Jump to content

Препоръчан пост

Направих log от HijackThis като гледах инструкциите по-горе:

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 09:11:09, on 31.1.2009 г.

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16762)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\Program Files\Analog Devices\SoundMAX\Smax4.exe

C:\Program Files\Eset\nod32kui.exe

C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe

C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\FlashGet\FlashGet.exe

C:\Program Files\Analog Devices\Core\smax4pnp.exe

C:\Program Files\Winamp\winampa.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Documents and Settings\Georgi\Desktop\DAEMON Tools\daemon.exe

C:\Program Files\Winamp Remote\bin\OrbTray.exe

C:\Documents and Settings\Georgi\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

C:\Program Files\Winamp Remote\bin\Orb.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\explorer.exe

C:\Program Files\Opera\Opera.exe

C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abv.bg/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\twex.exe,

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll

O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll

O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll

O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll

O3 - Toolbar: &Save Flash - {4064EA35-578D-4073-A834-C96D82CBCF40} - C:\Program Files\Save Flash\SaveFlash.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll

O4 - HKLM\..\Run: [soundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [D_V_T] C:\\dvt.exe /S \C:\\d_v_t.reg\

O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKLM\..\Run: [Flashget] "C:\Program Files\FlashGet\FlashGet.exe" /min

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [AdVantage] "C:\Program Files\AdVantage\AdVantage.exe"

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Documents and Settings\Georgi\Desktop\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKCU\..\Run: [Orb] "C:\Program Files\Winamp Remote\bin\OrbTray.exe" /background

O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Georgi\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

O4 - HKCU\..\Run: [Windows Service help] C:\RECYCLER\S-1-5-21-7355790199-2169356922-384124202-5985\winservices.exe

O4 - HKLM\..\Policies\Explorer\Run: [Policies Options] mshtm

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm

O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm

O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html

O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Е&кспортирай в Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe

O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/Facebo...Uploader4_5.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - AppInit_DLLs: C:\WINDOWS\system32\mmmsfnfch.dll

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

--

End of file - 9605 bytes

Link to comment
Сподели другаде

  • Отговори 112
  • Създадена
  • Последен отговор

ТОП потребители в тази тема

ТОП потребители в тази тема

Публикувани изображения

Logfile of HijackThis v1.99.1

Scan saved at 09:54:41, on 31.1.2009 г.

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16762)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Analog Devices\SoundMAX\Smax4.exe

C:\WINDOWS\system32\RunDLL32.exe

C:\Program Files\Eset\nod32kui.exe

C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe

C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe

C:\Program Files\FlashGet\FlashGet.exe

C:\Program Files\Analog Devices\Core\smax4pnp.exe

C:\Program Files\Winamp\winampa.exe

C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Documents and Settings\Georgi\Desktop\DAEMON Tools\daemon.exe

C:\Program Files\Winamp Remote\bin\OrbTray.exe

C:\Documents and Settings\Georgi\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

C:\Program Files\Winamp Remote\bin\Orb.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Documents and Settings\Georgi\Desktop\Skype.exe

C:\Program Files\Opera\Opera.exe

C:\Documents and Settings\Georgi\Desktop\alabala.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abv.bg/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll

O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll

O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll

O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll

O3 - Toolbar: &Save Flash - {4064EA35-578D-4073-A834-C96D82CBCF40} - C:\Program Files\Save Flash\SaveFlash.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll

O4 - HKLM\..\Run: [soundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [D_V_T] C:\\dvt.exe /S \C:\\d_v_t.reg\

O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKLM\..\Run: [Flashget] "C:\Program Files\FlashGet\FlashGet.exe" /min

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Documents and Settings\Georgi\Desktop\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKCU\..\Run: [Orb] "C:\Program Files\Winamp Remote\bin\OrbTray.exe" /background

O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Georgi\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm

O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm

O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html

O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Е&кспортирай в Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe

O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/Facebo...Uploader4_5.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - AppInit_DLLs: C:\WINDOWS\system32\mmmsfnfch.dll

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

Аз свалих и тези програми, които сте посочили по-горе. И изчистиха вируса (поне така мисля). Сега си работя спокойно, и NOD32 не е реагирало - мисля че всичко е наред.

 

И благодаря много. ;)

Link to comment
Сподели другаде

Изтегли GMER. Разархивирай и стартирай програмата. Тя ще направи начално сканиране за секунди. След като то приключи НЕ кликай бутон Scan, а кликни бутон Copy и после пейстни съдържанието тук (Ctrl+V).

 

В HijackThis постави отметка на следния обект и кликни Fix checked, като потвърди с Yes на всички съобщения:

O20 - AppInit_DLLs: C:\WINDOWS\system32\mmmsfnfch.dll

Чакам още лога от ESET SysInspector.

Link to comment
Сподели другаде

Много благодаря за съдействието, но вече всичко е наред. Изтеглих програмите, които посочихте по-горе на подобния на моя проблем ... и сега всичко е както трябва. Ако имам нужда ще се включа отново.
Link to comment
Сподели другаде

  • 2 weeks later...

И аз имам същия проблем със Svchost.exe:

 

Logfile of HijackThis v1.99.1

Scan saved at 13:05:44, on 15.2.2009 г.

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0011)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Java\jre6\bin\jusched.exe

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\PnkBstrA.exe

C:\WINDOWS\system32\PSIService.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Skype\Plugin Manager\skypePM.exe

D:\Programs\Mozilla Firefox\firefox.exe

D:\alabala.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll

O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll

O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Skype Control Class - {9018F6A8-2495-45DF-9F16-C738F8F3C8FF} - (no file)

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Programs\ICQ6\ICQ.exe

O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Programs\ICQ6\ICQ.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{0A21ECAF-3D82-4B8C-89C2-A371BEFA2158}: NameServer = 87.120.162.1

O17 - HKLM\System\CS1\Services\Tcpip\..\{0A21ECAF-3D82-4B8C-89C2-A371BEFA2158}: NameServer = 87.120.162.1

O17 - HKLM\System\CS2\Services\Tcpip\..\{0A21ECAF-3D82-4B8C-89C2-A371BEFA2158}: NameServer = 87.120.162.1

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe

O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe

 

 

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

+ Adobe Reader Speed Launcher Adobe Acrobat SpeedLauncher Adobe Systems Incorporated c:\program files\adobe\reader 8.0\reader\reader_sl.exe

+ Alcmtr Realtek Azalia Audio - Event Monitor Realtek Semiconductor Corp. c:\windows\alcmtr.exe

+ egui Eset GUI ESET c:\program files\eset\eset nod32 antivirus\egui.exe

+ NvCplDaemon NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll

+ RTHDCPL Realtek HD Audio Control Panel Realtek Semiconductor Corp. c:\windows\rthdcpl.exe

+ SunJavaUpdateSched Java Platform SE binary Sun Microsystems, Inc. c:\program files\java\jre6\bin\jusched.exe

HKCU\Software\Microsoft\Windows\CurrentVersion\Run

+ Skype Skype. Take a deep breath Skype Technologies S.A. c:\program files\skype\phone\skype.exe

HKLM\SOFTWARE\Classes\Protocols\Handler

+ skype4com Skype for COM API Skype Technologies c:\program files\common files\skype\skype4com.dll

HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components

+ 0 File not found: About:Home

HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers

+ Eset Smart Security - Context Menu Shell Extension Shell Extension ESET c:\program files\eset\eset nod32 antivirus\shellext.dll

+ WinRAR c:\program files\winrar\rarext.dll

HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers

+ WinRAR c:\program files\winrar\rarext.dll

HKLM\Software\Classes\Directory\Shellex\DragDropHandlers

+ WinRAR c:\program files\winrar\rarext.dll

HKLM\Software\Classes\Folder\Shellex\ColumnHandlers

+ PDF Shell Extension PDF Shell Extension Adobe Systems, Inc. c:\program files\common files\adobe\acrobat\activex\pdfshell.dll

HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers

+ Eset Smart Security - Context Menu Shell Extension Shell Extension ESET c:\program files\eset\eset nod32 antivirus\shellext.dll

+ WinRAR c:\program files\winrar\rarext.dll

HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers

+ NvCplDesktopContext NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved

+ Display Panning CPL Extension File not found: deskpan.dll

+ Eset Smart Security - Context Menu Shell Extension Shell Extension ESET c:\program files\eset\eset nod32 antivirus\shellext.dll

+ HyperTerminal Icon Ext HyperTerminal Applet Library Hilgraeve, Inc. c:\windows\system32\hticons.dll

+ NvCpl DesktopContext Class NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll

+ Play on my TV helper NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll

+ WinRAR shell extension c:\program files\winrar\rarext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects

+ HP Print Clips Leo (Framework) - add-on for Internet Explorer Hewlett-Packard Co. c:\program files\hp\smart web printing\hpswp_framework.dll

+ HP Print Enhancer hpswp_printenhancer dll Hewlett-Packard Co. c:\program files\hp\smart web printing\hpswp_printenhancer.dll

+ Java Plug-In 2 SSV Helper Java Platform SE binary Sun Microsystems, Inc. c:\program files\java\jre6\bin\jp2ssv.dll

+ Java Plug-In SSV Helper Java Platform SE binary Sun Microsystems, Inc. c:\program files\java\jre6\bin\ssv.dll

+ JQSIEStartDetectorImpl Class Java Quick Starter binary Sun Microsystems, Inc. c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

+ Skype add-on (mastermind) Skype add-on for IE Skype Technologies S.A. c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions

+ ICQ6 ICQ Library ICQ, Inc. d:\programs\icq6\icq.exe

HKLM\System\CurrentControlSet\Services

+ Bonjour Service ##Id_String2.6844F930_1628_4223_B5CC_5BB94B879762## Apple Computer, Inc. c:\program files\bonjour\mdnsresponder.exe

+ ekrn Eset Service ESET c:\program files\eset\eset nod32 antivirus\ekrn.exe

+ hpqddsvc This service detects and monitors CUE devices on the system. Hewlett-Packard Co. c:\program files\hp\digital imaging\bin\hpqddsvc.dll

+ JavaQuickStarterService Prefetches JRE files for faster startup of Java applets and applications Sun Microsystems, Inc. c:\program files\java\jre6\bin\jqs.exe

+ NVSvc Provides system and desktop level support to the NVIDIA display driver NVIDIA Corporation c:\windows\system32\nvsvc32.exe

+ PnkBstrA PunkBuster Service Component [v1029] http://www.evenbalance.com c:\windows\system32\pnkbstra.exe

+ ProtexisLicensing Protexis Licensing Service c:\windows\system32\psiservice.exe

HKLM\System\CurrentControlSet\Services

+ Changer File not found: C:\WINDOWS\System32\Drivers\Changer.sys

+ eamon Eset file on-access scanner ESET c:\windows\system32\drivers\eamon.sys

+ easdrv Eset AntiStealth driver ESET c:\windows\system32\drivers\easdrv.sys

+ ENTECH PowerStrip support NT kernel-mode driver EnTech Taiwan c:\windows\system32\drivers\entech.sys

+ epfwtdir EPFW Filter Driver c:\windows\system32\drivers\epfwtdir.sys

+ gdrv GIGABYTE Tools Windows ® 2000 DDK provider c:\windows\gdrv.sys

+ HDAudBus High Definition Audio Bus Driver v1.0a Windows ® Server 2003 DDK provider c:\windows\system32\drivers\hdaudbus.sys

+ i2omgmt File not found: C:\WINDOWS\System32\Drivers\i2omgmt.sys

+ InCDPass File not found: system32\drivers\InCDPass.sys

+ InCDRm File not found: system32\drivers\InCDRm.sys

+ IntcAzAudAddService Realtek® High Definition Audio Function Driver Realtek Semiconductor Corp. c:\windows\system32\drivers\rtkhdaud.sys

+ lbrtfdc File not found: C:\WINDOWS\System32\Drivers\lbrtfdc.sys

+ MDC8021X AEGIS Protocol (IEEE 802.1x) v2.3.1.9 Meetinghouse Data Communications c:\windows\system32\drivers\mdc8021x.sys

+ nv NVIDIA Compatible Windows 2000 Miniport Driver, Version 169.12 NVIDIA Corporation c:\windows\system32\drivers\nv4_mini.sys

+ PCIDump File not found: C:\WINDOWS\System32\Drivers\PCIDump.sys

+ PDCOMP File not found: C:\WINDOWS\System32\Drivers\PDCOMP.sys

+ PDFRAME File not found: C:\WINDOWS\System32\Drivers\PDFRAME.sys

+ PDRELI File not found: C:\WINDOWS\System32\Drivers\PDRELI.sys

+ PDRFRAME File not found: C:\WINDOWS\System32\Drivers\PDRFRAME.sys

+ Ptilink Direct Parallel Link Driver Parallel Technologies, Inc. c:\windows\system32\drivers\ptilink.sys

+ PxHelp20 Px Engine Device Driver for Windows 2000/XP Sonic Solutions c:\windows\system32\drivers\pxhelp20.sys

+ REMOVE File not found: C:\WINDOWS\system32\drivers\REMOVE.SYS

+ RTLE8023xp Realtek 10/100/1000 NDIS 5.1 Driver Realtek Semiconductor Corporation c:\windows\system32\drivers\rtenicxp.sys

+ Secdrv SafeDisc driver Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. c:\windows\system32\drivers\secdrv.sys

+ SNP2STD USB2.0 PC Camera driver c:\windows\system32\drivers\snp2sxp.sys

+ sptd c:\windows\system32\drivers\sptd.sys

+ st3shark File not found: system32\DRIVERS\st3shark.sys

+ TVICHW32 TVicHW32 Driver for Windows NT/2000/XP EnTech Taiwan c:\windows\system32\drivers\tvichw32.sys

+ WDICA File not found: C:\WINDOWS\System32\Drivers\WDICA.sys

HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries

+ mdnsNSP Bonjour Namespace Provider Apple Computer, Inc. c:\program files\bonjour\mdnsnsp.dll

HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors

+ LIDIL hpzll5ha LanguageMonitor Hewlett-Packard Company c:\windows\system32\hpzll5ha.dll

 

 

Моля, помогнете. :lookaround:

Link to comment
Сподели другаде

Сканирай със SUPERAntiSpyware Free и Malwarebytes' Anti-Malware.

 

За SUPERAntiSpyware:

- стартирай програмата;

- кликни бутон Scan your Computer;

- вляво избери само дял C:, а вдясно избери Perform Complete Scan;

- кликни Next и изчакай да сканира;

- кликни Next, за да се премахнат гадинките и накрая Finish;

- кликни бутон Preferences... и иди на подпрозорец Statistics/Logs, маркирай последния лог и кликни бутон View Log...;

- копирай съдържанието му тук.

 

За Malwarebytes' Anti-Malware:

- стартирай програмата;

- избери Perform quick scan и кликни бутон Scan;

- като приключи сканирането кликни бутон Remove Selected;

- ще се появи текстов файл (лог), копирай съдържанието му тук.

Link to comment
Сподели другаде

Здравейте пак. Оправих компютъра с ваша помощ, за което много благодаря, но сега лаптопа ми е с проблем. Дори с няколко. Освен svchost.exe и други вируси са се наместили. Когато стартирам Malwarebytes в един момент при сканирането винаги лаптопа се рестартира. Извежда съобщение и за вирус: Qhost Trojan. Освен това като пусна SuperAntiSpyware ... засича само 2-3 повреди и ги изчиства и това е :).

 

Ще съм ви много благодарен за малко помощ отново

 

Това е едно от съобщенията, които излизат от NOD32. То се появява най-отдавна.

post-8870-1234778306_thumb.jpg

post-8870-1234778323_thumb.jpg

Link to comment
Сподели другаде

Така .. направих както ми каза .. изключих NOD32 и пуснах Malwarebytes. Засече 9 обекта, натиснах Revome Selected, компютъра се рестартира, сега обаче съобщенията излизат отново.

Ще прикача другте съобщения от NOD32, както и тези обекти, които Malwarebytes изтри.

post-8870-1234780457_thumb.jpg

post-8870-1234780464_thumb.jpg

post-8870-1234780476_thumb.jpg

Link to comment
Сподели другаде

Изтегли ESET SysInspector и:

1) стартирай я и изчакай да събере информацията;

2) меню File -> Save Log;

3) потвърди с Yes;

4) запази файла на удобно за теб място и го прикачи после към коментара си.

Link to comment
Сподели другаде

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 02/16/2009 at 12:20 PM

 

Application Version : 4.25.1012

 

Core Rules Database Version : 3760

Trace Rules Database Version: 1722

 

Scan type : Complete Scan

Total Scan Time : 00:24:09

 

Memory items scanned : 410

Memory threats detected : 0

Registry items scanned : 5918

Registry threats detected : 10

File items scanned : 14258

File threats detected : 231

 

Adware.Vundo Variant

HKLM\Software\Classes\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}

HKU\S-1-5-21-1957994488-854245398-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\InprocServer32

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\InprocServer32#ThreadingModel

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\ProgID

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\Programmable

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\TypeLib

HKCR\CLSID\{9018F6A8-2495-45DF-9F16-C738F8F3C8FF}\VersionIndependentProgID

 

Adware.Tracking Cookie

C:\Documents and Settings\vision\Cookies\vision@warezreleases[1].txt

C:\Documents and Settings\vision\Cookies\vision@maxis.112.2o7[1].txt

C:\Documents and Settings\vision\Cookies\vision@adserver.easyad[1].txt

C:\Documents and Settings\vision\Cookies\vision@crackserialkeygen[1].txt

C:\Documents and Settings\vision\Cookies\vision@2o7[2].txt

C:\Documents and Settings\vision\Cookies\vision@questionmarket[2].txt

C:\Documents and Settings\vision\Cookies\vision@adbrite[1].txt

C:\Documents and Settings\vision\Cookies\vision@atdmt[1].txt

C:\Documents and Settings\vision\Cookies\vision@www.thrixxx[1].txt

C:\Documents and Settings\vision\Cookies\vision@specificclick[1].txt

C:\Documents and Settings\vision\Cookies\vision@xiti[1].txt

C:\Documents and Settings\vision\Cookies\vision@bwincom.122.2o7[1].txt

C:\Documents and Settings\vision\Cookies\vision@ad.yieldmanager[2].txt

C:\Documents and Settings\vision\Cookies\vision@imrworldwide[2].txt

C:\Documents and Settings\vision\Cookies\vision@adecn[1].txt

C:\Documents and Settings\vision\Cookies\vision@atwola[1].txt

C:\Documents and Settings\vision\Cookies\vision@msnportal.112.2o7[1].txt

C:\Documents and Settings\vision\Cookies\vision@doubleclick[1].txt

C:\Documents and Settings\vision\Cookies\vision@cogaccounts.codemasters[2].txt

.ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.richmedia.yahoo.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

ad.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

counter.search.bg [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.fls.doubleclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.doubleclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.fls.doubleclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.overture.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.overture.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.game-advertising-online.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.googleadservices.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revenue.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.googleadservices.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.mediaplex.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.mediaplex.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.mediaplex.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.bwincom.122.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.questionmarket.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.questionmarket.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.atdmt.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.daimlerag.122.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tacoda.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificmedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.specificmedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tribalfusion.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tribalfusion.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tribalfusion.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tribalfusion.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.at.atwola.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.advertising.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.at.atwola.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ads.pointroll.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.imrworldwide.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.imrworldwide.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.content.yieldmanager.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.googleadservices.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

server.cpmstar.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.fastclick.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.googleadservices.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.paphosfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.paphosfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.casalemedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

server.lon.liveperson.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

server.lon.liveperson.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.hitbox.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.hitbox.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ehg-autotrader.hitbox.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ehg-autotrader.hitbox.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www2.addfreestats.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.3dstats.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

server.iad.liveperson.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adopt.euroclick.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adtech.de [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adopt.euroclick.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.msnportal.112.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.chitika.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.bs.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.serving-sys.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

eas.apm.emediate.eu [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

eas.apm.emediate.eu [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.statcounter.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

counter.hitslink.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.indigio.122.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

statse.webtrendslive.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.revsci.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adultfriendfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adultfriendfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adultfriendfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adultfriendfinder.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adviva.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adviva.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adecn.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

media.adrevolver.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adrevolver.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.click4cars.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.ufindus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.ufindus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ufindus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.ufindus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tradedoubler.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.tradedoubler.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.burstnet.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.burstnet.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.yadro.ru [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.cb.adbureau.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

server.iad.liveperson.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.advertisingcyprus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.advertisingcyprus.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.findit.gr [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.findit.gr [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.findit.gr [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

fr.sitestat.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adinterax.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.adinterax.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.clickaider.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.xiti.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

www.worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

worldlingomedia.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

media.exchange.bg [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

media.exchange.bg [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.kontera.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.kontera.com [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

.eaeacom.112.2o7.net [ C:\Documents and Settings\vision\Application Data\Mozilla\Firefox\Profiles\irg9ktno.default\cookies.txt ]

 

Сега в Карантина стоят вирусите. Да ги изтрия ли?

Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...

×
×
  • Създай ново...