Gå til innhold

Anbefalte innlegg

Hei,

 

Har fått endel popupvinduer i det siste. Mest pokerreklame.

Har kjørt både spybot og SAS og fjernet det som er.

 

Har tatt en scan med HiJackThis og fått følgende data:

Klikk for å se/fjerne innholdet nedenfor

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 22:38:41, on 07.05.2008

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

 

Running processes:

C:\Program Files (x86)\Hewlett-Packard\IAM\bin\asghost.exe

C:\Windows\SMINST\scheduler.exe

C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe

C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

C:\Program Files (x86)\DAEMON Tools\daemon.exe

C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe

C:\Program Files (x86)\Svconr\Svconr.exe

C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files (x86)\PDF Complete\pdfsty.exe

C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe

C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe

C:\Program Files (x86)\Java\jre1.6.0_05\bin\jusched.exe

C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe

C:\Program Files (x86)\Hp\HP Software Update\hpwuSchd2.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe

C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe

C:\Program Files (x86)\PowerISO\PWRISOVM.EXE

C:\Program Files (x86)\CyberLink\Shared files\brs.exe

C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe

C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe

C:\Windows\SysWOW64\conime.exe

C:\Windows\SMINST\scheduler.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Windows\SMINST\scheduler.exe

C:\Windows\SMINST\scheduler.exe

C:\Windows\SMINST\scheduler.exe

C:\Users\Simon\Desktop\hijackthis\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.no/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...b&pf=laptop

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...b&pf=laptop

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

F2 - REG:system.ini: UserInit=userinit.exe

O1 - Hosts: ::1 localhost

O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItBHO.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files (x86)\google\googletoolbar2.dll

O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files (x86)\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files (x86)\google\googletoolbar2.dll

O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItIEAddin.dll

O4 - HKLM\..\Run: [PDF Complete] "C:\Program Files (x86)\PDF Complete\pdfsty.exe"

O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start

O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Java\jre1.6.0_05\bin\jusched.exe"

O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles(x86)%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start

O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~2\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule

O4 - HKLM\..\Run: [HP Software Update] c:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"

O4 - HKLM\..\Run: [bDRegion] "C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe"

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [WatchDog] "C:\Program Files (x86)\InterVideo\DVD Check\DVDCheck.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\RunOnce: [sT Recovery Launcher] %WINDIR%\SMINST\launcher.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files (x86)\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [svconr] C:\Program Files (x86)\Svconr\Svconr.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETTVERKSTJENESTE')

O4 - Startup: Adobe Gamma.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: BTTray.lnk = ?

O4 - Global Startup: DVD Check.lnk = C:\Program Files (x86)\InterVideo\DVD Check\DVDCheck.exe

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Send bilde til &Bluetooth-enhet... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Send side til &Bluetooth-enhet... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIC273~1\WEB2FE~1\Office12\REFIEBAR.DLL

O9 - Extra button: Send til Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: Send til &Bluetooth-enhet... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O13 - Gopher Prefix:

O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Plugin Control) - http://appldnld.apple.com.edgesuite.net/co...ex/qtplugin.cab

O16 - DPF: {A903E5AB-C67E-40FB-94F1-E1305982F6E0} (KooPlayer Control) - http://www.euchannels.net/UKooPlayer.ocx

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/Facebo...Uploader4_5.cab

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = fortknox.hp

O17 - HKLM\System\CCS\Services\Tcpip\..\{2EE3F769-3733-4365-950D-B6E90A3F8CD2}: NameServer = 158.38.141.98

O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = fortknox.hp

O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = fortknox.hp

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll

O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware 2007\aawservice.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe

O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe

O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe

O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30007 (IISADMIN) - Unknown owner - C:\Windows\system32\inetsrv\inetinfo.exe (file missing)

O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe

O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe

O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe

O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-20001 (WMSvc) - Unknown owner - C:\Windows\system32\inetsrv\wmsvc.exe (file missing)

 

--

End of file - 16172 bytes

 

Er det noen flere ting jeg kan gjøre?

Endret av SIR83
Lenke til kommentar
Videoannonse
Annonse

Har kjørt SAS ett par ganger...

 

Her er siste loggen.

Klikk for å se/fjerne innholdet nedenfor

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 05/07/2008 at 10:11 PM

 

Application Version : 4.0.1154

 

Core Rules Database Version : 3454

Trace Rules Database Version: 1446

 

Scan type : Complete Scan

Total Scan Time : 01:07:13

 

Memory items scanned : 387

Memory threats detected : 0

Registry items scanned : 10461

Registry threats detected : 0

File items scanned : 48792

File threats detected : 4

 

Adware.Tracking Cookie

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@tribalfusion[3].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@adtech[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@specificclick[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt

 

Ser at HiJackThis viser til mange tjenester som manger fil (file missing). Er desse bare å slette?

 

Takker for kjapp respons! :thumbup:

Lenke til kommentar
Ønsker å se den første loggen fra SAS.

Ang. de tjenestene som viser (file missing) i hjt-loggen så er det bare å se bort i fra. La de bare være i fred.

Her er første loggen

Klikk for å se/fjerne innholdet nedenfor

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 05/07/2008 at 11:30 AM

 

Application Version : 4.0.1154

 

Core Rules Database Version : 3454

Trace Rules Database Version: 1446

 

Scan type : Complete Scan

Total Scan Time : 01:11:39

 

Memory items scanned : 515

Memory threats detected : 0

Registry items scanned : 10471

Registry threats detected : 0

File items scanned : 50308

File threats detected : 136

 

Adware.Tracking Cookie

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@tribalfusion[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@adtech[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@pro-market[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@pacificpoker[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@questionmarket[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@serving-sys[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@adtech[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@mediaplex[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@toplist[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@adviva[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@questionmarket[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@tribalfusion[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@roiservice[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@bluestreak[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@tacoda[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@adbrite[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@wegcash[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@revsci[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@2o7[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@imrworldwide[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@statcounter[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@dealtime[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@apmebf[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@revenue[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@burstnet[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@clicktorrent[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@atwola[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@adrevolver[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@adecn[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][4].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@specificclick[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][5].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@atdmt[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@yadro[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@advertising[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@insightexpressai[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@apifinder[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@partypoker[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@tradedoubler[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@247realmedia[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@kontera[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@hitbox[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@zedo[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@overture[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@realmedia[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@casalemedia[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@fastclick[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@xiti[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\simon@doubleclick[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\Low\[email protected][1].txt

C:\Users\sir\AppData\Roaming\Microsoft\Windows\Cookies\Low\sir@adtech[2].txt

C:\Users\sir\AppData\Roaming\Microsoft\Windows\Cookies\Low\sir@advertising[1].txt

 

Trojan.Unclassified/NVCOI

C:\Program Files (x86)\Temporary

 

Lenke til kommentar

Har fått jamnt popupvinduer i hele dag.

 

Tok en ny scan med SAS(fikk popup under scanningen også)

 

Klikk for å se/fjerne innholdet nedenfor

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 05/08/2008 at 12:35 PM

 

Application Version : 4.0.1154

 

Core Rules Database Version : 3455

Trace Rules Database Version: 1447

 

Scan type : Complete Scan

Total Scan Time : 01:10:35

 

Memory items scanned : 677

Memory threats detected : 0

Registry items scanned : 10461

Registry threats detected : 0

File items scanned : 48953

File threats detected : 10

 

Adware.Tracking Cookie

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@tribalfusion[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@2o7[2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@adtech[1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt

C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Cookies\simon@pacificpoker[1].txt

Lenke til kommentar

Her er loggen fra DSS.exe

 

Klikk for å se/fjerne innholdet nedenfor

Deckard's System Scanner v20071014.68

Run by Simon on 2008-05-08 14:42:40

Computer is in Normal Mode.

--------------------------------------------------------------------------------

 

-- Last 2 Restore Point(s) --

2: 2008-05-07 12:54:31 UTC - RP277 - Windows Update

1: 2008-05-07 08:08:27 UTC - RP276 - Installed SUPERAntiSpyware Free Edition

 

 

Backed up registry hives.

Performed disk cleanup.

 

System Drive C: has 16.9 GiB (less than 15%) free.

 

 

-- HijackThis (run as Simon.exe) -----------------------------------------------

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 14:54:15, on 08.05.2008

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

 

Running processes:

C:\Program Files (x86)\Hewlett-Packard\IAM\bin\asghost.exe

C:\Windows\SMINST\scheduler.exe

C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe

C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

C:\Program Files (x86)\DAEMON Tools\daemon.exe

C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe

C:\Program Files (x86)\Svconr\Svconr.exe

C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files (x86)\PDF Complete\pdfsty.exe

C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe

C:\Program Files (x86)\Java\jre1.6.0_05\bin\jusched.exe

C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe

C:\Program Files (x86)\Hp\HP Software Update\hpwuSchd2.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files (x86)\PowerISO\PWRISOVM.EXE

C:\Program Files (x86)\CyberLink\Shared files\brs.exe

C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe

C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe

C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe

C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe

C:\Users\Simon\Desktop\hijackthis\dss.exe

C:\Windows\SysWOW64\conime.exe

C:\Users\Simon\Desktop\HIJACK~1\Simon.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.no/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...b&pf=laptop

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...b&pf=laptop

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

F2 - REG:system.ini: UserInit=userinit.exe

O1 - Hosts: ::1 localhost

O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItBHO.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files (x86)\google\googletoolbar2.dll

O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files (x86)\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files (x86)\google\googletoolbar2.dll

O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItIEAddin.dll

O4 - HKLM\..\Run: [PDF Complete] "C:\Program Files (x86)\PDF Complete\pdfsty.exe"

O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start

O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Java\jre1.6.0_05\bin\jusched.exe"

O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles(x86)%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start

O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~2\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule

O4 - HKLM\..\Run: [HP Software Update] c:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"

O4 - HKLM\..\Run: [bDRegion] "C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe"

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe"

O4 - HKLM\..\Run: [WatchDog] "C:\Program Files (x86)\InterVideo\DVD Check\DVDCheck.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"

O4 - HKLM\..\Run: [soundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe

O4 - HKLM\..\RunOnce: [sT Recovery Launcher] %WINDIR%\SMINST\launcher.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files (x86)\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [svconr] C:\Program Files (x86)\Svconr\Svconr.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETTVERKSTJENESTE')

O4 - Startup: Adobe Gamma.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: BTTray.lnk = ?

O4 - Global Startup: DVD Check.lnk = C:\Program Files (x86)\InterVideo\DVD Check\DVDCheck.exe

O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Send bilde til &Bluetooth-enhet... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Send side til &Bluetooth-enhet... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIC273~1\WEB2FE~1\Office12\REFIEBAR.DLL

O9 - Extra button: Send til Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: Send til &Bluetooth-enhet... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll

O13 - Gopher Prefix:

O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Plugin Control) - http://appldnld.apple.com.edgesuite.net/co...ex/qtplugin.cab

O16 - DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} (Hewlett-Packard Online Support Services) - https://h50203.www5.hp.com/HPISWeb/Customer...DataManager.CAB

O16 - DPF: {A903E5AB-C67E-40FB-94F1-E1305982F6E0} (KooPlayer Control) - http://www.euchannels.net/UKooPlayer.ocx

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/Facebo...Uploader4_5.cab

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = fortknox.hp

O17 - HKLM\System\CCS\Services\Tcpip\..\{2EE3F769-3733-4365-950D-B6E90A3F8CD2}: NameServer = 158.38.141.98

O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = fortknox.hp

O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = fortknox.hp

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll

O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware 2007\aawservice.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe

O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe

O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe

O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30007 (IISADMIN) - Unknown owner - C:\Windows\system32\inetsrv\inetinfo.exe (file missing)

O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe

O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe

O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe

O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-20001 (WMSvc) - Unknown owner - C:\Windows\system32\inetsrv\wmsvc.exe (file missing)

 

--

End of file - 15944 bytes

 

-- File Associations -----------------------------------------------------------

 

All associations okay.

 

 

-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

 

R0 ACPI (Microsoft ACPI-driver) - c:\windows\system32\drivers\acpi.sys (file missing)

R0 amdide64 - c:\windows\system32\drivers\amdide64.sys (file missing)

R0 atapi (IDE-kanal) - c:\windows\system32\drivers\atapi.sys (file missing)

R0 AtiPcie (ATI PCI Express (3GIO) Filter) - c:\windows\system32\drivers\atipcie.sys (file missing)

R0 CLFS (Common Log (CLFS)) - c:\windows\system32\clfs.sys (file missing)

R0 Compbatt (Microsoft Composite Battery-driver) - c:\windows\system32\drivers\compbatt.sys (file missing)

R0 crcdisk (Crcdisk Filter Driver) - c:\windows\system32\drivers\crcdisk.sys (file missing)

R0 disk (Diskdriver) - c:\windows\system32\drivers\disk.sys (file missing)

R0 Ecache (ReadyBoost Caching Driver) - c:\windows\system32\drivers\ecache.sys (file missing)

R0 FileInfo (File Information FS MiniFilter) - c:\windows\system32\drivers\fileinfo.sys (file missing)

R0 FltMgr - c:\windows\system32\drivers\fltmgr.sys (file missing)

R0 hpdskflt (HP Filter) - c:\windows\system32\drivers\hpdskflt.sys (file missing)

R0 KSecDD - c:\windows\system32\drivers\ksecdd.sys (file missing)

R0 MountMgr (Mount Point Manager) - c:\windows\system32\drivers\mountmgr.sys (file missing)

R0 msisadrv (ISA/EISA Class Driver) - c:\windows\system32\drivers\msisadrv.sys (file missing)

R0 Mup - c:\windows\system32\drivers\mup.sys (file missing)

R0 NDIS (NDIS System Driver) - c:\windows\system32\drivers\ndis.sys (file missing)

R0 partmgr (Partition Manager) - c:\windows\system32\drivers\partmgr.sys (file missing)

R0 pci (PCI Bus Driver) - c:\windows\system32\drivers\pci.sys (file missing)

R0 pciide - c:\windows\system32\drivers\pciide.sys (file missing)

R0 pcmcia - c:\windows\system32\drivers\pcmcia.sys (file missing)

R0 PxHlpa64 - c:\windows\system32\drivers\pxhlpa64.sys (file missing)

R0 spldr (Security Processor Loader Driver) - c:\windows\system32\drivers\spldr.sys (file missing)

R0 Tcpip (Driver for TCP/IP-protokoll) - c:\windows\system32\drivers\tcpip.sys (file missing)

R0 volmgr (Volume Manager Driver) - c:\windows\system32\drivers\volmgr.sys (file missing)

R0 volmgrx (Dynamic Volume Manager) - c:\windows\system32\drivers\volmgrx.sys (file missing)

R0 volsnap (Lagringsvolumer) - c:\windows\system32\drivers\volsnap.sys (file missing)

R0 Wdf01000 (Kernel Mode Driver Frameworks service) - c:\windows\system32\drivers\wdf01000.sys (file missing)

R1 AFD (Ancilliary Function Driver for Winsock) - c:\windows\system32\drivers\afd.sys (file missing)

R1 aswRdr - c:\windows\system32\drivers\aswrdr.sys (file missing)

R1 aswSP (avast! Self Protection) - c:\windows\system32\drivers\aswsp.sys (file missing)

R1 aswTdi (avast! Network Shield Support) - c:\windows\system32\drivers\aswtdi.sys (file missing)

R1 cdrom (CD-ROM-driver) - c:\windows\system32\drivers\cdrom.sys (file missing)

R1 CSC (Offline Files Driver) - c:\windows\system32\drivers\csc.sys (file missing)

R1 DfsC (DFS Namespace Client Driver) - c:\windows\system32\drivers\dfsc.sys (file missing)

R1 eabfiltr - c:\windows\system32\drivers\eabfiltr64.sys (file missing)

R1 i8042prt (i8042-tastatur og PS/2-museportdriver) - c:\windows\system32\drivers\i8042prt.sys (file missing)

R1 kbdclass (Keyboard Class Driver) - c:\windows\system32\drivers\kbdclass.sys (file missing)

R1 kbdhid (Keyboard HID Driver) - c:\windows\system32\drivers\kbdhid.sys (file missing)

R1 mouclass (Museklassedriver) - c:\windows\system32\drivers\mouclass.sys (file missing)

R1 Msfs - c:\windows\system32\drivers\msfs.sys (file missing)

R1 NetBIOS (NetBIOS Interface) - c:\windows\system32\drivers\netbios.sys (file missing)

R1 netbt - c:\windows\system32\drivers\netbt.sys (file missing)

R1 Npfs - c:\windows\system32\drivers\npfs.sys (file missing)

R1 nsiproxy (NSI proxy service) - c:\windows\system32\drivers\nsiproxy.sys (file missing)

R1 Null - c:\windows\system32\drivers\null.sys (file missing)

R1 PSched (QoS-pakkeplanlegger) - c:\windows\system32\drivers\pacer.sys (file missing)

R1 RasAcd (Remote Access Auto Connection Driver) - c:\windows\system32\drivers\rasacd.sys (file missing)

R1 rdbss (Redirected Buffering Sub Sysytem) - c:\windows\system32\drivers\rdbss.sys (file missing)

R1 RDPCDD - c:\windows\system32\drivers\rdpcdd.sys (file missing)

R1 RDPENCDD (RDP Encoder Mirror Driver) - c:\windows\system32\drivers\rdpencdd.sys (file missing)

R1 SCDEmu - c:\windows\system32\drivers\scdemu.sys (file missing)

R1 Smb (Meldingsorientert TCP/IP- og TCP/IPv6-protokoll (SMB-økt)) - c:\windows\system32\drivers\smb.sys (file missing)

R1 tdx (TDI-støttedriver for eldre NetIO) - c:\windows\system32\drivers\tdx.sys (file missing)

R1 TermDD (Terminal Device Driver) - c:\windows\system32\drivers\termdd.sys (file missing)

R1 VgaSave - c:\windows\system32\drivers\vga.sys (file missing)

R1 Wanarpv6 (Remote Access IPv6 ARP Driver) - c:\windows\system32\drivers\wanarp.sys (file missing)

R2 aswFsBlk - c:\windows\system32\drivers\aswfsblk.sys (file missing)

R2 lltdio (I/U-driver for tilordning av topologigjenkjenning for linklag) - c:\windows\system32\drivers\lltdio.sys (file missing)

R2 luafv (UAC File Virtualization) - c:\windows\system32\drivers\luafv.sys (file missing)

R2 PEAUTH - c:\windows\system32\drivers\peauth.sys (file missing)

R2 rspndr (Svarer for topologigjenkjenning for linklag) - c:\windows\system32\drivers\rspndr.sys (file missing)

R2 secdrv (Security Driver) - c:\windows\system32\drivers\secdrv.sys (file missing)

R2 tcpipreg (TCP/IP Registry Compatibility) - c:\windows\system32\drivers\tcpipreg.sys (file missing)

R3 Accelerometer (HP Accelerometer) - c:\windows\system32\drivers\accelerometer.sys (file missing)

R3 ADIHdAudAddService (ADI UAA Function Driver for High Definition Audio Service) - c:\windows\system32\drivers\adihdaud.sys (file missing)

R3 AgereSoftModem (Agere Systems Soft Modem) - c:\windows\system32\drivers\agrsm64.sys (file missing)

R3 AmdK8 (AMD K8 Processor Driver) - c:\windows\system32\drivers\amdk8.sys (file missing)

R3 atikmdag - c:\windows\system32\drivers\atikmdag.sys (file missing)

R3 ATSWPDRV ((****DEBUG****) AuthenTec TruePrint USB Driver (SwipeSensor)) - c:\windows\system32\drivers\atswpdrv.sys (file missing)

R3 b57nd60a (Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0) - c:\windows\system32\drivers\b57nd60a.sys (file missing)

R3 bowser - c:\windows\system32\drivers\bowser.sys (file missing)

R3 CmBatt (Microsoft ACPI Control Method Battery-driver) - c:\windows\system32\drivers\cmbatt.sys (file missing)

R3 DXGKrnl (LDDM Graphics Subsystem) - c:\windows\system32\drivers\dxgkrnl.sys (file missing)

R3 HBtnKey - c:\windows\system32\drivers\cpqbttn64.sys (file missing)

R3 HDAudBus (Microsoft UAA Bus Driver for High Definition Audio) - c:\windows\system32\drivers\hdaudbus.sys (file missing)

R3 HidUsb (Microsoft HID-klassedriver) - c:\windows\system32\drivers\hidusb.sys (file missing)

R3 HTTP - c:\windows\system32\drivers\http.sys (file missing)

R3 iScsiPrt (iScsiPort-driver) - c:\windows\system32\drivers\msiscsi.sys (file missing)

R3 ksthunk (Kernel Streaming Thunks) - c:\windows\system32\drivers\ksthunk.sys (file missing)

R3 Modem - c:\windows\system32\drivers\modem.sys (file missing)

R3 monitor (Microsoft Monitor Class Function Driver Service) - c:\windows\system32\drivers\monitor.sys (file missing)

R3 mouhid (Muse-HID-driver) - c:\windows\system32\drivers\mouhid.sys (file missing)

R3 mpsdrv (Driver for Windows-brannmurgodkjenning) - c:\windows\system32\drivers\mpsdrv.sys (file missing)

R3 MRxDAV (WebDav Client Redirector Driver) - c:\windows\system32\drivers\mrxdav.sys (file missing)

R3 mrxsmb (SMB MiniRedirector Wrapper and Engine) - c:\windows\system32\drivers\mrxsmb.sys (file missing)

R3 mrxsmb10 (SMB 1.x MiniRedirector) - c:\windows\system32\drivers\mrxsmb10.sys (file missing)

R3 mrxsmb20 (SMB 2.0 MiniRedirector) - c:\windows\system32\drivers\mrxsmb20.sys (file missing)

R3 mssmbios (Microsoft System Management BIOS Driver) - c:\windows\system32\drivers\mssmbios.sys (file missing)

R3 NativeWifiP (NativeWiFi-filter) - c:\windows\system32\drivers\nwifi.sys (file missing)

R3 NdisTapi (NDIS TAPI-driver for ekstern pålogging) - c:\windows\system32\drivers\ndistapi.sys (file missing)

R3 Ndisuio (I/T-protokoll for NDIS-brukermodus) - c:\windows\system32\drivers\ndisuio.sys (file missing)

R3 NdisWan (NDIS WAN-driver for ekstern pålogging) - c:\windows\system32\drivers\ndiswan.sys (file missing)

R3 NDProxy (NDIS Proxy) - c:\windows\system32\drivers\ndproxy.sys (file missing)

R3 Ntfs - c:\windows\system32\drivers\ntfs.sys (file missing)

R3 ohci1394 (RICOH OHCI Compliant IEEE 1394 Host Controller) - c:\windows\system32\drivers\ohci1394.sys (file missing)

R3 Parport (Driver for parallellport) - c:\windows\system32\drivers\parport.sys (file missing)

R3 PptpMiniport (WAN-miniport (PPTP)) - c:\windows\system32\drivers\raspptp.sys (file missing)

R3 Rasl2tp (WAN-miniport (L2TP)) - c:\windows\system32\drivers\rasl2tp.sys (file missing)

R3 RasPppoe (PPPOE-driver for ekstern pålogging) - c:\windows\system32\drivers\raspppoe.sys (file missing)

R3 RasSstp (WAN-miniport (SSTP)) - c:\windows\system32\drivers\rassstp.sys (file missing)

R3 rdpdr (Terminal Server Device Redirector Driver) - c:\windows\system32\drivers\rdpdr.sys (file missing)

R3 srv - c:\windows\system32\drivers\srv.sys (file missing)

R3 srv2 - c:\windows\system32\drivers\srv2.sys (file missing)

R3 srvnet - c:\windows\system32\drivers\srvnet.sys (file missing)

R3 swenum (Software Bus Driver) - c:\windows\system32\drivers\swenum.sys (file missing)

R3 SynTP (Synaptics TouchPad Driver) - c:\windows\system32\drivers\syntp.sys (file missing)

R3 TPM - c:\windows\system32\drivers\tpm.sys (file missing)

R3 tunnel (Microsoft IPv6 Tunnel Miniport Adapter Driver) - c:\windows\system32\drivers\tunnel.sys (file missing)

R3 umbus (UMBus Enumerator Driver) - c:\windows\system32\drivers\umbus.sys (file missing)

R3 usbehci (Microsoft USB 2.0 Enhanced Host Controller Miniport Driver) - c:\windows\system32\drivers\usbehci.sys (file missing)

R3 usbhub (USB2 Enabled Hub) - c:\windows\system32\drivers\usbhub.sys (file missing)

R3 usbohci (Microsoft USB Open Host Controller Miniport Driver) - c:\windows\system32\drivers\usbohci.sys (file missing)

R3 WmiAcpi (Microsoft Windows Management Interface for ACPI) - c:\windows\system32\drivers\wmiacpi.sys (file missing)

R4 cdfs (CD/DVD File System Reader) - c:\windows\system32\drivers\cdfs.sys (file missing)

 

S3 agp440 (Intel AGP Bus Filter) - c:\windows\system32\drivers\agp440.sys (file missing)

S3 AsyncMac (RAS asynkron mediedriver) - c:\windows\system32\drivers\asyncmac.sys (file missing)

S3 BCM43XV (Broadcom Extensible 802.11 Network Adapter Driver) - c:\windows\system32\drivers\bcmwl664.sys (file missing)

S3 BCM43XX (Driver for Broadcom 802.11-nettverkskort) - c:\windows\system32\drivers\bcmwl664.sys (file missing)

S3 BrFiltLo (Brother USB Mass-Storage Lower Filter Driver) - c:\windows\system32\drivers\brfiltlo.sys (file missing)

S3 BrFiltUp (Brother USB Mass-Storage Upper Filter Driver) - c:\windows\system32\drivers\brfiltup.sys (file missing)

S3 Bridge (MAC Bridge) - c:\windows\system32\drivers\bridge.sys (file missing)

S3 BridgeMP (MAC Bridge Miniport) - c:\windows\system32\drivers\bridge.sys (file missing)

S3 BrUsbSer (Brother MFC USB Serial WDM Driver) - c:\windows\system32\drivers\brusbser.sys (file missing)

S3 BthEnum (Bluetooth Enumerator Service) - c:\windows\system32\drivers\bthenum.sys (file missing)

S3 BTHMODEM (Bluetooth Modem Communications Driver) - c:\windows\system32\drivers\bthmodem.sys (file missing)

S3 BthPan (Bluetooth-enhet (Personal Area Network)) - c:\windows\system32\drivers\bthpan.sys (file missing)

S3 BTHPORT (Bluetooth Port-driver) - c:\windows\system32\drivers\bthport.sys (file missing)

S3 BTHUSB (Bluetooth Radio USB-driver) - c:\windows\system32\drivers\bthusb.sys (file missing)

S3 btwaudio (Bluetooth-lydenhet) - c:\windows\system32\drivers\btwaudio.sys (file missing)

S3 btwavdt (Bluetooth AVDT) - c:\windows\system32\drivers\btwavdt.sys (file missing)

S3 btwrchid - c:\windows\system32\drivers\btwrchid.sys (file missing)

S3 drmkaud (Microsoft Kernel DRM Audio Descrambler) - c:\windows\system32\drivers\drmkaud.sys (file missing)

S3 E1G60 (Intel® PRO/1000 NDIS 6 Adapter Driver) - c:\windows\system32\drivers\e1g6032e.sys (file missing)

S3 exfat (exFAT File System Driver) - c:\windows\system32\drivers\exfat.sys (file missing)

S3 fastfat (FAT12/16/32 File System Driver) - c:\windows\system32\drivers\fastfat.sys (file missing)

S3 Filetrace - c:\windows\system32\drivers\filetrace.sys (file missing)

S3 gagp30kx (Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms) - c:\windows\system32\drivers\gagp30kx.sys (file missing)

S3 HdAudAddService (Microsoft 1.1 UAA Function Driver for High Definition Audio Service) - c:\windows\system32\drivers\hdaudio.sys (file missing)

S3 HidBth (Microsoft Bluetooth HID Miniport) - c:\windows\system32\drivers\hidbth.sys (file missing)

S3 HSF_DPV - c:\windows\system32\drivers\vstdpv6.sys (file missing)

S3 HSFHWAZL - c:\windows\system32\drivers\vstazl6.sys (file missing)

S3 IpFilterDriver (Driver for IP-trafikkfilter) - c:\windows\system32\drivers\ipfltdrv.sys (file missing)

S3 IPMIDRV - c:\windows\system32\drivers\ipmidrv.sys (file missing)

S3 IPNAT (IP Network Address Translator) - c:\windows\system32\drivers\ipnat.sys (file missing)

S3 IRENUM (IR Bus Enumerator) - c:\windows\system32\drivers\irenum.sys (file missing)

S3 MSKSSRV (Tjenesteproxy for Microsoft Streaming) - c:\windows\system32\drivers\mskssrv.sys (file missing)

S3 MSPCLOCK (Klokkeproxy for Microsoft Streaming) - c:\windows\system32\drivers\mspclock.sys (file missing)

S3 MSPQM (Kvalitetsbehandlingsproxy for Microsoft Streaming) - c:\windows\system32\drivers\mspqm.sys (file missing)

S3 MsRPC - c:\windows\system32\drivers\msrpc.sys (file missing)

S3 MSTEE (Tee/Sink-to-Sink-konverterer for Microsoft Streaming) - c:\windows\system32\drivers\mstee.sys (file missing)

S3 nv_agp (NVIDIA nForce AGP Bus Filter) - c:\windows\system32\drivers\nv_agp.sys (file missing)

S3 QWAVEdrv (QWAVE-driver) - c:\windows\system32\drivers\qwavedrv.sys (file missing)

S3 R300 - c:\windows\system32\drivers\atikmdag.sys (file missing)

S3 RDPWD (RDP Winstation Driver) - c:\windows\system32\drivers\rdpwd.sys (file missing)

S3 RFCOMM (Bluetooth Device (RFCOMM Protocol TDI)) - c:\windows\system32\drivers\rfcomm.sys (file missing)

S3 SASENUM - \??\c:\program files (x86)\superantispyware\sasenum.sys

S3 Serenum (Serenum Filter Driver) - c:\windows\system32\drivers\serenum.sys (file missing)

S3 Serial (Serial Port Driver) - c:\windows\system32\drivers\serial.sys (file missing)

S3 sffp_mmc (SFF Storage Protocol Driver for MMC) - c:\windows\system32\drivers\sffp_mmc.sys (file missing)

S3 sffp_sd (SFF Storage Protocol Driver for SDBus) - c:\windows\system32\drivers\sffp_sd.sys (file missing)

S3 Tcpip6 (Microsoft IPv6-protokolldriver) - c:\windows\system32\drivers\tcpip.sys (file missing)

S3 TDPIPE - c:\windows\system32\drivers\tdpipe.sys (file missing)

S3 TDTCP - c:\windows\system32\drivers\tdtcp.sys (file missing)

S3 tssecsrv (Terminal Services Security Filter Driver) - c:\windows\system32\drivers\tssecsrv.sys (file missing)

S3 tunmp (Microsoft Tun Miniport Adapter Driver) - c:\windows\system32\drivers\tunmp.sys (file missing)

S3 uagp35 (Microsoft AGPv3.5 Filter) - c:\windows\system32\drivers\uagp35.sys (file missing)

S3 uliagpkx (Uli AGP Bus Filter) - c:\windows\system32\drivers\uliagpkx.sys (file missing)

S3 usbaudio (USB-lyddriver (WDM)) - c:\windows\system32\drivers\usbaudio.sys (file missing)

S3 usbccgp (Microsoft USB Generic Parent Driver) - c:\windows\system32\drivers\usbccgp.sys (file missing)

S3 USBSTOR (USB Mass Storage Driver) - c:\windows\system32\drivers\usbstor.sys (file missing)

S3 vga - c:\windows\system32\drivers\vgapnp.sys (file missing)

S3 Wanarp (Remote Access IP ARP Driver) - c:\windows\system32\drivers\wanarp.sys (file missing)

S3 WimFltr - c:\windows\system32\drivers\wimfltr.sys (file missing)

S3 winachsf - c:\windows\system32\drivers\vstcnxt6.sys (file missing)

S3 WUDFRd - c:\windows\system32\drivers\wudfrd.sys (file missing)

S4 adp94xx - c:\windows\system32\drivers\adp94xx.sys (file missing)

S4 adpahci - c:\windows\system32\drivers\adpahci.sys (file missing)

S4 adpu160m - c:\windows\system32\drivers\adpu160m.sys (file missing)

S4 adpu320 - c:\windows\system32\drivers\adpu320.sys (file missing)

S4 aic78xx - c:\windows\system32\drivers\djsvs.sys (file missing)

S4 aliide - c:\windows\system32\drivers\aliide.sys (file missing)

S4 amdide - c:\windows\system32\drivers\amdide.sys (file missing)

S4 arc - c:\windows\system32\drivers\arc.sys (file missing)

S4 arcsas - c:\windows\system32\drivers\arcsas.sys (file missing)

S4 Brserid (Brother MFC Serial Port Interface Driver (WDM)) - c:\windows\system32\drivers\brserid.sys (file missing)

S4 BrSerWdm (Brother WDM Serial driver) - c:\windows\system32\drivers\brserwdm.sys (file missing)

S4 BrUsbMdm (Brother MFC USB Fax Only Modem) - c:\windows\system32\drivers\brusbmdm.sys (file missing)

S4 circlass (Consumer IR Devices) - c:\windows\system32\drivers\circlass.sys (file missing)

S4 cmdide - c:\windows\system32\drivers\cmdide.sys (file missing)

S4 elxstor - c:\windows\system32\drivers\elxstor.sys (file missing)

S4 fdc (Floppy Disk Controller Driver) - c:\windows\system32\drivers\fdc.sys (file missing)

S4 flpydisk (Floppy Disk Driver) - c:\windows\system32\drivers\flpydisk.sys (file missing)

S4 HidIr (Microsoft Infrared HID Driver) - c:\windows\system32\drivers\hidir.sys (file missing)

S4 HpCISSs - c:\windows\system32\drivers\hpcisss.sys (file missing)

S4 i2omp - c:\windows\system32\drivers\i2omp.sys (file missing)

S4 iaStorV (Intel RAID Controller Vista) - c:\windows\system32\drivers\iastorv.sys (file missing)

S4 iirsp - c:\windows\system32\drivers\iirsp.sys (file missing)

S4 intelide - c:\windows\system32\drivers\intelide.sys (file missing)

S4 intelppm (Intel Processor Driver) - c:\windows\system32\drivers\intelppm.sys (file missing)

S4 isapnp (PnP ISA/EISA Bus Driver) - c:\windows\system32\drivers\isapnp.sys (file missing)

S4 iteatapi (ITEATAPI_Service_Install) - c:\windows\system32\drivers\iteatapi.sys (file missing)

S4 iteraid (ITERAID_Service_Install) - c:\windows\system32\drivers\iteraid.sys (file missing)

S4 LSI_FC - c:\windows\system32\drivers\lsi_fc.sys (file missing)

S4 LSI_SAS - c:\windows\system32\drivers\lsi_sas.sys (file missing)

S4 LSI_SCSI - c:\windows\system32\drivers\lsi_scsi.sys (file missing)

S4 megasas - c:\windows\system32\drivers\megasas.sys (file missing)

S4 mpio (Microsoft Multi-Path Bus Driver) - c:\windows\system32\drivers\mpio.sys (file missing)

S4 Mraid35x - c:\windows\system32\drivers\mraid35x.sys (file missing)

S4 msahci - c:\windows\system32\drivers\msahci.sys (file missing)

S4 msdsm (Microsoft Multi-Path Device Specific Module) - c:\windows\system32\drivers\msdsm.sys (file missing)

S4 nfrd960 - c:\windows\system32\drivers\nfrd960.sys (file missing)

S4 nvraid - c:\windows\system32\drivers\nvraid.sys (file missing)

S4 nvstor - c:\windows\system32\drivers\nvstor.sys (file missing)

S4 Processor (Processor Driver) - c:\windows\system32\drivers\processr.sys (file missing)

S4 ql2300 (QLogic Fibre Channel Miniport Driver) - c:\windows\system32\drivers\ql2300.sys (file missing)

S4 ql40xx (QLogic iSCSI Miniport Driver) - c:\windows\system32\drivers\ql40xx.sys (file missing)

S4 sbp2port (SBP-2 Transport/Protocol Bus Driver) - c:\windows\system32\drivers\sbp2port.sys (file missing)

S4 sdbus - c:\windows\system32\drivers\sdbus.sys (file missing)

S4 sermouse (Serial Mouse Driver) - c:\windows\system32\drivers\sermouse.sys (file missing)

S4 sffdisk (SFF Storage Class Driver) - c:\windows\system32\drivers\sffdisk.sys (file missing)

S4 sfloppy (High-Capacity Floppy Disk Drive) - c:\windows\system32\drivers\sfloppy.sys (file missing)

S4 SiSRaid2 - c:\windows\system32\drivers\sisraid2.sys (file missing)

S4 SiSRaid4 - c:\windows\system32\drivers\sisraid4.sys (file missing)

S4 Sym_hi - c:\windows\system32\drivers\sym_hi.sys (file missing)

S4 Sym_u3 - c:\windows\system32\drivers\sym_u3.sys (file missing)

S4 Symc8xx - c:\windows\system32\drivers\symc8xx.sys (file missing)

S4 udfs - c:\windows\system32\drivers\udfs.sys (file missing)

S4 uliahci - c:\windows\system32\drivers\uliahci.sys (file missing)

S4 UlSata - c:\windows\system32\drivers\ulsata.sys (file missing)

S4 ulsata2 - c:\windows\system32\drivers\ulsata2.sys (file missing)

S4 usbcir (eHome Infrared Receiver (USBCIR)) - c:\windows\system32\drivers\usbcir.sys (file missing)

S4 usbprint (Microsoft USB PRINTER Class) - c:\windows\system32\drivers\usbprint.sys (file missing)

S4 usbuhci (Microsoft USB Universal Host Controller Miniport Driver) - c:\windows\system32\drivers\usbuhci.sys (file missing)

S4 viaide - c:\windows\system32\drivers\viaide.sys (file missing)

S4 vsmraid - c:\windows\system32\drivers\vsmraid.sys (file missing)

S4 WacomPen (Wacom Serial Pen HID Driver) - c:\windows\system32\drivers\wacompen.sys (file missing)

S4 Wd (Microsoft Watchdog Timer Driver) - c:\windows\system32\drivers\wd.sys (file missing)

S4 ws2ifsl (Winsock IFS driver) - c:\windows\system32\drivers\ws2ifsl.sys (file missing)

 

 

-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

 

R2 AgereModemAudio (Agere Modem Call Progress Audio) - c:\windows\system32\agr64svc.exe (file missing)

R2 Ati External Event Utility - c:\windows\system32\ati2evxx.exe (file missing)

R2 Bonjour Service (##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##) - "c:\program files (x86)\bonjour\mdnsresponder.exe" <Not Verified; Apple Computer, Inc.; Bonjour>

R2 hpsrv (HP Service) - c:\windows\system32\hpservice.exe (file missing)

R2 IISADMIN (IIS-administratortjeneste) - c:\windows\system32\inetsrv\inetinfo.exe (file missing)

R2 IviRegMgr - c:\program files (x86)\common files\intervideo\regmgr\iviregmgr.exe

R2 Nero BackItUp Scheduler 3 - c:\program files (x86)\nero\nero8\nero backitup\nbservice.exe

R2 Netlogon - c:\windows\system32\lsass.exe (file missing)

R2 pdfcDispatcher (PDF Document Manager) - c:\program files (x86)\pdf complete\pdfsvc.exe /startedbyscm:66b66708-40e2be4d-pdfcservice

R2 SamSs (Security Accounts Manager) - c:\windows\system32\lsass.exe (file missing)

R2 SBSDWSCService (SBSD Security Center Service) - c:\program files (x86)\spybot - search & destroy\sdwinsec.exe

R2 slsvc (Software Licensing) - c:\windows\system32\slsvc.exe (file missing)

R2 Spooler (Print Spooler) - c:\windows\system32\spoolsv.exe (file missing)

R3 KeyIso (CNG Key Isolation) - c:\windows\system32\lsass.exe (file missing)

 

S3 ALG (Application Layer Gateway Service) - c:\windows\system32\alg.exe (file missing)

S3 Com4Qlb - "c:\program files (x86)\hewlett-packard\hp quick launch buttons\com4qlb.exe" <Not Verified; Hewlett-Packard Development Company, L.P.; HP Quick Launch Buttons>

S3 DFSR (DFS Replication) - c:\windows\system32\dfsr.exe (file missing)

S3 Fax - c:\windows\system32\fxssvc.exe (file missing)

S3 FLEXnet Licensing Service - "c:\program files (x86)\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe" <Not Verified; Macrovision Europe Ltd.; FLEXnet Publisher (32 bit)>

S3 MSDTC (Distributed Transaction Coordinator) - c:\windows\system32\msdtc.exe (file missing)

S3 ProtectedStorage (Protected Storage) - c:\windows\system32\lsass.exe (file missing)

S3 RpcLocator (Remote Procedure Call (RPC) Locator) - c:\windows\system32\locator.exe (file missing)

S3 SNMPTRAP (SNMP Trap) - c:\windows\system32\snmptrap.exe (file missing)

S3 stllssvr - "c:\program files (x86)\common files\surething shared\stllssvr.exe" <Not Verified; MicroVision Development, Inc.; SureThing CD Labeler>

S3 UI0Detect (Interactive Services Detection) - c:\windows\system32\ui0detect.exe (file missing)

S3 vds (Virtual Disk) - c:\windows\system32\vds.exe (file missing)

S3 VSS (Volume Shadow Copy) - c:\windows\system32\vssvc.exe (file missing)

S3 wbengine (Block Level Backup Engine Service) - "c:\windows\system32\wbengine.exe" (file missing)

S3 wmiApSrv (WMI Performance Adapter) - c:\windows\system32\wbem\wmiapsrv.exe (file missing)

S3 WMSvc (Webbehandlingstjeneste) - c:\windows\system32\inetsrv\wmsvc.exe (file missing)

 

 

-- Device Manager: Disabled ----------------------------------------------------

 

No disabled devices found.

 

 

-- Scheduled Tasks -------------------------------------------------------------

 

2008-05-07 23:52:11 434 --ah----- C:\Windows\Tasks\User_Feed_Synchronization-{BFF8952A-7032-4F38-A58B-1FF305C12FD1}.job

 

 

-- Files created between 2008-04-08 and 2008-05-08 -----------------------------

 

2008-05-07 22:34:27 0 d-------- C:\cf

2008-05-07 10:20:53 0 d-------- C:\Program Files (x86)\CCleaner

2008-05-07 10:09:17 0 d-------- C:\Users\All Users\SUPERAntiSpyware.com

2008-05-07 10:09:02 0 d-------- C:\Program Files (x86)\SUPERAntiSpyware

2008-05-03 11:50:18 0 d-------- C:\Program Files (x86)\AltBinz

2008-05-02 11:55:11 0 d-------- C:\Program Files (x86)\The Regex Coach

2008-05-02 11:53:34 0 d-------- C:\Program Files (x86)\WBFileManager

2008-05-01 17:10:12 0 d-------- C:\Users\All Users\WindowsSearch

2008-05-01 13:43:06 0 d-------- C:\Program Files (x86)\Lavasoft

2008-05-01 13:43:05 0 d-------- C:\Users\All Users\Lavasoft

2008-04-30 22:29:55 0 d-------- C:\Users\All Users\Spybot - Search & Destroy

2008-04-30 07:43:37 0 d-------- C:\Program Files (x86)\Svconr

2008-04-22 11:48:29 0 d-------- C:\Program Files (x86)\Neodynamic

2008-04-18 23:20:53 0 d-------- C:\PerfLogs

2008-04-12 18:51:05 0 d-------- C:\Users\All Users\ATI

2008-04-12 18:10:49 0 --a------ C:\Windows\ativpsrm.bin

 

 

-- Find3M Report ---------------------------------------------------------------

 

2008-05-07 20:57:37 836 --a------ C:\Windows\bthservsdp.dat

2008-05-07 10:09:02 0 d-------- C:\Users\Simon\AppData\Roaming\SUPERAntiSpyware.com

2008-05-07 10:08:17 0 d-------- C:\Program Files (x86)\Common Files\Wise Installation Wizard

2008-05-05 17:27:52 0 d-------- C:\Users\Simon\AppData\Roaming\NewsBin

2008-05-03 23:35:01 0 d-------- C:\Users\Simon\AppData\Roaming\dvdcss

2008-05-01 12:00:44 0 d-------- C:\Users\Simon\AppData\Roaming\Earthsim

2008-04-30 01:47:33 0 d-------- C:\Users\Simon\AppData\Roaming\uTorrent

2008-04-21 19:33:36 0 d-------- C:\Users\Simon\AppData\Roaming\vlc

2008-04-18 23:44:19 174 --ahs---- C:\Program Files (x86)\desktop.ini

2008-04-18 23:28:59 0 d-------- C:\Program Files (x86)\Windows Sidebar

2008-04-18 23:28:56 0 d-------- C:\Program Files (x86)\Windows Mail

2008-04-18 23:28:55 0 d-------- C:\Program Files (x86)\Windows Photo Gallery

2008-04-18 23:28:55 0 d-------- C:\Program Files (x86)\Windows Collaboration

2008-04-18 23:28:55 0 d-------- C:\Program Files (x86)\Windows Calendar

2008-04-18 23:28:53 0 d-------- C:\Program Files (x86)\Windows Defender

2008-04-12 18:23:54 0 d-------- C:\Program Files (x86)\ATI Technologies

2008-04-11 11:12:04 0 d-------- C:\Users\Simon\AppData\Roaming\Adobe

2008-04-11 10:35:40 0 d-------- C:\Program Files (x86)\Common Files\Adobe

2008-04-10 00:15:44 0 d-------- C:\Program Files (x86)\Microsoft Silverlight

2008-04-03 20:02:54 0 d-------- C:\Program Files (x86)\DFX

2008-03-25 12:27:44 0 d-------- C:\Program Files (x86)\Java

2008-03-23 21:05:13 0 d-------- C:\Program Files (x86)\Microsoft Expression

2008-03-23 20:52:52 0 d-------- C:\Program Files (x86)\Common Files

2008-03-23 20:52:52 0 d-------- C:\Program Files (x86)\Common Files\Nikon

 

 

-- Registry Dump ---------------------------------------------------------------

 

 

 

-- Hosts -----------------------------------------------------------------------

 

127.0.0.1 www.007guard.com

127.0.0.1 007guard.com

127.0.0.1 008i.com

127.0.0.1 www.008k.com

127.0.0.1 008k.com

127.0.0.1 www.00hq.com

127.0.0.1 00hq.com

127.0.0.1 010402.com

127.0.0.1 www.032439.com

127.0.0.1 032439.com

 

8369 more entries in hosts file.

 

 

-- End of Deckard's System Scanner: finished at 2008-05-08 14:57:15 ------------

 

EDIT: Loggen er fra rett etter maskinen var restartet. Før noen popupvinduer har dukket opp. Vet ikke om det er viktig, men nå har jeg i alle fall sagt d :p

Endret av SIR83
Lenke til kommentar

Ok, la oss fortsette med følgende:

 

Start hjt, velg "Do a system scan only", sett merke framfor følgende linje, og klikk Fix checked:

O4 - HKCU\..\Run: [svconr] C:\Program Files (x86)\Svconr\Svconr.exe

 

Høyreklikk på oppgavelinja, velg Oppgavebehandling

Velg arkfanen Prosesser

Finn prosessen som heter Svconr.exe, og avslutt prosessen.

 

Bruk utforsker til å finne og slett følgende mappe (i fet skrift):

C:\Program Files (x86)\Svconr

 

Restart PC-en og post ny hjt-logg.

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
  • Hvem er aktive   0 medlemmer

    • Ingen innloggede medlemmer aktive
×
×
  • Opprett ny...