Joo elikkäs mulla on varmasti joku virus, ewido valittaa tämän tyyppisistä tiedostoista 2 min välein C:\WINDOWS\TEMP\win1281.tmp.exe noiden nimien numerot voi vaihdella mut tommosia tulee temp kansioon 2min välein, just poistin niitä joku 1000 ja lisää tulee. Ja joka 2 min välein jos oon pelaamassa niin se peli hyppää winukkaan mutta ei näytä mitään ilmoitusta, tulee vaan. Ja silloin kun katon elokuvia niin tehtäväpalkki tulee 2 min jälkeen näkyviin. Laitan tähän nyt Hjt login ja vaikka Ewidon login Hjt: Logfile of HijackThis v1.99.1 Scan saved at 10:11:36, on 24.2.2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\Ohjelmia\Sygate Firewall\smc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Ohjelmia\Symantec Antivirus\DefWatch.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\WINDOWS\System32\nvsvc32.exe C:\Ohjelmia\Symantec Antivirus\Rtvscan.exe C:\WINDOWS\System32\wdfmgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\ASUS\Asus Probe\AsusProb.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Razer\razerhid.exe C:\Ohjelmia\Daemon Tools\daemon.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Ohjelmia\SYMANT~1\VPTray.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe C:\Ohjelmia\CyperLink DVD Solution\PowerDVD\PDVDServ.exe C:\Program Files\Ahead\InCD\InCD.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\MSMSGS.EXE C:\Pelit\Steam\Steam.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Razer\razertra.exe C:\Program Files\Razer\razerofa.exe C:\Ohjelmia\a-squared\a2guard.exe C:\Ohjelmia\mIRC\mirc.exe D:\Mozilla Imut\stng260.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Ohjelmia\Ewido\ewido anti-malware\ewidoguard.exe C:\Ohjelmia\Ewido\ewido anti-malware\ewidoctrl.exe C:\Ohjelmia\Ewido\ewido anti-malware\securitysuite.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Mozilla Firefox\firefox.exe D:\Mozilla Imut\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Asus Probe\AsusProb.exe O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [razer] C:\Program Files\Razer\razerhid.exe O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Ohjelmia\Daemon Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [vptray] C:\Ohjelmia\SYMANT~1\VPTray.exe O4 - HKLM\..\Run: [SmcService] C:\Ohjelmia\SYGATE~1\smc.exe -startgui O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [RemoteControl] "C:\Ohjelmia\CyperLink DVD Solution\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" O4 - HKLM\..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background O4 - HKCU\..\Run: [Steam] C:\Pelit\Steam\Steam.exe -silent O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [ProBNC] "C:\Program Files\Arkku IP Updater\sysupdate.exe" O4 - HKCU\..\Run: [a-squared] "C:\Ohjelmia\a-squared\a2guard.exe" O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1138528417421 O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.playqames.com/default.cab?uid=56&id=56023&1s O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) - http://www.windowsecurity.com/trojanscan/axscan.cab O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O20 - Winlogon Notify: winzoa32 - winzoa32.dll (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Ohjelmia\Symantec Antivirus\DefWatch.exe O23 - Service: ewido security suite control - ewido networks - C:\Ohjelmia\Ewido\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Ohjelmia\Ewido\ewido anti-malware\ewidoguard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Ohjelmia\SiSoftware Sandra Lite 2005.SR3\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Ohjelmia\SiSoftware Sandra Lite 2005.SR3\RpcSandraSrv.exe O23 - Service: SAVRoam (SavRoam) - symantec - C:\Ohjelmia\Symantec Antivirus\SavRoam.exe O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Ohjelmia\Sygate Firewall\smc.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Ohjelmia\Symantec Antivirus\Rtvscan.exe Ja Ewido: + Scan result: HKLM\SOFTWARE\Classes\WinRes.WindowsResources -> Adware.CoolWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\WinRes.WindowsResources\CLSID -> Adware.CoolWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\WinRes.WindowsResources\CurVer -> Adware.CoolWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\WinRes.WindowsResources.1 -> Adware.CoolWebSearch : Cleaned with backup [724] C:\WINDOWS\system32\winzoa32.dll -> Hijacker.Small.kb : Cleaned with backup :mozilla.8:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup :mozilla.30:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup :mozilla.37:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.38:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.39:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.40:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.41:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.42:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.43:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.44:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.45:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.46:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.47:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.60:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.62:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.63:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.65:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.66:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup :mozilla.67:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.68:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.70:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.71:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup :mozilla.72:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.75:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.77:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.79:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.80:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.81:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.82:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.83:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.84:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup :mozilla.86:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.87:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.88:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.90:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.94:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.95:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.96:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.102:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.103:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.106:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.107:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.111:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup :mozilla.112:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.122:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.123:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.124:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup :mozilla.126:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.127:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.128:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.129:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.130:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.131:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.132:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.136:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.164:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.165:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.166:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.167:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.168:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.169:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.170:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.171:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.172:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.173:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.174:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.175:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.176:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.177:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.179:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup :mozilla.180:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup :mozilla.224:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.225:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.227:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup :mozilla.265:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.267:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.268:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.269:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.270:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.271:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.272:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup :mozilla.284:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.285:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.298:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.299:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.300:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.301:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.302:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.303:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Trafic : Cleaned with backup :mozilla.320:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup :mozilla.321:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup :mozilla.322:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup :mozilla.323:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup :mozilla.385:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup :mozilla.386:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup :mozilla.387:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup :mozilla.388:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup :mozilla.389:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup :mozilla.394:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned with backup :mozilla.402:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.406:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup :mozilla.407:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup :mozilla.408:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup :mozilla.426:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.430:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.431:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.432:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.433:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.434:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.456:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.465:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup :mozilla.484:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Cqcounter : Cleaned with backup :mozilla.497:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.498:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.512:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup :mozilla.533:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup :mozilla.548:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.549:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.557:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup :mozilla.559:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup :mozilla.560:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup :mozilla.561:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup :mozilla.572:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.578:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.589:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.592:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.598:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup :mozilla.605:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned with backup :mozilla.606:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Spylog : Cleaned with backup :mozilla.611:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.612:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.614:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup :mozilla.619:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Findwhat : Cleaned with backup :mozilla.622:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.623:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.626:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.664:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup :mozilla.665:C:\Documents and Settings\Kalzy\Application Data\Mozilla\Firefox\Profiles\dnjovjnc.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup C:\Documents and Settings\Kalzy\Cookies\kalzy@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup C:\Documents and Settings\Kalzy\Cookies\kalzy@ysbweb[1].txt -> TrackingCookie.Ysbweb : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\ddl553.tmp.exe -> Dialer.Agent.z : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\ddl555.tmp.exe -> Dialer.Agent.z : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\ddl559.tmp.exe -> Dialer.Agent.z : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59274.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59275.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59276.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59277.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59278.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59279.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59280.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59281.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59282.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59283.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59284.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall59285.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall60141.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall60142.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall60143.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temp\iinstall60144.exe -> Downloader.IstBar : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temporary Internet Files\Content.IE5\JKUY237Q\pop[1].exe -> Downloader.IstBar.eq : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temporary Internet Files\Content.IE5\O78LDWIA\gdnFR1503[1].exe -> Downloader.Small.ayl : Cleaned with backup C:\Documents and Settings\Kalzy\Local Settings\Temporary Internet Files\Content.IE5\R1ELAT3J\mullbin2[1].exe -> Downloader.Small.ckr : Cleaned with backup C:\WINDOWS\system32\winzoa32.dll -> Hijacker.Small.kb : Cleaned with backup C:\WINDOWS\Temp\cgmmonmd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\cgnaonmd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\dgbpcomd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\dpahknmd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\egandomd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\fhdhmnmd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\jdmadomd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\jialhomd.exe -> Trojan.Dialer.ay : Cleaned with backup C:\WINDOWS\Temp\njmegomd.exe -> Trojan.Dialer.ay : Cleaned with backup D:\Mozilla Imut\splinter_cell-_chaos_theory_keygen.exe -> Dropper.Agent.aiq : Cleaned with backup ::Report End
Niin sitten Ewido puhdisti nuo 178 infected objectia, silti tulee vaan noi vanhat ongelmat, lisäksi eilen alko tulemaan ton winukkaan pomppimisen ohessa tommonen dialer, joka tunkee puhelin verkkoyhteys kirjautumista tai jotai, vaikka mulla on laajakaista.
Fixaa seuraavat, eli do a system scan only, laita rastit seuraaviin ja fix checked: O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.playqames.com/default.cab?uid=56&id=56023&1s O20 - Winlogon Notify: winzoa32 - winzoa32.dll (file missing) Etsi etsi-toiminnolla seuraava: winzoa32.dll Jos löytyy poista. Tarkista seuraavat D:\Mozilla Imut\stng260.exe ja C:\Program Files\Unlocker\UnlockerAssistant.exe täällä -> http://www.virustotal.com/flash/index_en.html ja laita sen tulokset tänne.
Joo kiitos mutta sain asian korjattua formatoimalla C aseman, josta ei ollut haittaa koska tavaraa ei ollu niin kauheasti sinne kertynyt.
Jatkossa suositteln hankkimaan hosts tiedoston jotta kone pysyy mahdollisimman puhtaana! Lisää infoa: http://mvps.org/winhelp2002/hosts.htm