Gå til innhold

Anbefalte innlegg

Hei.

 

Jeg trur jeg har fått virus på pcen, siden den ikke oppfører seg som før. Toolbaren blir annen farge, skifter utsende og lyden vil ikke funke. Har oppdatert lyddriverne.

 

Her har du en SAS-logg :

 

 

 

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 05/27/2007 at 01:37 PM

 

Application Version : 3.8.1002

 

Core Rules Database Version : 3245

Trace Rules Database Version: 1256

 

Scan type : Complete Scan

 

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wwSecure.exe

C:\WINDOWS\Explorer.EXE

C:\PROGRA~1\Grisoft\AVG7\avgcc.exe

C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe

C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\ASUS\ASUS DH Remote\AsDhRemote.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\MOZILL~1\FIREFOX.EXE

C:\Program Files\hijackthis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [Ai Quicker Help] "C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe"

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper

O4 - HKLM\..\Run: [Mircosoft Windows Development Environment] devenv.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.0 Final Release\RivaTuner.exe" /S

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - Global Startup: ASUS WiFi-AP Solo.lnk = ?

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html

O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html

O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1176333361875

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe

 

 

 

 

 

 

Rootchk logg

 

 

********************************* ROOTCHK-(21-05-07)-LOG, by ejvindh

27.05.2007 13:56:50,98

 

The rootkits that are detected by this tool were not found.

 

********************************* ROOTCHK-LOG-end

 

 

catchme 0.3.660 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net

Rootkit scan 2007-05-27 13:56:51

Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden processes: 0

hidden services: 0

hidden files: 0

 

 

 

HJT-logg

 

 

Logfile of HijackThis v1.99.1

Scan saved at 14:00:53, on 27.05.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16441)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\WINDOWS\system32\CTsvcCDA.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wwSecure.exe

C:\WINDOWS\Explorer.EXE

C:\PROGRA~1\Grisoft\AVG7\avgcc.exe

C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe

C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\ASUS\ASUS DH Remote\AsDhRemote.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\MOZILL~1\FIREFOX.EXE

C:\Program Files\hijackthis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [Ai Quicker Help] "C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe"

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper

O4 - HKLM\..\Run: [Mircosoft Windows Development Environment] devenv.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.0 Final Release\RivaTuner.exe" /S

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - Global Startup: ASUS WiFi-AP Solo.lnk = ?

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html

O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html

O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1176333361875

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe

 

 

 

Håper at noen kan hjelpe meg

 

-Espen :)

Endret av EspenFe
Lenke til kommentar
Videoannonse
Annonse

Hei, Espen

 

Last ned SDFix til skrivebordet.

 

Dobbeltklikk på SDFix.exe og det vil pakke seg ut til ei mappe i C:\SDFix

 

Restart pc'n i sikker modus (tapp F8 under oppstart, velg sikker modus)

 

Åpne SDFix-mappa og dobbeltklikk på 'RunThis.bat' for å starte programmet

Velg Y for å starte rensingen

Pc'n vil restarte, og SDFix vil fortsette.

 

Når dette er ferdig, poster du en ny HJT-logg + loggen fra SDFix (vil ligge som Report.txt i SDFix-mappa).

Lenke til kommentar
Hei, Espen

 

Last ned SDFix til skrivebordet.

 

Dobbeltklikk på SDFix.exe og det vil pakke seg ut til ei mappe i C:\SDFix

 

Restart pc'n i sikker modus (tapp F8 under oppstart, velg sikker modus)

 

Åpne SDFix-mappa og dobbeltklikk på 'RunThis.bat' for å starte programmet

Velg Y for å starte rensingen

Pc'n vil restarte, og SDFix vil fortsette.

 

Når dette er ferdig, poster du en ny HJT-logg + loggen fra SDFix (vil ligge som Report.txt i SDFix-mappa).

8713819[/snapback]

Dette her ble irriterende. Jeg får ikke til å state i Safe Mode.

 

Når jeg starter opp, kommer logoen til Hovedkortet mitt. Der står det : Press Delete to enter setup. Skal jeg trykke F8 der ? Når jeg trykker F8 der, så litt senere kommer det hvilken bootdevice jeg skal ha. (Hvilken Hdd)

Lenke til kommentar

Hva skjer om du fortsetter å trykke F8?

(Kanskje velg hvilken hdd først og deretter F8)

 

En annen måte er å starte pc'n som vanlig. Gå til Start -> Kjør, skriv: msconfig

Under arkfanen Boot.ini, kan du avhuke /SAFEBOOT. Klikk OK og restart pc (nå til sikker modus).

Endret av norbat
Lenke til kommentar
Hva skjer om du fortsetter å trykke F8?

(Kanskje velg hvilken hdd først og deretter F8)

 

En annen måte er å starte pc'n som vanlig. Gå til Start -> Kjør, skriv: msconfig

Under arkfanen Boot.ini, kan du avhuke /SAFEBOOT. Klikk OK og restart pc (nå til sikker modus).

8714063[/snapback]

Jeg gjorde det du sa ; Huket av for SAFEBOOT i msconfig.

 

Når jeg restarte etter dette, skulle jeg tappe F8, eller kom det seg i Safe Mode selv ?

 

jeg kom meg hvertfall ikke inn.

 

Legger ved bilde :

post-99049-1180269988_thumb.jpg

Endret av EspenFe
Lenke til kommentar

Hm, nei, du skal ikke behøve å bruke F8 når du har valgt /safeboot.

 

Hvis du restarter og trykker flere ganger på F8, velger evt. hdd og fortsetter å trykke F8, er det da heller ingen ting som skjer enn at pc'n booter opp vanlig?

Endret av norbat
Lenke til kommentar
Hm, nei, du skal ikke behøve å bruke F8 når du har valgt /safeboot.

 

Hvis du restarter og trykker flere ganger på F8, velger evt. hdd og fortsetter å trykke F8, er det da heller ingen ting som skjer enn at pc'n booter opp vanlig?

8714268[/snapback]

Hei igjen. det funket.

 

SDfix loggen :

 

 

 

 

SDFix: Version 1.85

 

Run by Espen - 27.05.2007 - 15:14:53,76

 

Microsoft Windows XP [Version 5.1.2600]

 

Running From: C:\SDFix

 

Safe Mode:

Checking Services:

 

 

 

 

 

 

Restoring Windows Registry Values

Restoring Windows Default Hosts File

 

Rebooting...

 

 

Normal Mode:

Checking Files:

 

No Trojan Files Found

 

 

 

 

Removing Temp Files...

 

ADS Check:

 

Checking if ADS is attached to system32 Folder

C:\WINDOWS\system32

No streams found.

 

Checking if ADS is attached to svchost.exe

C:\WINDOWS\system32\svchost.exe

No streams found.

 

 

 

Final Check:

 

Remaining Services:

------------------

 

 

 

Authorized Application Key Export:

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"

"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"

"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"

"C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe"="C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe:*:Enabled:avgemc.exe"

"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"C:\\Program Files\\BitLord\\BitLord.exe"="C:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:BitLord"

"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"

"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"

"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"

"C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"

"C:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"="C:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe:*:Enabled:Battlefield 2"

"C:\\Program Files\\BitLord\\Downloads\\[PC] Test Drive Unlimited [PROPER] [RIP] [dopeman]\\TestDriveUnlimited.exe"="C:\\Program Files\\BitLord\\Downloads\\[PC] Test Drive Unlimited [PROPER] [RIP] [dopeman]\\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"

"F:\\Media\\Spill\\[PC] Test Drive Unlimited [PROPER] [RIP] [dopeman]\\TestDriveUnlimited.exe"="F:\\Media\\Spill\\[PC] Test Drive Unlimited [PROPER] [RIP] [dopeman]\\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"

"C:\\Program Files\\Sony Ericsson\\Update Service\\ma3platform.exe"="C:\\Program Files\\Sony Ericsson\\Update Service\\ma3platform.exe:*:Enabled:ma3platform"

"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"

"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

 

Remaining Files:

---------------

 

 

Checking For Files with Hidden Attributes:

 

C:\Program Files\Canon\MP Navigator 3.0\uinstrsc.dll

C:\Program Files\Canon\MP Navigator 3.0\Maint.exe

C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp

 

Finished

 

 

 

Ny HJT-logg :

 

 

Logfile of HijackThis v1.99.1

Scan saved at 15:24:57, on 27.05.2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16441)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\WINDOWS\system32\CTsvcCDA.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wwSecure.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe

C:\Program Files\PowerISO\PWRISOVM.EXE

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe

C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe

C:\PROGRA~1\Grisoft\AVG7\avgcc.exe

C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\Program Files\ASUS\ASUS DH Remote\AsDhRemote.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\ASUS WiFi-AP Solo\RtWLan.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\Program Files\Common Files\Teleca Shared\Generic.exe

C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe

C:\PROGRA~1\MOZILL~1\FIREFOX.EXE

C:\WINDOWS\system32\msiexec.exe

C:\Program Files\hijackthis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions

O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.0 Final Release\RivaTuner.exe" /S

O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE

O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot

O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd2.exe"

O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"

O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [Ai Quicker Help] "C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Window Washer] C:\Program Files\Webroot\Washer\wwDisp.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - Global Startup: ASUS WiFi-AP Solo.lnk = ?

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html

O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll

O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1176333361875

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe

 

 

 

 

- Espen :)

Lenke til kommentar

Loggen er ren :thumbup:

 

Fortell hvordan pc'n oppfører seg.

 

Hent CCleaner. Start programmet. Gå til 'Valg'->'Avansert'. Fjern avkryssingen framfor: "bare slett midlertidige filer......." Klikk på 'Renser' og deretter 'Kjør CCleaner'.

Kjør også noen runder med 'Saker' til det ikke finner flere feil.

 

Du bør nullstille gjenopprettingsmappa slik at du ikke blir infisert ved en evt. systemgjenoppretting.

Kontrollpanel->system->systemgjenoppretting .

Sett merke framfor "Slå av .....",

restart pc, fjern merket igjen for å aktivere funksjonen.

Lenke til kommentar
Loggen er ren  :thumbup:

 

Fortell hvordan pc'n oppfører seg.

 

Hent CCleaner. Start programmet. Gå til 'Valg'->'Avansert'. Fjern avkryssingen framfor: "bare slett midlertidige filer......." Klikk på 'Renser' og deretter 'Kjør CCleaner'.

Kjør også noen runder med 'Saker' til det ikke finner flere feil.

 

Du bør nullstille gjenopprettingsmappa slik at du ikke blir infisert ved en evt. systemgjenoppretting.

Kontrollpanel->system->systemgjenoppretting .

Sett merke framfor "Slå av .....",

restart pc, fjern merket igjen for å aktivere funksjonen.

8714462[/snapback]

Hei. Pcen oppfører seg likt. Synes det er rart.

 

Legger ved et bilde. Der jeg har tatt en rød strek(toolbaren), den halverer seg, så jeg må låse den opp å flytte den tilbake på plass. Lyden funker ikke enda heller.

post-99049-1180273819_thumb.jpg

Lenke til kommentar

Reinstallere lyddriveren. Det bør skaffe lydenheten tilbake.

 

En hjt-logg trenger ikke å vise alt, så en scan med et antivirusprogram bør utføres. Du bruker AVG, så ta og oppdater det og kjør en full scan.

 

HJT-loggen viste tidligere at du hadde et lite krapyl som normalt blir fjernet ved bruk av sdfix. Fila vi snakker om, ble vist som O4 - HKLM\..\Run: [Mircosoft Windows Development Environment] devenv.exe

 

Vi gjør derfor følgende for å forsikre oss om at den er borte:

 

Hent Avenger og pakk det ut.

 

Start programmet, sett prikk i "Input Script Manually" og klikk på lupen.

I vinduet som kommer opp kopierer du og limer inn det som er i fet skrift under:

 

Files to delete:

C:\WINDOWS\system32\devenv.exe

 

Klikk på Trafikklyset. Restart pc'n.

Etter restart vil det komme en loggfil som forteller hva som har skjedd.

Hvis fjerningen ble mislykket pga. at filen ikke finnes, betyr det at den ble fjernet av sdfix

 

Hent deretter Combofix, og legg det på skrivebordet

 

Kjør combofix.exe, og følg veiledningen.

Du må ikke klikke på vinduet mens programmet kjører.

 

Post loggfilen fra combofix. (vanligvis c:\combofix.txt).

 

Hvis det er noen systemfiler som er blitt i uorden, kan disse fixes ved å skrive: sfc /scannow (mellomrom mellom sfc og / ), fra Start -> Kjør.

Du trenger antakelig XP-cd'n din.

 

At oppgavelinja deler seg, kan kanskje ordnes vha. av noen innstillinger? Kanskje så ligger det et felt der som ikke er synlig (eks. språkvalg?) Hvordan ser oppgavelinja ut når du fjerner avmerkingen for 'Lås oppgavelinjen?. Du har veeeeldig mange ikoner liggende der. Er alle nødvendig?

Endret av norbat
Lenke til kommentar

Hei norbat.

 

 

Her er en ComboFix logg :

 

 

 

"Espen" - 2007-05-28 19:02:35 Service Pack 2

ComboFix 07-05.27.V - Running from: "C:\Program Files\Mozilla Firefox\"

 

 

((((((((((((((((((((((((((((((( Files Created from 2007-04-28 to 2007-05-28 ))))))))))))))))))))))))))))))))))

 

 

2007-05-28 19:01 <DIR> d-------- C:\WINDOWS\LastGood

2007-05-28 18:58 <DIR> d-------- C:\avenger

2007-05-28 18:16 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy

2007-05-27 12:43 <DIR> d-------- C:\Program Files\CCleaner

2007-05-27 12:19 <DIR> d-------- C:\Program Files\SUPERAntiSpyware

2007-05-27 12:19 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard

2007-05-27 12:19 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\SUPERAntiSpyware.com

2007-05-27 12:19 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com

2007-05-26 02:02 <DIR> d-------- C:\Program Files\coverXP

2007-05-26 01:39 <DIR> d-------- C:\Program Files\Easy CD & DVD Cover Creator

2007-05-25 21:53 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\FLEXnet

2007-05-25 19:57 <DIR> d-------- C:\Program Files\Bonjour

2007-05-25 19:51 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared

2007-05-24 16:02 <DIR> d-------- C:\Program Files\CD-LabelPrint

2007-05-24 15:56 38,480 --------- C:\WINDOWS\system32\IJRMF.exe

2007-05-24 15:23 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\CD-LabelPrint

2007-05-23 17:07 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\Canon

2007-05-23 14:44 <DIR> d-------- C:\Program Files\ScanSoft

2007-05-23 14:44 <DIR> d-------- C:\Program Files\Common Files\ScanSoft Shared

2007-05-23 14:44 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\ScanSoft

2007-05-23 14:44 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft

2007-05-23 14:44 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield

2007-05-23 14:40 212,480 --a------ C:\WINDOWS\PCDLIB32.DLL

2007-05-23 14:40 <DIR> d-------- C:\Program Files\ArcSoft

2007-05-23 14:37 57,344 --a------ C:\WINDOWS\system32\CNCI600.DLL

2007-05-23 14:37 197,632 --a------ C:\WINDOWS\system32\CNMLM87.DLL

2007-05-23 14:37 135,168 --a------ C:\WINDOWS\system32\CNCL600.DLL

2007-05-23 14:37 106,496 --a------ C:\WINDOWS\system32\cnco600.dll

2007-05-23 14:37 1,298,432 --a------ C:\WINDOWS\system32\CNCC600.DLL

2007-05-23 14:37 <DIR> d--h----- C:\WINDOWS\system32\CanonIJ Uninstaller Information

2007-05-23 14:37 <DIR> d--h----- C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ

2007-05-23 14:36 <DIR> d--h----- C:\Program Files\CanonBJ

2007-05-23 14:35 <DIR> d-------- C:\Program Files\Canon

2007-05-23 13:38 <DIR> d-------- C:\WINDOWS\system32\appmgmt

2007-05-22 20:33 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\Apple Computer

2007-05-21 16:18 8,704 --a------ C:\WINDOWS\system32\drivers\ggsemc.sys

2007-05-21 16:16 97,184 -ra------ C:\WINDOWS\system32\drivers\SE27mdm.sys

2007-05-21 16:16 9,360 -ra------ C:\WINDOWS\system32\drivers\SE27mdfl.sys

2007-05-21 16:16 6,240 -ra------ C:\WINDOWS\system32\drivers\SE27cmnt.sys

2007-05-21 16:16 6,240 -ra------ C:\WINDOWS\system32\drivers\SE27cm.sys

2007-05-15 22:38 <DIR> d-------- C:\Program Files\SystemRequirementsLab

2007-05-15 22:37 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\SystemRequirementsLab

2007-05-10 03:04 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2

2007-05-04 02:47 89,360 --a------ C:\WINDOWS\system32\VB5DB.DLL

2007-05-04 02:47 81,920 --a------ C:\WINDOWS\system32\viscomwave.dll

2007-05-04 02:47 323,584 --a------ C:\WINDOWS\system32\FoxImager.dll

2007-05-04 02:47 1,101,824 --a------ C:\WINDOWS\system32\NMSDVDXU.dll

2007-05-04 02:44 737,280 --a------ C:\WINDOWS\iun6002.exe

2007-05-04 02:43 57,344 --a------ C:\WINDOWS\system32\WNASPINT.DLL

2007-05-03 20:07 <DIR> d-------- C:\DOCUME~1\Espen\APPLIC~1\Nero

2007-05-03 20:06 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead

2007-05-01 17:18 626,960 -ra------ C:\WINDOWS\system32\hpvaut32.dll

2007-05-01 17:18 487,424 -ra------ C:\WINDOWS\system32\hpvcp70.dll

2007-05-01 17:18 44,544 -ra------ C:\WINDOWS\system32\MSXML4a.dll

2007-05-01 17:18 344,064 -ra------ C:\WINDOWS\system32\hpvcr70.dll

2007-05-01 17:18 <DIR> d-------- C:\Program Files\Common Files\Hewlett-Packard

2007-05-01 17:13 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys

2007-05-01 17:13 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys

2007-05-01 17:03 94,208 --a------ C:\WINDOWS\system32\HPZipt12.dll

2007-05-01 17:03 65,536 --a------ C:\WINDOWS\system32\HPZipm12.exe

2007-05-01 17:03 61,440 --a------ C:\WINDOWS\system32\HPZinw12.exe

2007-05-01 17:03 57,344 --a------ C:\WINDOWS\system32\HPZisn12.dll

2007-05-01 17:03 306,688 --a------ C:\WINDOWS\IsUninst.exe

2007-05-01 17:03 278,584 --a------ C:\WINDOWS\system32\HPZidr12.dll

2007-05-01 17:03 204,800 --a------ C:\WINDOWS\system32\HPZipr12.dll

2007-04-30 00:19 <DIR> d-------- C:\Program Files\Combined Community Codec Pack

2007-04-30 00:10 77,824 --a------ C:\WINDOWS\system32\mplaw7.dll

2007-04-30 00:10 77,824 --a------ C:\WINDOWS\system32\mplaa6.dll

2007-04-30 00:10 761,856 --a------ C:\WINDOWS\system32\xvidcore.dll

2007-04-30 00:10 65,536 --a------ C:\WINDOWS\system32\mplapx.dll

2007-04-30 00:10 65,536 --a------ C:\WINDOWS\system32\mplam6.dll

2007-04-30 00:10 19,968 --a------ C:\WINDOWS\system32\cpuinf32.dll

2007-04-30 00:10 152,064 --a------ C:\WINDOWS\system32\unrar.dll

2007-04-30 00:10 1,650,688 --a------ C:\WINDOWS\system32\mplva6.dll

2007-04-30 00:10 1,581,056 --a------ C:\WINDOWS\system32\mplvw7.dll

2007-04-30 00:10 1,552,384 --a------ C:\WINDOWS\system32\mplvm6.dll

2007-04-30 00:10 1,122,304 --a------ C:\WINDOWS\system32\mplvpx.dll

2007-04-30 00:10 <DIR> d-------- C:\Program Files\ACE Mega CoDecS Pack

2007-04-29 19:59 24,816 --a------ C:\WINDOWS\system32\mdimon.dll

2007-04-29 19:58 <DIR> d-------- C:\WINDOWS\SHELLNEW

2007-04-29 19:58 <DIR> d-------- C:\Program Files\Microsoft.NET

2007-04-29 19:56 <DIR> dr-h----- C:\MSOCache

2007-04-29 15:31 <DIR> d-------- C:\VIDEO_TS

 

 

(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))

 

2007-05-23 12:44:40 -------- d-----w C:\Program Files\Common Files\InstallShield

2007-05-23 12:40:12 -------- d--h--w C:\Program Files\InstallShield Installation Information

2007-05-21 18:11:44 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\LimeWire

2007-05-21 14:16:58 -------- d-----w C:\Program Files\Sony Ericsson

2007-05-11 15:05:13 -------- d-----w C:\Program Files\SpeedFan

2007-05-03 18:06:01 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\Ahead

2007-04-29 21:52:11 -------- d-----w C:\Program Files\QuickTime

2007-04-28 22:50:37 -------- d-----w C:\Program Files\PartyGaming

2007-04-24 14:40:14 -------- d-----w C:\Program Files\JAM Software

2007-04-22 18:14:17 -------- d-----w C:\Program Files\Common Files\Webroot Shared

2007-04-22 18:14:13 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\Webroot

2007-04-22 18:14:11 -------- d-----w C:\Program Files\Webroot

2007-04-20 13:13:46 -------- d-----w C:\Program Files\Common Files\LightScribe

2007-04-20 13:12:44 -------- d-----w C:\Program Files\Common Files\Ahead

2007-04-20 13:10:26 -------- d-----w C:\Program Files\Nero

2007-04-19 20:34:04 -------- d-----w C:\Program Files\DAEMON Tools

2007-04-19 20:27:31 682,232 ----a-w C:\WINDOWS\system32\drivers\sptd.sys

2007-04-19 19:42:06 1,165 ----a-w C:\WINDOWS\mozver.dat

2007-04-19 19:29:53 -------- d-----w C:\Program Files\PowerISO

2007-04-19 19:24:06 0 ----a-w C:\WINDOWS\nsreg.dat

2007-04-18 21:19:28 -------- d--h--r C:\DOCUME~1\Espen\APPLIC~1\SecuROM

2007-04-18 21:11:40 -------- d-----w C:\Program Files\Atari

2007-04-17 18:40:32 12,400 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys

2007-04-17 18:38:49 531 ----a-w C:\WINDOWS\eReg.dat

2007-04-17 12:43:13 -------- d-----w C:\Program Files\DivX

2007-04-17 05:46:48 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\DivX

2007-04-15 21:52:49 664 ----a-w C:\WINDOWS\system32\d3d9caps.dat

2007-04-15 15:52:29 552 ----a-w C:\WINDOWS\system32\d3d8caps.dat

2007-04-13 21:33:51 108,144 ----a-w C:\WINDOWS\system32\CmdLineExt.dll

2007-04-13 16:58:31 -------- d-----w C:\Program Files\GameSpy Arcade

2007-04-13 16:51:07 -------- d-----w C:\Program Files\EA GAMES

2007-04-13 12:55:46 -------- d-----w C:\Program Files\THQ

2007-04-13 01:40:40 -------- d-----w C:\Program Files\RivaTuner v2.0 Final Release

2007-04-13 00:57:09 -------- d-----w C:\Program Files\Alcohol Soft

2007-04-12 17:45:07 -------- d-----w C:\Program Files\Creative

2007-04-12 17:21:23 -------- d-----w C:\Program Files\MSN Messenger

2007-04-12 16:02:03 -------- d-----w C:\Program Files\MSXML 4.0

2007-04-12 16:01:38 -------- d-----w C:\Program Files\MSBuild

2007-04-12 15:59:47 -------- d-----w C:\Program Files\Reference Assemblies

2007-04-12 15:58:46 -------- d-----w C:\Program Files\Windows Media Connect 2

2007-04-12 15:28:59 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\Teleca

2007-04-12 15:27:10 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\Sony Ericsson

2007-04-12 15:25:55 -------- d-----w C:\Program Files\Common Files\Teleca Shared

2007-04-12 15:25:39 -------- d-----w C:\Program Files\Common Files\Sony Ericsson Shared

2007-04-12 12:22:22 -------- d-----w C:\Program Files\Common Files\ODBC

2007-04-12 12:22:19 -------- d-----w C:\Program Files\Common Files\SpeechEngines

2007-04-12 10:32:48 0 --sha-r C:\MSDOS.SYS

2007-04-12 10:32:48 0 --sha-r C:\IO.SYS

2007-04-12 10:32:48 0 ----a-w C:\CONFIG.SYS

2007-04-12 10:32:48 0 ----a-w C:\AUTOEXEC.BAT

2007-04-12 10:31:39 -------- d--h--w C:\Program Files\WindowsUpdate

2007-04-12 10:30:52 -------- d-----w C:\Program Files\Common Files\MSSoap

2007-04-12 10:30:45 -------- d-----w C:\Program Files\Movie Maker

2007-04-12 10:30:03 21,640 ----a-w C:\WINDOWS\system32\emptyregdb.dat

2007-04-12 10:29:38 -------- d-----w C:\Program Files\Online Services

2007-04-12 10:29:30 -------- d-----w C:\Program Files\MSN Gaming Zone

2007-04-12 10:29:22 -------- d-----w C:\Program Files\Windows NT

2007-04-12 03:07:34 86,016 ----a-w C:\WINDOWS\system32\OpenAL32.dll

2007-04-12 03:07:34 262,144 ----a-w C:\WINDOWS\system32\wrap_oal.dll

2007-04-12 03:06:20 -------- d-----w C:\Program Files\Futuremark

2007-04-12 02:36:44 -------- d-----w C:\Program Files\LimeWire

2007-04-12 02:28:41 -------- d-----w C:\Program Files\Lavalys

2007-04-12 02:03:15 -------- d-----w C:\Program Files\BitLord

2007-04-12 02:00:13 -------- d-----w C:\DOCUME~1\Espen\APPLIC~1\ATI

2007-04-12 01:58:03 -------- d-----w C:\Program Files\ATI Technologies

2007-04-12 01:25:25 -------- d-----w C:\Program Files\Messenger

2007-04-12 00:17:41 -------- d-----w C:\Program Files\ASUS

2007-04-12 00:15:56 -------- d-----w C:\Program Files\ASUS WiFi-AP Solo

2007-04-12 00:14:41 -------- d-----w C:\Program Files\Marvell

2007-04-12 00:04:39 -------- d-----w C:\Program Files\Intel

2007-04-11 23:18:56 499,712 ----a-w C:\WINDOWS\system32\msvcp71.dll

2007-04-11 23:18:56 348,160 ----a-w C:\WINDOWS\system32\msvcr71.dll

2007-03-23 04:07:56 1,683,280 ------w C:\WINDOWS\system32\XpsSvcs.dll

2007-03-23 04:07:54 583,504 ------w C:\WINDOWS\system32\XPSSHHDR.dll

2007-03-22 18:25:02 124,928 ------w C:\WINDOWS\system32\prntvpt.dll

2007-03-21 18:54:16 77,312 ----a-w C:\WINDOWS\system32\TWAIN_32.DLL

2007-03-21 18:54:16 69,632 ----a-w C:\WINDOWS\system32\TWUNK_32.EXE

2007-03-21 18:54:16 48,560 ----a-w C:\WINDOWS\system32\TWUNK_16.EXE

2007-03-17 13:43:01 292,864 ----a-w C:\WINDOWS\system32\winsrv.dll

2007-03-08 15:36:28 577,536 ----a-w C:\WINDOWS\system32\user32.dll

2007-03-08 15:36:28 40,960 ----a-w C:\WINDOWS\system32\mf3216.dll

2007-03-08 15:36:28 281,600 ----a-w C:\WINDOWS\system32\gdi32.dll

2007-03-08 13:47:48 1,843,584 ----a-w C:\WINDOWS\system32\win32k.sys

2007-03-06 19:05:00 520,192 ------w C:\WINDOWS\system32\ati2sgag.exe

2007-03-02 20:57:04 307,200 ----a-w C:\WINDOWS\system32\atiiiexx.dll

2007-03-02 20:54:35 307,200 ----a-w C:\WINDOWS\system32\ATIDEMGX.dll

2007-03-02 20:53:36 265,728 ----a-w C:\WINDOWS\system32\ati2dvag.dll

2007-03-02 20:47:51 118,784 ----a-w C:\WINDOWS\system32\atipdlxx.dll

2007-03-02 20:47:42 110,592 ----a-w C:\WINDOWS\system32\Oemdspif.dll

2007-03-02 20:47:35 26,112 ----a-w C:\WINDOWS\system32\Ati2mdxx.exe

2007-03-02 20:47:30 42,496 ----a-w C:\WINDOWS\system32\ati2edxx.dll

2007-03-02 20:47:19 110,592 ----a-w C:\WINDOWS\system32\ati2evxx.dll

2007-03-02 20:46:12 446,464 ----a-w C:\WINDOWS\system32\ati2evxx.exe

2007-03-02 20:45:32 53,248 ----a-w C:\WINDOWS\system32\ATIDDC.DLL

2007-03-02 20:38:53 2,824,512 ----a-w C:\WINDOWS\system32\ati3duag.dll

2007-03-02 20:29:23 1,288,960 ----a-w C:\WINDOWS\system32\ativvaxx.dll

2007-03-02 20:29:08 3,107,788 ----a-w C:\WINDOWS\system32\ativvaxx.dat

2007-03-02 20:21:15 5,398,528 ----a-w C:\WINDOWS\system32\atioglxx.dll

2007-03-02 20:17:37 258,048 ----a-w C:\WINDOWS\system32\atikvmag.dll

2007-03-02 20:16:23 17,408 ----a-w C:\WINDOWS\system32\atitvo32.dll

2007-03-02 20:11:44 348,160 ----a-w C:\WINDOWS\system32\ati2cqag.dll

 

 

(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

 

 

*Note* empty entries & legit default entries are not shown

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]

{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}=C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-06-09 14:37]

{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll [2007-03-14 03:43]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-09-28 13:16]

"RivaTunerStartupDaemon"="C:\Program Files\RivaTuner v2.0 Final Release\RivaTuner.exe" [2006-12-24 21:15]

"PWRISOVM.EXE"="C:\Program Files\PowerISO\PWRISOVM.EXE" [2007-01-20 09:09]

"P17Helper"="P17.dll" [2005-05-03 19:38 C:\WINDOWS\system32\P17.dll]

"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 12:45]

"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 15:40]

"JMB36X Configure"="C:\WINDOWS\system32\JMRaidTool.exe" [2006-06-29 04:07]

"CTSysVol"="C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe" [2003-09-17 10:43]

"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-04-21 09:05]

"Ai Quicker Help"="C:\Program Files\ASUS\ASUS DH Remote\AsRc.exe" [2006-07-19 09:52]

"RegistryMechanic"="" []

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 14:00]

"Window Washer"="C:\Program Files\Webroot\Washer\wwDisp.exe" [2005-04-20 10:44]

"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-05-23 10:12]

"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 12:35]

"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-11-16 19:04]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2006-09-28 16:13]

"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"="C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2006-12-20 13:55]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]

C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]

backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Image Zone Hurtigstart.lnk]

backup=C:\WINDOWS\pss\HP Image Zone Hurtigstart.lnkCommon Startup

 

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools]

"C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]

"C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]

"c:\Program Files\HP\HP Software Update\HPWuSchd2.exe"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]

"C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

"C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"

 

*Newly Created Service* -PROCEXP90

 

********************************************************************

 

catchme 0.3.681 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net

Rootkit scan 2007-05-28 19:03:44

Windows 5.1.2600 Service Pack 2 NTFS

 

scanning hidden processes ...

 

scanning hidden autostart entries ...

 

scanning hidden files ...

 

scan completed successfully

hidden files: 0

 

 

********************************************************************

 

Completion time: 2007-05-28 19:04:04

 

--- E O F ---

 

 

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
×
×
  • Opprett ny...