Miltä näyttää

Kone hidastunut

Elikkäs, otsikosta ongelma. Kone on itse ostettu (osat) ja kasattu joulukuun 22. päivä - eli ihan uutta rautaa. Tässä lähipäivinä olen kumminkin huomannut, että suoritiskyky peleissä on laskenut aika rutkasti. Sekä mozilla (mozilla mozilla ;) ) aukaisee itsestään suht tiheään tahtiin joko:

a) 4x tyhjää mozzillaa päälle
b) 1x Pop-upin.

Olen tässä nyt spybotilla ja ad-awarella skannaillu, paskaa on löytynyt, mutta ei tuo ole oikein auttanut..

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:06:43, on 30.12.2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Daemon Tools Lite\daemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\MagicDisc\MagicDisc.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
D:\Mozilla Firefox 3\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\rundll32.exe
D:\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Daemon Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: MagicDisc.lnk = D:\MagicDisc\MagicDisc.exe
O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupd...b?1229250793140
O20 - AppInit_DLLs: sselbj.dll fxyzui.dll xeewah.dll qyhoeb.dll dxdtop.dll vknysh.dll nkqazy.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MSSQL$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SQLAgent$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (file missing)

--
End of file - 6997 bytes

7

613

    Vastaukset

    Anonyymi (Kirjaudu / Rekisteröidy)
    5000
    • ensimmäiseksi...

          Lataa Malwarebytes' Anti-Malware työpöydällesi.
      http://malwarebytes.gt500.org/mbam-setup.exe
      • Tuplaklikkaa mbam-setup.exe ja seuraa ohjeita asentaaksesi ohjelman.
      • Lopuksi varmistu, että seuraavat on valittu: Update Malwarebytes' Anti-Malware ja Launch Malwarebytes' Anti-Malware ja sen jälkeen klikkaa Finish.
      • Jos päivitys löytyy. ohjelma lataa ja asentaa uusimman version.
      • Kun ohjelma on latautunut, valitse Perform full scan ja klikkaa Scan.
      • Kun skanni on valmis, klikkaa OK ja sitten Show Results nähdäksesi tulokset.
      • Varmistu, että kaikki on merkitty ja klikkaa Remove Selected.
      • Tämän jälkeen loki avautuu muistioon. Tallenna se paikkaan, josta löydät sen helposti. Loki löytyy myös täältä: C:\Documents and Settings\Käyttäjänimi\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-päiväys.txt
      • Lähetä lokin sisältö seuraavassa viestissäsi.

      • Tässä tulee

        Tässä tämä mban logi sitten on :) Monta saastunutta tiedostoa oli...

        Malwarebytes' Anti-Malware 1.31
        Tietokantaversio: 1578
        Windows 5.1.2600 Service Pack 3

        30.12.2008 21:13:00
        mbam-log-2008-12-30 (21-13-00).txt

        Tarkistustyyppi: Täysi tarkistus (C:\|D:\|E:\|)
        Tarkistetut kohteet: 95014
        Kulunut aika: 14 minute(s), 7 second(s)

        Saastuneita muistiprosesseja: 0
        Saastuneita muistimoduuleja: 12
        Saastuneita rekisteriavaimia: 8
        Saastuneita rekisteriarvoja: 1
        Saastuneita rekisterikohteita: 2
        Saastuneita hakemistoja: 0
        Saastuneita tiedostoja: 24

        Saastuneita muistiprosesseja:
        (Haitallisia kohteita ei löydetty)

        Saastuneita muistimoduuleja:
        C:\WINDOWS\system32\geBrpmjk.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\cpagnsbc.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\nnnkllkK.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\sselbj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\fxyzui.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\xeewah.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\qyhoeb.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\dxdtop.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\vknysh.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\ijdialoj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\npijgaun.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\nkqazy.dll (Trojan.Vundo) -> Delete on reboot.

        Saastuneita rekisteriavaimia:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\nnnkllkk (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_CLASSES_ROOT\CLSID\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bd81c656-b575-4a7c-96ed-44b702bf16e9} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_CLASSES_ROOT\CLSID\{bd81c656-b575-4a7c-96ed-44b702bf16e9} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully.

        Saastuneita rekisteriarvoja:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.

        Saastuneita rekisterikohteita:
        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\gebrpmjk -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\gebrpmjk -> Delete on reboot.

        Saastuneita hakemistoja:
        (Haitallisia kohteita ei löydetty)

        Saastuneita tiedostoja:
        C:\WINDOWS\system32\nnnkllkK.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\geBrpmjk.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\kjmprBeg.ini (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\cpagnsbc.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\sselbj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\fxyzui.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\xeewah.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\qyhoeb.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\dxdtop.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\vknysh.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\ijdialoj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\npijgaun.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\nkqazy.dll (Trojan.Vundo) -> Delete on reboot.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019493.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019496.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019497.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019498.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019499.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019500.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019501.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019502.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019503.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019504.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019505.dll (Trojan.Vundo) -> Quarantined and deleted successfully.


      • olet ehtinyt...
        Tässä tulee kirjoitti:

        Tässä tämä mban logi sitten on :) Monta saastunutta tiedostoa oli...

        Malwarebytes' Anti-Malware 1.31
        Tietokantaversio: 1578
        Windows 5.1.2600 Service Pack 3

        30.12.2008 21:13:00
        mbam-log-2008-12-30 (21-13-00).txt

        Tarkistustyyppi: Täysi tarkistus (C:\|D:\|E:\|)
        Tarkistetut kohteet: 95014
        Kulunut aika: 14 minute(s), 7 second(s)

        Saastuneita muistiprosesseja: 0
        Saastuneita muistimoduuleja: 12
        Saastuneita rekisteriavaimia: 8
        Saastuneita rekisteriarvoja: 1
        Saastuneita rekisterikohteita: 2
        Saastuneita hakemistoja: 0
        Saastuneita tiedostoja: 24

        Saastuneita muistiprosesseja:
        (Haitallisia kohteita ei löydetty)

        Saastuneita muistimoduuleja:
        C:\WINDOWS\system32\geBrpmjk.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\cpagnsbc.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\nnnkllkK.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\sselbj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\fxyzui.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\xeewah.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\qyhoeb.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\dxdtop.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\vknysh.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\ijdialoj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\npijgaun.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\nkqazy.dll (Trojan.Vundo) -> Delete on reboot.

        Saastuneita rekisteriavaimia:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\nnnkllkk (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_CLASSES_ROOT\CLSID\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bd81c656-b575-4a7c-96ed-44b702bf16e9} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_CLASSES_ROOT\CLSID\{bd81c656-b575-4a7c-96ed-44b702bf16e9} (Trojan.Vundo.H) -> Delete on reboot.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully.

        Saastuneita rekisteriarvoja:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.

        Saastuneita rekisterikohteita:
        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\gebrpmjk -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\gebrpmjk -> Delete on reboot.

        Saastuneita hakemistoja:
        (Haitallisia kohteita ei löydetty)

        Saastuneita tiedostoja:
        C:\WINDOWS\system32\nnnkllkK.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\geBrpmjk.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\kjmprBeg.ini (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\cpagnsbc.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\sselbj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\fxyzui.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\xeewah.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\qyhoeb.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\dxdtop.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\vknysh.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\ijdialoj.dll (Trojan.Vundo) -> Delete on reboot.
        C:\WINDOWS\system32\npijgaun.dll (Trojan.Vundo.H) -> Delete on reboot.
        C:\WINDOWS\system32\nkqazy.dll (Trojan.Vundo) -> Delete on reboot.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019493.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019496.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019497.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019498.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019499.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019500.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019501.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019502.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019503.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019504.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
        C:\System Volume Information\_restore{B98CA75F-1C3C-4967-8BF2-7192B66B83BD}\RP64\A0019505.dll (Trojan.Vundo) -> Quarantined and deleted successfully.

        keräämään kaikenlaista, mutta seuraavaksi uusi hjt -logi. Katsotaan sitten lisää.


      • tässä ois
        olet ehtinyt... kirjoitti:

        keräämään kaikenlaista, mutta seuraavaksi uusi hjt -logi. Katsotaan sitten lisää.

        Tässäpä tää ois


        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 22:00:47, on 30.12.2008
        Platform: Windows XP SP3 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.6000.16762)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        C:\WINDOWS\ATKKBService.exe
        C:\Program Files\Bonjour\mDNSResponder.exe
        C:\Program Files\CyberLink\Shared Files\RichVideo.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
        C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
        C:\WINDOWS\RTHDCPL.EXE
        C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        D:\Daemon Tools Lite\daemon.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
        D:\MagicDisc\MagicDisc.exe
        C:\WINDOWS\system32\NOTEPAD.EXE
        C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
        C:\Program Files\Microsoft Office\Office\OSA.EXE
        C:\Program Files\Windows Live\Messenger\usnsvc.exe
        D:\Steam\Steam.exe
        D:\TS server\server_windows.exe
        D:\Ventrilo ja Teamspeak 2\TeamSpeakRC2 2.0.32.60.exe
        C:\WINDOWS\system32\rundll32.exe
        D:\Mozilla Firefox 3\firefox.exe
        D:\HijackThis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: (no name) - {096E0D49-880F-49C9-8117-32B90C7ABA9A} - (no file)
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
        O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
        O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
        O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
        O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
        O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
        O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Daemon Tools Lite\daemon.exe" -autorun
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
        O4 - Startup: MagicDisc.lnk = D:\MagicDisc\MagicDisc.exe
        O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
        O4 - Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
        O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\BitComet\BitComet.exe/AddLink.htm
        O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\BitComet\BitComet.exe/AddVideo.htm
        O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\BitComet\BitComet.exe/AddAllLink.htm
        O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab
        O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1229250793140
        O20 - AppInit_DLLs: sselbj.dll fxyzui.dll xeewah.dll qyhoeb.dll dxdtop.dll vknysh.dll nkqazy.dll
        O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
        O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
        O23 - Service: MSSQL$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (file missing)
        O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
        O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
        O23 - Service: SQLAgent$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (file missing)

        --
        End of file - 7160 bytes


      • tuon firefoxin
        tässä ois kirjoitti:

        Tässäpä tää ois


        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 22:00:47, on 30.12.2008
        Platform: Windows XP SP3 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.6000.16762)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        C:\WINDOWS\ATKKBService.exe
        C:\Program Files\Bonjour\mDNSResponder.exe
        C:\Program Files\CyberLink\Shared Files\RichVideo.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
        C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
        C:\WINDOWS\RTHDCPL.EXE
        C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        D:\Daemon Tools Lite\daemon.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
        D:\MagicDisc\MagicDisc.exe
        C:\WINDOWS\system32\NOTEPAD.EXE
        C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
        C:\Program Files\Microsoft Office\Office\OSA.EXE
        C:\Program Files\Windows Live\Messenger\usnsvc.exe
        D:\Steam\Steam.exe
        D:\TS server\server_windows.exe
        D:\Ventrilo ja Teamspeak 2\TeamSpeakRC2 2.0.32.60.exe
        C:\WINDOWS\system32\rundll32.exe
        D:\Mozilla Firefox 3\firefox.exe
        D:\HijackThis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
        O2 - BHO: (no name) - {096E0D49-880F-49C9-8117-32B90C7ABA9A} - (no file)
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
        O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
        O4 - HKLM\..\Run: [ASUSGamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe
        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
        O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
        O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
        O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
        O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Daemon Tools Lite\daemon.exe" -autorun
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Paikallinen palve')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Verkkopalve')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
        O4 - Startup: MagicDisc.lnk = D:\MagicDisc\MagicDisc.exe
        O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
        O4 - Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
        O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\BitComet\BitComet.exe/AddLink.htm
        O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\BitComet\BitComet.exe/AddVideo.htm
        O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\BitComet\BitComet.exe/AddAllLink.htm
        O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab
        O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1229250793140
        O20 - AppInit_DLLs: sselbj.dll fxyzui.dll xeewah.dll qyhoeb.dll dxdtop.dll vknysh.dll nkqazy.dll
        O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
        O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
        O23 - Service: MSSQL$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (file missing)
        O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
        O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
        O23 - Service: SQLAgent$SONY_MEDIAMGR - Unknown owner - D:\Vegas 6.0\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (file missing)

        --
        End of file - 7160 bytes

        kanssa. Taitaa ponnahdella edelleen. Yhtenä keinona voisit poistaa firefoxin asennuksen ja asentaa uudestaan. Poista ennen uuden asennusta firefoxin jämät sieltä d:juuresta, jos sinne jotain jää.


      • heisp
        tuon firefoxin kirjoitti:

        kanssa. Taitaa ponnahdella edelleen. Yhtenä keinona voisit poistaa firefoxin asennuksen ja asentaa uudestaan. Poista ennen uuden asennusta firefoxin jämät sieltä d:juuresta, jos sinne jotain jää.

        Nyt mitä olen käyttänyt tuon MBA-logi jutun jälkeen mozillaa, niin eipä ole juuri ponnahellut... Ja ennen ponnahteli väh. kerran 5min :)

        Eiköhän tää ollu täsä


        SUUR KIITOS JA HYVÄÄ UUTTAVUOTTA!!! =)


      • riittää
        heisp kirjoitti:

        Nyt mitä olen käyttänyt tuon MBA-logi jutun jälkeen mozillaa, niin eipä ole juuri ponnahellut... Ja ennen ponnahteli väh. kerran 5min :)

        Eiköhän tää ollu täsä


        SUUR KIITOS JA HYVÄÄ UUTTAVUOTTA!!! =)

        niin hyvä. Nuo nyt voisi poistaa (fixata)
        O2 - BHO: (no name) - {096E0D49-880F-49C9-8117-32B90C7ABA9A} - (no file)
        O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing) jos välttämättä tarvit
        O20 - AppInit_DLLs: sselbj.dll fxyzui.dll xeewah.dll qyhoeb.dll dxdtop.dll vknysh.dll nkqazy.dll tuollekaan en löytänyt mitään järjellistä kayttöä, jos joku muu löytää enemmän ok.
        Sitten vaan hyvää uutta vuotta.


    Ketjusta on poistettu 0 sääntöjenvastaista viestiä.

    Luetuimmat keskustelut

    1. Kotkalainen Demari Riku Pirinen vangittu Saksassa lapsipornosta

      https://www.kymensanomat.fi/paikalliset/8081054 Kotkalainen Demari Riku Pirinen vangittu Saksassa lapsipornon hallussapi
      Kotka
      130
      3221
    2. Vanhalle ukon rähjälle

      Satutit mua niin paljon kun erottiin. Oletko todella niin itsekäs että kuvittelet että huolisin sut kaiken tapahtuneen
      Ikävä
      38
      2563
    3. Olen tosi outo....

      Päättelen palstajuttujen perusteella mitä mieltä minun kaipauksen kohde minusta on. Joskus kuvittelen tänne selkeitä tap
      Ikävä
      30
      2445
    4. Maisa on SALAKUVATTU huumepoliisinsa kanssa!

      https://www.seiska.fi/vain-seiskassa/ensimmainen-yhteiskuva-maisa-torpan-ja-poliisikullan-lahiorakkaus-roihuaa/1525663
      Kotimaiset julkkisjuorut
      114
      2248
    5. Oletko sä luovuttanut

      Mun suhteeni
      Ikävä
      114
      1720
    6. Nurmossa kuoli 2 Lasta..

      Autokolarissa. Näin kertovat iltapäivälehdet juuri nyt. 22.11. Ja aina ennen Joulua näitä tulee. . .
      Seinäjoki
      28
      1674
    7. Hommaatko kinkkua jouluksi?

      Itse tein pakastimeen n. 3Kg:n murekkeen sienillä ja juustokuorrutuksella. Voihan se olla, että jonkun pienen, valmiin k
      Sinkut
      174
      1418
    8. Mikko Koivu yrittää pestä mustan valkoiseksi

      Ilmeisesti huomannut, että Helenan tukijoukot kasvaa kasvamistaan. Riistakamera paljasti hiljattain kylmän totuuden Mi
      Kotimaiset julkkisjuorut
      300
      1321
    9. Aatteleppa ite!

      Jos ei oltaisikaan nyt NATOssa, olisimme puolueettomana sivustakatsojia ja elelisimme tyytyväisenä rauhassa maassamme.
      Maailman menoa
      304
      1282
    10. Onko se ikä

      Alkanut haitata?
      Ikävä
      63
      1110
    Aihe