Kone hidastelee ja mainoksia ponnahtelee

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by Elotar, Dec 21, 2012.

  1. Elotar

    Elotar Regular member

    Joined:
    Mar 1, 2005
    Messages:
    103
    Likes Received:
    0
    Trophy Points:
    26
    Mikä vikana kun kone on hidastunut ja esim. Googlen hakusivun mukana ponnahtaa jotain "olet voittanut yms" ilmoituksia.

    Ihmettelen tämän logilistan pituutta, eli onkohan tässä vähän turhaa tavaraa mukana? Mitä kannattaisi ja voisi poistaa tilaa viemästä. Olen putsannut konetta säännöllisesti CC-cleanerilla.



    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 15:31:48, on 21.12.2012
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v9.00 (9.00.8112.16457)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Common Files\LightScribe

    \LightScribeControlPanel.exe
    C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
    C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files (x86)\Microsoft Office

    \Office12\ONENOTEM.EXE
    C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive

    \VCDDaemon.exe
    C:\Program Files (x86)\Hp\HP Software Update

    \hpwuschd2.exe
    C:\Program Files\Alwil Software\Avast5\AvastUI.exe
    C:\Program Files (x86)\Common Files\Java\Java Update

    \jusched.exe
    C:\Program Files (x86)\Ask.com\Updater\Updater.exe
    C:\Program Files (x86)\AVG Secure Search\vprot.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin

    \hpqbam08.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
    C:\Program Files (x86)\Hewlett-Packard\HP Advisor

    \HPAdvisor.exe
    C:\Program Files (x86)\Trend Micro\HiJackThis

    \HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer

    \Main,Default_Page_URL = http://g.uk.msn.com/HPALL/23
    R1 - HKCU\Software\Microsoft\Internet Explorer

    \Main,Search Page = http://go.microsoft.com/fwlink/?

    LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start

    Page = http://websearch.mocaflix.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer

    \Main,Default_Page_URL = http://g.uk.msn.com/HPALL/23
    R1 - HKLM\Software\Microsoft\Internet Explorer

    \Main,Default_Search_URL =

    http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer

    \Main,Search Page = http://go.microsoft.com/fwlink/?

    LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start

    Page = http://websearch.mocaflix.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer

    \Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer

    \Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local

    Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion

    \Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer

    \Toolbar,LinksFolderName =
    R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41

    -4FD3-8538-502F5495E5FC} - C:\Program Files

    (x86)\Ask.com\GenericAskToolbar.dll
    F2 - REG:system.ini: UserInit=userinit.exe,
    O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-

    768834316C61} - C:\Program Files (x86)\HP\Digital Imaging

    \Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: SaveAs - {17456EE0-9AC2-7748-85C1-

    7525D712B848} - C:\ProgramData\SaveAs

    \50c45c2d380ce.ocx
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-

    FA578C2EBDC3} - C:\Program Files (x86)\Common Files

    \Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-

    462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java

    \jre6\bin\ssv.dll
    O2 - BHO: Windows Live ID -kirjautumisapuohjelma -

    {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program

    Files (x86)\Common Files\Microsoft Shared\Windows Live

    \WindowsLiveLogin.dll
    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-

    B163-73684A933233} - C:\Program Files (x86)\AVG Secure

    Search\13.2.0.5\AVG Secure Search_toolbar.dll
    O2 - BHO: Windows Live Messenger Companion Helper -

    {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program

    Files (x86)\Windows Live\Companion\companioncore.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-

    8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype

    \Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-

    03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar

    \7.1.391.0\BingExt.dll
    O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-

    4243D8127440} - C:\Program Files (x86)\Ask.com

    \GenericAskToolbar.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-

    435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java

    \jre6\bin\jp2ssv.dll
    O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-

    BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital

    Imaging\Smart Web Printing\hpswp_BHO.dll
    O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-

    8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar

    \7.1.391.0\BingExt.dll" (file missing)
    O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-

    4243D8127440} - C:\Program Files (x86)\Ask.com

    \GenericAskToolbar.dll
    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-

    B163-73684A933233} - C:\Program Files (x86)\AVG Secure

    Search\13.2.0.5\AVG Secure Search_toolbar.dll
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI

    Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files

    (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:

    \Program Files (x86)\Adobe\Reader 9.0\Reader

    \Reader_sl.exe"
    O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files

    (x86)\EasyBits For Kids\ezRecover.exe
    O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files

    (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files

    (x86)\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software

    \Avast5\avastUI.exe" /nogui
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files

    (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files

    (x86)\Ask.com\Updater\Updater.exe"
    O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG

    Secure Search\vprot.exe"
    O4 - HKLM\..\Run: [ROC_roc_ssl_v12] "C:\Program Files

    (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT

    /CMPID=roc_ssl_v12
    O4 - HKCU\..\Run: [HPAdvisorDock] C:\Program Files

    (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
    O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program

    Files (x86)\Common Files\LightScribe

    \LightScribeControlPanel.exe -hidden
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files

    (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Mikki Hiiri

    \AppData\Local\Facebook\Update\FacebookUpdate.exe" /c

    /nocrashserver
    O4 - Startup: OneNote 2007 -näyttöleikkeet ja Launcher.lnk =

    C:\Program Files (x86)\Microsoft Office

    \Office12\ONENOTEM.EXE
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:

    \Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel -

    res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: @C:\Program Files (x86)\Windows Live

    \Companion\companionlang.dll,-600 - {0000036B-C524-4050

    -81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live

    \Companion\companioncore.dll
    O9 - Extra button: @C:\Program Files (x86)\Windows Live

    \Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-

    8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files

    (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows

    Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 -

    {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program

    Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-

    8081-5663EE0C6C49} - C:

    \PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-

    7350-4f3c-8081-5663EE0C6C49} - C:

    \PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-

    479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype

    \Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-

    3C9C571A8263} - C:

    \PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    O9 - Extra button: Näytä tai piilota HP Smart Web Printing -

    {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program

    Files (x86)\HP\Digital Imaging\Smart Web Printing

    \hpswp_BHO.dll
    O10 - Unknown file in Winsock LSP: c:\program files

    (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files

    (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated

    graphics
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}

    (QuickTime Plugin Control) -

    http://appldnld.apple.com.edgesuite.net/content.info.apple.co

    m/QuickTime/qtactivex/qtplugin.cab
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501}

    (Checkers Class) -

    http://messenger.zone.msn.com/binary/msgrchkr.cab56986.c

    ab
    O16 - DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68}

    (UploadListView Class) -

    http://picasaweb.google.com/s/v/69.10/uploader2.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}

    (MessengerStatsClient Class) -

    http://messenger.zone.msn.com/binary/MessengerStatsPACli

    ent.cab56907.cab
    O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48}

    (Minesweeper Flags Class) -

    http://messenger.zone.msn.com/binary/MineSweeper.cab569

    86.cab
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-

    B298-07617B9B86A8} - C:\Program Files (x86)\Skype

    \Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-

    1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype

    \SKYPE4~1.DLL
    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-

    6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG

    Secure Search\ViProtocolInstaller\13.2.0\ViProtocol.dll
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-

    83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo

    Gallery\AlbumDownloadProtocolHandler.dll
    O20 - AppInit_DLLs: c:\progra~2\mocaflix\sprote~1.dll
    O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1

    (AeLookupSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea

    Electronics Corporation - C:\Windows\System32\DriverStore

    \FileRepository

    \stwrt64.inf_amd64_neutral_471277d5d45019ea

    \AESTSr64.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG)

    - Unknown owner - C:\Windows\System32\alg.exe (file

    missing)
    O23 - Service: AMD External Events Utility - Unknown owner -

    C:\Windows\system32\atiesrxx.exe (file missing)
    O23 - Service: @%systemroot%\system32\appidsvc.dll,-100

    (AppIDSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\appinfo.dll,-100

    (Appinfo) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204

    (AudioEndpointBuilder) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200

    (AudioSrv) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program

    Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103

    (AxInstSV) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100

    (BDESVC) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE)

    - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000

    (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
    O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. -

    C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: @%systemroot%\system32\browser.dll,-100

    (Browser) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101

    (bthserv) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\certprop.dll,-11

    (CertPropSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001

    (CryptSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown

    owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101

    (defragsvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100

    (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101

    (Dnscache) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102

    (dot3svc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) -

    Unknown owner - C:\Windows\System32\svchost.exe
    O23 - Service: DeviceVM Meta Data Export Service (DvmMDES)

    - DeviceVM, Inc. - C:\SwSetup\QuickWeb\QW.SYS\config

    \DVMExportService.exe
    O23 - Service: @%systemroot%\system32\eapsvc.dll,-1

    (EapHost) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100

    (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file

    missing)
    O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101

    (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
    O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101

    (ehSched) - Unknown owner - C:\Windows\ehome

    \ehsched.exe
    O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200

    (eventlog) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown

    owner - C:\Windows\system32\svchost.exe
    O23 - Service: Easybits Services for Windows (ezSharedSvc) -

    EasyBits Software AS - C:\Windows

    \System32\ezSharedSvcHost.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118

    (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file

    missing)
    O23 - Service: @%systemroot%\system32\fdPHost.dll,-100

    (fdPHost) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\fdrespub.dll,-100

    (FDResPub) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: FLEXnet Licensing Service 64 - Flexera

    Software, Inc. - C:\Program Files\Common Files\Macrovision

    Shared\FLEXnet Publisher\FNPLicensingService64.exe
    O23 - Service: @%systemroot%\system32\FntCache.dll,-100

    (FontCache) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - C:

    \Program Files (x86)\HP Games\HP Game Console

    \GameConsoleService.exe
    O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:

    \Windows\system32\svchost.exe
    O23 - Service: Google Päivitä-palvelu (gupdate) (gupdate) -

    Unknown owner - C:\Program Files (x86)\Google\Update

    \GoogleUpdate.exe
    O23 - Service: Google Päivitä-palvelu (gupdatem) (gupdatem) -

    Unknown owner - C:\Program Files (x86)\Google\Update

    \GoogleUpdate.exe
    O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101

    (hidserv) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6

    (hkmsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100

    (HomeGroupListener) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100

    (HomeGroupProvider) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: HP Support Assistant Service - Unknown owner -

    C:\Program Files (x86)\Hewlett-Packard\HP Support

    Framework\hpsa_service.exe (file missing)
    O23 - Service: HP Wireless Assistant Service - Hewlett-Packard

    - C:\Program Files\Hewlett-Packard\HP Wireless Assistant

    \HPWA_Service.exe
    O23 - Service: hpqcxs08 - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: HP CUE DeviceDiscovery -palvelu (hpqddsvc) -

    Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: HP Software Framework Service (hpqwmiex) -

    Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-

    Packard\Shared\hpqWmiEx.exe
    O23 - Service: HP Network Devices Support (HPSLPSVC) -

    Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: HP Service (hpsrv) - Unknown owner - C:

    \Windows\system32\Hpservice.exe (file missing)
    O23 - Service: HPWMISVC - Unknown owner - C:\Program

    Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) -

    Macrovision Corporation - C:\Program Files (x86)\Common

    Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501

    (IKEEXT) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102

    (IPBusEnum) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500

    (iphlpsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:

    \Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner -

    C:\Windows\System32\svchost.exe
    O23 - Service: @%systemroot%\system32\srvsvc.dll,-100

    (LanmanServer) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\wkssvc.dll,-100

    (LanmanWorkstation) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service

    (LightScribeService) - Hewlett-Packard Company - C:\Program

    Files (x86)\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1

    (lltdsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101

    (lmhosts) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\mmcss.dll,-100

    (MMCSS) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: Mozilla Maintenance Service

    (MozillaMaintenance) - Mozilla Foundation - C:\Program Files

    (x86)\Mozilla Maintenance Service\maintenanceservice.exe
    O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-

    23090 (MpsSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner -

    C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000

    (MSiSCSI) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27

    (msiserver) - Unknown owner - C:\Windows

    \system32\msiexec.exe
    O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6

    (napagent) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: Net Driver HPZ12 - Unknown owner - C:

    \Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102

    (Netlogon) - Unknown owner - C:\Windows

    \system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\netman.dll,-109

    (Netman) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202

    (netprofm) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1

    (NlaSvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi)

    - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004

    (p2pimsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006

    (p2psvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1

    (PcaSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2

    (PerfHost) - Unknown owner - C:\Windows

    \SysWow64\perfhost.exe
    O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) -

    Unknown owner - C:\Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100

    (PlugPlay) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: Pml Driver HPZ12 - Unknown owner - C:

    \Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002

    (PNRPAutoReg) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000

    (PNRPsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010

    (PolicyAgent) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\umpo.dll,-100

    (Power) - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%systemroot%\system32\profsvc.dll,-300

    (ProfSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300

    (ProtectedStorage) - Unknown owner - C:\Windows

    \system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\qwave.dll,-1

    (QWAVE) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%Systemroot%\system32\rasauto.dll,-200

    (RasAuto) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%Systemroot%\system32\rasmans.dll,-200

    (RasMan) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown

    owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001

    (RpcEptMapper) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2

    (RpcLocator) - Unknown owner - C:\Windows

    \system32\locator.exe (file missing)
    O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner -

    C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1

    (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe

    (file missing)
    O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1

    (SCardSvr) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100

    (Schedule) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\certprop.dll,-13

    (SCPolicySvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107

    (SDRSVC) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001

    (seclogon) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\Sens.dll,-200

    (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000

    (SensrSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026

    (SessionEnv) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288

    (ShellHWDetection) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: Skype C2C Service - Skype Technologies S.A. -

    C:\ProgramData\Skype\Toolbars\Skype C2C Service

    \c2c_service.exe
    O23 - Service: Skype Updater (SkypeUpdate) - Skype

    Technologies - C:\Program Files (x86)\Skype\Updater

    \Updater.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3

    (SNMPTRAP) - Unknown owner - C:\Windows

    \System32\snmptrap.exe (file missing)
    O23 - Service: SolidWorks Licensing Service - SolidWorks - C:

    \Program Files (x86)\Common Files\SolidWorks Shared

    \Service\SolidWorksLicensing.exe
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1

    (Spooler) - Unknown owner - C:\Windows

    \System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101

    (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe

    (file missing)
    O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103

    (sppuinotify) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100

    (SSDPSRV) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200

    (SstpSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows

    \System32\DriverStore\FileRepository

    \stwrt64.inf_amd64_neutral_471277d5d45019ea

    \STacSV64.exe
    O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9

    (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\swprv.dll,-103

    (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000

    (SysMain) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100

    (TabletInputService) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100

    (TapiSrv) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100

    (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268

    (TermService) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\themeservice.dll,-

    8192 (Themes) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%systemroot%\system32\mmcss.dll,-102

    (THREADORDER) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1

    (TrkWks) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\servicing

    \TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner

    - C:\Windows\servicing\TrustedInstaller.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101

    (UI0Detect) - Unknown owner - C:\Windows

    \system32\UI0Detect.exe (file missing)
    O23 - Service: @%systemroot%\system32\upnphost.dll,-213

    (upnphost) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000

    (UxSms) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003

    (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe

    (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) -

    Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS)

    - Unknown owner - C:\Windows\system32\vssvc.exe (file

    missing)
    O23 - Service: vToolbarUpdater13.2.0 - Unknown owner - C:

    \Program Files (x86)\Common Files\AVG Secure Search

    \vToolbarUpdater\13.2.0\ToolbarUpdater.exe
    O23 - Service: @%SystemRoot%\system32\w32time.dll,-200

    (W32Time) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-

    601 (WatAdminSvc) - Unknown owner - C:\Windows

    \system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104

    (wbengine) - Unknown owner - C:\Windows

    \system32\wbengine.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100

    (WbioSrvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3

    (wcncsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%

    \system32\WcsPlugInService.dll,-200 (WcsPlugInService) -

    Unknown owner - C:\Windows\system32\svchost.exe
    O23 - Service: @%systemroot%\system32\wdi.dll,-502

    (WdiServiceHost) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%systemroot%\system32\wdi.dll,-500

    (WdiSystemHost) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%systemroot%\system32\webclnt.dll,-100

    (WebClient) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200

    (Wecsvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%

    \System32\wercplsupport.dll,-101 (wercplsupport) - Unknown

    owner - C:\Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100

    (WerSvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%ProgramFiles%\Windows Defender

    \MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:

    \Windows\System32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100

    (WinHttpAutoProxySvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-

    205 (Winmgmt) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101

    (WinRM) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257

    (Wlansvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%Systemroot%\system32\wbem

    \wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:

    \Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player

    \wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:

    \Program Files (x86)\Windows Media Player\wmpnetwk.exe

    (file missing)
    O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100

    (WPCSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-

    100 (WPDBusEnum) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200

    (wscsvc) - Unknown owner - C:\Windows

    \System32\svchost.exe
    O23 - Service: @%systemroot%

    \system32\SearchIndexer.exe,-103 (WSearch) - Unknown

    owner - C:\Windows\system32\SearchIndexer.exe
    O23 - Service: @%systemroot%\system32\wuaueng.dll,-105

    (wuauserv) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000

    (wudfsvc) - Unknown owner - C:\Windows

    \system32\svchost.exe
    O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257

    (WwanSvc) - Unknown owner - C:\Windows

    \system32\svchost.exe

    --
    End of file - 28927 bytes
     
  2. kalminen

    kalminen Regular member

    Joined:
    May 4, 2007
    Messages:
    3,915
    Likes Received:
    0
    Trophy Points:
    46
    .
    Kun käynnistät Muistion (Notepad)
    Muotoile välilehdeltä otat Automaattinen rivitys
    kohdasta ruxin pois riviä klikkaamalla.
    Logi lyhenee heti puolella.
    -------------------------------------------------------------

    Nuo rivit kuuluvatkin sinulla olla noin =>

    O23 - Service: @%SystemRoot%\.....(file missing)

    O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\

    -------------------------------------------------------

    Lataa työpöydälle => AdwCleaner

    - Aja ohjema Hiiren oikealla näppäimellä painat ja valitset =>
    Suorita Järjestelmänvalvojana

    - Paina => Search nappia.
    Muistioon aukeaa sivu josta näet mitä poistetaan. (AdwCleaner[R1].txt)
    Sammuta kaikki muut ohjelmat paitsi virustorjunta.

    - Paina Delete nappia ja => OK:ta niin kaunkuin kone
    käynnistää itsensä uudelleen.

    - Muistioon aukeaa nyt AdwCleaner[S1].txt tiedosto, jonka sisällön
    kopioit vastaus viestiisi tänne.

    :)
     
  3. rick79

    rick79 Senior member

    Joined:
    Feb 15, 2009
    Messages:
    5,125
    Likes Received:
    547
    Trophy Points:
    193
    Ja poista nuo toolbarit mitä sulla on ihan jo naapurinki tarpeisiin... ei niillä tee mitään..
     
  4. Elotar

    Elotar Regular member

    Joined:
    Mar 1, 2005
    Messages:
    103
    Likes Received:
    0
    Trophy Points:
    26
    Tässäpä tämä:

    # AdwCleaner v2.102 - Logfile created 12/25/2012 at 20:28:57
    # Updated 23/12/2012 by Xplode
    # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
    # User : Mikki Hiiri - MIKKIHIIRI-PC
    # Boot Mode : Normal
    # Running from : C:\Users\Mikki Hiiri\AppData\Local\Temp\Temporary Internet Files\Content.IE5\42Q0MDGA\adwcleaner.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****

    Deleted on reboot : C:\Program Files (x86)\Common Files\AVG Secure Search
    Deleted on reboot : C:\ProgramData\Premium
    File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
    File Deleted : C:\user.js
    File Deleted : C:\Users\Mikki Hiiri\AppData\Roaming\Mozilla\Firefox\Profiles\za0wxbwp.default\searchplugins\Askcom.xml
    File Deleted : C:\Users\Mikki Hiiri\AppData\Roaming\Mozilla\Firefox\Profiles\za0wxbwp.default\searchplugins\WebSearch.xml
    Folder Deleted : C:\Program Files (x86)\Ask.com
    Folder Deleted : C:\Program Files (x86)\AVG Secure Search
    Folder Deleted : C:\Program Files (x86)\MocaFlix
    Folder Deleted : C:\ProgramData\Ask
    Folder Deleted : C:\ProgramData\AVG Secure Search
    Folder Deleted : C:\ProgramData\Babylon
    Folder Deleted : C:\ProgramData\boost_interprocess
    Folder Deleted : C:\ProgramData\InstallMate
    Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SaveAs
    Folder Deleted : C:\ProgramData\SaveAs
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\Local\AVG Secure Search
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\LocalLow\AskToolbar
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\LocalLow\AVG Secure Search
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\LocalLow\SaveAs
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\Roaming\Babylon
    Folder Deleted : C:\Users\Mikki Hiiri\AppData\Roaming\yourfiledownloader
    Folder Deleted : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

    ***** [Registry] *****

    Key Deleted : HKCU\Software\APN
    Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
    Key Deleted : HKCU\Software\AppDataLow\SProtector
    Key Deleted : HKCU\Software\Ask.com
    Key Deleted : HKCU\Software\AVG Secure Search
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
    Key Deleted : HKLM\Software\APN
    Key Deleted : HKLM\Software\AskToolbar
    Key Deleted : HKLM\Software\AVG Secure Search
    Key Deleted : HKLM\Software\Babylon
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
    Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
    Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
    Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
    Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
    Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
    Key Deleted : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
    Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
    Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
    Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
    Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
    Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
    Key Deleted : HKLM\SOFTWARE\Classes\S
    Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
    Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
    Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
    Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
    Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
    Key Deleted : HKLM\Software\SP Global
    Key Deleted : HKLM\Software\SProtector
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{16726771-C380-4280-BAF9-1223B3838786}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SP_8e4eb48d
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
    Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
    Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
    Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
    Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
    Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v9.0.8112.16457

    Replaced : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://websearch.mocaflix.com/ --> hxxp://www.google.com

    -\\ Mozilla Firefox v17.0.1 (fi)

    File : C:\Users\Mikki Hiiri\AppData\Roaming\Mozilla\Firefox\Profiles\za0wxbwp.default\prefs.js

    Deleted : user_pref("aol_toolbar.default.homepage.check", false);
    Deleted : user_pref("aol_toolbar.default.search.check", false);
    Deleted : user_pref("avg.install.installDirPath", "C:\\ProgramData\\AVG Secure Search\\FireFoxExt\\13.2.0.5");
    Deleted : user_pref("browser.search.defaultengine", "Ask.com");
    Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
    Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
    Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.mocaflix.com/?l=1&q=");
    Deleted : user_pref("browser.search.order.1", "WebSearch");
    Deleted : user_pref("browser.search.order.1,S", "WebSearch");
    Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
    Deleted : user_pref("extensions.50c45c2d37fe9.scode", "(function(){try{if('aol.com,mail.google.com,mystart.inc[...]
    Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 0);
    Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
    Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "");
    Deleted : user_pref("keyword.URL", "hxxp://websearch.mocaflix.com/?l=1&q=");
    Deleted : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", "");
    Deleted : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "");
    Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "");
    Deleted : user_pref("sweetim.toolbar.previous.keyword.URL", "");
    Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
    Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", "");
    Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", "");
    Deleted : user_pref("sweetim.toolbar.searchguard.enable", "");

    File : C:\Users\Vieras\AppData\Roaming\Mozilla\Firefox\Profiles\guwtgdn2.default\prefs.js

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [12647 octets] - [25/12/2012 20:26:24]
    AdwCleaner[R2].txt - [12708 octets] - [25/12/2012 20:28:13]
    AdwCleaner[S1].txt - [12377 octets] - [25/12/2012 20:28:57]

    ########## EOF - C:\AdwCleaner[S1].txt - [12438 octets] ##########
     
  5. kalminen

    kalminen Regular member

    Joined:
    May 4, 2007
    Messages:
    3,915
    Likes Received:
    0
    Trophy Points:
    46
    .
    Isokasa haitallisia toolbaareja sieltä lähtikin !!!

    Avaa AdwCleaner ja klikkaa Uninstall-nappia. Seuraa ohjeita.

    ------------------------------------------------------------

    Lataa Malwarebytes' Anti-Malware työpöydällesi.

    Jos linkki ei toimi, voit ladata myös seuraavista linkeistä:
    Linkki1
    Linkki2

    * Tuplaklikkaa mbam-setup.exe ja seuraa ohjeita asentaaksesi ohjelman.
    * Lopuksi varmistu, että seuraavat on valittu: Päivitä Malwarebytes' Anti-Malware ja Käynnistä Malwarebytes' Anti-Malware ja sen jälkeen klikkaa Lopeta.
    * Jos päivitys löytyy, ohjelma lataa ja asentaa uusimman version.
    * Jos päivityksien lataaminen ei onnistu, voit ladata päivitykset TÄSTÄ. Tuplaklikkaa mbam-rules.exe asentaaksesi päivitykset.
    * Kun ohjelma on latautunut ja päivitykset tehty, valitse Suorita täysi tarkistus ja klikkaa Tarkista.
    * Kun tarkistus on valmis, klikkaa OK ja sitten Näytä tulokset nähdäksesi tulokset.
    * Varmistu, että kaikki on merkitty ja klikkaa Poista valitut.
    * Tämän jälkeen loki avautuu muistioon. Tallenna se paikkaan, josta löydät sen helposti. Loki löytyy myös täältä: C:\Documents and Settings\Käyttäjänimi\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-päiväys.txt
    * Lähetä lokin sisältö seuraavassa viestissäsi.[/list]

    Huom. Jos Mbam ei pystynyt poistamaan tiedostoa, se pyytää sinua käynnistämään koneesi uudelleen. Käynnistä koneesi silloin uudelleen heti. Mbam voi tehdä muutoksia rekisteriisi osana puhdistusta. Jos käytät suojausohjelmaa, joka havaitsee rekisterin muutokset, salli Mbamin tehdä muutokset.

    Lähetä =>
    Uusi HJT logi ja
    Kopioi Malwarebytes' Anti-Malwaren Logitiedostot välilehdeltä uusin logi tänne.

    :)
     

Share This Page