Hei,
Voisiko joku auttaa koneen putsaamisessa, Avira piippaa jatkuvaan ja viruksia löytyy melkoisesti.
Alla HJT-logi ja Aviran havainnot. Yritin ladata koneelle eScan:ia, mutta sivu ei suostunut aukeamaan.
---
Logfile of HijackThis v1.99.1
Scan saved at 22:48:32, on 19.5.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
19.5.2009 22:32 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Delete file
19.5.2009 22:30 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:30 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:21 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:20 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Deny access
19.5.2009 22:06 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:01 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:00 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 22:00 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxxxxxxxxxxx.
Action performed: Move file to quarantine
19.5.2009 21:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Allow access
19.5.2009 21:28 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:24 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 21:22 [Guard] Malware found
Virus or unwanted program 'APPL/KillApp.A [program]'
detected in file 'C:\hp\bin\KillIt.exe.
Action performed: Move file to quarantine
19.5.2009 21:20 [Guard] Malware found
Virus or unwanted program 'EXP/Pidief.aia [exploit]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\Temporary Internet Files\Content.IE5\IA9T8SE4\zt9i[1].pdf.
Action performed: Move file to quarantine
19.5.2009 21:20 [Guard] Malware found
Virus or unwanted program 'SWF/Drop.Small.LJ [virus]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\Temporary Internet Files\Content.IE5\5OO19JZD\xWku[1].swf.
Action performed: Move file to quarantine
19.5.2009 21:20 [Guard] Malware found
Virus or unwanted program 'EXP/Pidief.aia [exploit]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\Temp\AcrCFE1.tmp.
Action performed: Move file to quarantine
19.5.2009 21:19 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxxx.
Action performed: Move file to quarantine
19.5.2009 21:19 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxx.
Action performed: Move file to quarantine
19.5.2009 21:19 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxx.
Action performed: Move file to quarantine
19.5.2009 21:19 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjx.
Action performed: Move file to quarantine
19.5.2009 21:18 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 20:51 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Move file to quarantine
19.5.2009 20:50 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Deny access
19.5.2009 20:49 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxx.
Action performed: Deny access
19.5.2009 20:49 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx.
Action performed: Deny access
19.5.2009 20:49 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Delete file
19.5.2009 20:46 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Delete file
19.5.2009 20:46 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdjxxxxxxxxxxxxx.
Action performed: Delete file
19.5.2009 20:45 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Delete file
19.5.2009 20:33 [Guard] Malware found
Virus or unwanted program 'TR/Drop.Agent.qna.2 [trojan]'
detected in file 'C:\Documents and Settings\Compaq_Omistaja\Local
Settings\leygkhs.qdj.
Action performed: Deny access
Jos linkki ei toimi, voit ladata myös seuraavista linkeistä:
Linkki1 Linkki2
[list][*]Tuplaklikkaa mbam-setup.exe ja seuraa ohjeita asentaaksesi ohjelman.
[*]Lopuksi varmistu, että seuraavat on valittu: Päivitä Malwarebytes' Anti-Malware ja Käynnistä Malwarebytes' Anti-Malware ja sen jälkeen klikkaa Lopeta.
[*]Jos päivitys löytyy, ohjelma lataa ja asentaa uusimman version. [color=#009900]Jos päivityksien lataaminen ei onnistu, voit ladata päivitykset tästä. Tuplaklikkaa mbam-rules.exe asentaaksesi päivitykset.[/color]
[*]Kun ohjelma on latautunut ja päivitykset tehty, valitse Suorita täysi tarkistus ja klikkaa Tarkista.
[*]Kun tarkistus on valmis, klikkaa OK ja sitten Näytä tulokset nähdäksesi tulokset.
[*]Varmistu, että kaikki on merkitty ja klikkaa Poista valitut.
[*]Tämän jälkeen loki avautuu muistioon. Tallenna se paikkaan, josta löydät sen helposti. Loki löytyy myös täältä: C:\Documents and Settings\Käyttäjänimi\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-päiväys.txt [*]Lähetä lokin sisältö seuraavassa viestissäsi.[/list]
[color=#009900]Huom. Jos Mbam ei pystynyt poistamaan tiedostoa, se pyytää sinua käynnistämään koneesi uudelleen. Käynnistä koneesi silloin uudelleen heti. Mbam voi tehdä muutoksia rekisteriisi osana puhdistusta. Jos käytät suojausohjelmaa, joka havaitsee rekisterin muutokset, salli Mbamin tehdä muutokset.[/color]
[list][*]Lataa tästä [color=blue]random's system information tool (RSIT)[/color] by [color=#6600cc]random/random[/color] ja tallenna se työpöydälle
[*]Tuplaklikkaa RSIT.exeä ajaaksesi [color=blue]RSITin[/color].
[*]Klikkaa Continue.
[*]Kun RSIT on valmis, kaksi lokia avautuu muistioon. Lähetä sekä log.txt:n (<<avautuu suurennettuna) että info.txt:n (<<avautuu pienennettynä) sisältö seuraavassa viestissäsi.[/list]
Skannasin eilen illalla Malwarebytes:lla, eikä se löytänyt mitään, nyt skannasin uudelleen ja se löysi 2 haittaohjelmaa. Alla MB_n logi skannauksen jälkeiset RSIT logit.
-----------
Malwarebytes:
Malwarebytes' Anti-Malware 1.36
Tietokantaversio: 2124
Windows 5.1.2600 Service Pack 3
Saastuneita muistiprosesseja:
(Haitallisia kohteita ei löydetty)
Saastuneita muistimoduuleja:
(Haitallisia kohteita ei löydetty)
Saastuneita rekisteriavaimia:
(Haitallisia kohteita ei löydetty)
Saastuneita rekisteriarvoja:
(Haitallisia kohteita ei löydetty)
Saastuneita rekisterikohteita:
(Haitallisia kohteita ei löydetty)
Saastuneita hakemistoja:
(Haitallisia kohteita ei löydetty)
Saastuneita tiedostoja:
C:\Documents and Settings\Compaq_Omistaja\Local Settings\leygkhs.qdj (Trojan.Daonol) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Omistaja\Local Settings\leygkhs.qdjx (Trojan.Daonol) -> Quarantined and deleted successfully.
--------------------
info.txt logfile of random's system information tool 1.06 2009-05-20 19:35:33
======Uninstall list======
-->C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->c:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
-->c:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
-->c:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
AC3Filter (remove only)-->C:\Program Files\AC3Filter\uninstall.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 7.0.8 - Suomi-->MsiExec.exe /I{AC76BA86-7AD7-1035-7B44-A70500000002}
Adobe Shockwave Player-->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
AMD Processor Driver-->C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe -runfromtemp -l0x000b -removeonly
ATI-ohjauspaneeli-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
BitLord 1.1-->C:\Program Files\BitLord\uninst.exe
Brownstone Equation Editor 5-->"C:\Program Files\Tutor 6\Equation Editor\Setup.exe" -R
BSPlayer-->"C:\Program Files\BSPlayer\uninstall.exe"
Cardio PC Link v1.1.1se-->C:\PROGRAM FILES\CARDIO PC LINK\setup\setup.exe
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Combined Community Codec Pack 2006-07-28 (Remove Only)-->C:\Program Files\Combined Community Codec Pack\Uninstall.exe
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-040B-0000-0000000FF1CE}
DC++ 0.674-->"C:\Program Files\DC++\uninstall.exe"
EA SPORTS online 2008-->C:\Program Files\EA SPORTS\EA SPORTS online\EASOUNInstaller.exe
Enhanced Multimedia Keyboard Solution-->C:\HP\KBD\Install.exe /u
EPSON PhotoQuicker3.2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B2EFE303-A594-11D5-95EB-005004BC1C65}\setup.exe" uninst
EPSON Printer Software-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /r
ffdshow-->"C:\Program Files\ffdshow\uninstall.exe"
High Definition Audio - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix-korjauspäivitys Windows Media Player 11:lle (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix-päivitys Windows Internet Explorer 7:lle (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Hotfix-päivitys Windows XP:lle (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix-päivitys Windows XP:lle (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
HP Boot Optimizer-->MsiExec.exe /X{1341D838-719C-4A05-B50F-49420CA1B4BB}
HP DVD Play 2.1-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\Setup.exe" -uninstall
HP Imaging Device Functions 7.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart Premier Software 6.5-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP Update-->MsiExec.exe /X{FE57DE70-95DE-4B64-9266-84DA811053DB}
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
LADSPA_plugins-win-0.4.15-->"C:\Program Files\Audacity\Plug-Ins\unins000.exe"
Last.fm 1.5.4.24567-->"C:\Program Files\Last.fm\unins000.exe"
LimeWire 4.18.8-->"C:\Program Files\LimeWire\uninstall.exe"
MagicDisc 2.7.105-->C:\PROGRA~1\MAGICD~1\UNWISE.EXE C:\PROGRA~1\MAGICD~1\INSTALL.LOG
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 1.1 Finnish Language Pack-->MsiExec.exe /X{4538A1AF-6894-4F10-ABDA-6CB9E6ACF8B6}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1-->"C:\WINDOWS\$NtUninstallWdf01001$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Works-->MsiExec.exe /I{2EF8368A-5670-45C0-82F1-D7B00F7E7AB8}
MozillaFirefox (3.0.10)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
Nero 7-->MsiExec.exe /I{F14B8ECC-BDA0-4987-9201-D7B7DBE11035}
Paint.NET v3.36-->MsiExec.exe /X{43602F34-1AA3-44FB-AEB2-D08C2C73743F}
PC-Doctor 5 for Windows-->C:\Program Files\PC-Doctor 5 for Windows\uninst.exe
Pdf995-->C:\Program Files\pdf995\setup.exe uninstall
PL-2303 USB-to-Serial-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}\Setup.exe" -l0x9 Installed
Python 2.2 pywin32 extensions (build 203)-->"C:\Python22\Removepywin32.exe" -u "C:\Python22\pywin32-wininst.log"
Python 2.2.3-->C:\Python22\UNWISE.EXE C:\Python22\INSTALL.LOG
Päivitys Windows XP:lle (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Päivitys Windows XP:lle (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Päivitys Windows XP:lle (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Päivitys Windows XP:lle (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Sonic Express Labeler-->MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Sonic MyDVD Plus-->MsiExec.exe /X{21657574-BD54-48A2-9450-EB03B2C7FC29}
Sonic RecordNow Audio-->MsiExec.exe /X{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
Sonic RecordNow Copy-->MsiExec.exe /X{B12665F4-4E93-4AB4-B7FC-37053B524629}
Sonic RecordNow Data-->MsiExec.exe /X{075473F5-846A-448B-BCB3-104AA1760205}
Sonic Update Manager-->MsiExec.exe /X{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
Spybot - Search & Destroy 1.5.2.20-->"C:\WINDOWS\unins000.exe"
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Suojauspäivitys ohjelmistolle Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Internet Explorer 7:lle (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Suojauspäivitys Windows Media Player 10:lle (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Suojauspäivitys Windows Media Player 10:lle (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Suojauspäivitys Windows Media Player 11:lle (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Suojauspäivitys Windows Media Player 11:lle (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Suojauspäivitys Windows Media Playerille (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Suojauspäivitys Windows XP:lle (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Sygate Personal Firewall Pro-->MsiExec.exe /I{10B446B3-4DF4-4489-A168-8A98F7CD807E}
Tutor-->C:\PROGRA~1\Tutor 6\UNWISE.EXE C:\PROGRA~1\Tutor 6\EXINST.LOG
Tärkeä päivitys Windows Media Player 11:lle (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Uniblue RegistryBooster 2-->"C:\Program Files\Uniblue\RegistryBooster 2\unins000.exe"
Uniblue SpeedUpMyPC 2009-->"C:\Documents and Settings\All Users\Application Data\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}\SpeedUpMyPC.exe" REMOVE=TRUE MODIFY=FALSE
Uniblue SpeedUpMyPC 2009-->C:\Documents and Settings\All Users\Application Data\{51019853-129C-4EDE-9030-D5FD7BBD9AD0}\SpeedUpMyPC.exe
Update for Windows XP (KB953356)-->"C:\WINDOWS\$NtUninstallKB953356$\spuninst\spuninst.exe"
VideoLAN VLC media player 0.8.6d-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Live Messenger-->MsiExec.exe /I{DF6FEB75-A0D1-44E5-A754-0072D4967734}
Windows Liven kirjautumisavustaja-->MsiExec.exe /I{998152E5-B605-4BBB-9853-E749AEE02B21}
Windows Liven lataustyökalu-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
XviDMPEG-4 Video Codec-->"C:\Program Files\XviD\unins000.exe"
Record Number: 483649
Source Name: Tcpip
Time Written: 20090224172511.000000+120
Event Type: warning
User:
=====Application event log=====
Computer Name: ODBH
Event Code: 2005
Message: Palvelinpalvelun valvontatietoja ei voi lukea.
Palvelimen resurssitietoja ei palauteta tähän malliin.
Palautettu virhekoodi on ensimmäisessä DWORD-tavussa ja IOSB:ssä. Tila on toisessa DWORD-tavussa ja
IOSB:ssä. Tiedot ovat kolmannessa DWORD-tavussa.
Record Number: 8443
Source Name: PerfNet
Time Written: 20081218174205.000000+120
Event Type: error
User:
Computer Name: ODBH
Event Code: 2004
Message: Palvelinpalvelua ei voi avata. Palvelimen resurssitietoja
ei palauteta. Palautettu virhekoodi on ensimmäisessä DWORD-tavussa.
Record Number: 8440
Source Name: PerfNet
Time Written: 20081217160244.000000+120
Event Type: error
User:
Computer Name: ODBH
Event Code: 12001
Message: The Messenger Sharing USN Journal Reader service started successfully.
Record Number: 8434
Source Name: usnjsvc
Time Written: 20081216161736.000000+120
Event Type:
User:
Computer Name: ODBH
Event Code: 2004
Message: Palvelinpalvelua ei voi avata. Palvelimen resurssitietoja
ei palauteta. Palautettu virhekoodi on ensimmäisessä DWORD-tavussa.
Record Number: 8432
Source Name: PerfNet
Time Written: 20081216160639.000000+120
Event Type: error
User:
Computer Name: ODBH
Event Code: 12001
Message: The Messenger Sharing USN Journal Reader service started successfully.
Record Number: 8425
Source Name: usnjsvc
Time Written: 20081215161318.000000+120
Event Type:
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;c:\Python22;C:\Program Files\ATI Technologies\ATI Control Panel
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 63 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=3f02
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"SonicCentral"=c:\Program Files\Common Files\Sonic Shared\Sonic Central\
-----------------EOF-----------------
RSIS Logi
Logfile of random's system information tool 1.06 (written by random/random)
Run by Compaq_Omistaja at 2009-05-20 19:35:08
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 47 GB (32%) free of 147 GB
Total RAM: 446 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:35:28, on 20.5.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal