eivindhetalnd Skrevet 8. oktober 2011 Del Skrevet 8. oktober 2011 Håper det er noen som kan hjelpe oss. Er nå på en bærbar maskin som er knyttet til trådlst nett. Surfing på internett går veldig sakte, noe det ikke gjør på andre bærbare i samme hus. Den var heller ikke så sakte før. Vi har derfor vært gjennom anbefalingen på en post her og har loggende under. Håper det er noen som har noen gode forslag til hva som kan få maskinen raskere:) Malwarebytes Malwarebytes' Anti-Malware 1.51.2.1300 www.malwarebytes.org Databaseversjon: 7899 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 08.10.2011 14:40:00 mbam-log-2011-10-08 (14-40-00).txt Skanntype: Hurtigsøk Objekter skannet: 209994 Tid tilbakelagt: 25 minutt(er), 35 sekund(er) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 0 Registerverdier infisert: 0 Registerfiler infisert: 3 Mapper infisert: 0 Filer infisert 0 Minneprosesser infisert: (Ingen skadelige objekter funnet) Minnemoduler infisert: (Ingen skadelige objekter funnet) Registernøkler infisert: (Ingen skadelige objekter funnet) Registerverdier infisert: (Ingen skadelige objekter funnet) Registerfiler infisert: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (PUM.Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Mapper infisert: (Ingen skadelige objekter funnet) Filer infisert (Ingen skadelige objekter funnet) ComboFix ComboFix 11-10-08.01 - Ingrid 08.10.2011 15:21:56.1.2 - FAT32x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.47.1044.18.1022.381 [GMT 2:00] Kjører fra: c:\documents and settings\Ingrid\Skrivebord\ComboFix.exe AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095} . ADVARSEL -DENNE MASKINEN HAR IKKE GJENOPPRETTINGSKONSOLLEN INSTALLERT !! . . ((((((((((((((((((((((((((((((((((((((( Andre slettinger ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programfiler\Internet Explorer\SET1D7.tmp c:\programfiler\Internet Explorer\SET1D8.tmp c:\programfiler\Internet Explorer\SET1DA.tmp c:\programfiler\Internet Explorer\SET23B.tmp c:\programfiler\Internet Explorer\SET23C.tmp c:\programfiler\Internet Explorer\SET23D.tmp c:\programfiler\Internet Explorer\SET512.tmp c:\programfiler\Internet Explorer\SET513.tmp c:\programfiler\Internet Explorer\SET515.tmp c:\programfiler\Internet Explorer\SET576.tmp c:\programfiler\Internet Explorer\SET577.tmp c:\programfiler\Internet Explorer\SET578.tmp c:\windows\system32\Packet.dll c:\windows\system32\pthreadVC.dll c:\windows\system32\WanPacket.dll c:\windows\system32\wpcap.dll . . ((((((((((((((((((((((((((((((((((((((( Drivere/Tjenester ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_NPF -------\Service_NPF . . ((((((((((((((((((((((((((( Filer Opprettet Fra 2011-09-08 til 2011-10-08 ))))))))))))))))))))))))))))))))) . . 2011-10-08 13:54 . 2011-10-08 13:54 56200 ----a-w- c:\documents and settings\All Users\Programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7253FE15-BEFA-4171-8209-2B5B3135C7CA}\offreg.dll 2011-10-08 13:12 . 2011-09-12 23:14 7269712 ----a-w- c:\documents and settings\All Users\Programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7253FE15-BEFA-4171-8209-2B5B3135C7CA}\mpengine.dll 2011-10-08 09:14 . 2011-10-08 09:14 -------- d-----w- c:\documents and settings\Ingrid\Programdata\Malwarebytes 2011-10-08 09:13 . 2011-10-08 09:13 -------- d-----w- c:\documents and settings\All Users\Programdata\Malwarebytes 2011-10-08 09:13 . 2011-08-31 15:00 22216 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-10-08 09:13 . 2011-10-08 09:13 -------- d-----w- c:\programfiler\Malwarebytes' Anti-Malware 2011-10-06 16:31 . 2011-10-06 16:31 -------- d-----w- c:\documents and settings\Ingrid\Programdata\Fighters 2011-09-26 18:08 . 2011-09-26 18:08 -------- d-----w- c:\documents and settings\All Users\Programdata\Emotum 2011-09-26 18:07 . 2011-09-26 18:07 -------- d-----w- c:\documents and settings\All Users\Programdata\Telenor 2011-09-26 18:06 . 2011-09-26 18:06 -------- d-----w- c:\programfiler\Telenor 2011-09-22 17:00 . 2011-09-22 17:00 -------- d-----w- c:\documents and settings\NetworkService\Lokale innstillinger\Programdata\PCHealth 2011-09-21 19:09 . 2011-09-21 19:09 -------- d--h--r- c:\documents and settings\Ingrid\Siste 2011-09-19 16:10 . 2011-09-12 23:14 7269712 ----a-w- c:\documents and settings\All Users\Programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-09-18 15:24 . 2010-10-19 20:51 222080 ------w- c:\windows\system32\MpSigStub.exe 2011-09-18 15:18 . 2011-09-18 15:18 -------- d-----w- c:\programfiler\Microsoft Security Client 2011-09-17 09:58 . 2011-09-17 09:58 -------- d-----w- c:\documents and settings\All Users\Programdata\Fighters 2011-09-17 09:56 . 2011-09-17 09:56 -------- d-----w- c:\programfiler\Fighters . . . (((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-09-09 09:12 . 2004-08-04 18:00 600064 ----a-w- c:\windows\system32\crypt32.dll 2011-07-15 13:29 . 2004-08-04 18:00 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys 2009-03-31 20:47 . 2009-04-03 19:49 324976 ----a-w- c:\programfiler\mozilla firefox\components\coFFPlgn.dll . . (((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret ))))))))))))))))))))))))))))))))))))))))))))) . . *Merk* tomme oppføringer & gyldige standardoppføringer vises ikke REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ntiMUI"="c:\programfiler\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe" [2005-05-11 45056] "LVCOMSX"="c:\windows\system32\LVCOMSX.EXE" [2006-03-31 225280] "LogitechCameraAssistant"="c:\programfiler\Acer\OrbiCam\CameraAssistant.exe" [2006-03-31 331776] "LogitechVideo[inspector]"="c:\programfiler\Acer\OrbiCam\InstallHelper.exe" [2006-03-31 08:32 73728] "LogitechCameraService(E)"="c:\windows\system32\ElkCtrl.exe" [2004-11-01 262144] "LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2006-04-12 626688] "ImageItEncrypt"="c:\windows\system32\ImageItEncrypt.exe" [2005-12-30 40960] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-12-18 76304] "Adobe ARM"="c:\programfiler\Fellesfiler\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920] "Boot"="c:\acer\Empowering Technology\ePower\Boot.exe" [2006-03-15 579584] "ePower_DMC"="c:\acer\Empowering Technology\ePower\ePower_DMC.exe" [2006-03-30 421888] "CanonMyPrinter"="c:\programfiler\Canon\MyPrinter\BJMyPrt.exe" [2010-03-24 2516296] "CanonSolutionMenuEx"="c:\programfiler\Canon\Solution Menu EX\CNSEMAIN.EXE" [2010-04-02 1185112] "MSC"="c:\programfiler\Microsoft Security Client\msseces.exe" [2011-06-15 997920] "Telenorhjelpen"="c:\programfiler\Telenor\Telenorhjelpen\Telenor.exe" [2009-06-02 189152] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-03-16 7561216] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] "DWQueuedReporting"="c:\progra~1\FELLES~1\MICROS~1\DW\dwtrig20.exe" [2007-02-25 437160] . c:\documents and settings\Ingrids\Start-meny\Programmer\Oppstart\ OpenOffice.org 3.0.lnk - c:\programfiler\OpenOffice.org 3\program\quickstart.exe [2008-10-4 393216] . c:\documents and settings\All Users\Start-meny\Programmer\Oppstart\ Logitech SetPoint.lnk - c:\programfiler\Logitech\SetPoint\SetPoint.exe [2009-3-8 813584] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn] 2009-07-20 10:28 72208 ----a-w- c:\programfiler\Fellesfiler\Logishrd\Bluetooth\LBTWLgn.dll . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup] @="" . [HKLM\~\startupfolder\C:^Documents and Settings^Ingrid^Start-meny^Programmer^Oppstart^OpenOffice.org 3.0.lnk] path=c:\documents and settings\Ingrid\Start-meny\Programmer\Oppstart\OpenOffice.org 3.0.lnk backup=c:\windows\pss\OpenOffice.org 3.0.lnkStartup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchApp] Alaunch [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr] 2006-08-08 20:32 69632 ----a-w- c:\windows\Alcmtr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\fssui] 2009-02-06 16:08 454000 ----a-w- c:\programfiler\Windows Live\Family Safety\fsui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] 2006-03-16 21:16 7561216 ----a-w- c:\windows\system32\nvcpl.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz] 2006-03-16 21:16 1519616 ----a-w- c:\windows\system32\nwiz.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] 2006-08-08 20:32 16120832 ----a-w- c:\windows\RTHDCPL.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] 2006-01-05 01:03 761946 ----a-w- c:\programfiler\Synaptics\SynTP\SynTPEnh.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "LBTServ"=3 (0x3) "gusvc"=3 (0x3) "gupdatem"=3 (0x3) "gupdate1ca4c359f763102"=2 (0x2) . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Acer\\Acer Arcade\\PCMService.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Programfiler\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Programfiler\\Windows Live\\Sync\\WindowsLiveSync.exe"= "c:\\Programfiler\\Opera\\opera.exe"= "c:\\WINDOWS\\System32\\mmc.exe"= "c:\\Programfiler\\Telenor\\Telenorhjelpen\\Telenor.exe"= . R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [08.03.2009 19:29 10384] R2 Viewpoint Service;Viewpoint Service;c:\programfiler\Viewpoint\Common\ViewpointService.exe [20.07.2009 12:07 30152] R3 AVerM115;AVerM115 service;c:\windows\system32\drivers\AVerM115.sys [11.02.2006 00:58 1274880] R3 lv321av;Logitech USB PC Camera (VC0321);c:\windows\system32\drivers\lv321av.sys [30.03.2006 20:11 1097472] S1 MpKsl87a0a59c;MpKsl87a0a59c;\??\c:\documents and settings\All Users\Programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7253FE15-BEFA-4171-8209-2B5B3135C7CA}\MpKsl87a0a59c.sys --> c:\documents and settings\All Users\Programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7253FE15-BEFA-4171-8209-2B5B3135C7CA}\MpKsl87a0a59c.sys [?] S2 gupdate1ca4c359f763102;Googles oppdateringstjeneste (gupdate1ca4c359f763102);c:\programfiler\Google\Update\GoogleUpdate.exe [13.10.2009 20:47 133104] S3 gupdatem;Google-oppdatering-tjenesten (gupdatem);c:\programfiler\Google\Update\GoogleUpdate.exe [13.10.2009 20:47 133104] S3 MBAMSwissArmy;MBAMSwissArmy;\??\c:\windows\system32\drivers\mbamswissarmy.sys --> c:\windows\system32\drivers\mbamswissarmy.sys [?] S3 USBVSP;USBVSP;c:\windows\system32\drivers\Usbvsp.sys --> c:\windows\system32\drivers\Usbvsp.sys [?] . Innholdet i mappen 'Scheduled Tasks' (planlagte oppgaver) . 2011-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\programfiler\Google\Update\GoogleUpdate.exe [2009-10-13 18:47] . 2011-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\programfiler\Google\Update\GoogleUpdate.exe [2009-10-13 18:47] . 2011-10-08 c:\windows\Tasks\MpIdleTask.job - c:\programfiler\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27 13:39] . 2011-10-08 c:\windows\Tasks\MP Scheduled Scan.job - c:\programfiler\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27 13:39] . . ------- Tilleggsskanning ------- . uStart Page = hxxp://www.online.no IE: Google Sidewiki - c:\programfiler\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html TCP: DhcpNameServer = 193.213.112.4 130.67.15.198 FF - ProfilePath - c:\documents and settings\Ingrid\Programdata\Mozilla\Firefox\Profiles\6dls6s7c.default\ FF - prefs.js: browser.startup.homepage - hxxps://www.facebook.com/ FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\programfiler\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\programfiler\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - c:\programfiler\Real\RealPlayer\browserrecord\firefox\ext FF - Ext: PC Sync 2 Synchronisation Extension: [email protected] - c:\programfiler\Nokia\Nokia PC Suite 7\bkmrksync FF - Ext: Java Quick Starter: [email protected] - c:\programfiler\Java\jre6\lib\deploy\jqs\ff FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b} FF - user.js: browser.cache.memory.capacity - 16000 FF - user.js: browser.chrome.favicons - false FF - user.js: browser.display.show_image_placeholders - true FF - user.js: browser.turbo.enabled - true FF - user.js: browser.urlbar.autocomplete.enabled - true FF - user.js: browser.urlbar.autofill - true FF - user.js: content.max.tokenizing.time - 2250000 FF - user.js: content.notify.backoffcount - 5 FF - user.js: content.notify.interval - 750000 FF - user.js: content.notify.ontimer - true FF - user.js: content.switch.threshold - 750000 FF - user.js: dom.disable_window_status_change - true FF - user.js: network.http.max-connections - 32 FF - user.js: network.http.max-connections-per-server - 8 FF - user.js: network.http.max-persistent-connections-per-proxy - 8 FF - user.js: network.http.max-persistent-connections-per-server - 4 FF - user.js: network.http.pipelining - true FF - user.js: network.http.pipelining.maxrequests - 8 FF - user.js: network.http.proxy.pipelining - true FF - user.js: network.http.request.max-start-delay - 0 FF - user.js: nglayout.initialpaint.delay - 750 FF - user.js: plugin.expose_full_path - true FF - user.js: ui.submenuDelay - 0 . - - - - TOMME PEKERE FJERNET - - - - . MSConfigStartUp-DownloadAccelerator - c:\programfiler\DAP\DAP.EXE MSConfigStartUp-wmsdk64_32 - c:\docume~1\Ingrids\LOKALE~1\Temp\wmsdk64_32.exe AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\documents and settings\All Users\Programdata\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}\bm_installer.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2011-10-08 15:54 Windows 5.1.2600 Service Pack 3 FAT NTAPI . skanner skjulte prosesser ... . skanner skjulte autostart-oppføringer ... . skanner skjulte filer ... . skanning vellykket skjulte filer: 0 . ************************************************************************** . --------------------- DLL'er Lastet Av Kjørende Prosesser --------------------- . - - - - - - - > 'winlogon.exe'(672) c:\programfiler\fellesfiler\logishrd\bluetooth\LBTWlgn.dll c:\programfiler\fellesfiler\logishrd\bluetooth\LBTServ.dll . - - - - - - - > 'explorer.exe'(6352) c:\programfiler\Fellesfiler\Logitech\LVMVFM\LVPrcInj.dll c:\programfiler\Logitech\SetPoint\lgscroll.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\btncopy.dll c:\programfiler\Nokia\Nokia PC Suite 7\PhoneBrowser.dll c:\programfiler\Nokia\Nokia PC Suite 7\NGSCM.DLL c:\programfiler\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_nor.nlr c:\programfiler\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Andre Kjørende Prosesser ------------------------ . c:\programfiler\Microsoft Security Client\Antimalware\MsMpEng.exe c:\programfiler\Intel\Wireless\Bin\EvtEng.exe c:\programfiler\Intel\Wireless\Bin\S24EvMon.exe c:\programfiler\fellesfiler\logitech\lvmvfm\LVPrcSrv.exe c:\acer\Empowering Technology\ePerformance\MemCheck.exe c:\programfiler\WIDCOMM\Bluetooth Software\bin\btwdins.exe c:\program files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe c:\program files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe c:\program files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe c:\programfiler\Windows Live\Family Safety\fsssvc.exe c:\programfiler\Java\jre6\bin\jqs.exe c:\programfiler\Fellesfiler\LightScribe\LSSrvc.exe c:\windows\system32\nvsvc32.exe c:\programfiler\Intel\Wireless\Bin\RegSrvc.exe c:\programfiler\CyberLink\Shared Files\RichVideo.exe c:\program files\Acer\Acer Arcade\Kernel\TV\CLSched.exe c:\windows\system32\wscntfy.exe c:\windows\system32\wbem\wmiapsrv.exe c:\windows\system32\wbem\unsecapp.exe c:\programfiler\Fellesfiler\Logishrd\KHAL2\KHALMNPR.EXE . ************************************************************************** . Tidspunkt ferdig: 2011-10-08 16:03:57 - maskinen ble startet på nytt ComboFix-quarantined-files.txt 2011-10-08 14:03 . Pre-Run: 32 021 086 208 byte ledig Post-Run: 32 654 950 400 byte ledig . - - End Of File - - C57AFCEF19DE23D2DF5D065ED7712316 Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå