Logfile of HiJackThis+ build 2025-01-16 Beta v.3.4.0.17 Platform: x64 Windows 11 (Home), 10.0.26100.3775 (ReleaseId: 2009, 24H2), Service Pack: 0 Time: 10.05.2025 - 11:01 (UTC+03:00) Language: OS: Turkish (0x41F). Display: Turkish (0x41F). Non-Unicode: Turkish (0x41F) Memory: 2,66 GiB Free / 8. Loading RAM (65 %), CPU (9 %) Disk C: 38,54 GiB Free / 237 (SSD, GPT) Elevated: Yes Ran by: dt (group: Administrators; type: Microsoft) on DESKTOP-R0I9P6F, FirstRun: yes Chrome: 136.0.7103.93 Internet Explorer: 11.0.26100.1882 Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --single-argument %1 (Google Chrome) Boot mode: Normal (Secure Boot: Off) Running processes: Number | Path 1 C:\Program Files (x86)\Common Files\SMART Technologies\SMART Crash Reporter 1.2\crashpad_handler2.exe 1 C:\Program Files (x86)\Common Files\SMART Technologies\SystemMenu\SMARTSystemMenu.exe 1 C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe 1 C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE 1 C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE 13 C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 1 C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\LenovoVantage-(GenericTelemetryAddin).exe 1 C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\LenovoVantage-(VantageCoreAddin).exe 1 C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\LenovoVantageService.exe 5 C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe 6 C:\Program Files (x86)\Microsoft\EdgeWebView\Application\136.0.3240.50\msedgewebview2.exe 1 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTHelperService.exe 1 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTNotification.exe 1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe 1 C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe 1 C:\Program Files\epson\Epson Data Collection Agent\DCAgent.exe 1 C:\Program Files\Google\Drive File Stream\107.0.3.0\crashpad_handler.exe 7 C:\Program Files\Google\Drive File Stream\107.0.3.0\GoogleDriveFS.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe 1 C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe 1 C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe 1 C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe 1 C:\Program Files\Tablet\Wacom\WacomHost.exe 1 C:\Program Files\Tablet\Wacom\WTabletServicePro.exe 1 C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio3_1.0.85.0_x64__qt57b6kdvhcfw\AFA\CAudioFilterAgent64.exe 1 C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio3_1.0.85.0_x64__qt57b6kdvhcfw\Flow\Flow1\Flow.exe 1 C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2518.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe 1 C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe 1 C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\IGCC.exe 1 C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.6.12.0_x64__5grkq8ppsgwt4\LaunchUtility\utility.exe 1 C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.225.4081.0_x64__8wekyb3d8bbwe\GameBar.exe 1 C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.225.4081.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe 1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.25032.82.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe 1 C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.10401.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe 1 C:\Program Files\XPPen\PenTablet.exe 1 C:\Users\tolga\AppData\Local\Microsoft\OneDrive\25.065.0406.0002\Microsoft.SharePoint.exe 1 C:\Users\tolga\Desktop\HiJackThis.exe 1 C:\Windows\CxSvc\CxAudioSvc.exe 1 C:\Windows\explorer.exe 1 C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe 1 C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe 1 C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe 1 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe 1 C:\Windows\splwow64.exe 1 C:\Windows\System32\AggregatorHost.exe 1 C:\Windows\System32\audiodg.exe 1 C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe 1 C:\Windows\System32\conhost.exe 2 C:\Windows\System32\csrss.exe 1 C:\Windows\System32\ctfmon.exe 1 C:\Windows\System32\CxAudMsg64.exe 1 C:\Windows\System32\dasHost.exe 1 C:\Windows\System32\dllhost.exe 2 C:\Windows\System32\dolbyaposvc\DAX3API.exe 1 C:\Windows\System32\drivers\SessionService.exe 1 C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d70b02a5a438df3c\igfxCUIService.exe 1 C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d70b02a5a438df3c\igfxEM.exe 1 C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe 1 C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_7ecc5be6ca7b3b0d\esif_uf.exe 1 C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_e3f96af62737a898\RstMwService.exe 1 C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_577475639d32bfed\OneApp.IGCC.WinService.exe 1 C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_440392e76b44e849\IntelCpHDCPSvc.exe 1 C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_440392e76b44e849\IntelCpHeciSvc.exe 1 C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe 2 C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_17a985f102ce7ec9\Display.NvContainer\NVDisplay.Container.exe 1 C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_d372a4ea3b959b1c\aesm_service.exe 2 C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_4690d097c38be4a9\WTabletServiceISD.exe 1 C:\Windows\System32\dwm.exe 1 C:\Windows\System32\escsvc64.exe 2 C:\Windows\System32\fontdrvhost.exe 1 C:\Windows\System32\LNBITSSvc.exe 1 C:\Windows\System32\lsass.exe 1 C:\Windows\System32\oobe\UserOOBEBroker.exe 5 C:\Windows\System32\RuntimeBroker.exe 2 C:\Windows\System32\SearchFilterHost.exe 1 C:\Windows\System32\SearchIndexer.exe 1 C:\Windows\System32\SearchProtocolHost.exe 1 C:\Windows\System32\services.exe 1 C:\Windows\System32\ShellHost.exe 1 C:\Windows\System32\sihost.exe 1 C:\Windows\System32\smartscreen.exe 1 C:\Windows\System32\smss.exe 1 C:\Windows\System32\spoolsv.exe 87 C:\Windows\System32\svchost.exe 2 C:\Windows\System32\taskhostw.exe 1 C:\Windows\System32\wbem\unsecapp.exe 1 C:\Windows\System32\wbem\WMIADAP.exe 2 C:\Windows\System32\wbem\WmiPrvSE.exe 1 C:\Windows\System32\wininit.exe 1 C:\Windows\System32\winlogon.exe 1 C:\Windows\System32\wlanext.exe 4 C:\Windows\System32\WUDFHost.exe 1 C:\Windows\System32\YMC.exe 1 C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe 1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe 1 C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe 1 C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe 1 C:\Windows\SysWOW64\wbem\WmiPrvSE.exe R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxyServer] = ftp://192.168.0.30:9999 (disabled) R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [SuggestionsURL_JSON] = hxxps://suggest.yandex.com.tr/suggest-ff.cgi?srv=ie11&uil=tr&part={searchTerms}&clid=2233630 - Yandex R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [URL] = hxxps://yandex.com.tr/search/?text={searchTerms}&clid=2233630 - Yandex O1 - Hosts: 127.0.0.1 keystone.mwbsys.com O1 - Hosts: 0.0.0.0 serius.mwbsys.com O2 - HKLM\..\BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O2 - HKLM\..\BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (sign: 'Tonec Inc.') O2 - HKLM\..\BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O2-32 - HKLM\..\BHO: (no name) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - (no file) O2-32 - HKLM\..\BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O2-32 - HKLM\..\BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (sign: 'Tonec Inc.') O2-32 - HKLM\..\BHO: SMART Notebook Download Utility - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - C:\Program Files (x86)\SMART Technologies\Education Software\NotebookPlugin.dll (sign: 'SMART Technologies ULC') O2-32 - HKLM\..\BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O3 - HKLM\..\Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O3-32 - HKLM\..\Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll (sign: 'Adobe Systems, Incorporated') O4 - ActiveSetup: HKLM\..\{8A69D345-D564-463c-AFF1-A69D9E530F96}: [StubPath] = C:\Program Files (x86)\Google\Chrome\Application\136.0.7103.93\Installer\chrmstp.exe --configure-user-settings --verbose-logging --system-level --channel=stable (sign: 'Google LLC') O4 - HKCU\..\Run: [Crypto] = C:\Users\tolga\AppData\Roaming\Microsoft\Crypto\Crypto.vbs (not signed - no company - D1BB82131380EF16C15D813A182C5698D0D6F635) O4 - HKCU\..\Run: [EPSDNMON] = C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE (sign: 'SEIKO EPSON CORPORATION') O4 - HKCU\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\107.0.3.0\GoogleDriveFS.exe --startup_mode (sign: 'Google LLC') O4 - HKCU\..\Run: [Microsoft.Lists] = C:\Users\tolga\AppData\Local\Microsoft\OneDrive\25.065.0406.0002\Microsoft.SharePoint.exe (sign: 'Microsoft') O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_AAA79D92E6975CA77C8FBFF0B2ECEDE9] = C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --no-startup-window --win-session-start (sign: 'Microsoft') O4 - HKLM\..\Run: [EPPCCMON] = C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE (sign: 'SEIKO EPSON CORPORATION') O4 - HKLM\..\Run: [PenTablet] = C:\Program Files\XPPen\PenTablet.exe /mini (sign: 'Hanvon Ugee Technology Co., Ltd.') O4 - HKLM\..\StartupApproved\Run: [DataCollectionAgentController] = C:\Program Files\EPSON\Epson Data Collection Agent\DataCollectionAgentController.exe (2024/10/31) (sign: 'SEIKO EPSON CORPORATION') O4 - HKLM\..\StartupApproved\Run: [SecurityHealth] = C:\WINDOWS\system32\SecurityHealthSystray.exe (sign: 'Microsoft') O4 - HKLM\..\StartupApproved\Run: [TechSmithSnagit] = C:\Program Files\TechSmith\Snagit 2020\Snagit32.exe /i (2024/10/31) (sign: 'TechSmith Corporation') O4 - HKLM\..\StartupApproved\Run32: [EEventManager] = C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (2024/10/31) (not signed - Seiko Epson Corporation - D702DBC196AE99FB7FD610DB0172E28C3E18F28F) O4 - HKLM\..\StartupApproved\Run32: [sbsdk-server] = C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\NodeLauncher.exe (2024/10/31) (sign: 'SMART Technologies ULC') O4 - HKLM\..\StartupApproved\Run32: [SMART Board Service] = C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe -d (2024/10/31) (sign: 'SMART Technologies ULC') O4 - HKLM\..\StartupApproved\Run32: [SMART Ink] = C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInk.exe -a (2024/10/31) (sign: 'SMART Technologies ULC') O4 - HKU\S-1-5-18\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\107.0.3.0\GoogleDriveFS.exe --startup_mode (User 'LocalSystem') (sign: 'Google LLC') O4 - HKU\S-1-5-19\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\107.0.3.0\GoogleDriveFS.exe --startup_mode (User 'Local service') (sign: 'Google LLC') O4 - HKU\S-1-5-19\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local service') (sign: 'Microsoft') O4 - HKU\S-1-5-20\..\Run: [GoogleDriveFS] = C:\Program Files\Google\Drive File Stream\107.0.3.0\GoogleDriveFS.exe --startup_mode (User 'Network service') (sign: 'Google LLC') O4 - HKU\S-1-5-20\..\Run: [OneDriveSetup] = C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Network service') (sign: 'Microsoft') O4-32 - HKLM\..\Run: [SMART Tray Tools] = C:\Program Files (x86)\Common Files\SMART Technologies\SystemMenu\SMARTSystemMenu.exe (sign: 'SMART Technologies ULC') O4-32 - HKLM\..\Run: [SMARTNotification] = C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTNotification.exe (sign: 'SMART Technologies ULC') O7 - Policy: HKLM\Software\Microsoft\Windows Defender: [DisableAntiSpyware] = 1 O7 - Policy: HKLM\Software\Microsoft\Windows Defender: [DisableAntiVirus] = 1 O15 - Trusted Zone: hxxps://cevrekoleji365-files.sharepoint.com O15 - Trusted Zone: hxxps://cevrekoleji365-myfiles.sharepoint.com O17 - DHCP DNS 1: 46.196.235.227 O17 - DHCP DNS 2: 178.233.140.147 O18 - HKLM\Software\Classes\Protocols\Filter\application/octet-stream: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file) O18 - HKLM\Software\Classes\Protocols\Filter\application/x-complus: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file) O18 - HKLM\Software\Classes\Protocols\Filter\application/x-msdownload: [CLSID] = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - (no file) O18 - HKLM\Software\Classes\Protocols\Handler\ms-help: [CLSID] = {314111C7-A502-11D2-BBCA-00C04F8EC294} - (no file) O18 - Printer Port: C:\ProgramData\TechSmith\Snagit 20\PrinterPortFile O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll (sign: 'Adobe Systems Incorporated') O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll (sign: 'Tonec Inc.') O21 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Google\Drive File Stream\107.0.3.0\drivefsext.dll (sign: 'Google LLC') O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file) O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ - C:\Program Files\Google\Drive File Stream\107.0.3.0\x86\drivefsext.dll (sign: 'Google LLC') O22 - Task (.job): (Not scheduled) Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (sign: 'Adobe Systems Incorporated') O22 - Task (.job): (Not scheduled) EPSON L3150 Series Update {F3C90910-1A01-485C-8C7F-C4E79D09B3AC}.job - C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSUNE.EXE (sign: 'SEIKO EPSON CORPORATION') O22 - Task (.job): (Not scheduled) update-S-1-5-21-3363675937-2214997215-1950016975-1001.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe (sign: 'OOO Lightshot') O22 - Task (.job): (Not scheduled) update-sys.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe (sign: 'OOO Lightshot') O22 - Task: (damaged) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Intel (empty) O22 - Task: (damaged) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\BatteryGauge (empty) O22 - Tasks: (disabled) \Agent Activation Runtime\S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe (sign: 'Microsoft') O22 - Tasks: (disabled) \Agent Activation Runtime\S-1-5-21-3363675937-2214997215-1950016975-1004 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Servicing\OOBEFodSetup - C:\WINDOWS\system32\OOBEFodSetup.exe (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\SharedPC\Account Cleanup - {7750564D-D61C-4557-8A9D-7DF56BDCFF96} - C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft') O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (file missing) O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (file missing) O22 - Tasks: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (sign: 'Microsoft') O22 - Tasks: (telemetry) \Lenovo\Vantage\Schedule\DailyTelemetryTransmission - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe DailyTelemetryTransmission (sign: 'Lenovo') O22 - Tasks: (telemetry) \Lenovo\Vantage\Schedule\VantageTelemetryAddinTask - C:\Program Files (x86)\Lenovo\VantageService\3.6.15.0\ScheduleEventAction.exe VantageTelemetryAddinTask (file missing) O22 - Tasks: (telemetry) \Microsoft\Office\Office Performance Monitor - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Office\Office Subscription Maintenance - C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - C:\WINDOWS\system32\sc.exe start InventorySvc (sign: '') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun express (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft') O22 - Tasks: (telemetry) \Microsoft\Windows\Sustainability\SustainabilityTelemetry - {6EE41D75-D091-4FB7-9AD5-018760DD25D4} - C:\WINDOWS\system32\EcoScoreTask.dll (sign: 'Microsoft') O22 - Tasks: (telemetry) NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks: (telemetry) NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks: (telemetry) NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks: (telemetry) NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7156.0{892B1F00-D6E1-4C10-82E7-45F76722DAB0} - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7156.0\updater.exe --wake --system (sign: 'Google LLC') O22 - Tasks: \Lenovo\ImController\Lenovo iM Controller Monitor - C:\WINDOWS\system32\ImController.InfInstaller.exe -checkremoval (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance - C:\WINDOWS\system32\sc.exe START ImControllerService (sign: 'Microsoft') O22 - Tasks: \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask - C:\WINDOWS\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 (sign: 'Microsoft') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\14809bad-d6de-44c9-b36c-a8479c4b2269 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 14809bad-d6de-44c9-b36c-a8479c4b2269 (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\5c09e620-3ad6-4299-a880-9422df30f1f5 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 5c09e620-3ad6-4299-a880-9422df30f1f5 (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\75192703-c7d0-467f-b472-3c8520041be2 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 75192703-c7d0-467f-b472-3c8520041be2 (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\76d6de4a-a9f9-4b30-9069-d26a87e29781 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 76d6de4a-a9f9-4b30-9069-d26a87e29781 (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\cd5cd587-777b-49a8-9184-e2929d39d1bd - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger cd5cd587-777b-49a8-9184-e2929d39d1bd (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\e5a3f0c4-ea98-41b2-953b-f31bee7c1df3 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger e5a3f0c4-ea98-41b2-953b-f31bee7c1df3 (sign: 'Lenovo') O22 - Tasks: \Lenovo\ImController\TimeBasedEvents\f925b758-71aa-4776-a9d7-56c7a42c41c4 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger f925b758-71aa-4776-a9d7-56c7a42c41c4 (sign: 'Lenovo') O22 - Tasks: \Lenovo\Lenovo Service Bridge\S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe (sign: 'Lenovo (Beijing) Limited') O22 - Tasks: \Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance - C:\WINDOWS\system32\sc.exe start LenovoVantageService (sign: 'Microsoft') O22 - Tasks: \Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe BatteryGaugeAddinDailyScheduleTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\GenericMessagingAddin - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe GenericMessagingAddin (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe HeartbeatAddinDailyScheduleTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe IdeaNotebookAddinDailyEvent (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe Lenovo.Vantage.SmartPerformance.MonthlyReport (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe LenovoCompanionAppAddinDailyScheduleTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe LenovoSystemUpdateAddin_WeeklyTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\NotificationCenter - C:\Program Files (x86)\Lenovo\VantageService\4.0.49.0\ScheduleEventAction.exe NotificationCenter (file missing) O22 - Tasks: \Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe SettingsWidgetAddinDailyScheduleTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe SmartPerformance.ExpireReminder (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask - C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.190\x64\IdleScheduleEventAction.exe (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.3.21.0\ScheduleEventAction.exe VantageCoreAddinWeekScheduleTask (sign: 'Lenovo') O22 - Tasks: \Lenovo\Vantage\StartupFixPlan - C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\uninstall.exe /repair (file missing) O22 - Tasks: \Microsoft\Office\Office Apps Prewarm - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft') O22 - Tasks: \Microsoft\Office\Office Apps Prewarm Recurring - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft') O22 - Tasks: \Microsoft\Office\Office Background Push Maintenance - C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe /pushregistration (sign: 'Microsoft') O22 - Tasks: \Microsoft\Office\Office Serviceability Manager - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe /checkin (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\AccountHealth\RecoverabilityToastTask - {B7F5B442-EBF8-46CD-9F0B-D8E45ED43492},-flow showtoast -checkup recoverability - C:\WINDOWS\system32\AccountHealth.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Diagnosis\UnexpectedCodepath - C:\WINDOWS\system32\UCConfigTask.exe (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\Windows\System32\fcon.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver - {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} - C:\Windows\System32\fcon.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Input\RemoteMouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteMouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Input\RemotePenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemotePenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Input\RemoteTouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},RemoteTouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Location\Notifications - C:\WINDOWS\System32\LocationNotificationWindows.exe (file missing) O22 - Tasks: \Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - C:\WINDOWS\System32\MbaeParserTask.exe (file missing) O22 - Tasks: \Microsoft\Windows\Network Connectivity Status Indicator\NcsiIdentifyUserProxies - {706B965A-8308-4CD4-9900-87C2D79C121B} - C:\Windows\System32\netprofm.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\PerformanceTrace\RequestTrace - {9EFEB182-2EE3-4AF9-AFFA-521410D110D1} - C:\WINDOWS\system32\PerformanceTraceHandler.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\ReFsDedupSvc\Initialization - {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} - C:\WINDOWS\System32\ReFsDedupSvc.exe (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask - {8702A841-D5CA-47C3-812D-9CEDC304C200} - (no file) O22 - Tasks: \Microsoft\Windows\Sustainability\PowerGridForecastTask - {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} - C:\WINDOWS\system32\PowerGridForecastTask.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\TPM\Tpm-PreAttestationHealthCheck - {5014B7C8-934E-4262-9816-887FA745A6C4},TpmPreAttestationHealthCheck - C:\WINDOWS\system32\TpmTasks.dll (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - C:\WINDOWS\system32\MusNotification.exe Display (file missing) O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - C:\WINDOWS\system32\UIEOrchestrator.exe /SendHeartbeat (sign: 'Microsoft') O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (file missing) O22 - Tasks: \Microsoft\Windows\UpdateOrchestrator\UUS Failover Task - C:\WINDOWS\System32\MLEngineStub.exe HandleUusFailoverEvaluationSignalFromWnf (sign: 'Microsoft') O22 - Tasks: \TVT\TVSUUpdateTask - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (sign: 'Lenovo') O22 - Tasks: \TVT\TVSUUpdateTask_UserLogOn - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask (sign: 'Lenovo') O22 - Tasks: Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (sign: 'Adobe Systems Incorporated') O22 - Tasks: AdobeGCInvoker-1.0 - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe -mode=scheduled (file missing) O22 - Tasks: BlueStacksHelper_nxt - C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe -sr (sign: 'Bluestack Systems, Inc') O22 - Tasks: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe (file missing) O22 - Tasks: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0) (sign: 'Piriform Software Ltd') O22 - Tasks: EPSON L3150 Series Update {F3C90910-1A01-485C-8C7F-C4E79D09B3AC} - C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSUNE.EXE /EXE:"{F3C90910-1A01-485C-8C7F-C4E79D09B3AC}" /F:"Update" (sign: 'SEIKO EPSON CORPORATION') O22 - Tasks: LenovoUtility Startup - C:\Windows\explorer.exe lenovo-utility:// (sign: 'Microsoft') O22 - Tasks: NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log (sign: 'NVIDIA Corporation') O22 - Tasks: NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log (sign: 'NVIDIA Corporation') O22 - Tasks: NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (sign: 'NVIDIA Corporation') O22 - Tasks: NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler (sign: 'NVIDIA Corporation') O22 - Tasks: NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (sign: 'NVIDIA Corporation') O22 - Tasks: NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (sign: 'NVIDIA Corporation') O22 - Tasks: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1004 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1014 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks: OneDrive Startup Task-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\25.065.0406.0002\OneDriveLauncher.exe /startInstances (sign: 'Microsoft') O22 - Tasks: OneDrive Startup Task-S-1-5-21-3363675937-2214997215-1950016975-1014 - C:\Users\İdil ve Can\AppData\Local\Microsoft\OneDrive\25.070.0413.0001\OneDriveLauncher.exe /startInstances (sign: 'Microsoft') O22 - Tasks: Opera scheduled Autoupdate 1652624065 - C:\Users\tolga\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (sign: 'Opera Norway AS') O22 - Tasks: update-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (sign: 'OOO Lightshot') O22 - Tasks: update-sys - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (sign: 'OOO Lightshot') O22 - Tasks: ZoomUpdateTaskUser-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Roaming\Zoom\bin\Zoom.exe --action=UpdateSchedule (sign: 'Zoom Video Communications, Inc.') O22 - Tasks_Migrated: (disabled) \Agent Activation Runtime\S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Agent Activation Runtime\S-1-5-21-3363675937-2214997215-1950016975-1004 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Office\Office Apps Prewarm - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Office\Office Apps Prewarm Recurring - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe /prewarm (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical - {613FBA38-A3DF-4AB8-9674-5604984A299A},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical - {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting - {D759C938-B375-41CB-A2A2-E6D866A767F4} - C:\Windows\System32\fcon.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Management\Autopilot\DetectHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},DetectHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Management\Autopilot\RemediateHardwareChange - {62B2DD2C-F129-42EE-BF59-55D3FD21C215},RemediateHardwareChange - C:\Windows\System32\Autopilot.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (sign: 'Microsoft') O22 - Tasks_Migrated: (disabled) \Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState - {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} - C:\Windows\System32\Windows.UI.Immersive.dll (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Lenovo\Vantage\Schedule\DailyTelemetryTransmission - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe DailyTelemetryTransmission (file missing) O22 - Tasks_Migrated: (telemetry) \Lenovo\Vantage\Schedule\VantageTelemetryAddinTask - C:\Program Files (x86)\Lenovo\VantageService\3.6.15.0\ScheduleEventAction.exe VantageTelemetryAddinTask (file missing) O22 - Tasks_Migrated: (telemetry) \Microsoft\Office\Office Performance Monitor - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Office\Office Subscription Maintenance - C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:aemarebackup.dll -f:BackupMareData (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\MareBackup - C:\WINDOWS\system32\compattelrunner.exe -m:appraiser.dll -f:DoScheduledTelemetryRun (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\PcaWallpaperAppDetect - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaWallpaperAppDetect (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) \Microsoft\Windows\Application Experience\SdbinstMergeDbTask - C:\WINDOWS\system32\sdbinst.exe -mm (sign: 'Microsoft') O22 - Tasks_Migrated: (telemetry) NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: (telemetry) NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: (telemetry) NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: (telemetry) NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: \GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{0BA3AD75-C634-4743-9DAD-6692585FFC7F} - C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe --wake --system (file missing) O22 - Tasks_Migrated: \Lenovo\ImController\Lenovo iM Controller Monitor - C:\WINDOWS\system32\ImController.InfInstaller.exe -checkremoval (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance - C:\WINDOWS\system32\sc.exe START ImControllerService (sign: 'Microsoft') O22 - Tasks_Migrated: \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask - C:\WINDOWS\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 (sign: 'Microsoft') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\01dc48f0-41b4-49a7-8276-f845065f53d4 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 01dc48f0-41b4-49a7-8276-f845065f53d4 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\14809bad-d6de-44c9-b36c-a8479c4b2269 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 14809bad-d6de-44c9-b36c-a8479c4b2269 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\63c62814-bddb-4355-b780-ada8e6932436 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 63c62814-bddb-4355-b780-ada8e6932436 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\75192703-c7d0-467f-b472-3c8520041be2 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 75192703-c7d0-467f-b472-3c8520041be2 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\76d6de4a-a9f9-4b30-9069-d26a87e29781 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger 76d6de4a-a9f9-4b30-9069-d26a87e29781 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\a53d83cb-159e-4add-aaf4-f64a2ab445a3 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger a53d83cb-159e-4add-aaf4-f64a2ab445a3 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\ImController\TimeBasedEvents\e5a3f0c4-ea98-41b2-953b-f31bee7c1df3 - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe /timebasedeventtrigger e5a3f0c4-ea98-41b2-953b-f31bee7c1df3 (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\Lenovo Service Bridge\S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe (sign: 'Lenovo (Beijing) Limited') O22 - Tasks_Migrated: \Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance - C:\WINDOWS\system32\sc.exe start LenovoVantageService (sign: 'Microsoft') O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe BatteryGaugeAddinDailyScheduleTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\GenericMessagingAddin - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe GenericMessagingAddin (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe HeartbeatAddinDailyScheduleTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe IdeaNotebookAddinDailyEvent (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe Lenovo.Vantage.SmartPerformance.MonthlyReport (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe LenovoCompanionAppAddinDailyScheduleTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe LenovoSystemUpdateAddin_WeeklyTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\NotificationCenter - C:\Program Files (x86)\Lenovo\VantageService\4.0.49.0\ScheduleEventAction.exe NotificationCenter (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe SettingsWidgetAddinDailyScheduleTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe SmartPerformance.ExpireReminder (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask - C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.190\x64\IdleScheduleEventAction.exe (sign: 'Lenovo') O22 - Tasks_Migrated: \Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask - C:\Program Files (x86)\Lenovo\VantageService\4.2.85.0\ScheduleEventAction.exe VantageCoreAddinWeekScheduleTask (file missing) O22 - Tasks_Migrated: \Lenovo\Vantage\StartupFixPlan - C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\uninstall.exe /repair (file missing) O22 - Tasks_Migrated: \Microsoft\Office\Office Serviceability Manager - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe /checkin (sign: 'Microsoft') O22 - Tasks_Migrated: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 - {84F0FAE1-C27B-4F6F-807B-28CF6F96287D},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks_Migrated: \Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 - {429BC048-379E-45E0-80E4-EB1977941B5C},/RuntimeWide - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll (sign: 'Microsoft') O22 - Tasks_Migrated: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs - {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} - C:\Windows\System32\fcon.dll (sign: 'Microsoft') O22 - Tasks_Migrated: \Microsoft\Windows\Location\Notifications - C:\WINDOWS\System32\LocationNotificationWindows.exe (file missing) O22 - Tasks_Migrated: \Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - C:\WINDOWS\System32\MbaeParserTask.exe (file missing) O22 - Tasks_Migrated: \Microsoft\Windows\NetTrace\GatherNetworkInfo - C:\WINDOWS\system32\gatherNetworkInfo.vbs (file missing) O22 - Tasks_Migrated: \Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask - {8702A841-D5CA-47C3-812D-9CEDC304C200} - (no file) O22 - Tasks_Migrated: \TVT\TVSUUpdateTask - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (sign: 'Lenovo') O22 - Tasks_Migrated: \TVT\TVSUUpdateTask_UserLogOn - C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask (sign: 'Lenovo') O22 - Tasks_Migrated: Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (sign: 'Adobe Systems Incorporated') O22 - Tasks_Migrated: AdobeGCInvoker-1.0 - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe -mode=scheduled (file missing) O22 - Tasks_Migrated: BlueStacksHelper_nxt - C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe -sr (sign: 'Bluestack Systems, Inc') O22 - Tasks_Migrated: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe (file missing) O22 - Tasks_Migrated: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0) (sign: 'Piriform Software Ltd') O22 - Tasks_Migrated: EPSON L3150 Series Update {F3C90910-1A01-485C-8C7F-C4E79D09B3AC} - C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSUNE.EXE /EXE:"{F3C90910-1A01-485C-8C7F-C4E79D09B3AC}" /F:"Update" (sign: 'SEIKO EPSON CORPORATION') O22 - Tasks_Migrated: LenovoUtility Startup - C:\Windows\explorer.exe lenovo-utility:// (sign: 'Microsoft') O22 - Tasks_Migrated: NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe (sign: 'NVIDIA Corporation') O22 - Tasks_Migrated: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks_Migrated: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1004 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks_Migrated: OneDrive Reporting Task-S-1-5-21-3363675937-2214997215-1950016975-1014 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (sign: 'Microsoft') O22 - Tasks_Migrated: OneDrive Startup Task-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Local\Microsoft\OneDrive\25.015.0126.0002\OneDriveLauncher.exe /startInstances (file missing) O22 - Tasks_Migrated: OneDrive Startup Task-S-1-5-21-3363675937-2214997215-1950016975-1014 - C:\Users\İdil ve Can\AppData\Local\Microsoft\OneDrive\25.010.0119.0002\OneDriveLauncher.exe /startInstances (file missing) O22 - Tasks_Migrated: Opera scheduled Autoupdate 1652624065 - C:\Users\tolga\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (sign: 'Opera Norway AS') O22 - Tasks_Migrated: update-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (sign: 'OOO Lightshot') O22 - Tasks_Migrated: update-sys - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (sign: 'OOO Lightshot') O22 - Tasks_Migrated: ZoomUpdateTaskUser-S-1-5-21-3363675937-2214997215-1950016975-1001 - C:\Users\tolga\AppData\Roaming\Zoom\bin\Zoom.exe --action=UpdateSchedule (sign: 'Zoom Video Communications, Inc.') O23 - Service R2: CxAudioSvc Service - (CxAudioSvc) - C:\WINDOWS\CxSvc\CxAudioSvc.exe (sign: 'Synaptics Incorporated') O23 - Service R2: CxAudMsg Service - (CxAudMsg) - C:\WINDOWS\System32\CxAudMsg64.exe (sign: 'Synaptics Incorporated') O23 - Service R2: Dolby DAX API Service - (DolbyDAXAPI) - C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe (sign: 'Dolby Laboratories, Inc.') O23 - Service R2: Epson Data Collection Agent - (DCAgent) - C:\Program Files\EPSON\Epson Data Collection Agent\DCAgent.exe (sign: 'SEIKO EPSON CORPORATION') O23 - Service R2: Epson Scanner Service - (EpsonScanSvc) - C:\Windows\system32\EscSvc64.exe (sign: 'SEIKO EPSON CORPORATION') O23 - Service R2: Intel(R) Audio Service - (IntelAudioService) - C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (sign: 'Smart Sound Technology') O23 - Service R2: Intel(R) Content Protection HDCP Service - (cplspcon) - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_440392e76b44e849\IntelCpHDCPSvc.exe (sign: 'Intel(R) pGFX 2020') O23 - Service R2: Intel(R) Dynamic Application Loader Host Interface Service - (jhi_service) - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (sign: 'Intel Corporation') O23 - Service R2: Intel(R) Dynamic Tuning service - (esifsvc) - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_7ecc5be6ca7b3b0d\esif_uf.exe (sign: 'Intel Corporation') O23 - Service R2: Intel(R) Graphics Command Center Service - (igccservice) - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_577475639d32bfed\OneApp.IGCC.WinService.exe (sign: 'Intel(R) pGFX 2020') O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService2.0.0.0) - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d70b02a5a438df3c\igfxCUIService.exe (sign: 'Intel(R) pGFX 2020') O23 - Service R2: Intel(R) Management and Security Application Local Management Service - (LMS) - C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (sign: 'Intel Corporation') O23 - Service R2: Intel(R) Storage Middleware Service - (RstMwService) - C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_e3f96af62737a898\RstMwService.exe (sign: 'Intel(R) Rapid Storage Technology') O23 - Service R2: Intel® SGX AESM - (AESMService) - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_d372a4ea3b959b1c\aesm_service.exe (sign: 'Intel Corporation') O23 - Service R2: Lenovo Notebook ITS Service - (LITSSVC) - C:\WINDOWS\System32\LNBITSSvc.exe (sign: 'Lenovo') O23 - Service R2: LenovoVantageService - C:\Program Files (x86)\Lenovo\VantageService\\4.3.21.0\LenovoVantageService.exe (sign: 'Lenovo') O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe (sign: 'Malwarebytes Corporation') O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_17a985f102ce7ec9\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_17a985f102ce7ec9\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem (sign: 'NVIDIA Corporation') O23 - Service R2: Session Detection - (SessionSvc) - C:\WINDOWS\System32\drivers\SessionService.exe (sign: 'Shenzhen Goodix Technology Co., Ltd.') O23 - Service R2: SMART Helper Service - (SMARTHelperService) - C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTHelperService.exe (sign: 'SMART Technologies ULC') O23 - Service R2: System Interface Foundation Service - (ImControllerService) - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (sign: 'Lenovo') O23 - Service R2: TechSmith Uploader Service - C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe /service (sign: 'TechSmith Corporation') O23 - Service R2: Wacom ISD Service - (WTabletServiceISD) - C:\WINDOWS\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_4690d097c38be4a9\WTabletServiceISD.exe (sign: 'Wacom Technology Corporation') O23 - Service R2: Wacom Professional Service - (WTabletServicePro) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (sign: 'Wacom Co., Ltd.') O23 - Service R2: YMC - C:\WINDOWS\System32\YMC.exe (sign: 'Lenovo') O23 - Service R3: Intel(R) Content Protection HECI Service - (cphs) - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_440392e76b44e849\IntelCpHeciSvc.exe (sign: 'Intel(R) pGFX 2020') O23 - Service S2: CxUIUSvc Service - (CxUIUSvc) - C:\WINDOWS\System32\CxUIUSvc64.exe (sign: 'Synaptics Incorporated') O23 - Service S2: Google Güncelleme Hizmeti (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc (sign: 'Google LLC') O23 - Service S2: Google Güncelleyici Dahili Hizmeti (GoogleUpdaterInternalService138.0.7156.0) - (GoogleUpdaterInternalService138.0.7156.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7156.0\updater.exe --system --windows-service --service=update-internal (sign: 'Google LLC') O23 - Service S2: Google Güncelleyici Hizmeti (GoogleUpdaterService138.0.7156.0) - (GoogleUpdaterService138.0.7156.0) - C:\Program Files (x86)\Google\GoogleUpdater\138.0.7156.0\updater.exe --system --windows-service --service=update (sign: 'Google LLC') O23 - Service S2: Intel(R) TPM Provisioning Service - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe (sign: 'Intel Corporation') O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (sign: 'Adobe Systems Incorporated') O23 - Service S3: FlexNet Licensing Service - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe (sign: 'Flexera Software LLC') O23 - Service S3: Google Chrome Elevation Service (GoogleChromeElevationService) - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\136.0.7103.93\elevation_service.exe (sign: 'Google LLC') O23 - Service S3: Google Güncelleme Hizmeti (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc (sign: 'Google LLC') O23 - Service S3: Intel(R) Optane(TM) Memory Service - (iaStorAfsService) - C:\WINDOWS\System32\iaStorAfsService.exe (sign: 'Intel(R) Rapid Storage Technology') O23 - Service S3: LibreOffice Maintenance Service - (LibreOfficeMaintenance) - C:\Program Files\LibreOffice\program\update_service.exe (sign: 'The Document Foundation') O23 - Service S3: Microsoft Defender Core Service - (MDCoreSvc) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe (sign: 'Microsoft') O23 - Service S3: NVIDIA LocalSystem Container - (NvContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" (sign: 'NVIDIA Corporation') O23 - Service S3: NVIDIA NetworkService Container - (NvContainerNetworkService) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" (sign: 'NVIDIA Corporation') O23 - Service S3: System Update - (SUService) - C:\Program Files (x86)\Lenovo\System Update\SUService.exe (sign: 'Lenovo') O23 - Driver R0: Intel(R) Chipset SATA/PCIe RST Premium Controller - (iaStorAC) - C:\WINDOWS\System32\drivers\iaStorAC.sys (sign: 'Intel(R) Rapid Storage Technology') O23 - Driver R1: Malwarebytes Anti-Exploit - (ESProtectionDriver) - C:\WINDOWS\system32\drivers\mbae64.sys (sign: 'Malwarebytes Corporation') O23 - Driver R2: BlueStacks Hypervisor_nxt - (BlueStacksDrv_nxt) - C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys (sign: 'Bluestack Systems, Inc') O23 - Driver R2: googledrivefs31626 - C:\Program Files\Google\Drive File Stream\Drivers\31626\googledrivefs31626.sys (sign: 'Microsoft' - Google, Inc.) O23 - Driver R2: IDMWFP - C:\WINDOWS\system32\DRIVERS\idmwfp.sys (sign: 'Tonec Inc.') O23 - Driver R2: MBAMChameleon - C:\WINDOWS\System32\Drivers\MbamChameleon.sys (sign: 'Malwarebytes Corporation') O23 - Driver R3: "Intel(R) Display Audio" ; {PlaceHolder="Display Audio","High Definition Audio"} - (IntcDAud) - C:\WINDOWS\System32\DriverStore\FileRepository\intcdaud.inf_amd64_d148a0ef920e06c0\IntcDAud.sys (sign: 'Intel(R) pGFX 2020') O23 - Driver R3: "Intel(R) Smart Sound Technology (Intel(R) SST) Bus" ; {PlaceHolder="UAA","High Definition Audio"} - (IntcAudioBus) - C:\WINDOWS\System32\drivers\IntcAudioBus.sys (sign: 'Smart Sound Technology') O23 - Driver R3: "Intel(R) Smart Sound Technology (Intel(R) SST) OED" ; {PlaceHolder="UAA","High Definition Audio"} - (IntcOED) - C:\WINDOWS\System32\drivers\IntcOED.sys (sign: 'Smart Sound Technology') O23 - Driver R3: ___ Windows 10 64 Bit için Intel(R) Wireless Bağdaştırıcı Sürücüsü - (Netwtw10) - C:\WINDOWS\System32\drivers\Netwtw10.sys (+safe mode) (sign: 'Intel Wireless Driver') O23 - Driver R3: dptf_acpi - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_4a6ac5de2a7fb025\dptf_acpi.sys (+safe mode) (sign: 'Intel Corporation') O23 - Driver R3: dptf_cpu - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_7ecc5be6ca7b3b0d\dptf_cpu.sys (+safe mode) (sign: 'Intel Corporation') O23 - Driver R3: esif_lf - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_7ecc5be6ca7b3b0d\esif_lf.sys (+safe mode) (sign: 'Intel Corporation') O23 - Driver R3: HID-Compliant Mouse - (hanvonugeemfilter) - C:\WINDOWS\System32\drivers\hanvonugeemfilter.sys (not signed - Windows (R) Win 7 DDK provider - 56D0B1F479A1E9A00D49A2283150456424ACFC14) O23 - Driver R3: HID-compliant mouse - (SMARTMouseFilterx64) - C:\WINDOWS\System32\drivers\SMARTMouseFilterx64.sys (sign: 'Microsoft' - SMART Technologies) O23 - Driver R3: igfx - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_440392e76b44e849\igdkmd64.sys (sign: 'Intel(R) pGFX 2020') O23 - Driver R3: Intel(R) Management Engine Interface - (MEIx64) - C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_1308ad4bd1ad0f9f\x64\TeeDriverW10x64.sys (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver R3: Intel(R) Serial IO GPIO Driver v2 - (iaLPSS2_GPIO2_CNL) - C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_cnl.inf_amd64_ae6bd9b68f8b619e\iaLPSS2_GPIO2_CNL.sys (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver R3: Intel(R) Serial IO I2C Driver v2 - (iaLPSS2_I2C_CNL) - C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_cnl.inf_amd64_1b3fc772a4df3ab8\iaLPSS2_I2C_CNL.sys (+safe mode) (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver R3: Intel(R) Watchdog Timer Driver (Intel(R) WDT) - (ICCWDT) - C:\WINDOWS\System32\drivers\ICCWDT.sys (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver R3: Intel(R) Wireless Bluetooth(R) - (ibtusb) - C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_6b40b9e7d046126e\ibtusb.sys (+safe mode) (sign: 'Intel(R) Wireless Connectivity Solutions') O23 - Driver R3: Lenovo Virtual Power Controller Driver - (ACPIVPC) - C:\WINDOWS\System32\drivers\AcpiVpc.sys (sign: 'Lenovo') O23 - Driver R3: MBAMFarflt - C:\WINDOWS\system32\DRIVERS\farflt.sys (sign: 'Malwarebytes Corporation') O23 - Driver R3: MBAMProtection - C:\WINDOWS\system32\DRIVERS\mbam.sys (sign: 'Malwarebytes Corporation') O23 - Driver R3: MBAMSwissArmy - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys (sign: 'Malwarebytes Corporation') O23 - Driver R3: MBAMWebProtection - C:\WINDOWS\system32\DRIVERS\mwac.sys (sign: 'Malwarebytes Corporation') O23 - Driver R3: nvlddmkm - C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_17a985f102ce7ec9\nvlddmkm.sys (sign: 'NVIDIA Corporation') O23 - Driver R3: NVVHCI Enumerator Service - (nvvhci) - C:\WINDOWS\System32\drivers\nvvhci.sys (sign: 'NVIDIA Corporation') O23 - Driver R3: Realtek PCIE Card Reader - PER - (RTSPER) - C:\WINDOWS\System32\drivers\RtsPer.sys (sign: 'Realtek Semiconductor Corp.') O23 - Driver R3: Realtek USB FE/1GbE/2.5GbE/5GbE/10GbE NIC Family KMDF NetAdapterCx 2.2 64-bit Driver - (rtucx22x64) - C:\WINDOWS\System32\DriverStore\FileRepository\rtucx22x64.inf_amd64_a6eb3abe5befec7d\rtucx22x64.sys (sign: 'Realtek Semiconductor Corp.') O23 - Driver R3: SMART HID Device - (SMARTVHidMiniVistaAmd64) - C:\WINDOWS\System32\drivers\SMARTVHidMiniVistaAmd64.sys (sign: 'Microsoft' - SMART Technologies) O23 - Driver R3: Synaptics UAA Function Driver for High Definition Audio Service - (CnxtHdAudService) - C:\WINDOWS\system32\drivers\CHDRT64ISST.sys (sign: 'Synaptics Incorporated') O23 - Driver R3: Virtual Tablet Service - (vmulti) - C:\WINDOWS\System32\drivers\vmulti.sys (not signed - no company - 4A5C5FC5DA4857BBE0A2E9FE3ED41516B85CCBA5) O23 - Driver R3: Wacom HIDRouter Service - (WacHIDRouterISD) - C:\WINDOWS\System32\drivers\WacHIDRouterISDU.sys (sign: 'Wacom Technology Corporation') O23 - Driver R3: XP-Pen Tablet - (XPPenTablet) - C:\WINDOWS\System32\drivers\XPPenTablet.sys (not signed - Windows (R) Win 7 DDK provider - 7ABADAA5A94CB9CE03BECC1F5217F33B6B8BE786) O23 - Driver S3: ___ Windows 10 64 Bit için Intel(R) Wireless Bağdaştırıcı Sürücüsü - (Netwtw08) - C:\WINDOWS\System32\drivers\Netwtw08.sys (+safe mode) (sign: 'Intel(R) Wireless Connectivity Solutions') O23 - Driver S3: CyberLink YouCam 9 Service - (clwvd9) - C:\WINDOWS\System32\drivers\clwvd9.sys (sign: 'CyberLink Corp.') O23 - Driver S3: iaStorAfs - C:\WINDOWS\System32\drivers\iaStorAfs.sys (sign: 'Intel(R) Rapid Storage Technology') O23 - Driver S3: Intel(R) Serial IO GPIO Controller Driver - (iaLPSSi_GPIO) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys (sign: 'Intel Corporation - Client Components Group') O23 - Driver S3: Intel(R) Serial IO GPIO Driver v2 - (iaLPSS2_GPIO2) - C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver S3: Intel(R) Serial IO I2C Driver v2 - (iaLPSS2_I2C) - C:\WINDOWS\System32\drivers\iaLPSS2_I2C.sys (+safe mode) (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver S3: Intel(R) Serial IO SPI Driver v2 - (iaLPSS2_SPI) - C:\WINDOWS\System32\drivers\iaLPSS2_SPI.sys (+safe mode) (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver S3: Intel(R) Serial IO UART Driver v2 - (iaLPSS2_UART2) - C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys (sign: 'Intel(R) Embedded Subsystems and IP Blocks Group') O23 - Driver S3: ManyCam Virtual Microphone - (mcaudrv_simple) - C:\WINDOWS\system32\drivers\mcaudrv_x64.sys (sign: 'ManyCam') O23 - Driver S3: ManyCam Virtual Webcam - (ManyCam) - C:\WINDOWS\system32\DRIVERS\mcvidrv.sys (sign: 'ManyCam (VISICOM MÉDIA INC.)') O23 - Driver S3: NVIDIA KMS - (NvStreamKms) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys (sign: 'NVIDIA Corporation') O23 - Driver S3: SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) - (ssudmdm) - C:\WINDOWS\system32\DRIVERS\ssudmdm.sys (sign: 'Samsung Electronics Co., Ltd.') O23 - Driver S3: SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) - (dg_ssudbus) - C:\WINDOWS\system32\DRIVERS\ssudbus2.sys (+safe mode) (sign: 'Samsung Electronics Co., Ltd.') O23 - Driver S3: Wacom Hid Router Pro - (WacHidRouterPro) - C:\WINDOWS\System32\drivers\wachidrouter.sys (sign: 'WDKTestCert dant,132134237881206156', but untrusted root: 'WDKTestCert dant,132134237881206156' with fingerprint: 77CDABFBD391761970FA6124FF7C57773E83F4BB) O23 - Driver S3: Wacom Router Filter Driver - (wacomrouterfilter) - C:\WINDOWS\System32\drivers\wacomrouterfilter.sys (sign: 'WDKTestCert dant,132134237881206156', but untrusted root: 'WDKTestCert dant,132134237881206156' with fingerprint: 77CDABFBD391761970FA6124FF7C57773E83F4BB) O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'Netwtw08' O23 - Dependency: Microsoft Service Group 'NDIS' contains unknown service: 'Netwtw10' O26 - Office Addin: HKCU\..\SMARTInk-Excel-All - (SMARTInk-Excel-All) -> C:\Users\tolga\AppData\Roaming\SMART Technologies\SMART Ink\SMARTInk-Excel-All.vsto (not signed - no company - D136593AFCDB35D52C49FA5CA52FD753F7A9EF07) O26 - Office Addin: HKCU\..\SMARTInk-PowerPoint-All - (SMARTInk-PowerPoint-All) -> C:\Users\tolga\AppData\Roaming\SMART Technologies\SMART Ink\SMARTInk-PowerPoint-All.vsto (not signed - no company - 0106B3131E7C49673438E7637983527A8BF2FE7E) O26 - Office Addin: HKCU\..\SMARTInk-Word-All - (SMARTInk-Word-All) -> C:\Users\tolga\AppData\Roaming\SMART Technologies\SMART Ink\SMARTInk-Word-All.vsto (not signed - no company - 18A70DC775B84C3C4C9E2CA32DB9D9C9D92F0969) O26 - Office Addin: HKLM\..\AdobeAcroOutlook.SendAsLink - (Adobe Document Cloud for Microsoft Outlook - Acrobat) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Mail\Outlook\x64\SendAsLinkAddin.dll (sign: 'Adobe Inc.') O26 - Office Addin: HKLM\..\CamtasiaOfficeAddin.Connect - (Camtasia Add-in) -> C:\Program Files\TechSmith\Camtasia 2019\CamtasiaOfficeAddin.dll (sign: 'TechSmith Corporation') O26 - Office Addin: HKLM\..\MicrosoftDataStreamerforExcel - (Microsoft Data Streamer for Excel) -> C:\Program Files\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\MicrosoftDataStreamerforExcel.vsto (not signed - no company - A9DA61511D2073E5B80ED742394B35C61D96DE3A) O26 - Office Addin: HKLM\..\NativeShim - (Inquire) -> (no file) O26 - Office Addin: HKLM\..\PDFMaker.OfficeAddin - (Acrobat PDFMaker Office COM Addin) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Office\x64\PDFMOfficeAddin.dll (sign: 'Adobe Inc.') O26 - Office Addin: HKLM\..\PDFMOutlook.PDFMOutlook - (Acrobat PDFMaker Office COM Addin) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Mail\Outlook\x64\PDFMOutlookAddin.dll (sign: 'Adobe Inc.') O26-32 - Office Addin: HKLM\..\AdobeAcroOutlook.SendAsLink - (Adobe Document Cloud for Microsoft Outlook - Acrobat) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Mail\Outlook\SendAsLinkAddin.dll (sign: 'Adobe Inc.') O26-32 - Office Addin: HKLM\..\PDFMaker.OfficeAddin - (Acrobat PDFMaker Office COM Addin) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Office\PDFMOfficeAddin.dll (sign: 'Adobe Inc.') O26-32 - Office Addin: HKLM\..\PDFMOutlook.PDFMOutlook - (Acrobat PDFMaker Office COM Addin) -> C:\Program Files (x86)\Adobe\Acrobat DC\PDFMaker\Mail\Outlook\PDFMOutlookAddin.dll (sign: 'Adobe Inc.') O27 - Account: (Bad profile) Folder is not referenced by any of user SIDs: C:\Users\defaultuser100000 -- End of file - Time spent: 41,1 sec. - 145796 bytes, CRC32: FFFFFFFF. Sign: ﱯ