arkadaşımın bilgisayarına ait loga bakarsanız memnun olurum. makine cok ağır calışıyor ve trojanlarla dolu olduğunu tahmin ediyorum. teşekkurler.
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 21:53:43, on 09.09.2013
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16502)
FIREFOX: 13.0.1 (tr)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Genesys PC Camera Device\GenePccMon.exe
C:\Program Files\TTNET\pcTrayApp.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
C:\Program Files\McAfee Security Scan\3.0.318\SSScheduler.exe
C:\Users\Metin\AppData\Local\Facebook\Messenger\2. 1.4814.0\FacebookMessenger.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlug in_11_8_800_94.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlug in_11_8_800_94.exe
C:\Users\Metin\Desktop\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: 98.129.238.10 richarddawkins.net
O1 - Hosts: 205.188.234.120 yp.shoutcast.com
O1 - Hosts: 62.41.85.97 media.shoutcast.com
O1 - Hosts: 205.188.216.8 shoutcast.com
O1 - Hosts: 207.200.100.5 www.shoutcast.com
O1 - Hosts: 74.125.4.16 r1.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.17 r2.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.18 r3.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.19 r4.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.20 r5.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.21 r6.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.22 r7.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.23 r8.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.24 r9.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.25 r10.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.26 r11.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.27 r12.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.28 r13.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.29 r14.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.30 r15.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.31 r16.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.32 r17.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.33 r18.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.34 r19.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.35 r20.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.36 r21.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.37 r22.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.38 r23.lhr1.c.youtube.com
O1 - Hosts: 74.125.4.39 r24.lhr1.c.youtube.com
O1 - Hosts: 213.146.171.16 r1.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.17 r2.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.18 r3.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.19 r4.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.20 r5.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.21 r6.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.22 r7.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.23 r8.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.24 r9.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.25 r10.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.26 r11.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.27 r12.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.28 r13.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.29 r14.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.30 r15.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.31 r16.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.32 r17.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.33 r18.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.34 r19.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.35 r20.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.36 r21.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.37 r22.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.38 r23.lhr2.c.youtube.com
O1 - Hosts: 213.146.171.39 r24.lhr2.c.youtube.com
O1 - Hosts: 206.132.73.16 r1.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.17 r2.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.18 r3.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.19 r4.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.20 r5.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.21 r6.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.22 r7.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.23 r8.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.24 r9.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.25 r10.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.26 r11.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.27 r12.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.28 r13.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.29 r14.lhr3.c.youtube.com
O1 - Hosts: 206.132.73.30 r15.lhr3.c.youtube.com
O1 - Hosts: 74.125.4.208 r1.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.209 r2.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.210 r3.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.211 r4.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.212 r5.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.213 r6.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.214 r7.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.215 r8.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.216 r9.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.217 r10.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.218 r11.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.219 r12.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.220 r13.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.221 r14.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.222 r15.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.223 r16.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.224 r17.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.225 r18.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.226 r19.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.227 r20.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.228 r21.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.229 r22.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.230 r23.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.231 r24.lhr4.c.youtube.com
O1 - Hosts: 74.125.4.80 r1.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.81 r2.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.82 r3.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.83 r4.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.84 r5.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.85 r6.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.86 r7.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.87 r8.lhr5.c.youtube.com
O1 - Hosts: 74.125.4.88 r9.lhr5.c.youtube.com
O2 - BHO: MSS+ Identifier - - C:\Program Files\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll
O2 - BHO: ShowBarObj Class - - C:\Program Files\SkyMediaPack\SkyToolbar\MinBHO.dll
O2 - BHO: Groove GFS Browser Helper - - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: URLRedirectionBHO - - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O2 - BHO: XBTBPos00 - - C:\Program Files\TTNET Akilli Cubuk\tbunsj3C95.tmp\tbcore3.dll
O3 - Toolbar: KBBar - - C:\Program Files\SkyMediaPack\SkyToolbar\KBBar.dll
O3 - Toolbar: TTNET Akilli Cubuk - - C:\Program Files\TTNET Akilli Cubuk\tbunsj3C95.tmp\tbcore3.dll
O3 - Toolbar: (no name) - - (no file)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [GenePccMon.exe] C:\Program Files\Genesys PC Camera Device\GenePccMon.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [NSU_agent] "C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe"
O4 - HKLM\..\Run: [TTNET_McciTrayApp] "C:\Program Files\TTNET\pcTrayApp.exe"
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Metin\AppData\Local\Facebook\Update\ Face bookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe -tray
O4 - Startup: Facebook Messenger.lnk = C:\Users\Metin\AppData\Local\Facebook\Messenger\2. 1.4814.0\FacebookMessenger.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.0.318\SSScheduler.exe
O8 - Extra context menu item: Bilisim Sozlugu: Turkce - İngilizce - res://C:\Program Files\Bilisim Sozlugu\bildict.exe/SEARCH_TR2EN.HTM
O8 - Extra context menu item: Bilisim Sozlugu: İngilizce - Turkce - res://C:\Program Files\Bilisim Sozlugu\bildict.exe/SEARCH_EN2TR.HTM
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461 B1589E8B4FB7.dll/cmsidewiki.html
O8 - Extra context menu item: Microsoft Excel'e &Ver - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Microsoft Excel'e Go&nder - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote'a G&onder - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote'a Gonder - - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote'a G&onder - - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote Bağlantılı &Notları - - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Bağlantılı &Notları - - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: (SubClassEditCtrlContainer Class) - https://sube.garanti.com.tr/lib/JaguarEditControl.CAB
O16 - DPF: (UnoCtrl Class) - http://messenger.zone.msn.com/Messen.../GAME_UNO1.cab
O16 - DPF: (WUWebControl Class) - http://update.microsoft.com/windowsu...?1264789053334
O16 - DPF: (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O16 - DPF: - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: viprotocol - - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll
O18 - Protocol: wlpg - - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpda teService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Guncelleme Hizmeti (gupdate1c9e0821f71aafb) (gupdate1c9e0821f71aafb) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Guncelleme Hizmeti (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.318\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: pcCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\pcCMService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
O23 - Service: vToolbarUpdater15.5.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 15538 bytes
__________________
loga bakar mısınız?
Bilgisayar Güvenliği0 Mesaj
●34 Görüntüleme
- ReadBull.net
- Teknoloji Forumları
- Donanım ve Bilgisayar
- Bilgisayar Güvenliği
- loga bakar mısınız?