Kone toimii normaalia hitaammin ja jostain syystä idlenäkin syö ~500mb muistia, ennen pysyi 300:n tienoilla, managerin mukaan mitään syöppöä ohjelmaa ei ole päällä. Logfile of HijackThis v1.99.1 Scan saved at 1:09:07, on 9.7.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\FSGK32.EXE C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE C:\Program Files\PCI Latency Tool 3\LtcyCfgSvc.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMB32.EXE C:\WINDOWS\system32\oodag.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FCH32.EXE C:\WINDOWS\system32\UAService7.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsqh.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FAMEH32.EXE C:\WINDOWS\Explorer.EXE C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsaua.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fssm32.exe C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsus.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe C:\WINDOWS\CTHELPER.EXE C:\Program Files\Logitech\MouseWare\system\em_exec.exe C:\Program Files\Windows Defender\MSASCui.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\NVTray\NVTray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\fsguidll.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsav32.exe C:\WINDOWS\system32\spoolsv.exe D:\Program Files\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pelit.fi/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Toimittaja Elisa Internet R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.fi;;localhost;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FlashGet\jccatch.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [News Service] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [LtcyCfgApply] "D:\Ohjelmia\Pikkuohjeolmia\LtcyCfg2\LtcyCfg.exe" /a O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\RunOnce: [MRUBlaster] C:\Program Files\MRU-Blaster\indexcleaner.exe -COOKIES O4 - HKCU\..\Run: [NVTray] C:\Program Files\NVTray\NVTray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: MRU-Blaster Silent Clean.lnk = C:\Program Files\MRU-Blaster\mrublaster.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O8 - Extra context menu item: Lataa FlashGetillä - C:\PROGRA~1\FlashGet\jc_link.htm O8 - Extra context menu item: Lataa kaikki FlashGetillä - C:\PROGRA~1\FlashGet\jc_all.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Tuki - {36B44728-CBA8-49CB-872C-1A3374B99541} - http://tuki.elisa.net/ (file missing) (HKCU) O9 - Extra button: Palvelut - {C290947C-C497-4AFB-B865-84094F5D20FA} - http://service.kolumbus.fi/ (file missing) (HKCU) O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O11 - Options group: [INTERNATIONAL] International* O14 - IERESET.INF: START_PAGE_URL=http://elisa.net/ O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsaua.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: PCI Latency Tool Service (LtcyCfgSvc) - Unknown owner - C:\Program Files\PCI Latency Tool 3\LtcyCfgSvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2007.SP1\Win32\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2007.SP1\RpcSandraSrv.exe O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\WINDOWS\system32\sfrem01.exe O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe
Tallenna nämä ohjeet teksitiedostoon sillä et voi lukea niitä muuten vikasietotilassa. ========== Avaa hijackthis merkkaa seuraavat rivi(t) ja paina fix checked, sulje muut ohjelmat siksi aikaa. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = Tässä ohje miten merkataan: ========== 1,Lataa AVG Anti-Spyware 7.5 ja tallenna ohjelma työpöydällesi. Jos sinulla on jo kyseinen ohjelma siirry suoraan kohtaan 2! [*]Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa. [*]Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää. 2. [*]Käynnistä AVG eAnti-Spyware. [*]Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta. [*]Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa. [*]Paina hetken kuluttua uudestaan "Start Update" , jos päivitykset eivät heti onnistu [*]Jos automaattipäivitys ei jostain syystä toimi, niin tunnisteet voi ladata manuaalisesti http://www.ewido.net/en/download/updates/ -linkin takaa. [*]Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti. [*]Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine". [*]Sitten "Reports" valikon alta:a [*]Laita täppi kohtaan "Automatically generate report after every scan" [*]Ota täppi pois kohdasta"Only if threats were found" [*]Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa [*]"Resident shield is", muuta tila active:sta inactive:ksi [*]Sulje ohjelma, ÄLÄ skannaa vielä. Käynnistä tietokone vikasietotilaan: HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta. [*]Kun vikasietotilassa, käynnistä AVG Anti-Spyware. [*]Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan". [*]AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa. Kun skannaus on valmis: TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions" [*]Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta. [*]Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions" [*]Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta. [*]Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle. [*]Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestiketjuusi. ========== Tämä jos tunnet tietokoneesi olevan hitaan puoleinen, etkä ole eheyttänyt pitkään aikaan: Avaa Oma tietokone -> Tee seuraava toimenpide kaikille Paikallisille levyille ========== Lataa CCleaner ja asenna se: Avaa "Options", sieltä "Language" ja valitse "Suomi (Finnish)" Avaa "Virheet" kohta, paina "Etsi rekisterin virheitä", paina "Korjaa valitut rekisterin virheet..". Paina "Kyllä", kun ohjelma kysyy "Haluatko varmuuskopioida muutokset rekisteriin", tallenna tiedosto esim. työpöydälle. Avaa "Puhdistaja", paina "Tutki" ja tämän jälkeen "Aja Ccleaner". Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti. ========== Jos sinulla ei ole tätä java versiota (6.2): Vanha java saastuttaa helposti koneesi! Javan päivitys ja välimuistin tyhjennys: 1. Klikkaa Käynnistä -> Ohjauspaneeli ja tupla-klikkaa Lisää tai poista sovellus Ohjauspaneelissa. 2. Etsi listasta kaikki entiset Java versiosi. (J2SE Runtime Environment.... ) Niissä pitäisi olla seuraava kuva vieressä: 3. Valitse kaikki entiset Java versiosi ja valitse Poista. 4. Asenna uusin Java päivitys seuraavasta linkistä.. 5. Käynnistä kone uudelleen asennuksen jälkeen: http://java.sun.com/javase/downloads/index.jsp tai http://www.filehippo.com/download_java_runtime/ Rullaa alas kohteeseen Java Runtime Environment (JRE) 6u2 Paina Download Ruksaa Accept, ota offline installation, tallenna vaikka työpöydälle ja asenna se. 6. Käynnistyksen jälkeen, mene takaisin Ohjauspaneeliin ja avaa Java asetuksesi (Muita Ohjauspaneelin asetuksia -> Java kahvikuppi). 7. General Settings -osion alla, vedä liukusäädintä (Disk Space) pienemmälle, ja klikkaa Delete Files -nappia. (Jotkut javapohjaiset ohjelmat saattavat tarvita enemmän levytilaa. Jos huomaat säädön pienentämisen jälkeen koneessa hitautta, siirrä liukusäädintä isommalle). 8. Varmista että kaikki kaksi valintaa ovat rastitettuja: *Applications and Applets *Trace and Log Files Ja paina OK -nappia 9. Klikkaa OK "Temporary Files Settings" -ikkunassasi. 10. Klikkaa OK jättääksesi Java asetusikkunasi. ========== Lataa Deckard's System Scanner Työpöydällesi. Huomioi: Sinulla tulee olla Järjestelmänvalvojan oikeudet ajaaksesi ohjelman. [*]Sulje kaikki avoimet ikkunat ja ohjelmat. [*]Tupla Klikkaa Dss.exe tiedostoa ajaaksesi ohjelman, seuraa ohjeita. [*]Kun Scannaus on valmis 2 textitiedostoa pitäisi avautua, Main.txt ja extra.txt [*]Näppäile Kopioi ( CTRL+A -> CTRL + C ) ja liitä ( CTRL + V ) [*]kopioi ja liitä Extra.txt & Main.txt sisältö seuraavaan vastaukseesi. Myös AVG as raportti
Jep, otti aikaa, varsinkin kun tuo AVG skannasi vajaat 5 tuntia(1.3 miljoonaa tiedostoa). Raporttia ei tallentanut, vaikka asetukset olivat kuten ohjeessa ja suoritin toimeenpiteet lopussa, löydetyille tiedostoille, jotka olivat: -Trojan.small -Backdoor.bifrose.aas -PSWTool.win32.Pwdump2 -PSWTool.win32.Pwdump3 Nuo ovat nyt karanteenissa(tai siis pari .rar:ia poistettu joissa nuo oli) Mutta tässä nyt tuo Deckard Main: Deckard's System Scanner v20070708.52 Run by Rami on 2007-07-09 at 21:17:08 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Restore Point. -- Last 5 Restore Point(s) -- 12: 2007-07-09 18:17:13 UTC - RP1014 - Deckard's System Scanner Restore Point 11: 2007-07-09 13:08:04 UTC - RP1013 - Installed Java(TM) 6 Update 2 10: 2007-07-09 12:59:42 UTC - RP1012 - Removed J2SE Runtime Environment 5.0 Update 6 9: 2007-07-08 23:07:22 UTC - RP1011 - Software Distribution Service 3.0 8: 2007-07-08 16:36:28 UTC - RP1010 - Windows Defender Checkpoint -- First Restore Point -- 1: 2007-07-03 22:58:01 UTC - RP1003 - Järjestelmän tarkistuspiste Backed up registry hives. Performed disk cleanup. -- HijackThis (run as Rami.exe) ------------------------------------------------ Logfile of HijackThis v1.99.1 Scan saved at 21:17:49, on 9.7.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\FSGK32.EXE C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE C:\Program Files\PCI Latency Tool 3\LtcyCfgSvc.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMB32.EXE C:\WINDOWS\system32\oodag.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FCH32.EXE C:\WINDOWS\system32\UAService7.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsqh.exe C:\Program Files\Elisa Tietoturvapalvelu\Common\FAMEH32.EXE C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsaua.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fssm32.exe C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsus.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe C:\WINDOWS\CTHELPER.EXE C:\Program Files\Logitech\MouseWare\system\em_exec.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\fsguidll.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\NVTray\NVTray.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsav32.exe C:\Documents and Settings\Rami\Työpöytä\dss.exe D:\PROGRA~1\HIJACK~1\Rami.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pelit.fi/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Toimittaja Elisa Internet R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.fi;;localhost;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FlashGet\jccatch.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [News Service] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [LtcyCfgApply] "D:\Ohjelmia\Pikkuohjeolmia\LtcyCfg2\LtcyCfg.exe" /a O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\RunOnce: [MRUBlaster] C:\Program Files\MRU-Blaster\indexcleaner.exe -COOKIES O4 - HKCU\..\Run: [NVTray] C:\Program Files\NVTray\NVTray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: MRU-Blaster Silent Clean.lnk = C:\Program Files\MRU-Blaster\mrublaster.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O8 - Extra context menu item: Lataa FlashGetillä - C:\PROGRA~1\FlashGet\jc_link.htm O8 - Extra context menu item: Lataa kaikki FlashGetillä - C:\PROGRA~1\FlashGet\jc_all.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\npjpi160_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\npjpi160_02.dll O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Tuki - {36B44728-CBA8-49CB-872C-1A3374B99541} - http://tuki.elisa.net/ (file missing) (HKCU) O9 - Extra button: Palvelut - {C290947C-C497-4AFB-B865-84094F5D20FA} - http://service.kolumbus.fi/ (file missing) (HKCU) O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O10 - Unknown file in Winsock LSP: c:\program files\elisa tietoturvapalvelu\fsps\program\fslsp.dll O11 - Options group: [INTERNATIONAL] International* O14 - IERESET.INF: START_PAGE_URL=http://elisa.net/ O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FSAUA\program\fsaua.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: PCI Latency Tool Service (LtcyCfgSvc) - Unknown owner - C:\Program Files\PCI Latency Tool 3\LtcyCfgSvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2007.SP1\Win32\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2007.SP1\RpcSandraSrv.exe O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\WINDOWS\system32\sfrem01.exe O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe -- HijackThis Fixed Entries (D:\PROGRA~1\HIJACK~1\backups\) -------------------- backup-20050828-193538-809 O8 - Extra context menu item: &Search - http://ka.bar.need2find.com/KA/menusearch.html?p=KA backup-20070709-154336-453 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = backup-20070709-154336-536 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = -- File Associations ----------------------------------------------------------- All associations okay. -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R0 giveio - c:\windows\system32\giveio.sys R0 prohlp02 (StarForce Protection Helper Driver v2) - c:\windows\system32\drivers\prohlp02.sys <Not Verified; Protection Technology; StarForce Protection System> R0 prosync1 (StarForce Protection Synchronization Driver v1) - c:\windows\system32\drivers\prosync1.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology (StarForce); SF FrontLine> R0 sfhlp01 (StarForce Protection Helper Driver) - c:\windows\system32\drivers\sfhlp01.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfsync02 (StarForce Protection Synchronization Driver (version 2.x)) - c:\windows\system32\drivers\sfsync02.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfsync03 (StarForce Protection Synchronization Driver (version 3.x)) - c:\windows\system32\drivers\sfsync03.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfsync04 (StarForce Protection Synchronization Driver (version 4.x)) - c:\windows\system32\drivers\sfsync04.sys <Not Verified; Protection Technology (StarForce); SF FrontLine> R0 sfvfs02 (StarForce Protection VFS Driver (version 2.x)) - c:\windows\system32\drivers\sfvfs02.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sisidex - c:\windows\system32\drivers\sisidex.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver> R0 speedfan - c:\windows\system32\speedfan.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver> R1 ATITool (ATITool Overclocking Utility) - c:\windows\system32\drivers\atitool.sys <Not Verified; ; Low-Level Driver> R1 papycpu2 - c:\windows\system32\drivers\papycpu2.sys R1 papyjoy - c:\windows\system32\drivers\papyjoy.sys R1 prodrv06 (StarForce Protection Environment Driver v6) - c:\windows\system32\drivers\prodrv06.sys <Not Verified; Protection Technology; StarForce Protection System> R1 SCDEmu - c:\windows\system32\drivers\scdemu.sys <Not Verified; PowerISO Computing, Inc.; scdemu> R2 EIO - c:\windows\system32\drivers\eio.sys <Not Verified; ASUSTeK Computer Inc.; ASUS Kernel Mode Driver for NT> R3 chdrvr01 (CH Control Manager Driver 1) - c:\windows\system32\drivers\chdrvr01.sys <Not Verified; CH Products; CH Products Control Manager> R3 chdrvr02 (CH Control Manager Driver 2) - c:\windows\system32\drivers\chdrvr02.sys <Not Verified; CH Products; CH Products Control Manager> R3 chdrvr03 (CH Control Manager Driver 3) - c:\windows\system32\drivers\chdrvr03.sys <Not Verified; CH Products; CH Products Control Manager> R3 LtcyCfgWDM (PCI Latency Tool Driver Service) - c:\windows\system32\drivers\ltcycfgwdm.sys <Not Verified; ; PCI Latency Tool> R3 Pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine> S1 amdtools (AMD Special Tools Driver) - c:\windows\system32\drivers\amdtools.sys (file missing) S3 cmuda (C-Media WDM Audio Interface) - c:\windows\system32\drivers\cmuda.sys (file missing) S3 ENTECH - c:\windows\system32\drivers\entech.sys <Not Verified; EnTech Taiwan; PowerStrip> S3 gsplittm - c:\docume~1\rami\locals~1\temp\gsplittm.sys (file missing) S3 imhidusb (Immersion's HID USB Driver) - c:\windows\system32\drivers\imhidusb.sys <Not Verified; Immersion Corporation; Immersion's TouchSense Gaming Software> S3 papycpu - c:\windows\system32\drivers\papycpu.sys S3 RivaTuner32 - c:\program files\rivatuner v2.0 rc 16\rivatuner32.sys (file missing) S3 RivaTunerEx - d:\program files\rivatuner v2.0 rc 15.5\rivatunerex.sys (file missing) S3 RTCore - c:\program files\rightmark3dsound\rtcore.sys (file missing) S3 sony_ssm.sys - c:\docume~1\rami\locals~1\temp\sony_ssm.sys (file missing) S3 STEAMDVR - d:\program files\valve\steam\bin\x86\steamdvr.sys (file missing) S3 WFsys (WinFox Control I/O Driver) - c:\windows\system32\drivers\wfsys.sys <Not Verified; Leadtek Research Inc.; WinFox Control I/O Driver> S3 YMIDUSB (YAMAHA Corporation USB MIDI Driver) - c:\windows\system32\drivers\ymidusb.sys <Not Verified; YAMAHA Corporation; Windows (R) 2002 DDK driver> -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- R2 LtcyCfgSvc (PCI Latency Tool Service) - c:\program files\pci latency tool 3\ltcycfgsvc.exe <Not Verified; ; PCI Latency Tool> R2 UserAccess7 (SecuROM User Access Service (V7)) - c:\windows\system32\uaservice7.exe <Not Verified; Sony DADC Austria AG.; > S2 RichVideo (Cyberlink RichVideo Service(CRVS)) - "c:\program files\cyberlink\shared files\richvideo.exe" <Not Verified; ; RichVideo Module> -- Scheduled Tasks ------------------------------------------------------------- 2007-07-09 21:13:05 330 --ah----- C:\WINDOWS\Tasks\MP Scheduled Scan.job -- Files created between 2007-06-09 and 2007-07-09 ----------------------------- 2007-07-09 16:08:05 0 d-------- C:\Program Files\Common Files\Java 2007-07-09 15:48:26 0 d-------- C:\Documents and Settings\Rami\Application Data\Grisoft 2007-07-09 15:47:54 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft 2007-07-09 04:15:41 0 dr-h----- C:\Documents and Settings\Rami\Recent 2007-07-06 11:14:58 0 d-------- C:\Documents and Settings\All Users\Application Data\vsosdk 2007-07-05 15:22:01 0 d-------- C:\Documents and Settings\All Users\Application Data\fssg 2007-07-05 03:29:04 0 d-------- C:\Program Files\Common Files\KORG 2007-07-05 03:29:03 0 d-------- C:\Documents and Settings\All Users\Application Data\KORG 2007-07-04 09:06:48 47360 --a------ C:\WINDOWS\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine> 2007-07-04 09:06:48 47360 --a------ C:\Documents and Settings\Rami\Application Data\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine> 2007-07-04 09:06:47 217127 --a------ C:\WINDOWS\system32\drv43260.dll <Not Verified; RealNetworks, Inc.; RealVideo 9 (32-bit)> 2007-07-04 09:06:47 208935 --a------ C:\WINDOWS\system32\drv33260.dll <Not Verified; RealNetworks, Inc.; RealVideo 8 (32-bit)> 2007-07-04 09:06:47 176165 --a------ C:\WINDOWS\system32\drv23260.dll <Not Verified; RealNetworks, Inc.; RealVideo G2 (32-bit)> 2007-07-04 09:06:47 0 d-------- C:\Documents and Settings\Rami\Application Data\Vso 2007-07-04 09:06:46 0 d-------- C:\Program Files\vso 2007-07-03 05:42:45 184191 --a------ C:\WINDOWS\Mclaren F1 Challenge Uninstaller.exe 2007-06-23 09:56:20 0 d-------- C:\movies 2007-06-11 22:46:45 0 d-------- C:\WINDOWS\SxsCaPendDel -- Find3M Report --------------------------------------------------------------- 2007-07-09 16:08:25 0 d-------- C:\Program Files\Java 2007-07-09 14:26:39 0 d-------- C:\Program Files\Prime95 2007-07-09 03:43:40 0 d-------- C:\Documents and Settings\Rami\Application Data\foobar2000 2007-07-09 01:58:22 1896 --a------ C:\WINDOWS\system32\tmp.reg 2007-07-09 00:43:51 53248 --a------ C:\WINDOWS\system32\ZLib.dll <Not Verified; ; ZLib.DLL> 2007-07-08 03:59:18 0 d-------- C:\Documents and Settings\Rami\Application Data\Adobe 2007-07-08 03:25:06 86 ---h----- C:\WINDOWS\dsez5281.dat 2007-07-08 03:22:26 0 d-------- C:\Program Files\SpeedFan 2007-07-05 15:25:26 0 d-------- C:\Program Files\Elisa Tietoturvapalvelu 2007-07-05 15:23:24 382624 --a------ C:\WINDOWS\system32\perfh00B.dat 2007-07-05 15:23:24 78806 --a------ C:\WINDOWS\system32\perfc00B.dat 2007-07-04 09:07:05 34 --a------ C:\Documents and Settings\Rami\Application Data\pcouffin.log 2007-07-04 09:06:48 1144 --a------ C:\Documents and Settings\Rami\Application Data\pcouffin.inf 2007-07-04 09:06:48 7887 --a------ C:\Documents and Settings\Rami\Application Data\pcouffin.cat 2007-07-04 01:25:13 0 d-------- C:\Program Files\FlashGet 2007-06-14 19:01:04 409600 --a------ C:\WINDOWS\system32\wrap_oal.dll <Not Verified; Creative Labs; Creative Labs OpenAL32> 2007-06-14 19:01:04 114688 --a------ C:\WINDOWS\system32\OpenAL32.dll <Not Verified; Portions (C) Creative Labs Inc. and NVIDIA Corp.; Standard OpenAL(TM) Library> 2007-05-28 20:57:14 0 d-------- C:\Documents and Settings\Rami\Application Data\SopCast 2007-05-19 02:24:26 0 d-------- C:\Documents and Settings\Rami\Application Data\CyberLink 2007-05-19 02:20:23 0 d-------- C:\Program Files\Cyberlink 2007-05-19 02:20:07 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-05-18 01:43:16 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard 2007-05-18 01:26:06 0 d-------- C:\Program Files\HD Tune 2007-05-15 22:26:49 0 d-------- C:\Program Files\Common Files\merlin 2007-05-07 23:20:34 14 --a------ C:\WINDOWS\system32\SysEngineDrive1.sys 2007-04-26 12:37:00 1019904 --a------ C:\WINDOWS\system32\nvwimg.dll 2007-04-26 12:37:00 1703936 --a------ C:\WINDOWS\system32\nvwdmcpl.dll 2007-04-26 12:37:00 1018764 --a------ C:\WINDOWS\system32\nvucode.bin 2007-04-26 12:37:00 466944 --a------ C:\WINDOWS\system32\nvshell.dll 2007-04-26 12:37:00 286720 --a------ C:\WINDOWS\system32\nvnt4cpl.dll 2007-04-26 12:37:00 1626112 --a------ C:\WINDOWS\system32\nwiz.exe 2007-04-26 12:37:00 1474560 --a------ C:\WINDOWS\system32\nview.dll 2007-04-26 12:37:00 1339392 --a------ C:\WINDOWS\system32\nvdspsch.exe 2007-04-26 12:37:00 442368 --a------ C:\WINDOWS\system32\nvappbar.exe 2007-04-26 12:37:00 425984 --a------ C:\WINDOWS\system32\keystone.exe 2007-04-16 00:12:40 32 --a------ C:\WINDOWS\go -- Registry Dump --------------------------------------------------------------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} C:\PROGRA~1\FlashGet\jccatch.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe" "F-Secure Manager"="\"C:\\Program Files\\Elisa Tietoturvapalvelu\\Common\\FSM32.EXE\" /splash" "F-Secure TNB"="\"C:\\Program Files\\Elisa Tietoturvapalvelu\\FSGUI\\TNBUtil.exe\" /CHECKALL /WAITFORSW" "Logitech Utility"="Logi_MwX.Exe" "News Service"="\"C:\\Program Files\\Elisa Tietoturvapalvelu\\FSGUI\\ispnews.exe\"" "LtcyCfgApply"="\"D:\\Ohjelmia\\Pikkuohjeolmia\\LtcyCfg2\\LtcyCfg.exe\" /a" "CTHelper"="CTHELPER.EXE" "CTxfiHlp"="CTXFIHLP.EXE" "Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide" "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup" "nwiz"="nwiz.exe /install" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit" "SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Steam"="" "NVTray"="C:\\Program Files\\NVTray\\NVTray.exe" "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce] "MRUBlaster"="C:\\Program Files\\MRU-Blaster\\indexcleaner.exe -COOKIES" [HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce] "SetDefaultMIDI"="MIDIDEF.EXE /s:'Creative SoundFont Synthesizer' /w:'SB Audigy'" [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"=dword:00000000 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableRegistryTools"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa Authentication Packages REG_MULTI_SZ msv1_0\0\0 Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0 Notification Packages REG_MULTI_SZ scecli\0\0 HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0 -- End of Deckard's System Scanner: finished at 2007-07-09 at 21:18:31 --------- Ja extra: Deckard's System Scanner v20070708.52 Extra logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft Windows XP Home Edition (build 2600) SP 2.0 Architecture: X86; Language: Other (040B) - see http://preview.tinyurl.com/mhhp6 CPU 0: Intel(R) Core(TM)2 CPU 6600 @ 2.40GHz CPU 1: Intel(R) Core(TM)2 CPU 6600 @ 2.40GHz Percentage of Memory in Use: 42% Physical Memory (total/avail): 1023.23 MiB / 587.98 MiB Pagefile Memory (total/avail): 2976.46 MiB / 2604.49 MiB Virtual Memory (total/avail): 2047.88 MiB / 1960.07 MiB C: is Fixed (NTFS) - 19.53 GiB total, 6.43 GiB free. D: is Fixed (NTFS) - 166.77 GiB total, 16.49 GiB free. E: is CDROM (No Media) F: is Fixed (NTFS) - 129.37 GiB total, 35.89 GiB free. G: is Fixed (NTFS) - 103.51 GiB total, 19.66 GiB free. -- Security Center ------------------------------------------------------------- AUOptions is set to notify before install. Windows Internal Firewall is disabled. FirstRunDisabled is set. FW: Elisa Tietoturvapalvelu 7.00 v7.00 (F-Secure Corporation) AV: Elisa Tietoturvapalvelu 7.00 v7.00 (F-Secure Corporation) [HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabledxpsp2res.dll,-22019" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabledxpsp3res.dll,-20000" [HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabledxpsp2res.dll,-22019" "D:\\Space Empires IV Gold Demo\\Se4.exe"="D:\\Space Empires IV Gold Demo\\Se4.exe:*isabled:Space Empires IV" "C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe:*:Enabled:backWeb-8876480" "D:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"="D:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe:*:Enabled:Battlefield 2" "D:\\Program Files\\Electronic Arts\\Battlefield 2142 Demo\\BF2142.exe"="D:\\Program Files\\Electronic Arts\\Battlefield 2142 Demo\\BF2142.exe:*:Enabled:Battlefield 2" "D:\\Program Files\\Sierra\\FEAR\\FEAR.exe"="D:\\Program Files\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR" "D:\\Program Files\\Sierra\\FEAR\\FEARMP.exe"="D:\\Program Files\\Sierra\\FEAR\\FEARMP.exe:*:Enabled:FEAR" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabledxpsp3res.dll,-20000" "C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes" -- Environment Variables ------------------------------------------------------- ALLUSERSPROFILE=C:\Documents and Settings\All Users APPDATA=C:\Documents and Settings\Rami\Application Data CLASSPATH=.;C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip CommonProgramFiles=C:\Program Files\Common Files COMPUTERNAME=RAIKKU1 ComSpec=C:\WINDOWS\system32\cmd.exe FP_NO_HOST_CHECK=NO HOMEDRIVE=C: HOMEPATH=\Documents and Settings\Rami LOGONSERVER=\\RAIKKU1 NUMBER_OF_PROCESSORS=2 OS=Windows_NT Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;D:\Program Files\ESTsoft\ALZip\;C:\Program Files\Common Files\Adobe\AGL;C:\Program Files\QuickTime Alternative\QTSystem\;D:\Program Files\ESTsoft\ALZip\ PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH PROCESSOR_ARCHITECTURE=x86 PROCESSOR_IDENTIFIER=x86 Family 6 Model 15 Stepping 6, GenuineIntel PROCESSOR_LEVEL=6 PROCESSOR_REVISION=0f06 ProgramFiles=C:\Program Files PROMPT=$P$G QTJAVA=C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\WINDOWS TEMP=C:\DOCUME~1\Rami\LOCALS~1\Temp TMP=C:\DOCUME~1\Rami\LOCALS~1\Temp USERDOMAIN=RAIKKU1 USERNAME=Rami USERPROFILE=C:\Documents and Settings\Rami windir=C:\WINDOWS -- User Profiles --------------------------------------------------------------- Rami (admin) Järjestelmänvalvoja (admin) -- Add/Remove Programs --------------------------------------------------------- --> "C:\Program Files\Elisa Tietoturvapalvelu\fsuninst.exe" /UninstRegKey:"News Service" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware Scanner" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Automatic Update Agent" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DAAS" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Diagnostics" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure E-mail Scanning" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FWES" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Help" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Internet Shield" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Pegasus Engine" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Protocol Scanner" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB" --> "C:\Program Files\Elisa Tietoturvapalvelu\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall" --> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL --> C:\WINDOWS\UNNeroVision.exe /UNINSTALL --> C:\WINDOWS\UNNMP.exe /UNINSTALL --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf 1.0 --> "D:\GTR2\GameData\Locations\Norisring\unins000.exe" 3DMark03 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF35F637-72B9-43BE-A281-06EB2854393A}\Setup.exe" -l0x9 3DMark05 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2DF7B278-D3B6-40A4-B25C-0E7149F439EA}\setup.exe" -l0x9 -removeonly 3DMark06 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}\setup.exe" -l0x9 -removeonly 7-Zip 4.42 --> "C:\Program Files\7-Zip\Uninstall.exe" Ad-Aware SE Personal --> D:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE D:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG Adobe Acrobat 5.0 --> C:\WINDOWS\ISUN040B.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll" Adobe Bridge 1.0 --> MsiExec.exe /I{B74D4E10-6884-0000-0000-000000000103} Adobe Common File Installer --> MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39} Adobe Help Center 1.0 --> MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001} Adobe Photoshop CS2 --> msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D} Adobe Reader 6.0.1 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A00000000001} Adobe Stock Photos 1.0 --> MsiExec.exe /I{EE0D5DCD-2B97-4473-98DF-E93C0BD92F7A} AF-RF1 --> D:\F1C-lisut\Uninstal AF-RF1.exe AGEIA PhysX v2.3.3 --> "C:\Program Files\AGEIA Technologies\uninstall.exe" Allok RM RMVB to AVI MPEG DVD Converter 1.1.2 --> "G:\Program Files\Allok RM RMVB to AVI MPEG DVD Converter\unins000.exe" AquaMark3 --> D:\PROGRA~1\AQUAMA~1\UNWISE.EXE D:\PROGRA~1\AQUAMA~1\INSTALL.LOG ARCA REMAX Mod --> C:\WINDOWS\iun6002ev.exe "D:\Papyrus2\NASCAR Racing 2003 SeasonMODS\arca\irunin.ini" ArmA Uninstall --> G:\Program files\Bohemia Interactive\ArmA\UnInstall.exe ATITool Overclocking Utility --> "C:\Program Files\ATITool\Uninstall.exe" AusH6 2005 V8 SuperCar Challenge Mod v1.0 --> D:\Program Files\rFactor\Uninstal.exe AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe AviSynth 2.5 --> "D:\Program Files\AviSynth 2.5\Uninstall.exe" Babylon 5 I've Found Her (remove only) --> "D:\Program Files\IFH\uninstall.exe" Battle of Britain II --> D:\BATTLE~1\UNWISE.EXE D:\BATTLE~1\tempwp.log Battlefield 2(TM) --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\setup.exe" -l0x9 -removeonly Battlefield 2: Special Forces --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{50D4CB89-AF34-4978-96DC-C3034062E901}\setup.exe" -l0x9 -removeonly Battlefield 2142 Demo --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FD347316-609E-4149-983C-84B40338D38A}\setup.exe" -l0x9 -removeonly BenVista PhotoZoom Pro 2.2.6 --> F:\Program Files\PhotoZoom Pro 2\Uninstall.exe Beyond the Red Line --> G:/BtRL/Demo/uninstall.exe Blaze DVD Player 6.52 --> "G:\Program Files\BlazeVideo\BlazeDVD\unins000.exe" BMW CSL Challenge 2007 --> D:\GTR2\GameData\Uninstal.exe BMW E90 MOD v1.1 FINAL --> "D:\GTR2\unins001.exe" BMW M3 E46 Street Racing v1.0 --> "D:\Program Files\rFactor\unins001.exe" BMW WTCC MOD v1.1 --> "D:\GTR\unins000.exe" British GT Mod v1 --> "D:\GTR2\unins000.exe" BSPlayer --> "D:\Program Files\Webteh\BSplayer\uninstall.exe" Call of Duty --> D:\PROGRA~1\Uninstall\Unwise.exe /u D:\PROGRA~1\Uninstall\Install.log Call of Duty - United Offensive --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{A662E280-64A8-4CF5-8407-13D0808602B3} Call of Duty(R) 2 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{D0A05794-48C2-4424-A15A-9F20FCFDD374} /l2057 CCleaner (remove only) --> "F:\Program Files\CCleaner\uninst.exe" CH Control Manager --> "C:\Program Files\CH Products\Control Manager\unins000.exe" Chrome --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{5281E5CC-70B1-4B1B-8731-B8533C9E5EEE} /Z"UNINSTALL" Classic Trans Am Racing --> D:\Program Files\F1C99-02-6\Uninstal.exe Cobra 11 - Nitro --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{29F0D899-9614-4EB3-92A8-C9117FE9E405} /l1033 Collab --> F:\Program Files\Image-Line\Collab\uninstall.exe Conversion Pack CTDP Seasons --> "D:\Program Files\F1 Challenge 99-02-1\SETUP.3\setup.exe" /u Conversion Pack CTDP Seasons --> "D:\Program Files\F1 Challenge 99-02-1\SETUP\setup.exe" /u ConvertXtoDVD 2.2.2.256 --> "F:\Program Files\VSO\ConvertXtoDVD\unins000.exe" COT Prototype Mod --> D:\Program Files\rFactor\Uninstal.exe COT Prototype Mod Beta Version 2.0 --> D:\Program Files\rFactor\Uninstal.exe Creative Audio Console --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 /remove CTDP Formula One 2005 v1.2 --> "D:\Program Files\rFactor\ModData\CTDP\CTDP05Uninstall Information\unins000.exe" Data Lifeguard Tools --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2C0A655C-61E7-428A-8ED2-23A3D20E7DD2}\Setup.exe" dBpowerAMP Music Converter --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpowerAMP Music Converter.dat DH Driver Cleaner Professional Edition --> D:\Program Files\Driver Cleaner Pro\Uninst.exe dMC Power Pack --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dMC Power Pack.dat Doom 3 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{584267B8-0BB0-4D18-9FFA-726576619E9A} /l2057 /x DOOM 3: Resurrection of Evil --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{04347DFD-87B6-4E30-B14D-5DF2888AD8F5} /l2057 DreamStation DXi2 --> C:\WINDOWS\DSDXIRMV.EXE C:\PROGRAM FILES\CAKEWALK\SHARED DXI\AUDIO SIMULATION\DREAMSTATION DXI2 DTM 2003 Mod by Team-RMG --> D:\Program Files\F1C99-02-6\DTM03_Track_Pack_uninstall.exe DTM Mod 2002 Track Pack V 1.0 --> D:\Program Files\F1C99-02-6\Uninstal.exe DTM Mod 2002 V1.0 --> D:\Program Files\F1C99-02-6\Uninstal.exe DVD Decrypter (Remove Only) --> "C:\Program Files\DVD Decrypter\uninstall.exe" DVD Shrink 3.2 --> "D:\Program Files\DVD Shrink\unins000.exe" DVDREasy 0.5.6 --> MsiExec.exe /I{A6292920-ED24-4860-A78D-6309483EE88B} EA SPORTS online 2006 --> D:\Program Files\EA SPORTS\EA SPORTS online\EASOUNInstaller.exe EasyCleaner --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F5346614-B7C4-4E94-826A-E2363155233D}\setup.exe" -l0x9 EAX Unified --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Creative\EAX Unified\Uninst.isu" Elisa Tietoturvapalvelu --> "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\PostInstall.exe" /tUnInstall ENSUSHIYA -SUSHI PROFESSIONAL RACING- Version 0.1 --> "D:\Program Files\rFactor\SUSHIYA_HEITEN\unins000.exe" EVEREST Home Edition v2.20 --> "C:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe" F1 2004 MOD by CTDP v1.1 --> "D:\Program Files\F1 Challenge 99-02-1\SETUP.1\setup.exe" /u F1 2005 MOD by CTDP BETA1 --> "D:\Program Files\F1 Challenge 99-02-1\SETUP.4\setup.exe" /u F1 2005 pour GTR2 v2.03 --> D:\GTR2\Uninstal mod F1 2005 pour GTR2.exe F1 2007 pour GTR2 v1.15 --> D:\GTR2\Uninstal mod F1 2007 pour GTR2.exe F1 Challenge 99-02 --> D:\Program Files\F1 Challenge 99-02-1\EAUninstall.exe F1C Stupid Tool Beta 0.3 --> MsiExec.exe /I{49EF1AED-DBAE-4BAA-8554-351323A4996E} Falcon 4.0: Allied Force --> MsiExec.exe /I{7A65E382-1843-4B46-861B-1BECB8354911} Far Cry --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{D6DBDC2A-E72C-4284-B6AD-6B3B61B4DABC} /l2057 FEAR --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2B653229-9854-4989-B780-D978F5F13EAB}\setup.exe" -l0x9 /zU -removeonly First Eagles: The Great Air War 1918 --> F:\Program Files\ThirdWire\WWI\uninst.exe FL Studio 6 --> F:\Program Files\Image-Line\FL Studio 6\uninstall.exe FlashGet(JetCar) --> C:\PROGRA~1\FlashGet\UNWISE.EXE C:\PROGRA~1\FlashGet\INSTALL.LOG Flashpoint uninstall --> C:\Program Files\Codemasters\UnInstall.exe FlatOut2 --> MsiExec.exe /I{C884B05A-F5D9-4AE4-9D84-E6BD9F6E7890} foobar2000 v0.9.4.1 --> "D:\Program Files\foobar2000\uninstall.exe" Formula Series One v1.0 --> "D:\Program Files\rfactor\unins003.exe" Fraps --> "D:\Fraps\uninstall.exe" FSone 2006 1.1 --> "D:\Program Files\rFactor\unins004.exe" FSone 2006 v1.2 --> "D:\Program Files\rFactor\unins005.exe" Future Pinball --> "D:\Program Files\Future Pinball\unins000.exe" G-Racer --> "D:\Program Files\G-Racer\unins000.exe" Gamedata --> D:\GTR\uninstall.exe GameSpy Arcade --> C:\PROGRA~1\GAMESP~1\UNWISE.EXE C:\PROGRA~1\GAMESP~1\INSTALL.LOG GEM+ 2 & iGOR --> C:\WINDOWS\IsUninst.exe -f"D:\Program Files\GPLSecrets\Uninst.isu" GHG-ASA Latemodels --> D:\Program Files\rFactor\Uninstal.exe GIMPshop .1 beta --> D:\Program Files\GIMPshop\uninst.exe Google Earth Pro --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{48EE6C79-1CE2-4CE8-B511-F2140B6781D6}\setup.exe" -l0x9 -removeonly Google Earth Pro version 3.0.XXXX (beta) Patch Files --> "F:\Program Files\Google\Google Earth Pro\unins000.exe" GP4 Tweaker Uninstaller --> "D:\Program Files\GP4 Tweaker\uninstall.exe" GPL 2004 DEMO --> D:\PROGRA~1\GPL200~2\Setup.exe /remove GPLAIM --> MsiExec.exe /I{4E332467-18B6-4B49-ACE8-A1087607A138} GPxPatch (remove only) --> "D:\Program Files\Infogrames\Grand Prix 4\uninst-gpxpatch.exe" Grand Prix 4 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "D:\Program Files\Infogrames\Grand Prix 4\setup.exe" Grand Prix Legends --> C:\WINDOWS\IsUninst.exe -fD:\SIERRA\gpl\Uninst.isu GT Legends 1.0.0.0 --> "D:\GTL\Support\unins000.exe" GTA San Andreas --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe" -l0x9 -removeonly GTL- Alfa GTA -New Sounds v1.0 --> D:\GTL\AlfaGTA New Sounds v1.0 -Uninstaller.exe GTL Abarth new sounds by DucFreak --> D:\GTL\Abarth New Sounds - Uninstaller.exe GTL_ Lotus Elan - New Sounds - v1.0 --> D:\GTL\Elan_New-Sounds v1.0 _ Uninstaller.exe GTR --> D:\GTR\Support\unins000.exe GTR - King of Ovals Expansion Pack --> "D:\GTR\Support\unins001.exe" GTR 2 1.0.0.0 --> "D:\GTR2\Support\unins000.exe" Guitar Guru Version 1.2.4 --> "D:\Program Files\GuitarGuru\unins000.exe" Guitar Pro 5.1 --> "F:\Program Files\Guitar Pro 5\unins000.exe" Half-Life(R) 2 --> MsiExec.exe /I{D45EC259-4A19-4656-B588-C2C360DD18EA} HD Tune 2.53 --> "C:\Program Files\HD Tune\unins000.exe" HFR Maserati Trofeo --> D:\GTR\Uninstal_TrofeoMod.exe HijackThis 1.99.1 --> D:\Installereita\HijackThis.exe /uninstall Hitman Blood Money --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A804B134-F03D-4EFD-9BC0-DCD257AA1B22}\setup.exe" -l0x9 -removeonly Hotfix-päivitys Windows XP:lle (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe" iDT FunCup modification for rFactor --> D:\Program Files\rFactor\Uninstal Fun Cup.exe IL-2 Shturmovik Stab (1946) --> F:\Program Files\IL-2 Shturmovik Stab\Setup.exe -uninstall IL-2 Sturmovik 1946 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{79438F1E-DEC3-443D-9DCD-FECE2D68C605} /l1033 IL-2 Sturmovik: Forgotten Battles --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8DF712DA-D325-4FD0-8DE8-E2D78FC3CDC3} /l1033 IL-2 Sturmovik: Forgotten Battles AEP --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{D2BBEABB-A8DF-4451-A7C4-63C87B31E325} /l1033 IRRIDUX'S PRE-FIA '69 High Wing CARSET --> D:\Program Files\GPL 2004 DEMO\Uninstal.exe iTunes --> MsiExec.exe /I{446DBFFA-4088-48E3-8932-74316BA4CAE4} Japanese Carrera Cup --> MsiExec.exe /X{B2FAE3DB-5228-42AF-972F-2EBEC23C29EB} Java(TM) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020} Korg Legacy Collection v1.1.10 --> F:\PROGRA~1\KORGLE~1\UNWISE.EXE F:\PROGRA~1\KORGLE~1\INSTALL.LOG Kremlin --> C:\PROGRA~1\MACH5S~1\Kremlin\UNWISE.EXE C:\PROGRA~1\MACH5S~1\Kremlin\INSTALL.LOG Kremlin 2.21 --> "D:\Program Files\Mach5 Software\Kremlin2\Remove.exe" /U:"D:\Program Files\Mach5 Software\Kremlin2\Remove.log" Language pack for Ad-Aware SE --> D:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\UNWISE.EXE D:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\INSTALL.LOG Leon Supercopa 2006 ver.1.10 --> "D:\Program Files\rFactor\unins000.exe" Lock On - Flaming Cliffs --> "D:\Program Files\Ubisoft\Eagle Dynamics\Lock On\uninstall.exe" Lock On: Modern Air Combat --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E90DCEE9-DC27-401B-A7AC-B0AFF5B34E4D}\setup.exe" -l0x9 Logitech Desktop Messenger --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\setup.exe" -l0xb UNINSTALL Logitech G15 Keyboard Software 1.03 --> MsiExec.exe /X{A514B037-31E3-4158-A1AB-AEE1952D0184} Logitech Gaming Software --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13AA6556-BA96-4468-A8B4-1AD4A75AD5A0}\setup.exe" -l0xb -removeonly Logitech MouseWare 9.80 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5809E7CF-4DCF-11D4-9875-00105ACE7734}\setup.exe" -l0xb -l000b UNINSTALL MadOnion.com/3DMark2001 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6130E589-D759-43AC-8265-28EB0A711446}\Setup.exe" uninstall -uninst Mafia --> D:\program files\Mafia\patch.exe Mafia Game --> C:\WINDOWS\system32\MafiaSetup.exe Magic DVD Ripper V4.2.4 --> "F:\Program Files\MagicDVDRipper\unins000.exe" MAGIX music maker 11 demo (US) --> F:\MAGIX\mm11_e-version\instslct.exe MagnyCours_TR v1.3 --> "D:\Papyrus2\NASCAR Racing 2003 SeasonMODS\unins000.exe" Mclaren F1 Challenge --> C:\WINDOWS\Mclaren F1 Challenge Uninstaller.exe McLaren F1 Challenge v1.0 --> "D:\Program Files\rFactor\unins000.exe" Microsoft Flight Simulator 2004 A Century of Flight --> "D:\Program Files\Microsoft Games\Flight Simulator 9\UNINSTAL.EXE" /runtemp /addremove Microsoft Flight Simulator X --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{9527A496-5DF9-412A-ADC7-168BA5379CA6} Microsoft Flight Simulator X --> MsiExec.exe /X{9527A496-5DF9-412A-ADC7-168BA5379CA6} Microsoft Flight Simulator X Service Pack 1 --> C:\WINDOWS\system32\msiexec.exe /qb /l*vx "%TEMP%\FlightSimPatchUninstall.log" /uninstall {92635E02-4C29-4A8F-AA82-7B8B95C823D3} /package {9527A496-5DF9-412A-ADC7-168BA5379CA6} Microsoft User-Mode Driver Framework Feature Pack 1.0.0 (Pre-Release 5348) --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe" Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Milwaukee Mile --> D:\Program Files\F1C99-02-8\Uninstal.exe Mod 24H Le Mans 1.0 --> "D:\GTR\uninstall.exe" Mod Clio V6 Championships --> MsiExec.exe /X{F0DDB409-C19D-49A7-94CF-79702655C27C} Mod DTM 2002 v2.0 version 2.0 --> "D:\GTR2\uninstall.exe" Mod DTM 2002 v2.00 --> "D:\GTR\uninstall.exe" Mod DTM v3.0 --> MsiExec.exe /X{D29DB286-AC6F-4EAF-BD74-3E68B53B1576} Mod DTM v3.5 --> MsiExec.exe /X{4A091FC6-6DFE-4CB0-BF45-D90AB2353226} Mod GT 70's --> MsiExec.exe /X{ED958CA9-245B-474F-BD27-E10CAA10217B} Mod GT Legends --> MsiExec.exe /X{1AAD2DA4-60BB-4BC9-8BE5-F40532E2A52D} Mod Marcos Chevrolet v 1.0 --> "D:\GTR2\uninstall.exe" Mod Marcos LM600 --> MsiExec.exe /X{8BDDBEE6-6AF9-4489-AB6B-AEC0C7FB5473} Mod Nissan Micra 1.0 --> "D:\GTR\uninstall.exe" Mod Nissan Micra Cup v1.1 --> "D:\GTR2\uninstall.exe" Mod Prototypes 2000-2004 SCC pour GTR2 v2.11 --> D:\GTR2\Uninstal_Mod_Prototypes_2000-2004_SCC_pour_GTR2_v2.11.exe Monterrey --> D:\GTR\Uninstal.exe Mozilla Firefox (2.0.0.2) --> C:\PROGRA~1\Mozilla Firefox\uninstall\helper.exe Mozilla Firefox (2.0.0.4) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe MRU-Blaster v1.5 (Database 3/28/2004) --> "C:\Program Files\MRU-Blaster\unins000.exe" NASCAR® Racing 2003 Season --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ACC2E059-40E9-4464-B18D-C9BDD9A02CED}\SETUP.exe" -l0x9 -uninst Need for Speed™ Carbon --> F:\Program Files\Electronic Arts\Need for Speed Carbon\EAUninstall.exe Nero Suite --> C:\Program Files\Common Files\Ahead\Uninstall\Setup.exe /uninstall nHancer --> MsiExec.exe /I{B8482720-96E3-4826-9576-9F7C4985DF60} NIBMIS World GT Carpackv2.1.0.0 --> "C:\Program Files\Common Files\NIBMIS\unins000.exe" Norisring for GTL 1.11 --> "D:\GTL\GameData\Locations\Norisring\unins000.exe" Novation V-Station v1.20-H2O --> F:\PROGRA~1\VSTPLU~1\V-STAT~1\V-STAT~1\UNWISE.EXE F:\PROGRA~1\VSTPLU~1\V-STAT~1\V-STAT~1\INSTALL.LOG NR2005 Mod --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C0B5B6C1-7403-4C30-9183-19C41924CEFC}\setup.exe" -l0x9 -removeonly NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUI NVIDIA Photoshop Plug-ins --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23F79416-CAD1-41BF-99A3-040F6C814AAA}\Setup.exe" -l0x9 NVIDIA Tray Tools v1.0.4.8 --> "C:\Program Files\NVTray\unins000.exe" O&O Defrag Professional Edition --> MsiExec.exe /I{53480370-6CA2-47EC-BC05-02B4B9271C31} OpenAL --> "C:\Program Files\OpenAL\oalinst.exe" /U Operation Flashpoint Demo uninstall --> D:\Codemasters\OperationFlashpointDemo\uninstall.exe Operation Flashpoint MP Demo uninstall --> D:\Program Files\Codemasters\OperationFlashpointMPDemo\uninstall.exe OWR Mod For Papyrus NR2003 Season --> D:\Papyrus2\NASCAR Racing 2003 SeasonMODS\OWOR_Uninstal.exe PCI Latency Tool 3 --> MsiExec.exe /I{506AD2FA-A52D-4FFB-903E-79DAE1E71D39} PCMark04 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4718EA71-CED3-498D-8FA9-34CB830AF2D8}\Setup.exe" -l0x9 PCMark05 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C104E56-A441-429D-A609-D8A46EB92EA1}\setup.exe" -l0x9 -removeonly PF+FB+AEP --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{51F24145-A833-4BD5-AA38-AFC5268928E5} /l1033 Phillip Island for GTR1 - Tantra --> D:\GTR\GAMEDATA\LOCATIONS\Uninstal.exe PhotoFiltre --> "C:\Program Files\PhotoFiltre\Uninst.exe" PhotoFiltre Studio --> "F:\Program Files\PhotoFiltre Studio\Uninst.exe" PhotoTrue 2.3 --> "C:\Program Files\PhotoTrue\unins000.exe" PoE:2 1.1.5.0 --> D:\Program Files\EA GAMES\Battlefield 2\mods\poe2\uninstall.exe Päivitys Windows XP:lle (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB896727) --> "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB929338) --> "C:\WINDOWS\$NtUninstallKB929338$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe" Päivitys Windows XP:lle (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe" Porsche Carrera Cup 2003 v1.0 --> D:\Program Files\F1C99-02-12\pccuninst.exe Porsche Carrera Cup 2006 v1.1 - by GRF --> D:\GTR2\PCC06Uninstaller.exe Porsche Carrera Cup Asia --> D:\Program Files\rFactor\uninstall.exe Power Video Converter 1.5.41 --> "G:\Power Video Converter\unins000.exe" PowerDVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall PowerISO --> "G:\Program Files\PowerISO\uninstall.exe" Prime95 --> "C:\Program Files\Prime95\Uninstall.exe" "C:\Program Files\Prime95\install.log" Privacy Eraser Pro --> "G:\Program Files\PrivacyEraser Computing\Privacy Eraser Pro\unins000.exe" Project Reality v0.5.0.6 --> "D:\Program Files\EA GAMES\Battlefield 2\unins000.exe" Project Wildfire Trans Am Series for Nascar Racing 2003 --> C:\WINDOWS\unvise32.exe D:\Papyrus2\NASCAR Racing 2003 SeasonMODS\uninstal.log ProxySwitcher Standard --> "C:\Program Files\Proxy Switcher Standard\unins000.exe" PSC Add On - Great Britain Carrera Cup --> MsiExec.exe /X{99DBE955-9390-41C4-ADA2-6191D1AAF5BF} Quake 4 Multiplayer Demo 1.4.2 --> G:\Program Files\id Software\Quake 4 Multiplayer Demo\uninst.exe QuickTime --> MsiExec.exe /I{50D8FFDD-90CD-4859-841F-AA1961C7767A} QuickTime Alternative 1.76 --> "C:\Program Files\QuickTime Alternative\unins000.exe" Race - The WTCC Game --> "C:\Program Files\Race - The WTCC Game\unins000.exe" Race Caterham --> "D:\Program Files\Valve\Steam\steam.exe" steam://uninstall/4290 Rally Trophy --> MsiExec.exe /I{25022D68-3AF9-49D7-8B15-B54BEE0A2ED0} RBR Pribram (remove only) --> "F:\Richard Burns Rally\RBRPribram1Uninst.exe" Real Alternative 1.48 --> "D:\Program Files\Real Alternative\unins000.exe" Redline GTP --> C:\WINDOWS\unvise32.exe d:\papyrus\nascar racing 2003 season\uninstal.log RedOrchestra --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{69997863-7239-4E5C-833C-EAC2F0116EB3}\setup.exe" -l0x9 -removeonly ReFX Vanguard VSTi v1.03 Retail --> F:\PROGRA~1\VSTPLU~1\ReFX\Vanguard\UNWISE.EXE F:\PROGRA~1\VSTPLU~1\ReFX\Vanguard\INSTALL.LOG Renault SuperClio 2006 --> D:\Program Files\Rfactor\Uninstal.exe rF1 GP Challenge 2006 --> D:\Program Files\rFactor\rF1GPremove.exe rFactor (remove only) --> "D:\Program Files\rFactor\Uninstall.exe" rFactor Data Acquisition Plugin --> C:\WINDOWS\rFactor Data Acquisition Plugin Uninstaller.exe RgcAudio z3ta Plus DXi VSTi v1.41 --> F:\PROGRA~1\rgcaudio\Z3TA_~1\UNWISE.EXE F:\PROGRA~1\rgcaudio\Z3TA_~1\INSTALL.LOG Richard Burns Rally --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{92C7D009-A464-4948-A980-7A3E28CB2F49}\setup.exe" -l0x9 RightMark 3DSound 2.2 --> C:\PROGRA~1\RIGHTM~1\UNWISE.EXE C:\PROGRA~1\RIGHTM~1\INSTALL.LOG RightMark Audio Analyzer 5.5 --> C:\PROGRA~1\RMAA55\UNWISE.EXE C:\PROGRA~1\RMAA55\INSTALL.LOG Rover Mini Challenge --> D:\Program Files\F1C99-02-8\Uninstal.exe Satellite TV for PC Elite 4.8.8.0 --> C:\WINDOWS\uninstall\Satellite TV for PC Elite\setup.exe SBS Sprint Car Racing v1.1 --> MsiExec.exe /I{AB9FCF19-7944-4AF5-A278-CC4C5570A795} SBS_Sprints_v1.5 --> MsiExec.exe /I{33AEA6BA-1E83-4BF6-ADE3-C1C14A6A1638} SBS_Sprints_v1.6_Update --> MsiExec.exe /I{4BDC69C2-1620-487F-A4AF-318135066B71} Scarface: The World is Yours --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{28142407-ACAD-4ECD-A6B6-9FA8471F6062} SCC 1.0 --> MsiExec.exe /I{F2BB3AF2-0391-4E2C-9D6F-8C1288C4734F} Season 1995 MOD for F1 2002 --> "D:\F1C-lisut\Modeja\SETUP\setup.exe" /u SeaTools for Windows --> MsiExec.exe /I{98613C99-1399-416C-A07C-1EE1C585D872} Shelby Daytona - New Sounds v1.0 --> D:\GTL\Daytona New Sounds - Uninstaller.exe Sierra Utilities --> C:\Program Files\Sierra On-Line\sutil32.exe uninstall Silent Hunter III --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{9720C029-0C2C-4D1E-9DE0-E89971C4C8C7} /l1033 Sim Racing Dev. rFactor CTS --> C:\WINDOWS\unvise32.exe d:\program files\rfactor1070\rfactor\Support\SRD_CTS_Uninstal.log SiSoftware Sandra Lite 2007.SP1 (Win64/32/CE) --> "C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2007.SP1\unins000.exe" SONAR 6 Producer Edition --> "F:\Program Files\Cakewalk\SONAR 6 Producer Edition\unins000.exe" SopCast 1.1.2 --> G:\Program Files\SopCast\uninst.exe Source SDK Base --> "D:\Program Files\Valve\Steam\steam.exe" steam://uninstall/215 SpeedFan (remove only) --> "C:\Program Files\SpeedFan\uninstall.exe" Spybot - Search & Destroy 1.4 --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe" Steam(TM) --> MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3} Stegano - English Install --> C:\WINDOWS\st6unst.exe -n "D:\Program Files\Stegano - English Install\ST6UNST.LOG" Stock Car Evolution 0.97 --> MsiExec.exe /I{EC30DAED-B5F3-4774-8244-745F2B6D799E} Streambox Vcr Suite 2 --> D:\StreamboxVcrSuite2\unins000.exe Suojauspäivitys Windows XP:lle (KB883939) --> "C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896422) --> "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896424) --> "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB896688) --> "C:\WINDOWS\$NtUninstallKB896688$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB899588) --> "C:\WINDOWS\$NtUninstallKB899588$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB903235) --> "C:\WINDOWS\$NtUninstallKB903235$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB905915) --> "C:\WINDOWS\$NtUninstallKB905915$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB911567) --> "C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB912812) --> "C:\WINDOWS\$NtUninstallKB912812$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB912919) --> "C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB913446) --> "C:\WINDOWS\$NtUninstallKB913446$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB916281) --> "C:\WINDOWS\$NtUninstallKB916281$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB917159) --> "C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB917422) --> "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB918899) --> "C:\WINDOWS\$NtUninstallKB918899$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB920214) --> "C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB921398) --> "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB921883) --> "C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB922616) --> "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB922760) --> "C:\WINDOWS\$NtUninstallKB922760$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB923694) --> "C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB923789) --> C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf Suojauspäivitys Windows XP:lle (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB925486) --> "C:\WINDOWS\$NtUninstallKB925486$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe" Suojauspäivitys Windows XP:lle (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe" TBP - Base 3.2 --> D:\Program Files\The Babylon Project\uninstall_base.exe TBP - Earth-Minbari War 2.0 --> D:\Program Files\The Babylon Project\uninstall_emw.exe TBP - Raider Wars 2.01 --> D:\Program Files\The Babylon Project\uninstall_rw.exe TC:Elite Test --> D:\PROGRA~1\WOLFEN~1\tcetest\uninst.exe TDU Save Protector --> G:\Program Files\TDU Save Protector\Uninstal.exe Test Drive Unlimited --> MsiExec.exe /X{C37A0BC1-52EE-4F97-8223-5CA9FC0357B0} Text-To-Speech-Runtime --> MsiExec.exe /X{7B3F0113-E63C-4D6D-AF19-111A3165CCA2} ThunderBolt 'Mania' - RELEASE v2.2 - P-47M-1 --> D:\Program Files\Microsoft Games\Flight Simulator 9\Uninstal_GY_P-47M.exe Total Video Converter 3.02 --> "G:\Program Files\Total Video Converter\unins000.exe" TrackMania Nations ESWC 0.1.7.5 --> "D:\Program Files\TrackMania Nations ESWC\unins000.exe" TrackPack v2 --> "D:\Program Files\F1 Challenge 99-02-1\SETUP.2\setup.exe" /u TVAnts 1.0 --> F:\PROGRA~1\TVAnts\UNWISE.EXE F:\PROGRA~1\TVAnts\INSTALL.LOG ubi.com --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AEDDF5A3-29CE-11D5-A8C2-000102246AAE}\Setup.exe" -l0x9 UNINSTALL-L0x9 -uninst UltimateDefrag --> F:\Program Files\DiskTrix\UltimateDefrag\Uninstall.EXE /u:"UltimateDefrag" Ultra DVD Creator 1.5.8 --> "D:\Program Files\Ultra DVD Creator\unins000.exe" unistallSpotter --> "F:\Einstein\SpotterUnistall\unins000.exe" Upgrade BMW M3 E46 Street Racing v1.1 --> "D:\Program Files\rFactor\unins002.exe" V8 Supercar Challenge --> MsiExec.exe /X{0E6BB6B1-72B3-4765-836C-A3A58AA542F4} V8Factor Season 2006 --> D:\Program Files\rFactor\V8Factor_Uninstall.exe WarRock --> D:\Program Files\WarRock\Uninstall.exe WD Diagnostics --> MsiExec.exe /X{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B} WDN4OAK+ --> C:\WINDOWS\uninst.exe -f"d:\program files\ajodemoja\DeIsL1.isu" -c"d:\program files\ajodemoja\_ISREG32.DLL" VIA Platform Device Manager --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169} VIA Rhine-Family Fast Ethernet Adapter --> Rundll32.exe vuins32.dll,vuins32Ex $Rhine $VIA VideoLAN VLC media player 0.8.4a --> C:\Program Files\VideoLAN\VLC\uninstall.exe Windows Defender --> MsiExec.exe /I{A06275F4-324B-4E85-95E6-87B2CD729401} Windows Defender Signatures --> MsiExec.exe /I{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C} Windows Media Encoder 9 Series --> msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} Windows Media Encoder 9 Series --> MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" WinRAR-pakkausohjelma --> C:\Program Files\WinRAR\uninstall.exe WinZip --> "D:\Program Files\WinZip\WINZIP32.EXE" /uninstall Virginia International Raceway for GTR --> D:\GTR\GAMEDATA\LOCATIONS\Uninstal.exe Wolfenstein - Enemy Territory --> D:\PROGRA~1\WOLFEN~1\Uninstall\Unwise.exe /u D:\PROGRA~1\WOLFEN~1\Uninstall\Install.log WTCC 156 GTA Mod Beta 2 --> D:\GTR2\Uninstal.exe X-race Oval Series Mod --> D:\Program Files\rFactor\Uninstal.exe X1 Ostfront Addon for FB+AEP+PF 1.1 --> MsiExec.exe /I{751FADFF-141C-4AF8-9809-E0B40407DC03} XTreme-G 160.02 XP 32 bit --> "C:\nVidia Forceware\XTreme-G 160.02 XP 32 bit\unins000.exe" XviD MPEG-4 Codec --> "C:\Program Files\XviD\UninstXviD.exe" -- End of Deckard's System Scanner: finished at 2007-07-09 at 21:18:31 ---------
Pysy puhtaana -> Tyhjennä järjestelmänpalautus Ohjeet Tyhjennä järjestelmänpalautuskansio ja luo uusi palautuspiste. Tämä puhdistaa palautuskansion mahdollisista haittaohjelmajäännöksistä. -> Käytä CCleaneria -> CCleaner Lataa ja asenna CCleaner. Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti. -> Asenna SpywareBlaster -> SpywareBlaster SpywareBlaster estää haittaohjelmia asentumasta koneellesi. Ei kuluta muistia! Opas saatavilla suomeksi! Nimimerkki Ad-Awaren opas -> Asenna MVPS Hosts tiedosto -> MVPS Hosts Estää koneesi yhteyden haitallisiin sivustoihin. Opas saatavilla suomeksi! Nimimerkki Axelin opas -> Vaihda selaimesi Firefoxiin -> Firefox Firefox on nopeampi, turvallisempi ja parempi selain kuin Internet Explorer. -> Pidä järjestelmäsi ajantasalla. -> Windows Update Vieraile Windows Updatessa säännöllisesti. -> Pidä palomuuri ja virustorjunta ajantasalla Päivitä ja skannaa koneesi säännöllisesti virustorjuntaohjelmallasi. ja hyvä myös escan http://koti.mbnet.fi/pattaya1/escanmwav.htm ->Pidä ohjelmistosi ajantasalla. -> Secunia Software Inspector Secunia Software Inspector tutkii sinun järjestälmäsi ja ohjelmistosi puuttuvien turvallisuuspäivityksien osalta. Tavallinen tutkinta kestää normaalisti 5-40 sekuntia, kun läpikotainen (thorough system inspection) voi kestää useita minuutteja. ->Seuraa säännöllisesti viestintäviraston tietoja uusista haavoittuvuuksista -> CERT-FI Jos tulevaisuudessa tulee haittaohjelmien kanssa ongelmia, älä epäröi laittaa Hijackthis-logia tarkistettavaksi!