Enya Skrevet 1. mars 2009 Del Skrevet 1. mars 2009 Ja, nok en maskin som jeg tror er full av malware. Ikke noen andre symptomer enn at den jobber forferdelig sent. Dette skal vistnok har skjedd "plutselig". Har blant annet brukt fire timer på å få til å lage loggene. MBAM Klikk for å se/fjerne innholdet nedenfor Malwarebytes' Anti-Malware 1.34 Databaseversjon: 1813 Windows 5.1.2600 Service Pack 3 01.03.2009 15:44:57 mbam-log-2009-03-01 (15-44-57).txt Skanntype: Rask Skann Objekter skannet: 119052 Tid tilbakelagt: 1 hour(s), 13 minute(s), 48 second(s) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 107 Registerverdier infisert: 7 Registerfiler infisert: 0 Mapper infisert: 103 Filer infisert: 266 Minneprosesser infisert: (Ingen mistenkelige filer funnet) Minnemoduler infisert: (Ingen mistenkelige filer funnet) Registernøkler infisert: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{df780f87-ff2b-4df8-92d0-73db16a1543a} (Adware.PopCap) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2d51d869-c36b-42bd-ae68-0a81bc771fa5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{7bed0340-176b-44bc-915e-c21c1dd6f617} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18ea3-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\starware (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{2d51d869-c36b-42bd-ae68-0a81bc771fa5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{7bed0340-176b-44bc-915e-c21c1dd6f617} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{ca356d79-679b-4b4c-8e49-5af97014f4c1} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{ca356d79-679b-4b4c-8e49-5af97014f4c1} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ca356d79-679b-4b4c-8e49-5af97014f4c1} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{d49e9d35-254c-4c6a-9d17-95018d228ff5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d49e9d35-254c-4c6a-9d17-95018d228ff5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\TypeLib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\starware (Adware.Starware) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully. Registerverdier infisert: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{d49e9d35-254c-4c6a-9d17-95018d228ff5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\searchassistant (Adware.Starware) -> Quarantined and deleted successfully. Registerfiler infisert: (Ingen mistenkelige filer funnet) Mapper infisert: C:\Documents and Settings\Veronica\Programdata\Starware\Toolbar (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Reference (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Manager (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin (Adware.MyWebSearch) -> Delete on reboot. C:\Documents and Settings\Veronica\Programdata\Starware\TravelSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Toolbar (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\PopSwatr\History (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Maps (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ErrorSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ScreensaversMarketingSitePager (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\TravelSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\images (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Games (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Weather (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar (Adware.MyWebSearch) -> Delete on reboot. C:\Documents and Settings\Veronica\Programdata\Starware\SearchMatch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Games (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\BrowserSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\TravelSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\RelatedSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\BrowserSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarLogo (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Movies (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Reference (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ErrorSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\RelatedSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\SrchAstt (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Games (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Layouts (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\PopSwatr (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Weather (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchAssistPlus (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\RelatedSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Maps (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchMatch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Manager (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchMatch\searchMatchPages (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Maps (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Movies (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\icons (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Movies (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Layouts (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Reference (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\MSNBackgrounds (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Configurator (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\RelatedSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarLogo (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\SearchAssistPlus (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ErrorSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchAssistPlus (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\SrchAstt\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\contexts (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\BrowserSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Toolbar (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Configurator (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarLogo (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Maps (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\BrowserSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Layouts (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Movies (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\TravelSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchMatch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Reference (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Weather (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Manager (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Toolbar (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Games (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ScreensaversMarketingSitePager (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch (Adware.MyWebSearch) -> Delete on reboot. C:\Documents and Settings\Josefin\Programdata\Starware\ScreensaversMarketingSitePager (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchAssistPlus (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\bin (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Configurator (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchMatch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ErrorSearch (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchMatch\searchMatchPages (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Layouts (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Configurator (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Manager (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ScreensaversMarketingSitePager (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Weather (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarLogo (Adware.Starware) -> Quarantined and deleted successfully. Filer infisert: C:\Documents and Settings\Kristoffer\Programdata\Starware\Games\GamesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3HISTSW.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Layouts\PreferencesLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Layouts\PreferencesLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Layouts\ToolbarLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Layouts\ToolbarLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Manager\ManagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Manager\ManagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\TravelSearch\TravelSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Maps\MapsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Maps\MapsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache006B2D8 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Movies\MoviesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Movies\MoviesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache00CC46E.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Reference\ReferenceOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Reference\ReferenceOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0165902 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache018F96E.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0227EBF.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0A4A23D.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchMatch\SearchMatchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\SearchMatch\SearchMatchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache18D7A26 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache\files.ini (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Toolbar\TBProductsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Game\CHESS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\History\search (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\MSNBackgrounds0792F21.jpeg (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\TravelSearch\TravelSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\TravelSearch\TravelSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Settings\settings.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3HTML.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Weather\WeatherOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Weather\WeatherOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\SimpleUpdateConfig.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\TimerManagerConfig.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\BrowserSearch\BrowserSearch.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\BrowserSearch\BrowserSearch.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3OUTLCN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Configurator\ConfiguratorOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Configurator\ConfiguratorOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Games\GamesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Games\GamesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MailStampBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Layouts\PreferencesLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Layouts\PreferencesLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Layouts\ToolbarLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Layouts\ToolbarLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MySignaturePreviewBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Manager\ManagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Manager\ManagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\WINDOWS\SYSTEM32\f3PSSavr.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Maps\MapsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Maps\MapsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3SCRCTR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Movies\MoviesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Movies\MoviesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3CJPEG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Reference\ReferenceOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Reference\ReferenceOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3RESTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3WALLPP.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\bin\Starware.dll (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\SearchMatch\SearchMatchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\SearchMatch\SearchMatchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\NPMYWEBS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Toolbar\TBProductsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Toolbar\TBProductsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Layouts\ToolbarLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache006C13F (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Manager\ManagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache00CCA79.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Maps\MapsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\TravelSearch\TravelSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\TravelSearch\TravelSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3SKIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Weather\AlertArchive.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Weather\WeatherOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\Weather\WeatherOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\MWSOEPLG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Weather\WeatherOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\maps.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\setup_en[1].exe (Rogue.Installer) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\BrowserSearch\BrowserSearch.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3BKGERR.JPG (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Game\CHECKERS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3PSSAVR.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3REPROX.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Movies\MoviesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3SCHMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3SPACER.WMV (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\MSNBackgrounds074B707.jpeg (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\F3WPHOOK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3NTSTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\M3PLUGIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Delete on reboot. C:\Programfiler\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\SimpleUpdateConfig.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\1.bin\MWSOESTB.DLL (Adware.MyWebSearch) -> Delete on reboot. C:\Documents and Settings\Alicia\Programdata\Starware\Games\GamesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\TimerManagerConfig.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache003E8FA (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0040319 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Weather\WeatherOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\BrowserSearch\BrowserSearch.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache006D275 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\U0017DFF0.exe (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Configurator\ConfiguratorOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache00CCC2F.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\FindItHot.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache018F1DD.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache018F7B9.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\Highlight.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0227AC8.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0227CBC.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\highlightxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0351DF6 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache05CC6CB (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\SmileyCentralBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache0CE8E99 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Cache18D7515 (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\ReferenceHot.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\referencehotxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\referencexp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Maps\MapsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\weatherhotxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Game\REVERSI.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchMatch\SearchMatchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\contexts\error.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\contexts\Related.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\BrowserSearch\BrowserSearch.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Toolbar\TBProductsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\images\walert.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Settings\prevcfg.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\MyWebSearch\bar\Settings\settings.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\ProductMessagingConfig.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Games\GamesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\TravelSearch\TravelSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Layouts\PreferencesLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\PopSwatr\History\allowed (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\PopSwatr\History\notallow (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Layouts\ToolbarLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Toolbar\TBProductsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\ScreenSaver\Images1310832.urr (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Manager\ManagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\CursorManiaBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\FunBuddyIconBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MyFunCardsIMBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MySignatureInsertBtn-new.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MySignatureInsertBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MySignaturePreviewBtn-new.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Layouts\PreferencesLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\FunWebProducts\Shared\Cache\MyStationeryBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Weather\WeatherOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\brand.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\StarwareConfig.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\StarwareUninstall.exe (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Maps\MapsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Programfiler\Starware\icons\star_16.ico (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\weatherxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\SearchMatch\SearchMatchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\BrowserSearch\BrowserSearch.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\contexts\Travel.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Configurator\ConfiguratorOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Configurator\ConfiguratorOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\images\walertXP.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\SimpleUpdate\ProductMessagingConfig.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Weather\AlertArchive.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Movies\MoviesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchAssistPlus\SearchAssistPlusOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\TravelSearch\TravelSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Layouts\PreferencesLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Weather\AlertArchive.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\BrowserSearch\BrowserSearch.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Weather\WeatherOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Configurator\ConfiguratorOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Veronica\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\FindIt.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Maps\MapsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\findithotxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\Weather.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Movies\MoviesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Movies\MoviesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Reference\ReferenceOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Reference\ReferenceOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\logo.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\logoxp.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Layouts\ToolbarLayout.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Tem835.tmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\TemBAA.tmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Manager\ManagerOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Configurator\ConfiguratorOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Configurator\ConfiguratorOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\ErrorSearch\ErrorSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Reference\ReferenceOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Reference\ReferenceOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\Toolbar\TBProductsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\RelatedSearch\RelatedSearchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Alicia\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Manager\ManagerOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\HighlightHot.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchMatch\SearchMatchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\finditxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Toolbar\TBProductsOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Toolbar\TBProductsOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Games\GamesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\SearchMatch\SearchMatchOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Weather\AlertArchive.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\Reference.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Layouts\ToolbarLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\maps_over.bmp (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarLogo\ToolbarLogoOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\ToolbarSearch\ToolbarSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Programdata\Starware\buttons\highlighthotxp.png (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\BrowserSearch\BrowserSearch.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\TravelSearch\TravelSearchOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Layouts\PreferencesLayout.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Kristoffer\Programdata\Starware\Games\GamesOptions.xml (Adware.Starware) -> Quarantined and deleted successfully. C:\Documents and Settings\Josefin\Programdata\Starware\Games\GamesOptions.xml.backup (Adware.Starware) -> Quarantined and deleted successfully. HJT] Klikk for å se/fjerne innholdet nedenfor Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 16:03:14, on 01.03.2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16791) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\WINDOWS\Explorer.EXE C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE C:\Programfiler\D-Link\Bluetooth-programvare\bin\btwdins.exe C:\Programfiler\F-Secure\Anti-Virus\fsgk32st.exe C:\Programfiler\F-Secure\Anti-Virus\FSGK32.EXE C:\Programfiler\Java\jre6\bin\jqs.exe C:\Programfiler\F-Secure\Anti-Virus\fssm32.exe C:\Programfiler\Fellesfiler\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\F-Secure\BackWeb\7681197\Program\BackWeb-7681197.exe C:\Programfiler\Eicon\Diva\DiTask.exe C:\Programfiler\Eicon\Diva\Divamon.exe C:\Programfiler\Eicon\Diva\watch.exe C:\Programfiler\F-Secure\Common\FSMA32.EXE C:\Programfiler\Eicon\Diva\cgserver.exe C:\WINDOWS\System32\DSentry.exe C:\Programfiler\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe C:\Programfiler\Eicon\Diva\diinfo.exe C:\Programfiler\F-Secure\Common\FSMB32.EXE C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE C:\Programfiler\F-Secure\Common\FCH32.EXE C:\Programfiler\F-Secure\Common\FSM32.EXE C:\Programfiler\QuickTime\qttask.exe C:\Programfiler\F-Secure\Common\FAMEH32.EXE C:\WINDOWS\System32\LVCOMSX.EXE C:\Programfiler\Logitech\Video\LogiTray.exe C:\Programfiler\NETGEAR\WG311TSU\Utility\Gear311T.exe C:\Programfiler\HP\HP Software Update\HPWuSchd2.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\Programfiler\Java\jre6\bin\jusched.exe C:\WINDOWS\SYSTEM32\tbctray.exe C:\PROGRA~1\SYSTEM~1\soap.exe C:\Programfiler\Messenger\msmsgs.exe C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\Logitech\VideoCall\VideoCall.exe C:\Programfiler\Skype\Phone\Skype.exe C:\Garmin\gStart.exe C:\Programfiler\F-Secure\Common\FNRB32.EXE C:\Programfiler\F-Secure\Common\FIH32.EXE C:\Programfiler\F-Secure\Anti-Virus\fsav32.exe C:\Programfiler\D-Link\Bluetooth-programvare\BTTray.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\HP\Digital Imaging\bin\hpqtra08.exe C:\Programfiler\CASIO\Photo Loader\Plauto.exe C:\Programfiler\Logitech\Video\FxSvr2.exe C:\Programfiler\HP\Digital Imaging\bin\hpqSTE08.exe C:\Programfiler\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/no/nor/gen/default.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ycomp/def.../search/ie.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/def...//www.yahoo.com R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger R3 - URLSearchHook: {1A03F196-9617-4CA0-842B-A83CEECB022B} - - (no file) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre6\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programfiler\Fellesfiler\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programfiler\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\Windows Live Toolbar\msntb.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programfiler\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programfiler\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\Windows Live Toolbar\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Programfiler\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [DiTask.exe] "C:\Programfiler\Eicon\Diva\DiTask.exe" O4 - HKLM\..\Run: [Divamon.exe] "C:\Programfiler\Eicon\Diva\Divamon.exe" O4 - HKLM\..\Run: [Eicon TechnologyLAN_DAEMON] "C:\Programfiler\Eicon\Diva\watch.exe" O4 - HKLM\..\Run: [CGServer] "C:\Programfiler\Eicon\Diva\cgserver.exe" O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Programfiler\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" O4 - HKLM\..\Run: [zBrowser Launcher] C:\Programfiler\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Programfiler\F-Secure\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iCQ Net] C:\WINDOWS\winlogon.exe -stealth O4 - HKLM\..\Run: [avserve2.exe] C:\WINDOWS\avserve2.exe O4 - HKLM\..\Run: [skynetave.exe] C:\WINDOWS\skynetave.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Programfiler\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Programfiler\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [AS00_Gear311T] C:\Programfiler\NETGEAR\WG311TSU\Utility\Gear311T.exe -hide O4 - HKLM\..\Run: [HP Software Update] C:\Programfiler\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [TraySantaCruz] C:\WINDOWS\SYSTEM32\tbctray.exe O4 - HKCU\..\Run: [system Soap Pro] C:\PROGRA~1\SYSTEM~1\soap.exe min O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [LDM] C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [LogitechSoftwareUpdate] C:\Programfiler\Logitech\Video\ManifestEngine.exe boot O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [VideoCall] "C:\Programfiler\Logitech\VideoCall\VideoCall.exe" -minimized O4 - HKCU\..\Run: [skype] "C:\Programfiler\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [gStart] C:\Garmin\gStart.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Programfiler\MyWebSearch\bar\1.bin\MWSOEMON.EXE O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programfiler\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Programfiler\MyWebSearch\bar\1.bin\MWSOEMON.EXE O4 - Global Startup: Photo Loader supervisory.lnk = C:\Programfiler\CASIO\Photo Loader\Plauto.exe O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html...NO_ZCxdm482YYNO O8 - Extra context menu item: &Windows Live Search - res://C:\Programfiler\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Send til &Bluetooth - C:\Programfiler\D-Link\Bluetooth-programvare\btsendto_ie_ctx.htm O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Programfiler\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/229?41e6c77fb0d04f58bd68b43c9ffa2891 O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Programfiler\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/230?41e6c77fb0d04f58bd68b43c9ffa2891 O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programfiler\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programfiler\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programfiler\D-Link\Bluetooth-programvare\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programfiler\D-Link\Bluetooth-programvare\btsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O12 - Plugin for .spop: C:\Programfiler\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/Facebo...toUploader3.cab O16 - DPF: {5CD4310E-88FB-43C1-BE24-5F3FA9C5C9D1} (KooPlayer Control) - http://www.tvlution.com/KooPlayer.ocx O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1098552997250 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {CA034DCC-A580-4333-B52F-15F98C42E04C} (Downloader Class) - https://www.stopzilla.com/_download/Auto_In...ller/dwnldr.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O23 - Service: F-Secure BackWeb (BackWeb Client - 7681197) - Unknown owner - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programfiler\D-Link\Bluetooth-programvare\bin\btwdins.exe O23 - Service: F-Secure BackWeb LAN Access - Unknown owner - C:\Programfiler\F-Secure\BackWeb\7681197\Program\fsbwlan.exe O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Programfiler\F-Secure\Anti-Virus\fsgk32st.exe O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Programfiler\F-Secure\Common\FNRB32.EXE O23 - Service: F-Secure Authentication Agent (FSAA) - F-Secure Corporation. All Rights Reserved. - C:\Programfiler\F-Secure\Common\FSAA.EXE O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Programfiler\F-Secure\Common\FSMA32.EXE O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Programfiler\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programfiler\Java\jre6\bin\jqs.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe -- End of file - 14902 bytes Combofix Klikk for å se/fjerne innholdet nedenfor ComboFix 09-02-28.01 - Kristoffer 2009-03-01 17:00:40.2 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.3.1252.47.1044.18.511.193 [GMT 1:00] Kjører fra: c:\documents and settings\Kristoffer\Skrivebord\ComboFix.exe * Resident AV is active . ((((((((((((((((((((((((((((((((((((((( Andre slettinger ))))))))))))))))))))))))))))))))))))))))))))))))) . . ---- Forrige skanning ------- . c:\windows\IE4 Error Log.txt . ((((((((((((((((((((((((((( Filer Opprettet Fra 2009-02-01 til 2009-03-01 ))))))))))))))))))))))))))))))))) . 2009-03-01 16:02 . 2009-03-01 16:02 <DIR> d-------- c:\programfiler\Trend Micro 2009-03-01 12:58 . 2008-04-13 19:45 10,368 --a------ c:\windows\SYSTEM32\DRIVERS\hidusb.sys 2009-03-01 12:58 . 2008-04-13 19:45 10,368 --a------ c:\windows\SYSTEM32\DLLCACHE\hidusb.sys 2009-02-28 18:54 . 2009-02-28 18:54 <DIR> d-------- c:\documents and settings\Kristoffer\Programdata\Malwarebytes 2009-02-28 18:53 . 2009-02-28 18:55 <DIR> d-------- c:\programfiler\Malwarebytes' Anti-Malware 2009-02-28 18:53 . 2009-02-28 18:53 <DIR> d-------- c:\documents and settings\All Users\Programdata\Malwarebytes 2009-02-28 18:53 . 2009-02-11 10:19 38,496 --a------ c:\windows\SYSTEM32\DRIVERS\mbamswissarmy.sys 2009-02-28 18:53 . 2009-02-11 10:19 15,504 --a------ c:\windows\SYSTEM32\DRIVERS\mbam.sys . (((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-03-01 16:11 --------- d-----w c:\documents and settings\Kristoffer\Programdata\Skype 2009-01-17 14:03 --------- d-----w c:\programfiler\Google 2009-01-16 20:31 3,594,752 ------w c:\windows\SYSTEM32\DLLCACHE\mshtml.dll 2009-01-16 09:06 410,984 ----a-w c:\windows\SYSTEM32\deploytk.dll 2009-01-16 09:05 --------- d-----w c:\programfiler\Java 2008-12-19 09:13 70,656 ------w c:\windows\SYSTEM32\DLLCACHE\ie4uinit.exe 2008-12-19 09:10 13,824 ------w c:\windows\SYSTEM32\DLLCACHE\ieudinit.exe 2008-12-19 05:25 634,024 ------w c:\windows\SYSTEM32\DLLCACHE\iexplore.exe 2008-12-19 05:23 161,792 ------w c:\windows\SYSTEM32\DLLCACHE\ieakui.dll 2008-12-11 10:57 333,952 ------w c:\windows\SYSTEM32\DLLCACHE\srv.sys 2006-07-11 18:33 45,416 -c--a-w c:\documents and settings\Kristoffer\Programdata\GDIPFONTCACHEV1.DAT 2006-06-01 05:36 45,416 -c--a-w c:\documents and settings\Alicia\Programdata\GDIPFONTCACHEV1.DAT 1998-10-14 09:19 10,000 -c--a-w c:\windows\INF\unregpn.exe 2008-11-21 17:59 32,768 --sha-w c:\windows\SYSTEM32\CONFIG\systemprofile\Lokale innstillinger\Logg\History.IE5\MSHist012008112120081122\index.dat . (((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret ))))))))))))))))))))))))))))))))))))))))))))) . . *Merk* tomme oppføringer & gyldige standardoppføringer vises ikke REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "System Soap Pro"="c:\progra~1\SYSTEM~1\soap.exe" [2003-08-21 777728] "MSMSGS"="c:\programfiler\Messenger\msmsgs.exe" [2008-04-14 1695232] "LDM"="c:\programfiler\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" [2007-02-16 67128] "LogitechSoftwareUpdate"="c:\programfiler\Logitech\Video\ManifestEngine.exe" [2004-10-08 196608] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] "VideoCall"="c:\programfiler\Logitech\VideoCall\VideoCall.exe" [2004-11-12 65602] "Skype"="c:\programfiler\Skype\Phone\Skype.exe" [2006-07-21 20036648] "gStart"="c:\garmin\gStart.exe" [2005-01-20 1896448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ATIPTA"="c:\programfiler\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2002-08-14 290816] "DiTask.exe"="c:\programfiler\Eicon\Diva\DiTask.exe" [2002-04-10 143360] "Divamon.exe"="c:\programfiler\Eicon\Diva\Divamon.exe" [2002-04-10 32768] "Eicon TechnologyLAN_DAEMON"="c:\programfiler\Eicon\Diva\watch.exe" [2002-04-10 192512] "CGServer"="c:\programfiler\Eicon\Diva\cgserver.exe" [2002-04-10 40960] "DVDSentry"="c:\windows\System32\DSentry.exe" [2002-08-14 28672] "AdaptecDirectCD"="c:\programfiler\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" [2002-04-10 679936] "zBrowser Launcher"="c:\programfiler\Logitech\iTouch\iTouch.exe" [2002-07-22 577602] "EM_EXEC"="c:\progra~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE" [2002-07-09 28672] "F-Secure Manager"="c:\programfiler\F-Secure\Common\FSM32.EXE" [2002-06-06 106571] "QuickTime Task"="c:\programfiler\QuickTime\qttask.exe" [2007-02-16 282624] "LVCOMSX"="c:\windows\System32\LVCOMSX.EXE" [2004-10-08 221184] "LogitechVideoRepair"="c:\programfiler\Logitech\Video\ISStart.exe" [2004-10-08 458752] "LogitechVideoTray"="c:\programfiler\Logitech\Video\LogiTray.exe" [2004-10-08 217088] "AS00_Gear311T"="c:\programfiler\NETGEAR\WG311TSU\Utility\Gear311T.exe" [2004-05-12 458752] "HP Software Update"="c:\programfiler\HP\HP Software Update\HPWuSchd2.exe" [2005-05-11 49152] "iTunesHelper"="c:\programfiler\iTunes\iTunesHelper.exe" [2007-03-02 257088] "SunJavaUpdateSched"="c:\programfiler\Java\jre6\bin\jusched.exe" [2009-01-16 136600] "TraySantaCruz"="c:\windows\SYSTEM32\tbctray.exe" [2002-04-03 290816] "ATIModeChange"="Ati2mdxx.exe" [2002-08-19 c:\windows\SYSTEM32\Ati2mdxx.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] c:\documents and settings\All Users\Start-meny\Programmer\Oppstart\ BTTray.lnk - c:\programfiler\D-Link\Bluetooth-programvare\BTTray.exe [2005-07-26 577597] HP Digital Imaging Monitor.lnk - c:\programfiler\HP\Digital Imaging\bin\hpqtra08.exe [2005-05-11 282624] Logitech Desktop Messenger.lnk - c:\programfiler\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-02-16 67128] Microsoft Office.lnk - c:\programfiler\Microsoft Office\Office10\OSA.EXE [2001-02-13 83360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.VDOM"= vdowave.drv [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Programfiler\\Eicon\\Diva\\watch.exe"= "c:\\Programfiler\\Logitech\\VideoCall\\VideoCall.exe"= "c:\\Programfiler\\Messenger\\msmsgs.exe"= "c:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\helpctr.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hposid01.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpqCopy.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpfccopy.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"= "c:\\Programfiler\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "c:\\WINDOWS\\SYSTEM32\\LEXPPS.EXE"= "c:\\Programfiler\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"= "c:\\Programfiler\\iTunes\\iTunes.exe"= "c:\\StubInstaller.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Programfiler\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Programfiler\\Windows Live\\Messenger\\livecall.exe"= "c:\\Programfiler\\Skype\\Phone\\Skype.exe"= R0 DiMaint;Eicon Maintenance Driver;c:\windows\SYSTEM32\DRIVERS\DISDN\dimaint.sys [1980-01-01 91408] R2 BackWeb Client - 7681197;F-Secure BackWeb;c:\progra~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE [2003-05-18 16384] R2 DiCapi;Eicon CAPI 2.0 Driver;c:\windows\SYSTEM32\DRIVERS\DISDN\capi202k.sys [1980-01-01 181168] R2 DiPort;Eicon Port Driver;c:\windows\SYSTEM32\DRIVERS\DISDN\diport40.sys [1980-01-01 206976] R2 F-Secure Filter;F-Secure File System Filter;c:\programfiler\F-Secure\Anti-Virus\win2k\FSfilter.sys [2003-05-18 47280] R2 F-Secure Gatekeeper;F-Secure Gatekeeper;c:\programfiler\F-Secure\Anti-Virus\win2k\fsgk.sys [2003-05-18 35152] R2 F-Secure Recognizer;F-Secure File System Recognizer;c:\programfiler\F-Secure\Anti-Virus\win2k\FSrec.sys [2003-05-18 15984] R2 FSpm;F-Secure Policy Manager;c:\programfiler\F-Secure\Common\FSpm.sys [2003-05-18 65328] R3 AWINDIS5;AWINDIS5 Protocol Driver;c:\windows\SYSTEM32\AWINDIS5.SYS [2005-06-23 16194] R3 DiWan;Eicon Driver for all Diva Client cards;c:\windows\SYSTEM32\DRIVERS\DISDN\Diwan.sys [1980-01-01 911920] R3 NETGEAR_WG311T_SERVICE;NETGEAR WG311T Wireless Adapter Service;c:\windows\SYSTEM32\DRIVERS\wg311tn5.sys [2005-06-23 346784] R3 tbcspud;Santa Cruz Driver;c:\windows\SYSTEM32\DRIVERS\tbcspud.sys [1980-01-01 144768] R3 tbcwdm;Santa Cruz WDM Driver;c:\windows\SYSTEM32\DRIVERS\tbcwdm.sys [1980-01-01 545088] S3 LCcfltr;Logitech USB Filter Driver;c:\windows\SYSTEM32\DRIVERS\LCCFLTR.SYS [2003-02-26 13724] S3 vtdg46xx;vtdg46xx;c:\progra~1\TURTLE~1\SANTAC~1\CONTRO~1\vtdg46xx.sys [2003-02-06 19232] . Innholdet i mappen 'Scheduled Tasks' (planlagte oppgaver) 2007-10-01 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\programfiler\Apple Software Update\SoftwareUpdate.exe [2007-01-10 15:42] 2009-03-01 c:\windows\Tasks\Se etter oppdateringer for Windows Live Toolbar.job - c:\programfiler\Windows Live Toolbar\MSNTBUP.EXE [2007-10-19 11:20] . - - - - TOMME PEKERE FJERNET - - - - HKLM-Run-ICQ Net - c:\windows\winlogon.exe HKLM-Run-avserve2.exe - c:\windows\avserve2.exe HKLM-Run-skynetave.exe - c:\windows\skynetave.exe . ------- Tilleggsskanning ------- . uStart Page = hxxp://www.yahoo.com uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 mStart Page = hxxp://www.yahoo.com uInternet Connection Wizard,ShellNext = iexplore uInternet Settings,ProxyOverride = localhost uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com IE: &Search - http://bar.mywebsearch.com/menusearch.html...NO_ZCxdm482YYNO IE: &Windows Live Search - c:\programfiler\Windows Live Toolbar\msntb.dll/search.htm IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000 IE: Send til &Bluetooth - c:\programfiler\D-Link\Bluetooth-programvare\btsendto_ie_ctx.htm IE: Åpne i ny bakgrunnsflik - c:\programfiler\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/229?41e6c77fb0d04f58bd68b43c9ffa2891 IE: Åpne i ny forgrunnsflik - c:\programfiler\Windows Live Toolbar\Components\nb-no\msntabres.dll.mui/230?41e6c77fb0d04f58bd68b43c9ffa2891 Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\programfiler\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab DPF: {5CD4310E-88FB-43C1-BE24-5F3FA9C5C9D1} - hxxp://www.tvlution.com/KooPlayer.ocx DPF: {CA034DCC-A580-4333-B52F-15F98C42E04C} - hxxps://www.stopzilla.com/_download/Auto_Installer/dwnldr.cab . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-03-01 17:11:02 Windows 5.1.2600 Service Pack 3 NTFS skanner skjulte prosesser ... skanner skjulte autostart-oppføringer ... skanner skjulte filer ... ************************************************************************** . Tidspunkt ferdig: 2009-03-01 17:17:09 ComboFix-quarantined-files.txt 2009-03-01 16:15:21 Pre-Run: 65,990,983,680 byte ledig Post-Run: 65,974,534,144 byte ledig 174 --- E O F --- 2009-03-01 12:31:04 Håper noen tar seg tid til å se på de Lenke til kommentar
norbat Skrevet 1. mars 2009 Del Skrevet 1. mars 2009 Last ned CCleaner. Start programmet. Gå til 'Valg'->'Avansert'. Fjern avkryssingen framfor: "bare slett midlertidige filer......." Klikk på 'Renser' og deretter 'Kjør CCleaner'. Kjør også noen runder med 'Register'til det ikke finner flere feil. Si ja til å lage backup før du renser registeret. Fortell hvordan pc kjører. Lenke til kommentar
Enya Skrevet 1. mars 2009 Forfatter Del Skrevet 1. mars 2009 Har kjørt CCleaner nå. Var vel rundt 600 feil i registeret som ble fikset, men maskinen kjører fremdeles seint. Er loggene rene? Lenke til kommentar
norbat Skrevet 1. mars 2009 Del Skrevet 1. mars 2009 Loggene ser greie ut. Ting du kan prøve/sjekk: Sjekk om DMA er aktivert for harddisken: Kontrollpanel->System->Maskinvare->Enhetsbehandling Klikk på + tegnet framfor IDE ATA/ATAPI-kontrollere Høyreklikk på Primær IDE-kanal og velg Egenskaper Velg arkfanen Avanserte innstillinger Sjekk hvilken overføringsmodus som er gjeldende. Klikk Start->Kjør skriv: sfc /scannow (mulig du blir bedt om å sette inn xp cd'n) Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå