| 
					minttu00:n HjT-loki (winfixer 2005)
				 | 
				
				
					
				 | 
				
			
			
			
			
				
					
					
				
			
			
			
			
			
				
				
					
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 13:50 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							Logfile of HijackThis v1.99.1
 Scan saved at 17:22:08, on 4.10.2005
 Platform: Windows XP SP2 (WinNT 5.01.2600)
 MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\system32\winlogon.exe
 C:\WINDOWS\system32\services.exe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\system32\svchost.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\system32\spoolsv.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\Explorer.EXE
 C:\WINDOWS\system32\RunDll32.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
 C:\Program Files\QuickTime\qttask.exe
 C:\WINDOWS\system32\LVCOMSX.EXE
 C:\Program Files\Logitech\Video\LogiTray.exe
 C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
 C:\Program Files\Winamp\winampa.exe
 C:\Program Files\Messenger\msmsgs.exe
 C:\Program Files\MSN Messenger\MsnMsgr.Exe
 C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
 C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
 C:\WINDOWS\system32\sistray.exe
 C:\Program Files\Logitech\Video\FxSvr2.exe
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\DOCUME~1\Satu\LOCALS~1\Temp\Tilapäinen kansio 3 hijackthis.zip\HijackThis.exe
 
 R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
 O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
 O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
 O2 - BHO: FavoriteMan Class - {139D88E5-C372-469D-B4C5-1FE00852AB9B} - C:\WINDOWS\system32\Favorite.dll
 O2 - BHO: BRedObj Class - {665ACD90-4541-4836-9FE4-062386BB8F05} - c:\Program Files\Flt\Flt.dll
 O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
 O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
 O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
 O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
 O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
 O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
 O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
 O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
 O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
 O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
 O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
 O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
 O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
 O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe" -osboot
 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
 O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
 O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
 O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
 O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
 O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
 O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
 O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
 O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
 O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZNxdm119YYFI O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
 O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
 O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
 O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
 O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
 O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
 O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/SmileyCe... O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x8... O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} (Sinstaller Class) - http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab O16 - DPF: {E6A3C1E2-F792-483E-9133-596215172BE9} (AcceptLang Class) - http://runonce.msn.com/setacceptlang.cab O18 - Protocol: bw+0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw+0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw-0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw-0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw00 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw00s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw10 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw10s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw20 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw20s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw30 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw30s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw40 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw40s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw50 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw50s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw60 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw60s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw70 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw70s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw80 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw80s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw90 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw90s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwa0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwa0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwb0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwb0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwc0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwc0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwd0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwd0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwe0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwe0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwf0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwf0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
 O18 - Protocol: bwg0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwg0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwh0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwh0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwi0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwi0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwj0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwj0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwk0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwk0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwl0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwl0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwm0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwm0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwn0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwn0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwo0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwo0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwp0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwp0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwq0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwq0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwr0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwr0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bws0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bws0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwt0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwt0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwu0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwu0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwv0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwv0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bww0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bww0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwx0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwx0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwy0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwy0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwz0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwz0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: offline-8876480 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 14:02 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							Minttu00: Siinä heleteen lokissa oli muutakin vikaa kuin se winfixer ja niin on sullakin ;) Itse asiassa sitä winfixeriä ei näy ollenkaan lokissa.
 
 Ja sitten siihen fixipuoleen:
 
 Siirrä ensin HjT omaan kansioonsa pois tempistä vaikka näin:
 
 C:\DOCUME~1\Satu\LOCALS~1\Temp\Tilapäinen kansio 3 hijackthis.zip\HijackThis.exe -> c:\hjt\HijackThis.exe
 
 Poista lisää/poista-sovellus kohdasta (ohjauspaneeli):
 
 MyWebSearch
 FavoriteMan
 FlashTrack Uninstall
 Winfixer 2005
 
 Fixaa nämä hijackthisillä (käynnistä ohjelma, klikkaa do a system scan only, rasti näiden eteen ja paina fix checked):
 
 R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
 O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
 O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
 O2 - BHO: FavoriteMan Class - {139D88E5-C372-469D-B4C5-1FE00852AB9B} - C:\WINDOWS\system32\Favorite.dll
 O2 - BHO: BRedObj Class - {665ACD90-4541-4836-9FE4-062386BB8F05} - c:\Program Files\Flt\Flt.dll 
 O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe 
 O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe 
 O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE 
 O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE 
 O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZNxdm119YYFI O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) 
 O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/SmileyCe... O16 - DPF: {88D758A3-D33B-45FD-91E3-67749B4057FA} (Sinstaller Class) - http://dm.screensavers.com/dm/installers/si/1/sinstaller.cab 
 Laita piilotiedostot näkyviin, ohje ->http://www.virustorjunta.net/modules.php?name=FAQ&myfaq=yes&id_ca... 
 Käynnistä vikasietotilaan (F8 käynnistyksen yhteydessä -> valitse valikosta vikasietotila) ja poista:
 
 C:\Program Files\common files\==>winsoftware<==
 C:\Program Files\==>Winfixer2005<==
 C:\Program Files\==>MyWebSearch<==
 C:\WINDOWS\system32\==>Favorite.dll<==
 C:\Program Files\==>Flt<==
 
 Käynnistä kone uudestaan normaalisti ja lähetä uusi HjT-loki.
							
						 
						
						
						
							Viestiä on muokattu lähettämisen jälkeen. Viimeisin muokkaus 4. lokakuuta 2005 @ 14:11 
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 14:42 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							miten mä siis laitan sen vikasietotilaan??
 tuli itelle oikosulku:D
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 14:43 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							winfixer tulee edelleen..
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 14:58 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Pääsitkö sinne vikasietotilaan? Eli siis painat F8-näppäintä käynnistyksen yhteydessä, kunnes tulee valikko. Valitset siitä valikosta vikasietotila. Ja varmasti tulee, jos sitä ei ole vielä poistettu ;)
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 15:01 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							siis pitääkö mun sammuttaa kone kokonaan vai..? no joo...mä yritin silleen ja painoin f8 näppäintä, mut mitään ei tullut.. voi ei..
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 15:05 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Siis joko sammutat koneen tai sitten käynnistät sen koneen uudestaan (eli Käynnistä -> Sammuta tietokone ja sieltä Käynnistä uudelleen) ja sitten kun kone käynnistyy, niin painat sitä F8-näppäintä(siis pidät pohjassa sitä), kunnes tulee se valikko, josta voit valita vikasietotilan.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 15:20 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							no joo.. taas mun nuorilla tyhmillä aivoilla ei tajuta; siihen tuli valikko, mutta onko sille jotain engl.kielistä vastinetta? kokeilin kahta niistä mutta sitten ei mitään valikkoja tullut..ääh.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								Senior Member
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 15:27 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Vikasietotila=safe mode
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 15:42 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							eeei sellasta ole siinä.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 Zipp2 
							
							
								Member
								
									
								
							
							 
							 
						 | 
						4. lokakuuta 2005 @ 16:20 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						5. lokakuuta 2005 @ 08:36 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Tuli vaan mieleen, että jos minttu00 painoi sitä F8:a "liian aikaisin" ja se avasi boot menun. Minttu00, oliko siinä valikossa sellaisia vaihtoehtoja kun floppy, cd/dvd-rom ja ide(tai jotain sinne päin)?
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 KRUUS 
							
							
								Junior Member
								
									
								
							
							 
							 
						 | 
						5. lokakuuta 2005 @ 15:58 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							@KEMISTI  Voisitko käydä katsomassa p2p ongelma puolelta sellaisen kun p2p ohjelmat ja netti/serveri pelit ei toimi 
							
						 
						
						 
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 09:19 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							no niin.. kone on nyt vikasietotilassa.. mitäs nyt pitää tehdä?
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 10:06 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Poistat nämä tiedostot/hakemistot:
 
 C:\Program Files\common files\==>winsoftware<==
 C:\Program Files\==>Winfixer2005<==
 C:\Program Files\==>MyWebSearch<==
 C:\WINDOWS\system32\==>Favorite.dll<==
 C:\Program Files\==>Flt<== 
 
 resurssienhallinnan kautta (sinne pääsee painamalla Windows-näppäin + e)
 
 Ja sitten sen jälkeen käynnistät koneen uudestaan normaalisti ja lähetät uuden hijackthis-lokin.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 10:21 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							mikä on windows näppäin?
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 10:34 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							Quote:  mikä on windows näppäin?
  se näppäin, mikä on ctrl- ja alt-näppäimien välissä alhaalla näppäimistössä :) Ja niitä on kaksi kappaletta, toinen on alt gr:n oikealla puolella.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 10:56 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							pitääkö mun poistaa ne ohjauspaneelin kautta vai mistä. siellä ei ainakaan ole ohjelmia.. anteeksi tämä vaiva..
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:01 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							Quote:   pitääkö mun poistaa ne ohjauspaneelin kautta vai mistä. siellä ei ainakaan ole ohjelmia..
  Siis poistaa mitkä?
 
 Nämä poistat sieltä resurssienhallinnan kautta(sieltä oma tietokone vasemmalta, sitten paikallinen levy (C:)(klikkaat sitä plussaa) ja sitten seuraat noita hakemistopolkuja ja poistat nuo):
 
 C:\Program Files\common files\==>winsoftware<==
 C:\Program Files\==>Winfixer2005<==
 C:\Program Files\==>MyWebSearch<==
 C:\WINDOWS\system32\==>Favorite.dll<==
 C:\Program Files\==>Flt<==
 
 Ja nämä ohjelmat piti poistaa sieltä ohjauspaneelin kautta lisää/poista sovellus-kohdasta.
 
 MyWebSearch
 FavoriteMan
 FlashTrack Uninstall
 Winfixer 2005 
 
 EDIT: Ja sinne resurssienhallintaan pääsee myös seuraavasti: Käynnistä -> Apuohjelmat -> Resurssienhallinta
							
						 
						
						
						
							Viestiä on muokattu lähettämisen jälkeen. Viimeisin muokkaus 8. lokakuuta 2005 @ 11:10 
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:15 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							C:\Program Files\==>Flt<== tota en saa poistettua ja en löydä winfixeriä
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:19 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							Quote:  C:\Program Files\==>Flt<== tota en saa poistettua ja en löydä winfixeriä
  Sitä winfixer-kansiota ei välttämättä enää olekaan(jos poistit sen ohjelman sieltä ohjauspaneelista). Yrität siis varmaan poistaa sitä
 Flt-kansiota vikasietotilassa?
 
 EDIT: Ja olihan sulla ne piilotiedostot ja -kansiot näkyvissä, kuten jo aiemmin pyysin laittamaan ne näkyviin? Tuossa ohje ->
 http://www.virustorjunta.net/modules.php?name=FAQ&myfaq=yes&id_ca... 
							
						 
						
						
						
							Viestiä on muokattu lähettämisen jälkeen. Viimeisin muokkaus 8. lokakuuta 2005 @ 11:20 
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:23 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							ei ole kone enää vikasietotilassa ja tarkistin ton jutun
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:23 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							mutta en saa poistettua
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								AfterDawn Addict
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:26 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						| 
						
						 
							
							Niin siis et saanut poistettua sitä flt:tä vikasietotilassa? Ei se muuten välttämättä lähde.
							
						 
						
						
						
						 | 
					
				
				
			
				
				
				
					
						| 
							 Mainos 
							 
						 | 
						   | 
					
					
						
							
							  
								
							
						 | 
					
				
				
				
					
						| 
							
								 minttu00 
							
							
								Newbie
								
									
								
							
							 
							 
						 | 
						8. lokakuuta 2005 @ 11:37 | 
						 
							
								Linkki tähän viestiin
								  
								 
								  
							
							
						 | 
					
					
					
					
						
						
						
							
							ok, tässä olis uus...
 
 
 Logfile of HijackThis v1.99.1
 Scan saved at 15:36:27, on 8.10.2005
 Platform: Windows XP SP2 (WinNT 5.01.2600)
 MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\system32\winlogon.exe
 C:\WINDOWS\system32\services.exe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\system32\svchost.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\system32\spoolsv.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 C:\WINDOWS\System32\svchost.exe
 C:\WINDOWS\Explorer.EXE
 C:\WINDOWS\system32\RunDll32.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
 C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
 C:\Program Files\QuickTime\qttask.exe
 C:\WINDOWS\system32\LVCOMSX.EXE
 C:\Program Files\Logitech\Video\LogiTray.exe
 C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
 C:\Program Files\Winamp\winampa.exe
 C:\Program Files\Messenger\msmsgs.exe
 C:\Program Files\MSN Messenger\MsnMsgr.Exe
 C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
 C:\WINDOWS\system32\sistray.exe
 C:\Program Files\Logitech\Video\FxSvr2.exe
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\WINDOWS\system32\wuauclt.exe
 C:\DOCUME~1\Satu\LOCALS~1\Temp\Tilapäinen kansio 8 hijackthis.zip\HijackThis.exe
 
 O2 - BHO: BRedObj Class - {665ACD90-4541-4836-9FE4-062386BB8F05} - c:\Program Files\Flt\Flt.dll (file missing)
 O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
 O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
 O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
 O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
 O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
 O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
 O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
 O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
 O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
 O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
 O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
 O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe 
 O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
 O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Common Files\Real\Update_OB\RealOneMessageCenter.exe"  -osboot
 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
 O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
 O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
 O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
 O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
 O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
 O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
 O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
 O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
 O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
 O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
 O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x8... O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab O16 - DPF: {E6A3C1E2-F792-483E-9133-596215172BE9} (AcceptLang Class) - http://runonce.msn.com/setacceptlang.cab O18 - Protocol: bw+0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw+0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw-0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw-0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw00 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw00s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw10 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw10s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw20 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw20s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw30 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw30s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw40 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw40s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw50 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw50s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw60 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw60s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw70 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw70s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw80 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw80s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw90 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bw90s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwa0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwa0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwb0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwb0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwc0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwc0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwd0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwd0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwe0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwe0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwf0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwf0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
 O18 - Protocol: bwg0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwg0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwh0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwh0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwi0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwi0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwj0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwj0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwk0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwk0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwl0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwl0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwm0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwm0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwn0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwn0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwo0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwo0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwp0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwp0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwq0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwq0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwr0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwr0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bws0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bws0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwt0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwt0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwu0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwu0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwv0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwv0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bww0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bww0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwx0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwx0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwy0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwy0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwz0 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: bwz0s - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O18 - Protocol: offline-8876480 - {B6176423-CE8D-42EF-99AE-DC480E45F2FD} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
							
						 
						
						
						
						 |