Sistemimde surekli bir başlangıc ogesi acılıyor 2 dakikada bir. Virus programım(Eset) virus olarak algılamıyor ama surekli acılması beni rahatsız ediyor. Combofix ile bilgisayarımı tarattım o da dosyayı silmeye calıştı fakat silemedi hala acmaya devam ediyor. Combo Fix kayıtlarını bırakacağım buraya. Yardımcı olursanız sevinirim.


Kod:Panoya kopyala
ComboFix 18-03-14.01 - Kuzeyy 15.04.2018 11:39:35.1.4 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1254.90.1055.18.8135.4990 [GMT 3:00] Running from: c:usersKuzeyyDownloadsComboFix.exe AV: ESET Internet Security *Disabled/Updated* FW: ESET Guvenlik Duvarı *Disabled* SP: ESET Internet Security *Disabled/Updated* SP: Windows Defender *Enabled/Updated* . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:usersKuzeyyAppDataRoamingIntel.exe c:usersKuzeyyAppDataRoamingInterop.Shell32.dll c:usersKuzeyyAppDataRoamingMicrosoftAsetup.exe c:usersKuzeyyAppDataRoamingMicrosoftdwmDesktop.exe c:usersKuzeyyAppDataRoamingMicrosoftIntel.exe c:usersKuzeyyAppDataRoamingMicrosoftInterop.Shell3 2.dll c:usersKuzeyyAppDataRoamingMicrosoftKFC32.exe c:usersKuzeyyAppDataRoamingMicrosoftWindowsIntel.e xe c:usersKuzeyyAppDataRoamingMicrosoftWindowsDmedias .exe c:usersKuzeyyAppDataRoamingMicrosoftWindowsmediab. exe c:usersKuzeyyAppDataRoamingwindows c:usersKuzeyyAppDataRoamingwindowsAccessibleMarsha l.dll c:usersKuzeyyAppDataRoamingwindowsbreakpadinjector .dll c:usersKuzeyyAppDataRoamingwindowsD3DCompiler_43.d ll c:usersKuzeyyAppDataRoamingwindowsd3dcompiler_47.d ll c:usersKuzeyyAppDataRoamingwindowsdht c:usersKuzeyyAppDataRoamingwindowsdown c:usersKuzeyyAppDataRoamingwindowsexplors.exe c:usersKuzeyyAppDataRoamingwindowsexplors.zip c:usersKuzeyyAppDataRoamingwindowsFias.exe c:usersKuzeyyAppDataRoamingwindowsFias.zip c:usersKuzeyyAppDataRoamingwindowsfreebl3.dll c:usersKuzeyyAppDataRoamingwindowsGeckofx-Core.dll c:usersKuzeyyAppDataRoamingwindowsGeckofx-Winforms.dll c:usersKuzeyyAppDataRoamingwindowsicudt56.dll c:usersKuzeyyAppDataRoamingwindowsicuin56.dll c:usersKuzeyyAppDataRoamingwindowsicuuc56.dll c:usersKuzeyyAppDataRoamingwindowslgpllibs.dll c:usersKuzeyyAppDataRoamingwindowslibEGL.dll c:usersKuzeyyAppDataRoamingwindowslibGLESv2.dll c:usersKuzeyyAppDataRoamingwindowsmozglue.dll c:usersKuzeyyAppDataRoamingwindowsmsvcp120.dll c:usersKuzeyyAppDataRoamingwindowsmsvcr120.dll c:usersKuzeyyAppDataRoamingwindowsnss3.dll c:usersKuzeyyAppDataRoamingwindowsnssckbi.dll c:usersKuzeyyAppDataRoamingwindowsnssdbm3.dll c:usersKuzeyyAppDataRoamingwindowsOffib.exe c:usersKuzeyyAppDataRoamingwindowsOffib.zip c:usersKuzeyyAppDataRoamingwindowsOffix.exe c:usersKuzeyyAppDataRoamingwindowsOffix.zip c:usersKuzeyyAppDataRoamingwindowsOffiz.exe c:usersKuzeyyAppDataRoamingwindowsOffiz.zip c:usersKuzeyyAppDataRoamingwindowsomni.ja c:usersKuzeyyAppDataRoamingwindowsplugin-container.exe c:usersKuzeyyAppDataRoamingwindowsplugin-hang-ui.exe c:usersKuzeyyAppDataRoamingwindowsRAVBGs.exe c:usersKuzeyyAppDataRoamingwindowsRAVBGs.zip c:usersKuzeyyAppDataRoamingwindowssandboxbroker.dl l c:usersKuzeyyAppDataRoamingwindowsSians.exe c:usersKuzeyyAppDataRoamingwindowsSians.zip c:usersKuzeyyAppDataRoamingwindowssoftokn3.dll c:usersKuzeyyAppDataRoamingwindowsTasksoo.exe c:usersKuzeyyAppDataRoamingwindowsTasksoo.zip c:usersKuzeyyAppDataRoamingwindowsTiva.exe c:usersKuzeyyAppDataRoamingwindowsTiva.zip c:usersKuzeyyAppDataRoamingwindowsxul.dll c:windowsSysWow64Packet.dll . . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------Legacy_NPF . . ((((((((((((((((((((((((( Files Created from 2018-03-15 to 2018-04-15 ))))))))))))))))))))))))))))))) . . 2018-04-15 08:21 . 2018-04-15 08:21 -------- d-----w- crogram filesPlumbytes Software 2018-04-14 17:47 . 2018-04-14 17:47 -------- d-----w- C:82ace7d6-0197-474d-bf4b-a2043e72329b 2018-04-14 17:41 . 2018-04-14 21:27 -------- d-----w- crogram files (x86)Common FilesBattlEye 2018-04-14 17:41 . 2018-04-14 17:41 -------- d-----w- crogram files (x86)EasyAntiCheat 2018-04-14 12:28 . 2018-04-14 12:28 -------- d-----w- crogram filesESET 2018-04-14 11:38 . 2018-04-15 07:56 -------- d-----w- crogram filesCommon FilesAV 2018-04-14 11:37 . 2018-04-14 12:05 -------- d-----w- crogramdataKaspersky Lab 2018-04-14 11:36 . 2018-04-14 11:36 149304 ------w- c:windowssystem32klhkum.dll 2018-04-14 11:29 . 2018-04-14 11:29 -------- d-----w- crogramdataKaspersky Lab Setup Files 2018-04-14 09:48 . 2018-04-14 09:48 -------- d-----w- crogramdata 2018-04-14 09:36 . 2018-04-14 09:36 -------- d-----w- crogram files (x86)GhostMouse 2018-04-14 07:27 . 2018-04-14 07:27 -------- d-----w- crogram filesEpic Games 2018-04-14 07:19 . 2018-04-14 07:25 -------- d-----w- crogramdataEpic 2018-04-14 07:19 . 2018-04-14 07:19 -------- d-----w- crogram files (x86)Epic Games 2018-04-14 06:50 . 2018-04-14 06:50 75888 ----a-w- crogramdataMicrosoftWindows DefenderDefinition Updatesoffreg.7108.dll 2018-04-13 21:58 . 2018-04-14 08:00 -------- d-----w- crogram files (x86)McAfee 2018-04-13 21:58 . 2018-04-14 08:00 -------- d-----w- crogramdataMcAfee 2018-04-13 21:47 . 2018-04-14 08:00 -------- dc----w- c:windowssystem32DRVSTORE 2018-04-13 21:46 . 2018-04-14 08:00 -------- d-----w- crogramdataVMware 2018-04-13 20:28 . 2018-04-13 20:29 -------- d---a-w- crogram files (x86)BlueStacks 2018-04-13 20:28 . 2018-04-13 20:29 -------- d-----w- crogramdataBlueStacks 2018-04-13 20:18 . 2018-04-13 20:18 -------- d-----w- crogram files (x86)Maxthon5 2018-04-13 14:09 . 2018-04-13 14:09 -------- d-----w- crogram filesVideoLAN 2018-04-13 13:57 . 2006-09-21 10:59 389120 ----a-w- c:windowsSysWow64actskn43.ocx 2018-04-13 13:49 . 2018-04-14 08:00 -------- d-----w- crogram files (x86)netcut 2018-04-13 13:27 . 2018-04-13 13:27 -------- d-----w- crogram files (x86)obs-studio 2018-04-13 12:55 . 2018-03-24 01:13 2480064 ----a-w- c:windowssystem32nvspcap64.dll 2018-04-13 12:55 . 2018-03-24 01:13 2137024 ----a-w- c:windowsSysWow64nvspcap.dll 2018-04-13 12:55 . 2018-03-24 01:13 1310144 ----a-w- c:windowssystem32NvRtmpStreamer64.dll 2018-04-13 12:55 . 2018-03-24 01:13 189784 ----a-w- c:windowssystem32nvaudcap64v.dll 2018-04-13 12:55 . 2018-03-24 01:13 152408 ----a-w- c:windowsSysWow64nvaudcap32v.dll 2018-04-13 12:55 . 2018-03-24 01:13 1951 ----a-w- c:windowsNvTelemetryContainerRecovery.bat 2018-04-13 12:52 . 2018-03-24 01:13 58816 ----a-w- c:windowssystem32driversnvvhci.sys 2018-04-13 12:47 . 2018-04-13 12:47 -------- d-----w- C:NVIDIA 2018-04-13 12:21 . 2018-04-13 12:21 -------- d-----w- crogram files (x86)Common FilesJava 2018-04-13 12:21 . 2018-04-13 12:21 110144 ----a-w- c:windowssystem32WindowsAccessBridge-64.dll 2018-04-13 12:20 . 2018-04-13 12:20 -------- d-----w- crogramdataOracle 2018-04-13 12:20 . 2018-04-13 12:20 -------- d-----w- crogram filesJava 2018-04-13 11:40 . 2018-03-29 21:11 14558320 ----a-w- crogramdataMicrosoftWindows DefenderDefinition Updatesmpengine.dll 2018-04-12 06:02 . 2018-04-12 06:02 -------- d-----w- crogram files (x86)Bilgisayar Kapatıcı V2 2018-04-09 12:24 . 2018-04-09 12:24 -------- d-----w- crogram files (x86)Microsoft 2018-04-08 20:18 . 2008-10-15 03:22 519000 ----a-w- c:windowssystem32d3dx10_40.dll 2018-04-08 20:18 . 2008-10-15 03:22 452440 ----a-w- c:windowsSysWow64d3dx10_40.dll 2018-04-08 20:18 . 2008-10-15 03:22 2605920 ----a-w- c:windowssystem32D3DCompiler_40.dll 2018-04-08 20:18 . 2008-10-15 03:22 2036576 ----a-w- c:windowsSysWow64D3DCompiler_40.dll 2018-04-08 20:18 . 2008-10-15 03:22 5631312 ----a-w- c:windowssystem32D3DX9_40.dll 2018-04-08 20:18 . 2008-10-15 03:22 4379984 ----a-w- c:windowsSysWow64D3DX9_40.dll 2018-04-07 18:28 . 2018-04-07 18:28 -------- d-----w- crogram files (x86)1jsxkitklxm 2018-04-07 15:22 . 2014-10-16 07:27 27424 ----a-w- c:windowssystem32RegistryDefragBootTime.exe 2018-04-07 15:00 . 2018-04-07 15:00 -------- d-----w- c:windowssystem32disko 2018-04-07 15:00 . 2018-04-07 15:00 -------- d-----w- c:windowsSysWow64disko 2018-04-07 14:58 . 2018-04-07 14:58 -------- d-----w- crogramdataLogiShrd 2018-04-07 14:58 . 2018-04-15 08:01 -------- d-----w- c:usersPublicLogi 2018-04-07 14:54 . 2018-04-08 02:43 18960 ----a-w- c:windowssystem32driversLNonPnP.sys 2018-04-07 14:08 . 2018-04-07 14:08 -------- d-----w- crogramdataYandex 2018-04-07 14:02 . 2018-04-07 14:04 -------- d-----w- crogram files (x86)Movavi Video Suite 17 2018-04-07 14:02 . 2018-04-07 14:02 -------- d-----w- crogramdataMovavi 2018-04-07 14:01 . 2018-04-07 14:01 -------- d-----w- crogramdataMovavi Video Suite 17 2018-04-07 07:44 . 2018-04-07 07:44 -------- d-----w- crogramdataPassmark 2018-04-05 17:10 . 2018-04-07 14:55 -------- d-----w- crogram filesLogitech Gaming Software 2018-04-05 16:18 . 2018-04-05 16:18 -------- d-----w- crogram filesCommon FilesINCA Shared 2018-04-05 14:24 . 2018-02-22 03:28 217600 ----a-w- c:windowssystem32WinSCard.dll 2018-04-05 14:24 . 2018-02-22 03:06 134656 ----a-w- c:windowsSysWow64WinSCard.dll 2018-04-05 14:21 . 2018-02-18 21:34 634272 ----a-w- c:windowssystem32winload.exe 2018-04-05 14:21 . 2018-03-14 17:14 135360 ----a-w- c:windowssystem32CompatTelRunner.exe 2018-04-05 14:21 . 2018-03-14 17:09 656384 ----a-w- c:windowssystem32aeinv.dll 2018-04-05 14:21 . 2018-03-14 13:05 739840 ----a-w- c:windowssystem32generaltel.dll 2018-04-05 14:21 . 2018-03-14 13:05 599552 ----a-w- c:windowssystem32devinv.dll 2018-04-05 14:21 . 2018-03-14 13:05 450048 ----a-w- c:windowssystem32centel.dll 2018-04-05 14:21 . 2018-03-14 13:05 414720 ----a-w- c:windowssystem32invagent.dll 2018-04-05 14:21 . 2018-03-14 13:05 1559552 ----a-w- c:windowssystem32appraiser.dll 2018-04-05 14:21 . 2018-03-14 13:05 291840 ----a-w- c:windowssystem32acmigration.dll 2018-04-05 14:21 . 2018-03-14 13:05 237056 ----a-w- c:windowssystem32aepic.dll 2018-04-05 14:21 . 2018-03-14 13:05 1993728 ----a-w- c:windowssystem32aitstatic.exe 2018-04-05 13:44 . 2018-04-14 12:03 -------- d-----w- crogram files (x86)Common FilesIObit 2018-04-05 13:27 . 2018-04-05 13:27 407040 ----a-w- c:windowssystem32scesrv.dll 2018-04-05 13:27 . 2018-04-05 13:27 308224 ----a-w- c:windowsSysWow64scesrv.dll 2018-04-05 13:27 . 2018-04-05 13:27 2048 ----a-w- c:windowsSysWow64tzres.dll 2018-04-05 13:27 . 2018-04-05 13:27 2048 ----a-w- c:windowssystem32tzres.dll 2018-04-05 12:34 . 2018-04-05 12:34 -------- d-----w- crogramdata 2018-04-05 12:29 . 2018-04-05 12:29 -------- d-----w- c:windowssystem32appmgmt 2018-04-05 05:37 . 2017-10-16 12:15 7677008 ----a-w- c:windowsSysWow64GameMon.des 2018-04-05 05:24 . 2018-04-14 07:58 -------- d-----w- crogramdataPackage Cache 2018-04-05 05:24 . 2018-04-05 05:24 -------- d-----w- crogram filesTeamSpeak 3 Client 2018-04-05 05:23 . 2018-04-08 20:40 -------- d-----w- crogram files (x86)Common FilesSteam 2018-04-05 05:23 . 2018-04-14 22:57 -------- d-----w- crogram files (x86)Steam 2018-04-05 05:16 . 2018-04-05 05:16 -------- d-----w- crogramdataApple Computer 2018-04-05 05:16 . 2018-04-05 05:16 -------- d-----w- crogramdataApple 2018-04-05 05:11 . 2018-04-13 19:57 -------- d-----w- crogram files (x86)Metin2 2018-04-05 05:02 . 2018-04-05 05:02 45600 ----a-w- c:windowssystem32nvhdap64.dll 2018-04-05 05:02 . 2018-04-05 05:02 226760 ----a-w- c:windowssystem32driversnvhda64v.sys 2018-04-05 05:02 . 2018-04-05 05:02 1682288 ----a-w- c:windowssystem32nvhdagenco6420103.dll 2018-04-05 05:01 . 2018-04-05 05:01 -------- d-----w- c:windowssystem32DAX3 2018-04-05 05:01 . 2018-04-05 05:01 -------- d-----w- c:windowssystem32DAX2 2018-04-05 05:01 . 2018-04-05 05:01 -------- d-----w- c:windowsSysWow64RTCOM 2018-04-05 05:01 . 2018-04-05 05:01 -------- d-----w- crogram filesRealtek 2018-04-04 20:28 . 2018-04-13 12:55 -------- d-----w- crogram filesNVIDIA Corporation 2018-04-04 20:28 . 2018-04-13 12:55 -------- d-----w- crogram files (x86)NVIDIA Corporation 2018-04-04 20:28 . 2018-04-04 20:28 -------- d-----w- c:windowssystem32driversNVIDIA Corporation 2018-04-04 20:27 . 2018-04-04 20:27 1985384 ----a-w- c:windowssystem32nvdispco6439101.dll 2018-04-04 20:27 . 2018-04-04 20:27 1684000 ----a-w- c:windowssystem32nvdispgenco6439101.dll 2018-04-04 20:27 . 2018-03-25 16:12 15558928 ----a-w- c:windowsSysWow64nvd3dum.dll 2018-04-04 20:27 . 2018-03-25 16:11 3919352 ----a-w- c:windowsSysWow64nvapi.dll 2018-04-04 20:09 . 2018-04-04 20:09 237416 ----a-w- c:windowssystem32driversamdxhc.sys 2018-04-04 20:08 . 2018-04-04 20:08 85704 ----a-w- c:windowssystem32driversamd_sata.sys 2018-04-04 20:08 . 2018-04-04 20:08 43720 ----a-w- c:windowssystem32driversamd_xata.sys 2018-04-04 18:18 . 2018-04-04 18:18 -------- d-----w- crogram filesWinRAR 2018-04-04 18:05 . 2018-04-04 18:05 60928 ----a-w- c:windowssystem32driversGeneStor.sys 2018-04-04 18:05 . 2018-04-04 18:05 1721576 ----a-w- c:windowssystem32WdfCoInstaller01009.dll 2018-04-04 18:03 . 2018-04-14 07:57 -------- d-----w- crogramdataProductData 2018-04-04 18:03 . 2018-04-04 18:03 -------- d-----w- c:windowsIObit 2018-04-04 18:03 . 2018-04-04 18:03 27552 ----a-w- c:windowsSysWow64driversHWiNFO64A.SYS 2018-04-04 18:03 . 2018-04-14 12:04 -------- d-----w- crogram files (x86)IObit 2018-04-04 18:03 . 2018-04-14 12:03 -------- d-----w- crogramdataIObit 2018-04-04 17:59 . 2018-04-05 13:44 -------- d-----w- crogram files (x86)Google 2018-04-04 17:57 . 2018-03-20 00:02 118784 ----a-w- c:windowssystem32RTNUninst64.dll 2018-04-04 17:57 . 2018-03-20 00:02 122816 ----a-w- c:windowssystem32RtNicProp64.dll 2018-04-04 17:57 . 2018-03-20 00:02 981952 ----a-w- c:windowssystem32driversRt64win7.sys 2018-04-04 17:57 . 2018-04-04 17:57 -------- d-----w- crogram files (x86)Realtek 2018-04-04 17:57 . 2018-04-04 17:57 -------- d--h--w- crogram files (x86)InstallShield Installation Information 2018-04-04 17:50 . 2018-04-13 21:48 -------- d-----w- c:usersKuzeyy 2018-04-04 17:50 . 2018-04-04 17:50 -------- d-----w- C:Recovery 2018-04-04 17:50 . 2018-04-04 17:50 -------- d-sh--we c:usersDefaultBelgelerim 2018-04-04 17:50 . 2018-04-04 17:50 -------- d-sh--we crogramdataSık Kullanılanlar 2018-04-04 17:50 . 2018-04-04 17:50 -------- d-sh--we crogramdataBelgeler . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )) . 2018-04-05 13:23 . 2018-04-05 13:23 2560 ----a-w- c:windowsapppatchAcRes.dll 2018-03-31 01:09 . 2018-04-13 11:42 44544 ----a-w- c:windowsapppatchacwow64.dll 2018-03-14 16:01 . 2018-03-12 19:02 130364688 -c--a-w- c:windowssystem32MRT-KB890830.exe 2018-03-14 16:01 . 2018-03-12 19:02 130364688 -c--a-w- c:windowssystem32MRT.exe 2018-03-12 18:26 . 2018-03-12 18:26 194048 ----a-w- c:windowsSysWow64elshyph.dll 2018-03-12 18:25 . 2018-03-12 18:25 942592 ----a-w- c:windowssystem32jsIntl.dll 2018-03-12 18:25 . 2018-03-12 18:25 90112 ----a-w- c:windowssystem32SetIEInstalledDate.exe 2018-03-12 18:25 . 2018-03-12 18:25 86016 ----a-w- c:windowsSysWow64iesysprep.dll 2018-03-12 18:25 . 2018-03-12 18:25 86016 ----a-w- c:windowssystem32RegisterIEPKEYs.exe 2018-03-12 18:25 . 2018-03-12 18:25 81408 ----a-w- c:windowssystem32icardie.dll 2018-03-12 18:25 . 2018-03-12 18:25 74240 ----a-w- c:windowsSysWow64SetIEInstalledDate.exe 2018-03-12 18:25 . 2018-03-12 18:25 71680 ----a-w- c:windowsSysWow64RegisterIEPKEYs.exe 2018-03-12 18:25 . 2018-03-12 18:25 645120 ----a-w- c:windowsSysWow64jsIntl.dll 2018-03-12 18:25 . 2018-03-12 18:25 616104 ----a-w- c:windowssystem32ieapfltr.dat 2018-03-12 18:25 . 2018-03-12 18:25 52224 ----a-w- c:windowssystem32msfeedsbs.dll 2018-03-12 18:25 . 2018-03-12 18:25 48640 ----a-w- c:windowsSysWow64mshtmler.dll 2018-03-12 18:25 . 2018-03-12 18:25 48640 ----a-w- c:windowssystem32mshtmler.dll 2018-03-12 18:25 . 2018-03-12 18:25 36352 ----a-w- c:windowsSysWow64imgutil.dll 2018-03-12 18:25 . 2018-03-12 18:25 30208 ----a-w- c:windowssystem32licmgr10.dll 2018-03-12 18:25 . 2018-03-12 18:25 247808 ----a-w- c:windowssystem32msls31.dll 2018-03-12 18:25 . 2018-03-12 18:25 24576 ----a-w- c:windowsSysWow64licmgr10.dll 2018-03-12 18:25 . 2018-03-12 18:25 235520 ----a-w- c:windowssystem32url.dll 2018-03-12 18:25 . 2018-03-12 18:25 235008 ----a-w- c:windowssystem32elshyph.dll 2018-03-12 18:25 . 2018-03-12 18:25 182272 ----a-w- c:windowsSysWow64msls31.dll 2018-03-12 18:25 . 2018-03-12 18:25 167424 ----a-w- c:windowssystem32iexpress.exe 2018-03-12 18:25 . 2018-03-12 18:25 151552 ----a-w- c:windowsSysWow64iexpress.exe 2018-03-12 18:25 . 2018-03-12 18:25 143872 ----a-w- c:windowssystem32wextract.exe 2018-03-12 18:25 . 2018-03-12 18:25 139264 ----a-w- c:windowsSysWow64wextract.exe 2018-03-12 18:25 . 2018-03-12 18:25 13312 ----a-w- c:windowsSysWow64mshta.exe 2018-03-12 18:25 . 2018-03-12 18:25 13312 ----a-w- c:windowssystem32msfeedssync.exe 2018-03-12 18:25 . 2018-03-12 18:25 131072 ----a-w- c:windowssystem32IEAdvpack.dll 2018-03-12 18:25 . 2018-03-12 18:25 111616 ----a-w- c:windowsSysWow64IEAdvpack.dll 2018-03-12 18:25 . 2018-03-12 18:25 105984 ----a-w- c:windowssystem32iesysprep.dll 2018-03-12 18:25 . 2018-03-12 18:25 62464 ----a-w- c:windowssystem32pngfilt.dll 2018-03-12 18:25 . 2018-03-12 18:25 48128 ----a-w- c:windowssystem32imgutil.dll 2018-03-12 18:25 . 2018-03-12 18:25 13824 ----a-w- c:windowssystem32mshta.exe 2018-03-12 18:25 . 2018-03-12 18:25 135680 ----a-w- c:windowssystem32iepeers.dll 2018-01-19 12:32 . 2018-01-19 12:32 134368 ----a-w- c:windowssystem32driverseamonm.sys 2018-01-19 12:32 . 2018-01-19 12:32 106304 ----a-w- c:windowssystem32driversepfwwfp.sys 2018-01-19 12:31 . 2018-01-19 12:31 81880 ----a-w- c:windowssystem32driversepfw.sys 2018-01-19 12:31 . 2018-01-19 12:31 61040 ----a-w- c:windowssystem32driversEpfwLWF.sys 2018-01-19 12:31 . 2018-01-19 12:31 180088 ----a-w- c:windowssystem32driversehdrv.sys 2018-01-19 12:31 . 2018-01-19 12:31 107328 ----a-w- c:windowssystem32driversedevmon.sys 2018-01-19 12:31 . 2018-01-19 12:31 50744 ----a-w- c:windowssystem32driversekbdflt.sys . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVe rsionRun] "Advanced SystemCare 11"="crogram files (x86)IObitAdvanced SystemCareASCTray.exe" [2018-03-20 3581200] "1752"="c:usersKuzeyyAppDataRoamingMicrosoftWindow sIntel.exe" [2017-11-05 8704] . [HKEY_LOCAL_MACHINESOFTWAREWow6432NodeMicrosoftWind owsCurrentVersionRun] "SunJavaUpdateSched"="crogram files (x86)Common FilesJavaJava Updatejusched.exe" [2017-12-19 587800] . c:usersKuzeyyAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup Asetup.exe [2017-11-4 6144] . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentv ersionpoliciessystem] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_CURRENT_USERsoftwaremicrosoftwindowscurrentve rsionpoliciesexplorer] "NoSimpleNetIDList"= 1 (0x1) . [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicest cpipparameterspersistentroutes] "198.54.116.221,255.255.255.255,192.168.1.103,1"=" " "185.111.232.37,255.255.255.255,192.168.1.103,1"=" " "185.111.232.37,255.255.255.255,192.168.1.100,1"=" " "198.54.116.221,255.255.255.255,192.168.1.100,1"=" " "185.111.232.37,255.255.255.255,192.168.1.102,1"=" " "198.54.116.221,255.255.255.255,192.168.1.102,1"=" " . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:windowsMicrosoft.NETFramework64v4 .0.30319mscorsvw.exe;c:windowsMicrosoft.NETFramewo rk64v4.0.30319mscorsvw.exe [x] R2 IObitUnSvr;IObit Uninstaller Service;crogram files (x86)IObitIObit UninstallerIUService.exe;crogram files (x86)IObitIObit UninstallerIUService.exe [x] R2 MxService;MxService;crogram files (x86)Maxthon5BinMxService.exe;crogram files (x86)Maxthon5BinMxService.exe [x] R2 pbamw_service;AMW Service;crogram filesPlumbytes SoftwarePlumbytes Anti-MalwareAmwService.exe run;crogram filesPlumbytes SoftwarePlumbytes Anti-MalwareAmwService.exe run [x] R3 BEService;BattlEye Service;crogram files (x86)Common FilesBattlEyeBEService.exe;crogram files (x86)Common FilesBattlEyeBEService.exe [x] R3 BstkDrv;BlueStacks Plus Hypervisor;crogram files (x86)BlueStacksBstkDrv.sys;crogram files (x86)BlueStacksBstkDrv.sys [x] R3 cpuz143;cpuz143;c:windowstempcpuz143cpuz143_x64.sy s;c:windowstempcpuz143cpuz143_x64.sys [x] R3 DIRECTIO;DIRECTIO;crogram filesPerformanceTestDirectIo64.sys;crogram filesPerformanceTestDirectIo64.sys [x] R3 dmvsc;dmvsc;c:windowssystem32driversdmvsc.sys;c:wi ndowsSYSNATIVEdriversdmvsc.sys [x] R3 EasyAntiCheat;EasyAntiCheat;crogram files (x86)EasyAntiCheatEasyAntiCheat.exe;crogram files (x86)EasyAntiCheatEasyAntiCheat.exe [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:windowssystem32IEEtwCollector.exe;c:wind owsSYSNATIVEIEEtwCollector.exe [x] R3 iobit_monitor_server;iobit_monitor_server;crogra m files (x86)IObitAdvanced SystemCaredriversMonitor_win7_x64.sys;crogram files (x86)IObitAdvanced SystemCaredriversMonitor_win7_x64.sys [x] R3 LGBusEnum;Logitech Gaming Virtual Bus Enumerator Driver;c:windowssystem32driversLGBusEnum.sys;c:win dowsSYSNATIVEdriversLGBusEnum.sys [x] R3 LGJoyXlCore;Logitech Translation Layer Driver (LGS);c:windowssystem32driversLGJoyXlCore.sys;c:wi ndowsSYSNATIVEdriversLGJoyXlCore.sys [x] R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:windowssystem32driversLGVirHid.sys;c:wind owsSYSNATIVEdriversLGVirHid.sys [x] R3 npggsvc;nProtect GameGuard Service;c:windowssystem32GameMon.des;c:windowsSYSN ATIVEGameMon.des [x] R3 NvContainerNetworkService;NVIDIA NetworkService Container;crogram filesNVIDIA CorporationNvContainernvcontainer.exe;crogram filesNVIDIA CorporationNvContainernvcontainer.exe [x] R3 NvStreamKms;NVIDIA KMS;crogram filesNVIDIA CorporationNvStreamSrvNvStreamKms.sys;crogram filesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:windowssystem32driversrdpvideominiport.sy s;c:windowsSYSNATIVEdriversrdpvideominiport.sys [x] R3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:windowssystem32driversSynth3dVsc.sys;c:wi ndowsSYSNATIVEdriversSynth3dVsc.sys [x] R3 terminpt;Microsoft Remote Desktop Input Driver;c:windowssystem32driversterminpt.sys;c:wind owsSYSNATIVEdriversterminpt.sys [x] R3 TsUsbFlt;TsUsbFlt;c:windowssystem32driverstsusbflt .sys;c:windowsSYSNATIVEdriverstsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:windowssystem32driversTsUsbGD.sys;c:windo wsSYSNATIVEdriversTsUsbGD.sys [x] R3 tsusbhub;Remote Deskotop USB Hub;c:windowssystem32driverstsusbhub.sys;c:windows SYSNATIVEdriverstsusbhub.sys [x] R3 WatAdminSvc;Windows Etkinleştirme Teknolojileri Hizmeti;c:windowssystem32WatWatAdminSvc.exe;c:wind owsSYSNATIVEWatWatAdminSvc.exe [x] R3 WinFsp;WinFsp;c:windowssystem32diskowinfsp-x64.sys;c:windowsSYSNATIVEdiskowinfsp-x64.sys [x] S0 amd_sata;amd_sata;c:windowssystem32DRIVERSamd_sata .sys;c:windowsSYSNATIVEDRIVERSamd_sata.sys [x] S0 amd_xata;amd_xata;c:windowssystem32DRIVERSamd_xata .sys;c:windowsSYSNATIVEDRIVERSamd_xata.sys [x] S0 edevmon;edevmon;c:windowssystem32DRIVERSedevmon.sy s;c:windowsSYSNATIVEDRIVERSedevmon.sys [x] S1 eamonm;eamonm;c:windowssystem32DRIVERSeamonm.sys;c :windowsSYSNATIVEDRIVERSeamonm.sys [x] S1 ehdrv;ehdrv;c:windowssystem32DRIVERSehdrv.sys;c:wi ndowsSYSNATIVEDRIVERSehdrv.sys [x] S1 EpfwLWF;ESET Firewall;c:windowssystem32DRIVERSEpfwLWF.sys;c:win dowsSYSNATIVEDRIVERSEpfwLWF.sys [x] S1 epfwwfp;epfwwfp;c:windowssystem32DRIVERSepfwwfp.sy s;c:windowsSYSNATIVEDRIVERSepfwwfp.sys [x] S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:windowsSysWOW64driversHWiNFO64A.SYS;c:win dowsSysWOW64driversHWiNFO64A.SYS [x] S2 AdvancedSystemCareService11;Advanced SystemCare Service 11;crogram files (x86)IObitAdvanced SystemCareASCService.exe;crogram files (x86)IObitAdvanced SystemCareASCService.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:windowsSystem32svchost.exe;c:windowsSYSN ATIVEsvchost.exe [x] S2 ekbdflt;ekbdflt;c:windowssystem32DRIVERSekbdflt.sy s;c:windowsSYSNATIVEDRIVERSekbdflt.sys [x] S2 ekrn;ESET Service;crogram filesESETESET Securityekrn.exe;crogram filesESETESET Securityekrn.exe [x] S2 LGCoreTemp;Logitech CPU Core Tempurature;crogram filesLogitech Gaming SoftwareDriversLgCoreTemplgcoretemp.sys;crogram filesLogitech Gaming SoftwareDriversLgCoreTemplgcoretemp.sys [x] S2 LogiRegistryService;Logitech Gaming Registry Service;crogram filesLogitech Gaming SoftwareDriversAPOServiceLogiRegistryService.exe;c rogram filesLogitech Gaming SoftwareDriversAPOServiceLogiRegistryService.exe [x] S2 NvContainerLocalSystem;NVIDIA LocalSystem Container;crogram filesNVIDIA CorporationNvContainernvcontainer.exe;crogram filesNVIDIA CorporationNvContainernvcontainer.exe [x] S2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS;crogram filesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container. exe;crogram filesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container. exe [x] S2 NvTelemetryContainer;NVIDIA Telemetry Container;crogram files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe;c rogram files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe [x] S3 amdhub30;AMD USB 3.0 Hub Driver;c:windowssystem32DRIVERSamdhub30.sys;c:wind owsSYSNATIVEDRIVERSamdhub30.sys [x] S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:windowssystem32DRIVERSamdxhc.sys;c:window sSYSNATIVEDRIVERSamdxhc.sys [x] S3 GeneStor;Genesys Logic Storage Driver;c:windowssystem32DRIVERSGeneStor.sys;c:wind owsSYSNATIVEDRIVERSGeneStor.sys [x] S3 IUFileFilter;IUFileFilter;crogram files (x86)IObitIObit Uninstallerdriverswin7_amd64IUFileFilter.sys;cro gram files (x86)IObitIObit Uninstallerdriverswin7_amd64IUFileFilter.sys [x] S3 IURegProcessFilter;IURegProcessFilter;crogram files (x86)IObitIObit Uninstallerdriverswin7_amd64IURegProcessFilter.sys ;crogram files (x86)IObitIObit Uninstallerdriverswin7_amd64IURegProcessFilter.sys [x] S3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;c:windowssystem32DRIVERSLGSHidFilt.Sys;c:wi ndowsSYSNATIVEDRIVERSLGSHidFilt.Sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:windowssystem32driversnvvad64v.sys;c:windo wsSYSNATIVEdriversnvvad64v.sys [x] S3 nvvhci;NVVHCI Enumerator Service;c:windowssystem32DRIVERSnvvhci.sys;c:windo wsSYSNATIVEDRIVERSnvvhci.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:windowssystem32DRIVERSRt64win7.sys;c:wind owsSYSNATIVEDRIVERSRt64win7.sys [x] . . [HKEY_LOCAL_MACHINEsoftwarewow6432nodemicrosoftwind ows ntcurrentversionsvchost] LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr QWAVE wcncsvc . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE~Browser Helper Objects] 2018-01-25 14:01 2478864 ----a-w- crogram files (x86)IObitIObit UninstallerUninstallExplorer.dll . [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentV ersionRun] "Launch LCore"="crogram filesLogitech Gaming SoftwareLCore.exe" [2018-03-19 18591352] "egui"="crogram filesESETESET Securityecmds.exe" [2017-12-18 324352] "Plumbytes Anti-Malware"="crogram filesPlumbytes SoftwarePlumbytes Anti-MalwarePlumbytes.exe" [2017-12-29 1961200] . [HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicest cpipparameterspersistentroutes] "198.54.116.221,255.255.255.255,192.168.1.103,1"=" " "185.111.232.37,255.255.255.255,192.168.1.103,1"=" " "185.111.232.37,255.255.255.255,192.168.1.100,1"=" " "198.54.116.221,255.255.255.255,192.168.1.100,1"=" " "185.111.232.37,255.255.255.255,192.168.1.102,1"=" " "198.54.116.221,255.255.255.255,192.168.1.102,1"=" " . ------- Supplementary Scan ------- . uLocal Page = c:windowssystem32blank.htm uStart Page = about:blank mLocal Page = c:windowsSysWOW64blank.htm Trusted Zone: eset.comhelp TCP: DhcpNameServer = 192.168.1.1 . . [HKEY_LOCAL_MACHINESYSTEMControlSet001servicesnpggs vc] "ImagePath"="c:windowssystem32GameMon.des -service" . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.downloadUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariDownload" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.htmUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.htmlUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.safariextzUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariExtension" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.shtmlUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.svgUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.webarchiveUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.xhtUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.xhtmlUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_USERS.DefaultSoftwareMicrosoftWindowsCurrentV ersionExplorerFileExts.xmlUserChoice] @Denied: (2) (LocalSystem) "Progid"="SafariHTML" . [HKEY_LOCAL_MACHINESOFTWAREBlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00 ,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00 ,5c,00,53,00,6f,00,66,00, . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlPCWSec urity] @Denied: (Full) (Everyone) . ------------------------ Other Running Processes ------------------------ . crogram files (x86)NVIDIA CorporationNvContainernvcontainer.exe crogram files (x86)NVIDIA CorporationNvContainernvcontainer.exe crogram files (x86)IObitIObit UninstallerUninstallMonitor.exe crogram filesLogitech Gaming SoftwareArxAppletsDiscordlogitechg_discord.exe crogram files (x86)GoogleUpdate1.3.33.7GoogleCrashHandler.exe . ************************************************** ************************ . Completion time: 2018-04-15 12:09:47 - machine was rebooted ComboFix-quarantined-files.txt 2018-04-15 09:09 . Pre-Run: 58.668.478.464 bayt boş Post-Run: 58.203.488.256 bayt boş . - - End Of File - - E5BA11F04EE6CC3BAD298BF51EB5A5D3 A36C5E4F47E84449FF07ED3517B43A31

Guncel


Dosya Ekleri hata.png 4,1 KB · Goruntuleme: 115