Koneeni käynnistyksen alussa kun työpöytä kuva käynnistyy niin ruutuun tulee boxi jonka sisällä lukee: Virhe, product not installed. Voisiko joku olla ystävällinen ja neuvoa että minkä rivin poistan jos on tarvetta. Jos löytyy vielä muutakin virheitä niin kerro pois. Kiitos etukäteen Tässä logi: Logfile of HijackThis v1.99.1 Scan saved at 1:19:31, on 24.5.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\system32\rundll32.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Portrait Displays\Pivot Software\floater.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Documents and Settings\Marko\Työpöytä\HijackThis_v1.99.1.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: Mario Forever Toolbar - {463DF6D5-BEC1-4d67-B217-59DB692DFC53} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing O17 - HKLM\System\CCS\Services\Tcpip\..\{8DF08839-5E32-47D6-9AE0-68D154E76164}: NameServer = 85.255.115.60,85.255.112.87 O17 - HKLM\System\CCS\Services\Tcpip\..\{B98E4A6B-6084-4E4C-89AA-D513FA99C9DF}: NameServer = 85.255.115.60,85.255.112.87 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.115.60 85.255.112.87 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.115.60 85.255.112.87 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.115.60 85.255.112.87 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Missäs palomuuri koneelta? ======0 Lataa fixwareout.exe täältä > http://downloads.subratam.org/Fixwareout.exe tai täältä > http://www.bleepingcomputer.com/files/lonny/Fixwareout.exe ja tallenna se työpöydälle. Tuplaklikkaa sitä ja seuraa ohjeita. Klikkaa Next, sitten Install ja varmistu, että "Run fixit" on valittu. Sinun pitää käynnistää kone uudelleen, kun niin käsketään. ======== Tallena nämä ohjeet teksitiedostoon sillä et voi lukea niitä muuten vikasietotilassa. ========== Avaa hijackthis merkkaa seuraavat rivi(t) ja paina fix checked, sulje muut ohjelmat siksi aikaa. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE KAIKKI O17 RIVIT Tässä ohje miten merkataan: ========== 1. Lataa AVG Anti-Spyware 7.5 ja tallenna ohjelma työpöydällesi. Jos sinulla on jo kyseinen ohjelma siirry suoraan kohtaan 2! [*]Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa. [*]Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää. 2. [*]Käynnistä AVG Anti-Spyware. [*]Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta. [*]Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa. [*]Paina hetken kuluttua uudestaan "Start Update" , jos päivitykset eivät heti onnistu [*]Jos automaattipäivitys ei jostain syystä toimi, niin tunnisteet voi ladata manuaalisesti http://www.ewido.net/en/download/updates/ -linkin takaa. [*]Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti. [*]Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine". [*]Sitten "Reports" valikon alta:a [*]Laita täppi kohtaan "Automatically generate report after every scan" [*]Ota täppi pois kohdasta"Only if threats were found" [*]Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa [*]"Resident shield is", muuta tila active:sta inactive:ksi [*]Sulje ohjelma, ÄLÄ skannaa vielä. Käynnistä tietokoneesi vikasietotilaan HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta. [*]Kun vikasietotilassa, käynnistä AVG Anti-Spyware. [*]Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan". [*]AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa. Kun skannaus on valmis: TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions" [*]Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta. [*]Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions" [*]Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta. [*]Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle. [*]Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestiketjuusi. ========== Avaa Oma tietokone -> Tee seuraava toimenpide kaikille Paikallisille levyille ========== Lataa CCleaner ja asenna se: Avaa "Options", sieltä "Language" ja valitse "Suomi (Finnish)" Avaa "Virheet" kohta, paina "Etsi rekisterin virheitä", paina "Korjaa valitut rekisterin virheet..". Paina "Kyllä", kun ohjelma kysyy "Haluatko varmuuskopioida muutokset rekisteriin", tallenna tiedosto esim. työpöydälle. Avaa "Puhdistaja", paina "Tutki" ja tämän jälkeen "Aja Ccleaner". Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti. ========== Jos sinulla ei ole tätä java versiota (6.1): Javan päivitys ja välimuistin tyhjennys: 1. Klikkaa Käynnistä -> Ohjauspaneeli ja tupla-klikkaa Lisää tai poista sovellus Ohjauspaneelissa. 2. Etsi listasta kaikki entiset Java versiosi. (J2SE Runtime Environment.... ) Niissä pitäisi olla seuraava kuva vieressä: 3. Valitse kaikki entiset Java versiosi ja valitse Poista. 4. Asenna uusin Java päivitys seuraavasta linkistä.. 5. Käynnistä kone uudelleen asennuksen jälkeen: http://java.sun.com/javase/downloads/index.jsp Rullaa alas kohteeseen Java Runtime Environment (JRE) 6u1 Paina Download Ruksaa Accept, ota offline installation, tallenna vaikka työpöydälle ja asenna se. 6. Käynnistyksen jälkeen, mene takaisin Ohjauspaneeliin ja avaa Java asetuksesi (Muita Ohjauspaneelin asetuksia -> Java kahvikuppi). 7. General Settings -osion alla, vedä liukusäädintä (Disk Space) pienemmälle, ja klikkaa Delete Files -nappia. (Jotkut javapohjaiset ohjelmat saattavat tarvita enemmän levytilaa. Jos huomaat säädön pienentämisen jälkeen koneessa hitautta, siirrä liukusäädintä isommalle). 8. Varmista että kaikki kaksi valintaa ovat rastitettuja: *Applications and Applets *Trace and Log Files Ja paina OK -nappia 9. Klikkaa OK "Temporary Files Settings" -ikkunassasi. 10. Klikkaa OK jättääksesi Java asetusikkunasi. ========== Uusi Hijackthis logi ja onko ongelmia?
--------------------------------------------------------- AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 12:04:52 24.5.2007 + Scan result: :mozilla.92:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.100:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.101:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.102:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.103:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.104:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.105:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.106:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.107:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.108:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.354:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.759:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.85:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.93:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.94:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.95:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.96:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.97:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.98:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.99:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.198:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.199:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.200:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.218:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.601:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Addcontrol : Cleaned. :mozilla.578:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adocean : Cleaned. :mozilla.579:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adocean : Cleaned. :mozilla.856:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.857:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.858:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.862:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.157:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.72:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.73:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.76:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.77:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.78:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.363:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.364:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.711:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.528:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned. :mozilla.529:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned. :mozilla.702:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.704:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.705:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.706:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.707:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.708:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.709:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.201:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned. :mozilla.818:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Com : Cleaned. :mozilla.18:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.834:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.526:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.527:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.613:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.614:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.615:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.616:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.617:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.618:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.633:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.490:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.491:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.405:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned. :mozilla.406:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned. :mozilla.422:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Gemius : Cleaned. :mozilla.423:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Gemius : Cleaned. :mozilla.425:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Gemius : Cleaned. :mozilla.883:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.435:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.436:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.74:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.75:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.783:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.917:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.919:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.494:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned. :mozilla.365:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned. :mozilla.366:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned. :mozilla.600:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned. :mozilla.484:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. C:\Documents and Settings\Marko\Cookies\marko@search.msn[2].txt -> TrackingCookie.Msn : Cleaned. :mozilla.913:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.288:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Paypal : Cleaned. :mozilla.853:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.854:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.855:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.861:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. C:\Documents and Settings\Marko\Cookies\marko@guide.real[2].txt -> TrackingCookie.Real : Cleaned. :mozilla.443:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned. :mozilla.446:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned. :mozilla.447:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned. :mozilla.448:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned. :mozilla.703:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revenue : Cleaned. :mozilla.292:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.293:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.294:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.299:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.300:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.301:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Revsci : Cleaned. :mozilla.120:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.121:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.122:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.123:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.124:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.125:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.172:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.173:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.174:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.175:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.171:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned. :mozilla.219:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned. :mozilla.220:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned. :mozilla.731:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.584:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.586:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.587:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.284:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned. :mozilla.285:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned. :mozilla.286:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned. :mozilla.287:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned. :mozilla.473:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.474:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.475:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.476:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.477:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.478:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.479:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.6:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statistik-gallup : Cleaned. :mozilla.8:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Statistik-gallup : Cleaned. :mozilla.485:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.87:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.88:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.89:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.90:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.91:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.424:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Toplist : Cleaned. :mozilla.21:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.22:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.23:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.741:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Trafic : Cleaned. :mozilla.113:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned. :mozilla.497:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned. :mozilla.498:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned. :mozilla.767:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned. :mozilla.549:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.493:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Yadro : Cleaned. :mozilla.303:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.304:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.305:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.645:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Zedo : Cleaned. :mozilla.646:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Zedo : Cleaned. :mozilla.647:C:\Documents and Settings\Marko\Application Data\Mozilla\Firefox\Profiles\x0otxwlq.default\cookies.txt -> TrackingCookie.Zedo : Cleaned. ::Report end
En vieläkään saanut pois sitä laatikkoa: Virhe, product not installed. TÄSSÄ UUSI LOGI: Logfile of HijackThis v1.99.1 Scan saved at 12:42:53, on 28.5.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Logitech\iTouch\iTouch.exe C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Portrait Displays\Pivot Software\floater.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Documents and Settings\Marko\Työpöytä\HijackThis_v1.99.1.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: Mario Forever Toolbar - {463DF6D5-BEC1-4d67-B217-59DB692DFC53} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing O17 - HKLM\System\CCS\Services\Tcpip\..\{79362892-F385-4603-8D88-5F9BBD585E81}: NameServer = 85.255.115.60 85.255.112.87 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Fixaa tuo O17 rivi ========= Mene Ohjauspaneeli -> Verkkoyhteydet. Sitten klikkaa hiiren oikealla yhteyskuvaketta -> ominaisuudet. Valitse TCP/IP ja sitten ominaisuudet. Valitse "hae IP-osoite automaattisesti" ja klikkaa ok Sitten käynnistä -> suorita Kirjoita cmd ja klikkaa ok Kirjoita ipconfig /flushdns , paina enter, kirjoita exit ja paina enter Jos ei toimi, mene käynnistä -> apuohjelmat -> komentorivi ja kirjoita ipconfig /flushdns sinne ja paina enter. Kirjoita exit ja enter ========0 Lataa Deckard's System Scanner Työpöydällesi. Huomioi: Sinulla tulee olla Järjestelmänvalvojan oikeudet ajaaksesi ohjelman. [*]Sulje kaikki avoimet ikkunat ja ohjelmat. [*]Tupla Klikkaa Dss.exe tiedostoa ajaaksesi ohjelman, seuraa ohjeita. [*]Kun Scannaus on valmis 2 textitiedostoa pitäisi avautua, Main.txt ja extra.txt [*]Näppäile Kopioi ( CTRL+A -> CTRL + C ) ja liitä ( CTRL + V ) [*]kopioi ja liitä Extra.txt & Main.txt sisältö seuraavaan vastaukseesi.
TÄSSÄ OIS TÄMÄ MAIN.TXT Deckard's System Scanner v20070426.43 Run by Marko on 2007-05-28 at 13:50:43 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- System Restore -------------------------------------------------------------- Successfully created a Deckard's System Scanner Restore Point. -- Last 5 Restore Point(s) -- 44: 2007-05-28 10:50:54 UTC - RP215 - Deckard's System Scanner Restore Point 43: 2007-05-28 10:03:53 UTC - RP214 - Removed SWAT 4 42: 2007-05-28 09:54:08 UTC - RP213 - Removed Fable - The Lost Chapters 41: 2007-05-28 08:05:38 UTC - RP212 - Installed Java(TM) SE Runtime Environment 6 Update 1 40: 2007-05-24 18:16:00 UTC - RP211 - Removed J2SE Runtime Environment 5.0 Update 6 -- First Restore Point -- 1: 2007-04-06 05:02:44 UTC - RP172 - Installed PlayLinc Backed up registry hives. Performed disk cleanup. -- HijackThis (run as Marko.exe) ----------------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 13:51:37, on 28.5.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\system32\rundll32.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe C:\Program Files\Portrait Displays\Pivot Software\floater.exe C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Marko\Työpöytä\dss.exe C:\DOCUME~1\Marko\TYPYT~1\Marko.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll O2 - BHO: Mario Forever Toolbar Helper - {8036D4D7-AAD3-4793-AB49-329E437155A8} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll O3 - Toolbar: Mario Forever Toolbar - {463DF6D5-BEC1-4d67-B217-59DB692DFC53} - C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Broken Internet access because of LSP provider 'xfire_lsp_9028.dll' missing O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe -- HijackThis Fixed Entries (C:\DOCUME~1\Marko\TYPYT~1\backups\) --------------- backup-20070524-104224-651 O17 - HKLM\System\CCS\Services\Tcpip\..\{79362892-F385-4603-8D88-5F9BBD585E81}: NameServer = 85.255.115.60 85.255.112.87 backup-20070524-104224-767 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = backup-20070524-104224-871 O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE backup-20070528-134755-521 O17 - HKLM\System\CCS\Services\Tcpip\..\{79362892-F385-4603-8D88-5F9BBD585E81}: NameServer = 85.255.115.60 85.255.112.87 -- File Associations ----------------------------------------------------------- All associations okay. -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfhlp02 (StarForce Protection Helper Driver (version 2.x)) - c:\windows\system32\drivers\sfhlp02.sys <Not Verified; Protection Technology; StarForce Protection System> R0 sfvfs02 (StarForce Protection VFS Driver (version 2.x)) - c:\windows\system32\drivers\sfvfs02.sys <Not Verified; Protection Technology; StarForce Protection System> R1 pivot - c:\windows\system32\drivers\pivot.sys <Not Verified; Portrait Displays, Inc.; Windows (R) 2000 DDK driver> R2 ithsgt - c:\windows\system32\drivers\ithsgt.sys R2 lilsgt - c:\windows\system32\drivers\lilsgt.sys R3 pfc (Padus ASPI Shell) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus(R) ASPI Shell> S3 ENTECH - c:\windows\system32\drivers\entech.sys <Not Verified; EnTech Taiwan; PowerStrip> S3 GMSIPCI - f:\install\gmsipci.sys (file missing) S3 krdpdre - c:\docume~1\marko\locals~1\temp\krdpdre.sys (file missing) S3 KS-959 (MA-880 USB Infrared Adapter) - c:\windows\system32\drivers\ks-959.sys <Not Verified; Kingsun Corporation; KSC Infrared Driver.> S3 ossrv (Creative OS Services Driver) - c:\windows\system32\drivers\ctoss2k.sys (file missing) S3 pivotmou (Pivot Mouse/Pointers Filter Driver) - c:\windows\system32\drivers\pivotmou.sys <Not Verified; Portrait Displays, Inc.; Pivot (R) Software (R)> S3 SANDRA - c:\program files\sisoftware\sisoftware sandra lite 2005.sr3\sandra.sys (file missing) S3 USBVSP - c:\windows\system32\drivers\usbvsp.sys (file missing) -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- All services whitelisted. -- Scheduled Tasks ------------------------------------------------------------- 2005-12-07 19:43:34 342 --a------ C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1116949063.job -- Files created between 2007-04-28 and 2007-05-28 ----------------------------- 2007-05-28 13:04:38 1 --a------ C:\Documents and Settings\Marko\SI.bin 2007-05-28 11:05:51 0 d-------- C:\Program Files\Common Files\Java 2007-05-24 21:04:55 0 dr-h----- C:\Documents and Settings\Marko\Recent 2007-05-24 20:58:42 0 d-------- C:\Program Files\CCleaner 2007-05-24 20:57:12 0 d-------- C:\ccleaner 2007-05-24 11:02:16 0 d-------- C:\WINDOWS\pss 2007-05-24 10:33:30 8213 --a------ C:\dnsbak.reg 2007-05-16 20:01:30 0 d-------- C:\Documents and Settings\Marko\.realobjects 2007-05-12 10:45:25 0 d-------- C:\Program Files\Ubi Soft 2007-05-07 22:00:44 0 d-------- C:\segamegadrive 2007-05-07 21:36:32 0 d-------- C:\nesticle -- Find3M Report --------------------------------------------------------------- 2007-05-28 13:03:07 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-05-28 11:09:02 0 d-------- C:\Program Files\Java 2007-05-24 21:04:45 0 d-------- C:\Program Files\ewido anti-malware 2007-05-23 22:52:50 0 d---s---- C:\Program Files\Xfire 2007-05-23 22:52:50 0 d-------- C:\Program Files\Euroword 99 2007-05-18 12:21:08 0 d-------- C:\Program Files\DC++ 2007-05-15 12:08:59 0 d-------- C:\Documents and Settings\Marko\Application Data\AdobeUM 2007-05-15 11:56:42 0 d-------- C:\Documents and Settings\Marko\Application Data\Gearbox Software 2007-05-08 12:31:09 0 d-------- C:\Program Files\Ubisoft 2007-04-06 08:37:41 98304 --a------ C:\WINDOWS\system32CmdLineExt.dll <Not Verified; Sony DADC Austria AG.; > 2007-04-06 07:46:27 0 d-------- C:\Documents and Settings\Marko\Application Data\InstallShield 2007-03-25 11:17:20 277274 --a----c- C:\WINDOWS\system32\perfh00B.dat 2007-03-25 11:17:20 45606 --a----c- C:\WINDOWS\system32\perfc00B.dat 2007-03-10 19:29:08 1598 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg -- Registry Dump --------------------------------------------------------------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll {8036D4D7-AAD3-4793-AB49-329E437155A8} C:\Program Files\Mario Forever Toolbar\v2.0.0.3\Mario_Forever_Toolbar.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll {9394EDE7-C8B5-483E-8773-474BF36AF6E4} C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe" "DAEMON Tools-1033"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033" "RemoteControl"="\"C:\\Program Files\\CyberLink DVD Solution\\PowerDVD\\PDVDServ.exe\"" "PivotSoftware"="\"C:\\Program Files\\Portrait Displays\\Pivot Software\\wpctrl.exe\"" "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup" "nwiz"="nwiz.exe /install" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit" "zBrowser Launcher"="C:\\Program Files\\Logitech\\iTouch\\iTouch.exe" "EM_EXEC"="C:\\PROGRA~1\\Logitech\\MOUSEW~1\\SYSTEM\\EM_EXEC.EXE" "RTHDCPL"="RTHDCPL.EXE" "SkyTel"="SkyTel.EXE" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\"" "SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_01\\bin\\jusched.exe\"" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe" "PowerBar"="" [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableRegistryTools"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] @="" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa Authentication Packages REG_MULTI_SZ msv1_0\0\0 Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0 Notification Packages REG_MULTI_SZ scecli\0\0 [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0 Usnsvc REG_MULTI_SZ usnsvc\0\0 -- End of Deckard's System Scanner: finished at 2007-05-28 at 13:52:04 ---------
TÄSSÄ OIS EXTRA.TXT : Deckard's System Scanner v20070426.43 Extra logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft Windows XP Home Edition (build 2600) SP 2.0 Architecture: X86; Language: Other (040B) - see http://preview.tinyurl.com/mhhp6 CPU 0: AMD Athlon(tm) 64 Processor 3200+ Percentage of Memory in Use: 37% Physical Memory (total/avail): 1023.36 MiB / 642.98 MiB Pagefile Memory (total/avail): 2459.74 MiB / 2147.75 MiB Virtual Memory (total/avail): 2047.88 MiB / 1970.14 MiB A: is Removable (Unformatted) C: is Fixed (NTFS) - 37.3 GiB total, 14.6 GiB free. D: is Fixed (NTFS) - 114.49 GiB total, 19.51 GiB free. E: is CDROM (No Media) F: is CDROM (No Media) -- Security Center ------------------------------------------------------------- AUOptions is scheduled to auto-install. Windows Internal Firewall is enabled. FirstRunDisabled is set. AntivirusOverride is set. AV: avast! antivirus 4.7.1001 [VPS 000745-0] v4.7.1001 (ALWIL Software) -- Environment Variables ------------------------------------------------------- ALLUSERSPROFILE=C:\Documents and Settings\All Users APPDATA=C:\Documents and Settings\Marko\Application Data CLASSPATH=C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip CLIENTNAME=Console CommonProgramFiles=C:\Program Files\Common Files COMPUTERNAME=MAKE ComSpec=C:\WINDOWS\system32\cmd.exe DEFAULT_CA_NR=CA6 FP_NO_HOST_CHECK=NO HOMEDRIVE=C: HOMEPATH=\Documents and Settings\Marko LOGONSERVER=\\MAKE NUMBER_OF_PROCESSORS=1 OS=Windows_NT Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\WBEM;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\QuickTime\QTSystem\ PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH PROCESSOR_ARCHITECTURE=x86 PROCESSOR_IDENTIFIER=x86 Family 15 Model 79 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=15 PROCESSOR_REVISION=4f02 ProgramFiles=C:\Program Files PROMPT=$P$G QTJAVA=C:\Program Files\Java\jre1.5.0_06\lib\ext\QTJava.zip SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\WINDOWS TEMP=C:\DOCUME~1\Marko\LOCALS~1\Temp TMP=C:\DOCUME~1\Marko\LOCALS~1\Temp USERDOMAIN=MAKE USERNAME=Marko USERPROFILE=C:\Documents and Settings\Marko windir=C:\WINDOWS __COMPAT_LAYER=EnableNXShowUI -- User Profiles --------------------------------------------------------------- Marko (admin) -- Add/Remove Programs --------------------------------------------------------- --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG Adobe Acrobat 5.0 --> C:\WINDOWS\ISUN040B.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll" Adobe Flash Player 9 ActiveX --> C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q Adobe Photoshop 7.0 --> C:\WINDOWS\ISUN040B.EXE -f"C:\Program Files\Adobe\Photoshop 7.0\Uninst.isu" -c"C:\Program Files\Adobe\Photoshop 7.0\Uninst.dll" Adobe Reader 7.0.9 - Suomi --> MsiExec.exe /I{AC76BA86-7AD7-1035-7B44-A70900000002} Adobe Reader Chinese Traditional Fonts --> MsiExec.exe /I{AC76BA86-7AD7-2448-0000-705000000001} Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log Adobe® Photoshop® Album Starter Edition 3.0 --> MsiExec.exe /I{4BDFD2CE-6329-42E4-9801-9B3D1F10D79B} ArcSoft Camera Suite 1.3 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AD13BFB0-FDD2-4AFA-A8AF-9F4A950D56B7}\setup.exe" -l0x9 avast! Antivirus --> rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe Canon Camera Support Core Library --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{B9B9863A-32FD-4133-ADB7-46244ED77694} /l1033 Canon Camera Window for ZoomBrowser EX --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{F37942A8-B21B-4C5A-A1D2-B676BF55EAE0} Canon Internet Library for ZoomBrowser EX --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{2F81FBFC-9A37-431F-9050-14B55485DF5A} Canon MovieEdit Task for ZoomBrowser EX --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{DE286975-ACF1-45B8-9EF7-34E162B2C817} Canon PhotoRecord --> MsiExec.exe /X{BEF56F2D-56ED-4176-BF72-7B68D4A3B98D} Canon RAW Image Task for ZoomBrowser EX --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{9518F764-C54D-47B2-9E73-154B21E79FD2} Canon RemoteCapture Task for ZoomBrowser EX --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{2C164906-E68F-462A-9010-70DD022223EF} Canon Utilities PhotoStitch 3.1 --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{EF4C7EB0-D71B-43A3-9552-8053DE4B0401} Canon Utilities ZoomBrowser EX --> MsiExec.exe /X{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2} CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe" ContentSAFER for Wizmax --> DC++ 0.698 --> "C:\Program Files\DC++\uninstall.exe" DivX 5.0.2 Pro Bundle --> C:\WINDOWS\unvise32.exe C:\Program Files\DivX\uninstal.log DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER DVD Solution --> "C:\Program Files\Uninstall_CDS.exe" EasyCleaner --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F5346614-B7C4-4E94-826A-E2363155233D}\setup.exe" -l0x9 Euroword 99 --> C:\WINDOWS\ST5UNST.EXE -n "C:\Program Files\Euroword 99\ST5UNST.LOG" ffdshow (remove only) --> "C:\Program Files\ffdshow\uninstall.exe" High Definition Audio Driver Package - KB888111 --> "C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe" HijackThis 1.99.1 --> C:\Documents and Settings\Marko\Työpöytä\HijackThis.exe /uninstall HP-muistolevy --> MsiExec.exe /X{B376402D-58EA-45EA-BD50-DD924EB67A70} hp psc 1200 series --> MsiExec.exe /X{C900EF06-2E76-49C7-8DB0-41F629B21DC5} HP valokuva- ja kuvankäsittelyohjelma 2.0 - hp psc 1200 series --> C:\Program Files\Hewlett-Packard\Digital Imaging\{7C8BB31C-E09E-4c7d-BBF1-45E33B467FE1}\Setup\hpzscr01.exe -datfile hposcr02.dat -forcereboot HP:n valokuva- ja kuvankäsittelyohjelma 2.0 - All-in-One --> MsiExec.exe /X{9867A917-5D17-40DE-83BA-BEA5293194B1} HP:n valokuva- ja kuvankäsittelyohjelma 2.0 - All-in-One Ohjain --> MsiExec.exe /X{6ECB39BD-73C2-44DD-B1A0-898207C58D8B} IFI OnlineFoto --> C:\PROGRA~1\IFI\ONLINE~1\UNWISE.EXE C:\PROGRA~1\IFI\ONLINE~1\INSTALL.LOG InCD --> C:\WINDOWS\NuNInst.exe /UNINSTALL InterActual Player --> C:\Program Files\InterActual\InterActual Player\inuninst.exe Java(TM) SE Runtime Environment 6 Update 1 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010} KPT(R) effects(TM) --> C:\WINDOWS\IsUninst.exe -f"c:\photoshop\adobe photoshop 7.0 finnish\KPT effects\KPTUnins.isu" Lame ACM MP3 Codec --> "C:\WINDOWS\IFinst26.exe" -UC:\Program Files\Lame MP3 Codec\IFU258.inf Language pack for Ad-Aware SE --> C:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\INSTALL.LOG Logitech iTouch -ohjelmisto --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{036AA4D4-6D32-11D4-9875-00105ACE7734}\setup.exe" -l0xb UNINSTALL Logitech MouseWare 9.61 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5809E7CF-4DCF-11D4-9875-00105ACE7734}\setup.exe" -l0xb -l000b UNINSTALL Mario Forever 3.0 --> "C:\WINDOWS\Mario_Forever_Toolbar_Uninstaller_3656.exe" -hu _?=C:\Program Files\Mario Forever Toolbar Mario Forever Toolbar --> "C:\WINDOWS\Mario_Forever_Toolbar_Uninstaller_3656.exe" _?=C:\Program Files\Mario Forever Toolbar Microsoft Office 97, Professional-versio --> C:\Program Files\Microsoft Office\Office\Asennus\Acme.exe /w Off97Pro.STF Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Word 2002 --> MsiExec.exe /I{911B040B-6000-11D3-8CFE-0050048383C9} Mozilla Firefox (2.0.0.3) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe MSN Työkalupalkki --> C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\mtbs.exe c Multimedia Launcher --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\setup.exe" -uninstall Nero OEM --> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL Nimo Codecs Pack v5.0 (Remove Only) --> "C:\Program Files\NimoCodec Pack\uninstall.exe" Nokia PC Suite 5.1 --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{B8D57AEB-841A-415F-9331-13DDF09BD3F2} /l1035 NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUI Pivot Software --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}\setup.exe" -l0x9 -removeonly Polar UpLink Tool --> MsiExec.exe /X{F996DEB7-4AD7-4F15-84AA-114B8BE45911} Polar WebLink 2.2 --> MsiExec.exe /I{8F3A86B6-DDE1-493B-B52E-FE81C8DBEA66} PowerDVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall PowerProducer --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\setup.exe" -uninstall QuickTime --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{4E5E22C2-1386-47AE-8EDE-32DDCDCD6653} /l1035 RealPlayer --> C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 Realtek High Definition Audio Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0xb -removeonly Shockwave --> C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\INSTALL.LOG Sony Ericsson PC Suite 1.20.224 --> MsiExec.exe /I{7689CA7A-1270-425A-9959-EB4CB25EA29A} Splinter Cell Pandora Tomorrow --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{084A9731-D05B-4ADA-B4A0-0ADD25FD7152}\Setup.exe" -l0x9 Uninstall Mystical --> C:\WINDOWS\unvise32.exe C:\Program Files\Adobe\Photoshop 7.0\Plug-init\Mystical\Mystical Uninstall.log WA Update v3.50 beta2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9BE2669E-2BD8-4164-A8B5-C904C864B403}\Setup.exe" VideoLAN VLC media player 0.8.5 --> C:\Program Files\VideoLAN\VLC\uninstall.exe Windows Live Messenger --> MsiExec.exe /I{57319C68-AC4B-43DB-B516-349FE09E6774} Windows Live Sign-in Assistant --> MsiExec.exe /I{22B3CC30-77B8-419C-AA4B-F571FDF5D66D} Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" WinRAR-pakkausohjelma --> C:\Program Files\WinRAR\uninstall.exe World of Warcraft --> C:\Program Files\Common Files\Blizzard Entertainment\World of Warcraft\Uninstall.exe Xfire (remove only) --> "C:\Program Files\Xfire\uninst.exe" XviD MPEG-4 Video Codec --> "C:\Program Files\XviD\unins000.exe" YouTubeSpider --> "C:\WINDOWS\YouTubeSpider\uninstall.exe" "/U:C:\Program Files\YouTubeSpider\Uninstall\uninstall.xml" -- End of Deckard's System Scanner: finished at 2007-05-28 at 13:52:04 ---------
moi, jonkin sortin rootkit siel pesii Lataa RootkitRevealer.zip [*] Luo uusi kansio nimeltä RKR C asemallesi, C:\ [*] Pura koko RootkitRevealer.zip tiedoston sisältö C:\RKR kansioon. [*] Avaa C:\RKR kansion ja tuplaklikkaa RootkitRevealer.exe tiedostoa [*] Klikkaa Scan painiketta ja odota skannauksen päättymistä [*] HUOM! Älä käytä konettasi skannauksen aikana. [*] Kun skannaus on päättynyt, klikkaa File (ikkunan yläreunasta) [*] Sitten klikkaa Save painiketta [*] Tallenna sitten RootkitRevealer loki työpöydällesi Lähetä RootkitRevealer:n loki viestiketjuusi.
Vieläkin näkyy se virhe boxi, josta aiemmin mainitsin. Tässä ois nyt se rootkit reveal: HKLM\SYSTEM\ControlSet001\Services\d347prt\Cfg\0Jf40 28.5.2007 23:49 0 bytes Hidden from Windows API. HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg 19.3.2007 16:16 0 bytes Access is denied. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nallekarhu_1991@hotmail.com\SharingMetadata\elisakallunki@hotmail.com\DFSR\Staging\CS{7704AD82-025B-7A1C-78D3-59A6276925E4}\01\10-{7704AD82-025B-7A1C-78D3-59A6276925E4}-v1 13.2.2007 22:11 8 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\01\10-{7E40A6B6-E803-272D-147F-0663B7709734}-v1-{3B6648DC 4.2.2007 22:45 8 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\04\111-{3B6648DC-E8F7-4C6E-8964-415364693464}-v104-{3B664 4.2.2007 22:48 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\04\111-{3B6648DC-E8F7-4C6E-8964-415364693464}-v104-{3B664 4.2.2007 22:48 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\05\120-{3B6648DC-E8F7-4C6E-8964-415364693464}-v105-{3B664 4.2.2007 22:48 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\05\120-{3B6648DC-E8F7-4C6E-8964-415364693464}-v105-{3B664 4.2.2007 22:48 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\07\122-{3B6648DC-E8F7-4C6E-8964-415364693464}-v107-{3B664 4.2.2007 22:48 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\07\122-{3B6648DC-E8F7-4C6E-8964-415364693464}-v107-{3B664 4.2.2007 22:48 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\08\124-{3B6648DC-E8F7-4C6E-8964-415364693464}-v108-{3B664 4.2.2007 22:48 2.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\08\124-{3B6648DC-E8F7-4C6E-8964-415364693464}-v108-{3B664 4.2.2007 22:48 272 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\08\125-{3B6648DC-E8F7-4C6E-8964-415364693464}-v108-{3B664 4.2.2007 22:48 2.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\08\125-{3B6648DC-E8F7-4C6E-8964-415364693464}-v108-{3B664 4.2.2007 22:48 272 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\09\136-{3B6648DC-E8F7-4C6E-8964-415364693464}-v109-{3B664 4.2.2007 22:48 2.12 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\09\136-{3B6648DC-E8F7-4C6E-8964-415364693464}-v109-{3B664 4.2.2007 22:48 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\11\82-{3B6648DC-E8F7-4C6E-8964-415364693464}-v11-{3B6648D 4.2.2007 22:46 1.72 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\11\82-{3B6648DC-E8F7-4C6E-8964-415364693464}-v11-{3B6648D 4.2.2007 22:46 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\12\55-{3B6648DC-E8F7-4C6E-8964-415364693464}-v12-{3B6648D 4.2.2007 22:45 1.73 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\12\55-{3B6648DC-E8F7-4C6E-8964-415364693464}-v12-{3B6648D 4.2.2007 22:45 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\13\56-{3B6648DC-E8F7-4C6E-8964-415364693464}-v13-{3B6648D 4.2.2007 22:45 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\13\56-{3B6648DC-E8F7-4C6E-8964-415364693464}-v13-{3B6648D 4.2.2007 22:45 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\14\57-{3B6648DC-E8F7-4C6E-8964-415364693464}-v14-{3B6648D 4.2.2007 22:45 1.88 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\14\57-{3B6648DC-E8F7-4C6E-8964-415364693464}-v14-{3B6648D 4.2.2007 22:45 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\15\58-{3B6648DC-E8F7-4C6E-8964-415364693464}-v15-{3B6648D 4.2.2007 22:45 1.91 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\15\58-{3B6648DC-E8F7-4C6E-8964-415364693464}-v15-{3B6648D 4.2.2007 22:45 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\16\59-{3B6648DC-E8F7-4C6E-8964-415364693464}-v16-{3B6648D 4.2.2007 22:45 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\16\59-{3B6648DC-E8F7-4C6E-8964-415364693464}-v16-{3B6648D 4.2.2007 22:45 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\17\60-{3B6648DC-E8F7-4C6E-8964-415364693464}-v17-{3B6648D 4.2.2007 22:45 2.09 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\17\60-{3B6648DC-E8F7-4C6E-8964-415364693464}-v17-{3B6648D 4.2.2007 22:45 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\18\61-{3B6648DC-E8F7-4C6E-8964-415364693464}-v18-{3B6648D 4.2.2007 22:45 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\18\61-{3B6648DC-E8F7-4C6E-8964-415364693464}-v18-{3B6648D 4.2.2007 22:45 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\19\62-{3B6648DC-E8F7-4C6E-8964-415364693464}-v19-{3B6648D 4.2.2007 22:45 2.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\19\62-{3B6648DC-E8F7-4C6E-8964-415364693464}-v19-{3B6648D 4.2.2007 22:45 272 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\20\63-{3B6648DC-E8F7-4C6E-8964-415364693464}-v20-{3B6648D 4.2.2007 22:45 2.12 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\20\63-{3B6648DC-E8F7-4C6E-8964-415364693464}-v20-{3B6648D 4.2.2007 22:45 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\21\64-{3B6648DC-E8F7-4C6E-8964-415364693464}-v21-{3B6648D 4.2.2007 22:45 1.56 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\21\64-{3B6648DC-E8F7-4C6E-8964-415364693464}-v21-{3B6648D 4.2.2007 22:45 184 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\22\65-{3B6648DC-E8F7-4C6E-8964-415364693464}-v22-{3B6648D 4.2.2007 22:45 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\22\65-{3B6648DC-E8F7-4C6E-8964-415364693464}-v22-{3B6648D 4.2.2007 22:45 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\23\66-{3B6648DC-E8F7-4C6E-8964-415364693464}-v23-{3B6648D 4.2.2007 22:46 1.98 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\23\66-{3B6648DC-E8F7-4C6E-8964-415364693464}-v23-{3B6648D 4.2.2007 22:46 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\24\83-{3B6648DC-E8F7-4C6E-8964-415364693464}-v24-{3B6648D 4.2.2007 22:45 2.19 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\24\83-{3B6648DC-E8F7-4C6E-8964-415364693464}-v24-{3B6648D 4.2.2007 22:45 248 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\25\84-{3B6648DC-E8F7-4C6E-8964-415364693464}-v25-{3B6648D 4.2.2007 22:45 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\25\84-{3B6648DC-E8F7-4C6E-8964-415364693464}-v25-{3B6648D 4.2.2007 22:45 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\26\85-{3B6648DC-E8F7-4C6E-8964-415364693464}-v26-{3B6648D 4.2.2007 22:46 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\26\85-{3B6648DC-E8F7-4C6E-8964-415364693464}-v26-{3B6648D 4.2.2007 22:46 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\27\86-{3B6648DC-E8F7-4C6E-8964-415364693464}-v27-{3B6648D 4.2.2007 22:47 1.65 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\27\86-{3B6648DC-E8F7-4C6E-8964-415364693464}-v27-{3B6648D 4.2.2007 22:47 192 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\28\67-{3B6648DC-E8F7-4C6E-8964-415364693464}-v28-{3B6648D 4.2.2007 22:46 1.72 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\28\67-{3B6648DC-E8F7-4C6E-8964-415364693464}-v28-{3B6648D 4.2.2007 22:46 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\29\68-{3B6648DC-E8F7-4C6E-8964-415364693464}-v29-{3B6648D 4.2.2007 22:46 1.52 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\29\68-{3B6648DC-E8F7-4C6E-8964-415364693464}-v29-{3B6648D 4.2.2007 22:46 168 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\30\99-{3B6648DC-E8F7-4C6E-8964-415364693464}-v30-{3B6648D 4.2.2007 22:47 1.82 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\30\99-{3B6648DC-E8F7-4C6E-8964-415364693464}-v30-{3B6648D 4.2.2007 22:47 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\31\87-{3B6648DC-E8F7-4C6E-8964-415364693464}-v31-{3B6648D 4.2.2007 22:47 1.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\31\87-{3B6648DC-E8F7-4C6E-8964-415364693464}-v31-{3B6648D 4.2.2007 22:47 168 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\32\88-{3B6648DC-E8F7-4C6E-8964-415364693464}-v32-{3B6648D 4.2.2007 22:47 1.79 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\32\88-{3B6648DC-E8F7-4C6E-8964-415364693464}-v32-{3B6648D 4.2.2007 22:47 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\33\89-{3B6648DC-E8F7-4C6E-8964-415364693464}-v33-{3B6648D 4.2.2007 22:47 1.72 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\33\89-{3B6648DC-E8F7-4C6E-8964-415364693464}-v33-{3B6648D 4.2.2007 22:47 184 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\34\90-{3B6648DC-E8F7-4C6E-8964-415364693464}-v34-{3B6648D 4.2.2007 22:47 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\34\90-{3B6648DC-E8F7-4C6E-8964-415364693464}-v34-{3B6648D 4.2.2007 22:47 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\35\91-{3B6648DC-E8F7-4C6E-8964-415364693464}-v35-{3B6648D 4.2.2007 22:47 1.47 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\35\91-{3B6648DC-E8F7-4C6E-8964-415364693464}-v35-{3B6648D 4.2.2007 22:47 192 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\36\70-{3B6648DC-E8F7-4C6E-8964-415364693464}-v36-{3B6648D 4.2.2007 22:46 1.35 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\36\70-{3B6648DC-E8F7-4C6E-8964-415364693464}-v36-{3B6648D 4.2.2007 22:46 160 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\37\71-{3B6648DC-E8F7-4C6E-8964-415364693464}-v37-{3B6648D 4.2.2007 22:46 1.51 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\37\71-{3B6648DC-E8F7-4C6E-8964-415364693464}-v37-{3B6648D 4.2.2007 22:46 176 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\38\72-{3B6648DC-E8F7-4C6E-8964-415364693464}-v38-{3B6648D 4.2.2007 22:46 2.17 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\38\72-{3B6648DC-E8F7-4C6E-8964-415364693464}-v38-{3B6648D 4.2.2007 22:46 240 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\39\73-{3B6648DC-E8F7-4C6E-8964-415364693464}-v39-{3B6648D 4.2.2007 22:46 1.73 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\39\73-{3B6648DC-E8F7-4C6E-8964-415364693464}-v39-{3B6648D 4.2.2007 22:46 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\40\74-{3B6648DC-E8F7-4C6E-8964-415364693464}-v40-{3B6648D 4.2.2007 22:46 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\40\74-{3B6648DC-E8F7-4C6E-8964-415364693464}-v40-{3B6648D 4.2.2007 22:46 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\41\75-{3B6648DC-E8F7-4C6E-8964-415364693464}-v41-{3B6648D 4.2.2007 22:46 1.88 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\41\75-{3B6648DC-E8F7-4C6E-8964-415364693464}-v41-{3B6648D 4.2.2007 22:46 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\42\76-{3B6648DC-E8F7-4C6E-8964-415364693464}-v42-{3B6648D 4.2.2007 22:46 1.91 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\42\76-{3B6648DC-E8F7-4C6E-8964-415364693464}-v42-{3B6648D 4.2.2007 22:46 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\43\77-{3B6648DC-E8F7-4C6E-8964-415364693464}-v43-{3B6648D 4.2.2007 22:46 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\43\77-{3B6648DC-E8F7-4C6E-8964-415364693464}-v43-{3B6648D 4.2.2007 22:46 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\44\100-{3B6648DC-E8F7-4C6E-8964-415364693464}-v44-{3B6648 4.2.2007 22:47 2.09 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\44\100-{3B6648DC-E8F7-4C6E-8964-415364693464}-v44-{3B6648 4.2.2007 22:47 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\45\92-{3B6648DC-E8F7-4C6E-8964-415364693464}-v45-{3B6648D 4.2.2007 22:47 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\45\92-{3B6648DC-E8F7-4C6E-8964-415364693464}-v45-{3B6648D 4.2.2007 22:47 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\46\93-{3B6648DC-E8F7-4C6E-8964-415364693464}-v46-{3B6648D 4.2.2007 22:45 2.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\46\93-{3B6648DC-E8F7-4C6E-8964-415364693464}-v46-{3B6648D 4.2.2007 22:45 272 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\47\94-{3B6648DC-E8F7-4C6E-8964-415364693464}-v47-{3B6648D 4.2.2007 22:47 2.12 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\47\94-{3B6648DC-E8F7-4C6E-8964-415364693464}-v47-{3B6648D 4.2.2007 22:47 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\48\95-{3B6648DC-E8F7-4C6E-8964-415364693464}-v48-{3B6648D 4.2.2007 22:47 1.56 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\48\95-{3B6648DC-E8F7-4C6E-8964-415364693464}-v48-{3B6648D 4.2.2007 22:47 184 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\49\79-{3B6648DC-E8F7-4C6E-8964-415364693464}-v49-{3B6648D 4.2.2007 22:46 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\49\79-{3B6648DC-E8F7-4C6E-8964-415364693464}-v49-{3B6648D 4.2.2007 22:46 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\50\80-{3B6648DC-E8F7-4C6E-8964-415364693464}-v50-{3B6648D 4.2.2007 22:46 1.98 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\50\80-{3B6648DC-E8F7-4C6E-8964-415364693464}-v50-{3B6648D 4.2.2007 22:46 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\51\81-{3B6648DC-E8F7-4C6E-8964-415364693464}-v51-{3B6648D 4.2.2007 22:46 2.19 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\51\81-{3B6648DC-E8F7-4C6E-8964-415364693464}-v51-{3B6648D 4.2.2007 22:46 248 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\52\96-{3B6648DC-E8F7-4C6E-8964-415364693464}-v52-{3B6648D 4.2.2007 22:47 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\52\96-{3B6648DC-E8F7-4C6E-8964-415364693464}-v52-{3B6648D 4.2.2007 22:47 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\53\97-{3B6648DC-E8F7-4C6E-8964-415364693464}-v53-{3B6648D 4.2.2007 22:47 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\53\97-{3B6648DC-E8F7-4C6E-8964-415364693464}-v53-{3B6648D 4.2.2007 22:47 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\54\98-{3B6648DC-E8F7-4C6E-8964-415364693464}-v54-{3B6648D 4.2.2007 22:47 1.65 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\anzu1985@hotmail.com\DFSR\Staging\CS{7E40A6B6-E803-272D-147F-0663B7709734}\54\98-{3B6648DC-E8F7-4C6E-8964-415364693464}-v54-{3B6648D 4.2.2007 22:47 192 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\01\141-{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}-v1-{3B664 4.2.2007 23:31 8 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\42\172-{3B6648DC-E8F7-4C6E-8964-415364693464}-v142-{3B6 4.2.2007 23:32 1.35 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\42\172-{3B6648DC-E8F7-4C6E-8964-415364693464}-v142-{3B6 4.2.2007 23:32 160 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\43\167-{3B6648DC-E8F7-4C6E-8964-415364693464}-v143-{3B6 4.2.2007 23:31 1.73 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\43\167-{3B6648DC-E8F7-4C6E-8964-415364693464}-v143-{3B6 4.2.2007 23:31 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\44\168-{3B6648DC-E8F7-4C6E-8964-415364693464}-v144-{3B6 4.2.2007 23:31 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\44\168-{3B6648DC-E8F7-4C6E-8964-415364693464}-v144-{3B6 4.2.2007 23:31 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\45\169-{3B6648DC-E8F7-4C6E-8964-415364693464}-v145-{3B6 4.2.2007 23:32 1.88 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\45\169-{3B6648DC-E8F7-4C6E-8964-415364693464}-v145-{3B6 4.2.2007 23:32 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\46\170-{3B6648DC-E8F7-4C6E-8964-415364693464}-v146-{3B6 4.2.2007 23:32 1.91 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\46\170-{3B6648DC-E8F7-4C6E-8964-415364693464}-v146-{3B6 4.2.2007 23:32 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\47\171-{3B6648DC-E8F7-4C6E-8964-415364693464}-v147-{3B6 4.2.2007 23:32 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\47\171-{3B6648DC-E8F7-4C6E-8964-415364693464}-v147-{3B6 4.2.2007 23:32 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\48\175-{3B6648DC-E8F7-4C6E-8964-415364693464}-v148-{3B6 4.2.2007 23:32 2.09 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\48\175-{3B6648DC-E8F7-4C6E-8964-415364693464}-v148-{3B6 4.2.2007 23:32 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\49\176-{3B6648DC-E8F7-4C6E-8964-415364693464}-v149-{3B6 4.2.2007 23:32 1.86 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\49\176-{3B6648DC-E8F7-4C6E-8964-415364693464}-v149-{3B6 4.2.2007 23:32 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\50\174-{3B6648DC-E8F7-4C6E-8964-415364693464}-v150-{3B6 4.2.2007 23:31 2.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\50\174-{3B6648DC-E8F7-4C6E-8964-415364693464}-v150-{3B6 4.2.2007 23:31 272 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\51\177-{3B6648DC-E8F7-4C6E-8964-415364693464}-v151-{3B6 4.2.2007 23:32 2.12 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\51\177-{3B6648DC-E8F7-4C6E-8964-415364693464}-v151-{3B6 4.2.2007 23:32 232 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\52\178-{3B6648DC-E8F7-4C6E-8964-415364693464}-v152-{3B6 4.2.2007 23:32 1.56 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\52\178-{3B6648DC-E8F7-4C6E-8964-415364693464}-v152-{3B6 4.2.2007 23:32 184 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\53\179-{3B6648DC-E8F7-4C6E-8964-415364693464}-v153-{3B6 4.2.2007 23:32 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\53\179-{3B6648DC-E8F7-4C6E-8964-415364693464}-v153-{3B6 4.2.2007 23:32 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\54\173-{3B6648DC-E8F7-4C6E-8964-415364693464}-v154-{3B6 4.2.2007 23:32 1.98 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\54\173-{3B6648DC-E8F7-4C6E-8964-415364693464}-v154-{3B6 4.2.2007 23:32 224 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\55\180-{3B6648DC-E8F7-4C6E-8964-415364693464}-v155-{3B6 4.2.2007 23:32 2.19 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\55\180-{3B6648DC-E8F7-4C6E-8964-415364693464}-v155-{3B6 4.2.2007 23:32 248 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\56\181-{3B6648DC-E8F7-4C6E-8964-415364693464}-v156-{3B6 4.2.2007 23:32 1.80 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\56\181-{3B6648DC-E8F7-4C6E-8964-415364693464}-v156-{3B6 4.2.2007 23:32 200 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\57\182-{3B6648DC-E8F7-4C6E-8964-415364693464}-v157-{3B6 4.2.2007 23:32 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\57\182-{3B6648DC-E8F7-4C6E-8964-415364693464}-v157-{3B6 4.2.2007 23:32 216 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\58\183-{3B6648DC-E8F7-4C6E-8964-415364693464}-v158-{3B6 4.2.2007 23:32 1.65 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\58\183-{3B6648DC-E8F7-4C6E-8964-415364693464}-v158-{3B6 4.2.2007 23:32 192 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\59\184-{3B6648DC-E8F7-4C6E-8964-415364693464}-v159-{3B6 4.2.2007 23:33 1.72 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\59\184-{3B6648DC-E8F7-4C6E-8964-415364693464}-v159-{3B6 4.2.2007 23:33 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\60\185-{3B6648DC-E8F7-4C6E-8964-415364693464}-v160-{3B6 4.2.2007 23:33 1.52 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\60\185-{3B6648DC-E8F7-4C6E-8964-415364693464}-v160-{3B6 4.2.2007 23:33 168 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\61\186-{3B6648DC-E8F7-4C6E-8964-415364693464}-v161-{3B6 4.2.2007 23:33 1.82 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\61\186-{3B6648DC-E8F7-4C6E-8964-415364693464}-v161-{3B6 4.2.2007 23:33 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\62\187-{3B6648DC-E8F7-4C6E-8964-415364693464}-v162-{3B6 4.2.2007 23:33 1.44 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\62\187-{3B6648DC-E8F7-4C6E-8964-415364693464}-v162-{3B6 4.2.2007 23:33 168 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\63\188-{3B6648DC-E8F7-4C6E-8964-415364693464}-v163-{3B6 4.2.2007 23:33 1.79 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\63\188-{3B6648DC-E8F7-4C6E-8964-415364693464}-v163-{3B6 4.2.2007 23:33 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\64\189-{3B6648DC-E8F7-4C6E-8964-415364693464}-v164-{3B6 4.2.2007 23:33 1.72 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\64\189-{3B6648DC-E8F7-4C6E-8964-415364693464}-v164-{3B6 4.2.2007 23:33 184 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\65\190-{3B6648DC-E8F7-4C6E-8964-415364693464}-v165-{3B6 4.2.2007 23:33 1.84 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\65\190-{3B6648DC-E8F7-4C6E-8964-415364693464}-v165-{3B6 4.2.2007 23:33 208 bytes Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\66\191-{3B6648DC-E8F7-4C6E-8964-415364693464}-v166-{3B6 4.2.2007 23:33 1.47 KB Hidden from Windows API. C:\Documents and Settings\Marko\Local Settings\Application Data\Microsoft\Messenger\nennukka85@hotmail.com\SharingMetadata\minnaaalto@hotmail.com\DFSR\Staging\CS{759AFB94-AFA2-B76B-4B3D-CAA08A50D663}\66\191-{3B6648DC-E8F7-4C6E-8964-415364693464}-v166-{3B6 4.2.2007 23:33 192 bytes Hidden from Windows API.
Kerro tarkemmin, mitä luultavammin ei johdu haittaohjelmista se. Missäs palomuuri koneelta? =========0 Tarkista koneesi F-Securen online skannerilla Huom, skanneri toimii vain Internet Explorer selaimella * Lue sivun ohjeet huolella läpi * Klikkaa Start scanning * Mikäli saat Internet Explorer -suojausvaroituksen, klikkaa Asenna * Klikkaa Accept * Klikkaa Custom Scan * Säädä asetukset seuraavasti o "Virus Scan Option" kohdasta valitse Scan whole system o "Other Scan Option" kohdasta valitse Scan All Files o Valitse Scan whole system for rootkits o Valitse Scan whole system for spyware o Laita ruksi kohtaan Scan inside archives o Varmista että Use advanced heuristics on valittuna * Klikkaa Start * Skannaus käynnistyy kun tarvittavat tiedostot/päivitykset on ladattu * Odota kärsivällisesti * Kun sakannaus on suoritettu, klikkaa Automatic cleaning * Klikkaa Show Report * Raportti aukeaa selaimessa, kopioi teksti kokonaan * Liitä kopioitu teksti esim. muistioon tai Wordiin ja tallenna työpöydälle * Voit sulkea skannerin * Lähetä raportti viestiketjuusi
Ohjauspaneelin kautta katottuna kone ilmoittaa että Windowsin palomuuri on käytössä. Multa löytyy sit Avast!, AVG Anti-spyware, ccleaner, easycleaner, fixwareout, hijackthis... Se virhe-boxi tosiaan tulee muutamien sekunttien koneen miettimisien jälkeen työpöydälle. Tällainen: Virhe Product not installed! Tuo virhe-teksti lukee punaisella ja noi loput on sen alla normaalisti. Tuli tossa mieleen että tuo virhe-boxi tuli silloin kun kuukausia sitten asensin jonku pelin/ohjelman. Se asennus tuolloin kyllä onnistui, mutta silti jäi tuollainen riesa ruutuun. En tiedä miks... Mut mä kokeilen nyt tuota f-secure jutskaa...
JEes kai sulla on iekin koneella.. Windowsin palomuuri on yks tyhjän kanssa, fixwareoutin voit poistaaa ===== Voit tuolla windows ongelmissa tuota juttua enemmän miettiä (sitä boxia) === jos et millää sitä Äf onlinea saa toimii nii tee tää Lataa MWav eScan työpöydälle. Tuplaklikkaa mwav.exeä, aukeaa lisenssisopimus, hyväksy se. Merkitse seuraavat kohdat ennen scannausta. [*]Muisti [*]Käynnistyskansiot [*]Asema - Kaikki paikalliset levyt [*]Kansio - Paina selaa ja vaihda hakemistoksi C:\ [*]Rekisteri [*]Järjestelmäkansiot [*]Palvelut [*]Vain skannaa [*]Sisällä alikansiot [*]Skannaa kaikki tiedostot Varmistu että kaikki edellämainitut kohdat ovat varmasti merkattu, paina Vain Skannaa. Huom. eScan voi näyttää siltä että se olisi valmis, mutta se ei välttämättä ole. Ohjelma ilmoittaa kun on valmis. eScan listaa alempaan ikkunaan saastuneet tiedostot kun scannaus on valmis, kopio(CTRL+C) ja liitä(CTRL+V) kaikki mitä boksiin tulee seuraavaan viestiisi.
Tässä ois tämä f-securen logi: Scanning Report Tuesday, May 29, 2007 17:42:11 - 19:21:25 Computer name: MAKE Scanning type: Scan system for viruses, rootkits, spyware Target: C:\ D:\ Result: 4 malware found Tracking Cookie (spyware) * System (Disinfected) * System * System W32/Agent.BEPW (virus) * C:\Program Files\Mario Forever\CCTrans.dll (Submitted) Statistics Scanned: * Files: 125330 * System: 4403 * Not scanned: 123 Actions: * Disinfected: 1 * Renamed: 0 * Deleted: 0 * None: 3 * Submitted: 1 Files not scanned: H Options Scanning engines: * F-Secure Libra: 2.4.2, 2007-05-26 * F-Secure AVP: 7.0.171, 2007-05-29 * F-Secure Orion: 1.2.37, 2007-05-29 * F-Secure Blacklight: 1.0.53 * F-Secure Draco: 1.0.35, 0260-23-12 * F-Secure Pegasus: 1.19.0, 2007-04-28 Scanning options: * Scan all files * Scan inside archives * Use Advanced heuristics
jees tuolla windows ongelmissa voit tota boxia ihmetellä ==== Pysy puhtaana -> Tyhjennä järjestelmänpalautus Ohjeet Tyhjennä järjestelmänpalautuskansio ja luo uusi palautuspiste. Tämä puhdistaa palautuskansion mahdollisista haittaohjelmajäännöksistä. -> Käytä CCleaneria -> CCleaner Lataa ja asenna CCleaner. Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti. -> Asenna SpywareBlaster -> SpywareBlaster SpywareBlaster estää haittaohjelmia asentumasta koneellesi. Ei kuluta muistia! Opas saatavilla suomeksi! Nimimerkki Ad-Awaren opas -> Asenna MVPS Hosts tiedosto -> MVPS Hosts Estää koneesi yhteyden haitallisiin sivustoihin. Opas saatavilla suomeksi! Nimimerkki Axelin opas -> Vaihda selaimesi Firefoxiin -> Firefox Firefox on nopeampi, turvallisempi ja parempi selain kuin Internet Explorer. -> Pidä järjestelmäsi ajantasalla. -> Windows Update Vieraile Windows Updatessa säännöllisesti. -> Pidä palomuuri ja virustorjunta ajantasalla Päivitä ja skannaa koneesi säännöllisesti virustorjuntaohjelmallasi. ja hyvä myös escan http://koti.mbnet.fi/pattaya1/escanmwav.htm ->Pidä ohjelmistosi ajantasalla. -> Secunia Software Inspector Secunia Software Inspector tutkii sinun järjestälmäsi ja ohjelmistosi puuttuvien turvallisuuspäivityksien osalta. Tavallinen tutkinta kestää normaalisti 5-40 sekuntia, kun läpikotainen (thorough system inspection) voi kestää useita minuutteja. ->Seuraa säännöllisesti viestintäviraston tietoja uusista haavoittuvuuksista -> CERT-FI Jos tulevaisuudessa tulee haittaohjelmien kanssa ongelmia, älä epäröi laittaa Hijackthis-logia tarkistettavaksi!
Kiitos kovasti auttamisesta en ois pärjänny ilman. Otan talteen nuo vinkit, jotta tosiaan muistaa jatkossa toimia oikein. Onneks saa näinkin helposti ammattilaisen neuvoja. Kiitos vielä kerran