Gå til innhold
Trenger du hjelp med PCen? Still spørsmål her! ×

Bilder blir svarte og msn-vinduer "forsvinner"


Anbefalte innlegg

Prøvde å ta et screenshot av problemet, men fikk error-melding da jeg åpnet Clipboard, så jeg måtte ty til kamera. (vedlagt bilde)

 

Problemet begynte å oppstå for en ukes tid siden. Enkelte bilder i Firefox ble svarte (men når man scrollet opp og ned så ble de synlig igjen). Var ikke noen problemer da jeg åpnet samme sidene i Internet Explorer. Etterhvert "forsvant" msn vinduene. De ble imidlertid delvis synlig igjen når jeg beveget musepekeren over de. Infoområdet til venstre i Utforsker som normalt pleier være blå, er nå blitt svart (med unntak av delene som det står detaljer om filer og snarveier til Windows områder). Kjørte både virusscan og spybot uten å finne noen ting, så jeg prøvde å innstallere skjermkortdriverene på nytt. Etter en reboot funket alt helt som det skulle. Men de siste dagene har problemet dukket opp igjen. Lastet ned Nvidia Monitor for å sjekke om skjermkortet var for varmt, men jeg får ikke brukt den siden nesten hele vinduet er svart :(

 

Kan ikke se at noe av det jeg har innstallert de siste ukene har forårsaket problemet. Måtte drive å jobbe litt med få skaffet codec for glatt avspilling av x264. Kan det ha rotet til noe?

 

Noen (kanskje) relevante data om PC-en:

 

AMD 64 4200+ X2

3 GB DDR2 ram

Geforce 7900GTX

Windows XP SP2 (med alle oppdateringer)

 

post-47212-1204153459_thumb.jpg

Lenke til kommentar
Videoannonse
Annonse

Last ned HijackThis legg i egen mappe på skrivebordet.

Start programmet og velg "Do a system scan and save a logfile" .

Loggfilen kopierer du og limer inn i posten din.

 

SKJERMKORT

http://www.techpowerup.com/atitool/

Scan for artifacts,følg med på temp.

 

Kan godt boote sikkerhetmodus og surfe noen sikkere sider for og se om det samme skjer der.

 

Boot tapp f8,velg sikkerhetmodus med nettverk.

Endret av SNIPPSAT
Lenke til kommentar

Takk for svaret :)

Har kjørt HijackThis og ATITool nå, og skal teste sikkerhetsmodus straks. Skjedde noe merkelig da jeg kjørte ATITool. Visste ikke hvor lenge jeg skulle la det kjøre, så jeg stoppet etter 4 minutter (har ikke så mye tid til testing akkurat nå). Fant ingen artifacts i løpet av den tiden, men ved 65C så skjedde det noe rart. Har tydeligvis temmelig god kjøling på kortet :new_woot:

 

post-47212-1204159580_thumb.jpg

 

-------------------------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 01:30:42, on 28.02.2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16608)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

C:\PROGRA~1\Grisoft\AVG7\avgcc.exe

C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe

C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\DAEMON Tools\daemon.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

C:\Program Files\CDBurnerXP\NMSAccessU.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\Program Files\CyberLink\Shared files\RichVideo.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\Windows Live\Messenger\usnsvc.exe

C:\Program Files\iTunes\iTunes.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\system32\taskmgr.exe

C:\WINDOWS\system32\WISPTIS.EXE

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe

C:\Program Files\NVIDIA Corporation\nTune\NVMonitor.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Adobe Photoshop Lightroom 1.3\apdproxy.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [setDefaultMIDI] MIDIDef.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020

O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...b?1197136766375

O17 - HKLM\System\CCS\Services\Tcpip\..\{07F6BCC9-E7C2-4D2F-9EC2-3930946587AA}: NameServer = 62.97.193.3,62.97.193.53

O17 - HKLM\System\CS1\Services\Tcpip\..\{07F6BCC9-E7C2-4D2F-9EC2-3930946587AA}: NameServer = 62.97.193.3,62.97.193.53

O17 - HKLM\System\CS2\Services\Tcpip\..\{07F6BCC9-E7C2-4D2F-9EC2-3930946587AA}: NameServer = 62.97.193.3,62.97.193.53

O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe

O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe

 

--

End of file - 9524 bytes

----------------------------------------------------------------

 

 

Edit: Kjører i safemode nå, og selv om det er grusomt med 800x600 på denne skjermen så virker både Firefox og MSN helt fint. Da må det vel være driverproblemer, eller? Skjønner isåfall ikke hvordan det kan ha skjedd, da problemene oppstod mange måneder etter at jeg innstallerte skjermkortdrivere sist.

Endret av Asmod
Lenke til kommentar

Fjern ntune denne skaper mye trøbbel for mange.

 

loggen ser greit ut.

 

Kan kjøre combofix for og være sikker.

 

Last Combofix ned ,legg på skrivebordet.

Ikke klikk på vindu mens programet kjører.

post logg C:\combofix.txt

 

Et lite triks som du kan prøve.

Lag en ny bruker i sikkerhetmodus,logg deg på den se om det samme skjer.

Lenke til kommentar
Fjern ntune denne skaper mye trøbbel for mange.

Den innstallerte jeg idag, så den er ikke årsaken til problemene jeg har hatt. Men hvis det er mye trøbbel med den, så tar jeg og fjerner den. Innstallerte den bare for å sjekke ut gpu-tempen. (noe som ATITool tydeligvis gjøre like greit).

 

Kjører forresten i vanlig modus nå, og alt er som det skal være. Virker som om problemet oppstår når maskinen har stått på en stund.

Lenke til kommentar

ComboFix 08-02-25.3 - Tim 2008-02-28 2:20:48.1 - NTFSx86

Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2329 [GMT 1:00]

Running from: C:\Documents and Settings\Tim\Desktop\ComboFix.exe

* Created a new restore point

 

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

.

 

((((((((((((((((((((((((( Files Created from 2008-01-28 to 2008-02-28 )))))))))))))))))))))))))))))))

.

 

2008-02-28 01:33 . 2008-02-28 01:33 <DIR> d-------- C:\Program Files\ATITool

2008-02-28 01:29 . 2008-02-28 01:29 <DIR> d-------- C:\Program Files\Trend Micro

2008-02-27 23:41 . 2008-02-27 23:41 <DIR> d-------- C:\Program Files\NVIDIA Corporation

2008-02-27 23:40 . 2008-02-27 23:40 <DIR> d-------- C:\Program Files\NVIDIA nTune Performance Application

2008-02-24 18:43 . 2007-12-10 14:24 159,458 --a------ C:\WINDOWS\system32\nvapps.nvb

2008-02-24 18:37 . 2008-02-24 18:37 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\Alien Skin

2008-02-24 18:35 . 2008-02-24 18:35 <DIR> d-------- C:\Program Files\Alien Skin

2008-02-24 02:49 . 2008-02-24 02:48 691,545 --a------ C:\WINDOWS\unins000.exe

2008-02-24 02:49 . 2008-02-24 02:49 2,540 --a------ C:\WINDOWS\unins000.dat

2008-02-24 00:11 . 2008-02-24 00:11 <DIR> d-------- C:\Program Files\iPod

2008-02-21 16:08 . 2008-02-21 16:08 <DIR> d-------- C:\Program Files\AC3Filter

2008-02-21 16:08 . 2007-08-18 08:54 380,928 --a------ C:\WINDOWS\system32\ac3filter.acm

2008-02-21 12:51 . 2008-02-21 12:51 103 --a------ C:\WINDOWS\pro.INI

2008-02-21 12:42 . 2008-02-28 02:05 156 --a------ C:\WINDOWS\Twunk001.MTX

2008-02-21 12:42 . 2008-02-28 02:05 3 --a------ C:\WINDOWS\Twain001.Mtx

2008-02-21 12:42 . 2008-02-21 12:42 0 --a------ C:\WINDOWS\Twunk002.MTX

2008-02-20 22:05 . 2008-02-20 22:05 <DIR> d-------- C:\Program Files\MSXML 4.0

2008-02-20 22:05 . 2008-02-20 22:05 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2

2008-02-19 16:16 . 2008-02-19 16:16 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\Canon

2008-02-19 15:36 . 2008-02-19 15:36 <DIR> d-------- C:\Program Files\ScanSoft

2008-02-19 15:36 . 2008-02-19 15:36 <DIR> d-------- C:\Program Files\Common Files\ScanSoft Shared

2008-02-19 15:36 . 2008-02-19 15:36 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\ScanSoft

2008-02-19 15:36 . 2008-02-19 15:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\ScanSoft

2008-02-19 15:36 . 2008-02-19 15:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\InstallShield

2008-02-19 15:36 . 2008-02-19 15:36 416 --a------ C:\WINDOWS\MAXLINK.INI

2008-02-19 15:35 . 2008-02-19 15:35 <DIR> d-------- C:\Program Files\Common Files\CANON

2008-02-19 15:32 . 2008-02-19 15:32 <DIR> d--h----- C:\WINDOWS\system32\CanonIJ Uninstaller Information

2008-02-19 15:32 . 2008-02-19 15:32 <DIR> d--h----- C:\Program Files\CanonBJ

2008-02-19 15:32 . 2006-07-20 16:51 1,298,432 --a------ C:\WINDOWS\system32\CNQC4803.DLL

2008-02-19 15:32 . 2006-07-20 14:33 229,376 --a------ C:\WINDOWS\system32\CNQL4803.DLL

2008-02-19 15:32 . 2006-06-29 15:29 106,496 --a------ C:\WINDOWS\system32\cnqo4803.dll

2008-02-19 15:32 . 2006-07-20 16:51 57,344 --a------ C:\WINDOWS\system32\CNQI4803.DLL

2008-02-19 15:31 . 2008-02-19 15:32 <DIR> d-------- C:\Program Files\Canon

2008-02-19 11:58 . 2004-08-04 13:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll

2008-02-18 01:32 . 2008-02-18 02:25 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\Azureus

2008-02-18 01:32 . 2008-02-18 01:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Azureus

2008-02-18 01:28 . 2008-02-18 01:29 <DIR> d-------- C:\Program Files\Azureus

2008-02-17 20:50 . 2008-02-28 00:54 69 --a------ C:\WINDOWS\NeroDigital.ini

2008-02-17 20:48 . 2008-02-17 20:48 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\NeroDigital™

2008-02-17 20:40 . 2008-02-17 20:40 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\Nero

2008-02-17 20:38 . 2008-02-17 20:38 <DIR> d-------- C:\Program Files\Nero

2008-02-17 20:38 . 2008-02-17 20:39 <DIR> d-------- C:\Program Files\Common Files\Nero

2008-02-17 20:38 . 2008-02-17 20:38 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Nero

2008-02-17 20:33 . 2008-02-17 20:35 <DIR> d-------- C:\Program Files\Flash Favorite

2008-02-16 16:30 . 2008-02-27 23:42 <DIR> d-------- C:\Program Files\Ubisoft

2008-02-16 16:30 . 2008-02-16 16:30 1 --a------ C:\WINDOWS\system32\SI.bin

2008-02-15 01:05 . 2008-02-15 01:05 <DIR> d-------- C:\Program Files\Karen's Alarm Clock

2008-02-15 01:05 . 2008-02-15 01:05 249,856 --------- C:\WINDOWS\Setup1.exe

2008-02-15 01:05 . 2008-02-15 01:05 73,216 --a------ C:\WINDOWS\ST6UNST.EXE

2008-02-07 22:33 . 2008-02-07 22:34 <DIR> d-------- C:\Program Files\CyberLink

2008-02-05 17:55 . 2008-02-05 17:55 244 --ah----- C:\sqmnoopt01.sqm

2008-02-05 17:55 . 2008-02-05 17:55 232 --ah----- C:\sqmdata01.sqm

2008-02-02 01:36 . 2008-02-27 08:00 <DIR> d-------- C:\Documents and Settings\Tim\Application Data\AVG7

2008-02-02 01:36 . 2008-02-02 01:36 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\AVG7

2008-02-02 01:36 . 2008-02-02 01:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft

2008-02-02 01:36 . 2008-02-02 02:16 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg7

2008-01-31 23:13 . 2008-01-31 23:13 90,112 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx

2008-01-31 23:13 . 2008-01-31 23:13 57,344 --a------ C:\WINDOWS\system32\QuickTime.qts

2008-01-29 00:54 . 2008-02-21 12:51 <DIR> d-------- C:\Program Files\Teleport Pro

2008-01-29 00:34 . 2008-01-29 00:34 <DIR> d-------- C:\Program Files\WinPcap

2008-01-29 00:25 . 2008-01-29 00:27 <DIR> d-------- C:\My Web Sites

2008-01-28 22:59 . 2008-02-24 18:45 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy

2008-01-28 22:59 . 2008-02-24 18:45 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy

 

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-02-27 23:58 --------- d-----w C:\Program Files\DivX

2008-02-27 22:42 --------- d--h--w C:\Program Files\InstallShield Installation Information

2008-02-26 22:57 --------- d-----w C:\Documents and Settings\Tim\Application Data\uTorrent

2008-02-24 20:41 --------- d-----w C:\Documents and Settings\Tim\Application Data\dvdcss

2008-02-23 23:11 --------- d-----w C:\Program Files\iTunes

2008-02-23 23:10 --------- d-----w C:\Program Files\QuickTime

2008-02-19 14:36 --------- d-----w C:\Program Files\Common Files\InstallShield

2008-02-19 13:59 --------- d-----w C:\Program Files\Utorrent

2008-02-17 17:49 --------- d-----w C:\Documents and Settings\Tim\Application Data\NewsLeecher

2008-02-16 15:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help

2008-02-03 12:47 --------- d-----w C:\Program Files\Flickr Uploadr

2008-01-28 03:56 --------- d-----w C:\Documents and Settings\Tim\Application Data\Apple Computer

2008-01-27 20:22 --------- d-----w C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation

2008-01-27 20:15 --------- d-----w C:\Program Files\CoreCodec

2008-01-27 18:04 --------- d-----w C:\Program Files\SQLyog Enterprise

2008-01-22 20:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Messenger Plus!

2008-01-13 22:25 --------- d-----w C:\Documents and Settings\Tim\Application Data\Nik Software

2008-01-12 21:28 --------- d-----w C:\Documents and Settings\Tim\Application Data\EQ2Henchman

2008-01-11 21:56 --------- d-----w C:\Program Files\Sony

2008-01-08 19:01 --------- d-----w C:\Documents and Settings\Tim\Application Data\IGN_DLM

2008-01-06 18:07 --------- d-----w C:\Program Files\VideoLAN

2007-12-31 00:22 --------- d-----w C:\Documents and Settings\All Users\Application Data\TEMP

2007-12-31 00:21 --------- d-----w C:\Program Files\BreezeSys

2007-12-29 20:49 --------- d-----w C:\Documents and Settings\Tim\Application Data\Electronic Arts

2007-12-29 20:43 --------- d-----w C:\Program Files\Messenger Plus! Live

2007-12-28 01:46 --------- d-----w C:\Documents and Settings\Tim\Application Data\Flickr

2007-12-13 18:09 972,072 ----a-w C:\WINDOWS\UNNeroMediaHome.exe

2007-12-08 16:40 505,392 ----a-w C:\WINDOWS\system32\msvcp71.dll

2007-12-08 16:40 353,840 ----a-w C:\WINDOWS\system32\msvcr71.dll

2007-12-07 02:21 824,832 ----a-w C:\WINDOWS\system32\wininet.dll

2007-12-05 01:53 356,352 ----a-w C:\WINDOWS\system32\NVUNINST.EXE

2007-12-04 18:38 550,912 ----a-w C:\WINDOWS\system32\oleaut32.dll

2007-12-04 08:59 972,072 ----a-w C:\WINDOWS\UNRecode.exe

2007-12-04 01:08 129,784 ------w C:\WINDOWS\system32\pxafs.dll

2007-12-04 01:08 118,520 ------w C:\WINDOWS\system32\pxinsi64.exe

2007-12-04 01:08 118,056 ------w C:\WINDOWS\system32\pxcpyi64.exe

2007-12-03 17:04 95,600 ----a-w C:\WINDOWS\system32\NeroCo.dll

.

 

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]

"SetDefaultMIDI"="MIDIDef.exe" [2002-12-03 17:16 49152 C:\WINDOWS\MIDIDEF.EXE]

"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 17:24 1694208]

"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-12-06 13:06 167368]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 13:00 15360]

"igndlm.exe"="C:\Program Files\Download Manager\DLM.exe" [2007-03-05 22:57 1103480]

"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]

"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2007-12-13 19:10 1688872]

"NVIDIA nTune"="C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" [ ]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 01:41 8523776]

"nwiz"="nwiz.exe" [2007-12-05 01:41 1626112 C:\WINDOWS\system32\nwiz.exe]

"P17Helper"="P17.dll" [2005-04-12 09:53 64512 C:\WINDOWS\system32\P17.DLL]

"Adobe Photo Downloader"="C:\Program Files\Adobe\Adobe Photoshop Lightroom 1.3\apdproxy.exe" [2007-12-04 02:07 61440]

"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]

"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-02-02 02:16 579072]

"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2007-03-14 21:01 71216]

"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2007-03-14 21:01 54832]

"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 14:57 153136]

"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2007-12-03 14:21 2213160]

"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-09-28 13:16 185896]

"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 12:45 75304]

"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-01-31 23:13 385024]

"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-02-19 13:10 267048]

"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-12-05 01:41 81920]

 

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 13:00 15360]

"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-02-02 01:36 219136]

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"EnableFirewall"= 0 (0x0)

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"C:\\Program Files\\Utorrent\\utorrent.exe"=

"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=

"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=

"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"=

"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"=

"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"=

"C:\\Program Files\\CyberLink\\PowerDVD\\PowerDVD.exe"=

"C:\\Program Files\\iTunes\\iTunes.exe"=

 

R2 {95808DC4-FA4A-4C74-92FE-5B863F82066B};{95808DC4-FA4A-4C74-92FE-5B863F82066B};C:\Program Files\CyberLink\PowerDVD\000.fcl [2007-09-19 21:37]

R2 NMSAccessU;NMSAccessU;C:\Program Files\CDBurnerXP\NMSAccessU.exe [2007-10-12 08:34]

S3 USBAAPL;Apple Mobile USB Driver;C:\WINDOWS\system32\Drivers\usbaapl.sys [2007-10-31 14:09]

 

.

**************************************************************************

 

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-02-28 02:22:32

Windows 5.1.2600 Service Pack 2 NTFS

 

scanning hidden processes ...

 

scanning hidden autostart entries ...

 

scanning hidden files ...

 

scan completed successfully

hidden files: 0

 

**************************************************************************

.

Completion time: 2008-02-28 2:22:56

.

2008-02-23 01:00:35 --- E O F ---

Lenke til kommentar

Har tatt av sidedøren nå. Får se om det blir noen forandring. CPU-tempen ligger på rundt 43-44C på 99% load. Mente det stod i Readme-filen at Prime95 ikke tok så mye minne, men den drar 1200MB for øyeblikket. Har du noe oversikt over hvor lang tid "self-test"'en tar? Er på Del 2 Test 3 nå.

Endret av Asmod
Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
  • Hvem er aktive   0 medlemmer

    • Ingen innloggede medlemmer aktive
×
×
  • Opprett ny...