Şimdi Ara

Windows 7 mavi ekran hatası

Daha Fazla
Bu Konudaki Kullanıcılar: Daha Az
2 Misafir - 2 Masaüstü
5 sn
22
Cevap
0
Favori
3.175
Tıklama
Daha Fazla
İstatistik
  • Konu İstatistikleri Yükleniyor
0 oy
Öne Çıkar
Sayfa: 12
Sayfaya Git
Git
sonraki
Giriş
Mesaj
  • 2 gündür bu mavi ekran hatasını alıyorum yardım eder misiniz ?




  • Tabi ki ederiz. Mavi ekran hata kodunu kopyala google a yapıştır yanına hatası yaz google da ara. Mobilim yoksa daha fazla yardımcı olurdum resmi göremiyorum
  • quote:

    Orijinalden alıntı: Mr. Angelo

    Tabi ki ederiz. Mavi ekran hata kodunu kopyala google a yapıştır yanına hatası yaz google da ara. Mobilim yoksa daha fazla yardımcı olurdum resmi göremiyorum
    worker thread returned at bad irql

    yazıyor
  • quote:

    Orijinalden alıntı: edizz13

    worker thread returned at bad irql

    yazıyor

    arkadaşın dediği gibi google amca :)
  • quote:

    Orijinalden alıntı: edizz13

    2 gündür bu mavi ekran hatasını alıyorum yardım eder misiniz ?



    http://aumha.org/a/stop.htm
    bu sitede bütün windows hatalarının açıklaması var ingilizcen varsa rahat yoksa translate den yardım alarak bakabilirsin umarım yardımcı olur bakman gereken hata 0x000000E1



    < Bu mesaj bu kişi tarafından değiştirildi zyf -- 28 Kasım 2012; 3:45:39 >




  • quote:

    Orijinalden alıntı: zyf

    quote:

    Orijinalden alıntı: edizz13

    2 gündür bu mavi ekran hatasını alıyorum yardım eder misiniz ?



    http://aumha.org/a/stop.htm
    bu sitede bütün windows hatalarının açıklaması var ingilizcen varsa rahat yoksa translate den yardım alarak bakabilirsin umarım yardımcı olur bakman gereken hata 0x000000E1
    anlamıyorum ki siz çevirip yardımcı olsanız bana :(




  • Aynısı dün bana oldu ama benimki 0x0...A'ydı norton trojen ve suspicious virüslerini buldu temizledim sorun çözüldü.
  • quote:

    Orijinalden alıntı: edizz13

    anlamıyorum ki siz çevirip yardımcı olsanız bana :(

    bu hatanın chipset veya ekran kartı sürücelerinin güncelliğiyle ilgili bir sorun olduğunu söylüyor. bildiğim kadarıyla sürücü güncelleme programları var onları kullanabilirsin veya kendi anakartına uygun sürücüleri tek tek bulup indirebilirsin sorun ortadan kalkacaktır
  • quote:

    Orijinalden alıntı: zyf

    quote:

    Orijinalden alıntı: edizz13

    anlamıyorum ki siz çevirip yardımcı olsanız bana :(

    bu hatanın chipset veya ekran kartı sürücelerinin güncelliğiyle ilgili bir sorun olduğunu söylüyor. bildiğim kadarıyla sürücü güncelleme programları var onları kullanabilirsin veya kendi anakartına uygun sürücüleri tek tek bulup indirebilirsin sorun ortadan kalkacaktır

    Alıntıları Göster
    casper'ın kendi saysafındakilerle güncellesem olur mu ordakiler güncel midir ?

    casper güncellemeler




  • quote:

    Orijinalden alıntı: zyf

    quote:

    Orijinalden alıntı: edizz13

    anlamıyorum ki siz çevirip yardımcı olsanız bana :(

    bu hatanın chipset veya ekran kartı sürücelerinin güncelliğiyle ilgili bir sorun olduğunu söylüyor. bildiğim kadarıyla sürücü güncelleme programları var onları kullanabilirsin veya kendi anakartına uygun sürücüleri tek tek bulup indirebilirsin sorun ortadan kalkacaktır

    Alıntıları Göster
    açıklama yaparmısınız aynı dertten muzdariplerde bilgilensin. + bilgi haznemiz çoğalsın




  • quote:

    Orijinalden alıntı: NecoByzt

    açıklama yaparmısınız aynı dertten muzdariplerde bilgilensin. + bilgi haznemiz çoğalsın

    Alıntıları Göster
    meraba arkadasım senın calıstırmaya calıstıgın programda viüs oldugu ıcın ıslem basarıyla gerceklestırelemedı yazıyor virüsü temizle
  • quote:

    Orijinalden alıntı: alpay14

    meraba arkadasım senın calıstırmaya calıstıgın programda viüs oldugu ıcın ıslem basarıyla gerceklestırelemedı yazıyor virüsü temizle

    Alıntıları Göster
    hızlı taramada bişi çıkmadı tam tarama da yapamıyorum o tarayana kadar pc kapanıyor :(
  • quote:

    Orijinalden alıntı: edizz13

    hızlı taramada bişi çıkmadı tam tarama da yapamıyorum o tarayana kadar pc kapanıyor :(

    Alıntıları Göster
    combofix adlı profosyonel virüs temizleyici program var onunla tarat kullanımına bakarak ıslemlerı gerceklestır yanlıs yaparsan bılgısayararın ıyıce kotuleşir .Yardım al
    http://www.tamindir.com/combofix/ indir videosuda var




  • quote:

    Orijinalden alıntı: alpay14

    combofix adlı profosyonel virüs temizleyici program var onunla tarat kullanımına bakarak ıslemlerı gerceklestır yanlıs yaparsan bılgısayararın ıyıce kotuleşir .Yardım al
    http://www.tamindir.com/combofix/ indir videosuda var

    Alıntıları Göster
    ComboFix 12-11-28.02 - Casper 28.11.2012 20:42:33.1.4 - x64
    Microsoft Windows 7 Home Basic 6.1.7601.1.1254.90.1055.18.8104.5803 [GMT 2:00]
    Running from: c:\users\Casper\Downloads\ComboFix.exe
    AV: McAfee Virüs ve Casus Yazılım Koruması *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
    AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
    FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
    SP: McAfee Virüs ve Casus Yazılım Koruması *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
    SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    * Resident AV is active
    .
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\programdata\Roaming
    c:\users\Casper\AppData\Local\Microsoft\Windows\Temporary Internet Files\{2E011942-AA27-4FC9-80A2-542D8CC9A31B}.xps
    c:\windows\SysWow64\DEBUG.log
    c:\windows\SysWow64\muzapp.exe
    .
    .
    ((((((((((((((((((((((((( Files Created from 2012-10-28 to 2012-11-28 )))))))))))))))))))))))))))))))
    .
    .
    2012-11-28 18:50 . 2012-11-28 18:50 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
    2012-11-28 18:50 . 2012-11-28 18:50 -------- d-----w- c:\users\Default\AppData\Local\temp
    2012-11-28 18:34 . 2012-11-28 18:35 -------- d-----w- C:\ComboFix-07.08-tamindir
    2012-11-27 16:38 . 2012-11-08 17:24 9125352 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8E532310-38F5-4EE7-8605-70775425EA26}\mpengine.dll
    2012-11-26 16:38 . 2012-04-20 14:40 196440 ----a-w- c:\windows\system32\drivers\HipShieldK.sys
    2012-11-26 14:33 . 2012-11-08 17:24 9125352 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
    2012-11-16 23:12 . 2012-07-26 05:39 2560 ----a-w- c:\windows\system32\drivers\tr-TR\wdf01000.sys.mui
    2012-11-16 23:12 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
    2012-11-16 23:12 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
    2012-11-16 23:12 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
    2012-11-16 23:07 . 2012-10-08 11:13 2382848 ----a-w- c:\windows\system32\mshtml.tlb
    2012-11-16 23:02 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
    2012-11-16 23:02 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
    2012-11-16 23:02 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
    2012-11-16 23:02 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
    2012-11-16 23:02 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
    2012-11-16 23:02 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
    2012-11-16 23:02 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
    2012-11-13 15:06 . 2012-11-13 15:06 -------- d-----w- c:\program files (x86)\Canon
    2012-11-13 15:02 . 2012-11-13 15:02 -------- d--h--w- c:\programdata\CanonBJ
    2012-11-13 15:02 . 2009-07-14 01:40 84992 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNBPP4.DLL
    2012-11-12 15:38 . 2012-11-12 15:38 -------- d-----w- c:\programdata\McAfee Security Scan
    2012-11-12 15:38 . 2012-11-13 15:38 -------- d-----w- c:\program files (x86)\McAfee Security Scan
    2012-11-04 19:52 . 2012-11-04 19:52 -------- d-----w- c:\users\Casper\AppData\Local\Samsung
    2012-11-04 19:52 . 2012-11-10 20:50 -------- d-----w- c:\users\Casper\AppData\Roaming\Samsung
    2012-11-04 19:32 . 2012-09-26 18:57 4659712 ----a-w- c:\windows\SysWow64\Redemption.dll
    2012-11-04 19:31 . 2012-11-10 20:50 -------- d-----w- c:\program files (x86)\Samsung
    2012-11-04 19:31 . 2012-11-10 20:48 -------- d-----w- c:\programdata\Samsung
    2012-10-31 13:10 . 2012-10-31 13:10 829264 ----a-w- c:\windows\system32\msvcr100.dll
    2012-10-31 13:10 . 2012-10-31 13:10 158536 ----a-w- c:\windows\system32\atl100.dll
    2012-10-31 13:10 . 2012-10-31 13:10 138056 ----a-w- c:\windows\SysWow64\atl100.dll
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-11-16 23:03 . 2012-07-19 12:32 66395536 ----a-w- c:\windows\system32\MRT.exe
    2012-11-12 15:38 . 2012-07-25 16:57 697272 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
    2012-11-12 15:38 . 2012-07-25 16:57 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-10-03 15:12 . 2012-10-19 21:03 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{2E908718-2676-4924-9EDB-73010658F17A}\gapaengine.dll
    2012-10-03 15:12 . 2012-10-03 15:12 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
    2012-10-02 22:21 . 2012-07-29 15:22 1760104 ----a-w- c:\windows\system32\nvdispco64.dll
    2012-10-02 22:21 . 2012-07-29 15:22 2428776 ----a-w- c:\windows\SysWow64\nvapi.dll
    2012-10-02 22:21 . 2012-05-08 12:06 973672 ----a-w- c:\windows\system32\nvumdshimx.dll
    2012-10-02 22:21 . 2012-05-08 12:06 247144 ----a-w- c:\windows\system32\nvinitx.dll
    2012-10-02 22:21 . 2012-05-08 12:06 202600 ----a-w- c:\windows\SysWow64\nvinit.dll
    2012-10-02 22:21 . 2012-05-08 12:06 2731880 ----a-w- c:\windows\system32\nvapi64.dll
    2012-10-02 19:51 . 2010-12-23 17:10 3536817 ----a-w- c:\windows\system32\nvcoproc.bin
    2012-10-02 19:51 . 2010-12-23 17:10 3293544 ----a-w- c:\windows\system32\nvsvc64.dll
    2012-10-02 19:51 . 2010-12-23 17:10 6200680 ----a-w- c:\windows\system32\nvcpl.dll
    2012-10-02 19:50 . 2010-12-23 17:10 891240 ----a-w- c:\windows\system32\nvvsvc.exe
    2012-10-02 19:50 . 2010-12-23 17:10 63336 ----a-w- c:\windows\system32\nvshext.dll
    2012-10-02 19:50 . 2010-12-23 17:10 2557800 ----a-w- c:\windows\system32\nvsvcr.dll
    2012-10-02 19:50 . 2010-12-23 17:10 118120 ----a-w- c:\windows\system32\nvmctray.dll
    2012-10-02 19:50 . 2010-12-23 17:10 866664 ----a-w- c:\windows\system32\nv3dappshext.dll
    2012-10-02 19:50 . 2010-12-23 17:10 55144 ----a-w- c:\windows\system32\nv3dappshextr.dll
    2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\SysWow64\nvStreaming.exe
    2012-09-26 18:57 . 2012-09-26 18:57 974848 ----a-w- c:\windows\SysWow64\cis-2.4.dll
    2012-09-26 18:57 . 2012-09-26 18:57 81920 ----a-w- c:\windows\SysWow64\issacapi_bs-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 65536 ----a-w- c:\windows\SysWow64\issacapi_pe-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\MTXSYNCICON.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\MK_Lyric.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\issacapi_se-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 569344 ----a-w- c:\windows\SysWow64\muzdecode.ax
    2012-09-26 18:57 . 2012-09-26 18:57 491520 ----a-w- c:\windows\SysWow64\muzapp.dll
    2012-09-26 18:57 . 2012-09-26 18:57 49152 ----a-w- c:\windows\SysWow64\MaJGUILib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45320 ----a-w- c:\windows\SysWow64\MAMACExtract.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45056 ----a-w- c:\windows\SysWow64\MaXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45056 ----a-w- c:\windows\SysWow64\MACXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57 40960 ----a-w- c:\windows\SysWow64\MTTELECHIP.dll
    2012-09-26 18:57 . 2012-09-26 18:57 352256 ----a-w- c:\windows\SysWow64\MSLUR71.dll
    2012-09-26 18:57 . 2012-09-26 18:57 258048 ----a-w- c:\windows\SysWow64\muzoggsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57 245760 ----a-w- c:\windows\SysWow64\MSCLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 24576 ----a-w- c:\windows\SysWow64\MASetupCleaner.exe
    2012-09-26 18:57 . 2012-09-26 18:57 200704 ----a-w- c:\windows\SysWow64\muzwmts.dll
    2012-09-26 18:57 . 2012-09-26 18:57 155648 ----a-w- c:\windows\SysWow64\MSFLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 143360 ----a-w- c:\windows\SysWow64\3DAudio.ax
    2012-09-26 18:57 . 2012-09-26 18:57 135168 ----a-w- c:\windows\SysWow64\muzaf1.dll
    2012-09-26 18:57 . 2012-09-26 18:57 131072 ----a-w- c:\windows\SysWow64\muzmpgsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57 122880 ----a-w- c:\windows\SysWow64\muzeffect.ax
    2012-09-26 18:57 . 2012-09-26 18:57 118784 ----a-w- c:\windows\SysWow64\MaDRM.dll
    2012-09-26 18:57 . 2012-09-26 18:57 110592 ----a-w- c:\windows\SysWow64\muzmp4sp.ax
    2012-09-20 18:18 . 2012-07-19 12:05 18960 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
    2012-09-14 19:19 . 2012-10-10 15:15 2048 ----a-w- c:\windows\system32\tzres.dll
    2012-09-14 18:28 . 2012-10-10 15:15 2048 ----a-w- c:\windows\SysWow64\tzres.dll
    2012-08-31 18:19 . 2012-10-10 15:16 1659760 ----a-w- c:\windows\system32\drivers\ntfs.sys
    2012-08-30 19:03 . 2012-08-30 19:03 228768 ----a-w- c:\windows\system32\drivers\MpFilter.sys
    2012-08-30 19:03 . 2010-10-24 18:25 128456 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-07-19 895376]
    "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]
    "NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-05-16 1084840]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "InstantBurn"="c:\progra~2\CYBERL~1\INSTAN~1\Win2K\IBurn.exe" [2010-02-10 697640]
    "CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
    "RemoteControl9"="c:\program files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" [2009-07-06 87336]
    "BDRegion"="c:\program files (x86)\Cyberlink\Shared files\brs.exe" [2011-01-28 75048]
    "UpdatePPShortCut"="c:\program files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
    "UpdatePSTShortCut"="c:\program files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" [2010-03-03 222504]
    "amd_dc_opt"="c:\program files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
    "mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2012-09-12 1535112]
    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe [2012-9-5 271808]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
    "LoadAppInit_DLLs"=1 (0x1)
    "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
    "mixer3"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @="Service"
    .
    R2 CLKMSVC10_9EC60124;CyberLink Product - 2012/05/08 16:40;c:\program files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [2010-11-18 240112]
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000]
    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
    R3 CamSuiteVAC;CamSuite Virtual Audio;c:\windows\system32\DRIVERS\CamSuiteVAC.sys [2008-09-18 56320]
    R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
    R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2012-01-26 34200]
    R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [2012-09-05 234776]
    R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-07-17 106112]
    R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-06-01 340240]
    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
    R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
    S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2012-06-22 335784]
    S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2012-10-02 30056]
    S1 CLBStor;InstantBurn Storage Helper Driver;c:\windows\system32\DRIVERS\CLBStor.sys [2009-10-07 24560]
    S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-19 283200]
    S2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2012/05/08 15:44];c:\program files (x86)\CyberLink\PowerDVD9\000.fcl [2010-01-19 13:10 146928]
    S2 CLBUDF;CyberLink InstantBurn UDF Filesystem; [x]
    S2 CxAudMsg;Conexant Audio Message Service;c:\windows\system32\CxAudMsg64.exe [2010-12-17 198784]
    S2 GFNEXSrv;GFNEX Service;c:\program files (x86)\PHotkey\GFNEXSrv.exe [2010-10-06 159752]
    S2 McAfee Site****or Service;McAfee Site****or Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-07-17 218320]
    S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-06-22 177144]
    S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456]
    S2 PEGAGFN;PEGAGFN;c:\program files (x86)\PHotkey\PEGAGFN.sys [2009-09-11 14344]
    S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
    S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-08-24 2735528]
    S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-10-05 2655768]
    S2 ZcfgSvc7;Intel(R) PROSet/Wireless ZeroConfig Service;c:\program files\Intel\WiFi\bin\ZCfgSvc7.exe [2011-06-01 1000208]
    S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-11-14 327168]
    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2012-07-17 69672]
    S3 fspad_wlh64;Finger Sensing Pad Driver for Windows 2000/XP/Vista/Win7_wlh64;c:\windows\system32\DRIVERS\fspad_wlh64.sys [2010-01-07 54272]
    S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-09 60416]
    S3 IntcDAud;Intel(R) Ekran İçin Ses;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
    S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2012-01-26 25496]
    S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2010-08-24 76912]
    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
    S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2012-07-17 513456]
    S3 NisSrv;Microsoft Ağ İnceleme;c:\program files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896]
    .
    .
    --- Other Services/Drivers In Memory ---
    .
    *Deregistered* - CLKMDRV10_9EC60124
    *Deregistered* - mfeavfk01
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2012-11-28 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-25 15:38]
    .
    2012-11-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003Core.job
    - c:\users\Casper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14 13:48]
    .
    2012-11-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003UA.job
    - c:\users\Casper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14 13:48]
    .
    2012-11-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003Core.job
    - c:\users\Casper\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-19 08:30]
    .
    2012-11-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003UA.job
    - c:\users\Casper\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-19 08:30]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-12-14 316032]
    "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-21 323584]
    "IntelPROSet"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-06-01 1935120]
    "IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-06-01 1935120]
    "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]
    "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 1289704]
    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-03-19 170264]
    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-03-19 398616]
    "Persistence"="c:\windows\system32\igfxpers.exe" [2012-03-19 439064]
    "Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2010-11-03 1580368]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLs"=c:\windows\System32\nvinitx.dll
    .
    ------- Supplementary Scan -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    uStart Page = hxxp://www.google.com.tr/
    mLocal Page = c:\windows\SysWOW64\blank.htm
    IE: Microsoft Excel'e &Ver - c:\progra~2\MIF5BA~1\Office14\EXCEL.EXE/3000
    IE: OneNote'a G&önder - c:\progra~2\MIF5BA~1\Office14\ONBttnIE.dll/105
    TCP: DhcpNameServer = 8.8.8.8 8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}: NameServer = 8.8.8.8,8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}\14942545945435F52545D2230353: NameServer = 8.8.8.8,8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}\B616A716E63696: NameServer = 8.8.8.8,8.8.4.4
    FF - ProfilePath - c:\users\Casper\AppData\Roaming\Mozilla\Firefox\Profiles\zb5qkoqv.default\
    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
    FF - prefs.js: browser.startup.homepage - hxxp://m.facebook.com/
    FF - ExtSQL: 2012-09-29 00:26; extension@hidemyass.com; c:\users\Casper\AppData\Roaming\Mozilla\Firefox\Profiles\zb5qkoqv.default\extensions\extension@hidemyass.com.xpi
    .
    - - - - ORPHANS REMOVED - - - -
    .
    Wow6432Node-HKLM-Run-KiesTrayAgent - c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe
    WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
    HKLM-Run-fspuip - c:\program files (x86)\FSP\fspuip.exe
    .
    .
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
    "ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD9\000.fcl"
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.11"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
    "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
    00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
    @Denied: (A) (Everyone)
    "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
    @Denied: (A) (Everyone)
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
    "Key"="ActionsPane3"
    "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    Completion time: 2012-11-28 20:53:32
    ComboFix-quarantined-files.txt 2012-11-28 18:53
    .
    Pre-Run: 21.946.867.712 bayt boş
    Post-Run: 22.865.588.224 bayt boş
    .
    - - End Of File - - 2F29115A06E539AA99D0901E0A3BDD16




    yaptım ve bu metin belgesi geldi karşıma




  • quote:

    Orijinalden alıntı: edizz13

    ComboFix 12-11-28.02 - Casper 28.11.2012 20:42:33.1.4 - x64
    Microsoft Windows 7 Home Basic 6.1.7601.1.1254.90.1055.18.8104.5803 [GMT 2:00]
    Running from: c:\users\Casper\Downloads\ComboFix.exe
    AV: McAfee Virüs ve Casus Yazılım Koruması *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
    AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
    FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
    SP: McAfee Virüs ve Casus Yazılım Koruması *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
    SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    * Resident AV is active
    .
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\programdata\Roaming
    c:\users\Casper\AppData\Local\Microsoft\Windows\Temporary Internet Files\{2E011942-AA27-4FC9-80A2-542D8CC9A31B}.xps
    c:\windows\SysWow64\DEBUG.log
    c:\windows\SysWow64\muzapp.exe
    .
    .
    ((((((((((((((((((((((((( Files Created from 2012-10-28 to 2012-11-28 )))))))))))))))))))))))))))))))
    .
    .
    2012-11-28 18:50 . 2012-11-28 18:50 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
    2012-11-28 18:50 . 2012-11-28 18:50 -------- d-----w- c:\users\Default\AppData\Local\temp
    2012-11-28 18:34 . 2012-11-28 18:35 -------- d-----w- C:\ComboFix-07.08-tamindir
    2012-11-27 16:38 . 2012-11-08 17:24 9125352 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8E532310-38F5-4EE7-8605-70775425EA26}\mpengine.dll
    2012-11-26 16:38 . 2012-04-20 14:40 196440 ----a-w- c:\windows\system32\drivers\HipShieldK.sys
    2012-11-26 14:33 . 2012-11-08 17:24 9125352 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
    2012-11-16 23:12 . 2012-07-26 05:39 2560 ----a-w- c:\windows\system32\drivers\tr-TR\wdf01000.sys.mui
    2012-11-16 23:12 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
    2012-11-16 23:12 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
    2012-11-16 23:12 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
    2012-11-16 23:07 . 2012-10-08 11:13 2382848 ----a-w- c:\windows\system32\mshtml.tlb
    2012-11-16 23:02 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
    2012-11-16 23:02 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
    2012-11-16 23:02 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
    2012-11-16 23:02 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
    2012-11-16 23:02 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
    2012-11-16 23:02 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
    2012-11-16 23:02 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
    2012-11-13 15:06 . 2012-11-13 15:06 -------- d-----w- c:\program files (x86)\Canon
    2012-11-13 15:02 . 2012-11-13 15:02 -------- d--h--w- c:\programdata\CanonBJ
    2012-11-13 15:02 . 2009-07-14 01:40 84992 ----a-w- c:\windows\system32\Spool\prtprocs\x64\CNBPP4.DLL
    2012-11-12 15:38 . 2012-11-12 15:38 -------- d-----w- c:\programdata\McAfee Security Scan
    2012-11-12 15:38 . 2012-11-13 15:38 -------- d-----w- c:\program files (x86)\McAfee Security Scan
    2012-11-04 19:52 . 2012-11-04 19:52 -------- d-----w- c:\users\Casper\AppData\Local\Samsung
    2012-11-04 19:52 . 2012-11-10 20:50 -------- d-----w- c:\users\Casper\AppData\Roaming\Samsung
    2012-11-04 19:32 . 2012-09-26 18:57 4659712 ----a-w- c:\windows\SysWow64\Redemption.dll
    2012-11-04 19:31 . 2012-11-10 20:50 -------- d-----w- c:\program files (x86)\Samsung
    2012-11-04 19:31 . 2012-11-10 20:48 -------- d-----w- c:\programdata\Samsung
    2012-10-31 13:10 . 2012-10-31 13:10 829264 ----a-w- c:\windows\system32\msvcr100.dll
    2012-10-31 13:10 . 2012-10-31 13:10 158536 ----a-w- c:\windows\system32\atl100.dll
    2012-10-31 13:10 . 2012-10-31 13:10 138056 ----a-w- c:\windows\SysWow64\atl100.dll
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-11-16 23:03 . 2012-07-19 12:32 66395536 ----a-w- c:\windows\system32\MRT.exe
    2012-11-12 15:38 . 2012-07-25 16:57 697272 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
    2012-11-12 15:38 . 2012-07-25 16:57 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-10-03 15:12 . 2012-10-19 21:03 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{2E908718-2676-4924-9EDB-73010658F17A}\gapaengine.dll
    2012-10-03 15:12 . 2012-10-03 15:12 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
    2012-10-02 22:21 . 2012-07-29 15:22 1760104 ----a-w- c:\windows\system32\nvdispco64.dll
    2012-10-02 22:21 . 2012-07-29 15:22 2428776 ----a-w- c:\windows\SysWow64\nvapi.dll
    2012-10-02 22:21 . 2012-05-08 12:06 973672 ----a-w- c:\windows\system32\nvumdshimx.dll
    2012-10-02 22:21 . 2012-05-08 12:06 247144 ----a-w- c:\windows\system32\nvinitx.dll
    2012-10-02 22:21 . 2012-05-08 12:06 202600 ----a-w- c:\windows\SysWow64\nvinit.dll
    2012-10-02 22:21 . 2012-05-08 12:06 2731880 ----a-w- c:\windows\system32\nvapi64.dll
    2012-10-02 19:51 . 2010-12-23 17:10 3536817 ----a-w- c:\windows\system32\nvcoproc.bin
    2012-10-02 19:51 . 2010-12-23 17:10 3293544 ----a-w- c:\windows\system32\nvsvc64.dll
    2012-10-02 19:51 . 2010-12-23 17:10 6200680 ----a-w- c:\windows\system32\nvcpl.dll
    2012-10-02 19:50 . 2010-12-23 17:10 891240 ----a-w- c:\windows\system32\nvvsvc.exe
    2012-10-02 19:50 . 2010-12-23 17:10 63336 ----a-w- c:\windows\system32\nvshext.dll
    2012-10-02 19:50 . 2010-12-23 17:10 2557800 ----a-w- c:\windows\system32\nvsvcr.dll
    2012-10-02 19:50 . 2010-12-23 17:10 118120 ----a-w- c:\windows\system32\nvmctray.dll
    2012-10-02 19:50 . 2010-12-23 17:10 866664 ----a-w- c:\windows\system32\nv3dappshext.dll
    2012-10-02 19:50 . 2010-12-23 17:10 55144 ----a-w- c:\windows\system32\nv3dappshextr.dll
    2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\SysWow64\nvStreaming.exe
    2012-09-26 18:57 . 2012-09-26 18:57 974848 ----a-w- c:\windows\SysWow64\cis-2.4.dll
    2012-09-26 18:57 . 2012-09-26 18:57 81920 ----a-w- c:\windows\SysWow64\issacapi_bs-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 65536 ----a-w- c:\windows\SysWow64\issacapi_pe-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\MTXSYNCICON.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\MK_Lyric.dll
    2012-09-26 18:57 . 2012-09-26 18:57 57344 ----a-w- c:\windows\SysWow64\issacapi_se-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57 569344 ----a-w- c:\windows\SysWow64\muzdecode.ax
    2012-09-26 18:57 . 2012-09-26 18:57 491520 ----a-w- c:\windows\SysWow64\muzapp.dll
    2012-09-26 18:57 . 2012-09-26 18:57 49152 ----a-w- c:\windows\SysWow64\MaJGUILib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45320 ----a-w- c:\windows\SysWow64\MAMACExtract.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45056 ----a-w- c:\windows\SysWow64\MaXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57 45056 ----a-w- c:\windows\SysWow64\MACXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57 40960 ----a-w- c:\windows\SysWow64\MTTELECHIP.dll
    2012-09-26 18:57 . 2012-09-26 18:57 352256 ----a-w- c:\windows\SysWow64\MSLUR71.dll
    2012-09-26 18:57 . 2012-09-26 18:57 258048 ----a-w- c:\windows\SysWow64\muzoggsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57 245760 ----a-w- c:\windows\SysWow64\MSCLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 24576 ----a-w- c:\windows\SysWow64\MASetupCleaner.exe
    2012-09-26 18:57 . 2012-09-26 18:57 200704 ----a-w- c:\windows\SysWow64\muzwmts.dll
    2012-09-26 18:57 . 2012-09-26 18:57 155648 ----a-w- c:\windows\SysWow64\MSFLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57 143360 ----a-w- c:\windows\SysWow64\3DAudio.ax
    2012-09-26 18:57 . 2012-09-26 18:57 135168 ----a-w- c:\windows\SysWow64\muzaf1.dll
    2012-09-26 18:57 . 2012-09-26 18:57 131072 ----a-w- c:\windows\SysWow64\muzmpgsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57 122880 ----a-w- c:\windows\SysWow64\muzeffect.ax
    2012-09-26 18:57 . 2012-09-26 18:57 118784 ----a-w- c:\windows\SysWow64\MaDRM.dll
    2012-09-26 18:57 . 2012-09-26 18:57 110592 ----a-w- c:\windows\SysWow64\muzmp4sp.ax
    2012-09-20 18:18 . 2012-07-19 12:05 18960 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
    2012-09-14 19:19 . 2012-10-10 15:15 2048 ----a-w- c:\windows\system32\tzres.dll
    2012-09-14 18:28 . 2012-10-10 15:15 2048 ----a-w- c:\windows\SysWow64\tzres.dll
    2012-08-31 18:19 . 2012-10-10 15:16 1659760 ----a-w- c:\windows\system32\drivers\ntfs.sys
    2012-08-30 19:03 . 2012-08-30 19:03 228768 ----a-w- c:\windows\system32\drivers\MpFilter.sys
    2012-08-30 19:03 . 2010-10-24 18:25 128456 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-07-19 895376]
    "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]
    "NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-05-16 1084840]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "InstantBurn"="c:\progra~2\CYBERL~1\INSTAN~1\Win2K\IBurn.exe" [2010-02-10 697640]
    "CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
    "RemoteControl9"="c:\program files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" [2009-07-06 87336]
    "BDRegion"="c:\program files (x86)\Cyberlink\Shared files\brs.exe" [2011-01-28 75048]
    "UpdatePPShortCut"="c:\program files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" [2009-05-19 222504]
    "UpdatePSTShortCut"="c:\program files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" [2010-03-03 222504]
    "amd_dc_opt"="c:\program files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
    "mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2012-09-12 1535112]
    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe [2012-9-5 271808]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
    "LoadAppInit_DLLs"=1 (0x1)
    "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
    "mixer3"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @="Service"
    .
    R2 CLKMSVC10_9EC60124;CyberLink Product - 2012/05/08 16:40;c:\program files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [2010-11-18 240112]
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-10-02 3064000]
    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
    R3 CamSuiteVAC;CamSuite Virtual Audio;c:\windows\system32\DRIVERS\CamSuiteVAC.sys [2008-09-18 56320]
    R3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys [2012-04-20 196440]
    R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2012-01-26 34200]
    R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [2012-09-05 234776]
    R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-07-17 106112]
    R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-06-01 340240]
    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
    R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]
    S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2012-06-22 335784]
    S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2012-10-02 30056]
    S1 CLBStor;InstantBurn Storage Helper Driver;c:\windows\system32\DRIVERS\CLBStor.sys [2009-10-07 24560]
    S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-19 283200]
    S2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2012/05/08 15:44];c:\program files (x86)\CyberLink\PowerDVD9\000.fcl [2010-01-19 13:10 146928]
    S2 CLBUDF;CyberLink InstantBurn UDF Filesystem; [x]
    S2 CxAudMsg;Conexant Audio Message Service;c:\windows\system32\CxAudMsg64.exe [2010-12-17 198784]
    S2 GFNEXSrv;GFNEX Service;c:\program files (x86)\PHotkey\GFNEXSrv.exe [2010-10-06 159752]
    S2 McAfee Site****or Service;McAfee Site****or Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-08-31 201304]
    S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2012-07-17 218320]
    S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-06-22 177144]
    S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456]
    S2 PEGAGFN;PEGAGFN;c:\program files (x86)\PHotkey\PEGAGFN.sys [2009-09-11 14344]
    S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
    S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-08-24 2735528]
    S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-10-05 2655768]
    S2 ZcfgSvc7;Intel(R) PROSet/Wireless ZeroConfig Service;c:\program files\Intel\WiFi\bin\ZCfgSvc7.exe [2011-06-01 1000208]
    S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-11-14 327168]
    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2012-07-17 69672]
    S3 fspad_wlh64;Finger Sensing Pad Driver for Windows 2000/XP/Vista/Win7_wlh64;c:\windows\system32\DRIVERS\fspad_wlh64.sys [2010-01-07 54272]
    S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-09 60416]
    S3 IntcDAud;Intel(R) Ekran İçin Ses;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
    S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2012-01-26 25496]
    S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2010-08-24 76912]
    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]
    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]
    S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2012-07-17 513456]
    S3 NisSrv;Microsoft Ağ İnceleme;c:\program files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896]
    .
    .
    --- Other Services/Drivers In Memory ---
    .
    *Deregistered* - CLKMDRV10_9EC60124
    *Deregistered* - mfeavfk01
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2012-11-28 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-25 15:38]
    .
    2012-11-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003Core.job
    - c:\users\Casper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14 13:48]
    .
    2012-11-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003UA.job
    - c:\users\Casper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-14 13:48]
    .
    2012-11-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003Core.job
    - c:\users\Casper\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-19 08:30]
    .
    2012-11-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3671822978-2396849202-3994345058-1003UA.job
    - c:\users\Casper\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-19 08:30]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-12-14 316032]
    "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-09-21 323584]
    "IntelPROSet"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-06-01 1935120]
    "IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-06-01 1935120]
    "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]
    "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 1289704]
    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-03-19 170264]
    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-03-19 398616]
    "Persistence"="c:\windows\system32\igfxpers.exe" [2012-03-19 439064]
    "Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2010-11-03 1580368]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLs"=c:\windows\System32\nvinitx.dll
    .
    ------- Supplementary Scan -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    uStart Page = hxxp://www.google.com.tr/
    mLocal Page = c:\windows\SysWOW64\blank.htm
    IE: Microsoft Excel'e &Ver - c:\progra~2\MIF5BA~1\Office14\EXCEL.EXE/3000
    IE: OneNote'a G&önder - c:\progra~2\MIF5BA~1\Office14\ONBttnIE.dll/105
    TCP: DhcpNameServer = 8.8.8.8 8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}: NameServer = 8.8.8.8,8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}\14942545945435F52545D2230353: NameServer = 8.8.8.8,8.8.4.4
    TCP: Interfaces\{A85ADE4E-592D-4A8E-BA9A-9CE46B9765F5}\B616A716E63696: NameServer = 8.8.8.8,8.8.4.4
    FF - ProfilePath - c:\users\Casper\AppData\Roaming\Mozilla\Firefox\Profiles\zb5qkoqv.default\
    FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
    FF - prefs.js: browser.startup.homepage - hxxp://m.facebook.com/
    FF - ExtSQL: 2012-09-29 00:26; extension@hidemyass.com; c:\users\Casper\AppData\Roaming\Mozilla\Firefox\Profiles\zb5qkoqv.default\extensions\extension@hidemyass.com.xpi
    .
    - - - - ORPHANS REMOVED - - - -
    .
    Wow6432Node-HKLM-Run-KiesTrayAgent - c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe
    WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
    HKLM-Run-fspuip - c:\program files (x86)\FSP\fspuip.exe
    .
    .
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
    "ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD9\000.fcl"
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.11"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
    "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
    00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
    @Denied: (A) (Everyone)
    "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
    @Denied: (A) (Everyone)
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
    "Key"="ActionsPane3"
    "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    Completion time: 2012-11-28 20:53:32
    ComboFix-quarantined-files.txt 2012-11-28 18:53
    .
    Pre-Run: 21.946.867.712 bayt boş
    Post-Run: 22.865.588.224 bayt boş
    .
    - - End Of File - - 2F29115A06E539AA99D0901E0A3BDD16




    yaptım ve bu metin belgesi geldi karşıma

    Alıntıları Göster
    FORMAT AT SENDE KURTUL BİZDE KURTULALIM :D




  • quote:

    Orijinalden alıntı: NecoByzt

    FORMAT AT SENDE KURTUL BİZDE KURTULALIM :D

    Alıntıları Göster
    başka çözümü yok mu :(
  • quote:

    Orijinalden alıntı: NecoByzt

    FORMAT AT SENDE KURTUL BİZDE KURTULALIM :D

    Alıntıları Göster
    http://www.bilisimplatformu.com/ bu foruma yukle sana yardımcı olurlar




  • quote:

    Orijinalden alıntı: alpay14

    http://www.bilisimplatformu.com/ bu foruma yukle sana yardımcı olurlar

    Alıntıları Göster
    evet konu açtım oraya da burda yardımcı olacak birisi yok mu :(
  • quote:

    Orijinalden alıntı: edizz13

    evet konu açtım oraya da burda yardımcı olacak birisi yok mu :(

    Alıntıları Göster
    http://forum.unpoo.com/windows-mavi-ekran-hatalari-ve-cozumleri_topic763.html buyur kardeşim mavi ekran hataları ve açıklamaları Türkçe olarak var. Belki işine yarayacaktır.




  • quote:

    Orijinalden alıntı: ByKemal58

    http://forum.unpoo.com/windows-mavi-ekran-hatalari-ve-cozumleri_topic763.html buyur kardeşim mavi ekran hataları ve açıklamaları Türkçe olarak var. Belki işine yarayacaktır.

    Alıntıları Göster
    Stop 0x000001E ya da KMODE_EXCEPTION_NOT_HANDLED

    Windows, genellikle hatalı sürücü ya da donanım aygıtlarının neden olduğu geçersiz bellek ve erişim ihlalleri sonucu oluşan, geçerli olmayan yada bilinmeyen işlemci yönergeleri buldu. Hatalı aygıt ya da sürücü iletide görünür.
    Eğer bir aygıt ya da yazılım yüklemesinden sonra oluşursa bunları devre dışı bırakmayı deneyin.


    diyor tam olarak ne yapmam gerekiyor acaba




  • 
Sayfa: 12
Sayfaya Git
Git
sonraki
- x
Bildirim
mesajınız kopyalandı (ctrl+v) yapıştırmak istediğiniz yere yapıştırabilirsiniz.