Avatar billede snailey Nybegynder
07. december 2005 - 11:55 Der er 4 kommentarer og
1 løsning

Hjælp til Highjack

Kære Eksperter

Kan nogen hurtugt hjælpe med dette:
Har problemer med SpyAxe, SmitFraud-C.

Her kommer først min Spybot log og derefter min Highjack log.
-------------------------------------
Spybot: (Spybot kan ikke fjerne Smitfraud)

--- Search result list ---
PSGuard: Application ID (Registry key, fixed)
  HKEY_CLASSES_ROOT\AppID\{70F17C8C-1744-41B6-9D07-575DB448DCC5}

Smitfraud-C.: User settings (Registry change, fixing failed)
  HKEY_USERS\S-1-5-21-247741083-157286094-1433968801-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-spy-cam.net\*!=W=4

SpyAxe: Application ID (Registry key, fixed)
  HKEY_CLASSES_ROOT\AppID\SpyAxe.EXE

SpyAxe: Type library (Registry key, fixed)
  HKEY_CLASSES_ROOT\TypeLib\{2BB3BCBF-411A-4C67-8E69-F4BB301DC333}

SpyAxe: Settings (Registry key, fixed)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\spyaxe.exe

SpyAxe: Uninstall settings (Registry key, fixed)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyAxe

SpyAxe: Settings (Registry key, fixed)
  HKEY_LOCAL_MACHINE\SOFTWARE\SpyAxe

SpyAxe:  Link (File, fixed)
  C:\Documents and Settings\Anders\Menuen Start\Programmer\SpyAxe\SpyAxe 3.0 Website.lnk

SpyAxe: Program directory (Directory, fixed)
  C:\Programmer\SpyAxe\

SpyAxe: Program directory (Directory, fixed)
  C:\Programmer\SpyAxe\Quarantine\

SpyAxe:  Executable (File, fixed)
  C:\Programmer\SpyAxe\SpyAxe.exe

SpyAxe:  Library (File, fixed)
  C:\Programmer\SpyAxe\DbgHelp.Dll

SpyAxe:  Data (File, fixed)
  C:\Programmer\SpyAxe\signatures.ref

SpyAxe:  Data (File, fixed)
  C:\Programmer\SpyAxe\SpyAxe.url

SpyAxe:  Data (File, fixed)
  C:\Programmer\SpyAxe\Lang\English.ini

SpyAxe:  Link (File, fixed)
  C:\Documents and Settings\Anders\Application Data\Microsoft\Internet Explorer\Quick Launch\SpyAxe 3.0.lnk

SpyAxe:  Link (File, fixed)
  C:\Documents and Settings\Anders\Skrivebord\SpyAxe.lnk

SpyAxe: Program group (Directory, fixed)
  C:\Documents and Settings\Anders\Menuen Start\Programmer\SpyAxe\


--- Spybot - Search & Destroy version: 1.4  (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2005-12-05 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2005-05-31 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2005-12-02 Includes\Cookies.sbi (*)
2005-12-02 Includes\Dialer.sbi (*)
2005-12-02 Includes\Hijackers.sbi (*)
2005-12-02 Includes\Keyloggers.sbi (*)
2005-12-02 Includes\Malware.sbi (*)
2005-12-02 Includes\PUPS.sbi (*)
2005-12-02 Includes\Revision.sbi (*)
2005-12-02 Includes\Security.sbi (*)
2005-12-02 Includes\Spybots.sbi (*)
2005-02-17 Includes\Tracks.uti
2005-12-02 Includes\Trojans.sbi (*)



--- System information ---
Windows XP (Build: 2600) Service Pack 2
/ .NETFramework / 1.1: Microsoft .NET Framework 1.1 Hotfix (KB886903)
/ .NETFramework / 1.1: Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
/ DataAccess: Microsoft Data Access Components KB870669
/ DataAccess: Security update for Microsoft Data Access Components
/ DataAccess: Security Update for Microsoft Data Access Components
/ Step By Step Interactive Training / SP2: Security Update for Step By Step Interactive Training (KB898458)
/ Windows Media Player / SP0: Windows Media Player Hotfix [Yderligere oplysninger finder du i wm828026]
/ Windows Media Player: Windows Media Update 819639
/ Windows Media Player: Windows Media Update 828026
/ Windows XP / SP2: Windows XP Service Pack 2
/ Windows XP / SP3: Windows XP Hotfix - KB834707
/ Windows XP / SP3: Windows XP Hotfix - KB867282
/ Windows XP / SP3: Windows XP Hotfix - KB873333
/ Windows XP / SP3: Windows XP Hotfix - KB873339
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB883939)
/ Windows XP / SP3: Windows XP Hotfix - KB885250
/ Windows XP / SP3: Windows XP Hotfix - KB885835
/ Windows XP / SP3: Windows XP Hotfix - KB885836
/ Windows XP / SP3: Windows XP Hotfix - KB885884
/ Windows XP / SP3: Windows XP Hotfix - KB886185
/ Windows XP / SP3: Windows XP Hotfix - KB887472
/ Windows XP / SP3: Windows XP Hotfix - KB887742
/ Windows XP / SP3: Windows XP Hotfix - KB888113
/ Windows XP / SP3: Windows XP Hotfix - KB888302
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB890046)
/ Windows XP / SP3: Windows XP Hotfix - KB890047
/ Windows XP / SP3: Windows XP Hotfix - KB890175
/ Windows XP / SP3: Windows XP Hotfix - KB890859
/ Windows XP / SP3: Windows XP Hotfix - KB890923
/ Windows XP / SP3: Windows XP Hotfix - KB891781
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB893066)
/ Windows XP / SP3: Windows XP Hotfix - KB893086
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB893756)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Opdatering til Windows XP (KB894391)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896358)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896422)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896423)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896424)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896428)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896688)
/ Windows XP / SP3: Opdatering til Windows XP (KB896727)
/ Windows XP / SP3: Opdatering til Windows XP (KB898461)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899587)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899588)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899591)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB900725)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB901017)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB901214)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB902400)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB903235)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB904706)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB905414)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB905749)


--- Startup entries list ---
Located: HK_LM:Run, CtrlVol
command: C:\Programmer\Launch Manager\CtrlVol.exe
  file: C:\Programmer\Launch Manager\CtrlVol.exe
  size: 20480
    MD5: 26ce54f9b3917a73a7419a39356cc912

Located: HK_LM:Run, EM_EXEC
command: C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
  file: C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
  size: 28672
    MD5: 891d03b25cddab0e3318b998d65f0a40

Located: HK_LM:Run, F-Secure Manager
command: "C:\Programmer\F-Secure Internet Security\Common\FSM32.EXE" /splash
  file: C:\Programmer\F-Secure Internet Security\Common\FSM32.EXE
  size: 122929
    MD5: 2424cae40448bd06606576926346af52

Located: HK_LM:Run, F-Secure Startup Wizard
command: "C:\Programmer\F-Secure Internet Security\FSGUI\FSSW.EXE" /reboot
  file: C:\Programmer\F-Secure Internet Security\FSGUI\FSSW.EXE
  size: 372736
    MD5: cea1b02dec3e6e96e2e6f3af7cd9c60f

Located: HK_LM:Run, F-Secure TNB
command: "C:\Programmer\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
  file: C:\Programmer\F-Secure Internet Security\TNB\TNBUtil.exe
  size: 700416
    MD5: 9153905d790dc0adc7b992d0c948d247

Located: HK_LM:Run, gcasServ
command: "C:\Programmer\Microsoft AntiSpyware\gcasServ.exe"
  file: C:\Programmer\Microsoft AntiSpyware\gcasServ.exe
  size: 473928
    MD5: e8177b5150cab1509d2e9807c3f6366c

Located: HK_LM:Run, HotkeyApp
command: C:\Programmer\Launch Manager\HotkeyApp.exe
  file: C:\Programmer\Launch Manager\HotkeyApp.exe
  size: 40960
    MD5: 27815bc21c1c7f076a0bd5838d95c852

Located: HK_LM:Run, LaunchAp
command: C:\Programmer\Launch Manager\LaunchAp.exe
  file: C:\Programmer\Launch Manager\LaunchAp.exe
  size: 32768
    MD5: 960273cfd060262964341b8b656672bd

Located: HK_LM:Run, Microsoft Works Update Detection
command: C:\Programmer\Fælles filer\Microsoft Shared\Works Shared\WkUFind.exe
  file: C:\Programmer\Fælles filer\Microsoft Shared\Works Shared\WkUFind.exe
  size: 28672
    MD5: 86577b9a2bef98e8121cd9262ea15eb6

Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
  file: C:\WINDOWS\system32\RUNDLL32.EXE
  size: 33280
    MD5: 5763e6224286473b771b234476c6538c

Located: HK_LM:Run, nwiz
command: nwiz.exe /install
  file: C:\WINDOWS\system32\nwiz.exe
  size: 323584
    MD5: 3ffa3606289514d5512e679a8dcff792

Located: HK_LM:Run, OSD
command: C:\Programmer\Launch Manager\OSD.exe
  file: C:\Programmer\Launch Manager\OSD.exe
  size: 204800
    MD5: f2c4173f6d4cb9818b8bffb3249c4d16

Located: HK_LM:Run, PinnacleDriverCheck
command: C:\WINDOWS\System32\PSDrvCheck.exe
  file: C:\WINDOWS\System32\PSDrvCheck.exe
  size: 393728
    MD5: 6fbc8db25f9875340cc97c91acd0ce50

Located: HK_LM:Run, PRISMSTA.EXE
command: PRISMSTA.EXE START
  file: C:\WINDOWS\system32\PRISMSTA.EXE
  size: 215552
    MD5: f7b5ad285e9a0e409a6e887e338b145e

Located: HK_LM:Run, QuickTime Task
command: "C:\Programmer\QuickTime\qttask.exe" -atboottime
  file: C:\Programmer\QuickTime\qttask.exe
  size: 77824
    MD5: 5d22b4258489575412f6d18affc847a2

Located: HK_LM:Run, SetecCertUtil
command: C:\Programmer\Setec\Web and Email Security\Certutil.exe
  file: C:\Programmer\Setec\Web and Email Security\Certutil.exe
  size: 114688
    MD5: 09200fe97686bafdbd787000ac367d3e

Located: HK_LM:Run, SoundMan
command: SOUNDMAN.EXE
  file: C:\WINDOWS\SOUNDMAN.EXE
  size: 54784
    MD5: ce5fcb3aa0299b051eba0cce41a41827

Located: HK_LM:Run, SunJavaUpdateSched
command: C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
  file: C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
  size: 36975
    MD5: 61a3a9d5d98bf0331df5b716144a8100

Located: HK_LM:Run, SynTPEnh
command: C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
  file: C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
  size: 610304
    MD5: 1d7dc9f36f7792418d95ed26e675f8a7

Located: HK_LM:Run, SynTPLpr
command: C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
  file: C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
  size: 110592
    MD5: f48b29bfe4a3cc166a9f465f83711bea

Located: HK_LM:Run, VOBRegCheck
command: C:\WINDOWS\System32\VOBREGCheck.exe -CheckReg
  file: C:\WINDOWS\System32\VOBREGCheck.exe
  size: 153088
    MD5: 6a38c3bf1da4914c78169a76665b12b9

Located: HK_LM:Run, Wbutton
command: "C:\Programmer\Launch Manager\Wbutton.exe"
  file: C:\Programmer\Launch Manager\Wbutton.exe
  size: 61440
    MD5: e2cea0a516f696bb0a1d7e0874e87b87

Located: HK_LM:Run, WinampAgent
command: C:\Programmer\Winamp\winampa.exe
  file: C:\Programmer\Winamp\winampa.exe
  size: 33792
    MD5: 11aa6662a1be30375afd1a8407811e7e

Located: HK_LM:RunOnce, SpybotSnD
command: "C:\Programmer\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
  file: C:\Programmer\Spybot - Search & Destroy\SpybotSD.exe
  size: 4393096
    MD5: 09ca174a605b480318731e691dc98539

Located: HK_CU:Run, ctfmon.exe
command: C:\WINDOWS\system32\ctfmon.exe
  file: C:\WINDOWS\system32\ctfmon.exe
  size: 15360
    MD5: 8289923e26d00213080e3e3d7e219f4c

Located: HK_CU:Run, H/PC Connection Agent
command: "C:\Programmer\Microsoft ActiveSync\WCESCOMM.EXE"
  file: C:\Programmer\Microsoft ActiveSync\WCESCOMM.EXE
  size: 376912
    MD5: f1661c89618ecd0fa4f1c9f6f2946134

Located: HK_CU:Run, LDM
command: C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
  file: C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
  size: 36864
    MD5: c76c901f3d304c4d773e1bfdcb517798

Located: HK_CU:Run, seticlient
command: C:\Programmer\SETI@home\SETI@home.exe -min
  file: C:\Programmer\SETI@home\SETI@home.exe
  size: 413696
    MD5: b06789075510d404d282d1c486ab5ed4

Located: Startup (common), Adobe Reader Hurtigstart.lnk
command: C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
  file: C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
  size: 29696
    MD5: 43362b96870ce8649f4f2ec893da93f0

Located: Startup (common), F-Secure 2006.lnk
command: C:\Programmer\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
  file: C:\Programmer\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
  size: 36903
    MD5: 8fb0cfe655522aff1811b5ee251d79a8

Located: Startup (common), Logitech Desktop Messenger.lnk
command: C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
  file: C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
  size: 196608
    MD5: 6f2e5108667bf1149d884e3cbeb9cdd1

Located: Startup (common), Microsoft Office.lnk
command: C:\Programmer\Microsoft Office\Office10\OSA.EXE
  file: C:\Programmer\Microsoft Office\Office10\OSA.EXE
  size: 83360
    MD5: 5bc65464354a9fd3beaa28e18839734a

Located: Startup (common), RtlWake.lnk
command: C:\Programmer\Realtek\Rtl8180\RtlWake.exe
  file: C:\Programmer\Realtek\Rtl8180\RtlWake.exe
  size: 720896
    MD5: f1bf9b2f8e3faccadda429d3202dfaf7

Located: System.ini, crypt32chain
command: crypt32.dll
  file: crypt32.dll

Located: System.ini, cryptnet
command: cryptnet.dll
  file: cryptnet.dll

Located: System.ini, cscdll
command: cscdll.dll
  file: cscdll.dll

Located: System.ini, ScCertProp
command: wlnotify.dll
  file: wlnotify.dll

Located: System.ini, Schedule
command: wlnotify.dll
  file: wlnotify.dll

Located: System.ini, sclgntfy
command: sclgntfy.dll
  file: sclgntfy.dll

Located: System.ini, SensLogn
command: WlNotify.dll
  file: WlNotify.dll

Located: System.ini, termsrv
command: wlnotify.dll
  file: wlnotify.dll

Located: System.ini, wlballoon
command: wlnotify.dll
  file: wlnotify.dll



--- Browser helper object list ---
{724510c3-f3c8-4fb7-879a-d99f29008a2f} (HomepageBHO)
          BHO name:
        CLSID name: HomepageBHO
              Path: C:\WINDOWS\system32\
        Long name:        hpAE51.tmp
        Short name:                 
    Date (created): 07-12-2005 09:29:16
Date (last access): 07-12-2005 11:32:26
Date (last write): 07-12-2005 09:29:16
          Filesize:              20480
        Attributes:          archive
              MD5: 54BA522754306FC5AF3C2C06C24AFEC7
            CRC32:          58CEC022



--- ActiveX list ---
{3D2CB570-D425-11D5-ABD0-00008369C46F} (CSMenu Class)
          DPF name:
        CLSID name: CSMenu Class
        Installer: C:\WINDOWS\Downloaded Program Files\Menu.inf
          Codebase: https://netbank.bgbank.dk/html/activex/BG/Menu.cab
      description:
    classification: Open for discussion
    known filename: menu.dll
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\DOWNLO~1\
        Long name:          menu.dll
        Short name:                 
    Date (created): 22-05-2002 16:41:40
Date (last access): 07-12-2005 11:01:58
Date (last write): 22-05-2002 16:41:40
          Filesize:              98304
        Attributes:          archive
              MD5: 74D080AB753E89A715AB27E62EE10F27
            CRC32:          D6EE6D26
          Version:            1.0.1.9

{402EE96E-2CE8-482D-ADA5-CECEEA07E16D} (TurnTool Scene)
          DPF name:
        CLSID name: TurnTool Scene
        Installer:
          Codebase: http://www.turntool.com/ViewerInstall.exe
              Path: C:\Programmer\TurnTool\Viewer\
        Long name:      TNTCtrl1.dll
        Short name:                 
    Date (created): 20-07-2005 12:53:22
Date (last access): 07-12-2005 09:47:44
Date (last write): 20-07-2005 12:53:22
          Filesize:            237569
        Attributes:          archive
              MD5: 7EA208628DED52900D61A75EDA8E843F
            CRC32:          24F15A5F
          Version:          2.12.0.8

{9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist))
          DPF name:
        CLSID name: Microsoft RDP Client Control (redist)
        Installer: C:\WINDOWS\Downloaded Program Files\msrdp.inf
          Codebase: http://81.19.233.106/msrdp.cab
      description:
    classification: Open for discussion
    known filename: msrdp.ocx
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:          msrdp.ocx
        Short name:                 
    Date (created): 24-03-2003 23:03:32
Date (last access): 07-12-2005 09:47:48
Date (last write): 24-03-2003 23:03:32
          Filesize:            683008
        Attributes:          archive
              MD5: FCBE8CFB80B08BB731DC816F3261E4C7
            CRC32:          504BF2EF
          Version:        5.2.3790.0

{9A54032D-31F7-400D-B184-83B33BDE65FA} (MSN File Upload Control)
          DPF name:
        CLSID name: MSN File Upload Control
        Installer: C:\WINDOWS\Downloaded Program Files\MsnUpld.inf
          Codebase: http://sc.groups.msn.com/controls/FileUC/MsnUpld.cab
      description:
    classification: Open for discussion
    known filename: MsnUpld.dll
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\DOWNLO~1\
        Long name:        MsnUpld.dll
        Short name:                 
    Date (created): 19-05-2003 14:30:40
Date (last access): 07-12-2005 11:01:58
Date (last write): 19-05-2003 14:30:40
          Filesize:            205880
        Attributes:          archive
              MD5: 0F6F48E86D0F5FE47E4C7D364B7C579B
            CRC32:          72C6AB39
          Version:      9.0.305.1501

{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class)
          DPF name:
        CLSID name: ActiveScan Installer Class
        Installer: C:\WINDOWS\Downloaded Program Files\asinst.inf
          Codebase: http://acs.pandasoftware.com/activescan/as5free/asinst.cab
      description:
    classification: Open for discussion
    known filename: ASINST.DLL
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:        asinst.dll
        Short name:                 
    Date (created): 26-01-2005 16:03:44
Date (last access): 07-12-2005 11:01:58
Date (last write): 11-11-2005 08:28:22
          Filesize:            135168
        Attributes:          archive
              MD5: 5793AB11CE5B5029ED2B9EB4CF67641C
            CRC32:          1E2240F6
          Version:          58.3.0.0

{C07E5288-22FB-11D7-962E-0004AC77C761} (Dataloen.ctlVirtuelDesktop)
          DPF name:
        CLSID name: Dataloen.ctlVirtuelDesktop
        Installer: C:\WINDOWS\Downloaded Program Files\dataloen.INF
          Codebase: http://activex.dataloen.dk/controls/Dataloen3319.CAB
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:      dataloen.ocx
        Short name:                 
    Date (created): 02-03-2005 13:13:30
Date (last access): 07-12-2005 09:47:36
Date (last write): 07-10-2005 12:48:22
          Filesize:            3440640
        Attributes:          archive
              MD5: 2F8C29FDC5A804D1CDEAEB95701D729D
            CRC32:          92E59AB1
          Version:          3.3.0.19

{C81B5180-AFD1-41A3-97E1-99E8D254DB98} (CSS Web Installer Class)
          DPF name:
        CLSID name: CSS Web Installer Class
        Installer: C:\WINDOWS\Downloaded Program Files\cssweb.inf
          Codebase: http://scanner.virus112.com/cabs/cssweb.cab
      description: CSS Web Installer Class
    classification: Open for discussion
    known filename: CSSWEB.DLL
        info link:
      info source: Patrick M. Kolla
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:        cssweb.dll
        Short name:                 
    Date (created): 27-03-2002 12:02:28
Date (last access): 07-12-2005 11:01:58
Date (last write): 27-03-2002 12:02:28
          Filesize:            168014
        Attributes:          archive
              MD5: 9705A693612CA913E80A66A03C7B4850
            CRC32:          C92AC2ED
          Version:        1.4.0.20327

{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
          DPF name: Java Runtime Environment 1.5.0
        CLSID name: Java Plug-in 1.5.0_05
        Installer:
          Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab
              Path: C:\Programmer\Java\jre1.5.0_05\bin\
        Long name:    NPJPI150_05.dll
        Short name:      NPJPI1~1.DLL
    Date (created): 26-08-2005 17:14:48
Date (last access): 07-12-2005 10:12:02
Date (last write): 26-08-2005 17:33:54
          Filesize:              69746
        Attributes:          archive
              MD5: 52A85771BE18C9C00732F475A2C192AE
            CRC32:          525AE3AD
          Version:          5.0.50.5

{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
          DPF name: Java Runtime Environment 1.5.0
        CLSID name: Java Plug-in 1.5.0_06
        Installer:
          Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
              Path: C:\Programmer\Java\jre1.5.0_06\bin\
        Long name:    NPJPI150_06.dll
        Short name:      NPJPI1~1.DLL
    Date (created): 10-11-2005 13:03:56
Date (last access): 07-12-2005 09:47:54
Date (last write): 10-11-2005 13:22:10
          Filesize:              69746
        Attributes:          archive
              MD5: D2CF6BB5E9020E6707B62575F8083954
            CRC32:          7F39DC54
          Version:          5.0.60.5

{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
          DPF name: Java Runtime Environment 1.5.0
        CLSID name: Java Plug-in 1.5.0_06
        Installer:
          Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
              Path: C:\Programmer\Java\jre1.5.0_06\bin\
        Long name:    NPJPI150_06.dll
        Short name:      NPJPI1~1.DLL
    Date (created): 10-11-2005 13:03:56
Date (last access): 07-12-2005 11:40:06
Date (last write): 10-11-2005 13:22:10
          Filesize:              69746
        Attributes:          archive
              MD5: D2CF6BB5E9020E6707B62575F8083954
            CRC32:          7F39DC54
          Version:          5.0.60.5

{D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey®)
          DPF name:
        CLSID name: e-Safekey®
        Installer: C:\WINDOWS\Downloaded Program Files\e-Safekey.inf
          Codebase: https://netbank.bgbank.dk/html/activex/e-Safekey/BG/e-Safekey.cab
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:      e-Safekey.dll
        Short name:      E-SAFE~1.DLL
    Date (created): 27-11-2003 11:21:56
Date (last access): 07-12-2005 11:01:58
Date (last write): 27-11-2003 11:21:56
          Filesize:            643072
        Attributes:          archive
              MD5: 4CD579C6FCC5A2BFD41BEB7D8F5D4F02
            CRC32:          2C713D79
          Version:          4.0.1.10

{DC765522-D5BE-49C9-AF5F-8C715A44BA28} (MS Investor Ticker)
          DPF name:
        CLSID name: MS Investor Ticker
        Installer: C:\WINDOWS\Downloaded Program Files\ticker.inf
          Codebase: http://fdl.msn.com/public/investor/v9.5/ticker.cab
      description:
    classification: Open for discussion
    known filename: ticker9.ocx
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\DOWNLO~1\
        Long name:        ticker9.ocx
        Short name:                 
    Date (created): 08-01-2001 15:03:32
Date (last access): 07-12-2005 09:47:38
Date (last write): 08-01-2001 15:03:32
          Filesize:            368912
        Attributes:          archive
              MD5: 0A13B0E024CD39F6B765F1645A82F32A
            CRC32:          717C2639
          Version:      9.2001.108.1

{E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload)
          DPF name:
        CLSID name: Persits Software XUpload
        Installer:
          Codebase: http://system.siteservercms.com/Common/Components/XUpload.ocx
      description:
    classification: Open for discussion
    known filename: XUpload.ocx
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:        XUpload.ocx
        Short name:                 
    Date (created): 24-08-2005 13:46:30
Date (last access): 07-12-2005 09:47:36
Date (last write): 24-08-2005 13:46:30
          Filesize:            229984
        Attributes:          archive
              MD5: ED5FAE2E9C8254A6F5173BBAD3900098
            CRC32:          CCC49C6A
          Version:            2.1.0.1

{F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5)
          DPF name:
        CLSID name: MSN Chat Control 4.5
        Installer: C:\WINDOWS\Downloaded Program Files\MsnChat45.inf
          Codebase: http://chat.msn.com/bin/msnchat45.cab
      description:
    classification: Open for discussion
    known filename: MSNChat45.ocx
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\Downloaded Program Files\
        Long name:      MSNChat45.ocx
        Short name:      MSNCHA~1.OCX
    Date (created): 27-10-2003 10:35:44
Date (last access): 07-12-2005 09:47:56
Date (last write): 27-10-2003 10:35:44
          Filesize:            510552
        Attributes:          archive
              MD5: 60FED272BDBAFA8214E40AD376C9987E
            CRC32:          5EE901FC
          Version:      9.2.310.2401

{F6A56D95-A3A3-11D2-AC26-400000058481} (Danske e-Sec)
          DPF name:
        CLSID name: Danske e-Sec
        Installer: C:\WINDOWS\Downloaded Program Files\DanskeSikker.inf
          Codebase: https://netbank.bgbank.dk/html/activex/danskesikker/BG/DanskeSikker.cab
      description:
    classification: Open for discussion
    known filename: DANSKE~1.OCX
        info link:
      info source: Safer Networking Ltd.
              Path: C:\WINDOWS\DOWNLO~1\
        Long name:  DanskeSikker.ocx
        Short name:      DANSKE~1.OCX
    Date (created): 04-03-2003 16:24:02
Date (last access): 07-12-2005 09:47:56
Date (last write): 04-03-2003 16:24:02
          Filesize:            507974
        Attributes:          archive
              MD5: BF6099624D5E06049447355A81F730ED
            CRC32:          50C974B4
          Version:          3.1.0.46



--- Process list ---
PID:    0 (  0) [System]
PID:  436 (  4) \SystemRoot\System32\smss.exe
PID:  484 ( 436) \??\C:\WINDOWS\system32\csrss.exe
PID:  512 ( 436) \??\C:\WINDOWS\system32\winlogon.exe
PID:  556 ( 512) C:\WINDOWS\system32\services.exe
size: 108032
  MD5: 55BBE54A196B1A9F99EC2E01F4AC1215
PID:  568 ( 512) C:\WINDOWS\system32\lsass.exe
size: 13312
  MD5: 9086126FB5FD15CEB387121506400244
PID:  708 ( 556) C:\WINDOWS\system32\svchost.exe
size: 14336
  MD5: 46FE2ED518FDFBFD289F014A3078575C
PID:  768 ( 556) C:\WINDOWS\system32\svchost.exe
size: 14336
  MD5: 46FE2ED518FDFBFD289F014A3078575C
PID:  804 ( 556) C:\WINDOWS\System32\svchost.exe
size: 14336
  MD5: 46FE2ED518FDFBFD289F014A3078575C
PID:  860 ( 556) C:\WINDOWS\System32\svchost.exe
size: 14336
  MD5: 46FE2ED518FDFBFD289F014A3078575C
PID: 1012 ( 556) C:\WINDOWS\System32\svchost.exe
size: 14336
  MD5: 46FE2ED518FDFBFD289F014A3078575C
PID: 1240 ( 556) C:\WINDOWS\System32\brsvc01a.exe
size: 57344
  MD5: 34F2F5B6A6D28B8FB872DFD57C5323AC
PID: 1252 ( 556) C:\WINDOWS\system32\spoolsv.exe
size: 57856
  MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
PID: 1264 (1240) C:\WINDOWS\System32\brss01a.exe
size: 45056
  MD5: 9E646CD378D4D0C996BAF9BCB18237C7
PID: 1312 ( 556) C:\WINDOWS\System32\SCardSvr.exe
size: 97280
  MD5: 82EB71BFEB77A6CED535B419E1F8344F
PID: 1608 (1560) C:\WINDOWS\Explorer.EXE
size: 1033216
  MD5: DA77B9561CC9AC54584C86CAB36EBF25
PID: 1660 (1608) C:\Programmer\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
  MD5: 09CA174A605B480318731E691DC98539
PID: 1780 ( 556) C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE
size: 36903
  MD5: 8FB0CFE655522AFF1811B5EE251D79A8
PID: 1808 ( 556) C:\Programmer\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
size: 36947
  MD5: 237A88D8AF60024CB91CB5D7903B3CC9
PID: 1824 ( 556) C:\Programmer\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe
size: 274485
  MD5: 347E45C35DC2DB887F2AE5FC528FAF6E
PID: 1836 (1808) C:\Programmer\F-Secure Internet Security\Anti-Virus\FSGK32.EXE
size: 289280
  MD5: D808D801CF62EA9AE6AF1936127868D2
PID: 1852 ( 556) C:\Programmer\F-Secure Internet Security\Common\FSMA32.EXE
size: 61490
  MD5: B757DD21A612A82BD193775E37CD380C
PID: 1904 (1836) C:\Programmer\F-Secure Internet Security\Anti-Virus\fssm32.exe
size: 241664
  MD5: C21CD4B3CC5770EE8A89D3BDEE9F6385
PID: 1936 ( 556) C:\Programmer\CA\SharedComponents\CA_LIC\LogWatNT.exe
size: 53248
  MD5: 850A7A21661B97583914A430E9C2DAEA
PID:  200 (1852) C:\Programmer\F-Secure Internet Security\Common\FSMB32.EXE
size: 180274
  MD5: 8D3F20AB488CAE3ED987B1196AC2F36D
PID:  224 ( 556) C:\Programmer\Fælles filer\Microsoft Shared\VS7Debug\mdm.exe
size: 270336
  MD5: 1C69BF8F67AA47978867E2B4D096F24E
PID:  268 ( 556) C:\WINDOWS\System32\nvsvc32.exe
size: 77824
  MD5: 5F6806E225F05E2D3CBA81D1947122B8
PID:  412 (1780) C:\Programmer\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
size: 36903
  MD5: 8FB0CFE655522AFF1811B5EE251D79A8
PID:  948 (1852) C:\Programmer\F-Secure Internet Security\Common\FCH32.EXE
size: 65585
  MD5: CD12B1E63F9EB5075302973094AF573D
PID: 1128 ( 556) C:\WINDOWS\system32\wdfmgr.exe
size: 38912
  MD5: C81B8635DEE0D3EF5F64B3DD643023A5
PID: 1428 ( 556) C:\WINDOWS\system32\fxssvc.exe
size: 268288
  MD5: 057F2806F084AAF135448C653E76B615
PID: 1500 (1852) C:\Programmer\F-Secure Internet Security\Common\FAMEH32.EXE
size: 270387
  MD5: EFF5C2751B5C8BEF9AF1263494F04DC8
PID: 1508 (1852) C:\Programmer\F-Secure Internet Security\Anti-Virus\fsqh.exe
size: 32826
  MD5: 69118DA5CACB250D06389287DDC1BF45
PID: 1676 (1852) C:\Programmer\F-Secure Internet Security\Anti-Virus\fsrw.exe
size: 159792
  MD5: EDB7030FAC4F95D85B4D021CC631E964
PID: 2316 (1852) C:\Programmer\F-Secure Internet Security\Anti-Virus\fsav32.exe
size: 179712
  MD5: 4C42D37110E2888BD5A2997B5EA4B5B7
PID: 2468 ( 556) C:\Programmer\F-Secure Internet Security\FWES\Program\fsdfwd.exe
size: 204863
  MD5: EAF6DA252C1EC6893AF7E4896C641B9E
PID: 2500 ( 556) C:\WINDOWS\System32\alg.exe
size: 44544
  MD5: 4B4A23C50148601CA60D969D4AC0C116
PID: 2756 ( 708) C:\WINDOWS\System32\wbem\wmiprvse.exe
size: 218112
  MD5: 75F335A81603E580923832E094E35642
PID:    4 (  0) System


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 07-12-2005 11:40:06

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
  C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
  http://home.microsoft.com/search/lobby/search.asp
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
  http://www.google.dk/
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
  http://home.microsoft.com/access/autosearch.asp?p=%s
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
  %SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
  http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
  http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
  http://www.google.com/ie
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
  http://ie.search.msn.com/da/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---


--- Uninstall list ---
  (AddressBook)

  (Automap 9.0)

  (AvantGo Client)

F-Secure Anti-Virus 2006  (BackWeb-4476822 Uninstaller)
  uninstall cmd: C:\PROGRA~1\F-SECU~1\Common\fsbwih.exe /uninstall

CleanMyPC Popup Blocker  (CleanMyPC Popup Blocker)
  uninstall cmd: "C:\Programmer\CleanMyPC Popup Blocker\uninst.exe"

  (Connection Manager)

Command On Demand for Command Software  (CSSCOD)
  uninstall cmd: rundll32 advpack.dll,LaunchINFSection C:\csscod\uninst.inf,DefaultUninstall

DataLøn startpakke  (DataLøn startpakke)
  uninstall cmd: C:\WINDOWS\IsUn0406.exe -fC:\PBS\DAINET\Uninst.isu

  (DirectAnimation)

  (DirectDrawEx)

DivX Codec  (DivX Codec)
  uninstall cmd: C:\WINDOWS\unvise32.exe C:\Programmer\DivX\DivX Bundle.log

  (DXM_Runtime)

  (F-Secure Anti-Spyware)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware"

  (F-Secure Anti-Spyware Scanner)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware Scanner"

  (F-Secure Anti-Virus)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"

  (F-Secure Anti-Virus Client Security Installer)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"

  (F-Secure DAAS)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure DAAS"

  (F-Secure Diagnostics)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Diagnostics"

  (F-Secure E-mail Scanning)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure E-mail Scanning"

  (F-Secure FWES)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure FWES"

  (F-Secure GUI)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure GUI"

  (F-Secure Help)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Help"

  (F-Secure Management Agent)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"

  (F-Secure TNB)
  uninstall cmd: "C:\Programmer\F-Secure Internet Security\fsuninst.exe" /UninstRegKey:"F-Secure TNB"

  (Fontcore)

Heroes of Might and Magic® III  (Heroes of Might and Magic® III)
  uninstall cmd: C:\WINDOWS\IsUninst.exe -fC:\Programmer\3DO\Heroes3\Uninst.isu -c"C:\Programmer\3DO\Heroes3\uninst.dll

HijackThis 1.99.1 1.99.1 (HijackThis)
  uninstall cmd: C:\Documents and Settings\Anders\Lokale indstillinger\Temporary Internet Files\Content.IE5\WXS3GVGJ\HijackThis.exe /uninstall
      publisher: Soeperman Enterprises Ltd.

  (ICW)

  (IE40)

  (IE4Data)

  (IE5BAKEX)

  (IEData)

  (InstallShield Uninstall Information)

  (InstallShield_{30C10EE3-EFB3-4B7A-9CDC-50790C2B5200})

Texas Instruments PCI7620 drivers. 1.00.0000 (InstallShield_{F16F258A-6300-4A1C-BC49-7929EFF455E2})
        version: 16777216
version (major): 1
  estimated size: 516
    install date: 20030825
  install source: D:\Driver\CardReader\
  uninstall cmd: C:\PROGRA~1\FLLESF~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{F16F258A-6300-4A1C-BC49-7929EFF455E2}
      publisher: Texas Instruments Inc.
        comments: TI PCI7620 Software components
        contact: Customer Support Department
      help link: Please contact your vendor directly
  help telephone: ...

Intel(R) 537EA Modem  (Intel(R) 537EA Modem)
  uninstall cmd: rundll32 IntelCci.dll,iSMUninstallation "Intel(R) 537EA Modem"

InterActual Player  (InterActual Player)
  uninstall cmd: C:\Program Files\InterActual\InterActual Player\inuninst.exe

Windows XP Hotfix - KB834707  20040929.110854 (KB834707)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=834707

Windows XP Hotfix - KB867282  20050127.090417 (KB867282)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB867282$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=867282

Microsoft Data Access Components KB870669  (KB870669)
  uninstall cmd: C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=KB870669

Windows XP Hotfix - KB873333  20050114.005213 (KB873333)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=873333

Windows XP Hotfix - KB873339  20041117.092459 (KB873339)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=873339

Sikkerhedsopdatering til Windows XP (KB883939) 1 (KB883939)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=883939

  (KB884016)

Windows XP Hotfix - KB885250  20050118.202711 (KB885250)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=885250

Windows XP Hotfix - KB885835  20041027.181713 (KB885835)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=885835

Windows XP Hotfix - KB885836  20041028.173203 (KB885836)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=885836

Windows XP Hotfix - KB885884  20040924.025457 (KB885884)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB885884$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=885884

Windows XP Hotfix - KB886185  20041021.090540 (KB886185)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=886185

Windows XP Hotfix - KB887472  20041014.162858 (KB887472)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=887472

Windows XP Hotfix - KB887742  20041103.095002 (KB887742)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=887742

Windows XP Hotfix - KB888113  20041116.131036 (KB888113)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=888113

Windows XP Hotfix - KB888302  20041207.111426 (KB888302)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=888302

Sikkerhedsopdatering til Windows XP (KB890046) 1 (KB890046)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=890046

Windows XP Hotfix - KB890047  20041221.124506 (KB890047)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB890047$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=890047

Windows XP Hotfix - KB890175  20041201.233338 (KB890175)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB890175$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=890175

Windows XP Hotfix - KB890859  1 (KB890859)
    install date: 20050415
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=890859

Windows XP Hotfix - KB890923  1 (KB890923)
    install date: 20050415
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB890923$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=890923

Windows XP Hotfix - KB891781  20050110.165439 (KB891781)
  uninstall cmd: C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=891781

Windows XP Hotfix - KB893066  1 (KB893066)
    install date: 20050415
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=893066

Windows XP Hotfix - KB893086  1 (KB893086)
    install date: 20050415
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=893086

Sikkerhedsopdatering til Windows XP (KB893756) 1 (KB893756)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=893756

Windows Installer 3.1 (KB893803) 3.1 (KB893803)
  uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://go.microsoft.com/fwlink/?LinkId=42467

Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
  uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://go.microsoft.com/fwlink/?LinkId=42467

Opdatering til Windows XP (KB894391) 1 (KB894391)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=894391

Sikkerhedsopdatering til Windows XP (KB896358) 1 (KB896358)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896358

Sikkerhedsopdatering til Windows XP (KB896422) 1 (KB896422)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896422

Sikkerhedsopdatering til Windows XP (KB896423) 1 (KB896423)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896423

Sikkerhedsopdatering til Windows XP (KB896424) 1 (KB896424)
    install date: 20051110
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896424

Sikkerhedsopdatering til Windows XP (KB896428) 1 (KB896428)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896428

Sikkerhedsopdatering til Windows XP (KB896688) 1 (KB896688)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896688$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896688

Opdatering til Windows XP (KB896727) 1 (KB896727)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=896727

Security Update for Step By Step Interactive Training (KB898458) 20050502.101010 (KB898458)
    install date: 20050616
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com/kb/898458

Opdatering til Windows XP (KB898461) 1 (KB898461)
    install date: 20050629
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=898461

Sikkerhedsopdatering til Windows XP (KB899587) 1 (KB899587)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=899587

Sikkerhedsopdatering til Windows XP (KB899588) 1 (KB899588)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB899588$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=899588

Sikkerhedsopdatering til Windows XP (KB899591) 1 (KB899591)
    install date: 20050815
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=899591

Sikkerhedsopdatering til Windows XP (KB900725) 1 (KB900725)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=900725

Sikkerhedsopdatering til Windows XP (KB901017) 1 (KB901017)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=901017

Sikkerhedsopdatering til Windows XP (KB901214) 1 (KB901214)
    install date: 20050713
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=901214

Sikkerhedsopdatering til Windows XP (KB902400) 1 (KB902400)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=902400

Sikkerhedsopdatering til Windows XP (KB903235) 1 (KB903235)
    install date: 20050713
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB903235$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=903235

Sikkerhedsopdatering til Windows XP (KB904706) 1 (KB904706)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=904706

Sikkerhedsopdatering til Windows XP (KB905414) 1 (KB905414)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=905414

Sikkerhedsopdatering til Windows XP (KB905749) 1 (KB905749)
    install date: 20051017
  uninstall cmd: "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=905749

Microsoft .NET Framework 1.1 Hotfix (KB886903)  (M886903)
  uninstall cmd: "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M886903\M886903Uninstall.msp"

Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player)
  uninstall cmd: C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.log
      publisher: Macromedia, Inc.
      help link: http://www.macromedia.com/support/shockwave

Microsoft .NET Framework 1.1  (Microsoft .NET Framework 1.1  (1033))
  uninstall cmd: msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
          readme: file://C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\RepairRedist.htm

  (Microsoft Interactive Training)
  uninstall cmd: C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu

  (Microsoft NetShow Player 2.0)

  (Mobile Application Link)

  (MobileOptionPack)

mplayer.com  (mplayer.com)
  uninstall cmd: "C:\Programmer\Mplayer\System\UNWISE32.EXE" /a C:\PROGRA~1\Mplayer\System\install.log

  (MPlayer2)

  (MSI30-Beta1)

  (MSI30-Beta2)

  (MSI30-KB884016)

  (MSI30-RC1)

  (MSI30-RC2)

  (MSI30a-KB884016)

  (MSI31-Beta)

  (MSI31-RC1)

  (MsJavaVM)

MSN Toolbar  (MSN Toolbar)
  uninstall cmd: C:\Programmer\MSN Apps\MSN Toolbar\01.02.4000.1001\da\mtbs.exe c

Ahead Nero Burning ROM  (Nero - Burning Rom!UninstallKey)
  uninstall cmd: C:\Programmer\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL

  (NetMeeting)

NVIDIA Windows 2000/XP Display Drivers  (NVIDIA)
  uninstall cmd: rundll32.exe C:\WINDOWS\System32\nvinstnt.dll,NvUninstallNT4 nvwi.inf

  (OutlookExpress)

Panda ActiveScan  (Panda ActiveScan)
  uninstall cmd: C:\WINDOWS\system32\ASUninst.exe Panda ActiveScan
      publisher: Panda Software S.L.

  (PCHealth)
  uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

Pdf995  (Pdf995)
  uninstall cmd: c:\pdf995\setup.exe uninstall

QuickTime  (QuickTime)
  uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log

Microsoft RalliSport Challenge  (RalliSport Challenge 1.0)
  uninstall cmd: "C:\Programmer\Microsoft Games\RalliSport Challenge\UNINSTAL.EXE" /runtemp /addremove

  (RealJukebox 1.0)
  uninstall cmd: C:\Programmer\Fælles filer\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

RealPlayer  (RealPlayer 6.0)
  uninstall cmd: C:\Programmer\Fælles filer\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

  (SchedulingAgent)

SETI@home  (SETI@home)
  uninstall cmd: C:\WINDOWS\IsUninst.exe -fC:\Programmer\SETI@home\Uninst.isu

Shockwave  (Shockwave)
  uninstall cmd: C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log

Macromedia Flash Player 8 8 (ShockwaveFlash)
  uninstall cmd: RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\swflash.inf,DefaultUninstall,5
      publisher: Macromedia
      help link: http://www.macromedia.com/go/flashplayer_support/

Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Programmer\Spybot - Search & Destroy\
  uninstall cmd: "C:\Programmer\Spybot - Search & Destroy\unins000.exe"
      publisher: Safer Networking Limited

Starcraft  (Starcraft)
  uninstall cmd: C:\WINDOWS\scunin.exe C:\WINDOWS\scunin.dat

Synaptics Pointing Device Driver 7.5.5.0 (SynTPDeinstKey)
  uninstall cmd: rundll32.exe "C:\Programmer\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

Tom Clancy's Rainbow Six  (Tom Clancy's Rainbow Six)
  uninstall cmd: C:\WINDOWS\IsUninst.exe -f"C:\Programmer\Red Storm Entertainment\Tom Clancy's Rainbow Six\Uninst.isu"

Winamp (remove only)  (Winamp)
  uninstall cmd: "C:\Programmer\Winamp\UninstWA.exe"

Microsoft ActiveSync 3.7  (Windows CE Services)
  uninstall cmd: "C:\WINDOWS\ISUNINST.EXE" -f"C:\Programmer\Microsoft ActiveSync\DeIsL1.isu" -c"C:\Programmer\Microsoft ActiveSync\ceuninst.dll"

Windows Media Format Runtime  (Windows Media Format Runtime)
  uninstall cmd: "C:\Programmer\Windows Media Player\wmsetsdk.exe" /UninstallAll

Windows Media Player 10  (Windows Media Player)
  uninstall cmd: "C:\Programmer\Windows Media Player\Setup_wm.exe" /Uninstall

Windows XP Service Pack 2 20040826.172225 (Windows XP Service Pack)
  uninstall cmd: C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com?kbid=811113

Realtek Wireless Lan Utility v3.13  ({01558B00-3F19-4E26-8B56-11CA9F97E81C})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{01558B00-3F19-4E26-8B56-11CA9F97E81C}\Setup.exe"

Microsoft Encarta Encyclopedia Standard - WE 2003 2003 ({035A0014-3975-4267-9F39-1DC4745090B7})
version (major): 2003
version (minor): 2003
  estimated size: 456751
    install date: 20030827
  install source: F:\
  uninstall cmd: MsiExec.exe /I{035A0014-3975-4267-9F39-1DC4745090B7}
      publisher: Microsoft Corporation
      help link: http://support.microsoft.com

VideoLive Mail  ({1FABA7C7-6DC0-11D6-9EAB-0050BAE317E1})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{1FABA7C7-6DC0-11D6-9EAB-0050BAE317E1}\setup.exe"  -uninstall

CA Licensing 1.52 ({30C10EE3-EFB3-4B7A-9CDC-50790C2B5200})
        version: 20185088
version (major): 1
version (minor): 52
  estimated size: 1379
    install date: 20030827
  install source: D:\Tools\eTrust Antivirus\License\Lang\En\
      publisher: Computer Associates International, Inc.
        comments: 0
        contact: 0
      help link: http://esupport.ca.com
  help telephone: 0
          readme: 0

J2SE Runtime Environment 5.0 1.5.0 ({3248F0A8-6813-11D6-A77B-00B0D0150000})
        version: 17104896
version (major): 1
version (minor): 5
  estimated size: 73493
    install date: 20051019
  install source: http://java.sun.com/webapps/download/GetFile/1.5.0-b64/windows-i586-jre/
  uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150000}
      publisher: Sun Microsystems, Inc.
        contact: http://java.com
      help link: http://java.com
          readme: C:\Programmer\Java\jre1.5.0\README.txt

J2SE Runtime Environment 5.0 Update 5 1.5.0.50 ({3248F0A8-6813-11D6-A77B-00B0D0150050})
        version: 17104896
version (major): 1
version (minor): 5
  estimated size: 121553
    install date: 20051020
  install source: http://jdl.sun.com/webapps/download/GetFile/1.5.0_05-b05/windows-i586//
  uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150050}
      publisher: Sun Microsystems, Inc.
        contact: http://java.com
      help link: http://java.com
          readme: C:\Programmer\Java\jre1.5.0_05\README.txt

J2SE Runtime Environment 5.0 Update 6 1.5.0.60 ({3248F0A8-6813-11D6-A77B-00B0D0150060})
        version: 17104896
version (major): 1
version (minor): 5
  estimated size: 122273
    install date: 20051205
  install source: http://jdl.sun.com/webapps/download/GetFile/1.5.0_06-b05/windows-i586//
  uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
      publisher: Sun Microsystems, Inc.
        contact: http://java.com
      help link: http://java.com
          readme: C:\Programmer\Java\jre1.5.0_06\README.txt

WebFldrs XP 9.50.6513 ({350C9406-3D7C-4EE8-BAA9-00BCB3D54227})
        version: 154278257
version (major): 9
version (minor): 50
  estimated size: 2620
    install date: 20030825
  install source: C:\WINDOWS\System32\
      publisher: Microsoft Corporation
      help link: http://www.microsoft.com/windows

Microsoft Picture It! Photo 7.0 7.0.0.0000 ({369B36BE-3D64-4641-9AEA-808D436FE132})
        version: 117440512
version (major): 7
  estimated size: 253904
    install date: 20030827
install location: C:\Programmer\Microsoft Picture It! 7\
  install source: F:\pip\
  uninstall cmd: MsiExec.exe /I{369B36BE-3D64-4641-9AEA-808D436FE132}
      publisher: Microsoft Corporation
        comments: Microsoft Picture It! Photo 7.0
      help link: http://go.microsoft.com/fwlink/?prd=10964&pver=7.0&plcid=0x809&ar=AddRemove&sar=PictureIt
  help telephone: 

Microsoft Windows Journal Viewer 1.5.2315.3 ({43DCF766-6838-4F9A-8C91-D92DA586DFA7})
        version: 17107211
version (major): 1
version (minor): 5
  estimated size: 3702
    install date: 20030827
  install source: C:\DOCUME~1\Ejer\LOKALE~1\Temp\IXP000.TMP\
  uninstall cmd: MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA7}
      publisher: Microsoft
        comments: A viewer for Windows Journal documents.
        contact: Microsoft

Windows Movie Maker 2.0 2.0.0000 ({49FC50FC-F965-40D9-89B4-CBFF80941DAN})
        version: 33554432
version (major): 2
  estimated size: 7264
    install date: 20030825
  install source: C:\DOCUME~1\Ejer\LOKALE~1\Temp\IXP000.TMP\
      publisher: Microsoft Corporation
      help link: http://www.microsoft.com
  help telephone:         

eTrust Antivirus Registration 1.0.0 ({515E1B00-E2B4-4975-9900-95F66077C3AE})
        version: 16777216
version (major): 1
  estimated size: 232
    install date: 20030906
  install source: G:\Wistron to do september 2003\CA\Update\Danish\
  uninstall cmd: MsiExec.exe /I{515E1B00-E2B4-4975-9900-95F66077C3AE}
      publisher: Excid.com Aps
        contact: Excid.com

Microsoft AntiSpyware 1.0 ({536F7C74-844B-4683-B0C5-EA39E19A6FE3})
        version: 16777216
version (major): 1
  estimated size: 17237
    install date: 20051205
install location: C:\Programmer\Microsoft AntiSpyware\
  install source: C:\WINDOWS\Downloaded Installations\{C0FA7138-477B-4FEC-8F23-640C21C2287B}\
  uninstall cmd: MsiExec.exe /I{536F7C74-844B-4683-B0C5-EA39E19A6FE3}
      publisher: Microsoft Corporation
        contact: Microsoft Support
      help link: http://www.microsoft.com

Logitech MouseWare 9.70  ({5809E7CF-4DCF-11D4-9875-00105ACE7734})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{5809E7CF-4DCF-11D4-9875-00105ACE7734}\setup.exe" -l0x6 -l0006 UNINSTALL

Disc2Phone 1.1.0.44 ({5E977DEC-5BB4-44C7-9FE5-9357D2DB4FCB})
        version: 16842752
version (major): 1
version (minor): 1
  estimated size: 10401
    install date: 20050903
install location: C:\Programmer\Disc2Phone\
  install source: C:\DOCUME~1\Anders\LOKALE~1\Temp\_isBE\
  uninstall cmd: MsiExec.exe /I{5E977DEC-5BB4-44C7-9FE5-9357D2DB4FCB}
      publisher: Sony Media Software
      help link: www.sonyericsson.com/support

Windows Genuine Advantage v1.3.0254.0 1.3.0254.0 ({63569CE9-FA00-469C-AF5C-E5D4D93ACF91})
        version: 16974078
version (major): 1
version (minor): 3
  estimated size: 519
    install date: 20051003
  install source: C:\DOCUME~1\Anders\LOKALE~1\Temp\IXP000.TMP\
  uninstall cmd: MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
      publisher: Microsoft
        comments: Your Comments
        contact: Customer Support Department
      help link: http://www.microsoft.com/genuine/downloads/whyValidate.aspx/help
  help telephone: 1-425.882.8080

PowerDVD  ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe"  -uninstall

Power Cinema II  ({6B103F43-069C-11D6-9EA2-0050BAE317E1})
  uninstall cmd: C:\Programmer\Uninstall_PCM.exe

Sikkerhedskopiering til Windows 5.1 ({76EFFC7C-17A6-479D-9E47-8E658C1695AE})
        version: 83951616
version (major): 5
version (minor): 1
    install date: 20030825
  uninstall cmd: MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
      publisher: Microsoft Corporation
      help link: http://www.microsoft.com/management

PC'en  ({7CFBE291-6323-4837-9078-484F7187023B})
    install date: 20030825
  uninstall cmd: MsiExec.exe /I{7CFBE291-6323-4837-9078-484F7187023B}

Logitech Desktop Messenger 2.30.04 ({900B1197-53F5-4F46-A882-2CFFFE2EEDCB})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\setup.exe" -l0x6 UNINSTALL
      publisher: Logitech, Inc.
        contact: Logitech Customer Support
      help link: www.logitech.com/support

Microsoft Office XP Professional med FrontPage 10.0.2627.12 ({90280406-6000-11D3-8CFE-0050048383C9})
        version: 167774787
version (major): 10
  estimated size: 122710
    install date: 20041215
install location: INSTALLLOCATION
  install source: F:\Microsoft Office XP Pro\
  uninstall cmd: MsiExec.exe /I{90280406-6000-11D3-8CFE-0050048383C9}
      publisher: Microsoft Corporation
      help link: http://www.microsoft.dk/support
          readme: C:\Programmer\Microsoft Office\Office10\1030\OFREAD10.HTM

Microsoft Outlook 2002 10.0.2627.01 ({911A0409-6000-11D3-8CFE-0050048383C9})
        version: 167774787
version (major): 10
  estimated size: 618086
    install date: 20040921
install location: INSTALLLOCATION
  install source: F:\MS\OUTLOOK\
  uninstall cmd: MsiExec.exe /I{911A0409-6000-11D3-8CFE-0050048383C9}
      publisher: Microsoft Corporation
      help link: http://www.microsoft.com/support
          readme: C:\Programmer\Microsoft Office\Office10\1033\OFREAD10.HTM

Microsoft Word 2002 10.0.2627.12 ({911B0406-6000-11D3-8CFE-0050048383C9})
        version: 167774787
version (major): 10
  estimated size: 299515
    install date: 20030827
install location: INSTALLLOCATION
  install source: F:\MSWord\
  uninstall cmd: MsiExec.exe /I{911B0406-6000-11D3-8CFE-0050048383C9}
      publisher: Microsoft Corporation
      help link: http://www.microsoft.dk/support
          readme: C:\Programmer\Microsoft Office\Office10\1030\OFREAD10.HTM

Microsoft .NET Framework 1.1 Danish Language Pack 1.1.4322 ({973F8409-F8DA-4A40-ACB4-12B02F3399D7})
        version: 16847074
version (major): 1
version (minor): 1
  estimated size: 3038
    install date: 20030827
  install source: C:\DOCUME~1\Ejer\LOKALE~1\Temp\IXP000.TMP\
  uninstall cmd: MsiExec.exe /X{973F8409-F8DA-4A40-ACB4-12B02F3399D7}
      publisher: Microsoft
          readme: file://C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1030\RepairRedist.htm

Realtek RTL8139/810x Fast Ethernet NIC Driver Setup  ({97AA0C55-AFAD-4126-B21C-F1318FB6DADA})
  uninstall cmd: RunDll32 C:\PROGRA~1\FLLESF~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmer\InstallShield Installation Information\{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}\Setup.exe" -l0x6 REMOVE

Microsoft Works 7.0 07.02.0702 ({A5FB4FE1-ACC4-4075-9E81-DADB49F5F18B})
        version: 117572286
version (major): 7
version (minor): 2
  estimated size: 209877
    install date: 20030827
  install source: F:\msworks\
  uninstall cmd: MsiExec.exe /I{A5FB4FE1-ACC4-4075-9E81-DADB49F5F18B}
      publisher: Microsoft Corporation
        comments: Microsoft Works 7.0 Installation.
      help link: http://support.microsoft.com
  help telephone: 

Sony Ericsson PC Suite 1.0.68 ({A6871F03-E140-4559-8940-AD1CC3D58CEE})
        version: 16777284
version (major): 1
  estimated size: 94857
    install date: 20050904
install location: C:\Programmer\Sony Ericsson\Mobile\
  install source: C:\WINDOWS\Downloaded Installations\{9BFAD254-E7B8-42FC-B34D-DEDAB4C0D17D}\
  uninstall cmd: MsiExec.exe /I{A6871F03-E140-4559-8940-AD1CC3D58CEE}
      publisher: Dit firmanavn
        contact: Sony Ericsson Technical Support
      help link: http://www.sonyericsson.com

MSN Messenger 6.2 6.2.0205 ({ABEB838C-A1A7-4C5D-B7E1-8B4314600205})
        version: 100794573
Avatar billede snailey Nybegynder
07. december 2005 - 11:57 #1
Sorry, det kunne ikke være der, her kommer highjack

Logfile of HijackThis v1.99.1
Scan saved at 11:43:49, on 07-12-2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE
C:\Programmer\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
C:\Programmer\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe
C:\Programmer\F-Secure Internet Security\Anti-Virus\FSGK32.EXE
C:\Programmer\F-Secure Internet Security\Common\FSMA32.EXE
C:\Programmer\F-Secure Internet Security\Anti-Virus\fssm32.exe
C:\Programmer\CA\SharedComponents\CA_LIC\LogWatNT.exe
C:\Programmer\F-Secure Internet Security\Common\FSMB32.EXE
C:\Programmer\Fælles filer\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Programmer\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
C:\Programmer\F-Secure Internet Security\Common\FCH32.EXE
C:\WINDOWS\system32\fxssvc.exe
C:\Programmer\F-Secure Internet Security\Common\FAMEH32.EXE
C:\Programmer\F-Secure Internet Security\Anti-Virus\fsqh.exe
C:\Programmer\F-Secure Internet Security\Anti-Virus\fsrw.exe
C:\Programmer\F-Secure Internet Security\Anti-Virus\fsav32.exe
C:\Programmer\F-Secure Internet Security\FWES\Program\fsdfwd.exe
C:\WINDOWS\system32\mssearchnet.exe
C:\Programmer\Launch Manager\LaunchAp.exe
C:\Programmer\Launch Manager\HotkeyApp.exe
C:\Programmer\Launch Manager\OSD.exe
C:\Programmer\Launch Manager\Wbutton.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\PRISMSTA.EXE
C:\Programmer\QuickTime\qttask.exe
C:\Programmer\Fælles filer\Microsoft Shared\Works Shared\WkUFind.exe
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Programmer\Winamp\winampa.exe
C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmer\Microsoft AntiSpyware\gcasServ.exe
C:\Programmer\F-Secure Internet Security\Common\FSM32.EXE
C:\Programmer\Microsoft ActiveSync\WCESCOMM.EXE
C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\SETI@home\SETI@home.exe
C:\PROGRA~1\F-SECU~1\ANTI-S~1\fsaw.exe
C:\Programmer\Microsoft AntiSpyware\gcasDtServ.exe
C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Programmer\F-Secure Internet Security\FSGUI\fsguidll.exe
C:\Programmer\Realtek\Rtl8180\RtlWake.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Documents and Settings\Anders\Lokale indstillinger\Temporary Internet Files\Content.IE5\WXS3GVGJ\hjt[1].exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: HomepageBHO - {724510c3-f3c8-4fb7-879a-d99f29008a2f} - C:\WINDOWS\system32\hpAE51.tmp
O3 - Toolbar: CleanMyPC Toolbar - {04164EC4-1E48-4279-818E-3721931E7636} - C:\Programmer\CleanMyPC Popup Blocker\CleanBar.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmer\MSN Apps\MSN Toolbar\01.02.4000.1001\da\msntb.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [LaunchAp] C:\Programmer\Launch Manager\LaunchAp.exe
O4 - HKLM\..\Run: [HotkeyApp] C:\Programmer\Launch Manager\HotkeyApp.exe
O4 - HKLM\..\Run: [OSD] C:\Programmer\Launch Manager\OSD.exe
O4 - HKLM\..\Run: [Wbutton] "C:\Programmer\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [CtrlVol] C:\Programmer\Launch Manager\CtrlVol.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VOBRegCheck] C:\WINDOWS\System32\VOBREGCheck.exe -CheckReg
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [PRISMSTA.EXE] PRISMSTA.EXE START
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programmer\Fælles filer\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [SetecCertUtil] C:\Programmer\Setec\Web and Email Security\Certutil.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmer\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Programmer\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Programmer\F-Secure Internet Security\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Programmer\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Programmer\F-Secure Internet Security\FSGUI\FSSW.EXE" /reboot
O4 - HKLM\..\Run: [SpyAxe] C:\Programmer\SpyAxe\spyaxe.exe /h
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Programmer\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programmer\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [LDM] C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [seticlient] C:\Programmer\SETI@home\SETI@home.exe -min
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: F-Secure 2006.lnk = C:\Programmer\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: RtlWake.lnk = ?
O8 - Extra context menu item: &Bloker dette pop up-vindue - C:\Programmer\F-Secure Internet Security\Anti-Spyware\blockpopups.htm
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Programmer\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmer\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmer\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Internet Explorer-beskyttelse - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Programmer\F-Secure Internet Security\Anti-Spyware\ieshield.dll
O9 - Extra 'Tools' menuitem: Internet Explorer-beskyttelse... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Programmer\F-Secure Internet Security\Anti-Spyware\ieshield.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.aldi.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {3D2CB570-D425-11D5-ABD0-00008369C46F} (CSMenu Class) - https://netbank.bgbank.dk/html/activex/BG/Menu.cab
O16 - DPF: {402EE96E-2CE8-482D-ADA5-CECEEA07E16D} (TurnTool Scene) - http://www.turntool.com/ViewerInstall.exe
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://81.19.233.106/msrdp.cab
O16 - DPF: {9A54032D-31F7-400D-B184-83B33BDE65FA} (MSN File Upload Control) - http://sc.groups.msn.com/controls/FileUC/MsnUpld.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {C07E5288-22FB-11D7-962E-0004AC77C761} (Dataloen.ctlVirtuelDesktop) - http://activex.dataloen.dk/controls/Dataloen3319.CAB
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
O16 - DPF: {C81B5180-AFD1-41A3-97E1-99E8D254DB98} (CSS Web Installer Class) - http://scanner.virus112.com/cabs/cssweb.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey®) - https://netbank.bgbank.dk/html/activex/e-Safekey/BG/e-Safekey.cab
O16 - DPF: {DC765522-D5BE-49C9-AF5F-8C715A44BA28} (MS Investor Ticker) - http://fdl.msn.com/public/investor/v9.5/ticker.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://system.siteservercms.com/Common/Components/XUpload.ocx
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F6A56D95-A3A3-11D2-AC26-400000058481} (Danske e-Sec) - https://netbank.bgbank.dk/html/activex/danskesikker/BG/DanskeSikker.cab
O18 - Protocol: bw+0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {B45E0666-3146-421F-BD84-3E775BF7BCB7} - C:\Programmer\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: F-Secure 2006 (BackWeb Plug-in - 4476822) - F-Secure Internet Security 2005 - C:\PROGRA~1\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: CA License Client (CA_LIC_CLNT) - Computer Associates - C:\Programmer\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: CA License Server (CA_LIC_SRVR) - Computer Associates - C:\Programmer\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Programmer\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Programmer\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Programmer\F-Secure Internet Security\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Programmer\F-Secure Internet Security\Common\FSMA32.EXE
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Programmer\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Avatar billede ejvindh Ekspert
07. december 2005 - 12:57 #2
Jeg checker den lige :-)
Avatar billede ejvindh Ekspert
07. december 2005 - 13:05 #3
1. Hent og dobbeltklik på smitRem.exe
http://noahdfear.geekstogo.com/click%20counter/click.php?id=1
Programmet pakker sig ud til mappen smitRem.

2. Hent Ad-aware
http://spywarefri.dk/vaerktoj.htm#ad-aware
Installer programmet, start det og opdater online, du skal IKKE scanne endnu.
Indstil Ad-Aware efter denne vejledning:
http://www.spywarefri.dk/manualer/adaware-manual.htm
Luk Ad-Aware igen.

3. Hent Ewido:
http://www.spywarefri.dk/downloads1/ewido-setup.exe
Installer og kør Ewido - Opdater straks efter installationen programmet (men lad være med at scanne endnu).

4. Download CleanUp! http://www.greyknight17.com/spy/CleanUp.exe og installer det. Vent med at køre det.

5. Download og gem denne scanner på skrivebordet. http://www.spywareinfo.dk/download/mwav.exe

6. Genstart i fejlsikret (tast F8 ved opstart)

7. Kør Hijackthis, scan, sæt flueben ved linierne listet her, luk alle vinduer undtaget Hijackthis, klik på "Fix checked":
O2 - BHO: HomepageBHO - {724510c3-f3c8-4fb7-879a-d99f29008a2f} - C:\WINDOWS\system32\hpAE51.tmp
O4 - HKLM\..\Run: [SetecCertUtil] C:\Programmer\Setec\Web and Email Security\Certutil.exe
O4 - HKLM\..\Run: [SpyAxe] C:\Programmer\SpyAxe\spyaxe.exe /h
O4 - HKCU\..\Run: [LDM] C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programmer\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

Alle O18-linier


8. Åbn mappen smitRem, og dobbeltklik på RunThis.bat (Følg vejledningen i vinduet.)

9. Kør en fuld scanning med Ad-Aware, fjern alt det finder.

10. Kør CleanUp: Den sletter alt hvad der er i dine Temp-mapper. Når det er færdig, sig ja til at logge af.

11. Kør en fuld scanning med Ewido. Programmet laver en lille log, som du skal kopiere herind.

12. Klik på mwav.exe som du hentede, programmet pakker sig selv ud og starter.
Sæt flueben i følgende: Memory, Startup folders, drive, Registry, System folders og Services.
Sæt prik i følgende: All local drives og Scan all files. Klik på scan clean. Når scanneren er færdig med at scanne, så kopier indholdet af vinduet "Virus Log Information" herind (marker det, og tast ctrl-c)

13. Genstart og kom med en frisk Hijackthislog, samt loggen fra Ewido. Find c:\smitfiles.txt. Kopier også denne log ind.
20. december 2005 - 11:38 #4
(Hvad endte denne tråd med?)
Avatar billede ejvindh Ekspert
16. februar 2006 - 14:38 #5
Fik du løst dit problem?
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester