ComboFix 09-05-11.08 - Terje 12.05.2009 16:09.1 - NTFSx86 Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.47.1044.18.2939.1571 [GMT 2:00] Kjører fra: c:\users\Terje\AppData\Local\Opera\Opera\profile\cache4\temporary_download\ComboFix.exe AV: Norman Security Suite ver. 7.00 *On-access scanning enabled* (Updated) FW: Personlig brannmur *enabled* . ((((((((((((((((((((((((((( Filer Opprettet Fra 2009-04-12 til 2009-05-12 ))))))))))))))))))))))))))))))))) . 2009-05-12 12:15 . 2009-05-12 12:15 -------- d-----w c:\users\Terje\AppData\Roaming\Malwarebytes 2009-05-12 12:15 . 2009-04-06 13:32 15504 ----a-w c:\windows\system32\drivers\mbam.sys 2009-05-12 12:15 . 2009-04-06 13:32 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys 2009-05-12 12:15 . 2009-05-12 12:15 -------- d-----w c:\programdata\Malwarebytes 2009-05-12 12:15 . 2009-05-12 12:15 -------- d-----w c:\users\All Users\Malwarebytes 2009-05-12 12:15 . 2009-05-12 12:15 -------- d-----w c:\program files\Malwarebytes' Anti-Malware 2009-04-22 09:13 . 2009-04-22 09:13 -------- d-----w c:\users\Terje\AppData\Roaming\vlc 2009-04-16 21:00 . 2009-04-16 21:00 -------- d-----w c:\program files\Microsoft Silverlight 2009-04-16 14:17 . 2009-03-03 04:39 551424 ----a-w c:\windows\system32\rpcss.dll 2009-04-16 14:17 . 2009-03-03 04:46 3599328 ----a-w c:\windows\system32\ntkrnlpa.exe 2009-04-16 14:17 . 2009-03-03 04:46 3547632 ----a-w c:\windows\system32\ntoskrnl.exe 2009-04-16 14:17 . 2009-03-03 03:04 666624 ----a-w c:\windows\system32\printfilterpipelinesvc.exe 2009-04-16 14:17 . 2009-03-03 04:39 26112 ----a-w c:\windows\system32\printfilterpipelineprxy.dll 2009-04-16 14:17 . 2009-03-03 04:39 183296 ----a-w c:\windows\system32\sdohlp.dll 2009-04-16 14:17 . 2009-03-03 04:37 98304 ----a-w c:\windows\system32\iasrecst.dll 2009-04-16 14:17 . 2009-03-03 04:37 44032 ----a-w c:\windows\system32\iasdatastore.dll 2009-04-16 14:17 . 2009-03-03 04:37 54784 ----a-w c:\windows\system32\iasads.dll 2009-04-16 14:17 . 2009-03-03 02:38 17408 ----a-w c:\windows\system32\iashost.exe 2009-04-16 14:03 . 2008-06-06 03:27 562176 ----a-w c:\windows\system32\msdtcprx.dll 2009-04-16 14:03 . 2008-06-06 03:27 38912 ----a-w c:\windows\system32\xolehlp.dll 2009-04-16 13:32 . 2008-12-06 04:42 376832 ----a-w c:\windows\system32\winhttp.dll 2009-04-16 13:22 . 2009-02-13 08:49 1255936 ----a-w c:\windows\system32\lsasrv.dll 2009-04-16 13:22 . 2009-02-13 08:49 72704 ----a-w c:\windows\system32\secur32.dll 2009-04-16 13:22 . 2009-03-17 03:38 13824 ----a-w c:\windows\system32\apilogen.dll 2009-04-16 13:22 . 2009-03-17 03:38 24064 ----a-w c:\windows\system32\amxread.dll 2009-04-13 22:24 . 2009-04-28 00:02 -------- d-----w c:\users\Terje\AppData\Roaming\dvdcss . (((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-05-12 14:06 . 2008-01-21 06:14 76478 ----a-w c:\windows\system32\perfc014.dat 2009-05-12 14:06 . 2008-01-21 06:14 452326 ----a-w c:\windows\system32\perfh014.dat 2009-05-12 14:00 . 2009-02-11 21:41 -------- d-----w c:\program files\Norman 2009-05-12 13:59 . 2009-02-20 13:10 12 ----a-w c:\windows\bthservsdp.dat 2009-05-11 18:21 . 2008-08-14 16:51 -------- d-----w c:\program files\Toshiba TEMPRO 2009-05-11 18:21 . 2008-08-14 16:51 -------- d-----w c:\program files\Common Files\Wise Installation Wizard 2009-05-01 19:52 . 2009-02-11 19:14 114400 ----a-w c:\users\Terje\AppData\Local\GDIPFONTCACHEV1.DAT 2009-04-16 21:03 . 2006-11-02 11:18 -------- d-----w c:\program files\Windows Mail 2009-04-16 20:58 . 2009-04-16 20:58 0 ---ha-w c:\windows\system32\drivers\Msft_Kernel_SynTP_01007.Wdf 2009-04-16 20:58 . 2006-11-02 10:25 51200 ----a-w c:\windows\inf\infpub.dat 2009-04-16 20:58 . 2006-11-02 10:25 143360 ----a-w c:\windows\inf\infstrng.dat 2009-04-16 20:58 . 2006-11-02 10:25 86016 ----a-w c:\windows\inf\infstor.dat 2009-04-13 15:31 . 2008-08-14 16:43 -------- d-----w c:\program files\Common Files\Adobe 2009-04-08 10:05 . 2009-04-08 10:05 0 ----a-w c:\users\Terje\AppData\Roaming\wklnhst.dat 2009-04-04 13:01 . 2008-08-14 16:13 -------- d--h--w c:\program files\InstallShield Installation Information 2009-04-04 13:01 . 2009-04-04 13:01 -------- d-----w c:\program files\Buypass 2009-04-03 14:35 . 2009-04-03 14:35 -------- d-----w c:\program files\Eraser 2009-03-31 09:54 . 2009-03-30 14:18 -------- d-----w c:\program files\Common Files\Logishrd 2009-03-30 14:20 . 2009-03-30 14:20 127034 ------r c:\windows\bwUnin-8.1.1.50-8876480SL.exe 2009-03-30 14:20 . 2009-03-30 14:17 -------- d-----w c:\program files\Logitech 2009-03-28 01:05 . 2009-03-28 01:05 -------- d-----w c:\program files\Real Alternative 2009-03-28 01:05 . 2009-03-28 01:04 -------- d-----w c:\program files\QT Lite 2009-03-28 01:04 . 2009-03-28 01:04 -------- d-----w c:\program files\Combined Community Codec Pack 2009-03-27 15:38 . 2009-03-27 15:38 -------- d-----w c:\program files\K-Lite Codec Pack 2009-03-25 10:41 . 2009-02-15 16:18 -------- d-----w c:\program files\Opera 2009-03-25 09:51 . 2009-03-25 09:51 -------- d-----w c:\program files\Bullzip 2009-03-25 09:27 . 2008-08-14 16:02 -------- d-----w c:\program files\Java 2009-03-16 10:09 . 2008-08-14 16:50 -------- d-----w c:\program files\Google 2009-03-09 04:19 . 2009-02-11 20:40 410984 ----a-w c:\windows\system32\deploytk.dll 2009-03-08 11:34 . 2009-05-01 11:12 914944 ----a-w c:\windows\system32\wininet.dll 2009-03-08 11:34 . 2009-05-01 11:12 43008 ----a-w c:\windows\system32\licmgr10.dll 2009-03-08 11:33 . 2009-05-01 11:12 18944 ----a-w c:\windows\system32\corpol.dll 2009-03-08 11:33 . 2009-05-01 11:12 109056 ----a-w c:\windows\system32\iesysprep.dll 2009-03-08 11:33 . 2009-05-01 11:12 109568 ----a-w c:\windows\system32\PDMSetup.exe 2009-03-08 11:33 . 2009-05-01 11:12 132608 ----a-w c:\windows\system32\ieUnatt.exe 2009-03-08 11:33 . 2009-05-01 11:12 107520 ----a-w c:\windows\system32\RegisterIEPKEYs.exe 2009-03-08 11:33 . 2009-05-01 11:12 107008 ----a-w c:\windows\system32\SetIEInstalledDate.exe 2009-03-08 11:33 . 2009-05-01 11:12 103936 ----a-w c:\windows\system32\SetDepNx.exe 2009-03-08 11:33 . 2009-05-01 11:12 420352 ----a-w c:\windows\system32\vbscript.dll 2009-03-08 11:32 . 2009-05-01 11:12 72704 ----a-w c:\windows\system32\admparse.dll 2009-03-08 11:32 . 2009-05-01 11:12 71680 ----a-w c:\windows\system32\iesetup.dll 2009-03-08 11:32 . 2009-05-01 11:12 66560 ----a-w c:\windows\system32\wextract.exe 2009-03-08 11:32 . 2009-05-01 11:12 169472 ----a-w c:\windows\system32\iexpress.exe 2009-03-08 11:31 . 2009-05-01 11:12 34816 ----a-w c:\windows\system32\imgutil.dll 2009-03-08 11:31 . 2009-05-01 11:12 48128 ----a-w c:\windows\system32\mshtmler.dll 2009-03-08 11:31 . 2009-05-01 11:12 45568 ----a-w c:\windows\system32\mshta.exe 2009-03-08 11:22 . 2009-05-01 11:12 156160 ----a-w c:\windows\system32\msls31.dll 2009-02-23 09:12 . 2009-03-08 12:36 496640 ----a-w c:\windows\system32\drivers\rtl819xp.sys 2009-02-23 09:12 . 2009-03-08 12:36 336896 ----a-w c:\windows\system32\drivers\rtl8187Se.sys 2009-02-23 09:12 . 2008-08-14 16:19 344064 ----a-w c:\windows\system32\drivers\rtl8187B.sys 2009-02-11 22:14 . 2009-02-11 22:14 56 ---ha-w c:\users\All Users\ezsidmv.dat 2009-02-11 22:14 . 2009-02-11 22:14 56 ---ha-w c:\programdata\ezsidmv.dat 2009-02-11 20:02 . 2009-02-11 20:02 319456 ----a-w c:\windows\DIFxAPI.dll 2009-02-11 20:02 . 2009-02-11 20:02 315392 ----a-w c:\windows\HideWin.exe 2008-01-21 02:43 . 2006-11-02 12:50 174 --sha-w c:\program files\desktop.ini . (((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret ))))))))))))))))))))))))))))))))))))))))))))) . . *Merk* tomme oppføringer & gyldige standardoppføringer vises ikke REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920] "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-04-16 24264488] "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-08-14 68856] "Eraser"="c:\program files\Eraser\eraser.exe" [2007-12-22 916240] "TOSHIBA Online Product Information"="c:\program files\TOSHIBA\Toshiba Online Product Information\topi.exe" [2009-02-09 579488] "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-08-14 1348904] "Google EULA Launcher"="c:\program files\Google\Google EULA\GoogleEULALauncher.exe" [2008-05-28 20480] "topi"="c:\program files\TOSHIBA\Toshiba Online Product Information\topi.exe" [2009-02-09 579488] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-06-25 150040] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-06-25 170520] "Persistence"="c:\windows\system32\igfxpers.exe" [2008-06-25 145944] "TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456] "SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2008-06-24 509816] "00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-05-09 716800] "Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaRegistration.exe" [2008-01-11 574864] "Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2008-09-26 417792] "Norman ZANDA"="c:\program files\Norman\Npm\Bin\ZLH.EXE" [2009-02-11 187504] "NPCTray"="c:\program files\Norman\npc\bin\npc_tray.exe" [2007-09-17 126008] "Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-14 39792] "Toshiba TEMPRO"="c:\program files\Toshiba TEMPRO\TemproTray.exe" [2009-04-21 1045904] "NDSTray.exe"="NDSTray.exe" [BU] "RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-04-08 6037504] "Skytel"="Skytel.exe" - c:\windows\SkyTel.exe [2007-11-20 1826816] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOSHIBA Online Product Information"="c:\program files\TOSHIBA\Toshiba Online Product Information\topi.exe" [2009-02-09 579488] c:\users\Terje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OneNote 2007 Screen Clipper og Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696] c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2007-2-2 2756608] Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2009-3-30 67128] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk /r \??\D:\[u]0[/u]autocheck autochk * [HKLM\~\startupfolder\C:^Users^Terje^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^TRDCReminder.lnk] path=c:\users\Terje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk backup=c:\windows\pss\TRDCReminder.lnk.Startup backupExtension=.Startup [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules] "{2DDB1414-C393-4CF0-8A19-2ECCBF326073}"= UDP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote "{A34F9401-E333-4352-AD50-86DD8126CDDC}"= TCP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote "{57D3E51C-F312-4587-B908-5D8CE0A87821}"= c:\program files\Skype\Phone\Skype.exe:Skype "{B5EDEFE7-2E5E-41DF-B674-495714128B82}"= c:\program files\Windows Live\Sync\WindowsLiveSync.exe:Windows Live Sync "{E5F17A79-DC50-4772-A327-2D4BD695D29F}"= UDP:c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:Logitech Desktop Messenger "{91991452-EFD5-4ABC-85FF-45F7832CCEAF}"= TCP:c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:Logitech Desktop Messenger "{716428F0-3912-435A-8820-F740849BDBCD}"= UDP:c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:Logitech Desktop Messenger "{0D777208-54C3-451E-8584-955A59352B66}"= TCP:c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:Logitech Desktop Messenger [HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile] "EnableFirewall"= 0 (0x0) R1 ALE_NF;Norman Firewall ALE driver;c:\windows\System32\drivers\ale_nf.sys [11.02.2009 23:41 42552] R1 NPROSEC;Norman Security driver;c:\program files\Norman\Ngs\Bin\nprosec.sys [11.02.2009 23:41 53816] R1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver;c:\windows\System32\drivers\RtlProt.sys [11.02.2009 21:20 25896] R2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [17.04.2008 01:19 40960] R2 Ndiskio;Ndiskio;c:\program files\Norman\Nse\Bin\Ndiskio.sys [11.02.2009 23:41 20448] R2 NPFSvc32;Norman Personal Firewall Service;c:\program files\Norman\Npf\Bin\npfsvc32.exe [11.02.2009 23:41 597104] R2 NPROSECSVC;Norman Security service;c:\program files\Norman\Ngs\Bin\nprosec.exe [11.02.2009 23:41 121912] R2 NVOY;Norman Resource Provider;c:\program files\Norman\Npm\Bin\nvoy.exe [11.02.2009 23:41 126008] R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files\Toshiba TEMPRO\TemproSvc.exe [21.04.2009 17:36 116104] R2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [06.02.2008 16:12 126976] R3 FwLnk;FwLnk Driver;c:\windows\System32\drivers\FwLnk.sys [14.08.2008 18:20 7168] R3 NPC;Norman Parental Control;c:\program files\Norman\Npc\Bin\npcsvc32.exe [11.02.2009 23:41 416880] R3 nsesvc;Norman Scanner Engine Service;c:\program files\Norman\Nse\Bin\Nsesvc.exe [29.04.2009 23:38 310328] R3 NUAA;Norman User Activity Agent;c:\program files\Norman\Npc\Bin\nuaa.exe [11.02.2009 23:41 117816] R3 NvcMFlt;NvcMFlt;c:\windows\System32\drivers\nvcv32mf.sys [19.02.2009 16:03 19512] R3 nvcoas;Norman Virus Control on-access component;c:\program files\Norman\nvc\bin\Nvcoas.exe [19.02.2009 16:03 195640] R3 NVCScheduler;Norman Virus Control Scheduler;c:\program files\Norman\Npm\Bin\nvcsched.exe [11.02.2009 23:41 154680] R3 RTL8187B;Realtek RTL8187B trådløs 802.11b/g 54M bps USB 2.0 nettverksadapter;c:\windows\System32\drivers\rtl8187B.sys [14.08.2008 18:19 344064] R3 SmartFaceVWatchSrv;SmartFaceVWatchSrv;c:\program files\TOSHIBA\SmartFaceV\SmartFaceVWatchSrv.exe [24.04.2008 19:35 73728] S1 NGS;Norman General Security Driver;c:\program files\Norman\Ngs\Bin\ngs.sys [27.02.2009 14:22 22712] --- Andre tjenester/drivere lastet i minnet --- *Deregistered* - mchInjDrv [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] WindowsMobile REG_MULTI_SZ wcescomm rapimgr LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr bthsvcs REG_MULTI_SZ BthServ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{28e39a32-f877-11dd-a97e-806e6f6e6963}] \shell\AutoRun\command - c:\windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL f:\website\index.html [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d63631ce-3ccc-11de-b68b-001bdc000a3e}] \shell\AutoRun\command - D:\laucher.exe [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] "c:\windows\System32\rundll32.exe" "c:\windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP . Innholdet i mappen 'Scheduled Tasks' (planlagte oppgaver) 2009-05-12 c:\windows\Tasks\User_Feed_Synchronization-{CB39F7F5-4BD4-49C2-9B90-F69D55BF3AC9}.job - c:\windows\system32\msfeedssync.exe [2009-05-01 11:31] . - - - - TOMME PEKERE FJERNET - - - - HKCU-Run-TOSCDSPD - TOSCDSPD.EXE HKLM-Run-Toshiba TEMPO - c:\program files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe HKLM-Run-cfFncEnabler.exe - cfFncEnabler.exe . ------- Tilleggsskanning ------- . uStart Page = about:blank mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA IE: E&ksporter til Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 IE: {{76577871-04EC-495E-A12B-91F7C3600AFA} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url2.pl?NO IE: {{8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home LSP: c:\program files\Norman\npc\bin\nlf.dll Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll . ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-05-12 16:15 Windows 6.0.6001 Service Pack 1 NTFS skanner skjulte prosesser ... skanner skjulte autostart-oppføringer ... skanner skjulte filer ... skanning vellykket skjulte filer: 0 ************************************************************************** . --------------------- LÅSTE REGISTERNØKLER --------------------- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\[u]0[/u]000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . --------------------- DLL'er Lastet Av Kjørende Prosesser --------------------- - - - - - - - > 'Explorer.exe'(4664) c:\program files\Norman\nvc\bin\Niphk.dll . Tidspunkt ferdig: 2009-05-12 16:17 ComboFix-quarantined-files.txt 2009-05-12 14:17 Pre-Run: 78 678 126 592 byte ledig Post-Run: 79 355 379 712 byte ledig 238 --- E O F --- 2009-05-11 23:37