Logi

Lordi1

Logfile of HijackThis v1.99.1
Scan saved at 20:51:55, on 21.5.2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: MicroSoft Media Tools - Unknown owner - C:\WINDOWS\MSmedia.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

3

121

    Vastaukset

    Anonyymi (Kirjaudu / Rekisteröidy)
    5000
    • Juu

      Hae Ewido

      http://www.ewido.net/en/download/

      asenna ja päivitä se.
      Merkkaa nuo sulje selain ja paina Fix checked

      O4 - HKLM\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

      Käynnistä sitte kone vikasietotilassa.

      Kirjota\kopioi nuo rivit yksitellen Suorita kohtaan ja paina OK tai Enter molempien rivien jälkeen

      sc stop "MicroSoft Media Tools"
      sc delete "MicroSoft Media Tools"

      sitte poista jos löytyy

      C:\WINDOWS\MSmedia.exe

      Sen jälken scannaa ja putsaa Ewidolla säästä sen logi.
      Käynnistä sitte normaalisti ja uus Hijack logi Ewidon logi.

      • Lordi1

        ---------------------------------------------------------
        ewido anti-malware - Scan report
        ---------------------------------------------------------

        Created on:         7:39:07, 23.5.2006
        Report-Checksum:      D188622E

        Scan result:

           :mozilla.32:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Ignored
           :mozilla.8:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
           :mozilla.10:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
           :mozilla.23:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.24:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.25:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.26:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.33:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.34:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.35:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
           :mozilla.59:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
           :mozilla.60:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.61:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.62:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.66:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.67:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.68:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.69:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
           :mozilla.71:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.72:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.80:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           :mozilla.81:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup

        ::Report End

        Logfile of HijackThis v1.99.1
        Scan saved at 7:44:23, on 23.5.2006
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\Explorer.EXE
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        C:\Program Files\MessengerPlus! 3\MsgPlus.exe
        C:\Program Files\Winamp\winampa.exe
        C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        C:\WINDOWS\System32\ctfmon.exe
        C:\Program Files\VIA\RAID\raid_tool.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\ewido anti-malware\ewidoctrl.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\WINDOWS\system32\ZoneLabs\vsmon.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\wuauclt.exe
        C:\Program Files\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
        O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
        O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe


      • Juu
        Lordi1 kirjoitti:

        ---------------------------------------------------------
        ewido anti-malware - Scan report
        ---------------------------------------------------------

        Created on:         7:39:07, 23.5.2006
        Report-Checksum:      D188622E

        Scan result:

           :mozilla.32:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Ignored
           :mozilla.8:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
           :mozilla.10:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
           :mozilla.23:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.24:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.25:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.26:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.33:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.34:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.35:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
           :mozilla.59:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
           :mozilla.60:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.61:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.62:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.66:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.67:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.68:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.69:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
           :mozilla.71:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.72:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.80:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           :mozilla.81:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup

        ::Report End

        Logfile of HijackThis v1.99.1
        Scan saved at 7:44:23, on 23.5.2006
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\Explorer.EXE
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        C:\Program Files\MessengerPlus! 3\MsgPlus.exe
        C:\Program Files\Winamp\winampa.exe
        C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        C:\WINDOWS\System32\ctfmon.exe
        C:\Program Files\VIA\RAID\raid_tool.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\ewido anti-malware\ewidoctrl.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\WINDOWS\system32\ZoneLabs\vsmon.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\wuauclt.exe
        C:\Program Files\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
        O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
        O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

        Merkka nuo sulje selain ja paina Fix checked

        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE

        Sitte poista jos löytyy = IEXPL0RE.EXE
        Päivitä myös sun XP = Windows Update


    Ketjusta on poistettu 0 sääntöjenvastaista viestiä.

    Luetuimmat keskustelut

    1. Mihin Ilkka Kanerva kuoli?

      Kun näin jokin aika sitten kuvan riutuneen näköisestä Kanervasta, sanoin vaimolle että haimasyövältä vaikuttaa. Vaimon isä oli kuollut kyseiseen tauti
      Maailman menoa
      265
      17021
    2. Oho! Susanna Laine uudessa hiustyylissä - Julkkismeikkaajalta tiukka palaute: "Ihan sama..."

      Ex-Salkkarit tähti ja juontaja Susanna Laine on monessa mukana. Ex-missi tunnetaan pitkistä, vaaleista hiuksistaan . Mitäs tykkäät uudesta hiustyylist
      Kotimaiset julkkisjuorut
      23
      5485
    3. Ilkka kanerva

      Ilkka Kanerva kuollut 74v
      Turku
      115
      2586
    4. Yllätyspaljastus: Poppari Robin Packalen kiittää urastaan iskelmätähti Juha Tapiota: "Jos mä en..."

      Oi, mikä tarina. Juha Tapio ja Robin ovat kyllä symppiksiä molemmat. Kumpi heistä on suosikkisi? https://www.suomi24.fi/viihde/yllatyspaljastus-poppar
      Kotimaiset julkkisjuorut
      15
      2069
    5. Venäjän lippulaiva Moskva upotettu Mustallamerellä

      Venäjän laivaston lippulaiva Mustalalmerellä on 180 m pituinen, Neuvostoliiton aikana rakennettu Moskva-niminen risteilijä. Ukraina ilmoitti eilen saa
      Maailman menoa
      336
      1768
    6. Pikkaraiskan puhelut

      Mitä tuo jätkä hakee sillä että julkaisee kuinka kauan on puhunut puhelimessa? Tekee itsestään vieläkin idiootimman tuolla vai mikä tää juttu?
      Kotimaiset julkkisjuorut
      111
      1001
    7. Ilkka Kanerva on kuollut

      74-vuotiaana.
      Maailman menoa
      59
      959
    8. Hossein Najaf juotti lapset humalaan ja käytti häikäilemättä hyväkseen

      Keski-Suomen käräjäoikeus on tuominnut 60-vuotiaan Hossein Najafin neljän vuoden vankeusrangaistukseen. Ensimmäisen tytön kanssa hän oli useita kerto
      Maailman menoa
      32
      886
    9. Sofia Belorf ja Sonja Aiello

      Viihtyvät yhdessä dinnerillä. Pienet piirit. Mitä ajatuksia herättää ?
      Kotimaiset julkkisjuorut
      44
      883
    Aihe