kone hidas hjt-log 2

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by ekkoo, Dec 31, 2006.

  1. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    aiempi ketju suljettiin joten alotin uuden



    Logfile of HijackThis v1.99.1
    Scan saved at 17:00:08, on 31.12.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5730.0011)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\VanhaC\Program Files\WinZip\WZQKPICK.EXE
    c:\progra~1\intern~1\iexplore.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\pelejä\counter strike condition zero\Steam.exe
    C:\WINDOWS\system32\wisptis.exe
    C:\WINDOWS\system32\drwtsn32.exe
    C:\WINDOWS\system32\drwtsn32.exe
    C:\WINDOWS\system32\drwtsn32.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Hjt\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - H:\STARDO~1\STARDO~1\SDIEInt.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [EPSON Stylus DX4200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE /P26 "EPSON Stylus DX4200 Series" /O6 "USB001" /M "Stylus DX4200"
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Steam] "c:\pelejä\counter strike condition zero\steam.exe" -silent
    O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
    O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
    O4 - HKCU\..\Run: [Stupid Acid] C:\DOCUME~1\KESKIT~1\APPLIC~1\SECOND~1\bat itch browse.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Startup: PowerReg Scheduler.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: WinZip Quick Pick.lnk = C:\VanhaC\Program Files\WinZip\WZQKPICK.EXE
    O8 - Extra context menu item: Download with Star Downloader - H:\stardownload\Star Downloader\sdie.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Panda Pavkre (Pavkre) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\Pavkre.exe (file missing)
    O23 - Service: Panda PavProt (PavProt) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\PavProt.exe (file missing)
    O23 - Service: Panda Preventium+ Service (PREVSRV) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\prevsrv.exe (file missing)
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
     
  2. hilu

    hilu Member

    Joined:
    Jun 7, 2006
    Messages:
    81
    Likes Received:
    0
    Trophy Points:
    16
    poista lisää/poista sovelluksen kautta:

    messenger plus 3
    ------------------------------------------------------------------

    Lataa NoLop työpöydällesi yhdestä seuraavista linkeistä...
    Linkki 1
    Linkki 2
    Linkki 3
    [*]Sulje kaikki ohjelmat, koska tämä vaihe vaatii uudelleenkäynnistyksen
    [*]Tuplaklikkaa NoLop.exe ajaaksesi sen


    [*]Klikkaa nappulaa "Search and Destroy"
    <<Tietokoneesi skannataan saastuneiden tiedostojen osalta>>
    [*] Kun skannaus on valmis, sinua pyydetään käynnistämään kone uudestaan, jos infektio löytyy. Klikkaa OK
    [*] Klikkaa "REBOOT"-painiketta.
    [*] NoLopin pitäisi antaa viesti. Jos ei, tuplaklikkaa ohjelmaa ja se valmistuu. Lähetä C:\NoLop.log-tiedoston sisältö uuden HijackThis-lokin kera.
    -- Jos saat seuraavan virheen, "mscomctl.ocx or one of its dependencies are not correctly registered," lataa mscomctl.ocx ja tallenna se system32-hakemistoosi (yleensä c:\Windows\system32). Tämän jälkeen aja ohjelma uudestaan. --
    ---------------------------------------------------------------------

    Lataa AVG Anti-Spyware 7.5 ja tallenna ohjelma työpöydällesi:
    http://www.ewido.net/en/download/

    * Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa.
    * Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää.
    * Käynnistä AVG Anti-Spyware.
    * Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta.

    o Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa.

    * Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti.
    * Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine".
    * Sitten "Reports" valikon alta:

    o Laita täppi kohtaan "Automatically generate report after every scan"
    o Ota täppi pois kohdasta"Only if threats were found"

    * Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa
    * "Resident shield is", muuta tila active:sta inactive:ksi
    * Sulje ohjelma, ÄLÄ skannaa vielä.
    ----------------------------------------------------------------------

    piilotetut tiedostot ja kansiot näkyviin:

    käynnistä -> ohjauspaneeli -> kansion asetukset
    avaa näytä välilehti
    täppi kohtaan "näytä piilotetut tiedostot ja kansiot"
    klikkaa ok
    -----------------------------------------------------------------

    avaa hjt ja sulje kaikki muut ikkunat
    klikkaa do a system scan only
    merkkaa:

    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
    O4 - HKCU\..\Run: [Stupid Acid] C:\DOCUME~1\KESKIT~1\APPLIC~1\SECOND~1\bat itch browse.exe


    klikkaa fix checked
    --------------------------------------------------------------------

    avaa vikasietotilaan (pääset näpyttämällä f8:ia käynnistyksen yhteydessä)

    poista jos löytyy:

    C:\Program Files\MessengerPlus! 3
    C:\DOCUME~1\KESKIT~1\APPLIC~1\SECOND~1


    HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta.

    * Kun vikasietotilassa, käynnistä AVG Anti-Spyware.
    * Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan".
    * AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa.

    Kun skannaus on valmis:
    TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions"
    * Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta.
    * Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions"

    # Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta.
    # Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle.
    # Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestikejuusi.
    -----------------------------------------------------------------

    lähetä nämä:

    NoLop loki
    AVG:n raportti
    tuore hjt:n loki

    -----------------------------------------------------------------
    piilotetut takaisin piiloon:
    muuten samoin mutta täppi kohtaan:
    älä näytä piilotetuttuja tiedostoja ja kansiota

    --------------------------------------------------------------------
    Javan päivitys ja välimuistin tyhjennys


    1. Klikkaa Käynnistä > Ohjauspaneeli ja tupla-klikkaa Lisää tai poista sovellus Ohjauspaneelissa.
    2. Etsi listasta kaikki entiset Java versiosi. (J2SE Runtime Environment.... )
    Niissä pitäisi olla seuraava kuva vieressä:
    3. Valitse kaikki entiset Java versiosi ja valitse Poista.
    4. Asenna uusin Java päivitys seuraavasta linkistä..
    5. Käynnistä kone uudelleen asennuksen jälkeen:

    http://java.sun.com/javase/downloads/index.jsp

    6. Käynnistyksen jälkeen, mene takaisin Ohjauspaneeliin ja avaa Java asetuksesi (Muita Ohjauspaneelin asetuksia -> Java kahvikuppi).
    7. Temporary Internet Files -osion alla, klikkaa Delete Files nappia.
    8. Varmista että kaikki kolme valintaa ovat rastitettuja:

    Downloaded Applets
    Downloaded Applications
    Other Files

    9. Klikkaa OK "Delete Temporary Internet Files" -ikkunassasi.
    Huomaa: Tämä poistaa kaikki ladatut sovellukset ja appletit VÄLIMUISTISTA.
    10. Klikkaa OK jättääksesi Java asetusikkunasi.
     
    Last edited: Dec 31, 2006
  3. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    ---------------------------------------------------------
    AVG Anti-Spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 15:17:23 1.1.2007

    + Scan result:



    HKU\S-1-5-21-1606980848-299502267-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA0D26BD-9029-431A-86E0-83152D67828A} -> Adware.180Solutions : Cleaned with backup (quarantined).
    C:\VanhaC\WINDOWS\Temp\Adware\cd_install_329.exe/cd_clint.dll -> Adware.Cydoor : Cleaned with backup (quarantined).
    HKU\S-1-5-21-1606980848-299502267-725345543-1004\Software\Internet Security -> Adware.IntCodec : Cleaned with backup (quarantined).
    C:\VanhaC\WINDOWS\Temp\upd207.exe -> Adware.Look2Me : Cleaned with backup (quarantined).
    C:\VanhaC\WINDOWS\Temp\upd208.exe -> Adware.Look2Me : Cleaned with backup (quarantined).
    C:\VanhaC\tallessa\My Shared Folder\SaveInstWm.exe/Save.exe -> Adware.SaveNow : Cleaned with backup (quarantined).
    C:\VanhaC\tallessa\My Shared Folder\SaveInstWm.exe/SaveUninst.exe -> Adware.SaveNow : Cleaned with backup (quarantined).
    C:\VanhaC\tallessa\My Shared Folder\SaveInstWm.exe/Weather\Uninst.exe -> Adware.SaveNow : Cleaned with backup (quarantined).
    C:\VanhaC\tallessa\My Shared Folder\SaveInstWm.exe/Weather\Weather.exe -> Adware.SaveNow : Cleaned with backup (quarantined).
    C:\Documents and Settings\All Users\Application Data\Starware -> Adware.Starware : Cleaned with backup (quarantined).
    HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : Cleaned with backup (quarantined).
    HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : Cleaned with backup (quarantined).
    HKU\S-1-5-21-1606980848-299502267-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA356D79-679B-4B4C-8E49-5AF97014F4C1} -> Adware.Starware : Cleaned with backup (quarantined).
    HKU\S-1-5-21-1606980848-299502267-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D49E9D35-254C-4C6A-9D17-95018D228FF5} -> Adware.Starware : Cleaned with backup (quarantined).
    C:\VanhaC\Documents and Settings\All Users\Tiedostot\JDAmericanFarmer_Setup-dm.exe -> Adware.Trymedia : Cleaned with backup (quarantined).
    HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58F07DD3-924D-4141-BC74-299F523A95F1} -> Adware.WebDir : Cleaned with backup (quarantined).
    HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58F07DD3-924D-4141-BC74-299F523A95F1} -> Adware.WebDir : Cleaned with backup (quarantined).
    HKU\S-1-5-21-1606980848-299502267-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58F07DD3-924D-4141-BC74-299F523A95F1} -> Adware.WebDir : Cleaned with backup (quarantined).
    HKLM\SOFTWARE\WinAntiVirus Pro 2006 -> Adware.WinAntiVirus : Cleaned with backup (quarantined).
    C:\Program Files\Mozilla Firefox\plugins\npclntax.dll -> Adware.Zango : Cleaned with backup (quarantined).
    C:\VanhaC\WINDOWS\system32\EGCOMSERVICE2.dll -> Dialer.EGroup.b : Cleaned with backup (quarantined).
    C:\VanhaC\WINDOWS\staff.html -> Hijacker.Linker.j : Cleaned with backup (quarantined).
    C:\WINDOWS\system32\explorer32.exe -> Logger.Agent.pf : Cleaned with backup (quarantined).
    H:\pelejä\Atari deer hunter 2005\Deer Hunter 2005\DH2005nocd.exe -> Not-A-Virus.VirTool.Win32.AvSpoffer.a : Cleaned with backup (quarantined).
    :mozilla.480:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.481:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.482:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.483:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.484:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.485:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.486:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.487:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.488:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.489:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.490:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.491:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.492:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.493:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.494:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.495:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.496:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.497:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.498:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.499:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.500:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.501:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.502:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.503:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.504:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.560:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@aavalue[2].txt -> TrackingCookie.Aavalue : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@prizeamerica.aavalue[1].txt -> TrackingCookie.Aavalue : Cleaned.
    :mozilla.259:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.260:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.261:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.661:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.453:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.454:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.455:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.456:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.459:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.460:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.144:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.145:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.39:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.42:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.43:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.64:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.65:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.66:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.67:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.507:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
    :mozilla.896:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
    :mozilla.589:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned.
    :mozilla.198:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.202:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.204:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.209:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.199:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.200:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.201:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.203:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.207:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.208:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.669:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : Cleaned.
    :mozilla.401:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.404:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.405:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ads.com[1].txt -> TrackingCookie.Com : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@com[1].txt -> TrackingCookie.Com : Cleaned.
    :mozilla.470:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
    :mozilla.472:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
    :mozilla.473:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
    :mozilla.474:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned.
    :mozilla.85:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.218:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.219:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.220:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.221:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.222:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.223:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.103:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.104:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.106:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.107:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.108:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.109:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ads.gamershell[2].txt -> TrackingCookie.Gamershell : Cleaned.
    :mozilla.613:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.629:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.644:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.662:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.719:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.770:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.353:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.864:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.865:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.866:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.657:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ilead.itrack[1].txt -> TrackingCookie.Itrack : Cleaned.
    :mozilla.645:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned.
    :mozilla.840:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
    :mozilla.841:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
    :mozilla.813:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.814:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.815:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.950:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
    :mozilla.471:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
    :mozilla.692:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
    :mozilla.693:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
    :mozilla.338:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.339:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.340:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.895:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@data2.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@data3.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[2].txt -> TrackingCookie.Paypopup : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[3].txt -> TrackingCookie.Paypopup : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[4].txt -> TrackingCookie.Paypopup : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[5].txt -> TrackingCookie.Paypopup : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@paypopup[6].txt -> TrackingCookie.Paypopup : Cleaned.
    :mozilla.580:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.581:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.582:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ppms.popularix[2].txt -> TrackingCookie.Popularix : Cleaned.
    :mozilla.330:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.331:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.332:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ads.realcastmedia[2].txt -> TrackingCookie.Realcastmedia : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ads.realcastmedia[3].txt -> TrackingCookie.Realcastmedia : Cleaned.
    :mozilla.636:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.637:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.638:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.639:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.640:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.641:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.642:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.643:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned.
    :mozilla.264:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.333:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    :mozilla.334:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    :mozilla.335:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    :mozilla.336:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
    :mozilla.872:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.873:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.874:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.875:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.876:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.877:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.682:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@h.starware[1].txt -> TrackingCookie.Starware : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@try.starware[1].txt -> TrackingCookie.Starware : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@www.starware[1].txt -> TrackingCookie.Starware : Cleaned.
    :mozilla.282:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.283:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.284:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.285:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.286:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.287:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.288:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.289:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.290:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.291:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.292:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.293:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.294:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.295:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.296:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.297:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.298:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.299:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.300:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.301:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.302:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.303:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.304:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.305:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.306:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.307:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.308:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.309:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.310:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.311:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.312:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.313:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.314:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.315:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.316:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.317:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.318:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.319:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.320:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.321:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.322:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.323:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.324:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.325:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.326:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.327:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.328:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.329:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.205:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.206:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.133:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.134:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.135:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.136:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.137:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.105:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.522:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@a.tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@webstat[1].txt -> TrackingCookie.Web-stat : Cleaned.
    :mozilla.416:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@programs.wegcash[1].txt -> TrackingCookie.Wegcash : Cleaned.
    :mozilla.463:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@yadro[1].txt -> TrackingCookie.Yadro : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@yadro[2].txt -> TrackingCookie.Yadro : Cleaned.
    :mozilla.111:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.112:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.113:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.114:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.115:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.116:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.117:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.118:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.119:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.120:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.121:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
    C:\Documents and Settings\Keskitalo\Cookies\keskitalo@ad.yieldmanager[3].txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.673:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.674:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.675:C:\Documents and Settings\Keskitalo\Application Data\Mozilla\Firefox\Profiles\o85pvhgr.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    C:\VanhaC\Norman\Download\NVCF0071.ZIP/Data/Bin/Nipsvc.exe -> Trojan.Wow : Cleaned with backup (quarantined).
    C:\VanhaC\Norman\NVC\BIN\Nipsvc.exe -> Trojan.Wow : Cleaned with backup (quarantined).


    ::Report end







    NoLop! Log by Skate_Punk_21

    Fix running from: C:\Documents and Settings\Keskitalo\Työpöytä
    [1.1.2007]
    [12:20:33]

    ---Infection Files Found/Removed---
    NO INFECTION FILES FOUND - Cleaning Aborted.

    ---Listing AppData sub directories---

    C:\Documents and Settings\All Users\Application Data\Aceviewmapiplatform
    C:\Documents and Settings\All Users\Application Data\Adobe
    C:\Documents and Settings\All Users\Application Data\Apple Computer
    C:\Documents and Settings\All Users\Application Data\Messenger Plus!
    C:\Documents and Settings\All Users\Application Data\Microsoft
    C:\Documents and Settings\All Users\Application Data\Msn6
    C:\Documents and Settings\All Users\Application Data\Pc Suite
    C:\Documents and Settings\All Users\Application Data\Starware -- EMPTY Directory
    C:\Documents and Settings\All Users\Application Data\Trymedia
    C:\Documents and Settings\All Users\Application Data\Udl
    C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
    C:\Documents and Settings\Default User\Application Data\Microsoft
    C:\Documents and Settings\Keskitalo\Application Data\Adobe
    C:\Documents and Settings\Keskitalo\Application Data\Adobeum -- EMPTY Directory
    C:\Documents and Settings\Keskitalo\Application Data\Apple Computer
    C:\Documents and Settings\Keskitalo\Application Data\Datalayer
    C:\Documents and Settings\Keskitalo\Application Data\Epson
    C:\Documents and Settings\Keskitalo\Application Data\Fotowire
    C:\Documents and Settings\Keskitalo\Application Data\Fujifilm
    C:\Documents and Settings\Keskitalo\Application Data\Help -- EMPTY Directory
    C:\Documents and Settings\Keskitalo\Application Data\Identities
    C:\Documents and Settings\Keskitalo\Application Data\Intervideo
    C:\Documents and Settings\Keskitalo\Application Data\Lavasoft
    C:\Documents and Settings\Keskitalo\Application Data\Leadertech
    C:\Documents and Settings\Keskitalo\Application Data\Macromedia
    C:\Documents and Settings\Keskitalo\Application Data\Media Player Classic
    C:\Documents and Settings\Keskitalo\Application Data\Microsoft
    C:\Documents and Settings\Keskitalo\Application Data\Mozilla
    C:\Documents and Settings\Keskitalo\Application Data\Msn6
    C:\Documents and Settings\Keskitalo\Application Data\Nokia
    C:\Documents and Settings\Keskitalo\Application Data\Nokia Multimedia Player
    C:\Documents and Settings\Keskitalo\Application Data\Pc Suite
    C:\Documents and Settings\Keskitalo\Application Data\Second Copy Defy
    C:\Documents and Settings\Keskitalo\Application Data\Sun
    C:\Documents and Settings\Keskitalo\Application Data\Template
    C:\Documents and Settings\Keskitalo\Application Data\Thq
    C:\Documents and Settings\Keskitalo\Application Data\Ventrilo
    C:\Documents and Settings\Keskitalo\Application Data\{27abead9-b7c4-4994-891f-48f5f48861fa}
    C:\Documents and Settings\Localservice\Application Data\Microsoft
    C:\Documents and Settings\Networkservice\Application Data\Microsoft




    Logfile of HijackThis v1.99.1
    Scan saved at 16:02:37, on 1.1.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5730.0011)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Java\jre1.6.0\bin\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\pelejä\counter strike condition zero\steam.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Hjt\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - H:\STARDO~1\STARDO~1\SDIEInt.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [EPSON Stylus DX4200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE /P26 "EPSON Stylus DX4200 Series" /O6 "USB001" /M "Stylus DX4200"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Steam] "c:\pelejä\counter strike condition zero\steam.exe" -silent
    O8 - Extra context menu item: Download with Star Downloader - H:\stardownload\Star Downloader\sdie.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Panda Pavkre (Pavkre) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\Pavkre.exe (file missing)
    O23 - Service: Panda PavProt (PavProt) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\PavProt.exe (file missing)
    O23 - Service: Panda Preventium+ Service (PREVSRV) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\prevsrv.exe (file missing)
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe

     
  4. hilu

    hilu Member

    Joined:
    Jun 7, 2006
    Messages:
    81
    Likes Received:
    0
    Trophy Points:
    16
    piilotetut tiedostot näkyviin yllä olevan ohjeen mukaan

    käynnistä vikasietotilaan

    poista, jos löytyy:

    C:\Documents and Settings\All Users\Application Data\Aceviewmapiplatform
    C:\Documents and Settings\All Users\Application Data\Starware
    C:\Documents and Settings\All Users\Application Data\Messenger Plus!
    C:\Documents and Settings\Keskitalo\Application Data\Second Copy Defy

    käynnistä normaalisti

    piilotetut takaisin piiloon

    skannaa Nolop:lla uudestaan ja lähetä loki

    en huomannut että olisi palomuuria koneellasi -> hakemaan
    esim. tästä
     
    Last edited: Jan 1, 2007
  5. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    NoLop! Log by Skate_Punk_21

    Fix running from: C:\Documents and Settings\Keskitalo\Työpöytä
    [1.1.2007]
    [18:20:36]

    ---Infection Files Found/Removed---
    NO INFECTION FILES FOUND - Cleaning Aborted.

    ---Listing AppData sub directories---

    C:\Documents and Settings\All Users\Application Data\Adobe
    C:\Documents and Settings\All Users\Application Data\Apple Computer
    C:\Documents and Settings\All Users\Application Data\Microsoft
    C:\Documents and Settings\All Users\Application Data\Msn6
    C:\Documents and Settings\All Users\Application Data\Pc Suite
    C:\Documents and Settings\All Users\Application Data\Trymedia
    C:\Documents and Settings\All Users\Application Data\Udl
    C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
    C:\Documents and Settings\Default User\Application Data\Microsoft
    C:\Documents and Settings\Keskitalo\Application Data\Adobe
    C:\Documents and Settings\Keskitalo\Application Data\Adobeum -- EMPTY Directory
    C:\Documents and Settings\Keskitalo\Application Data\Apple Computer
    C:\Documents and Settings\Keskitalo\Application Data\Datalayer
    C:\Documents and Settings\Keskitalo\Application Data\Epson
    C:\Documents and Settings\Keskitalo\Application Data\Fotowire
    C:\Documents and Settings\Keskitalo\Application Data\Fujifilm
    C:\Documents and Settings\Keskitalo\Application Data\Help -- EMPTY Directory
    C:\Documents and Settings\Keskitalo\Application Data\Identities
    C:\Documents and Settings\Keskitalo\Application Data\Intervideo
    C:\Documents and Settings\Keskitalo\Application Data\Lavasoft
    C:\Documents and Settings\Keskitalo\Application Data\Leadertech
    C:\Documents and Settings\Keskitalo\Application Data\Macromedia
    C:\Documents and Settings\Keskitalo\Application Data\Media Player Classic
    C:\Documents and Settings\Keskitalo\Application Data\Microsoft
    C:\Documents and Settings\Keskitalo\Application Data\Mozilla
    C:\Documents and Settings\Keskitalo\Application Data\Msn6
    C:\Documents and Settings\Keskitalo\Application Data\Nokia
    C:\Documents and Settings\Keskitalo\Application Data\Nokia Multimedia Player
    C:\Documents and Settings\Keskitalo\Application Data\Pc Suite
    C:\Documents and Settings\Keskitalo\Application Data\Sun
    C:\Documents and Settings\Keskitalo\Application Data\Template
    C:\Documents and Settings\Keskitalo\Application Data\Thq
    C:\Documents and Settings\Keskitalo\Application Data\Ventrilo
    C:\Documents and Settings\Keskitalo\Application Data\{27abead9-b7c4-4994-891f-48f5f48861fa}
    C:\Documents and Settings\Localservice\Application Data\Microsoft
    C:\Documents and Settings\Networkservice\Application Data\Microsoft
     
  6. hilu

    hilu Member

    Joined:
    Jun 7, 2006
    Messages:
    81
    Likes Received:
    0
    Trophy Points:
    16
    lähetä vielä tuore hjt:n loki :)
     
  7. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 21:10:43, on 1.1.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5730.0011)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Java\jre1.6.0\bin\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\pelejä\counter strike condition zero\steam.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Hjt\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - H:\STARDO~1\STARDO~1\SDIEInt.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [EPSON Stylus DX4200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE /P26 "EPSON Stylus DX4200 Series" /O6 "USB001" /M "Stylus DX4200"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Steam] "c:\pelejä\counter strike condition zero\steam.exe" -silent
    O8 - Extra context menu item: Download with Star Downloader - H:\stardownload\Star Downloader\sdie.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Panda Pavkre (Pavkre) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\Pavkre.exe (file missing)
    O23 - Service: Panda PavProt (PavProt) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\PavProt.exe (file missing)
    O23 - Service: Panda Preventium+ Service (PREVSRV) - Unknown owner - C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]\prevsrv.exe (file missing)
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
     
  8. hilu

    hilu Member

    Joined:
    Jun 7, 2006
    Messages:
    81
    Likes Received:
    0
    Trophy Points:
    16
    ylimääräistä näkyy vielä:

    Avaa Muistio ja kopioi seuraavat rivit siihen:

    @echo off
    sc stop Pavkre
    sc delete Pavkre
    sc stop PavProt
    sc delete PavProt
    sc stop PREVSRV
    sc delete PREVSRV


    Sitten documentti tallennetaan työpöydälle nimellä Poisto.bat ja tiedostotyypiksi: All Files.
    Sitten ajetaan työpöydällä oleva Poisto.bat-tiedosto.

    käynnistä vikasietotilaan ja poista, jos löytyy:

    C:\Documents and Settings\Keskitalo\Työpöytä\Downloads\Panda_Titanium_Antivirus_2005_v4.00.00_multilanguage_retail_by_Torrent-Hispania[www.torrent-hispania.com]

    käynnistä normaalisti

    hae PALOMUURI

    lähetä uusi hjt:n loki
     
  9. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    palomuuri ei ruvennu hyväksymään internettiä. Sipa2 ei oo kotona, ku iten en ymmärrä noista mitää ;)
     
  10. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 20:35:08, on 8.1.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5730.0011)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Java\jre1.6.0\bin\jusched.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\pelejä\counter strike condition zero\steam.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Hjt\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - H:\STARDO~1\STARDO~1\SDIEInt.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [EPSON Stylus DX4200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAEE.EXE /P26 "EPSON Stylus DX4200 Series" /O6 "USB001" /M "Stylus DX4200"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
    O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Steam] "c:\pelejä\counter strike condition zero\steam.exe" -silent
    O8 - Extra context menu item: Download with Star Downloader - H:\stardownload\Star Downloader\sdie.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

     
  11. ekkoo

    ekkoo Member

    Joined:
    Dec 21, 2006
    Messages:
    21
    Likes Received:
    0
    Trophy Points:
    11
    voisko joku vastata ois kiire tän kanssa.
     
  12. hilu

    hilu Member

    Joined:
    Jun 7, 2006
    Messages:
    81
    Likes Received:
    0
    Trophy Points:
    16
    sori viivästys ;)

    puhdas on :D
     

Share This Page