audda Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 Hei. Har problemer med at det kommer pop-ups(?) med tilbud om installering av winantiviruspro2007 samt en del andre. Har gjort det som står i langversjonen. Det har ikke hjulpet å slette alt som AVGas fant. Er det noen som kan hjelpe?? Her er mine loggfiler: Klikk for å se/fjerne innholdet nedenfor --------------------------------------------------------- AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 09:34:52 25.02.2007 + Scan result: C:\Programfiler\Fellesfiler\GMT\gtrawbm.fil -> Adware.Gator : No action taken. C:\Programfiler\Fellesfiler\aahhafnf\adblfdjptj\nlcnppcnf.exe -> Adware.Gator : No action taken. C:\Programfiler\Fellesfiler\aahhafnf\lceldled\fjcpplaa.exe -> Adware.Gator : No action taken. C:\Programfiler\Gulesider Verktøylinje\gulesider.dll -> Adware.Softomate : No action taken. C:\Downloads\RainbowWebSetup-dm[1].exe -> Adware.Trymedia : No action taken. HKLM\SOFTWARE\Classes\CLSID\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken. HKU\S-1-5-21-3077035326-3450652146-1181993855-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A82BE883-EE51-4FAB-85B4-9432C6056673} -> Adware.VipSearcher : No action taken. C:\WINDOWS\system32\prflbmsgp.dll -> Downloader.Delf.vt : No action taken. C:\Documents and Settings\\Programdata\errorsafefreeinstall_no[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken. C:\Documents and Settings\\Cookies\sigrid@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken. C:\Documents and Settings\\Cookies\vemund@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken. C:\Documents and Settings\\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@2o7[1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@2o7[1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@2o7[2].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.71i : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.71i : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Adbrite : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Addynamix : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Addynamix : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Adengage : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@admarketplace[2].txt -> TrackingCookie.Admarketplace : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Adserver : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Adserver : No action taken. C:\Documents and Settings\Ingar\Cookies\ingar@adtech[2].txt -> TrackingCookie.Adtech : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@adtech[2].txt -> TrackingCookie.Adtech : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@adtech[1].txt -> TrackingCookie.Adtech : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@adtech[3].txt -> TrackingCookie.Adtech : No action taken. C:\Documents and Settings\Ingar\Cookies\ingar@advertising[2].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[2].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@advertising[1].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@advertising[2].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@advertising[3].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@adviva[2].txt -> TrackingCookie.Adviva : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@atdmt[3].txt -> TrackingCookie.Atdmt : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@bfast[2].txt -> TrackingCookie.Bfast : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@bfast[2].txt -> TrackingCookie.Bfast : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Burstnet : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[3].txt -> TrackingCookie.Casalemedia : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@centrport[1].txt -> TrackingCookie.Centrport : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@centrport[1].txt -> TrackingCookie.Centrport : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Clickzs : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@com[2].txt -> TrackingCookie.Com : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Comclick : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Comclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Counted : No action taken. C:\Documents and Settings\Ingar\Cookies\ingar@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@doubleclick[3].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Esomniture : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@estat[1].txt -> TrackingCookie.Estat : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Etracker : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@euniverseads[1].txt -> TrackingCookie.Euniverseads : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Euroclick : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Euroclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@fastclick[1].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[1].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[4].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Gator : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Goclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@goclick[2].txt -> TrackingCookie.Goclick : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Goldenpalace : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Grandonline : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@grandonline[2].txt -> TrackingCookie.Grandonline : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@hotlog[2].txt -> TrackingCookie.Hotlog : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Information : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@linksynergy[2].txt -> TrackingCookie.Linksynergy : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Liveperson : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Liveperson : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Liveperson : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Masterstats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Masterstats : No action taken. C:\Documents and Settings\Aud\Cookies\aud@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Ingar\Cookies\ingar@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[2].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[3].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Myaffiliateprogram : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Ne : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Onestat : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Onestat : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@overture[2].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@overture[1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@paypopup[1].txt -> TrackingCookie.Paypopup : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Pointroll : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Pointroll : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Quarterserver : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@questionmarket[2].txt -> TrackingCookie.Questionmarket : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@realmedia[1].txt -> TrackingCookie.Realmedia : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Realmedia : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@realmedia[1].txt -> TrackingCookie.Realmedia : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@realmedia[3].txt -> TrackingCookie.Realmedia : No action taken. C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@revenue[2].txt -> TrackingCookie.Revenue : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@revenue[2].txt -> TrackingCookie.Revenue : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Ru4 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Sexcounter : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Sexcounter : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Sextracker : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@sextracker[1].txt -> TrackingCookie.Sextracker : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Smartadserver : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@spylog[1].txt -> TrackingCookie.Spylog : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tacoda[2].txt -> TrackingCookie.Tacoda : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@targetnet[2].txt -> TrackingCookie.Targetnet : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@targetnet[2].txt -> TrackingCookie.Targetnet : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Tracking101 : No action taken. C:\Documents and Settings\Ingar\Cookies\ingar@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[4].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@trafficmp[1].txt -> TrackingCookie.Trafficmp : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@trafficmp[2].txt -> TrackingCookie.Trafficmp : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@trafic[2].txt -> TrackingCookie.Trafic : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@trafic[1].txt -> TrackingCookie.Trafic : No action taken. C:\Documents and Settings\Aud\Cookies\aud@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Valuead : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@web-stat[2].txt -> TrackingCookie.Web-stat : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@web-stat[2].txt -> TrackingCookie.Web-stat : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@webstat[2].txt -> TrackingCookie.Web-stat : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@weborama[1].txt -> TrackingCookie.Weborama : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@weborama[1].txt -> TrackingCookie.Weborama : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Webtrendslive : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt -> TrackingCookie.Webtrendslive : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt -> TrackingCookie.Webtrendslive : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@zedo[2].txt -> TrackingCookie.Zedo : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Zedo : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@zedo[2].txt -> TrackingCookie.Zedo : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@zedo[3].txt -> TrackingCookie.Zedo : No action taken. ::Report end Logfile of HijackThis v1.99.1 Scan saved at 09:58:58, on 25.02.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Programfiler\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\WINDOWS\system32\svchost.exe C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe C:\Apps\Powercinema\PCMService.exe C:\apps\ABoard\ABoard.exe C:\apps\ABoard\AOSD.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\Programfiler\QuickTime\qttask.exe C:\Programfiler\Windows Defender\MSASCui.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Programfiler\Google\Google Desktop Search\GoogleDesktopIndex.exe C:\Programfiler\Google\Google Desktop Search\GoogleDesktopCrawl.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Adobe\Acrobat 7.0\Reader\AcroRd32.exe C:\DOCUME~1\Aud\LOKALE~1\Temp\Midlertidig mappe 1 for testspyware.zip\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.folkedans.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redi...se=6&key=SEARCH R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.no/0SENBNO/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar3.dll O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar3.dll O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe" O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [TkBellExe] "C:\Programfiler\Fellesfiler\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [ATICCC] "C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [Windows Defender] "C:\Programfiler\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [parentalcontrol] "C:\Programfiler\parentalcontrol\parentalcontrol.exe" "C:\Programfiler\parentalcontrol\parentalcontrol.dll" "parentalcontrol" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [Google Desktop Search] "C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &MSN Search - res://C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll/search.htm O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/229?b5ffb6e619d24c099cc21e1a649ae739 O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/230?b5ffb6e619d24c099cc21e1a649ae739 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O11 - Options group: [iNTERNATIONAL] International* O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/f...tup1.0.0.15.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1120978288453 O16 - DPF: {6E2510E6-BF2D-4C78-9F28-2F5C8760F124} (ERPageAddin Class) - https://joint.prosjekthotell.com/eRoomSetup/client.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Music Manager) - http://img.pvw.od2.com/installation/Plugin...nagerPlugin.CAB O16 - DPF: {DABFA9AD-4E31-43F4-9D60-4CDD20F57F28} (PhotomaxUploader.ActiveXControl) - http://www.photomax.com/web/PhotomaxUploader.CAB O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: disk - C:\WINDOWS\system32\diskperff.dll (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Programfiler\iPod\bin\iPodService.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe Lenke til kommentar
Piratpjokken Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 (endret) et tips: Legg loggfilene i [skjul]<skriv loggfilen her>[/skjul] Jeg legger inn en hijackthis loggfil jeg også.. Dere vet vel hva som skal være der og ikke.. SAS Klikk for å se/fjerne innholdet nedenfor brukte 41 min på en så liten logg?? SUPERAntiSpyware Scan LogGenerated 02/25/2007 at 09:34 PM Application Version : 3.5.1016 Core Rules Database Version : 3189 Trace Rules Database Version: 1199 Scan type : Complete Scan Total Scan Time : 00:41:40 Memory items scanned : 521 Memory threats detected : 0 Registry items scanned : 5498 Registry threats detected : 0 File items scanned : 31348 File threats detected : 8 Adware.Tracking Cookie C:\Documents and Settings\Peter\Cookies\peter@tribalfusion[1].txt C:\Documents and Settings\Peter\Cookies\peter@zedo[1].txt C:\Documents and Settings\Peter\Cookies\[email protected][1].txt C:\Documents and Settings\Peter\Cookies\[email protected][2].txt C:\Documents and Settings\Peter\Cookies\[email protected][1].txt C:\Documents and Settings\Peter\Cookies\peter@cgi-bin[1].txt C:\Documents and Settings\Peter\Cookies\peter@doubleclick[1].txt C:\Documents and Settings\Peter\Cookies\peter@fastclick[2].txt Hijack this Klikk for å se/fjerne innholdet nedenfor Logfile of HijackThis v1.99.1Scan saved at 20:44:22, on 25.02.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Eset\nod32krn.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\WgaTray.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Eset\nod32kui.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\CTHELPER.EXE C:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\D-Link AirPlus\AirPlus.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Common Files\Teleca Shared\Generic.exe C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Winrar\WinRAR.exe C:\DOCUME~1\Peter\LOCALS~1\Temp\Rar$EX00.641\HijackThis.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_7 O4 - Startup: PowerReg Scheduler V3.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: D-Link AirPlus.lnk = ? O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Peter\Start Menu\Programs\IMVU\Run IMVU.lnk O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe Endret 25. februar 2007 av Petersk91 Lenke til kommentar
norbat Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 Hei, audda. Avinstaller fra legg til/fjern programmer: MyWebSearch Kjør HJT, sett merke framfor følgende linjer og klikk 'Fix checked': R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programfiler\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/f...tup1.0.0.15.cab O20 - Winlogon Notify: disk - C:\WINDOWS\system32\diskperff.dll (file missing) Restart i sikker modus (tapp F8 under oppstart, velg sikker modus) Kjør AVGas igjen, men nå skal du la programmet fjerne det det finner. Start AVGas Klikk Scanner Velg Settings Under 'How to act', setter du valget til Delete Restart i normal modus og post en ny HJT-logg sammen med loggen fra AVGas Lenke til kommentar
norbat Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 (endret) et tips: Legg loggfilene i [skjul]<skriv loggfilen her>[/skjul] Jeg legger inn en hijackthis loggfil jeg også.. Dere vet vel hva som skal være der og ikke.. Klikk for å se/fjerne innholdet nedenfor Logfile of HijackThis v1.99.1Scan saved at 20:44:22, on 25.02.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Eset\nod32krn.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\WgaTray.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Eset\nod32kui.exe C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\CTHELPER.EXE C:\Program Files\DAEMON Tools\daemon.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\D-Link AirPlus\AirPlus.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Common Files\Teleca Shared\Generic.exe C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Winrar\WinRAR.exe C:\DOCUME~1\Peter\LOCALS~1\Temp\Rar$EX00.641\HijackThis.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AdobeUpdateManager.exe" AcPro7_0_7 O4 - Startup: PowerReg Scheduler V3.exe O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: D-Link AirPlus.lnk = ? O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Peter\Start Menu\Programs\IMVU\Run IMVU.lnk O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe 8024350[/snapback] Kjør HJT, sett merke framfor følgende linje og klikk 'Fix checked': O4 - Startup: PowerReg Scheduler V3.exe Ut over det er loggen din ren. (Egen post: https://www.diskusjon.no/index.php?showtopic=722871 ) Endret 29. april 2007 av norbat Lenke til kommentar
audda Skrevet 25. februar 2007 Forfatter Del Skrevet 25. februar 2007 (endret) Finner ikke Mywebsearch under kontrollpanel /legg til eller fjern filer. Kan det hete noe annet? Men jeg finner den under c:/programfiler. Men er det smart å slette den der? Hva gjør jeg? Endret 25. februar 2007 av audda Lenke til kommentar
norbat Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 Finner ikke Mywebsearch under kontrollpanel /legg til eller fjern filer. Kan det hete noe annet? Men jeg finner den under c:/programfiler. Men er det smart å slette den der? Hva gjør jeg? 8024707[/snapback] Hvis den ikke ligger i legg til/fjern programmer, sletter du følgende mappe (i bold) fra utforskeren: C:\Programfiler\MyWebSearch Lenke til kommentar
audda Skrevet 25. februar 2007 Forfatter Del Skrevet 25. februar 2007 Når jeg sletter fra utforsker får jeg meldinga som ligger i vedlegget. Mywebsearch_sletting.doc Lenke til kommentar
norbat Skrevet 25. februar 2007 Del Skrevet 25. februar 2007 Når jeg sletter fra utforsker får jeg meldinga som ligger i vedlegget. 8024970[/snapback] Følg tidligere gitte veiledning, så sletter du mappa når du er i sikker modus. Lenke til kommentar
audda Skrevet 26. februar 2007 Forfatter Del Skrevet 26. februar 2007 Da kommer det nye loggfiler her. Når jeg starta opp nå får jeg tilbud om å installere systemdoctor og errorsafe ! Dvs. at jeg fortsatt har et problem. Klikk for å se/fjerne innholdet nedenfor Logfile of HijackThis v1.99.1 Scan saved at 07:17:18, on 26.02.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Programfiler\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\WINDOWS\system32\svchost.exe C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wuauclt.exe C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe C:\Apps\Powercinema\PCMService.exe C:\apps\ABoard\ABoard.exe C:\apps\ABoard\AOSD.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\Programfiler\QuickTime\qttask.exe C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\Windows Defender\MSASCui.exe C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Microsoft Office\OFFICE11\OUTLOOK.EXE C:\Programfiler\Google\Google Desktop Search\GoogleDesktopIndex.exe C:\Programfiler\Google\Google Desktop Search\GoogleDesktopCrawl.exe C:\DOCUME~1\Aud\LOKALE~1\Temp\Midlertidig mappe 3 for testspyware.zip\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.folkedans.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://format.packardbell.com/cgi-bin/redi...se=6&key=SEARCH R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.no/0SENBNO/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar3.dll O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar3.dll O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre1.5.0_11\bin\jusched.exe" O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [TkBellExe] "C:\Programfiler\Fellesfiler\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [ATICCC] "C:\Programfiler\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [Windows Defender] "C:\Programfiler\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [parentalcontrol] "C:\Programfiler\parentalcontrol\parentalcontrol.exe" "C:\Programfiler\parentalcontrol\parentalcontrol.dll" "parentalcontrol" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [Google Desktop Search] "C:\Programfiler\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] C:\Programfiler\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &MSN Search - res://C:\Programfiler\MSN Toolbar Suite\TB\02.05.0000.1105\nb-no\msntb.dll/search.htm O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Åpne i ny bakgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/229?b5ffb6e619d24c099cc21e1a649ae739 O8 - Extra context menu item: Åpne i ny forgrunnsflik - res://C:\Programfiler\MSN Toolbar Suite\TAB\02.05.0000.1105\nb-no\msntabres.dll/230?b5ffb6e619d24c099cc21e1a649ae739 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_11\bin\ssv.dll O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O11 - Options group: [iNTERNATIONAL] International* O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1120978288453 O16 - DPF: {6E2510E6-BF2D-4C78-9F28-2F5C8760F124} (ERPageAddin Class) - https://joint.prosjekthotell.com/eRoomSetup/client.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Music Manager) - http://img.pvw.od2.com/installation/Plugin...nagerPlugin.CAB O16 - DPF: {DABFA9AD-4E31-43F4-9D60-4CDD20F57F28} (PhotomaxUploader.ActiveXControl) - http://www.photomax.com/web/PhotomaxUploader.CAB O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programfiler\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Programfiler\iPod\bin\iPodService.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Programfiler\Virtual CD v4 SDK\system\vcssecs.exe VG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 07:06:06 26.02.2007 + Scan result: C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079041.exe -> Adware.Gator : No action taken. C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079042.exe -> Adware.Gator : No action taken. C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079043.dll -> Adware.Softomate : No action taken. C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079040.exe -> Adware.Trymedia : No action taken. C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079039.dll -> Downloader.Delf.vt : No action taken. C:\System Volume Information\_restore{C9F0B078-DCCF-4440-BF1A-0BBF2DE6AC9F}\RP828\A0079044.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@adtech[1].txt -> TrackingCookie.Adtech : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[1].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@advertising[2].txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : No action taken. C:\Documents and Settings\Aud\Cookies\aud@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Sigrid\Cookies\sigrid@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\Aud\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Starware : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken. C:\Documents and Settings\Aud\Cookies\aud@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken. C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[1].txt -> TrackingCookie.Valueclick : No action taken. C:\Documents and Settings\Aud\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken. C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken. ::Report end Lenke til kommentar
Gjest medlem-105082 Skrevet 26. februar 2007 Del Skrevet 26. februar 2007 Kan du være så snill å sette alle logger i spoiler? Med spoiler blir det jo mer ryddig + at man ikke trenger å bruke hele dagen på å bla ned til bunnen. Lenke til kommentar
norbat Skrevet 26. februar 2007 Del Skrevet 26. februar 2007 (endret) Hei, audda Hent SAS, installer og oppdater. Hent CCleaner, installer. Kjør HJT og sett merke framfor følgende linjer og klikk 'Fix checked': O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nor.htm Restart i sikker modus (tapp F8 under oppstart) Kjør en rens med CCleaner + klikk på saker og slett de 'feil' som finnes (du trenger ikke å ta backup av registeret når du får mulighet for det). Kjør 'Saker' helt til det ikke finnes flere 'feil' igjen. Kjør deretter en 'Complete scan' med SAS Restart i normal Post loggen fra SAS (Preferences->statistics/logs). Trenger ikke logg fra HJT. Endret 26. februar 2007 av norbat Lenke til kommentar
audda Skrevet 26. februar 2007 Forfatter Del Skrevet 26. februar 2007 Kan du være så snill å sette alle logger i spoiler? Med spoiler blir det jo mer ryddig + at man ikke trenger å bruke hele dagen på å bla ned til bunnen. 8029811[/snapback] Lenke til kommentar
norbat Skrevet 26. februar 2007 Del Skrevet 26. februar 2007 Kan du være så snill å sette alle logger i spoiler? Med spoiler blir det jo mer ryddig + at man ikke trenger å bruke hele dagen på å bla ned til bunnen. 8029811[/snapback] 8031378[/snapback] Det Albert_E mener er at når du poster en logg, kopierer du loggen, velger SKJUL-knappen, og limer inn loggen. Lenke til kommentar
audda Skrevet 26. februar 2007 Forfatter Del Skrevet 26. februar 2007 Kjære norbat. Oppdrag utført og her er SAS-logg. (Error safe og em.gad popper opp nå også ). Klikk for å se/fjerne innholdet nedenfor UPERAntiSpyware Scan LogGenerated 02/26/2007 at 08:17 PM Application Version : 3.5.1016 Core Rules Database Version : 3189 Trace Rules Database Version: 1199 Scan type : Complete Scan Total Scan Time : 00:51:34 Memory items scanned : 199 Memory threats detected : 0 Registry items scanned : 5626 Registry threats detected : 0 File items scanned : 40419 File threats detected : 238 Adware.Tracking Cookie C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt C:\Documents and Settings\Ingar\Cookies\[email protected][3].txt C:\Documents and Settings\Ingar\Cookies\[email protected][1].txt C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt C:\Documents and Settings\Ingar\Cookies\ingar@imrworldwide[1].txt C:\Documents and Settings\Ingar\Cookies\ingar@indexstats[2].txt C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt C:\Documents and Settings\Ingar\Cookies\ingar@winantivirus[1].txt C:\Documents and Settings\Ingar\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@accelerator-media[2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@adcentriconline[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@adserver[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@advertising[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@askiacsearchmedia[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@atdmt[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@atwola[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@azjmp[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@banner[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@belnk[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@cassava[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@clicksor[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@clicktorrent[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@focalex[2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][3].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@indexstats[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@indextools[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@inteletrack[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@interclick[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@kanoodle[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@maxserving[2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@mywebsearch[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@partypoker[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@qnsr[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@revsci[2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@roiservice[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@smileycentral[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@tripod[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@winantivirus[1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][1].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\[email protected][2].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@xiti[1].txt C:\Documents and Settings\Sigrid\Cookies\sigrid@yourmedia[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@accelerator-media[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@adecn[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@adlegend[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@adrevolver[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@adserver[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@adultswim[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@atwola[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@azjmp[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@belnk[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@bravenetmedianetwork[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@cassava[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt C:\Documents and Settings\Vemund\Cookies\vemund@clicksor[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@clicksor[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@clicktorrent[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@dealtime[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@gamesbannernetwork[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt C:\Documents and Settings\Vemund\Cookies\[email protected][5].txt C:\Documents and Settings\Vemund\Cookies\[email protected][7].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@hotbar[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@imrworldwide[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@imrworldwide[3].txt C:\Documents and Settings\Vemund\Cookies\vemund@indexstats[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@indextools[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@interclick[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@maxserving[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@minitrackmania[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@mywebsearch[4].txt C:\Documents and Settings\Vemund\Cookies\vemund@netmediagroup[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@partypoker[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@popularscreensavers[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@revsci[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@roiservice[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@smileycentral[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@stats[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@stats[3].txt C:\Documents and Settings\Vemund\Cookies\vemund@superstats[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@toplist[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@tripod[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@upspiral[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@upspiral[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@valueclick[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[2].txt C:\Documents and Settings\Vemund\Cookies\vemund@winantivirus[3].txt C:\Documents and Settings\Vemund\Cookies\vemund@winfixer[1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][3].txt C:\Documents and Settings\Vemund\Cookies\[email protected][4].txt C:\Documents and Settings\Vemund\Cookies\[email protected][5].txt C:\Documents and Settings\Vemund\Cookies\[email protected][6].txt C:\Documents and Settings\Vemund\Cookies\[email protected][7].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\[email protected][1].txt C:\Documents and Settings\Vemund\Cookies\vemund@xiti[1].txt C:\Documents and Settings\Vemund\Cookies\vemund@xiti[2].txt C:\Documents and Settings\Vemund\Cookies\[email protected][2].txt C:\Documents and Settings\Vemund\Cookies\vemund@yourmedia[1].txt Lenke til kommentar
norbat Skrevet 26. februar 2007 Del Skrevet 26. februar 2007 (endret) Flytter over i ny post opprettet av audda Postenen finnes her: https://www.diskusjon.no/index.php?showtopic=723439 Endret 29. april 2007 av norbat Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå