Khani Skrevet 29. mars 2010 Del Skrevet 29. mars 2010 (endret) Jeg har defragmentert og gjordt mye annet for og finne ut av dette. Det eneste som gjenstår er virus. Maskinen stopper opp når jeg starter opp maskinen og når jeg starter programmer. Musen kan jeg røre rundt med men resten står stille. Det kan ofte ende opp med at pcen fryser. Dette er en skolelaptop så jeg har ikke den forbaskede xp cden og bios er det passord på. Logg: Logfile of Trend Micro HijackThis v2.0.3 (BETA) Scan saved at 18:10:04, on 29.03.2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\agrsmsvc.exe C:\Programfiler\Fellesfiler\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Programfiler\Bonjour\mDNSResponder.exe C:\Programfiler\Intel\Intel Matrix Storage Manager\IAANTMon.exe C:\Programfiler\Java\jre6\bin\jqs.exe C:\Programfiler\CDBurnerXP\NMSAccessU.exe C:\Programfiler\Spyware Terminator\sp_rsser.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\Explorer.EXE C:\Programfiler\Analog Devices\Core\smax4pnp.exe C:\WINDOWS\system32\AccelerometerSt.Exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\Programfiler\Intel\Intel Matrix Storage Manager\iaanotif.exe C:\Programfiler\Synaptics\SynTP\SynTPEnh.exe C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Programfiler\Java\jre6\bin\jusched.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe C:\Programfiler\Spyware Terminator\SpywareTerminatorShield.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\IObit\Advanced SystemCare 3\AWC.exe C:\Programfiler\Windows Live\Messenger\msnmsgr.exe C:\WINDOWS\system32\DrvMon.exe C:\programfiler\steam\steam.exe C:\Programfiler\Spyware Terminator\SpywareTerminatorUpdate.exe C:\Programfiler\Hewlett-Packard\Shared\hpqWmiEx.exe C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\Windows Live\Contacts\wlcomm.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\WINDOWS\system32\msiexec.exe C:\Programfiler\TrendMicro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.no/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programfiler\Fellesfiler\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Påloggingshjelp for Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programfiler\Fellesfiler\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programfiler\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programfiler\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [soundMAXPnP] C:\Programfiler\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [soundMAX] C:\Programfiler\Analog Devices\SoundMAX\Smax4.exe /tray O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.Exe O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [iAAnotif] C:\Programfiler\Intel\Intel Matrix Storage Manager\iaanotif.exe O4 - HKLM\..\Run: [synTPEnh] C:\Programfiler\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programfiler\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Programfiler\Fellesfiler\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui O4 - HKLM\..\Run: [spywareTerminator] "C:\Programfiler\Spyware Terminator\SpywareTerminatorShield.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Programfiler\IObit\Advanced SystemCare 3\AWC.exe" /startup O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\system32\DrvMon.exe O4 - HKCU\..\Run: [steam] "c:\programfiler\steam\steam.exe" -silent O4 - HKCU\..\Run: [spywareTerminatorUpdate] "C:\Programfiler\Spyware Terminator\SpywareTerminatorUpdate.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.systemrequirementslab.com/srl_bin/sysreqlab_srl.cab O16 - DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} (System Requirements Lab Class) - http://srtest-cdn.systemrequirementslab.com.s3.amazonaws.com/bin/sysreqlabdetect.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1245961647406 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = local.vgsa.no O17 - HKLM\Software\..\Telephony: DomainName = local.vgsa.no O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = local.vgsa.no O20 - Winlogon Notify: ackpbsc - C:\WINDOWS\system32\ackpbsc.dll (file missing) O20 - Winlogon Notify: acunlock - C:\Programfiler\ActivIdentity\ActivClient\acunlock.dll (file missing) O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programfiler\Fellesfiler\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Programfiler\Bonjour\mDNSResponder.exe O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programfiler\Hewlett-Packard\Shared\hpqWmiEx.exe O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Programfiler\Intel\Intel Matrix Storage Manager\IAANTMon.exe O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Programfiler\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programfiler\Java\jre6\bin\jqs.exe O23 - Service: NMSAccessU - Unknown owner - C:\Programfiler\CDBurnerXP\NMSAccessU.exe O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Programfiler\Spyware Terminator\sp_rsser.exe DDS (Ver_10-03-17.01) - NTFSx86 Run by rowi2402 at 18:22:10,17 on 29.03.2010 Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_15 Microsoft Windows XP Professional 5.1.2600.3.1252.47.1044.18.1976.1308 [GMT 2:00] AV: avast! Antivirus *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D} ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\Programfiler\Alwil Software\Avast5\AvastSvc.exe C:\WINDOWS\system32\spoolsv.exe svchost.exe C:\WINDOWS\system32\agrsmsvc.exe C:\Programfiler\Fellesfiler\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Programfiler\Bonjour\mDNSResponder.exe C:\Programfiler\Intel\Intel Matrix Storage Manager\IAANTMon.exe C:\Programfiler\Java\jre6\bin\jqs.exe C:\Programfiler\CDBurnerXP\NMSAccessU.exe C:\Programfiler\Spyware Terminator\sp_rsser.exe C:\WINDOWS\system32\svchost.exe -k imgsvc C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\Explorer.EXE C:\Programfiler\Analog Devices\Core\smax4pnp.exe C:\WINDOWS\system32\AccelerometerSt.Exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\igfxpers.exe C:\Programfiler\Intel\Intel Matrix Storage Manager\iaanotif.exe C:\Programfiler\Synaptics\SynTP\SynTPEnh.exe C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Programfiler\Java\jre6\bin\jusched.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe C:\Programfiler\Spyware Terminator\SpywareTerminatorShield.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\IObit\Advanced SystemCare 3\AWC.exe C:\Programfiler\Windows Live\Messenger\msnmsgr.exe C:\WINDOWS\system32\DrvMon.exe C:\programfiler\steam\steam.exe C:\Programfiler\Spyware Terminator\SpywareTerminatorUpdate.exe C:\Programfiler\Hewlett-Packard\Shared\hpqWmiEx.exe C:\Programfiler\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\Windows Live\Contacts\wlcomm.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\WINDOWS\system32\wuauclt.exe C:\Documents and Settings\rowi2402\Lokale innstillinger\Temporary Internet Files\Content.IE5\RP6JK5M1\dds[1].scr ============== Pseudo HJT Report =============== uStart Page = hxxp://www.google.no/ uInternet Settings,ProxyOverride = *.local mWinlogon: Taskman=c:\recycler\s-1-5-21-4179862541-2892249748-334964382-1125\rundll32.exe BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\programfiler\fellesfiler\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Påloggingshjelp for Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\programfiler\fellesfiler\microsoft shared\windows live\WindowsLiveLogin.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\programfiler\java\jre6\bin\jp2ssv.dll BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\programfiler\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe uRun: [Advanced SystemCare 3] "c:\programfiler\iobit\advanced systemcare 3\AWC.exe" /startup uRun: [msnmsgr] "c:\programfiler\windows live\messenger\msnmsgr.exe" /background uRun: [DrvMon.exe] c:\windows\system32\DrvMon.exe uRun: [steam] "c:\programfiler\steam\steam.exe" -silent uRun: [spywareTerminatorUpdate] "c:\programfiler\spyware terminator\SpywareTerminatorUpdate.exe" mRun: [soundMAXPnP] c:\programfiler\analog devices\core\smax4pnp.exe mRun: [soundMAX] c:\programfiler\analog devices\soundmax\Smax4.exe /tray mRun: [AccelerometerSysTrayApplet] c:\windows\system32\AccelerometerSt.Exe mRun: [igfxTray] c:\windows\system32\igfxtray.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [Persistence] c:\windows\system32\igfxpers.exe mRun: [iAAnotif] c:\programfiler\intel\intel matrix storage manager\iaanotif.exe mRun: [synTPEnh] c:\programfiler\synaptics\syntp\SynTPEnh.exe mRun: [QlbCtrl.exe] c:\programfiler\hewlett-packard\hp quick launch buttons\QlbCtrl.exe /Start mRun: [sunJavaUpdateSched] "c:\programfiler\java\jre6\bin\jusched.exe" mRun: [Adobe Reader Speed Launcher] "c:\programfiler\adobe\reader 9.0\reader\Reader_sl.exe" mRun: [Adobe ARM] "c:\programfiler\fellesfiler\adobe\arm\1.0\AdobeARM.exe" mRun: [QuickTime Task] "c:\programfiler\quicktime\qttask.exe" -atboottime mRun: [iTunesHelper] "c:\programfiler\itunes\iTunesHelper.exe" mRun: [avast5] c:\progra~1\alwils~1\avast5\avastUI.exe /nogui mRun: [spywareTerminator] "c:\programfiler\spyware terminator\SpywareTerminatorShield.exe" dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE uPolicies-explorer: NoViewOnDrive = 0 (0x0) mPolicies-system: DisableStartupSound = 1 (0x1) IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programfiler\messenger\msmsgs.exe DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.systemrequirementslab.com/srl_bin/sysreqlab_srl.cab DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} - hxxp://srtest-cdn.systemrequirementslab.com.s3.amazonaws.com/bin/sysreqlabdetect.cab DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1245961647406 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab Notify: ackpbsc - c:\windows\system32\ackpbsc.dll Notify: acunlock - c:\programfiler\actividentity\activclient\acunlock.dll Notify: AtiExtEvent - Ati2evxx.dll Notify: igfxcui - igfxdev.dll SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll ============= SERVICES / DRIVERS =============== R0 SFAUDIO;Sonic Focus DSP Driver;c:\windows\system32\drivers\sfaudio.sys [2009-6-25 24064] R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [2006-7-5 63352] R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-3-29 162640] R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-3-29 142592] R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-3-29 19024] R2 avast! Antivirus;avast! Antivirus;c:\programfiler\alwil software\avast5\AvastSvc.exe [2010-3-29 40384] R2 cpuz132;cpuz132;c:\windows\system32\drivers\cpuz132_x32.sys [2009-9-3 12672] R2 IAANTMON;Intel® Matrix Storage Event Monitor;c:\programfiler\intel\intel matrix storage manager\IAANTMON.EXE [2009-6-25 354840] R3 avast! Mail Scanner;avast! Mail Scanner;c:\programfiler\alwil software\avast5\AvastSvc.exe [2010-3-29 40384] R3 avast! Web Scanner;avast! Web Scanner;c:\programfiler\alwil software\avast5\AvastSvc.exe [2010-3-29 40384] R3 Com4QLBEx;Com4QLBEx;c:\programfiler\hewlett-packard\hp quick launch buttons\Com4QLBEx.exe [2009-6-25 193840] R3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2009-6-28 44800] S3 SCR3XX2K;SCR3xx USB SmartCardReader;c:\windows\system32\drivers\SCR3XX2K.sys [2007-6-21 56448] S3 USBAAPL;Apple Mobile USB Driver;c:\windows\system32\drivers\usbaapl.sys [2009-10-26 40448] S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2004-8-4 14336] =============== Created Last 30 ================ 2010-03-29 16:09:00 0 d-----w- c:\programfiler\TrendMicro 2010-03-29 15:44:55 0 d-----w- c:\windows\Rettigheter_satt 2010-03-29 13:28:48 0 d-----w- c:\programfiler\NEXON 2010-03-29 11:22:49 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys 2010-03-29 11:22:16 0 d-----w- c:\docume~1\alluse~1\progra~1\Alwil Software 2010-03-29 11:15:58 0 d-----w- c:\programfiler\WinClamAVShield 2010-03-29 11:14:25 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys 2010-03-29 11:14:25 0 d-----w- c:\docume~1\rowi2402\progra~1\Spyware Terminator 2010-03-29 11:14:23 0 d-----w- c:\docume~1\alluse~1\progra~1\Spyware Terminator 2010-03-29 11:14:22 0 d-----w- c:\programfiler\Spyware Terminator 2010-03-29 10:10:52 0 d-----w- c:\programfiler\CrystalDiskMark 2010-03-29 10:10:32 0 d-----w- C:\Nexon 2010-03-24 18:33:51 1 ----a-w- c:\windows\system32\SI.bin 2010-03-21 17:22:06 0 d-----w- c:\programfiler\Steam 2010-03-21 17:17:39 0 d-----w- c:\windows\system32\NtmsData 2010-03-21 17:08:17 0 d-----w- c:\programfiler\PowerQuest 2010-03-19 11:42:03 0 d-----w- c:\windows\.jagex_cache_32 2010-03-15 11:12:37 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe 2010-03-04 16:44:51 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys 2010-03-04 16:44:51 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys 2010-03-03 10:48:30 0 d-----r- C:\Favoritter 2010-03-03 10:39:32 0 d-----w- C:\Skrivebord 2010-03-03 10:35:55 0 d-----r- C:\Mine dokumenter ==================== Find3M ==================== 2010-03-15 14:05:54 80036 ----a-w- c:\windows\system32\perfc014.dat 2010-03-15 14:05:54 444582 ----a-w- c:\windows\system32\perfh014.dat 2009-06-28 14:42:15 868352 --sha-w- c:\windows\system32\config\systemprofile\iecompatcache\index.dat 2009-07-01 09:11:27 245760 --sha-w- c:\windows\system32\config\systemprofile\ietldcache\index.dat 2009-06-28 14:42:15 65536 --sha-w- c:\windows\system32\config\systemprofile\privacie\index.dat ============= FINISH: 18:22:35,45 =============== UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT DDS (Ver_10-03-17.01) Microsoft Windows XP Professional Boot Device: \Device\HarddiskVolume1 Install Date: 04.08.2009 08:00:43 System Uptime: 29.03.2010 17:59:31 (1 hours ago) Motherboard: Hewlett-Packard | | 30DD Processor: Intel Pentium III Xeon-prosessor | Intel® Genuine processor | 2394/266mhz ==== Disk Partitions ========================= C: is FIXED (NTFS) - 59 GiB total, 23,158 GiB free. D: is FIXED (NTFS) - 90 GiB total, 80,442 GiB free. E: is CDROM (UDF) ==== Disabled Device Manager Items ============= Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318} Description: 1394-nettverkskort Device ID: V1394\NIC1394\1122335555667799 Manufacturer: Microsoft Name: 1394-nettverkskort PNP Device ID: V1394\NIC1394\1122335555667799 Service: NIC1394 ==== System Restore Points =================== RP68: 17.12.2009 09:20:01 - Installed Call of Duty® 4 - Modern Warfare RP69: 04.01.2010 09:30:45 - Kontrollpunkt for system RP70: 07.01.2010 15:00:12 - Software Distribution Service 3.0 RP71: 11.01.2010 08:54:25 - Software Distribution Service 3.0 RP72: 12.01.2010 10:11:01 - Software Distribution Service 3.0 RP73: 12.01.2010 15:00:12 - Software Distribution Service 3.0 RP74: 14.01.2010 08:40:31 - Software Distribution Service 3.0 RP75: 14.01.2010 15:00:13 - Software Distribution Service 3.0 RP76: 14.01.2010 15:12:11 - Software Distribution Service 3.0 RP77: 18.01.2010 09:43:44 - Kontrollpunkt for system RP78: 18.01.2010 15:00:12 - Software Distribution Service 3.0 RP79: 25.01.2010 13:00:18 - Kontrollpunkt for system RP80: 26.01.2010 13:44:24 - Kontrollpunkt for system RP81: 26.01.2010 15:00:12 - Software Distribution Service 3.0 RP82: 28.01.2010 13:40:26 - Installed GTA2 RP83: 31.01.2010 12:23:17 - Software Distribution Service 3.0 RP84: 01.02.2010 14:54:56 - Kontrollpunkt for system RP85: 05.02.2010 12:16:31 - Kontrollpunkt for system RP86: 07.02.2010 17:21:33 - Kontrollpunkt for system RP87: 08.02.2010 14:25:02 - Installed Google SketchUp 7 RP88: 11.02.2010 13:36:44 - Kontrollpunkt for system RP89: 12.02.2010 19:50:57 - Software Distribution Service 3.0 RP90: 15.02.2010 13:20:38 - Kontrollpunkt for system RP91: 18.02.2010 10:53:53 - Kontrollpunkt for system RP92: 01.03.2010 11:17:22 - Kontrollpunkt for system RP93: 04.03.2010 11:30:12 - Kontrollpunkt for system RP94: 08.03.2010 10:43:20 - Kontrollpunkt for system RP95: 10.03.2010 10:54:40 - Kontrollpunkt for system RP96: 11.03.2010 10:14:46 - Software Distribution Service 3.0 RP97: 12.03.2010 11:51:34 - Kontrollpunkt for system RP98: 15.03.2010 15:00:13 - Software Distribution Service 3.0 RP99: 17.03.2010 12:17:55 - Kontrollpunkt for system RP100: 18.03.2010 13:32:51 - Kontrollpunkt for system RP101: 19.03.2010 19:50:07 - Kontrollpunkt for system RP102: 21.03.2010 17:45:46 - Kontrollpunkt for system RP103: 21.03.2010 18:08:06 - Installed PartitionMagic RP104: 21.03.2010 18:22:06 - Installed Steam RP105: 21.03.2010 18:52:36 - Removed Empire Earth RP106: 23.03.2010 00:05:23 - Kontrollpunkt for system RP107: 24.03.2010 17:55:30 - Kontrollpunkt for system RP108: 24.03.2010 19:34:00 - Installed Heroes of Might and Magic V RP109: 26.03.2010 23:34:10 - Kontrollpunkt for system RP110: 28.03.2010 00:11:22 - Kontrollpunkt for system RP111: 29.03.2010 12:55:02 - Removed Norman Endpoint Protection. RP112: 29.03.2010 13:22:16 - avast! Free Antivirus Setup RP113: 29.03.2010 18:09:00 - Installed HiJackThis ==== Installed Programs ====================== 32 Bit HP BiDi Channel Components Installer Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Reader 9.3.1 - Norsk Adobe Shockwave Player 11.5 Advanced SystemCare 3 Agere Systems HDA Modem Apple Application Support Apple Mobile Device Support Apple Software Update AutoSketch v7.0 avast! Free Antivirus Blitzkrieg 2 Bonjour Broadcom NetXtreme Ethernet Controller CDBurnerXP CPUID CPU-Z 1.52.2 CrystalDiskMark 2.2.0p DirectEditSetup Europe MapleStory Game Booster Google SketchUp 7 Gothic II GTA2 Heroes of Might and Magic V HiJackThis Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Hotfix for Windows Media Format 11 SDK (KB929399) Hotfix for Windows XP (KB954550-v5) HP 3D DriveGuard HP Quick Launch Buttons 6.40 D3 Hurtigreparasjon for Windows Media Player 11 (KB939683) Hurtigreparasjon for Windows XP (KB949764) Hurtigreparasjon for Windows XP (KB952287) Hurtigreparasjon for Windows XP (KB961118) Hurtigreparasjon for Windows XP (KB969084) Hurtigreparasjon for Windows XP (KB970653-v3) Hurtigreparasjon for Windows XP (KB976098-v2) Hurtigreparasjon for Windows XP (KB979306) Intel® Graphics Media Accelerator Driver Intel® Matrix Storage Manager iTunes Java 6 Update 15 Kritisk oppdatering for Windows Media Player 11 (KB959772) Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Norwegian Language Pack Microsoft .NET Framework 1.1 Security Update (KB953297) Microsoft .NET Framework 2.0 Service Pack 2 Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - NOR Microsoft .NET Framework 3.0 Service Pack 2 Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - NOR Microsoft .NET Framework 3.5 Language Pack SP1 - nor Microsoft .NET Framework 3.5 SP1 Microsoft Age of Empires II Microsoft Application Error Reporting Microsoft Base Smart Card Cryptographic Service Provider-pakke Microsoft Choice Guard Microsoft Compression Client Pack 1.0 for Windows XP Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 Microsoft Silverlight Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 MSVCRT MSXML 6.0 Parser OpenOffice.org 3.1 Oppdatering for Microsoft Windows (KB971513) Oppdatering for Windows Internet Explorer 8 (KB971930) Oppdatering for Windows Internet Explorer 8 (KB975364) Oppdatering for Windows Internet Explorer 8 (KB976662) Oppdatering for Windows Internet Explorer 8 (KB976749) Oppdatering for Windows Internet Explorer 8 (KB978506) Oppdatering for Windows XP (KB943729) Oppdatering for Windows XP (KB951978) Oppdatering for Windows XP (KB955759) Oppdatering for Windows XP (KB955839) Oppdatering for Windows XP (KB961503) Oppdatering for Windows XP (KB967715) Oppdatering for Windows XP (KB968389) Oppdatering for Windows XP (KB971737) Oppdatering for Windows XP (KB973687) Oppdatering for Windows XP (KB973815) Opplastingsverktøy for Windows Live PartitionMagic Påloggingsassistent for Windows Live PowerQuest PartitionMagic 8.0 Demo QuickTime SCR3xxx Smart Card Reader Segoe UI Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB969897) Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB971961) Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB972260) Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB974455) Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB976325) Sikkerhetsoppdatering for Windows Internet Explorer 8 (KB978207) Sikkerhetsoppdatering for Windows Media Player (KB952069) Sikkerhetsoppdatering for Windows Media Player (KB954155) Sikkerhetsoppdatering for Windows Media Player (KB968816) Sikkerhetsoppdatering for Windows Media Player (KB973540) Sikkerhetsoppdatering for Windows Media Player 11 (KB936782) Sikkerhetsoppdatering for Windows Media Player 11 (KB954154) Sikkerhetsoppdatering for Windows XP (KB923561) Sikkerhetsoppdatering for Windows XP (KB923789) Sikkerhetsoppdatering for Windows XP (KB938464-v2) Sikkerhetsoppdatering for Windows XP (KB941569) Sikkerhetsoppdatering for Windows XP (KB946648) Sikkerhetsoppdatering for Windows XP (KB950760) Sikkerhetsoppdatering for Windows XP (KB950762) Sikkerhetsoppdatering for Windows XP (KB950974) Sikkerhetsoppdatering for Windows XP (KB951066) Sikkerhetsoppdatering for Windows XP (KB951376-v2) Sikkerhetsoppdatering for Windows XP (KB951748) Sikkerhetsoppdatering for Windows XP (KB952004) Sikkerhetsoppdatering for Windows XP (KB952954) Sikkerhetsoppdatering for Windows XP (KB954459) Sikkerhetsoppdatering for Windows XP (KB954600) Sikkerhetsoppdatering for Windows XP (KB955069) Sikkerhetsoppdatering for Windows XP (KB956572) Sikkerhetsoppdatering for Windows XP (KB956744) Sikkerhetsoppdatering for Windows XP (KB956802) Sikkerhetsoppdatering for Windows XP (KB956803) Sikkerhetsoppdatering for Windows XP (KB956844) Sikkerhetsoppdatering for Windows XP (KB957097) Sikkerhetsoppdatering for Windows XP (KB958644) Sikkerhetsoppdatering for Windows XP (KB958687) Sikkerhetsoppdatering for Windows XP (KB958869) Sikkerhetsoppdatering for Windows XP (KB959426) Sikkerhetsoppdatering for Windows XP (KB960225) Sikkerhetsoppdatering for Windows XP (KB960803) Sikkerhetsoppdatering for Windows XP (KB960859) Sikkerhetsoppdatering for Windows XP (KB961371-v2) Sikkerhetsoppdatering for Windows XP (KB961373) Sikkerhetsoppdatering for Windows XP (KB961501) Sikkerhetsoppdatering for Windows XP (KB968537) Sikkerhetsoppdatering for Windows XP (KB969059) Sikkerhetsoppdatering for Windows XP (KB969897) Sikkerhetsoppdatering for Windows XP (KB969898) Sikkerhetsoppdatering for Windows XP (KB969947) Sikkerhetsoppdatering for Windows XP (KB970238) Sikkerhetsoppdatering for Windows XP (KB970430) Sikkerhetsoppdatering for Windows XP (KB971468) Sikkerhetsoppdatering for Windows XP (KB971486) Sikkerhetsoppdatering for Windows XP (KB971557) Sikkerhetsoppdatering for Windows XP (KB971633) Sikkerhetsoppdatering for Windows XP (KB971657) Sikkerhetsoppdatering for Windows XP (KB972270) Sikkerhetsoppdatering for Windows XP (KB973346) Sikkerhetsoppdatering for Windows XP (KB973354) Sikkerhetsoppdatering for Windows XP (KB973507) Sikkerhetsoppdatering for Windows XP (KB973525) Sikkerhetsoppdatering for Windows XP (KB973869) Sikkerhetsoppdatering for Windows XP (KB973904) Sikkerhetsoppdatering for Windows XP (KB974112) Sikkerhetsoppdatering for Windows XP (KB974318) Sikkerhetsoppdatering for Windows XP (KB974392) Sikkerhetsoppdatering for Windows XP (KB974571) Sikkerhetsoppdatering for Windows XP (KB975025) Sikkerhetsoppdatering for Windows XP (KB975467) Sikkerhetsoppdatering for Windows XP (KB975560) Sikkerhetsoppdatering for Windows XP (KB975561) Sikkerhetsoppdatering for Windows XP (KB975713) Sikkerhetsoppdatering for Windows XP (KB977165) Sikkerhetsoppdatering for Windows XP (KB977914) Sikkerhetsoppdatering for Windows XP (KB978037) Sikkerhetsoppdatering for Windows XP (KB978251) Sikkerhetsoppdatering for Windows XP (KB978262) Sikkerhetsoppdatering for Windows XP (KB978706) SoundMAX SpeedFan (remove only) Spelling Dictionaries Support For Adobe Reader 9 Splinter Cell Pandora Tomorrow Språkpakke for Microsoft .NET Framework 3.5 SP1 - NOR Spyware Terminator Steam Stronghold Legends Synaptics Pointing Device Driver System Requirements Lab Team Fortress Classic Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Ventrilo Client WebFldrs XP Windows Genuine Advantage Notifications (KB905474) Windows Genuine Advantage Validation Tool (KB892130) Windows Internet Explorer 8 Windows Live Communications Platform Windows Live Essentials Windows Live Messenger Windows Management Framework Core Windows Media Format 11 runtime Windows Media Player 11 Windows XP Service Pack 3 WinRAR archiver XML Paper Specification Shared Components Language Pack 1.0 ==== End Of File =========================== Endret 29. mars 2010 av WilliamRobertsen Lenke til kommentar
Thommas88 Skrevet 29. mars 2010 Del Skrevet 29. mars 2010 Den er jo ikke ødelagt så kan jo evnt bare slette det meste av historikk å så de ikke ser hvor og så mye av hva du har gjort å levere den inn til en IT annsvarlig på skolen. Den er jo ikke ødelagt så du kommer nok ikke til å betale noe tipper jeg. Ellers kan det hende at det er sånn backup HDD del på den så du kan formatere den å innstalere den som ny. Eller sette den tilbake i tid da via control panel. Lenke til kommentar
Khani Skrevet 29. mars 2010 Forfatter Del Skrevet 29. mars 2010 (endret) Har vært forsiktig, er aldri inne på sider som bryter mot reglene. Jeg byttet antivirusen som var på den med avast og spywareterminator og satte på full beskyttelse. Og nå er pcen like rask. Så jeg tror at når de brukte penger på norman antivirus så tenkte de seg ikke godt om. Hadde det før på en annen pc som begynte og tulle. Kan godt være at jeg skaffer en ssd eller noe med mer minne på til neste år til pcen siden disken som er inne i den er fæl til og bråke. Endret 29. mars 2010 av WilliamRobertsen Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå