![]() ![]() ![]() Üyelik tarihi: 06.12.2007 Yaş: 22
Mesajlar: 8.964
Teşekkür etti: 624
301 Teşekkür 203 Mesaja aldı
|
virus taratma yaptin mi
|
|
|
|
![]() ![]() ![]() Üyelik tarihi: 06.12.2007 Yaş: 22
Mesajlar: 8.964
Teşekkür etti: 624
301 Teşekkür 203 Mesaja aldı
|
online "panda antivirus" dene yada kaspersky
|
|
|
|
![]() ![]() ![]() Üyelik tarihi: 06.12.2007 Yaş: 22
Mesajlar: 8.964
Teşekkür etti: 624
301 Teşekkür 203 Mesaja aldı
|
ya sen var ya bacim en iyisi format at ya
benim isime gelmeyince hemen format cd'me sariLiom ![]() |
|
|
|
![]() Üyelik tarihi: 06.05.2002 Yaş: 32
Mesajlar: 6.435
Teşekkür etti: 81
345 Teşekkür 153 Mesaja aldı
|
Auslastung yapan bir Program veya bir Dienst veya herhangi gibi bir şey bunu bilnmeden hiç bir şey olmaz. Taskleistede Computeri belasten yapan Prozess hangisi. Ve Auslagerungsdatei Automatisch mi? Eingestellt. Bu Programlar ile analiz yapabilirsin Download ise üst sağ tarafta http://technet.microsoft.com/en-us/s.../bb896653.aspx http://technet.microsoft.com/en-us/s.../bb896645.aspx |
||||||||||||||||||
|
|
|
||||||||||||||||||
![]() ![]() ![]() ![]() Üyelik tarihi: 02.01.2005
Mesajlar: 9.742
Teşekkür etti: 91
453 Teşekkür 204 Mesaja aldı
|
genelikle firefox, msn und explorer prozesslerde oluyor woher weiß ich, dass die auslagerungsdatei automatisch eingestellt ist
__________________
Dua, kulun ALLAH'A derdini bildirmesi degil, derdin dermaninin ancak ALLAH oldugunu bilmesidir |
||||||||||||||||||
|
|
|
||||||||||||||||||
![]() Üyelik tarihi: 06.05.2002 Yaş: 32
Mesajlar: 6.435
Teşekkür etti: 81
345 Teşekkür 153 Mesaja aldı
|
EINSTELLUNGEN SYSTEMSTEUERUNG SYSTEM (ICON) Erweitert seçiyorsun Systemleistung üst de sağ tarafta Einstellungen,Oradada Erweitert var. Taskde kaç Prozess çalıştığıda önemli mesela bende en fazla normalinde 28 veya 30 şuan biraz çok Programlar açık olduğundan. Firefox da kullandığın Addonlar sorun yapabilir,Bilhassa Modification yapılmış FF Kullanıyorsanki cidden tavsiye etmem bende bilhassa donuyordu. HijackThis http://www.spywareinfo.com/~merijn/p...php#hijackthis Download yapıp Logları buraya atarmısın? |
||||||||||||||||||
|
|
|
||||||||||||||||||
![]() Üyelik tarihi: 06.05.2002 Yaş: 32
Mesajlar: 6.435
Teşekkür etti: 81
345 Teşekkür 153 Mesaja aldı
|
Programı açtıktan sonra,
En üstdeki buttona veya yazıya tıkla,Hata gösterirse bile ok de BETA doğru çalışmıyor herhalde,Sonra sana bir txt file açacak ve içindekileri buraya paste yap yani Einfügen,Böyle bir şey Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 15:58:19, on 07.01.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programme\ABBYY FineReader 9.0\NetworkLicenseServer.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\Programme\Diskeeper Corporation\Diskeeper\DkService.exe C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\mdm.exe C:\Programme\Eset\nod32krn.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\Programme\UPHClean\uphclean.exe C:\WINDOWS\CTHELPER.EXE C:\Programme\Eset\nod32kui.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Programme\MailShieldDesktop\mailshield.exe C:\Programme\AM-Notebook\notebook.exe C:\Programme\Mozilla Firefox\firefox.exe C:\Programme\JetAudio\JetAudio.exe C:\Programme\TC UP\TOTALCMD.EXE C:\WINDOWS\system32\rundll32.exe D:\I-Downloads\HiJackThis_v2.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.de/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://update.microsoft.com/microsoftupdate O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Programme\FlashGet\jccatch.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Programme\Real\RealPlayer\rpbrowserrecordplugin .dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Programme\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\Programme\FlashFXP\IEFlash.dll O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Programme\FlashGet\getflash.dll O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Programme\Siber Systems\AI RoboForm\roboform.dll O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Programme\FlashGet\fgiebar.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [nod32kui] "C:\Programme\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [MailShieldDesktop] "C:\Programme\MailShieldDesktop\mailshield.exe " O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: AM-Notebook.lnk = C:\Programme\AM-Notebook\notebook.exe O4 - Startup: ClearProg.lnk = ? O4 - Startup: StartupFaster O4 - Global Startup: StartupFaster O8 - Extra context menu item: &Alles mit FlashGet laden - C:\Programme\FlashGet\jc_all.htm O8 - Extra context menu item: &Mit FlashGet laden - C:\Programme\FlashGet\jc_link.htm O8 - Extra context menu item: An vorhandenes PDF anfügen - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: In Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: RF - Formular ausfüllen - file://C:\Programme\Siber Systems\AI RoboForm\RoboFormComFillForms.html O8 - Extra context menu item: RF - Menü anpassen - file://C:\Programme\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html O8 - Extra context menu item: RF - PassCard-Editor - file://C:\Programme\Siber Systems\AI RoboForm\RoboFormComEditPass.html O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - res://C:\Programme\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Programme\Paltalk Messenger\Paltalk.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Programme\FlashGet\FlashGet.exe O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Programme\FlashGet\FlashGet.exe O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15030/CTSUEng.cab O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.nvidia.com/content/Driver...sysreqlab2.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15031/CTPID.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{9C040EFB-D7CA-4A3A-BF73-B1FD78917390}: NameServer = 192.168.178.1 O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: ABBYY FineReader 9.0-Lizenzierungsdienst (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Programme\ABBYY FineReader 9.0\NetworkLicenseServer.exe O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programme\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Programme\MAGIX\Common\Database\bin\fbserver.ex e O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programme\Gemeinsame Dateien\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NMIndexingService - Nero AG - C:\Programme\Gemeinsame Dateien\Nero\Lib\NMIndexingService.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programme\Eset\nod32krn.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PCLEPCI - Pinnacle Systems GmbH - C:\WINDOWS\system32\drivers\pclepci.sys O23 - Service: L Ile Noyee Drivers Auto Removal (pr2ajbeb) (pr2ajbeb) - Micro Application - C:\WINDOWS\system32\pr2ajbeb.exe O23 - Service: ServiceLayer - Nokia. - C:\Programme\PC Connectivity Solution\ServiceLayer.exe O23 - Service: TuneUp Drive Defrag-Dienst (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Programme\Windows Live\installer\WLSetupSvc.exe -- End of file - 10037 bytes |
|
|
|
![]() Üyelik tarihi: 06.05.2002 Yaş: 32
Mesajlar: 6.435
Teşekkür etti: 81
345 Teşekkür 153 Mesaja aldı
|
O4 - HKLM\..\Policies\Explorer\Run: [rare] C:\Programme\Video AX Object\smmain.exe
O4 - HKLM\..\Policies\Explorer\Run: [user32.dll] C:\Programme\Video AX Object\bpmon.exe Bu Video AX ne Programı? |
|
|
|
![]() ![]() ![]() ![]() Üyelik tarihi: 02.01.2005
Mesajlar: 9.742
Teşekkür etti: 91
453 Teşekkür 204 Mesaja aldı
|
keine ahnung, böyle birseyin oldugunu bile bilmiyordum
google baktim, ve orada trojaner diyor, olabilir mi? hab unter c:\programme geschaut, ama orada öyle bi programm Video AX yok ![]()
__________________
Dua, kulun ALLAH'A derdini bildirmesi degil, derdin dermaninin ancak ALLAH oldugunu bilmesidir |
|
|
|