Ekaa kertaa katon lokiani... Löytyykö mitään turhuutta?? Tarkistakaas tää: F-Secure Anti-Spyware Build 1.05 Logfile Created on:8. lokakuuta 2005 12:53:52 Using definitions file:SE1R69 05.10.2005 »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» References detected during the scan: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» MRU List(TAC index:0):12 total references. »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» F-Secure Anti-Spyware Settings =========================== Set : Search for negligible risk entries Set : Safe mode (always request confirmation) Set : Scan active processes Set : Scan registry Set : Deep-scan registry Set : Scan my IE Favorites for banned URLs Set : Scan my Hosts file Extended F-Secure Anti-Spyware Settings =========================== Set : Unload recognized processes & modules during scan Set : Ignore spanned files when scanning cab archives Set : Scan registry for all users instead of current user only Set : Always try to unload modules before deletion Set : Prior to deletion, allow unloading Explorer and IE if necessary Set : Let Windows remove files in use at next reboot Set : Delete quarantined objects after restoring Set : Block Pop-ups aggresively Set : Automatically select problematic objects in result lists Set : Include basic settings in log file Set : Include additional settings in log file Set : Include reference summary in log file Set : Include Alternate Datastream details in log file Set : Show splash screen Set : Backup current definition file before updating Set : Play sound at scan completion if scan locates critical objects 8.10.2005 12:53:52 - Scan started. (Full System Scan) MRU List Object Recognized! Location: : C:\Documents and Settings\Jani\recent Description : list of recently opened documents MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct3d MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct X MRU List Object Recognized! Location: : software\microsoft\directdraw\mostrecentapplication Description : most recent application to use microsoft directdraw MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\mediaplayer\player\recentfilelist Description : list of recently used files in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\mediaplayer\preferences Description : last playlist index loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\mediaplayer\preferences Description : last playlist loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\search assistant\acmru Description : list of recent search terms used with the search assistant MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru Description : list of recent programs opened MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru Description : list of recently saved files, stored according to file extension MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\windows\currentversion\explorer\recentdocs Description : list of recent documents opened MRU List Object Recognized! Location: : S-1-5-21-515967899-839522115-854245398-1007\software\microsoft\windows media\wmsdk\general Description : windows media sdk Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] FilePath : \SystemRoot\System32\ ProcessID : 460 ThreadCreationTime : 8.10.2005 9:28:40 BasePriority : Normal #:2 [csrss.exe] FilePath : \??\C:\WINDOWS.0\system32\ ProcessID : 508 ThreadCreationTime : 8.10.2005 9:28:41 BasePriority : Normal #:3 [winlogon.exe] FilePath : \??\C:\WINDOWS.0\system32\ ProcessID : 532 ThreadCreationTime : 8.10.2005 9:28:42 BasePriority : High #:4 [services.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 576 ThreadCreationTime : 8.10.2005 9:28:42 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® -käyttöjärjestelmä CompanyName : Microsoft Corporation FileDescription : Palvelu- ja ohjainohjelma InternalName : services.exe LegalCopyright : © Microsoft Corporation. Kaikki oikeudet pidätetään. OriginalFilename : services.exe #:5 [lsass.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 588 ThreadCreationTime : 8.10.2005 9:28:42 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : LSA Shell (Export Version) InternalName : lsass.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : lsass.exe #:6 [svchost.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 740 ThreadCreationTime : 8.10.2005 9:28:43 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:7 [svchost.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 788 ThreadCreationTime : 8.10.2005 9:28:43 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:8 [svchost.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 832 ThreadCreationTime : 8.10.2005 9:28:43 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:9 [svchost.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 892 ThreadCreationTime : 8.10.2005 9:28:43 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:10 [svchost.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 960 ThreadCreationTime : 8.10.2005 9:28:43 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:11 [spoolsv.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 1084 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519) ProductVersion : 5.1.2600.2696 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Spooler SubSystem App InternalName : spoolsv.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : spoolsv.exe #:12 [servic~1.exe] FilePath : C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\ ProcessID : 1188 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal #:13 [fsgk32st.exe] FilePath : C:\Program Files\F-Secure Internet Security\Anti-Virus\ ProcessID : 1220 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 1, 0, 7360, 0 ProductVersion : 1, 0, 7360, 56 ProductName : F-Secure Corp. Startup service CompanyName : F-Secure Corp. FileDescription : fsgk32st InternalName : fsgk32 LegalCopyright : Copyright © 2001 OriginalFilename : fsgk32st.exe Comments : Startup service for Gatekeeper Handler #:14 [fsbwsys.exe] FilePath : C:\Program Files\F-Secure Internet Security\backweb\4476822\program\ ProcessID : 1236 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 6.70.742 ProductVersion : 6.70 ProductName : F-Secure BackWeb CompanyName : F-Secure Corp. FileDescription : fsbwsys InternalName : fsbwsys LegalCopyright : Copyright © 2005 F-Secure Corporation OriginalFilename : fsbwsys.exe #:15 [fsgk32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Anti-Virus\ ProcessID : 1248 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 5.54.10350 ProductVersion : 5.54.10350 ProductName : F-Secure Corp. fsgk32 CompanyName : F-Secure Corp. FileDescription : Gatekeeper Handler II InternalName : fsgk32 LegalCopyright : Copyright © 2004 OriginalFilename : fsgk32.exe Comments : release #:16 [fsma32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Common\ ProcessID : 1272 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 5.61.7670 ProductVersion : 5.61 Build 7670 ProductName : F-Secure Management Agent CompanyName : F-Secure Corporation FileDescription : F-Secure Management Agent InternalName : VCH LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FSMA32.EXE #:17 [fssm32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Anti-Virus\ ProcessID : 1308 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 5.53.10210 ProductVersion : 5.53.10210 ProductName : F-Secure Corp. fssm32 CompanyName : F-Secure Corp. FileDescription : fssm32 InternalName : fssm32 LegalCopyright : Copyright © 2003 OriginalFilename : fssm32.exe Comments : release #:18 [fsmb32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Common\ ProcessID : 1356 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 5.61.7670 ProductVersion : 5.61 Build 7670 ProductName : F-Secure Management Agent CompanyName : F-Secure Corporation FileDescription : F-Secure Message Broker InternalName : FSMB LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FSMB32.EXE #:19 [nvsvc32.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 1364 ThreadCreationTime : 8.10.2005 9:28:45 BasePriority : Normal FileVersion : 6.13.10.2832 ProductVersion : 6.13.10.2832 ProductName : NVIDIA Driver Helper Service, Version 28.32 CompanyName : NVIDIA Corporation FileDescription : NVIDIA Driver Helper Service, Version 28.32 InternalName : NVSVC LegalCopyright : (c) NVIDIA Corporation. All rights reserved. OriginalFilename : nvsvc32.exe #:20 [svchost.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 1552 ThreadCreationTime : 8.10.2005 9:28:46 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:21 [fch32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Common\ ProcessID : 1608 ThreadCreationTime : 8.10.2005 9:28:47 BasePriority : Normal FileVersion : 5.61.7670 ProductVersion : 5.61 Build 7670 ProductName : F-Secure Management Agent CompanyName : F-Secure Corporation FileDescription : F-Secure Configuration Handler InternalName : FCH LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FCH32.EXE #:22 [fameh32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Common\ ProcessID : 1740 ThreadCreationTime : 8.10.2005 9:28:48 BasePriority : Normal FileVersion : 5.61.7670 ProductVersion : 5.61 Build 7670 ProductName : F-Secure Management Agent CompanyName : F-Secure Corporation FileDescription : F-Secure Alert and Management Extension Handler InternalName : FAMEH LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FAMEH32.EXE #:23 [fspc.exe] FilePath : C:\Program Files\F-Secure Internet Security\FSPC\ ProcessID : 1780 ThreadCreationTime : 8.10.2005 9:28:49 BasePriority : Normal FileVersion : 3.01.1110 ProductVersion : 3.01 Build 1110 ProductName : F-Secure Parental Control CompanyName : F-Secure Corporation FileDescription : F-Secure Parental Control InternalName : FSPC LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FSPC.EXE #:24 [explorer.exe] FilePath : C:\WINDOWS.0\ ProcessID : 328 ThreadCreationTime : 8.10.2005 9:28:52 BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® -käyttöjärjestelmä CompanyName : Microsoft Corporation FileDescription : Resurssienhallinta InternalName : explorer LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : EXPLORER.EXE #:25 [fsm32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Common\ ProcessID : 724 ThreadCreationTime : 8.10.2005 9:28:54 BasePriority : Normal FileVersion : 5.61.7670 ProductVersion : 5.61 Build 7670 ProductName : F-Secure Management Agent CompanyName : F-Secure Corporation FileDescription : F-Secure Settings and Statistics InternalName : FSM LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FSM32.EXE #:26 [fshttps.exe] FilePath : C:\Program Files\F-Secure Internet Security\FSPC\fshttps\ ProcessID : 920 ThreadCreationTime : 8.10.2005 9:28:55 BasePriority : Normal FileVersion : 3.01.1110 ProductVersion : 3.01 Build 1110 ProductName : F-Secure Parental Control CompanyName : F-Secure Corporation FileDescription : F-Secure Http Server InternalName : FSHTTPS LegalCopyright : Copyright © 1998-2004 F-Secure Corporation. All rights reserved. LegalTrademarks : Windows (TM) is a trademark of Microsoft Corporation OriginalFilename : FSHTTPS.EXE #:27 [fsdfwd.exe] FilePath : C:\Program Files\F-Secure Internet Security\FWES\Program\ ProcessID : 956 ThreadCreationTime : 8.10.2005 9:28:56 BasePriority : Normal FileVersion : 5.80.400 ProductVersion : 5.80 Build 400 ProductName : F-Secure Anti-Virus Internet Shield CompanyName : F-Secure Corporation FileDescription : F-Secure Anti-Virus Internet Shield daemon InternalName : fsdfwd LegalCopyright : Copyright (c) F-Secure Corporation 1997-2004 OriginalFilename : fsdfwd.exe #:28 [fsav32.exe] FilePath : C:\Program Files\F-Secure Internet Security\Anti-Virus\ ProcessID : 1572 ThreadCreationTime : 8.10.2005 9:28:56 BasePriority : Normal FileVersion : 5.53.10480 ProductVersion : 5.53.10480 ProductName : F-Secure Anti-Virus CompanyName : F-Secure Corporation FileDescription : FSAV Handler InternalName : FSAV32 LegalCopyright : Copyright © 1998-2004, F-Secure Corporation OriginalFilename : FSAV32.exe #:29 [ctfmon.exe] FilePath : C:\WINDOWS.0\system32\ ProcessID : 1324 ThreadCreationTime : 8.10.2005 9:28:56 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : CTF Loader InternalName : CTFMON LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : CTFMON.EXE #:30 [msmsgs.exe] FilePath : C:\Program Files\Messenger\ ProcessID : 1000 ThreadCreationTime : 8.10.2005 9:28:57 BasePriority : Normal FileVersion : 4.7.3001 ProductVersion : Version 4.7.3001 ProductName : Messenger CompanyName : Microsoft Corporation FileDescription : Windows Messenger InternalName : msmsgs LegalCopyright : Copyright (c) Microsoft Corporation 2004 LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries. OriginalFilename : msmsgs.exe #:31 [alg.exe] FilePath : C:\WINDOWS.0\System32\ ProcessID : 1868 ThreadCreationTime : 8.10.2005 9:28:57 BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Application Layer Gateway Service InternalName : ALG.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : ALG.exe #:32 [fsguiexe.exe] FilePath : C:\Program Files\F-Secure Internet Security\FSGUI\ ProcessID : 2692 ThreadCreationTime : 8.10.2005 9:29:05 BasePriority : Normal FileVersion : 5, 81, 2160, 0 ProductVersion : 5, 1, 0, 0 ProductName : ISP 2005 FileDescription : F-Secure User Interface InternalName : fsguiexe LegalCopyright : Copyright (C) 2004-2005 OriginalFilename : fsguiexe.exe #:33 [fspex.exe] FilePath : C:\Program Files\F-Secure Internet Security\backweb\4476822\Program\ ProcessID : 2876 ThreadCreationTime : 8.10.2005 9:29:17 BasePriority : Normal #:34 [iexplore.exe] FilePath : C:\Program Files\Internet Explorer\ ProcessID : 1132 ThreadCreationTime : 8.10.2005 9:35:29 BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® -käyttöjärjestelmä CompanyName : Microsoft Corporation FileDescription : Internet Explorer InternalName : iexplore LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : IEXPLORE.EXE #:35 [msnmsgr.exe] FilePath : C:\Program Files\MSN Messenger\ ProcessID : 2240 ThreadCreationTime : 8.10.2005 9:37:18 BasePriority : Normal FileVersion : 7.5.0299 ProductVersion : 7.5.0299 ProductName : MSN Messenger CompanyName : Microsoft Corporation FileDescription : MSN Messenger InternalName : msnmsgr LegalCopyright : Copyright (c) Microsoft Corporation 1997-2004 LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries. OriginalFilename : msnmsgr.exe #:36 [anti-spyware.exe] FilePath : C:\Program Files\F-Secure Internet Security\Anti-Spyware\ ProcessID : 2728 ThreadCreationTime : 8.10.2005 9:52:24 BasePriority : Normal FileVersion : 6.2.0.182 ProductVersion : VI.Second Edition ProductName : F-Secure Anti-Spyware CompanyName : Lavasoft Sweden FileDescription : F-Secure Anti-Spyware Core application InternalName : Anti-Spyware.exe LegalCopyright : Copyright © F-Secure OriginalFilename : Ad-Aware.exe Comments : Licensed from Lavasoft Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 Started deep registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Deep registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 Started tracking cookie scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Tracking cookie scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 Deep scanning and examining files (C »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk scan result for C:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 Scanning Hosts file... Hosts file location:"C:\WINDOWS.0\system32\drivers\etc\hosts". »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Hosts file scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» 1 entries scanned. New Critical Objects:0 Objects found so far: 12 Performing conditional scans.. »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Conditional scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New Critical Objects: 0 Objects found so far: 12 13:20:29 Scan Complete Summary of this scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Total scanning time:00:26:36.436 Objects scanned:175841 Objects identified:0 Objects ignored:0 New Critical Objects:0
En huomannu mitään tossa. Voit pistää myös Hijack login jos kiinnostaa. http://koti.mbnet.fi/pattaya1/HijackThis.exe
Ok, kiitti...Tässä on sitten tää toinen logi.Viittitkö viel kattoo tän? Logfile of HijackThis v1.99.1 Scan saved at 13:38:58, on 8.10.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS.0\System32\smss.exe C:\WINDOWS.0\system32\winlogon.exe C:\WINDOWS.0\system32\services.exe C:\WINDOWS.0\system32\lsass.exe C:\WINDOWS.0\system32\svchost.exe C:\WINDOWS.0\System32\svchost.exe C:\WINDOWS.0\system32\spoolsv.exe C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe C:\Program Files\F-Secure Internet Security\Anti-Virus\FSGK32.EXE C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE C:\Program Files\F-Secure Internet Security\Anti-Virus\fssm32.exe C:\Program Files\F-Secure Internet Security\Common\FSMB32.EXE C:\WINDOWS.0\System32\nvsvc32.exe C:\WINDOWS.0\System32\svchost.exe C:\Program Files\F-Secure Internet Security\Common\FCH32.EXE C:\Program Files\F-Secure Internet Security\Common\FAMEH32.EXE C:\Program Files\F-Secure Internet Security\FSPC\fspc.exe C:\WINDOWS.0\Explorer.EXE C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe C:\Program Files\F-Secure Internet Security\Anti-Virus\fsav32.exe C:\WINDOWS.0\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\F-Secure Internet Security\FSGUI\fsguiexe.exe C:\Program Files\F-Secure Internet Security\backweb\4476822\Program\fspex.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Documents and Settings\Jani\Työpöytä\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.motot.net/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O3 - Toolbar: MSN-työkalurivi - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fi\msntb.dll O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\F-Secure Internet Security\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O9 - Extra button: Web-suodatin - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: Näytä &Web-sivuluettelo... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F02} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Keskeytä Web-sivujen suodatus - {200DB664-75B5-47c0-8B45-A44ACCF73F02} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F03} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Kiellä tämä Web-sivusto - {200DB664-75B5-47c0-8B45-A44ACCF73F03} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F04} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Salli tämä Web-sivusto - {200DB664-75B5-47c0-8B45-A44ACCF73F04} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Broken Internet access because of LSP provider 'winsflt.dll' missing O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll O17 - HKLM\System\CCS\Services\Tcpip\..\{E7A30415-0F76-4CA4-892E-07F4E8701C8B}: NameServer = 192.168.252.17 192.168.252.16 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: F-Secure product (BackWeb Plug-in - 4476822) - Unknown owner - C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe O23 - Service: F-Secure HTTP Server (fshttps) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FSPC\fshttps\fshttps.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\System32\nvsvc32.exe
uus logi... Ja onko mulla mitään palomuurii ? muutakun se windows ?`F-secure internet secure 2005 viirusohjelma , onko siinä mukana palomuuri ? Logfile of HijackThis v1.99.1 Scan saved at 13:34:04, on 14.10.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS.0\System32\smss.exe C:\WINDOWS.0\system32\winlogon.exe C:\WINDOWS.0\system32\services.exe C:\WINDOWS.0\system32\lsass.exe C:\WINDOWS.0\system32\svchost.exe C:\WINDOWS.0\System32\svchost.exe C:\WINDOWS.0\system32\spoolsv.exe C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe C:\Program Files\F-Secure Internet Security\Anti-Virus\FSGK32.EXE C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE C:\Program Files\F-Secure Internet Security\Anti-Virus\fssm32.exe C:\Program Files\F-Secure Internet Security\Common\FSMB32.EXE C:\WINDOWS.0\System32\nvsvc32.exe C:\WINDOWS.0\System32\svchost.exe C:\Program Files\F-Secure Internet Security\Common\FCH32.EXE C:\Program Files\F-Secure Internet Security\Common\FAMEH32.EXE C:\Program Files\F-Secure Internet Security\FSPC\fspc.exe C:\WINDOWS.0\Explorer.EXE C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe C:\Program Files\F-Secure Internet Security\Anti-Virus\fsav32.exe C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE C:\WINDOWS.0\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\F-Secure Internet Security\FSGUI\fsguiexe.exe C:\Program Files\F-Secure Internet Security\backweb\4476822\Program\fspex.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Jani\Työpöytä\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.motot.net/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O3 - Toolbar: MSN-työkalurivi - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fi\msntb.dll O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\F-Secure Internet Security\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O9 - Extra button: Web-suodatin - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: Näytä &Web-sivuluettelo... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F02} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Keskeytä Web-sivujen suodatus - {200DB664-75B5-47c0-8B45-A44ACCF73F02} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F03} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Kiellä tämä Web-sivusto - {200DB664-75B5-47c0-8B45-A44ACCF73F03} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F04} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra 'Tools' menuitem: &Salli tämä Web-sivusto - {200DB664-75B5-47c0-8B45-A44ACCF73F04} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Broken Internet access because of LSP provider 'winsflt.dll' missing O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll O17 - HKLM\System\CCS\Services\Tcpip\..\{E7A30415-0F76-4CA4-892E-07F4E8701C8B}: NameServer = 192.168.252.17 192.168.252.16 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: F-Secure product (BackWeb Plug-in - 4476822) - Unknown owner - C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe O23 - Service: F-Secure HTTP Server (fshttps) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FSPC\fshttps\fshttps.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\System32\nvsvc32.exe
Loki on ok. On siinä F-Securen Internet Securityssä mukana palomuuri. Ja siksi Windowsin oman palomuurin ei tartte olla päällä.
Tässä on tiedostoja joita ei voi tarkistaa. Onko näissä mitään viirusta yms. ?? Eihän niitä pitäis olla noin paljoo ?? Tiedoston C:\pagefile.sys avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\system32\config\default avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\system32\config\SAM avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\system32\config\SECURITY avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\system32\config\system avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\SoftwareDistribution\EventCache\{058F56C0-307B-4FA3-B211-E25709B903F1}.bin avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\$NtUninstallKB835732$\browser.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\$NtUninstallKB835732$\rtcdll.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS.0\$NtUninstallKB828741$\catsrv.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\keystone.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\nvappbar.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\nview.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\nvshell.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\nvtuicpl.cpl avaaminen ei onnistu. Tiedoston C:\WINDOWS\system32\nwiz.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\nview\generic.tvp avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ323172$\reg00003 avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ315000$\netsetup.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ315000$\spuninst\spuninst.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ314862$\qmgr.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ314862$\spuninst\spuninst.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ309521$\dxmasf.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallQ309521$\spuninst\spuninst.exe avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallKB835732$\browser.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallKB835732$\rtcdll.dll avaaminen ei onnistu. Tiedoston C:\WINDOWS\$NtUninstallKB828741$\catsrv.dll avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP9\A0005611.exe avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP8\A0005573.dll avaaminen ei onnistu. Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001590.msi\stream 19\msnmsgrexe.ADEB440D_7847_4F65_80BD_899870ED2EC9 tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001591.msi\stream 19\msnmsgrexe.ADEB440D_7847_4F65_80BD_899870ED2EC9 tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001593.msi\stream 19\msnmsgrexe.ADEB440D_7847_4F65_80BD_899870ED2EC9 tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001595.exe\AmericasArmy.msi\stream 114 tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001595.exe\AmericasArmy.msi\stream 157\_ACC4E87A6B19EC65CFD747B3B020F5BB tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001595.exe\CLEANE~1.cab\Cleaner.exe tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001595.exe\ENGINE~1.cab\Engine.dll tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001596.exe tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP4\A0001597.exe tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP27\A0015429.Msi\stream 19\msnmsgrexe.ADEB440D_7847_4F65_80BD_899870ED2EC9 tarkistus on keskeytetty. [F-Secure AVP] Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP15\A0005867.exe avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP14\A0005771.exe avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP13\A0005723.ver avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP12\A0005693.sys avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP11\A0005666.exe avaaminen ei onnistu. Tiedoston C:\System Volume Information\_restore{985E35A5-B524-4590-B0E2-D08256C69114}\RP10\A0005639.exe avaaminen ei onnistu. Kohteen C:\Program Files\Microsoft Games\Halo\msxmlenu.msi\stream 2\xmlsdk4.chm.4576A2F1_959E_4BCA_94A9_596523761901 tarkistus on keskeytetty. [F-Secure AVP] Tiedosto C:\Program Files\Lavasoft\Ad-Aware SE Personal\Skins\Ad-Aware SE default.ask\arrow1.bmp on salattu. Tiedoston C:\Program Files\F-Secure Internet Security\Common\admin.pub avaaminen ei onnistu. Tiedoston C:\Program Files\F-Secure Internet Security\Common\policy.ipf avaaminen ei onnistu. Tiedoston C:\Program Files\F-Secure Internet Security\backweb\4476822\Users\Default\Data\chandir.dat avaaminen ei onnistu. Tiedoston C:\Program Files\F-Secure Internet Security\backweb\4476822\Users\Default\Data\L0000033.FCS avaaminen ei onnistu. Tiedoston C:\Program Files\F-Secure Internet Security\backweb\4476822\Users\Default\Data\prs.dat avaaminen ei onnistu. Tiedoston C:\Program Files\F-Secure Internet Security\backweb\4476822\Users\Default\Data\storydb.dat avaaminen ei onnistu. Kohteen C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\SUO\Data1.cab\AcroForm.api__NON_OPT tarkistus on keskeytetty. [F-Secure AVP] Kohteen C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\SUO\Data1.cab\SVGCore.DLL tarkistus on keskeytetty. [F-Secure AVP] Tiedoston C:\Documents and Settings\NetworkService.NT-HALLINTA\NTUSER.DAT avaaminen ei onnistu. Tiedoston C:\Documents and Settings\NetworkService.NT-HALLINTA\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat avaaminen ei onnistu. Tiedoston C:\Documents and Settings\LocalService.NT-HALLINTA\NTUSER.DAT avaaminen ei onnistu. Tiedoston C:\Documents and Settings\LocalService.NT-HALLINTA\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat avaaminen ei onnistu. Tiedoston C:\Documents and Settings\Jani\NTUSER.DAT avaaminen ei onnistu. Tiedoston C:\Documents and Settings\Jani\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat avaaminen ei onnistu. Tiedoston C:\Documents and Settings\All Users.WINDOWS.0\Application Data\Microsoft\Dr Watson\user.dmp avaaminen ei onnistu.