Elikkä siis ongelma on erikoinen. Kun pelaan, pelit eivät pätki kokoaikaa, vaan vain välillä. Samalla kovalevy alkaa yleensä raksuttamaan. No tässä loki, toivottavasti joku osaa auttaa. Logfile of HijackThis v1.99.1 Scan saved at 09:40:35, on 09/02/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\CTsvcCDA.EXE C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\OO Software\CleverCache\ooccag.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\windows\system\hpsysdrv.exe C:\WINDOWS\AGRSMMSG.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe C:\Program Files\LClock\LClock.exe C:\WINDOWS\system32\RunDLL32.exe C:\Program Files\LClock\lclock.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Launchy\Launchy.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE C:\WINDOWS\system32\svchost.exe C:\WINDOWS\explorer.exe C:\Program Files\Alwil Software\Avast4\ashSimpl.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\uTorrent\utorrent.exe C:\PROGRA~1\MOZILL~1\FIREFOX.EXE C:\hjt\PaskanPoistaja.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: War Rock Toolbar Helper - {0914953A-B6C0-42C3-983E-5213C64AFA9B} - C:\Program Files\War Rock Toolbar\v3.2.0.0\War_Rock_Toolbar.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\Spyware Doctor\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O3 - Toolbar: (no name) - {724d43a0-0d85-11d4-9908-00400523e39a} - (no file) O3 - Toolbar: War Rock Toolbar - {5D956A61-05E7-427B-A2B1-BF32FB18B1BE} - C:\Program Files\War Rock Toolbar\v3.2.0.0\War_Rock_Toolbar.dll O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe" /StartupJobs O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe" O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Ashampoo FireWall] "C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" -TRAY O4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock.exe O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [BURNWINPLANAMOK] C:\Documents and Settings\All Users\Application Data\binddentburnwin\corntick.exe O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\lclock.exe O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\uTorrent\utorrent.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Launchy.lnk = C:\Program Files\Launchy\Launchy.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Poker.com - {6FDD5236-C9F0-49ef-935D-385F5E21991A} - C:\Program Files\Poker.com\Poker.exe (HKCU) O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.11) - http://gameadvisor.futuremark.com/global/msc311.cab O18 - Protocol: bw+0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: offline-8876480 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: winjyg32 - winjyg32.dll (file missing) O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AshampooDefragService - - C:\Program Files\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LuComServer_3_0.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O CleverCache Agent (OOCleverCacheAgent) - O&O Software GmbH - C:\Program Files\OO Software\CleverCache\ooccag.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe O23 - Service: WPS Scanner Service (WPSScannerSvc) - Unknown owner - C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe
Moi! Lataa NoLop työpöydällesi yhdestä seuraavista linkeistä... Linkki 1 Linkki 2 Linkki 3 Sulje kaikki ohjelmat, koska tämä vaihe vaatii uudelleenkäynnistyksen Tuplaklikkaa NoLop.exe ajaaksesi sen. Klikkaa nappulaa "Search and Destroy" <<Tietokoneesi skannataan saastuneiden tiedostojen osalta>> Kun skannaus on valmis, sinua pyydetään käynnistämään kone uudestaan, jos infektio löytyy. Klikkaa OK Klikkaa "REBOOT"-painiketta. NoLopin pitäisi antaa viesti. Jos ei, tuplaklikkaa ohjelmaa ja se valmistuu. Lähetä C:\NoLop.log-tiedoston sisältö uuden HijackThis-lokin kera. -- Jos saat seuraavan virheen, "mscomctl.ocx or one of its dependencies are not correctly registered," lataa mscomctl.ocx ja tallenna se system32-hakemistoosi (yleensä c:\Windows\system32). Tämän jälkeen aja ohjelma uudestaan. -- ------------------------------------- Sitten käynnistä kone Vikasietotilaan ja poista tämä kansio: C:\Documents and Settings\All Users\Application Data\binddentburnwin Sitten käynnistä kone normaaliin tilaansa ja avaa Hjt. Paina Do system scan only ja merkkaa nämä rivit: O3 - Toolbar: (no name) - {724d43a0-0d85-11d4-9908-00400523e39a} - (no file) O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [BURNWINPLANAMOK] C:\Documents and Settings\All Users\Application Data\binddentburnwin\corntick.exe O20 - Winlogon Notify: winjyg32 - winjyg32.dll (file missing) O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) Paina sitten Fix Checked Käynnistä nyt kone uudelleen. Lähetä sitten Nolopin loki ja tuore Hjt-loki tänne, seuraavaan viestiisi.
Logfile of HijackThis v1.99.1 Scan saved at 23:57:18, on 09/02/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\windows\system\hpsysdrv.exe C:\WINDOWS\AGRSMMSG.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe C:\Program Files\LClock\LClock.exe C:\WINDOWS\system32\RunDLL32.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\CTsvcCDA.EXE C:\HP\KBD\KBD.EXE C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\WINDOWS\ALCXMNTR.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Launchy\Launchy.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\OO Software\CleverCache\ooccag.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\HPZipm12.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Java\jre1.5.0_06\bin\jucheck.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Wisdom-soft ScreenHunter\ScreenHunter.exe C:\WINDOWS\Explorer.EXE C:\hjt\PaskanPoistaja.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/wdgt3/*http://www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/wdgt3/*http://www.yahoo.com/ext/search/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/wdgt3/*http://www.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: War Rock Toolbar Helper - {0914953A-B6C0-42C3-983E-5213C64AFA9B} - C:\Program Files\War Rock Toolbar\v3.2.0.0\War_Rock_Toolbar.dll O2 - BHO: Skyhook Wireless Loki - {43537A86-707C-46E7-B408-82588B7993D3} - C:\Program Files\Skyhook Wireless\Loki\LokiIe.dll O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - (no file) O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\Spyware Doctor\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O3 - Toolbar: War Rock Toolbar - {5D956A61-05E7-427B-A2B1-BF32FB18B1BE} - C:\Program Files\War Rock Toolbar\v3.2.0.0\War_Rock_Toolbar.dll O3 - Toolbar: Skyhook Wireless Loki - {7F16E247-9F8E-4778-956E-AFEDF3D2FE0C} - C:\Program Files\Skyhook Wireless\Loki\LokiIe.dll O3 - Toolbar: HP-näkymä - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\program files\hp\digital imaging\bin\hpdtlk02.dll O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe" /StartupJobs O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Ashampoo FireWall] "C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" -TRAY O4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock.exe O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\lclock.exe O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\uTorrent\utorrent.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Launchy.lnk = C:\Program Files\Launchy\Launchy.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZH O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: Poker.com - {6FDD5236-C9F0-49ef-935D-385F5E21991A} - C:\Program Files\Poker.com\Poker.exe (HKCU) O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.11) - http://gameadvisor.futuremark.com/global/msc311.cab O18 - Protocol: bw+0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: offline-8876480 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AshampooDefragService - - C:\Program Files\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LuComServer_3_0.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O CleverCache Agent (OOCleverCacheAgent) - O&O Software GmbH - C:\Program Files\OO Software\CleverCache\ooccag.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe O23 - Service: WPS Scanner Service (WPSScannerSvc) - Unknown owner - C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe NoLop! Log by Skate_Punk_21 Fix running from: C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Työpöytä [09/02/2007] [17:01:14] ---Infection Files Found/Removed--- C:\WINDOWS\tasks\A8D3357B9190B317.job Beginning Removal... Rebooting... Removing Lop's Leftover Files/Folders... Editing Registry... **Fix Complete!** ---Listing AppData sub directories--- C:\Documents and Settings\All Users\Application Data\55-66-7s-34-5n-4o C:\Documents and Settings\All Users\Application Data\Adobe C:\Documents and Settings\All Users\Application Data\Adobe Systems C:\Documents and Settings\All Users\Application Data\Apple Computer C:\Documents and Settings\All Users\Application Data\Avg7 C:\Documents and Settings\All Users\Application Data\Binddentburnwin C:\Documents and Settings\All Users\Application Data\Corel C:\Documents and Settings\All Users\Application Data\Element5 C:\Documents and Settings\All Users\Application Data\Gameblend C:\Documents and Settings\All Users\Application Data\Gamehouse C:\Documents and Settings\All Users\Application Data\Google C:\Documents and Settings\All Users\Application Data\Grisoft C:\Documents and Settings\All Users\Application Data\Hdd Thermometer C:\Documents and Settings\All Users\Application Data\Hewlett-packard C:\Documents and Settings\All Users\Application Data\Installshield C:\Documents and Settings\All Users\Application Data\Intervideo C:\Documents and Settings\All Users\Application Data\Messenger Plus! C:\Documents and Settings\All Users\Application Data\Microsoft C:\Documents and Settings\All Users\Application Data\Motive C:\Documents and Settings\All Users\Application Data\Msn6 C:\Documents and Settings\All Users\Application Data\Nvidia C:\Documents and Settings\All Users\Application Data\Nview_profiles -- EMPTY Directory C:\Documents and Settings\All Users\Application Data\Pc Suite C:\Documents and Settings\All Users\Application Data\Pinnacle C:\Documents and Settings\All Users\Application Data\Pixelstorm C:\Documents and Settings\All Users\Application Data\Pkware -- EMPTY Directory C:\Documents and Settings\All Users\Application Data\Playfirst C:\Documents and Settings\All Users\Application Data\Popcap C:\Documents and Settings\All Users\Application Data\Propellerhead Software C:\Documents and Settings\All Users\Application Data\Roboform C:\Documents and Settings\All Users\Application Data\Sandlot Games C:\Documents and Settings\All Users\Application Data\Sectaskman C:\Documents and Settings\All Users\Application Data\Skype -- EMPTY Directory C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy C:\Documents and Settings\All Users\Application Data\Symantec C:\Documents and Settings\All Users\Application Data\Trymedia C:\Documents and Settings\All Users\Application Data\Tuneup Software C:\Documents and Settings\All Users\Application Data\Ubisoft C:\Documents and Settings\All Users\Application Data\Ulead Systems C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage C:\Documents and Settings\All Users\Application Data\Windows Live Toolbar C:\Documents and Settings\All Users\Application Data\Yahoo! -- EMPTY Directory C:\Documents and Settings\All Users\Application Data\{eae7688b-c2ae-41d1-bd96-63bfabd33607} -- EMPTY Directory C:\Documents and Settings\Default User\Application Data\Identities C:\Documents and Settings\Default User\Application Data\Intervideo C:\Documents and Settings\Default User\Application Data\Microsoft C:\Documents and Settings\Default User\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Default User\Application Data\Sun C:\Documents and Settings\Default User\Application Data\Symantec C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Identities C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Intervideo C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Microsoft C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Sun C:\Documents and Settings\Järjestelmänvalvoja\Application Data\Symantec C:\Documents and Settings\Katariina\Application Data\Identities C:\Documents and Settings\Katariina\Application Data\Intervideo C:\Documents and Settings\Katariina\Application Data\Microsoft C:\Documents and Settings\Katariina\Application Data\Real C:\Documents and Settings\Katariina\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Katariina\Application Data\Sonic C:\Documents and Settings\Katariina\Application Data\Sun C:\Documents and Settings\Katariina\Application Data\Symantec C:\Documents and Settings\Katariina\Application Data\Ulead Systems C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Apple Computer C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Bearshare C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Google -- EMPTY Directory C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Identities C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Intervideo C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Launchy C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Limewire C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Logitech C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Macromedia C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Microsoft C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Mozilla C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Real C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Sun C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Symantec C:\Documents and Settings\Katariina.your-3z2mfyow5g\Application Data\Talkback C:\Documents and Settings\Localservice\Application Data\Avg7 -- EMPTY Directory C:\Documents and Settings\Localservice\Application Data\Microsoft C:\Documents and Settings\Networkservice\Application Data\Microsoft C:\Documents and Settings\Networkservice\Application Data\Mozilla C:\Documents and Settings\Networkservice\Application Data\Symantec C:\Documents and Settings\Networkservice\Application Data\Talkback C:\Documents and Settings\Omistaja\Application Data\.abc C:\Documents and Settings\Omistaja\Application Data\Acoustica C:\Documents and Settings\Omistaja\Application Data\Act C:\Documents and Settings\Omistaja\Application Data\Adc Software C:\Documents and Settings\Omistaja\Application Data\Adobe C:\Documents and Settings\Omistaja\Application Data\Adobeum C:\Documents and Settings\Omistaja\Application Data\Apple Computer C:\Documents and Settings\Omistaja\Application Data\Arcsoft C:\Documents and Settings\Omistaja\Application Data\Ashampoo Photo Commander 3 C:\Documents and Settings\Omistaja\Application Data\Ashampoo Photo Commander 4 C:\Documents and Settings\Omistaja\Application Data\Bearshare C:\Documents and Settings\Omistaja\Application Data\Copytitlemeta C:\Documents and Settings\Omistaja\Application Data\Corel C:\Documents and Settings\Omistaja\Application Data\F-secure C:\Documents and Settings\Omistaja\Application Data\Faststone C:\Documents and Settings\Omistaja\Application Data\Flightgear.org C:\Documents and Settings\Omistaja\Application Data\Fltk.org -- EMPTY Directory C:\Documents and Settings\Omistaja\Application Data\Gameblend C:\Documents and Settings\Omistaja\Application Data\Google C:\Documents and Settings\Omistaja\Application Data\Hdd Thermometer C:\Documents and Settings\Omistaja\Application Data\Help -- EMPTY Directory C:\Documents and Settings\Omistaja\Application Data\Identities C:\Documents and Settings\Omistaja\Application Data\Intervideo C:\Documents and Settings\Omistaja\Application Data\Isolatedstorage C:\Documents and Settings\Omistaja\Application Data\Launchy C:\Documents and Settings\Omistaja\Application Data\Lavasoft C:\Documents and Settings\Omistaja\Application Data\Leadertech C:\Documents and Settings\Omistaja\Application Data\Logitech C:\Documents and Settings\Omistaja\Application Data\Macromedia C:\Documents and Settings\Omistaja\Application Data\Microsoft C:\Documents and Settings\Omistaja\Application Data\Motive C:\Documents and Settings\Omistaja\Application Data\Mozilla C:\Documents and Settings\Omistaja\Application Data\Msn6 C:\Documents and Settings\Omistaja\Application Data\Nasa C:\Documents and Settings\Omistaja\Application Data\Nikon C:\Documents and Settings\Omistaja\Application Data\Openoffice.org2 C:\Documents and Settings\Omistaja\Application Data\Opera C:\Documents and Settings\Omistaja\Application Data\Pc Power Suite C:\Documents and Settings\Omistaja\Application Data\Pc Suite C:\Documents and Settings\Omistaja\Application Data\Pinnacle Systems C:\Documents and Settings\Omistaja\Application Data\Pkware C:\Documents and Settings\Omistaja\Application Data\Propellerhead Software C:\Documents and Settings\Omistaja\Application Data\Real C:\Documents and Settings\Omistaja\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Omistaja\Application Data\Sierra C:\Documents and Settings\Omistaja\Application Data\Skype C:\Documents and Settings\Omistaja\Application Data\Slysoft C:\Documents and Settings\Omistaja\Application Data\Sonic C:\Documents and Settings\Omistaja\Application Data\Sun C:\Documents and Settings\Omistaja\Application Data\Symantec C:\Documents and Settings\Omistaja\Application Data\Talkback C:\Documents and Settings\Omistaja\Application Data\Thunderbird C:\Documents and Settings\Omistaja\Application Data\Tuneup Software C:\Documents and Settings\Omistaja\Application Data\Ulead Systems C:\Documents and Settings\Omistaja\Application Data\Ursoft C:\Documents and Settings\Omistaja\Application Data\Vlc C:\Documents and Settings\Omistaja\Application Data\Webcompiler3 C:\Documents and Settings\Omistaja\Application Data\Wsinspector C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\.abc C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Adobe C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Adobeum -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Ahead -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Apple Computer C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Ashampoo Photo Commander 4 C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Azureus C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Bearshare C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Bsplayer Pro C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Corel C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Creative C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Deepburner C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Exporttool C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\F-secure C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Faststone C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Foobar2000 C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Funkitron C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Gearbox Software -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Google C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Help -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Identities C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Installshield C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Intervideo C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Launchy C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Lavasoft C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Leadertech C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Limewire C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Logitech C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Macromedia C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Microsoft C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Morpheus C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Motive C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Mozilla C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Nokia Multimedia Player C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Opera C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Pc Suite C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Playfirst C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Propellerhead Software C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Real C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Sampleview -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Screenshot Sender C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Securom C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Seven Zip C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Skype C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Slysoft C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Sonic C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Sun C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Symantec C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Talkback C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Tuneup Software C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Uk.co.planetside C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Ulead Systems C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Ursoft C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Utorrent C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Vlc C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Vso_hwe C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Webshots -- EMPTY Directory C:\Documents and Settings\Sebastian.your-3z2mfyow5g.001\Application Data\Wsinspector Siinä oli nuo lokit.
Moi! Avaa hjt ja paina do system scan only. Merkkaa tämä rivi ja paina Fix checked. O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE Sitten, päivitetään javasi: Javan päivitys ja välimuistin tyhjennys 1. Klikkaa Käynnistä > Ohjauspaneeli ja tupla-klikkaa Lisää tai poista sovellus Ohjauspaneelissa. 2. Etsi listasta kaikki entiset Java versiosi. (J2SE Runtime Environment.... ) Niissä pitäisi olla seuraava kuva vieressä: 3. Valitse kaikki entiset Java versiosi ja valitse Poista. 4. Asenna uusin Java päivitys seuraavasta linkistä.. 5. Käynnistä kone uudelleen asennuksen jälkeen: http://java.sun.com/javase/downloads/index.jsp Rullaa alas kohteeseen Java Runtime Environment (JRE) 6 Paina Download Ruksaa Accept, ota offline installation, tallenna vaikka työpöydälle ja asenna 6. Käynnistyksen jälkeen, mene takaisin Ohjauspaneeliin ja avaa Java asetuksesi (Muita Ohjauspaneelin asetuksia -> Java kahvikuppi). 7. General Settings -osion alla, vedä liukusäädintä (Disk Space) pienemmälle, ja klikkaa Delete Files nappia. (Jotkut javapohjaiset ohjelmat saattavat tarvita enemmän levytilaa. Jos huomaat säädön pienentämisen jälkeen koneessa hitautta, siirrä liukusäädintä isommalle). 8. Varmista että kaikki kaksi valintaa ovat rastitettuja: Applications and Applets Trace and Log Files Ok 9. Klikkaa OK "Temporary Files Settings" -ikkunassasi. Huomaa: Tämä poistaa kaikki ladatut sovellukset ja appletit VÄLIMUISTISTA. 10. Klikkaa OK jättääksesi Java asetusikkunasi. -------------------------- Ajetaan Avg-Antispyware Ennen tätä, poista Ewidosi, se on Avg-Antispywaresta vanhempi versio. Tallenna nämä ohjeet tekstitiedostoon tai tulosta nämä, muuten et pääse niihin käsiksi vikasietotilasta Lataa AVG Anti-Spyware 7.5 ja tallenna ohjelma työpöydällesi. Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa. Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää. Käynnistä AVG Anti-Spyware. Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta. Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa. Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti. Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine". Sitten "Reports" valikon alta: Laita täppi kohtaan "Automatically generate report after every scan" Ota täppi pois kohdasta"Only if threats were found" Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa "Resident shield is", muuta tila active:sta inactive:ksi Sulje ohjelma, ÄLÄ skannaa vielä. Käynnistä koneesi vikasietotilaan, Ohje! HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta. Kun vikasietotilassa, käynnistä AVG Anti-Spyware. Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan". AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa. Kun skannaus on valmis: TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions" Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta. Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions" Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta. Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle. Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestikejuusi. ----------------------------- Lähetä Avg-Antispywaren loki ja uusi Hjt-loki seuraavaan viestiisi.
Tuo kanssa fixsaten O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZH
--------------------------------------------------------- AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 22:41:06 10/02/2007 + Scan result: C:\Program Files\Microsoft AntiSpyware\Quarantine\4EBE9CEA-3728-4972-A727-006C36\88F29349-A24F-4F2F-A713-6D0386 -> Adware.ErrorSafe : Cleaned with backup (quarantined). C:\Program Files\Microsoft AntiSpyware\Quarantine\4EBE9CEA-3728-4972-A727-006C36\B84B2BC1-DF67-47CB-8B06-222400 -> Adware.ErrorSafe : Cleaned with backup (quarantined). C:\Program Files\Microsoft AntiSpyware\Quarantine\4EBE9CEA-3728-4972-A727-006C36\C34EBE9C-B060-474A-9064-1EF43A -> Adware.ErrorSafe : Cleaned with backup (quarantined). C:\Program Files\Microsoft AntiSpyware\Quarantine\61554163-4B4A-4B26-ABDC-C3BCCD\AC920C90-B8BF-4EF9-839C-BD2148 -> Adware.ErrorSafe : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Käynnistä-valikko\Ohjelmat\WhenU -> Adware.SaveNow : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Käynnistä-valikko\Ohjelmat\WhenU\Learn More About Save!.url -> Adware.SaveNow : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Käynnistä-valikko\Ohjelmat\WhenU\Learn More About SaveNow.url -> Adware.SaveNow : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Käynnistä-valikko\Ohjelmat\WhenU\WhenU.com Website.url -> Adware.SaveNow : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\BrowserSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\BrowserSearch\BrowserSearch.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\BrowserSearch\BrowserSearch.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ErrorSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ErrorSearch\ErrorSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ErrorSearch\ErrorSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Games -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Games\GamesOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Games\GamesOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Layouts -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Layouts\PreferencesLayout.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Layouts\PreferencesLayout.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Layouts\ToolbarLayout.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Layouts\ToolbarLayout.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Manager -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Manager\ManagerOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Manager\ManagerOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\PopupBlocker -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\PopupBlocker\PopupBlockerOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\PopupBlocker\PopupBlockerOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Reference -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Reference\ReferenceOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Reference\ReferenceOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\RelatedSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\RelatedSearch\RelatedSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\RelatedSearch\RelatedSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ScreenSavers -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ScreenSavers\ScreenSaversOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ScreenSavers\ScreenSaversOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SearchMatch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SearchMatch\SearchMatchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SearchMatch\SearchMatchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SmileyTown -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SmileyTown\SmileyTownOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\SmileyTown\SmileyTownOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Toolbar -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarLogo -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarLogo\ToolbarLogoOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarSearch\ToolbarSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Toolbar\TBProductsOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\Toolbar\TBProductsOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\TravelSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\TravelSearch\TravelSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.000\Application Data\Starware\TravelSearch\TravelSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\BrowserSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\BrowserSearch\BrowserSearch.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\BrowserSearch\BrowserSearch.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ErrorSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\ErrorSearch\ErrorSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ErrorSearch\ErrorSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Layouts -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\Layouts\PreferencesLayout.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Layouts\PreferencesLayout.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Layouts\ToolbarLayout.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Layouts\ToolbarLayout.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Manager -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\Manager\ManagerOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Manager\ManagerOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\PopupBlocker -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\PopupBlocker\PopupBlockerOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\PopupBlocker\PopupBlockerOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Reference -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\Reference\ReferenceOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Reference\ReferenceOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\RelatedSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\RelatedSearch\RelatedSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\RelatedSearch\RelatedSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ScreenSavers -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\ScreenSavers\ScreenSaversOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ScreenSavers\ScreenSaversOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\SearchMatch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\SearchMatch\SearchMatchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\SearchMatch\SearchMatchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Toolbar -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarLogo -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarLogo\ToolbarLogoOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarSearch\ToolbarSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Toolbar\TBProductsOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Toolbar\TBProductsOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\TravelSearch -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\TravelSearch\TravelSearchOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\TravelSearch\TravelSearchOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Weather -> Adware.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Sebastian\Application Data\Starware\Weather\WeatherOptions.xml -> Adware.Starware : Error during cleaning. C:\Documents and Settings\Sebastian\Application Data\Starware\Weather\WeatherOptions.xml.backup -> Adware.Starware : Error during cleaning. C:\Program Files\Carfiles\Cache\00001e1f_43952f94_000e8b25 -> Downloader.IstBar.j : Cleaned with backup (quarantined). C:\Program Files\Carfiles\Cache\00005af1_43ade082_0000f424 -> Downloader.IstBar.j : Cleaned with backup (quarantined). C:\Program Files\Carfiles\Cache\000066bb_43952b63_0002dc6c -> Downloader.IstBar.j : Cleaned with backup (quarantined). C:\Program Files\Carfiles\Cache\00007f96_43953076_000d59f8 -> Downloader.IstBar.j : Cleaned with backup (quarantined). C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc167.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.64:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.65:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc129.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.74:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.75:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.76:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.79:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. V:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\Low\sebastian@advertising[1].txt -> TrackingCookie.Advertising : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc134.txt -> TrackingCookie.Atdmt : Cleaned. V:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\sebastian@atdmt[1].txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.101:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Com : Cleaned. :mozilla.102:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Com : Cleaned. C:\Documents and Settings\Omistaja\Cookies\omistaja@com[1].txt -> TrackingCookie.Com : Cleaned. :mozilla.63:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.575:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.576:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc141.txt -> TrackingCookie.Hitbox : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc149.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.458:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Spylog : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc176.txt -> TrackingCookie.Spylog : Cleaned. :mozilla.28:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.30:C:\Documents and Settings\Katariina.YOUR-3Z2MFYOW5G\Application Data\Mozilla\Firefox\Profiles\t1ljrupc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.31:C:\Documents and Settings\Katariina.YOUR-3Z2MFYOW5G\Application Data\Mozilla\Firefox\Profiles\t1ljrupc.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.80:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.157:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.158:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.159:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.160:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.161:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.162:C:\Documents and Settings\Sebastian.YOUR-3Z2MFYOW5G.001\Application Data\Mozilla\Firefox\Profiles\46ubk3cg.default\cookies.txt -> TrackingCookie.Valuead : Cleaned. :mozilla.40:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.77:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.78:V:\Users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\kfl7txdi.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. C:\RECYCLER\S-1-5-21-1654594328-2261748779-227162649-1008\Dc128.txt -> TrackingCookie.Yieldmanager : Cleaned. ::Report end Logfile of HijackThis v1.99.1 Scan saved at 22:52:19, on 10/02/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\OO Software\CleverCache\ooccag.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\AGRSMMSG.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe C:\Program Files\LClock\LClock.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Launchy\Launchy.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\hjt\PaskanPoistaja.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Skyhook Wireless Loki - {43537A86-707C-46E7-B408-82588B7993D3} - C:\Program Files\Skyhook Wireless\Loki\LokiIe.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\Spyware Doctor\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O3 - Toolbar: Skyhook Wireless Loki - {7F16E247-9F8E-4778-956E-AFEDF3D2FE0C} - C:\Program Files\Skyhook Wireless\Loki\LokiIe.dll O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe" /StartupJobs O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Ashampoo FireWall] "C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" -TRAY O4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock.exe O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\lclock.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Launchy.lnk = C:\Program Files\Launchy\Launchy.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\Spyware Doctor\tools\iesdpb.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.11) - http://gameadvisor.futuremark.com/global/msc311.cab O18 - Protocol: bw+0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\msgrapp.8.0.0812.00.dll O18 - Protocol: offline-8876480 - {63406400-691A-47AB-BFA8-D0E35F8B14DE} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: AshampooDefragService - - C:\Program Files\Ashampoo\Ashampoo Magic Defrag\bin\aDefragService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O CleverCache Agent (OOCleverCacheAgent) - O&O Software GmbH - C:\Program Files\OO Software\CleverCache\ooccag.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: WPS Scanner Service (WPSScannerSvc) - Unknown owner - C:\Program Files\Skyhook Wireless\Wi-Fi Driver\WPSScannerSvc.exe Tuo avg muuten sanoi, että monta niistä ei voinut laittaa karanteeniin, poistetaanko kuitenkin? Laitoin jokaiseen, että kyllä.
Moi! Loki näyttää olevan kunnossa. Poistetaan cookiessit ja tempit jne. Lataa Atribunen ATF Cleaner Ohjeet; Tupla-klikkaa ATF-Cleaner.exe käynnistääksesi ohjelman. Main:n alla valitse: Select All Klikkaa Empty Selected valintaa. Jos käytät FireFoxia selaimenasi Klikkaa Firefox yläpuolelta ja valitse: Select All Klikkaa Empty Selected valintaa. HUOMIO: Jos haluaisit pitää tallennetut salasanasi, klikkaa No kun se sitä kysyy. Jos käytät Operaa selaimenasi Klikkaa Opera yläpuolelta ja valitse: Select All Klikkaa Empty Selected valintaa taas. HUOMIO: Jos haluaisit pitää tallennetut salasanasi, klikkaa No kun se sitä kysyy. Klikkaa Exit päävalikosta sulkeaksesi ohjelman. Teknistä tukea tulee jos tupla-klikkaat sähköpostiosoitetta joka sijaitsee jokaisen menun alapuolella kyseisessä työkalussa. (Huomatkaa että se tuki on sitten englanniksi)