Tossa skannasin eScanilla ja löysi 90 virusta..! tossa lukee, että se uudelleennimesi 21 ja poisti 29, mutta mitäs toi Errors sit meinaa? niitä on 56.
Laitan tähän ton eScanin tulokset:
File C:\Documents and Settings\Aleksi\Application Data\New Flaw Curb\bufyhzue.0xe infected by "Trojan-Downloader.Win32.Swizzor.ca" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Application Data\New Flaw Curb\SURF START.0XE infected by "Trojan-Downloader.Win32.Swizzor.dc" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Cookies\aleksi@zedo[2].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Aleksi\Local Settings\Temp\jrxhokzp.0xe infected by "Trojan-Downloader.Win32.Swizzor.dc" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temp\LTZSTOSV.0XE infected by "Trojan-Downloader.Win32.Swizzor.dc" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\88SY5JS1\YSB_PROMPT[1].0TM infected by "Trojan-Downloader.JS.IstBar.j" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\BNX3JDGW\a072ad[1].0s infected by "Trojan-Downloader.JS.Small.af" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\CQDFA5I2\sploit[1].anr infected by "Trojan-Downloader.Win32.Ani.c" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\FNPJ7L0W\PROMPT[1].0TM infected by "Trojan-Downloader.JS.IstBar.k" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\FNPJ7L0W\prompt[1].1tm infected by "Trojan-Downloader.JS.IstBar.k" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\FNPJ7L0W\PROMPT[2].0TM infected by "Trojan-Downloader.JS.IstBar.k" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\FNPJ7L0W\prompt[3].0tm infected by "Trojan-Downloader.JS.IstBar.k" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\FNPJ7L0W\PROMPT[4].0TM infected by "Trojan-Downloader.JS.IstBar.k" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\HIJK3MNX\ADV68[1].0TM infected by "Exploit.HTML.Mht" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Aleksi\Local Settings\Temporary Internet Files\Content.IE5\WR332OPD\PROMPT[1].0TM infected by "Trojan-Downloader.JS.IstBar.j" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Helena\Local Settings\Temporary Internet Files\Content.IE5\8TWDU34D\content37885-0[1].htm tagged as not-a-virus:AdWare.Win32.Gator.k. No Action Taken.
File C:\Documents and Settings\Helena\Local Settings\Temporary Internet Files\Content.IE5\GRFJA8TL\content25360-0[1].htm tagged as not-a-virus:AdWare.Win32.Gator.k. No Action Taken.
File C:\Documents and Settings\Helena\Local Settings\Temporary Internet Files\Content.IE5\WHYF4HYN\content34938-0[1].htm tagged as not-a-virus:AdWare.Win32.Gator.k. No Action Taken.
File C:\Documents and Settings\Toni\Application Data\Mozilla\Firefox\Profiles\ijz535ks.Oletuskäyttäjä\Cache\08854ABDd01 tagged as not-a-virus:Client-IRC.Win32.mIRC.616. No Action Taken.
File C:\Documents and Settings\Toni\Application Data\New Flaw Curb\fgewmqvf.exe tagged as not-a-virus:AdWare.Win32.Lop.j. No Action Taken.
File C:\Documents and Settings\Toni\Application Data\New Flaw Curb\GLOBAL SECOND SUPPORT NOUN.0xe infected by "Trojan-Downloader.Win32.Swizzor.ca" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Application Data\New Flaw Curb\HIDE AXIS MEMO.0XE infected by "Trojan-Downloader.Win32.Swizzor.cb" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Application Data\New Flaw Curb\uconqowo.exe tagged as not-a-virus:AdWare.Win32.Lop.j. No Action Taken.
File C:\Documents and Settings\Toni\Application Data\Ping Plan\PLAY ATOM.0XE infected by "Trojan-Downloader.Win32.Swizzor.bo" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-3c936701-6df414c2.zip infected by "Trojan-Downloader.Java.OpenStream.t" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[10].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[2].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[3].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[4].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[5].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[6].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[7].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@0[8].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@247realmedia[2].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@2o7[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@a.as-us.falkag[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@adrevolver[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@ads.addynamix[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@ads.pointroll[2].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@ads.uproar[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Cookies\toni ja allu@adtech[1].txt infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni\Local Settings\Temp\apiznkaq.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\aqtaklam.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\bcgefsdd.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\bdwnjcxf.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\caxcjwzq.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\ceyyeeeh.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\cytontxg.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\daydwtgt.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\ewrelfgd.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\fglzneot.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\fyoublry.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\gsrqvssr.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\ioppglzx.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\iwwqsdxp.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\jvjdttzl.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\kmgpxniw.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\lfvdpwbr.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\LIST218467.0XE infected by "Trojan-Dropper.Win32.Small.rl" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Local Settings\Temp\mcxvarcu.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\mhxgkkyi.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\mssnhhuf.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\nhztypbb.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\nyuyeotr.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\picdypnz.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\qgoqqcng.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\rkeqtdxj.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\roenvkfx.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\sxancvrh.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\tfzylmcu.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\Tilapäinen kansio 1 Grand Theft Auto - San Andreas Rockstar Games crack.zip\FILE.0BS infected by "Email-Worm.VBS.Gedza" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Local Settings\Temp\Tilapäinen kansio 1 GTA 3 Crack.zip\FILE.0BS infected by "Email-Worm.VBS.Gedza" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni\Local Settings\Temp\trluipok.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\ubjpjdjg.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Local Settings\Temp\uixiddzo.exe tagged as not-a-virus:AdWare.Win32.Lop.m. No Action Taken.
File C:\Documents and Settings\Toni\Omat tiedostot\BSINSTALL.exe tagged as not-a-virus:AdWare.Win32.SaveNow.z. No Action Taken.
File C:\Documents and Settings\Toni ja Allu\Application Data\Mozilla\Firefox\Profiles\xpicq3hj.Oletuskäyttäjä\Cache\1B7EC1FAd01 infected by "Trojan-Downloader.Win32.IstBar.ki" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\BlackBox.class-15599ffc-7645a0ae.class infected by "Trojan.Java.ClassLoader.c" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\Dummy.class-44eba5ec-58f5baeb.class infected by "Trojan.Java.ClassLoader.Dummy.d" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\VerifierBug.class-3cfa0102-6ab425cf.class infected by "Exploit.Java.Bytverify" Virus. Action Taken: File Renamed.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\java.jar-bae16f0-722596a1.zip infected by "Trojan-Downloader.Java.OpenConnection.aj" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-5aa0b436-634dbaf9.zip infected by "Trojan-Downloader.Java.OpenStream.w" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv661.jar-897c2ff-732bceca.zip infected by "Trojan-Downloader.Java.OpenStream.c" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Local Settings\Temporary Internet Files\Content.IE5\01EZ8X6R\sploit[1].anr infected by "Trojan-Downloader.Win32.Ani.c" Virus. Action Taken: File Deleted.
File C:\Documents and Settings\Toni ja Allu\Local Settings\Temporary Internet Files\Content.IE5\HLKOYBY7\free[1].anr infected by "Trojan-Downloader.Win32.Ani.c" Virus. Action Taken: File Deleted.
File C:\Program Files\Adware\f.0xe infected by "Backdoor.Win32.Wootbot.ax" Virus. Action Taken: File Renamed.
File C:\Program Files\Adware\link.0xe infected by "IM-Worm.Win32.Bropia.n" Virus. Action Taken: File Deleted.
File G:\Quarantine\B6BB56A1-88D2-4F3C-8FE8-FD7EEB\149EF57F-6DA7-4876-8DD3-05A22F tagged as not-a-virus:AdWare.Win32.Gator.3010. No Action Taken.
File G:\Quarantine\B6BB56A1-88D2-4F3C-8FE8-FD7EEB\599C08F0-0731-4B5F-882F-46AF16 tagged as not-a-virus:AdWare.Win32.DashBar.a. No Action Taken.
Tossa kun tarkemmin kattelin, niin siinä on noita Trojan downloadereita aikas paljon.. Ja myös noita spywareita..
Laitan myös HJT-login tähän jos se auttais..
Logfile of HijackThis v1.99.1
Scan saved at 17:04:27, on 10.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Kyllä, ainakin ne, mitkä oli "no action taken". Joku noista "file renamed"-filuista saattoi jäädä, mutta se ei ole niin vakavaa. Suuri osa niistä(yhtä lukuunottamatta) oli nimittäin bugeja (evästeitä).
Tuohon evästeiden ja rekisteri virheiden poistoon suosittelen
Ccleaner -> http://www.ccleaner.com/download126.asp Poista kaikki turhat tiedostot ja ajaa virheet läpi rekisteristä ja poistaa turhat. Muista merkata rastit joka kohtaa ellei toisin halua.