1543056134722.png


Sisteminizde yaşadığınız performans düşüşü, kilitlenme, zararlı etkisi, uygulama hatalarından kaynaklanan sorunsalları analiz etmek ve performans iyileştirmesi, zararlı etkisini inaktif etmek için bize HijackThis yazılımı ile yaptığınız tarama Logunu burada paylaşmanız gerekmektedir.



Kullanımı:

1)
Bir geliştirici tarafından yeni özellikler kazandırılan güncel sürümünü buradan indirip, arşiv dosyasından masaüstüne uygulamayı çıkartın.

Alternatif: Download HiJackThis Fork - MajorGeeks

Eski Sürüm: HiJackThis | Free software downloads at SourceForge.net

2) Bilgisayarınızı yeniden başlatın 3 dk işlem yapmadan bekleyin.

3) HijackThis yazılımına sağ tıklayıp yönetici olarak çalıştırın (XP için geçerli değil).

1543056459730.png


4) Açılan arayüzde, "Do a system scan and save a log file" butonuna tıklayın.

1543053000396.png


5) Otomatik olarak Hijackthis taraması başlayacak, taramanın tamamlanması sürece fare ve klavyeyi kullanmayın.
1543053111358.png


6) Tarama tamamlandığında HijackThis raporunu içeren bir Log dosyası karşınıza gelecektir.

1543053449185.png



*7) Log dosyasını incelememiz için buraya cevaplama bölümünden eklemeniz gerekmektedir.

1543053710016.png

Kod'a tıklayın.

1543053809056.png


Log'da yazanları mavi bölmenin içine yapıştırıp "Devam Et" butonuna basın.

Uyarı: Sitede kod eklemede sorun yaşarsanız kod paylaşımlarını altta verilen sitelerden birine yapıştırıp linki paylaşmanız gerekmektedir. Bu durumda *7. seçeneği şu anlık kullanmayın.

Paste ofCode

8) Ayrıca sisteminizde var olan sorunu detaylıca (Performans düşüşü, Malware varlığı şüphesi vb.) belirterek konuyu cevaplayın.
(Bunu yapmayana cevap verilmeyecektir)

Fixleme:

Konuda şahsım tarafından veya uzman kişilerden geri dönüş yapıldığında Hijackthis uygulama arayüzünden söylediğimiz satırların başlarına tik işareti koyun. Ardından "Fix checked" butonuna basın.
1543054420492.png
 
Son düzenleme:
Bunları fixleyin:
Kod:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=tr&pid=NS&pvid=22.11.2.7
R0 - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=tr&pid=NS&pvid=22.11.2.7
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxyServer] = proxy2.gazi.edu.tr:2001 (disabled)
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] = C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATII6E.EXE /EPT "EPLTarget\P0000000000000000" /M "L550 Series"
O4 - HKCU\..\StartupApproved\Run: [OneDrive] = C:\Users\STarkay\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (2017/05/30)
O4 - HKLM\..\StartupApproved\StartupFolder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MobileGo Service.lnk    ->    C:\Program Files (x86)\Wondershare\MobileGo\MobileGoService.exe (2019/05/02)
O4 - HKLM\..\StartupApproved\StartupFolder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk    ->    C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (2019/05/02)
O18 - HKLM\Software\Classes\Protocols\Handler\WSWSVCUchrome: [CLSID] = {1CA93FF0-A218-44F1- - (no file)
O23 - Service R2: Seagate Dashboard Service - (SeagateDashboardService) - C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
O23 - Service R2: Usb PLC - (UsbConnect) - C:\WINDOWS\system32\UsbConnect.exe


Eğer bunları bilmiyorsanız denetim masasından kaldırın: Aruba Networks, National Instruments.

Kaldırdıysanız alttakileri fixleyin görünüyorsa:
Kod:
O23 - Service R2: Aruba Service - C:\Program Files\Aruba Networks\Virtual Internet Agent\arubanetsvc.exe

O23 - Service R2: NI Authentication Service - (niauth) - C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe -start

O23 - Service R2: NI Citadel 4 Service - (LkCitadelServer) - C:\WINDOWS\SysWOW64\lkcitdl.exe

O23 - Service R2: NI Domain Service - (NIDomainService) - C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe

O23 - Service R2: NI PSP Service Locator - (lkClassAds) - C:\WINDOWS\SysWOW64\lkads.exe

O23 - Service R2: NI Service Locator - (NiSvcLoc) - C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe -s

O23 - Service R2: NI Time Synchronization - (lkTimeSync) - C:\WINDOWS\SysWOW64\lktsrv.exe

O23 - Service R2: NI mDNS Responder Service - (nimDNSResponder) - C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe

O23 - Service R2: NetAccess Service - (NA_Service) - C:\WINDOWS\system32\NA_Service.exe

O23 - Service S2: NI Application Web Server - (NIApplicationWebServer) - C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe -user

O23 - Service S2: NI System Web Server - (NISystemWebServer) - C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe -system

O23 - Service S3: NI License Server - (NILM License Manager) - C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe  (file missing)

Ek olarak kullanmıyorsanız Wondershare, Onedrive, Dropbox, Turkcell VINN bunları da kaldırın.


Çok Teşekkürler, bir miktar iyileşme sağladı bunlar.
Ancak şöyle bir esas problemim var, Bilgisayar açılıyor normal olarak. Windows oturum açtıktan sonra 10 dakika gibi bir süre siyah ekran kalıp sonra masaüstü geliyor. Buna dair bir çözüm önerisi olan, benzer bir sorun ile karşılaşmış olan var mıdır?
 
Windows oturum açtıktan sonra 10 dakika gibi bir süre siyah ekran kalıp sonra masaüstü geliyor. Buna dair bir çözüm önerisi olan, benzer bir sorun ile karşılaşmış olan var mıdır?
Bunun hakkında yeni konu açıp beni etiketleyin öneriler yapalım. Burada sadece zararlı yönünde bir şey varsa yardım ettiğimizden farklı konu açıp sorunuzu detaylı yazarsanız iyi olur. İmzamdan Aida64 raporunu da yeni konunuzda ekleyin.
 
Kod:
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18

Platform:  x64 Windows 10 (Pro), 10.0.17763.437 (ReleaseId: 1809), Service Pack: 0
Time:      03.05.2019 - 17:59 (UTC+03:00)
Language:  OS: Turkish (0x41F). Display: Turkish (0x41F). Non-Unicode: Turkish (0x41F)
Elevated:  Yes
Ran by:    ernes    (group: Administrator) on YAVINAS-COM, FirstRun: yes

Edge:    11.0.17763.437
Internet Explorer: 11.0.17763.1
Default: "C:\Users\ernes\AppData\Local\Programs\Opera\Launcher.exe" -noautoupdate -- "%1" (Opera Internet Browser)

Boot mode: Normal

Running processes:
Number | Path
   1  C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
   1  C:\Program Files (x86)\Glary Utilities 5\MemfilesService.exe
   1  C:\Program Files (x86)\Glary Utilities 5\x64\x64ProcessAssistSvc.exe
   1  C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
   1  C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
   1  C:\Program Files\AMD\CNext\CNext\amdow.exe
   2  C:\Program Files\Webroot\WRSA.exe
   1  C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19021.18010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
  14  C:\Users\ernes\AppData\Local\Programs\Opera\58.0.3135.132\opera.exe
   1  C:\Users\ernes\AppData\Local\Programs\Opera\58.0.3135.132\opera_crashreporter.exe
   1  C:\Users\ernes\Desktop\HiJackThis\HiJackThis.exe
   1  C:\Windows\ImmersiveControlPanel\SystemSettings.exe
   1  C:\Windows\SysWOW64\dllhost.exe
   1  C:\Windows\System32\ApplicationFrameHost.exe
   1  C:\Windows\System32\DriverStore\FileRepository\c0341662.inf_amd64_6a03bbaf8486839e\B341390\atieclxx.exe
   1  C:\Windows\System32\DriverStore\FileRepository\c0341662.inf_amd64_6a03bbaf8486839e\B341390\atiesrxx.exe
   4  C:\Windows\System32\RuntimeBroker.exe
   1  C:\Windows\System32\SearchFilterHost.exe
   1  C:\Windows\System32\SearchIndexer.exe
   2  C:\Windows\System32\SearchProtocolHost.exe
   1  C:\Windows\System32\SecurityHealthService.exe
   1  C:\Windows\System32\SecurityHealthSystray.exe
   1  C:\Windows\System32\SettingSyncHost.exe
   1  C:\Windows\System32\SgrmBroker.exe
   1  C:\Windows\System32\SystemSettingsBroker.exe
   1  C:\Windows\System32\audiodg.exe
   1  C:\Windows\System32\conhost.exe
   2  C:\Windows\System32\csrss.exe
   1  C:\Windows\System32\ctfmon.exe
   1  C:\Windows\System32\dasHost.exe
   4  C:\Windows\System32\dllhost.exe
   1  C:\Windows\System32\dwm.exe
   2  C:\Windows\System32\fontdrvhost.exe
   1  C:\Windows\System32\lsass.exe
   1  C:\Windows\System32\schtasks.exe
   1  C:\Windows\System32\services.exe
   1  C:\Windows\System32\sihost.exe
   1  C:\Windows\System32\smartscreen.exe
   1  C:\Windows\System32\smss.exe
   1  C:\Windows\System32\spoolsv.exe
  71  C:\Windows\System32\svchost.exe
   2  C:\Windows\System32\taskhostw.exe
   1  C:\Windows\System32\wininit.exe
   1  C:\Windows\System32\winlogon.exe
   1  C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
   1  C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
   1  C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
   1  C:\Windows\explorer.exe

R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [SuggestionsURL_JSON] = [URL]https://suggest.yandex.com.tr/suggest-ff.cgi?srv=ie11&uil=tr&part=[/URL]{searchTerms}&clid=2233630 - Yandex

R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: = [URL]https://yandex.com.tr/search/?text=[/URL]{searchTerms}&clid=2233630 - Yandex

O2 - HKLM\..\BHO: Webroot Filtering Extension - {C9C42510-9B41-42c1-9DCD-7282A2D07C61} - C:\Program Files\Common Files\Webroot\WebFiltering\wrflt.dll

O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll

O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll

O2-32 - HKLM\..\BHO: Webroot Filtering Extension - {C9C42510-9B41-42c1-9DCD-7282A2D07C61} - C:\Program Files (x86)\Common Files\Webroot\WebFiltering\wrflt.dll

O4 - HKCU\..\StartupApproved\Run: [BitTorrent] = C:\Users\ernes\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED (2019/04/21)

O4 - HKCU\..\StartupApproved\Run: [GUDelayStartup] = C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe -delayrun (2019/04/27)

O4 - HKLM\..\Run: [SecurityHealth] = C:\Windows\system32\SecurityHealthSystray.exe a Update\jusched.exe"

O4 - HKLM\..\StartupApproved\Run32: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (2019/03/31)

O4 - HKLM\..\StartupApproved\Run: [RTHDVCPL] = C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s (2019/04/09)

O4-32 - HKLM\..\Run: [WRSVC] = C:\Program Files\Webroot\WRSA.exe -ul

O17 - DHCP DNS 1: 192.168.1.1

O23 - Service R2: AMD External Events Utility - C:\Windows\System32\DriverStore\FileRepository\c0341662.inf_amd64_6a03bbaf8486839e\B341390\atiesrxx.exe

O23 - Service R2: WRSVC - C:\Program Files\Webroot\WRSA.exe -service

O23 - Service S3: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService

O23 - Service S3: soft Xpansion Dispatch Service - (SXDS10) - C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe \Service --

End of file - Time spent: 25,6 sec. - 11638 bytes, CRC32: FFFFFFFF. Sign: 눷앉[CODE]
Selamlar. Yardımcı olursanız çok sevinirim. Teşekkür ederim.
 
Kod:
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 15:18:36, on 10.05.2019
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.17763.0001)


Boot mode: Normal

Running processes:
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\IObit\Driver Booster\5.4.0\Pub\PubMonitor.exe
C:\Users\OxyqeN\AppData\Local\Discord\app-0.0.301\Discord.exe
C:\Users\OxyqeN\AppData\Local\Discord\app-0.0.301\Discord.exe
C:\Users\OxyqeN\AppData\Local\Discord\app-0.0.301\Discord.exe
C:\Users\OxyqeN\AppData\Local\Discord\app-0.0.301\Discord.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.200\deploy\LeagueClient.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.200\deploy\LeagueClientUx.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.200\deploy\LeagueClientUxRender.exe
C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.200\deploy\LeagueClientUxRender.exe
C:\Users\OxyqeN\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~3\Office16\GROOVEEX.DLL
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [CORSAIR iCUE Software] "C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe" --autorun
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Local Service')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{2e326d63-6312-48d1-aa2e-8dccd6bb6c1c}: NameServer = 208.67.222.222,208.67.220.220
O18 - Protocol: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
O23 - Service: Arp Intelligent Protection Service (AIPS) - Arcai.com - C:\Program Files (x86)\netcut\services\AIPS.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Corsair Service (CorsairService) - Corsair Memory, Inc. - C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google Inc. - C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\elevation_service.exe
O23 - Service: Google Güncelleme Hizmeti (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Güncelleme Hizmeti (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HotKey Clipboard Service (HKClipSvc) - Insyde Software Corp. - C:\Program Files (x86)\Hotkey\Driver\x64\HKClipSvc.exe
O23 - Service: @oem86.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: PowerBiosServer - CLEVO CO. - C:\Program Files (x86)\Hotkey\HotkeyService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10209 bytes
Merhaba lol oynarken birden fps düşüyor ve oyun kapanıyor masaüstü simgelerim kayboluyor donuyor birşey yapamıyorum yardımlarınız için şimdiden teşekkürler
 
Kod:
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18

Platform:  x64 Windows 8.1 (Pro), 6.3.9600.18756, Service Pack: 0
Time:      10.05.2019 - 17:27 (UTC+03:00)
Language:  OS: Turkish (0x41F). Display: Turkish (0x41F). Non-Unicode: Turkish (0x41F)
Elevated:  Yes
Ran by:    YILDIZ    (group: Administrator) on CASPER, FirstRun: yes

Chrome:  74.0.3729.131
Internet Explorer: 11.0.9600.18123
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)

Boot mode: Normal

Running processes:
Number | Path
   8  C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
   1  C:\Program Files\CCleaner\CCleaner64.exe
   1  C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
   1  C:\Users\YILDIZ\Desktop\HiJackThis.exe
   1  C:\Windows\System32\WUDFHost.exe
   2  C:\Windows\System32\csrss.exe
   1  C:\Windows\System32\dasHost.exe
   1  C:\Windows\System32\dwm.exe
   1  C:\Windows\System32\lsass.exe
   1  C:\Windows\System32\services.exe
   1  C:\Windows\System32\smss.exe
  12  C:\Windows\System32\svchost.exe
   1  C:\Windows\System32\taskhostex.exe
   2  C:\Windows\System32\wbem\WmiPrvSE.exe
   1  C:\Windows\System32\wbem\unsecapp.exe
   1  C:\Windows\System32\wininit.exe
   1  C:\Windows\System32\winlogon.exe
   1  C:\Windows\explorer.exe

R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [SuggestionsURL_JSON] = https://suggest.yandex.com.tr/suggest-ff.cgi?srv=ie11&uil=tr&part={searchTerms}&clid=2261465 - Yandex
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8C3078A0-9AAB-4371-85D1-656CA8E46EE8}: [URL] = https://yandex.com.tr/search/?text={searchTerms}&clid=2261465 - Yandex
O1 - Hosts: Reset contents to default
O1 - Hosts: 127.0.0.1 keystone.mwbsys.com
O1 - Hosts: 127.0.0.1 activation.cloud.techsmith.com
O1 - Hosts: 127.0.0.1 oscount.techsmith.com
O1 - Hosts: 127.0.0.1 65.52.240.48
O1 - Hosts: 127.0.0.1 69.167.144.18
O1 - Hosts: 127.0.0.1 157.56.8.159
O1 - Hosts: 127.0.0.1 69.167.144.15
O1 - Hosts: 127.0.0.1 updater.techsmith.com
O1 - Hosts: 127.0.0.1 camtasiatudi.techsmith.com
O1 - Hosts: 127.0.0.1 tsccloud.cloudapp.net
O1 - Hosts: 127.0.0.1 assets.cloud.techsmith.com
O1 - Hosts: 87.248.217.254 cdn.steamcommunity.com
O1 - Hosts: 87.248.217.254 media.steampowered.com
O1 - Hosts: 87.248.217.254 cdn.store.steampowered.com
O1 - Hosts: 87.248.217.254 cdn.steampowered.com
O1 - Hosts: 87.248.217.254 cloud.steampowered.com
O1 - Hosts: 87.248.217.254 cloud-2.steampowered.com
O4 - HKCU\..\StartupApproved\Run: [CCleaner Monitoring] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (2018/08/12)
O4 - HKLM\..\Run: [IgfxTray] = C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
O4 - HKLM\..\StartupApproved\Run: [HotKeysCmds] = C:\Windows\system32\hkcmd.exe (2018/08/14)
O4 - HKLM\..\StartupApproved\Run: [Persistence] = C:\Windows\system32\igfxpers.exe (2018/08/14)
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 169.55.0.224 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 169.55.40.5 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 173.255.134.84 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 173.255.137.80 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 174.127.73.80 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 174.127.73.85 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.28 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.29 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.31 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.97.82.44 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 69.41.163.149 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 69.41.163.49 (mirrored) - Action: Block
O9 - Button: HKLM\..\{2670000A-7350-4f3c-8081-5663EE0C6C49}: (no name) - (no file)
O9 - Button: HKLM\..\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}: (no name) - (no file)
O15 - Trusted Zone: *.localhost
O15 - Trusted Zone: https://www.roblox.com
O17 - DHCP DNS 1: 192.168.1.1
O18 - HKLM\Software\Classes\Protocols\Handler\livecall: [CLSID] = {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\msnim: [CLSID] = {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb-roaming.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf-roaming.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\wlmailhtml: [CLSID] = {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - (no file)
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco1: AccExtIco1 Class - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco2: AccExtIco2 Class - {853B7E05-C47D-4985-909A-D0DC5C6D7303} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco3: AccExtIco3 Class - {42D38F2E-98E9-4382-B546-E24E4D6D04BB} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   IDM Shell Extension: IDM Shell Extension - {CDC95B92-E27C-4745-A8C5-64A52A78855D} - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll
O22 - Task: \Microsoft\Windows\ApplicationData\CleanupTemporaryState - C:\Windows\system32 (file missing)
O23 - Service S2: Google Güncelleme Hizmeti (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: QMEmulatorService - C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe  (file missing)
O23 - Service S3: BattlEye Service - (BEService) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service S3: EQU8_tabg - D:\Steam\steamapps\common\TotallyAccurateBattlegrounds\TotallyAccurateBattlegrounds_Data\Plugins\agent.x64.equ8.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\elevation_service.exe
O23 - Service S3: Google Güncelleme Hizmeti (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: Intel(R) Content Protection HECI Service - (cphs) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service S3: Steam Client Service - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
O23 - Service S3: SwitchBoard - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service S3: Yazıcı Uzantıları ve Bildirimleri - (PrintNotify) - C:\Windows\system32\svchost.exe -k print; "ServiceDll" = C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll



Debug information:

- 10.05.2019 17:26:53 - CryptCATAdminCalcHashFromFileHandle - #0 LastDllError = 193 (%1 geçerli bir Win32 uygulaması değil.) TRUST_E_NOSIGNATURE: Not signed File:  C:\Windows\system32

--
End of file - Time spent: 32,7 sec. - 17104 bytes, CRC32: FFFFFFFF. Sign: 홃脻
 
Bunları fixleyin:
Kod:
O1 - Hosts: Reset contents to default
O1 - Hosts: 127.0.0.1 keystone.mwbsys.com
O1 - Hosts: 127.0.0.1 activation.cloud.techsmith.com
O1 - Hosts: 127.0.0.1 oscount.techsmith.com
O1 - Hosts: 127.0.0.1 65.52.240.48
O1 - Hosts: 127.0.0.1 69.167.144.18
O1 - Hosts: 127.0.0.1 157.56.8.159
O1 - Hosts: 127.0.0.1 69.167.144.15
O1 - Hosts: 127.0.0.1 updater.techsmith.com
O1 - Hosts: 127.0.0.1 camtasiatudi.techsmith.com
O1 - Hosts: 127.0.0.1 tsccloud.cloudapp.net
O1 - Hosts: 127.0.0.1 assets.cloud.techsmith.com
O1 - Hosts: 87.248.217.254 cdn.steamcommunity.com
O1 - Hosts: 87.248.217.254 media.steampowered.com
O1 - Hosts: 87.248.217.254 cdn.store.steampowered.com
O1 - Hosts: 87.248.217.254 cdn.steampowered.com
O1 - Hosts: 87.248.217.254 cloud.steampowered.com
O1 - Hosts: 87.248.217.254 cloud-2.steampowered.com
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 169.55.0.224 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 169.55.40.5 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 173.255.134.84 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 173.255.137.80 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 174.127.73.80 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 174.127.73.85 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.28 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.29 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.22.78.31 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 50.97.82.44 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 69.41.163.149 (mirrored) - Action: Block
O7 - IPSec: Name: IDM 6.XX IP Block (2017/02/11) - {b105cb98-66e0-4e8d-b116-46a4250279f2} - Source: my IP - Destination: IP: 69.41.163.49 (mirrored) - Action: Block
O9 - Button: HKLM\..\{2670000A-7350-4f3c-8081-5663EE0C6C49}: (no name) - (no file)
O9 - Button: HKLM\..\{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}: (no name) - (no file)
O15 - Trusted Zone: *.localhost
O15 - Trusted Zone: https://www.roblox.com
O17 - DHCP DNS 1: 192.168.1.1
O18 - HKLM\Software\Classes\Protocols\Handler\livecall: [CLSID] = {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\msnim: [CLSID] = {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb-roaming.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\mso-minsb.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf-roaming.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\osf.16: [CLSID] = (no CLSID) - (no file)
O18 - HKLM\Software\Classes\Protocols\Handler\wlmailhtml: [CLSID] = {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - (no file)
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco1: AccExtIco1 Class - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco2: AccExtIco2 Class - {853B7E05-C47D-4985-909A-D0DC5C6D7303} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   AccExtIco3: AccExtIco3 Class - {42D38F2E-98E9-4382-B546-E24E4D6D04BB} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\   IDM Shell Extension: IDM Shell Extension - {CDC95B92-E27C-4745-A8C5-64A52A78855D} - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll
O22 - Task: \Microsoft\Windows\ApplicationData\CleanupTemporaryState - C:\Windows\system32 (file missing)
O23 - Service S3: Yazıcı Uzantıları ve Bildirimleri - (PrintNotify) - C:\Windows\system32\svchost.exe -k print; "ServiceDll" = C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
 
Merhaba, benim performans sorunlarım yok sadece belirli aralıklarla RuntimeBroker %10 kadar CPU kullanıp işlemci sıcaklığını arttırıyor. Dediklerinizi yapıp söylediklerinizi Fix'lesem sorunda düzelme olur mu?
 
Dediğiniz hizmet Windows'a bağlı bu yüzden onu yürüten kullandığınız ne varsa onu kapatmanız yeterli olacaktır. Log sonucunu paylaşın kullanımda azalırsa azalır. Sıcaklık artması sadece ona bağlı olmaz donanımsal bakım yaptırma zamanı gelmiş olabilir.
 

Technopat Haberler

Yeni konular

Geri
Yukarı