general754

Untitled

Apr 26th, 2018
96
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.50 KB | None | 0 0
  1. Logfile of Trend Micro HijackThis v2.0.5
  2. Scan saved at 19:00:57, on 26.04.2018
  3. Platform: Unknown Windows (WinNT 6.02.1008)
  4. MSIE: Internet Explorer v11.0 (11.00.16299.0371)
  5.  
  6.  
  7. Boot mode: Normal
  8.  
  9. Running processes:
  10. C:\WINDOWS\system32\sihost.exe
  11. C:\WINDOWS\system32\svchost.exe
  12. C:\WINDOWS\Explorer.EXE
  13. C:\Windows\System32\RuntimeBroker.exe
  14. C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
  15. C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
  16. C:\Program Files\Google\Chrome\Application\chrome.exe
  17. C:\Program Files\Google\Chrome\Application\chrome.exe
  18. C:\Program Files\Google\Chrome\Application\chrome.exe
  19. C:\Program Files\Google\Chrome\Application\chrome.exe
  20. C:\Program Files\Google\Chrome\Application\chrome.exe
  21. C:\Program Files\Google\Chrome\Application\chrome.exe
  22. C:\Program Files\Google\Chrome\Application\chrome.exe
  23. C:\Program Files\Google\Chrome\Application\chrome.exe
  24. C:\Program Files\Google\Chrome\Application\chrome.exe
  25. C:\Program Files\Google\Chrome\Application\chrome.exe
  26. C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
  27. C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
  28. C:\Windows\System32\RuntimeBroker.exe
  29. C:\WINDOWS\system32\DllHost.exe
  30. C:\Program Files\Google\Chrome\Application\chrome.exe
  31. C:\Program Files\Google\Chrome\Application\chrome.exe
  32. C:\Program Files\Google\Chrome\Application\chrome.exe
  33. C:\Program Files\Google\Chrome\Application\chrome.exe
  34. C:\WINDOWS\explorer.exe
  35. C:\WINDOWS\system32\Cleanmgr.exe
  36. C:\Users\Kaan2\AppData\Local\Temp\B93DDEF0-311F-47D5-96A3-5B7131593A22\dismhost.exe
  37. C:\Users\Kaan2\Downloads\HijackThis.exe
  38.  
  39. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
  40. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  41. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
  42. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  43. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  44. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
  45. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  46. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  47. R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
  48. O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
  49. O4 - HKLM\..\Run: [ShadowPlay] "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap.dll,ShadowPlayOnSystemStart
  50. O4 - HKCU\..\Run: [RazerCortex] C:\Program Files\Razer\Razer Cortex\CortexLauncher.exe -autorun
  51. O4 - HKCU\..\Run: [New startup] "C:\Program Files\MSI Afterburner\MSIAfterburner.exe"
  52. O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
  53. O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
  54. O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'Local Service')
  55. O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
  56. O8 - Extra context menu item: IDM ile indir - C:\Program Files\Internet Download Manager\IEExt.htm
  57. O8 - Extra context menu item: Tüm bağlantıları IDM ile indir - C:\Program Files\Internet Download Manager\IEGetAll.htm
  58. O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
  59. O17 - HKLM\System\CCS\Services\Tcpip\..\{1f2c5478-7c99-46c7-9655-4a264c2a932b}: NameServer = 1.1.1.1,1.0.0.1
  60. O17 - HKLM\System\CCS\Services\Tcpip\..\{d37c883a-bba7-4105-9a8b-16e16f68f9df}: NameServer = 1.1.1.1,1.0.0.1
  61. O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
  62. O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
  63. O20 - AppInit_DLLs: prio.dll
  64. O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
  65. O23 - Service: Google Güncelleme Hizmeti (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
  66. O23 - Service: Google Güncelleme Hizmeti (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
  67. O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
  68. O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvvsvc.exe
  69. O23 - Service: Razer Game Manager (Razer Game Manager Service) - Razer Inc - C:\Program Files\Razer\Razer Services\GMS\GameManagerService.exe
  70. O23 - Service: Razer Central Service (RzActionSvc) - Razer Inc. - C:\Program Files\Razer\Razer Services\Razer Central\RazerCentralService.exe
  71. O23 - Service: RzKLService - Razer Inc. - C:\Program Files\Razer\Razer Cortex\RzKLService.exe
  72. O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
  73. O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
  74. O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
  75.  
  76. --
  77. End of file - 5628 bytes
Advertisement
Add Comment
Please, Sign In to add comment