Jeg har køret Combofix, computer var genstartet men der åbnes ikke logfil combofix.txt
SDFix: Version 1.58
07-01-12 - 21:38:38.37
Microsoft Windows XP [version 5.1.2600]
Running From: F:\SDFix
Safe Mode:
Checking Services:
Name:
Path:
Restoring Windows Registry Entries
Restoring Default Hosts File
Rebooting
Normal Mode:
Checking Files:
Files will be copied to Backups folder then removed:
F:\WINDOWSS\iexpiore.exe.exe - Deleted
F:\WINDOWSS\Fonts\OUTLOOK.EXE.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\05e0c33d4ecf5d2bb96d01759d045ca3\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\10f3d8185272656e8f7e2123c7519299\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\11466f10a166a1f341b7fa41e534f6bc\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\134c2cd12aaa597802427c85700b6941\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\1957d6372c520417d5443f66af62e2fe\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\21518b368917033a79622c89f52ce0d5\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\224d00af3bc1ef9646f426fd693df6b2\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\2b4ac6cf993c000b72f4d3dbf95dfa83\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\2eee21da1156188df2373b8da93c6dc3\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\2f9d1f29556c07d4ca25be9090e30f7d\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\3064178378227f583406922c172065c5\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\3264a897e0a5df6bb51f7ec4e43c468a\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\34472aafcb34ce19143413a08ba3aa7d\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\3583cdfdcab71d37e4121dd12b4b41af\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\395a00c182e05bf891d103ab799e1a20\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\44b29bee987447f30cd9bd2fa7ed0aea\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\469a806d69c3490fdf8442753e28a1f3\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\47eab86981fd88e3b997e4add35d03c5\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\493a240b53b8094db9d25b5d42af30e4\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\4d2e2466f6b508ca9992591982ad5da5\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\4ddfddd8376b4057fdd35fbb59290066\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\5301aebe928481459413fc85167d5412\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\54c907f127f60a82083c4bd5ddf00a53\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\6465547ce04dda3ee286f60922dcd1f6\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\69918f084afcbaf047d89a0a4ddce5d9\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\69a7054f02fa92847b0357800438b4d1\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\6a96fa4975f42030a4f2a36b1575f04c\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\6c79465b7b2e2962b4d2ab3db73e76d9\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\7204817d05e9318d7b636fffcf1f5fd2\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\7573dad34030b8ee54b942dd7729604b\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\76b8e3b4fde1d7e1adb91d2f260d7182\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\7bab4b9cc31f812345f26afc86798365\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\7e2f97cfa941d6e67d1387c5bddd6fcb\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\82ef89a4a2b9bc7006b6968086d0a824\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\88b079ae1a27aa55016c6ebc24a98c06\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\8c9b534f4c698d44185da0c8e2ec9b8a\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\9c70dc5507ac4d16a5d80f2b4afba3e1\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\9ca9a59f84f3cc8f7c97baab2ec6de77\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\a479d5773fcde1632bf28990a7f1d6ed\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\ab3f07ccc8b0a64eaeb40ef8cb716345\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\ac069367931f38ed80087780b0c8e370\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\b22f8b58395eccd6beddb893d862726e\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\b2496eef7c9c6422fbc03e192f8e5748\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\b52762051bdb08ba7aa7d3847fc4d2b4\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\b5424d00618b1a99370fe9d691d2841b\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\b5dadbeee98e97ae2a3e7f2b5b57e329\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\bf4d1561784efa66d58642ef86f9ed8b\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\bfea0e28aaefec5d00dfef186568ee3c\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\bff2fc6f1f9b8b1344979c5a042be721\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\c2f376b55ce735f81d34a6900ae7c33b\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\c3f6eba83fadfcc4d651cfc418e9db92\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\c5e2eabc2947f015f6ebfd6209100b21\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\c86e690081b85fc85985da4840b73f5a\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\c95dc0109ba33436cb0e131975ea837c\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\ca3fd3bee32419193f942afce6f40a68\Update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\d6158f53c7bcdbb2ff34ffba733bdadd\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\d6f2afc8360b510fb2508a245493e336\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\d6fd156b2edcd43a9d8b4347f293573b\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\e0d31a954dc6355def4ea2c07998c113\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\e7c38135d2a31b69e5955dd0d1ffed07\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\ee4d93abc2177dc8a472543d2dd78d08\update.exe.exe - Deleted
F:\WINDOWSS\SoftwareDistribution\Download\f459b035ef3e13767f6badbaf8a9a3eb\update.exe.exe - Deleted
F:\WINDOWSS\system32\iexpl0re.exe.exe - Deleted
F:\WINDOWSS\system32\lexplore.exe.exe - Deleted
F:\WINDOWSS\system32\msnmsgr.exe.exe - Deleted
F:\WINDOWSS\system32\Security.exe.exe - Deleted
F:\WINDOWSS\system32\drivers\spoclsv.exe.exe - Deleted
F:\WINDOWSS\system32\drivers\spoclsv.exe - Deleted
F:\WINDOWSS\system32\winlogin.exe - Deleted
Alternate Stream Check:
F:\WINDOWSS\system32
No streams found.
Final Check:
Remaining Services:
------------------
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\\Program Files\\WS_FTP\\WS_FTP95.exe"="F:\\Program Files\\WS_FTP\\WS_FTP95.exe:*:Enabled:WS_FTP 95"
"F:\\Documents and Settings\\Ravi Sugathevan\\Skrivebord\\WS_FTP\\WS_FTP95.exe"="F:\\Documents and Settings\\Ravi Sugathevan\\Skrivebord\\WS_FTP\\WS_FTP95.exe:*:Disabled:WS_FTP 95"
"F:\\Programmer\\uTorrent\\utorrent.exe"="F:\\Programmer\\uTorrent\\utorrent.exe:*:Enabled:µTorrent"
"F:\\Programmer\\Grisoft\\AVG7\\avginet.exe"="F:\\Programmer\\Grisoft\\AVG7\\avginet.exe:*:Enabled:avginet.exe"
"F:\\Programmer\\Grisoft\\AVG7\\avgamsvr.exe"="F:\\Programmer\\Grisoft\\AVG7\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"F:\\Programmer\\Grisoft\\AVG7\\avgcc.exe"="F:\\Programmer\\Grisoft\\AVG7\\avgcc.exe:*:Enabled:avgcc.exe"
"F:\\Programmer\\Grisoft\\AVG7\\avgemc.exe"="F:\\Programmer\\Grisoft\\AVG7\\avgemc.exe:*:Enabled:avgemc.exe"
"F:\\Documents and Settings\\Ravi Sugathevan\\Dokumenter\\WS_FTP\\WS_FTP95.exe"="F:\\Documents and Settings\\Ravi Sugathevan\\Dokumenter\\WS_FTP\\WS_FTP95.exe:*:Enabled:WS_FTP 95"
"F:\\Programmer\\MSN Messenger\\msnmsgr.exe"="F:\\Programmer\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"F:\\Programmer\\MSN Messenger\\msncall.exe"="F:\\Programmer\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\\Programmer\\MSN Messenger\\msnmsgr.exe"="F:\\Programmer\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"F:\\Programmer\\MSN Messenger\\msncall.exe"="F:\\Programmer\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
Remaining Files:
---------------
F:\WINDOWSS\system32\winlogin.exe
Backups Folder: - F:\SDFix\backups\backups.zip
Listing Files with hidden attributes:
F:\NTDETECT.COM
F:\Documents and Settings\Alaikal\Andre computere\
ftp.hash.com\Desktop.iniF:\Documents and Settings\Ravi Sugathevan\Dokumenter\WS_FTP\dk-rejser\dktravels.com\Desktop_.ini
F:\Documents and Settings\Ravi Sugathevan\Dokumenter\WS_FTP\dk-rejser\dktravels.com\_vti_cnf\Desktop_.ini
F:\Program Files\WS_FTP\dk-rejser\dktravels.com\Desktop_.ini
F:\Program Files\WS_FTP\dk-rejser\dktravels.com\_vti_cnf\Desktop_.ini
F:\Programmer\VoipBuster.com\Desktop_.ini
F:\Programmer\VoipBuster.com\VoipBuster\Desktop_.ini
F:\WINDOWS.0\WinSxS\Policies\x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775\Desktop_.ini
F:\WINDOWS.0\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\Desktop_.ini
F:\WINDOWS.0\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\Desktop_.ini
F:\WINDOWSS\WinSxS\Policies\x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775\Desktop_.ini
F:\WINDOWSS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\Desktop_.ini
F:\WINDOWSS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\Desktop_.ini
F:\WINDOWS\system32\wodfamod.dll
F:\WINDOWS\rmdep.exe.tmp
F:\WINDOWS\system32\cdplayer.exe.manifest
F:\WINDOWS\system32\logonui.exe.manifest
F:\WINDOWS\system32\twunk32.exe
F:\WINDOWS.0\system32\cdplayer.exe.manifest
F:\WINDOWS.0\system32\logonui.exe.manifest
F:\WINDOWSS\system32\cdplayer.exe.manifest
F:\WINDOWSS\system32\logonui.exe.manifest
F:\WINDOWSS\system32\twunk32.exe
F:\hiberfil.sys
F:\IO.SYS
F:\MSDOS.SYS
F:\pagefile.sys
F:\WINDOWS\system32\KGyGaAvL.sys
F:\WINDOWS.0\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510\Desktop_.ini
F:\WINDOWSS\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510\Desktop_.ini
F:\Documents and Settings\All Users.WINDOWS.0\DRM\Cache\Indiv01.tmp
F:\WINDOWS\rmdep.exe.tmp
F:\WINDOWS\system32\config\default.tmp.LOG
F:\WINDOWS\system32\config\software.tmp.LOG
F:\WINDOWS\system32\config\system.tmp.LOG
F:\WINDOWS.0\msdownld.tmp\Desktop_.ini
Finished