treeHugger123 Skrevet 15. juni 2008 Del Skrevet 15. juni 2008 (endret) for noen dager siden fikk jeg et par virus pa dataen.... grrr... Avira fjernet de tror jeg, jeg har ivertfall ikke merket noe mer problemer... men for a v're helt sikker poster jeg hijackthis og combofix log som jeg haper dere kan ta en titt pa... jeg var ogsa sa teit at jeg har slettet loggen pa avira ogsa... og en ting til, hva var den comanden du skulle skrive inn for a slette de combofix greiene? Takker for all hjelp.. LOG > ComboFix 08-06-07.1 - yngve 2008-06-15 15:08:01.3 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.358 [GMT 2:00] Running from: C:\Documents and Settings\yngve\Desktop\ComboFix.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! . ((((((((((((((((((((((((( Files Created from 2008-05-15 to 2008-06-15 ))))))))))))))))))))))))))))))) . 2008-06-14 22:44 . 2008-06-15 14:55 51,355 --a------ C:\WINDOWS\system32\muzika.xm 2008-06-14 18:50 . 2008-06-14 18:50 <DIR> d-------- C:\Program Files\FlashFXP 2008-06-14 18:50 . 2008-06-14 18:50 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FlashFXP 2008-06-14 18:02 . 2008-06-14 18:05 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Spycar 2008-06-14 17:08 . 2008-06-14 17:17 <DIR> d-------- C:\Program Files\Spyware Doctor 2008-06-14 17:08 . 2008-06-14 17:08 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\PC Tools 2008-06-14 17:08 . 2008-06-15 15:04 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2008-06-14 17:08 . 2007-12-10 13:53 81,288 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys 2008-06-14 17:08 . 2007-12-10 13:53 66,952 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys 2008-06-14 17:08 . 2008-02-01 11:55 42,376 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys 2008-06-14 17:08 . 2007-12-10 13:53 29,576 --a------ C:\WINDOWS\system32\drivers\kcom.sys 2008-06-14 16:47 . 2008-06-14 16:47 <DIR> d-------- C:\Program Files\Avira 2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Program Files\Webroot 2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Program Files\Common Files\Webroot Shared 2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Webroot 2008-06-12 15:55 . 2008-06-12 15:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot 2008-06-12 15:52 . 2007-10-03 09:27 196,424 --a------ C:\WINDOWS\Unwash6.exe 2008-06-11 19:39 . 2008-06-11 19:39 <DIR> d-------- C:\Program Files\Google 2008-06-11 19:39 . 2008-06-11 19:39 <DIR> d-------- C:\Program Files\DivX 2008-06-11 19:31 . 2008-06-11 19:31 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\vlc 2008-06-11 19:29 . 2008-06-11 19:29 <DIR> d-------- C:\Program Files\VideoLAN 2008-06-11 15:18 . 2008-06-11 15:20 1,374 --a------ C:\WINDOWS\imsins.BAK 2008-06-11 15:16 . 2008-04-14 14:30 272,128 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys 2008-06-11 15:16 . 2008-05-08 16:02 203,136 -----c--- C:\WINDOWS\system32\dllcache\rmcast.sys 2008-06-10 19:45 . 2008-06-10 19:58 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files 2008-06-10 19:13 . 2008-06-10 19:13 <DIR> d-------- C:\Program Files\LimeWire 2008-06-10 19:13 . 2008-06-12 19:01 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\LimeWire 2008-06-09 20:35 . 2008-06-10 19:57 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Comodo 2008-06-09 20:35 . 2008-06-10 19:54 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\comodo 2008-06-09 19:51 . 2008-06-09 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Avg8 2008-06-09 13:00 . 2008-06-09 13:00 0 --a------ C:\WINDOWS\system32\SBRC.dat 2008-06-08 21:37 . 2008-06-08 21:54 664 --a------ C:\WINDOWS\system32\d3d9caps.dat 2008-06-08 19:32 . 2008-06-08 19:32 <DIR> d--h----- C:\Program Files\InstallShield Installation Information 2008-06-08 19:32 . 2008-06-08 19:32 <DIR> d-------- C:\Program Files\EA GAMES 2008-06-08 16:35 . 2008-06-08 16:36 <DIR> d-------- C:\Program Files\TuneUp Utilities 2008 2008-06-08 16:35 . 2008-06-08 16:35 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\TuneUp Software 2008-06-08 16:35 . 2008-06-08 16:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software 2008-06-08 16:35 . 2008-06-08 16:35 354,560 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe 2008-06-08 16:35 . 2008-04-04 14:51 28,416 --a------ C:\WINDOWS\system32\uxtuneup.dll 2008-06-08 16:04 . 2008-06-08 16:04 <DIR> d-------- C:\WINDOWS\Downloaded Installations 2008-06-08 12:38 . 2008-06-09 20:27 <DIR> d-------- C:\WINDOWS\Internet Logs 2008-06-08 12:38 . 2008-06-08 16:11 4,212 ---h----- C:\WINDOWS\system32\zllictbl.dat 2008-06-07 21:44 . 2008-06-08 16:34 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard 2008-06-06 16:06 . 2008-06-10 18:23 <DIR> d-------- C:\Program Files\CamStudio 2008-06-06 16:06 . 2008-06-06 16:06 11,035,352 --a------ C:\WINDOWS\system32\SBSP.dat 2008-06-01 20:05 . 2008-06-01 20:05 <DIR> d-------- C:\Program Files\Common Files\InstallShield 2008-06-01 20:04 . 2008-06-02 09:20 <DIR> d-------- C:\Program Files\Common Files\Panda Software 2008-06-01 19:38 . 2008-06-01 19:38 <DIR> d-------- C:\Program Files\Trend Micro 2008-06-01 17:29 . 2008-04-14 02:12 221,184 --a------ C:\WINDOWS\system32\wmpns.dll 2008-05-31 20:08 . 2008-05-31 20:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\logs 2008-05-31 19:49 . 2008-06-06 16:06 153 --a------ C:\WINDOWS\system32\SBFC.dat 2008-05-31 19:36 . 2008-05-31 19:36 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Sunbelt Software 2008-05-31 19:36 . 2008-05-31 19:36 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Sunbelt Software 2008-05-31 19:36 . 2008-05-31 19:36 15,544 --a------ C:\WINDOWS\system32\drivers\sbhr.sys 2008-05-31 19:31 . 2008-05-31 19:31 <DIR> d-------- C:\Program Files\Sunbelt Software 2008-05-31 17:30 . 2008-05-31 17:30 <DIR> d-------- C:\Program Files\WinAVI MP4 Converter 2008-05-30 13:07 . 2008-05-30 13:08 <DIR> d-------- C:\Program Files\Common Files\Adobe 2008-05-30 13:05 . 2008-05-30 13:05 1,007 --a------ C:\WINDOWS\mozver.dat 2008-05-29 21:38 . 2008-05-29 21:38 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Talkback 2008-05-29 21:38 . 2008-05-29 21:38 0 --a------ C:\WINDOWS\nsreg.dat 2008-05-28 17:44 . 2008-06-14 16:47 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Avira 2008-05-28 17:39 . 2008-05-28 17:39 <DIR> d-------- C:\Documents and Settings\yngve\{3B7A0090-5AB6-4838-B146-968EBE8F54D1} 2008-05-28 11:05 . 2008-06-07 21:47 <DIR> d-------- C:\Program Files\SUPERAntiSpyware 2008-05-28 11:05 . 2008-06-07 21:44 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\SUPERAntiSpyware.com 2008-05-28 11:05 . 2008-05-28 11:05 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com 2008-05-28 06:54 . 2008-06-15 14:51 16 --a------ C:\WINDOWS\system32\vpc-s3.cfg 2008-05-28 06:53 . 2008-05-28 06:53 <DIR> d-------- C:\Program Files\Virtual Machine Additions 2008-05-27 07:00 . 2008-05-27 07:00 <DIR> d-------- C:\Program Files\SiteAdvisor 2008-05-27 07:00 . 2008-05-28 02:11 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\SiteAdvisor 2008-05-27 07:00 . 2008-05-27 07:00 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\SiteAdvisor 2008-05-27 01:10 . 2008-05-27 01:11 376 --a------ C:\WINDOWS\ODBC.INI 2008-05-26 22:35 . 2008-05-26 22:39 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft 2008-05-26 21:27 . 2008-06-15 14:52 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SiteAdvisor 2008-05-26 21:14 . 2008-05-27 06:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee 2008-05-26 21:03 . 2008-05-26 21:03 16 --a------ C:\WINDOWS\system32\coh.cache 2008-05-26 20:38 . 2008-05-26 21:07 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Symantec 2008-05-26 20:23 . 2008-05-26 20:23 <DIR> d-------- C:\Program Files\PowerISO 2008-05-26 06:39 . 2008-05-26 06:49 121 --a------ C:\WINDOWS\bdagent.INI 2008-05-26 06:06 . 2008-05-26 06:09 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\AVGTOOLBAR 2008-05-26 05:57 . 2008-05-26 05:57 <DIR> d-------- C:\Program Files\CCleaner 2008-05-26 05:55 . 2008-06-14 18:40 <DIR> d-------- C:\Documents and Settings\yngve\Application Data\Azureus 2008-05-26 05:55 . 2008-05-26 05:55 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Azureus 2008-05-26 05:54 . 2008-05-26 05:54 <DIR> d-------- C:\Program Files\Azureus 2008-05-26 05:51 . 2008-05-26 05:51 <DIR> d-------- C:\WINDOWS\Sun 2008-05-26 05:51 . 2008-03-25 11:37 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl 2008-05-26 05:50 . 2008-05-26 05:51 <DIR> d-------- C:\Program Files\Java 2008-05-26 05:50 . 2008-05-26 05:50 <DIR> d-------- C:\Program Files\Common Files\Java 2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\scripting 2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\en 2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\system32\bits 2008-05-26 05:42 . 2008-05-26 05:42 <DIR> d-------- C:\WINDOWS\l2schemas 2008-05-26 05:39 . 2008-05-26 05:39 <DIR> d-------- C:\WINDOWS\ServicePackFiles 2008-05-24 01:36 . 2008-04-14 02:11 1,888,992 --------- C:\WINDOWS\system32\ati3duag.dll 2008-05-23 21:03 . 2008-04-23 06:16 6,066,176 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll 2008-05-23 21:03 . 2007-04-17 11:32 2,455,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dat 2008-05-23 21:03 . 2007-03-08 07:10 991,232 -----c--- C:\WINDOWS\system32\dllcache\ieframe.dll.mui 2008-05-23 21:03 . 2008-04-23 06:16 459,264 -----c--- C:\WINDOWS\system32\dllcache\msfeeds.dll 2008-05-23 21:03 . 2008-04-23 06:16 383,488 -----c--- C:\WINDOWS\system32\dllcache\ieapfltr.dll 2008-05-23 21:03 . 2008-04-23 06:16 267,776 -----c--- C:\WINDOWS\system32\dllcache\iertutil.dll 2008-05-23 21:03 . 2008-04-23 06:16 63,488 -----c--- C:\WINDOWS\system32\dllcache\icardie.dll 2008-05-23 21:03 . 2008-04-23 06:16 52,224 -----c--- C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2008-05-23 21:03 . 2008-04-22 09:39 13,824 -----c--- C:\WINDOWS\system32\dllcache\ieudinit.exe . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-05-23 18:37 --------- d-----w C:\Program Files\microsoft frontpage 2008-05-08 14:02 203,136 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys 2008-04-30 09:23 68,144 ----a-w C:\WINDOWS\system32\drivers\vmsrvc.sys 2008-04-30 09:17 102,448 ----a-w C:\WINDOWS\system32\drivers\mrxvpc.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 02:12 15360] "MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-14 02:12 1695232] "SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-06-07 21:47 1506544] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 13:28 144784] "SiteAdvisor"="C:\Program Files\SiteAdvisor\6261\SiteAdv.exe" [2008-05-16 18:50 36640] "VMUserServices"="C:\Program Files\Virtual Machine Additions\vmusrvc.exe" [2008-04-30 11:23 144432] "avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" [2008-02-12 10:06 262401] "RegistryMechanic"="" [] [hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 10:13 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Azureus\\Azureus.exe"= "C:\\Program Files\\EA GAMES\\Battlefield 2\\BF2.exe"= "C:\\Program Files\\LimeWire\\LimeWire.exe"= "C:\\Program Files\\FlashFXP\\FlashFXP.exe"= R0 SBHR;SBHR;C:\WINDOWS\system32\drivers\sbhr.sys [2008-05-31 19:36] R1 1-driver-vmsrvc;Virtual Machine Additions Services Driver;C:\WINDOWS\system32\drivers\vmsrvc.sys [2008-04-30 11:23] R1 msvmmouf;Virtual Machine Additions Mouse Integration Filter Driver;C:\WINDOWS\system32\DRIVERS\msvmmouf.sys [2007-12-07 09:02] R2 1-vmsrvc;Virtual Machine Additions Services Application;"C:\Program Files\Virtual Machine Additions\vmsrvc.exe" [2008-04-30 11:23] R2 AntiVirMailService;Avira AntiVir Premium MailGuard;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe" [2008-06-14 16:48] R2 antivirwebservice;Avira AntiVir Premium WebGuard;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE" [2008-04-09 15:57] R2 AVEService;Avira AntiVir Premium MailGuard helper service;"C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe" [2008-02-07 10:06] R2 MRxVPC;Virtual Machine Additions Folder Sharing Driver;C:\WINDOWS\system32\drivers\MRxVPC.sys [2008-04-30 11:17] R2 UxTuneUp;TuneUp Theme Extension;C:\WINDOWS\System32\svchost.exe [2008-04-14 02:12] R2 VPCMap;Virtual Machine Additions Shared Folder Service;C:\Program Files\Virtual Machine Additions\vpcmap.exe [2008-04-30 11:17] R2 wwEngineSvc;Window Washer Engine;C:\Program Files\Webroot\Washer\WasherSvc.exe [2007-10-03 09:27] R3 ctlsb16;Creative SB16/AWE32/AWE64 Driver (WDM);C:\WINDOWS\system32\drivers\ctlsb16.sys [2001-08-17 14:19] R3 SBAPIFS;SBAPIFS;C:\WINDOWS\system32\drivers\sbapifs.sys [] R3 vpc-s3;vpc-s3;C:\WINDOWS\system32\DRIVERS\vpc-s3.sys [2007-12-07 09:02] S3 s3legacy;s3legacy;C:\WINDOWS\system32\DRIVERS\s3legacy.sys [2001-08-17 15:57] S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-06-08 16:35] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp *Newly Created Service* - CATCHME *Newly Created Service* - SBAPIFS . Contents of the 'Scheduled Tasks' folder "2008-06-15 13:00:02 C:\WINDOWS\Tasks\1-Click Maintenance.job" - C:\Program Files\TuneUp Utilities 2008\OneClickStarter.exe . ************************************************************************** scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: ************************************************************************** . Completion time: 2008-06-15 15:10:25 ComboFix-quarantined-files.txt 2008-06-15 13:10:21 ComboFix2.txt 2008-06-15 13:07:05 Pre-Run: 12,723,421,184 bytes free Post-Run: 12,717,928,448 bytes free 187 --- E O F --- 2008-06-11 13:25:48 Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 3:11:06 PM, on 6/15/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe C:\Program Files\SiteAdvisor\6261\SiteAdv.exe C:\Program Files\Virtual Machine Additions\vmusrvc.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\Virtual Machine Additions\vmsrvc.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe C:\Program Files\Sunbelt Software\CounterSpy\SBCSSvc.exe C:\Program Files\SiteAdvisor\6261\SAService.exe C:\Program Files\Virtual Machine Additions\vpcmap.exe C:\Program Files\Webroot\Washer\WasherSvc.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE C:\WINDOWS\explorer.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" O4 - HKLM\..\Run: [siteAdvisor] "C:\Program Files\SiteAdvisor\6261\SiteAdv.exe" O4 - HKLM\..\Run: [VMUserServices] C:\Program Files\Virtual Machine Additions\vmusrvc.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: Avira AntiVir Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe O23 - Service: Avira AntiVir Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe O23 - Service: Avira AntiVir Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe O23 - Service: Avira AntiVir Premium WebGuard (antivirwebservice) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\AVWEBGRD.EXE O23 - Service: Avira AntiVir Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Sunbelt CounterSpy Antispyware (SBCSSvc) - Sunbelt Software - C:\Program Files\Sunbelt Software\CounterSpy\SBCSSvc.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: Window Washer Engine (wwEngineSvc) - Webroot Software, Inc. - C:\Program Files\Webroot\Washer\WasherSvc.exe -- End of file - 5726 bytes Endret 15. juni 2008 av yngvenot Lenke til kommentar
norbat Skrevet 15. juni 2008 Del Skrevet 15. juni 2008 Ser greit ut dette. Du kan slette fila C:\WINDOWS\system32\muzika.xm Lenke til kommentar
treeHugger123 Skrevet 15. juni 2008 Forfatter Del Skrevet 15. juni 2008 Takk norbat.. you are my hero... hehe... hva var den dere muzika.xm egentlig? Lenke til kommentar
norbat Skrevet 15. juni 2008 Del Skrevet 15. juni 2008 Fila er en harmløs fil etter en trojaner Lenke til kommentar
r2d290 Skrevet 17. juni 2008 Del Skrevet 17. juni 2008 Dersom du mener at problemet med maskinen din er løst, kan du endre emnetittelen din, ved å trykke på i førsteposten din, og velge full endring. Øverst der emnetittelen din er, skriver du: [LØST] foran emnetittelen din. Eks: [LØST] Har fått virus på maskinen -Surf trygt- Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå