1543056134722.png


Sisteminizde yaşadığınız performans düşüşü, kilitlenme, zararlı etkisi, uygulama hatalarından kaynaklanan sorunsalları analiz etmek ve performans iyileştirmesi, zararlı etkisini inaktif etmek için bize HijackThis yazılımı ile yaptığınız tarama Logunu burada paylaşmanız gerekmektedir.



Kullanımı:

1)
Bir geliştirici tarafından yeni özellikler kazandırılan güncel sürümünü buradan indirip, arşiv dosyasından masaüstüne uygulamayı çıkartın.

Alternatif: Download HiJackThis Fork - MajorGeeks

Eski Sürüm: HiJackThis | Free software downloads at SourceForge.net

2) Bilgisayarınızı yeniden başlatın 3 dk işlem yapmadan bekleyin.

3) HijackThis yazılımına sağ tıklayıp yönetici olarak çalıştırın (XP için geçerli değil).

1543056459730.png


4) Açılan arayüzde, "Do a system scan and save a log file" butonuna tıklayın.

1543053000396.png


5) Otomatik olarak Hijackthis taraması başlayacak, taramanın tamamlanması sürece fare ve klavyeyi kullanmayın.
1543053111358.png


6) Tarama tamamlandığında HijackThis raporunu içeren bir Log dosyası karşınıza gelecektir.

1543053449185.png



*7) Log dosyasını incelememiz için buraya cevaplama bölümünden eklemeniz gerekmektedir.

1543053710016.png

Kod'a tıklayın.

1543053809056.png


Log'da yazanları mavi bölmenin içine yapıştırıp "Devam Et" butonuna basın.

Uyarı: Sitede kod eklemede sorun yaşarsanız kod paylaşımlarını altta verilen sitelerden birine yapıştırıp linki paylaşmanız gerekmektedir. Bu durumda *7. seçeneği şu anlık kullanmayın.

Paste ofCode
Paste Code

8) Ayrıca sisteminizde var olan sorunu detaylıca (Performans düşüşü, Malware varlığı şüphesi vb.) belirterek konuyu cevaplayın.
(Bunu yapmayana cevap verilmeyecektir)

Fixleme:

Konuda şahsım tarafından veya uzman kişilerden geri dönüş yapıldığında Hijackthis uygulama arayüzünden söylediğimiz satırların başlarına tik işareti koyun. Ardından "Fix checked" butonuna basın.
1543054420492.png
 
Son düzenleyen: Moderatör:
@onurr
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
Bundna başka tehlikeli birşey yok. Diğer 1/2 tane var ancak zararı dokunmazlar.

Bende performans kaybı vardı. @THE_MILLER sonuçları "HijackThis Log Paylaşımı ve Çözümleri" konusuna at dedi. Şimdi ne yapmam lazım?
 
onurr,
Performans için ek olarak bunları da fixleyebilirsin.
Kod:
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\TpOnur\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O23 - Service: @C:\Program Files (x86)\Google\Chrome Remote Desktop\37.0.2062.28\remoting_core.dll,-101 (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\37.0.2062.28\remoting_host.exe

JavaRa ile JavaRa ile Sistemden JAVA Kaldırımı | Technopat Sosyal Java yazılımını da kaldırın.
 
Gönderdim.

Biosta tamam. Kesin kaldırın dediğiniz programı bulamıyorum. fst_tr_75 yada exe.
 

Dosya Ekleri

  • scanpaint.jpg
    scanpaint.jpg
    101,1 KB · Görüntüleme: 326
Gönderdim.

Biosta tamam. Kesin kaldırın dediğiniz programı bulamıyorum. fst_tr_75 yada exe.
Resim olarak değil txt olarak vereceksiniz.
fst_tr olanı dosyalarda bulamıyorsanız regeditte arayın.
 
Kod:
Saved date:    28.8.2014 20:36:16

Files detected:   15

Files scanned:   1.936

Processes scanned:   38

Modules scanned:   372

ASEPs scanned:   460

Downloads scanned:   2

Deep analysis:   12/1

---------------------------------------------------------------------------------


Files


---------------------------------------------------------------------------------


File path:   c:\program files (x86)\videolan\vlc\vlc.exe

Publisher:   VideoLAN

MD5:   73a6bf01391cd65dbe9bbcb7300a9863

SHA-1:   2fbadd13acdb5ce7bb60d79545a827c11f938de9

Created:   9.12.2013 02:18:16

Detections:   1

Determination:   Ignore detections (false positive)

  - Bkav FE as W32.HfsAutoB (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\herdprotectscan_setup.exe

Publisher:   Reason Company Software Inc.

Signer:   Reason Software Company Inc.

MD5:   e4229c33cdde2626a2f7dd22d5dab657

SHA-1:   5c9af9736a3b1e54fff78829e078d1bdecccea31

Created:   28.8.2014 20:20:36

Detections:   3

Determination:   Inconclusive

  - Trend Micro House Call as Suspicious_GEN.F47V0812 (Undefined)

  - Kaspersky as HEUR:Trojan.Win32.Generic (Undefined)

  - Rising Antivirus as PE:Malware.ArcadeWeb!6.727 (Undefined)


---------------------------------------------------------------------------------


File path:     c:\users\acerr\appdata\local\temp\nse433a.tmp\sdsplugin.dll

Publisher:   S p i g o t, I n c.

Signer:   Spigot, Inc.

MD5:   9e2250ca7c2de3ccf2a400fa8bd572cc

SHA-1:   a481141557cea90fce5dede59964d5c0064ef4af

Created:   28.8.2014 09:22:17

Detections:   1

Determination:   Adware

  - Reason Heuristics as PUP.Spigot.J (Adware)


---------------------------------------------------------------------------------


File path:   C:\Users\acerr\Downloads\AdobeAIRInstaller.exe

Publisher:   Adobe Systems Inc.

Signer:   Adobe Systems Incorporated

MD5:   d4b51299a4918203558f03d7b711ef8b

SHA-1:   ca29838c0870913100d7342fca8e2415b997399d

Created:   9.1.2014 22:36:05

Detections:   1

Determination:   Ignore detections (false positive)

  - Rising Antivirus as PE:Malware.XPACK/RDM!5.1


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\adobedownloadassistant.exe

Publisher: 

Signer:   Adobe Systems Incorporated

MD5:   5b028722015240564755a49ddf48486c

SHA-1:   ed05b554f055e82b70fea8c92a53d60fe077c23a

Created:   9.1.2014 22:42:26

Detections:   1

Determination:   Ignore detections (false positive)

  - XVirus List as Win.Detected (Undefined)


---------------------------------------------------------------------------------


File path:     c:\users\acerr\downloads\adobe_photoshop_cs6_egitim_set.exe

Publisher: 

Signer:   Dey yazilim ve internet hizmetleri san. tic. ltd. sti.

MD5:   bfc098ee02751461134dac259f4485af

SHA-1:   927382b6763271fef78236e8525398d008cda673

Created:   19.1.2014 23:08:56

Detections:   1

Determination:   Ignore detections (false positive)

  - ByteHero BDV as Virus.Win32.Part.a (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\fotosketcher_2.90_setup.exe

Publisher:   David THOIRON

MD5:   d9ee39dc9b334806f5a0307091045ff7

SHA-1:   6bc2abbdd8eab484ea8ebb0fa447fbb588def634

Created:   13.8.2014 01:42:19

Detections:   1

Determination:   Ignore detections (false positive)

  - CMC Antivirus as RiskTool.Win32.CloseApp!O (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\pdfwritersetup.exe

Publisher: 

Signer:   Fried Cookie Ltd

MD5:   3d69e5e774f7d78019e092c28c38fe7c

SHA-1:   9f0ad468e5472d019a52c762222173b6cf0cd6c7

Created:   26.2.2014 21:11:36

Detections:   4

Determination:   Adware

  - Reason Heuristics as PUP.Installer.FriedCookie.O (Adware)

  - VIPRE Antivirus as Threat.4786018 (Undefined)

  - Dr.Web as Trojan.Packed.25346 (Undefined)

  - ESET NOD32 as Win32/InstallCore.KC potentially unwanted application (Adware)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\photoscape3.6.5-tamindir.exe

Publisher:   Mooii

Signer:   Mooii Tech

MD5:   369b74993cad72f67723a9c2877bfba3

SHA-1:   057c95466aad91380f7ca08599feddaef90677a0

Created:   15.5.2014 21:53:39

Detections:   3

Determination:   Inconclusive

  - ESET NOD32 as Win32/OpenCandy (Adware)

  - Malwarebytes as PUP.Optional.OpenCandy (Adware)

  - Rising Antivirus as PE:pUF.OpenCandy!1.9DE5 (Adware)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\softonicdownloader_for_tango.exe

Publisher:   Softonic

Signer:   Softonic International

MD5:   8f09f932aac2b33ea72fd4178413aba7

SHA-1:   b9551390741d37553f7c23be08da30a6f24b911e

Created:   14.6.2014 11:42:31

Detections:   25

Determination:   Adware

  - McAfee as Artemis!8F09F932AAC2 (Undefined)

  - Malwarebytes as PUP.Optional.Softonic.A (Adware)

  - VIPRE Antivirus as Softonic Downloader (Undefined)

  - K7 AntiVirus as Unwanted-Program  (Adware)

  - K7 Gateway Antivirus as Unwanted-Program  (Adware)

  - Trend Micro House Call as Suspicious_GEN.F47V0611 (Undefined)

  - Agnitum Outpost as PUA.Softonic (Adware)

  - Dr.Web as Adware.Downware.4164 (Adware)

  - McAfee Web Gateway as Artemis!8F09F932AAC2 (Undefined)

  - Baidu Antivirus as Adware.Win32.SoftonicDownloader (Adware)

  - ESET NOD32 as Win32/SoftonicDownloader (Undefined)

  - Fortinet FortiGate as Riskware/Softonicdownloader (Undefined)

  - Reason Heuristics as Bundler.PPI.Softonic.CC (Undefined)

  - Zillya! Antivirus as Downloader.Agent.Win32.203381 (Undefined)

  - NANO AntiVirus as Trojan.Win32.Agent.ddwieh (Undefined)

  - F-Prot as W32/Softonic.C2.gen (Undefined)

  - Kaspersky as not-a-virus:Downloader.Win32.Agent (Adware)

  - Antiy Labs AVL as GrayWare[Downloader:not-a-virus]/Win32.Agent.bxib (Adware)

  - Kingsoft AntiVirus as Win32.Troj.DownAgent.bx.(kcloud) (Undefined)

  - Rising Antivirus as PE:Malware.Obscure/Heur!1.9E03 (Undefined)

  - SUPERAntiSpyware as Adware.Softonic/Variant (Adware)

  - Comodo Security as Application.Win32.Agent.SOFE (Adware)

  - IKARUS anti.virus as not-a-virus:Downloader.Win32.Agent (Adware)

  - Bkav FE as HW32.CDB (Undefined)

  - Vba32 AntiVirus as Downloader.Agent (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\winzip18-dl_c4.exe

Publisher:   

Signer:   WinZip Computing

MD5:   2f20cc3f7c7293c34ef9754c856e3158

SHA-1:   2de1a8aa6731ae06139336084bf5eb99ca33fbe9

Created:   27.8.2014 21:24:58

Detections:   3

Determination:   Inconclusive

  - Agnitum Outpost as PUA.InstallCore (Adware)

  - Avira AntiVir as Adware/InstallCore.A.679 (Adware)

  - ESET NOD32 as Win32/InstallCore.PP (variant) (Adware)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\winzip180.exe

Publisher:   WinZip Computing

Signer:   WinZip Computing

MD5:     d57a4fbbccf2c023151072c05cc5c3c0

SHA-1:   c08421151d0b37b3d2cef770b8194d4edf166eba

Created:   9.1.2014 22:21:34

Detections:   11

Determination:   Adware

  - K7 AntiVirus as Unwanted-Program  (Adware)

  - K7 Gateway Antivirus as Unwanted-Program  (Adware)

  - Trend Micro House Call as TROJ_GEN.F47V0131 (Undefined)

  - Agnitum Outpost as Riskware.OpenInstall (Adware)

  - Dr.Web as Adware.Downware.1923 (Adware)

  - Sophos as Open Install (Undefined)

  - ESET NOD32 as Win32/OpenInstall (variant) (Undefined)

  - Fortinet FortiGate as Riskware/OpenInstall (Undefined)

  - McAfee as Artemis!AD7A90655937 (Undefined)

  - McAfee Web Gateway as Artemis!AD7A90655937 (Undefined)

  - Emsisoft Anti-Malware as Trojan.Generic.10143455 (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\downloads\youtube-jacker-tamindir.exe

Publisher: 

MD5:   fd8e3c0c26fc2244bbf2c1f3a9d21f4a

SHA-1:   011f18f6aac847e4db10d4e376f05dd6819f15c1

Created:   24.5.2014 22:08:33

Detections:   4

Determination:   UndefinedMalware

  - Bkav FE as W32.Clod2eb.Trojan (Undefined)

  - McAfee as Artemis!FD8E3C0C26FC (Undefined)

  - Rising Antivirus as PE:Malware.XPACK-HIE/Heur!1.9C48 (Undefined)

  - AVG as Win32/DH{LgY} (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\desktop\vlc-2-1-1-win32.exe

Publisher: 

MD5:   7e89844169e755775f09aa4724680281

SHA-1:   0466abcbb6be6301383ceff0d7ce996ff4e89517

Created:   14.1.2014 18:54:10

Detections:   1

Determination:   Ignore detections (false positive)

  - Rising Antivirus as PE:Trojan.Zbot!6.103C (Undefined)


---------------------------------------------------------------------------------


File path:   c:\users\acerr\desktop\adobe photoshop cs6 (64 bit)\amtlib.dll

Publisher:   Adobe Systems, Incorporated

Signer:   Adobe Systems Incorporated

MD5:   ef859539b893f5b19773312642318d21

SHA-1:   a02778b3bdaf59afdf98e95a87934b86028b6658

Created:   15.3.2012 02:11:20

Detections:   1

Determination:   Ignore detections (false positive)

  - XVirus List as Win.Detected (Undefined)



Ok ?
 
@minick Altta yazdıklarımı tekrar herdprotect ile tarama yapıp seçip remove yapın.

c:\users\acerr\appdata\local\temp\nse433a.tmp\sdsplugin.dll
C:\Users\acerr\Downloads\AdobeAIRInstaller.exe
c:\users\acerr\downloads\adobedownloadassistant.exe
c:\users\acerr\downloads\photoscape3.6.5-tamindir.exe
c:\users\acerr\downloads\pdfwritersetup.exe
c:\users\acerr\downloads\softonicdownloader_for_tango.exe
c:\users\acerr\downloads\winzip18-dl_c4.exe
c:\users\acerr\downloads\winzip180.exe
c:\users\acerr\downloads\youtube-jacker-tamindir.exe
 

Geri
Yukarı