Gå til innhold

Problemer med pop-ups, winantiviruspro2007


Anbefalte innlegg

Hei. Har problemer med at det kommer pop-ups(?) med tilbud om installering av winantiviruspro2007 samt en del andre.

 

Har gjort det som står i langversjonen. Det har ikke hjulpet å slette alt som AVGas fant. :no: Er det noen som kan hjelpe??

 

Her er mine loggfiler:

 

Klikk for å se/fjerne innholdet nedenfor

---------------------------------------------------------

AVG Anti-Spyware - Scan Report

---------------------------------------------------------

 

+ Created at: 09:34:52 25.02.2007

 

+ Scan result:

 

 

 

C:\Programfiler\Fellesfiler\GMT\gtrawbm.fil -> Adware.Gator : No action taken.

C:\Programfiler\Fellesfiler\aahhafnf\adblfdjptj\nlcnppcnf.exe -> Adware.Gator : No action taken.

C:\Programfiler\Fellesfiler\aahhafnf\lceldled\fjcpplaa.exe -> Adware.Gator : No action taken.

C:\Programfiler\Gulesider Verktøylinje\gulesider.dll -> Adware.Softomate : No action taken.

C:\Downloads\RainbowWebSetup-dm[1].exe -> Adware.Trymedia : No action taken.

HKLM\SOFTWARE\Classes\CLSID\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken.

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken.

HKU\S-1-5-21-3077035326-3450652146-1181993855-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken.

C:\WINDOWS\system32\prflbmsgp.dll -> Downloader.Delf.vt : No action taken.

C:\Documents and Settings\\Programdata\errorsafefreeinstall_no[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken.

C:\Documents and Settings\\Cookies\sigrid@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken.

C:\Documents and Settings\\Cookies\vemund@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken.

C:\Documents and Settings\\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@2o7[1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@2o7[1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@2o7[2].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.71i : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.71i : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Adbrite : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Addynamix : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Addynamix : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Adengage : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@admarketplace[2].txt -> TrackingCookie.Admarketplace : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Adserver : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Adserver : No action taken.

C:\Documents and Settings\Ingar\Cookies\ingar@adtech[2].txt -> TrackingCookie.Adtech : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@adtech[2].txt -> TrackingCookie.Adtech : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@adtech[1].txt -> TrackingCookie.Adtech : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@adtech[3].txt -> TrackingCookie.Adtech : No action taken.

C:\Documents and Settings\Ingar\Cookies\ingar@advertising[2].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[2].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@advertising[1].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@advertising[2].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@advertising[3].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@adviva[2].txt -> TrackingCookie.Adviva : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@atdmt[3].txt -> TrackingCookie.Atdmt : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@bfast[2].txt -> TrackingCookie.Bfast : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@bfast[2].txt -> TrackingCookie.Bfast : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Burstnet : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[3].txt -> TrackingCookie.Casalemedia : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@centrport[1].txt -> TrackingCookie.Centrport : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@centrport[1].txt -> TrackingCookie.Centrport : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Clickzs : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@com[2].txt -> TrackingCookie.Com : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Comclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Comclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Counted : No action taken.

C:\Documents and Settings\Ingar\Cookies\ingar@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[3].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@estat[1].txt -> TrackingCookie.Estat : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Etracker : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@euniverseads[1].txt -> TrackingCookie.Euniverseads : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Euroclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Euroclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@fastclick[1].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[1].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[4].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Gator : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Goclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@goclick[2].txt -> TrackingCookie.Goclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Goldenpalace : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Grandonline : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@grandonline[2].txt -> TrackingCookie.Grandonline : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@hotlog[2].txt -> TrackingCookie.Hotlog : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Information : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@linksynergy[2].txt -> TrackingCookie.Linksynergy : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Liveperson : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Liveperson : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Liveperson : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Masterstats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Masterstats : No action taken.

C:\Documents and Settings\Aud\Cookies\aud@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Ingar\Cookies\ingar@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[2].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[3].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Myaffiliateprogram : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Ne : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Onestat : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Onestat : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@overture[2].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@overture[1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@paypopup[1].txt -> TrackingCookie.Paypopup : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Pointroll : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Pointroll : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Quarterserver : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@realmedia[1].txt -> TrackingCookie.Realmedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Realmedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@realmedia[1].txt -> TrackingCookie.Realmedia : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@realmedia[3].txt -> TrackingCookie.Realmedia : No action taken.

C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@revenue[2].txt -> TrackingCookie.Revenue : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@revenue[2].txt -> TrackingCookie.Revenue : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Ru4 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Sexcounter : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Sexcounter : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Sextracker : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@sextracker[1].txt -> TrackingCookie.Sextracker : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Smartadserver : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@spylog[1].txt -> TrackingCookie.Spylog : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tacoda[2].txt -> TrackingCookie.Tacoda : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@targetnet[2].txt -> TrackingCookie.Targetnet : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@targetnet[2].txt -> TrackingCookie.Targetnet : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Tracking101 : No action taken.

C:\Documents and Settings\Ingar\Cookies\ingar@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[4].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@trafficmp[1].txt -> TrackingCookie.Trafficmp : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@trafficmp[2].txt -> TrackingCookie.Trafficmp : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@trafic[2].txt -> TrackingCookie.Trafic : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@trafic[1].txt -> TrackingCookie.Trafic : No action taken.

C:\Documents and Settings\Aud\Cookies\aud@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Valuead : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@web-stat[2].txt -> TrackingCookie.Web-stat : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@web-stat[2].txt -> TrackingCookie.Web-stat : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@webstat[2].txt -> TrackingCookie.Web-stat : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@weborama[1].txt -> TrackingCookie.Weborama : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@weborama[1].txt -> TrackingCookie.Weborama : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Webtrendslive : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Webtrendslive : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt -> TrackingCookie.Webtrendslive : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@zedo[2].txt -> TrackingCookie.Zedo : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Zedo : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@zedo[2].txt -> TrackingCookie.Zedo : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@zedo[3].txt -> TrackingCookie.Zedo : No action taken.

 

 

::Report end

 

Logfile of HijackThis v1.99.1

Scan saved at 09:58:58, on 25.02.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Programfiler\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe

C:\WINDOWS\system32\svchost.exe

C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe

C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe

C:\Apps\Powercinema\PCMService.exe

C:\apps\ABoard\ABoard.exe

C:\apps\ABoard\AOSD.exe

C:\Programfiler\iTunes\iTunesHelper.exe

C:\Programfiler\QuickTime\qttask.exe

C:\Programfiler\Windows Defender\MSASCui.exe

C:\Programfiler\iPod\bin\iPodService.exe

C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe

C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

C:\Programfiler\Google\Google Desktop Search\GoogleDesktopIndex.exe

C:\Programfiler\Google\Google Desktop Search\GoogleDesktopCrawl.exe

C:\Programfiler\Internet Explorer\iexplore.exe

C:\Programfiler\Adobe\Acrobat 7.0\Reader\AcroRd32.exe

C:\DOCUME~1\Aud\LOKALE~1\Temp\Midlertidig mappe 1 for testspyware.zip\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.folkedans.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redi...se=6&key=SEARCH

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.no/0SENBNO/SAOS01?FORM=TOOLBR

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar3.dll

O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll

O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar3.dll

O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32

O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC

O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName

O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe"

O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"

O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe

O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [TkBellExe] "C:\Programfiler\Fellesfiler\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"

O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe

O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [ATICCC] "C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [Windows Defender] "C:\Programfiler\Windows Defender\MSASCui.exe" -hide

O4 - HKLM\..\Run: [parentalcontrol] "C:\Programfiler\parentalcontrol\parentalcontrol.exe" "C:\Programfiler\parentalcontrol\parentalcontrol.dll" "parentalcontrol"

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [Google Desktop Search] "C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe" /startup

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O8 - Extra context menu item: &MSN Search - res://C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll/search.htm

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/229?b5ffb6e619d24c099cc21e1a649ae739

O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/230?b5ffb6e619d24c099cc21e1a649ae739

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O11 - Options group: [iNTERNATIONAL] International*

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm

O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab

O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/f...tup1.0.0.15.cab

O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1120978288453

O16 - DPF: {6E2510E6-BF2D-4C78-9F28-2F5C8760F124} (ERPageAddin Class) - https://joint.prosjekthotell.com/eRoomSetup/client.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab

O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab

O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Music Manager) - http://img.pvw.od2.com/installation/Plugin...nagerPlugin.CAB

O16 - DPF: {DABFA9AD-4E31-43F4-9D60-4CDD20F57F28} (PhotomaxUploader.ActiveXControl) - http://www.photomax.com/web/PhotomaxUploader.CAB

O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab

O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: disk - C:\WINDOWS\system32\diskperff.dll (file missing)

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPodService - Apple Computer, Inc. - C:\Programfiler\iPod\bin\iPodService.exe

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe

 

Lenke til kommentar
Videoannonse
Annonse

et tips: Legg loggfilene i

 [skjul]<skriv loggfilen her>[/skjul]

 

 

Jeg legger inn en hijackthis loggfil jeg også.. Dere vet vel hva som skal være der og ikke..

 

 

SAS

Klikk for å se/fjerne innholdet nedenfor
brukte 41 min på en så liten logg?? SUPERAntiSpyware Scan Log

Generated 02/25/2007 at 09:34 PM

 

Application Version : 3.5.1016

 

Core Rules Database Version : 3189

Trace Rules Database Version: 1199

 

Scan type : Complete Scan

Total Scan Time : 00:41:40

 

Memory items scanned : 521

Memory threats detected : 0

Registry items scanned : 5498

Registry threats detected : 0

File items scanned : 31348

File threats detected : 8

 

Adware.Tracking Cookie

C:\Documents and Settings\Peter\Cookies\peter@tribalfusion[1].txt

C:\Documents and Settings\Peter\Cookies\peter@zedo[1].txt

C:\Documents and Settings\Peter\Cookies\[email protected][1].txt

C:\Documents and Settings\Peter\Cookies\[email protected][2].txt

C:\Documents and Settings\Peter\Cookies\[email protected][1].txt

C:\Documents and Settings\Peter\Cookies\peter@cgi-bin[1].txt

C:\Documents and Settings\Peter\Cookies\peter@doubleclick[1].txt

C:\Documents and Settings\Peter\Cookies\peter@fastclick[2].txt

 

 

 

Hijack this

Klikk for å se/fjerne innholdet nedenfor
Logfile of HijackThis v1.99.1

Scan saved at 20:44:22, on 25.02.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\WgaTray.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Eset\nod32kui.exe

C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe

C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

C:\WINDOWS\CTHELPER.EXE

C:\Program Files\DAEMON Tools\daemon.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\D-Link AirPlus\AirPlus.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Common Files\Teleca Shared\Generic.exe

C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Winrar\WinRAR.exe

C:\DOCUME~1\Peter\LOCALS~1\Temp\Rar$EX00.641\HijackThis.exe

 

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_7

O4 - Startup: PowerReg Scheduler V3.exe

O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?

O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: D-Link AirPlus.lnk = ?

O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Peter\Start Menu\Programs\IMVU\Run IMVU.lnk

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

 

Endret av Petersk91
Lenke til kommentar

Hei, audda.

 

Avinstaller fra legg til/fjern programmer:

MyWebSearch

 

Kjør HJT, sett merke framfor følgende linjer og klikk 'Fix checked':

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/f...tup1.0.0.15.cab

O20 - Winlogon Notify: disk - C:\WINDOWS\system32\diskperff.dll (file missing)

 

Restart i sikker modus (tapp F8 under oppstart, velg sikker modus)

 

 

Kjør AVGas igjen, men nå skal du la programmet fjerne det det finner.

Start AVGas

Klikk Scanner

Velg Settings

Under 'How to act', setter du valget til Delete

 

Restart i normal modus og post en ny HJT-logg sammen med loggen fra AVGas

Lenke til kommentar
et tips: Legg loggfilene i
 [skjul]<skriv loggfilen her>[/skjul]

 

 

Jeg legger inn en hijackthis loggfil jeg også.. Dere vet vel hva som skal være der og ikke..

 

Klikk for å se/fjerne innholdet nedenfor
Logfile of HijackThis v1.99.1

Scan saved at 20:44:22, on 25.02.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\WgaTray.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Eset\nod32kui.exe

C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe

C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

C:\WINDOWS\CTHELPER.EXE

C:\Program Files\DAEMON Tools\daemon.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\D-Link AirPlus\AirPlus.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Common Files\Teleca Shared\Generic.exe

C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Winrar\WinRAR.exe

C:\DOCUME~1\Peter\LOCALS~1\Temp\Rar$EX00.641\HijackThis.exe

 

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_7

O4 - Startup: PowerReg Scheduler V3.exe

O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?

O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: D-Link AirPlus.lnk = ?

O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Peter\Start Menu\Programs\IMVU\Run IMVU.lnk

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset  - C:\Program Files\Eset\nod32krn.exe

 

8024350[/snapback]

 

Kjør HJT, sett merke framfor følgende linje og klikk 'Fix checked':

O4 - Startup: PowerReg Scheduler V3.exe

 

Ut over det er loggen din ren.

 

 

(Egen post: https://www.diskusjon.no/index.php?showtopic=722871 )

Endret av norbat
Lenke til kommentar

Finner ikke Mywebsearch under kontrollpanel /legg til eller fjern filer. Kan det hete noe annet?

 

Men jeg finner den under c:/programfiler. Men er det smart å slette den der?

Hva gjør jeg?

Endret av audda
Lenke til kommentar
Finner ikke Mywebsearch under kontrollpanel /legg til eller fjern filer. Kan det hete noe annet?

 

Men jeg finner den under c:/programfiler. Men er det smart å slette den der?

Hva gjør jeg?

8024707[/snapback]

 

Hvis den ikke ligger i legg til/fjern programmer, sletter du følgende mappe (i bold) fra utforskeren:

 

C:\Programfiler\MyWebSearch

Lenke til kommentar

Da kommer det nye loggfiler her. Når jeg starta opp nå får jeg tilbud om å installere systemdoctor og errorsafe ! Dvs. at jeg fortsatt har et problem.

 

 

Klikk for å se/fjerne innholdet nedenfor

Logfile of HijackThis v1.99.1

Scan saved at 07:17:18, on 26.02.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Programfiler\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe

C:\WINDOWS\system32\svchost.exe

C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe

C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\wuauclt.exe

C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe

C:\Apps\Powercinema\PCMService.exe

C:\apps\ABoard\ABoard.exe

C:\apps\ABoard\AOSD.exe

C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe

C:\Programfiler\iTunes\iTunesHelper.exe

C:\Programfiler\QuickTime\qttask.exe

C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe

C:\Programfiler\iPod\bin\iPodService.exe

C:\Programfiler\Windows Defender\MSASCui.exe

C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe

C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe

C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe

C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe

C:\Programfiler\Internet Explorer\iexplore.exe

C:\Programfiler\Microsoft Office\OFFICE11\OUTLOOK.EXE

C:\Programfiler\Google\Google Desktop Search\GoogleDesktopIndex.exe

C:\Programfiler\Google\Google Desktop Search\GoogleDesktopCrawl.exe

C:\DOCUME~1\Aud\LOKALE~1\Temp\Midlertidig mappe 3 for testspyware.zip\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.folkedans.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redi...se=6&key=SEARCH

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.no/0SENBNO/SAOS01?FORM=TOOLBR

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar3.dll

O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll

O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar3.dll

O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32

O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC

O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName

O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe"

O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"

O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe

O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [TkBellExe] "C:\Programfiler\Fellesfiler\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"

O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe

O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [ATICCC] "C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [Windows Defender] "C:\Programfiler\Windows Defender\MSASCui.exe" -hide

O4 - HKLM\..\Run: [parentalcontrol] "C:\Programfiler\parentalcontrol\parentalcontrol.exe" "C:\Programfiler\parentalcontrol\parentalcontrol.dll" "parentalcontrol"

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [Google Desktop Search] "C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe" /startup

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O8 - Extra context menu item: &MSN Search - res://C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll/search.htm

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/229?b5ffb6e619d24c099cc21e1a649ae739

O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/230?b5ffb6e619d24c099cc21e1a649ae739

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O11 - Options group: [iNTERNATIONAL] International*

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm

O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab

O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1120978288453

O16 - DPF: {6E2510E6-BF2D-4C78-9F28-2F5C8760F124} (ERPageAddin Class) - https://joint.prosjekthotell.com/eRoomSetup/client.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab

O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab

O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Music Manager) - http://img.pvw.od2.com/installation/Plugin...nagerPlugin.CAB

O16 - DPF: {DABFA9AD-4E31-43F4-9D60-4CDD20F57F28} (PhotomaxUploader.ActiveXControl) - http://www.photomax.com/web/PhotomaxUploader.CAB

O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab

O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPodService - Apple Computer, Inc. - C:\Programfiler\iPod\bin\iPodService.exe

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe

 

 

VG Anti-Spyware - Scan Report

---------------------------------------------------------

 

+ Created at: 07:06:06 26.02.2007

 

+ Scan result:

 

 

 

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079041.exe -> Adware.Gator : No action taken.

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079042.exe -> Adware.Gator : No action taken.

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079043.dll -> Adware.Softomate : No action taken.

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079040.exe -> Adware.Trymedia : No action taken.

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079039.dll -> Downloader.Delf.vt : No action taken.

C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079044.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@adtech[1].txt -> TrackingCookie.Adtech : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[1].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@advertising[2].txt -> TrackingCookie.Advertising : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : No action taken.

C:\Documents and Settings\Aud\Cookies\aud@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Sigrid\Cookies\sigrid@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.

C:\Documents and Settings\Aud\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.

C:\Documents and Settings\Aud\Cookies\aud@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.

C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken.

C:\Documents and Settings\Aud\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.

 

 

::Report end

Lenke til kommentar
Gjest medlem-105082

Kan du være så snill å sette alle logger i spoiler? Med spoiler blir det jo mer ryddig + at man ikke trenger å bruke hele dagen på å bla ned til bunnen.

Lenke til kommentar

Hei, audda

 

Hent SAS, installer og oppdater.

 

Hent CCleaner, installer.

 

Kjør HJT og sett merke framfor følgende linjer og klikk 'Fix checked':

O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm

 

Restart i sikker modus (tapp F8 under oppstart)

 

Kjør en rens med CCleaner + klikk på saker og slett de 'feil' som finnes (du trenger ikke å ta backup av registeret når du får mulighet for det). Kjør 'Saker' helt til det ikke finnes flere 'feil' igjen.

 

Kjør deretter en 'Complete scan' med SAS

 

Restart i normal

 

Post loggen fra SAS (Preferences->statistics/logs). Trenger ikke logg fra HJT.

Endret av norbat
Lenke til kommentar
Kan du være så snill å sette alle logger i spoiler? Med spoiler blir det jo mer ryddig + at man ikke trenger å bruke hele dagen på å bla ned til bunnen.

8029811[/snapback]

8031378[/snapback]

 

Det Albert_E mener er at når du poster en logg, kopierer du loggen, velger SKJUL-knappen, og limer inn loggen.

Lenke til kommentar

Kjære norbat. Oppdrag utført og her er SAS-logg. (Error safe og em.gad popper opp nå også :dontgetit: ).

 

Klikk for å se/fjerne innholdet nedenfor
UPERAntiSpyware Scan Log

Generated 02/26/2007 at 08:17 PM

 

Application Version : 3.5.1016

 

Core Rules Database Version : 3189

Trace Rules Database Version: 1199

 

Scan type : Complete Scan

Total Scan Time : 00:51:34

 

Memory items scanned : 199

Memory threats detected : 0

Registry items scanned : 5626

Registry threats detected : 0

File items scanned : 40419

File threats detected : 238

 

Adware.Tracking Cookie

C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][3].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt

C:\Documents and Settings\Ingar\Cookies\ingar@imrworldwide[1].txt

C:\Documents and Settings\Ingar\Cookies\ingar@indexstats[2].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt

C:\Documents and Settings\Ingar\Cookies\ingar@winantivirus[1].txt

C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@accelerator-media[2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@adcentriconline[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@adserver[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@askiacsearchmedia[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@atdmt[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@atwola[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@azjmp[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@banner[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@belnk[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@cassava[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@clicksor[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@clicktorrent[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@focalex[2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][3].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@indexstats[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@indextools[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@inteletrack[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@interclick[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@kanoodle[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@maxserving[2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@mywebsearch[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@partypoker[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@qnsr[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@revsci[2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@roiservice[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@smileycentral[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@tripod[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@winantivirus[1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@xiti[1].txt

C:\Documents and Settings\Sigrid\Cookies\sigrid@yourmedia[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@accelerator-media[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@adecn[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@adlegend[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@adrevolver[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@adserver[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@adultswim[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@atwola[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@azjmp[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@belnk[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@bravenetmedianetwork[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@cassava[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt

C:\Documents and Settings\Vemund\Cookies\vemund@clicksor[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@clicksor[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@clicktorrent[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@dealtime[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@gamesbannernetwork[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][5].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][7].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@hotbar[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@imrworldwide[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@imrworldwide[3].txt

C:\Documents and Settings\Vemund\Cookies\vemund@indexstats[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@indextools[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@interclick[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@maxserving[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@minitrackmania[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[4].txt

C:\Documents and Settings\Vemund\Cookies\vemund@netmediagroup[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@partypoker[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@popularscreensavers[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@revsci[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@roiservice[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@smileycentral[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@stats[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@stats[3].txt

C:\Documents and Settings\Vemund\Cookies\vemund@superstats[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@toplist[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@tripod[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@upspiral[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@upspiral[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[3].txt

C:\Documents and Settings\Vemund\Cookies\vemund@winfixer[1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][5].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][6].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][7].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@xiti[1].txt

C:\Documents and Settings\Vemund\Cookies\vemund@xiti[2].txt

C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt

C:\Documents and Settings\Vemund\Cookies\vemund@yourmedia[1].txt

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
  • Hvem er aktive   0 medlemmer

    • Ingen innloggede medlemmer aktive
×
×
  • Opprett ny...