User Käyttäjä Salasana  
   
keskiviikko 23.7.2025 / 18:46
Hae keskustelualueilta:        In English   Suomeksi   På svenska
afterdawn.com > keskustelu > yleistä keskustelua tietokoneista > virukset ja haittaohjelmat - hijackthis -logit > hijack logi (amatöörille apua)
Näytä aiheet
 
Keskustelualueet
Keskustelualueet
Hijack logi (amatöörille apua)
  Siirry:
 
Kirjoittaja Viesti
Mikko82
Newbie
_
27. maaliskuuta 2007 @ 15:21 _ Linkki tähän viestiin    Lähetä käyttäjälle yksityisviesti   
No niin olis aikatarkistaa kone. Sen verran huono näissä konehommissa, joten tarvitsisin tarkat ohjeet.
Kiitokset etukäteen.


Logfile of HijackThis v1.99.1
Scan saved at 20:15:31, on 27.3.2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\csrss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Common Files\Symantec Shared\ccApp.exe
D:\Program Files\Razer\Copperhead\razerhid.exe
D:\Program Files\Razer\Copperhead\razertra.exe
D:\Program Files\Razer\Copperhead\razerofa.exe
D:\WINDOWS\System32\CTsvcCDA.exe
D:\WINDOWS\System32\nvsvc32.exe
D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Documents and Settings\Comm@nder\Desktop\HijackThis_v1.99.1.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.lavasoft.de/news/product/info/
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton-työkalurivi - {90222687-F593-4738-B738-FBEE9C7B26DF} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O4 - HKLM\..\Run: [ccApp] "D:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [razer] D:\Program Files\Razer\Copperhead\razerhid.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload.adobe.com/pub/shockwave/cabs/flash/swflash.cab
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: LiveUpdate - Symantec Corporation - D:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Symantec Core LC - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

Mikko
Mikko82
Newbie
_
27. maaliskuuta 2007 @ 17:04 _ Linkki tähän viestiin    Lähetä käyttäjälle yksityisviesti   
Laittelen vielä tälläisen:

KASPERSKY ONLINE SCANNER REPORT
Tuesday, March 27, 2007 10:00:03 PM
Operating System: Microsoft Windows XP Professional, (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 27/03/2007
Kaspersky Anti-Virus database records: 287104


Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\

Scan Statistics
Total number of scanned objects 34325
Number of viruses found 0
Number of infected objects 0
Number of suspicious objects 0
Duration of the scan process 00:24:20

Infected Object Name Virus Name Last Action
D:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBConfig.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBDebug.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBDetect.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBNotify.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBRefr.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetCfg.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetCfg2.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetDev.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetLoc.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBSetUsr.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBStHash.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\BBValid.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPPolicy.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPStart.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SPBBC\SPStop.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtErEvt.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtETmp\2BC8A0D4.TMP Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtMoEvt.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtNvEvt.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtScEvt.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtTxFEvt.log Object is locked skipped

D:\Documents and Settings\All Users\Application Data\Symantec\SRTSP\SrtViEvt.log Object is locked skipped

D:\Documents and Settings\Comm@nder\Cookies\index.dat Object is locked skipped

D:\Documents and Settings\Comm@nder\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\Comm@nder\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\Comm@nder\Local Settings\History\History.IE5\index.dat Object is locked skipped

D:\Documents and Settings\Comm@nder\Local Settings\History\History.IE5\MSHist012007032720070328\index.dat Object is locked skipped

D:\Documents and Settings\Comm@nder\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

D:\Documents and Settings\Comm@nder\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\Comm@nder\ntuser.dat.LOG Object is locked skipped

D:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAD.dat Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWADMT.dat Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAS.dat Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5\NCOWAS.ldb Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDALRT.log Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDCON.log Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDDBG.log Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDFW.log Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDIDS.log Object is locked skipped

D:\Program Files\Common Files\Symantec Shared\SNDSYS.log Object is locked skipped

D:\Program Files\Norton 360\Log\AutoProtect.log Object is locked skipped

D:\Program Files\Norton 360\Log\AVContext.log Object is locked skipped

D:\Program Files\Norton 360\Log\AVManual.log Object is locked skipped

D:\Program Files\Norton 360\Log\Backup.log Object is locked skipped

D:\Program Files\Norton 360\Log\CUInternetPageViewHistory.log Object is locked skipped

D:\Program Files\Norton 360\Log\CUInternetSearchHistory.log Object is locked skipped

D:\Program Files\Norton 360\Log\CUInternetTempFiles.log Object is locked skipped

D:\Program Files\Norton 360\Log\CUWindowsTempFiles.log Object is locked skipped

D:\Program Files\Norton 360\Log\EmailScan.log Object is locked skipped

D:\Program Files\Norton 360\Log\InternetSecurity.log Object is locked skipped

D:\Program Files\Norton 360\Log\ISIntrusionPrevented.log Object is locked skipped

D:\Program Files\Norton 360\Log\ISIOTraffic.log Object is locked skipped

D:\Program Files\Norton 360\Log\ISNewNetwork.log Object is locked skipped

D:\Program Files\Norton 360\Log\LiveUpdate.log Object is locked skipped

D:\Program Files\Norton 360\Log\NCO.log Object is locked skipped

D:\Program Files\Norton 360\Log\VABrowserSettings.log Object is locked skipped

D:\Program Files\Norton 360\Log\VAIPAddresses.log Object is locked skipped

D:\Program Files\Norton 360\Log\VAWeakPasswords.log Object is locked skipped

D:\Program Files\Norton 360\Log\WDFScanner.log Object is locked skipped

D:\System Volume Information\_restore{A8039027-6A4C-443B-88E8-45FA952FBED2}\RP44\change.log Object is locked skipped

D:\WINDOWS\Debug\oakley.log Object is locked skipped

D:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

D:\WINDOWS\SchedLgU.Txt Object is locked skipped

D:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

D:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

D:\WINDOWS\system32\config\default Object is locked skipped

D:\WINDOWS\system32\config\default.LOG Object is locked skipped

D:\WINDOWS\system32\config\NetLimit.evt Object is locked skipped

D:\WINDOWS\system32\config\SAM Object is locked skipped

D:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

D:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

D:\WINDOWS\system32\config\SECURITY Object is locked skipped

D:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

D:\WINDOWS\system32\config\software Object is locked skipped

D:\WINDOWS\system32\config\software.LOG Object is locked skipped

D:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

D:\WINDOWS\system32\config\system Object is locked skipped

D:\WINDOWS\system32\config\system.LOG Object is locked skipped

D:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

D:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

D:\WINDOWS\Temp\JETCC77.tmp Object is locked skipped

D:\WINDOWS\Temp\JETCC78.tmp Object is locked skipped

D:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.

Mikko
tomato71
Suspended due to non-functional email address
_
27. maaliskuuta 2007 @ 17:27 _ Linkki tähän viestiin    Lähetä käyttäjälle yksityisviesti   
Moi !

Molemmat lokit on OK!

Päivitä Windowsi Sp 1 ja 2 wnidowsin update sivuston kautta
tai tästä jos linkit vielä toimii,muuten kone ei pysy puhtaana kauan :)

ServicePack1

ServicePack2
Mainos
_
__
 
_
Mikko82
Newbie
_
27. maaliskuuta 2007 @ 17:50 _ Linkki tähän viestiin    Lähetä käyttäjälle yksityisviesti   
kiitoksia paljon nopeasta toiminnasta.


Hyvää alkanutta kevättä!!!

Mikko
afterdawn.com > keskustelu > yleistä keskustelua tietokoneista > virukset ja haittaohjelmat - hijackthis -logit > hijack logi (amatöörille apua)
 

Apua ongelmiin: AfterDawnin keskustelualueet | AfterDawnin Vastaukset
Uutiset: IT-alan uutiset | Uutisia puhelimista
Musiikkia: MP3Lizard.com
Tuotearviot: Laitevertailu | Vertaa puhelimia | Vertaa kännykkäliittymiä
Pelit: Pelitiedostot, pelidemot ja trailerit
Ohjelmat: download.fi | AfterDawnin ohjelma-alueet
International: AfterDawn in English | Software downloads | Free, legal MP3s | AfterDawn på svenska
RSS -syötteet: AfterDawnin uutiset | Uusimmat ohjelmapäivitykset | Keskustelualueiden viestit
Tietoja: Tietoa AfterDawn Oy:stä | Mainosta sivuillamme | Sivuston käyttöehdot ja tietoja yksityisyydensuojasta
Ota yhteyttä: Lähetä palautetta | Ota yhteyttä mainosmyyntiimme
 
  © 1999-2025 AfterDawn Oy