Logfile of HijackThis v1.99.1 Scan saved at 17:16:51, on 03/22/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\SYSTEM32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\apps\ABoard\ABoard.exe C:\apps\ABoard\AOSD.exe C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\MessengerPlus! 3\MsgPlus.exe C:\program files\softwin\bitdefender9\bdswitch.exe C:\Program Files\Softwin\BitDefender9\bdoesrv.exe C:\program files\softwin\bitdefender9\bdnagent.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\WINDOWS\System32\ezNTSvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe C:\Program Files\Valve\Steam\Steam.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Omistaja\Työpöytä\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.jippii.fi/jsp/chat R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [BDSwitchAgent] "c:\program files\softwin\bitdefender9\bdswitch.exe" O4 - HKLM\..\Run: [BDMCon] "C:\Program Files\Softwin\BitDefender9\bdmcon.exe" O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe" O4 - HKLM\..\Run: [BDNewsAgent] "c:\program files\softwin\bitdefender9\bdnagent.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fin.htm O15 - Trusted Zone: http://acs.pandasoftware.com O15 - Trusted Zone: http://activescan.pandasoftware.com O15 - Trusted Zone: http://www.pandasoftware.com O15 - Trusted Zone: http://www.pandasoftware.es O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab O16 - DPF: {94EB57FE-2720-496C-B33F-D9353C6E23F7} (F-Secure Online Scanner 2.1) - http://support.f-secure.com/ols/fscax.cab O18 - Protocol: bw+0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Protocol: offline-8876480 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe O23 - Service: EasyBits Services for Windows NT (ezntsvc) - Teknum Systems AS - C:\WINDOWS\System32\ezNTSvc.exe O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Program Files\iolo\System Mechanic Professional 6\IoloSGCtrl.exe (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Windowsin palomuuri / Internet-yhteyden jakaminen (ICS) (SharedAccess) - Unknown owner - C:\WINDOWS\C:\WINDOWS\System32\svchost.exe (file missing) O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
Siirrä Hijackthis omaan hakemistoonsa, Esim: C:/HJT/hijackthis.exe Scannaa hijackthis:llä ja merkitse seuraavat rastilla: O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) Sammuta muut ikkunat ja paina Fix checked. Päivitä Ewido Käynnistä kone vikasietotilaan ja scannaa Ewidolla Complete system Scan Kun hälyyttää niin tarkista: Perform action -> Remove ja laita ruksi kohtaan: Perform action with all infections Näin se poistaa kaikki löydöt erikseen kysymättä sitten kun on suorittanut loppuun niin save report Käynnistä normaalisti Lähetä uusi hjt-logi ja ewidon raportti.
HJT logi: Logfile of HijackThis v1.99.1 Scan saved at 16:46:31, on 03/23/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\SYSTEM32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\apps\ABoard\ABoard.exe C:\apps\ABoard\AOSD.exe C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\MessengerPlus! 3\MsgPlus.exe C:\program files\softwin\bitdefender9\bdswitch.exe C:\Program Files\Softwin\BitDefender9\bdoesrv.exe C:\program files\softwin\bitdefender9\bdnagent.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\WINDOWS\System32\ezNTSvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\program files\softwin\bitdefender9\bdmcon.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\HJT\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.jippii.fi/jsp/chat R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [BDSwitchAgent] "c:\program files\softwin\bitdefender9\bdswitch.exe" O4 - HKLM\..\Run: [BDMCon] "C:\Program Files\Softwin\BitDefender9\bdmcon.exe" O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe" O4 - HKLM\..\Run: [BDNewsAgent] "c:\program files\softwin\bitdefender9\bdnagent.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fin.htm O15 - Trusted Zone: http://acs.pandasoftware.com O15 - Trusted Zone: http://activescan.pandasoftware.com O15 - Trusted Zone: http://www.pandasoftware.com O15 - Trusted Zone: http://www.pandasoftware.es O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab O16 - DPF: {94EB57FE-2720-496C-B33F-D9353C6E23F7} (F-Secure Online Scanner 2.1) - http://support.f-secure.com/ols/fscax.cab O18 - Protocol: bw+0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Protocol: offline-8876480 - {D79F950B-FB56-4194-AFE1-BD24695F8B07} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe O23 - Service: EasyBits Services for Windows NT (ezntsvc) - Teknum Systems AS - C:\WINDOWS\System32\ezNTSvc.exe O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Program Files\iolo\System Mechanic Professional 6\IoloSGCtrl.exe (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Windowsin palomuuri / Internet-yhteyden jakaminen (ICS) (SharedAccess) - Unknown owner - C:\WINDOWS\C:\WINDOWS\System32\svchost.exe (file missing) O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing) Ewido: --------------------------------------------------------- ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 16:31:37, 03/23/2006 + Report-Checksum: 6AABBA7A + Scan result: :mozilla.50:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup :mozilla.91:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.92:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.93:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.113:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.114:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.115:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.116:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.117:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.118:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.119:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.120:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.121:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.122:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.123:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.126:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.127:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.128:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.129:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.130:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.131:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.132:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.133:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.134:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.135:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.136:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.137:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.138:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.139:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.140:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.141:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.142:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.143:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.144:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.145:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup :mozilla.146:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.147:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.148:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.149:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.150:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup :mozilla.160:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup :mozilla.161:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.162:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.166:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.175:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup :mozilla.176:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup :mozilla.177:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup :mozilla.182:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup :mozilla.187:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.188:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.224:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.225:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.226:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.227:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.228:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup :mozilla.229:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup :mozilla.230:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup :mozilla.245:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.246:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.247:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.248:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.249:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.250:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup :mozilla.272:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup :mozilla.282:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup :mozilla.284:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.285:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.287:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.288:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.289:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.290:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.300:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.301:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.302:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.303:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.304:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.305:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup :mozilla.308:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.324:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned with backup :mozilla.330:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup :mozilla.341:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Trafic : Cleaned with backup :mozilla.362:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup :mozilla.363:C:\Documents and Settings\Omistaja\Application Data\Mozilla\Firefox\Profiles\chrz3p6q.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup ::Report End Tollast...
Scannaa hijackthis:llä ja merkitse seuraavat rastilla: O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) Sammuta muut ikkunat ja paina Fix checked. Boottaa kone.
O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) en saa noita fixattuu, oon ennenki yrittännyt suljin ennenki kiakki ikkunat ja testasin fix nii se valitti jotain että :Hijackthis is about to remove a BHO and the corresponding file from your system.Close all Internet Explorer windows AND all windows Explorer windows before continuing for the best chance of success ??en lue enkkua että sellast
Noi ovat jotain örkin jäänteitä. Koita fixata niitä vikasietotilassa. Toinen, Oletko lokannut järjestelmän valvojana Windows:iin Voi olla että käyttöoikeudet ei riitä.
Ei toimi vikasietotilassa..ahaa..mites noit valtuuksia sit vois lisätä?oon ainakin täst ottannut pois noi käyttäjäntilit..
Siis hijacki ei toimi vai ei fixaus toimi ? Niin, konellasiko ei ole käyttäjätilejä? Katso ohjauspaneelista käyttäjätilit ja määritä sieltä järjestelmänvalvojan oikeudet itsellesi.
Yksi konsti on sitten: Käynistä > suorita > kirjoita ruutuun regedit ja enter. Tee varmuuskopio rekisteristä ensin. Sitten etsit tuolta: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects Nuo CLSID:T {4938C6E3-DC3A-53A1-28C3-16D828F32D84} {6AF244C9-D295-E3E5-D62E-A4971C2770EF} {9D91B664-E17A-5691-E24A-243B463C39FA} Ja poistat ne yksitellen.
Tuola ne pitäisi olla: hot_key_local_machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Object
@mestaus no tracking cookiet mitä ewido löytää tule luultavasti kiusaa sua jatkossakin... näin pääset eroon niistä(ja tää on muuteski hyvä suoja tiettyjä örkkejä vastaan)----> Lataa hosts zip-paketti: http://www.mvps.org/winhelp2002/hosts.zip Pura se esim. c:\hosttemp -hakemistoon ja aja paketista purkautunut mvps.bat. ja se oli sit siinä Tapiiri jatkaa............
Hitsi, sulla on sielä Spybot asennettuna. Se estää noi rekisteri muutokset. Eli poista spybot lisää poista valikosta ja boottaa kone. Sitten fixaa noi 02:set hijackthis:llä. O2 - BHO: (no name) - {4938C6E3-DC3A-53A1-28C3-16D828F32D84} - (no file) O2 - BHO: (no name) - {6AF244C9-D295-E3E5-D62E-A4971C2770EF} - (no file) O2 - BHO: (no name) - {9D91B664-E17A-5691-E24A-243B463C39FA} - (no file) boottaa kone ja scannaa hijackilla ja katso onko ne poissa. jos ei, niin lähetä uusi logi. Lataa ja asenna spybot uudelleen jos haluat. http://www.safer-networking.org/index.php?page=download