minttu00:n HjT-loki (winfixer 2005)

Discussion in 'Virukset ja haittaohjelmat' started by -kemisti-, Oct 4, 2005.

  1. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Logfile of HijackThis v1.99.1
    Scan saved at 17:22:08, on 4.10.2005
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\RunDll32.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
    C:\Program Files\Winamp\winampa.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    C:\WINDOWS\system32\sistray.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\DOCUME~1\Satu\LOCALS~1\Temp\Tilapäinen kansio 3 hijackthis.zip\HijackThis.exe

    R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
    O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
    O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
    O2 - BHO: FavoriteMan Class - {139D88E5-C372-469D-B4C5-1FE00852AB9B} - C:\WINDOWS\system32\Favorite.dll
    O2 - BHO: BRedObj Class - {665ACD90-4541-4836-9FE4-062386BB8F05} - c:\Program Files\Flt\Flt.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
    O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
    O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
    O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZNxdm119YYFI
    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/SmileyCe...
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x8...
    O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} (Sinstaller Class) - http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {E6A3C1E2-F792-483E-9133-596215172BE9} (AcceptLang Class) - http://runonce.msn.com/setacceptlang.cab
    O18 - Protocol: bw+0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: offline-8876480 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
     
  2. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Minttu00: Siinä heleteen lokissa oli muutakin vikaa kuin se winfixer ja niin on sullakin ;) Itse asiassa sitä winfixeriä ei näy ollenkaan lokissa.

    Ja sitten siihen fixipuoleen:

    Siirrä ensin HjT omaan kansioonsa pois tempistä vaikka näin:

    C:\DOCUME~1\Satu\LOCALS~1\Temp\Tilapäinen kansio 3 hijackthis.zip\HijackThis.exe -> c:\hjt\HijackThis.exe

    Poista lisää/poista-sovellus kohdasta (ohjauspaneeli):

    MyWebSearch
    FavoriteMan
    FlashTrack Uninstall
    Winfixer 2005

    Fixaa nämä hijackthisillä (käynnistä ohjelma, klikkaa do a system scan only, rasti näiden eteen ja paina fix checked):

    R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
    O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
    O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
    O2 - BHO: FavoriteMan Class - {139D88E5-C372-469D-B4C5-1FE00852AB9B} - C:\WINDOWS\system32\Favorite.dll
    O2 - BHO: BRedObj Class - {665ACD90-4541-4836-9FE4-062386BB8F05} - c:\Program Files\Flt\Flt.dll
    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
    O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
    O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZNxdm119YYFI
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/SmileyCe...
    O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} (Sinstaller Class) - http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab

    Laita piilotiedostot näkyviin, ohje ->http://www.virustorjunta.net/modules.php?name=FAQ&myfaq=yes&id_cat=6&categories=Yleisohjeita+ongelmatilanteiden+ratkaisuun#40

    Käynnistä vikasietotilaan (F8 käynnistyksen yhteydessä -> valitse valikosta vikasietotila) ja poista:

    C:\Program Files\common files\==>winsoftware<==
    C:\Program Files\==>Winfixer2005<==
    C:\Program Files\==>MyWebSearch<==
    C:\WINDOWS\system32\==>Favorite.dll<==
    C:\Program Files\==>Flt<==

    Käynnistä kone uudestaan normaalisti ja lähetä uusi HjT-loki.
     
    Last edited: Oct 4, 2005
  3. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    miten mä siis laitan sen vikasietotilaan??
    tuli itelle oikosulku:D
     
  4. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    winfixer tulee edelleen..
     
  5. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Pääsitkö sinne vikasietotilaan? Eli siis painat F8-näppäintä käynnistyksen yhteydessä, kunnes tulee valikko. Valitset siitä valikosta vikasietotila. Ja varmasti tulee, jos sitä ei ole vielä poistettu ;)
     
  6. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    siis pitääkö mun sammuttaa kone kokonaan vai..? no joo...mä yritin silleen ja painoin f8 näppäintä, mut mitään ei tullut.. voi ei..
     
  7. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Siis joko sammutat koneen tai sitten käynnistät sen koneen uudestaan (eli Käynnistä -> Sammuta tietokone ja sieltä Käynnistä uudelleen) ja sitten kun kone käynnistyy, niin painat sitä F8-näppäintä(siis pidät pohjassa sitä), kunnes tulee se valikko, josta voit valita vikasietotilan.
     
  8. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    no joo.. taas mun nuorilla tyhmillä aivoilla ei tajuta; siihen tuli valikko, mutta onko sille jotain engl.kielistä vastinetta? kokeilin kahta niistä mutta sitten ei mitään valikkoja tullut..ääh.
     
  9. V-kos

    V-kos Regular member

    Joined:
    Mar 13, 2005
    Messages:
    1,345
    Likes Received:
    0
    Trophy Points:
    46
    Vikasietotila=safe mode
     
  10. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    eeei sellasta ole siinä.
     
  11. Zipp2

    Zipp2 Regular member

    Joined:
    Sep 30, 2005
    Messages:
    376
    Likes Received:
    0
    Trophy Points:
    26
  12. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Tuli vaan mieleen, että jos minttu00 painoi sitä F8:a "liian aikaisin" ja se avasi boot menun. Minttu00, oliko siinä valikossa sellaisia vaihtoehtoja kun floppy, cd/dvd-rom ja ide(tai jotain sinne päin)?
     
  13. KRUUS

    KRUUS Member

    Joined:
    Jan 30, 2005
    Messages:
    92
    Likes Received:
    0
    Trophy Points:
    16
    @KEMISTI Voisitko käydä katsomassa p2p ongelma puolelta sellaisen kun p2p ohjelmat ja netti/serveri pelit ei toimi
     
  14. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    no niin.. kone on nyt vikasietotilassa.. mitäs nyt pitää tehdä?
     
  15. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Poistat nämä tiedostot/hakemistot:

    C:\Program Files\common files\==>winsoftware<==
    C:\Program Files\==>Winfixer2005<==
    C:\Program Files\==>MyWebSearch<==
    C:\WINDOWS\system32\==>Favorite.dll<==
    C:\Program Files\==>Flt<==

    resurssienhallinnan kautta (sinne pääsee painamalla Windows-näppäin + e)

    Ja sitten sen jälkeen käynnistät koneen uudestaan normaalisti ja lähetät uuden hijackthis-lokin.
     
  16. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    mikä on windows näppäin?
     
  17. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    se näppäin, mikä on ctrl- ja alt-näppäimien välissä alhaalla näppäimistössä :) Ja niitä on kaksi kappaletta, toinen on alt gr:n oikealla puolella.
     
  18. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    pitääkö mun poistaa ne ohjauspaneelin kautta vai mistä. siellä ei ainakaan ole ohjelmia.. anteeksi tämä vaiva..
     
  19. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Siis poistaa mitkä?

    Nämä poistat sieltä resurssienhallinnan kautta(sieltä oma tietokone vasemmalta, sitten paikallinen levy (C:)(klikkaat sitä plussaa) ja sitten seuraat noita hakemistopolkuja ja poistat nuo):

    C:\Program Files\common files\==>winsoftware<==
    C:\Program Files\==>Winfixer2005<==
    C:\Program Files\==>MyWebSearch<==
    C:\WINDOWS\system32\==>Favorite.dll<==
    C:\Program Files\==>Flt<==

    Ja nämä ohjelmat piti poistaa sieltä ohjauspaneelin kautta lisää/poista sovellus-kohdasta.

    MyWebSearch
    FavoriteMan
    FlashTrack Uninstall
    Winfixer 2005

    EDIT: Ja sinne resurssienhallintaan pääsee myös seuraavasti: Käynnistä -> Apuohjelmat -> Resurssienhallinta
     
    Last edited: Oct 8, 2005
  20. minttu00

    minttu00 Member

    Joined:
    Oct 4, 2005
    Messages:
    17
    Likes Received:
    0
    Trophy Points:
    11
    C:\Program Files\==>Flt<== tota en saa poistettua ja en löydä winfixeriä
     

Share This Page