Arama butonu
Bu konudaki kullanıcılar: 1 misafir
135
Cevap
5553
Tıklama
0
Öne Çıkarma
Cevap: http://serve.bannersdontwork.com/ virüsü! Yardım lütfen! (2. sayfa)
L
12 yıl
Binbaşı
Konu Sahibi

ilk program hata verdi yüklerken trojan dedi yükledikten sonrada non 7 zip archive hatası verdi.


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

quote:

Orijinalden alıntı: BrainDamaged

ilk program hata verdi yüklerken trojan dedi yükledikten sonrada non 7 zip archive hatası verdi.

ilk program önemli :'( neyse alıcaz bir şekilde
iftardan sonra hemen cevaplıyacagım


Bu mesaja 1 cevap geldi.
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

quote:

Orijinalden alıntı: BrainDamaged

ilk program hata verdi yüklerken trojan dedi yükledikten sonrada non 7 zip archive hatası verdi.

ilk program önemli :'( neyse alıcaz bir şekilde
iftardan sonra hemen cevaplıyacagım

peki ben 7 zip indireyim galiba onu indirmemi istiyor proggram


Bu mesaja 1 cevap geldi.
L
12 yıl
Binbaşı
Konu Sahibi

1. programı halledemedim 7zip yine sorun çıkardı comodo falan dedi. :D comodo yu yüklerken iptal etmiştim yüklenmedi diye heralde yüklenmiş. ama bulamıyorum programı

3. adımdaki programı indirdim tarattım temiz çıktı.

2 ve 4 . programları deniyorum şimdi.


Bu mesaja 1 cevap geldi.
L
12 yıl
Binbaşı
Konu Sahibi

2. programı çalıştırdım raporu aşağıda:

Rkill 2.5.9 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 08/06/2013 07:40:51 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* Windows Defender (WinDefend) is not Running.
Startup Type set to: Manual

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 localhost

Program finished at: 08/06/2013 07:42:03 PM
Execution time: 0 hours(s), 1 minute(s), and 12 seconds(s)





bilgisayar her başladığında tekrardan mı çalıştırayım bu programı? şimdi 4. programı indiriyorum.


Bu mesaja 1 cevap geldi.
L
12 yıl
Binbaşı
Konu Sahibi

4. program 2 tane değil 1 tane rapor verdi hocam.

buyrun rapor,

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 11.02.2013 18:28:52
System Uptime: 06.08.2013 19:08:39 (0 hours ago)
.
Motherboard: Quanta | | TWH
Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz | CPU1 | 1980/1333mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 240 GiB total, 143,343 GiB free.
D: is FIXED (NTFS) - 216 GiB total, 197,374 GiB free.
E: is CDROM ()
F: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: AntiLog32
Device ID: ROOT\LEGACY_ANTILOG32\0000
Manufacturer:
Name: AntiLog32
PNP Device ID: ROOT\LEGACY_ANTILOG32\0000
Service: AntiLog32
.
==== System Restore Points ===================
.
RP93: 18.07.2013 14:44:34 - Installed Blogger Backup Utility
RP94: 26.07.2013 03:09:13 - Windows Update
RP95: 31.07.2013 19:25:42 - Aygıt Sürücüsü Paketi Yükle: Connectify Ağ Hizmeti
RP96: 05.08.2013 19:05:21 - Cloud System Booster
RP97: 05.08.2013 19:10:56 - Windows Modül Yükleyicisi
RP98: 06.08.2013 18:12:34 - Aygıt Sürücüsü Paketi Yükle: COMODO Ağ Hizmeti
.
==== Image File Execution Options =============
.
.
==== Installed Programs ======================
.
AD Blocker
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Help Manager
Adobe Reader X (10.1.7) - Turkish
Adobe Shockwave Player 12.0
Advanced SystemCare Ultimate 6
Anti-Vibrate Oscar Editor
Anvi Smart Defender 1.8
Artisteer 4
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
µTorrent
Battlefield 3™
Blogger Backup Utility
Call of Duty: Black Ops
CCleaner
Cheat Engine 6.2
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Cloud System Booster
Connectify
D3DX10
DAEMON Tools Lite
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
EXARadyo 3.2
Finger Sensing Pad Driver
Fotoğraf Galerisi
Google Chrome
Google Update Helper
GTA San Andreas
Hotkey OSD Driver
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) PROSet/Kablosuz WiFi Yazılımı
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
Intel(R) Rapid Storage Technology
Intel(R) Wireless Display
IObit Malware Fighter
Java 7 Update 13 (64-bit)
Java 7 Update 25
Java Auto Updater
Junk Mail filter update
K-Lite Mega Codec Pack 9.3.0
Kaspersky Internet Security 2013
Malwarebytes Anti-Malware 1.75.0.1300 sürümü
Microsoft .NET Framework 4.5
Microsoft .NET Framework 4.5 TRK Dil Paketi
Microsoft .NET Framework 4.5 TRK Language Pack
Microsoft Application Error Reporting
Microsoft Office Access MUI (Turkish) 2010
Microsoft Office Excel MUI (Turkish) 2010
Microsoft Office Groove MUI (Turkish) 2010
Microsoft Office InfoPath MUI (Turkish) 2010
Microsoft Office Office 64-bit Components 2010
Microsoft Office OneNote MUI (Turkish) 2010
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (Turkish) 2010
Microsoft Office PowerPoint MUI (Turkish) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (German) 2010
Microsoft Office Proof (Turkish) 2010
Microsoft Office Proofing (Turkish) 2010
Microsoft Office Publisher MUI (Turkish) 2010
Microsoft Office Shared 64-bit MUI (Turkish) 2010
Microsoft Office Shared MUI (Turkish) 2010
Microsoft Office Word MUI (Turkish) 2010
Microsoft Silverlight
Microsoft SkyDrive
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
Movie Maker
Mozilla Firefox 22.0 (x86 tr)
Mozilla Maintenance Service
MSVCRT
MSVCRT Redists
MSVCRT_amd64
MSVCRT110
MSVCRT110_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
neroxml
Notepad++
NVIDIA Denetim Masası 306.97
NVIDIA Grafik Sürücüsü 306.97
NVIDIA Install Application
NVIDIA Optimus 1.10.8
NVIDIA Update Components
OSCAR Editor
Photo Common
Photo Gallery
RDK 4.5
Realtek USB 2.0 Card Reader
Security Update for Microsoft .NET Framework 4.5 (KB2737083)
Security Update for Microsoft .NET Framework 4.5 (KB2742613)
Security Update for Microsoft .NET Framework 4.5 (KB2789648)
Security Update for Microsoft .NET Framework 4.5 (KB2804582)
Security Update for Microsoft .NET Framework 4.5 (KB2833957)
Security Update for Microsoft .NET Framework 4.5 (KB2840642)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skype Click to Call
Skype™ 6.3
Smart Defrag 2
Snagit 11
Sony Ericsson Update Engine
Sony PC Companion 2.10.136
swMSM
sXe Injected
TeamSpeak 3 Client
TeamViewer 8
TP-LINK Wireless Utility
Update for Microsoft .NET Framework 4.5 (KB2750147)
Update for Microsoft .NET Framework 4.5 (KB2805221)
Update for Microsoft .NET Framework 4.5 (KB2805226)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Windows Live Communications Platform
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Mail
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Temel Parçalar
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinRAR 4.20 (32-bit)
.
==== End Of File ===========================


1. program kaldı bir tek onuda halletcez inşallah.


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

µTorrent ,DAEMON Tools Lite öncelikle bunu kaldıralım.
4.programı tekrar çalıştırın 2 tane vermesi lazım


Bu mesaja 2 cevap geldi.

Bu mesajda bahsedilenler: @BrainDamaged
G
12 yıl
Yüzbaşı

Ekleme
Windows Defender tüm özelliklerini etkinleştirin


Bu mesaja 1 cevap geldi.

Bu mesajda bahsedilenler: @BrainDamaged
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

µTorrent ,DAEMON Tools Lite öncelikle bunu kaldıralım.
4.programı tekrar çalıştırın 2 tane vermesi lazım


peki kaldırıyorum 4. yü çalıştırırken başka bir program trojan uyarısı verdi 3-4 kere allow refuse ben tıklamadan kendisi otomatik allow diyor refuse diyiimmi yoksa ellemeyiimmi? hiç bir işlem yapmayın yazdınızda program çalışırken :)


Bu mesaja 1 cevap geldi.
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

Ekleme
Windows Defender tüm özelliklerini etkinleştirin


windows defender kullanmıyorum kaspersky kullandığımdan dolayı çakışma yapmaz mı?


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

quote:

Orijinalden alıntı: BrainDamaged

quote:

Orijinalden alıntı: Majardoma

µTorrent ,DAEMON Tools Lite öncelikle bunu kaldıralım.
4.programı tekrar çalıştırın 2 tane vermesi lazım


peki kaldırıyorum 4. yü çalıştırırken başka bir program trojan uyarısı verdi 3-4 kere allow refuse ben tıklamadan kendisi otomatik allow diyor refuse diyiimmi yoksa ellemeyiimmi? hiç bir işlem yapmayın yazdınızda program çalışırken :)

Açık olan tüm dosya ve Klasörlerinizi kapatın.
Güvenlik yazılımlarınızı geçici olarak devre dışı bırakın.
Yazılıma çift tıklayıp çalıştırın.
Çıkan uyarıyı Tamam / Ok butonunu işaretleyerek geçin.
İşlemlerin sonunda masaüstünüzde DDS.txt ve Attach.txt adından iki rapor oluşacak. Lütfen bu raporlarını ''Dosya-->Farklı Kaydet'' yoluyla kaydedip, sizden istenilen diğer raporlar birlikte gönderin.
Yukarıdaki işlemi yaparak rapor almakta sorun yaşıyorsanız aşağıdaki işlemi yapınız.
DDS Yazılımını Buradan indiriniz.
Çift tıklayarak aracı çalıştırınız.
Panelden"Options for dds.txt" seçeneğini tıklayın.
"Attach.txt" seçeneğinin yanındaki kutuyu işaretleyin.
Mbr seçeneğinin yanıdaki onay kutucuğunundaki onay işaretini kaldırın.
Start Tuşuna basın.
Raporu gönderiniz.

Birde trojen uyarısını ss ile atarsanız iyi olur



L
12 yıl
Binbaşı
Konu Sahibi

G
12 yıl
Yüzbaşı

kaspersky şimdilik kapatalım


Bu mesaja 1 cevap geldi.

Bu mesajda bahsedilenler: @BrainDamaged
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

kaspersky şimdilik kapatalım

peki kapatıp dds yi çalıştırıyorum


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

bekliyorum.


Bu mesaja 1 cevap geldi.

Bu mesajda bahsedilenler: @BrainDamaged
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

bekliyorum.

hocam kasperi kapattım anvi smart defender bu program çalışırken trojan uyarısı veriyor bir şey demezsem dds çalışmıyor allow dedim olmadı refuse dedim 12 kere geldi uyarı toplam bu arada rapor boş bir txt oluştu trojan resmi aşağıda


< Resime gitmek için tıklayın >


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

Kapatma gibi imkanımız varmı?


Bu mesaja 1 cevap geldi.

Bu mesajda bahsedilenler: @BrainDamaged
L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

Kapatma gibi imkanımız varmı?

kapattım programı dds yi çalıştırıyorum tekrardan


Bu mesaja 1 cevap geldi.
G
12 yıl
Yüzbaşı

L
12 yıl
Binbaşı
Konu Sahibi

quote:

Orijinalden alıntı: Majardoma

Tamamdır.

2 rapor fırından yeni çıktı.

dds txt aşağıda

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16635 BrowserJavaVersion: 10.25.2
Run by user at 20:13:36 on 2013-08-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1254.90.1055.18.8140.5567 [GMT 3:00]
.
AV: Kaspersky Internet Security *Enabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AV: Advanced SystemCare Ultimate *Enabled/Updated* {1C304DC4-1D72-5DB9-B33A-43B638ECFD30}
SP: Kaspersky Internet Security *Enabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: IObit Malware Fighter *Enabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D}
SP: COMODO Antivirus *Disabled/Outdated* {0C2D2636-923D-EE52-2A83-E643204A8275}
FW: COMODO Firewall *Enabled* {8F7746F7-FE68-E084-3B6C-7404A51E8FB3}
FW: Kaspersky Internet Security *Enabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ascsvc.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ascavsvc.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\toolbox\****er\****erSrv.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Anvisoft\Cloud System Booster\CSBSvc.exe
C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDSrv.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Program Files (x86)\Connectify\ConnectifyService.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files (x86)\Connectify\ConnectifyD.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Hotkey OSD Driver\hkosdsvis.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\TP-LINK\Common\RaRegistry.exe
C:\Program Files (x86)\TP-LINK\Common\RaRegistry64.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Hotkey OSD Driver\NButilps.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
C:\Program Files\FSP\FspUip.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\Monitor.exe
C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCTray.exe
C:\Program Files (x86)\TP-LINK\Common\TWCU.exe
C:\Program Files (x86)\Anvisoft\Cloud System Booster\CloudSystemBooster.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\System32\alg.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\toolbox\****er\****erTray.exe
C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\SysWOW64\msiexec.exe
C:\Windows\system32\msiexec.exe
C:\Windows\system32\MsiExec.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\TechSmith\Snagit 11\Snagit32.exe
C:\Program Files (x86)\TechSmith\Snagit 11\TSCHelp.exe
C:\Program Files (x86)\TechSmith\Snagit 11\SnagPriv.exe
C:\Program Files (x86)\TechSmith\Snagit 11\snagiteditor.exe
C:\Windows\splwow64.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uProxyOverride = local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Microsoft hesabı Oturum Açma Yardım Aracı: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Advanced SystemCare Browser Protection: {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\BrowerProtect\ASCPlugin_Protection.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: URL ****or Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\Url****or\klwtbbho.dll
uRun: [Advanced SystemCare Ultimate] "C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCTray.exe" /AutoStart
uRun: [CloudSystemBooster] C:\Program Files (x86)\Anvisoft\Cloud System Booster\CloudSystemBooster.exe hide=true
mRun: [HotKeyOSD] C:\Program Files (x86)\Hotkey OSD Driver\HotKeyOSD.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe"
mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun: [IObit Malware Fighter] "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [****er] C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\toolbox\****er\****erTray.exe -tray
mRun: [Anvi Smart Defender] C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDTray.exe
StartupFolder: C:\Users\user\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ZZZMGA~1.LNK - C:\Program Files (x86)\valve\platform\baslangic_serverlist.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\TP-LIN~1.LNK - C:\Program Files (x86)\TP-LINK\Common\TWCU.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun = dword:60
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SynchronousUserGroupPolicy = dword:0
mPolicies-System: SynchronousMachineGroupPolicy = dword:0
mPolicies-Windows\System: AllowBlockingAppsAtShutdown = dword:1
IE: Reklam Başlığı Engelleyicisine ekle - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\Url****or\klwtbbho.dll
IE: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE} : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\45142594D4D213 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\45142594D4D213 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\45142594D4D243 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\45142594D4D243 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\46C696E6B6 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{77F53628-1192-465A-9B6D-4AE0A1A8B7AE}\D4F44454D4 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E} : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\249676162496C6769637169716278416374716E6563796 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D213 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D213 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D233 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D233 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D243 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\45142594D4D243 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\8707562796160216C607 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{E4741FA3-B751-4568-B2F1-88125D12EB7E}\8707562796160216C607 : DHCPNameServer = 192.168.43.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\Windows\SysWOW64\nvinit.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: Content Blocker Plugin: {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll
x64-BHO: Virtual Keyboard Plugin: {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Safe Money Plugin: {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-BHO: URL ****or Plugin: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\Url****or\klwtbbho.dll
x64-Run: [fspuip] C:\Program Files (x86)\FSP\fspuip.exe
x64-Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
x64-Run: [BTMTrayAgent] rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-IE: {0C4CC089-D306-440D-9772-464E226F6539} - {0BA14598-4178-4CE5-B1F1-B5C6408A3F2E} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - <orphaned>
x64-IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\Url****or\klwtbbho.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\1iz2squw.default-1375718406548\
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_165.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_170.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_129.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 2013-07-20 02:27; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
.
============= SERVICES / DRIVERS ===============
.
R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2012-10-8 30056]
R0 SmartDefragDriver;SmartDefragDriver;C:\Windows\System32\drivers\SmartDefragDriver.sys [2013-8-5 17720]
R1 asdnet;asdnet;C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\toolbox\****er\sys\amd64\asdnet.sys [2013-8-5 19280]
R1 asdrm;asdrm;C:\Windows\System32\drivers\asdrm.sys [2013-8-5 18768]
R1 cnnctfy3;Connectify LightWeight Filter;C:\Windows\System32\drivers\cnnctfy3.sys [2013-7-31 34840]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\System32\drivers\klim6.sys [2012-8-2 28504]
R1 kltdi;kltdi;C:\Windows\System32\drivers\kltdi.sys [2012-6-8 54368]
R1 kneps;kneps;C:\Windows\System32\drivers\kneps.sys [2012-8-13 178448]
R2 ****erSrv;AD Blocker Service;C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\toolbox\****er\****erSrv.exe [2013-8-5 279368]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6;C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCSvc.exe [2013-7-8 1051088]
R2 AnviCsbSvc;Anvi Cloud System Booster Speed Service;C:\Program Files (x86)\Anvisoft\Cloud System Booster\CSBSvc.exe [2012-12-14 318312]
R2 ASCAntivirusSrv;AdvancedSystemCareAntivirus;C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCAvSvc.exe [2013-7-8 621008]
R2 asdrs;AntiMalware Host-based Intrusion Prevention System;C:\Windows\System32\drivers\asdrs.sys [2013-8-5 23376]
R2 asdsrv;Anvi Smart Defender Realtime Guard Service;C:\Program Files (x86)\Anvisoft\Anvi Smart Defender\ASDSrv.exe [2012-12-21 735592]
R2 asdws;AnviSmartDefender Web Guard;C:\Windows\System32\drivers\asdws.sys [2013-8-5 17232]
R2 AVP;Kaspersky Koruma Hizmeti;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [2012-8-17 356376]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-3 897088]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2010-11-3 983104]
R2 Connectify;Connectify;C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-7-8 156672]
R2 hkosdservice;Hotkey OSD Service;C:\Program Files (x86)\Hotkey OSD Driver\hkosdsvis.exe [2010-10-22 231504]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-5-4 13336]
R2 IMFservice;IMF Service;C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2013-2-28 335168]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-8-5 418376]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-8-5 701512]
R2 RalinkRegistryWriter;Ralink Registry Writer;C:\Program Files (x86)\TP-LINK\Common\RaRegistry.exe [2013-7-8 185632]
R2 RalinkRegistryWriter64;Ralink Registry Writer 64;C:\Program Files (x86)\TP-LINK\Common\RaRegistry64.exe [2013-7-8 212256]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-7-12 3289472]
R2 TeamViewer8;TeamViewer 8;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-8-3 4153184]
R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-2-11 2656280]
R3 fspad_win764;Finger Sensing Pad Driver for Windows 2000/XP/Vista/Win7_win764;C:\Windows\System32\drivers\fspad_win764.sys [2013-2-11 32256]
R3 IntcDAud;Intel(R) Ekran İçin Ses;C:\Windows\System32\drivers\IntcDAud.sys [2013-2-11 317440]
R3 klkbdflt;Kaspersky Lab KLKBDFLT;C:\Windows\System32\drivers\klkbdflt.sys [2012-10-25 29016]
R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\System32\drivers\klmouflt.sys [2012-10-25 29528]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2013-2-11 76912]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-8-5 25928]
R3 wdkmd;Intel WiDi KMD;C:\Windows\System32\drivers\WDKMD.sys [2010-12-1 42392]
RUnknown cmderd;cmderd; [x]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-8 123856]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-28 161384]
S3 Bluetooth Media Service;Bluetooth Media Service; [x]
S3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\System32\drivers\btmaux.sys [2010-11-4 58128]
S3 btmhsf;btmhsf;C:\Windows\System32\drivers\btmhsf.sys [2010-10-19 274432]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2013-4-27 57856]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-9-12 1512448]
S3 ggflt;SEMC USB Flash Driver Filter;C:\Windows\System32\drivers\ggflt.sys [2013-4-16 14448]
S3 iBtFltCoex;iBtFltCoex;C:\Windows\System32\drivers\iBtFltCoex.sys [2010-11-4 59904]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2010-11-2 340240]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-3-2 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2013-2-11 246376]
S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\System32\drivers\ScreamingBAudio64.sys [2010-7-1 38992]
S3 Sony PC Companion;Sony PC Companion;C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-3-4 155320]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-3-2 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-3-2 30208]
S3 WatAdminSvc;Windows Etkinleştirme Teknolojileri Hizmeti;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-3-2 1255736]
SUnknown cmdvirth;cmdvirth; [x]
.
=============== Created Last 30 ================
.
2013-08-06 16:58:30 9317456 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3A27E92D-64EC-4ABF-A60D-80694255A92D}\mpengine.dll
2013-08-06 16:31:31 437688 ----a-w- C:\Windows\System32\TBDEF92.tmp
2013-08-06 16:31:31 43216 ----a-w- C:\Windows\System32\TBDEFC3.tmp
2013-08-06 16:31:31 348584 ----a-w- C:\Windows\SysWow64\TBDEFB2.tmp
2013-08-06 15:12:14 -------- d-----w- C:\ProgramData\Shared Space
2013-08-06 15:11:34 -------- d-----w- C:\Program Files\COMODO
2013-08-06 15:11:05 -------- d-----w- C:\ProgramData\Comodo
2013-08-06 15:11:02 -------- d-----w- C:\ProgramData\Comodo Downloader
2013-08-05 21:25:10 -------- d-----w- C:\Users\user\AppData\Local\ckck
2013-08-05 21:25:07 784264 ----a-w- C:\Users\user\CikcikOkey.exe
2013-08-05 18:39:31 -------- d-----w- C:\Program Files (x86)\sXe Injected
2013-08-05 16:58:10 -------- d-sh--w- C:\$RECYCLE.BIN
2013-08-05 16:30:36 98816 ----a-w- C:\Windows\sed.exe
2013-08-05 16:30:36 256000 ----a-w- C:\Windows\PEV.exe
2013-08-05 16:30:36 208896 ----a-w- C:\Windows\MBR.exe
2013-08-04 23:42:45 -------- d-----w- C:\Users\user\AppData\Roaming\Anvisoft
2013-08-04 23:42:30 23376 ----a-w- C:\Windows\System32\drivers\asdrs.sys
2013-08-04 23:42:30 18768 ----a-w- C:\Windows\System32\drivers\asdrm.sys
2013-08-04 23:42:30 17232 ----a-w- C:\Windows\System32\drivers\asdws.sys
2013-08-04 23:42:14 -------- d-----w- C:\ProgramData\Anvisoft
2013-08-04 23:42:08 -------- d-----w- C:\Program Files (x86)\Anvisoft
2013-08-04 23:34:39 -------- d-----w- C:\Users\user\AppData\Roaming\Malwarebytes
2013-08-04 23:34:29 -------- d-----w- C:\ProgramData\Malwarebytes
2013-08-04 23:34:28 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2013-08-04 23:34:27 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-04 21:20:34 17720 ----a-w- C:\Windows\System32\drivers\SmartDefragDriver.sys
2013-08-03 19:11:31 -------- d-----w- C:\Program Files (x86)\TeamViewer
2013-08-03 18:37:25 -------- d-----w- C:\ProgramData\VirtualWifiRouter
2013-08-02 03:11:34 -------- d-----w- C:\Users\user\AppData\Roaming\Artisteer
2013-08-02 03:10:00 -------- d-----w- C:\Program Files (x86)\Artisteer 4
2013-07-31 16:25:29 34840 ----a-w- C:\Windows\System32\drivers\cnnctfy3.sys
2013-07-31 16:18:11 -------- d-----w- C:\Users\user\AppData\Local\SkinSoft
2013-07-31 16:13:40 31344 ----a-w- C:\Windows\System32\drivers\cnnctfy2.sys
2013-07-31 16:00:33 -------- d-----w- C:\Program Files (x86)\SaveShare
2013-07-31 15:53:06 -------- d-----w- C:\ProgramData\StarApp
2013-07-31 15:52:35 -------- d-----w- C:\ProgramData\InstallMate
2013-07-19 18:46:11 -------- d-----w- C:\Users\user\AppData\Roaming\Shenturk
2013-07-19 18:45:59 -------- d-----w- C:\Program Files (x86)\Shenturk
2013-07-18 11:45:42 -------- d-----w- C:\Users\user\AppData\Roaming\JAGED Inc
2013-07-18 11:45:22 -------- d-----w- C:\Program Files (x86)\BloggerBackup
2013-07-12 11:42:18 6129024 ----a-w- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
2013-07-12 11:42:18 6129024 ----a-w- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
2013-07-10 14:00:49 -------- d-----w- C:\Windows\System32\MRT
2013-07-09 19:19:05 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-07-09 19:19:05 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
2013-07-09 19:19:02 257536 ----a-w- C:\Program Files (x86)\Internet Explorer\ieproxy.dll
2013-07-09 19:19:01 701952 ----a-w- C:\Program Files\Internet Explorer\ieproxy.dll
2013-07-09 19:19:01 356864 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll
2013-07-09 19:19:01 278528 ----a-w- C:\Program Files\Internet Explorer\sqmapi.dll
2013-07-09 19:19:01 235520 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll
2013-07-09 19:19:01 217600 ----a-w- C:\Program Files (x86)\Internet Explorer\sqmapi.dll
2013-07-09 19:07:21 1887744 ----a-w- C:\Windows\System32\WMVDECOD.DLL
2013-07-09 19:07:21 1620480 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL
2013-07-09 19:06:36 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll
2013-07-09 19:06:36 571904 ----a-w- C:\Program Files\Windows Defender\MpClient.dll
2013-07-09 19:06:36 54784 ----a-w- C:\Program Files (x86)\Windows Defender\MpOAV.dll
2013-07-09 19:06:36 4608 ----a-w- C:\Program Files (x86)\Windows Defender\MsMpLics.dll
2013-07-09 19:06:36 392704 ----a-w- C:\Program Files (x86)\Windows Defender\MpClient.dll
2013-07-09 19:06:36 314880 ----a-w- C:\Program Files\Windows Defender\MpCommu.dll
2013-07-09 19:06:36 1011712 ----a-w- C:\Program Files\Windows Defender\MpSvc.dll
2013-07-09 19:05:56 1732608 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2013-07-09 19:05:56 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll
2013-07-09 19:05:56 1393152 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2013-07-09 19:05:56 1367040 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2013-07-09 19:05:55 936448 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2013-07-09 19:05:55 3153920 ----a-w- C:\Windows\System32\win32k.sys
2013-07-09 19:05:45 624128 ----a-w- C:\Windows\System32\qedit.dll
2013-07-09 19:05:45 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
2013-07-09 19:05:38 1643520 ----a-w- C:\Windows\System32\DWrite.dll
2013-07-09 19:05:37 1247744 ----a-w- C:\Windows\SysWow64\DWrite.dll
2013-07-08 21:40:25 -------- d-----w- C:\Users\user\AppData\Local\SKIDROW
2013-07-08 21:32:05 -------- d-----w- C:\Users\user\AppData\Local\Activision
2013-07-08 21:01:45 -------- d-----w- C:\Program Files (x86)\Activision
2013-07-08 20:57:32 -------- d-----w- C:\Program Files (x86)\Connectify
2013-07-08 20:56:57 -------- d-----w- C:\ProgramData\Package Cache
2013-07-08 20:55:09 -------- d-----w- C:\ProgramData\Connectify
2013-07-08 13:41:27 -------- d-----w- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2013-07-08 13:41:24 -------- d-----w- C:\ProgramData\{5A85B23A-4B58-47D1-9B9C-DFBD7866099F}
2013-07-08 09:31:14 -------- d-----w- C:\ProgramData\Ralink
2013-07-08 09:30:26 326496 ----a-w- C:\Windows\System32\RaCoInstx.dll
2013-07-08 09:30:26 1121632 ----a-w- C:\Windows\System32\drivers\netr28ux.sys
2013-07-08 09:30:26 -------- d-----w- C:\ProgramData\TP-LINK Driver
2013-07-08 09:30:10 2061600 ----a-w- C:\Windows\System32\RaCertMgr.dll
2013-07-08 09:30:10 1590560 ----a-w- C:\Windows\SysWow64\RaCertMgr.dll
2013-07-08 09:30:10 109856 ----a-w- C:\Windows\SysWow64\RAEXTUI.dll
2013-07-08 09:30:10 109856 ----a-w- C:\Windows\System32\RAEXTUI.dll
2013-07-08 09:30:10 1063200 ----a-w- C:\Windows\SysWow64\RAIHV.dll
2013-07-08 09:30:10 1063200 ----a-w- C:\Windows\System32\RAIHV.dll
2013-07-08 09:30:09 -------- d-----w- C:\Program Files (x86)\TP-LINK
.
==================== Find3M ====================
.
2013-08-06 10:16:34 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-08-06 10:16:34 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-07-01 11:27:04 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2013-07-01 11:27:02 867240 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll
2013-07-01 11:27:02 789416 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2013-06-19 09:36:59 54368 ----a-w- C:\Windows\System32\drivers\kltdi.sys
2013-06-12 10:27:18 1910632 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-06-12 10:26:55 751104 ----a-w- C:\Windows\System32\win32spl.dll
2013-06-12 10:26:55 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll
2013-06-12 10:26:39 30720 ----a-w- C:\Windows\System32\cryptdlg.dll
2013-06-12 10:26:39 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll
2013-06-12 10:26:13 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2013-06-12 10:26:13 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2013-06-12 10:26:03 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2013-06-12 10:26:03 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2013-06-12 10:25:40 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2013-06-12 10:25:40 52224 ----a-w- C:\Windows\System32\certenc.dll
2013-06-12 10:25:40 43008 ----a-w- C:\Windows\SysWow64\certenc.dll
2013-06-12 10:25:40 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2013-06-12 10:25:40 1464320 ----a-w- C:\Windows\System32\crypt32.dll
2013-06-12 10:25:40 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2013-06-12 10:25:40 139776 ----a-w- C:\Windows\System32\cryptnet.dll
2013-06-12 10:25:40 1192448 ----a-w- C:\Windows\System32\certutil.exe
2013-06-12 10:25:40 1160192 ----a-w- C:\Windows\SysWow64\crypt32.dll
2013-06-12 10:25:40 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2013-06-11 23:43:37 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-06-11 23:43:00 2877440 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-06-11 23:42:58 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
2013-06-11 23:42:58 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
2013-06-11 23:26:20 2241024 ----a-w- C:\Windows\System32\wininet.dll
2013-06-11 23:25:16 3958784 ----a-w- C:\Windows\System32\jscript9.dll
2013-06-11 23:25:13 67072 ----a-w- C:\Windows\System32\iesetup.dll
2013-06-11 23:25:13 136704 ----a-w- C:\Windows\System32\iesysprep.dll
2013-06-11 22:51:45 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
2013-06-11 22:50:58 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2013-05-15 17:54:40 286720 ----a-w- C:\Windows\iun506.exe
.
============= FINISH: 20:14:21,16 ===============


attach txt aşağıda

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 11.02.2013 18:28:52
System Uptime: 06.08.2013 19:08:39 (1 hours ago)
.
Motherboard: Quanta | | TWH
Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz | CPU1 | 1980/1333mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 240 GiB total, 143,347 GiB free.
D: is FIXED (NTFS) - 216 GiB total, 197,374 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: AntiLog32
Device ID: ROOT\LEGACY_ANTILOG32\0000
Manufacturer:
Name: AntiLog32
PNP Device ID: ROOT\LEGACY_ANTILOG32\0000
Service: AntiLog32
.
==== System Restore Points ===================
.
RP93: 18.07.2013 14:44:34 - Installed Blogger Backup Utility
RP94: 26.07.2013 03:09:13 - Windows Update
RP95: 31.07.2013 19:25:42 - Aygıt Sürücüsü Paketi Yükle: Connectify Ağ Hizmeti
RP96: 05.08.2013 19:05:21 - Cloud System Booster
RP97: 05.08.2013 19:10:56 - Windows Modül Yükleyicisi
RP98: 06.08.2013 18:12:34 - Aygıt Sürücüsü Paketi Yükle: COMODO Ağ Hizmeti
.
==== Installed Programs ======================
.
AD Blocker
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Help Manager
Adobe Reader X (10.1.7) - Turkish
Adobe Shockwave Player 12.0
Advanced SystemCare Ultimate 6
Anti-Vibrate Oscar Editor
Anvi Smart Defender 1.8
Artisteer 4
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
Battlefield 3™
Blogger Backup Utility
Call of Duty: Black Ops
CCleaner
Cheat Engine 6.2
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Cloud System Booster
Connectify
D3DX10
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
EXARadyo 3.2
Finger Sensing Pad Driver
Fotoğraf Galerisi
Google Chrome
Google Update Helper
GTA San Andreas
Hotkey OSD Driver
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) PROSet/Kablosuz WiFi Yazılımı
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
Intel(R) Rapid Storage Technology
Intel(R) Wireless Display
IObit Malware Fighter
Java 7 Update 13 (64-bit)
Java 7 Update 25
Java Auto Updater
Junk Mail filter update
K-Lite Mega Codec Pack 9.3.0
Kaspersky Internet Security 2013
Malwarebytes Anti-Malware 1.75.0.1300 sürümü
Microsoft .NET Framework 4.5
Microsoft .NET Framework 4.5 TRK Dil Paketi
Microsoft .NET Framework 4.5 TRK Language Pack
Microsoft Application Error Reporting
Microsoft Office Access MUI (Turkish) 2010
Microsoft Office Excel MUI (Turkish) 2010
Microsoft Office Groove MUI (Turkish) 2010
Microsoft Office InfoPath MUI (Turkish) 2010
Microsoft Office Office 64-bit Components 2010
Microsoft Office OneNote MUI (Turkish) 2010
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (Turkish) 2010
Microsoft Office PowerPoint MUI (Turkish) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (German) 2010
Microsoft Office Proof (Turkish) 2010
Microsoft Office Proofing (Turkish) 2010
Microsoft Office Publisher MUI (Turkish) 2010
Microsoft Office Shared 64-bit MUI (Turkish) 2010
Microsoft Office Shared MUI (Turkish) 2010
Microsoft Office Word MUI (Turkish) 2010
Microsoft Silverlight
Microsoft SkyDrive
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
Movie Maker
Mozilla Firefox 22.0 (x86 tr)
Mozilla Maintenance Service
MSVCRT
MSVCRT Redists
MSVCRT_amd64
MSVCRT110
MSVCRT110_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
neroxml
Notepad++
NVIDIA Denetim Masası 306.97
NVIDIA Grafik Sürücüsü 306.97
NVIDIA Install Application
NVIDIA Optimus 1.10.8
NVIDIA Update Components
OSCAR Editor
Photo Common
Photo Gallery
RDK 4.5
Realtek USB 2.0 Card Reader
Security Update for Microsoft .NET Framework 4.5 (KB2737083)
Security Update for Microsoft .NET Framework 4.5 (KB2742613)
Security Update for Microsoft .NET Framework 4.5 (KB2789648)
Security Update for Microsoft .NET Framework 4.5 (KB2804582)
Security Update for Microsoft .NET Framework 4.5 (KB2833957)
Security Update for Microsoft .NET Framework 4.5 (KB2840642)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skype Click to Call
Skype™ 6.3
Smart Defrag 2
Snagit 11
Sony Ericsson Update Engine
Sony PC Companion 2.10.136
swMSM
sXe Injected
TeamSpeak 3 Client
TeamViewer 8
TP-LINK Wireless Utility
Update for Microsoft .NET Framework 4.5 (KB2750147)
Update for Microsoft .NET Framework 4.5 (KB2805221)
Update for Microsoft .NET Framework 4.5 (KB2805226)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Windows Live Communications Platform
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Mail
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Temel Parçalar
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinRAR 4.20 (32-bit)
.
==== End Of File ===========================


Bu mesaja 1 cevap geldi.