Espp Skrevet 2. juli 2007 Del Skrevet 2. juli 2007 (endret) Nå var alle punktene til norbat gjort. (Langversjon) SAS: Klikk for å se/fjerne innholdet nedenfor SUPERAntiSpyware Scan Loghttp://www.superantispyware.com Generated 07/02/2007 at 03:23 AM Application Version : 3.9.1008 Core Rules Database Version : 3263 Trace Rules Database Version: 1274 Scan type : Complete Scan Total Scan Time : 00:25:46 Memory items scanned : 699 Memory threats detected : 0 Registry items scanned : 7387 Registry threats detected : 29 File items scanned : 51159 File threats detected : 243 Adware.MovieLand/MediaPipe HKCR\MPAgent.Agent HKCR\MPAgent.Agent\CLSID HKCR\MPAgent.Agent\CurVer HKCR\MPAgent.Agent.1 HKCR\MPAgent.Agent.1\CLSID HKCR\AppId\AMNotifier.EXE HKCR\AppId\AMNotifier.EXE#AppID HKCR\AppId\MPAgent.DLL HKCR\AppId\MPAgent.DLL#AppID HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A} HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A}#AppID HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A}\ProgID HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A}\Programmable HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A}\TypeLib HKCR\CLSID\{7BF58804-E672-4B96-8EEC-BFCCE6492C9A}\VersionIndependentProgID HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59} HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}#AppID HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\InprocServer32 HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\InprocServer32#ThreadingModel HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\ProgID HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\Programmable HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\TypeLib HKCR\CLSID\{B3E19860-0CD5-4991-A066-4FCA2704DE59}\VersionIndependentProgID HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D} HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D}\1.0 HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D}\1.0\0 HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D}\1.0\0\win32 HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D}\1.0\FLAGS HKCR\TypeLib\{CCEBBEB5-D011-41B5-9F92-01F88A38DC0D}\1.0\HELPDIR Adware.Tracking Cookie C:\Documents and Settings\Ferie\Cookies\[email protected][1].txt C:\Documents and Settings\Ferie\Cookies\[email protected][1].txt C:\Documents and Settings\Ferie\Cookies\ferie@adbrite[2].txt C:\Documents and Settings\Ferie\Cookies\ferie@revsci[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@4stats[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][3].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@admarketplace[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@adserver[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@adtech[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@adultdvdserotica[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@adultfinder[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@adultrevenueservice[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@animal-porn-movies[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@animal-sex[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@apmebf[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@atdmt[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@banners[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@belnk[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@bigcocksex[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@cassava[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@click-for-health[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@clickbank[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@cracks[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@cracks[3].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@doubleclick[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@empornium[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@findwhat[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@focalex[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@freepornlessons[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@gostats[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@interclick[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@keywordelite[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@keywordmax[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@mediaplex[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@movieland[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@oddcast[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@optimost[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@pacificpoker[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@partypoker[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@payasyouclick[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@paycounter[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@pornaccess[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@pornorip[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@questionmarket[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@realmedia[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@roiservice[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@sexgals365[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@sexmix[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@sextracker[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@sexzool[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@shemalepornguide[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@smileycentral[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stats[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stats[3].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stats[4].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stats[5].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stats[6].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@stimorolsex[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@superstats[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@tacoda[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@toplist[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][3].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][5].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@tribalfusion[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@tripod[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@usenext[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@webstats4u[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@xiti[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill [email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@xxxfolder[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@xxxgateway[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill bakker@yadro[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@247realmedia[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@2o7[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@adbrite[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@adultfriendfinder[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@advertising[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@allrealitypass[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@animal-sex[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@bizrate[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@casalemedia[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@dealtime[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@drivecleaner[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@fastclick[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@hitbox[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@indexstats[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@indextools[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@overture[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@revenue[1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@revsci[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][3].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@serving-sys[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@specificclick[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@statcounter[2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@tradedoubler[1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][1].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][3].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][4].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][5].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][6].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][8].txt C:\Documents and Settings\Lill Bakker\Cookies\[email protected][2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@xxxpower[2].txt C:\Documents and Settings\Lill Bakker\Cookies\lill_bakker@zedo[1].txt HiJack: Klikk for å se/fjerne innholdet nedenfor Logfile of Trend Micro HijackThis v2.0.0 (BETA)Scan saved at 03:45:14, on 02.07.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Programfiler\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Programfiler\WIDCOMM\Bluetooth-programvare\bin\btwdins.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe C:\Programfiler\Fellesfiler\LightScribe\LSSrvc.exe C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\navapsvc.exe C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE C:\WINDOWS\system32\HPZipm12.exe C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE C:\WINDOWS\system32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe C:\Programfiler\Java\jre1.6.0_01\bin\jusched.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\Programfiler\Logitech\Video\LogiTray.exe C:\Programfiler\Santa Cruz Networks\Festoon\Festoon.exe C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\SAVScan.exe C:\Programfiler\HP\HP Software Update\HPWuSchd2.exe C:\Programfiler\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe C:\Programfiler\Adobe\Photoshop Elements 5.0\apdproxy.exe C:\Programfiler\iTunes\iTunesHelper.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\MSN Messenger\msnmsgr.exe C:\WINDOWS\system32\LVComS.exe C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Programfiler\iPod\bin\iPodService.exe C:\Programfiler\WIDCOMM\Bluetooth-programvare\BTTray.exe C:\Programfiler\HP\Digital Imaging\bin\hpqtra08.exe C:\Programfiler\HP\Digital Imaging\bin\hpqSTE08.exe C:\Programfiler\HP\Digital Imaging\bin\hpqimzone.exe C:\Programfiler\HP\Digital Imaging\Product Assistant\bin\hprblog.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\notepad.exe C:\Documents and Settings\Eivind\Skrivebord\Hvordan fjerne Spyware\Step 3\Jeees.exe.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programfiler\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.6.0_01\bin\ssv.dll O2 - BHO: (no name) - {9DFB74BF-BAFC-5835-FE10-76E5CAEEB6F0} - (no file) O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar4.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programfiler\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar4.dll O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Programfiler\Java\jre1.6.0_01\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Programfiler\Norton Internet Security Professional\UrlLstCk.exe O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\NORTON~1\AdvTools\ADVCHK.EXE O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Programfiler\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Programfiler\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe O4 - HKLM\..\Run: [Festoon] C:\Programfiler\Santa Cruz Networks\Festoon\Festoon.exe /BOOT O4 - HKLM\..\Run: [DAEMON Tools] "C:\Programfiler\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [TkBellExe] "C:\Programfiler\Fellesfiler\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [HP Software Update] C:\Programfiler\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Programfiler\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programfiler\Fellesfiler\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programfiler\Adobe\Photoshop Elements 5.0\apdproxy.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Programfiler\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programfiler\Fellesfiler\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programfiler\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Image Zone Hurtigstart.lnk = C:\Programfiler\HP\Digital Imaging\bin\hpqthb08.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.6.0_01\bin\npjpi160_01.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programfiler\WIDCOMM\Bluetooth-programvare\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programfiler\WIDCOMM\Bluetooth-programvare\btsendto_ie.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {00C1329F-D6C9-46A2-8C3F-23F50977F0A5} - http://www.liquidlab.se/smupdate/stallet/SetupInf.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by111fd.bay111.hotmail.msn.com/resources/MsnPUpld.cab O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Facebo...otoUploader.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1123885915546 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {A8482EAF-A1F3-4934-AE3F-56EB195A50BF} (DeskUpdate - Activex Control) - http://support.fujitsu-siemens.de/DeskUpda...api/activex.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game03.zylom.com/activex/zylomgamesplayer.cab O18 - Protocol: Festoon - (no CLSID) - (no file) O20 - Winlogon Notify: !SASWinLogon - C:\Programfiler\SUPERAntiSpyware\SASWINLO.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Programfiler\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Programfiler\WIDCOMM\Bluetooth-programvare\bin\btwdins.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programfiler\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Programfiler\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - C:\Programfiler\Fellesfiler\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\navapsvc.exe O23 - Service: NBService - Nero AG - C:\Programfiler\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Programfiler\Norton Internet Security Professional\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FELLES~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe -- End of file - 13632 bytes ROOTCHK: Klikk for å se/fjerne innholdet nedenfor ********************************* ROOTCHK-(21-06-07)-LOG, by ejvindh02.07.2007 3:46:43,14 The rootkits that are detected by this tool were not found. ********************************* ROOTCHK-LOG-end catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2007-07-02 03:46:43 Windows 5.1.2600 Service Pack 2 scanning hidden processes ... scanning hidden services ... scanning hidden autostart entries ... scanning hidden files ... hidden processes: 0 hidden services: 0 hidden files: 0 Hvordan ser dette ut? Vet jeg hadde noen form for "keylogger" eller noe sånt, siden jeg mista passordet til diverse nettsider. Driter i navnet som står der, siden jeg virkelig ikke heter det selv. Et annet familiemedlem! Takker for all hjelp fra norbat sin topic, og håper at denne loggen ser bra ut. Endret 2. juli 2007 av julelys Lenke til kommentar
norbat Skrevet 2. juli 2007 Del Skrevet 2. juli 2007 Loggen ser fin ut den, julelys Du kan fix følgende linje med HJT: O2 - BHO: (no name) - {9DFB74BF-BAFC-5835-FE10-76E5CAEEB6F0} - (no file) Du kan også last ned CCleaner. (Dette prog. tømmer temp-filer etc) Start programmet. Gå til 'Valg'->'Avansert'. Fjern avkryssingen framfor: "bare slett midlertidige filer......." Klikk på 'Renser' og deretter 'Kjør CCleaner'. Kjør også noen runder med 'Saker' til det ikke finner flere feil. Lenke til kommentar
Espp Skrevet 2. juli 2007 Forfatter Del Skrevet 2. juli 2007 Loggen ser fin ut den, julelys Du kan fix følgende linje med HJT: O2 - BHO: (no name) - {9DFB74BF-BAFC-5835-FE10-76E5CAEEB6F0} - (no file) Du kan også last ned CCleaner. (Dette prog. tømmer temp-filer etc) Start programmet. Gå til 'Valg'->'Avansert'. Fjern avkryssingen framfor: "bare slett midlertidige filer......." Klikk på 'Renser' og deretter 'Kjør CCleaner'. Kjør også noen runder med 'Saker' til det ikke finner flere feil. 8985727[/snapback] Hva skal jeg gjøre for å fikse den filen? Lenke til kommentar
norbat Skrevet 2. juli 2007 Del Skrevet 2. juli 2007 Start HJT, velg "Do a system scan only", sett merke framfor linja og klikk 'Fix checked'. Lenke til kommentar
Espp Skrevet 2. juli 2007 Forfatter Del Skrevet 2. juli 2007 Takker, da var alt gjort. Har lasta ned CCleaner også - Den fikk en god del å slette. 83 mb =) Legger ny emnetittel til jeg, siden denne nå er komplett Takker for all hjelp norbat. Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå