Celldorado, winstuffhere yms. mainosikkunat

Viestiketju Virukset ja haittaohjelmat - HijackThis -logit -osiossa. Ketjun avasi user83 20.09.2009.

  1. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2:33:30, on 20.9.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir Desktop\sched.exe
    C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\WINDOWS\system32\IoctlSvc.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku114.exe
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Sukoku\sukoku.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\StickyPad\StickyPad.exe
    C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
    C:\Program Files\mIRC\mirc.exe
    C:\Program Files\Outlook Express\msimn.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: (no name) - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - (no file)
    O2 - BHO: Media Access Startup - {25B8D58C-B0CB-46b0-BA64-05B3804E4E86} - (no file)
    O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - (no file)
    O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - (no file)
    O2 - BHO: (no name) - {59571f96-103c-4f38-902c-13e44d1682f8} - (no file)
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: System Search Dispatcher - {CDBFB47B-58A8-4111-BF95-06178DCE326D} - C:\Program Files\System Search Dispatcher\1.4.3.1040\ssd.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: (no name) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - (no file)
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Sticky Pad] C:\Program Files\StickyPad\StickyPad.exe
    O4 - HKCU\..\Run: [PopUpStopperFreeEdition] C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    O4 - HKLM\..\Policies\Explorer\Run: [VL2cXBnMK9] C:\Documents and Settings\All Users\Application Data\ifklurir\inejyvqz.exe
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Lisää tämä blogiin - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Lisää tämä blogiin tuotteessa Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Oheistiedot - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{D3DAB144-B7DA-4BD7-AF7A-246BE40729EA}: NameServer = 193.229.0.40,193.229.0.39
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O20 - AppInit_DLLs: C:\WINDOWS\system32\jefosodi.dll c:\windows\system32\yejimoya.dll C:\WINDOWS\system32\guard32.dll
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod-palvelu (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
    O23 - Service: Sukoku Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku114.exe

    --
    End of file - 9597 bytes
     
    Viimeksi muokattu: 20.09.2009
  2.  
  3. kalminen

    kalminen Regular member

    Liittynyt:
    04.05.2007
    Viestejä:
    3,915
    Kiitokset:
    0
    Pisteet:
    46
    Mene Windowsin ControlPaneliin (Ohjauspaneli) ja sieltä Lisää / Poista sovellus
    Vistassa Ohjelmat ja toiminnot
    Etsi ja poista ohjelma jonka nimessä on:

    System Search Dispatcher

    Sukoku


    --------------------------------------------------------------------------

    Lataa Malwarebytes' Anti-Malware työpöydällesi.

    Jos linkki ei toimi, voit ladata myös seuraavista linkeistä:
    Linkki1
    Linkki2


    * Tuplaklikkaa mbam-setup.exe ja seuraa ohjeita asentaaksesi ohjelman.
    * Lopuksi varmistu, että seuraavat on valittu: Päivitä Malwarebytes' Anti-Malware ja Käynnistä Malwarebytes' Anti-Malware ja sen jälkeen klikkaa Lopeta.
    * Jos päivitys löytyy, ohjelma lataa ja asentaa uusimman version. Jos päivityksien lataaminen ei onnistu, voit ladata päivitykset tästä. Tuplaklikkaa mbam-rules.exe asentaaksesi päivitykset.
    * Kun ohjelma on latautunut ja päivitykset tehty, valitse Suorita täysi tarkistus ja klikkaa Tarkista.
    * Kun tarkistus on valmis, klikkaa OK ja sitten Näytä tulokset nähdäksesi tulokset.
    * Varmistu, että kaikki on merkitty ja klikkaa Poista valitut.
    * Tämän jälkeen loki avautuu muistioon. Tallenna se paikkaan, josta löydät sen helposti. Loki löytyy myös täältä: C:\Documents and Settings\Käyttäjänimi\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-päiväys.txt
    * Lähetä lokin sisältö seuraavassa viestissäsi.[/list]

    Huom. Jos Mbam ei pystynyt poistamaan tiedostoa, se pyytää sinua käynnistämään koneesi uudelleen. Käynnistä koneesi silloin uudelleen heti. Mbam voi tehdä muutoksia rekisteriisi osana puhdistusta. Jos käytät suojausohjelmaa, joka havaitsee rekisterin muutokset, salli Mbamin tehdä muutokset.

    ----------------------------------------------------------------------------------

    Poista ne rivit jotka ovat vielä jäljellä:

    Sammuta selain ja muut ohjelmat Fixin ajaksi. (ei virustorjuntaa)
    Käynnistä HijackThis:ja Scan ja ruksaa seuraavat punaisella listatut tiedostot
    (HJT sammuttaa ohjelman ei poista)

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R3 - URLSearchHook: (no name) - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - (no file)
    O2 - BHO: Media Access Startup - {25B8D58C-B0CB-46b0-BA64-05B3804E4E86} - (no file)
    O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - (no file)
    O2 - BHO: NP Helper Class - {35B8D58C-B0CB-46b0-BA64-05B3804E4E86} - (no file)
    O2 - BHO: (no name) - {59571f96-103c-4f38-902c-13e44d1682f8} - (no file)
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: System Search Dispatcher - {CDBFB47B-58A8-4111-BF95-06178DCE326D} - C:\Program Files\System Search Dispatcher\1.4.3.1040\ssd.dll
    O3 - Toolbar: (no name) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - (no file)
    O4 - HKLM\..\Policies\Explorer\Run: [VL2cXBnMK9] C:\Documents and Settings\All Users\Application Data\ifklurir\inejyvqz.exe
    O20 - AppInit_DLLs: C:\WINDOWS\system32\jefosodi.dll c:\windows\system32\yejimoya.dll C:\WINDOWS\system32\guard32.dll
    O23 - Service: Sukoku Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\Sukoku\sukoku114.exe

    sekä sammuta ne.(fix Chekked) napista.

    Tyhjennä roskakori ja käynnistä koneesi uudelleen.

    Poista kansio/t, jos löytyy:
    C:\Program Files\System Search Dispatcher\
    C:\Program Files\Sukoku\
    C:\Documents and Settings\All Users\Application Data\Sukoku\

    Postita tänne seuraavat lokit:
    * Tuore HijackThis loki (Otetaan viimeisenä ennen postitusta)
    * Malwarebytes' Anti-Malware\Logs\log-päiväys.txt raportti
    *
    * Auttoiko ???
    *
     
  4. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    tuore HIJACKTHIS -log:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 23:10:44, on 20.9.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir Desktop\sched.exe
    C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\WINDOWS\system32\IoctlSvc.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\StickyPad\StickyPad.exe
    C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfpupdat.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Sticky Pad] C:\Program Files\StickyPad\StickyPad.exe
    O4 - HKCU\..\Run: [PopUpStopperFreeEdition] C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Lisää tämä blogiin - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Lisää tämä blogiin tuotteessa Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Oheistiedot - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{D3DAB144-B7DA-4BD7-AF7A-246BE40729EA}: NameServer = 193.229.0.40,193.229.0.39
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod-palvelu (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe

    --
    End of file - 8285 bytes



    MBAM -log:

    Malwarebytes' Anti-Malware 1.41
    Tietokantaversio: 2830
    Windows 5.1.2600 Service Pack 3

    20.9.2009 22:22:41
    mbam-log-2009-09-20 (22-22-41).txt

    Tarkistustyyppi: Täysi tarkistus (C:\|D:\|J:\|K:\|)
    Tarkistetut kohteet: 221969
    Kulunut aika: 1 hour(s), 43 minute(s), 54 second(s)

    Saastuneita muistiprosesseja: 0
    Saastuneita muistimoduuleja: 4
    Saastuneita rekisteriavaimia: 28
    Saastuneita rekisteriarvoja: 3
    Saastuneita rekisterikohteita: 6
    Saastuneita hakemistoja: 27
    Saastuneita tiedostoja: 380

    Saastuneita muistiprosesseja:
    (Haitallisia kohteita ei löydetty)

    Saastuneita muistimoduuleja:
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPCommon.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\HPCommon.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.dll (Adware.DoubleD) -> Delete on reboot.

    Saastuneita rekisteriavaimia:
    HKEY_CLASSES_ROOT\explorerbar.funredirector (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\explorerbar.funredirector.1 (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{480098c6-f6ad-4c61-9b5c-2bae228a34d1} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{6160f76a-1992-4b17-a32d-0c706d159105} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{877f3eab-4462-44df-8475-6064eafd7fbf} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{883dfc00-8a21-411d-956c-73a4e4b7d16f} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{ac5ab953-ed25-4f9c-87f0-b086b0178ffa} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{c28a0312-c403-417b-a425-a915bc0519cd} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35b8d58c-b0cb-46b0-ba64-05b3804e4e86} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{cdbfb47b-58a8-4111-bf95-06178dce326d} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\{5617ECA9-488D-4BA2-8562-9710B9AB78D2} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\CrucialSoft Ltd (Rogue.MSAntiSpyware) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MS AntiSpyware 2009 5.7 (Rogue.MSAntiSpyware) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Internet Saving Optimizer (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{16b6279b-9ff5-41fb-8bf9-404324f5dd1f}}_is1 (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.

    Saastuneita rekisteriarvoja:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{5617eca9-488d-4ba2-8562-9710b9ab78d2} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{0ba0192d-94a5-45e3-b2b8-3ec5a1a0b5ec} (Adware.DoubleD) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\{2224e955-00e9-4613-a844-ce69fccaae91} (Adware.DoubleD) -> Quarantined and deleted successfully.

    Saastuneita rekisterikohteita:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

    Saastuneita hakemistoja:
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\Logs (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\QuarantineW (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\QuarantineW\2009-01-22 15-33-020 (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\QuarantineW\2009-01-22 15-33-020 (Rogue.RegTool) -> Files: 760 -> Quarantined and deleted successfully.
    C:\Program Files\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\Data (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\components (Adware.DoubleD) -> Delete on reboot.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\DoubleD (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\DoubleD\GamingHarbor Toolbar (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer (Adware.DoubleD) -> Delete on reboot.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690 (Adware.DoubleD) -> Delete on reboot.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup (Adware.DoubleD) -> Delete on reboot.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050 (Adware.DoubleD) -> Delete on reboot.

    Saastuneita tiedostoja:
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\resultsw.db (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Application Data\RegTool\Logs\2009-01-22 15-27-520.log (Rogue.RegTool) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\NPCommon.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\NPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\chrome\content\NPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFAddOn.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Saving Optimizer\3.8.1.4690\FF\components\NPFFHelperComponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\HPCommon.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\unins000.dat (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\unins000.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\Data\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome.manifest (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\install.rdf (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\HPAddOn.jar (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.js (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\chrome\content\HPAddOn.xul (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.dll (Adware.DoubleD) -> Delete on reboot.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFAddOn.xpt (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Program Files\Media Access Startup\2.0.0.1050\FF\components\HPFFHelperComponent.js (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\ipdata.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-131116.001.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-131552.657.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-131817.298.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-131823.048.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-132128.141.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-133111.126.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-133156.454.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-140226.798.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-140424.391.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-142440.251.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-143020.063.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-143647.297.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-144846.422.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-144855.907.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-153439.297.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-154022.907.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-155724.204.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-195703.719.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-195817.969.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-201207.797.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-214704.141.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-215223.313.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-220416.438.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-225742.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-225835.579.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-225930.875.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-230753.032.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090913-230843.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-001527.422.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160238.719.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160615.016.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160627.875.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160644.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160706.829.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-160921.813.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-161034.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-163011.344.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171046.829.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171344.704.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171404.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171419.829.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171437.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-171454.547.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-175632.079.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-181045.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-183842.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-184943.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-190444.094.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-191234.141.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-192713.766.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-194312.329.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-203904.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-210025.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-211202.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-214118.485.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-220456.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-220702.532.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-225347.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-233113.657.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-234436.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090914-234922.985.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-152818.157.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-152937.704.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-153145.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-163712.266.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-170838.797.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-170947.610.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-174827.094.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-183617.438.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-210438.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-211022.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-211242.454.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-213739.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-215404.094.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-215431.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090915-230228.610.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-070253.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-070301.516.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-150828.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-150941.766.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-151525.344.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-154550.485.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-201645.672.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-201730.547.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-201746.891.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-201754.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-201811.141.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-213045.391.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-215912.797.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-220234.719.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-222704.438.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-223148.813.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-223852.969.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-225102.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-232422.969.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-233055.313.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090916-233449.797.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-000027.579.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-070046.140.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-070148.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-163158.437.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-173029.562.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-173412.093.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-182818.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-182932.031.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-184829.562.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-191923.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-201749.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-204531.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-205705.765.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-205952.390.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-210058.718.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-211007.218.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-211239.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-211659.843.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-212123.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-212220.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-212313.859.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-212854.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-214436.187.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-220150.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-220849.609.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-220912.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-231952.062.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090917-235217.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-150603.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-150824.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-152156.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-153833.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-154236.640.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-160014.125.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-220638.000.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-220740.484.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-221038.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-234101.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090918-235050.968.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-110901.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-111035.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-112402.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-113314.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-120002.312.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-120044.812.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-121559.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-141838.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-143829.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-184331.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-190116.765.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-192153.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-222635.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090919-230748.968.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-005917.366.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-010843.913.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-011022.882.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-012910.000.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-013244.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-013549.031.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-013758.875.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-015509.031.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-022125.062.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-022420.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-023105.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-023917.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-032939.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-035148.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-052258.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-052413.375.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-052626.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-111206.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-111259.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-155457.578.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-160150.609.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-175836.437.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-182253.031.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\NP_20090920-183435.187.log (Adware.DoubleD) -> Delete on reboot.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Internet Saving Optimizer\3.8.1.4690\rstatus.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\config.md (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-131023.876.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-131114.923.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-131552.610.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-131817.188.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-131823.001.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-132128.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-133111.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-133156.438.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-140226.782.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-140424.376.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-142440.235.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-143020.047.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-143647.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-144846.391.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-144855.891.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-153439.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-154022.891.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-155724.172.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-195703.704.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-195817.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-201207.766.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-214704.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-215223.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-220416.407.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-225742.907.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-225835.547.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-225930.844.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-230753.000.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090913-230843.266.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-001527.391.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160238.563.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160614.985.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160627.844.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160644.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160706.813.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-160921.782.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-161034.344.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-163011.313.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171046.797.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171344.672.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171404.719.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171419.813.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171437.594.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-171454.516.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-175632.063.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-181045.922.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-183842.094.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-184943.610.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-190444.063.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-191234.047.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-192713.735.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-194312.297.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-203904.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-210025.235.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-211202.360.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-214118.469.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-220456.250.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-220702.516.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-225347.344.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-233113.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-234436.922.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090914-234922.969.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-152818.141.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-152937.672.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-153145.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-163712.188.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-170838.766.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-170947.594.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-174827.063.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-183617.422.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-210438.735.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-211022.344.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-211242.422.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-213739.079.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-215404.063.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-215431.094.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090915-230228.579.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-070253.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-070301.485.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-150828.594.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-150941.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-151525.313.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-154550.454.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-201645.641.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-201730.532.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-201746.860.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-201754.469.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-201811.110.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-213045.204.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-215912.704.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-220234.688.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-222704.407.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-223148.782.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-223852.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-225102.610.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-232422.938.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-233055.282.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090916-233449.782.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-000027.547.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-070046.078.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-070148.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-163158.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-173029.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-173412.062.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-182818.640.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-182932.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-184829.546.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-191923.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-201749.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-204531.781.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-205705.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-205952.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-210058.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-211007.203.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-211239.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-211659.828.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-212123.890.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-212219.984.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-212313.828.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-212854.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-214436.171.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-220150.031.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-220849.578.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-220912.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-231952.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090917-235217.671.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-150603.671.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-150824.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-152156.078.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-153833.468.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-154236.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-160014.109.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-220637.968.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-220740.453.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-221038.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-234101.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090918-235050.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-110901.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-111035.453.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-112402.703.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-113314.906.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-120002.296.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-120044.796.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-121559.531.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-141838.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-143829.062.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-184331.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-190116.687.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-192152.890.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-222635.203.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090919-230748.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-005917.101.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-010843.726.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-011022.866.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-012909.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-013244.343.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-013549.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-013758.750.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-015508.937.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-022125.046.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-022420.500.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-023105.234.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-023917.953.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-032939.656.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-035148.015.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-052258.281.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-052413.359.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-052626.921.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-111206.734.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-111259.625.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-155457.406.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-160150.593.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-175836.265.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-182253.000.log (Adware.DoubleD) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Media Access Startup\2.0.0.1050\HJHP_20090920-183435.062.log (Adware.DoubleD) -> Delete on reboot.
    C:\WINDOWS\Tasks\RegTool Scan.job (Rogue.RegTool) -> Quarantined and deleted successfully.

    --------------------

    Nyt tuntuisi olevan kaikki kunnossa, kiitokset avusta :)
     
  5. warwas

    warwas Guest

    User83, ei ole puhdasta vielä, esim vundon tiedostot sun koneella edelleen, eli älä lähde pois vielä :)
    Mites sun Comodo toimii?

    • Lataa tästä random's system information tool (RSIT) by random/random ja tallenna se työpöydälle
    • Tuplaklikkaa RSIT.exeä ajaaksesi RSITin.
    • Klikkaa Continue.
    • Kun RSIT on valmis, kaksi lokia avautuu muistioon. Lähetä sekä log.txt:n (<<avautuu suurennettuna) että info.txt:n (<<avautuu pienennettynä) sisältö seuraavassa viestissäsi.
     
    Moderaattorin viimeksi muokkaama: 21.09.2009
  6. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    info.txt logfile of random's system information tool 1.06 2009-09-21 16:31:25

    ======Uninstall list======

    -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
    -->C:\Program Files\Nero\Nero8\\nero\uninstall\UNNERO.exe /UNINSTALL
    -->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
    -->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
    -->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
    -->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
    -->C:\WINDOWS\UNRecode.exe /UNINSTALL
    -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    5star Gomoku-->C:\WINDOWS\unvise32.exe C:\Program Files\5star Gomoku\uninstal.log
    Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
    Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
    Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
    Adobe Media Player-->MsiExec.exe /X{9455959E-D588-EFAE-329C-F66CC797F32A}
    Adobe Reader 7.0.5 - Suomi-->MsiExec.exe /I{AC76BA86-7AD7-1035-7B44-A70500000002}
    Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
    Apple Mobile Device Support-->MsiExec.exe /I{8355F970-601D-442D-A79B-1D7DB4F24CAD}
    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
    ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
    ATI Catalyst Control Center-->MsiExec.exe /I{47046207-F450-4065-8FDD-1050F1D1C4BF}
    ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
    AudibleManager-->C:\Program Files\Audible\Bin\Upgrade.exe /Uninstall
    Auto Gordian Knot 2.45-->C:\Program Files\AutoGK\uninst.exe
    Automaattiset valikot (Windows Live Toolbar)-->MsiExec.exe /X{B01DC672-EA23-4FF8-BA22-F622AAF00EAD}
    Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
    AviSynth 2.5-->"C:\Program Files\AviSynth 2.5\Uninstall.exe"
    Betsson (remove only)-->"C:\Program Files\Betsson\uninstall.exe"
    Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
    BUFFALO TurboUSB for FLASH/HDD-->C:\WINDOWS\UN070410.EXE /U
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
    COMODO Internet Security-->C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe -u
    Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
    DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
    DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    DVD Shrink 3.2-->"C:\Program Files\DVD Shrink\unins000.exe"
    ebgcInfra-->MsiExec.exe /X{39B1BD87-561E-4762-AED9-7C5213B06C24}
    ebgcRes-->MsiExec.exe /X{5380B111-5047-413D-A6E5-70D69391D08E}
    ebgcSDK-->MsiExec.exe /X{13AD768A-9E04-499D-AE80-967A65DCCBA5}
    EuroTalk Talk Now Plus!-->C:\PROGRA~1\EuroTalk\TALKNO~1\UNWISE.EXE C:\PROGRA~1\EuroTalk\TALKNO~1\INSTALL.LOG
    Euroword Pro-->C:\WINDOWS\st6unst.exe -n "C:\Program Files\EurowordPro\ST6UNST.LOG"
    FeedDemon-->"C:\Program Files\FeedDemon\unins000.exe"
    FeedStation-->"C:\Program Files\FeedStation\unins000.exe"
    ffdshow [rev 1324] [2007-07-01]-->"C:\Documents and Settings\Mikko Peltola\The FilmMachine\ffdshow\unins000.exe"
    FLV Player 1.3.3-->"C:\Program Files\FLVPlayer\uninstall.exe"
    Football Manager 2008-->"C:\Program Files\Sports Interactive\Football Manager 2008\Uninstall_Football Manager 2008\Uninstall Football Manager 2008.exe"
    GOM Player-->"C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
    Google Toolbar for Firefox-->MsiExec.exe /X{2CCBABCB-6427-4A55-B091-49864623C43F}
    GrabFile3.7-->"C:\Program Files\GrabFile\unins000.exe"
    Guitar Hero: Aerosmith-->MsiExec.exe /I{46F42615-BA31-45A0-BE10-2D2119749E95}
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    Hotfix-päivitys Windows Internet Explorer 7:lle (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
    Hotfix-päivitys Windows XP:lle (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
    Hotfix-päivitys Windows XP:lle (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
    Hotfix-päivitys Windows XP:lle (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
    IrfanView (remove only)-->C:\Program Files\IrfanView\iv_uninstall.exe
    iTunes-->MsiExec.exe /I{5D601655-6D54-4384-B52C-17EC5385FBBD}
    Java DB 10.4.2.1-->MsiExec.exe /X{926C96FB-9D0A-4504-8000-C6D3A4A3118E}
    Java(TM) 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
    Java(TM) SE Development Kit 6 Update 14-->MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0160140}
    Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
    KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
    Korostuksen katselu (Windows Live Toolbar)-->MsiExec.exe /X{90E65178-09D9-44DB-9506-361FD59B731B}
    Last.fm 1.5.4.24567-->"C:\Program Files\Last.fm\unins000.exe"
    Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\SETUP.EXE" -l0xb UNINSTALL
    Logitech Registration-->MsiExec.exe /I{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
    Logitech SetPoint-->C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x000b -removeonly
    Macromedia Flash Player 8-->MsiExec.exe /X{6815FCDD-401D-481E-BA88-31B4754C2B46}
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
    Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
    Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
    Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
    Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
    Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
    Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
    Microsoft Laskin +-->MsiExec.exe /I{AF53B4D9-B6FF-44E5-A3E9-1A14F7033B6E}
    Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
    Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040B-6000-11D3-8CFE-0150048383C9}
    Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
    Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
    Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
    Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
    Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
    Microsoft Works-->MsiExec.exe /I{6495D83E-3A5B-4674-A17F-3A6DDCDC0F89}
    mIRC-->C:\Program Files\mIRC\uninstall.exe _?=C:\Program Files\mIRC
    MobileMe-säätöpaneeli-->MsiExec.exe /I{6DA9102E-199F-43A0-A36B-6EF48081A658}
    Mozilla Firefox (3.0.14)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
    Mozilla Thunderbird (1.5)-->C:\WINDOWS\UninstallThunderbird.exe /ua "1.5 (fi)"
    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
    MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    Music NFO Builder 1.17-->"C:\Program Files\Music NFO Builder\unins000.exe"
    Nero 8 Trial-->MsiExec.exe /X{1DEBA8AA-3FC2-4867-AD29-4CE4A95E1033}
    neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
    Nokia Connectivity Cable Driver-->MsiExec.exe /X{11964613-805F-432D-A12B-169554B793E7}
    Nokia PC Suite-->C:\Documents and Settings\All Users\Application Data\Installations\{A982E6CC-9F0D-4948-9B18-BDFD55DE4A72}\Nokia_PC_Suite_6_84_10_3_fin_web.exe
    Nokia PC Suite-->MsiExec.exe /I{A982E6CC-9F0D-4948-9B18-BDFD55DE4A72}
    NVIDIA Drivers-->C:\WINDOWS\system32\nvunrm.exe UninstallGUI
    PC Connectivity Solution-->MsiExec.exe /I{99A40651-0BC2-4095-8F9A-A40FAB224FEF}
    PeaZip 2.4-->"C:\Program Files\PeaZip\unins000.exe"
    Pop-Up Stopper Free Edition-->C:\PROGRA~1\PANICW~1\POP-UP~1\UNWISE.EXE C:\PROGRA~1\PANICW~1\POP-UP~1\INSTALL.LOG
    Päivitys Windows Internet Explorer 8:lle (KB971930)-->"C:\WINDOWS\ie8updates\KB971930-IE8\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB961503)-->"C:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
    Päivitys Windows XP:lle (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
    QuickTime-->MsiExec.exe /I{C78EAC6F-7A73-452E-8134-DBB2165C5A68}
    Readiris Pro 10-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{14D08502-FEE4-40E5-90D3-8A967A1D8BA2}\setup.exe" -l0x9
    Real Alternative 1.9.0-->"C:\Program Files\Real Alternative\unins000.exe"
    Realtek AC'97 Audio-->Alcrmv.exe -r -m
    Revo Uninstaller 1.71-->C:\Program Files\VS Revo Group\Revo Uninstaller\uninst.exe
    Sanakirjan puhesyntetisaattori-->MsiExec.exe /I{2C02CB68-46DA-42D1-B47D-094B578E8F7C}
    SDP Downloader-->MsiExec.exe /I{B547CB8D-549A-436E-97B5-E79F911B11E2}
    Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
    SopCast 3.0.3-->C:\Program Files\SopCast\uninst.exe
    StickyPad-->MsiExec.exe /I{4AC3BEAD-0906-4676-BF85-12306330A66C}
    Suojauspäivitys Windows Internet Explorer 7:lle (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 7:lle (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 8:lle (KB969897)-->"C:\WINDOWS\ie8updates\KB969897-IE8\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 8:lle (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
    Suojauspäivitys Windows Internet Explorer 8:lle (KB972260)-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe"
    Suojauspäivitys Windows Media Player 11:lle (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
    Suojauspäivitys Windows Media Playerille (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
    Suojauspäivitys Windows Media Playerille (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
    Suojauspäivitys Windows Media Playerille (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
    Suojauspäivitys Windows XP:lle (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
    Tappio-kirjanpito-->C:\Program Files\Tappio\uninst.exe
    Tetris-->"C:\Program Files\Tetris\unins000.exe"
    Texas Hold'em Poker 3D - Deluxe Edition 1.0-->"C:\Program Files\Play+Smile\Texas Hold'em Poker 3D - Deluxe Edition\unins000.exe"
    TextMaker Viewer-->C:\WINDOWS\untmv.exe
    The FilmMachine 1.6.0.7 beta-->"C:\Documents and Settings\Mikko Peltola\The FilmMachine\unins000.exe"
    TVUPlayer 2.3.4.1-->C:\Program Files\TVUPlayer\uninst.exe
    Tärkeä päivitys Windows Media Player 11:lle (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
    URUSoft ViPlay-->"C:\Program Files\URUSoft\ViPlay\uninstall.exe"
    VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
    Videora iPod classic Converter 3.07-->C:\Program Files\Red Kawa\Video Converter 3\uninstaller.exe
    Videora iPod Converter 3.07-->C:\Program Files\Red Kawa\Video Converter 3\uninstaller.exe
    Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
    Windows Live Call-->MsiExec.exe /I{9C87F6BB-75E4-4F35-8353-F5E295264E98}
    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
    Windows Live Messenger-->MsiExec.exe /X{79329446-9BBD-46CE-9D73-AD907BFEFBF4}
    Windows Live -perheturva-->MsiExec.exe /X{C0DD0204-D625-4467-A6DD-981D2BE8CD22}
    Windows Live Sync-->MsiExec.exe /X{49A6888F-C49A-4F9E-84CA-EE1449268E0B}
    Windows Live Toolbar-->MsiExec.exe /X{F5A0AA6B-8FCA-4F18-91A7-C4C6FC45FBEC}
    Windows Live Toolbarin laajennus (Windows Live Toolbar)-->MsiExec.exe /X{E3D1082C-6A34-46BC-88AD-2775C8035FB5}
    Windows Live Writer-->MsiExec.exe /X{4674D305-81B0-4788-9C3F-1EFFE82629E6}
    Windows Liven asennustyökalu-->C:\Program Files\Windows Live\Installer\wlarp.exe
    Windows Liven asennustyökalu-->MsiExec.exe /I{4A51E32B-2EAD-44A0-AC41-9B27025AD892}
    Windows Liven kirjautumisavustaja-->MsiExec.exe /I{A1D39316-5F04-44B2-B90B-7834A794D285}
    Windows Liven lataustyökalu-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    Windows Liven sähköposti-->MsiExec.exe /I{A4140A4C-C58D-4A77-9C5C-002F063C6CF1}
    Windows Liven valokuvavalikoima-->MsiExec.exe /X{3E0E735A-9796-4570-B802-E776FB945929}
    Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
    Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
    Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
    Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
    WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
    vixy converter uninstall-->"C:\Program Files\vixy.net\unins000.exe"
    VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC\uninstall.exe
    VobSub v2.23 (Remove Only)-->"C:\Program Files\Gabest\VobSub\uninstall.exe"
    Xbox 360 Controller for Windows-->"C:\WINDOWS\$NtUninstall_Xbox_360_CC_Driver$\spuninst\spuninst.exe"
    XP Codec Pack-->C:\Program Files\XP Codec Pack\Uninstall.exe
    Xvid 1.1.3 final uninstall-->"C:\Program Files\Xvid\unins000.exe"
    XviD MPEG4 Video Codec (remove only)-->"C:\WINDOWS\system32\xvid-uninstall.exe"

    =====HijackThis Backups=====

    O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - (no file) [2009-09-20]
    O3 - Toolbar: (no name) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - (no file) [2009-09-20]
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) [2009-09-20]
    R3 - URLSearchHook: (no name) - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - (no file) [2009-09-20]
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank [2009-09-20]
    O4 - HKLM\..\Policies\Explorer\Run: [VL2cXBnMK9] C:\Documents and Settings\All Users\Application Data\ifklurir\inejyvqz.exe [2009-09-20]
    O2 - BHO: (no name) - {59571f96-103c-4f38-902c-13e44d1682f8} - (no file) [2009-09-20]
    O20 - AppInit_DLLs: C:\WINDOWS\system32\jefosodi.dll c:\windows\system32\yejimoya.dll C:\WINDOWS\system32\guard32.dll [2009-09-20]

    ======Hosts File======

    127.0.0.1 localhost
    127.0.0.1 www.007guard.com
    127.0.0.1 007guard.com
    127.0.0.1 008i.com
    127.0.0.1 www.008k.com
    127.0.0.1 008k.com
    127.0.0.1 www.00hq.com
    127.0.0.1 00hq.com
    127.0.0.1 010402.com
    127.0.0.1 www.032439.com

    ======Security center information======

    AV: COMODO Antivirus
    AV: AntiVir Desktop
    FW: COMODO Firewall

    ======System event log======

    Computer Name: MIKKO
    Event Code: 3
    Message: Poistettiin tulostin Microsoft Office Document Image Writer.

    Record Number: 169330
    Source Name: Print
    Time Written: 20090611074912.000000+180
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 4
    Message: Tulostin Microsoft Office Document Image Writer odottaa poistamista.

    Record Number: 169329
    Source Name: Print
    Time Written: 20090611074912.000000+180
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 20
    Message: Tulostinohjain Microsoft Office Document Image Writer Driver tulostimelle Windows NT x86 Version-3 lisättiin tai päivitettiin. Tiedostot:- mdigraph.dll, mdiui.dll, mdiui.dll.

    Record Number: 169328
    Source Name: Print
    Time Written: 20090611074817.000000+180
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 3
    Message: Poistettiin tulostin Microsoft Office Document Image Writer.

    Record Number: 169327
    Source Name: Print
    Time Written: 20090611074816.000000+180
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 4
    Message: Tulostin Microsoft Office Document Image Writer odottaa poistamista.

    Record Number: 169326
    Source Name: Print
    Time Written: 20090611074815.000000+180
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    =====Application event log=====

    Computer Name: MIKKO
    Event Code: 4113
    Message: AntiVir has detected 'TR/Crypt.XPACK.Gen'
    in the file
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Mozilla\Firefox\Profiles\dpcxwfte.default\Cache\DC953151d01

    Record Number: 10483
    Source Name: Avira AntiVir
    Time Written: 20090107003737.000000+120
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 4113
    Message: AntiVir has detected 'TR/Crypt.XPACK.Gen'
    in the file
    C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Mozilla\Firefox\Profiles\dpcxwfte.default\Cache\DC953151d01

    Record Number: 10482
    Source Name: Avira AntiVir
    Time Written: 20090107003732.000000+120
    Event Type: warning
    User: NT-HALLINTA\SYSTEM

    Computer Name: MIKKO
    Event Code: 12001
    Message:
    Record Number: 10474
    Source Name: usnjsvc
    Time Written: 20090105202141.000000+120
    Event Type:
    User:

    Computer Name: MIKKO
    Event Code: 32068
    Message: Lähtevien faksien reitityssääntö ei kelpaa, koska se ei löydä kelvollista laitetta. Tätä sääntöä käyttäviä lähteviä fakseja ei reititetä. Varmista, että kohdelaite (tai reititysryhmän kohdelaitteet) on kytketty ja asennettu oikein ja että se on käytössä. Jos faksit reititetään ryhmään, varmista, että ryhmä on määritetty oikein.
    Maan tai alueen numero: *
    Suuntanumero: *

    Record Number: 10471
    Source Name: Microsoft Fax
    Time Written: 20090104134833.000000+120
    Event Type: warning
    User:

    Computer Name: MIKKO
    Event Code: 32026
    Message: Faksipalvelu ei onnistunut alustamaan määritettyjä faksilaitteita (näennäisiä tai TAPI-laitteita).
    Fakseja ei voi lähettää tai vastaanottaa, ennen kuin faksilaite on asennettu.

    Record Number: 10470
    Source Name: Microsoft Fax
    Time Written: 20090104134833.000000+120
    Event Type: warning
    User:

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "Path"=C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\;%NpmLib%;C:\Program Files\QuickTime\QTSystem\
    "windir"=%SystemRoot%
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "PROCESSOR_ARCHITECTURE"=x86
    "PROCESSOR_LEVEL"=15
    "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 47 Stepping 2, AuthenticAMD
    "PROCESSOR_REVISION"=2f02
    "NUMBER_OF_PROCESSORS"=1
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "NpmLib"=C:\Norman\Npm\Bin
    "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
    "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

    -----------------EOF-----------------

    JA

    Logfile of random's system information tool 1.06 (written by random/random)
    Run by Mikko Peltola at 2009-09-21 16:29:48
    Microsoft Windows XP Home Edition Service Pack 3
    System drive C: has 6 GB (2%) free of 238 GB
    Total RAM: 1023 MB (43% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 16:31:06, on 21.9.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir Desktop\sched.exe
    C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\WINDOWS\system32\IoctlSvc.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\StickyPad\StickyPad.exe
    C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\Program Files\mIRC\mirc.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Mikko Peltola\Työpöytä\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\Mikko Peltola.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Sticky Pad] C:\Program Files\StickyPad\StickyPad.exe
    O4 - HKCU\..\Run: [PopUpStopperFreeEdition] C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Lisää tämä blogiin - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Lisää tämä blogiin tuotteessa Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Oheistiedot - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{D3DAB144-B7DA-4BD7-AF7A-246BE40729EA}: NameServer = 193.229.0.40,193.229.0.39
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod-palvelu (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe

    --
    End of file - 8329 bytes

    ======Scheduled tasks folder======

    C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
    C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1647120175-4058773308-1009806509-1006Core.job
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1647120175-4058773308-1009806509-1006UA.job

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
    Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
    Windows Liven kirjautumisapuohjelma - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
    Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
    JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-09-03 111936]
    "Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]
    "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
    "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-06-05 292136]
    "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
    "COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2009-07-26 1793808]
    "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280]
    "Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-02-06 3885408]
    "Google Update"=C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-09-02 133104]
    "MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
    "uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2009-07-26 288048]
    "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
    "Sticky Pad"=C:\Program Files\StickyPad\StickyPad.exe [2007-04-24 528441]
    "PopUpStopperFreeEdition"=C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe [2005-03-17 536576]

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
    C:\Program Files\uTorrent\uTorrent.exe [2009-07-26 288048]

    C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Käynnistys
    Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
    C:\WINDOWS\system32\Ati2evxx.dll [2007-12-05 122880]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
    c:\program files\common files\logitech\bluetooth\LBTWlgn.dll [2008-05-02 72208]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    "{4F07DA45-8170-4859-9B5F-037EF2970034}"= []

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
    "authentication packages"=msv1_0
    C:\WINDOWS\system32\vturq.dll
    "notification packages"=scecli
    C:\WINDOWS\system32\jefosodi.dll

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WdfLoadGroup]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DisableTaskMgr"=0

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun"=145

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "HonorAutoRunSetting"=

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
    "C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
    "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019"
    "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:mad:xpsp3res.dll,-20000"
    "C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
    "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
    "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
    "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bc66c2e6-a58e-11dc-b8f6-0015f27b4f33}]
    shell\AutoRun\command - K:\OblivionLauncher.exe


    ======List of files/folders created in the last 1 months======

    2009-09-21 16:29:48 ----D---- C:\rsit
    2009-09-20 02:32:59 ----D---- C:\Program Files\Trend Micro
    2009-09-20 01:49:08 ----D---- C:\Program Files\Enigma Software Group
    2009-09-20 01:18:25 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
    2009-09-16 21:43:42 ----D---- C:\Documents and Settings\Mikko Peltola\Application Data\vlc
    2009-09-13 14:20:06 ----D---- C:\Program Files\mIRC
    2009-09-13 13:10:21 ----D---- C:\Program Files\Media Access Startup
    2009-09-13 13:10:09 ----D---- C:\Program Files\Internet Saving Optimizer
    2009-09-13 13:09:01 ----HDC---- C:\Documents and Settings\All Users\Application Data\{7F4A1B90-59B3-4968-96A3-F7C1BE30DEBE}
    2009-09-11 03:07:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
    2009-09-11 03:05:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
    2009-08-29 22:09:45 ----D---- C:\Program Files\TVUPlayer
    2009-08-26 03:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$

    ======List of files/folders modified in the last 1 months======

    2009-09-21 16:30:19 ----D---- C:\WINDOWS\Prefetch
    2009-09-21 16:28:15 ----D---- C:\Program Files\Mozilla Firefox
    2009-09-21 01:20:00 ----A---- C:\WINDOWS\SchedLgU.Txt
    2009-09-21 00:32:02 ----D---- C:\Program Files\EurowordPro
    2009-09-21 00:32:02 ----A---- C:\WINDOWS\EWPro.ini
    2009-09-20 23:14:55 ----D---- C:\Documents and Settings\Mikko Peltola\Application Data\mIRC
    2009-09-20 23:09:02 ----AD---- C:\Program Files
    2009-09-20 23:05:34 ----D---- C:\Documents and Settings\Mikko Peltola\Application Data\uTorrent
    2009-09-20 23:04:22 ----D---- C:\WINDOWS\Temp
    2009-09-20 23:02:35 ----D---- C:\WINDOWS\system32\CatRoot2
    2009-09-20 22:34:42 ----SHD---- C:\WINDOWS\Installer
    2009-09-20 22:34:22 ----DC---- C:\WINDOWS\system32\DRVSTORE
    2009-09-20 22:34:22 ----D---- C:\WINDOWS\system32\drivers
    2009-09-20 22:33:37 ----D---- C:\WINDOWS\system32
    2009-09-20 22:22:36 ----SD---- C:\WINDOWS\Tasks
    2009-09-20 18:38:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
    2009-09-20 10:42:52 ----AD---- C:\WINDOWS
    2009-09-20 01:20:48 ----HD---- C:\WINDOWS\inf
    2009-09-13 13:13:54 ----D---- C:\WINDOWS\Debug
    2009-09-13 13:11:01 ----A---- C:\WINDOWS\win.ini
    2009-09-11 03:07:10 ----RSHDC---- C:\WINDOWS\system32\dllcache
    2009-09-11 03:03:22 ----HD---- C:\WINDOWS\$hf_mig$
    2009-09-11 03:03:03 ----D---- C:\WINDOWS\ie8updates
    2009-09-03 03:04:34 ----D---- C:\WINDOWS\Microsoft.NET
    2009-08-29 12:22:48 ----D---- C:\WINDOWS\Help
    2009-08-29 00:38:20 ----A---- C:\WINDOWS\system32\MRT.exe
    2009-08-23 00:44:32 ----D---- C:\Program Files\COMODO
    2009-08-23 00:21:56 ----D---- C:\WINDOWS\system32\FxsTmp

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 36352]
    R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
    R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
    R1 bbcap;bbcap; C:\WINDOWS\system32\DRIVERS\bbcap.sys [2007-03-09 2944]
    R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2009-07-26 132040]
    R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2009-07-26 25160]
    R1 kbdhid;Näppäimistön HID-ohjain; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
    R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
    R1 Tcpip6;Microsoft IPv6 -protokollaohjain; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2008-06-20 225856]
    R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-08-05 55656]
    R2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
    R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
    R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS -yhteensopiva kuljetusprotokolla; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-13 88320]
    R2 NwlnkNb;NWLink NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2004-09-15 63232]
    R2 NwlnkSpx;NWLink SPX/SPXII -protokolla; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2004-09-15 55936]
    R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-11-22 3804416]
    R3 Arp1394;1394 ARP -asiakasprotokolla; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
    R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2007-12-05 2782208]
    R3 bfturboh;BUFFALO TurboUSB for HD Filter; C:\WINDOWS\system32\drivers\bfturboh.sys [2007-08-02 15872]
    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2009-03-19 23400]
    R3 HidUsb;Microsoft HID -luokkaohjain; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
    R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
    R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
    R3 mouhid;Hiiren HID-ohjain; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-05 12160]
    R3 NIC1394;1394-verkko-ohjain; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
    R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2005-06-30 33664]
    R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2005-06-30 12928]
    R3 tunmp;Microsoft Tun Miniport -sovittimen ohjain; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
    R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
    R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
    R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
    R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
    R3 usbprint;Microsoft USB PRINTER -luokka; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
    R3 usbstor;USB-massamuistiohjain; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
    R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
    S1 eeCtrl;Symantec Eraser Control driver; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2008-03-18 385072]
    S2 npkcrypt;npkcrypt; C:\WINDOWS\system32\drivers\npkcrypt.sys []
    S2 SSPORT;SSPORT; C:\WINDOWS\system32\drivers\SSPORT.sys []
    S3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\drivers\AmdLLD.sys []
    S3 aqzdv3ec;aqzdv3ec; C:\WINDOWS\system32\drivers\aqzdv3ec.sys []
    S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
    S3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
    S3 MR97310_USB_DUAL_CAMERA;MR97310 CIF Dual Mode Camera; C:\WINDOWS\system32\drivers\MR97310_USB_DUAL_CAMERA.sys []
    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink -muunnin; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
    S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
    S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
    S3 nm;Verkonvalvonnan ohjain; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
    S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2007-02-22 137216]
    S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2007-02-22 8320]
    S3 nmwcdcj;Nokia USB Port; C:\WINDOWS\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
    S3 nmwcdcm;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
    S3 npkcusb;npkcusb; C:\WINDOWS\system32\drivers\npkcusb.sys []
    S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2007-12-22 47360]
    S3 Point32;Microsoft IntelliPoint Filter Driver; C:\WINDOWS\system32\DRIVERS\point32.sys [2005-06-10 21760]
    S3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
    S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
    S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
    S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2009-06-05 39424]
    S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
    S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
    S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
    S3 xnacc;Microsoft Common Controller For Windows Driver Service; C:\WINDOWS\system32\DRIVERS\xnacc.sys [2006-06-01 509440]
    S3 ZD1211U(ZyXEL);ZyAIR G-220 IEEE 802.11b+g Wireless LAN Driver (USB)(ZyXEL); C:\WINDOWS\system32\DRIVERS\zd1211u.sys [2004-08-19 237568]
    S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 6to4;IPv6 Helper -palvelu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
    R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
    R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-08-05 185089]
    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
    R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-12-05 495616]
    R2 Bonjour Service;Bonjour-palvelu; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
    R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2009-07-26 707152]
    R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-25 153376]
    R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
    R2 NwSapAgent;SAP-agentti; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
    R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
    R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
    R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2001-05-01 53248]
    R3 iPod Service;iPod-palvelu; C:\Program Files\iPod\bin\iPodService.exe [2009-06-05 541992]
    S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268288]
    S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
    S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
    S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
    S3 fsssvc;Windows Live -perheturva; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
    S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
    S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [2008-05-02 121360]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
    S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
    S3 WMPNetworkSvc;Windows Media Playerin verkkojakamispalvelu; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-15 913920]
    S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
    S4 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2007-12-05 593920]
    S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
    S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
    S4 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2007-10-22 66872]
    S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-06-15 300544]

    -----------------EOF-----------------
     
  7. kalminen

    kalminen Regular member

    Liittynyt:
    04.05.2007
    Viestejä:
    3,915
    Kiitokset:
    0
    Pisteet:
    46
    *************************************************************

    Käynnistä Malwarebytes => Karanteeni välileti ja tyhjennä roskat.

    **********************************************************

    ======Security center information======

    AV: COMODO Antivirus
    AV: AntiVir Desktop
    FW: COMODO Firewall

    Poista COMODO Antivirus realiaikasuoja käytöstä.
    Löytyy Comodon ohjauspaneelista.

    ===============================================================

    * Lataa OTM by OldTimer.
    * Tallenna se työpöydällesi.
    * Tuplaklikkaa OTM.exe käynnistääksesi sen.
    * Kopioi (CTRL+C) alla olevasta laatikosta kaikki teksti.
    Koodi:
    :files
    C:\WINDOWS\system32\vturq.dll
    C:\WINDOWS\system32\jefosodi.dll
    c:\windows\system32\yejimoya.dll
    C:\Documents and Settings\All Users\Application Data\ifklurir
    :commands 
    [emptytemp] 
    
    * Palaa takaisin OtmoveIt3, paina oikeanpuoleista hiiren nappia Paste Instructions for Items to be Move-ikkunassa (Keltaisen palkin alla) ja paina Liitä.
    * Paina punaista MoveIt! -nappia.
    * Kopioi (CTRL+C) ja liitä (CTRL+V) Results-ikkunaan (Vihreän palkin alla) tullut teksti seuraavaan viestiisi.
    * Sulje OTM.

    Jos jotain tiedostoa/kansiota ei voitu siirtää heti, ohjelma ehdottaa koneen uudelleenkäynnistystä. Vastaa ehdotukseen Yes, jolloin OtMoveIt käynnistää koneesi uudelleen.

    *********************************************************

    Lataa SystemLook by. jpshortstuff TÄÄLTÄ. ja tallenna se työpöydälle.

    Tupla-klikkaa SystemLook.exe ajaaksesi sen.

    Kopioi(CTRL+C) alla olevasta laatikosta kaikki teksti, tekstialueeseen.

    Koodi:
    :regfind
    VL2cXBnMK9
    ifklurir
    
    :file 
    C:\WINDOWS\system32\vturq.*
    C:\WINDOWS\system32\jefosodi.*
    c:\windows\system32\yejimoya.*
    
    :dir
    C:\WINDOWS\system32\drivers\etc /s
    
    Klikkaa nappulaa Look aloittaaksesi skannauksen.

    Kun skannaus on valmis avautuu muistio joka sisältää lokitiedot
    Klikkaa lokia hiiren oikealla painikkeella ja valitse "Valitse kaikki"
    Kopio ja liitä se seuraavaan viestiisi.
    (Loki löytyy myös työpöydältäsi nimellä SystemLook.txt)

    *******************************************************************************

    Sammuta selain ja muut ohjelmat Fixin ajaksi. (ei virustorjuntaa)
    Käynnistä HijackThis:ja Scan ja ruksaa seuraavat punaisella listatut tiedostot
    (HJT sammuttaa ohjelman ei poista)

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

    sekä sammuta ne.(fix Chekked) napista.

    Tyhjennä roskakori ja käynnistä koneesi uudelleen.

    Postita tänne seuraavat lokit:
    * Tuore HijackThis loki (Otetaan viimeisenä ennen postitusta)
    * SystemLook.txt raportti
    * OTMoveIt logi.
    * Auttoiko ???
    *
     
  8. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    OTM

    All processes killed
    ========== FILES ==========
    File/Folder C:\WINDOWS\system32\vturq.dll not found.
    File/Folder C:\WINDOWS\system32\jefosodi.dll not found.
    File/Folder c:\windows\system32\yejimoya.dll not found.
    File/Folder C:\Documents and Settings\All Users\Application Data\ifklurir not found.
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 32902 bytes

    User: LocalService
    ->Temp folder emptied: 66016 bytes
    File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
    ->Temporary Internet Files folder emptied: 692720 bytes

    User: Mikko Peltola
    ->Temp folder emptied: 22287404 bytes
    ->Temporary Internet Files folder emptied: 3536138 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 115653108 bytes
    ->Google Chrome cache emptied: 0 bytes
    ->Apple Safari cache emptied: 192778 bytes

    User: NetworkService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 103055612 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 19617 bytes
    %systemroot%\System32 .tmp files removed: 4659158 bytes
    Windows Temp folder emptied: 653355 bytes
    RecycleBin emptied: 0 bytes

    Total Files Cleaned = 239,23 mb


    OTM by OldTimer - Version 3.0.0.6 log created on 09222009_155657

    Files moved on Reboot...

    Registry entries deleted on Reboot...


    SYSTEMLOOK

    SystemLook v1.0 by jpshortstuff (29.08.09)
    Log created at 16:06 on 22/09/2009 by Mikko Peltola (Administrator - Elevation successful)

    ========== regfind ==========

    Searching for "VL2cXBnMK9"
    [HKEY_CURRENT_USER\Software\VL2cXBnMK9]
    [HKEY_USERS\S-1-5-21-1647120175-4058773308-1009806509-1006\Software\VL2cXBnMK9]

    Searching for "ifklurir"
    No data found.

    ========== file ==========

    C:\WINDOWS\system32\vturq.* - Unable to find/read file.

    C:\WINDOWS\system32\jefosodi.* - Unable to find/read file.

    c:\windows\system32\yejimoya.* - Unable to find/read file.

    ========== dir ==========

    C:\WINDOWS\system32\drivers\etc - Parameters: "/s"

    ---Files---
    hosts --a--- 232671 bytes [13:19 25/01/2006] [22:49 19/09/2009]
    hosts.20071223-141611.backup --a--- 665 bytes [12:16 23/12/2007] [12:00 15/09/2004]
    hosts.20071223-141721.backup -ra--- 65737 bytes [12:17 23/12/2007] [12:16 23/12/2007]
    hosts.20080111-230642.backup -ra--- 840 bytes [21:06 11/01/2008] [12:17 23/12/2007]
    hosts.ics --a--- 433 bytes [11:54 14/11/2007] [11:27 14/03/2009]
    hosts.msn -ra--- 224768 bytes [11:17 12/06/2008] [21:06 11/01/2008]
    lmhosts.sam --a--- 3705 bytes [13:19 25/01/2006] [12:00 15/09/2004]
    networks --a--- 416 bytes [13:19 25/01/2006] [12:00 15/09/2004]
    protocol --a--- 829 bytes [13:19 25/01/2006] [12:00 15/09/2004]
    services --a--- 7151 bytes [13:19 25/01/2006] [12:00 15/09/2004]

    No folders found.

    -=End Of File=-


    HIJACKTHIS

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 16:16:31, on 22.9.2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Avira\AntiVir Desktop\sched.exe
    C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\WINDOWS\system32\IoctlSvc.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\StickyPad\StickyPad.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Outlook Express\msimn.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
    O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Mikko Peltola\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Sticky Pad] C:\Program Files\StickyPad\StickyPad.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
    O8 - Extra context menu item: Vie Microsoft E&xceliin - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Lisää tämä blogiin - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Lisää tämä blogiin tuotteessa Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Oheistiedot - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{D3DAB144-B7DA-4BD7-AF7A-246BE40729EA}: NameServer = 193.229.0.40,193.229.0.39
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bonjour-palvelu (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod-palvelu (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe

    --
    End of file - 7619 bytes


    Aina vain paremmalta tuntuu, eikä enää ole havaittavissa mitään ongelmia käytössä :)
     
    Viimeksi muokattu: 22.09.2009
  9. kalminen

    kalminen Regular member

    Liittynyt:
    04.05.2007
    Viestejä:
    3,915
    Kiitokset:
    0
    Pisteet:
    46
    Kyllä tämä oikein hyvältä näyttää !!!

    Vundoja sieltä en löytänyt !!!

    --------------------------------------------------------------------------------

    * Tuplaklikkaa OTM.exe käynnistääksesi sen.
    * Kopioi (CTRL+C) alla olevasta laatikosta kaikki teksti.
    Koodi:
    :reg
    [-HKEY_CURRENT_USER\Software\VL2cXBnMK9] 
    [-HKEY_USERS\S-1-5-21-1647120175-4058773308-1009806509-1006\Software\VL2cXBnMK9] 
    
    * Palaa takaisin OtmoveIt3, paina oikeanpuoleista hiiren nappia Paste Instructions for Items to be Move-ikkunassa (Keltaisen palkin alla) ja paina Liitä.
    * Paina punaista MoveIt! -nappia.
    * Kopioi (CTRL+C) ja liitä (CTRL+V) Results-ikkunaan (Vihreän palkin alla) tullut teksti seuraavaan viestiisi.
    * Sulje OTM.

    ------------------------------------------------------------------------------

    Seuraavaksi poistamme kaikki käytetyt työkalut roskineen.

    * TuplaklikkaaOTM.exe.
    * Klikkaa CleanUp!.
    * Valitse Yes kun kysytään "Begin cleanup Process?".
    * Jos pyydetään, että saako koneen käynnistää uudeelleen, valitse Yes.

    :D
    .
     
  10. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    ========== REGISTRY ==========
    Registry key HKEY_CURRENT_USER\Software\VL2cXBnMK9\ deleted successfully.
    Registry key HKEY_USERS\S-1-5-21-1647120175-4058773308-1009806509-1006\Software\VL2cXBnMK9\ not found.

    OTM by OldTimer - Version 3.0.0.6 log created on 09232009_151041
     
  11. kalminen

    kalminen Regular member

    Liittynyt:
    04.05.2007
    Viestejä:
    3,915
    Kiitokset:
    0
    Pisteet:
    46
    Oikein hyvä !!!
    Kone OK
    :D
    .
     
  12. user83

    user83 Regular member

    Liittynyt:
    08.12.2006
    Viestejä:
    105
    Kiitokset:
    0
    Pisteet:
    26
    Hienoa!

    Kiitokset kaikille vaivaa nähneille! :)
     

Jaa tämä sivu