Hijack logi (amatöörille apua)

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by Mikko82, Mar 27, 2007.

  1. Mikko82

    Mikko82 Member

    Joined:
    Feb 26, 2006
    Messages:
    16
    Likes Received:
    0
    Trophy Points:
    11
    No niin olis aikatarkistaa kone. Sen verran huono näissä konehommissa, joten tarvitsisin tarkat ohjeet.
    Kiitokset etukäteen.


    Logfile of HijackThis v1.99.1
    Scan saved at 20:15:31, on 27.3.2007
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    D:\WINDOWS\System32\smss.exe
    D:\WINDOWS\system32\csrss.exe
    D:\WINDOWS\system32\winlogon.exe
    D:\WINDOWS\system32\services.exe
    D:\WINDOWS\system32\lsass.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    D:\WINDOWS\system32\spoolsv.exe
    D:\WINDOWS\Explorer.EXE
    D:\Program Files\Common Files\Symantec Shared\ccApp.exe
    D:\Program Files\Razer\Copperhead\razerhid.exe
    D:\Program Files\Razer\Copperhead\razertra.exe
    D:\Program Files\Razer\Copperhead\razerofa.exe
    D:\WINDOWS\System32\CTsvcCDA.exe
    D:\WINDOWS\System32\nvsvc32.exe
    D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    D:\Program Files\Internet Explorer\iexplore.exe
    D:\Documents and Settings\Comm@nder\Desktop\HijackThis_v1.99.1.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.lavasoft.de/news/product/info/
    O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: Norton-työkalurivi - {90222687-F593-4738-B738-FBEE9C7B26DF} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
    O4 - HKLM\..\Run: [ccApp] "D:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKCU\..\Run: [razer] D:\Program Files\Razer\Copperhead\razerhid.exe
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload.adobe.com/pub/shockwave/cabs/flash/swflash.cab
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\WINDOWS\System32\CTsvcCDA.exe
    O23 - Service: LiveUpdate - Symantec Corporation - D:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
     
  2. Mikko82

    Mikko82 Member

    Joined:
    Feb 26, 2006
    Messages:
    16
    Likes Received:
    0
    Trophy Points:
    11
    Laittelen vielä tälläisen:

    KASPERSKY ONLINE SCANNER REPORT
    Tuesday, March 27, 2007 10:00:03 PM
    Operating System: Microsoft Windows XP Professional, (Build 2600)
    Kaspersky Online Scanner version: 5.0.93.0
    Kaspersky Anti-Virus database last update: 27/03/2007
    Kaspersky Anti-Virus database records: 287104


    Scan Settings
    Scan using the following antivirus database extended
    Scan Archives true
    Scan Mail Bases true

    Scan Target My Computer
    A:\
    C:\
    D:\
    E:\

    Scan Statistics
    Total number of scanned objects 34325
    Number of viruses found 0
    Number of infected objects 0
    Number of suspicious objects 0
    Duration of the scan process 00:24:20

    Infected Object Name Virus Name Last Action
    D:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBConfig.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBDebug.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBDetect.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBNotify.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBRefr.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetCfg.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetCfg2.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetDev.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetLoc.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetUsr.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBStHash.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBValid.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPPolicy.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPStart.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPStop.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtErEvt.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\2BC8A0D4.TMP Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtMoEvt.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtNvEvt.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtScEvt.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtTxFEvt.log Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtViEvt.log Object is locked skipped

    D:\Documents and Settings\Comm@nder\Cookies\index.dat Object is locked skipped

    D:\Documents and Settings\Comm@nder\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\Comm@nder\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\Comm@nder\Local Settings\History\History.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\Comm@nder\Local Settings\History\History.IE5\MSHist012007032720070328\index.dat Object is locked skipped

    D:\Documents and Settings\Comm@nder\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\Comm@nder\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\Comm@nder\ntuser.dat.LOG Object is locked skipped

    D:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

    D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAD.dat Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWADMT.dat Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAS.dat Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAS.ldb Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDALRT.log Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDCON.log Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDDBG.log Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDFW.log Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDIDS.log Object is locked skipped

    D:\Program Files\Common Files\Symantec Shared\SNDSYS.log Object is locked skipped

    D:\Program Files\Norton 360\Log\AutoProtect.log Object is locked skipped

    D:\Program Files\Norton 360\Log\AVContext.log Object is locked skipped

    D:\Program Files\Norton 360\Log\AVManual.log Object is locked skipped

    D:\Program Files\Norton 360\Log\Backup.log Object is locked skipped

    D:\Program Files\Norton 360\Log\CUInternetPageViewHistory.log Object is locked skipped

    D:\Program Files\Norton 360\Log\CUInternetSearchHistory.log Object is locked skipped

    D:\Program Files\Norton 360\Log\CUInternetTempFiles.log Object is locked skipped

    D:\Program Files\Norton 360\Log\CUWindowsTempFiles.log Object is locked skipped

    D:\Program Files\Norton 360\Log\EmailScan.log Object is locked skipped

    D:\Program Files\Norton 360\Log\InternetSecurity.log Object is locked skipped

    D:\Program Files\Norton 360\Log\ISIntrusionPrevented.log Object is locked skipped

    D:\Program Files\Norton 360\Log\ISIOTraffic.log Object is locked skipped

    D:\Program Files\Norton 360\Log\ISNewNetwork.log Object is locked skipped

    D:\Program Files\Norton 360\Log\LiveUpdate.log Object is locked skipped

    D:\Program Files\Norton 360\Log\NCO.log Object is locked skipped

    D:\Program Files\Norton 360\Log\VABrowserSettings.log Object is locked skipped

    D:\Program Files\Norton 360\Log\VAIPAddresses.log Object is locked skipped

    D:\Program Files\Norton 360\Log\VAWeakPasswords.log Object is locked skipped

    D:\Program Files\Norton 360\Log\WDFScanner.log Object is locked skipped

    D:\System Volume Information\_restore{A8039027-6A4C-443B-88E8-45FA952FBED2}\RP44\change.log Object is locked skipped

    D:\WINDOWS\Debug\oakley.log Object is locked skipped

    D:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

    D:\WINDOWS\SchedLgU.Txt Object is locked skipped

    D:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

    D:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\default Object is locked skipped

    D:\WINDOWS\system32\config\default.LOG Object is locked skipped

    D:\WINDOWS\system32\config\NetLimit.evt Object is locked skipped

    D:\WINDOWS\system32\config\SAM Object is locked skipped

    D:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

    D:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\SECURITY Object is locked skipped

    D:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

    D:\WINDOWS\system32\config\software Object is locked skipped

    D:\WINDOWS\system32\config\software.LOG Object is locked skipped

    D:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\system Object is locked skipped

    D:\WINDOWS\system32\config\system.LOG Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

    D:\WINDOWS\Temp\JETCC77.tmp Object is locked skipped

    D:\WINDOWS\Temp\JETCC78.tmp Object is locked skipped

    D:\WINDOWS\WindowsUpdate.log Object is locked skipped

    Scan process completed.
     
  3. tomato71

    tomato71 Regular member

    Joined:
    Apr 30, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    46
    Moi !

    Molemmat lokit on OK!

    Päivitä Windowsi Sp 1 ja 2 wnidowsin update sivuston kautta
    tai tästä jos linkit vielä toimii,muuten kone ei pysy puhtaana kauan :)

    ServicePack1

    ServicePack2
     
  4. Mikko82

    Mikko82 Member

    Joined:
    Feb 26, 2006
    Messages:
    16
    Likes Received:
    0
    Trophy Points:
    11
    kiitoksia paljon nopeasta toiminnasta.


    Hyvää alkanutta kevättä!!!
     

Share This Page