Şimdi Ara

HijackThis. Performans + Güvenlik! (Virüslerden kurtulun). 500.000+ (187. sayfa)

Daha Fazla
Bu Konudaki Kullanıcılar: Daha Az
2 Misafir - 2 Masaüstü
5 sn
9.877
Cevap
17
Favori
1.237.454
Tıklama
Daha Fazla
İstatistik
  • Konu İstatistikleri Yükleniyor
0 oy
Öne Çıkar
Sayfa: önceki 185186187188189
Sayfaya Git
Git
sonraki
Giriş
Mesaj
  • .



    < Bu mesaj bu kişi tarafından değiştirildi Tango-1 -- 22 Ağustos 2012; 20:29:35 >
  • quote:

    Orjinalden alıntı: death angel
    Sayın Serji arkadaşım istediğiniz bu muydu??

    evet tam anlamiyla buydu arkdasim.

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: XTTBPos00 - {E014A78F-34DC-4BE5-83BB-58CA12E384B6} - C:\WINDOWS\system32\agintas.dll
    O4 - HKCU\..\Run: [svcservice] svcservice.exe

    Simdi dostum ctrl+alt+del islemler sekmesinden kendi kullanicina ait butun islemleri sonlandir (explorer.exe ve hijackthis.exe haric) butun pencereleri kapat. Bunlari isaretleyip fix checked butonuna tikla. Dha sonra hicbir islem yapmadan hemen bilgisayarini guvenli modda yeniden baslat ve C:\WINDOWS\system32\agintas.dll ile svcservice.exe dosyalarini sil. Sonra normal modda yeniden baslat. KOlay gelsin. Bi yerde takilirsan buradayim




  • quote:

    Orjinalden alıntı: serji

    quote:

    Orjinalden alıntı: death angel
    Sayın Serji arkadaşım istediğiniz bu muydu??

    evet tam anlamiyla buydu arkdasim.

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: XTTBPos00 - {E014A78F-34DC-4BE5-83BB-58CA12E384B6} - C:\WINDOWS\system32\agintas.dll
    O4 - HKCU\..\Run: [svcservice] svcservice.exe

    Simdi dostum ctrl+alt+del islemler sekmesinden kendi kullanicina ait butun islemleri sonlandir (explorer.exe ve hijackthis.exe haric) butun pencereleri kapat. Bunlari isaretleyip fix checked butonuna tikla. Dha sonra hicbir islem yapmadan hemen bilgisayarini guvenli modda yeniden baslat ve C:\WINDOWS\system32\agintas.dll ile svcservice.exe dosyalarini sil. Sonra normal modda yeniden baslat. KOlay gelsin. Bi yerde takilirsan buradayim


    Çok saol başlıyorum..




  • quote:

    Orjinalden alıntı: serji

    quote:

    Orjinalden alıntı: thejoker
    Sistemim biraz ağırlaştı gibi son günlerde kontrol ederseniz sevnirim.

    Burada hic bir sorun gozukmuyor. Baslangictaki tum programlari devre disi birakip tek tek aktif hale gtirmeyi deneyerek hangi programin bu yavaslamaya sebep oldugunu bulabilirsin. Baska bir sorun varsa lutfen yaz


    Şimdilik başka sorunum yok. Teşekkürler...
  • quote:

    Orjinalden alıntı: thejoker
    Şimdilik başka sorunum yok. Teşekkürler...

    rca ederm kolay gelsin.
  • Bunlarda beni pc nin falında çıkanlar.

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 17:18:27, on 04.07.2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16674)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
    C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\WINDOWS\VMSnap3.EXE
    C:\WINDOWS\Domino.EXE
    C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\Program Files\Free Download Manager\fdm.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\TechSmith\SnagIt 8\SnagIt32.exe
    C:\Program Files\TechSmith\SnagIt 8\TSCHelp.exe
    C:\Program Files\TechSmith\SnagIt 8\SnagPriv.exe
    C:\Program Files\Orbitdownloader\orbitdm.exe
    C:\Program Files\Orbitdownloader\orbitnet.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Bağlantılar
    O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Oturum Açma Yardım Aracı - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
    O3 - Toolbar: MSN Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\tr-tr\msntb.dll
    O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
    O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [VMSnap3] C:\WINDOWS\VMSnap3.EXE
    O4 - HKLM\..\Run: [Domino] C:\WINDOWS\Domino.EXE
    O4 - HKLM\..\Run: [BigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
    O4 - HKLM\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /QS
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: ATI CATALYST Sistem Tepsisi.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Kodak EasyShare yazılımı.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
    O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
    O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
    O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Free Download Manager ile indir - file://C:\Program Files\Free Download Manager\dllink.htm
    O8 - Extra context menu item: Free Download Manager ile seçileni indir - file://C:\Program Files\Free Download Manager\dlselected.htm
    O8 - Extra context menu item: Free Download Manager ile tümünü indir - file://C:\Program Files\Free Download Manager\dlall.htm
    O8 - Extra context menu item: Microsoft Excel'e Gö&nder - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Videoyu Free Download Manager ile indir - file://C:\Program Files\Free Download Manager\dlfvideo.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {0FC8B38E-9293-424C-9D0E-CE60775679CF} (SubClassEditCtrlContainer Class) -https://sube.garanti.com.tr/lib/JaguarEditControl.CAB
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
    O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) -http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1194794386140
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1194794355890
    O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) -http://ek-ram.spaces.live.com/PhotoUpload/MsnPUpld.cab
    O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F554} (Flatcast Viewer 4.16) -http://80.237.209.20/objects/NpFv41629.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
    O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

    --
    End of file - 10235 bytes




  • quote:

    Orjinalden alıntı: ekremozkan
    Bunlarda beni pc nin falında çıkanlar.

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    baska bir sorun yok
  • TEşekkürler
    quote:

    Orjinalden alıntı: serji

    quote:

    Orjinalden alıntı: ekremozkan
    Bunlarda beni pc nin falında çıkanlar.

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    baska bir sorun yok





  • quote:

    Orjinalden alıntı: serji

    quote:

    Orjinalden alıntı: death angel
    Sayın Serji arkadaşım istediğiniz bu muydu??

    evet tam anlamiyla buydu arkdasim.

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: XTTBPos00 - {E014A78F-34DC-4BE5-83BB-58CA12E384B6} - C:\WINDOWS\system32\agintas.dll
    O4 - HKCU\..\Run: [svcservice] svcservice.exe

    Simdi dostum ctrl+alt+del islemler sekmesinden kendi kullanicina ait butun islemleri sonlandir (explorer.exe ve hijackthis.exe haric) butun pencereleri kapat. Bunlari isaretleyip fix checked butonuna tikla. Dha sonra hicbir islem yapmadan hemen bilgisayarini guvenli modda yeniden baslat ve C:\WINDOWS\system32\agintas.dll ile svcservice.exe dosyalarini sil. Sonra normal modda yeniden baslat. KOlay gelsin. Bi yerde takilirsan buradayim


    dediklerini harfiyen uyguladım.Problem çözüldü.Çok teşekkür ederim...




  • quote:

    Orjinalden alıntı: ekremozkan
    TEşekkürler


    rica ederim kolay gelsin
    quote:

    Orjinalden alıntı: death angel
    dediklerini harfiyen uyguladım.Problem çözüldü.Çok teşekkür ederim...

    Ben tesekkur ederim kolay gelsin.




  • program dondu kaldı nası çalısacagını bi gostersen iyi olur
  • quote:

    Orjinalden alıntı: kralenes
    program dondu kaldı nası çalısacagını bi gostersen iyi olur

    programi indirdikten sonra acip. install diyeceksin. daha sonra programi tekrar calistirip. Scan and save a log deyip tarattiktan sonra kayit dosyasini buraya gondereceksin.
  • Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:33:53, on 04.07.2008
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18000)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Windows\OEM02Mon.exe
    C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Dell\DELL Webcam Manager\DellWMgr.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Dell\QuickSet\quickset.exe
    C:\Program Files\BinarySense\HDDlife 3\HDDlifeNB.exe
    C:\Program Files\BinarySense\HDDlife 3\HDDlifeNB.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Files\Eset\nod32.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =http://www.ntvmsnbc.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Oturum Açma Yardım Aracı - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\SideBar.exe /autoRun
    O4 - HKCU\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\DELL Webcam Manager\DellWMgr.exe" /s
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O4 - Startup: HDDlife.lnk = C:\Program Files\BinarySense\HDDlife 3\HDDlifeNB.exe
    O4 - Global Startup: Bluetooth.lnk = ?
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
    O8 - Extra context menu item: Microsoft Excel'e &Ver - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: OneNote'a Gönder - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: OneNote'a G&önder - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O13 - Gopher Prefix:
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O18 - Protocol: hddlife - {BD758015-47D9-477A-8873-4B688A2BC0E2} - "C:\Program Files\Common Files\BinarySense\hlAPP.dll" (file missing)
    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe
    O23 - Service: HDDlife HDD Access service - BinarySense, Inc. - C:\Program Files\Common Files\BinarySense\hldasvc.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe

    --
    End of file - 6923 bytes


    arkadasım benı buraya yonldendırdn sımdı ne yapacagım ayıca sıstem gerı yukleme yaptım ınternete baglanınca dısk sureklı bıseyler yazıyor noluo anlamadım yaa



    < Bu mesaj bu kişi tarafından değiştirildi Guest-2D4E48676 -- 4 Temmuz 2008; 20:40:16 >




  • quote:

    Orjinalden alıntı: chazzkmnst
    arkadasım benı buraya yonldendırdn sımdı ne yapacagım ayıca sıstem gerı yukleme yaptım ınternete baglanınca dısk sureklı bıseyler yazıyor noluo anlamadım yaa

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    bunlari isaretleyip fix butonuna tiklayacaksin
  • bildiğim birkaç antivirüs kurdum ve taradım galiba sorun çözüldü, birde siz bakarmısınız?

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 22:07:27, on 04.07.2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\WINDOWS\system32\inetsrv\inetinfo.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
    C:\WINDOWS\system32\tcpsvcs.exe
    C:\WINDOWS\System32\snmp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\cchservice.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    C:\Program Files\Softwin\BitDefender10\bdmcon.exe
    C:\Program Files\Softwin\BitDefender10\bdagent.exe
    C:\WINDOWS\system32\cc32\webtmr.exe
    C:\WINDOWS\Tray\wintmr.exe
    C:\Program Files\Shenturk\Ey DSL! 2.0\EyDSL.exe
    C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe
    C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
    C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
    C:\Program Files\Softwin\BitDefender10\vsserv.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
    C:\Documents and Settings\OSMAN\Desktop\VİRÜS PROG\spy yazılım\HijackThis\HiJackThis.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 141.100.108.236:3128
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Bağlantılar
    F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Common Files\Tray\ccexec.exe
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {4C3C1D69-FA7A-4AE8-AFD7-E8AEAD5DCE1F} - C:\WINDOWS\system32\ssqPjjKc.dll (file missing)
    O2 - BHO: (no name) - {4E3E60F5-F691-475F-AFBA-CF9FCAB47C15} - C:\WINDOWS\system32\opnolJBR.dll (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [BDMCon] "C:\Program Files\Softwin\BitDefender10\bdmcon.exe" /reg
    O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
    O4 - HKLM\..\Run: [ChicoSys] C:\WINDOWS\system32\cc32\webtmr.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKCU\..\Run: [Revo Uninstaller] "C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe" -hunter
    O4 - HKCU\..\Run: [CCWinTray] C:\WINDOWS\Tray\wintmr.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Ey DSL! 2.0.lnk = C:\Program Files\Shenturk\Ey DSL! 2.0\EyDSL.exe
    O8 - Extra context menu item: Microsoft Excel'e Gö&nder - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Save Flash - res://C:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - C:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll (HKCU)
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1204392735515
    O16 - DPF: {FE30DFAE-CCDF-40DE-A957-880F8EAD4FB1} (Vgtp Source) - file://D:\ARAÇLAR\kamera\WEB Canli Yayin\vgtpWebCam.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{CA2B0D03-03FD-4225-83A7-DC1C86E0B6B9}: NameServer = 141.211.125.17,141.211.125.15
    O20 - Winlogon Notify: opnolJBR - opnolJBR.dll (file missing)
    O20 - Winlogon Notify: winzzd32 - winzzd32.dll (file missing)
    O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
    O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
    O23 - Service: Windows-CCHook-Service - Salfeld Computer - C:\WINDOWS\system32\cchservice.exe
    O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe

    --
    End of file - 6942 bytes




  • quote:

    Orjinalden alıntı: fanifan
    bildiğim birkaç antivirüs kurdum ve taradım galiba sorun çözüldü, birde siz bakarmısınız?

    Kolay gelsin

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 141.100.108.236:3128
    F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Common Files\Tray\ccexec.exe
    O2 - BHO: (no name) - {4C3C1D69-FA7A-4AE8-AFD7-E8AEAD5DCE1F} - C:\WINDOWS\system32\ssqPjjKc.dll (file missing)
    O2 - BHO: (no name) - {4E3E60F5-F691-475F-AFBA-CF9FCAB47C15} - C:\WINDOWS\system32\opnolJBR.dll (file missing)
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O20 - Winlogon Notify: opnolJBR - opnolJBR.dll (file missing)
    O20 - Winlogon Notify: winzzd32 - winzzd32.dll (file missing)




  • teşekkürler, Elin kolun dert görmesin,
  • quote:

    Orjinalden alıntı: fanifan

    teşekkürler, Elin kolun dert görmesin,

    rca ederm arkadasm kolay gelsn
  • Deckard's System Scanner v20071014.68
    Extra logfile - please post this as an attachment with your post.
    --------------------------------------------------------------------------------

    -- System Information ----------------------------------------------------------

    Microsoft Windows XP Professional (build 2600) SP 2.0
    Architecture: X86; Language: Other (041F) - seehttp://preview.tinyurl.com/mhhp6

    CPU 0: AMD Athlon(tm) 64 X2 Dual Core Processor 3600+
    CPU 1: AMD Athlon(tm) 64 X2 Dual Core Processor 3600+
    Percentage of Memory in Use: 91%
    Physical Memory (total/avail): 1023.48 MiB / 91.11 MiB
    Pagefile Memory (total/avail): 2461.88 MiB / 1828.28 MiB
    Virtual Memory (total/avail): 2047.88 MiB / 1896.81 MiB

    A: is Removable (No Media)
    C: is Fixed (NTFS) - 78.13 GiB total, 53.98 GiB free.
    D: is Fixed (NTFS) - 78.13 GiB total, 21.91 GiB free.
    E: is Removable (No Media)
    F: is Removable (No Media)
    G: is Removable (No Media)
    H: is Removable (No Media)
    I: is CDROM (No Media)
    J: is CDROM (No Media)
    K: is Fixed (NTFS) - 76.62 GiB total, 76.16 GiB free.
    L: is Fixed (FAT32) - 232.83 GiB total, 170.21 GiB free.

    \\.\PHYSICALDRIVE0 - SAMSUNG SP2504C - 232.88 GiB - 3 partitions
    \PARTITION0 (bootable) - Yüklenebilir Dosya Sistemi - 78.13 GiB - C:
    \PARTITION1 - Extended w/Extended Int 13 - 154.75 GiB - D: - K:

    \\.\PHYSICALDRIVE2 - Generic USB CF Reader USB Device

    \\.\PHYSICALDRIVE4 - Generic USB MS Reader USB Device

    \\.\PHYSICALDRIVE1 - Generic USB SD Reader USB Device

    \\.\PHYSICALDRIVE3 - Generic USB SM Reader USB Device

    \\.\PHYSICALDRIVE5 - WD 2500BEV External USB Device - 232.88 GiB - 1 partition
    \PARTITION0 - Unknown - 232.88 GiB - L:



    -- Security Center -------------------------------------------------------------

    AUOptions is scheduled to auto-install.
    Windows Internal Firewall is enabled.

    FW: Kaspersky Internet Security v7.0.0.119 (Kaspersky Lab)
    AV: Kaspersky Internet Security v7.0.0.119 (Kaspersky Lab)

    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
    "C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
    "C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\MessengerDiscovery\\MessengerDiscovery Live.exe"="C:\\Program Files\\MessengerDiscovery\\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
    "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
    "J:\\Half-Life Update\\hl1110.exe"="J:\\Half-Life Update\\hl1110.exe:*:Enabled:Half-Life Update 1.1.1.0"
    "C:\\SIERRA\\Half-Life\\hl.exe"="C:\\SIERRA\\Half-Life\\hl.exe:*:Enabled:Half-Life Launcher"
    "C:\\Program Files\\Eidos\\Pyro Studios\\Commandos Strike Force\\CommXPC.exe"="C:\\Program Files\\Eidos\\Pyro Studios\\Commandos Strike Force\\CommXPC.exe:*:Enabled:CommXPC"
    "C:\\Program Files\\Shenturk\\Ey DSL! 2.0\\JdxWeb.exe"="C:\\Program Files\\Shenturk\\Ey DSL! 2.0\\JdxWeb.exe:*:Enabled:Ey DSL! 2.0"
    "C:\\Program Files\\Counter-Strike 1.6\\hl.exe"="C:\\Program Files\\Counter-Strike 1.6\\hl.exe:*:Enabled:Half-Life Launcher"
    "L:\\İnternet cafe\\cal of daty\\CoD2MP_s.exe"="L:\\İnternet cafe\\cal of daty\\CoD2MP_s.exe:*:Enabled:CoD2MP_s"


    -- Environment Variables -------------------------------------------------------

    ALLUSERSPROFILE=C:\Documents and Settings\All Users
    APPDATA=C:\Documents and Settings\Dragon\Application Data
    CLIENTNAME=Console
    CommonProgramFiles=C:\Program Files\Common Files
    COMPUTERNAME=DRAGON
    ComSpec=C:\WINDOWS\system32\cmd.exe
    FP_NO_HOST_CHECK=NO
    HOMEDRIVE=C:
    HOMEPATH=\Documents and Settings\Dragon
    LOGONSERVER=\\DRAGON
    NewEnvironment1=C:\Program Files\ATI Technologies\ATI.ACE\
    NUMBER_OF_PROCESSORS=2
    OS=Windows_NT
    Path=C:\Program Files\Internet Explorer;;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
    PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE=x86
    PROCESSOR_IDENTIFIER=x86 Family 15 Model 75 Stepping 2, AuthenticAMD
    PROCESSOR_LEVEL=15
    PROCESSOR_REVISION=4b02
    ProgramFiles=C:\Program Files
    PROMPT=$P$G
    SESSIONNAME=Console
    SystemDrive=C:
    SystemRoot=C:\WINDOWS
    TEMP=C:\DOCUME~1\Dragon\LOCALS~1\Temp
    TMP=C:\DOCUME~1\Dragon\LOCALS~1\Temp
    USERDOMAIN=DRAGON
    USERNAME=Dragon
    USERPROFILE=C:\Documents and Settings\Dragon
    windir=C:\WINDOWS


    -- User Profiles ---------------------------------------------------------------

    Dragon [I](admin)[/I]
    Administrator [I](new local, admin)[/I]


    -- Add/Remove Programs ---------------------------------------------------------

    --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    2.0 PC CAMERA --> C:\Program Files\InstallShield Installation Information\{F9466082-90E9-4BE4-92F0-CF0AF195B0CF}\setup.exe -runfromtemp -l0x0009 -removeonly
    32 Bit HP CIO Components Installer --> MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
    Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
    Adobe Reader 7.0 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7646-A70000000000}
    Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
    AirTies ADSL Hizmet Programı 4.0.1.3 --> "C:\Program Files\AirTies\unins000.exe"
    ASUS Enhanced Display Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\setup.exe" -l0x9 -removeonly
    ATI - Yazılım Kaldır Yardımcı Programı --> C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
    ATI Catalyst Control Center --> MsiExec.exe /I{31A5C940-3B58-439B-B539-C2B24FE65DB1}
    ATI Display Driver --> rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
    ATI Parental Control & Encoder --> MsiExec.exe /I{8D70145A-3BD3-4DBF-9CBF-223EF4A43257}
    BSPlayer --> "C:\Program Files\Webteh\BSplayer\uninstall.exe"
    Commandos Strike Force --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{544DB849-AB59-4C12-A333-2F214E24870F}\Setup.exe" -l0x9 -removeonly
    Counter-Strike 1.5 Türkçe Paketi --> C:\SIERRA\HALF-L~1\UNWISE.EXE C:\WINDOWS\cs15tr.log
    Counter-Strike 1.6 --> C:\Program Files\Counter-Strike 1.6\Uninstal.exe
    Dreamweaver 8 --> "C:\Program Files\Macromedia\Dreamweaver 8\unins000.exe"
    Dual-Core Optimizer --> MsiExec.exe /X{FF3D660E-E5CC-47FD-8050-1B4DE3BA81A9}
    Ey DSL! 2.0 --> C:\Program Files\Shenturk\Ey DSL! 2.0\Uninstall.exe
    Fantastic Flame Screensaver --> C:\Program Files\Fantastic Flame Screensaver\uninstall.exe
    Fraps --> "C:\Fraps\uninstall.exe"
    GameShadow --> MsiExec.exe /I{21BB0483-3D43-46A7-A63F-72C702701438}
    Google Toolbar for Internet Explorer --> MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
    Google Toolbar for Internet Explorer --> regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
    Half-Life --> C:\WINDOWS\IsUninst.exe -fC:\SIERRA\Half-Life\Uninst.isu -c"C:\SIERRA\Half-Life\HLUNINST.DLL"
    Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
    HP Customer Participation Program 9.0 --> C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
    HP Imaging Device Functions 9.0 --> C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
    HP OCR Software 9.0 --> C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
    HP Photosmart All-In-One Software 9.0 --> C:\Program Files\HP\Digital Imaging\{B09BCBF6-87EE-4403-A336-3A9510856535}\setup\hpzscr01.exe -datfile hposcr15.dat
    HP Photosmart Essential 2.01 --> C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
    HP Smart Web Printing --> MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
    HP Solution Center 9.0 --> C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
    HP Update --> MsiExec.exe /X{AB40272D-92AB-4F30-B36B-22EDE16F8FE5}
    HPSSupply --> MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
    Java(TM) 6 Update 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
    K-Lite Mega Codec Pack 3.8.5 --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"
    Kaspersky Internet Security 7.0 --> MsiExec.exe /I{C774410D-3EF9-4DE7-AC01-332613163ECF}
    Kaspersky Internet Security 7.0 --> MsiExec.exe /I{C774410D-3EF9-4DE7-AC01-332613163ECF}
    LimeWire 4.16.2 --> "C:\Program Files\LimeWire\uninstall.exe"
    Macromedia Dreamweaver 8 --> MsiExec.exe /I{0837A661-FEC3-48B3-876C-91E7D32048A9}
    Macromedia Extension Manager --> MsiExec.exe /I{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}
    MessengerDiscovery Live 1.3.0322 --> "C:\Program Files\MessengerDiscovery\unins000.exe"
    Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
    Microsoft Office Access MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-0015-041F-0000-0000000FF1CE}
    Microsoft Office Enterprise 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
    Microsoft Office Enterprise 2007 --> MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
    Microsoft Office Excel MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-0016-041F-0000-0000000FF1CE}
    Microsoft Office Groove MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-00BA-041F-0000-0000000FF1CE}
    Microsoft Office InfoPath MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-0044-041F-0000-0000000FF1CE}
    Microsoft Office OneNote MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-00A1-041F-0000-0000000FF1CE}
    Microsoft Office Outlook MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-001A-041F-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-0018-041F-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Turkish) 2007 --> MsiExec.exe /X{90120000-001F-041F-0000-0000000FF1CE}
    Microsoft Office Proofing (Turkish) 2007 --> MsiExec.exe /X{90120000-002C-041F-0000-0000000FF1CE}
    Microsoft Office Publisher MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-0019-041F-0000-0000000FF1CE}
    Microsoft Office Shared MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-006E-041F-0000-0000000FF1CE}
    Microsoft Office Word MUI (Turkish) 2007 --> MsiExec.exe /X{90120000-001B-041F-0000-0000000FF1CE}
    Moonstar Sözlük 1.0 --> "C:\Program Files\Moonstar Sözlük\unins000.exe"
    Mozilla Firefox (2.0.0.11) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
    Nero 7 Lite 7.9.6.0 --> "C:\Program Files\Nero\unins000.exe"
    Nokia Connectivity Cable Driver --> MsiExec.exe /X{6882DD11-33B8-4DEA-8305-7E765BF74BD3}
    Nokia Lifeblog 2.1 --> MsiExec.exe /I{EE565795-2776-415A-B31C-EB3A8D7C6FA4}
    Nokia MTP driver --> MsiExec.exe /I{0E94871C-623C-464F-A117-B8474BFF84E1}
    Nokia PC Connectivity Solution --> MsiExec.exe /I{0D80391C-0A72-43BB-9BC2-143F63CC111D}
    Nokia PC Suite --> MsiExec.exe /I{531317A5-586A-4E36-87C1-CA823447B375}
    Nokia Software Launcher --> MsiExec.exe /I{5CCABD37-479D-4304-B1A5-67952C25F8F2}
    NVIDIA Drivers --> C:\WINDOWS\System32\nvuide.exe UninstallGUI
    Nvu 1.0 --> "C:\Program Files\Nvu\unins000.exe"
    OGA Notifier 1.7.0105.0 --> MsiExec.exe /I{AAD45DA9-A13E-4F6D-9435-703CA8495CCF}
    OpenOffice.org Installer 1.0 --> MsiExec.exe /X{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}
    Pivot Stickfigure Animator --> MsiExec.exe /I{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}
    POD-Bot 2.5 --> C:\WINDOWS\unvise32.exe C:\SIERRA\Half-Life\cstrike\poduninst.log
    Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\Setup.exe" -l0x1f -removeonly
    REALTEK GbE & FE Ethernet PCI-E NIC Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe" -l0x1f -removeonly
    Security Update for Excel 2007 (KB946974) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {85E83E2E-AF9B-439B-B4F9-EB9B7EF6A00E}
    Security Update for Microsoft Office Publisher 2007 (KB950114) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
    Security Update for Microsoft Office system 2007 (KB951808) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}
    Security Update for Microsoft Office Word 2007 (KB950113) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}
    Security Update for Office 2007 (KB947801) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {02B5A17B-01BE-4BA6-95F1-1CBB46EBC76E}
    Security Update for Outlook 2007 (KB946983) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {66B9496E-C0C3-4065-9868-85CCA92126C3}
    Sierra Utilities --> C:\Program Files\Sierra On-Line\sutil32.exe uninstall
    SpeedFan (remove only) --> "C:\Program Files\SpeedFan\uninstall.exe"
    sXe Injected --> "C:\Program Files\sXe Injected\uninstall.exe"
    Update for Office 2007 (KB946691) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
    Update for Outlook 2007 Junk Email Filter (kb950378) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F6296086-AED5-4EC0-938B-08EA0254F20E}
    Winamp (remove only) --> "C:\Program Files\Winamp\UninstWA.exe"
    Windows Driver Package - Nokia Modem (06/12/2006 6.81.0.21) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_62A340731F8930057B44B8864F236850B0D49D65\nokbtmdm.inf
    Windows Imaging Component --> "C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
    Windows Live Fotoğraf Galerisi --> MsiExec.exe /X{2006113D-C99B-488D-B707-CA0710804F8F}
    Windows Live installer --> MsiExec.exe /X{1B6BAD26-1406-43BA-ABD1-CEE99ADEF1ED}
    Windows Live Mail --> MsiExec.exe /I{583EF20C-4DD0-43B0-8178-F0E8F76BBB09}
    Windows Live Messenger --> MsiExec.exe /X{301CC261-0ECA-448D-8F21-A9D474AB40B4}
    Windows Live Oturum Açma Yardımcısı --> MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
    Windows Live Writer --> MsiExec.exe /X{510E9D24-C50A-4401-827E-0B2B0458C625}
    Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
    Windows XP (KB941569) için Güvenlik Güncelleştirmesi --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
    Windows XP Düzeltme - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
    Windows XP Düzeltme - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
    Windows XP Düzeltme - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
    Windows XP için Düzeltme (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB932823-v3) --> "C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
    Windows XP için Güncelleştirme (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB937894) --> "C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB941693) --> "C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB943055) --> "C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB945553) --> "C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB946026) --> "C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB948590) --> "C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB950749) --> "C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB950760) --> "C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB950762) --> "C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB951376-v2) --> "C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
    Windows XP için Güvenlik Güncelleştirmesi (KB951698) --> "C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
    WinRAR arşiv yöneticisi --> C:\Program Files\WinRAR\uninstall.exe
    WinZip --> "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall


    -- Application Event Log -------------------------------------------------------

    Event Record #/Type1030 / Warning
    Event Submitted/Written: 07/05/2008 00:28:51 PM
    Event ID/Source: 1001 / MsiInstaller
    Event Description:
    '{5617BF49-9195-4C35-B9AD-F8D165DE25BB}' bileşeni arandığı sırada '{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}' ürününün 'Scan' özelliğini algılama başarısız oldu

    Event Record #/Type1029 / Warning
    Event Submitted/Written: 07/05/2008 00:28:47 PM
    Event ID/Source: 1001 / MsiInstaller
    Event Description:
    '{5617BF49-9195-4C35-B9AD-F8D165DE25BB}' bileşeni arandığı sırada '{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}' ürününün 'Scan' özelliğini algılama başarısız oldu

    Event Record #/Type1028 / Warning
    Event Submitted/Written: 07/05/2008 00:28:46 PM
    Event ID/Source: 1001 / MsiInstaller
    Event Description:
    '{5617BF49-9195-4C35-B9AD-F8D165DE25BB}' bileşeni arandığı sırada '{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}' ürününün 'Scan' özelliğini algılama başarısız oldu

    Event Record #/Type1017 / Success
    Event Submitted/Written: 07/05/2008 00:02:49 PM
    Event ID/Source: 12001 / usnjsvc
    Event Description:
    The Messenger Sharing USN Journal Reader service started successfully.

    Event Record #/Type1001 / Error
    Event Submitted/Written: 07/04/2008 07:05:12 PM
    Event ID/Source: 1000 / Application Error
    Event Description:
    Hata uygulaması winamp.exe, sürüm 5.0.0.8, hata modülü unknown, sürümü 0.0.0.0, hata adresi 0x00d32cfe.
    Ortama özel olay [winamp.exe!ws!] için işleniyor



    -- Security Event Log ----------------------------------------------------------

    No Errors/Warnings found.


    -- System Event Log ------------------------------------------------------------

    Event Record #/Type2581 / Error
    Event Submitted/Written: 07/05/2008 00:28:51 PM
    Event ID/Source: 36 / SideBySide
    Event Description:
    x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a birleştirmesi eksik ya da geçersiz dosyalar içeriyor; bu birleştirme kurtarılamadı.

    Event Record #/Type2580 / Error
    Event Submitted/Written: 07/05/2008 00:28:47 PM
    Event ID/Source: 36 / SideBySide
    Event Description:
    x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a birleştirmesi eksik ya da geçersiz dosyalar içeriyor; bu birleştirme kurtarılamadı.

    Event Record #/Type2579 / Error
    Event Submitted/Written: 07/05/2008 00:28:47 PM
    Event ID/Source: 36 / SideBySide
    Event Description:
    x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a birleştirmesi eksik ya da geçersiz dosyalar içeriyor; bu birleştirme kurtarılamadı.

    Event Record #/Type2550 / Warning
    Event Submitted/Written: 07/05/2008 00:00:18 PM / 07/05/2008 00:01:09 PM
    Event ID/Source: 51 / Disk
    Event Description:
    Sayfalama işlemi sırasında \Device\Harddisk0\D aygıtında bir hata algılandı.

    Event Record #/Type2549 / Warning
    Event Submitted/Written: 07/05/2008 00:00:18 PM / 07/05/2008 00:01:09 PM
    Event ID/Source: 51 / Disk
    Event Description:
    Sayfalama işlemi sırasında \Device\Harddisk0\D aygıtında bir hata algılandı.



    -- End of Deckard's System Scanner: finished at 2008-07-05 12:45:14 ------------


    Deckard's System Scanner v20071014.68
    Run by Dragon on 2008-07-05 12:39:58
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------

    -- System Restore --------------------------------------------------------------

    Successfully created a Deckard's System Scanner Restore Point.


    -- Last 5 Restore Point(s) --
    62: 2008-07-05 09:40:02 UTC - RP62 - Deckard's System Scanner Restore Point
    61: 2008-07-05 09:28:31 UTC - RP61 - Removed MSXML 4.0 SP2 (KB936181)
    60: 2008-07-04 15:42:42 UTC - RP60 - Removed Microsoft SQL Server 2005 Compact Edition [ENU]
    59: 2008-07-03 14:06:07 UTC - RP59 - Installed Dual-Core Optimizer.
    58: 2008-07-03 13:47:49 UTC - RP58 - Sistem Denetleme Noktası


    -- First Restore Point --
    1: 2008-06-21 19:08:56 UTC - RP1 - Sistem Denetleme Noktası


    Backed up registry hives.
    Performed disk cleanup.



    -- HijackThis (run as Dragon.exe) ----------------------------------------------

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:42:13, on 05.07.2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16674)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\ATKKBService.exe
    C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\WgaTray.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Microsoft IntelliType Pro\itype.exe
    C:\Program Files\Microsoft IntelliPoint\ipoint.exe
    C:\WINDOWS\FixCamera.exe
    C:\WINDOWS\tsnp325.exe
    C:\WINDOWS\vsnp325.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
    C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
    C:\Program Files\Winamp\winampa.exe
    C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
    C:\Program Files\AirTies\ADSL Hizmet Programı\AirTies_util3.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Dragon\Belgelerim\dss.exe
    C:\PROGRA~1\TRENDM~1\HIJACK~1\Dragon.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Bağlantılar
    O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~4\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Oturum Açma Yardım Aracı - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
    O4 - HKLM\..\Run: [exflashservice] "C:\Program Files\EPOX\EFS\EZ_FLASH_SERVICE.exe" "5000"
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
    O4 - HKLM\..\Run: [FixCamera] C:\WINDOWS\FixCamera.exe
    O4 - HKLM\..\Run: [tsnp325] C:\WINDOWS\tsnp325.exe
    O4 - HKLM\..\Run: [snp325] C:\WINDOWS\vsnp325.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
    O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
    O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
    O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Ey DSL! 2.0.lnk = C:\Program Files\Shenturk\Ey DSL! 2.0\EyDSL.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: AirTies ADSL Hizmet Programı.lnk = ?
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O8 - Extra context menu item: Microsoft Excel'e &Ver - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Reklam Panosu Engelleyiciye ekle - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
    O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
    O9 - Extra button: Bunu Web Günlüğüne Al - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: Windows Live Writer içinde &Bunu Web Günlüğüne Al - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: OneNote'a Gönder - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: OneNote'a G&önder - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra button: HP Kırpma Defteri - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: HP Akıllı Seçim - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) -http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
    O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) -http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) -http://messenger.zone.msn.com/TR-TR/a-UNO1/GAME_UNO1.cab
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) -http://dl8-cdn-01.sun.com/s/ESD42/JSCDL/jre/6u6-b90/jinstall-6u6-windows-i586-jc.cab?e=1214087288578&h=767e74b055f24f37980603ae0d60aef3/&filename=jinstall-6u6-windows-i586-jc.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~4\Office12\GR99D3~1.DLL
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
    O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe

    --
    End of file - 9996 bytes

    -- File Associations -----------------------------------------------------------

    [COLOR=red].js - JSFile - DefaultIcon - "C:\Program Files\Macromedia\Dreamweaver 8\dreamweaver.exe",2[/COLOR]


    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

    R0 giveio - c:\windows\system32\giveio.sys
    R0 speedfan - c:\windows\system32\speedfan.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>
    R1 asuskbnt (Enhanced Display Driver Helper Service) - c:\windows\system32\drivers\atkkbnt.sys <Not Verified; ASUSTeK COMPUTER INC.; ASUS Help driver For Keyboard Service.>
    R2 EIO - c:\windows\system32\drivers\eio.sys <Not Verified; ASUSTeK Computer Inc.; ASUS Kernel Mode Driver for NT>
    R3 SNP325 (USB PC Camera (SNPSTD325)) - c:\windows\system32\drivers\snp325.sys <Not Verified; Sonix Co. Ltd.; USB PC Camera>


    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

    R2 ATKKeyboardService (ATK Keyboard Service) - c:\windows\atkkbservice.exe <Not Verified; ASUSTeK COMPUTER INC.; ASUS Keyboard Service>
    R3 ServiceLayer - "c:\program files\common files\pcsuite\services\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>


    -- Device Manager: Disabled ----------------------------------------------------

    Class GUID: {4D36E96B-E325-11CE-BFC1-08002BE10318}
    Description: Standard 101/102Tuşlu ya da Microsoft Natural PS/2 Klavye
    Device ID: ACPI\PNP0303\3&2411E6FE&0
    Manufacturer: (Standart klavyeler)
    Name: Standard 101/102Tuşlu ya da Microsoft Natural PS/2 Klavye
    PNP Device ID: ACPI\PNP0303\3&2411E6FE&0
    Service: i8042prt


    -- Files created between 2008-06-05 and 2008-07-05 -----------------------------

    2008-07-05 12:42:03 0 d-------- C:\Program Files\Trend Micro
    2008-07-05 11:53:23 0 d--h----- C:\Documents and Settings\Administrator\Templates
    2008-07-05 11:53:23 0 dr------- C:\Documents and Settings\Administrator\Start Menu
    2008-07-05 11:53:23 0 d-------- C:\Documents and Settings\Administrator\Sık Kullanılanlar
    2008-07-05 11:53:23 0 dr-h----- C:\Documents and Settings\Administrator\SendTo
    2008-07-05 11:53:23 0 d--h----- C:\Documents and Settings\Administrator\Recent
    2008-07-05 11:53:23 0 d--h----- C:\Documents and Settings\Administrator\PrintHood
    2008-07-05 11:53:23 524288 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT
    2008-07-05 11:53:23 0 d--h----- C:\Documents and Settings\Administrator\NetHood
    2008-07-05 11:53:23 0 d--h----- C:\Documents and Settings\Administrator\Local Settings
    2008-07-05 11:53:23 0 d-------- C:\Documents and Settings\Administrator\Desktop
    2008-07-05 11:53:23 0 d--hs---- C:\Documents and Settings\Administrator\Cookies
    2008-07-05 11:53:23 0 d-------- C:\Documents and Settings\Administrator\Belgelerim
    2008-07-05 11:53:23 0 dr-h----- C:\Documents and Settings\Administrator\Application Data
    2008-07-05 11:53:23 0 d---s---- C:\Documents and Settings\Administrator\Application Data\Microsoft
    2008-07-04 18:42:58 0 d-------- C:\WINDOWS\system32\appmgmt
    2008-07-03 17:06:08 0 d-------- C:\Program Files\AMD
    2008-07-02 13:16:13 39424 --a------ C:\WINDOWS\zipinst.exe <Not Verified; NirSoft; ZipInstaller>
    2008-07-02 13:16:13 0 d-------- C:\Program Files\MessenPass
    2008-07-01 18:23:50 0 d-------- C:\Documents and Settings\Dragon\Application Data\Nvu
    2008-07-01 18:23:36 0 d-------- C:\Program Files\Nvu
    2008-07-01 18:15:00 0 d-------- C:\Documents and Settings\All Users\Application Data\Macromedia
    2008-07-01 18:14:35 0 d-------- C:\Program Files\Macromedia
    2008-07-01 18:14:35 0 d-------- C:\Program Files\Common Files\Macromedia
    2008-06-30 17:34:37 0 d-------- C:\Documents and Settings\All Users\Application Data\MumboJumbo
    2008-06-30 17:16:53 0 d-------- C:\Program Files\Counter-Strike 1.6
    2008-06-30 16:16:27 0 dr-h----- C:\Documents and Settings\Dragon\Application Data\SecuROM
    2008-06-30 00:57:09 0 d-------- C:\Documents and Settings\Dragon\Application Data\Mount&Blade
    2008-06-29 14:28:14 0 d-------- C:\Program Files\SpeedFan
    2008-06-29 14:08:52 0 d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
    2008-06-29 14:08:49 0 d-------- C:\Fraps
    2008-06-28 20:02:08 41 --a------ C:\WINDOWS\popcinfo.dat
    2008-06-28 19:59:50 0 d-------- C:\Program Files\Shenturk
    2008-06-27 19:55:13 0 d-------- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
    2008-06-24 09:29:59 0 d-------- C:\Documents and Settings\Dragon\Application Data\Nokia
    2008-06-22 23:06:56 0 d-------- C:\WINDOWS\Favorites
    2008-06-22 23:05:21 0 d-------- C:\Program Files\sXe Injected
    2008-06-22 23:02:44 102400 --a------ C:\WINDOWS\system32\TrackerNET.dll
    2008-06-22 23:02:44 217088 --a------ C:\WINDOWS\system32\libmySQL.dll
    2008-06-22 23:01:27 0 d-------- C:\Program Files\sierra
    2008-06-22 23:01:05 86016 --a------ C:\WINDOWS\unvise32.exe <Not Verified; MindVision Software; Installer VISE>
    2008-06-22 22:57:20 231936 --a------ C:\WINDOWS\system32\SNWValid.dll <Not Verified; Cendant Software; World Opponent Network>
    2008-06-22 22:57:20 1022976 --a------ C:\WINDOWS\system32\SierraNW.dll <Not Verified; Cendant Software; World Opponent Network>
    2008-06-22 22:57:19 0 d-------- C:\SIERRA
    2008-06-22 22:57:19 0 d-------- C:\Program Files\Sierra On-Line
    2008-06-22 22:56:59 306688 --a------ C:\WINDOWS\IsUninst.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
    2008-06-22 22:56:50 0 d-------- C:\Documents and Settings\Dragon\WINDOWS
    2008-06-22 13:24:38 0 d-------- C:\Program Files\Fantastic Flame Screensaver
    2008-06-22 12:28:55 0 d-------- C:\Program Files\GameShadow
    2008-06-22 12:10:02 0 d-------- C:\Program Files\Eidos
    2008-06-22 11:38:34 0 d-------- C:\Documents and Settings\Dragon\Application Data\Datalayer
    2008-06-22 11:38:33 0 d-------- C:\Documents and Settings\Dragon\Phone Browser
    2008-06-22 11:31:39 164352 --a------ C:\WINDOWS\system32\unrar.dll
    2008-06-22 11:31:34 217088 --a------ C:\WINDOWS\system32\yv12vfw.dll <Not Verified;www.helixcommunity.org; Helix YV12 YUV Codec>
    2008-06-22 11:31:34 159839 --a------ C:\WINDOWS\system32\xvidvfw.dll
    2008-06-22 11:31:34 755027 --a------ C:\WINDOWS\system32\xvidcore.dll
    2008-06-22 11:31:33 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
    2008-06-22 11:31:33 81920 --a------ C:\WINDOWS\system32\dpl100.dll <Not Verified; DivX, Inc.; DivX, Inc. dpl100>
    2008-06-22 11:31:33 682496 --a------ C:\WINDOWS\system32\divx.dll <Not Verified; DivX, Inc.; DivX®>
    2008-06-22 11:31:31 7680 --a------ C:\WINDOWS\system32\ff_vfw.dll
    2008-06-22 11:31:28 0 d-------- C:\Program Files\K-Lite Codec Pack
    2008-06-22 11:31:28 0 d-------- C:\Documents and Settings\Dragon\Application Data\Real
    2008-06-22 11:31:28 0 d-------- C:\Documents and Settings\All Users\Application Data\Real
    2008-06-22 11:02:00 0 d-------- C:\Documents and Settings\Dragon\Incomplete
    2008-06-22 11:01:35 0 d-------- C:\Documents and Settings\Dragon\Application Data\LimeWire
    2008-06-22 11:00:38 0 d-------- C:\Program Files\LimeWire
    2008-06-22 10:55:50 0 d-------- C:\Program Files\DIFX
    2008-06-22 10:55:13 0 d-------- C:\Program Files\Common Files\Nokia
    2008-06-22 10:55:02 0 d-------- C:\Documents and Settings\Dragon\Application Data\PC Suite
    2008-06-22 10:55:01 0 d-------- C:\Documents and Settings\All Users\Application Data\PC Suite
    2008-06-22 10:54:23 0 d-------- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
    2008-06-22 10:53:51 0 d-------- C:\Program Files\Common Files\PCSuite
    2008-06-22 10:53:50 0 d-------- C:\Program Files\Nokia
    2008-06-22 10:53:47 0 d-------- C:\WINDOWS\Downloaded Installations
    2008-06-22 10:21:39 0 d-------- C:\Program Files\Webteh
    2008-06-22 10:21:18 0 d-------- C:\unzipped
    2008-06-22 10:20:02 0 --a------ C:\WINDOWS\nsreg.dat
    2008-06-22 10:19:58 0 d-------- C:\Documents and Settings\Dragon\Application Data\Mozilla
    2008-06-22 10:17:37 0 d-------- C:\Program Files\Winamp
    2008-06-22 10:07:31 96966 --a------ C:\WINDOWS\system32\drivers\klin.dat
    2008-06-22 10:07:31 88774 --a------ C:\WINDOWS\system32\drivers\klick.dat
    2008-06-22 10:07:08 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
    2008-06-22 10:07:07 327456 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.dat
    2008-06-22 10:07:07 8119584 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
    2008-06-22 01:33:49 0 d-------- C:\Documents and Settings\Dragon\Application Data\Google
    2008-06-22 01:33:43 0 d-------- C:\Documents and Settings\All Users\Application Data\Google
    2008-06-22 01:32:58 0 d-------- C:\Program Files\Google
    2008-06-22 01:31:03 0 d-------- C:\WINDOWS\Sun
    2008-06-22 01:31:03 0 d-------- C:\Documents and Settings\Dragon\Application Data\Sun
    2008-06-22 01:30:50 0 d-------- C:\Program Files\Sun
    2008-06-22 01:30:04 0 d-------- C:\Program Files\Java
    2008-06-22 01:27:34 0 d-------- C:\Program Files\Common Files\Java
    2008-06-22 01:17:32 0 d-------- C:\Program Files\MessengerDiscovery
    2008-06-22 01:15:21 0 d-------- C:\Documents and Settings\Dragon\Contacts
    2008-06-22 00:56:42 0 d-------- C:\Program Files\Common Files\ODBC
    2008-06-22 00:56:41 0 d-------- C:\Program Files\Common Files\SpeechEngines
    2008-06-22 00:56:40 0 dr------- C:\Program Files
    2008-06-22 00:56:40 0 d-------- C:\Program Files\Common Files
    2008-06-22 00:56:23 0 d--h----- C:\Documents and Settings\Default User\Templates
    2008-06-22 00:56:23 0 dr------- C:\Documents and Settings\Default User\Start Menu
    2008-06-22 00:56:23 0 d-------- C:\Documents and Settings\Default User\Sık Kullanılanlar
    2008-06-22 00:56:23 0 dr-h----- C:\Documents and Settings\Default User\SendTo
    2008-06-22 00:56:23 0 d--h----- C:\Documents and Settings\Default User\Recent
    2008-06-22 00:56:23 0 d--h----- C:\Documents and Settings\Default User\PrintHood
    2008-06-22 00:56:23 0 d--h----- C:\Documents and Settings\Default User\NetHood
    2008-06-22 00:56:23 0 dr-h----- C:\Documents and Settings\Default User\Local Settings
    2008-06-22 00:56:23 0 d-------- C:\Documents and Settings\Default User\Desktop
    2008-06-22 00:56:23 0 d---s---- C:\Documents and Settings\Default User\Cookies
    2008-06-22 00:56:23 0 d-------- C:\Documents and Settings\Default User\Belgelerim
    2008-06-22 00:56:23 0 d--h----- C:\Documents and Settings\All Users\Templates
    2008-06-22 00:56:23 0 dr------- C:\Documents and Settings\All Users\Start Menu
    2008-06-22 00:56:23 0 d-------- C:\Documents and Settings\All Users\Sık Kullanılanlar
    2008-06-22 00:56:23 0 d-------- C:\Documents and Settings\All Users\Desktop
    2008-06-22 00:56:23 0 dr------- C:\Documents and Settings\All Users\Belgeler
    2008-06-22 00:56:14 0 d-------- C:\WINDOWS\system32\CatRoot2
    2008-06-22 00:56:14 0 d-------- C:\WINDOWS\system32\CatRoot
    2008-06-22 00:56:09 0 dr-h----- C:\Documents and Settings\Default User\Application Data
    2008-06-22 00:56:09 0 d---s---- C:\Documents and Settings\Default User\Application Data\Microsoft
    2008-06-22 00:56:09 0 dr-h----- C:\Documents and Settings\All Users\Application Data
    2008-06-22 00:56:09 0 d---s---- C:\Documents and Settings\All Users\Application Data\Microsoft
    2008-06-22 00:55:57 0 d-------- C:\Documents and Settings
    2008-06-22 00:53:41 0 d-------- C:\Program Files\MSN Messenger
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\WinSxS
    2008-06-22 00:52:54 0 dr------- C:\WINDOWS\Web
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\twain_32
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\wins
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\wbem
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\usmt
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\spool
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\ShellExt
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\Setup
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\ras
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\oobe
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\npp
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\mui
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\inetsrv
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\IME
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\icsxml
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\ias
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\export
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\drivers
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\drivers\etc
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\drivers\disdn
    2008-06-22 00:52:54 0 dr-hs--c- C:\WINDOWS\system32\dllcache
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\dhcp
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\config
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\3com_dmi
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\3076
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\2052
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1055
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1054
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1042
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1041
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1037
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1033
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1031
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1028
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system32\1025
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\system
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\security
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Resources
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\repair
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\mui
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\msapps
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\msagent
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Media
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\java
    2008-06-22 00:52:54 0 d--h----- C:\WINDOWS\inf
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\ime
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Help
    2008-06-22 00:52:54 0 dr--s---- C:\WINDOWS\Fonts
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Driver Cache
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Debug
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Cursors
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Connection Wizard
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\Config
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\AppPatch
    2008-06-22 00:52:54 0 d-------- C:\WINDOWS\addins
    2008-06-22 00:46:31 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller
    2008-06-22 00:46:14 0 d-------- C:\Program Files\Windows Live
    2008-06-22 00:46:06 0 d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
    2008-06-22 00:42:10 0 d-------- C:\WINDOWS\system32\PreInstall
    2008-06-22 00:13:18 0 d-------- C:\WINDOWS\system32\tr-tr
    2008-06-22 00:11:12 0 d-------- C:\WINDOWS\network diagnostic
    2008-06-22 00:11:06 0 d--h----- C:\WINDOWS\$hf_mig$
    2008-06-22 00:06:51 0 d-------- C:\Program Files\Pivot Stickfigure Animator
    2008-06-22 00:03:29 0 d-------- C:\Program Files\Microsoft Works
    2008-06-22 00:03:23 0 d-------- C:\Program Files\MSBuild
    2008-06-22 00:02:40 0 d-------- C:\Program Files\Microsoft.NET
    2008-06-21 23:53:30 0 d-------- C:\WINDOWS\SHELLNEW
    2008-06-21 23:52:11 0 dr-h----- C:\MSOCache
    2008-06-21 23:48:46 0 d-------- C:\Program Files\Moonstar Sözlük
    2008-06-21 23:47:16 0 d-------- C:\Documents and Settings\Dragon\Application Data\Adobe
    2008-06-21 23:47:06 0 d-------- C:\Program Files\Windows Media Connect 2
    2008-06-21 23:46:22 0 d-------- C:\WINDOWS\system32\LogFiles
    2008-06-21 23:46:22 0 d-------- C:\WINDOWS\system32\drivers\UMDF
    2008-06-21 23:43:14 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
    2008-06-21 23:40:07 364544 --a------ C:\WINDOWS\system32\TwnLib4.dll <Not Verified; Pegasus Imaging Corp.; TwnLib4>
    2008-06-21 23:40:06 471040 --a------ C:\WINDOWS\system32\imagXRA7.dll <Not Verified; Pegasus Imaging Corp.; ImagXpress7>
    2008-06-21 23:40:06 262144 --a------ C:\WINDOWS\system32\imagXR7.dll <Not Verified; Pegasus Imaging Corp.; ImagXpress7>
    2008-06-21 23:40:05 1568768 --a------ C:\WINDOWS\system32\imagX7.dll <Not Verified; Pegasus Imaging Corp.; ImagXpress7>
    2008-06-21 23:39:58 0 d-------- C:\Program Files\Common Files\Ahead
    2008-06-21 23:39:42 0 d-------- C:\Program Files\Nero
    2008-06-21 23:38:07 0 d-------- C:\WINDOWS\system32\SoftwareDistribution
    2008-06-21 23:36:46 0 d-------- C:\Program Files\AirTies
    2008-06-21 23:36:03 0 d-------- C:\Program Files\Common Files\Adobe
    2008-06-21 23:36:02 0 d-------- C:\Documents and Settings\All Users\Application Data\Adobe
    2008-06-21 23:35:40 0 d-------- C:\Documents and Settings\Dragon\Application Data\Help
    2008-06-21 23:34:42 0 d-------- C:\Program Files\Foxit Software
    2008-06-21 23:26:26 0 d-------- C:\Documents and Settings\Dragon\Application Data\Macromedia
    2008-06-21 23:26:24 0 d-------- C:\Documents and Settings\Dragon\Application Data\HPAppData
    2008-06-21 23:20:32 0 d-------- C:\Documents and Settings\All Users\Application Data\Microsoft Help
    2008-06-21 23:18:07 0 d-------- C:\Documents and Settings\All Users\Application Data\WEBREG
    2008-06-21 23:15:31 0 d-------- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
    2008-06-21 23:13:57 0 d-------- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
    2008-06-21 23:13:56 0 d-------- C:\Documents and Settings\All Users\Application Data\HP
    2008-06-21 23:13:45 0 d-------- C:\Program Files\Common Files\HP
    2008-06-21 23:13:30 0 d-------- C:\Program Files\Hewlett-Packard
    2008-06-21 23:13:21 0 d-------- C:\Program Files\Common Files\Hewlett-Packard
    2008-06-21 23:12:35 0 d-------- C:\Program Files\HP
    2008-06-21 23:11:44 0 d-------- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
    2008-06-21 23:11:43 1039 -----n--- C:\WINDOWS\hpomdl15.dat
    2008-06-21 23:11:43 150562 --a------ C:\WINDOWS\hpoins15.dat
    2008-06-21 23:11:18 0 d------c- C:\WINDOWS\system32\DRVSTORE
    2008-06-21 23:10:02 20480 --a------ C:\WINDOWS\FixCamera.exe <Not Verified; ; CameraFixer Application>
    2008-06-21 23:10:02 94208 --a------ C:\WINDOWS\amcap.exe <Not Verified; Microsoft Corporation; DirectX 8.1 Sample>
    2008-06-21 23:10:01 835584 --a------ C:\WINDOWS\vsnp325.exe <Not Verified; ; CameraMonitor Application>
    2008-06-21 23:10:01 270336 --a------ C:\WINDOWS\tsnp325.exe <Not Verified; ; tsnp2std>
    2008-06-21 23:10:01 10394624 --a------ C:\WINDOWS\system32\drivers\snp325.sys <Not Verified; Sonix Co. Ltd.; USB PC Camera>
    2008-06-21 23:10:00 57344 --a------ C:\WINDOWS\system32\vsnp325.dll
    2008-06-21 23:10:00 147456 --a------ C:\WINDOWS\system32\rsnp325.dll <Not Verified; ; ResourceDLL>
    2008-06-21 23:10:00 53248 --a------ C:\WINDOWS\system32\csnp325.dll <Not Verified; ; InstallUtil>
    2008-06-21 23:10:00 0 d-------- C:\Program Files\Common Files\snp325
    2008-06-21 23:09:56 0 d-------- C:\Documents and Settings\Dragon\Application Data\InstallShield
    2008-06-21 22:56:06 0 d-------- C:\Documents and Settings\LocalService\Start Menu
    2008-06-21 22:55:28 0 d-------- C:\WINDOWS\SoftwareDistribution
    2008-06-21 22:55:25 0 d-------- C:\WINDOWS\Prefetch
    2008-06-21 22:50:06 0 d-------- C:\WINDOWS\peernet
    2008-06-21 22:50:05 0 d-------- C:\WINDOWS\provisioning
    2008-06-21 22:49:06 0 d-------- C:\WINDOWS\ServicePackFiles
    2008-06-21 22:47:49 0 d-------- C:\Program Files\Microsoft IntelliPoint
    2008-06-21 22:47:11 0 d-------- C:\Program Files\Microsoft IntelliType Pro
    2008-06-21 22:45:59 0 d-------- C:\WINDOWS\EHome
    2008-06-21 22:44:53 0 d---s---- C:\WINDOWS\system32\Microsoft
    2008-06-21 22:44:32 0 d-------- C:\Program Files\Kaspersky Lab
    2008-06-21 22:44:01 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
    2008-06-21 22:39:01 592 --a------ C:\WINDOWS\chgkey.vbs
    2008-06-21 22:36:34 0 d-------- C:\Documents and Settings\Dragon\Application Data\WinRAR
    2008-06-21 22:28:24 0 d-------- C:\Program Files\Realtek Sound Manager
    2008-06-21 22:28:21 0 d-------- C:\Program Files\AvRack
    2008-06-21 22:28:10 0 d-------- C:\Program Files\Realtek AC97
    2008-06-21 22:27:46 315392 -r------- C:\WINDOWS\alcupd.exe <Not Verified; Realtek Semiconductor Corp.; Realtek AC'97 Update driver Tool>
    2008-06-21 22:27:05 0 d-------- C:\WINDOWS\OPTIONS
    2008-06-21 22:27:05 0 d-------- C:\Program Files\Realtek
    2008-06-21 22:26:08 0 d-------- C:\Program Files\EPOX
    2008-06-21 22:26:06 798720 -----n--- C:\WINDOWS\system32\autorun.exe
    2008-06-21 22:25:13 0 d-------- C:\Documents and Settings\Dragon\Application Data\ATI
    2008-06-21 22:15:20 0 d-------- C:\Program Files\My Company Name
    2008-06-21 22:15:06 0 d-------- C:\WINDOWS\RegisteredPackages
    2008-06-21 22:14:35 11008 --a------ C:\WINDOWS\system32\drivers\atkkbnt.sys <Not Verified; ASUSTeK COMPUTER INC.; ASUS Help driver For Keyboard Service.>
    2008-06-21 22:14:35 241664 --a------ C:\WINDOWS\ATKKBService.exe <Not Verified; ASUSTeK COMPUTER INC.; ASUS Keyboard Service>
    2008-06-21 22:14:34 992896 --a------ C:\WINDOWS\system32\drivers\Bravo_n.sys <Not Verified; ASMT; Microsoft(R) Windows NT(R) Operating System>
    2008-06-21 22:14:33 992896 --a------ C:\WINDOWS\system32\drivers\Bravo_a.sys <Not Verified; ASMT; Microsoft(R) Windows NT(R) Operating System>
    2008-06-21 22:14:33 2032640 --a------ C:\WINDOWS\system32\ATKOSDX32.dll <Not Verified; ASUSTeK COMPUTER INC.; ASUS On-Screen Display For 3D Game>
    2008-06-21 22:14:33 10496 --a------ C:\WINDOWS\system32\ATKOSDMini.DLL
    2008-06-21 22:14:33 37888 --a------ C:\WINDOWS\system32\ATKOGL32.dll <Not Verified; ASUSTeK COMPUTER INC.; ASUSTeK Computer Inc. AsusOGL>
    2008-06-21 22:14:33 1667072 --a------ C:\WINDOWS\system32\ATKDispCPL.dll <Not Verified; ASUSTeK COMPUTER INC.; ASUS Display Property Page>
    2008-06-21 22:14:33 250368 --a------ C:\WINDOWS\system32\ATKDISP.dll <Not Verified; ASUSTeK Computer Inc.; ASUS Windows 2000/XP Display Driver>
    2008-06-21 22:14:33 46080 --a------ C:\WINDOWS\system32\asrussian.dll
    2008-06-21 22:14:33 45568 --a------ C:\WINDOWS\system32\askorean.dll
    2008-06-21 22:14:33 45568 --a------ C:\WINDOWS\system32\asjapan.dll
    2008-06-21 22:14:33 46080 --a------ C:\WINDOWS\system32\asgerman.dll
    2008-06-21 22:14:33 46592 --a------ C:\WINDOWS\system32\asfrench.dll
    2008-06-21 22:14:33 46080 --a------ C:\WINDOWS\system32\aseng.dll
    2008-06-21 22:14:33 45568 --a------ C:\WINDOWS\system32\ASCHT.dll
    2008-06-21 22:14:33 45568 --a------ C:\WINDOWS\system32\aschs.dll
    2008-06-21 22:14:17 0 d-------- C:\Program Files\Common Files\ATI Technologies
    2008-06-21 22:12:47 0 d-------- C:\WINDOWS\system32\ReinstallBackups
    2008-06-21 22:12:40 0 d-------- C:\Program Files\ATI Technologies
    2008-06-21 22:12:37 0 d--h----- C:\Program Files\InstallShield Installation Information
    2008-06-21 22:12:20 0 d-------- C:\Program Files\Common Files\InstallShield
    2008-06-21 22:11:42 0 d-------- C:\WINDOWS\system32\URTTemp
    2008-06-21 22:10:45 12416 -ra------ C:\WINDOWS\system32\drivers\EIO.sys <Not Verified; ASUSTeK Computer Inc.; ASUS Kernel Mode Driver for NT>
    2008-06-21 22:08:49 0 d--hs---- C:\WINDOWS\Installer
    2008-06-21 22:08:47 0 d-------- C:\Documents and Settings\Dragon\Application Data\Identities
    2008-06-21 22:08:40 0 d--h----- C:\Documents and Settings\Dragon\Templates
    2008-06-21 22:08:40 0 dr------- C:\Documents and Settings\Dragon\Start Menu
    2008-06-21 22:08:40 0 dr------- C:\Documents and Settings\Dragon\Sık Kullanılanlar
    2008-06-21 22:08:40 0 dr-h----- C:\Documents and Settings\Dragon\SendTo
    2008-06-21 22:08:40 0 dr-h----- C:\Documents and Settings\Dragon\Recent
    2008-06-21 22:08:40 0 d--h----- C:\Documents and Settings\Dragon\PrintHood
    2008-06-21 22:08:40 3407872 --ah----- C:\Documents and Settings\Dragon\NTUSER.DAT
    2008-06-21 22:08:40 0 d--h----- C:\Documents and Settings\Dragon\NetHood
    2008-06-21 22:08:40 0 d--h----- C:\Documents and Settings\Dragon\Local Settings
    2008-06-21 22:08:40 0 d-------- C:\Documents and Settings\Dragon\Desktop
    2008-06-21 22:08:40 0 d--hs---- C:\Documents and Settings\Dragon\Cookies
    2008-06-21 22:08:40 0 d-------- C:\Documents and Settings\Dragon\Belgelerim
    2008-06-21 22:08:40 0 d--h----- C:\Documents and Settings\Dragon\Application Data
    2008-06-21 22:08:05 0 d--hs---- C:\System Volume Information
    2008-06-21 22:08:04 237568 --ah----- C:\Documents and Settings\NetworkService\NTUSER.DAT
    2008-06-21 22:08:04 0 d--h----- C:\Documents and Settings\NetworkService\Local Settings
    2008-06-21 22:08:04 0 d---s---- C:\Documents and Settings\NetworkService\Cookies
    2008-06-21 22:08:04 0 d-------- C:\Documents and Settings\NetworkService\Application Data
    2008-06-21 22:08:04 0 d---s---- C:\Documents and Settings\NetworkService\Application Data\Microsoft
    2008-06-21 22:08:04 237568 --ah----- C:\Documents and Settings\LocalService\NTUSER.DAT
    2008-06-21 22:08:04 0 d--h----- C:\Documents and Settings\LocalService\Local Settings
    2008-06-21 22:08:04 0 d--hs---- C:\Documents and Settings\LocalService\Cookies
    2008-06-21 22:08:04 0 d-------- C:\Documents and Settings\LocalService\Application Data
    2008-06-21 22:08:04 0 d---s---- C:\Documents and Settings\LocalService\Application Data\Microsoft
    2008-06-21 22:06:06 0 d-------- C:\WINDOWS\system32\xircom
    2008-06-21 22:06:06 0 d-------- C:\Program Files\microsoft frontpage
    2008-06-21 22:05:57 237568 ---h----- C:\Documents and Settings\Default User\NTUSER.DAT
    2008-06-21 22:05:52 0 -rahs---- C:\MSDOS.SYS
    2008-06-21 22:05:52 0 -rahs---- C:\IO.SYS
    2008-06-21 22:05:52 0 --a------ C:\CONFIG.SYS
    2008-06-21 22:05:52 0 --a------ C:\AUTOEXEC.BAT
    2008-06-21 22:05:16 0 d--hs---- C:\Documents and Settings\All Users\DRM
    2008-06-21 22:05:11 0 dr------- C:\WINDOWS\Offline Web Pages
    2008-06-21 22:05:11 0 d---s---- C:\WINDOWS\Downloaded Program Files
    2008-06-21 22:04:56 0 d-------- C:\WINDOWS\srchasst
    2008-06-21 22:04:52 0 d-------- C:\WINDOWS\system32\DirectX
    2008-06-21 22:04:51 0 d-------- C:\WINDOWS\system32\Macromed
    2008-06-21 22:04:42 0 d-------- C:\Program Files\Movie Maker
    2008-06-21 22:04:23 0 d-------- C:\WINDOWS\system32\Restore
    2008-06-21 22:04:19 0 d-------- C:\WINDOWS\PCHEALTH
    2008-06-21 22:04:14 0 d---s---- C:\WINDOWS\Tasks
    2008-06-21 22:04:12 0 d-------- C:\Program Files\Common Files\MSSoap
    2008-06-21 22:03:49 21736 --a------ C:\WINDOWS\system32\emptyregdb.dat
    2008-06-21 22:03:36 0 d-------- C:\WINDOWS\Registration
    2008-06-21 22:03:31 0 d--h----- C:\Program Files\WindowsUpdate
    2008-06-21 22:03:31 0 d-------- C:\Program Files\Online Services
    2008-06-21 22:03:27 0 d-------- C:\Program Files\Messenger
    2008-06-21 22:03:20 0 d-------- C:\Program Files\MSN Gaming Zone
    2008-06-21 22:03:13 0 d-------- C:\Program Files\Windows NT
    2008-06-21 22:03:05 0 d-------- C:\WINDOWS\system32\MsDtc
    2008-06-21 22:03:03 0 d-------- C:\WINDOWS\system32\Com


    -- Find3M Report ---------------------------------------------------------------

    2008-06-24 09:30:46 389210 --a------ C:\WINDOWS\system32\perfh01F.dat
    2008-06-24 09:30:46 71936 --a------ C:\WINDOWS\system32\perfc01F.dat
    2008-06-22 00:56:23 62 --ahs---- C:\Documents and Settings\Dragon\Application Data\desktop.ini


    -- Registry Dump ---------------------------------------------------------------

    *Note* empty entries & legit default entries are not shown


    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
    02.03.2007 16:52 1298024 -ra------ C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
    02.03.2007 16:52 177768 -ra------ C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [02.01.2006 17:41]
    "exflashservice"="C:\Program Files\EPOX\EFS\EZ_FLASH_SERVICE.exe" [02.05.2006 12:26]
    "SoundMan"="SOUNDMAN.EXE" [01.03.2006 11:22 C:\WINDOWS\soundman.exe]
    "itype"="C:\Program Files\Microsoft IntelliType Pro\itype.exe" [22.11.2006 04:08]
    "IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [06.02.2007 02:52]
    "FixCamera"="C:\WINDOWS\FixCamera.exe" [11.07.2007 16:09]
    "tsnp325"="C:\WINDOWS\tsnp325.exe" [21.04.2007 09:30]
    "snp325"="C:\WINDOWS\vsnp325.exe" [10.05.2007 13:18]
    "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [11.03.2007 21:34]
    "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [27.10.2006 00:47]
    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [25.03.2008 04:28]
    "AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" [19.05.2007 22:36]
    "WinampAgent"="C:\Program Files\Winamp\winampa.exe" [20.12.2004 21:41]
    "NSLauncher"="C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe" [28.11.2006 01:12]
    "amd_dc_opt"="C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [23.07.2007 11:06]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [04.08.2004 00:45]
    "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [18.10.2007 11:35]
    "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [22.06.2008 01:33]
    "PcSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [27.06.2006 16:21]

    C:\Documents and Settings\Dragon\Start Menu\Programlar\BaŸlang‡\
    Ey DSL! 2.0.lnk - C:\Program Files\Shenturk\Ey DSL! 2.0\EyDSL.exe [28.06.2008 19:59:50]

    C:\Documents and Settings\All Users\Start Menu\Programlar\BaŸlang‡\
    Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [14.12.2004 04:44:06]
    AirTies ADSL Hizmet Program.lnk - C:\Program Files\AirTies\ADSL Hizmet Program\AirTies_util3.exe [21.06.2008 23:36:46]
    HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [11.03.2007 21:26:24]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
    @="Service"

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
    @="Volume shadow copy"

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    HPZ12 Pml Driver HPZ12 Net Driver HPZ12
    hpdevmgmt hpqcxs08 hpqddsvc




    -- End of Deckard's System Scanner: finished at 2008-07-05 12:45:14 ------------




  • quote:

    Orjinalden alıntı: dragon-black

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    C:\WINDOWS\unvise32.exe
    C:\WINDOWS\system32\vsnp325.dll
    C:\WINDOWS\system32\rsnp325.dll
    C:\WINDOWS\system32\csnp325.dll

    Virus 21 haziranda bulasmis. Eger unvise32.exe'yi bilmiyorsan silmeni onerirm. Benim kayitlarimda trojan olarak gozukuyor fakat ayni zamanda bir uninstaller programinin dosyasi olarak da geciyor. eger yuklemediysen oyle bisey yukarida yazdigim 4 dosyayi sil guvenli modda.
  • 
Sayfa: önceki 185186187188189
Sayfaya Git
Git
sonraki
- x
Bildirim
mesajınız kopyalandı (ctrl+v) yapıştırmak istediğiniz yere yapıştırabilirsiniz.