Logi

Lordi1

Logfile of HijackThis v1.99.1
Scan saved at 20:51:55, on 21.5.2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: MicroSoft Media Tools - Unknown owner - C:\WINDOWS\MSmedia.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

3

206

    Vastaukset

    Anonyymi (Kirjaudu / Rekisteröidy)
    5000
    • Juu

      Hae Ewido

      http://www.ewido.net/en/download/

      asenna ja päivitä se.
      Merkkaa nuo sulje selain ja paina Fix checked

      O4 - HKLM\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
      O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
      O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

      Käynnistä sitte kone vikasietotilassa.

      Kirjota\kopioi nuo rivit yksitellen Suorita kohtaan ja paina OK tai Enter molempien rivien jälkeen

      sc stop "MicroSoft Media Tools"
      sc delete "MicroSoft Media Tools"

      sitte poista jos löytyy

      C:\WINDOWS\MSmedia.exe

      Sen jälken scannaa ja putsaa Ewidolla säästä sen logi.
      Käynnistä sitte normaalisti ja uus Hijack logi Ewidon logi.

      • Lordi1

        ---------------------------------------------------------
        ewido anti-malware - Scan report
        ---------------------------------------------------------

        Created on:         7:39:07, 23.5.2006
        Report-Checksum:      D188622E

        Scan result:

           :mozilla.32:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Ignored
           :mozilla.8:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
           :mozilla.10:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
           :mozilla.23:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.24:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.25:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.26:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.33:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.34:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.35:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
           :mozilla.59:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
           :mozilla.60:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.61:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.62:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.66:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.67:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.68:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.69:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
           :mozilla.71:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.72:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.80:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           :mozilla.81:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\[email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\[email protected][1].txt -> TrackingCookie.Clickhype : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup


        ::Report End

        Logfile of HijackThis v1.99.1
        Scan saved at 7:44:23, on 23.5.2006
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\Explorer.EXE
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        C:\Program Files\MessengerPlus! 3\MsgPlus.exe
        C:\Program Files\Winamp\winampa.exe
        C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        C:\WINDOWS\System32\ctfmon.exe
        C:\Program Files\VIA\RAID\raid_tool.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\ewido anti-malware\ewidoctrl.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\WINDOWS\system32\ZoneLabs\vsmon.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\wuauclt.exe
        C:\Program Files\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
        O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
        O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe


      • Juu
        Lordi1 kirjoitti:

        ---------------------------------------------------------
        ewido anti-malware - Scan report
        ---------------------------------------------------------

        Created on:         7:39:07, 23.5.2006
        Report-Checksum:      D188622E

        Scan result:

           :mozilla.32:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Ignored
           :mozilla.8:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
           :mozilla.10:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
           :mozilla.23:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.24:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
           :mozilla.25:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.26:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
           :mozilla.33:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.34:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
           :mozilla.35:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
           :mozilla.59:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
           :mozilla.60:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.61:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.62:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
           :mozilla.66:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.67:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.68:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
           :mozilla.69:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
           :mozilla.71:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.72:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           :mozilla.80:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           :mozilla.81:C:\Documents and Settings\Raino\Application Data\Mozilla\Firefox\Profiles\ykrzmnk1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\[email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\[email protected][1].txt -> TrackingCookie.Clickhype : Cleaned with backup
           C:\Documents and Settings\Raino\Cookies\raino@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup


        ::Report End

        Logfile of HijackThis v1.99.1
        Scan saved at 7:44:23, on 23.5.2006
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\Explorer.EXE
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        C:\Program Files\MessengerPlus! 3\MsgPlus.exe
        C:\Program Files\Winamp\winampa.exe
        C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        C:\WINDOWS\System32\ctfmon.exe
        C:\Program Files\VIA\RAID\raid_tool.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\ewido anti-malware\ewidoctrl.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\WINDOWS\System32\nvsvc32.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\WINDOWS\system32\ZoneLabs\vsmon.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\wuauclt.exe
        C:\Program Files\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dnainternet.fi/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
        O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148021426484
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
        O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
        O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

        Merkka nuo sulje selain ja paina Fix checked

        O4 - HKLM\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\Run: [Micrsoft Internet Explorer] IEXPL0RE.EXE
        O4 - HKCU\..\RunServices: [Micrsoft Internet Explorer] IEXPL0RE.EXE

        Sitte poista jos löytyy = IEXPL0RE.EXE
        Päivitä myös sun XP = Windows Update


    Ketjusta on poistettu 0 sääntöjenvastaista viestiä.

    Luetuimmat keskustelut

    1. Riikan kukkaronnyöri on umpisolmussa

      Kulutus ei lähde liikkeelle, koska kansalaiset eivät usko, että: – työpaikka säilyy – tulot eivät romahda – talous ei h
      Maailman menoa
      28
      2849
    2. Jos vedetään mutkat suoraksi?

      Niin kumpaan ryhmään kuulut? A) Niihin, jotka menevät edellä ja tekevät? Vai B) Niihin, jotka kulkevat perässä ja ar
      Sinkut
      106
      2641
    3. Tanskan malli perustuu korkeaan ansioturvaan

      Ja vahvoihin työllisyys- ja kotoutumispalveluihin. Suomessa Riikka on leikannut juuri näitä: palkkatukea, työttömyysturv
      Maailman menoa
      26
      2353
    4. Vain vasemmistolaiset ovat aitoja suomalaisia

      Esimerkiksi persut ovat ulkomaalaisen pääomasijoittajan edunvalvojia, eivät auta köyhiä suomalaisia.
      Maailman menoa
      49
      1904
    5. Anteeksipyyntöni

      Jätän tähän anteeksipyyntöni sinulle, koska en voi sanoa sitä missään muuallakaan. Pyydän anteeksi, jos purkamani tuska
      Järki ja tunteet
      14
      1483
    6. Miten must tuntuu

      et sä ajattelet mua just nyt
      Ikävä
      32
      1463
    7. Kun et vain tajua että

      sua lähestytään feikkiprofiililla :D Hanki aivot :D m-n
      Ikävä
      177
      1173
    8. Sydämeni valtiaalle

      En täältä aio asioita kysellä. Haluan tuoda tiedoksesi, että pohjimmiltani en ihmisiä tahdo satuttaa ja ajattelen muiden
      Ikävä
      102
      1173
    9. En vain unohda

      Sitä miten rakastuneesti olet minua katsonut. Oliko tunteet liian suuria että niistä olisi voinut puhua.
      Ikävä
      71
      1015
    10. Oletko tyytyväinen

      Tämän hetkiseen tilanteeseenne? Odotatko, että lähennytte vai yritätkö päästä yli ja eteenpäin?
      Ikävä
      81
      958
    Aihe