Miten saan nämä kiusalliset spywaret pois ?

Discussion in 'Virukset ja haittaohjelmat' started by Dietka, May 13, 2005.

  1. Toymaatti

    Toymaatti Active member

    Joined:
    Feb 4, 2005
    Messages:
    1,038
    Likes Received:
    0
    Trophy Points:
    66
    No joo, olihan siellä "jotain". Poista Lisää/Poista sovelluksesta jos löytyy
    NewDotNet
    EZula
    Look2Me

    Hae tuosta Työkalu ja aja se
    http://www.new.net/support/uninstall6_76.exe

    Sitten poista VIKASIETOTILASSA nuo tiedostot
    C:\WINDOWS\NDNuninstall6_38.exe
    C:\WINDOWS\woinstall.exe
    C:\WINDOWS\System32\dhusic.dll
    C:\WINDOWS\System32\guard.tmp
    C:\WINDOWS\System32\iaircl.dll
    C:\WINDOWS\System32\opbc32.dll
    C:\WINDOWS\System32\oybccp32.dll
    C:\Documents and Settings\x x\Omat tiedostot\easterchickswal.exe
    C:\Documents and Settings\x x\Omat tiedostot\scanms.exe
    C:\Program Files\FileSubmit\Easter Chicks\NNEZTX638.exe<==Tuosta kannattaisi varmaan poistaa koko kansio
    C:\WINDOWS\Downloaded Program Files\PopularScreenSaversInitialSetup1.0.0.8.exe
    C:\WINDOWS\NDNuninstall6_38.exe
    C:\WINDOWS\SYSTEM32\dhusic.dll
    C:\WINDOWS\SYSTEM32\guard.tmp
    C:\WINDOWS\SYSTEM32\iaircl.dll
    C:\WINDOWS\SYSTEM32\opbc32.dll
    C:\WINDOWS\SYSTEM32\oybccp32.dll
    C:\WINDOWS\woinstall.exe

    Tyhjennä tempit
    Nuo alemmat kaikissa käyttäjätileissä
    C:\Temp
    C:\Windows\Prefetch
    C:\Documents and Settings\Käyttäjä nimi\Local Settings\Temporary Internet Files\Content.IE5
    C:\Documents and Settings\Käyttäjä nimi\Local Settings\Temp

    Käynnistä normaalisti.

    Scannaa noilla online scannereilla ja anna poistaa löydöt
    http://www.pandasoftware.com/products/activescan/com/activescan_principal.htm
    http://www.bitdefender.com/scan8/ie.html

    Tyhjennä järjestelmänpalautus
    http://support.f-secure.fi/fin/home/virusproblem/howtoclean/cleansystemrestore.shtml

    Scannaa uudestaan eScanilla ja laita sen loki sekä uusi HjT loki.
     
  2. nipsu_

    nipsu_ Member

    Joined:
    May 6, 2004
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Microsoft Visual C++ Runtime Library antaa välillä tällaisen virheilmon, kone on tänään keksinyt alkaa välillä
    herjata myöskin tämmöistä kivaa, esim. nyt mennessäni Pandan sivuille heitti tämän ilmon ja lykkäsi minut jollekin väärälle sivulle.

    "Buffer overrun detected!

    Program: C:\WINDOWS\system32\rundll32.exe

    A buffer overrun has been detected which has corrupted the program's internal state. The program cannot safely continue execution and must now be terminated."

    Samaten jostain syystä IE vissiin eilisestä asti keksi avata jatkuvasti msn searchia, jos esim. koitin käyttää googlea. Hmm, oudot sattumat siis alkavat lisääntyä. Alkaa vaikutta jo vähän epätoivoiselta, mutta täytyy vielä jatkaa noita harjotuksia vähän.
     
  3. nipsu_

    nipsu_ Member

    Joined:
    May 6, 2004
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Noita NewDotteja sun muita ei löydy. Tuon guard.tmp:n mielestäni jo poistin, mutta tuolla se näkyy taas...

    Jotain parannustakin on kyllä tapahtunut, koska mulla ei edes toimineet aiemmin kunnolla tuo Panda ja Bitdefender, nyt toimii :)

    ActiveScanin tulos siis:


    Incident Status Location Adware:adware/look2me No disinfected
    C:\WINDOWS\SYSTEM32\guard.tmp
    Spyware:spyware/linkreplacer No disinfected C:\WINDOWS\SYSTEM32\lmdv.bin
    Adware:adware/comet No disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\dm.inf
    Adware:adware/savenow No disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\WUInst.inf
    Adware:adware/gator No disinfected C:\WINDOWS\GatorHDPlugin.log
    Adware:adware/twain-tech No disinfected C:\WINDOWS\smdat32a.sys
    Adware:adware/keenvalue No disinfected C:\PROGRAM FILES\PerfectNav
    Spyware:spyware/searchcentrix No disinfected HKEY_CURRENT_USER\SOFTWARE\DYNAMIC TOOLBAR
    Adware:adware/funweb No disinfected HKEY_CLASSES_ROOT\FUNWEBPRODUCTSINSTALLER.START
    Adware:adware/myway No disinfected HKEY_CLASSES_ROOT\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}
    Adware:adware/navhelper No disinfected HKEY_CLASSES_ROOT\CLSID\{BDF3E430-B101-42AD-A544-FADC6B084872}
    Adware:adware/mywebsearch No disinfected HKEY_CLASSES_ROOT\Interface\{1d4db7d3-6ec9-47a3-bd87-1e41684e07bb}
    Adware:adware/brilliantdigitalNo disinfected HKEY_CLASSES_ROOT\Interface\{48E59292-9880-11CF-9754-00AA00C00908}
    Spyware:Spyware/New.net No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc42.exe
    Adware:Adware/eZula No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc45.exe Adware:Adware/Look2Me No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc46.dll
    Adware:Adware/Look2Me No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc47.tmp
    Adware:Adware/Look2Me No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc48.dll
    Adware:Adware/Look2Me No disinfected C:\RECYCLER\S-1-5-21-53177138-2544145745-2170829215-500\Dc49.dll
    Adware:Adware/FunWeb No disinfected C:\WINDOWS\Downloaded Program Files\PopularScreenSaversInitialSetup1.0.0.8.exe
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\guard.tmp
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\madimap.dll
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\opbc32.dll
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\syesrv.dll
    Spyware:Spyware/LinkReplacer No disinfected C:\WINDOWS\SYSTEM32\uninst.exe
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\vhhelper.dll
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\wlcsvc.dll
    Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM32\WQWFAX.DLL

    Muita logeja myöhemmin.
     
    Last edited: Jul 18, 2005
  4. Toymaatti

    Toymaatti Active member

    Joined:
    Feb 4, 2005
    Messages:
    1,038
    Likes Received:
    0
    Trophy Points:
    66
  5. nipsu_

    nipsu_ Member

    Joined:
    May 6, 2004
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Ajoin juu. BitDefender sanoi, että 'You're still infected', mutta en tiedä, oisko tässä silti vähän parannusta tapahtunut - kuten sanottu, aiemmin mulla ei kumpikaan noista edes toiminut (tai jäivät ikuisuuksiksi pyörimään jne.), ActiveScan ja BitDefender, nyt toimi molemmat.

    Vaan pistänpä vielä escanin login ja HjT:n kohta.

    HjT:

    Logfile of HijackThis v1.99.1
    Scan saved at 0:29:58, on 20.7.2005
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\System32\DSentry.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\TeleWell\TW-EA100B ADSL USB\CnxDslTb.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Java\j2re1.4.2_07\bin\jusched.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\Eyetide Media\Eyetide Viewer\EyetideController.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    C:\PROGRA~1\ICQ\ICQ.exe
    C:\WINDOWS\System32\wuauclt.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\SSH Communications Security\SSH Secure Shell\SshClient.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\PROGRA~1\MICROS~3\Office10\OUTLOOK.EXE
    C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
    C:\WINDOWS\msagent\AgentSvr.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/fi/fin/gen/default.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.uta.fi/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/fi/fin/gen/default.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.jyu.fi:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;<local>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
    O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\TeleWell\TW-EA100B ADSL USB\CnxDslTb.exe"
    O4 - HKLM\..\Run: [Mirabilis ICQ] C:\PROGRA~1\ICQ\ICQNet.exe
    O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_07\bin\jusched.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - Startup: Eyetide Launcher.lnk = C:\Program Files\Eyetide Media\Eyetide Viewer\EyetideController.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: Backward &Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Shorten URL - http://www.cjb.net/menuext.html
    O8 - Extra context menu item: Si&milar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
    O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O15 - Trusted Zone: *.frame.crazywinnings.com
    O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM)
    O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
    O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - http://www.symantec.com/techsupp/asa/LSSupCtl.cab
    O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1106171493075
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
    O16 - DPF: {90A29DA5-D020-4B18-8660-6689520C7CD7} (DmiReader Class) - http://support.euro.dell.com/global/apps/systemprofiler/PROFILER.CAB
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/asa/SymAData.cab
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: iPod-palvelu (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe

    Escan valittaa vieläkin aika reippaasti, tuo Look2Me näyttäisi olevan ainakin ongelma (ja käytin jo tuota uninstalleria).

    EDIT taas: Ewido taisi auttaa aika paljon asioihin. Nyt väittää, ettei ole enää infected eikä ole yhteyskään pätkinyt, mutta täytyy vähän seurailla vielä.
     
    Last edited: Jul 20, 2005
  6. nipsu_

    nipsu_ Member

    Joined:
    May 6, 2004
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Jees, kyllä vaan, kone pelaa nyt eikä mitään yhteysongelmia. :)

    Kiitos paljon avusta ja vaivannäöstä kaikille! Lähipiirissä olevat nörtit olisivat olleet lähinnä asenteella 'en mä jaksa alkaa miettiä tollasia nyt'. ;) Tai ainakin olisivat luovuttaneet jo ajat sitten.
     
  7. Toymaatti

    Toymaatti Active member

    Joined:
    Feb 4, 2005
    Messages:
    1,038
    Likes Received:
    0
    Trophy Points:
    66
    HYVÄ!! Mutta sinne jäi vielä ne 015 rivit. Hae DelDomains HUOM! Poikkeava lataustapa.

    http://www.mvps.org/winhelp2002/DelDomains.inf

    Klikkaa linkkiä hiiren oikealla, valitse "tallenna kohde levylle..", ja ohjaa se työpöydälle.
    Sulje selain.
    Klikkaa hiiren oikealla DelDomains.inf kuvaketta ja valitse ASENNA.

    Sitten fixaa HjT:llä nuo jos vielä näkyy
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O15 - Trusted Zone: *.frame.crazywinnings.com
    O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM)

    Nyt pitäisi olla kunnossa :D
     
  8. nipsu_

    nipsu_ Member

    Joined:
    May 6, 2004
    Messages:
    22
    Likes Received:
    0
    Trophy Points:
    11
    Jees, tänks. Nyt ei näy enää noitakaan :) (tai 09:t näky, mutta fixasin niistä sitten ne pari)
     
    Last edited: Jul 24, 2005

Share This Page