Gå til innhold

Anbefalte innlegg

for noen dager siden fikk jeg et par virus pa dataen.... grrr... :mad:

Avira fjernet de tror jeg, jeg har ivertfall ikke merket noe mer problemer... men for a v're helt sikker poster jeg hijackthis og combofix log som jeg haper dere kan ta en titt pa... :p

 

jeg var ogsa sa teit at jeg har slettet loggen pa avira ogsa... :hrm:

 

 

og en ting til, hva var den comanden du skulle skrive inn for a slette de combofix greiene?

 

Takker for all hjelp..

 

 

 

 

LOG >

 

 

 

ComboFix 08-06-07.1 - yngve 2008-06-15 15:08:01.3 - NTFSx86

Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.358 [GMT 2:00]

Running from: C:\Documents and Settings\yngve\Desktop\ComboFix.exe

 

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

.

 

((((((((((((((((((((((((( Files Created from 2008-05-15 to 2008-06-15 )))))))))))))))))))))))))))))))

.

 

2008-06-14 22:44 . 2008-06-15 14:55 51,355 --a------ C:\WINDOWS\system32\muzika.xm

2008-06-14 18:50 . 2008-06-14 18:50 <DIR> d-------- C:\Program Files\FlashFXP

2008-06-14 18:50 . 2008-06-14 18:50 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FlashFXP

2008-06-14 18:02 . 2008-06-14 18:05 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Spycar

2008-06-14 17:08 . 2008-06-14 17:17 <DIR> d-------- C:\Program Files\Spyware Doctor

2008-06-14 17:08 . 2008-06-14 17:08 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\PC Tools

2008-06-14 17:08 . 2008-06-15 15:04 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP

2008-06-14 17:08 . 2007-12-10 13:53 81,288 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys

2008-06-14 17:08 . 2007-12-10 13:53 66,952 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys

2008-06-14 17:08 . 2008-02-01 11:55 42,376 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys

2008-06-14 17:08 . 2007-12-10 13:53 29,576 --a------ C:\WINDOWS\system32\drivers\kcom.sys

2008-06-14 16:47 . 2008-06-14 16:47 <DIR> d-------- C:\Program Files\Avira

2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Program Files\Webroot

2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Program Files\Common Files\Webroot Shared

2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Webroot

2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot

2008-06-12 15:52 . 2007-10-03 09:27 196,424 --a------ C:\WINDOWS\Unwash6.exe

2008-06-11 19:39 . 2008-06-11 19:39 <DIR> d-------- C:\Program Files\Google

2008-06-11 19:39 . 2008-06-11 19:39 <DIR> d-------- C:\Program Files\DivX

2008-06-11 19:31 . 2008-06-11 19:31 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\vlc

2008-06-11 19:29 . 2008-06-11 19:29 <DIR> d-------- C:\Program Files\VideoLAN

2008-06-11 15:18 . 2008-06-11 15:20 1,374 --a------ C:\WINDOWS\imsins.BAK

2008-06-11 15:16 . 2008-04-14 14:30 272,128 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys

2008-06-11 15:16 . 2008-05-08 16:02 203,136 -----c--- C:\WINDOWS\system32\dllcache\rmcast.sys

2008-06-10 19:45 . 2008-06-10 19:58 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files

2008-06-10 19:13 . 2008-06-10 19:13 <DIR> d-------- C:\Program Files\LimeWire

2008-06-10 19:13 . 2008-06-12 19:01 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\LimeWire

2008-06-09 20:35 . 2008-06-10 19:57 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Comodo

2008-06-09 20:35 . 2008-06-10 19:54 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\comodo

2008-06-09 19:51 . 2008-06-09 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Avg8

2008-06-09 13:00 . 2008-06-09 13:00 0 --a------ C:\WINDOWS\system32\SBRC.dat

2008-06-08 21:37 . 2008-06-08 21:54 664 --a------ C:\WINDOWS\system32\d3d9caps.dat

2008-06-08 19:32 . 2008-06-08 19:32 <DIR> d--h----- C:\Program Files\InstallShield Installation Information

2008-06-08 19:32 . 2008-06-08 19:32 <DIR> d-------- C:\Program Files\EA GAMES

2008-06-08 16:35 . 2008-06-08 16:36 <DIR> d-------- C:\Program Files\TuneUp Utilities 2008

2008-06-08 16:35 . 2008-06-08 16:35 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\TuneUp Software

2008-06-08 16:35 . 2008-06-08 16:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software

2008-06-08 16:35 . 2008-06-08 16:35 354,560 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe

2008-06-08 16:35 . 2008-04-04 14:51 28,416 --a------ C:\WINDOWS\system32\uxtuneup.dll

2008-06-08 16:04 . 2008-06-08 16:04 <DIR> d-------- C:\WINDOWS\Downloaded Installations

2008-06-08 12:38 . 2008-06-09 20:27 <DIR> d-------- C:\WINDOWS\Internet Logs

2008-06-08 12:38 . 2008-06-08 16:11 4,212 ---h----- C:\WINDOWS\system32\zllictbl.dat

2008-06-07 21:44 . 2008-06-08 16:34 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard

2008-06-06 16:06 . 2008-06-10 18:23 <DIR> d-------- C:\Program Files\CamStudio

2008-06-06 16:06 . 2008-06-06 16:06 11,035,352 --a------ C:\WINDOWS\system32\SBSP.dat

2008-06-01 20:05 . 2008-06-01 20:05 <DIR> d-------- C:\Program Files\Common Files\InstallShield

2008-06-01 20:04 . 2008-06-02 09:20 <DIR> d-------- C:\Program Files\Common Files\Panda Software

2008-06-01 19:38 . 2008-06-01 19:38 <DIR> d-------- C:\Program Files\Trend Micro

2008-06-01 17:29 . 2008-04-14 02:12 221,184 --a------ C:\WINDOWS\system32\wmpns.dll

2008-05-31 20:08 . 2008-05-31 20:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\logs

2008-05-31 19:49 . 2008-06-06 16:06 153 --a------ C:\WINDOWS\system32\SBFC.dat

2008-05-31 19:36 . 2008-05-31 19:36 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Sunbelt Software

2008-05-31 19:36 . 2008-05-31 19:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Sunbelt Software

2008-05-31 19:36 . 2008-05-31 19:36 15,544 --a------ C:\WINDOWS\system32\drivers\sbhr.sys

2008-05-31 19:31 . 2008-05-31 19:31 <DIR> d-------- C:\Program Files\Sunbelt Software

2008-05-31 17:30 . 2008-05-31 17:30 <DIR> d-------- C:\Program Files\WinAVI MP4 Converter

2008-05-30 13:07 . 2008-05-30 13:08 <DIR> d-------- C:\Program Files\Common Files\Adobe

2008-05-30 13:05 . 2008-05-30 13:05 1,007 --a------ C:\WINDOWS\mozver.dat

2008-05-29 21:38 . 2008-05-29 21:38 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Talkback

2008-05-29 21:38 . 2008-05-29 21:38 0 --a------ C:\WINDOWS\nsreg.dat

2008-05-28 17:44 . 2008-06-14 16:47 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Avira

2008-05-28 17:39 . 2008-05-28 17:39 <DIR> d-------- C:\Documents and Settings\yngve\{3B7A0090-5AB6-4838-B146-968EBE8F54D1}

2008-05-28 11:05 . 2008-06-07 21:47 <DIR> d-------- C:\Program Files\SUPERAntiSpyware

2008-05-28 11:05 . 2008-06-07 21:44 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\SUPERAntiSpyware.com

2008-05-28 11:05 . 2008-05-28 11:05 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com

2008-05-28 06:54 . 2008-06-15 14:51 16 --a------ C:\WINDOWS\system32\vpc-s3.cfg

2008-05-28 06:53 . 2008-05-28 06:53 <DIR> d-------- C:\Program Files\Virtual Machine Additions

2008-05-27 07:00 . 2008-05-27 07:00 <DIR> d-------- C:\Program Files\SiteAdvisor

2008-05-27 07:00 . 2008-05-28 02:11 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\SiteAdvisor

2008-05-27 07:00 . 2008-05-27 07:00 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\SiteAdvisor

2008-05-27 01:10 . 2008-05-27 01:11 376 --a------ C:\WINDOWS\ODBC.INI

2008-05-26 22:35 . 2008-05-26 22:39 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft

2008-05-26 21:27 . 2008-06-15 14:52 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SiteAdvisor

2008-05-26 21:14 . 2008-05-27 06:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee

2008-05-26 21:03 . 2008-05-26 21:03 16 --a------ C:\WINDOWS\system32\coh.cache

2008-05-26 20:38 . 2008-05-26 21:07 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Symantec

2008-05-26 20:23 . 2008-05-26 20:23 <DIR> d-------- C:\Program Files\PowerISO

2008-05-26 06:39 . 2008-05-26 06:49 121 --a------ C:\WINDOWS\bdagent.INI

2008-05-26 06:06 . 2008-05-26 06:09 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\AVGTOOLBAR

2008-05-26 05:57 . 2008-05-26 05:57 <DIR> d-------- C:\Program Files\CCleaner

2008-05-26 05:55 . 2008-06-14 18:40 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Azureus

2008-05-26 05:55 . 2008-05-26 05:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Azureus

2008-05-26 05:54 . 2008-05-26 05:54 <DIR> d-------- C:\Program Files\Azureus

2008-05-26 05:51 . 2008-05-26 05:51 <DIR> d-------- C:\WINDOWS\Sun

2008-05-26 05:51 . 2008-03-25 11:37 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl

2008-05-26 05:50 . 2008-05-26 05:51 <DIR> d-------- C:\Program Files\Java

2008-05-26 05:50 . 2008-05-26 05:50 <DIR> d-------- C:\Program Files\Common Files\Java

2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\scripting

2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\en

2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\bits

2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\l2schemas

2008-05-26 05:39 . 2008-05-26 05:39 <DIR> d-------- C:\WINDOWS\ServicePackFiles

2008-05-24 01:36 . 2008-04-14 02:11 1,888,992 --------- C:\WINDOWS\system32\ati3duag.dll

2008-05-23 21:03 . 2008-04-23 06:16 6,066,176 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll

2008-05-23 21:03 . 2007-04-17 11:32 2,455,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dat

2008-05-23 21:03 . 2007-03-08 07:10 991,232 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll.mui

2008-05-23 21:03 . 2008-04-23 06:16 459,264 -----c--- C:\WINDOWS\system32\dllcache\msfeeds.dll

2008-05-23 21:03 . 2008-04-23 06:16 383,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dll

2008-05-23 21:03 . 2008-04-23 06:16 267,776 -----c--- C:\WINDOWS\system32\dllcache\iertutil.dll

2008-05-23 21:03 . 2008-04-23 06:16 63,488 -----c--- C:\WINDOWS\system32\dllcache\icardie.dll

2008-05-23 21:03 . 2008-04-23 06:16 52,224 -----c--- C:\WINDOWS\system32\dllcache\msfeedsbs.dll

2008-05-23 21:03 . 2008-04-22 09:39 13,824 -----c--- C:\WINDOWS\system32\dllcache\ieudinit.exe

 

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-05-23 18:37 --------- d-----w C:\Program Files\microsoft frontpage

2008-05-08 14:02 203,136 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys

2008-04-30 09:23 68,144 ----a-w C:\WINDOWS\system32\drivers\vmsrvc.sys

2008-04-30 09:17 102,448 ----a-w C:\WINDOWS\system32\drivers\mrxvpc.sys

.

 

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 02:12 15360]

"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-14 02:12 1695232]

"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-06-07 21:47 1506544]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 13:28 144784]

"SiteAdvisor"="C:\Program Files\SiteAdvisor\6261\SiteAdv.exe" [2008-05-16 18:50 36640]

"VMUserServices"="C:\Program Files\Virtual Machine Additions\vmusrvc.exe" [2008-04-30 11:23 144432]

"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" [2008-02-12 10:06 262401]

"RegistryMechanic"="" []

 

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]

"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 10:13 77824]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]

C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

"DisableMonitoring"=dword:00000001

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

"DisableMonitoring"=dword:00000001

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"C:\\Program Files\\Azureus\\Azureus.exe"=

"C:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"=

"C:\\Program Files\\LimeWire\\LimeWire.exe"=

"C:\\Program Files\\FlashFXP\\FlashFXP.exe"=

 

R0 SBHR;SBHR;C:\WINDOWS\system32\drivers\sbhr.sys [2008-05-31 19:36]

R1 1-driver-vmsrvc;Virtual Machine Additions Services Driver;C:\WINDOWS\system32\drivers\vmsrvc.sys [2008-04-30 11:23]

R1 msvmmouf;Virtual Machine Additions Mouse Integration Filter Driver;C:\WINDOWS\system32\DRIVERS\msvmmouf.sys [2007-12-07 09:02]

R2 1-vmsrvc;Virtual Machine Additions Services Application;"C:\Program Files\Virtual Machine Additions\vmsrvc.exe" [2008-04-30 11:23]

R2 AntiVirMailService;Avira AntiVir Premium MailGuard;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe" [2008-06-14 16:48]

R2 antivirwebservice;Avira AntiVir Premium WebGuard;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE" [2008-04-09 15:57]

R2 AVEService;Avira AntiVir Premium MailGuard helper service;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe" [2008-02-07 10:06]

R2 MRxVPC;Virtual Machine Additions Folder Sharing Driver;C:\WINDOWS\system32\drivers\MRxVPC.sys [2008-04-30 11:17]

R2 UxTuneUp;TuneUp Theme Extension;C:\WINDOWS\System32\svchost.exe [2008-04-14 02:12]

R2 VPCMap;Virtual Machine Additions Shared Folder Service;C:\Program Files\Virtual Machine Additions\vpcmap.exe [2008-04-30 11:17]

R2 wwEngineSvc;Window Washer Engine;C:\Program Files\Webroot\Washer\WasherSvc.exe [2007-10-03 09:27]

R3 ctlsb16;Creative SB16/AWE32/AWE64 Driver (WDM);C:\WINDOWS\system32\drivers\ctlsb16.sys [2001-08-17 14:19]

R3 SBAPIFS;SBAPIFS;C:\WINDOWS\system32\drivers\sbapifs.sys []

R3 vpc-s3;vpc-s3;C:\WINDOWS\system32\DRIVERS\vpc-s3.sys [2007-12-07 09:02]

S3 s3legacy;s3legacy;C:\WINDOWS\system32\DRIVERS\s3legacy.sys [2001-08-17 15:57]

S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-06-08 16:35]

 

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs

UxTuneUp

 

*Newly Created Service* - CATCHME

*Newly Created Service* - SBAPIFS

.

Contents of the 'Scheduled Tasks' folder

"2008-06-15 13:00:02 C:\WINDOWS\Tasks\1-Click Maintenance.job"

- C:\Program Files\TuneUp Utilities 2008\OneClickStarter.exe

.

**************************************************************************

scanning hidden processes ...

 

scanning hidden autostart entries ...

 

scanning hidden files ...

 

scan completed successfully

hidden files:

 

**************************************************************************

.

Completion time: 2008-06-15 15:10:25

ComboFix-quarantined-files.txt 2008-06-15 13:10:21

ComboFix2.txt 2008-06-15 13:07:05

 

Pre-Run: 12,723,421,184 bytes free

Post-Run: 12,717,928,448 bytes free

 

187 --- E O F --- 2008-06-11 13:25:48

 

 

 

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 3:11:06 PM, on 6/15/2008

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16674)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe

C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe

C:\Program Files\SiteAdvisor\6261\SiteAdv.exe

C:\Program Files\Virtual Machine Additions\vmusrvc.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Program Files\Virtual Machine Additions\vmsrvc.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe

C:\Program Files\Sunbelt Software\CounterSpy\SBCSSvc.exe

C:\Program Files\SiteAdvisor\6261\SAService.exe

C:\Program Files\Virtual Machine Additions\vpcmap.exe

C:\Program Files\Webroot\Washer\WasherSvc.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe

C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE

C:\WINDOWS\explorer.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll

O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"

O4 - HKLM\..\Run: [siteAdvisor] "C:\Program Files\SiteAdvisor\6261\SiteAdv.exe"

O4 - HKLM\..\Run: [VMUserServices] C:\Program Files\Virtual Machine Additions\vmusrvc.exe

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe

O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe

O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe

O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE

O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: Sunbelt CounterSpy Antispyware (SBCSSvc) - Sunbelt Software - C:\Program Files\Sunbelt Software\CounterSpy\SBCSSvc.exe

O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe

O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe

O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe

O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

O23 - Service: Window Washer Engine (wwEngineSvc) - Webroot Software, Inc. - C:\Program Files\Webroot\Washer\WasherSvc.exe

 

--

End of file - 5726 bytes

Endret av yngvenot
Lenke til kommentar
Videoannonse
Annonse

Dersom du mener at problemet med maskinen din er løst, kan du endre emnetittelen din, ved å trykke på p_edit.gif i førsteposten din, og velge full endring. Øverst der emnetittelen din er, skriver du:

[LØST]

foran emnetittelen din.

 

Eks: [LØST] Har fått virus på maskinen

 

-Surf trygt-

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
×
×
  • Opprett ny...