18:20 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2018-09-11 11:48 - 2018-04-16 07:16 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2018-09-10 23:15 - 2018-04-13 17:22 - 000000000 ____D C:\Users\lamer\AppData\Roaming\uTorrent
2018-09-10 21:26 - 2018-06-30 22:59 - 000000000 ____D C:\Program Files\CCleaner
2018-09-09 22:24 - 2018-04-08 17:35 - 000000000 ____D C:\Users\lamer\AppData\Local\ElevatedDiagnostics
2018-09-09 08:48 - 2018-05-05 07:17 - 000000000 ____D C:\Users\lamer\Desktop\Kategoriler
2018-09-08 13:31 - 2018-04-04 20:34 - 000000000 ____D C:\Users\lamer\Documents\My Games
2018-09-07 13:22 - 2018-07-09 22:41 - 000000000 ____D C:\Users\lamer\Documents\GTA San Andreas User Files
2018-09-07 12:55 - 2018-04-14 08:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-09-07 10:44 - 2018-06-22 09:22 - 000002684 _____ C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2018-09-05 22:13 - 2018-08-03 18:05 - 000001197 _____ C:\Users\lamer\Desktop\nativelog.txt
2018-09-05 21:00 - 2018-04-14 08:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2018-09-05 21:00 - 2018-04-14 08:18 - 000000000 ____D C:\Program Files (x86)\ASUS
2018-09-04 23:23 - 2018-07-29 11:02 - 000000000 ____D C:\Users\lamer\AppData\Roaming\vlc
2018-09-04 22:32 - 2018-08-01 21:46 - 000000000 ____D C:\Users\lamer\AppData\Local\Downloaded Installations
2018-09-04 19:13 - 2018-06-14 13:01 - 001675716 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-09-03 21:49 - 2018-04-12 02:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-09-03 11:05 - 2018-04-15 23:20 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-09-02 14:15 - 2018-05-17 07:28 - 000000000 ____D C:\Program Files (x86)\Kingo ROOT
2018-08-30 17:20 - 2018-05-30 07:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2018-08-30 11:17 - 2018-06-14 13:19 - 000000000 ____D C:\Users\lamer\AppData\Local\D3DSCache
2018-08-30 11:00 - 2018-07-04 21:53 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2018-08-28 21:04 - 2018-07-29 09:22 - 000000000 ____D C:\WINDOWS\Minidump
2018-08-28 21:04 - 2018-06-16 21:21 - 000000000 ____D C:\Users\lamer\AppData\Local\LogMeIn Hamachi
2018-08-28 16:25 - 2018-03-31 10:25 - 000000000 ____D C:\AMD
2018-08-28 11:53 - 2018-03-31 10:20 - 000000000 ____D C:\ProgramData\Skype
2018-08-28 10:53 - 2018-05-21 20:25 - 000000976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2018-08-28 10:46 - 2018-06-30 23:15 - 000000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
2018-08-28 10:46 - 2018-06-30 23:15 - 000000000 ____D C:\Users\lamer\AppData\Roaming\Notepad++
2018-08-28 10:45 - 2018-05-13 20:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2018-08-22 18:05 - 2018-05-11 20:54 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys
2018-08-17 16:44 - 2018-04-14 22:16 - 000000000 ____D C:\Users\lamer\AppData\Local\UnrealEngine

==================== Files in the root of some directories =======

2018-07-18 11:57 - 2018-07-18 11:57 - 000004096 ____H () C:\Users\lamer\AppData\Local\keyfile3.drm
2018-07-18 11:07 - 2018-07-18 11:07 - 000007601 _____ () C:\Users\lamer\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-06-14 12:42

==================== End of FRST.txt ============================
Addition.TXT:
Kod:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15.09.2018
Ran by lamer (16-09-2018 13:40:44)
Running from C:\Users\lamer\AppData\Local\Temp\scoped_dir8108_22656
Windows 10 Pro Version 1803 17134.285 (X64) (2018-06-14 10:13:11)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1315265887-1540288157-3388349337-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1315265887-1540288157-3388349337-1002 - Limited - Enabled)
Guest (S-1-5-21-1315265887-1540288157-3388349337-501 - Limited - Disabled)
lamer (S-1-5-21-1315265887-1540288157-3388349337-1001 - Administrator - Enabled) => C:\Users\lamer
VarsayılanHesap (S-1-5-21-1315265887-1540288157-3388349337-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1315265887-1540288157-3388349337-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\uTorrent) (Version: 3.5.4.44498 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Turkish (HKLM-x32\...\{AC76BA86-7AD7-1055-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated)
Adobe Bridge CC 2018 (HKLM-x32\...\KBRG_8_0_1) (Version: 8.0.1 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.5.0.331 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.108 - Adobe Systems Incorporated)
Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0) (Version: 18.0.0 - Adobe Systems Incorporated)
AIDA64 Extreme v5.97 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.97 - FinalWire Ltd.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 18.7.1 - Advanced Micro Devices, Inc.)
Antin Quntin LOL Chat Bot 1.00 (HKLM-x32\...\Antin Quntin LOL Chat Bot 1.00) (Version: 1.00 - Antin Quntin)
ASCII BlackBox Launcher version 1 (HKLM-x32\...\{3648CD52-8415-48BE-A052-147BFE7D1D48}_is1) (Version: 1 - Black Box)
ASUS GPU TweakII (HKLM-x32\...\{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.4.6.6 - ASUSTek COMPUTER INC.) Hidden
ASUS GPU TweakII (HKLM-x32\...\InstallShield_{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.4.6.6 - ASUSTek COMPUTER INC.)
Bandicam (HKLM-x32\...\Bandicam) (Version: 3.1.1.1073 - Bandisoft.com)
Borderless Gaming (HKLM-x32\...\Borderless Gaming_is1) (Version: 9.5.4 - Andrew Sampson)
Branding64 (HKLM\...\{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden
Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.1.695 - Broadcom Corporation)
Catalyst Control Center Next Localization BR (HKLM\...\{A16E186C-58C4-3BDC-5CCE-714EFEF5F27F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{E42911E5-48F8-8557-ED20-D72AD1907D25}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B4C30EF4-B2C5-1395-B534-7B63BCB6E8E4}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{62098A5F-E03B-31A3-5F9C-51A7F7D25744}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{1757AD9B-0E3C-05F9-FE43-4343BED7DA85}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{66B06F29-EE4F-9130-D96A-754826093FEA}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{821D0A0E-F246-BE40-0D68-93883C14C410}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{88BD74C4-23AB-4554-915C-6E1F0C81F6CD}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{A48E2AB0-0866-7783-9657-E1709EB18D02}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{E61CEF9A-BAC3-EAEE-F735-E257D2354DF2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{DA0326BB-657D-AAFC-752C-363E8FA33755}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{B873A1FB-5EA0-EE5F-A861-1E38880AD08E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{EC9DF9FF-9D75-4CDD-1D58-A2E887B0A42E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{7ABACA7E-6E59-0EF9-8FA3-6B32E5F58127}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{3E196AAF-F81C-B384-E2AB-28EE2398FE5F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DAEFFE0C-CD05-1355-6AFC-7B3D4106A820}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{E392A425-53A7-DF90-96A0-E287A75DD3B2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{D6F47BB4-700A-F612-0671-5F69EA311BB7}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{01FD9A26-3F61-9236-B360-BE5D043D82C0}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{64D4CCC3-63DF-252D-D29D-03491670225D}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{8DF90937-B869-9F76-5D45-5A8BDA0A33B6}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
cFosSpeed v10.26 (HKLM\...\cFosSpeed) (Version: 10.26 - cFos Software GmbH, Bonn)
Complete Internet Repair 5.1.0.3950 (HKLM\...\Complete Internet Repair_is1) (Version: 5.1.0.3950 - Rizonesoft)
CpuCoreParking (HKLM-x32\...\{0984C56D-2985-4786-AB62-39AB985E269C}) (Version: 2.1.2.0 - CpuCoreParking)
CPUID CPU-Z MSI 1.84 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.84 - CPUID, Inc.)
CrystalDiskInfo 7.6.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.6.0 - Crystal Dew World)
CyberGhost v6.0.8.2959 (HKLM\...\CyberGhost v6.0.8.2959_is1) (Version:  - CyberGhost Yaron'S Team)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.8.0.0401 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\Discord) (Version: 0.0.301 - Discord Inc.)
Dll Dosyaları version v1.0 (HKLM-x32\...\{EBAD1F1B-3B8D-4FD9-AAD0-4C32841EE8F3}_is1) (Version: v1.0 - HASAN GECTİN)
Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company)
Epic Games Launcher (HKLM-x32\...\{6CEEFD7D-B5C2-440A-A863-3E61BE5BABDA}) (Version: 1.1.151.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Pen version v3.6.0.0 (HKLM-x32\...\Epic Pen_is1) (Version: v3.6.0.0 - TANK Studios)
EXARadyo 3.2 (HKLM-x32\...\{1303A808-A806-42A4-BCCE-DB7643C66B5E}_is1) (Version: 3.2 - Terkon Teknoloji)
Feed and Grow Fish v0.9.0a1 (HKLM-x32\...\vsetop.org Feed and Grow Fish v0.9.0a1_is1) (Version: 0.9.0a1 - vsetop.org)
Free RAR Password Recovery (HKLM-x32\...\{DD83D3EE-918D-4315-B164-D1623E8DFC36}) (Version: 3.70.69 - KRyLack Software)
Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit)
GazePointer (HKLM-x32\...\{FA373E4F-D6FD-41F2-AB19-16F4EC5BA218}) (Version: 2.0.0 - GazePointer)
GD Hardware Scan (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\GD Hardware Scan) (Version: 00.00.00.01 - Social Web Tech LTD)
Git version 2.17.1.2 (HKLM\...\Git_is1) (Version: 2.17.1.2 - The Git Development Community)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.32.5292 - GOM & Company)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
Guns, Gore and Cannoli 2 (HKLM\...\Z3Vuc2dvcmVhbmRjYW5ub2xpMg_is1) (Version: 1 - )
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 6.0.3.2 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Hob (HKLM-x32\...\1300281766_is1) (Version: 1.17.3.0 - GOG.com)
House Flipper (HKLM-x32\...\House Flipper_is1) (Version:  - )
HP CoolSense (HKLM-x32\...\{ADE2F6A7-E7BD-4955-BD66-30903B223DDF}) (Version: 2.20.41 - Hewlett-Packard Company)
HP Software Framework (HKLM-x32\...\{647BD29E-0B8C-4C0A-BF9D-7E58CBECF56B}) (Version: 4.6.10.1 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{E240500E-4FDF-434E-9A7C-FBF96135A53E}) (Version: 12.9.24.3 - HP Inc.)
HP Wireless Button Driver (HKLM-x32\...\{EFA01423-3857-468C-B7B6-F30AA08E50BC}) (Version: 1.1.5.1 - Hewlett-Packard Company)
Ibb and Obb (HKLM-x32\...\SWJiYW5kT2Ji_is1) (Version: 1 - )
Inno Setup 5.6.1 sürümü (HKLM-x32\...\Inno Setup 5_is1) (Version: 5.6.1 - jrsoftware.org)
Intel Processor Diagnostic Tool 64bit (HKLM\...\{3D0D4C18-4C13-4890-B55D-764150A35E0C}) (Version: 4.1.0.27 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4963 - Intel Corporation)
Intel(R) Processor Identification Utility (HKLM-x32\...\{A92A4DB0-CD37-42D1-BE1D-603D53C24328}) (Version: 1.0.0.0 - Intel Corporation)
Internet Download Accelerator version 6.16 (HKLM-x32\...\Internet Download Accelerator_is1) (Version: 6.16 - WestByte)
IObit Uninstaller 8 (HKLM-x32\...\IObitUninstall) (Version: 8.0.2.19 - IObit)
Java 8 Update 181 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Kingo ROOT version 1.5.8.3353 (HKLM-x32\...\{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1) (Version: 1.5.8.3353 - Kingosoft Technology Ltd.)
K-Lite Mega Codec Pack 13.2.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.2.5 - KLCP)
Kodu Game Lab (HKLM-x32\...\{E50E56C8-92FF-4246-8A62-C4EFDCBFD151}) (Version: 1.4.222 - Microsoft Research)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
LockHunter 3.2, 32/64 bit (HKLM\...\LockHunter_is1) (Version:  - Crystal Rich Ltd)
Logitech SetPoint 6.68 (HKLM\...\sp6) (Version: 6.68.250 - Logitech)
LogMeIn Hamachi (HKLM-x32\...\{892DB406-ADF8-4C30-9840-8438AF5B8763}) (Version: 2.2.0.607 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.607 - LogMeIn, Inc.)
LoL Görüntüleri (HKLM-x32\...\LolScreenSaver) (Version: W1.0.992-beta - Riot Games)
Malwarebytes version 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel 2007 Help Güncelleştirmesi (KB963678) (HKLM-x32\...\{90120000-0016-041F-0000-0000000FF1CE}_ENTERPRISE_{E792E914-5172-48B2-A58A-65C3F311C4E2}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Powerpoint 2007 Help Güncelleştirmesi (KB963669) (HKLM-x32\...\{90120000-0018-041F-0000-0000000FF1CE}_ENTERPRISE_{8C762073-C6A4-4A11-A639-1C73014FAE00}) (Version:  - Microsoft)
Microsoft Office Word 2007 Help Güncelleştirmesi (KB963665) (HKLM-x32\...\{90120000-001B-041F-0000-0000000FF1CE}_ENTERPRISE_{96E44099-EB0F-45A3-8831-40412110810D}) (Version:  - Microsoft)
Microsoft OneDrive (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\OneDriveSetup.exe) (Version: 18.151.0729.0006 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SOAP Toolkit 3.0 (HKLM-x32\...\{BCB4C18A-ACA6-4383-8688-E19933A705DD}) (Version: 3.0.1325.4 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{77F1F8AD-51B8-4490-AEEC-BF480073E0FC}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{877B76B2-F83F-4F5A-B28D-3F398641ADB6}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - ENU (HKLM-x32\...\Microsoft Visual Basic 2010 Express - ENU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.4053 False (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.57103 False (HKLM-x32\...\{d8fea624-4f2c-432d-9a54-6eee9cd1a77e}) (Version: 8.0.57103 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False (HKLM-x32\...\{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}) (Version: 8.0.58299 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False (HKLM-x32\...\{DCB46B42-723F-350E-B18A-449BC6C21636}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.0 False (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False (HKLM-x32\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.0 False (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 False Eng (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{b55f7208-e02b-4828-ac78-59c73ddf5bc7}) (Version: 12.0.30501.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False Eng (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\...\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\...\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package - SE (x64) (HKLM\...\{B0A5A6EE-F8BA-48B1-BB32-BAC17E96C2B4}) (Version: 2.0.50728 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{14DD7530-CCD2-3798-B37D-3839ED6A441C}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU (HKLM\...\{BCA26999-EC22-3007-BB79-638913079C9A}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{FD9D64F4-CAF5-3D23-845A-B843C78CC1A5}) (Version: 10.0.60830 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.31007 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.17.1298.831 - Microsoft Corporation)
Microsoft VM for Java (HKLM-x32\...\MsJavaVM) (Version:  - )
Microsoft Web Publishing Wizard 1.53 (HKLM-x32\...\WebPost) (Version:  - )
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Minecraft (HKLM-x32\...\{BADCF8B4-E80D-4D8C-99C4-C7FE770D618D}) (Version: 1.0.4.0 - Mojang)
MP4Tools v3.6.1 (HKLM-x32\...\MP4Tools_is1) (Version:  - Thüring IT-Consulting)
MSI Afterburner 4.5.0 (HKLM-x32\...\Afterburner) (Version: 4.5.0 - MSI Co., LTD)
MTA:SA v1.5.6 (HKLM-x32\...\MTA:SA 1.5) (Version: v1.5.6 - Multi Theft Auto)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5.8 - Notepad++ Team)
NVIDIA PhysX Sistem Yazılımı 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 21.1.0 - OBS Project)
OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Şirketinizin Adı)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 55.0.2994.56 (HKLM-x32\...\Opera 55.0.2994.56) (Version: 55.0.2994.56 - Opera Software)
Oracle VM VirtualBox 5.2.16 (HKLM\...\{9BDE6621-5201-47E9-8394-FF44CBD66A1E}) (Version: 5.2.16 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.21.179 - Electronic Arts, Inc.)
Overcooked version 5.3.5.12890 (HKLM-x32\...\{5DE50CAC-3ED1-4015-876C-A6F3700D6506}_is1) (Version: 5.3.5.12890 - Team17 Digital Ltd)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.116.2.25 - Overwolf Ltd.)
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.322.8 - Tracker Software Products Ltd)
PE Explorer 1.99 R6 (HKLM-x32\...\PE Explorer_is1) (Version: 1.99.6 - Heaventools Software)
Pro Evolution Soccer 2017 version Pro Evolution Soccer 2017 (HKLM-x32\...\Pro Evolution Soccer 2017_is1) (Version: Pro Evolution Soccer 2017 - )
PX Profile Update (HKLM-x32\...\{BB732BA8-AFBD-E7B5-6DC8-5BE7F0967343}) (Version: 1.00.1. - AMD) Hidden
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.3 beta r2416 - )
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.10-r123135-release - Raptr, Inc)
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 8.4.17.561 - Razer Inc.)
Red Crucible: Firestorm version 1.0 (HKLM-x32\...\{3F412256-5663-4467-B9C8-E5581B9C004C}_is1) (Version: 1.0 - Rocketeer Games Studio, LLC)
Red Crucible: Reloaded version 1.0 (HKLM-x32\...\{0497EF07-F128-4BA7-810A-B42EDCF1A439}_is1) (Version: 1.0 - Rocketeer Games Studio, LLC)
RivaTuner Statistics Server 7.1.0 (HKLM-x32\...\RTSS) (Version: 7.1.0 - Unwinder)
Roblox Player (HKLM-x32\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - Roblox Corporation)
Roblox Player for lamer (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - Roblox Corporation)
Rocket League (HKLM-x32\...\Rocket League_is1) (Version: 1.44 - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games)
Rules of Survival version 1.192527.193882 (HKLM-x32\...\{F560482D-4378-4FB8-8EB7-4F017FDBCC90}_is1) (Version: 1.192527.193882 - Hong Kong Netease Interactive Entertainment Limited)
Scratch (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\Scratch) (Version: 1.4.00.00 - MIT Media Lab Lifelong Kindergarten)
Skype™ 7.37 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.37.103 - Skype Technologies S.A.)
Sleeping Dogs (HKLM-x32\...\{87CDCA80-54EE-4497-89DB-6E079AFBF4EF}_is1) (Version: 2.1.437044 - Square Enix)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Stonehearth v1.0h2 (HKLM-x32\...\tuttop.com Stonehearth v1.0h2_is1) (Version: 1.0h2 - tuttop.Com)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamSpeak (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\Overwolf_jnabojaampcpfclojlbildognlnebnhfhibiielh) (Version: 1.0.0.1 - Overwolf app)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.10 - TeamSpeak Systems GmbH)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.3629 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
Tencent Gaming Buddy (HKLM-x32\...\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company)
The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\The Witcher 2 - Assassins of Kings Enhanced Edition_is1) (Version:  - GOG.com)
TreeSize Free V4.2 (HKLM-x32\...\TreeSize Free_is1) (Version: 4.2 - JAM Software)
Twitch (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 7.0.0.0 - Twitch Interactive, Inc.)
Two Point Hospital (HKLM\...\SKIDROW - Two Point Hospital) (Version:  - SKIDROW)
UmmyVideoDownloader (HKLM-x32\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.8.3.3 - ) <==== ATTENTION
Unity Web Player (HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\UnityWebPlayer) (Version: 5.3.8f2 - Unity Technologies ApS)
Unity Web Player (x64) (All users) (HKLM\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{AAB396C1-4338-4825-BFA1-A085F3C55781}) (Version: 2.19.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 61.0 - Ubisoft)
USB Game Controller (HKLM-x32\...\{95CC887F-91B2-45E9-AE29-0D51995192CB}) (Version: 2005.05.26 - )
USB Network Driver (HKLM-x32\...\{66ED8E01-C915-41F5-B33E-C5C31F27B885}) (Version: V3.70a - )
USB Vibration Joystick (HKLM-x32\...\{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}) (Version: 2007.01.01 - )
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{112C23F2-C036-4D40-BED4-0CB47BF5555C}) (Version: 4.0.8080.0 - Microsoft Corporation)
Visual Studio Community 2017 (HKLM-x32\...\e0930888) (Version: 15.8.28010.2026 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
vs_filehandler_amd64 (HKLM-x32\...\{DC4F558F-90E2-4B9C-8A2B-5DD92EF71F84}) (Version: 15.8.27924 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{31312BFA-5D30-4B56-BACB-BFE26CE2E285}) (Version: 15.8.27924 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{8EB2C670-04C2-482D-BACD-B4095E27FD39}) (Version: 15.6.27309 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{D98207CC-2AF6-474C-8375-9735AB86B7EB}) (Version: 15.8.28010 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{284D88E1-21B6-4FA2-A606-4E49412F74E8}) (Version: 15.0.26621 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0-4) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version:  - )
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wise Game Booster 1.39 (HKLM-x32\...\Wise Game Booster_is1) (Version: 1.39 - WiseCleaner.com, Inc.)
Wise Memory Optimizer 3.6.2 (HKLM-x32\...\Wise Memory Optimizer_is1) (Version: 3.6.2 - WiseCleaner.com, Inc.)
Worms W.M.D Wormhole (HKLM\...\SKIDROW - Worms W.M.D Wormhole) (Version:  - SKIDROW)
X-Mouse Button Control 2.17 (HKLM-x32\...\X-Mouse Button Control) (Version: 2.17 - Highresolution Enterprises)
Zula (HKLM-x32\...\22DF2438-3A2E-4E99-BA0E-3272968F0290_is1) (Version: 1.20-180427.19697 - Lokum Games)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1315265887-1540288157-3388349337-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-7B735D5D84EA}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-1315265887-1540288157-3388349337-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers: [   AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-27] ()
ShellIconOverlayIdentifiers: [   AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-27] ()
ShellIconOverlayIdentifiers: [   AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-27] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ShellIconOverlayIdentifiers-x32-x32-x32: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ShellIconOverlayIdentifiers-x32-x32-x32-x32: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ShellIconOverlayIdentifiers-x32-x32-x32-x32-x32: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ShellIconOverlayIdentifiers-x32-x32-x32-x32-x32-x32: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-27] ()
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2018-06-30] ()
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-03-21] (Disc Soft Ltd)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Smart Security\shellExt.dll -> No File
ContextMenuHandlers2: [LockHunterShellExt] -> [CC]{0BB27CDA-7029-4C0E-9C56-D922B229F0EB} =>  -> No File
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-03-21] (Disc Soft Ltd)
ContextMenuHandlers3: [GB3ContextMenu] -> [CC]{3A488FE8-9916-4F36-BDFF-3DED559142E5} =>  -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ContextMenuHandlers3-x32: [XXX Groove GFS Context Menu Handler XXX] -> {6C467336-8281-4E60-8204-430CED96822D} => C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-19] ()
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-07-11] (Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2018-05-03] (Intel Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-27] ()
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2018-07-21] (IObit)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0092DB96-7C42-40EC-922B-B16346A4262F} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [2018-07-11] (Advanced Micro Devices, Inc.)
Task: {0162ADD8-19A4-44D7-A52E-9DDE9B092F9A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-01] (Microsoft Corporation)
Task: {0829A7AB-BB2E-4E08-99E5-03A116F8097A} - System32\Tasks\HPCeeScheduleForlamer => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-06-24] (HP Inc.)
Task: {0CF772E9-8EDE-4960-A53B-9712A633FB85} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-508NC26-lamer => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated)
Task: {14466F65-66DD-4CE7-A5BD-5359C09CF834} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-508NC26-lamer => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11] (Adobe Systems Incorporated)
Task: {1B2E4548-E8BF-4ECD-9E3F-4DD986A6805F} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2018-07-11] (Advanced Micro Devices, Inc.)
Task: {2AD0C8C6-5115-4DB2-8A58-630A0923A090} - System32\Tasks\KMSAuto => C:\Windows\KMSAutoS\KMSAuto x64.exe [2018-01-07] ()
Task: {3CC26497-8625-45EB-B0D7-DB7A1E9388D3} - System32\Tasks\Opera scheduled Autoupdate 1524661770 => C:\Program Files\Opera\launcher.exe [2018-09-06] (Opera Software)
Task: {3F76F4E6-4022-4A0E-9760-19643D8BDC60} - System32\Tasks\Uninstaller_SkipUac_lamer => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2018-08-08] (IObit)
Task: {42CC3C66-FA10-491D-A88E-E4F0CA95F7B2} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2018-07-01] (Overwolf LTD)
Task: {464E3250-9EAE-4B30-A70A-755827314B35} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2018-05-04] (HP Inc.)
Task: {4A284392-83CE-41BD-AFF2-459666DFC10E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-03-31] (Google Inc.)
Task: {5000EF65-3386-410A-B0DF-E67D0BD6DFF4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd)
Task: {586C6E1D-CC0D-4253-8B51-5356AD0DBB49} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_108_pepper.exe [2018-09-11] (Adobe Systems Incorporated)
Task: {5DDB23E4-C19E-4E64-9B33-676CF9B6861F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2018-06-27] (HP Inc.)
Task: {64DA191E-D9B2-415D-AD54-5C3D5DEE31CC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2018-05-02] (HP Inc.)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {661D8F68-4906-4B14-8A00-354B7838AE81} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2018-06-03] ()
Task: {68E729A4-5577-45F0-A8A1-827B3539ADAA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-01] (Microsoft Corporation)
Task: {75071415-4349-480B-A553-DAE8D98FD04E} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2018-04-23] ()
Task: {75DF399D-C49C-4A96-AC20-BE7DF0BF58A9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd)
Task: {81769E9B-F0AB-48D6-B832-559185A6990A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\lamer\AppData\Local\Temp\scoped_dir7704_28056\AdwCleaner.exe [2018-09-16] (Malwarebytes) <==== ATTENTION
Task: {897775AC-65A3-4988-A44F-A0D1C9C1E9D6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2018-05-04] (HP Inc.)
Task: {AA22D526-AAF6-4479-A029-735160DBB38B} - System32\Tasks\Adobe Uninstaller => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2018-04-24] (Adobe Systems Incorporated)
Task: {B049EA1B-68C7-43C0-854A-3F2CA0FA8091} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2018-05-02] (HP Inc.)
Task: {B0931417-3743-4D55-B89A-4A1D7EA884E8} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [2018-09-16] (AO Kaspersky Lab)
Task: {B110BEB4-211E-4D92-A337-3395924A0B49} - System32\Tasks\cFos\Registration Tasks\Open Browser => c:\program files\opera\launcher.exe [2018-09-06] (Opera Software)
Task: {BCADC940-8A67-4CAC-88DC-F62CB31F2662} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFReport.exe
Task: {C56D4F28-22E2-4FF3-95D6-EA7CA8AAB577} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MpCmdRun.exe [2018-08-01] (Microsoft Corporation)
Task: {CDFE0778-B496-428B-8406-E74508F1376A} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1315265887-1540288157-3388349337-1001 => C:\ProgramData\MEGAsync\MEGAupdater.exe [2018-01-15] (Mega Limited)
Task: {D886D05C-4EC0-4D25-B18B-8E60CA2D4DA3} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2018-05-04] (HP Inc.)
Task: {E1FC24AB-A5CE-47F3-A0D8-7A798A485C28} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [2018-01-24] (Tracker Software Products (Canada) Ltd.)
Task: {E6554946-6711-4EE3-9F1D-30E853ED22C0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-09-11] (Adobe Systems Incorporated)
Task: {F512BEB3-2A75-40F4-AE94-CE16A0C14CF7} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2014-05-19] (Hewlett-Packard Development Company, L.P.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForlamer.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\lamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UmmyVideoDownloader\Help\Русский.lnk -> C:\Users\lamer\AppData\Local\UmmyVideoDownloader\1.8.3.3\help\Ummy_rus.pdf () <==== Cyrillic

==================== Loaded Modules (Whitelisted) ==============

2018-09-02 13:47 - 2018-07-24 12:32 - 002681424 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-04-12 02:34 - 2018-04-12 02:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-10-19 00:51 - 2017-10-19 00:51 - 000598528 _____ () C:\ProgramData\MEGAsync\ShellExtX64.dll
2018-02-27 20:08 - 2018-02-27 20:08 - 000614856 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
2018-04-12 02:34 - 2018-04-12 02:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 02:34 - 2018-04-12 02:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-06-30 15:51 - 2018-06-30 15:51 - 000230064 _____ () C:\Program Files\Notepad++\NppShell_06.dll
2018-09-12 10:39 - 2018-08-31 06:12 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-09-10 12:43 - 2018-09-10 12:43 - 102209624 _____ () C:\Program Files\Opera\55.0.2994.56\opera_browser.dll
2018-09-10 12:43 - 2018-09-10 12:43 - 004832856 _____ () C:\Program Files\Opera\55.0.2994.56\libglesv2.dll
2018-09-10 12:43 - 2018-09-10 12:43 - 000116312 _____ () C:\Program Files\Opera\55.0.2994.56\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Application Data:NT [40]
AlternateDataStreams: C:\ProgramData\Application Data:NT2 [660]
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40]
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [660]
AlternateDataStreams: C:\Users\lamer\Application Data:NT [40]
AlternateDataStreams: C:\Users\lamer\Application Data:NT2 [660]
AlternateDataStreams: C:\Users\lamer\AppData\Roaming:NT [40]
AlternateDataStreams: C:\Users\lamer\AppData\Roaming:NT2 [660]
AlternateDataStreams: C:\Users\Public\AppData:CSM [476]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-08-30 10:56 - 2018-09-12 20:52 - 000003030 __RSH C:\WINDOWS\system32\Drivers\etc\hosts

0.0.0.0 www.monster-cheats.com
0.0.0.0 monster-cheats.com
0.0.0.0 www.bl-hackers.com
0.0.0.0 bl-hackers.com
0.0.0.0 theapathe.com
0.0.0.0 www.theapathe.com
0.0.0.0 sv1.theapathe.com
0.0.0.0 apathecheats.com
0.0.0.0 www.apathecheats.com
0.0.0.0 download.theapathe.com
0.0.0.0 www.download.theapathe.com
0.0.0.0 www.sv1.theapathe.com
0.0.0.0 www.hileliadam.co
0.0.0.0 hileliadam.co
0.0.0.0 www.hilenbizde.com
0.0.0.0 hilenbizde.com
0.0.0.0 www.wolfteamhacker.com
0.0.0.0 wolfteamhacker.com
0.0.0.0 wolfteam-hile.com
0.0.0.0 www.wolfteam-hile.com
0.0.0.0 www.zulahile.com
0.0.0.0 zulahile.com
0.0.0.0 www.mrsnapz.net
0.0.0.0 mrsnapz.net
0.0.0.0 www.mrsnapznet.us
0.0.0.0 mrsnapznet.us
0.0.0.0 www.badeshan.com
0.0.0.0 www.thefrm.net
0.0.0.0 www.plathelper.net
0.0.0.0 www.thefrmonline.com

There are 87 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\lamer\Desktop\Adsız.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\Services: AdobeARMservice => 3
MSCONFIG\Services: AdobeUpdateService => 3
MSCONFIG\Services: cFosSpeedS => 3
MSCONFIG\Services: CG6Service => 3
MSCONFIG\Services: EasyAntiCheat => 3
MSCONFIG\Services: gupdate => 3
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Hamachi2Svc => 3
MSCONFIG\Services: HiPatchService => 3
MSCONFIG\Services: McAfee SiteAdvisor Service => 3
MSCONFIG\Services: Origin Client Service => 3
MSCONFIG\Services: Origin Web Helper Service => 2
MSCONFIG\Services: OverwolfUpdater => 3
MSCONFIG\Services: QMEmulatorService => 3
MSCONFIG\Services: Razer Game Manager Service => 3
MSCONFIG\Services: RzActionSvc => 3
MSCONFIG\Services: RzKLService => 3
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: TeamViewer => 3
MSCONFIG\Services: WiseBootAssistant => 2
HKLM\...\StartupApproved\Run: => "cFosSpeed"
HKLM\...\StartupApproved\Run: => "AvastUI.exe"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "EvtMgr6"
HKLM\...\StartupApproved\Run: => "XMouseButtonControl"
HKLM\...\StartupApproved\Run32: => "GrooveMonitor"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "AccelerometerSysTrayApplet"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "LeagueDisplays"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "iturbo"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-1315265887-1540288157-3388349337-1001\...\StartupApproved\Run: => "Discord"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B90EBAD8-8FA3-4438-AEEE-BC98C4ACAED9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{8364CA9D-A63D-42FC-A60F-331D9CB35651}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E3E05F0D-7D48-4B95-9285-E979DF99F30F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{F79E930D-9B13-4FF3-9F7B-CAC0A82D23DF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{F61FDF76-A1DC-4295-AE7B-ECEDEFDC719B}] => (Allow) D:\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe
FirewallRules: [{A393BCD4-A0DC-4C75-9303-8FE992E924BF}] => (Allow) D:\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe
FirewallRules: [{304FC24D-4252-4A60-A959-D6287670340F}] => (Allow) D:\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{FE785A2C-E203-437B-B376-0A9D58BB732E}] => (Allow) D:\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [TCP Query User{70E3E394-B748-404E-B64C-551F87763827}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [UDP Query User{F99B2CBC-3419-472F-8933-5CA555054F47}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [TCP Query User{4BB2DFE2-9539-4663-9548-50386A501FFB}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe
FirewallRules: [UDP Query User{9B53AF0A-E1CD-45C0-AAE3-A1741704892D}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe
FirewallRules: [TCP Query User{0E7DB3E9-A4F7-481C-AECB-24345371FDE9}D:\games\wolfteamts\wolfteam.bin] => (Allow) D:\games\wolfteamts\wolfteam.bin
FirewallRules: [UDP Query User{50008004-3295-486F-B170-6DDA118E74F4}D:\games\wolfteamts\wolfteam.bin] => (Allow) D:\games\wolfteamts\wolfteam.bin
FirewallRules: [TCP Query User{FA5A2C1B-2CD1-48EA-B81C-D3D92C33FABA}C:\users\lamer\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lamer\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{27130AB8-B276-457E-B593-E4AB546C3286}C:\users\lamer\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lamer\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{BD872533-1B56-4792-9E30-D3CA2E860E7B}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{E902BBDE-D798-4287-A896-369FA48056F1}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{D068EA31-C443-42B6-B368-9F6F16A75EF6}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{21FDD614-1A88-4EFD-8A91-E577AC9D7102}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{23CF9F67-4394-4CD3-857A-AF07E3277CC8}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DDC70F9E-EC85-4A56-980F-6E6EC486D455}] => (Allow) C:\Users\lamer\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{905B1F0A-A870-4743-BB2B-8312DCD4027A}] => (Allow) C:\Users\lamer\Desktop\Kategoriler\Oyun ve Oyunla ilgili\Oyunun kendisi\Donut County\DonutCounty.exe
FirewallRules: [{005F1B44-2F55-446B-AEDA-0F5EB4321758}] => (Allow) C:\Users\lamer\Desktop\Kategoriler\Oyun ve Oyunla ilgili\Oyunun kendisi\Donut County\DonutCounty.exe
FirewallRules: [{3B28DBD6-697F-4608-BD97-2279D67DAEFB}] => (Allow) C:\Users\lamer\Desktop\Kategoriler\Oyun ve Oyunla ilgili\Oyunun kendisi\Donut County\DonutCounty.exe
FirewallRules: [{D8B29404-F61A-4AF1-81E7-6A65D1F68086}] => (Allow) C:\Users\lamer\Desktop\Kategoriler\Oyun ve Oyunla ilgili\Oyunun kendisi\Donut County\DonutCounty.exe
FirewallRules: [TCP Query User{72B52207-34C8-4E57-9A15-75D0AAABCEE2}D:\games\trailmakers.v0.6.1\trailmakers.exe] => (Allow) D:\games\trailmakers.v0.6.1\trailmakers.exe
FirewallRules: [UDP Query User{A9680993-0885-42EF-9D2C-DBA4080F1CDC}D:\games\trailmakers.v0.6.1\trailmakers.exe] => (Allow) D:\games\trailmakers.v0.6.1\trailmakers.exe
FirewallRules: [TCP Query User{322987B9-21AD-4E8B-A37F-B72C52CC4373}D:\games\hob\hob.exe] => (Allow) D:\games\hob\hob.exe
FirewallRules: [UDP Query User{24F196A1-3476-4531-A48C-CFEDE2D47762}D:\games\hob\hob.exe] => (Allow) D:\games\hob\hob.exe
FirewallRules: [TCP Query User{650327CC-0BFE-4268-9F38-0681ED7A04C8}D:\ros\ros.exe] => (Allow) D:\ros\ros.exe
FirewallRules: [UDP Query User{CFDAFFF2-7ADF-481D-8520-C90A69E3ED0F}D:\ros\ros.exe] => (Allow) D:\ros\ros.exe
FirewallRules: [{DD41B9F7-5096-4630-B8D3-ADE34A34765A}] => (Allow) C:\Program Files\Opera\55.0.2994.56\opera.exe
FirewallRules: [TCP Query User{218626CD-4847-4A69-8C82-55EA15293536}C:\program files\java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_181\bin\javaw.exe
FirewallRules: [UDP Query User{518A4A6B-E5DF-44CF-8C67-E3E029ACE492}C:\program files\java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_181\bin\javaw.exe
FirewallRules: [{CE6F718E-CB23-418C-B9CA-C546EAC54987}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe
FirewallRules: [{823BD92F-E4D2-4C0B-BEED-02E2A31E8A2A}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\TInst.exe
FirewallRules: [{79B5D411-9ACB-4FC3-AF85-8C8D67095A54}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\bugreport.exe
FirewallRules: [{F5E45E5C-66A1-49EE-9379-F5A26454A401}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\QQExternal.exe
FirewallRules: [{12019E0C-7212-4255-BB8C-49E9CC0ADA8E}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\GameDownload.exe
FirewallRules: [{AC6C52D8-06DF-43A6-8BAB-750704075E53}] => (Allow) D:\Program Files\TxGameAssistant\AppMarket\GF186\TUpdate.exe
FirewallRules: [{254B9D0F-1028-453E-A7F5-E2F9D6EC5541}] => (Allow) D:\Program Files\TxGameAssistant\UI\AndroidEmulator.exe
FirewallRules: [{92F58DD5-5509-4327-9712-0337172BF1C2}] => (Allow) D:\Program Files\TxGameAssistant\UI\adb.exe
FirewallRules: [{68C31FD1-2A82-4C0E-A622-15FB904510C2}] => (Allow) D:\Program Files\TxGameAssistant\UI\TInst.exe
FirewallRules: [{02961495-3A28-4418-90B2-067DE6782562}] => (Allow) D:\Program Files\TxGameAssistant\UI\bugreport.exe
FirewallRules: [{578CD15C-2C73-4BB2-8FE6-3667D2FB2727}] => (Allow) D:\Program Files\TxGameAssistant\UI\TxGaDcc.exe

==================== Restore Points =========================

14-09-2018 17:44:46 Installed Minecraft
14-09-2018 18:06:48 Installed Minecraft
15-09-2018 23:33:01 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/16/2018 01:34:02 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3656,D,23) SRUJet: Veritabanı C:\WINDOWS\system32\SRU\SRUDB.dat: {5C8CF1C7-7257-4F13-B223-970EF5939312} tablosunun AutoIncIdIndex dizini bozuk (0).

Error: (09/16/2018 11:58:16 AM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3964,D,23) SRUJet: Veritabanı C:\WINDOWS\system32\SRU\SRUDB.dat: {5C8CF1C7-7257-4F13-B223-970EF5939312} tablosunun AutoIncIdIndex dizini bozuk (0).

Error: (09/16/2018 11:51:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Hatalı uygulama adı: explorer.exe, sürüm: 10.0.17134.165, zaman damgası: 0x4031a9f8
Hatalı modül adı: UninstallExplorer.dll, sürüm: 1.0.7.16, zaman damgası: 0x556c36ef
Özel durum kodu: 0xc0000005
Hata uzaklığı 0x00000000000d3f35
Hatalı işlem kimliği: 0x1a14
Uygulama başlangıç zamanı: 0x01d44d9601e2973e
Hatalı uygulama yolu: C:\WINDOWS\explorer.exe
Hatalı modül yolu: C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
Rapor kimliği: 98e1cab2-0dc3-4381-afd4-9dce3b4001fb
Hatalı paket tam adı:
Hatalı paketle ilgili uygulama kimliği:

Error: (09/16/2018 11:18:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Hatalı uygulama adı: Explorer.EXE, sürüm: 10.0.17134.165, zaman damgası: 0x4031a9f8
Hatalı modül adı: UninstallExplorer.dll, sürüm: 1.0.7.16, zaman damgası: 0x556c36ef
Özel durum kodu: 0xc0000005
Hata uzaklığı 0x00000000000d3f35
Hatalı işlem kimliği: 0x179c
Uygulama başlangıç zamanı: 0x01d44d930d9e5a20
Hatalı uygulama yolu: C:\WINDOWS\Explorer.EXE
Hatalı modül yolu: C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
Rapor kimliği: ecce863b-0b5d-4e0f-8fb7-5c43ba07eb86
Hatalı paket tam adı:
Hatalı paketle ilgili uygulama kimliği:

Error: (09/16/2018 11:02:35 AM) (Source: Perflib) (EventID: 1023) (User: )
Description: Windows, rdyboost uzatılabilir sayaç DLL'sini yükleyemedi. Veri bölümünün ilk dört baytı (DWORD) Windows hata kodunu içerir.

Error: (09/16/2018 11:02:31 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: "BITS" hizmeti için "C:\Windows\System32\bitsperf.dll" DLL'sinde Açma Yordamı başarısız oldu. Bu hizmet için performans verileri kullanılabilir olmayacak. Veri bölümünün ilk dört baytı (DWORD) hata kodunu içerir.

Error: (09/16/2018 10:28:02 AM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3536,D,23) SRUJet: Veritabanı C:\WINDOWS\system32\SRU\SRUDB.dat: {5C8CF1C7-7257-4F13-B223-970EF5939312} tablosunun AutoIncIdIndex dizini bozuk (0).

Error: (09/16/2018 10:27:29 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Hatalı uygulama adı: Antivirus Remover.exe, sürüm: 2.35.0.0, zaman damgası: 0x557c906f
Hatalı modül adı: KERNELBASE.dll, sürüm: 10.0.17134.165, zaman damgası: 0xfa43f4b2
Özel durum kodu: 0xe0434352
Hata uzaklığı 0x0010ddc2
Hatalı işlem kimliği: 0x1ddc
Uygulama başlangıç zamanı: 0x01d44d8eab452db0
Hatalı uygulama yolu: C:\Users\lamer\AppData\Local\Temp\scoped_dir2344_11893\Antivirus Remover.exe
Hatalı modül yolu: C:\WINDOWS\System32\KERNELBASE.dll
Rapor kimliği: a1781e17-22d5-41e1-8ce9-39d55df3e871
Hatalı paket tam adı:
Hatalı paketle ilgili uygulama kimliği:


System errors:
=============
Error: (09/16/2018 01:32:14 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-508NC26)
Description: uygulamaya özgü izin ayarları
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 CLSID'sine ve
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 APPID'sine sahip COM Sunucu uygulaması için, Yok SID (Yok) uygulama kapsayıcısında çalışan LocalHost (LRPC Kullanan) adresindeki SID değeri (S-1-5-21-1315265887-1540288157-3388349337-1001) olan DESKTOP-508NC26\lamer kullanıcısına Yerel Etkinleştirme izni vermiyor. Bu güvenlik izni, Bileşen Hizmetleri yönetim aracı kullanılarak değiştirilebilir.

Error: (09/16/2018 01:31:36 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-508NC26)
Description: uygulamaya özgü izin ayarları
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 CLSID'sine ve
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 APPID'sine sahip COM Sunucu uygulaması için, Yok SID (Yok) uygulama kapsayıcısında çalışan LocalHost (LRPC Kullanan) adresindeki SID değeri (S-1-5-21-1315265887-1540288157-3388349337-1001) olan DESKTOP-508NC26\lamer kullanıcısına Yerel Etkinleştirme izni vermiyor. Bu güvenlik izni, Bileşen Hizmetleri yönetim aracı kullanılarak değiştirilebilir.

Error: (09/16/2018 01:31:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Intel(R) HD Graphics Control Panel Service hizmeti beklenmeyen bir şekilde sonlandırıldı. Bu durum 1 defa oluştu.

Error: (09/16/2018 01:31:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: AMD External Events Utility hizmeti beklenmeyen bir şekilde sonlandırıldı. Bu durum 1 defa oluştu.

Error: (09/16/2018 01:31:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: cFosSpeed System Service hizmeti beklenmedik şekilde sona erdi.  Bu durum 1 defa oluştu.  0 milisaniye içinde şu düzeltme eylemi uygulanacak: Hizmeti yeniden başlat.

Error: (09/16/2018 01:31:21 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Windows Presentation Foundation Font Cache 3.0.0.0 hizmeti beklenmedik şekilde sona erdi.  Bu durum 1 defa oluştu.  0 milisaniye içinde şu düzeltme eylemi uygulanacak: Hizmeti yeniden başlat.

Error: (09/16/2018 01:31:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: HP Software Framework Service hizmeti beklenmeyen bir şekilde sonlandırıldı. Bu durum 1 defa oluştu.

Error: (09/16/2018 01:31:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: AMD User Experience Program Launcher hizmeti beklenmeyen bir şekilde sonlandırıldı. Bu durum 1 defa oluştu.


Windows Defender:
===================================
Date: 2018-08-21 16:12:41.625
Description:
Windows Defender Virüsten Koruma kötü amaçlı yazılım veya başka bir istenmeyebilecek yazılım algıladı.
Daha fazla bilgi için lütfen aşağıya bakın:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0
Ad: Trojan:Win32/Tiggre!rfn
Kimlik: 2147723625
Önem Derecesi: Ciddi
Kategori: Truva Atı
Yol: file:_C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe; process:_pid:8292,ProcessStart:131793305823454899
Algılama Başlangıç Noktası: Yerel makine
Algılama Türü: Somut
Algılama Kaynağı: Sistem
Kullanıcı: NT AUTHORITY\SYSTEM
İşlem Adı: C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe
İmza Sürümü: AV: 1.273.1749.0, AS: 1.273.1749.0, NIS: 1.273.1749.0
Altyapı Sürümü: AM: 1.1.15100.1, NIS: 1.1.15100.1

Date: 2018-08-21 16:10:08.156
Description:
Windows Defender Virüsten Koruma kötü amaçlı yazılım veya başka bir istenmeyebilecek yazılım algıladı.
Daha fazla bilgi için lütfen aşağıya bakın:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0
Ad: Trojan:Win32/Tiggre!rfn
Kimlik: 2147723625
Önem Derecesi: Ciddi
Kategori: Truva Atı
Yol: file:_C:\Users\lamer\AppData\Local\Temp\Rar$EXa0.455\Steam Code Generator 2018.exe
Algılama Başlangıç Noktası: Yerel makine
Algılama Türü: Somut
Algılama Kaynağı: Sistem
Kullanıcı: NT AUTHORITY\SYSTEM
İşlem Adı: Unknown
İmza Sürümü: AV: 1.273.1749.0, AS: 1.273.1749.0, NIS: 1.273.1749.0
Altyapı Sürümü: AM: 1.1.15100.1, NIS: 1.1.15100.1

Date: 2018-08-16 21:03:08.498
Description:
Windows Defender Virüsten Koruma taraması tamamlanmadan durduruldu.
Tarama Kimliği: {AAEC4D3A-02D3-49CF-9714-48F8F32846AC}
Tarama Türü: Kötü Amaçlı Yazılımdan Koruma
Tarama Parametreleri: Hızlı Tarama
Kullanıcı: NT AUTHORITY\SYSTEM

Date: 2018-08-16 17:39:07.873
Description:
Windows Defender Virüsten Koruma taraması tamamlanmadan durduruldu.
Tarama Kimliği: {E971534C-015B-4BEB-B81C-C48BE3DB371E}
Tarama Türü: Kötü Amaçlı Yazılımdan Koruma
Tarama Parametreleri: Hızlı Tarama
Kullanıcı: NT AUTHORITY\SYSTEM

Date: 2018-08-03 11:15:29.751
Description:
Windows Defender Virüsten Koruma taraması tamamlanmadan durduruldu.
Tarama Kimliği: {4A1D3340-03F0-4510-A300-06E7B44698F3}
Tarama Türü: Kötü Amaçlı Yazılımdan Koruma
Tarama Parametreleri: Hızlı Tarama
Kullanıcı: NT AUTHORITY\SYSTEM

Date: 2018-08-21 02:18:40.991
Description:
Windows Defender Virüsten Koruma imzaları güncelleştirmeye çalışırken bir hatayla karşılaştı.
Yeni İmza Sürümü:
Önceki İmza Sürümü: 1.273.1668.0
Güncelleştirme Kaynağı: Microsoft Update Sunucusu
İmza Türü: Virüsten Koruma
Güncelleştirme Türü: Tam
Kullanıcı: NT AUTHORITY\SYSTEM
Geçerli Altyapı Sürümü:
Önceki Altyapı Sürümü: 1.1.15100.1
Hata kodu: 0x8024402c
Hata açıklaması: Güncelleştirmeler denetlenirken beklenmeyen bir sorun oluştu. Güncelleştirmeleri yüklemek veya güncelleştirme sorunlarını gidermek için Yardım ve Destek'e bakın.

Date: 2018-08-19 21:42:07.534
Description:
Windows Defender Virüsten Koruma imzaları güncelleştirmeye çalışırken bir hatayla karşılaştı.
Yeni İmza Sürümü:
Önceki İmza Sürümü: 1.273.1668.0
Güncelleştirme Kaynağı: Microsoft Update Sunucusu
İmza Türü: Virüsten Koruma
Güncelleştirme Türü: Tam
Kullanıcı: NT AUTHORITY\SYSTEM
Geçerli Altyapı Sürümü:
Önceki Altyapı Sürümü: 1.1.15100.1
Hata kodu: 0x80240438
Hata açıklaması: Güncelleştirmeler denetlenirken beklenmeyen bir sorun oluştu. Güncelleştirmeleri yüklemek veya güncelleştirme sorunlarını gidermek için Yardım ve Destek'e bakın.

Date: 2018-08-19 11:51:54.500
Description:
Windows Defender Virüsten Koruma imzaları güncelleştirmeye çalışırken bir hatayla karşılaştı.
Yeni İmza Sürümü:
Önceki İmza Sürümü: 1.273.1607.0
Güncelleştirme Kaynağı: Microsoft Update Sunucusu
İmza Türü: Virüsten Koruma
Güncelleştirme Türü: Tam
Kullanıcı: NT AUTHORITY\SYSTEM
Geçerli Altyapı Sürümü:
Önceki Altyapı Sürümü: 1.1.15100.1
Hata kodu: 0x8024402c
Hata açıklaması: Güncelleştirmeler denetlenirken beklenmeyen bir sorun oluştu. Güncelleştirmeleri yüklemek veya güncelleştirme sorunlarını gidermek için Yardım ve Destek'e bakın.

Date: 2018-08-19 10:47:43.737
Description:
Windows Defender Virüsten Koruma imzaları güncelleştirmeye çalışırken bir hatayla karşılaştı.
Yeni İmza Sürümü:
Önceki İmza Sürümü: 1.273.1607.0
Güncelleştirme Kaynağı: Microsoft Update Sunucusu
İmza Türü: Virüsten Koruma
Güncelleştirme Türü: Tam
Kullanıcı: NT AUTHORITY\SYSTEM
Geçerli Altyapı Sürümü:
Önceki Altyapı Sürümü: 1.1.15100.1
Hata kodu: 0x80072ee2
Hata açıklaması: İşlem zamanı aşıldı

Date: 2018-08-16 04:36:14.592
Description:
Windows Defender Virüsten Koruma imzaları güncelleştirmeye çalışırken bir hatayla karşılaştı.
Yeni İmza Sürümü:
Önceki İmza Sürümü: 1.273.1420.0
Güncelleştirme Kaynağı: Microsoft Update Sunucusu
İmza Türü: Virüsten Koruma
Güncelleştirme Türü: Tam
Kullanıcı: NT AUTHORITY\SYSTEM
Geçerli Altyapı Sürümü:
Önceki Altyapı Sürümü: 1.1.15100.1
Hata kodu: 0x80240438
Hata açıklaması: Güncelleştirmeler denetlenirken beklenmeyen bir sorun oluştu. Güncelleştirmeleri yüklemek veya güncelleştirme sorunlarını gidermek için Yardım ve Destek'e bakın.

CodeIntegrity:
===================================

Date: 2018-09-16 09:40:23.171
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:56.016
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:16.008
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:14.512
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:02.620
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:02.619
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-16 09:39:02.610
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-09-15 23:20:47.458
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Opera\55.0.2994.56\opera.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
Percentage of memory in use: 78%
Total physical RAM: 4016.36 MB
Available physical RAM: 854.28 MB
Total Virtual: 8880.36 MB
Available Virtual: 5691.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:145.17 GB) (Free:35.79 GB) NTFS
Drive d: () (Fixed) (Total:319.28 GB) (Free:116.79 GB) NTFS

\\?\Volume{88ccb3c9-0000-0000-0000-100000000000}\ (Sistem Ayrıldı) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{88ccb3c9-0000-0000-0000-206a24000000}\ () (Fixed) (Total:0.83 GB) (Free:0.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 88CCB3C9)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=145.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=846 MB) - (Type=27)
Partition 4: (Not Active) - (Size=319.3 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================
 
Uyarı! Bu konu 6 yıl önce açıldı.
Muhtemelen daha fazla tartışma gerekli değildir ki bu durumda yeni bir konu başlatmayı öneririz. Eğer yine de cevabınızın gerekli olduğunu düşünüyorsanız buna rağmen cevap verebilirsiniz.

Yeni konular

Geri
Yukarı