Tietokoneen suorituskyky laskeneet! En osaa hoitaa asiaa yksin!

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by tounaii, Jul 15, 2008.

  1. tounaii

    tounaii Member

    Joined:
    Jul 12, 2008
    Messages:
    13
    Likes Received:
    0
    Trophy Points:
    11
    Käyttöjärjestelmä: Windows Vista Ultimate SP1
    Prosessori: AMD 5000+
    RAM : 2gb 800mhz ( jostain syystä lämmöt rameissa 48 - 51c )
    näytönohjain: XFX 8800GT 1024MB alphadog edition
    kovalevy: 160gb SATAII
    emolevy: M2N-SLI asus

    Eli tämän kesälomani aikana Unreal Tournament 3 toimi Täysillä Grafiikoilla noin 100 fps luokkaa!

    Tällä hetkellä Grafiikat ovat niin huonot kun voivat olla ja Fps noin 20 - 30 ..

    Olen tehnyt avast!:tilla full scanin kuten myös ad awarella .
    pari spywarea löytyi mutta pääsin niistä eroon.

    koneen suoritus kyky yhä maassa.

    Sitten löysin ohjelman reqcure ..

    Sain suorituskykyä vähän takaisin jonka huomasin pelien FPS Takia ..

    Mutta kone menettää tehonsa uudestaan..

    Olen uusi näillä foorumeilla joten otin selvää mitä tarvii lisätä..

    Tässä siis tämä "hijackthis" logi..

    Jos joku löytää jotain pahaa softaa mun koneelta niin voitteko myös selitellä mitä pitää tehä päästääkseen niistä eroon ( luin pari topiccia joissa taisi olla samoja ongelmia mutta , meinasin että oman koneeni henkilökohtainen logi voisi olla aina parempi .. ja en myöskään saanut täyttä selkoa mitä pitää tehdä kun vastauksia luin )

    Toivon Että pääsisin taas pelaamaan uusien osien tuomalla teholla!


    **EDIT** ainiin tietenkin se logi :D

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2:21:17, on 16.7.2008
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18000)
    Boot mode: Normal

    Running processes:
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Windows\System32\rundll32.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [C6501Sound] RunDll32 c6501.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O13 - Gopher Prefix:
    O21 - SSODL: gnowmebk - {39EB6C78-4568-4EB4-8DD3-E289E228C58D} - (no file)
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - (no file)
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: F-Secure Management Agent (FSMA) - Unknown owner - (no file)
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

    --
    End of file - 6687 bytes
     
    Last edited: Jul 15, 2008
  2. tounaii

    tounaii Member

    Joined:
    Jul 12, 2008
    Messages:
    13
    Likes Received:
    0
    Trophy Points:
    11
    Malwarebytes' Anti-Malware 1.20
    Tietokantaversio: 957
    Windows 6.0.6001 Service Pack 1

    3:42:14 16.7.2008
    mbam-log-7-16-2008 (03-42-14).txt

    Tarkistustyyppi: Täysi tarkistus (C:\|)
    Tarkistetut kohteet: 182771
    Kulunut aika: 51 minute(s), 9 second(s)

    Saastuneita muistiprosesseja: 0
    Saastuneita muistimoduuleja: 0
    Saastuneita rekisteriavaimia: 2
    Saastuneita rekisteriarvoja: 1
    Saastuneita rekisterikohteita: 0
    Saastuneita hakemistoja: 0
    Saastuneita tiedostoja: 0

    Saastuneita muistiprosesseja:
    (Haitallisia kohteita ei löydetty)

    Saastuneita muistimoduuleja:
    (Haitallisia kohteita ei löydetty)

    Saastuneita rekisteriavaimia:
    HKEY_CLASSES_ROOT\gktxaspm.bxsr (Trojan.FakeAlert) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\gktxaspm.toolbar.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.

    Saastuneita rekisteriarvoja:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\gnowmebk (Trojan.FakeAlert) -> Quarantined and deleted successfully.

    Saastuneita rekisterikohteita:
    (Haitallisia kohteita ei löydetty)

    Saastuneita hakemistoja:
    (Haitallisia kohteita ei löydetty)

    Saastuneita tiedostoja:
    (Haitallisia kohteita ei löydetty)
     
  3. tounaii

    tounaii Member

    Joined:
    Jul 12, 2008
    Messages:
    13
    Likes Received:
    0
    Trophy Points:
    11
    ComboFix 08-07-14.2 - Administrator 2008-07-16 3:55:37.1 - NTFSx86 MINIMAL
    Microsoft® Windows Vista™ Ultimate 6.0.6001.1.1252.1.1033.18.1712 [GMT 3:00]
    Running from: C:\Users\Tounaii\Desktop\ComboFix.exe
    .

    ((((((((((((((((((((((((( Files Created from 2008-06-16 to 2008-07-16 )))))))))))))))))))))))))))))))
    .

    No new files created in this timespan

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-07-15 23:46 --------- d-----w C:\Users\Tounaii\AppData\Roaming\Malwarebytes
    2008-07-15 23:46 --------- d-----w C:\ProgramData\Malwarebytes
    2008-07-15 23:46 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
    2008-07-15 23:20 --------- d-----w C:\Program Files\Trend Micro
    2008-07-15 02:07 --------- d-----w C:\Users\Tounaii\AppData\Roaming\LimeWire
    2008-07-13 20:16 --------- d-----w C:\Program Files\EndItAll
    2008-07-13 19:33 --------- d-----w C:\Program Files\SpeedFan
    2008-07-13 15:20 --------- d-----w C:\Users\Administrator\AppData\Roaming\My The Lord of the Rings, The Rise of the Witch-king Files
    2008-07-13 11:52 --------- d-----w C:\Program Files\Winamp
    2008-07-13 10:53 --------- d-----w C:\Users\Tounaii\AppData\Roaming\mIRC
    2008-07-13 10:17 --------- d-----w C:\Program Files\mIRC
    2008-07-12 20:17 --------- d-----w C:\ProgramData\WindowsSearch
    2008-07-12 20:03 --------- d-----w C:\Program Files\Warcraft III
    2008-07-12 19:39 --------- d-----w C:\ProgramData\Lavasoft
    2008-07-12 19:39 --------- d-----w C:\Program Files\Lavasoft
    2008-07-12 19:38 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
    2008-07-12 18:17 --------- d-----w C:\Users\Tounaii\AppData\Roaming\Xfire
    2008-07-12 18:17 --------- d-----w C:\Program Files\Steam
    2008-07-12 17:27 --------- d-----w C:\Program Files\RegCure
    2008-07-11 21:03 --------- d-----w C:\Program Files\Common Files\Steam
    2008-07-11 16:19 --------- d-----w C:\Program Files\Electronic Arts
    2008-07-11 16:02 --------- d-----w C:\Users\Tounaii\AppData\Roaming\dvdcss
    2008-07-11 16:02 --------- d-----w C:\Users\Tounaii\AppData\Roaming\DAEMON Tools
    2008-07-11 16:02 --------- d-----w C:\ProgramData\Xfire
    2008-07-11 16:02 --------- d-----w C:\Program Files\Winamp Toolbar
    2008-07-11 16:02 --------- d-----w C:\Program Files\Rockstar Games
    2008-07-11 16:02 --------- d-----w C:\Program Files\F-Secure Internet Security
    2008-07-11 16:02 --------- d-----w C:\Program Files\Avira
    2008-07-08 01:43 23 ----a-w C:\Users\Tounaii\jagex_runescape_preferences.dat
    2008-07-07 14:35 34,296 ----a-w C:\Windows\system32\drivers\mbamcatchme.sys
    2008-07-07 14:35 17,144 ----a-w C:\Windows\system32\drivers\mbam.sys
    2008-07-06 02:33 --------- d-----w C:\Program Files\StuffPlug3
    2008-07-03 18:19 --------- d-----w C:\Users\Tounaii\AppData\Roaming\Hamachi
    2008-07-03 15:49 --------- d--h--w C:\Program Files\InstallShield Installation Information
    2008-07-03 15:49 --------- d-----w C:\Program Files\LucasArts
    2008-07-03 15:48 --------- d-----w C:\Program Files\Common Files\InstallShield
    2008-07-02 20:36 --------- d---a-w C:\ProgramData\TEMP
    2008-07-02 19:29 --------- d-----w C:\Users\Tounaii\AppData\Roaming\teamspeak2
    2008-07-02 19:29 --------- d-----w C:\Program Files\Teamspeak2_RC2
    2008-07-02 09:46 --------- d-----w C:\Program Files\Xfire
    2008-06-28 19:46 --------- d-----w C:\Program Files\Ultra Utility
    2008-06-28 19:26 --------- d-----w C:\Program Files\NFS Carbon
    2008-06-26 20:10 42,320 ----a-w C:\Windows\System32\xfcodec.dll
    2008-06-26 13:43 --------- d-----w C:\ProgramData\Xerox
    2008-06-26 13:26 0 ---ha-w C:\Windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
    2008-06-25 16:41 --------- d-----w C:\Program Files\Google
    2008-06-23 12:31 --------- d-----w C:\ProgramData\NVIDIA
    2008-06-22 20:03 107,888 ----a-w C:\Windows\System32\CmdLineExt.dll
    2008-06-19 19:15 174 --sha-w C:\Program Files\desktop.ini
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Sidebar
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Photo Gallery
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Mail
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Journal
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Defender
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Collaboration
    2008-06-19 19:06 --------- d-----w C:\Program Files\Windows Calendar
    2008-06-19 09:52 82,432 ----a-w C:\Windows\System32\axaltocm.dll
    2008-06-19 09:52 101,888 ----a-w C:\Windows\System32\ifxcardm.dll
    2008-06-18 20:34 --------- d-----w C:\Program Files\AGEIA Technologies
    2008-06-18 18:31 22,328 ----a-w C:\Users\Tounaii\AppData\Roaming\PnkBstrK.sys
    2008-06-15 20:46 --------- d-----w C:\Program Files\DivX
    2008-06-15 20:45 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
    2008-06-14 17:31 --------- d-----w C:\Users\Administrator\AppData\Roaming\Xfire
    2008-06-10 16:50 --------- d-----w C:\Users\Tounaii\AppData\Roaming\Audacity
    2008-06-04 19:36 230,729,814 ----a-w C:\Program Files\Common Files\Adobe.rar
    2008-06-03 23:30 --------- d-----w C:\ProgramData\Messenger Plus!
    2008-06-03 14:00 --------- d-----w C:\Program Files\Messenger Plus! Live
    2008-06-03 00:38 --------- d-----w C:\Users\Tounaii\AppData\Roaming\My The Lord of the Rings, The Rise of the Witch-king Files
    2008-06-02 19:14 --------- d-----w C:\Users\Tounaii\AppData\Roaming\My Battle for Middle-earth(tm) II Files
    2008-06-01 18:22 17,480 ----a-w C:\Windows\system32\drivers\hamachi.sys
    2008-05-30 23:22 823,296 ----a-w C:\Windows\System32\divx_xx0c.dll
    2008-05-30 23:22 823,296 ----a-w C:\Windows\System32\divx_xx07.dll
    2008-05-30 23:22 815,104 ----a-w C:\Windows\System32\divx_xx0a.dll
    2008-05-30 23:22 802,816 ----a-w C:\Windows\System32\divx_xx11.dll
    2008-05-30 23:22 683,520 ----a-w C:\Windows\System32\DivX.dll
    2008-05-30 23:22 593,920 ----a-w C:\Windows\System32\dpuGUI11.dll
    2008-05-30 23:22 57,344 ----a-w C:\Windows\System32\dpv11.dll
    2008-05-30 23:22 53,248 ----a-w C:\Windows\System32\dpuGUI10.dll
    2008-05-30 23:22 344,064 ----a-w C:\Windows\System32\dpus11.dll
    2008-05-30 23:22 294,912 ----a-w C:\Windows\System32\dpu11.dll
    2008-05-30 23:22 294,912 ----a-w C:\Windows\System32\dpu10.dll
    2008-05-29 22:53 --------- d-----w C:\ProgramData\FLEXnet
    2008-05-29 22:46 --------- d-----w C:\Program Files\Common Files\Adobe
    2008-05-29 22:46 --------- d-----w C:\Program Files\Bonjour
    2008-05-29 22:35 --------- d-----w C:\Program Files\Common Files\Macrovision Shared
    2008-05-29 18:02 --------- d-----w C:\Users\Tounaii\AppData\Roaming\InstallShield Installation Information
    2008-05-29 17:42 --------- d-----w C:\Program Files\Unreal Tournament 3
    2008-05-28 18:14 --------- d-----w C:\Program Files\Last.fm
    2008-05-26 18:56 --------- d-----w C:\Program Files\Alwil Software
    2008-05-26 18:54 --------- d-----w C:\ProgramData\Avira
    2008-05-26 18:16 --------- d-----w C:\ProgramData\F-Secure
    2008-05-26 18:14 --------- d-----w C:\ProgramData\Winamp Toolbar
    2008-05-26 01:12 --------- d-----w C:\ProgramData\Last.fm
    2008-05-22 22:22 524,288 ----a-w C:\Windows\System32\DivXsm.exe
    2008-05-22 22:22 3,596,288 ----a-w C:\Windows\System32\qt-dx331.dll
    2008-05-22 22:22 129,784 ------w C:\Windows\System32\pxafs.dll
    2008-05-22 22:20 200,704 ----a-w C:\Windows\System32\ssldivx.dll
    2008-05-22 22:20 1,044,480 ----a-w C:\Windows\System32\libdivx.dll
    2008-05-22 22:19 81,920 ----a-w C:\Windows\System32\dpl100.dll
    2008-05-22 22:19 196,608 ----a-w C:\Windows\System32\dtu100.dll
    .

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 02:19 79224]
    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]
    "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
    "TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-04-20 14:30 185896]
    "NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2008-05-02 22:46 13535776]
    "NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2008-05-02 22:46 92704]
    "PWRISOVM.EXE"="C:\Program Files\PowerISO\PWRISOVM.EXE" [2008-03-15 02:50 233472]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
    "GrpConv"="grpconv -o" [X]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "EnableLUA"= 0 (0x0)
    "EnableUIADesktopToggle"= 0 (0x0)

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
    "VIDC.XFR1"= xfcodec.dll

    [HKLM\~\startupfolder\C:^Users^Tounaii^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Xfire.lnk]
    backup=C:\Windows\pss\Xfire.lnkStartup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
    --a------ 2008-04-01 12:39 486856 C:\Program Files\DAEMON Tools Lite\daemon.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCommunicationsManager]
    --a------ 2007-07-25 16:02 563984 C:\Program Files\Common Files\logishrd\LComMgr\Communications_Helper.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
    --a------ 2007-07-25 16:06 2027792 C:\Program Files\Logitech\QuickCam\Quickcam.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
    --a------ 2007-10-18 11:34 5724184 C:\Program Files\Windows Live\Messenger\msnmsgr.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
    --a------ 2008-06-26 20:32 1271032 c:\Program Files\Steam\Steam.exe

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
    "{237EF9DB-8D30-4C6F-A263-A81AF6CC696E}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
    "TCP Query User{948DD628-2E0E-4DDA-AB78-4A4469120924}C:\\program files\\xfire\\xfire.exe"= UDP:C:\program files\xfire\xfire.exe:Xfire
    "UDP Query User{2EBDDEA3-9CCA-456C-B723-5CDEFFD43955}C:\\program files\\xfire\\xfire.exe"= TCP:C:\program files\xfire\xfire.exe:Xfire
    "TCP Query User{E42C83C0-7EE9-42EA-B3FD-6CDC5F84F854}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike\\hl.exe"= UDP:C:\program files\steam\steamapps\pasi374\counter-strike\hl.exe:Half-Life Launcher
    "UDP Query User{0FD4833B-9C47-486C-87C2-09777A9E4413}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike\\hl.exe"= TCP:C:\program files\steam\steamapps\pasi374\counter-strike\hl.exe:Half-Life Launcher
    "TCP Query User{73B85742-4433-4F92-A762-BF2B4A8B56A5}C:\\program files\\bitlord\\bitlord.exe"= UDP:C:\program files\bitlord\bitlord.exe:BitLord
    "UDP Query User{52FE6879-3250-47EA-B307-841851B99E37}C:\\program files\\bitlord\\bitlord.exe"= TCP:C:\program files\bitlord\bitlord.exe:BitLord
    "{3695F0C9-C631-4EAB-B332-7CA1264D1013}"= UDP:C:\Windows\System32\PnkBstrA.exe:pnkBstrA
    "{DA90EF93-3171-4354-81DF-4869E86BA59B}"= TCP:C:\Windows\System32\PnkBstrA.exe:pnkBstrA
    "{2514AA16-92E9-41E0-B2CE-0FD6A64E0102}"= UDP:C:\Windows\System32\PnkBstrB.exe:pnkBstrB
    "{F8C17589-8B89-4BDD-BF4E-6626E191D446}"= TCP:C:\Windows\System32\PnkBstrB.exe:pnkBstrB
    "TCP Query User{8B8CE19F-E395-4546-A04C-C8B53D0A882B}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike source\\hl2.exe"= UDP:C:\program files\steam\steamapps\pasi374\counter-strike source\hl2.exe:hl2
    "UDP Query User{38B7D6B9-DE4E-4165-884F-B3CBE2EFAA95}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike source\\hl2.exe"= TCP:C:\program files\steam\steamapps\pasi374\counter-strike source\hl2.exe:hl2
    "{8DF2CB9E-C8E4-4DF6-B692-2F752688AA3E}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
    "TCP Query User{7201F4AC-2830-44A8-9ED3-428154B9EBD9}C:\\program files\\xfire\\xfire.exe"= UDP:C:\program files\xfire\xfire.exe:Xfire
    "UDP Query User{0248760D-4D48-40DE-90CA-2A456727CC6F}C:\\program files\\xfire\\xfire.exe"= TCP:C:\program files\xfire\xfire.exe:Xfire
    "TCP Query User{0F1888A4-7052-4D24-B804-4C71C5C9AE1B}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike source\\hl2.exe"= UDP:C:\program files\steam\steamapps\pasi374\counter-strike source\hl2.exe:hl2
    "UDP Query User{BF13F83C-600C-4D20-A2C1-E53FB66D1D46}C:\\program files\\steam\\steamapps\\pasi374\\counter-strike source\\hl2.exe"= TCP:C:\program files\steam\steamapps\pasi374\counter-strike source\hl2.exe:hl2
    "TCP Query User{C662F2DE-7D96-4716-88A5-1FA673E8045B}C:\\program files\\mozilla firefox\\firefox.exe"= UDP:C:\program files\mozilla firefox\firefox.exe:Firefox
    "UDP Query User{96EAB8A2-4124-40AD-84D7-3CE382616495}C:\\program files\\mozilla firefox\\firefox.exe"= TCP:C:\program files\mozilla firefox\firefox.exe:Firefox
    "{9A49B2CC-7273-4782-9E8D-7E9700EFF68A}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
    "{DBB60275-3258-4571-845D-653BBA63CBE8}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
    "{D2D07155-426F-4816-8AC1-E84DA2F0635B}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
    "{101E3753-3BCA-4FF5-BF3F-2443A34DB291}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
    "TCP Query User{6B7CB58E-DC61-41CE-8421-96454DC00026}C:\\program files\\steam\\steamapps\\common\\trackmania nations forever\\tmforever.exe"= UDP:C:\program files\steam\steamapps\common\trackmania nations forever\tmforever.exe:TmForever
    "UDP Query User{5E33334C-BBD2-4C7E-B6FA-08E90C1720D3}C:\\program files\\steam\\steamapps\\common\\trackmania nations forever\\tmforever.exe"= TCP:C:\program files\steam\steamapps\common\trackmania nations forever\tmforever.exe:TmForever
    "TCP Query User{D8C6AEC8-FFD8-456E-98F2-CCC0996ED25F}C:\\program files\\warcraft iii\\war3.exe"= UDP:C:\program files\warcraft iii\war3.exe:Warcraft III
    "UDP Query User{CA0B54B3-DC4D-41E3-9632-9B8CE30E6C26}C:\\program files\\warcraft iii\\war3.exe"= TCP:C:\program files\warcraft iii\war3.exe:Warcraft III
    "TCP Query User{E339824D-C345-4EE7-B0A9-CB55BA8A0CBF}C:\\users\\tounaii\\desktop\\lancraft101b\\lancraft.exe"= UDP:C:\users\tounaii\desktop\lancraft101b\lancraft.exe:lancraft.exe
    "UDP Query User{8C324CC1-6B55-4370-9C23-16F62B72FF89}C:\\users\\tounaii\\desktop\\lancraft101b\\lancraft.exe"= TCP:C:\users\tounaii\desktop\lancraft101b\lancraft.exe:lancraft.exe
    "TCP Query User{2DB8847B-45CE-4C41-8173-1F3AC9158F59}C:\\program files\\hamachi\\hamachi.exe"= UDP:C:\program files\hamachi\hamachi.exe:Hamachi Client
    "UDP Query User{E3BFF99C-960E-4679-8D82-CD407A008078}C:\\program files\\hamachi\\hamachi.exe"= TCP:C:\program files\hamachi\hamachi.exe:Hamachi Client
    "TCP Query User{22BECE02-5117-455F-872F-8E1711061EE9}C:\\program files\\warcraft iii\\war3.exe"= UDP:C:\program files\warcraft iii\war3.exe:Warcraft III
    "UDP Query User{B513EC99-57A3-4CAB-86CC-574063B79435}C:\\program files\\warcraft iii\\war3.exe"= TCP:C:\program files\warcraft iii\war3.exe:Warcraft III
    "TCP Query User{2B2CD606-4C6A-4451-BF9E-1A67AD0C5760}C:\\program files\\winamp remote\\bin\\orbtray.exe"= UDP:C:\program files\winamp remote\bin\orbtray.exe:Orb
    "UDP Query User{7E5A8948-DD3F-4A77-8D9B-658178A0756D}C:\\program files\\winamp remote\\bin\\orbtray.exe"= TCP:C:\program files\winamp remote\bin\orbtray.exe:Orb
    "{2C26B4CB-5009-4D10-A3A5-40174277CC74}"= UDP:C:\Program Files\Electronic Arts\The Battle for Middle-earth (tm) II\game.dat:The Battle for Middle-earth(tm) II
    "{0DC68879-35CE-4139-AB48-31122D74C8B0}"= TCP:C:\Program Files\Electronic Arts\The Battle for Middle-earth (tm) II\game.dat:The Battle for Middle-earth(tm) II
    "{E1563ADD-CDBE-43D8-B181-99A85A0F2F16}"= UDP:C:\Program Files\Electronic Arts\The Lord of the Rings, The Rise of the Witch-king\game.dat:The Lord of the Rings, The Rise of the Witch-king
    "{57DC5E87-556A-4CC9-9C4D-C26F22762692}"= TCP:C:\Program Files\Electronic Arts\The Lord of the Rings, The Rise of the Witch-king\game.dat:The Lord of the Rings, The Rise of the Witch-king
    "{AB9757EC-9030-45B1-9BE8-1BF11CFA54E3}"= UDP:C:\Program Files\Unreal Tournament 3\Binaries\UT3.exe:Unreal Tournament 3
    "{7BAE5478-AB27-4DAF-8C04-57FDD8979F96}"= TCP:C:\Program Files\Unreal Tournament 3\Binaries\UT3.exe:Unreal Tournament 3
    "TCP Query User{13A5AAB7-7B60-424F-AF5D-12AF95C6BA1D}C:\\program files\\team fortress 2\\hl2.exe"= UDP:C:\program files\team fortress 2\hl2.exe:hl2
    "UDP Query User{EE978AAE-D2C0-46B8-A271-2C87F7CB9FE9}C:\\program files\\team fortress 2\\hl2.exe"= TCP:C:\program files\team fortress 2\hl2.exe:hl2
    "TCP Query User{62EEEBAD-56CF-4C93-B524-7D232E58C8F2}C:\\program files\\winamp remote\\bin\\orb.exe"= UDP:C:\program files\winamp remote\bin\orb.exe:Orb Application
    "UDP Query User{9A118418-0277-43D4-8961-FE246AA42CCB}C:\\program files\\winamp remote\\bin\\orb.exe"= TCP:C:\program files\winamp remote\bin\orb.exe:Orb Application
    "TCP Query User{A2A337BF-BAAF-4408-9BAD-AA1E8A10FC08}C:\\program files\\winamp remote\\bin\\orbir.exe"= UDP:C:\program files\winamp remote\bin\orbir.exe:OrbIR
    "UDP Query User{356FBBCC-92AD-4F4D-B8F3-C244D6A270DE}C:\\program files\\winamp remote\\bin\\orbir.exe"= TCP:C:\program files\winamp remote\bin\orbir.exe:OrbIR
    "TCP Query User{B118C076-FD8B-4BAF-A2B0-B5CC397F93C9}C:\\tounaii's secret\\roina\\battlelan\\battlelanv0.5\\battlelanv0.5.exe"= UDP:C:\tounaii's secret\roina\battlelan\battlelanv0.5\battlelanv0.5.exe:BattleLAN
    "UDP Query User{C62F1F36-1BA1-42EF-A513-11A03C1AC77B}C:\\tounaii's secret\\roina\\battlelan\\battlelanv0.5\\battlelanv0.5.exe"= TCP:C:\tounaii's secret\roina\battlelan\battlelanv0.5\battlelanv0.5.exe:BattleLAN
    "TCP Query User{897ED4EC-FC74-459D-96FE-2709E71FAB18}C:\\program files\\mirc\\mirc.exe"= UDP:C:\program files\mirc\mirc.exe:mIRC
    "UDP Query User{EF47DB3D-A7A1-4E6E-A07E-590106B593EB}C:\\program files\\mirc\\mirc.exe"= TCP:C:\program files\mirc\mirc.exe:mIRC
    "{0EAFA861-F045-4086-984C-AE89C3DAE710}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
    "{0ACA81D2-EC62-49C7-8223-8CA0D75274D6}"= UDP:C:\Program Files\AeriaGames\ProjectTorque\ProjectTorque.bin:project Torque
    "{58006757-65DF-478D-B7E0-C02EA97555EA}"= TCP:C:\Program Files\AeriaGames\ProjectTorque\ProjectTorque.bin:project Torque
    "TCP Query User{3815DD95-1018-44DF-A92D-6A37FB2F6182}C:\\program files\\steam\\steamapps\\pasi374\\source sdk base\\hl2.exe"= UDP:C:\program files\steam\steamapps\pasi374\source sdk base\hl2.exe:hl2
    "UDP Query User{979EC7F2-8567-4E63-9DDD-2395BB1882A0}C:\\program files\\steam\\steamapps\\pasi374\\source sdk base\\hl2.exe"= TCP:C:\program files\steam\steamapps\pasi374\source sdk base\hl2.exe:hl2
    "TCP Query User{1AA6F8B2-690C-4A34-A8C2-FBDBD4D71C6C}C:\\program files\\jedi academy\\gamedata\\jamp.exe"= UDP:C:\program files\jedi academy\gamedata\jamp.exe:Jedi Academy MultiPlayer
    "UDP Query User{A587F930-7C20-495B-B332-2665DC325341}C:\\program files\\jedi academy\\gamedata\\jamp.exe"= TCP:C:\program files\jedi academy\gamedata\jamp.exe:Jedi Academy MultiPlayer
    "TCP Query User{7DEA557E-1B6C-4A05-944E-6CC148517F90}C:\\program files\\lucasarts\\star wars jedi knight jedi academy\\gamedata\\jamp.exe"= UDP:C:\program files\lucasarts\star wars jedi knight jedi academy\gamedata\jamp.exe:Jedi Academy MultiPlayer
    "UDP Query User{7FE0BD90-527C-4D56-94D6-01549158E4CB}C:\\program files\\lucasarts\\star wars jedi knight jedi academy\\gamedata\\jamp.exe"= TCP:C:\program files\lucasarts\star wars jedi knight jedi academy\gamedata\jamp.exe:Jedi Academy MultiPlayer

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
    "EnableFirewall"= 0 (0x0)

    S0 OemBiosDevice;Royalty OEM Bios Extension;C:\Windows\system32\drivers\royal.sys [2008-04-06 20:11]
    S1 aswSP;avast! Self Protection;C:\Windows\system32\drivers\aswSP.sys [2008-05-16 02:20]
    S2 aswFsBlk;aswFsBlk;C:\Windows\system32\DRIVERS\aswFsBlk.sys [2008-05-16 02:16]
    S2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2008-05-16 02:18]
    S3 c65013264;C-Media CM6501 Like Sound UDAX Interface;C:\Windows\system32\drivers\c6501.sys [2007-02-07 18:16]
    S3 Steam Client Service;Steam Client Service;C:\Program Files\Common Files\Steam\SteamService.exe [2008-07-11 19:08]

    *Newly Created Service* - CATCHME
    *Newly Created Service* - ECACHE

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7070D8E0-650A-46b3-B03C-9497582E6A74}]
    %SystemRoot%\system32\soundschemes.exe /AddRegistration
    .
    Contents of the 'Scheduled Tasks' folder
    "2008-07-15 17:56:53 C:\Windows\Tasks\RegCure Program Check.job"
    - C:\Program Files\RegCure\RegCure.exe
    "2008-07-12 18:04:13 C:\Windows\Tasks\RegCure.job"
    - C:\Program Files\RegCure\RegCure.exe
    .
    - - - - ORPHANS REMOVED - - - -

    HKLM-Run-C6501Sound - c6501.cpl


    **************************************************************************

    catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-07-16 04:00:40
    Windows 6.0.6001 Service Pack 1 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    Completion time: 2008-07-16 4:03:26
    ComboFix-quarantined-files.txt 2008-07-16 01:03:20

    The system cannot find message text for message number 0x2379 in the message file for Application.
    Post-Run: 54,692,265,984 bytes free

    243 --- E O F --- 2008-06-21 17:21:19
     
  4. tounaii

    tounaii Member

    Joined:
    Jul 12, 2008
    Messages:
    13
    Likes Received:
    0
    Trophy Points:
    11
    Koneen Tehot Vieläkin Maassa

    Tämän hetkinen HijackThis

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:42:26, on 16.7.2008
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18000)
    Boot mode: Normal

    Running processes:
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
    C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\NOTEPAD.EXE
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
    O13 - Gopher Prefix:
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - (no file)
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: F-Secure Management Agent (FSMA) - Unknown owner - (no file)
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

    --
    End of file - 6023 bytes
     
  5. tounaii

    tounaii Member

    Joined:
    Jul 12, 2008
    Messages:
    13
    Likes Received:
    0
    Trophy Points:
    11
    Niin saisiko sitä apua , olisi nimittäin melko kiire tämän kanssa!!

    tiedän kyllä että kukaan ei ole pakotettu auttamaan mutta useat muut topicit näyttävät kyllä saavan vastausta ja apua!

    Joten jos nyt vain voisitte katsoa onko mitään

    Tänään ostettu uusi poweri , lämmöt laskeneet 10-20c :) mutta, ei kone toimi vieläkään!
     
    Last edited: Jul 16, 2008
  6. osckari

    osckari Guest

    jos vaikka formatoisit sen konees jos on noin kiire
     

Share This Page