C'Mon
Fetish's Brother
Cıkan Hata Bu:
2009/08/30 08:06:45 - sXe Injected starting...
2009/08/30 08:06:45 - Win XP (5.1.2600 Service Pack 2)
2009/08/30 08:06:45 - version: 8.0
2009/08/30 08:06:45 - open [77C1F566]
2009/08/30 08:06:45 - Starting Device Driver
2009/08/30 08:06:45 - service [C:\Program Files\sXe Injected\ddsxei.sys]
2009/08/30 08:06:45 - Open manager OK
2009/08/30 08:06:45 - GetLastError(1073)(Belirtilen hizmet halen var.
)
2009/08/30 08:06:45 - Driver found, cleaning...
2009/08/30 08:06:45 - GetLastError(2)(Sistem belirtilen dosyayı bulamıyor.
)
2009/08/30 08:06:45 - Create file error
2009/08/30 08:06:45 - * Cleaning
2009/08/30 08:06:45 - * Stoping service
2009/08/30 08:06:45 - GetLastError(1062)(Hizmet başlatılmadı.
)
2009/08/30 08:06:45 - Control service error
2009/08/30 08:06:45 - * Service stopped
2009/08/30 08:06:45 - * Service deleted
2009/08/30 08:06:45 - cleaned
2009/08/30 08:06:45 - Load error, try again -----------
2009/08/30 08:06:45 - * Cleaning
2009/08/30 08:06:45 - GetLastError(1060)(Belirtilen hizmet, yüklü bir hizmet olarak yok.
)
2009/08/30 08:06:45 - Open service error
2009/08/30 08:06:45 - service [C:\Program Files\sXe Injected\ddsxei.sys]
2009/08/30 08:06:45 - Open manager OK
2009/08/30 08:06:45 - Create Service OK
2009/08/30 08:06:45 - Start Service OK
2009/08/30 08:06:45 - Service ready
2009/08/30 08:06:46 - Service Handle OK
2009/08/30 08:06:49 - [35][7C8FD7D2]
2009/08/30 08:06:49 - [32][7C8FD793]
2009/08/30 08:06:49 - [115][7C8FEA32]
2009/08/30 08:06:49 - [74][7C8FDCFD]
2009/08/30 08:06:49 - [AD][7C8FE1AA]
2009/08/30 08:06:49 - [7A][7C8FDD7B]
2009/08/30 08:06:49 - [D5][7C8FE4F2]
2009/08/30 08:06:49 - [89][7C8FDEB6]
2009/08/30 08:06:49 - [FE][7C8FE84F]
2009/08/30 08:06:49 - [BA][7C8FE2BB]
2009/08/30 08:06:49 - [102][7C8FE8A3]
2009/08/30 08:06:50 - Waiting for game...
2009/08/30 08:06:51 - Proceso [explorer.exe](1780) injecting on PID (2500) -> (ALLOW)[1]
2009/08/30 08:06:51 - Intercepting game... [2500][hl.exe]
2009/08/30 08:06:51 - open [77C1F566]
2009/08/30 08:06:51 - Injecting: [C:\Program Files\sXe Injected\sxe.dll]
2009/08/30 08:06:51 - Injected OK
2009/08/30 08:11:30 - ERROR: Control-code time-out: inconsistent information
2009/08/30 08:11:30 - ERROR: [System shuting down... closed by the game]
2009/08/30 08:11:30 - Control-code error
2009/08/30 08:11:30 - * Termination
2009/08/30 08:11:33 - * Cleaning
2009/08/30 08:11:33 - * Stoping service
2009/08/30 08:11:37 - * Service stopped
2009/08/30 08:11:37 - * Service deleted
hijackthis sonucu:
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Ventrilo\Ventrilo.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Bağlantılar
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\Tuqberk\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
O9 - Extra button: Web trafiği koruması istatistikleri - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 4648 bytes
2009/08/30 08:06:45 - sXe Injected starting...
2009/08/30 08:06:45 - Win XP (5.1.2600 Service Pack 2)
2009/08/30 08:06:45 - version: 8.0
2009/08/30 08:06:45 - open [77C1F566]
2009/08/30 08:06:45 - Starting Device Driver
2009/08/30 08:06:45 - service [C:\Program Files\sXe Injected\ddsxei.sys]
2009/08/30 08:06:45 - Open manager OK
2009/08/30 08:06:45 - GetLastError(1073)(Belirtilen hizmet halen var.
)
2009/08/30 08:06:45 - Driver found, cleaning...
2009/08/30 08:06:45 - GetLastError(2)(Sistem belirtilen dosyayı bulamıyor.
)
2009/08/30 08:06:45 - Create file error
2009/08/30 08:06:45 - * Cleaning
2009/08/30 08:06:45 - * Stoping service
2009/08/30 08:06:45 - GetLastError(1062)(Hizmet başlatılmadı.
)
2009/08/30 08:06:45 - Control service error
2009/08/30 08:06:45 - * Service stopped
2009/08/30 08:06:45 - * Service deleted
2009/08/30 08:06:45 - cleaned
2009/08/30 08:06:45 - Load error, try again -----------
2009/08/30 08:06:45 - * Cleaning
2009/08/30 08:06:45 - GetLastError(1060)(Belirtilen hizmet, yüklü bir hizmet olarak yok.
)
2009/08/30 08:06:45 - Open service error
2009/08/30 08:06:45 - service [C:\Program Files\sXe Injected\ddsxei.sys]
2009/08/30 08:06:45 - Open manager OK
2009/08/30 08:06:45 - Create Service OK
2009/08/30 08:06:45 - Start Service OK
2009/08/30 08:06:45 - Service ready
2009/08/30 08:06:46 - Service Handle OK
2009/08/30 08:06:49 - [35][7C8FD7D2]
2009/08/30 08:06:49 - [32][7C8FD793]
2009/08/30 08:06:49 - [115][7C8FEA32]
2009/08/30 08:06:49 - [74][7C8FDCFD]
2009/08/30 08:06:49 - [AD][7C8FE1AA]
2009/08/30 08:06:49 - [7A][7C8FDD7B]
2009/08/30 08:06:49 - [D5][7C8FE4F2]
2009/08/30 08:06:49 - [89][7C8FDEB6]
2009/08/30 08:06:49 - [FE][7C8FE84F]
2009/08/30 08:06:49 - [BA][7C8FE2BB]
2009/08/30 08:06:49 - [102][7C8FE8A3]
2009/08/30 08:06:50 - Waiting for game...
2009/08/30 08:06:51 - Proceso [explorer.exe](1780) injecting on PID (2500) -> (ALLOW)[1]
2009/08/30 08:06:51 - Intercepting game... [2500][hl.exe]
2009/08/30 08:06:51 - open [77C1F566]
2009/08/30 08:06:51 - Injecting: [C:\Program Files\sXe Injected\sxe.dll]
2009/08/30 08:06:51 - Injected OK
2009/08/30 08:11:30 - ERROR: Control-code time-out: inconsistent information
2009/08/30 08:11:30 - ERROR: [System shuting down... closed by the game]
2009/08/30 08:11:30 - Control-code error
2009/08/30 08:11:30 - * Termination
2009/08/30 08:11:33 - * Cleaning
2009/08/30 08:11:33 - * Stoping service
2009/08/30 08:11:37 - * Service stopped
2009/08/30 08:11:37 - * Service deleted
hijackthis sonucu:
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Ventrilo\Ventrilo.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Bağlantılar
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\Tuqberk\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
O9 - Extra button: Web trafiği koruması istatistikleri - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
--
End of file - 4648 bytes