Elikkä tässä olisi TAAS yksi HjT logi tarkastettavaksi fiksummille, pääsi joku pirun spyware installer tms. lätkiin kaikkee roinaa tänne. Osan jo poistin itse mutta nyt täytyy nostaa kädet pystyyn.
Logfile of HijackThis v1.99.1
Scan saved at 21:05:10, on 14.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Jees eli kyseinen logi on mun koneeltani, olen tuon LyC0:n veli ja huomasin tässä selaillessa että tossa alempana oli postaus saman nimisestä systeemistä
http://keskustelu.afterdawn.com/thread_view.cfm/270331 Tuolla alempana oli jonkin sorttista juttua että tolla systeemillä menis työpöydältä pikakuvakkeet, jota en kaipais just tähän saumaan. Elikkä onko tuohon mitään muuta keinoa?
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 17:17:50, 15.12.2005
+ Report-Checksum: 9289CBA2
+ Scan result:
:mozilla.7:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Itrack : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\1t7har5c.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Fuck-access : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.197:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.198:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.234:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.241:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.261:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.263:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.274:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.275:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.292:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.319:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.320:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.326:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.327:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.328:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.339:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.341:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.390:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.403:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.404:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.406:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
:mozilla.407:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.421:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.436:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.437:C:\Documents and Settings\Rami\Application Data\Mozilla\Firefox\Profiles\uq3nty18.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
C:\Documents and Settings\Rami\Cookies\rami@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe -> Logger.Small.dg : Cleaned with backup
C:\Program Files\Common Files\ozqm\ozqmd\ozqmc.dll -> Downloader.Small : Cleaned with backup
C:\Program Files\DAEMON Tools\SetupDTSB.exe -> Adware.SaveNow : Cleaned with backup
C:\WINDOWS\country.exe -> Trojan.Small : Cleaned with backup
C:\WINDOWS\hosts -> Trojan.Qhost.el : Cleaned with backup
C:\WINDOWS\kl.exe -> Logger.Small.dg : Cleaned with backup
C:\WINDOWS\tool1.exe -> Trojan.Small : Cleaned with backup
C:\WINDOWS\tool3.exe -> Downloader.Small.bwr : Cleaned with backup
C:\WINDOWS\tool4.exe -> Trojan.Small : Cleaned with backup
C:\WINDOWS\tool5.exe -> Trojan.Small : Cleaned with backup
C:\WINDOWS\toolbar.exe -> Downloader.Adload.j : Cleaned with backup
::Report End
HjT logi skannauksen jälkeen:
Logfile of HijackThis v1.99.1
Scan saved at 17:20:40, on 15.12.2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)