Hvordan fjerner jeg twaintec.dll og/eller vx2.betterinternet?
Kære Eksperter!Jeg er i tvivl om hvorvidt dette spørgsmål hører til i denne kategori, men det var den jeg synes passede bedst.
i min windows folder lægger der sig twaintec.dll, der vidst er noget meget ondsindet spyware, sig, lige så snart jeg kobler min computer til nettet. Jeg har prøvet alverdens spyware fjernere (ad-aware (den 'udvidede' scanning), pestpatrol, spysweeper og andre) og de kan alle finde filerne, og registreringerne, og også fjerne dem. Problemet er at de alle kommer tilbage når jeg genstarter min computer (med mindre det er i fejlsikret tilstand, eller uden at være koblet til nettet). Ligeledes har jeg prøvet at fjerne det hele manuelt med regedit, og jeg har prøvet at 'afregistrere' twaintec.dll med regsvr32. Lige lidt hjælper det. Systemgendannelse i windows er koblet fra. Jeg får også besked fra spywarefjernelsesprogrammerne om at der ligger noget der hedder vx2.betterinternet, men så vidt jeg har kunnet læse mig til, er dette noget som Twaintec sætter i gang. Jeg har prøvet at fjerne dem med et lille program, der hedder vx2finder.exe, og det kan ikke finde nogen filer jeg kan fjerne. Jeg har også prøvet at køre killbox.exe, og dette kan heller ikke finde twaintec, eller fjerne det, selvom programmet skulle være skrevet med det formål. Kort sagt har jeg prøvet alt hvad jeg kunne finde på nette om emnet, men ak, uden held. Jeg paster herunder min log fra ad-aware, og hijackthis. Håber at der er nogen derude der sidder med svaret... På forhånd tak.
Venlig Hilsen
Esben
Hijackthis log:
Logfile of HijackThis v1.97.7
Scan saved at 23:50:29, on 30-05-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\ibmpmsvc.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\QCONSVC.EXE
C:\WINDOWS\System32\RegSrvc.exe
C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe
C:\WINDOWS\System32\RunDll32.exe
C:\Programmer\ThinkPad\Utilities\TpKmapMn.exe
C:\Programmer\ThinkPad\ConnectUtilities\QCWLICON.EXE
C:\Programmer\ThinkPad\PkgMgr\HOTKEY\TPONSCR.exe
C:\Programmer\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe
C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
C:\WINDOWS\AGRSMMSG.exe
C:\Programmer\IBM\Messages By IBM\ibmmessages.exe
C:\Programmer\VERITAS Software\Update Manager\sgtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Programmer\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\azymnc.exe
C:\Programmer\PestPatrol\PPControl.exe
C:\Programmer\PestPatrol\PPMemCheck.exe
C:\Programmer\PestPatrol\CookiePatrol.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programmer\iPod\bin\iPodService.exe
C:\Programmer\MSN Messenger\MsnMsgr.Exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Ad-aware 6\Ad-aware.exe
C:\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {000020DD-C72E-4113-AF77-DD56626C6C42} - C:\WINDOWS\twaintec.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O4 - HKLM\..\Run: [S3TRAY2] S3Tray2.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [TPHOTKEY] C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe
O4 - HKLM\..\Run: [BMMGAG] RunDll32 C:\PROGRA~1\ThinkPad\UTILIT~1\pwrmonit.dll,StartPwrMonitor
O4 - HKLM\..\Run: [TPKMAPMN] C:\Programmer\ThinkPad\Utilities\TpKmapMn.exe
O4 - HKLM\..\Run: [TP4EX] tp4ex.exe
O4 - HKLM\..\Run: [QCWLICON] C:\Programmer\ThinkPad\ConnectUtilities\QCWLICON.EXE
O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ibmmessages] C:\Programmer\IBM\Messages By IBM\ibmmessages.exe
O4 - HKLM\..\Run: [StorageGuard] "c:\Programmer\VERITAS Software\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Programmer\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [nbzlkcqrny] C:\WINDOWS\System32\azymnc.exe
O4 - HKLM\..\Run: [PestPatrol Control Center] C:\Programmer\PestPatrol\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\Programmer\PestPatrol\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\Programmer\PestPatrol\CookiePatrol.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [ibmmessages] C:\Programmer\IBM\Messages By IBM\ibmmessages.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office10\OSA.EXE
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38120.5986111111
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Ad-aware log:
Lavasoft Ad-aware Personal Build 6.181
Logfile lavet:30. maj 2004 23:43:18
Created with Ad-aware Personal, free for private use.
Bruger reference fil:01R311 27.05.2004
______________________________________________________
Reffile status:
=========================
Reference fil hentet:
Reference Number : 01R311 27.05.2004
Internal build : 243
File location : C:\Ad-aware 6\reflist.ref
Total size : 1172560 Bytes
Signature data size : 1152893 Bytes
Reference data size : 19603 Bytes
Signatures total : 25723
Target categories : 10
Target families : 487
Memory + processor status:
==========================
Number of processors : 1
Processor architecture : Non Intel
Memory available:63 %
Total physical memory:523184 kb
Available physical memory:327136 kb
Total page file size:1280020 kb
Available on page file:1110220 kb
Total virtual memory:2097024 kb
Available virtual memory:2052456 kb
OS:
Ad-aware Settings
=========================
Set : Aktiver dybdeskanning(Anbefalet)
Set : Sikker mode (spørger altid)
Set : Skan aktive processer
Set : Skan Registrering
Set : Dybde skan Registrering
Set : Skan indenfor arkiver
30-05-2004 23:43:18 - Scan started. (Custom mode)
Lister løbende processer
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 30-05-2004 21:32:16
BasePriority : Normal
#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:23
BasePriority : High
#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:26
BasePriority : Normal
FileSize : 99 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Tjenester og controllerprogrammer
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:19
Last modified : 16-09-2002 06:00:00
#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:26
BasePriority : Normal
FileSize : 11 KB
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:19
Last modified : 16-09-2002 06:00:00
#:5 [ibmpmsvc.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:29
BasePriority : Normal
FileSize : 56 KB
Created on : 02-07-2003 23:25:00
Last accessed : 30-05-2004 21:11:15
Last modified : 02-07-2003 23:25:00
#:6 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:32
BasePriority : Normal
FileSize : 388 KB
Created on : 10-02-2004 16:40:48
Last accessed : 30-05-2004 21:11:16
Last modified : 10-02-2004 16:40:48
#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:34
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:20
Last modified : 16-09-2002 06:00:00
#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:34
BasePriority : Normal
FileSize : 12 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:20
Last modified : 16-09-2002 06:00:00
#:9 [s24evmon.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:34
BasePriority : Normal
FileSize : 292 KB
FileVersion : 3.1.8.0
ProductVersion : 4.0.0.0
Copyright : Copyright
CompanyName : Intel Corporation
FileDescription : Event Monitor - Supports driver extensions to NIC Driver for wireless adapters.
InternalName : S24EvMon
OriginalFilename : S24EvMon.exe
ProductName : Mobile Unit Support Service
Created on : 24-01-2003 13:37:32
Last accessed : 30-05-2004 21:11:16
Last modified : 24-01-2003 13:37:32
#:10 [ati2evxx.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:45
BasePriority : Normal
FileSize : 388 KB
Created on : 10-02-2004 16:40:48
Last accessed : 30-05-2004 21:11:16
Last modified : 10-02-2004 16:40:48
#:11 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 30-05-2004 21:32:45
BasePriority : Normal
FileSize : 974 KB
FileVersion : 6.00.2800.1221 (xpsp2.030511-1403)
ProductVersion : 6.00.2800.1221
CompanyName : Microsoft Corporation
FileDescription : Windows Stifinder
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 29-05-2003 09:51:08
Last accessed : 30-05-2004 21:32:46
Last modified : 29-05-2003 09:51:08
#:12 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 30-05-2004 21:32:45
BasePriority : Normal
FileSize : 50 KB
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:20
Last modified : 16-09-2002 06:00:00
#:13 [qconsvc.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:54
BasePriority : Normal
FileSize : 48 KB
Created on : 30-10-2003 09:09:54
Last accessed : 30-05-2004 21:11:17
Last modified : 27-03-2003 00:06:02
#:14 [regsrvc.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:55
BasePriority : Normal
FileSize : 120 KB
FileVersion : 4, 0, 0, 1
ProductVersion : 4, 0, 0, 1
Copyright : Copyright
CompanyName : Intel Corporation
FileDescription : RegSrvc Module
InternalName : RegSrvc
OriginalFilename : RegSrvc.EXE
ProductName : RegSrvc Module
Created on : 24-01-2003 13:36:42
Last accessed : 30-05-2004 21:11:17
Last modified : 24-01-2003 13:36:42
#:15 [syntplpr.exe]
FilePath : C:\Programmer\Synaptics\SynTP\
ThreadCreationTime : 30-05-2004 21:32:55
BasePriority : Normal
FileSize : 124 KB
FileVersion : 6.7.12 25Nov02
ProductVersion : 6.7.12 25Nov02
Copyright : Copyright (C) Synaptics, Inc. 1996-2002
CompanyName : Synaptics, Inc.
FileDescription : TouchPad Driver Helper Application
InternalName : SynTPLpr
OriginalFilename : SynTPLpr.exe
ProductName : Progressive Touch
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:11:17
Last modified : 25-11-2002 09:48:42
#:16 [syntpenh.exe]
FilePath : C:\Programmer\Synaptics\SynTP\
ThreadCreationTime : 30-05-2004 21:32:55
BasePriority : Normal
FileSize : 444 KB
FileVersion : 6.7.12 25Nov02
ProductVersion : 6.7.12 25Nov02
Copyright : Copyright (C) Synaptics, Inc. 1996-2002
CompanyName : Synaptics, Inc.
FileDescription : Synaptics TouchPad Enhancements
InternalName : Scrolleroo
OriginalFilename : SynTPEnh.exe
ProductName : Progressive Touch
Created on : 30-10-2003 09:23:42
Last accessed : 30-05-2004 21:11:17
Last modified : 25-11-2002 09:47:44
#:17 [tphkmgr.exe]
FilePath : C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\
ThreadCreationTime : 30-05-2004 21:32:58
BasePriority : Normal
FileSize : 92 KB
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:11:19
Last modified : 24-01-2003 15:37:12
#:18 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:32:59
BasePriority : Normal
FileSize : 31 KB
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
CompanyName : Microsoft Corporation
FileDescription : K
InternalName : rundll
OriginalFilename : RUNDLL.EXE
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:32:57
Last modified : 16-09-2002 06:00:00
#:19 [tpkmapmn.exe]
FilePath : C:\Programmer\ThinkPad\Utilities\
ThreadCreationTime : 30-05-2004 21:32:59
BasePriority : Normal
FileSize : 32 KB
Created on : 30-10-2003 09:09:12
Last accessed : 30-05-2004 21:11:17
Last modified : 16-02-2003 22:30:48
#:20 [qcwlicon.exe]
FilePath : C:\Programmer\ThinkPad\ConnectUtilities\
ThreadCreationTime : 30-05-2004 21:33:00
BasePriority : Normal
FileSize : 52 KB
Created on : 30-10-2003 09:09:54
Last accessed : 30-05-2004 21:11:17
Last modified : 27-03-2003 00:06:02
#:21 [tponscr.exe]
FilePath : C:\Programmer\ThinkPad\PkgMgr\HOTKEY\
ThreadCreationTime : 30-05-2004 21:33:00
BasePriority : Normal
FileSize : 76 KB
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:11:17
Last modified : 16-01-2003 15:49:12
#:22 [tpscrex.exe]
FilePath : C:\Programmer\ThinkPad\PkgMgr\HOTKEY_1\
ThreadCreationTime : 30-05-2004 21:33:01
BasePriority : Normal
FileSize : 64 KB
FileVersion : 1.06
ProductVersion : 1.06
Copyright : Copyright (c) 2000, IBM Corporation
CompanyName : IBM Corporation
FileDescription : ThinkPad UltraZoom
InternalName : TPSCREX
OriginalFilename : TpScrEx.exe
ProductName : ThinkPad UltraZoom
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:11:17
Last modified : 10-01-2002 13:01:34
#:23 [ezejmnap.exe]
FilePath : C:\PROGRA~1\ThinkPad\UTILIT~1\
ThreadCreationTime : 30-05-2004 21:33:02
BasePriority : Normal
FileSize : 200 KB
FileVersion : 1, 0, 0, 0
ProductVersion : 1, 0, 0, 0
Copyright : Copyright (C) IBM Corp., 2002.
CompanyName : IBM Corp.
FileDescription : IBM ThinkPad EasyEject Support Application
InternalName : IBM ThinkPad EasyEject Support Application
OriginalFilename : EzEjMnAp.EXE
ProductName : IBM ThinkPad EasyEject Support Application
Created on : 30-10-2003 09:10:21
Last accessed : 30-05-2004 21:11:19
Last modified : 01-11-2002
#:24 [agrsmmsg.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 30-05-2004 21:33:04
BasePriority : Normal
FileSize : 86 KB
FileVersion : 2.1.31 2.1.31 06/27/2003 08:53:31
ProductVersion : 2.1.31 2.1.31 06/27/2003 08:53:31
Copyright : Copyright
CompanyName : Agere Systems
FileDescription : SoftModem Messaging Applet
InternalName : smdmstat.exe
OriginalFilename : smdmstat.exe
ProductName : Agere SoftModem Messaging Applet
Created on : 27-06-2003 06:53:32
Last accessed : 30-05-2004 21:11:17
Last modified : 27-06-2003 06:53:32
#:25 [ibmmessages.exe]
FilePath : C:\Programmer\IBM\Messages By IBM\
ThreadCreationTime : 30-05-2004 21:33:04
BasePriority : Normal
FileSize : 484 KB
FileVersion : 1.058
ProductVersion : 1.058
Copyright : Copyright
CompanyName : IBM
FileDescription : ibmmessages
InternalName : ibmmessages
OriginalFilename : ibmmessages.exe
ProductName : Access IBM Message Center
Created on : 07-01-2003 12:52:16
Last accessed : 30-05-2004 21:33:14
Last modified : 07-01-2003 12:52:16
#:26 [sgtray.exe]
FilePath : C:\Programmer\VERITAS Software\Update Manager\
ThreadCreationTime : 30-05-2004 21:33:05
BasePriority : Normal
FileSize : 152 KB
FileVersion : 1.01.02a
Copyright : Copyright
CompanyName : VERITAS Software, Inc.
FileDescription : VERITAS Update Manager
Created on : 17-06-2002 22:01:00
Last accessed : 30-05-2004 21:11:17
Last modified : 17-06-2002 22:01:00
#:27 [tfswctrl.exe]
FilePath : C:\WINDOWS\system32\dla\
ThreadCreationTime : 30-05-2004 21:33:05
BasePriority : Normal
FileSize : 104 KB
FileVersion : 3.50.21a
Copyright : Copyright
CompanyName : VERITAS Software, Inc.
FileDescription : Direct Access Component
Created on : 30-10-2003 09:18:23
Last accessed : 30-05-2004 21:11:17
Last modified : 08-11-2002 01:50:00
#:28 [ituneshelper.exe]
FilePath : C:\Programmer\iTunes\
ThreadCreationTime : 30-05-2004 21:33:06
BasePriority : Normal
FileSize : 280 KB
FileVersion : 4.5.0.31
ProductVersion : 4.5.0.31
CompanyName : Apple Computer, Inc.
FileDescription : iTunesHelper Module
InternalName : iTunesHelper
OriginalFilename : iTunesHelper.exe
ProductName : iTunes
Created on : 21-04-2004 09:28:18
Last accessed : 30-05-2004 21:11:17
Last modified : 21-04-2004 09:28:18
#:29 [azymnc.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:33:07
BasePriority : Normal
FileSize : 37 KB
Created on : 27-05-2004 11:06:13
Last accessed : 30-05-2004 21:33:07
Last modified : 21-05-2004 17:01:00
#:30 [ppcontrol.exe]
FilePath : C:\Programmer\PestPatrol\
ThreadCreationTime : 30-05-2004 21:33:08
BasePriority : Normal
FileSize : 52 KB
Created on : 30-05-2004 02:40:56
Last accessed : 30-05-2004 21:33:09
Last modified : 02-04-2004 13:11:48
#:31 [ppmemcheck.exe]
FilePath : C:\Programmer\PestPatrol\
ThreadCreationTime : 30-05-2004 21:33:08
BasePriority : Normal
FileSize : 145 KB
Created on : 30-05-2004 02:40:56
Last accessed : 30-05-2004 21:11:17
Last modified : 02-04-2004 13:11:54
#:32 [cookiepatrol.exe]
FilePath : C:\Programmer\PestPatrol\
ThreadCreationTime : 30-05-2004 21:33:09
BasePriority : Normal
FileSize : 68 KB
Created on : 30-05-2004 02:40:56
Last accessed : 30-05-2004 21:11:18
Last modified : 02-04-2004 13:10:34
#:33 [ctfmon.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 30-05-2004 21:33:09
BasePriority : Normal
FileSize : 13 KB
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
OriginalFilename : CTFMON.EXE
ProductName : Microsoft
Created on : 31-12-1979 22:00:00
Last accessed : 30-05-2004 21:06:20
Last modified : 16-09-2002 06:00:00
#:34 [ipodservice.exe]
FilePath : C:\Programmer\iPod\bin\
ThreadCreationTime : 30-05-2004 21:33:28
BasePriority : Normal
FileSize : 392 KB
FileVersion : 4.5.0.31
ProductVersion : 4.5.0.31
CompanyName : Apple Computer, Inc.
FileDescription : iPodService Module
InternalName : iPodService
OriginalFilename : iPodService.exe
ProductName : iTunes
Created on : 21-04-2004 09:28:04
Last accessed : 30-05-2004 21:11:18
Last modified : 21-04-2004 09:28:04
#:35 [msnmsgr.exe]
FilePath : C:\Programmer\MSN Messenger\
ThreadCreationTime : 30-05-2004 21:38:02
BasePriority : Normal
FileSize : 4768 KB
FileVersion : 6.2.0133
ProductVersion : Version 6.2
Copyright : Copyright (c) Microsoft Corporation 1997-2004
CompanyName : Microsoft Corporation
FileDescription : MSN Messenger
InternalName : msnmsgr
OriginalFilename : msnmsgr.exe
ProductName : MSN Messenger
Created on : 29-04-2004 22:03:32
Last accessed : 30-05-2004 21:38:03
Last modified : 29-04-2004 22:03:32
#:36 [iexplore.exe]
FilePath : C:\Programmer\Internet Explorer\
ThreadCreationTime : 30-05-2004 21:38:29
BasePriority : Normal
FileSize : 89 KB
FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
ProductVersion : 6.00.2800.1106
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
OriginalFilename : IEXPLORE.EXE
ProductName : Microsoft
Created on : 18-10-2002 13:37:49
Last accessed : 30-05-2004 21:38:51
Last modified : 16-09-2002 06:00:00
#:37 [ad-aware.exe]
FilePath : C:\Ad-aware 6\
ThreadCreationTime : 30-05-2004 21:43:00
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 15-05-2004 21:27:09
Last accessed : 30-05-2004 21:43:00
Last modified : 12-07-2003 19:00:20
Hukommelses skan resultat:
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Nye Objekter: 0
Objekter fundet indtil videre: 0
Startede registrerings skan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
StopPop Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_CLASSES_ROOT
Objekt : Interface\{4534CD6B-59D6-43FD-864B-06A0D843444A}
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_CLASSES_ROOT
Objekt : CLSID\{000020DD-C72E-4113-AF77-DD56626C6C42}
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_LOCAL_MACHINE
Objekt : SOFTWARE\twaintec
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_CLASSES_ROOT
Objekt : TwaintecDll.TwaintecDllObj.1
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_CLASSES_ROOT
Objekt : TypeLib\{690BCCB4-6B83-4203-AE77-038C116594EC}
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_CLASSES_ROOT
Objekt : vx2.vx2obj
Registrerings skan resultat:
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Nye Objekter: 6
Objekter fundet indtil videre: 6
Startede dybde registrerings skan
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
VX2.BetterInternet Objekt genkendt!
Type : RegKey
Data :
kategori : Data Miner
Kommentar :
Rootkey : HKEY_LOCAL_MACHINE
Objekt : SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000020DD-C72E-4113-AF77-DD56626C6C42}
Dybde registrerings skan resultat:
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Nye Objekter: 1
Objekter fundet indtil videre: 7
Dybde skanner og undersøger filer (C:)
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : preinstt.exe
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI3607.tmp\
FileSize : 32 KB
Created on : 30-05-2004 21:06:51
Last accessed : 30-05-2004 21:06:51
Last modified : 11-02-2004 15:30:50
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.cab
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI3607.tmp\
FileSize : 81 KB
Created on : 30-05-2004 21:06:51
Last accessed : 30-05-2004 21:06:51
Last modified : 30-05-2004 21:06:51
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.dll
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI3607.tmp\
FileSize : 136 KB
FileVersion : 0, 1, 4, 19
ProductVersion : 0, 1, 4, 19
Copyright : Copyright
CompanyName : Twain Tech
FileDescription : www.twain-tech.com
InternalName : Twaintec
OriginalFilename : Twaintec.dll
ProductName : Twaintec
Created on : 30-05-2004 21:06:51
Last accessed : 30-05-2004 21:06:51
Last modified : 11-02-2004 15:30:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : preinstt.exe
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI76AD.tmp\
FileSize : 32 KB
Created on : 30-05-2004 21:33:52
Last accessed : 30-05-2004 21:33:52
Last modified : 11-02-2004 15:30:50
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.cab
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI76AD.tmp\
FileSize : 81 KB
Created on : 30-05-2004 21:33:52
Last accessed : 30-05-2004 21:33:52
Last modified : 30-05-2004 21:33:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.dll
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\THI76AD.tmp\
FileSize : 136 KB
FileVersion : 0, 1, 4, 19
ProductVersion : 0, 1, 4, 19
Copyright : Copyright
CompanyName : Twain Tech
FileDescription : www.twain-tech.com
InternalName : Twaintec
OriginalFilename : Twaintec.dll
ProductName : Twaintec
Created on : 30-05-2004 21:33:52
Last accessed : 30-05-2004 21:33:52
Last modified : 11-02-2004 15:30:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.ini
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\
FileSize : 224 KB
Created on : 30-05-2004 21:08:52
Last accessed : 30-05-2004 21:08:52
Last modified : 12-12-2003 06:45:14
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twtini.cab
kategori : Data Miner
Kommentar :
Objekt : C:\Documents and Settings\Esben\Lokale indstillinger\Temp\
FileSize : 85 KB
Created on : 30-05-2004 21:08:48
Last accessed : 30-05-2004 21:08:52
Last modified : 30-05-2004 21:08:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : preinstt.exe
kategori : Data Miner
Kommentar :
Objekt : C:\WINDOWS\LastGood\
FileSize : 32 KB
Created on : 30-05-2004 21:33:55
Last accessed : 30-05-2004 21:33:55
Last modified : 11-02-2004 15:30:50
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.dll
kategori : Data Miner
Kommentar :
Objekt : C:\WINDOWS\LastGood\
FileSize : 136 KB
FileVersion : 0, 1, 4, 19
ProductVersion : 0, 1, 4, 19
Copyright : Copyright
CompanyName : Twain Tech
FileDescription : www.twain-tech.com
InternalName : Twaintec
OriginalFilename : Twaintec.dll
ProductName : Twaintec
Created on : 30-05-2004 21:33:55
Last accessed : 30-05-2004 21:33:55
Last modified : 11-02-2004 15:30:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : preinstt.exe
kategori : Data Miner
Kommentar :
Objekt : C:\WINDOWS\
FileSize : 32 KB
Created on : 30-05-2004 21:33:52
Last accessed : 30-05-2004 21:33:56
Last modified : 11-02-2004 15:30:50
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.dll
kategori : Data Miner
Kommentar :
Objekt : C:\WINDOWS\
FileSize : 136 KB
FileVersion : 0, 1, 4, 19
ProductVersion : 0, 1, 4, 19
Copyright : Copyright
CompanyName : Twain Tech
FileDescription : www.twain-tech.com
InternalName : Twaintec
OriginalFilename : Twaintec.dll
ProductName : Twaintec
Created on : 30-05-2004 21:33:52
Last accessed : 30-05-2004 21:33:55
Last modified : 11-02-2004 15:30:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.ini
kategori : Data Miner
Kommentar :
Objekt : C:\WINDOWS\
FileSize : 224 KB
Created on : 30-05-2004 21:08:52
Last accessed : 30-05-2004 21:08:53
Last modified : 12-12-2003 06:45:14
Drev skan resultat for C:\
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Nye Objekter: 0
Objekter fundet indtil videre: 20
Performing conditional scans..
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : dummy.htm
kategori : Data Miner
Kommentar :
Objekt : c:\docume~1\esben\lokale~1\temp\
Created on : 30-05-2004 21:06:31
Last accessed : 30-05-2004 21:06:31
Last modified : 30-05-2004 21:06:31
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twaintec.ini
kategori : Data Miner
Kommentar :
Objekt : c:\docume~1\esben\lokale~1\temp\
FileSize : 224 KB
Created on : 30-05-2004 21:08:52
Last accessed : 30-05-2004 21:08:52
Last modified : 12-12-2003 06:45:14
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twtini.cab
kategori : Data Miner
Kommentar :
Objekt : c:\docume~1\esben\lokale~1\temp\
FileSize : 85 KB
Created on : 30-05-2004 21:08:48
Last accessed : 30-05-2004 21:08:52
Last modified : 30-05-2004 21:08:52
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twtini.inf
kategori : Data Miner
Kommentar :
Objekt : c:\docume~1\esben\lokale~1\temp\
Created on : 30-05-2004 21:08:52
Last accessed : 30-05-2004 21:08:52
Last modified : 12-12-2003 06:51:04
VX2.BetterInternet Objekt genkendt!
Type : Fil
Data : twtini.inf
kategori : Data Miner
Kommentar :
Objekt : c:\windows\inf\
Created on : 30-05-2004 21:08:52
Last accessed : 30-05-2004 21:08:53
Last modified : 12-12-2003 06:51:04
Conditional scan result:
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Nye Objekter: 5
Objekter fundet indtil videre: 25
23:48:23 Skan færdig
Opsummering af skanning
¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
Total skanning tid:00:05:05:379
Objekter skannet:98371
Objekter genkendt:25
Objekter ignoreret:0
Nye Objekter:25