Misstänker keylogger / av knekt

  • 6 svar
Misstänker keylogger
2009-11-07 kl 02:44

Blev utloggad från Windows Live messenger igår och fick upp en ruta där det stod att någon hade loggat in någon annanstans på mitt konto. Jag har inte gett ut mitt lösenord till någon eller något i den stilen. Har scannat med Avast och Ad-aware utan att hitta något. Här är en log (vet inte varför det står "Platform: Windows 2003 SP2" när jag använder mig av XP pro 64).

Logfile of Trend Micro HijackThis v2.0.2Scan saved at 02:09:39, on 2009-11-07Platform: Windows 2003 SP2 (WinNT 5.02.3790)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: NormalRunning processes:C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeC:\Program Files\Alwil Software\Avast4\ashServ.exeC:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exeC:\WINDOWS\Sy
sWOW64\ctfmon.exeC:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exeC:\PROGRA~1\ALWILS~1\Avas
t4\ashDisp.exeC:\Program Files (x86)\ASUS\EPU-6 Engine\SixEngine.exeC:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exeC:\WINDOWS\system32\Rundll32.exeC:\
Program Files\Alwil Software\Avast4\ashMaiSv.exeC:\Program Files (x86)\Windows Live\Contacts\wlcomm.exeC:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exeC:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157F2 - REG:system.ini: UserInit=userinitO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dllO4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeO4 - HKLM\..\Run: [Six Engine] "C:\Program Files (x86)\ASUS\EPU-6 Engine\SixEngine.exe" -rO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [VolPanel] "C:\Program Files (x86)\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /rO4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntryO4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /backgroundO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLLO15 - ESC Trusted Zone: http://runonce.msn.comO16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su
2/ocx/15108/CTPID.cabO18
- Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dllO23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exeO23 - Service: Logical Disk Manager Administrative Service (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe (file missing)O23 - Service: Event Log (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)O23 - Service: HTTP SSL (HTTPFilter) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe (file missing)O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exeO23 - Service: Distributed Transaction Coordinator (MSDTC) - Unknown owner - C:\WINDOWS\system32\msdtc.exe (file missing)O23 - Service: Net Logon (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: NT LM Security Support Provider (NtLmSsp) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\WINDOWS\system32
vsvc64.exe (file missing)O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)O23 - Service: IPSEC Services (PolicyAgent) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Protected Storage (ProtectedStorage) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Remote Desktop Help Session Manager (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe (file missing)O23 - Service: Security Accounts Manager (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)O23 - Service: Virtual Disk Service (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe (file missing)O23 - Service: WMI Performance Adapter (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe (file missing)--End of file - 6254 bytes


Något som ser konstigt ut?

2009-11-07 kl 09:17

hämta den här filen, till vänster väljer du none i alla rutor. till höger ändrar du till 14 dagar och bockar för lop och purity check.klicka på run scan och posta loggen från OTL.txthttp://oldtimer.geekstogo.com/OTL.exe

2009-11-07 kl 14:54

OTL logfile created on: 2009-11-07 14:55:25 - Run 1OTL by OldTimer - Version 3.1.4.0 Folder = C:\Documents and Settings\Administrator\My Documents\Downloads64bit-Windows Server 2003 Service Pack 2 (Version = 5.2.3790) - Type = NTWorkstationInternet Explorer (Version = 8.0.6001.18702)Locale: 0000041D | Country: Sweden | Language: SVE | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,11 Gb Available Physical Memory | 77,81% Memory free4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File freePaging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)Drive C: | 465,75 Gb Total Space | 409,49 Gb Free Space | 87,92% Space Free | Partition Type: NTFSD: Drive not present or media not loadedE: Drive not present or media not loadedF: Drive not present or media not loadedG: Drive not present or media not loadedH: Drive not present or media not loadedI: Drive not present or media not loaded Computer Name: JOCKECurrent User Name: AdministratorLogged in as Administrator. Current Boot Mode: NormalScan Mode: Current userInclude 64bit ScansCompany Name Whitelist: OffSkip Microsoft Files: OffFile Age = 14 DaysOutput = Standard ========== Files/Folders - Created Within 14 Days ========== [2009-11-07 07:07:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Octoshape[2009-11-07 05:27:12 | 00,157,712 | ---- | C] (Trend Micro Inc.) -- C:\WINDOWS\SysWow64\drivers\tmcomm.sys[2009-11-07 02:57:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Malwarebytes[2009-11-07 02:57:22 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysWow64\drivers\mbamswissarmy.sys[2009-
11-07 02:57:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes[2009-11-07 02:57:20 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware[2009-11-07 02:09:28 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro[2009-11-07 00:48:27 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}[2009-
11-04 22:06:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\mIRC[2009-11-04 22:06:15 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\mIRC[2009-11-03 05:01:51 | 00,000,000 | -HSD | C] -- C:\Config.Msi[2009-10-31 20:37:43 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Steam[2009-09-12 00:07:42 | 00,065,536 | ---- | C] ( ) -- C:\WINDOWS\SysWow64\A3d.dll[3 C:\WINDOWS\SysWow64\*.tmp files -> C:\WINDOWS\SysWow64\*.tmp -> ][3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] ========== Files - Modified Within 14 Days ========== [2009-11-07 14:49:01 | 00,000,496 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job[2009-11-07 14:48:19 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT[2009-11-07 14:48:17 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat[2009-11-07 07:26:16 | 03,407,872 | -H-- | M] () -- C:\Documents and Settings\Administrator\NTUSER.DAT[2009-11-07 07:26:16 | 00,000,178 | -HS- | M] () -- C:\Documents and Settings\Administrator
tuser.ini[2009-11-07 07:00:47 | 00,002,243 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Steam.lnk[2009-11-07 06:27:32 | 04,810,398 | -H-- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db[2009-11-07 05:26:34 | 00,000,036 | ---- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\housecall.guid.cache[2009-11-07 02:57:24 | 00,000,726 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk[2009-11-07 02:09:28 | 00,001,788 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\HijackThis.lnk[200
9-11-07 01:58:26 | 00,000,000 | ---- | M] () -- C:\WINDOWS\SysWow64\pguard.dat[2009-11-07 01:08:23 | 00,000,002 | ---- | M] () -- C:\WINDOWS\SysWow64\config.nt[2009-11-07 00:53:59 | 00,136,408 | ---- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT[2009-11-07 00:48:25 | 00,000,909 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Ad-Aware.lnk[2009-11-04 22:06:16 | 00,000,668 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\mIRC.lnk[2009-11-03 05:00:59 | 00,000,476 | ---- | M] () -- C:\WINDOWS\win.ini[2009-10-31 20:59:10 | 00,001,668 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Counter-Strike.lnk
[3 C:\WINDOWS\SysWow64\*.tmp files -> C:\WINDOWS\SysWow64\*.tmp -> ][3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] ========== Files Created - No Company Name ========== [2009-11-07 05:26:34 | 00,000,036 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\housecall.guid.cache[2009-11-07 02:57:24 | 00,000,726 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk[2009-11-07 02:09:28 | 00,001,788 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\HijackThis.lnk[200
9-11-07 01:58:26 | 00,000,000 | ---- | C] () -- C:\WINDOWS\SysWow64\pguard.dat[2009-11-04 22:06:16 | 00,000,668 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\mIRC.lnk[2009-10-31 20:59:10 | 00,001,668 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Counter-Strike.lnk
[2009-10-31 20:37:43 | 00,002,243 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Steam.lnk[2009-10-07 13:59:09 | 00,366,976 | ---- | C] () -- C:\WINDOWS\SysWow64\PerfStringBackup.INI[2009-09-12 00:08:27 | 00,003,118 | ---- | C] () -- C:\WINDOWS\SysWow64\AudioDrv.ini[2009-09-12 00:07:44 | 00,008,275 | R--- | C] () -- C:\WINDOWS\sfsyx.ini[2009-09-12 00:07:43 | 00,137,216 | ---- | C] () -- C:\WINDOWS\SysWow64\OemSpi.dll[2009-09-12 00:07:43 | 00,053,248 | ---- | C] () -- C:\WINDOWS\SysWow64\P17CPI.dll[2009-09-12 00:00:29 | 00,000,262 | ---- | C] () -- C:\WINDOWS\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_W
iseFW.ini[2009-09-11 23:43:55 | 00,024,576 | R--- | C] () -- C:\WINDOWS\SysWow64\AsIO.dll[2009-09-11 23:43:55 | 00,014,392 | R--- | C] () -- C:\WINDOWS\SysWow64\drivers\AsIO.sys[2009-09-11 23:43:53 | 00,011,832 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\AsInsHelp64.sys[2009-09
-11 23:43:53 | 00,010,216 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\AsInsHelp32.sys[2009-09
-11 23:42:27 | 00,136,408 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT[2009-09-11 23:42:18 | 00,026,465 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini[2009-09-11 23:42:18 | 00,010,296 | ---- | C] () -- C:\WINDOWS\SysWow64\drivers\ASUSHWIO.SYS[2009-09-11 23:30:11 | 04,810,398 | -H-- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db[2009-09-11 23:28:28 | 00,163,840 | ---- | C] () -- C:\WINDOWS\SysWow64\unrar.dll[2009-09-11 23:28:27 | 00,007,680 | ---- | C] () -- C:\WINDOWS\SysWow64\ff_vfw.dll[2009-09-11 23:28:27 | 00,000,547 | ---- | C] () -- C:\WINDOWS\SysWow64\ff_vfw.dll.manifest[2009-09-11 23:13:05 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Administrator\Application Data\desktop.ini[2009-09-11 23:07:56 | 00,000,476 | ---- | C] () -- C:\WINDOWS\win.ini[2009-09-11 23:07:41 | 00,000,002 | -HS- | C] () -- C:\Program Files (x86)\desktop.ini[2009-09-11 17:01:46 | 00,000,150 | ---- | C] () -- C:\WINDOWS\system.ini[2009-09-11 17:01:41 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\desktop.ini[2009-08-03 07:21:54 | 00,197,912 | ---- | C] () -- C:\WINDOWS\SysWow64\physxcudart_20.dll[2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelTraditionalChinese.dll[
2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelSwedish.dll[2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelSpanish.dll[2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelSimplifiedChinese.dll[2
009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelPortugese.dll[2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelKorean.dll[2009-08-03 07:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelJapanese.dll[2009-08-03 07:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelGerman.dll[2009-08-03 07:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\SysWow64\AgCPanelFrench.dll[2009-06-04 09:11:00 | 01,278,464 | ---- | C] () -- C:\WINDOWS\SysWow64\quartz.dll[2008-08-01 21:48:00 | 01,486,848 | ---- | C] () -- C:\WINDOWS\SysWow64
view.dll[2008-08-01 21:48:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\SysWow64
vwimg.dll[2007-02-18 18:05:48 | 00,276,992 | ---- | C] () -- C:\WINDOWS\SysWow64\sbe.dll[2007-02-18 18:05:46 | 00,512,512 | ---- | C] () -- C:\WINDOWS\SysWow64\qedit.dll[2007-02-18 18:05:46 | 00,385,536 | ---- | C] () -- C:\WINDOWS\SysWow64\qdvd.dll[2007-02-18 18:05:46 | 00,279,040 | ---- | C] () -- C:\WINDOWS\SysWow64\qdv.dll[2007-02-18 18:05:46 | 00,192,512 | ---- | C] () -- C:\WINDOWS\SysWow64\qcap.dll[2007-02-18 18:05:34 | 00,062,464 | ---- | C] () -- C:\WINDOWS\SysWow64\mciqtz32.dll[2007-02-18 18:05:28 | 00,396,288 | ---- | C] () -- C:\WINDOWS\SysWow64\encdec.dll[2007-02-18 18:05:24 | 00,061,440 | ---- | C] () -- C:\WINDOWS\SysWow64\devenum.dll[2007-02-18 18:05:20 | 00,072,704 | ---- | C] () -- C:\WINDOWS\SysWow64\amstream.dll[2006-05-29 18:18:00 | 00,733,696 | ---- | C] () -- C:\WINDOWS\SysWow64\qedwipes.dll[2006-05-29 18:18:00 | 00,498,742 | ---- | C] () -- C:\WINDOWS\SysWow64\dxmasf.dll[2006-05-29 18:18:00 | 00,355,112 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll[2006-05-29 18:18:00 | 00,199,168 | ---- | C] () -- C:\WINDOWS\SysWow64\ir32_32.dll[2006-05-29 18:18:00 | 00,114,688 | ---- | C] () -- C:\WINDOWS\SysWow64\msencode.dll[2006-05-29 18:18:00 | 00,016,896 | ---- | C] () -- C:\WINDOWS\SysWow64\tsd32.dll[2006-05-29 18:18:00 | 00,014,336 | ---- | C] () -- C:\WINDOWS\SysWow64\msdmo.dll[2006-05-29 18:18:00 | 00,004,126 | ---- | C] () -- C:\WINDOWS\SysWow64\msdxmlc.dll ========== LOP Check ========== [2009-11-07 07:07:25 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Octoshape[2009-11-03 15:48:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Spotify[2009-09-12 02:19:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Blizzard[2009-09-12 03:17:03 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Blizzard Entertainment[2009-11-07 00:48:27 | 00,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}[2009-
11-07 14:49:01 | 00,000,496 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job[2006-05-29 18:18:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini[2009-11-07 14:48:19 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT[2009-11-07 07:26:18 | 00,032,522 | ---- | M] () -- C:\WINDOWS\Tasks\SchedLgU.Txt ========== Purity Check ========== < End of report >

2009-11-07 kl 19:32

Jag ser inget misstänk i nån logg, kvarstår problemet än?
Är du säker på att meddelandet kom från MS, om du redan är inloggad borde ju inte du eller nån annan kunna logga in på ditt konto. Det är iaf vad jag antar, har aldrig använt detta program.
Supporthttps://support.live.com/eform.aspx
Ad-aware är ju värdelöst så det skulle du tveklöst kunna byta ut mot windows defender (om du vill ha ett komplemet till avast i real tid, vill du bara ha en scanner föreslår jag malwarebytes antimalware)

2009-11-07 kl 19:51

Jag är säker på att någon loggade in på min MSN, den som gjorde detta bad om login uppgifter till Steam accounts från folk i min kontaktlista. Det har dock inte hänt igen vad jag har märkt (har bytt lösen).
Om jag går till någon annan dator i huset och loggar in på min msn där så loggas jag ut från min dator och får upp meddelandet att någon annan loggat in på mitt konto (att jag inte kan vara inloggad på flera datorer samtidigt). Så ja, det går att logga in från någon annanstans trots att man redan är inloggad.
Kan det hjälpa att kolla OTL från längre tid tillbaka?
Tack för tipsen, skall testa de där programmen.

2009-11-07 kl 22:59

Du kan kolla med f-secures blacklight, det går fort att scanna.
Man kan ju ställa in hur lång tid tillbaka man vill att OTL ska scanna.Problemet är att loggarna kan bli så långa, visserligen behöver man ju inte posta loggen här utan det går skicka upp upp txt filen till tex speedyshare eller fuskbugg
Jag tycker att det är väldigt märkligt att man kan logga in när en person redan är inloggad, hur tänkte MS där vad säkersäkerheten!?

  • 6 svar
Avatar

Inte inloggad

Logga in Bli medlem

Läs mer

  • Senaste
  • Mest läst
  • Mest kommenterat

Kom in i diskussionen

Detta innehåll är skapat av PC Hemmas besökare

Test: HP Officejet 4500

1 kommentar

andy1n2: 695 kr är priset denna vecka i vår butik i lilla Köping

Forum

Detta innehåll är skapat av PC Hemmas medlemmar.

Tester

  • Senaste
  • Mest läst
  • Mest kommenterat

Artikelkommentarer


Egmont logo
© Egmont Tidskrifter