Zerpin Skrevet 4. november 2007 Del Skrevet 4. november 2007 Dette er pappas HJT logg Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:34:15, on 04.11.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16544) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe D:\BTNtService.exe D:\Programfiler\defwatch.exe C:\WINDOWS\system32\cba\pds.exe C:\WINDOWS\system32\drivers\KodakCCS.exe D:\Programfiler\rtvscan.exe D:\programfiler\NSCTOP.EXE C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ams_ii\hndlrsvc.exe C:\WINDOWS\system32\MsgSys.EXE C:\WINDOWS\system32\cba\xfr.exe D:\PROGRA~1\vptray.exe C:\WINDOWS\system32\RunDll32.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\wuauclt.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sol.no/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [vptray] D:\PROGRA~1\vptray.exe O4 - HKLM\..\Run: [QuickTime Task] "D:\qttask.exe" -atboottime O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [sRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [sRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'Default user') O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://D:\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE11\REFIEBAR.DLL O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - D:\Conax\PartyPoker\RunApp.exe O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - D:\Conax\PartyPoker\RunApp.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.fujitsu-siemens.com O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/haphazard/raptisoftgameloader.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/cha...v45/yacscom.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab O16 - DPF: {A243F6C2-34D2-4549-BCCD-A7BEF759B236} (Seekford Solutions, Inc.'s ssiPictureUploader Control) - http://img.funtigo.com/images/uploader/ssi...ureUploader.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer 4.15) - http://data.flatcast.com/NpFv415.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FELLES~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\BTNtService.exe O23 - Service: DefWatch - Symantec Corporation - D:\Programfiler\defwatch.exe O23 - Service: Intel Alert Handler - Intel Corporation - C:\WINDOWS\system32\ams_ii\hndlrsvc.exe O23 - Service: Intel File Transfer - Intel Corporation - C:\WINDOWS\system32\cba\xfr.exe O23 - Service: Intel PDS - Intel Corporation - C:\WINDOWS\system32\cba\pds.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - D:\Programfiler\rtvscan.exe O23 - Service: Symantec System Center Discovery Service (NSCTOP) - Symantec Corporation - D:\programfiler\NSCTOP.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver - HP - C:\WINDOWS\System32\HPHipm09.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe O24 - Desktop Component 0: (no name) - file:///C:/Documents%20and%20Settings/Arnt%20H%E5vard/Mine%20dokumenter/noname1_bg.gif -- End of file - 6771 bytes Lenke til kommentar
norbat Skrevet 4. november 2007 Del Skrevet 4. november 2007 Last ned SAS (gratisversjonen), installer, oppdater og kjør en full (Complete) scan. Post loggen fra SAS (preferences->statistics/logs) + ny hjt-logg. Lenke til kommentar
Zerpin Skrevet 4. november 2007 Forfatter Del Skrevet 4. november 2007 (endret) SAS Logg SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 11/04/2007 at 04:07 PM Application Version : 3.9.1008 Core Rules Database Version : 3337 Trace Rules Database Version: 1338 Scan type : Complete Scan Total Scan Time : 00:50:56 Memory items scanned : 425 Memory threats detected : 0 Registry items scanned : 6129 Registry threats detected : 2 File items scanned : 49948 File threats detected : 127 Unclassified.Unknown Origin HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{EA32FB3B-21C9-42cc-B8EF-01A9B28EDB0D} C:\WINDOWS\SYSTEM32\REINSTALLBACKUPS000\DRIVERFILES\IALMREM.DLL Adware.Tracking Cookie C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@advertising[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@doubleclick[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@xiti[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@adultswim[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@adtech[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@imrworldwide[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@interclick[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][5].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@revsci[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@serving-sys[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@hitbox[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@casalemedia[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][3].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@tacoda[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@atdmt[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@tradedoubler[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@enhance[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@screensavers[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@tribalfusion[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][6].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@burstnet[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@azjmp[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@ad-indicator[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@precisionclick[1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@indexstats[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][4].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][1].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_håvard@questionmarket[2].txt C:\Documents and Settings\Arnt Håvard\Cookies\arnt_hå[email protected][3].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\janne@adtech[1].txt C:\Documents and Settings\Janne\Cookies\janne@advertising[1].txt C:\Documents and Settings\Janne\Cookies\janne@casalemedia[2].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\janne@doubleclick[1].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\janne@imrworldwide[2].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\janne@pointclickhome[1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\janne@specificclick[2].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\janne@statcounter[1].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\[email protected][2].txt C:\Documents and Settings\Janne\Cookies\janne@tradedoubler[1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt C:\Documents and Settings\Janne\Cookies\[email protected][1].txt Unclassified.PC MightyMax HKU\S-1-5-21-1302794571-3749023234-1632351865-1004\Software\PC MightyMax C:\Programfiler\PC MightyMax\lic.conf C:\Programfiler\PC MightyMax\lic.dat C:\Programfiler\PC MightyMax\pcdocrx.conf C:\Programfiler\PC MightyMax\tmp_res_x_101.tmp C:\Programfiler\PC MightyMax\tmp_res_x_102.tmp C:\Programfiler\PC MightyMax\tmp_res_x_103.tmp C:\Programfiler\PC MightyMax\tmp_res_x_104.tmp C:\Programfiler\PC MightyMax\tmp_res_x_105.tmp C:\Programfiler\PC MightyMax\tmp_res_x_106.tmp C:\Programfiler\PC MightyMax\tmp_res_x_107.tmp C:\Programfiler\PC MightyMax\tmp_res_x_108.tmp C:\Programfiler\PC MightyMax\tmp_res_x_109.tmp C:\Programfiler\PC MightyMax\tmp_res_x_110.tmp C:\Programfiler\PC MightyMax\tmp_res_x_111.tmp C:\Programfiler\PC MightyMax\tmp_res_x_112.tmp C:\Programfiler\PC MightyMax\tmp_res_x_113.tmp C:\Programfiler\PC MightyMax\tmp_res_x_114.tmp C:\Programfiler\PC MightyMax\tmp_res_x_115.tmp C:\Programfiler\PC MightyMax\tmp_res_x_116.tmp C:\Programfiler\PC MightyMax\tmp_res_x_117.tmp C:\Programfiler\PC MightyMax\tmp_res_x_118.tmp C:\Programfiler\PC MightyMax\tmp_res_x_119.tmp C:\Programfiler\PC MightyMax\tmp_res_x_120.tmp C:\Programfiler\PC MightyMax\tmp_res_x_121.tmp C:\Programfiler\PC MightyMax\tmp_res_x_122.tmp C:\Programfiler\PC MightyMax\tmp_res_x_123.tmp C:\Programfiler\PC MightyMax\tmp_res_x_124.tmp C:\Programfiler\PC MightyMax\tmp_res_x_125.tmp C:\Programfiler\PC MightyMax\undo C:\Programfiler\PC MightyMax NY HJT Logg Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 16:32:52, on 04.11.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16544) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE D:\PROGRA~1\vptray.exe C:\WINDOWS\system32\RunDll32.exe C:\WINDOWS\system32\ctfmon.exe C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe D:\BTNtService.exe D:\Programfiler\defwatch.exe C:\WINDOWS\system32\cba\pds.exe C:\WINDOWS\system32\drivers\KodakCCS.exe D:\Programfiler\rtvscan.exe D:\programfiler\NSCTOP.EXE C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ams_ii\hndlrsvc.exe C:\WINDOWS\system32\MsgSys.EXE C:\WINDOWS\system32\cba\xfr.exe C:\WINDOWS\system32\wuauclt.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\Programfiler\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sol.no/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [vptray] D:\PROGRA~1\vptray.exe O4 - HKLM\..\Run: [QuickTime Task] "D:\qttask.exe" -atboottime O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [sRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [sRUUninstall] "C:\WINDOWS\System32\msiexec.exe" /x {6AF90EF6-F7F9-466C-99F4-1774826FBB40} /qn REBOOT=ReallySuppress (User 'Default user') O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://D:\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE11\REFIEBAR.DLL O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - D:\Conax\PartyPoker\RunApp.exe O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - D:\Conax\PartyPoker\RunApp.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.fujitsu-siemens.com O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/haphazard/raptisoftgameloader.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/cha...v45/yacscom.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab O16 - DPF: {A243F6C2-34D2-4549-BCCD-A7BEF759B236} (Seekford Solutions, Inc.'s ssiPictureUploader Control) - http://img.funtigo.com/images/uploader/ssi...ureUploader.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {E55FD215-A32E-43FE-A777-A7E8F165F551} (Flatcast Viewer 4.15) - http://data.flatcast.com/NpFv415.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FELLES~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: !SASWinLogon - C:\Programfiler\SUPERAntiSpyware\SASWINLO.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\BTNtService.exe O23 - Service: DefWatch - Symantec Corporation - D:\Programfiler\defwatch.exe O23 - Service: Intel Alert Handler - Intel Corporation - C:\WINDOWS\system32\ams_ii\hndlrsvc.exe O23 - Service: Intel File Transfer - Intel Corporation - C:\WINDOWS\system32\cba\xfr.exe O23 - Service: Intel PDS - Intel Corporation - C:\WINDOWS\system32\cba\pds.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - D:\Programfiler\rtvscan.exe O23 - Service: Symantec System Center Discovery Service (NSCTOP) - Symantec Corporation - D:\programfiler\NSCTOP.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver - HP - C:\WINDOWS\System32\HPHipm09.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe O24 - Desktop Component 0: (no name) - file:///C:/Documents%20and%20Settings/Arnt%20H%E5vard/Mine%20dokumenter/noname1_bg.gif -- End of file - 7003 bytes Endret 4. november 2007 av Zerpin Lenke til kommentar
norbat Skrevet 4. november 2007 Del Skrevet 4. november 2007 (endret) Ser greit ut. Du bør oppdatere javaen: http://java.com/en/download/index.jsp Virker alt ellers ok? Endret 4. november 2007 av norbat Lenke til kommentar
Zerpin Skrevet 4. november 2007 Forfatter Del Skrevet 4. november 2007 Alt ser greit ut.Tusen Takk igjen Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå