I tried malwarebytes, but it found only pup.optional.installcore. I tried malwarebytes anti-rootkit, but it halts during scan. Pasting the FRST.txt file
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Işıl (administrator) on ISIL on 11-04-2015 08:04:35
Running from C:\Users\Işıl\Downloads
Loaded Profiles: Işıl (Available profiles: Işıl)
Platform: Windows 8.1 Single Language (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Company) C:\Program Files (x86)\Popcorn Time\Updater.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Microsoft Corporation) C:\Windows\System32\InputMethod\JPN\JpnIME.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\BTStackServer.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google) C:\Users\Işıl\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSPanel.exe
(Farbar) C:\Users\Işıl\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [114048 2013-10-18] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [1080992 2014-05-24] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSLoader.exe [63296 2014-02-25] ()
HKU\S-1-5-21-275837570-461388567-825711399-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.)
HKU\S-1-5-21-275837570-461388567-825711399-1001\...\Run: [Google Update] => C:\Users\Işıl\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2015-01-02] (Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ASUS\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-275837570-461388567-825711399-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-275837570-461388567-825711399-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-01] (Google Inc.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-01] (Google Inc.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-01] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-01] (Google Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.1 192.168.100.1
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-24] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-24] (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-25] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Işıl\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-03-26] (Google)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @talk.google.com/O1DPlugin -> C:\Users\Işıl\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-03-26] (Google)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Işıl\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Işıl\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Işıl\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-03-26] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Işıl\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-03-26] (Google)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-01]
CHR Extension: (Google Drive) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-01]
CHR Extension: (YouTube) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-01]
CHR Extension: (Google Search) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-18]
CHR Extension: (Google Wallet) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-01]
CHR Extension: (Gmail) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-01]
CHR HKLM-x32\...\Chrome\Extension: [bmiabdepfhhiieiipmeecdmeljggmfee] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [fmgckcapmffomaifonnhgkfdgljnkpgi] - No Path Or update_url value
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe [71680 2014-02-25] (ASUS Cloud Corporation) [File not signed]
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-14] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\ASUS\Bluetooth Software\btwdins.exe [977664 2014-06-04] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-10-18] (Intel Corporation)
R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116680 2013-10-18] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148160 2013-10-18] (Intel Corporation)
R2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [126952 2013-10-18] (Intel Corporation)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-01-28] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282072 2014-03-18] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-03] (Intel(R) Corporation) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-10-24] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation)
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [335360 2014-12-17] (Company) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [69904 2014-04-01] (ASUS Corporation)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-14] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7546544 2014-08-08] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [145640 2013-10-18] (Intel Corporation)
R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [116752 2013-10-18] (Intel Corporation)
R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [289744 2013-10-18] (Intel Corporation)
R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [494296 2013-10-18] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [93400 2014-11-21] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-10-24] (Intel Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-11 08:01 - 2015-04-11 08:03 - 02095616 _____ (Farbar) C:\Users\Işıl\Downloads\FRST64 (1).exe
2015-04-10 19:59 - 2015-04-10 20:01 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Işıl\Downloads\tdsskiller.exe
2015-04-09 23:07 - 2015-04-09 23:07 - 00000000 ____D () C:\Users\Işıl\Downloads\ekler (4)
2015-04-09 23:05 - 2015-04-09 23:06 - 06892291 _____ () C:\Users\Işıl\Downloads\ekler (4).zip
2015-04-09 21:21 - 2015-04-09 21:21 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\Mozilla
2015-04-07 01:53 - 2015-04-07 01:56 - 23674176 _____ () C:\Users\Işıl\Downloads\ekler (3).zip
2015-04-06 22:38 - 2015-04-06 22:38 - 00000000 ____D () C:\Users\Işıl\Downloads\ekler (2)
2015-04-06 17:47 - 2015-04-06 22:42 - 00000022 _____ () C:\Users\Işıl\Downloads\ekler (2).zip
2015-04-05 15:25 - 2015-04-05 15:25 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-04-05 15:25 - 2015-04-05 15:25 - 00000000 ___SD () C:\Windows\system32\GWX
2015-04-02 22:25 - 2015-04-02 22:25 - 08780082 _____ () C:\Users\Işıl\Downloads\video-1427762194.mp4.mp4
2015-04-01 11:25 - 2015-04-01 11:25 - 00294032 _____ () C:\Windows\Minidump\040115-33187-01.dmp
2015-04-01 10:53 - 2015-04-01 10:53 - 00026439 _____ () C:\Users\Işıl\Downloads\Addition.txt
2015-04-01 10:52 - 2015-04-11 08:05 - 00017527 _____ () C:\Users\Işıl\Downloads\FRST.txt
2015-04-01 10:52 - 2015-04-11 08:04 - 00000000 ____D () C:\FRST
2015-04-01 10:48 - 2015-04-01 10:49 - 02095616 _____ (Farbar) C:\Users\Işıl\Downloads\FRST64.exe
2015-04-01 02:20 - 2015-04-01 02:20 - 00001112 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-04-01 02:20 - 2015-04-01 02:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-04-01 02:20 - 2015-04-01 02:20 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-01 02:20 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-04-01 02:20 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-04-01 02:14 - 2015-04-01 11:09 - 00000000 ____D () C:\a
2015-04-01 02:14 - 2014-10-02 01:08 - 00235882 _____ () C:\Windows\chameleon.chm
2015-04-01 02:13 - 2015-04-01 02:13 - 00000000 ____D () C:\Users\Işıl\Downloads\mbam-chameleon-3.1.7.0
2015-04-01 02:09 - 2015-04-01 02:12 - 04909382 _____ () C:\Users\Işıl\Downloads\mbam-chameleon-3.1.7.0.zip
2015-04-01 01:53 - 2015-04-01 01:54 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Işıl\Downloads\tdsskiller44.exe
2015-04-01 01:27 - 2015-04-01 02:20 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-04-01 01:26 - 2015-04-01 11:26 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-04-01 01:26 - 2015-04-01 02:07 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-04-01 01:26 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-04-01 01:25 - 2015-04-01 01:59 - 00000000 ____D () C:\Users\Işıl\Desktop\mbar
2015-04-01 01:15 - 2015-04-01 01:17 - 00000000 ____D () C:\Windows\SysWOW64\vbox
2015-04-01 01:15 - 2015-04-01 01:17 - 00000000 ____D () C:\Windows\system32\vbox
2015-04-01 01:14 - 2015-04-01 01:15 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Işıl\Downloads\mbar-1.09.1.1004.exe
2015-04-01 01:13 - 2015-04-01 01:15 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Işıl\Downloads\m.exe
2015-04-01 01:12 - 2015-04-01 11:25 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-04-01 00:59 - 2015-04-01 01:07 - 150062624 _____ (Avast Software s.r.o.) C:\Users\Işıl\Downloads\avast_free_antivirus_setup.exe
2015-04-01 00:55 - 2015-04-01 00:55 - 00380416 _____ () C:\Users\Işıl\Downloads\wjof9o7e.exe
2015-04-01 00:55 - 2015-04-01 00:55 - 00380416 _____ () C:\Users\Işıl\Downloads\cnlut5jf.exe
2015-04-01 00:37 - 2015-04-01 00:37 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2015-03-31 23:27 - 2015-03-31 23:27 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\TuneUp Software
2015-03-31 23:27 - 2015-03-31 23:27 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\AVG2015
2015-03-31 23:26 - 2015-04-01 01:56 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-31 23:26 - 2015-04-01 01:11 - 00000000 ___HD () C:\$AVG
2015-03-31 23:22 - 2015-04-01 01:56 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-31 23:22 - 2015-04-01 00:00 - 00000000 ____D () C:\Users\Işıl\AppData\Local\Avg2015
2015-03-31 23:22 - 2015-03-31 23:22 - 00000000 ____D () C:\Users\Işıl\AppData\Local\MFAData
2015-03-31 23:21 - 2015-03-31 23:22 - 04579176 _____ (AVG Technologies) C:\Users\Işıl\Downloads\avg_free_stb_all_2015_5315_free.exe
2015-03-30 20:20 - 2015-04-10 23:07 - 00000000 ____D () C:\Users\Işıl\Downloads\PopcornTime
2015-03-30 20:19 - 2015-03-30 20:19 - 00001131 _____ () C:\Users\Public\Desktop\Popcorn Time.lnk
2015-03-30 20:19 - 2015-03-30 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2015-03-30 20:19 - 2015-03-30 20:19 - 00000000 ____D () C:\Program Files (x86)\Popcorn Time
2015-03-30 20:05 - 2015-03-30 20:18 - 50764339 _____ (Popcorn Time ) C:\Users\Işıl\Downloads\PopcornTime-latest (1).exe
2015-03-30 00:13 - 2015-03-30 00:13 - 00000000 _____ () C:\Windows\Minidump\033015-22000-01.dmp
2015-03-29 08:40 - 2015-03-29 08:41 - 20426543 _____ () C:\Users\Işıl\Downloads\ekler (1).zip
2015-03-29 08:36 - 2015-03-29 08:38 - 22373345 _____ () C:\Users\Işıl\Downloads\ekler.zip
2015-03-28 22:17 - 2015-03-28 22:28 - 12096180 _____ (Popcorn Time ) C:\Users\Işıl\Downloads\PopcornTime-latest.exe.i03ogx5.partial
2015-03-26 23:30 - 2015-03-11 11:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00943104 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00760320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-23 22:40 - 2015-04-05 11:59 - 00000000 ____D () C:\Users\Işıl\Desktop\tasnifle_23032015
2015-03-22 10:15 - 2015-03-22 10:15 - 00000000 ____D () C:\Users\Işıl\Tracing
2015-03-16 21:58 - 2015-02-07 08:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-16 21:58 - 2015-02-04 08:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-16 21:58 - 2015-02-04 08:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-16 21:58 - 2015-02-04 08:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-16 21:58 - 2015-02-03 08:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-16 21:58 - 2015-02-03 08:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-16 21:58 - 2015-01-27 12:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-16 21:58 - 2015-01-24 10:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-16 21:58 - 2015-01-23 16:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-16 21:58 - 2015-01-23 14:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-16 21:57 - 2015-02-06 10:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-16 21:57 - 2015-02-06 10:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-16 21:57 - 2015-02-06 05:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-16 21:57 - 2015-01-31 08:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-16 21:57 - 2015-01-31 08:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-16 21:57 - 2015-01-30 12:01 - 00097792 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-03-16 21:57 - 2015-01-30 12:00 - 00167424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-03-16 21:57 - 2015-01-29 10:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-16 21:57 - 2015-01-29 10:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-16 21:57 - 2015-01-29 10:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-16 21:57 - 2015-01-29 10:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-16 21:57 - 2014-10-29 11:46 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-03-16 21:57 - 2014-10-29 11:46 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-03-16 21:57 - 2014-10-29 11:45 - 01198080 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-16 21:57 - 2014-10-29 11:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-16 21:57 - 2014-10-29 11:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-16 21:57 - 2014-10-29 11:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-16 21:57 - 2014-10-29 11:03 - 00241152 ____C (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-03-16 21:57 - 2014-10-29 10:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-16 21:57 - 2014-10-29 10:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-16 21:57 - 2014-10-29 10:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-16 21:57 - 2014-10-29 10:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-16 21:57 - 2014-10-29 10:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-16 21:57 - 2014-10-29 10:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-16 21:57 - 2014-10-29 10:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-16 21:57 - 2014-10-29 09:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-16 21:57 - 2014-10-29 09:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-16 21:57 - 2014-10-29 09:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-16 21:57 - 2014-10-29 09:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-16 21:56 - 2015-02-08 08:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-03-16 21:56 - 2015-02-08 08:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-03-16 21:56 - 2015-02-03 09:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-03-16 21:56 - 2015-02-03 09:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-03-16 21:56 - 2015-01-30 11:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-03-16 21:56 - 2015-01-30 11:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-03-16 21:56 - 2015-01-30 11:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-03-16 21:56 - 2015-01-30 10:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-03-16 21:56 - 2015-01-30 10:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-03-16 21:56 - 2015-01-30 10:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-03-16 21:56 - 2015-01-30 10:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-03-16 21:56 - 2015-01-30 10:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-03-16 21:56 - 2015-01-30 10:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-03-16 21:56 - 2015-01-30 10:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-03-16 21:56 - 2015-01-30 10:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-03-16 21:56 - 2015-01-30 10:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-03-16 21:56 - 2015-01-30 10:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-03-16 21:56 - 2015-01-29 10:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-16 21:56 - 2015-01-29 10:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-16 21:56 - 2015-01-29 09:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-16 21:56 - 2015-01-29 09:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-16 21:56 - 2015-01-29 09:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-16 21:56 - 2015-01-29 09:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-16 21:56 - 2015-01-28 11:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-16 21:56 - 2015-01-28 10:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-16 21:56 - 2015-01-28 08:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-03-16 21:56 - 2015-01-28 08:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-03-16 21:56 - 2014-12-11 14:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-03-16 21:56 - 2014-10-29 11:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-16 21:56 - 2014-10-29 11:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-16 21:56 - 2014-10-29 10:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-03-16 21:56 - 2014-10-29 10:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-03-16 21:56 - 2014-10-29 10:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-16 21:56 - 2014-10-29 09:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-03-16 21:56 - 2014-10-29 09:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-16 21:28 - 2015-03-06 11:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-16 21:28 - 2015-03-06 11:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-16 21:28 - 2015-02-26 08:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-16 21:28 - 2015-02-20 12:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-16 21:28 - 2015-02-20 11:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-16 21:28 - 2015-02-20 11:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-16 21:28 - 2015-02-20 11:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-16 21:28 - 2015-01-31 08:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-16 21:28 - 2015-01-29 00:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-16 21:28 - 2015-01-29 00:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-16 21:28 - 2015-01-29 00:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-16 21:28 - 2015-01-27 13:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 21:28 - 2015-01-27 11:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 21:28 - 2014-10-29 12:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 21:28 - 2014-10-29 11:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-16 21:28 - 2014-10-29 11:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-16 21:28 - 2014-10-29 11:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-16 21:28 - 2014-10-29 11:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-16 21:28 - 2014-10-29 11:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-16 21:28 - 2014-10-29 11:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-16 21:28 - 2014-10-29 11:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-16 21:26 - 2015-02-21 10:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-16 21:26 - 2015-02-21 09:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-16 21:26 - 2015-02-21 09:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-16 21:26 - 2015-02-21 09:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-16 21:26 - 2015-02-21 09:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-16 21:26 - 2015-02-21 08:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-16 21:26 - 2015-02-21 08:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-16 21:26 - 2015-02-20 11:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-16 21:26 - 2015-02-20 11:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-16 21:26 - 2015-02-20 11:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-16 21:26 - 2015-02-20 11:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-16 21:26 - 2015-02-20 11:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-16 21:26 - 2015-02-20 11:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-16 21:26 - 2015-02-20 11:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-16 21:26 - 2015-02-20 11:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-16 21:26 - 2015-02-20 11:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-16 21:26 - 2015-02-20 11:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-16 21:26 - 2015-02-20 11:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-16 21:26 - 2015-02-20 10:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-16 21:26 - 2015-02-20 10:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-16 21:26 - 2015-02-20 10:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-16 21:26 - 2015-02-20 10:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-16 21:26 - 2015-02-20 10:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-16 21:26 - 2015-02-20 10:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-16 21:26 - 2015-02-20 10:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-16 21:26 - 2015-02-20 10:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-16 21:26 - 2015-02-20 10:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-16 21:26 - 2015-02-20 10:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-03-16 21:26 - 2015-02-20 10:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-16 21:26 - 2015-02-20 10:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-16 21:26 - 2015-02-20 10:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-16 21:26 - 2015-02-20 10:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-16 21:26 - 2015-02-20 10:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-16 21:26 - 2015-02-20 10:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-16 21:26 - 2015-02-20 10:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-16 21:26 - 2015-02-20 09:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-16 21:26 - 2015-02-20 09:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-16 21:24 - 2015-01-30 03:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-16 21:24 - 2015-01-30 03:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-16 21:23 - 2015-02-13 02:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-16 21:23 - 2015-02-13 02:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-16 21:21 - 2015-01-28 10:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-16 21:21 - 2015-01-28 10:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-16 21:21 - 2015-01-21 14:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-16 21:21 - 2015-01-21 14:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-11 08:04 - 2014-08-08 06:02 - 01736779 _____ () C:\Windows\WindowsUpdate.log
2015-04-11 08:02 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\system32\sru
2015-04-11 08:00 - 2015-02-01 15:43 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-11 07:59 - 2014-08-08 06:50 - 00000093 _____ () C:\Users\Işıl\AppData\Roaming\sp_data.sys
2015-04-11 07:57 - 2015-02-21 00:17 - 00000000 ___RD () C:\Users\Işıl\OneDrive
2015-04-11 07:57 - 2015-02-01 15:43 - 00000912 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-11 00:19 - 2015-01-02 13:09 - 00000914 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-275837570-461388567-825711399-1001UA.job
2015-04-11 00:12 - 2014-10-02 18:50 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\Skype
2015-04-10 20:12 - 2014-10-02 18:50 - 00000000 ____D () C:\ProgramData\Skype
2015-04-10 20:10 - 2013-08-22 23:46 - 00032131 _____ () C:\Windows\setupact.log
2015-04-10 20:10 - 2013-08-22 23:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-10 20:09 - 2014-03-18 18:44 - 00720016 _____ () C:\Windows\PFRO.log
2015-04-10 20:09 - 2013-08-22 22:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-04-10 00:28 - 2014-08-08 06:53 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-275837570-461388567-825711399-1001
2015-04-09 20:41 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-04-09 11:29 - 2013-08-23 00:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-04-09 01:59 - 2014-10-03 16:21 - 00000000 ____D () C:\Users\Işıl\Desktop\murat_japonya_yazılar
2015-04-09 01:43 - 2014-10-01 01:26 - 00000000 ____D () C:\Users\Işıl\Desktop\Blog_Japonya
2015-04-08 02:03 - 2014-11-13 21:10 - 00000000 ____D () C:\Users\Işıl\Desktop\Research Plan_Kyot_University
2015-04-08 01:47 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-08 00:00 - 2014-11-15 13:06 - 00000000 ____D () C:\Users\Işıl\Desktop\Japan_Articles
2015-04-06 10:00 - 2015-02-01 15:43 - 00002205 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-03 00:29 - 2014-10-12 18:33 - 00348160 ___SH () C:\Users\Işıl\Desktop\Thumbs.db
2015-04-02 22:26 - 2014-10-05 03:12 - 00111104 ___SH () C:\Users\Işıl\Downloads\Thumbs.db
2015-04-02 09:19 - 2015-01-02 13:09 - 00000862 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-275837570-461388567-825711399-1001Core.job
2015-04-02 03:01 - 2014-08-08 06:47 - 00000000 ____D () C:\Users\Işıl
2015-04-02 02:58 - 2014-10-23 19:18 - 00000000 ____D () C:\Users\Işıl\Desktop\Japan
2015-04-01 11:25 - 2014-11-14 09:42 - 765931335 _____ () C:\Windows\MEMORY.DMP
2015-04-01 11:25 - 2014-11-14 09:42 - 00000000 ____D () C:\Windows\Minidump
2015-04-01 11:25 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-04-01 01:11 - 2013-08-23 00:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-04-01 00:37 - 2014-09-28 23:08 - 00000000 ____D () C:\ProgramData\Trend Micro
2015-04-01 00:37 - 2013-08-23 00:36 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-04-01 00:36 - 2014-10-05 05:06 - 00000000 ____D () C:\Users\Işıl\AppData\Local\Trend Micro
2015-03-31 23:59 - 2013-08-22 22:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-03-30 20:20 - 2014-08-08 06:47 - 00000000 ____D () C:\Users\Işıl\AppData\Local\VirtualStore
2015-03-29 07:32 - 2014-12-11 05:07 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-29 07:32 - 2014-08-12 04:08 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-27 01:14 - 2015-02-16 04:47 - 00000000 ____D () C:\Users\Işıl\Desktop\Gender_in_Turkey
2015-03-27 00:35 - 2015-02-15 02:48 - 00000000 ____D () C:\Users\Işıl\Desktop\Gender_in_Japan
2015-03-26 10:38 - 2014-08-10 23:32 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-26 10:35 - 2014-08-10 23:32 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-22 10:10 - 2014-10-02 18:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-03-22 00:16 - 2014-03-18 18:53 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-21 22:58 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\rescache
2015-03-18 11:07 - 2013-08-22 23:44 - 00351344 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Windows\ToastData
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\WinStore
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
==================== Files in the root of some directories =======
2014-08-08 06:50 - 2015-04-11 07:59 - 0000093 _____ () C:\Users\Işıl\AppData\Roaming\sp_data.sys
2014-09-28 23:07 - 2014-09-28 23:07 - 0000036 _____ () C:\Users\Işıl\AppData\Local\housecall.guid.cache
2014-08-08 06:17 - 2014-08-08 06:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-05-24 09:13 - 2012-09-07 20:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-05-24 09:13 - 2009-07-22 19:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2014-05-24 09:13 - 2012-09-07 20:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.exe
C:\ProgramData\SetStretch.VBS
Some content of TEMP:
====================
C:\Users\Isil\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Isil\AppData\Local\Temp\{36918CC5-C7DB-4DE6-8535-4B140A1E2D1D}.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-02 22:50
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Işıl (administrator) on ISIL on 11-04-2015 08:04:35
Running from C:\Users\Işıl\Downloads
Loaded Profiles: Işıl (Available profiles: Işıl)
Platform: Windows 8.1 Single Language (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Company) C:\Program Files (x86)\Popcorn Time\Updater.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Microsoft Corporation) C:\Windows\System32\InputMethod\JPN\JpnIME.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\BTStackServer.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Google) C:\Users\Işıl\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSPanel.exe
(Farbar) C:\Users\Işıl\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [114048 2013-10-18] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [1080992 2014-05-24] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\ASUSWSLoader.exe [63296 2014-02-25] ()
HKU\S-1-5-21-275837570-461388567-825711399-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.)
HKU\S-1-5-21-275837570-461388567-825711399-1001\...\Run: [Google Update] => C:\Users\Işıl\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2015-01-02] (Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ASUS\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.2.301\ASUSWSShellExt64.dll (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-275837570-461388567-825711399-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-275837570-461388567-825711399-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-01] (Google Inc.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-01] (Google Inc.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-01] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-01] (Google Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.1 192.168.100.1
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-24] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-24] (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-25] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Işıl\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-03-26] (Google)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @talk.google.com/O1DPlugin -> C:\Users\Işıl\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-03-26] (Google)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Işıl\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-275837570-461388567-825711399-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Işıl\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Işıl\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-03-26] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Işıl\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-03-26] (Google)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-01]
CHR Extension: (Google Drive) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-01]
CHR Extension: (YouTube) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-01]
CHR Extension: (Google Search) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-18]
CHR Extension: (Google Wallet) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-01]
CHR Extension: (Gmail) - C:\Users\Işıl\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-01]
CHR HKLM-x32\...\Chrome\Extension: [bmiabdepfhhiieiipmeecdmeljggmfee] - No Path Or update_url value
CHR HKLM-x32\...\Chrome\Extension: [fmgckcapmffomaifonnhgkfdgljnkpgi] - No Path Or update_url value
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe [71680 2014-02-25] (ASUS Cloud Corporation) [File not signed]
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-14] (Broadcom Corporation.)
R2 btwdins; C:\Program Files\ASUS\Bluetooth Software\btwdins.exe [977664 2014-06-04] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-10-18] (Intel Corporation)
R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116680 2013-10-18] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148160 2013-10-18] (Intel Corporation)
R2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [126952 2013-10-18] (Intel Corporation)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-01-28] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282072 2014-03-18] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-03] (Intel(R) Corporation) [File not signed]
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-10-24] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation)
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [335360 2014-12-17] (Company) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [69904 2014-04-01] (ASUS Corporation)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-14] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7546544 2014-08-08] (Broadcom Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [145640 2013-10-18] (Intel Corporation)
R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [116752 2013-10-18] (Intel Corporation)
R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [289744 2013-10-18] (Intel Corporation)
R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [494296 2013-10-18] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [93400 2014-11-21] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-10-24] (Intel Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-11 08:01 - 2015-04-11 08:03 - 02095616 _____ (Farbar) C:\Users\Işıl\Downloads\FRST64 (1).exe
2015-04-10 19:59 - 2015-04-10 20:01 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Işıl\Downloads\tdsskiller.exe
2015-04-09 23:07 - 2015-04-09 23:07 - 00000000 ____D () C:\Users\Işıl\Downloads\ekler (4)
2015-04-09 23:05 - 2015-04-09 23:06 - 06892291 _____ () C:\Users\Işıl\Downloads\ekler (4).zip
2015-04-09 21:21 - 2015-04-09 21:21 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\Mozilla
2015-04-07 01:53 - 2015-04-07 01:56 - 23674176 _____ () C:\Users\Işıl\Downloads\ekler (3).zip
2015-04-06 22:38 - 2015-04-06 22:38 - 00000000 ____D () C:\Users\Işıl\Downloads\ekler (2)
2015-04-06 17:47 - 2015-04-06 22:42 - 00000022 _____ () C:\Users\Işıl\Downloads\ekler (2).zip
2015-04-05 15:25 - 2015-04-05 15:25 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-04-05 15:25 - 2015-04-05 15:25 - 00000000 ___SD () C:\Windows\system32\GWX
2015-04-02 22:25 - 2015-04-02 22:25 - 08780082 _____ () C:\Users\Işıl\Downloads\video-1427762194.mp4.mp4
2015-04-01 11:25 - 2015-04-01 11:25 - 00294032 _____ () C:\Windows\Minidump\040115-33187-01.dmp
2015-04-01 10:53 - 2015-04-01 10:53 - 00026439 _____ () C:\Users\Işıl\Downloads\Addition.txt
2015-04-01 10:52 - 2015-04-11 08:05 - 00017527 _____ () C:\Users\Işıl\Downloads\FRST.txt
2015-04-01 10:52 - 2015-04-11 08:04 - 00000000 ____D () C:\FRST
2015-04-01 10:48 - 2015-04-01 10:49 - 02095616 _____ (Farbar) C:\Users\Işıl\Downloads\FRST64.exe
2015-04-01 02:20 - 2015-04-01 02:20 - 00001112 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-04-01 02:20 - 2015-04-01 02:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-04-01 02:20 - 2015-04-01 02:20 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-01 02:20 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-04-01 02:20 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-04-01 02:14 - 2015-04-01 11:09 - 00000000 ____D () C:\a
2015-04-01 02:14 - 2014-10-02 01:08 - 00235882 _____ () C:\Windows\chameleon.chm
2015-04-01 02:13 - 2015-04-01 02:13 - 00000000 ____D () C:\Users\Işıl\Downloads\mbam-chameleon-3.1.7.0
2015-04-01 02:09 - 2015-04-01 02:12 - 04909382 _____ () C:\Users\Işıl\Downloads\mbam-chameleon-3.1.7.0.zip
2015-04-01 01:53 - 2015-04-01 01:54 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Işıl\Downloads\tdsskiller44.exe
2015-04-01 01:27 - 2015-04-01 02:20 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-04-01 01:26 - 2015-04-01 11:26 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-04-01 01:26 - 2015-04-01 02:07 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-04-01 01:26 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-04-01 01:25 - 2015-04-01 01:59 - 00000000 ____D () C:\Users\Işıl\Desktop\mbar
2015-04-01 01:15 - 2015-04-01 01:17 - 00000000 ____D () C:\Windows\SysWOW64\vbox
2015-04-01 01:15 - 2015-04-01 01:17 - 00000000 ____D () C:\Windows\system32\vbox
2015-04-01 01:14 - 2015-04-01 01:15 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Işıl\Downloads\mbar-1.09.1.1004.exe
2015-04-01 01:13 - 2015-04-01 01:15 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Işıl\Downloads\m.exe
2015-04-01 01:12 - 2015-04-01 11:25 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-04-01 00:59 - 2015-04-01 01:07 - 150062624 _____ (Avast Software s.r.o.) C:\Users\Işıl\Downloads\avast_free_antivirus_setup.exe
2015-04-01 00:55 - 2015-04-01 00:55 - 00380416 _____ () C:\Users\Işıl\Downloads\wjof9o7e.exe
2015-04-01 00:55 - 2015-04-01 00:55 - 00380416 _____ () C:\Users\Işıl\Downloads\cnlut5jf.exe
2015-04-01 00:37 - 2015-04-01 00:37 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2015-03-31 23:27 - 2015-03-31 23:27 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\TuneUp Software
2015-03-31 23:27 - 2015-03-31 23:27 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\AVG2015
2015-03-31 23:26 - 2015-04-01 01:56 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-31 23:26 - 2015-04-01 01:11 - 00000000 ___HD () C:\$AVG
2015-03-31 23:22 - 2015-04-01 01:56 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-31 23:22 - 2015-04-01 00:00 - 00000000 ____D () C:\Users\Işıl\AppData\Local\Avg2015
2015-03-31 23:22 - 2015-03-31 23:22 - 00000000 ____D () C:\Users\Işıl\AppData\Local\MFAData
2015-03-31 23:21 - 2015-03-31 23:22 - 04579176 _____ (AVG Technologies) C:\Users\Işıl\Downloads\avg_free_stb_all_2015_5315_free.exe
2015-03-30 20:20 - 2015-04-10 23:07 - 00000000 ____D () C:\Users\Işıl\Downloads\PopcornTime
2015-03-30 20:19 - 2015-03-30 20:19 - 00001131 _____ () C:\Users\Public\Desktop\Popcorn Time.lnk
2015-03-30 20:19 - 2015-03-30 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2015-03-30 20:19 - 2015-03-30 20:19 - 00000000 ____D () C:\Program Files (x86)\Popcorn Time
2015-03-30 20:05 - 2015-03-30 20:18 - 50764339 _____ (Popcorn Time ) C:\Users\Işıl\Downloads\PopcornTime-latest (1).exe
2015-03-30 00:13 - 2015-03-30 00:13 - 00000000 _____ () C:\Windows\Minidump\033015-22000-01.dmp
2015-03-29 08:40 - 2015-03-29 08:41 - 20426543 _____ () C:\Users\Işıl\Downloads\ekler (1).zip
2015-03-29 08:36 - 2015-03-29 08:38 - 22373345 _____ () C:\Users\Işıl\Downloads\ekler.zip
2015-03-28 22:17 - 2015-03-28 22:28 - 12096180 _____ (Popcorn Time ) C:\Users\Işıl\Downloads\PopcornTime-latest.exe.i03ogx5.partial
2015-03-26 23:30 - 2015-03-11 11:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00943104 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00760320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-26 23:30 - 2015-03-11 07:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-23 22:40 - 2015-04-05 11:59 - 00000000 ____D () C:\Users\Işıl\Desktop\tasnifle_23032015
2015-03-22 10:15 - 2015-03-22 10:15 - 00000000 ____D () C:\Users\Işıl\Tracing
2015-03-16 21:58 - 2015-02-07 08:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-16 21:58 - 2015-02-04 08:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-16 21:58 - 2015-02-04 08:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-16 21:58 - 2015-02-04 08:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-16 21:58 - 2015-02-03 08:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-16 21:58 - 2015-02-03 08:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-16 21:58 - 2015-01-27 12:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-16 21:58 - 2015-01-24 10:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-16 21:58 - 2015-01-23 16:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-16 21:58 - 2015-01-23 14:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-16 21:57 - 2015-02-06 10:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-16 21:57 - 2015-02-06 10:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-16 21:57 - 2015-02-06 05:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-16 21:57 - 2015-01-31 08:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-16 21:57 - 2015-01-31 08:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-16 21:57 - 2015-01-30 12:01 - 00097792 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-03-16 21:57 - 2015-01-30 12:00 - 00167424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-03-16 21:57 - 2015-01-29 10:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-16 21:57 - 2015-01-29 10:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-16 21:57 - 2015-01-29 10:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-16 21:57 - 2015-01-29 10:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-16 21:57 - 2014-10-29 11:46 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-03-16 21:57 - 2014-10-29 11:46 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-03-16 21:57 - 2014-10-29 11:45 - 01198080 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-16 21:57 - 2014-10-29 11:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-16 21:57 - 2014-10-29 11:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-16 21:57 - 2014-10-29 11:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-16 21:57 - 2014-10-29 11:03 - 00241152 ____C (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-03-16 21:57 - 2014-10-29 10:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-16 21:57 - 2014-10-29 10:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-16 21:57 - 2014-10-29 10:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-16 21:57 - 2014-10-29 10:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-16 21:57 - 2014-10-29 10:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-16 21:57 - 2014-10-29 10:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-16 21:57 - 2014-10-29 10:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-16 21:57 - 2014-10-29 09:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-16 21:57 - 2014-10-29 09:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-16 21:57 - 2014-10-29 09:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-16 21:57 - 2014-10-29 09:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-16 21:56 - 2015-02-08 08:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-03-16 21:56 - 2015-02-08 08:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-03-16 21:56 - 2015-02-03 09:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-03-16 21:56 - 2015-02-03 09:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-03-16 21:56 - 2015-01-30 11:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-03-16 21:56 - 2015-01-30 11:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-03-16 21:56 - 2015-01-30 11:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-03-16 21:56 - 2015-01-30 10:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-03-16 21:56 - 2015-01-30 10:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-03-16 21:56 - 2015-01-30 10:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-03-16 21:56 - 2015-01-30 10:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-03-16 21:56 - 2015-01-30 10:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-03-16 21:56 - 2015-01-30 10:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-03-16 21:56 - 2015-01-30 10:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-03-16 21:56 - 2015-01-30 10:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-03-16 21:56 - 2015-01-30 10:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-03-16 21:56 - 2015-01-30 10:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-03-16 21:56 - 2015-01-29 10:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-16 21:56 - 2015-01-29 10:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-16 21:56 - 2015-01-29 09:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-16 21:56 - 2015-01-29 09:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-16 21:56 - 2015-01-29 09:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-16 21:56 - 2015-01-29 09:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-16 21:56 - 2015-01-28 11:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-16 21:56 - 2015-01-28 10:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-16 21:56 - 2015-01-28 08:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-03-16 21:56 - 2015-01-28 08:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-03-16 21:56 - 2014-12-11 14:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-03-16 21:56 - 2014-10-29 11:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-16 21:56 - 2014-10-29 11:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-16 21:56 - 2014-10-29 10:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-03-16 21:56 - 2014-10-29 10:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-03-16 21:56 - 2014-10-29 10:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-16 21:56 - 2014-10-29 09:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-03-16 21:56 - 2014-10-29 09:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-16 21:28 - 2015-03-06 11:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-16 21:28 - 2015-03-06 11:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-16 21:28 - 2015-02-26 08:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-16 21:28 - 2015-02-20 12:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-16 21:28 - 2015-02-20 11:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-16 21:28 - 2015-02-20 11:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-16 21:28 - 2015-02-20 11:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-16 21:28 - 2015-01-31 08:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-16 21:28 - 2015-01-29 00:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-16 21:28 - 2015-01-29 00:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-16 21:28 - 2015-01-29 00:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-16 21:28 - 2015-01-27 13:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 21:28 - 2015-01-27 11:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 21:28 - 2014-10-29 12:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 21:28 - 2014-10-29 11:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-16 21:28 - 2014-10-29 11:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-16 21:28 - 2014-10-29 11:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-16 21:28 - 2014-10-29 11:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-16 21:28 - 2014-10-29 11:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-16 21:28 - 2014-10-29 11:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-16 21:28 - 2014-10-29 11:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-16 21:26 - 2015-02-21 10:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-16 21:26 - 2015-02-21 09:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-16 21:26 - 2015-02-21 09:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-16 21:26 - 2015-02-21 09:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-16 21:26 - 2015-02-21 09:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-16 21:26 - 2015-02-21 08:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-16 21:26 - 2015-02-21 08:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-16 21:26 - 2015-02-20 11:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-16 21:26 - 2015-02-20 11:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-16 21:26 - 2015-02-20 11:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-16 21:26 - 2015-02-20 11:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-16 21:26 - 2015-02-20 11:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-16 21:26 - 2015-02-20 11:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-16 21:26 - 2015-02-20 11:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-16 21:26 - 2015-02-20 11:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-16 21:26 - 2015-02-20 11:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-16 21:26 - 2015-02-20 11:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-16 21:26 - 2015-02-20 11:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-16 21:26 - 2015-02-20 10:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-16 21:26 - 2015-02-20 10:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-16 21:26 - 2015-02-20 10:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-16 21:26 - 2015-02-20 10:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-16 21:26 - 2015-02-20 10:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-16 21:26 - 2015-02-20 10:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-16 21:26 - 2015-02-20 10:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-16 21:26 - 2015-02-20 10:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-16 21:26 - 2015-02-20 10:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-16 21:26 - 2015-02-20 10:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-03-16 21:26 - 2015-02-20 10:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-16 21:26 - 2015-02-20 10:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-16 21:26 - 2015-02-20 10:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-16 21:26 - 2015-02-20 10:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-16 21:26 - 2015-02-20 10:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-16 21:26 - 2015-02-20 10:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-16 21:26 - 2015-02-20 10:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-16 21:26 - 2015-02-20 09:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-16 21:26 - 2015-02-20 09:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-16 21:24 - 2015-01-30 03:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-16 21:24 - 2015-01-30 03:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-16 21:23 - 2015-02-13 02:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-16 21:23 - 2015-02-13 02:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-16 21:21 - 2015-01-28 10:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-16 21:21 - 2015-01-28 10:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-16 21:21 - 2015-01-21 14:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-16 21:21 - 2015-01-21 14:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-11 08:04 - 2014-08-08 06:02 - 01736779 _____ () C:\Windows\WindowsUpdate.log
2015-04-11 08:02 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\system32\sru
2015-04-11 08:00 - 2015-02-01 15:43 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-11 07:59 - 2014-08-08 06:50 - 00000093 _____ () C:\Users\Işıl\AppData\Roaming\sp_data.sys
2015-04-11 07:57 - 2015-02-21 00:17 - 00000000 ___RD () C:\Users\Işıl\OneDrive
2015-04-11 07:57 - 2015-02-01 15:43 - 00000912 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-11 00:19 - 2015-01-02 13:09 - 00000914 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-275837570-461388567-825711399-1001UA.job
2015-04-11 00:12 - 2014-10-02 18:50 - 00000000 ____D () C:\Users\Işıl\AppData\Roaming\Skype
2015-04-10 20:12 - 2014-10-02 18:50 - 00000000 ____D () C:\ProgramData\Skype
2015-04-10 20:10 - 2013-08-22 23:46 - 00032131 _____ () C:\Windows\setupact.log
2015-04-10 20:10 - 2013-08-22 23:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-10 20:09 - 2014-03-18 18:44 - 00720016 _____ () C:\Windows\PFRO.log
2015-04-10 20:09 - 2013-08-22 22:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-04-10 00:28 - 2014-08-08 06:53 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-275837570-461388567-825711399-1001
2015-04-09 20:41 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-04-09 11:29 - 2013-08-23 00:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-04-09 01:59 - 2014-10-03 16:21 - 00000000 ____D () C:\Users\Işıl\Desktop\murat_japonya_yazılar
2015-04-09 01:43 - 2014-10-01 01:26 - 00000000 ____D () C:\Users\Işıl\Desktop\Blog_Japonya
2015-04-08 02:03 - 2014-11-13 21:10 - 00000000 ____D () C:\Users\Işıl\Desktop\Research Plan_Kyot_University
2015-04-08 01:47 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-08 00:00 - 2014-11-15 13:06 - 00000000 ____D () C:\Users\Işıl\Desktop\Japan_Articles
2015-04-06 10:00 - 2015-02-01 15:43 - 00002205 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-03 00:29 - 2014-10-12 18:33 - 00348160 ___SH () C:\Users\Işıl\Desktop\Thumbs.db
2015-04-02 22:26 - 2014-10-05 03:12 - 00111104 ___SH () C:\Users\Işıl\Downloads\Thumbs.db
2015-04-02 09:19 - 2015-01-02 13:09 - 00000862 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-275837570-461388567-825711399-1001Core.job
2015-04-02 03:01 - 2014-08-08 06:47 - 00000000 ____D () C:\Users\Işıl
2015-04-02 02:58 - 2014-10-23 19:18 - 00000000 ____D () C:\Users\Işıl\Desktop\Japan
2015-04-01 11:25 - 2014-11-14 09:42 - 765931335 _____ () C:\Windows\MEMORY.DMP
2015-04-01 11:25 - 2014-11-14 09:42 - 00000000 ____D () C:\Windows\Minidump
2015-04-01 11:25 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-04-01 01:11 - 2013-08-23 00:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-04-01 00:37 - 2014-09-28 23:08 - 00000000 ____D () C:\ProgramData\Trend Micro
2015-04-01 00:37 - 2013-08-23 00:36 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-04-01 00:36 - 2014-10-05 05:06 - 00000000 ____D () C:\Users\Işıl\AppData\Local\Trend Micro
2015-03-31 23:59 - 2013-08-22 22:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-03-30 20:20 - 2014-08-08 06:47 - 00000000 ____D () C:\Users\Işıl\AppData\Local\VirtualStore
2015-03-29 07:32 - 2014-12-11 05:07 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-29 07:32 - 2014-08-12 04:08 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-27 01:14 - 2015-02-16 04:47 - 00000000 ____D () C:\Users\Işıl\Desktop\Gender_in_Turkey
2015-03-27 00:35 - 2015-02-15 02:48 - 00000000 ____D () C:\Users\Işıl\Desktop\Gender_in_Japan
2015-03-26 10:38 - 2014-08-10 23:32 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-26 10:35 - 2014-08-10 23:32 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-22 10:10 - 2014-10-02 18:50 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-03-22 00:16 - 2014-03-18 18:53 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-21 22:58 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\rescache
2015-03-18 11:07 - 2013-08-22 23:44 - 00351344 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Windows\ToastData
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Windows\WinStore
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-18 02:31 - 2013-08-23 00:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
==================== Files in the root of some directories =======
2014-08-08 06:50 - 2015-04-11 07:59 - 0000093 _____ () C:\Users\Işıl\AppData\Roaming\sp_data.sys
2014-09-28 23:07 - 2014-09-28 23:07 - 0000036 _____ () C:\Users\Işıl\AppData\Local\housecall.guid.cache
2014-08-08 06:17 - 2014-08-08 06:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-05-24 09:13 - 2012-09-07 20:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-05-24 09:13 - 2009-07-22 19:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2014-05-24 09:13 - 2012-09-07 20:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.exe
C:\ProgramData\SetStretch.VBS
Some content of TEMP:
====================
C:\Users\Isil\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Isil\AppData\Local\Temp\{36918CC5-C7DB-4DE6-8535-4B140A1E2D1D}.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-02 22:50
==================== End Of Log ============================