+ Başlığa Yanıt Yaz
12 sonuçtan 1 - 5 arası sonuçlar
Başlık: Bilgisayarım Açılmıyor!
-
18.03.2010 20:58 #1
- Katılım Tarihi
- 2009
- Mesaj
- 143
Bilgisayarım Açılmıyor!
http://www.pcnet.com.tr/forum/window...yavaslama.html
"Bir süredir sadece firefox da yavaşlama vardı ama çok yüksek derecedeydi. Yani açılması bazen kısa bazen 2 dakika alıyordu. Buna bir türlü çözüm getirememiştim. Sürekli donmalar oluyordu. Yeni sekme açsam bile beklettiği zamanlar oldu. Dün akşam son bir kez dondu hiçbir şekilde kapatamadım. En son yol bilgisayara restart attım. Bu sefer bilgisayarı açmamla neye dokunsam imleç kum saatine dönüyor ve düzelmiyor. Ama sadece kendi oturumumda var bu. Dün akşam bakalım kaç saat sürecek diye bıraktım sabah kalktım ve hâlâ öyleydi. Saat bile bir süre sonra donmuştu. Oturumu açtıktan sonra birşeyleri açmadan durursam birşey olmuyor sadece birşey açtığımda donuyor. Başlangıçta çalışan programlar da yeterince az. Sorunu nasıl çözebilrim? "
demiştim. Diğer oturumlarda gitti. Sistem geri yüklemek istedim bütün geri yükleme noktalarım silinmişti. Sadddece 18 mart sabahı duruyor. Ve artık bilgisayarım normal yolla açılmıyor. Güvenli modla açma penceresi geliyor güvenli modda açabiliyorum ama yine yapabildiğim birşey yok. İnternete felan bağlanmıyor orada. Combofix, Malwarebytes' ve HiJackThis raporları kaydettim onları paylaşacağım. Tek yapabildiğim yardım beklemek. En az 4-5 tane programla gelişmiş tarama yaptım 1 tane bile etkilenmiş öğe yok ayrıca.
-
18.03.2010 21:03 #2
- Katılım Tarihi
- 2009
- Mesaj
- 143
ComboFix 09-10-30.01 - xp1 18.03.2010 19:28.2.2 - NTFSx86 MINIMAL
Microsoft Windows XP Professional 5.1.2600.2.1254.90.1055.18.2047.1424 [GMT 2:00]
Running from: c:\documents and settings\xp1\Desktop\ComboFix.exe
AV: Outpost Security Suite Pro *On-access scanning enabled* (Updated) {8A20CA2A-9E02-4A64-923B-0A38208EB7FD}
FW: Outpost Security Suite Pro *enabled* {8A20CA2A-9E02-4A64-923B-0A38208EB7FD}
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
- REDUCED FUNCTIONALITY MODE -
.
((((((((((((((((((((((((( Files Created from 2010-02-18 to 2010-03-18 )))))))))))))))))))))))))))))))
.
2010-03-18 15:59 . 2010-03-18 15:59 -------- d-----w- c:\windows\system32\wbem\Repository
2010-03-18 04:37 . 2010-03-18 04:37 -------- d-----w- c:\documents and settings\ELiF\Application Data\URSoft
2010-03-18 04:26 . 2010-03-18 04:26 -------- d-----w- c:\documents and settings\ELiF\Application Data\IObit
2010-03-16 18:15 . 2010-03-16 18:15 -------- d-----w- c:\program files\TTNET
2010-03-16 18:14 . 2010-03-16 18:14 -------- d-----w- c:\program files\Microsoft Silverlight
2010-03-09 16:23 . 2010-03-09 16:23 -------- d-----w- c:\program files\2K Games
2010-03-06 08:56 . 2010-03-06 08:56 -------- d-----w- c:\program files\Uniblue
2010-03-01 16:01 . 1998-06-17 22:00 89360 ----a-w- c:\windows\system32\VB5DB.DLL
2010-03-01 16:00 . 2010-03-01 16:00 -------- d-----w- c:\program files\Option Matrix
2010-02-28 06:36 . 2010-02-28 07:07 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-02-28 02:17 . 2010-02-28 07:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
2010-02-28 02:17 . 2010-02-28 02:17 -------- d-----w- c:\documents and settings\All Users\Application Data\NortonInstaller
2010-02-27 22:31 . 2010-02-27 22:31 -------- d-----w- c:\documents and settings\All Users\Application Data\McAfee
2010-02-27 22:30 . 2010-02-27 22:35 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2010-02-27 22:30 . 2010-02-27 22:30 -------- d-----w- c:\program files\NOS
2010-02-26 14:20 . 2010-02-26 14:48 -------- d-----w- C:\BDS
2010-02-26 14:01 . 2010-02-26 14:02 -------- d-----w- c:\program files\HashTab Shell Extension
2010-02-17 15:13 . 2010-02-24 18:17 -------- d-----w- c:\documents and settings\xp1\Application Data\GameRanger
2010-02-17 14:55 . 2010-02-17 14:55 -------- d-----w- c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2010-03-18 04:39 . 2008-08-08 12:01 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2010-03-17 16:16 . 2009-06-22 10:55 -------- d-----w- c:\documents and settings\xp1\Application Data\BitTorrent
2010-03-16 21:01 . 2008-07-06 15:31 -------- d-----w- c:\documents and settings\xp1\Application Data\Hamachi
2010-03-11 05:50 . 2008-08-04 20:58 -------- d-----w- c:\program files\sXe Injected
2010-03-08 15:31 . 2009-10-30 17:55 -------- d-----w- c:\program files\Hamachi
2010-03-08 15:31 . 2008-07-06 15:31 25280 ----a-w- c:\windows\system32\drivers\hamachi.sys
2010-03-01 16:00 . 2008-06-03 21:03 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-28 02:17 . 2009-06-22 15:46 -------- d-----w- c:\documents and settings\All Users\Application Data\Symantec
2010-02-17 14:55 . 2009-05-16 10:38 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-15 20:56 . 2010-02-15 20:56 -------- d-----w- c:\program files\YouTube Downloader
2010-02-15 16:30 . 2009-12-11 16:56 -------- d-----w- c:\program files\Common Files\BioWare
2010-02-14 09:38 . 2010-02-14 09:38 -------- d-----w- c:\documents and settings\All Users\Application Data\{66E2F539-12B6-4870-A500-7689CDE75C5E}
2010-02-14 09:05 . 2010-02-13 08:16 -------- d-----w- c:\program files\Common Files\DVDVideoSoft
2010-02-13 10:47 . 2010-02-13 10:47 -------- d-----w- c:\documents and settings\All Users\Application Data\Electronic Arts
2010-02-12 14:32 . 2010-02-12 14:32 -------- d-----w- c:\program files\directx
2010-02-12 14:15 . 2010-02-12 14:15 -------- d-----w- c:\program files\Empire Interactive
2010-02-12 14:15 . 2008-06-03 20:59 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-11 14:11 . 2009-10-17 22:05 3532 ----a-w- C:\drmHeader.bin
2010-01-20 08:22 . 2010-01-16 17:51 -------- d-----w- c:\program files\BSPPro
2010-01-19 22:51 . 2010-01-19 22:36 -------- d-----w- c:\program files\JDownloader
2010-01-18 16:16 . 2009-06-26 12:48 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-01-18 16:16 . 2010-01-18 16:16 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2010-01-18 16:16 . 2010-01-18 16:16 -------- d-----w- c:\program files\Common Files\Apple
2010-01-18 16:15 . 2010-01-18 16:15 -------- d-----w- c:\program files\Apple Software Update
2010-01-18 16:15 . 2010-01-18 16:15 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
2010-01-18 11:20 . 2008-06-05 21:41 90272 ----a-w- c:\documents and settings\ELiF\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-01-15 22:45 . 2008-06-03 20:50 90272 ----a-w- c:\documents and settings\xp1\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-01-02 17:36 . 2010-01-02 17:21 4608 ----a-w- c:\windows\cocowawa.dll
2009-09-25 16:41 . 2009-09-25 16:41 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-09-25 16:41 . 2009-09-25 16:41 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
.
------- Sigcheck -------
[7] 2004-08-03 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2004-08-03 . 6A603809F598332DBEDD535BDBCE313E . 359040 . . [5.1.2600.2180] . . c:\windows\system32\drivers\tcpip.sys
[-] 2004-08-04 . 448CD2B8E138E1FB7A14BA99BCA17209 . 101888 . . [5.4.3790.2180] . . c:\windows\system32\wuauclt.exe
[-] 2004-08-04 . 448CD2B8E138E1FB7A14BA99BCA17209 . 101888 . . [5.4.3790.2180] . . c:\windows\system32\dllcache\wuauclt.exe
[-] 2004-08-04 . 1791257BA8AE42AD5113930BB39A3A3A . 3444224 . . [6.00.2900.2180] . . c:\windows\system32\mshtml.dll
[-] 2004-08-04 . 1791257BA8AE42AD5113930BB39A3A3A . 3444224 . . [6.00.2900.2180] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2004-08-04 . 70FC71A4FE022A5FC52C0438F42E6902 . 690176 . . [6.00.2900.2180] . . c:\windows\system32\wininet.dll
[-] 2004-08-04 . 70FC71A4FE022A5FC52C0438F42E6902 . 690176 . . [6.00.2900.2180] . . c:\windows\system32\dllcache\wininet.dll
[-] 2004-08-04 . ED17273F48A47A3021E9BFC673DB81D1 . 974848 . . [6.00.2900.2180] . . c:\windows\explorer.exe
[-] 2004-08-04 . ED17273F48A47A3021E9BFC673DB81D1 . 974848 . . [6.00.2900.2180] . . c:\windows\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-10 13758464]
"OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_ mon.exe" [2009-07-29 1415668]
"OutpostFeedBack"="c:\program files\Agnitum\Outpost Security Suite Pro\feedback.exe" [2009-07-24 436568]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-07-31 149280]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"OrderReminder"="c:\program files\Hewlett-Packard\OrderReminder\OrderReminder.exe" [2006-07-30 98304]
"QuickTime Task"="c:\program files\K-Lite Codec Pack\QuickTime\QTTask.exe" [2009-11-10 417792]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2009-06-10 1657376]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2007-07-05 16380416]
"SkyTel"="SkyTel.EXE" - c:\windows\SkyTel.exe [2007-06-15 1826816]
c:\documents and settings\ELiF\Start Menu\Programlar\BaŸlang‡\
RocketDock.lnk - c:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-3-19 630784]
UberIcon.lnk - c:\windows\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe [2006-5-21 180224]
Y'z Shadow.lnk - c:\windows\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe [2006-5-21 155648]
-
18.03.2010 21:06 #3
- Katılım Tarihi
- 2009
- Mesaj
- 143
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [27.10.2009 10:02 130936]
S1 SandBox;SandBox;c:\windows\system32\drivers\SandBo x.sys [27.10.2009 21:42 714752]
S2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [27.10.2009 21:41 1655640]
S3 afw;Agnitum firewall driver;c:\windows\system32\drivers\afw.sys [27.10.2009 21:41 31128]
S3 afwcore;afwcore;c:\windows\system32\drivers\afwcor e.sys [27.10.2009 21:42 256792]
S3 ASWFilt;ASWFilt;c:\windows\system32\Filt\ASWFilt.d ll [27.10.2009 21:42 33920]
S3 DAUpdaterSvc;Dragon Age: Origins - Content Updater;d:\dragon age\bin_ship\daupdatersvc.service.exe [15.12.2009 22:07 25832]
S3 getPlusHelper;getPlus(R) Helper;c:\windows\System32\svchost.exe -k getPlusHelper [04.08.2004 02:45 14336]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [27.10.2009 10:02 348752]
S3 VBEngNT;VBEngNT;c:\windows\system32\drivers\VBEngN T.sys [27.10.2009 21:42 1176760]
S3 VBFilt;VBFilt;c:\windows\system32\Filt\VBFilt.dll [27.10.2009 21:42 234304]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - CLASSPNP_2
*Deregistered* - CLASSPNP_2
*Deregistered* - mbr
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Contents of the 'Scheduled Tasks' folder
2010-03-12 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.tr/
IE: &Download All with FlashGet - c:\program files\FlashGet\jc_all.htm
IE: &Download with FlashGet - c:\program files\FlashGet\jc_link.htm
IE: Cevir / Translate - c:\windows\system32\IETranslator.htm
IE: Microsoft Excel'e Gö&nder - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Save F&lash with FlashCapture - c:\program files\FlashCapture\fciext.dll/FCIEXT.htm
IE: Send To &Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Sothink SWF Catcher - c:\program files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
TCP: {086993F6-6BA6-487C-887E-8E4EB4F53FBE} = 208.67.222.222,208.67.220.220
FF - ProfilePath - c:\documents and settings\xp1\Application Data\Mozilla\Firefox\Profiles\kzniofrh.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.localstrike.com.ar/?q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.lockerz.com/
FF - prefs.js: keyword.URL - hxxp://search.localstrike.com.ar/?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
FF - plugin: c:\documents and settings\xp1\Application Data\Mozilla\Firefox\Profiles\kzniofrh.default\ext ensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin2.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin3.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin4.dll
FF - plugin: c:\program files\K-Lite Codec Pack\QuickTime\Plugins\npqtplugin5.dll
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabl ed", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
************************************************** ************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-18 19:28
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
************************************************** ************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-1078081533-838170752-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:94,42,a8,27,86,ae,d3,88,48,01,6f,27,5d,9a ,4e,7c,0f,d5,4d,be,07,cf,0c,
d7,d4,d2,ae,7b,19,11,ef,73,c4,0d,a7,32,6d,70,19,ca ,d3,b2,1d,1b,f3,fd,e0,48,\
"??"=hex:35,fc,c6,3d,c9,02,ad,db,37,1f,61,de,0f,33 ,8f,50
[HKEY_USERS\S-1-5-21-1078081533-838170752-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:5d,68,3e,74,e7,ed,ee,b1,81,bb,ce,84 ,76,0c,cd,c3,62,54,9b,6a,1f,
df,0d,32,4b,b5,67,dd,4f,4c,e1,65,4a,b5,87,86,2d,d4 ,a4,d7,19,1a,e2,a8,22,ad,\
"rkeysecu"=hex:49,ad,fc,8b,94,cb,e4,4d,21,ed,65,56 ,a4,c3,ff,74
.
Completion time: 2010-03-18 19:29
ComboFix-quarantined-files.txt 2010-03-18 17:29
ComboFix2.txt 2010-03-18 16:40
ComboFix3.txt 2009-11-01 11:51
Pre-Run: 4.145.500.160 bayt boş
Post-Run: 4.133.113.856 bayt boş
- - End Of File - - 322C7D00638241BF9409633B42C61C98
-
18.03.2010 21:10 #4
- Katılım Tarihi
- 2009
- Mesaj
- 143
HiJackThis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:48:28, on 18.03.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!
Boot mode: Safe mode
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O1 - Hosts: 128.241.218.11 tagged.com
O1 - Hosts: 128.241.218.11 www.tagged.com
O1 - Hosts: 128.241.218.75 tagged.com
O1 - Hosts: 128.241.218.75 www.tagged.com
O1 - Hosts: 128.241.220.73 static-cdn.justin.tv
O1 - Hosts: 128.241.220.73 www.static-cdn.justin.tv
O1 - Hosts: 128.241.220.88 static-cdn.justin.tv
O1 - Hosts: 128.241.220.88 www.static-cdn.justin.tv
O1 - Hosts: 174.132.89.226 haylaz.com
O1 - Hosts: 174.132.89.226 www.haylaz.com
O1 - Hosts: 174.140.128.14 www10.megaupload.com
O1 - Hosts: 174.140.128.15 www11.megaupload.com
O1 - Hosts: 174.140.128.16 www12.megaupload.com
O1 - Hosts: 174.140.128.17 www13.megaupload.com
O1 - Hosts: 174.140.128.18 www14.megaupload.com
O1 - Hosts: 174.140.128.19 www15.megaupload.com
O1 - Hosts: 174.140.128.20 www16.megaupload.com
O1 - Hosts: 174.140.128.21 www17.megaupload.com
O1 - Hosts: 174.140.128.22 www18.megaupload.com
O1 - Hosts: 174.140.128.23 www19.megaupload.com
O1 - Hosts: 174.140.128.24 www20.megaupload.com
O1 - Hosts: 174.140.128.25 www21.megaupload.com
O1 - Hosts: 174.140.128.26 www22.megaupload.com
O1 - Hosts: 174.140.128.27 www23.megaupload.com
O1 - Hosts: 174.140.128.28 www24.megaupload.com
O1 - Hosts: 174.140.128.29 www25.megaupload.com
O1 - Hosts: 174.140.128.30 www26.megaupload.com
O1 - Hosts: 174.140.128.31 www27.megaupload.com
O1 - Hosts: 174.140.128.32 www28.megaupload.com
O1 - Hosts: 174.140.128.33 www29.megaupload.com
O1 - Hosts: 174.140.128.34 www30.megaupload.com
O1 - Hosts: 174.140.128.35 www31.megaupload.com
O1 - Hosts: 174.140.128.36 www32.megaupload.com
O1 - Hosts: 174.140.128.37 www33.megaupload.com
O1 - Hosts: 174.140.128.38 www34.megaupload.com
O1 - Hosts: 174.140.128.39 www35.megaupload.com
O1 - Hosts: 174.140.128.40 www36.megaupload.com
O1 - Hosts: 174.140.128.41 www37.megaupload.com
O1 - Hosts: 174.140.128.42 www38.megaupload.com
O1 - Hosts: 174.140.128.43 www39.megaupload.com
O1 - Hosts: 174.140.128.44 www40.megaupload.com
O1 - Hosts: 174.140.128.45 www41.megaupload.com
O1 - Hosts: 174.140.128.46 www42.megaupload.com
O1 - Hosts: 174.140.128.47 www43.megaupload.com
O1 - Hosts: 174.140.128.48 www676.megaupload.com
O1 - Hosts: 174.140.128.49 www677.megaupload.com
O1 - Hosts: 174.140.128.50 www678.megaupload.com
O1 - Hosts: 174.140.128.51 www679.megaupload.com
O1 - Hosts: 174.140.128.52 www680.megaupload.com
O1 - Hosts: 174.140.128.53 www681.megaupload.com
O1 - Hosts: 174.140.128.54 www682.megaupload.com
O1 - Hosts: 174.140.128.55 www683.megaupload.com
O1 - Hosts: 174.140.128.56 www684.megaupload.com
O1 - Hosts: 174.140.128.57 www685.megaupload.com
O1 - Hosts: 174.140.128.58 www686.megaupload.com
O1 - Hosts: 174.140.128.59 www687.megaupload.com
O1 - Hosts: 174.140.128.60 www688.megaupload.com
O1 - Hosts: 174.140.128.61 www689.megaupload.com
O1 - Hosts: 174.140.128.62 www690.megaupload.com
O1 - Hosts: 174.140.128.63 www691.megaupload.com
O1 - Hosts: 174.140.128.64 www692.megaupload.com
O1 - Hosts: 174.140.128.65 www693.megaupload.com
O1 - Hosts: 174.140.128.66 www694.megaupload.com
O1 - Hosts: 174.140.128.67 www695.megaupload.com
O1 - Hosts: 174.140.128.68 www696.megaupload.com
O1 - Hosts: 174.140.128.69 www697.megaupload.com
O1 - Hosts: 174.140.128.70 www698.megaupload.com
O1 - Hosts: 174.140.128.71 www699.megaupload.com
O1 - Hosts: 174.140.129.10 www605.megaupload.com
O1 - Hosts: 174.140.129.11 www606.megaupload.com
O1 - Hosts: 174.140.129.12 www607.megaupload.com
O1 - Hosts: 174.140.129.13 www608.megaupload.com
O1 - Hosts: 174.140.129.14 www609.megaupload.com
O1 - Hosts: 174.140.129.15 www610.megaupload.com
O1 - Hosts: 174.140.129.16 www611.megaupload.com
O1 - Hosts: 174.140.129.17 www612.megaupload.com
O1 - Hosts: 174.140.129.18 www613.megaupload.com
O1 - Hosts: 174.140.129.19 www614.megaupload.com
O1 - Hosts: 174.140.129.20 www615.megaupload.com
O1 - Hosts: 174.140.129.21 www616.megaupload.com
O1 - Hosts: 174.140.129.22 www617.megaupload.com
O1 - Hosts: 174.140.129.23 www618.megaupload.com
O1 - Hosts: 174.140.129.24 www619.megaupload.com
O1 - Hosts: 174.140.129.25 www620.megaupload.com
O1 - Hosts: 174.140.129.26 www621.megaupload.com
O1 - Hosts: 174.140.129.27 www622.megaupload.com
O1 - Hosts: 174.140.129.28 www623.megaupload.com
O1 - Hosts: 174.140.129.29 www624.megaupload.com
O1 - Hosts: 174.140.129.30 www625.megaupload.com
O1 - Hosts: 174.140.129.31 www626.megaupload.com
O1 - Hosts: 174.140.129.32 www627.megaupload.com
O1 - Hosts: 174.140.129.33 www628.megaupload.com
O1 - Hosts: 174.140.129.34 www629.megaupload.com
O1 - Hosts: 174.140.129.35 www630.megaupload.com
O1 - Hosts: 174.140.129.36 www631.megaupload.com
O1 - Hosts: 174.140.129.37 www632.megaupload.com
O1 - Hosts: 174.140.129.38 www633.megaupload.com
O1 - Hosts: 174.140.129.39 www634.megaupload.com
O1 - Hosts: 174.140.129.40 www635.megaupload.com
O1 - Hosts: 174.140.129.41 www636.megaupload.com
O1 - Hosts: 174.140.129.42 www637.megaupload.com
-
18.03.2010 21:10 #5
- Katılım Tarihi
- 2009
- Mesaj
- 143
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: FCBHOBHO Class - {8B3868B4-EBA8-48FA-A19B-E1DFB99066FA} - C:\Program Files\FlashCapture\fcbho.dll
O2 - BHO: Windows Live Oturum Açma Yardım Aracı - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: &Save Flash - {4064EA35-578D-4073-A834-C96D82CBCF40} - C:\Program Files\Save Flash\SaveFlash.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OutpostMonitor] "C:\PROGRA~1\Agnitum\OUTPOS~1\op_mon.exe" /tray /noservice
O4 - HKLM\..\Run: [OutpostFeedBack] "C:\Program Files\Agnitum\Outpost Security Suite Pro\feedback.exe" /dump
s_startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\K-Lite Codec Pack\QuickTime\QTTask.exe" -atboottime
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Cevir / Translate - C:\WINDOWS\system32\IETranslator.htm
O8 - Extra context menu item: Microsoft Excel'e Gö&nder - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Save F&lash with FlashCapture - res://C:\Program Files\FlashCapture\fciext.dll/FCIEXT.htm
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: Outpost Security Suite Pro Quick Tune - {44627E97-789B-40d4-B5C2-58BD171129A1} - C:\Program Files\Agnitum\Outpost Security Suite Pro\ie_bar.dll
O9 - Extra button: FlashCapture - {753BBC4B-CC73-4fb8-A5B5-CA09C804C1DD} - C:\Program Files\FlashCapture\fciext.dll
O9 - Extra button: Araştır - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{086993F6-6BA6-487C-887E-8E4EB4F53FBE}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS1\Services\Tcpip\..\{086993F6-6BA6-487C-887E-8E4EB4F53FBE}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{086993F6-6BA6-487C-887E-8E4EB4F53FBE}: NameServer = 208.67.222.222,208.67.220.220
O23 - Service: Agnitum Client Security Service (acssrv) - Agnitum Ltd. - C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - D:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/xp1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg
--
End of file - 12072 bytes
Benzer Başlıklar
-
bilgisayarım hiç açılmıyor
tecnokta tarafından Donanım forumundaYanıt: 5Son Mesaj: 18.01.2011, 21:05 -
bilgisayarım açılmıyor?
alicuma tarafından Windows XP forumundaYanıt: 8Son Mesaj: 07.09.2009, 19:22 -
Bilgisayarım açılmıyor
yildirim0909 tarafından Donanım forumundaYanıt: 20Son Mesaj: 01.07.2007, 07:49 -
Bilgisayarım Açılmıyor...
mmustafa tarafından Donanım forumundaYanıt: 5Son Mesaj: 15.01.2007, 00:21 -
Bilgisayarım açılmıyor
cndncr tarafından Donanım forumundaYanıt: 3Son Mesaj: 12.12.2005, 01:56



Alıntıyla Yanıtla

Gta 4 Kaldırır mı??
Bugün, 20:47 / Oyunlar