Joo elikkäs on ollu nytte semmonen ongelma koneessa että kun koittaa avata jotain esim. kalenteria tai jotain juttua ohjauspaneelista, niin siihen tulee ensin: Tietokoneesi suojaamiseksi Windows on sulkenut tämän ohjelman Nimi: Suorita DLL sovelluksena Julkaisija: Microsoft Corporation Sitten painan että sulje viesti, niin tulee rundll32.exe on havainnut virheen, ja tuote on suljettava. Pahoittelemme häiriötä. Sitten nuo virheraportti jutut että lähteä virherapotti tai Älä lähetä.. Eli voisko joku neuvoa että mikä täs on ongelmana ? Laitan tähän vielä hjt login: Logfile of HijackThis v1.99.1 Scan saved at 18:16:03, on 7.6.2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program Files\DAEMON Tools Lite\daemon.exe C:\program files\steam\steam.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\OpenOffice.org1.1.4\program\soffice.exe C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\PC Connectivity Solution\ServiceLayer.exe C:\WINDOWS\System32\wbem\wmiapsrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\Last.fm\LastFM.exe C:\Program Files\Webteh\BSplayerPro\bsplayer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Koti\Työpöytä\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program Files\OpenOffice.org1.1.4\program\quickstart.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll O11 - Options group: [INTERNATIONAL] International* O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing) O20 - Winlogon Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\ O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: iPod-palvelu (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf (file missing) O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
OTL logfile created on: 20.7.2009 16:45:07 - Run 1 OTL by OldTimer - Version 3.0.9.2 Folder = C:\Documents and Settings\Koti\Työpöytä Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy 511,23 Mb Total Physical Memory | 248,89 Mb Available Physical Memory | 48,68% Memory free 1,22 Gb Paging File | 0,57 Gb Available in Paging File | 46,70% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 232,88 Gb Total Space | 29,26 Gb Free Space | 12,57% Space Free | Partition Type: NTFS Drive D: | 24,41 Gb Total Space | 23,81 Gb Free Space | 97,52% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 9,20 Gb Free Space | 9,42% Space Free | Partition Type: NTFS Drive F: | 110,82 Gb Total Space | 25,56 Gb Free Space | 23,07% Space Free | Partition Type: NTFS G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: KORVATUN-MPJ0AA Current User Name: Koti Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Processes (SafeList) ========== PRC - [2008.10.29 05:09:10 | 00,585,728 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe PRC - [2008.10.29 05:09:10 | 00,585,728 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe PRC - [2009.02.06 00:01:25 | 00,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe PRC - [2009.07.04 17:23:44 | 01,029,456 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2008.04.14 19:12:11 | 01,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE PRC - [2009.02.06 00:08:40 | 00,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe PRC - [2009.02.06 00:08:45 | 00,081,000 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe PRC - [2008.11.29 16:14:38 | 15,961,088 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE PRC - [2009.03.07 18:45:55 | 00,136,600 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe PRC - [2009.07.04 17:23:45 | 00,520,024 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2009.01.06 14:06:36 | 00,290,088 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunesHelper.exe PRC - [2009.03.15 13:15:16 | 00,180,224 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files\PowerISO\PWRISOVM.EXE PRC - [2009.07.01 11:42:00 | 01,075,888 | ---- | M] (FSPro Labs) -- C:\Program Files\My Lockbox\mylbx.exe PRC - [2009.03.05 16:07:20 | 02,260,480 | RHS- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe PRC - [2008.12.29 13:40:30 | 00,687,560 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe PRC - [2009.06.10 21:24:40 | 01,217,784 | ---- | M] (Valve Corporation) -- C:\program files\steam\steam.exe PRC - [2009.03.20 14:32:32 | 01,312,256 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe PRC - [2009.03.08 14:21:25 | 00,091,440 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe PRC - [2008.05.02 03:44:08 | 00,805,392 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe PRC - [2004.12.13 02:10:00 | 00,430,080 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org1.1.4\program\soffice.exe PRC - [2008.05.02 03:40:56 | 00,076,304 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE PRC - [2008.11.07 15:28:16 | 00,132,424 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe PRC - [2008.08.29 11:18:44 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe PRC - [2009.05.03 12:22:28 | 00,073,392 | ---- | M] (FSPro Labs) -- C:\WINDOWS\System32\fsproflt.exe PRC - [2009.03.07 18:45:55 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe PRC - [2005.01.28 14:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe PRC - [2009.02.06 00:08:26 | 00,254,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe PRC - [2001.10.09 15:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wbem\unsecapp.exe PRC - [2009.02.06 13:10:02 | 00,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wbem\wmiprvse.exe PRC - [2009.01.06 14:06:24 | 00,536,872 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe PRC - [2009.03.04 11:25:12 | 00,621,056 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2009.03.09 13:44:12 | 00,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2009.02.06 00:06:04 | 00,352,920 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe PRC - [2008.11.26 12:35:00 | 00,119,808 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009.02.06 19:51:22 | 03,885,408 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe PRC - [2009.02.06 18:07:48 | 00,027,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Live\Contacts\wlcomm.exe PRC - [2009.07.20 16:44:44 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Koti\Työpöytä\OTL.exe ========== Win32 Services (SafeList) ========== SRV - [2008.11.07 15:28:16 | 00,132,424 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device [Auto | Running]) SRV - [2005.09.23 07:28:32 | 00,029,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped]) SRV - [2009.02.06 00:01:25 | 00,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv [Auto | Running]) SRV - [2008.10.29 05:09:10 | 00,585,728 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe -- (Ati HotKey Poller [Auto | Running]) SRV - [2008.10.28 22:05:00 | 00,593,920 | ---- | M] () -- C:\WINDOWS\System32\ati2sgag.exe -- (ATI Smart [Auto | Stopped]) SRV - [2009.02.06 00:08:40 | 00,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus [Auto | Running]) SRV - [2009.02.06 00:08:26 | 00,254,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner [On_Demand | Running]) SRV - [2009.02.06 00:06:04 | 00,352,920 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner [On_Demand | Running]) SRV - [2008.08.29 11:18:44 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service [Auto | Running]) SRV - [2005.09.23 07:28:56 | 00,066,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) SRV - [2009.05.03 12:22:28 | 00,073,392 | ---- | M] (FSPro Labs) -- C:\WINDOWS\System32\fsproflt.exe -- (fsproflt [Auto | Running]) SRV - [2008.04.14 19:11:45 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running]) SRV - [2009.01.06 14:06:24 | 00,536,872 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service [On_Demand | Running]) SRV - [2009.03.07 18:45:55 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running]) SRV - [2009.07.04 17:23:44 | 01,029,456 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service [Auto | Running]) SRV - [2008.05.02 03:42:06 | 00,121,360 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ [On_Demand | Stopped]) SRV - [2009.03.04 11:25:12 | 00,621,056 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer [On_Demand | Running]) SRV - [2005.01.28 14:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe -- (UMWdf [Auto | Running]) ========== Driver Services (SafeList) ========== DRV - [2009.02.06 00:05:11 | 00,026,944 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4 [System | Running]) DRV - [2009.02.06 00:07:12 | 00,020,560 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys -- (aswFsBlk [Auto | Running]) DRV - [2009.02.06 00:08:10 | 00,094,032 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2 [Auto | Running]) DRV - [2009.02.06 00:06:10 | 00,023,152 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr [On_Demand | Running]) DRV - [2009.02.06 00:07:23 | 00,114,768 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP [System | Running]) DRV - [2009.02.06 00:06:20 | 00,051,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi [System | Running]) DRV - [2008.10.29 06:10:58 | 03,341,824 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys -- (ati2mtag [On_Demand | Running]) DRV - [2008.11.29 16:15:59 | 00,043,008 | ---- | M] (VIA Technologies, Inc. ) -- C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys -- (FETND5BV [On_Demand | Running]) DRV - [2001.08.17 21:13:08 | 00,027,165 | ---- | M] (VIA Technologies, Inc. ) -- C:\WINDOWS\System32\DRIVERS\fetnd5.sys -- (FETNDIS [On_Demand | Stopped]) DRV - [2008.06.05 19:37:54 | 00,043,792 | ---- | M] (FSPro Labs) -- C:\WINDOWS\System32\Drivers\FSPFltd.sys -- (FSProFilter [Boot | Running]) DRV - [2008.04.17 14:12:54 | 00,015,464 | ---- | M] (GEAR Software Inc.) -- C:\WINDOWS\System32\DRIVERS\GEARAspiWDM.sys -- (GEARAspiWDM [On_Demand | Running]) DRV - [1996.04.03 22:33:26 | 00,005,248 | ---- | M] () -- C:\WINDOWS\system32\giveio.sys -- (giveio [Boot | Running]) DRV - [2008.04.13 19:36:05 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running]) DRV - [2008.11.29 16:14:39 | 04,137,984 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running]) DRV - [2008.02.29 04:12:48 | 00,020,240 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\DRIVERS\L8042Kbd.sys -- (L8042Kbd [On_Demand | Stopped]) DRV - [2008.02.29 04:12:56 | 00,063,120 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\DRIVERS\L8042mou.Sys -- (L8042mou [On_Demand | Stopped]) DRV - [2009.04.27 17:25:34 | 00,064,160 | ---- | M] (Lavasoft AB) -- C:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd [Boot | Running]) DRV - [2008.02.29 04:13:16 | 00,035,344 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\DRIVERS\LHidFilt.Sys -- (LHidFilt [On_Demand | Running]) DRV - [2008.02.29 04:13:24 | 00,036,880 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\DRIVERS\LMouFilt.Sys -- (LMouFilt [On_Demand | Running]) DRV - [2008.02.29 04:13:36 | 00,079,120 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\System32\DRIVERS\LMouKE.Sys -- (LMouKE [On_Demand | Stopped]) DRV - [2009.02.09 07:37:46 | 00,017,664 | ---- | M] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys -- (nmwcd [On_Demand | Stopped]) DRV - [2009.02.09 07:37:46 | 00,022,016 | ---- | M] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys -- (nmwcdc [On_Demand | Stopped]) DRV - [2008.08.26 10:26:12 | 00,018,816 | ---- | M] (Nokia) -- C:\WINDOWS\System32\DRIVERS\pccsmcfd.sys -- (pccsmcfd [On_Demand | Stopped]) DRV - [2004.04.16 09:20:14 | 00,090,700 | R--- | M] (Creative Technology Ltd.) -- C:\WINDOWS\System32\DRIVERS\P0620Vid.sys -- (PD0620VID [On_Demand | Running]) DRV - [2001.10.09 15:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running]) DRV - [2008.08.20 20:58:58 | 00,044,944 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running]) DRV - [2009.03.15 13:25:46 | 00,056,268 | ---- | M] (PowerISO Computing, Inc.) -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu [System | Running]) DRV - [2008.04.13 19:39:15 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped]) DRV - [2006.09.24 16:28:46 | 00,005,248 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\system32\speedfan.sys -- (speedfan [Boot | Running]) DRV - [2009.03.14 16:55:17 | 00,717,296 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running]) DRV - [2009.02.09 07:37:48 | 00,007,808 | ---- | M] (Nokia) -- C:\WINDOWS\System32\DRIVERS\usbser_lowerflt.sys -- (upperdev [On_Demand | Stopped]) DRV - [2008.11.07 15:23:30 | 00,032,000 | ---- | M] (Apple, Inc.) -- C:\WINDOWS\System32\Drivers\usbaapl.sys -- (USBAAPL [On_Demand | Stopped]) DRV - [2008.04.13 21:45:12 | 00,060,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbaudio.sys -- (usbaudio [On_Demand | Running]) DRV - [2008.04.13 21:45:36 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbser.sys -- (usbser [On_Demand | Stopped]) DRV - [2009.02.09 07:37:56 | 00,007,808 | ---- | M] (Nokia) -- C:\WINDOWS\System32\DRIVERS\usbser_lowerfltj.sys -- (UsbserFilt [On_Demand | Stopped]) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKU\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fi/ IE - HKU\S-1-5-21-515967899-308236825-839522115-1003\S-1-5-21-515967899-308236825-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-515967899-308236825-839522115-1003\S-1-5-21-515967899-308236825-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Ant.com" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..extensions.enabledItems: anttoolbar@ant.com:1.3 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20090123.1 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.704 FF - prefs.js..extensions.enabledItems: {241aae70-0022-11de-87af-0800200c9a66}:0.4.1 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11 FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009.03.07 18:45:58 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009.06.17 20:38:19 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009.06.21 00:01:20 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.11\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009.06.12 15:14:08 | 00,000,000 | ---D | M] [2009.03.08 14:32:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Extensions [2009.03.08 14:32:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009.07.19 17:06:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Firefox\Profiles\5sa6f1wu.default\extensions [2009.03.17 17:30:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Firefox\Profiles\5sa6f1wu.default\extensions\{241aae70-0022-11de-87af-0800200c9a66} [2009.07.13 23:59:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Firefox\Profiles\5sa6f1wu.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2009.03.19 19:33:34 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Koti\Application Data\mozilla\Firefox\Profiles\5sa6f1wu.default\extensions\anttoolbar@ant.com [2009.03.14 17:06:44 | 00,000,523 | ---- | M] () -- C:\Documents and Settings\Koti\Application Data\Mozilla\FireFox\Profiles\5sa6f1wu.default\searchplugins\daemon-search.xml [2009.03.09 21:51:42 | 00,001,504 | ---- | M] () -- C:\Documents and Settings\Koti\Application Data\Mozilla\FireFox\Profiles\5sa6f1wu.default\searchplugins\imdb.xml [2009.05.04 19:52:42 | 00,000,872 | ---- | M] () -- C:\Documents and Settings\Koti\Application Data\Mozilla\FireFox\Profiles\5sa6f1wu.default\searchplugins\irc-galleria.xml [2009.07.13 23:13:29 | 00,004,857 | ---- | M] () -- C:\Documents and Settings\Koti\Application Data\Mozilla\FireFox\Profiles\5sa6f1wu.default\searchplugins\isohunt---bt-search.xml [2009.03.09 21:52:43 | 00,001,620 | ---- | M] () -- C:\Documents and Settings\Koti\Application Data\Mozilla\FireFox\Profiles\5sa6f1wu.default\searchplugins\mozilla-add-ons.xml [2009.03.08 14:32:24 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions [2009.06.12 15:14:08 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009.06.12 15:14:00 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll [2009.06.12 15:14:00 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll [2009.02.06 13:44:28 | 01,447,296 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll [2009.06.12 15:14:03 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll [2001.09.10 04:47:38 | 00,103,344 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2009.03.09 14:55:48 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009.03.09 14:55:49 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009.04.02 14:24:21 | 00,002,062 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bookplus-fi.xml [2009.04.02 14:24:21 | 00,001,069 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\creativecommons-fi.xml [2009.04.02 14:24:21 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml [2009.04.02 14:24:21 | 00,002,677 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\huuto-fi.xml [2009.04.02 14:24:21 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fi.xml [2009.04.02 14:24:21 | 00,000,796 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-fi.xml O1 HOSTS File: (302493 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 10430 more lines... O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx () O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Windows Liven kirjautumisapuohjelma) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software) O4 - HKLM..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.) O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.EXE (Logitech, Inc.) O4 - HKLM..\Run: [mylbx] C:\Program Files\My Lockbox\mylbx.exe (FSPro Labs) O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.) O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.) O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.) O4 - HKU\S-1-5-21-515967899-308236825-839522115-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-515967899-308236825-839522115-1003..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia) O4 - HKU\S-1-5-21-515967899-308236825-839522115-1003..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O4 - HKU\S-1-5-21-515967899-308236825-839522115-1003..\Run: [Steam] c:\program files\steam\steam.exe (Valve Corporation) O4 - Startup: C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Käynnistys\Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe (Logitech Inc.) O4 - Startup: C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Käynnistys\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.) O4 - Startup: C:\Documents and Settings\Koti\Käynnistä-valikko\Ohjelmat\Käynnistys\OpenOffice.org 1.1.4.lnk = C:\Program Files\OpenOffice.org1.1.4\program\quickstart.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll (Intertrust Technologies, Inc.) O15 - HKLM\..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone. O15 - HKU\.DEFAULT\..Trusted Domains: 48 domain(s) and sub-domain(s) not assigned to a zone. O15 - HKU\S-1-5-18\..Trusted Domains: 48 domain(s) and sub-domain(s) not assigned to a zone. O15 - HKU\S-1-5-21-515967899-308236825-839522115-1003\..Trusted Domains: 48 domain(s) and sub-domain(s) not assigned to a zone. O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_10) O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.241.198.245 62.241.198.246 O18 - Protocol\Handler\bwfile-8876480 {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (Logitech Inc.) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\Ati2evxx.dll (ATI Technologies Inc.) O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found O24 - Desktop Components:0 (Nykyinen kotisivu) - About:Home O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.03.07 17:34:17 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found ========== Files/Folders - Created Within 30 Days ========== [2009.07.20 16:44:43 | 00,513,536 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Koti\Työpöytä\OTL.exe [2009.07.19 22:26:38 | 03,513,288 | ---- | C] () -- C:\Documents and Settings\Koti\Työpöytä\Fishing_SFX.exe [2009.07.18 22:06:42 | 04,886,489 | ---- | C] () -- C:\Documents and Settings\Koti\Työpöytä\alcatraz_-_having_my_baby.mp3 [2009.07.14 23:48:32 | 03,551,609 | ---- | C] () -- C:\Documents and Settings\Koti\Työpöytä\korista.gif [2009.07.09 00:39:34 | 00,000,000 | ---D | C] -- C:\My Lockbox [2009.07.09 00:38:57 | 00,000,683 | ---- | C] () -- C:\Documents and Settings\Koti\Työpöytä\My Lockbox.lnk [2009.07.09 00:38:55 | 00,073,392 | ---- | C] (FSPro Labs) -- C:\WINDOWS\System32\fsproflt.exe [2009.07.09 00:38:49 | 00,043,792 | ---- | C] (FSPro Labs) -- C:\WINDOWS\System32\drivers\FSPFltd.sys [2009.07.09 00:38:47 | 00,000,000 | ---D | C] -- C:\Program Files\My Lockbox [2009.07.08 17:01:19 | 00,020,853 | ---- | C] () -- C:\Documents and Settings\Koti\Työpöytä\477301.htm [2009.07.07 02:49:28 | 00,003,478 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2009.07.04 03:10:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Koti\Local Settings\Application Data\Opera [2009.07.04 03:10:46 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Koti\Application Data\Opera [2009.07.04 03:10:10 | 00,000,000 | ---D | C] -- C:\Program Files\Opera [2009.06.26 00:34:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Koti\Local Settings\Application Data\DC++ [2009.06.26 00:34:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Koti\Application Data\DC++ [2009.06.24 17:45:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Koti\Application Data\ImgBurn [2009.06.24 17:42:39 | 00,001,528 | ---- | C] () -- C:\Documents and Settings\All Users\Työpöytä\ImgBurn.lnk [2009.06.24 17:42:36 | 00,000,000 | ---D | C] -- C:\Program Files\ImgBurn [2009.06.23 22:27:39 | 00,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Työpöytä\PowerISO.lnk [2009.06.23 22:27:37 | 00,000,000 | ---D | C] -- C:\Program Files\PowerISO [2009.06.22 22:45:41 | 00,000,000 | ---D | C] -- C:\Program Files\Advanced IP Scanner [2009.03.23 16:21:33 | 00,000,041 | ---- | C] () -- C:\WINDOWS\System32\Filzip.ini [2009.03.15 16:21:07 | 00,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll [2009.03.14 16:55:16 | 00,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2009.03.07 19:23:19 | 00,000,041 | ---- | C] () -- C:\WINDOWS\Filzip.ini [2009.03.07 18:19:54 | 00,421,888 | ---- | C] () -- C:\WINDOWS\System32\OpenQuicktimeLib.dll [2009.03.07 18:19:53 | 01,163,264 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll [2009.03.07 18:19:53 | 01,040,384 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll [2009.03.07 18:19:53 | 00,679,936 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009.03.07 18:19:53 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2009.03.07 18:19:53 | 00,157,696 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2009.03.07 18:19:53 | 00,155,648 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009.03.07 18:19:53 | 00,077,824 | ---- | C] () -- C:\WINDOWS\System32\vorbisfile.dll [2009.03.07 18:19:53 | 00,061,440 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll [2009.03.07 18:19:50 | 00,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll [2009.03.07 18:14:02 | 00,061,440 | ---- | C] () -- C:\WINDOWS\System32\vuins32.dll [2009.03.07 18:09:12 | 00,135,168 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll [2001.10.09 15:00:00 | 00,000,519 | ---- | C] () -- C:\WINDOWS\win.ini [2001.10.09 15:00:00 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini [1996.04.03 22:33:26 | 00,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys ========== Files - Modified Within 30 Days ========== [1 C:\WINDOWS\System32\*.tmp files] [4 C:\WINDOWS\*.tmp files] [2009.07.20 16:44:44 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Koti\Työpöytä\OTL.exe [2009.07.20 16:18:25 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2009.07.20 16:18:02 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2009.07.19 23:18:00 | 00,000,041 | ---- | M] () -- C:\WINDOWS\Filzip.ini [2009.07.19 22:26:42 | 03,513,288 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\Fishing_SFX.exe [2009.07.18 22:06:51 | 04,886,489 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\alcatraz_-_having_my_baby.mp3 [2009.07.18 19:34:40 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2009.07.14 23:48:35 | 03,551,609 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\korista.gif [2009.07.14 17:27:40 | 00,036,864 | ---- | M] () -- C:\Documents and Settings\Koti\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009.07.13 23:36:31 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2009.07.13 17:37:26 | 00,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2009.07.09 00:38:57 | 00,000,683 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\My Lockbox.lnk [2009.07.08 17:01:21 | 00,020,853 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\477301.htm [2009.07.07 02:50:57 | 00,106,216 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009.07.07 02:49:28 | 00,003,478 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI [2009.07.05 04:18:52 | 00,001,548 | ---- | M] () -- C:\Documents and Settings\Koti\Työpöytä\CCleaner.lnk [2009.07.01 15:10:50 | 00,392,432 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2009.07.01 15:10:50 | 00,366,824 | ---- | M] () -- C:\WINDOWS\System32\perfh00B.dat [2009.07.01 15:10:50 | 00,071,202 | ---- | M] () -- C:\WINDOWS\System32\perfc00B.dat [2009.07.01 15:10:50 | 00,058,732 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2009.07.01 15:10:48 | 00,900,054 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009.06.24 17:49:37 | 00,001,528 | ---- | M] () -- C:\Documents and Settings\All Users\Työpöytä\ImgBurn.lnk [2009.06.23 22:27:39 | 00,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Työpöytä\PowerISO.lnk [2009.06.22 03:16:52 | 02,110,600 | -H-- | M] () -- C:\Documents and Settings\Koti\Local Settings\Application Data\IconCache.db < End of report > OTL Extras logfile created on: 20.7.2009 16:45:07 - Run 1 OTL by OldTimer - Version 3.0.9.2 Folder = C:\Documents and Settings\Koti\Työpöytä Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy 511,23 Mb Total Physical Memory | 248,89 Mb Available Physical Memory | 48,68% Memory free 1,22 Gb Paging File | 0,57 Gb Available in Paging File | 46,70% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 232,88 Gb Total Space | 29,26 Gb Free Space | 12,57% Space Free | Partition Type: NTFS Drive D: | 24,41 Gb Total Space | 23,81 Gb Free Space | 97,52% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 9,20 Gb Free Space | 9,42% Space Free | Partition Type: NTFS Drive F: | 110,82 Gb Total Space | 25,56 Gb Free Space | 23,07% Space Free | Partition Type: NTFS G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: KORVATUN-MPJ0AA Current User Name: Koti Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabledxpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger -- (Logitech Inc.) "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation) "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" = C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\WINDOWS\Network Diagnostic\xpnetdiag.exe" = C:\WINDOWS\Network Diagnostic\xpnetdiag.exe:*isabledxpsp3res.dll,-20000 -- (Microsoft Corporation) "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger -- (Logitech Inc.) "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation) "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" = C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger -- (Microsoft Corporation) "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Program Files\Java\jre6\bin\java.exe" = C:\Program Files\Java\jre6\bin\java.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) "C:\Program Files\Bonjour\mDNSResponder.exe" = C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour -- (Apple Inc.) "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.) "C:\Program Files\mIRC\mirc.exe" = C:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC -- (mIRC Co. Ltd.) "C:\Documents and Settings\Koti\Application Data\PowerChallenge\PowerSoccer\PowerSoccer.exe" = C:\Documents and Settings\Koti\Application Data\PowerChallenge\PowerSoccer\PowerSoccer.exe:*:EnabledowerSoccer -- () "C:\WINDOWS\system32\dpnsvr.exe" = C:\WINDOWS\system32\dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server -- (Microsoft Corporation) "C:\Program Files\Steam\steamapps\massit\counter-strike\hl.exe" = C:\Program Files\Steam\steamapps\massit\counter-strike\hl.exe:*:Enabled:Half-Life Launcher -- (Valve) "C:\Program Files\Steam\steamapps\massit\day of defeat\hl.exe" = C:\Program Files\Steam\steamapps\massit\day of defeat\hl.exe:*:Enabled:Half-Life Launcher -- (Valve) "C:\Program Files\Steam\steamapps\massit\team fortress 2\hl2.exe" = C:\Program Files\Steam\steamapps\massit\team fortress 2\hl2.exe:*isabled:hl2 -- () "C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*isabled:EA Download Manager -- File not found "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*isabled:Firefox -- (Mozilla Corporation) "C:\Program Files\Java\jre6\bin\javaw.exe" = C:\Program Files\Java\jre6\bin\javaw.exe:*isabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.) "C:\Program Files\DC++\DCPlusPlus.exe" = C:\Program Files\DC++\DCPlusPlus.exe:*isabledC++ -- File not found ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Liven lataustyökalu "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}" = QuickTime "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 11 "{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper "{350C97BA-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT "{4A51E32B-2EAD-44A0-AC41-9B27025AD892}" = Windows Liven asennustyökalu "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0 "{7148F0A8-6813-11D6-A77B-00B0D0142100}" = Java 2 Runtime Environment, SE v1.4.2_10 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}" = Nokia PC Suite "{79329446-9BBD-46CE-9D73-AD907BFEFBF4}" = Windows Live Messenger "{82427977-8776-4087-90CA-9F65174D3C4D}" = Nokia Connectivity Cable Driver "{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}" = Bonjour "{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard "{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{998152E5-B605-4BBB-9853-E749AEE02B21}" = Windows Liven kirjautumisavustaja "{9C87F6BB-75E4-4F35-8353-F5E295264E98}" = Windows Live Call "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{B7CB0BF3-791E-44D3-9F04-786E36D51C9D}" = PC Connectivity Solution "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{EC4455AB-F155-4CC1-A4C5-88F3777F9886}" = Apple Mobile Device Support "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F5C63795-2708-4D15-BF18-5ABBFF7DFFC8}" = iTunes "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "504244733D18C8F63FF584AEB290E3904E791693" = Windowsin ohjainpaketti - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Ad-Aware" = Ad-Aware "Adobe Acrobat 5.0" = Adobe Acrobat 5.0 "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Advanced IP Scanner v1.5" = Advanced IP Scanner v1.5 "ATI Display Driver" = ATI Display Driver "avast!" = avast! Antivirus "AviSynth" = AviSynth 2.5 "BSPlayerp" = BS.Player PRO "CCleaner" = CCleaner (remove only) "Creative PD0620" = Creative WebCam Instant Driver (1.00.08.0416) "D978F69D5F15B845BD6BC6F8BF9BCD36982A2087" = Windowsin ohjainpaketti - Nokia Modem (02/24/2009 4.0) "E7F682214B951640C9C539C41FDA1A7F836FF7B6" = Windowsin ohjainpaketti - Nokia Modem (02/23/2009 7.01.0.2) "Filzip 3.0.4.66_is1" = Filzip 3.04 "Free YouTube to Mp3 Converter_is1" = Free YouTube to Mp3 Converter version 3.1 "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "iDump" = iDump (Build: 28) "ie7" = Windows Internet Explorer 7 "ImgBurn" = ImgBurn "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager "KLiteCodecPack_is1" = K-Lite Codec Pack 4.7.0 (Full) "LastFM_is1" = Last.fm 1.5.4.24567 "Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0 "mIRC" = mIRC "Mozilla Firefox (3.0.11)" = Mozilla Firefox (3.0.11) "My Lockbox_is1" = My Lockbox 1.4 for Windows 2000/XP "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "Nokia PC Suite" = Nokia PC Suite "OpenAL" = OpenAL "PowerISO" = PowerISO "SpeedFan" = SpeedFan (remove only) "Steam App 10" = Counter-Strike "SystemRequirementsLab" = System Requirements Lab "Uninstall_is1" = Uninstall 1.0.0.1 "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 "Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 "Veetle TV" = Veetle TV 0.9.14 "Videora iPod classic Converter" = Videora iPod classic Converter 4.07 "Videora iPod Converter" = Videora iPod Converter 4.07 "Winamp" = Winamp "Windows Live OneCare safety scanner" = Windows Live OneCare safety scanner "Windows Media Format Runtime" = Windows Media Format Runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinLiveSuite_Wave3" = Windows Liven asennustyökalu "WinRAR archiver" = WinRAR archiver "VLC media player" = VLC media player 0.9.8a "VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast Ethernet Adapter "YouTube Downloader App" = YouTube Downloader App 1.02 ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-515967899-308236825-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Kiekko.tk" = Kiekko.tk "Muziic Player & Encoder" = Muziic Player & Encoder "OpenOffice.org 1.1.4" = OpenOffice.org 1.1.4 "uTorrent" = µTorrent ========== Last 10 Event Log Errors ========== [ Antivirus Events ] Error - 15.4.2009 16:57:44 | Computer Name = KORVATUN-MPJ0AA | Source = avast! | ID = 33554522 Description = AAVM - scanning error: x_AavmCheckFileDirectEx: avfilesScanReal of F:\740c84a092f1d5484b9dc6ca0e\shdocvw.dll failed, 00000005. [ Application Events ] Error - 15.7.2009 6:55:39 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 15.7.2009 11:25:12 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 16.7.2009 8:03:31 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 18.7.2009 12:35:06 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 19.7.2009 9:30:33 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 19.7.2009 10:04:21 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 19.7.2009 19:27:33 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 19.7.2009 19:55:33 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 19.7.2009 19:55:50 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. Error - 20.7.2009 9:18:20 | Computer Name = KORVATUN-MPJ0AA | Source = Application Error | ID = 1000 Description = Virhesovellus rundll32.exe, versio 5.1.2600.5512, moduuli unknown, versio 0.0.0.0, osoite 0x00a00687. [ System Events ] Error - 13.7.2009 16:34:41 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7009 Description = Aikakatkaisu (30000 ms) odottaa palvelun avast! Web Scanner yhdistymistä. Error - 13.7.2009 16:34:41 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7000 Description = Palvelua avast! Web Scanner ei voi käynnistää. Virhekoodi on %%1053 Error - 13.7.2009 16:35:26 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7009 Description = Aikakatkaisu (30000 ms) odottaa palvelun avast! Web Scanner yhdistymistä. Error - 13.7.2009 16:35:26 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7000 Description = Palvelua avast! Web Scanner ei voi käynnistää. Virhekoodi on %%1053 Error - 13.7.2009 16:36:12 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7009 Description = Aikakatkaisu (30000 ms) odottaa palvelun avast! Web Scanner yhdistymistä. Error - 13.7.2009 16:36:12 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7000 Description = Palvelua avast! Web Scanner ei voi käynnistää. Virhekoodi on %%1053 Error - 13.7.2009 16:38:20 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7034 Description = Palvelu avast! Web Scanner lopetti yllättäen toimintansa. Se on tehnyt näin jo 1 kertaa. Error - 19.7.2009 22:31:41 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7011 Description = Aikakatkaisu (30000 ms) odottaa tapahtuman vastausta palvelulta Dnscache. Error - 20.7.2009 9:20:26 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7009 Description = Aikakatkaisu (30000 ms) odottaa palvelun avast! Web Scanner yhdistymistä. Error - 20.7.2009 9:20:26 | Computer Name = KORVATUN-MPJ0AA | Source = Service Control Manager | ID = 7000 Description = Palvelua avast! Web Scanner ei voi käynnistää. Virhekoodi on %%1053 < End of report >