afterdawn.com  > keskustelu  > yleistä keskustelua tietokoneista  > virukset ja haittaohjelmat - hijackthis -logit  > hjt logi - kone temppuilee välillä  
											 
											
												
	 
											
											
						 				 	
	
		
		
			
		
		
	 
												  
												
													
	
		
			Keskustelualueet
			Keskustelualueet
		 
		
			
				
					
						
			
			
		
					
				
			 
		
	 
														
															
															
	
			
			
				
					hjt logi - kone temppuilee välillä
				 
				
				
					
				 
				
			 
			
			
			
				
					
					
				 
			
			
			
			
			
				
				
					
				
				
				
				
					
						
							
								
							
							
								Member
								
									
								
							
							 
							 
						 
						3. syyskuuta 2006 @ 15:18  
						 
							
								Linkki tähän viestiin 
								  
								 
								  
							
							 
						 
					 
					
					
					
						
						
						
							
							ohessa HjT  logi, kone temppuilee välillä. Itseäni tossa listalla häiritsee tuo C:\Program Files\dna Nettiturva\Common\FCH32.EXE - dna nettiturva ei ole koneella enää käytössä, tällä hetkellä Welhon kautta F-Secure. Poistettaessa tuota Dna Nettiturvaa kone herjaa ettei tiedostoa voi poistaa... Pienin ongelmista kuitenkin tämä...
 
 Logfile of HijackThis  v1.99.1
 Scan saved at 19:19:04, on 3.9.2006
 Platform: Windows 2000 SP4 (WinNT 5.00.2195)
 MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
 
 Running processes:
 C:\WINNT\System32\smss.exe
 C:\WINNT\system32\winlogon.exe
 C:\WINNT\system32\services.exe
 C:\WINNT\system32\lsass.exe
 C:\WINNT\system32\Ati2evxx.exe
 C:\WINNT\system32\svchost.exe
 C:\WINNT\system32\spoolsv.exe
 C:\PROGRA~1\DNANET~1\backweb\6629059\Program\SERVIC~1.EXE
 C:\WINNT\system32\svchost.exe
 C:\Program Files\ewido anti-malware\ewidoctrl.exe
 C:\Program Files\dna Nettiturva\Anti-Virus\fsgk32st.exe
 C:\Program Files\dna Nettiturva\Anti-Virus\FSGK32.EXE
 C:\Program Files\dna Nettiturva\backweb\6629059\program\fsbwsys.exe
 C:\Program Files\dna Nettiturva\Common\FSMA32.EXE
 C:\Program Files\dna Nettiturva\Common\FSMB32.EXE
 C:\WINNT\system32\regsvc.exe
 C:\WINNT\system32\MSTask.exe
 C:\Program Files\dna Nettiturva\Common\FCH32.EXE
 C:\WINNT\system32\stisvc.exe
 C:\WINNT\System32\WBEM\WinMgmt.exe
 C:\Program Files\dna Nettiturva\Common\FAMEH32.EXE
 C:\WINNT\system32\svchost.exe
 C:\Program Files\dna Nettiturva\Anti-Virus\fsrw.exe
 C:\WINNT\system32\Ati2evxx.exe
 C:\WINNT\Explorer.EXE
 C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
 C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
 C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
 C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
 C:\Program Files\ABIT\ABIT uGuru\uGuru.exe
 C:\Program Files\ExtraFilm Kotona\Agent.exe
 C:\Program Files\QuickTime\qttask.exe
 C:\Program Files\dna Nettiturva\Common\FSM32.EXE
 C:\Program Files\dna Nettiturva\FSGUI\ispnews.exe
 C:\WINNT\system32\internat.exe
 C:\program files\valve\steam\steam.exe
 C:\Program Files\Silicon Image\SiISATARaid\SATARaid.exe
 C:\Program Files\dna Nettiturva\backweb\6629059\Program\fspex.exe
 C:\Program Files\dna Nettiturva\FWES\Program\fsdfwd.exe
 C:\WINNT\system32\wuauclt.exe
 C:\Program Files\dna Nettiturva\Anti-Virus\fssm32.exe
 C:\Program Files\dna Nettiturva\Anti-Virus\fsav32.exe
 C:\PROGRA~1\DNANET~1\ANTI-S~1\fsaw.exe
 C:\Program Files\dna Nettiturva\FSGUI\fsguidll.exe
 C:\Program Files\Internet Explorer\IEXPLORE.EXE
 C:\hjt.exe
 
 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.welho.fi/ 
 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = dna Internet Explorer
 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://paivitys.dnainternet.fi/yhteys/proxy.pac 
 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
 O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
 O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
 O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
 O4 - HKLM\..\Run: [CamMonitor] C:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
 O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
 O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINNT\system32\PSDrvCheck.exe -CheckReg
 O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
 O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r
 O4 - HKLM\..\Run: [ABIT uGuru] C:\Program Files\ABIT\ABIT uGuru\uGuru.exe
 O4 - HKLM\..\Run: [ExtraFilmHemmaAgent] "C:\Program Files\ExtraFilm Kotona\Agent.exe"
 O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
 O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\dna Nettiturva\Common\FSM32.EXE" /splash
 O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\dna Nettiturva\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
 O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\dna Nettiturva\FSGUI\FSSW.EXE" /reboot
 O4 - HKLM\..\Run: [News Service] "C:\Program Files\dna Nettiturva\FSGUI\ispnews.exe"
 O4 - HKCU\..\Run: [internat.exe] internat.exe
 O4 - HKCU\..\Run: [Steam] "c:\program files\valve\steam\steam.exe" -silent
 O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
 O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
 O4 - Global Startup: SATARaid.lnk = C:\Program Files\Silicon Image\SiISATARaid\SATARaid.exe
 O4 - Global Startup: Welho Tietoturva.lnk = C:\Program Files\dna Nettiturva\backweb\6629059\Program\fspex.exe
 O8 - Extra context menu item: &Estä tämä kohoikkuna - C:\Program Files\dna Nettiturva\Anti-Spyware\blockpopups.htm
 O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
 O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
 O9 - Extra button: IE-suojaus - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\dna Nettiturva\Anti-Spyware\ieshield.dll
 O9 - Extra 'Tools' menuitem: IE-suojaus... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\dna Nettiturva\Anti-Spyware\ieshield.dll
 O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 
 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab 
 O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
 O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
 O23 - Service: Welho Tietoturva (BackWeb Plug-in - 6629059) - BackWeb Technologies Inc.                          - C:\PROGRA~1\DNANET~1\backweb\6629059\Program\SERVIC~1.EXE
 O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
 O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
 O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corp. - C:\Program Files\dna Nettiturva\Anti-Virus\fsgk32st.exe
 O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\dna Nettiturva\backweb\6629059\program\fsbwsys.exe
 O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\dna Nettiturva\FWES\Program\fsdfwd.exe
 O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\dna Nettiturva\Common\FSMA32.EXE 
							
						 
						
						
						
						 
					 
				
				
			
				
				
				
				
				
					
						
							
								
							
							
								Moderator
								
									  7 tuotearviota 
								
							
							 
							 
						 
						4. syyskuuta 2006 @ 11:20  
						 
							
								Linkki tähän viestiin 
								  
								 
								  
							
							 
						 
					 
					
					
					
						
						
						
							
							lokeille on oma alue, käytetään sitä.. siirretty. 
							
						
						
						 
						
						 
					 
				
				
			
			
			
				
				
					
				 
				
			
			
			
		
		
	
			
			
		
	 
 
	
	
	
		
			
		 
	 
	
	
	
		
			  
				
				
				  
			 
		 
	
	
					
						
							afterdawn.com  > keskustelu  > yleistä keskustelua tietokoneista  > virukset ja haittaohjelmat - hijackthis -logit  > hjt logi - kone temppuilee välillä