Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Chrome opens marketing websites when click


  • This topic is locked This topic is locked
3 replies to this topic

#1 erdemece

erdemece

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:04:05 AM

Posted 12 March 2015 - 08:14 AM

Hi there
 
When surfing on chrome when ever you click on a link time to time it opens some different website which are usually fake anti malware software websites or money marketing websites.
 
I have tried every single bloody anti virus software but I can't find what is this..
 
here are the logs for farbar and rougkiller.
 
I have notice something in farbar log which is this ph (x32 Version: 1.0.0 - Your Company Name) Hidden and this bl (x32 Version: 1.0.0 - Your Company Name) Hidden in installed softwares. I don't know how to find these files. 
 
Please help me. Thanks in advance.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Erdem (administrator) on ERDEM-PC on 12-03-2015 13:03:39
Running from E:\Download
Loaded Profiles: Erdem (Available profiles: Erdem)
Platform: Windows 10 Pro Technical Preview (X64) OS Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Sage (UK) Limited) C:\Program Files (x86)\Common Files\Sage SData\Sage.SData.Service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\sihost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Microsoft Corporation) C:\Windows\System32\fontdrvhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\ApplicationFrameHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) F:\Program Files\iTunes\iTunesHelper.exe
(CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe
() C:\Windows\SysWOW64\HsMgr.exe
() C:\Windows\System\HsMgr64.exe
(Gainward Co. Ltd.) C:\Program Files (x86)\EXPERTool\TBPanel.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Microsoft Corporation) F:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
(Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken_Driver\Drivers\SysAudio\KrakenHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\taskhostw.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Microsoft Corporation) C:\Windows\System32\taskhostw.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\rdpclip.exe
(Microsoft Corporation) C:\Windows\System32\rdpinput.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\shellexperiencehost.exe
() C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\searchui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9800.20748_x64__8wekyb3d8bbwe\livecomm.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SystemSettingsBroker.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [392296 2015-02-23] ()
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13874392 2015-02-13] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-13] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [iTunesHelper] => F:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.)
HKLM\...\Run: [Cmaudio8788] => C:\WINDOWS\syswow64\RunDll32.exe C:\WINDOWS\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM\...\Run: [Cmaudio8788GX] => C:\WINDOWS\syswow64\HsMgr.exe [200704 2008-07-11] ()
HKLM\...\Run: [Cmaudio8788GX64] => C:\WINDOWS\system\HsMgr64.exe [282112 2008-07-11] ()
HKLM-x32\...\Run: [Cmaudio8788] => C:\WINDOWS\syswow64\RunDll32.exe C:\WINDOWS\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-02-13] (Apple Inc.)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-02-28] (Razer Inc.)
HKLM-x32\...\Run: [KrakenLauncher] => C:\Program Files (x86)\Razer\Razer_Kraken_Driver\Drivers\SysAudio\KrakenHelper.exe [1599808 2015-02-03] (Razer Inc)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Winlogon: [Userinit] [X]
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7215264 2015-01-20] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7215264 2015-01-20] (Microsoft Corporation)
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Run: [TBPanel] => C:\Program Files (x86)\EXPERTool\TBPanel.exe [2160936 2013-07-03] (Gainward Co. Ltd.)
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Run: [Spotify Web Helper] => C:\Users\Erdem\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-25] (Spotify Ltd)
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Run: [Skype] => F:\Program Files\Skype\Phone\Skype.exe [31344744 2015-02-26] (Skype Technologies S.A.)
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [177600 2015-02-23] (NVIDIA Corporation)
Startup: C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk
ShortcutTarget: Send to OneNote.lnk -> F:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/en-gb/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001 -> {25AFB726-CD1A-4C44-82A1-37C230DDEE47} URL = https://uk.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=282369&p={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> F:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> F:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-21] (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-21] (Oracle Corporation)
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - F:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2015-01-20] (Microsoft Corporation)
Handler-x32: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2015-01-20] (Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [74240] (Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [74240] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{526A6477-1E1D-43B7-9B6F-29ED166D0371}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 8.8.8.8,8.8.8.8
Tcpip\..\Interfaces\{E0C780CD-0548-47FE-B6BF-1DBA476D60B4}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{F50900E3-F893-4231-A44E-9CC26C31FA88}: [NameServer] 8.8.8.8,8.8.8.8

FireFox:
========
FF ProfilePath: C:\Users\Erdem\AppData\Roaming\Mozilla\Firefox\Profiles\6f4hsx2a.default
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: https://uk.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=282369&p=
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> F:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll No File
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-21] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-09-25] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-06] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-06] (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-09] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-09] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> F:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-22] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2014-09-25] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2014-10-28] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2014-10-28] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2014-10-28] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2014-10-28] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2014-10-28] (Apple Inc.)
FF Extension: No Name - C:\Users\Erdem\AppData\Roaming\Mozilla\Firefox\Profiles\6f4hsx2a.default\extensions\{F0439056-B878-FCDE-11E9-30D044445D34} [Not Found]
StartMenuInternet: FIREFOX.EXE - F:\Program Files\Mozilla Firefox\firefox.exe

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/", "hxxp://www.reddit.com/", "hxxp://www.facebook.com/", "https://eksisozluk.com/"
CHR Profile: C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-09]
CHR Extension: (Entanglement Web App) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd [2015-03-09]
CHR Extension: (Bejeweled) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm [2015-03-09]
CHR Extension: (Angry Birds) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2015-03-09]
CHR Extension: (Google Drive) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-09]
CHR Extension: (SocialBro) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bagknoiagpifjfbempgignagkejmkljm [2015-03-09]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-03-09]
CHR Extension: (YouTube) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-09]
CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmagokdooijbeehmkpknfglimnifench [2015-03-09]
CHR Extension: (HelloFax: 50 Free Fax Pages) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocmleclimfnadgmcdgecijlblfcmfnm [2015-03-09]
CHR Extension: (Facebook) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2015-03-09]
CHR Extension: (Adblock Plus) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-09]
CHR Extension: (Send to Kindle for Google Chrome™) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgdjpilhipecahhcilnafpblkieebhea [2015-03-09]
CHR Extension: (Google Search) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-09]
CHR Extension: (Google Calendar) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-03-09]
CHR Extension: (Google Sheets) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-09]
CHR Extension: (Full Screen Weather) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2015-03-09]
CHR Extension: (Clip to OneNote) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\gojbdfnpnhogfdgjbigejoaolejmgdhk [2015-03-09]
CHR Extension: (Marvel Comics) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjhfaknohpjconjoefidanhihokmkice [2015-03-09]
CHR Extension: (TiltShiftMaker) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjjofhgnhekhkccpcnnloagmdpafifeo [2015-03-09]
CHR Extension: (Eye Dropper) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmdcmlfkchdmnmnmheododdhjedfccka [2015-03-09]
CHR Extension: (SesliSozluk) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnincmfahpbejkdebeobohlnpckfobap [2015-03-09]
CHR Extension: (IP Address) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnjjlbngpejmmhgcaagljaomgnginml [2015-03-09]
CHR Extension: (Handcraft) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgpklhhhiiafnocfiikcpffkogjkdmki [2015-03-09]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-09]
CHR Extension: (Download Fonts) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgmjfmdomlhhodhmmfaomfbbdadpeefk [2015-03-09]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-09]
CHR Extension: (Poppit!) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi [2015-03-09]
CHR Extension: (3D Solar System Web) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdaaepplopehigjgkolniddiadbbkphd [2015-03-09]
CHR Extension: (MyQuery Builder) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghimoepgailkoakgehbnkcniecbiihf [2015-03-09]
CHR Extension: (War of Legends) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlbpknobcopmnlganinccihoafiblkne [2015-03-09]
CHR Extension: (Google Play Books) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmimngoggfoobjdlefbcabngfnmieonb [2015-03-09]
CHR Extension: (Google Wallet) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-09]
CHR Extension: (Gmail) - C:\Users\Erdem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-09]
CHR HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AJRouter; C:\Windows\System32\AJRouter.dll [19968 2015-01-20] (Microsoft Corporation)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [814464 2015-02-20] ()
S3 ClipSVC; C:\Windows\System32\ClipSVC.dll [515072 2015-01-20] (Microsoft Corporation)
S3 CommsAPHost; C:\Windows\System32\APHostService.dll [228864 2015-01-20] (Microsoft Corporation)
R2 CoreUIRegistrar; C:\Windows\system32\coremessaging.dll [626616 2015-01-20] (Microsoft Corporation)
R2 CoreUIRegistrar; C:\Windows\SysWOW64\coremessaging.dll [460800 2015-01-20] (Microsoft Corporation)
S3 DcpSvc; C:\Windows\system32\dcpsvc.dll [196096 2015-01-20] (Microsoft Corporation)
S3 DevQueryBroker; C:\Windows\system32\DevQueryBroker.dll [24064 2015-01-20] (Microsoft Corporation)
R2 DiagTrack; C:\Windows\system32\diagtrack.dll [1189376 2015-01-20] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\system32\Windows.DeviceManagement.Enrollment.dll [455168 2015-01-20] (Microsoft Corporation)
R2 dmwappushservice; C:\Windows\system32\dmwappushsvc.dll [105472 2015-01-20] (Microsoft Corporation)
S2 DoSvc; C:\Windows\system32\svchost.exe [39456 2015-01-20] (Microsoft Corporation)
S2 DoSvc; C:\Windows\SysWOW64\svchost.exe [33752 2015-01-20] (Microsoft Corporation)
S3 DsSvc; C:\Windows\System32\DsSvc.dll [120832 2015-01-20] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328808 2015-02-23] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R3 lfsvc; C:\Windows\System32\lfsvc.dll [22528 2015-01-20] (Microsoft Corporation)
S2 MBAMScheduler; F:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S2 MBAMService; F:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 MosHost; C:\Windows\System32\moshost.dll [169984 2015-01-20] (Microsoft Corporation)
S3 MosHost; C:\Windows\SysWOW64\moshost.dll [124416 2015-01-20] (Microsoft Corporation)
S3 NetSetupSvc; C:\Windows\System32\NetSetupSvc.dll [128000 2015-01-20] (Microsoft Corporation)
S3 NgcCtnrSvc; C:\Windows\System32\NgcCtnrSvc.dll [309760 2015-01-20] (Microsoft Corporation)
S3 NgcSvc; C:\Windows\system32\ngcsvc.dll [391168 2015-01-20] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-02-28] (Electronic Arts)
S3 PhoneSvc; C:\Windows\System32\PhoneService.dll [521216 2015-01-20] (Microsoft Corporation)
S3 PimIndexMaintenance; C:\Windows\System32\PimIndexMaintenance.dll [279552 2015-01-20] (Microsoft Corporation)
S4 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2014-11-15] ()
S4 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-02-07] ()
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] ()
S3 RetailDemo; C:\Windows\system32\RetailDemoService.dll [286720 2015-01-20] (Microsoft Corporation)
R2 Sage SData Service; C:\Program Files (x86)\Common Files\Sage SData\Sage.SData.Service.exe [53248 2011-07-28] (Sage (UK) Limited) [File not signed]
S3 SensorService; C:\Windows\system32\SensorService.dll [125440 2015-01-21] (Microsoft Corporation)
S2 SkypeUpdate; F:\Program Files\Skype\Updater\Updater.exe [315488 2015-01-02] (Skype Technologies)
S3 SmsRouter; C:\Windows\system32\SmsRouterSvc.dll [512512 2015-01-20] (Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5436176 2015-02-17] (TeamViewer GmbH)
S3 THREADORDER; C:\Windows\system32\threadorder.dll [19456 2015-01-20] (Microsoft Corporation)
R3 tiledatamodelsvc; C:\Windows\system32\tileobjserver.dll [321536 2015-01-30] (Microsoft Corporation)
S3 UnistoreService; C:\Windows\System32\unistore.dll [986112 2015-01-20] (Microsoft Corporation)
S3 UserDataService; C:\Windows\System32\userdataservice.dll [1053696 2015-01-20] (Microsoft Corporation)
R2 UserManager; C:\Windows\System32\usermgr.dll [444928 2015-01-20] (Microsoft Corporation)
S3 UserTrustedSignals; C:\Windows\system32\Windows.UserTrustedSignals.dll [130560 2015-01-20] (Microsoft Corporation)
S3 UsoSvc; C:\Windows\system32\usocore.dll [207872 2015-01-20] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [351832 2015-01-20] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16704 2015-01-20] (Microsoft Corporation)
S3 WpnService; C:\Windows\system32\WpnService.dll [46592 2015-01-20] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 02162429; C:\Windows\System32\drivers\56118559.sys [248728 2015-03-11] (Kaspersky Lab, Yury Parshin)
S3 24440954; C:\Windows\System32\drivers\24442011.sys [248728 2015-03-09] (Kaspersky Lab, Yury Parshin)
S3 58022115; C:\Windows\System32\drivers\95224564.sys [248728 2015-03-09] (Kaspersky Lab, Yury Parshin)
S3 89161693; C:\Windows\System32\drivers\30062191.sys [248728 2015-03-09] (Kaspersky Lab, Yury Parshin)
S3 89257831; C:\Windows\System32\drivers\76347919.sys [248728 2015-03-11] (Kaspersky Lab, Yury Parshin)
R3 asiovad; C:\Windows\system32\DRIVERS\asiovad.sys [32968 2015-01-31] (John Shield/Odeus Audio)
S3 buttonconverter; C:\Windows\System32\drivers\buttonconverter.sys [31744 2015-01-20] (Microsoft Corporation)
S3 CapImg; C:\Windows\System32\drivers\capimg.sys [95232 2015-01-20] (Microsoft Corporation)
R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2735616 2013-12-11] (C-Media Inc)
S4 cnghwassist; C:\Windows\System32\DRIVERS\cnghwassist.sys [38864 2015-01-20] (Microsoft Corporation)
R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_f3cb3ea7a7db22f1\CompositeBus.sys [39424 2015-01-20] (Microsoft Corporation)
S3 fcvsc; C:\Windows\System32\drivers\fcvsc.sys [30720 2015-01-20] (Microsoft Corporation)
S3 genericusbfn; C:\Windows\System32\drivers\genericusbfnclass.sys [20992 2015-01-20] (Microsoft Corporation)
S3 hidinterrupt; C:\Windows\System32\drivers\hidinterrupt.sys [38864 2015-01-20] (Microsoft Corporation)
S0 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [98256 2015-01-20] (LSI Corporation)
S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [90576 2015-01-20] (LSI Corporation)
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
S0 megasas; C:\Windows\System32\drivers\megasas.sys [61392 2015-01-20] (Avago Technologies)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R2 MMCSS; C:\Windows\system32\drivers\mmcss.sys [37888 2015-01-20] (Microsoft Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [67584 2015-01-20] ()
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc.sys [97280 2015-01-20] (Microsoft Corporation)
S3 NETVSCVFPP; C:\Windows\system32\DRIVERS\netvsc.sys [97280 2015-01-20] (Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [56784 2015-01-20] (LSI Corporation)
S0 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [58832 2015-01-20] (Avago Technologies)
S3 prl_virtual_sound; C:\Windows\system32\DRIVERS\prl_virtual_sound.sys [46824 2014-08-29] (Parallels Holdings, Ltd. and its affiliates.)
S3 ReFSv1; C:\Windows\System32\Drivers\ReFSv1.sys [934352 2015-01-20] (Microsoft Corporation)
S3 rspLLL; C:\Windows\System32\DRIVERS\rspLLL64.sys [25504 2013-10-21] (Resplendence Software Projects Sp.)
R3 rzdaendpt; C:\Windows\System32\drivers\rzdaendpt.sys [33448 2014-12-30] (Razer Inc)
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39592 2014-12-30] (Razer Inc)
S3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [32768 2014-06-09] (Windows ® Win 7 DDK provider)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [129600 2014-10-23] (Razer, Inc.)
R3 rzvkeyboard; C:\Windows\System32\drivers\rzvkeyboard.sys [31912 2014-12-30] (Razer Inc)
U5 SaiK0728; C:\Windows\System32\Drivers\SaiK0728.sys [129024 2008-01-21] (Saitek)
R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-04-30] (Saitek)
R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek)
S0 storufs; C:\Windows\System32\drivers\storufs.sys [39888 2015-01-20] (Microsoft Corporation)
R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_e5d68a18d2844655\swenum.sys [17872 2015-01-20] (Microsoft Corporation)
S3 Ufx01000; C:\Windows\System32\drivers\ufx01000.sys [189952 2015-01-20] (Microsoft Corporation)
S3 UfxChipidea; C:\Windows\System32\drivers\UfxChipidea.sys [83456 2015-01-20] (Microsoft Corporation)
S3 ufxsynopsys; C:\Windows\System32\drivers\ufxsynopsys.sys [104960 2015-01-20] (Microsoft Corporation)
S3 UrsChipidea; C:\Windows\System32\drivers\urschipidea.sys [15872 2015-01-20] (Microsoft Corporation)
S3 UrsCx01000; C:\Windows\System32\drivers\urscx01000.sys [41984 2015-01-20] (Microsoft Corporation)
S3 UrsSynopsys; C:\Windows\System32\drivers\urssynopsys.sys [17920 2015-01-20] (Microsoft Corporation)
S3 vhf; C:\Windows\System32\drivers\vhf.sys [25088 2015-01-20] (Microsoft Corporation)
S3 wdiwifi; C:\Windows\System32\DRIVERS\wdiwifi.sys [849920 2015-01-20] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117200 2015-01-20] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [90112 2015-01-20] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

NETSVC: DmEnrollmentSvc -> C:\Windows\system32\Windows.DeviceManagement.Enrollment.dll (Microsoft Corporation)
NETSVC: dosvc -> No ServiceDLL Path.
NETSVC: DcpSvc -> C:\Windows\system32\dcpsvc.dll (Microsoft Corporation)
NETSVC: DiagTrack -> C:\Windows\system32\diagtrack.dll (Microsoft Corporation)
NETSVC: NetSetupSvc -> C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation)
NETSVC: RetailDemo -> C:\Windows\system32\RetailDemoService.dll (Microsoft Corporation)
NETSVC: UsoSvc -> C:\Windows\system32\usocore.dll (Microsoft Corporation)
NETSVC: dmwappushservice -> C:\Windows\system32\dmwappushsvc.dll (Microsoft Corporation)
NETSVC: UserTrustedSignals -> C:\Windows\system32\Windows.UserTrustedSignals.dll (Microsoft Corporation)
NETSVCx32: NetSetupSvc -> C:\Windows\SysWOW64\NetSetupSvc.dll ==> No File.

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-11 20:23 - 2015-03-11 20:23 - 00248728 _____ (Kaspersky Lab, Yury Parshin) C:\WINDOWS\system32\Drivers\76347919.sys
2015-03-11 20:18 - 2015-03-11 20:23 - 00000000 ____D () C:\AdwCleaner
2015-03-11 19:40 - 2015-03-11 19:40 - 00248728 _____ (Kaspersky Lab, Yury Parshin) C:\WINDOWS\system32\Drivers\56118559.sys
2015-03-11 17:50 - 2015-03-11 17:50 - 00000000 ____D () C:\Users\Erdem\Tracing
2015-03-11 17:49 - 2015-03-11 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-03-11 17:49 - 2015-03-11 17:49 - 00000000 ____D () C:\Program Files (x86)\Skype
2015-03-11 15:31 - 2015-03-05 06:23 - 02758144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-03-11 15:31 - 2015-03-05 06:21 - 02758144 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.tlb
2015-03-11 15:31 - 2015-03-05 05:46 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-03-11 15:31 - 2015-03-05 05:29 - 02758144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-03-11 15:31 - 2015-03-05 05:28 - 02758144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.tlb
2015-03-11 15:31 - 2015-03-05 05:16 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-03-11 15:31 - 2015-03-05 04:57 - 00532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2015-03-11 15:31 - 2015-03-05 04:34 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-03-11 15:31 - 2015-03-05 04:28 - 00571392 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 15:31 - 2015-03-05 04:18 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 15:31 - 2015-03-05 04:00 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-11 15:31 - 2015-03-05 03:52 - 06909952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-03-11 15:31 - 2015-03-05 03:52 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-11 15:31 - 2015-03-05 03:43 - 05458944 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 15:31 - 2015-03-05 03:41 - 24316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 15:31 - 2015-03-05 03:37 - 22973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-03-11 15:31 - 2015-03-05 03:36 - 05278208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-03-11 15:31 - 2015-03-05 03:30 - 04116480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-11 15:31 - 2015-03-05 03:20 - 19053056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-11 15:31 - 2015-03-05 03:17 - 18106368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-03-11 15:31 - 2015-03-05 03:15 - 02527744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 15:31 - 2015-03-05 03:15 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-03-11 15:31 - 2015-03-05 03:12 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2015-03-11 15:31 - 2015-03-05 03:09 - 02081792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-11 15:31 - 2015-03-05 03:09 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-03-11 15:31 - 2015-03-05 03:06 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2015-03-11 15:31 - 2015-02-13 10:52 - 23140904 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 15:31 - 2015-02-13 10:06 - 20946304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-11 15:25 - 2015-03-11 19:07 - 00003268 _____ () C:\WINDOWS\PFRO.log
2015-03-11 15:12 - 2015-03-11 15:12 - 00034328 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2015-03-11 15:12 - 2015-03-11 15:12 - 00000085 _____ () C:\WINDOWS\wininit.ini
2015-03-11 12:37 - 2015-03-12 12:25 - 00000191 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-11 12:19 - 2015-03-11 12:19 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
2015-03-11 12:18 - 2015-03-11 15:25 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-03-11 12:18 - 2015-03-11 15:12 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-03-09 16:08 - 2015-03-09 16:08 - 00000664 _____ () C:\ProgramData\@system.temp
2015-03-09 16:08 - 2015-03-09 16:08 - 00000400 ____H () C:\ProgramData\@system3.att
2015-03-09 16:07 - 2015-03-09 20:19 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\FrameworkUpdate
2015-03-09 13:31 - 2015-03-09 13:32 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Alvrworks
2015-03-09 12:44 - 2015-03-09 12:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-09 12:44 - 2015-03-09 12:44 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-09 12:31 - 2015-03-09 12:31 - 00248728 _____ (Kaspersky Lab, Yury Parshin) C:\WINDOWS\system32\Drivers\24442011.sys
2015-03-09 12:20 - 2015-03-12 13:03 - 00000000 ____D () C:\FRST
2015-03-09 11:54 - 2015-03-12 11:31 - 00037624 _____ () C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-03-09 11:54 - 2015-03-12 11:26 - 00000000 ____D () C:\ProgramData\RogueKiller
2015-03-09 11:33 - 2015-03-09 11:40 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-03-09 11:20 - 2015-03-09 11:20 - 00248728 _____ (Kaspersky Lab, Yury Parshin) C:\WINDOWS\system32\Drivers\30062191.sys
2015-03-09 10:58 - 2015-03-09 10:58 - 00248728 _____ (Kaspersky Lab, Yury Parshin) C:\WINDOWS\system32\Drivers\95224564.sys
2015-03-07 18:48 - 2015-03-07 18:48 - 00000000 _____ () C:\autoexec.bat
2015-03-07 18:47 - 2015-03-07 18:47 - 00000000 ____D () C:\Program Files\Enigma Software Group
2015-03-06 18:28 - 2015-03-12 11:32 - 00000000 ____D () C:\Users\Erdem\AppData\Local\CrashDumps
2015-03-05 13:36 - 2015-03-05 13:36 - 00000761 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.txt
2015-03-05 13:25 - 2015-03-05 13:28 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Nitro
2015-03-05 13:24 - 2015-03-05 13:24 - 00000020 _____ () C:\Users\Erdem\minitool.ini
2015-03-05 13:24 - 2015-03-05 13:24 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Downloaded Installations
2015-03-05 13:24 - 2015-03-05 13:24 - 00000000 ____D () C:\ProgramData\Nitro
2015-03-01 12:32 - 2015-03-01 12:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Odeus ASIO Link
2015-03-01 11:37 - 2015-03-01 12:32 - 00000000 ____D () C:\Program Files (x86)\AsioLink
2015-03-01 11:32 - 2015-03-01 11:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\asiomulti
2015-03-01 11:32 - 2015-03-01 11:32 - 00000000 ____D () C:\Program Files (x86)\vidance
2015-02-28 13:05 - 2015-02-28 13:05 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Steinberg
2015-02-28 12:39 - 2013-10-21 12:26 - 00025504 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2015-02-27 22:05 - 2015-02-27 22:05 - 00000640 _____ () C:\WINDOWS\SysWOW64\SGLCH32.USR
2015-02-23 12:29 - 2015-02-06 00:35 - 00623248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-02-23 12:28 - 2015-02-23 12:28 - 32540488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 24965776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 18816304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 15551168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 00889128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 00856208 _____ () C:\WINDOWS\system32\nvmcumd.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 00361976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-02-23 12:28 - 2015-02-23 12:28 - 00311840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 40514704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 35513488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 32823544 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 31969144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 26389152 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 25699528 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 16370120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 16131792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 15854080 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 13235920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 11037696 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 10852592 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 10823168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 08672088 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 08328704 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 08193120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 06782568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 06370791 _____ () C:\WINDOWS\system32\igdclbif.bin
2015-02-23 12:27 - 2015-02-23 12:27 - 06210936 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 05245440 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 04721008 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 04719104 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 04270080 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 02345616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 02099856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 02055680 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01894216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434965.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01556808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434965.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01501696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01402336 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01399240 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01160704 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01012552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01008744 _____ () C:\WINDOWS\system32\igfxSDK.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 01006224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 01001104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00969544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00961168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00905320 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00901736 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00814408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00793112 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00685568 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00644232 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00641530 _____ () C:\WINDOWS\system32\FilmModeDetection.wmv
2015-02-23 12:27 - 2015-02-23 12:27 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00498320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00418408 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00403671 _____ () C:\WINDOWS\system32\ImageStabilization.wmv
2015-02-23 12:27 - 2015-02-23 12:27 - 00401736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00398848 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00392296 _____ () C:\WINDOWS\system32\igfxTray.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00390288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00389120 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00384512 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00375173 _____ () C:\WINDOWS\system32\ColorImageEnhancement.wmv
2015-02-23 12:27 - 2015-02-23 12:27 - 00349184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00345744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00328808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00304744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00294912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00282216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00278528 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00275668 _____ () C:\WINDOWS\system32\cp_resources.bin
2015-02-23 12:27 - 2015-02-23 12:27 - 00255488 _____ () C:\WINDOWS\system32\igfxCPL.cpl
2015-02-23 12:27 - 2015-02-23 12:27 - 00246888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00240128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00228352 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00220432 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00217192 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00213608 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00213096 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00211456 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00210608 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00188416 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00184352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00183296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4098.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00177664 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00177624 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00172032 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00158376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00154728 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2015-02-23 12:27 - 2015-02-23 12:27 - 00153600 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00090112 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00085504 _____ () C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00082944 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00074240 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00069632 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00059904 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00036616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00035328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00011264 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00011264 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2015-02-23 12:27 - 2015-02-23 12:27 - 00004400 _____ () C:\WINDOWS\system32\iglhxs64.vp
2015-02-21 17:18 - 2015-02-21 17:18 - 00045385 _____ () C:\WINDOWS\Cmicnfgp.ini.cfl
2015-02-21 17:18 - 2015-02-21 17:18 - 00000942 _____ () C:\WINDOWS\Cmicnfgp.ini.imi
2015-02-21 17:18 - 2015-02-21 17:18 - 00000881 _____ () C:\WINDOWS\system\Cmicnfgp.ini
2015-02-21 17:18 - 2015-02-21 17:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UNi Xonar Audio
2015-02-21 17:18 - 2015-02-21 17:18 - 00000000 ____D () C:\Program Files\UNi Xonar Audio
2015-02-21 17:18 - 2014-07-24 10:58 - 00833536 ____N () C:\WINDOWS\system32\Cmeauoxy.exe
2015-02-21 17:18 - 2014-04-24 07:08 - 00006417 ____N () C:\WINDOWS\cmudaxp.ini
2015-02-21 17:18 - 2014-03-11 15:07 - 08048640 ____N (C-Media Corporation) C:\WINDOWS\SysWOW64\CmiCnfgp.dll
2015-02-21 17:18 - 2013-10-16 10:55 - 00143360 ____N () C:\WINDOWS\SysWOW64\VmixP8.dll
2015-02-21 17:18 - 2012-11-05 19:06 - 00005120 ____N () C:\WINDOWS\Cmicnfgp.ini.cfg
2015-02-21 17:18 - 2012-10-05 09:37 - 00465408 ____N (C-Media Electronics Inc.) C:\WINDOWS\system32\cmasiopx.dll
2015-02-21 17:18 - 2012-10-05 09:37 - 00303104 ____N (C-Media Electronics Inc.) C:\WINDOWS\SysWOW64\cmasiop.dll
2015-02-21 17:18 - 2012-09-16 22:23 - 00293376 ____N () C:\WINDOWS\system32\CmiCnfgP.cpl
2015-02-21 17:18 - 2010-07-15 16:12 - 00000062 ____N () C:\WINDOWS\system32\cmasiopx.ini
2015-02-21 17:18 - 2010-07-15 16:12 - 00000057 ____N () C:\WINDOWS\SysWOW64\cmasiop.ini
2015-02-21 17:18 - 2007-12-13 17:12 - 00122880 ____N (CMedia Electronics Inc.) C:\WINDOWS\SysWOW64\Cm_Oal.dll
2015-02-21 17:18 - 2007-12-13 17:12 - 00122880 ____N (CMedia Electronics Inc.) C:\WINDOWS\system32\Cm_Oal.dll
2015-02-21 17:18 - 2006-09-13 10:21 - 00200704 ____N (C-Media) C:\WINDOWS\SysWOW64\Cmpaoxy.dll
2015-02-21 17:08 - 2015-02-21 17:18 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\ASUS
2015-02-21 16:53 - 2013-12-11 11:09 - 00315392 _____ (C-Media Electronics Inc.) C:\WINDOWS\system\CmiFltr.dll
2015-02-21 16:53 - 2013-12-11 11:09 - 00032768 _____ (C-Media Electronics Inc.) C:\WINDOWS\system32\cmudaxp.dll
2015-02-20 10:10 - 2015-02-20 10:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-02-20 10:10 - 2015-02-20 10:10 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-02-20 10:10 - 2015-02-20 10:10 - 00000000 ____D () C:\Program Files\iPod
2015-02-20 10:08 - 2015-02-20 10:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2015-02-20 10:07 - 2015-02-20 10:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2015-02-20 10:07 - 2015-02-20 10:07 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2015-02-19 14:56 - 2015-02-06 02:57 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2015-02-19 14:56 - 2015-02-06 02:24 - 02116608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-02-19 14:56 - 2015-02-06 01:25 - 02040320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-02-19 14:56 - 2015-02-05 23:55 - 12528128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-02-19 14:56 - 2015-02-05 23:37 - 11293696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-02-18 18:07 - 2015-02-11 07:35 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-02-17 15:30 - 2015-02-17 15:30 - 01691808 _____ (Microsoft Corporation) C:\WINDOWS\system32\FM20.DLL
2015-02-15 19:25 - 2015-02-15 19:25 - 00000000 ____D () C:\Users\Erdem\AppData\Local\SCE
2015-02-15 00:40 - 2015-02-15 00:40 - 00381440 _____ (Farbar) C:\WINDOWS\mod_frst.exe
2015-02-14 10:13 - 2015-02-14 10:13 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Steam
2015-02-13 23:41 - 2015-02-13 23:47 - 00000000 ____D () C:\Users\Erdem\AppData\Local\DayZ
2015-02-13 15:05 - 2015-03-12 10:56 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-13 15:05 - 2015-02-13 15:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-13 15:05 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-13 15:05 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-13 15:05 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-13 12:14 - 2015-02-13 12:14 - 72113152 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2015-02-13 12:14 - 2015-02-13 12:14 - 14048512 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 12975360 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 07087448 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 06242576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 05804772 _____ () C:\WINDOWS\system32\Drivers\rtvienna.dat
2015-02-13 12:14 - 2015-02-13 12:14 - 05486344 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV2apo.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 05234952 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 03218800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02902040 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02888920 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02808176 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02702040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2015-02-13 12:14 - 2015-02-13 12:14 - 02498416 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02421480 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02101848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 02041432 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01939800 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01933584 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01736833 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2015-02-13 12:14 - 2015-02-13 12:14 - 01708248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01550528 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64APO.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01499984 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01413776 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01360640 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01298136 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01136728 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 01104040 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00995120 _____ (Nahimic Inc) C:\WINDOWS\system32\NahimicAPONSControl.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00979280 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00943784 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00922880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00856992 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00836240 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00734376 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00650384 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00631000 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00560328 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00542352 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.DLL
2015-02-13 12:14 - 2015-02-13 12:14 - 00454288 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00434832 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00369296 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00336144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00329360 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00329360 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00315736 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00306288 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00284944 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00261464 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00250536 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00213432 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaemaxapo64.dll
2015-02-13 12:14 - 2015-02-13 12:14 - 00096568 _____ () C:\WINDOWS\system32\audioLibVc.dll
2015-02-13 11:57 - 2015-02-13 11:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2015-02-12 19:17 - 2015-02-12 19:17 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2015-02-12 16:21 - 2015-02-12 16:58 - 00101184 _____ (Amazon.com, Inc.) C:\WINDOWS\system32\stkMonitor.dll
2015-02-12 16:12 - 2015-02-13 14:10 - 00000000 ____D () C:\Users\Erdem\AppData\Local\calibre-cache
2015-02-12 16:11 - 2015-02-13 14:13 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\calibre
2015-02-12 13:04 - 2015-02-12 13:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL
2015-02-12 07:55 - 2015-02-12 07:55 - 00009728 _____ (Razer Inc.) C:\WINDOWS\SysWOW64\RzStats.IPC.dll
2015-02-11 11:17 - 2015-02-11 11:17 - 00000000 ____D () C:\WINDOWS\PCHEALTH
2015-02-11 10:58 - 2015-02-11 10:58 - 00003584 _____ () C:\Users\Erdem\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-12 12:49 - 2014-01-02 19:04 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-12 12:49 - 2014-01-02 19:04 - 00000910 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-12 12:39 - 2015-01-20 12:09 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-12 12:37 - 2015-02-03 14:24 - 01219749 _____ () C:\WINDOWS\WindowsUpdate_AU_deprecated.log
2015-03-12 12:16 - 2015-02-03 14:35 - 00016148 _____ () C:\WINDOWS\system32\ERDEM-PC_Erdem_HistoryPrediction.bin
2015-03-12 11:19 - 2014-07-10 18:07 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Skype
2015-03-12 11:17 - 2014-01-02 13:59 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Battle.net
2015-03-12 11:14 - 2014-01-02 20:43 - 00004090 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{0929D9DF-FF8A-430A-A941-7BB5EA42FE9A}
2015-03-12 09:20 - 2014-12-25 15:05 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Spotify
2015-03-12 06:06 - 2014-10-17 13:03 - 00005122 _____ () C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for ERDEM-PC-Erdem Erdem-PC
2015-03-11 20:36 - 2014-12-25 15:05 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Spotify
2015-03-11 20:29 - 2015-02-03 14:26 - 00876966 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-11 20:24 - 2014-08-21 12:47 - 00003808 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2015-03-11 20:23 - 2015-02-03 14:14 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-11 20:23 - 2015-01-20 15:34 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-11 20:20 - 2015-01-20 09:54 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-11 20:17 - 2014-01-02 14:15 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-03-11 19:16 - 2015-02-03 14:48 - 00000000 ____D () C:\ProgramData\USOShared
2015-03-11 19:07 - 2015-01-20 12:09 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-11 17:50 - 2015-02-03 14:17 - 00000000 ____D () C:\Users\Erdem
2015-03-11 17:49 - 2014-07-10 18:07 - 00000000 ____D () C:\ProgramData\Skype
2015-03-11 16:02 - 2014-01-02 13:51 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-03-11 16:01 - 2014-01-15 13:04 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\FileZilla
2015-03-11 15:43 - 2014-01-02 18:46 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-03-11 15:41 - 2014-08-21 12:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-03-11 15:41 - 2014-01-05 13:27 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 15:39 - 2012-07-26 07:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-11 15:37 - 2013-08-22 13:25 - 00000440 _____ () C:\WINDOWS\win.ini
2015-03-11 15:25 - 2015-01-20 15:32 - 05298984 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-11 13:38 - 2015-02-03 15:16 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\vlc
2015-03-11 12:11 - 2014-10-01 11:05 - 00000000 ____D () C:\Temp
2015-03-11 11:39 - 2015-01-20 12:09 - 00000000 ____D () C:\WINDOWS\rescache
2015-03-11 11:21 - 2014-10-03 18:18 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-11 11:18 - 2014-01-02 20:48 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\TeamViewer
2015-03-11 11:18 - 2014-01-02 15:02 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\uTorrent
2015-03-10 20:10 - 2015-02-03 14:36 - 00002376 _____ () C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-03-10 16:50 - 2014-01-06 16:37 - 00000600 _____ () C:\Users\Erdem\AppData\Local\PUTTY.RND
2015-03-09 20:08 - 2015-02-04 11:48 - 00002006 _____ () C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TrayItem.{EC0E9365-D08E-C230-FC47-751F4C49BE30}.lnk
2015-03-09 12:44 - 2014-01-02 19:04 - 00003870 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-09 12:44 - 2014-01-02 19:04 - 00003638 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-09 12:44 - 2014-01-02 19:04 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Google
2015-03-09 11:41 - 2014-11-13 13:27 - 00000000 __SHD () C:\Users\Erdem\AppData\Local\EmieBrowserModeList
2015-03-09 11:41 - 2014-04-24 10:30 - 00000000 __SHD () C:\Users\Erdem\AppData\Local\EmieUserList
2015-03-09 11:41 - 2014-04-24 10:30 - 00000000 __SHD () C:\Users\Erdem\AppData\Local\EmieSiteList
2015-03-08 01:02 - 2014-01-02 18:29 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Packages
2015-03-06 21:23 - 2014-06-11 10:17 - 00000000 ____D () C:\Users\Erdem\.VirtualBox
2015-03-06 21:19 - 2014-01-02 14:46 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-06 13:28 - 2014-01-15 11:01 - 00000132 _____ () C:\Users\Erdem\AppData\Roaming\Adobe PNG Format CS6 Prefs
2015-03-06 12:30 - 2014-01-02 14:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-03-06 12:30 - 2014-01-02 14:11 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-03-04 21:30 - 2015-01-20 12:14 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-03-04 21:30 - 2015-01-20 12:14 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-03 13:17 - 2014-01-02 20:25 - 00295552 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-02-28 17:34 - 2014-01-02 14:03 - 00000000 ____D () C:\ProgramData\Origin
2015-02-28 14:37 - 2014-01-02 14:46 - 00214392 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-02-28 14:34 - 2014-01-02 14:03 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-02-28 12:54 - 2015-01-22 23:19 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2015-02-26 21:14 - 2014-01-02 18:46 - 122905848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-02-23 17:39 - 2014-01-02 14:14 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Apple Computer
2015-02-23 15:40 - 2014-10-03 09:22 - 00000401 _____ () C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-02-23 12:30 - 2014-05-29 12:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-02-23 12:28 - 2015-02-03 14:49 - 15439000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-02-23 12:28 - 2014-12-28 12:32 - 18117000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-02-23 12:28 - 2014-12-28 12:32 - 11200656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-02-23 12:28 - 2014-12-28 12:32 - 01008840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-02-23 12:27 - 2015-02-03 14:14 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-02-23 12:27 - 2015-02-03 14:14 - 00074240 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2015-02-23 12:27 - 2014-12-28 12:32 - 13186064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-02-23 12:27 - 2014-12-28 12:32 - 03297256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-02-23 12:27 - 2014-12-28 12:32 - 02918240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-02-23 12:27 - 2014-12-28 12:32 - 00177600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-02-23 12:27 - 2014-12-28 12:32 - 00029935 _____ () C:\WINDOWS\system32\nvinfo.pb
2015-02-23 12:27 - 2013-08-30 01:32 - 09348256 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2015-02-23 12:27 - 2013-08-30 01:32 - 06010592 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2015-02-23 12:27 - 2013-08-30 01:32 - 05822392 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2015-02-21 17:40 - 2014-12-07 13:09 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-02-21 17:18 - 2015-01-20 12:09 - 00000000 ____D () C:\WINDOWS\System
2015-02-21 17:18 - 2014-01-02 20:45 - 00466520 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2015-02-21 17:18 - 2014-01-02 20:45 - 00445016 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2015-02-21 17:18 - 2014-01-02 20:45 - 00123480 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2015-02-21 17:18 - 2014-01-02 20:45 - 00109144 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2015-02-21 17:18 - 2014-01-02 19:38 - 00000134 _____ () C:\WINDOWS\system\Dlap.pfx
2015-02-21 16:53 - 2014-01-02 20:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-20 10:10 - 2015-02-03 15:12 - 00000000 ____D () C:\Program Files\Common Files\Apple
2015-02-20 10:10 - 2014-01-02 14:14 - 00000000 ____D () C:\Program Files (x86)\iTunes
2015-02-16 21:50 - 2015-01-20 09:54 - 00032768 ___SH () C:\WINDOWS\system32\config\ELAM
2015-02-15 19:16 - 2014-01-02 20:14 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-02-13 12:17 - 2015-02-03 14:14 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2015-02-13 12:14 - 2014-12-28 13:31 - 04394072 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2015-02-12 19:17 - 2014-01-20 16:39 - 00000000 ____D () C:\Users\Erdem\AppData\Local\Amazon
2015-02-12 13:00 - 2014-11-14 11:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HeidiSQL
2015-02-12 08:20 - 2014-10-04 19:11 - 00000000 ____D () C:\Users\Erdem\AppData\Roaming\MusicBee

==================== Files in the root of some directories =======

2014-05-08 10:29 - 2014-05-08 10:29 - 0000132 _____ () C:\Users\Erdem\AppData\Roaming\Adobe GIF Format CS6 Prefs
2014-05-26 12:16 - 2014-10-30 13:32 - 0000132 _____ () C:\Users\Erdem\AppData\Roaming\Adobe IllExport Filter CS6 Prefs
2014-01-15 11:01 - 2015-03-06 13:28 - 0000132 _____ () C:\Users\Erdem\AppData\Roaming\Adobe PNG Format CS6 Prefs
2014-10-06 15:47 - 2014-10-06 15:47 - 0038531 _____ () C:\Users\Erdem\AppData\Roaming\Comma Separated Values.ADR
2014-02-16 19:58 - 2014-07-30 13:08 - 0000033 _____ () C:\Users\Erdem\AppData\Roaming\mbam.context.scan
2014-03-20 23:28 - 2015-01-22 23:25 - 0000016 _____ () C:\Users\Erdem\AppData\Roaming\msregsvv.dll
2014-11-14 20:22 - 2014-11-18 11:33 - 0000600 _____ () C:\Users\Erdem\AppData\Roaming\PUTTY.RND
2015-02-11 10:58 - 2015-02-11 10:58 - 0003584 _____ () C:\Users\Erdem\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-03 18:51 - 2014-02-03 18:51 - 1065984 _____ () C:\Users\Erdem\AppData\Local\file__0.localstorage
2014-11-12 19:00 - 2014-11-13 10:10 - 0011222 _____ () C:\Users\Erdem\AppData\Local\parallels-pax.log
2014-01-06 16:37 - 2015-03-10 16:50 - 0000600 _____ () C:\Users\Erdem\AppData\Local\PUTTY.RND
2015-02-02 21:32 - 2015-02-02 21:32 - 0000792 _____ () C:\Users\Erdem\AppData\Local\recently-used.xbel
2015-03-09 16:08 - 2015-03-09 16:08 - 0000664 _____ () C:\ProgramData\@system.temp
2015-03-09 16:08 - 2015-03-09 16:08 - 0000400 ____H () C:\ProgramData\@system3.att
2014-03-20 23:28 - 2015-01-22 23:25 - 0000016 _____ () C:\ProgramData\autobk.inc
2015-02-03 14:14 - 2015-02-03 14:14 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Erdem\AppData\Local\Temp\0KrakenDevProps.dll
C:\Users\Erdem\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Erdem\AppData\Local\Temp\Quarantine.exe
C:\Users\Erdem\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe IS MISSING <==== ATTENTION!.
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-12 01:53

==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Erdem at 2015-03-12 13:04:04
Running from E:\Download
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\uTorrent) (Version: 3.4.2.38429 - BitTorrent Inc.)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Accounts (x32 Version: 18.0.10.208 - Sage (UK) Ltd) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.96 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios)
Alien: Isolation (HKLM-x32\...\Steam App 214490) (Version: - Creative Assembly)
Aliens vs. Predator (HKLM-x32\...\Steam App 10680) (Version: - Rebellion)
Amazon Kindle (HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Amazon Kindle) (Version: - Amazon)
Amazon Send to Kindle (HKLM-x32\...\SendToKindle) (Version: 1.0.1.240 - Amazon)
Apple Application Support (32-bit) (HKLM-x32\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{0DF7096B-715A-4233-8633-C7A16ED6D616}) (Version: 3.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
asiomulti (HKLM-x32\...\{84DDEB49-F50B-4C47-BD93-8DDCC5B5C642}) (Version: 1.0.0 - vidance)
Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.23831 - Electronic Arts)
Battlefield™ Hardline Beta (HKLM-x32\...\{F5526D9D-13AD-4270-8707-AC921D168299}) (Version: 1.0.0.1 - Electronic Arts)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
calibre 64bit (HKLM\...\{5E838BAE-E05B-418D-ABBC-56C222E77435}) (Version: 2.19.0 - Kovid Goyal)
Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - )
Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - )
Call of Duty: Black Ops II (HKLM-x32\...\Steam App 202970) (Version: - Treyarch)
Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward)
CCleaner (HKLM\...\CCleaner) (Version: 4.19 - Piriform)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
CutePDF Writer 3.0 (HKLM\...\CutePDF Writer Installation) (Version: 3.0 - Acro Software Inc.)
Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware)
DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
EXPERTool v8.9 (HKLM-x32\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 8.9.5.0 - Gainward Co. Ltd.)
Far Cry® 3 (HKLM-x32\...\Steam App 220240) (Version: - Ubisoft Montreal, Massive Entertainment, and Ubisoft Shanghai)
FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Git version 1.8.5.2-preview20131230 (HKLM-x32\...\Git_is1) (Version: 1.8.5.2-preview20131230 - The Git Development Community)
GitHub (HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\5f7eb300e2ea4ebf) (Version: 2.6.4.1 - GitHub, Inc.)
Go PlayAlong (HKLM-x32\...\com.goplayalong.41DF8ADAAE31CA841C48A6C358D6E3DCCEC38798.1) (Version: 2.93 - UNKNOWN)
Go PlayAlong (x32 Version: 2.93 - UNKNOWN) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
H1Z1 (HKLM-x32\...\Steam App 295110) (Version: - Sony Online Entertainment)
Half-Life 2: Deathmatch (HKLM-x32\...\Steam App 320) (Version: - Valve)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
HeidiSQL (HKLM\...\HeidiSQL_is1) (Version: - Ansgar Becker)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - IO Interactive)
iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3960 - Intel Corporation)
iTunes (HKLM\...\{D227565A-0033-40AD-89BA-653A205CDC11}) (Version: 12.1.1.4 - Apple Inc.)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Last.fm Scrobbler 2.1.36 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
METAL GEAR RISING: REVENGEANCE (HKLM-x32\...\Steam App 235460) (Version: - PlatinumGames)
Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office 2013 Yazım Denetleme Araçları - Türkçe (HKLM\...\{90150000-001F-041F-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.)
Mortal Kombat Komplete Edition (HKLM-x32\...\Steam App 237110) (Version: - NetherRealm Studios)
Mozilla Firefox 33.1.1 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 33.1.1 (x86 en-GB)) (Version: 33.1.1 - Mozilla)
Mozilla Firefox 35.0.1 (x86 en-GB) (HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Mozilla Firefox 35.0.1 (x86 en-GB)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.3.0 - Mozilla)
MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden
MusicBee 2.4 (HKLM-x32\...\MusicBee) (Version: 2.4 - Steven Mayall)
MySQL Workbench 5.2 CE (HKLM-x32\...\{48A9B9DD-66B9-4846-AA7C-825A5729B643}) (Version: 5.2.47 - Oracle Corporation)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments)
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments)
Native Instruments Guitar Rig Mobile I/O (HKLM-x32\...\Native Instruments Guitar Rig Mobile I/O) (Version: - Native Instruments)
Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version: - Native Instruments)
Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version: - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments)
Node.js (HKLM\...\{1BA2E8E7-7C3E-4D6C-9A8A-569A7918761A}) (Version: 0.10.29 - Joyent, Inc. and other Node contributors)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.3 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 349.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 349.65 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 349.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 349.65 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA Miracast Virtual Audio 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.09 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
Odeus ASIO Link (HKLM-x32\...\ASIOLink) (Version: - Odeus Audio)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Oracle VM VirtualBox 4.3.12 (HKLM\...\{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}) (Version: 4.3.12 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 9.3.6.4639 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlast (HKLM-x32\...\Steam App 238320) (Version: - Red Barrels)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)
PuTTY version 0.63 (HKLM-x32\...\PuTTY_is1) (Version: 0.63 - Simon Tatham)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.19.24565 - Razer Inc.)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 8.24.1218.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7446 - Realtek Semiconductor Corp.)
Sage 50 Accounts 2012 (HKLM-x32\...\InstallShield_{EFC6C877-6E77-4E3B-B350-DF4F35D66B51}) (Version: 18.0.10.208 - Sage (UK) Ltd)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)
Sid Meier's Civilization: Beyond Earth (HKLM-x32\...\Steam App 65980) (Version: - Firaxis Games)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\Spotify) (Version: 0.9.15.27.g87efe634 - Spotify AB)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
StarCraft II Public Test (HKLM-x32\...\StarCraft II Public Test) (Version: - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
Street Fighter X Tekken (HKLM-x32\...\Steam App 209120) (Version: - Capcom U.S.A., Inc.)
Sublime Text Build 3065 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.39052 - TeamViewer)
Toon Boom Studio 8.0 (HKLM-x32\...\{D7294307-BFD3-4D70-8A8B-80693EB8245C}) (Version: - Toon Boom Animation Inc.)
UNi Xonar Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - )
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
Vagrant (HKLM-x32\...\{3D24EE12-E0CF-41EC-8182-361ECF575656}) (Version: 1.6.5 - HashiCorp)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Erdem\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{387EA2B8-3076-48C4-BAD2-2580E88705CD}\InprocServer32 -> C:\Windows\system32\shdocvw.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1714589657-3977828204-2803965049-1001_Classes\CLSID\{7B857449-AE1B-47AF-8F3B-B854E63DE3BA}\InprocServer32 -> C:\Windows\system32\shdocvw.dll (Microsoft Corporation)

==================== Restore Points =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 13:25 - 2015-03-05 13:36 - 00001503 ____N C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
192.95.55.230 www.google-analytics.com.
192.95.55.230 google-analytics.com.
192.95.55.230 connect.facebook.net.
195.162.69.252 www.google-analytics.com.
195.162.69.252 google-analytics.com.
195.162.69.252 connect.facebook.net.
85.17.81.55 www.google-analytics.com.
85.17.81.55 google-analytics.com.
85.17.81.55 connect.facebook.net.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {00BC6E6E-5B7B-4D44-B9EF-5A961647A43A} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {12096CF9-12E6-4E0C-9B0C-14023DB377D0} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {13E3665D-E1E9-49FC-8A7C-74F8DD6946C4} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {17BDA0AC-83E9-43D5-8134-539844A39C08} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {17F437F2-CD6E-4098-BA26-207DCF86AC91} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {2124F9E6-9753-4F76-843D-9F1BA5E29E5C} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {24A11F90-D0B8-4CC9-B893-5FE38158AB5D} - System32\Tasks\{F2114376-1A92-4B86-B28E-45EB53988550} => pcalua.exe -a F:\Downloads\Web\Strike_7_Firmware_r37.exe -d F:\Downloads\Web
Task: {35C795BC-201A-46D5-ABDD-79B63648AD9D} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ERDEM-PC-Erdem Erdem-PC => F:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)
Task: {36B8BD5E-0FE3-4720-B0EF-F2498E34A1BE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-09] (Google Inc.)
Task: {45C0A8CD-F308-4EBB-A879-5CA6F23DA5B7} - System32\Tasks\CCleanerSkipUAC => F:\Program Files\CCleaner\CCleaner.exe [2014-10-30] (Piriform Ltd)
Task: {47A6C844-465B-42C7-8F04-21C34FB76115} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {4C3E505D-6508-4E6D-9005-51A5D293C66A} - System32\Tasks\Microsoft\Windows\ContextManager\Triggers => C:\Windows\system32\ContextManagerNotificationHandler.exe [2015-01-20] (Microsoft Corporation)
Task: {4E85EC94-FA31-4204-BDBE-719EF9AC2C8E} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {5A6380C6-0C10-4AB7-AB28-C5B480CE30C8} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {5ACAB365-3176-4648-8FAF-B25C3060DDCA} - System32\Tasks\Microsoft\Windows\ContextManager\Logon => C:\Windows\system32\ContextManagerNotificationHandler.exe [2015-01-20] (Microsoft Corporation)
Task: {66AC05A4-45F0-4AA8-B580-03C851CE5095} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-01-20] (Microsoft Corporation)
Task: {70B138A2-6864-4741-8305-929806720EA3} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {7AF62492-5E88-4C97-B1B5-84E6A68824AC} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {7D559606-4762-4230-B828-465451EDD102} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {84A14875-361A-4B9A-99C0-77893FB8EB55} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {8C733060-75E9-4E66-A7D7-D24853603EFF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe
Task: {90396BBF-9CCE-4C74-9FEC-ADF05651236A} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {9B8484B3-FA4A-4421-9CE8-4645E6AADA99} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-01-20] (Microsoft Corporation)
Task: {9C888336-AA95-4641-B811-91A857DE0DA1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {A206252D-BB49-448C-874F-FB0645BDEB9C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_RebootDisplay => C:\windows\system32\MusNotification.exe [2015-01-20] (Microsoft Corporation)
Task: {A563489C-F2D2-4626-8E8A-E8D1732C1837} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-01-20] (Microsoft Corporation)
Task: {A9EB41F5-CB86-4FBA-BA8B-E861A38F7DF6} - System32\Tasks\Microsoft\Windows\Service Configuration\ConfigurationClient
Task: {B103D061-3D97-4E0D-BAF6-B8B90641D1E3} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {B66C8F70-DC6B-490E-8983-7A52CE02D518} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate
Task: {B8A30AAE-695B-45EE-9262-A9D444767026} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-01-20] (Microsoft Corporation)
Task: {BEABD96D-88C0-4B27-8E25-D5CC05146CE0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_WnfDisplay => C:\windows\system32\MusNotification.exe [2015-01-20] (Microsoft Corporation)
Task: {C112AABD-E373-4081-AAB6-FCBAEEFBB571} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-26] (Microsoft Corporation)
Task: {C2971BD9-2097-4332-AE71-81BE580D6965} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2014-12-01] (Apple Inc.)
Task: {C2B99C68-7AD8-43F3-A999-493D21C19820} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-01-20] (Microsoft Corporation)
Task: {C3DF07F7-8C5A-4F0F-B986-9C84D1482389} - System32\Tasks\SpeechRuntimeTask => C:\Windows\system32\speech_onecore\common\SpeechRuntime.exe [2015-01-20] (Microsoft Corporation)
Task: {C64C5776-8CCE-4ED0-ADCA-19DE05DDC502} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe
Task: {C84202AD-BFAC-4339-8B34-C6B48F6D78EE} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-01-20] (Microsoft Corporation)
Task: {D194AF6B-5FE7-46E4-ADBE-2CDE50297204} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2014-08-21] ()
Task: {E243DBBE-D425-434C-99E7-7436E6C181FB} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-01-20] (Microsoft Corporation)
Task: {E2EE1132-132E-4A97-B1ED-540C31AE399F} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\HypervisorFlightingTask
Task: {E965860C-24DE-4F4C-A94E-C0F10B1813C7} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {F1DCC23B-5714-4A9C-9BD0-85F7908954AE} - System32\Tasks\{0A2E2801-4F0E-4A20-93A3-ACF17EC897BE} => pcalua.exe -a D:\AutoRun\demo32.exe -d D:\ -c Demo.dbd
Task: {F84A22FF-4A76-463F-ADE1-76CF5112FCF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-09] (Google Inc.)
Task: {FA6946CE-F250-45E0-8598-8F8EA22F1DAA} - System32\Tasks\Microsoft\Windows\NetworkDriverPlatform\TelemetryGatherer => C:\Windows\system32\NetCfgDiagnostics.exe [2015-01-20] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2015-01-20 11:52 - 2015-01-20 11:52 - 00273408 _____ () C:\WINDOWS\system32\diagtrack_win.dll
2015-02-03 14:14 - 2015-02-06 01:40 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-08-08 18:43 - 2013-10-23 13:24 - 00087600 _____ () C:\WINDOWS\System32\cpwmon64.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-02-05 00:24 - 2015-02-05 00:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-01-20 11:46 - 2015-01-20 11:46 - 01800616 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-01-02 20:46 - 2008-07-11 15:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe
2014-01-02 20:46 - 2008-07-11 15:03 - 00282112 ____N () C:\Windows\System\HsMgr64.exe
2015-01-20 11:46 - 2015-01-20 11:46 - 01800616 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898728 _____ () F:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-03-05 13:21 - 2015-03-05 13:21 - 02622464 _____ () C:\ProgramData\Microsoft\Security\Client\SecurityProvider.dll
2015-03-05 13:21 - 2015-03-05 13:21 - 02165760 _____ () C:\ProgramData\Microsoft\Security\Client\SecurityHelper.dll
2014-05-12 09:49 - 2014-05-12 09:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 04781056 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\StartUI.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 01556480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\ActionCenter.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00676864 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\JumpViewUI.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00456704 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\ClockFlyoutExperience.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00169472 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\NetworkUX.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00307200 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\QuickActions.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00344064 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\SampleTrayFlyout.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00706560 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\SplitApp1.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00331264 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.ShellExperienceHost_1.0.0.2_x64__8wekyb3d8bbwe\TrayFlyoutTemplate.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 05438976 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\SearchUI.exe
2015-01-21 00:40 - 2015-01-21 00:40 - 02778112 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\CortanaApi.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 01956864 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\RemindersUI.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00123392 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\Cortana.Settings.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00025600 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\Cortana.PAL.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00084992 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\Cortana.Authentication.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00171008 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\Cortana.BackgroundTask.dll
2015-01-21 00:40 - 2015-01-21 00:40 - 00080384 _____ () C:\Program Files\WindowsApps\Microsoft.Cortana_1.3.1.444_x64__8wekyb3d8bbwe\PersonaX.dll
2015-03-07 09:29 - 2015-03-11 20:24 - 00619840 _____ () C:\Users\Erdem\AppData\Local\Temp\0KrakenDevProps.dll
2015-02-21 17:18 - 2012-06-06 09:56 - 00143360 ____N () C:\Program Files\UNi Xonar Audio\Customapp\VmixP8.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-12-28 12:45 - 2013-09-16 12:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2015-03-02 20:30 - 2015-03-02 20:30 - 00039384 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
2015-03-11 05:49 - 2015-03-07 06:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\libglesv2.dll
2015-03-11 05:49 - 2015-03-07 06:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\libegl.dll
2015-03-11 05:49 - 2015-03-07 06:13 - 09279304 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\pdf.dll
2015-03-11 05:49 - 2015-03-07 06:13 - 14974280 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\Users\Erdem\.DS_Store:AFP_AfpInfo

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\02162429.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\24440954.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\58022115.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\89161693.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\89257831.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreUIRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\02162429.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\24440954.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\58022115.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\89161693.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\89257831.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreUIRegistrar => ""="Service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\Control Panel\Desktop\\Wallpaper -> E:\Pictures\Wallpapers\hYF6zP2.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: PnkBstrA => 2
MSCONFIG\Services: SpyHunter 4 Service => 2
HKLM\...\StartupApproved\Run: => "EKAiO2StatusMonitor"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\StartupApproved\Run: => "ApplePhotoStreams"
HKU\S-1-5-21-1714589657-3977828204-2803965049-1001\...\StartupApproved\Run: => "iCloudDrive"

==================== Accounts: =============================

Administrator (S-1-5-21-1714589657-3977828204-2803965049-500 - Administrator - Disabled)
Erdem (S-1-5-21-1714589657-3977828204-2803965049-1001 - Administrator - Enabled) => C:\Users\Erdem
Guest (S-1-5-21-1714589657-3977828204-2803965049-501 - Limited - Disabled)

==================== Faulty Device Manager Devices =============

Name: Apple Mobile Device USB Driver
Description: Apple Mobile Device USB Driver
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Apple, Inc.
Service: USBAAPL64
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Apple iPad
Description: Apple iPad
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: Apple Inc.
Service: WUDFWpdMtp
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Streaming Service Proxy
Description: Microsoft Streaming Service Proxy
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: MSKSSRV
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Composite Device
Description: USB Composite Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standard USB Host Controller)
Service: usbccgp
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Apple Mobile Device USB Driver
Description: Apple Recovery (iBoot) USB Driver
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Apple, Inc.
Service: USBAAPL64
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Speakers (ASIOVAD Driver)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Stereo Mix (Realtek High Definition Audio)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Stereo Mix (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: PnP-Monitor (Standard)
Description: PnP-Monitor (Standard)
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: TeamViewer GmbH
Service: MonitorFunction
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: NVIDIA HDMI Out (NVIDIA Virtual Audio Device (Wave Extensible) (WDM))
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: S/PDIF Pass-through Device (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Speakers (2- USB Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KODAK ESP C315 AiO Scanner
Description: KODAK ESP C315 AiO Scanner
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Eastman Kodak
Service: usbscan
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Aux (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Teredo Tunneling Pseudo-Interface
Description:
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer:
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: TOSHIBA External USB 3.0 USB Device
Description: Disk drive
Class Guid: {4d36e967-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard disk drives)
Service: disk
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: G:\
Description: SD/MMC card
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: KODAK
Service: WUDFWpdFs
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Composite Device
Description: USB Composite Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standard USB Host Controller)
Service: usbccgp
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Input Device
Description: USB Input Device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: (Standard system devices)
Service: HidUsb
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Mix (ASIOVAD Driver)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microphone (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KODAK ESP C315 AiO
Description: KODAK ESP C315 AiO
Class Guid: {4d36e979-e325-11ce-bfc1-08002be10318}
Manufacturer: Eastman Kodak Company
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Mix (ASIOVAD Driver)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume shadow copy
Description: Generic volume shadow copy
Class Guid: {533c5b84-ec70-11d2-9505-00c04f79deaf}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Realtek Digital Output (Realtek High Definition Audio)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Eastman Kodak Company KODAK ESP C315 AiO
Description: Local Print Queue
Class Guid: {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
Manufacturer: Eastman Kodak Company
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Realtek Digital Input (Realtek High Definition Audio)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Wave (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KODAK SD/MMC card USB Device
Description: Disk drive
Class Guid: {4d36e967-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard disk drives)
Service: disk
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Intel WiDi Audio Device
Description: Intel WiDi Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: intaud_WaveExtensible
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Intel WiDi Audio Device
Description: Intel WiDi Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: intaud_WaveExtensible
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Printing Support
Description: USB Printing Support
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Microsoft
Service: usbprint
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: HID-compliant consumer control device
Description: HID-compliant consumer control device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Line In (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Speakers (Realtek High Definition Audio)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: PnP-Monitor (Standard)
Description: PnP-Monitor (Standard)
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: TeamViewer GmbH
Service: MonitorFunction
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Lumia 930 (RM-1045)
Description: WinUsb Device
Class Guid: {88bae032-5a81-49f0-bc3d-a4ff138216d6}
Manufacturer: WinUsb Device
Service: WINUSB
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Input Device
Description: USB Input Device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: (Standard system devices)
Service: HidUsb
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Lumia 930 (RM-1045)
Description: WinUsb Device
Class Guid: {88bae032-5a81-49f0-bc3d-a4ff138216d6}
Manufacturer: WinUsb Device
Service: WINUSB
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Composite Device
Description: USB Composite Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standard USB Host Controller)
Service: usbccgp
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Lumia 930 (RM-1045)
Description: WinUsb Device
Class Guid: {88bae032-5a81-49f0-bc3d-a4ff138216d6}
Manufacturer: WinUsb Device
Service: WINUSB
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KodakESPC315+2272
Description: Generic software device
Class Guid: {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
Manufacturer: Eastman Kodak Company
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Erdem's Phone
Description: Lumia 930
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: NOKIA
Service: WUDFWpdMtp
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume
Description: Generic volume
Class Guid: {71a27cdd-812a-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: volsnap
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Apple Mobile Device USB Driver
Description: Apple Recovery (iBoot) USB Driver
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Apple, Inc.
Service: USBAAPL64
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Mass Storage Device
Description: USB Mass Storage Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Compatible USB storage device
Service: USBSTOR
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Streaming Tee/Sink-to-Sink Converter
Description: Microsoft Streaming Tee/Sink-to-Sink Converter
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: MSTEE
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Audio Device
Description: USB Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: (Generic USB Audio)
Service: usbaudio
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Trusted Audio Drivers
Description: Microsoft Trusted Audio Drivers
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: drmkaud
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: HID-compliant vendor-defined device
Description: HID-compliant vendor-defined device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: (Standard system devices)
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Nitro PDF Creator (Pro 9)
Description: Local Print Queue
Class Guid: {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
Manufacturer:
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Speakers (ASUS Xonar DGX Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: PnP-Monitor (Standard)
Description: PnP-Monitor (Standard)
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: TeamViewer GmbH
Service: MonitorFunction
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KODAK ESP C315 AiO XPS
Description: KODAK ESP C315 AiO XPS
Class Guid: {4d36e979-e325-11ce-bfc1-08002be10318}
Manufacturer: Eastman Kodak Company
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: F
Description: External USB 3.0
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: TOSHIBA
Service: WUDFWpdFs
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microphone (2- USB Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Streaming Quality Manager Proxy
Description: Microsoft Streaming Quality Manager Proxy
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: MSPQM
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Vuze on Didems-MacBook-Pro
Description: Generic software device
Class Guid: {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
Manufacturer: Azureus Software, Inc.
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Remote Audio
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Lumia BootMgr
Description: WinUsb Device
Class Guid: {88bae032-5a81-49f0-bc3d-a4ff138216d6}
Manufacturer: WinUsb Device
Service: WINUSB
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KodakESPC315+2272
Description: WSD Print Device
Class Guid: {c30ecea0-11ef-4ef9-b02e-6af81e6e65c0}
Manufacturer: Eastman Kodak Company
Service: WSDPrintDevice
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Generic volume
Description: Generic volume
Class Guid: {71a27cdd-812a-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: volsnap
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: KodakESPC315+2272
Description: Local Print Queue
Class Guid: {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
Manufacturer: Eastman Kodak Company
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Streaming Clock Proxy
Description: Microsoft Streaming Clock Proxy
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: MSPCLOCK
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: USB Mass Storage Device
Description: USB Mass Storage Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: Compatible USB storage device
Service: USBSTOR
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Speakers (USB Audio Device)
Description: Audio Endpoint
Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
Manufacturer: Microsoft
Service:
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.

Name: Microsoft Streaming Tee/Sink-to-Sink Converter
Description: Microsoft Streaming Tee/Sink-to-Sink Converter
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: MSTEE
Problem: : Currently, this hardware device is not connected to the computer. (Code 45).
Resolution: The device is not present or was previously attached to the computer.
To fix this problem, reconnect this hardware device to the computer.
If Device Manager is started with the environment variable DEVMGR_SHOW_NONPRESENT_DEVICES set to 1 (which means show these devices), then any previously attached (NONPRESENT) devices are displayed in the device list and assigned this error code.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/12/2015 11:32:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 10.0.9926.6, time stamp: 0x54cbad86
Faulting module name: SecurityHelper.dll_unloaded, version: 0.0.0.0, time stamp: 0x54e0bcfc
Exception code: 0xc0000005
Fault offset: 0x00000000000310c3
Faulting process ID: 0x36ec
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report ID: explorer.exe3
Faulting package full name: explorer.exe4
Faulting package-relative application ID: explorer.exe5

Error: (03/12/2015 11:26:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: RogueKillerX64.exe, version: 10.5.3.0, time stamp: 0x54feb791
Faulting module name: RogueKillerX64.exe, version: 10.5.3.0, time stamp: 0x54feb791
Exception code: 0xc0000005
Fault offset: 0x0000000000229bfe
Faulting process ID: 0x3180
Faulting application start time: 0xRogueKillerX64.exe0
Faulting application path: RogueKillerX64.exe1
Faulting module path: RogueKillerX64.exe2
Report ID: RogueKillerX64.exe3
Faulting package full name: RogueKillerX64.exe4
Faulting package-relative application ID: RogueKillerX64.exe5

Error: (03/12/2015 11:25:47 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927145 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (03/12/2015 11:25:47 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927145 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (03/12/2015 11:25:47 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.9926.6 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 125c

Start Time: 01d05cb6d77edeca

Termination Time: 2

Application Path: C:\Windows\explorer.exe

Report Id: 87127a00-c8aa-11e4-bf8c-74d43513564c

Faulting package full name:

Faulting package-relative application ID:

Error: (03/12/2015 11:22:36 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927145 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (03/12/2015 11:22:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 10.0.9926.6, time stamp: 0x54cbad86
Faulting module name: SecurityHelper.dll_unloaded, version: 0.0.0.0, time stamp: 0x54e0bcfc
Exception code: 0xc0000005
Fault offset: 0x00000000000310c3
Faulting process ID: 0x39bc
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report ID: explorer.exe3
Faulting package full name: explorer.exe4
Faulting package-relative application ID: explorer.exe5

Error: (03/12/2015 11:18:38 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 10.0.9926.6, time stamp: 0x54cbad86
Faulting module name: SecurityHelper.dll_unloaded, version: 0.0.0.0, time stamp: 0x54e0bcfc
Exception code: 0xc0000005
Fault offset: 0x00000000000310c3
Faulting process ID: 0x1494
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report ID: Explorer.EXE3
Faulting package full name: Explorer.EXE4
Faulting package-relative application ID: Explorer.EXE5

Error: (03/12/2015 10:54:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: nvstreamsvc.exe, version: 3.1.3000.0, time stamp: 0x548b73d2
Faulting module name: nvstreamsvc.exe, version: 3.1.3000.0, time stamp: 0x548b73d2
Exception code: 0xc0000005
Fault offset: 0x000000000049f4f9
Faulting process ID: 0x1524
Faulting application start time: 0xnvstreamsvc.exe0
Faulting application path: nvstreamsvc.exe1
Faulting module path: nvstreamsvc.exe2
Report ID: nvstreamsvc.exe3
Faulting package full name: nvstreamsvc.exe4
Faulting package-relative application ID: nvstreamsvc.exe5

Error: (03/12/2015 02:17:12 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume \\?\Volume{f5326355-0000-0000-0000-60d61b000000}\ was not optimised because an error was encountered: This volume cannot be optimised. (0x8900000D)


System errors:
=============
Error: (03/12/2015 11:52:27 AM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (03/12/2015 11:19:07 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The MBAMService service terminated unexpectedly. It has done this 1 time(s).

Error: (03/11/2015 08:16:49 PM) (Source: DCOM) (EventID: 10016) (User: ERDEM-PC)
Description: application-specificLocalLaunch{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Erdem-PCErdemS-1-5-21-1714589657-3977828204-2803965049-1001LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/11/2015 08:16:49 PM) (Source: DCOM) (EventID: 10016) (User: ERDEM-PC)
Description: application-specificLocalLaunch{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Erdem-PCErdemS-1-5-21-1714589657-3977828204-2803965049-1001LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/11/2015 08:16:49 PM) (Source: DCOM) (EventID: 10016) (User: ERDEM-PC)
Description: application-specificLocalLaunch{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Erdem-PCErdemS-1-5-21-1714589657-3977828204-2803965049-1001LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/11/2015 08:16:48 PM) (Source: DCOM) (EventID: 10016) (User: ERDEM-PC)
Description: application-specificLocalLaunch{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Erdem-PCErdemS-1-5-21-1714589657-3977828204-2803965049-1001LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/11/2015 08:16:48 PM) (Source: DCOM) (EventID: 10016) (User: ERDEM-PC)
Description: application-specificLocalLaunch{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Erdem-PCErdemS-1-5-21-1714589657-3977828204-2803965049-1001LocalHost (Using LRPC)UnavailableUnavailable

Error: (03/11/2015 08:16:13 PM) (Source: DCOM) (EventID: 10005) (User: ERDEM-PC)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (03/11/2015 08:15:49 PM) (Source: DCOM) (EventID: 10005) (User: ERDEM-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (03/11/2015 08:15:49 PM) (Source: DCOM) (EventID: 10005) (User: ERDEM-PC)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}


Microsoft Office Sessions:
=========================
Error: (03/12/2015 11:32:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe10.0.9926.654cbad86SecurityHelper.dll_unloaded0.0.0.054e0bcfcc000000500000000000310c336ec01d05cb7498d2e0aC:\Windows\explorer.exeSecurityHelper.dll7362ac81-c8ab-11e4-bf8c-74d43513564c

Error: (03/12/2015 11:26:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: RogueKillerX64.exe10.5.3.054feb791RogueKillerX64.exe10.5.3.054feb791c00000050000000000229bfe318001d05cb75b052103E:\Download\RogueKillerX64.exeE:\Download\RogueKillerX64.exe9e50aa49-c8aa-11e4-bf8c-74d43513564c

Error: (03/12/2015 11:25:47 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927145

Error: (03/12/2015 11:25:47 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927145

Error: (03/12/2015 11:25:47 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.9926.6125c01d05cb6d77edeca2C:\Windows\explorer.exe87127a00-c8aa-11e4-bf8c-74d43513564c

Error: (03/12/2015 11:22:36 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ERDEM-PC)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927145

Error: (03/12/2015 11:22:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe10.0.9926.654cbad86SecurityHelper.dll_unloaded0.0.0.054e0bcfcc000000500000000000310c339bc01d05cb651c8455fC:\WINDOWS\explorer.exeSecurityHelper.dll0dc15620-c8aa-11e4-bf8c-74d43513564c

Error: (03/12/2015 11:18:38 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Explorer.EXE10.0.9926.654cbad86SecurityHelper.dll_unloaded0.0.0.054e0bcfcc000000500000000000310c3149401d05c3950e9b372C:\WINDOWS\Explorer.EXESecurityHelper.dll877de4ff-c8a9-11e4-bf8c-74d43513564c

Error: (03/12/2015 10:54:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.3000.0548b73d2nvstreamsvc.exe3.1.3000.0548b73d2c0000005000000000049f4f9152401d05c395113612cC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe1dbb7581-c8a6-11e4-bf8c-74d43513564c

Error: (03/12/2015 02:17:12 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: \\?\Volume{f5326355-0000-0000-0000-60d61b000000}\This volume cannot be optimised. (0x8900000D)


CodeIntegrity Errors:
===================================
Date: 2015-03-12 12:59:24.115
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.986
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.715
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.525
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.276
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.195
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:23.019
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:22.962
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:22.751
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-03-12 12:59:22.669
Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel® Core™ i7-4770K CPU @ 3.50GHz
Percentage of memory in use: 57%
Total physical RAM: 8079.11 MB
Available physical RAM: 3467.5 MB
Total Pagefile: 14735.11 MB
Available Pagefile: 10012.02 MB
Total Virtual: 131072 MB
Available Virtual: 131071.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.01 GB) (Free:15.4 GB) NTFS
Drive e: (Data) (Fixed) (Total:3725.9 GB) (Free:2867.56 GB) NTFS
Drive f: (Projects) (Fixed) (Total:931.51 GB) (Free:102.74 GB) NTFS
Drive z: (Backup) (Fixed) (Total:1863.01 GB) (Free:1498.9 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2C4CB738)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 5649614D)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: F5326355)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

==================== End Of Log ============================

Attached Files


Edited by Oh My!, 16 March 2015 - 07:08 PM.
Posted logs


BC AdBot (Login to Remove)

 


#2 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,427 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:05 PM

Posted 16 March 2015 - 07:49 PM

Greetings erdemece and :welcome: to BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum.

My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

If you would allow me to call you by your first name I would prefer to do that. :thumbup2:

===================================================

Ground Rules:
  • First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met. :)
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
  • When you post your reply, use the Replytopic.jpg button instead.
  • In the upper right hand corner of the topic you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 5 days we assume it has been abandoned and I will close it.
  • When your computer is clean I will alert you of such. I will also provide for you detailed information about how you can combat future infections.
  • I would like to remind you to make no further changes to your computer unless I direct you to do so.
  • Now let's get started :thumbup2:
===================================================

Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and post that information so that I know you are still with me. Unfortunately, there are many people waiting to be assisted and not enough of us at BleepingComputer to go around. I appreciate your understanding and diligence.

Thank you for your patience thus far. I am not sure how much help I can offer for your Windows 10 OS.

There is evidence of pirated software on your computer. I am going to ask you to remove it prior to us addressing your concerns. If you are willing to do so rerun FRST, with Addition.txt and post the logs after the removal.
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#3 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,427 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:05 PM

Posted 19 March 2015 - 02:37 PM

Greetings,

===================================================

3 Day Bump

It has been more than 3 days since my last post.

  • Do you still need help with this?
  • If after 48hrs you have not replied to this thread then it will have to be closed.


Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."

#4 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 36,427 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:09:05 PM

Posted 21 March 2015 - 07:34 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.
Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"Lord, to whom would we go? You have the words that give eternal life. We believe, and we know you are the Holy One of God."




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users