Avatar billede mekanikeren Nybegynder
08. november 2007 - 08:45 Der er 35 kommentarer og
2 løsninger

min pc starter ikke helt op

når jeg starter min pc gør den som den skal, indtil den kommer ind på skrivebordet og så fryser den.
kan ikke gøre noget, andet end ctrl-alt-delete og genstarte.
jeg køre xp pro.
håber der er nogen der kan hjælpe, hurtigt.
ps: jeg køre i fejlsikret tilstand.
Avatar billede tonygk Nybegynder
08. november 2007 - 08:53 #1
Prøv at køre en test på ram. Du skal brænde det på en cd eller lægge det på en diskette og boote på det.
http://www.memtest86.com/download.html
Avatar billede mekanikeren Nybegynder
08. november 2007 - 09:00 #2
oki prøver men tror der er kommet snavs på puteren men hvordan finder man ud af det?
Avatar billede tonygk Nybegynder
08. november 2007 - 09:05 #3
Kør det og giv mig loggen.

Bemærk at HiJackThis.exe programmet skal gemmes i en dertil oprettet mappe og IKKE køres direkte fra nettet...
http://www.spywareinfo.dk/index.htm#/manualer/hijackthis.htm
Avatar billede mekanikeren Nybegynder
08. november 2007 - 09:10 #4
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:28:37, on 08-11-2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator.HEINE-PUS4J60JZ\Skrivebord\Ny mappe\HiJackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\System32\ntos.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {71DF2842-076F-4965-8EE6-C129E26AE1DE} - C:\WINDOWS\System32\audiosr.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Her - {C4DE5B15-4FFE-4c02-8CB3-CAD24A33562B} - C:\WINDOWS\System32\ramtmb.dll
O2 - BHO: e404 helper - {F10587E9-0E47-4CBE-84AE-7DD20B8684BB} - C:\Programmer\E404 Helper\e404.v1.dll
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Programmer\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programmer\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Programmer\AskTBar\bar\1.bin\ASKTBAR.DLL
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [Genvej til egenskabsside for High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Programmer\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [PtiuPbmd] Rundll32.exe ptipbm.dll,SetWriteBack
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [DataLayer] C:\Programmer\Fælles filer\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmer\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB002" /M "Stylus CX3200"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Programmer\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmer\Winamp\winampa.exe
O4 - HKLM\..\Run: [avp] C:\WINDOWS\avp.exe
O4 - HKLM\..\Run: [RegistryMonitor1] C:\WINDOWS\system32\qtplugin.exe
O4 - HKLM\..\Run: [smgr] mgrs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O12 - Plugin for .spop: C:\Programmer\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://webnode1.xstream.dk/radiostationer/rawflow/197/Rawflow.cab
O16 - DPF: {07D09E9E-C667-45DD-B035-217BC2A61A3B} (ActiveX sikkerhedssoftware Control) - https://www.portalbank.dk/package/sdc/external/activex/ActiveXSikkerhedssoftware-prod-1.10.cab
O16 - DPF: {4445EA6A-9008-40D5-9160-035FDE5214C4} (MultiUpload Class) - http://www.123hjemmeside.dk/builder/pages/Mpu-dk-1-0-0-8.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by143fd.bay143.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1154282572218
O16 - DPF: {8C379EAB-FB26-4B71-BB5C-05B4C96E4851} (Hjemmeside.KvikFoto) - http://www.123hjemmeside.dk/builder/pages/KvikFoto-1-0-5.CAB
O16 - DPF: {D216644A-C6DB-49D9-BBCF-D38FE7991BF2} (Util Class) - https://udstedelse.certifikat.tdc.dk/csp/authenticode/tdccsp-0506.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{BB069191-24FA-44A6-8DBD-37E30E7F85E5}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\..\{EDB65AA9-B89E-40C9-ADC9-620A29AED102}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Programmer\Fælles filer\Autodata Limited Shared\Service\ADCDLicSvc.exe
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Programmer\Fælles filer\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programmer\Fælles filer\EPSON\EBAPI\SAgent2.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
O23 - Service: Windows Management Service - Unknown owner - C:\WINDOWS\System32\.exe (file missing)

--
End of file - 8097 bytes
Avatar billede mekanikeren Nybegynder
08. november 2007 - 09:10 #5
ramtesten siger at det er ok
Avatar billede tonygk Nybegynder
08. november 2007 - 09:23 #6
Der er desværre noget snavs (trojansk hest) på din maskine og jeg kan ikke se du har en antivirus kørende  ;--))

O2 - BHO: Her - {C4DE5B15-4FFE-4c02-8CB3-CAD24A33562B} - C:\WINDOWS\System32\ramtmb.dll

Du kan køre en online snaning for rense din maskine. http://uk.mcafee.com/root/mfs/default.asp

Hvis du har en antivirus installeret er den ud af drift og prøv at reinstallere den, ellers kan finde en god og gratis her.
http://www.pcworld.dk/art/9067?a=search&i=0
Avatar billede tonygk Nybegynder
08. november 2007 - 09:24 #7
sanning=scaninng
Avatar billede mekanikeren Nybegynder
08. november 2007 - 09:48 #8
her er en ny log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:47:02, on 08-11-2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator.HEINE-PUS4J60JZ\Skrivebord\Ny mappe\HiJackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\System32\ntos.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {71DF2842-076F-4965-8EE6-C129E26AE1DE} - C:\WINDOWS\System32\audiosr.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: e404 helper - {F10587E9-0E47-4CBE-84AE-7DD20B8684BB} - C:\Programmer\E404 Helper\e404.v1.dll
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Programmer\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programmer\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Programmer\AskTBar\bar\1.bin\ASKTBAR.DLL
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [Genvej til egenskabsside for High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Programmer\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [PtiuPbmd] Rundll32.exe ptipbm.dll,SetWriteBack
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [DataLayer] C:\Programmer\Fælles filer\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmer\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [EPSON Stylus CX3200] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P19 "EPSON Stylus CX3200" /O6 "USB002" /M "Stylus CX3200"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Programmer\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmer\Winamp\winampa.exe
O4 - HKLM\..\Run: [avp] C:\WINDOWS\avp.exe
O4 - HKLM\..\Run: [RegistryMonitor1] C:\WINDOWS\system32\qtplugin.exe
O4 - HKLM\..\Run: [smgr] mgrs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O10 - Unknown file in Winsock LSP: rsvp322.dll
O12 - Plugin for .spop: C:\Programmer\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://webnode1.xstream.dk/radiostationer/rawflow/197/Rawflow.cab
O16 - DPF: {07D09E9E-C667-45DD-B035-217BC2A61A3B} (ActiveX sikkerhedssoftware Control) - https://www.portalbank.dk/package/sdc/external/activex/ActiveXSikkerhedssoftware-prod-1.10.cab
O16 - DPF: {4445EA6A-9008-40D5-9160-035FDE5214C4} (MultiUpload Class) - http://www.123hjemmeside.dk/builder/pages/Mpu-dk-1-0-0-8.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by143fd.bay143.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1154282572218
O16 - DPF: {8C379EAB-FB26-4B71-BB5C-05B4C96E4851} (Hjemmeside.KvikFoto) - http://www.123hjemmeside.dk/builder/pages/KvikFoto-1-0-5.CAB
O16 - DPF: {D216644A-C6DB-49D9-BBCF-D38FE7991BF2} (Util Class) - https://udstedelse.certifikat.tdc.dk/csp/authenticode/tdccsp-0506.exe
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5158/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BB069191-24FA-44A6-8DBD-37E30E7F85E5}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\..\{EDB65AA9-B89E-40C9-ADC9-620A29AED102}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Programmer\Fælles filer\Autodata Limited Shared\Service\ADCDLicSvc.exe
O23 - Service: EpsonBidirectionalService - Unknown owner - C:\Programmer\Fælles filer\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programmer\Fælles filer\EPSON\EBAPI\SAgent2.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
O23 - Service: Windows Management Service - Unknown owner - C:\WINDOWS\System32\.exe (file missing)

--
End of file - 8107 bytes
Avatar billede tonygk Nybegynder
08. november 2007 - 10:01 #9
Det er desværre ikke blevet bedere, da jeg kan se endnu flere nu. Har du mulighed for det vil jeg anbefale at du reinstallere hele harddisken. ellers kør en virus scanning på din maskine. HUSK for guds skyld installerer en antivirus på din maskine.
Der er også en god ide at lægge  XP service pack2 (SP2) på din maskine.
Avatar billede mekanikeren Nybegynder
08. november 2007 - 10:06 #10
oki starter helt forfra. takker for hjælpen.
hvi et svar
Avatar billede tonygk Nybegynder
08. november 2007 - 10:14 #11
Husk Windows XP --->>> SP2

Held og lykke
Mvh
Tony
08. november 2007 - 10:37 #12
Du får lige 'talen' *S* ->

Du har ikke opdateret dit Windows XP til ServicePack2 (SP2).
"Ubeskyttede pc’er holder i 20 minutter":
http://www.comon.dk/index.php/news/show/id=18812

http://www.eksperten.dk/artikler/1104
Altså INGEN FORM FOR INTERNETFORBINDELSE undervejs ...
Avatar billede fromsej Praktikant
09. november 2007 - 18:37 #13
Hvis det ikke er for sent, burde den kunne renses.
Der er en wareout infektion på den.
Avatar billede mekanikeren Nybegynder
11. november 2007 - 07:45 #14
undskyld jeg først skriver nu.
nu er jeg startet helt forfra.
lige et par spørgsmål hertil.
xp installeret.
alle opdateringer fra microsoft installeret.
sp2 installeret.
nå jeg så starter min pc gør den faktisk ligesom før,
starter men når den kommer på skrivebordet fryser den.
jeg tog en gendannelse fra starten, inden sp2 blev installeret og der kørte den.
er det mig der gør noget forkert eller ?
håber i kan hjælpe. vil gerne pørve at installere alle opdateringer og se om vi kan få den til at køre derfra, hvis nogen er friske på at hjælpe
Avatar billede mekanikeren Nybegynder
11. november 2007 - 07:46 #15
fromsej-- hvad er en wareout?
Avatar billede fromsej Praktikant
11. november 2007 - 11:45 #16
Det er navnet på den infektion du havde, det er en meget agressiv form for adware/spyware, der er hundesvær at pelse, men vi plejer at kunne.
Jeg så den faktisk med det samme i din HJT log.
O17 - HKLM\System\CCS\Services\Tcpip\..\{BB069191-24FA-44A6-8DBD-37E30E7F85E5}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\..\{EDB65AA9-B89E-40C9-ADC9-620A29AED102}: NameServer = 85.255.113.146,85.255.112.66
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.113.146 85.255.112.66

Dit problem kan ligge i dårlig hardware, men det kan måske også skyldes at din disk ikke er blevet ordentligt slettet.
Giv den en gang Killdisk først, derefter installer Windows.
http://www.helgec.dk/killdisk.html
Avatar billede mekanikeren Nybegynder
11. november 2007 - 13:37 #17
skal jeg prøve at lave en ny log og lægge herind nu?
for lige nu køre den som den skal.
Avatar billede fromsej Praktikant
11. november 2007 - 14:06 #18
Ja, prøv bare det.
Følg hele denne vejledning:
http://www.eksperten.dk/artikler/1123
Avatar billede mekanikeren Nybegynder
12. november 2007 - 12:03 #19
sender loggen i eftermiddag. tror det er noget med sp2 at gøre for når jeg installere den fryser min puter. håber i kan hjælpe
Avatar billede mekanikeren Nybegynder
13. november 2007 - 16:47 #20
nu er det endelig lykkes at få gang i den igen.
der er ingen problemer inden jeg installere sp2 men efter jeg har installeret sp2 genstarter den og fungere men efter endnu en genstart fryser den.
nu gendanner jeg den til før sp2 og ligger loggen fra HiJackThis ind, og så håber jeg i kan finde problemet.
Avatar billede mekanikeren Nybegynder
13. november 2007 - 18:03 #21
her loggen fra combofix:

ComboFix 07-11-08.1 - heine 2007-11-13 17:58:53.1 - NTFSx86
Microsoft Windows XP Professional  5.1.2600.1.1252.1.1030.18.237 [GMT 1:00]
Running from: C:\Documents and Settings\heine\Skrivebord\clean\ComboFix.exe
* Created a new restore point
.

(((((((((((((((((((((((((  Files Created from 2007-10-13 to 2007-11-13  )))))))))))))))))))))))))))))))
.

2007-11-13 17:58    51,200    --a------    C:\WINDOWS\NirCmd.exe
2007-11-13 17:16    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Application Data\SUPERAntiSpyware.com
2007-11-13 17:10    <DIR>    d--------    C:\Programmer\Fælles filer\Wise Installation Wizard
2007-11-13 17:10    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\SUPERAntiSpyware.com
2007-11-13 17:10    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2007-11-13 16:57    33,792    --a------    C:\WINDOWS\system32\drivers\disk.sys
2007-11-13 16:57    33,792    --a--c---    C:\WINDOWS\system32\dllcache\disk.sys
2007-11-09 18:13    271,224    --a------    C:\WINDOWS\system32\mucltui.dll
2007-11-09 18:13    207,736    --a------    C:\WINDOWS\system32\muweb.dll
2007-11-09 18:12    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\Windows Live Toolbar
2007-11-09 18:12    549,720    --a------    C:\WINDOWS\system32\wuapi.dll
2007-11-09 18:12    325,976    --a------    C:\WINDOWS\system32\wucltui.dll
2007-11-09 18:12    203,096    --a------    C:\WINDOWS\system32\wuweb.dll
2007-11-09 18:12    43,352    --a------    C:\WINDOWS\system32\wups2.dll
2007-11-09 18:12    33,624    --a------    C:\WINDOWS\system32\wups.dll
2007-11-09 18:11    <DIR>    d--------    C:\Programmer\Windows Live Toolbar
2007-11-09 18:10    <DIR>    d----c---    C:\WINDOWS\system32\DRVSTORE
2007-11-09 18:08    <DIR>    d--------    C:\Programmer\MSN Messenger
2007-11-09 17:44    21,760    --a--c---    C:\WINDOWS\system32\dllcache\usbstor.sys
2007-11-09 17:40    <DIR>    d--------    C:\Programmer\Google
2007-11-09 17:40    <DIR>    d--------    C:\Programmer\CyberLink
2007-11-09 17:30    <DIR>    d--------    C:\Programmer\Acoustica MP3 Audio Mixer
2007-11-09 17:30    348,160    --a------    C:\WINDOWS\system32\eSellerateEngine.dll
2007-11-09 17:29    <DIR>    d--------    C:\Programmer\vso
2007-11-09 17:29    34,752    --a------    C:\WINDOWS\system32\drivers\Pcouffin.sys
2007-11-09 17:27    <DIR>    d--------    C:\WINDOWS\Downloaded Installations
2007-11-09 17:27    155,136    --a------    C:\WINDOWS\system32\drivers\d347bus.sys
2007-11-09 17:27    5,248    --a------    C:\WINDOWS\system32\drivers\d347prt.sys
2007-11-09 17:21    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\Microsoft Web Folders
2007-11-09 17:18    24,971    -ra------    C:\WINDOWS\system32\drivers\iteraid.sys
2007-11-09 17:15    296,412    -ra------    C:\WINDOWS\system32\Prounstl.exe
2007-11-09 17:15    182,880    --a------    C:\WINDOWS\system32\iuengine.dll
2007-11-09 17:15    182,880    --a--c---    C:\WINDOWS\system32\dllcache\iuengine.dll
2007-11-09 17:15    154,112    -ra------    C:\WINDOWS\system32\drivers\e100b325.sys
2007-11-09 17:15    154,112    --a--c---    C:\WINDOWS\system32\dllcache\e100b325.sys
2007-11-09 17:15    24,064    -ra------    C:\WINDOWS\system32\IntelNic.dll
2007-11-09 17:15    12,288    -ra------    C:\WINDOWS\system32\e100bmsg.dll
2007-11-09 17:10    <DIR>    d--------    C:\Intel
2007-11-09 17:10    163,840    --a------    C:\WINDOWS\system32\igfxres.dll
2007-11-09 17:10    57,856    --a------    C:\WINDOWS\system32\drivers\drmk.sys
2007-11-09 17:10    57,856    --a--c---    C:\WINDOWS\system32\dllcache\drmk.sys
2007-11-09 17:10    4,096    --a--c---    C:\WINDOWS\system32\dllcache\ksuser.dll
2007-11-09 17:07    <DIR>    d--------    C:\Programmer\Marvell
2007-11-09 17:06    108,032    -ra------    C:\WINDOWS\system32\drivers\ianswxp.sys
2007-11-09 16:55    <DIR>    d--------    C:\Programmer\Realtek
2007-11-09 16:55    <DIR>    d--------    C:\Programmer\Fælles filer\InstallShield
2007-11-09 16:55    9,911,258    --a------    C:\WINDOWS\RTLCPL.EXE
2007-11-09 16:55    8,554,454    ---------    C:\WINDOWS\RTHDCPL.exe
2007-11-09 16:55    2,559,488    --a------    C:\WINDOWS\ALCWZRD.EXE
2007-11-09 16:55    2,276,672    --a------    C:\WINDOWS\system32\drivers\RtkHDAud.sys
2007-11-09 16:55    234,970    --a------    C:\WINDOWS\ALCMTR.EXE
2007-11-09 16:55    218,076    ---------    C:\WINDOWS\system32\ChCfg.exe
2007-11-09 16:55    192,512    --a------    C:\WINDOWS\system32\RTCOMDLL.dll
2007-11-09 16:55    156,160    --a------    C:\WINDOWS\system32\RTLCPAPI.dll
2007-11-09 16:55    77,824    --a------    C:\WINDOWS\SOUNDMAN.EXE
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Skrivebord
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Skabeloner
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Printere
2007-11-09 16:51    <DIR>    dr-------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Menuen Start
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Lokale indstillinger
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Foretrukne
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Dokumenter
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Andre computere
2007-11-09 15:03    36,484    --a------    C:\WINDOWS\system32\drivers\SMBios.sys
2007-11-08 19:21    <DIR>    d--------    C:\Documents and Settings\Administrator\Skabeloner
2007-11-08 19:21    <DIR>    d--------    C:\Documents and Settings\Administrator\Lokale indstillinger
2007-11-08 17:34    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Programmer\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Programmer\Fælles filer\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\Nero
2007-11-08 14:54    <DIR>    d--------    C:\Programmer\Microsoft SQL Server Compact Edition
2007-11-08 14:54    <DIR>    d--------    C:\Documents and Settings\heine\Contacts
2007-11-08 14:48    <DIR>    d--------    C:\Programmer\Windows Live
2007-11-08 14:48    <DIR>    d----c---    C:\Programmer\Fælles filer\WindowsLiveInstaller
2007-11-08 14:48    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\WLInstaller
2007-11-08 13:23    <DIR>    d--------    C:\WINDOWS\provisioning
2007-11-08 13:22    <DIR>    d--------    C:\WINDOWS\ServicePackFiles
2007-11-08 12:59    <DIR>    d--------    C:\Programmer\Winamp
2007-11-08 12:57    <DIR>    d--------    C:\Programmer\DVD Decrypter
2007-11-08 12:57    <DIR>    d--------    C:\Programmer\D-Tools
2007-11-08 12:31    <DIR>    d--------    C:\Programmer\Fælles filer\Python
2007-11-08 12:29    3,136    --a------    C:\WINDOWS\Ade001.bin
2007-11-08 12:28    <DIR>    d--------    C:\Programmer\Fælles filer\EPSON
2007-11-08 12:27    <DIR>    d--------    C:\Programmer\EPSON
2007-11-08 12:27    182    --a------    C:\WINDOWS\system32\EBPPORT.DAT
2007-11-08 12:23    <DIR>    d--------    C:\WINDOWS\ShellNew

.
((((((((((((((((((((((((((((((((((((((((  Find3M Report  ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-11-09 16:40    ---------    d--h--w    C:\Programmer\InstallShield Installation Information
2007-11-09 16:21    ---------    d-----w    C:\Programmer\microsoft frontpage
2007-11-09 16:06    ---------    d-----w    C:\Programmer\Intel
2007-11-08 09:53    ---------    d-----w    C:\Programmer\Onlinetjenester
2007-11-08 09:53    ---------    d-----w    C:\Programmer\Fælles filer\Tjenester
2007-11-08 09:52    ---------    d-----w    C:\Programmer\Fælles filer\MSSoap
2007-11-08 09:47    ---------    d-----w    C:\Programmer\Fælles filer\SpeechEngines
2007-11-08 09:47    ---------    d-----w    C:\Programmer\Fælles filer\ODBC
.

(((((((((((((((((((((((((((((((((((((  Reg Loading Points  ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Genvej til egenskabsside for High Definition Audio"="HDAudPropShortcut.exe" [2004-03-17 15:10 C:\WINDOWS\system32\Hdaudpropshortcut.exe]
"PRONoMgrWired"="C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe" [2004-03-02 11:49]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [2004-06-06 04:45]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [2004-06-06 04:41]
"SoundMan"="SOUNDMAN.EXE" [2004-09-23 12:27 C:\WINDOWS\SOUNDMAN.EXE]
"AlcWzrd"="ALCWZRD.EXE" [2004-09-24 11:06 C:\WINDOWS\ALCWZRD.EXE]
"DAEMON Tools-1033"="C:\Programmer\D-Tools\daemon.exe" [2004-08-22 17:05]
"RemoteControl"="C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe" [2005-01-12 03:01]
"WinampAgent"="C:\Programmer\Winamp\winampa.exe" [2007-09-13 17:24]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [2002-09-09 15:13]
"msnmsgr"="C:\Programmer\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55]
"SUPERAntiSpyware"="C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe" [2007-11-13 17:52]

C:\Documents and Settings\All Users\Menuen Start\Programmer\Start\
Microsoft Office.lnk - C:\Programmer\Microsoft Office\Office\OSA9.EXE [1999-02-17 14:05:56]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Documents and Settings\heine\Skrivebord\clean\SASSEH.DLL [2006-12-20 13:55 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll 2007-04-19 13:41 294912 C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll

R0 iteraid;ITERAID_Service_Install;C:\WINDOWS\System32\DRIVERS\iteraid.sys

*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2007-11-13 16:09:00 C:\WINDOWS\Tasks\Søg efter opdateringer til Windows Live Toolbar.job"
- C:\Programmer\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1250 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-13 17:59:37
Windows 5.1.2600 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2007-11-13 17:59:59
.
    --- E O F ---
Avatar billede mekanikeren Nybegynder
13. november 2007 - 18:04 #22
her loggen fra hijackthis:

Logfile of HijackThis v1.99.1
Scan saved at 17:56:49, on 13-11-2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Programmer\D-Tools\daemon.exe
C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmer\Winamp\winampa.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programmer\MSN Messenger\msnmsgr.exe
C:\Programmer\MSN Messenger\usnsvc.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Programmer\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\heine\Skrivebord\clean\hijackthis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmer\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmer\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [Genvej til egenskabsside for High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [PRONoMgrWired] C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmer\Winamp\winampa.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmer\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Google Search - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Programmer\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Backward Links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Programmer\Google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Åbn på ny baggrundsfane - res://C:\Programmer\Windows Live Toolbar\Components\da-dk\msntabres.dll.mui/229?ec5afbe14fba4086a1431394e1a352e5
O8 - Extra context menu item: Åbn på ny forgrundsfane - res://C:\Programmer\Windows Live Toolbar\Components\da-dk\msntabres.dll.mui/230?ec5afbe14fba4086a1431394e1a352e5
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Programmer\Intel\PROSetWired\NCS\Sync\NetSvc.exe
Avatar billede mekanikeren Nybegynder
13. november 2007 - 18:05 #23
her loggen fra rootlog:

********************************* ROOTCHK-(21-09-07)-LOG, by ejvindh
13-11-2007 17:57:34,42

The rootkits that are detected by this tool were not found.

********************************* ROOTCHK-LOG-end


catchme 0.3.1160 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-13 17:57:35
Windows 5.1.2600 Service Pack 1
scanning hidden processes ...

scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf40]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf41]
"khjeh"=hex:20,02,00,00,1b,55,b6,0c,3f,13,b7,73,66,60,c0,85,91,bb,69,04,60,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf42]
"khjeh"=hex:20,02,00,00,af,54,b6,0c,3b,f5,b1,b1,b2,9b,18,d8,3d,77,18,ea,5c,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf43]
"khjeh"=hex:20,02,00,00,f3,53,b6,0c,37,8d,5f,d8,9e,1e,bf,da,29,ea,12,ce,d8,..

scanning hidden registry entries ...

scanning hidden files ...

hidden processes: 0
hidden services: 0
hidden files: 0
Avatar billede mekanikeren Nybegynder
13. november 2007 - 18:11 #24
kan ikke finde loggen fra SUPERAntiSpyware Professional?
Avatar billede fromsej Praktikant
13. november 2007 - 19:10 #25
Der er ikke noget at komme efter.
Avatar billede mekanikeren Nybegynder
13. november 2007 - 19:22 #26
NÅR JEG SÅ INSTALLERE SP2 KOMMER PROBLEMET.
HVAD KAN DETTE SKYLDES?
Avatar billede mekanikeren Nybegynder
14. november 2007 - 08:28 #27
takker for hjælpen fromsej.
lige en sidste ting.
når jeg starter min puter starter den som den skal og det hele køre fint, men når den kommer på skrivebordet kommer der den berømte dialog box med at update.exe har fundet en fejl og afsluttes vii beklager fejlen. jeg trykker undlad at sende, og den kommer ca 25 til 30 gange,og så køre min puter fint, indtil jeg genstarter og så skal jeg klikke 25 til 30 gange igen.
hvordan får jeg den til at lade være med det.
ps: når du skriver så husk at lægge svaret som et svar for point....
Avatar billede fromsej Praktikant
14. november 2007 - 18:43 #28
Hov, der er intet Antivirusprogram på, installer enten AVG eller Avast, opdater og scan computeren.
http://www.spywarefri.dk/manualer/sikkerhedspakke.htm
Når det er gjort, genstart og kom med tre friske logs.
Avatar billede mekanikeren Nybegynder
14. november 2007 - 19:11 #29
prøver lige
Avatar billede mekanikeren Nybegynder
14. november 2007 - 21:05 #30
LOGGEN FRA COMBO FIX

ComboFix 07-11-08.1 - heine 2007-11-14 20:59:16.2 - NTFSx86
Running from: C:\Documents and Settings\heine\Skrivebord\clean\ComboFix.exe
.

(((((((((((((((((((((((((  Files Created from 2007-10-14 to 2007-11-14  )))))))))))))))))))))))))))))))
.

2007-11-14 19:17    <DIR>    d--------    C:\WINDOWS\LastGood
2007-11-14 19:14    <DIR>    d--------    C:\Programmer\Alwil Software
2007-11-14 19:04    <DIR>    d--------    C:\Programmer\Fælles filer\Adobe
2007-11-14 16:01    <DIR>    d--------    C:\Programmer\DVD Shrink
2007-11-14 16:01    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\DVD Shrink
2007-11-13 18:53    33,792    --a------    C:\WINDOWS\system32\drivers\disk.sys
2007-11-13 18:53    33,792    --a--c---    C:\WINDOWS\system32\dllcache\disk.sys
2007-11-13 17:58    51,200    --a------    C:\WINDOWS\NirCmd.exe
2007-11-13 17:16    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Application Data\SUPERAntiSpyware.com
2007-11-13 17:10    <DIR>    d--------    C:\Programmer\Fælles filer\Wise Installation Wizard
2007-11-13 17:10    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\SUPERAntiSpyware.com
2007-11-13 17:10    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2007-11-09 18:13    271,224    --a------    C:\WINDOWS\system32\mucltui.dll
2007-11-09 18:13    207,736    --a------    C:\WINDOWS\system32\muweb.dll
2007-11-09 18:12    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\Windows Live Toolbar
2007-11-09 18:12    549,720    --a------    C:\WINDOWS\system32\wuapi.dll
2007-11-09 18:12    325,976    --a------    C:\WINDOWS\system32\wucltui.dll
2007-11-09 18:12    203,096    --a------    C:\WINDOWS\system32\wuweb.dll
2007-11-09 18:12    43,352    --a------    C:\WINDOWS\system32\wups2.dll
2007-11-09 18:12    33,624    --a------    C:\WINDOWS\system32\wups.dll
2007-11-09 18:11    <DIR>    d--------    C:\Programmer\Windows Live Toolbar
2007-11-09 18:10    <DIR>    d----c---    C:\WINDOWS\system32\DRVSTORE
2007-11-09 18:08    <DIR>    d--------    C:\Programmer\MSN Messenger
2007-11-09 17:44    21,760    --a--c---    C:\WINDOWS\system32\dllcache\usbstor.sys
2007-11-09 17:40    <DIR>    d--------    C:\Programmer\Google
2007-11-09 17:40    <DIR>    d--------    C:\Programmer\CyberLink
2007-11-09 17:30    <DIR>    d--------    C:\Programmer\Acoustica MP3 Audio Mixer
2007-11-09 17:30    348,160    --a------    C:\WINDOWS\system32\eSellerateEngine.dll
2007-11-09 17:29    <DIR>    d--------    C:\Programmer\vso
2007-11-09 17:29    34,752    --a------    C:\WINDOWS\system32\drivers\Pcouffin.sys
2007-11-09 17:27    <DIR>    d--------    C:\WINDOWS\Downloaded Installations
2007-11-09 17:27    155,136    --a------    C:\WINDOWS\system32\drivers\d347bus.sys
2007-11-09 17:27    5,248    --a------    C:\WINDOWS\system32\drivers\d347prt.sys
2007-11-09 17:21    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\Microsoft Web Folders
2007-11-09 17:18    24,971    -ra------    C:\WINDOWS\system32\drivers\iteraid.sys
2007-11-09 17:15    182,880    --a------    C:\WINDOWS\system32\iuengine.dll
2007-11-09 17:15    182,880    --a--c---    C:\WINDOWS\system32\dllcache\iuengine.dll
2007-11-09 17:15    154,112    -ra------    C:\WINDOWS\system32\drivers\e100b325.sys
2007-11-09 17:15    154,112    --a--c---    C:\WINDOWS\system32\dllcache\e100b325.sys
2007-11-09 17:15    118,784    -ra------    C:\WINDOWS\system32\Prounstl.exe
2007-11-09 17:15    24,064    -ra------    C:\WINDOWS\system32\IntelNic.dll
2007-11-09 17:15    12,288    -ra------    C:\WINDOWS\system32\e100bmsg.dll
2007-11-09 17:10    <DIR>    d--------    C:\Intel
2007-11-09 17:10    163,840    --a------    C:\WINDOWS\system32\igfxres.dll
2007-11-09 17:10    57,856    --a------    C:\WINDOWS\system32\drivers\drmk.sys
2007-11-09 17:10    57,856    --a--c---    C:\WINDOWS\system32\dllcache\drmk.sys
2007-11-09 17:10    4,096    --a--c---    C:\WINDOWS\system32\dllcache\ksuser.dll
2007-11-09 17:07    <DIR>    d--------    C:\Programmer\Marvell
2007-11-09 17:06    108,032    -ra------    C:\WINDOWS\system32\drivers\ianswxp.sys
2007-11-09 16:55    <DIR>    d--------    C:\Programmer\Realtek
2007-11-09 16:55    <DIR>    d--------    C:\Programmer\Fælles filer\InstallShield
2007-11-09 16:55    9,733,632    --a------    C:\WINDOWS\RTLCPL.EXE
2007-11-09 16:55    8,376,832    --a------    C:\WINDOWS\RTHDCPL.exe
2007-11-09 16:55    2,559,488    --a------    C:\WINDOWS\ALCWZRD.EXE
2007-11-09 16:55    2,276,672    --a------    C:\WINDOWS\system32\drivers\RtkHDAud.sys
2007-11-09 16:55    192,512    --a------    C:\WINDOWS\system32\RTCOMDLL.dll
2007-11-09 16:55    156,160    --a------    C:\WINDOWS\system32\RTLCPAPI.dll
2007-11-09 16:55    77,824    --a------    C:\WINDOWS\SOUNDMAN.EXE
2007-11-09 16:55    57,344    --a------    C:\WINDOWS\ALCMTR.EXE
2007-11-09 16:55    40,448    --a------    C:\WINDOWS\system32\ChCfg.exe
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Skrivebord
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Skabeloner
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Printere
2007-11-09 16:51    <DIR>    dr-------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Menuen Start
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Lokale indstillinger
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Foretrukne
2007-11-09 16:51    <DIR>    d--------    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Dokumenter
2007-11-09 16:51    <DIR>    d--h-----    C:\Documents and Settings\Administrator.HEINE-YDGOPB45X\Andre computere
2007-11-09 15:03    36,484    --a------    C:\WINDOWS\system32\drivers\SMBios.sys
2007-11-08 19:21    <DIR>    d--------    C:\Documents and Settings\Administrator\Skabeloner
2007-11-08 19:21    <DIR>    d--------    C:\Documents and Settings\Administrator\Lokale indstillinger
2007-11-08 17:34    <DIR>    d--------    C:\Documents and Settings\heine\Application Data\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Programmer\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Programmer\Fælles filer\Nero
2007-11-08 17:30    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\Nero
2007-11-08 14:54    <DIR>    d--------    C:\Programmer\Microsoft SQL Server Compact Edition
2007-11-08 14:54    <DIR>    d--------    C:\Documents and Settings\heine\Contacts
2007-11-08 14:48    <DIR>    d--------    C:\Programmer\Windows Live
2007-11-08 14:48    <DIR>    d----c---    C:\Programmer\Fælles filer\WindowsLiveInstaller
2007-11-08 14:48    <DIR>    d--------    C:\Documents and Settings\All Users\Application Data\WLInstaller
2007-11-08 13:23    <DIR>    d--------    C:\WINDOWS\provisioning
2007-11-08 13:22    <DIR>    d--------    C:\WINDOWS\ServicePackFiles
2007-11-08 12:59    <DIR>    d--------    C:\Programmer\Winamp
2007-11-08 12:57    <DIR>    d--------    C:\Programmer\DVD Decrypter
2007-11-08 12:57    <DIR>    d--------    C:\Programmer\D-Tools
2007-11-08 12:31    <DIR>    d--------    C:\Programmer\Fælles filer\Python
2007-11-08 12:29    3,136    --a------    C:\WINDOWS\Ade001.bin
2007-11-08 12:28    <DIR>    d--------    C:\Programmer\Fælles filer\EPSON
2007-11-08 12:27    <DIR>    d--------    C:\Programmer\EPSON
2007-11-08 12:27    182    --a------    C:\WINDOWS\system32\EBPPORT.DAT
2007-11-08 12:23    <DIR>    d--------    C:\WINDOWS\ShellNew

.
((((((((((((((((((((((((((((((((((((((((  Find3M Report  ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-11-14 19:32    53,248    ----a-w    C:\WINDOWS\system32\spoolsv(2).exe
2007-11-14 19:32    51,200    ----a-w    C:\WINDOWS\system32\spoolsv(4).exe
2007-11-14 19:32    51,200    ----a-w    C:\WINDOWS\system32\spoolsv(3).exe
2007-11-14 19:32    47,104    ----a-w    C:\WINDOWS\system32\uwdf.exe
2007-11-14 19:32    328,704    ----a-w    C:\WINDOWS\system32\netsetup.exe
2007-11-14 19:32    171,549    ----a-w    C:\WINDOWS\system32\wjview.exe
2007-11-14 19:32    12,800    ----a-w    C:\WINDOWS\system32\svchost(4).exe
2007-11-14 19:32    12,800    ----a-w    C:\WINDOWS\system32\svchost(3).exe
2007-11-14 19:32    10,752    ----a-w    C:\WINDOWS\system32\spiisupd.exe
2007-11-14 19:31    52,224    ----a-w    C:\WINDOWS\system32\migpwd.exe
2007-11-14 19:31    483,328    ----a-w    C:\WINDOWS\system32\igfxcfg.exe
2007-11-14 19:31    46,592    ----a-w    C:\WINDOWS\system32\dxdllreg.exe
2007-11-14 19:31    172,060    ----a-w    C:\WINDOWS\system32\jview.exe
2007-11-14 19:31    151,552    ----a-w    C:\WINDOWS\system32\igfxdiag.exe
2007-11-14 19:31    14,878    ----a-w    C:\WINDOWS\system32\jdbgmgr.exe
2007-11-14 19:31    114,688    ----a-w    C:\WINDOWS\system32\igfxzoom.exe
2007-11-14 19:31    110,592    ----a-w    C:\WINDOWS\system32\igfxext.exe
2007-11-14 19:31    11,776    ----a-w    C:\WINDOWS\system32\lsass(4).exe
2007-11-14 19:31    11,776    ----a-w    C:\WINDOWS\system32\lsass(3).exe
2007-11-14 19:31    1,221,464    ----a-w    C:\WINDOWS\system32\IMMC.EXE
2007-11-14 19:30    49,182    ----a-w    C:\WINDOWS\system32\clspack.exe
2007-11-14 19:30    45,632    ----a-w    C:\WINDOWS\system32\cliconfg.exe
2007-11-14 19:30    13,312    ----a-w    C:\WINDOWS\system32\ctfmon(3).exe
2007-11-14 19:30    13,312    ----a-w    C:\WINDOWS\system32\ctfmon(2).exe
2007-11-14 19:29    29,696    ----a-w    C:\WINDOWS\system32\asr_pfu.exe
2007-11-14 19:24    8,704    ----a-w    C:\WINDOWS\PCHealth\HelpCtr\Binaries\HscUpd.exe
2007-11-14 19:23    1,005,056    ----a-w    C:\WINDOWS\explorer(3).exe
2007-11-14 19:23    1,005,056    ----a-w    C:\WINDOWS\explorer(2).exe
2007-11-14 18:20    61,952    ----a-w    C:\WINDOWS\system32\Hdaudpropshortcut.exe
2007-11-09 16:40    ---------    d--h--w    C:\Programmer\InstallShield Installation Information
2007-11-09 16:21    ---------    d-----w    C:\Programmer\microsoft frontpage
2007-11-09 16:06    ---------    d-----w    C:\Programmer\Intel
2007-11-08 09:53    ---------    d-----w    C:\Programmer\Onlinetjenester
2007-11-08 09:53    ---------    d-----w    C:\Programmer\Fælles filer\Tjenester
2007-11-08 09:52    ---------    d-----w    C:\Programmer\Fælles filer\MSSoap
2007-11-08 09:47    ---------    d-----w    C:\Programmer\Fælles filer\SpeechEngines
2007-11-08 09:47    ---------    d-----w    C:\Programmer\Fælles filer\ODBC
2007-09-06 11:09    801,144    ----a-w    C:\WINDOWS\system32\aswBoot.exe
2007-09-06 11:00    95,608    ----a-w    C:\WINDOWS\system32\AvastSS.scr
.

(((((((((((((((((((((((((((((  snapshot@2007-11-13_17.59.38,79  )))))))))))))))))))))))))))))))))))))))))
.
+ 2002-09-09 14:12:46    2,086,400    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msi.dll
+ 2002-09-09 14:13:42    64,512    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msiexec.exe
+ 2002-09-09 14:12:46    305,664    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msihnd.dll
+ 2001-12-04 01:33:36    847,872    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msimsg.dll
+ 2001-12-04 01:33:36    39,936    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msisip.dll
+ 2005-05-04 13:45:26    211,168    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe
+ 2005-05-04 13:45:26    383,712    -c----w    C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\updspapi.dll
- 2001-12-04 01:31:58    359,380    -c----w    C:\WINDOWS\$NtServicePackUninstall$\accwiz.exe
+ 2007-11-14 19:20:58    181,760    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\accwiz.exe
- 2001-12-04 01:31:58    181,724    -c----w    C:\WINDOWS\$NtServicePackUninstall$\actmovie.exe
+ 2007-11-14 19:20:58    4,096    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\actmovie.exe
- 2002-05-14 11:08:54    198,106    -c----w    C:\WINDOWS\$NtServicePackUninstall$\admin.exe
+ 2007-11-14 19:20:58    16,439    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\admin.exe
- 2001-12-04 01:31:58    412,632    -c----w    C:\WINDOWS\$NtServicePackUninstall$\agentsvr.exe
+ 2007-11-14 19:20:59    235,008    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\agentsvr.exe
- 2002-09-09 14:13:26    269,268    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ahui.exe
+ 2007-11-14 19:20:59    91,648    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ahui.exe
- 2002-09-09 14:13:26    219,612    -c----w    C:\WINDOWS\$NtServicePackUninstall$\alg.exe
+ 2007-11-14 19:21:00    41,984    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\alg.exe
- 2001-12-04 01:32:02    204,766    -c----w    C:\WINDOWS\$NtServicePackUninstall$\asr_fmt.exe
+ 2007-11-14 19:21:00    27,136    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\asr_fmt.exe
- 2002-09-09 14:13:26    207,330    -c----w    C:\WINDOWS\$NtServicePackUninstall$\asr_pfu.exe
+ 2007-11-14 19:21:01    29,696    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\asr_pfu.exe
- 2002-09-09 14:13:26    200,154    -c----w    C:\WINDOWS\$NtServicePackUninstall$\at.exe
+ 2007-11-14 19:21:01    22,528    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\at.exe
- 2001-12-04 01:32:02    188,384    -c----w    C:\WINDOWS\$NtServicePackUninstall$\atmadm.exe
+ 2007-11-14 19:21:01    10,752    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\atmadm.exe
- 2002-05-14 11:08:54    198,106    -c----w    C:\WINDOWS\$NtServicePackUninstall$\author.exe
+ 2007-11-14 19:21:02    16,439    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\author.exe
- 2002-05-14 11:08:54    370,142    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cfgwiz.exe
+ 2007-11-14 19:21:04    188,480    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cfgwiz.exe
- 2001-12-04 01:32:10    222,686    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cipher.exe
+ 2007-11-14 19:21:04    45,056    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cipher.exe
- 2001-12-04 01:32:10    182,742    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cisvc.exe
+ 2007-11-14 19:21:05    5,120    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cisvc.exe
- 2001-12-04 01:32:10    239,584    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cleanmgr.exe
+ 2007-11-14 19:21:05    61,952    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cleanmgr.exe
- 2001-12-04 01:32:10    226,782    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cliconfg.exe
+ 2007-11-14 19:21:05    45,632    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cliconfg.exe
- 2002-09-09 14:13:30    276,950    -c----w    C:\WINDOWS\$NtServicePackUninstall$\clipbrd.exe
+ 2007-11-14 19:21:06    99,328    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\clipbrd.exe
- 2001-12-04 01:32:10    208,348    -c----w    C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe
+ 2007-11-14 19:21:06    30,720    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\clipsrv.exe
- 2001-12-04 01:32:10    555,998    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cmd.exe
+ 2007-11-14 19:21:06    378,368    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cmd.exe
- 2002-09-09 14:13:30    219,104    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cmdl32.exe
+ 2007-11-14 19:21:06    41,472    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cmdl32.exe
- 2001-12-04 01:32:10    213,472    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cmmon32.exe
+ 2007-11-14 19:21:07    35,840    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cmmon32.exe
- 2001-12-04 01:32:10    232,922    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cmstp.exe
+ 2007-11-14 19:21:07    55,296    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cmstp.exe
- 2001-12-04 01:32:12    185,818    -c----w    C:\WINDOWS\$NtServicePackUninstall$\comrepl.exe
+ 2007-11-14 19:21:08    8,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\comrepl.exe
- 2002-09-09 14:13:30    1,177,042    -c----w    C:\WINDOWS\$NtServicePackUninstall$\conf.exe
+ 2007-11-14 19:21:08    999,424    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\conf.exe
- 2002-09-09 14:13:30    202,204    -c----w    C:\WINDOWS\$NtServicePackUninstall$\conime.exe
+ 2007-11-14 19:21:09    24,576    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\conime.exe
- 2001-12-04 01:32:14    284,118    -c----w    C:\WINDOWS\$NtServicePackUninstall$\cscript.exe
+ 2007-11-14 19:21:09    102,450    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\cscript.exe
- 2002-09-09 14:13:30    190,930    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe
+ 2007-11-14 19:21:10    13,312    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe
- 2001-12-04 01:32:18    217,048    -c----w    C:\WINDOWS\$NtServicePackUninstall$\davcdata.exe
+ 2007-11-14 19:21:11    39,424    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\davcdata.exe
- 2001-12-04 01:32:18    205,276    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ddeshare.exe
+ 2007-11-14 19:21:11    27,648    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ddeshare.exe
- 2002-09-09 14:13:30    248,286    -c----w    C:\WINDOWS\$NtServicePackUninstall$\defrag.exe
+ 2007-11-14 19:21:11    70,656    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\defrag.exe
- 2002-09-09 14:13:30    253,912    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dfrgfat.exe
+ 2007-11-14 19:21:12    76,288    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dfrgfat.exe
- 2002-09-09 14:13:30    276,950    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dfrgntfs.exe
+ 2007-11-14 19:21:12    99,328    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dfrgntfs.exe
- 2001-12-04 01:32:20    703,454    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dialer.exe
+ 2007-11-14 19:21:13    525,824    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dialer.exe
- 2001-12-04 01:32:20    256,986    -c----w    C:\WINDOWS\$NtServicePackUninstall$\diantz.exe
+ 2007-11-14 19:21:13    79,360    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\diantz.exe
- 2001-12-04 01:32:20    323,544    -c----w    C:\WINDOWS\$NtServicePackUninstall$\diskpart.exe
+ 2007-11-14 19:21:13    145,920    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\diskpart.exe
- 2002-09-09 14:13:30    472,534    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dlimport.exe
+ 2007-11-14 19:21:14    294,912    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dlimport.exe
- 2001-12-04 01:32:20    182,236    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe
+ 2007-11-14 19:21:14    4,608    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dllhost.exe
- 2001-12-04 01:32:20    382,934    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe
+ 2007-11-14 19:21:14    205,312    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dmadmin.exe
- 2001-12-04 01:32:22    191,962    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dmremote.exe
+ 2007-11-14 19:21:14    14,336    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dmremote.exe
- 2002-12-11 23:14:32    205,782    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dplaysvr.exe
+ 2007-11-14 19:21:15    28,160    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dplaysvr.exe
- 2002-12-11 23:14:32    194,522    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dpnsvr.exe
+ 2007-11-14 19:21:15    16,896    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dpnsvr.exe
- 2002-12-11 23:14:32    258,524    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dpvsetup.exe
+ 2007-11-14 19:21:16    80,896    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dpvsetup.exe
- 2002-09-09 14:13:32    186,840    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dumprep.exe
+ 2007-11-14 19:21:16    9,216    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dumprep.exe
- 2001-12-04 01:32:44    193,494    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dvdupgrd.exe
+ 2007-11-14 19:21:17    15,872    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dvdupgrd.exe
- 2002-09-09 14:13:32    357,848    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe
+ 2007-11-14 19:21:17    180,224    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dwwin.exe
- 2004-07-09 03:27:28    1,152,468    -c----w    C:\WINDOWS\$NtServicePackUninstall$\dxdiag.exe
+ 2007-11-14 19:21:18    974,848    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\dxdiag.exe
- 2002-09-09 14:13:32    357,332    -c----w    C:\WINDOWS\$NtServicePackUninstall$\eudcedit.exe
+ 2007-11-14 19:21:20    179,712    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\eudcedit.exe
- 2001-12-04 01:32:46    226,268    -c----w    C:\WINDOWS\$NtServicePackUninstall$\evcreate.exe
+ 2007-11-14 19:21:21    48,640    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\evcreate.exe
- 2001-12-04 01:32:46    226,274    -c----w    C:\WINDOWS\$NtServicePackUninstall$\eventcreate.exe
+ 2007-11-14 19:21:21    48,640    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\eventcreate.exe
- 2001-12-04 01:32:46    201,694    -c----w    C:\WINDOWS\$NtServicePackUninstall$\evntcmd.exe
+ 2007-11-14 19:21:21    24,064    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\evntcmd.exe
- 2001-12-04 01:32:46    263,134    -c----w    C:\WINDOWS\$NtServicePackUninstall$\evntwin.exe
+ 2007-11-14 19:21:21    85,504    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\evntwin.exe
- 2002-09-09 14:13:34    1,182,686    -c----w    C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
+ 2007-11-14 19:21:22    1,005,056    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
- 2001-12-04 01:32:48    218,590    -c----w    C:\WINDOWS\$NtServicePackUninstall$\extrac32.exe
+ 2007-11-14 19:21:22    40,960    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\extrac32.exe
- 2001-12-04 01:32:48    203,230    -c----w    C:\WINDOWS\$NtServicePackUninstall$\findstr.exe
+ 2007-11-14 19:21:22    25,600    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\findstr.exe
- 2002-09-09 14:13:34    197,596    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fontview.exe
+ 2007-11-14 19:21:23    19,968    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fontview.exe
- 2002-05-14 11:08:54    206,304    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fpadmcgi.exe
+ 2007-11-14 19:21:23    24,632    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fpadmcgi.exe
- 2002-05-14 11:08:54    370,130    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fpcount.exe
+ 2007-11-14 19:21:23    188,494    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fpcount.exe
- 2002-05-14 11:08:54    202,200    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fpremadm.exe
+ 2007-11-14 19:21:24    20,538    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fpremadm.exe
- 1999-03-19 14:07:48    198,108    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fpsrvadm.exe
+ 2007-11-14 19:21:24    16,449    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fpsrvadm.exe
- 1999-03-19 13:34:52    214,492    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fpsrvwin.exe
+ 2007-11-14 19:21:24    32,833    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fpsrvwin.exe
- 2002-09-09 14:13:34    219,608    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ftp.exe
+ 2007-11-14 19:21:24    41,984    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ftp.exe
- 2002-09-09 14:13:34    307,666    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fxsclnt.exe
+ 2007-11-14 19:21:25    130,048    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fxsclnt.exe
- 2002-09-09 14:13:34    396,762    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fxscover.exe
+ 2007-11-14 19:21:25    219,136    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fxscover.exe
- 2002-09-09 14:13:36    427,992    -c----w    C:\WINDOWS\$NtServicePackUninstall$\fxssvc.exe
+ 2007-11-14 19:21:25    250,368    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\fxssvc.exe
- 2002-09-09 14:13:36    292,826    -c----w    C:\WINDOWS\$NtServicePackUninstall$\gpresult.exe
+ 2007-11-14 19:21:26    115,200    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\gpresult.exe
- 2002-09-09 14:13:36    292,832    -c----w    C:\WINDOWS\$NtServicePackUninstall$\gprslt.exe
+ 2007-11-14 19:21:26    115,200    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\gprslt.exe
- 2001-12-04 01:32:56    215,514    -c----w    C:\WINDOWS\$NtServicePackUninstall$\grpconv.exe
+ 2007-11-14 19:21:26    37,888    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\grpconv.exe
- 2002-09-09 14:13:36    920,028    -c----w    C:\WINDOWS\$NtServicePackUninstall$\helpctr.exe
+ 2007-11-14 19:21:27    742,400    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\helpctr.exe
- 2002-09-09 14:13:36    881,108    -c----w    C:\WINDOWS\$NtServicePackUninstall$\helpsvc.exe
+ 2007-11-14 19:21:27    703,488    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\helpsvc.exe
- 2002-09-09 14:13:36    188,380    -c----w    C:\WINDOWS\$NtServicePackUninstall$\hh.exe
+ 2007-11-14 19:21:27    10,752    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\hh.exe
- 2002-09-09 14:13:36    186,332    -c----w    C:\WINDOWS\$NtServicePackUninstall$\hscupd.exe
+ 2007-11-14 19:21:28    8,704    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\hscupd.exe
- 2002-09-09 14:13:38    387,546    -c----w    C:\WINDOWS\$NtServicePackUninstall$\icwconn1.exe
+ 2007-11-14 19:21:28    209,920    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\icwconn1.exe
- 2001-12-04 01:33:02    255,448    -c----w    C:\WINDOWS\$NtServicePackUninstall$\icwconn2.exe
+ 2007-11-14 19:21:29    77,824    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\icwconn2.exe
- 2001-12-04 01:33:02    202,194    -c----w    C:\WINDOWS\$NtServicePackUninstall$\icwrmind.exe
+ 2007-11-14 19:21:29    24,576    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\icwrmind.exe
- 2002-09-09 14:13:38    206,294    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ie4uinit.exe
+ 2007-11-14 19:21:29    28,672    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ie4uinit.exe
- 2002-09-09 14:13:38    268,756    -c----w    C:\WINDOWS\$NtServicePackUninstall$\iexplore.exe
+ 2007-11-14 19:21:30    91,136    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\iexplore.exe
- 2001-12-04 01:33:04    277,464    -c----w    C:\WINDOWS\$NtServicePackUninstall$\iexpress.exe
+ 2007-11-14 19:21:30    99,840    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\iexpress.exe
- 2001-12-04 01:33:04    205,790    -c----w    C:\WINDOWS\$NtServicePackUninstall$\iisrstas.exe
+ 2007-11-14 19:21:30    28,160    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\iisrstas.exe
- 2002-09-09 14:13:38    301,532    -c----w    C:\WINDOWS\$NtServicePackUninstall$\imapi.exe
+ 2007-11-14 19:21:31    123,904    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\imapi.exe
- 2001-12-04 01:33:06    191,452    -c----w    C:\WINDOWS\$NtServicePackUninstall$\inetin51.exe
+ 2007-11-14 19:21:32    13,824    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\inetin51.exe
- 2001-12-04 01:33:06    198,106    -c----w    C:\WINDOWS\$NtServicePackUninstall$\inetwiz.exe
+ 2007-11-14 19:21:33    20,480    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\inetwiz.exe
- 2002-09-09 14:13:38    230,866    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ipconfig.exe
+ 2007-11-14 19:21:33    53,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ipconfig.exe
- 2002-09-09 14:13:38    240,090    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ipv6.exe
+ 2007-11-14 19:21:34    62,464    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ipv6.exe
- 2001-12-04 01:33:08    199,634    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ipxroute.exe
+ 2007-11-14 19:21:34    22,016    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ipxroute.exe
- 2001-12-04 01:33:16    245,726    -c----w    C:\WINDOWS\$NtServicePackUninstall$\locator.exe
+ 2007-11-14 19:21:36    68,096    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\locator.exe
- 2001-12-04 01:33:16    233,944    -c----w    C:\WINDOWS\$NtServicePackUninstall$\logman.exe
+ 2007-11-14 19:21:36    56,320    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\logman.exe
- 2002-09-09 14:13:58    397,278    -c----w    C:\WINDOWS\$NtServicePackUninstall$\logon.scr
+ 2007-11-14 19:21:36    219,648    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\logon.scr
- 2002-09-09 14:13:40    682,458    -c----w    C:\WINDOWS\$NtServicePackUninstall$\logonui.exe
+ 2007-11-14 19:21:37    504,832    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\logonui.exe
- 2002-09-09 14:13:40    189,404    -c----w    C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
+ 2007-11-14 19:21:37    11,776    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
- 2001-12-04 01:33:18    245,724    -c----w    C:\WINDOWS\$NtServicePackUninstall$\magnify.exe
+ 2007-11-14 19:21:38    68,096    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\magnify.exe
- 2001-12-04 01:33:18    256,992    -c----w    C:\WINDOWS\$NtServicePackUninstall$\makecab.exe
+ 2007-11-14 19:21:38    79,360    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\makecab.exe
- 2002-09-09 14:13:40    276,448    -c----w    C:\WINDOWS\$NtServicePackUninstall$\migload.exe
+ 2007-11-14 19:21:39    98,816    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\migload.exe
- 2001-12-04 01:33:24    184,284    -c----w    C:\WINDOWS\$NtServicePackUninstall$\migregdb.exe
+ 2007-11-14 19:21:39    6,656    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\migregdb.exe
- 2002-09-09 14:13:40    409,568    -c----w    C:\WINDOWS\$NtServicePackUninstall$\migwiz.exe
+ 2007-11-14 19:21:40    231,936    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\migwiz.exe
- 2002-09-09 14:13:40    405,976    -c----w    C:\WINDOWS\$NtServicePackUninstall$\migwiz_a.exe
+ 2007-11-14 19:21:40    228,352    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\migwiz_a.exe
- 2001-12-04 01:33:26    951,766    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mmc.exe
+ 2007-11-14 19:21:40    774,144    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mmc.exe
- 2001-12-04 01:33:26    210,398    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mnmsrvc.exe
+ 2007-11-14 19:21:41    32,768    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mnmsrvc.exe
- 2001-12-04 01:33:26    313,814    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mobsync.exe
+ 2007-11-14 19:21:41    136,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mobsync.exe
- 2002-09-09 14:13:40    193,496    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mofcomp.exe
+ 2007-11-14 19:21:41    15,872    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mofcomp.exe
- 2002-09-09 14:13:42    988,630    -c----w    C:\WINDOWS\$NtServicePackUninstall$\moviemk.exe
+ 2007-11-14 19:21:42    806,969    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\moviemk.exe
- 2002-09-09 14:13:42    294,876    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mplay32.exe
+ 2007-11-14 19:21:43    117,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mplay32.exe
- 2001-12-04 01:33:28    195,038    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mqbkup.exe
+ 2007-11-14 19:21:43    17,408    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mqbkup.exe
- 2001-12-04 01:33:28    275,422    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mqtgsvc.exe
+ 2007-11-14 19:21:43    97,792    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mqtgsvc.exe
- 2002-09-09 14:13:42    323,546    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msconfig.exe
+ 2007-11-14 19:21:45    145,920    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msconfig.exe
- 2001-12-04 01:33:34    183,770    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msdtc.exe
+ 2007-11-14 19:21:46    6,144    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msdtc.exe
- 2001-12-04 01:33:34    201,698    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mshta.exe
+ 2007-11-14 19:21:47    24,064    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mshta.exe
- 2002-09-09 14:13:42    242,140    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msiexec.exe
+ 2007-11-14 19:21:48    64,512    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msiexec.exe
- 2002-09-09 14:13:42    234,966    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msimn.exe
+ 2007-11-14 19:21:49    57,344    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msimn.exe
- 2001-12-04 01:33:36    212,442    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msiregmv.exe
+ 2007-11-14 19:21:49    34,816    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msiregmv.exe
- 2002-08-20 14:08:38    1,693,142    -c----w    C:\WINDOWS\$NtServicePackUninstall$\msmsgs.exe
+ 2007-11-14 19:21:50    1,511,453    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\msmsgs.exe
- 2002-09-09 14:13:44    519,126    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mspaint.exe
+ 2007-11-14 19:21:51    341,504    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mspaint.exe
- 2002-09-09 14:13:44    187,350    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mstinit.exe
+ 2007-11-14 19:21:52    9,728    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mstinit.exe
- 2002-09-09 13:44:06    567,252    -c----w    C:\WINDOWS\$NtServicePackUninstall$\mstsc.exe
+ 2007-11-14 19:21:53    389,632    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\mstsc.exe
- 2001-12-04 01:33:44    229,344    -c----w    C:\WINDOWS\$NtServicePackUninstall$\narrator.exe
+ 2007-11-14 19:21:54    51,712    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\narrator.exe
- 2001-12-04 01:33:44    181,726    -c----w    C:\WINDOWS\$NtServicePackUninstall$\nddeapir.exe
+ 2007-11-14 19:21:54    4,096    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\nddeapir.exe
- 2002-09-09 14:13:44    217,058    -c----w    C:\WINDOWS\$NtServicePackUninstall$\net.exe
+ 2007-11-14 19:21:55    39,424    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\net.exe
- 2002-09-09 14:13:44    292,832    -c----w    C:\WINDOWS\$NtServicePackUninstall$\net1.exe
+ 2007-11-14 19:21:55    115,200    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\net1.exe
- 2002-09-09 14:13:44    285,146    -c----w    C:\WINDOWS\$NtServicePackUninstall$\netdde.exe
+ 2007-11-14 19:21:55    107,520    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\netdde.exe
- 2002-09-09 14:16:24    506,330    -c----w    C:\WINDOWS\$NtServicePackUninstall$\netsetup.exe
+ 2007-11-14 19:21:56    328,704    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\netsetup.exe
- 2001-12-04 01:33:48    261,590    -c----w    C:\WINDOWS\$NtServicePackUninstall$\netsh.exe
+ 2007-11-14 19:21:56    83,968    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\netsh.exe
- 2001-12-04 01:33:50    208,852    -c----w    C:\WINDOWS\$NtServicePackUninstall$\netstat.exe
+ 2007-11-14 19:21:57    31,232    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\netstat.exe
- 2001-12-04 01:33:52    244,184    -c----w    C:\WINDOWS\$NtServicePackUninstall$\notepad.exe
+ 2007-11-14 19:21:57    66,560    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\notepad.exe
- 2002-09-09 14:13:44    191,450    -c----w    C:\WINDOWS\$NtServicePackUninstall$\nppagent.exe
+ 2007-11-14 19:21:57    13,824    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\nppagent.exe
- 2001-12-04 01:33:52    249,304    -c----w    C:\WINDOWS\$NtServicePackUninstall$\nslookup.exe
+ 2007-11-14 19:21:58    71,680    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\nslookup.exe
- 2001-12-04 01:33:54    1,327,576    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ntbackup.exe
+ 2007-11-14 19:21:58    1,149,952    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ntbackup.exe
- 2002-09-09 14:13:46    573,402    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ntvdm.exe
+ 2007-11-14 19:22:00    395,776    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ntvdm.exe
- 2002-09-09 14:13:46    210,394    -c----w    C:\WINDOWS\$NtServicePackUninstall$\odbcad32.exe
+ 2007-11-14 19:22:01    32,768    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\odbcad32.exe
- 2002-09-09 14:13:46    230,870    -c----w    C:\WINDOWS\$NtServicePackUninstall$\odbcconf.exe
+ 2007-11-14 19:22:01    53,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\odbcconf.exe
- 2001-12-04 01:34:02    233,436    -c----w    C:\WINDOWS\$NtServicePackUninstall$\oemig50.exe
+ 2007-11-14 19:22:01    55,808    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\oemig50.exe
- 2002-09-09 14:13:46    227,800    -c----w    C:\WINDOWS\$NtServicePackUninstall$\oobebaln.exe
+ 2007-11-14 19:22:02    50,176    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\oobebaln.exe
- 2001-12-04 01:34:04    241,628    -c----w    C:\WINDOWS\$NtServicePackUninstall$\openfiles.exe
+ 2007-11-14 19:22:02    64,000    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\openfiles.exe
- 2001-12-04 01:34:04    241,628    -c----w    C:\WINDOWS\$NtServicePackUninstall$\opnfiles.exe
+ 2007-11-14 19:22:03    64,000    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\opnfiles.exe
- 2002-09-09 14:13:46    390,110    -c----w    C:\WINDOWS\$NtServicePackUninstall$\osk.exe
+ 2007-11-14 19:22:03    212,480    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\osk.exe
- 2002-09-09 14:13:46    231,386    -c----w    C:\WINDOWS\$NtServicePackUninstall$\packager.exe
+ 2007-11-14 19:22:03    53,760    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\packager.exe
- 2001-12-04 01:34:08    191,958    -c----w    C:\WINDOWS\$NtServicePackUninstall$\perfmon.exe
+ 2007-11-14 19:22:03    14,336    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\perfmon.exe
- 2001-12-04 01:34:08    451,548    -c----w    C:\WINDOWS\$NtServicePackUninstall$\pinball.exe
+ 2007-11-14 19:22:04    273,920    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\pinball.exe
- 2002-09-09 14:13:46    194,526    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ping.exe
+ 2007-11-14 19:22:04    16,896    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ping.exe
- 2001-12-04 01:34:10    383,956    -c----w    C:\WINDOWS\$NtServicePackUninstall$\progman.exe
+ 2007-11-14 19:22:04    206,336    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\progman.exe
- 2001-12-04 01:34:10    223,196    -c----w    C:\WINDOWS\$NtServicePackUninstall$\proquota.exe
+ 2007-11-14 19:22:05    45,568    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\proquota.exe
- 2001-12-04 01:34:10    200,664    -c----w    C:\WINDOWS\$NtServicePackUninstall$\proxycfg.exe
+ 2007-11-14 19:22:05    23,040    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\proxycfg.exe
- 2001-12-04 01:34:16    196,566    -c----w    C:\WINDOWS\$NtServicePackUninstall$\qprocess.exe
+ 2007-11-14 19:22:06    18,944    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\qprocess.exe
- 2001-12-04 01:34:18    231,904    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rasphone.exe
+ 2007-11-14 19:22:07    54,272    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rasphone.exe
- 2002-09-09 14:13:46    211,936    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rcimlby.exe
+ 2007-11-14 19:22:07    34,304    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rcimlby.exe
- 2001-12-04 01:34:18    198,108    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rcp.exe
+ 2007-11-14 19:22:07    20,480    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rcp.exe
- 2002-09-09 14:13:46    221,654    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rdpclip.exe
+ 2007-11-14 19:22:07    44,032    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rdpclip.exe
- 2002-09-09 14:13:46    189,910    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rdsaddin.exe
+ 2007-11-14 19:22:08    12,288    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rdsaddin.exe
- 2001-12-04 01:34:18    239,580    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rdshost.exe
+ 2007-11-14 19:22:08    61,952    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rdshost.exe
- 2002-09-09 14:13:46    229,854    -c----w    C:\WINDOWS\$NtServicePackUninstall$\reg.exe
+ 2007-11-14 19:22:08    52,224    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\reg.exe
- 2002-09-09 14:13:46    315,872    -c----w    C:\WINDOWS\$NtServicePackUninstall$\regedit.exe
+ 2007-11-14 19:22:12    138,240    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\regedit.exe
- 2001-12-04 01:34:20    187,352    -c----w    C:\WINDOWS\$NtServicePackUninstall$\regsvr32.exe
+ 2007-11-14 19:22:12    9,728    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\regsvr32.exe
- 2001-12-04 01:34:20    189,916    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rexec.exe
+ 2007-11-14 19:22:12    12,288    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rexec.exe
- 2001-12-04 01:34:22    191,448    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rsh.exe
+ 2007-11-14 19:22:13    13,824    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rsh.exe
- 2002-09-09 14:13:46    281,566    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rsnotify.exe
+ 2007-11-14 19:22:13    103,936    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rsnotify.exe
- 2002-09-09 14:13:46    549,854    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rstrui.exe
+ 2007-11-14 19:22:13    372,224    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rstrui.exe
- 2002-09-09 14:13:48    252,384    -c----w    C:\WINDOWS\$NtServicePackUninstall$\rtcshare.exe
+ 2007-11-14 19:22:13    74,752    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\rtcshare.exe
- 2002-09-09 14:13:48    190,428    -c----w    C:\WINDOWS\$NtServicePackUninstall$\runonce.exe
+ 2007-11-14 19:22:14    12,800    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\runonce.exe
- 2002-09-09 14:13:48    197,086    -c----w    C:\WINDOWS\$NtServicePackUninstall$\savedump.exe
+ 2007-11-14 19:22:14    19,456    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\savedump.exe
- 2001-12-04 01:34:24    272,344    -c----w    C:\WINDOWS\$NtServicePackUninstall$\scardsvr.exe
+ 2007-11-14 19:22:14    94,720    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\scardsvr.exe
- 2002-09-09 14:13:48    294,870    -c----w    C:\WINDOWS\$NtServicePackUninstall$\schtasks.exe
+ 2007-11-14 19:22:15    117,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\schtasks.exe
- 2001-12-04 01:34:24    211,416    -c----w    C:\WINDOWS\$NtServicePackUninstall$\scrcons.exe
+ 2007-11-14 19:22:15    33,792    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\scrcons.exe
- 2002-09-09 14:13:58    185,820    -c----w    C:\WINDOWS\$NtServicePackUninstall$\scrnsave.scr
+ 2007-11-14 19:22:15    8,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\scrnsave.scr
- 2002-09-09 14:13:48    294,874    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sctasks.exe
+ 2007-11-14 19:22:16    117,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sctasks.exe
- 2002-09-09 14:13:48    249,304    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sdbinst.exe
+ 2007-11-14 19:22:16    71,680    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sdbinst.exe
- 2001-12-04 01:34:26    194,522    -c----w    C:\WINDOWS\$NtServicePackUninstall$\secedit.exe
+ 2007-11-14 19:22:16    16,896    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\secedit.exe
- 2001-12-04 01:34:26    279,006    -c----w    C:\WINDOWS\$NtServicePackUninstall$\services.exe
+ 2007-11-14 19:22:16    101,376    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\services.exe
- 2002-09-09 14:13:48    307,170    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sessmgr.exe
+ 2007-11-14 19:22:16    129,536    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sessmgr.exe
- 2001-12-04 01:34:26    206,808    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sethc.exe
+ 2007-11-14 19:22:17    29,184    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sethc.exe
- 2002-09-09 14:13:48    198,620    -c----w    C:\WINDOWS\$NtServicePackUninstall$\setup.exe
+ 2007-11-14 19:22:17    20,992    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\setup.exe
- 2002-09-09 14:13:48    398,804    -c----w    C:\WINDOWS\$NtServicePackUninstall$\setup_wm.exe
+ 2007-11-14 19:22:17    221,184    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\setup_wm.exe
- 2002-09-09 14:13:48    245,210    -c----w    C:\WINDOWS\$NtServicePackUninstall$\setup50.exe
+ 2007-11-14 19:22:17    67,584    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\setup50.exe
- 2002-09-09 14:13:48    210,900    -c----w    C:\WINDOWS\$NtServicePackUninstall$\shmgrate.exe
+ 2007-11-14 19:22:19    33,280    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\shmgrate.exe
- 2001-12-04 01:34:30    247,262    -c----w    C:\WINDOWS\$NtServicePackUninstall$\shrpubw.exe
+ 2007-11-14 19:22:19    69,632    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\shrpubw.exe
- 2002-05-14 11:08:54    198,108    -c----w    C:\WINDOWS\$NtServicePackUninstall$\shtml.exe
+ 2007-11-14 19:22:19    16,437    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\shtml.exe
- 2001-12-04 01:34:30    196,054    -c----w    C:\WINDOWS\$NtServicePackUninstall$\shutdown.exe
+ 2007-11-14 19:22:19    18,432    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\shutdown.exe
- 2002-09-09 14:13:48    243,672    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sigverif.exe
+ 2007-11-14 19:22:20    66,048    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sigverif.exe
- 2002-09-09 14:13:48    201,694    -c----w    C:\WINDOWS\$NtServicePackUninstall$\skeys.exe
+ 2007-11-14 19:22:20    24,064    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\skeys.exe
- 2002-09-09 14:13:48    403,926    -c----w    C:\WINDOWS\$NtServicePackUninstall$\smi2smir.exe
+ 2007-11-14 19:22:20    226,304    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\smi2smir.exe
- 2002-09-09 14:13:48    261,604    -c----w    C:\WINDOWS\$NtServicePackUninstall$\smlogsvc.exe
+ 2007-11-14 19:22:20    83,968    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\smlogsvc.exe
- 2001-12-04 01:34:32    302,040    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sndrec32.exe
+ 2007-11-14 19:22:21    124,416    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sndrec32.exe
- 2002-09-09 14:13:48    207,318    -c----w    C:\WINDOWS\$NtServicePackUninstall$\snmp.exe
+ 2007-11-14 19:22:21    29,696    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\snmp.exe
- 2001-12-04 01:34:32    185,818    -c----w    C:\WINDOWS\$NtServicePackUninstall$\snmptrap.exe
+ 2007-11-14 19:22:21    8,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\snmptrap.exe
- 2002-09-09 14:13:50    711,642    -c----w    C:\WINDOWS\$NtServicePackUninstall$\spider.exe
+ 2007-11-14 19:22:22    534,016    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\spider.exe
- 2002-08-29 01:48:14    188,384    -c----w    C:\WINDOWS\$NtServicePackUninstall$\spiisupd.exe
+ 2007-11-14 19:22:22    10,752    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\spiisupd.exe
- 2001-12-04 01:34:36    228,826    -c----w    C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe
+ 2007-11-14 19:22:22    51,200    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\spoolsv.exe
- 2004-08-03 21:42:24    349,142    -c----w    C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
+ 2007-11-14 19:22:22    171,520    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
- 2002-09-09 14:13:58    845,280    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ss3dfo.scr
+ 2007-11-14 19:22:23    667,648    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ss3dfo.scr
- 2002-09-09 14:13:58    196,576    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssbezier.scr
+ 2007-11-14 19:22:24    18,944    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssbezier.scr
- 2002-09-09 14:13:58    542,164    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssflwbox.scr
+ 2007-11-14 19:22:24    364,544    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssflwbox.scr
- 2002-09-09 14:14:00    197,090    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssmarque.scr
+ 2007-11-14 19:22:24    19,456    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssmarque.scr
- 2001-12-04 01:34:38    220,630    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssmypics.scr
+ 2007-11-14 19:22:24    43,008    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssmypics.scr
- 2002-09-09 14:14:00    195,030    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssmyst.scr
+ 2007-11-14 19:22:24    17,408    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssmyst.scr
- 2002-09-09 14:14:00    746,974    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sspipes.scr
+ 2007-11-14 19:22:25    569,344    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sspipes.scr
- 2002-09-09 14:14:00    190,942    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ssstars.scr
+ 2007-11-14 19:22:25    13,312    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ssstars.scr
- 2002-09-09 14:14:00    816,598    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sstext3d.scr
+ 2007-11-14 19:22:25    638,976    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sstext3d.scr
- 2001-12-04 01:34:38    198,616    -c----w    C:\WINDOWS\$NtServicePackUninstall$\stimon.exe
+ 2007-11-14 19:22:25    20,992    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\stimon.exe
- 2001-12-04 01:34:40    190,430    -c----w    C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
+ 2007-11-14 19:22:26    12,800    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
- 2001-12-04 01:34:40    282,078    -c----w    C:\WINDOWS\$NtServicePackUninstall$\sysocmgr.exe
+ 2007-11-14 19:22:27    104,448    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\sysocmgr.exe
- 2002-09-09 14:13:50    307,158    -c----w    C:\WINDOWS\$NtServicePackUninstall$\taskmgr.exe
+ 2007-11-14 19:22:28    129,536    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\taskmgr.exe
- 2002-05-14 11:08:54    214,490    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tcptest.exe
+ 2007-11-14 19:22:28    32,827    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tcptest.exe
- 2002-09-09 14:13:50    249,814    -c----w    C:\WINDOWS\$NtServicePackUninstall$\telnet.exe
+ 2007-11-14 19:22:28    72,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\telnet.exe
- 2002-09-09 14:13:50    237,022    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tlntadmn.exe
+ 2007-11-14 19:22:29    59,392    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tlntadmn.exe
- 2002-09-09 14:13:50    252,374    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tlntsess.exe
+ 2007-11-14 19:22:29    74,752    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tlntsess.exe
- 2002-09-09 14:13:50    246,236    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tlntsvr.exe
+ 2007-11-14 19:22:29    68,608    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tlntsvr.exe
- 2001-12-04 01:34:46    524,248    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tourstart.exe
+ 2007-11-14 19:22:29    346,624    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tourstart.exe
- 2001-12-04 01:34:46    524,256    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tourstrt.exe
+ 2007-11-14 19:22:29    346,624    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tourstrt.exe
- 2002-09-09 14:13:52    409,558    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tracerpt.exe
+ 2007-11-14 19:22:30    231,936    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tracerpt.exe
- 2002-09-09 14:13:52    188,882    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tracert.exe
+ 2007-11-14 19:22:30    11,264    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tracert.exe
- 2002-09-09 13:44:16    218,586    -c----w    C:\WINDOWS\$NtServicePackUninstall$\tscupgrd.exe
+ 2007-11-14 19:22:30    40,960    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\tscupgrd.exe
- 2002-09-09 14:13:52    427,474    -c----w    C:\WINDOWS\$NtServicePackUninstall$\unregmp2.exe
+ 2007-11-14 19:22:31    249,856    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\unregmp2.exe
- 2001-12-04 01:34:52    316,900    -c----w    C:\WINDOWS\$NtServicePackUninstall$\uploadm.exe
+ 2007-11-14 19:22:31    139,264    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\uploadm.exe
- 2001-12-04 01:34:52    192,478    -c----w    C:\WINDOWS\$NtServicePackUninstall$\upnpcont.exe
+ 2007-11-14 19:22:31    14,848    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\upnpcont.exe
- 2002-09-09 14:13:52    194,016    -c----w    C:\WINDOWS\$NtServicePackUninstall$\ups.exe
+ 2007-11-14 19:22:32    16,384    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\ups.exe
- 2002-09-09 14:13:52    199,638    -c----w    C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
+ 2007-11-14 19:22:32    22,016    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
- 2002-09-09 14:13:52    225,244    -c----w    C:\WINDOWS\$NtServicePackUninstall$\utilman.exe
+ 2007-11-14 19:22:33    47,616    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\utilman.exe
- 2001-12-04 01:34:56    454,102    -c----w    C:\WINDOWS\$NtServicePackUninstall$\vssvc.exe
+ 2007-11-14 19:22:33    276,480    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\vssvc.exe
- 2001-12-04 01:34:56    220,634    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wab.exe
+ 2007-11-14 19:22:34    43,008    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wab.exe
- 2001-12-04 01:34:56    205,270    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wabmig.exe
+ 2007-11-14 19:22:34    27,648    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wabmig.exe
- 2001-12-04 01:35:00    336,342    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wbemtest.exe
+ 2007-11-14 19:22:34    158,720    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wbemtest.exe
- 2002-09-09 14:13:52    239,064    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wextract.exe
+ 2007-11-14 19:22:35    61,440    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wextract.exe
- 2002-09-09 14:13:52    445,408    -c----w    C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe
+ 2007-11-14 19:22:36    267,776    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\winhlp32.exe
- 2002-09-09 14:13:54    694,234    -c----w    C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
+ 2007-11-14 19:22:37    516,608    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
- 2001-12-04 01:35:06    181,722    -c----w    C:\WINDOWS\$NtServicePackUninstall$\winver.exe
+ 2007-11-14 19:22:37    4,096    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\winver.exe
- 2001-12-04 01:35:00    592,348    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wiaacmgr.exe
+ 2007-11-14 19:22:35    414,720    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wiaacmgr.exe
- 2001-12-04 01:35:06    361,432    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wmiadap.exe
+ 2007-11-14 19:22:38    183,808    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wmiadap.exe
- 2001-12-04 01:35:06    294,878    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wmiapsrv.exe
+ 2007-11-14 19:22:38    117,248    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wmiapsrv.exe
- 2002-09-09 14:13:54    514,518    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wmic.exe
+ 2007-11-14 19:22:38    336,896    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wmic.exe
- 2002-09-09 14:13:54    381,406    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe
+ 2007-11-14 19:22:38    203,776    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wmiprvse.exe
- 2002-09-09 14:13:56    697,824    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wmplayer.exe
+ 2007-11-14 19:22:39    520,192    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wmplayer.exe
- 2002-09-09 14:13:56    379,868    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wordpad.exe
+ 2007-11-14 19:22:40    202,240    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wordpad.exe
- 2001-12-04 01:35:10    208,860    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wpabaln.exe
+ 2007-11-14 19:22:40    31,232    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wpabaln.exe
- 2001-12-04 01:35:10    207,318    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wpnpinst.exe
+ 2007-11-14 19:22:40    29,696    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wpnpinst.exe
- 2001-12-04 01:35:12    300,498    -c----w    C:\WINDOWS\$NtServicePackUninstall$\wscript.exe
+ 2007-11-14 19:22:40    118,834    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\wscript.exe
- 2001-12-04 01:35:12    205,784    -c----w    C:\WINDOWS\$NtServicePackUninstall$\xcopy.exe
+ 2007-11-14 19:22:41    28,160    -c--a-w    C:\WINDOWS\$NtServicePackUninstall$\xcopy.exe
- 2004-03-17 12:56:40    342,488    -c----w    C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
+ 2007-11-14 19:22:42    164,864    -c--a-w    C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
- 2007-11-09 16:06:35    218,590    ----a-r    C:\WINDOWS\Installer\{17334AAF-C9E7-483B-9F45-E3FCAF07FFA7}\NewShortcut1.56285FC4_11A9_11D6_8473_00902745D287.exe
+ 2007-11-14 19:24:36    40,960    ----a-r    C:\WINDOWS\Installer\{17334AAF-C9E7-483B-9F45-E3FCAF07FFA7}\NewShortcut1.56285FC4_11A9_11D6_8473_00902745D287.exe
+ 2007-11-14 18:19:21    295,606    ----a-r    C:\WINDOWS\Installer\{AC76BA86-7AD7-1030-7B44-A81000000003}\SC_Reader.exe
- 2002-12-11 23:14:32    224,216    ----a-w    C:\WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
+ 2007-11-14 19:24:55    46,592    ----a-w    C:\WINDOWS\RegisteredPackages\{44BBA855-CC51-11CF-AAFA-00AA00B6015C}\dxdllreg.exe
- 2005-01-28 12:44:28    224,732    ----a-w    C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
+ 2007-11-14 19:24:57    47,104    ----a-w    C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\uwdf.exe
- 2005-01-28 12:44:28    216,540    ----a-w    C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
+ 2007-11-14 19:24:57    38,912    ----a-w    C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wdfmgr.exe
- 2005-10-12 23:14:25    392,662    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\05e0c33d4ecf5d2bb96d01759d045ca3\spuninst.exe
- 2005-10-12 23:14:26    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\05e0c33d4ecf5d2bb96d01759d045ca3\update\update.exe
- 2005-06-28 09:23:28    392,672    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\076cfa03e1431a02fa88fe1880718ab0\spuninst.exe
- 2005-06-28 09:24:56    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\076cfa03e1431a02fa88fe1880718ab0\update\update.exe
- 2006-12-14 08:53:44    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0bd2bf6c77c4c91424819cb460c48e6a\spuninst.exe
- 2006-12-14 08:53:44    899,034    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0bd2bf6c77c4c91424819cb460c48e6a\update\update.exe
- 2006-01-19 19:29:12    392,672    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0dab6c09de8374f1f3ce6b06948e0233\spuninst.exe
- 2006-01-19 19:29:12    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0dab6c09de8374f1f3ce6b06948e0233\update\update.exe
- 2005-10-12 23:10:46    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0e4a4fd5d0f98f05f5a58f414cbf0e7a\spuninst.exe
- 2005-10-12 23:10:48    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\0e4a4fd5d0f98f05f5a58f414cbf0e7a\update\update.exe
- 2005-10-12 23:10:46    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\10f3d8185272656e8f7e2123c7519299\spuninst.exe
- 2005-10-12 23:10:48    899,026    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\10f3d8185272656e8f7e2123c7519299\update\update.exe
- 2005-10-12 23:10:46    392,670    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\11466f10a166a1f341b7fa41e534f6bc\spuninst.exe
- 2005-10-12 23:10:48    899,034    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\11466f10a166a1f341b7fa41e534f6bc\update\update.exe
- 2004-10-14 10:36:16    348,118    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\134c2cd12aaa597802427c85700b6941\spuninst.exe
- 2004-10-14 10:34:40    837,078    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\134c2cd12aaa597802427c85700b6941\update\update.exe
- 2005-10-12 23:10:46    392,672    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1b9314ce1bf75c229111bc5310e77aea\spuninst.exe
- 2005-10-12 23:10:48    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1b9314ce1bf75c229111bc5310e77aea\update\update.exe
- 2007-07-18 12:42:22    238,048    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1c2b146e9060643ebf81b08d9ad13e44\sp2gdr\tzchange.exe
- 2007-07-18 10:33:06    238,038    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1c2b146e9060643ebf81b08d9ad13e44\sp2qfe\tzchange.exe
- 2007-03-06 01:11:00    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1c2b146e9060643ebf81b08d9ad13e44\spuninst.exe
- 2007-03-06 01:11:17    899,038    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1c2b146e9060643ebf81b08d9ad13e44\update\update.exe
- 2005-02-25 03:34:50    389,080    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1d4c74cd6689682ad1824480c802d933\spuninst.exe
- 2005-08-24 04:53:53    205,278    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1d4c74cd6689682ad1824480c802d933\update\arpidfix.exe
- 2005-02-25 03:34:50    901,080    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\1d4c74cd6689682ad1824480c802d933\update\update.exe
- 2004-10-28 23:15:36    380,382    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\21518b368917033a79622c89f52ce0d5\sp1qfe\wordpad.exe
- 2004-10-14 10:36:16    348,118    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\21518b368917033a79622c89f52ce0d5\spuninst.exe
- 2004-10-14 10:34:40    837,082    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\21518b368917033a79622c89f52ce0d5\update\update.exe
- 2005-06-28 09:23:28    392,672    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\216c69a56e3643105cd8ff3daf0f22fb\spuninst.exe
- 2005-06-28 09:24:56    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\216c69a56e3643105cd8ff3daf0f22fb\update\update.exe
- 2005-10-12 23:10:46    392,660    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\224d00af3bc1ef9646f426fd693df6b2\spuninst.exe
- 2005-10-12 23:10:48    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\224d00af3bc1ef9646f426fd693df6b2\update\update.exe
- 2005-02-24 19:34:52    389,076    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2998d64c7dbc5a76db1eff4a313e0eb5\spuninst.exe
- 2005-02-24 19:34:52    901,080    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2998d64c7dbc5a76db1eff4a313e0eb5\update\update.exe
- 2005-10-12 23:10:46    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b4ac6cf993c000b72f4d3dbf95dfa83\spuninst.exe
- 2005-10-12 23:10:48    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b4ac6cf993c000b72f4d3dbf95dfa83\update\update.exe
- 2006-02-27 13:25:04    234,460    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\msimn.exe
- 2006-02-27 13:25:06    233,426    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\oemig50.exe
- 2005-06-28 08:23:28    392,662    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\spuninst.exe
- 2005-06-28 08:24:56    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\update\update.exe
- 2006-02-27 13:25:06    220,634    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\wab.exe
- 2006-02-27 12:31:42    205,276    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2b9890220c956a2b00d808d159c8c990\wabmig.exe
- 2005-02-24 12:23:28    389,082    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2c3e42e344a6e66066d65def05e8d94e\spuninst.exe
- 2005-02-24 12:30:14    901,088    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2c3e42e344a6e66066d65def05e8d94e\update\update.exe
- 2006-08-16 12:12:54    226,266    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2eee21da1156188df2373b8da93c6dc3\sp1qfe\ipv6.exe
- 2006-08-16 12:12:50    262,112    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2eee21da1156188df2373b8da93c6dc3\sp1qfe\netsh.exe
- 2005-10-12 23:14:25    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2eee21da1156188df2373b8da93c6dc3\spuninst.exe
- 2005-10-12 23:14:26    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2eee21da1156188df2373b8da93c6dc3\update\update.exe
- 2005-02-24 19:34:52    389,084    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2f9d1f29556c07d4ca25be9090e30f7d\spuninst.exe
- 2005-10-05 15:39:46    208,352    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2f9d1f29556c07d4ca25be9090e30f7d\update\arpidfix.exe
- 2005-02-24 19:34:52    901,084    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\2f9d1f29556c07d4ca25be9090e30f7d\update\update.exe
- 2005-02-24 19:34:52    389,082    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3064178378227f583406922c172065c5\spuninst.exe
- 2005-09-09 15:26:26    208,342    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3064178378227f583406922c172065c5\update\arpidfix.exe
- 2005-02-24 19:34:52    901,082    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3064178378227f583406922c172065c5\update\update.exe
- 2005-10-12 23:10:46    392,654    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\31007daf22b50f691603431b31bce81c\spuninst.exe
- 2005-10-12 23:10:48    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\31007daf22b50f691603431b31bce81c\update\update.exe
- 2005-10-12 23:10:46    392,662    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3264a897e0a5df6bb51f7ec4e43c468a\spuninst.exe
- 2005-10-12 23:10:48    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3264a897e0a5df6bb51f7ec4e43c468a\update\update.exe
- 2005-10-12 23:10:46    392,670    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\34472aafcb34ce19143413a08ba3aa7d\spuninst.exe
- 2005-10-12 23:10:48    899,040    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\34472aafcb34ce19143413a08ba3aa7d\update\update.exe
- 2007-03-06 01:11:00    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3469968981637981346391b6df19c63e\spuninst.exe
- 2007-03-06 01:11:17    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3469968981637981346391b6df19c63e\update\update.exe
- 2006-05-19 12:05:04    226,264    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3583cdfdcab71d37e4121dd12b4b41af\sp1qfe\ipv6.exe
- 2006-05-19 12:03:34    262,104    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3583cdfdcab71d37e4121dd12b4b41af\sp1qfe\netsh.exe
- 2005-10-12 23:10:46    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3583cdfdcab71d37e4121dd12b4b41af\spuninst.exe
- 2005-10-12 23:10:48    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3583cdfdcab71d37e4121dd12b4b41af\update\update.exe
- 2004-07-30 23:44:05    204,768    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\367f0c4d730aa434a1a2a3e1a5686cb7\sp1qfe\bitsinst.exe
- 2004-05-17 22:38:17    336,338    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\367f0c4d730aa434a1a2a3e1a5686cb7\spuninst.exe
- 2004-05-14 22:11:53    799,708    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\367f0c4d730aa434a1a2a3e1a5686cb7\update\update.exe
- 2005-06-28 09:23:28    392,660    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37326a430013b0c63fa09e4f25b872c7\spuninst.exe
- 2005-06-28 09:24:56    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37326a430013b0c63fa09e4f25b872c7\update\update.exe
- 2006-01-19 19:29:12    392,672    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37569f06320405813a5ff20958ba01c3\spuninst.exe
- 2006-01-19 19:29:12    899,032    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37569f06320405813a5ff20958ba01c3\update\update.exe
- 2006-01-19 19:29:12    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37ca21d16bc287da8f57787ee367cead\spuninst.exe
- 2006-01-19 19:29:12    899,040    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\37ca21d16bc287da8f57787ee367cead\update\update.exe
- 2006-01-19 19:29:12    392,668    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\38bf28916ad691652a462ed7dc85a75f\spuninst.exe
- 2006-01-19 19:29:12    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\38bf28916ad691652a462ed7dc85a75f\update\update.exe
- 2005-06-28 08:23:28    392,670    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\395a00c182e05bf891d103ab799e1a20\spuninst.exe
- 2005-06-28 08:21:34    200,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\395a00c182e05bf891d103ab799e1a20\spupdsvc.exe
- 2005-06-28 08:24:56    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\395a00c182e05bf891d103ab799e1a20\update\update.exe
- 2005-10-12 23:14:25    392,668    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3e863f0a316029edc153ab82c3ca5c3e\spuninst.exe
- 2005-10-12 23:14:26    899,040    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3e863f0a316029edc153ab82c3ca5c3e\update\update.exe
- 2005-10-12 23:10:46    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3f0c1e65fc0023ce765ba7c7e09fbd78\spuninst.exe
- 2005-10-12 23:10:48    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3f0c1e65fc0023ce765ba7c7e09fbd78\update\update.exe
- 2006-12-14 08:53:44    392,668    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3aa6239c9af07e56c82db04f0f0856e9\spuninst.exe
- 2006-12-14 08:53:44    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\3aa6239c9af07e56c82db04f0f0856e9\update\update.exe
- 2006-01-19 19:29:12    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\43347ae03a60b64d26af12d77c81ff95\spuninst.exe
- 2006-01-19 19:29:12    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\43347ae03a60b64d26af12d77c81ff95\update\update.exe
- 2005-02-25 03:34:50    389,084    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\44b29bee987447f30cd9bd2fa7ed0aea\spuninst.exe
- 2005-08-19 23:50:31    208,344    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\44b29bee987447f30cd9bd2fa7ed0aea\update\arpidfix.exe
- 2005-02-25 03:34:50    901,090    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\44b29bee987447f30cd9bd2fa7ed0aea\update\update.exe
- 2005-10-12 23:10:46    392,664    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\469a806d69c3490fdf8442753e28a1f3\spuninst.exe
- 2005-10-12 23:10:48    899,026    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\469a806d69c3490fdf8442753e28a1f3\update\update.exe
- 2005-10-12 23:10:49    392,662    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\47eab86981fd88e3b997e4add35d03c5\spuninst.exe
- 2005-10-12 23:10:51    899,030    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\47eab86981fd88e3b997e4add35d03c5\update\update.exe
- 2005-10-12 23:14:25    392,670    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\486516d0829a5db4e8708fa49fcf2057\spuninst.exe
- 2005-10-12 23:14:26    899,036    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\486516d0829a5db4e8708fa49fcf2057\update\update.exe
- 2005-10-12 23:10:46    392,666    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\48fe1eeeb1fa944a572f08a94ebe0424\spuninst.exe
- 2005-10-12 23:10:48    899,038    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\48fe1eeeb1fa944a572f08a94ebe0424\update\update.exe
- 2005-05-25 22:44:31    188,378    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\493a240b53b8094db9d25b5d42af30e4\sp1qfe\hh.exe
- 2005-05-26 23:22:01    188,376    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\493a240b53b8094db9d25b5d42af30e4\sp2gdr\hh.exe
- 2005-05-26 23:26:50    188,378    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\493a240b53b8094db9d25b5d42af30e4\sp2qfe\hh.exe
- 2005-02-24 19:34:52    389,086    ----a-w    C:\WINDOWS\SoftwareDistribution\Download\493a240b53b8094db9d25b5d42af30e4\spuninst.exe
- 2005-02-24 19:34:52    901,078    ----a-w    C:\WINDOWS\SoftwareDistri
Avatar billede mekanikeren Nybegynder
14. november 2007 - 21:06 #31
HER LOGGEN FRA HIJACKTHIS

Logfile of HijackThis v1.99.1
Scan saved at 21:02:25, on 14-11-2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmer\Alwil Software\Avast4\aswUpdSv.exe
C:\Programmer\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\Alwil Software\Avast4\ashMaiSv.exe
C:\Programmer\Alwil Software\Avast4\ashWebSv.exe
C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmer\Winamp\winampa.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Programmer\MSN Messenger\msnmsgr.exe
C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe
C:\Programmer\MSN Messenger\usnsvc.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\heine\Skrivebord\clean\hijackthis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmer\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmer\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [Genvej til egenskabsside for High Definition Audio] HDAudPropShortcut.exe
O4 - HKLM\..\Run: [PRONoMgrWired] C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmer\Winamp\winampa.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmer\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [AdobeUpdater] C:\Programmer\Fælles filer\Adobe\Updater5\AdobeUpdater.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Google Search - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Programmer\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Backward Links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Programmer\Google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Åbn på ny baggrundsfane - res://C:\Programmer\Windows Live Toolbar\Components\da-dk\msntabres.dll.mui/229?ec5afbe14fba4086a1431394e1a352e5
O8 - Extra context menu item: Åbn på ny forgrundsfane - res://C:\Programmer\Windows Live Toolbar\Components\da-dk\msntabres.dll.mui/230?ec5afbe14fba4086a1431394e1a352e5
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Programmer\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Programmer\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Programmer\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Programmer\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Programmer\Intel\PROSetWired\NCS\Sync\NetSvc.exe
Avatar billede mekanikeren Nybegynder
14. november 2007 - 21:06 #32
HER LOGGEN FRA ROOTLOG

********************************* ROOTCHK-(21-09-07)-LOG, by ejvindh
14-11-2007 21:04:31,15

The rootkits that are detected by this tool were not found.

********************************* ROOTCHK-LOG-end


catchme 0.3.1160 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-14 21:04:31
Windows 5.1.2600 Service Pack 1
scanning hidden processes ...

scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf40]
"khjeh"=hex:20,02,00,00,de,ff,b3,2a,11,46,e3,5b,7a,60,21,3c,27,ef,40,eb,3a,..
"hj34z0"=hex:4f,03,ff,34,d5,3d,37,48,25,a2,57,9f,aa,5d,ad,af,4a,3f,ce,f3,e2,..
"hj34z1"=hex:ee,03,ff,34,ad,3d,37,48,24,a2,56,9f,ab,5d,ad,af,4a,3f,ce,f3,d9,..
"hj34z2"=hex:ee,03,ff,34,ad,3d,37,48,24,a2,56,9f,ab,5d,ad,af,4a,3f,ce,f3,d9,..
"hj34z3"=hex:ee,03,ff,34,ad,3d,37,48,24,a2,56,9f,ab,5d,ad,af,4a,3f,ce,f3,d9,..
"hj34z4"=hex:ee,03,ff,34,ad,3d,37,48,24,a2,56,9f,ab,5d,ad,af,4a,3f,ce,f3,d9,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf41]
"khjeh"=hex:20,02,00,00,1b,55,b6,0c,3f,13,b7,73,66,60,c0,85,91,bb,69,04,60,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf42]
"khjeh"=hex:20,02,00,00,af,54,b6,0c,3b,f5,b1,b1,b2,9b,18,d8,3d,77,18,ea,5c,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\d347prt\Cfg\0Jf43]
"khjeh"=hex:20,02,00,00,f3,53,b6,0c,37,8d,5f,d8,9e,1e,bf,da,29,ea,12,ce,d8,..

scanning hidden registry entries ...

scanning hidden files ...

hidden processes: 0
hidden services: 0
hidden files: 0
Avatar billede fromsej Praktikant
15. november 2007 - 18:34 #33
Find Combofixloggen igen, kopier alt ind der står under linien her:
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

Åbn Stifinder, klik på Funktioner=>Mappeindstillinger=>Vis.
Fjern flueben ved "Skjul beskyttede operativsystemfiler".
Fjern flueben ved "Skjul filtypenavne for kendte filtyper".
Sæt prik i "Vis skjulte filer og mapper".

Dem her forstår jeg ikke, prøv at finde og uploade dem en af gangen hos Jottieller Virustotal:
http://virusscan.jotti.org/ http://www.virustotal.com/en/indexf.html
C:\WINDOWS\system32\spoolsv(2).exe
C:\WINDOWS\system32\spoolsv(4).exe
C:\WINDOWS\system32\spoolsv(3).exe
C:\WINDOWS\system32\lsass(4).exe
C:\WINDOWS\system32\lsass(3).exe
C:\WINDOWS\system32\ctfmon(3).exe
C:\WINDOWS\system32\ctfmon(2).exe
C:\WINDOWS\explorer(3).exe
C:\WINDOWS\explorer(2).exe


Fortæl resultatet.
Avatar billede mekanikeren Nybegynder
15. november 2007 - 18:44 #34
.
.
*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Genvej til egenskabsside for High Definition Audio"="HDAudPropShortcut.exe" [2007-11-14 19:20 C:\WINDOWS\system32\Hdaudpropshortcut.exe]
"PRONoMgrWired"="C:\Programmer\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe" [2004-03-02 11:49]
"IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" [2004-06-06 04:45]
"HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" [2004-06-06 04:41]
"SoundMan"="SOUNDMAN.EXE" [2004-09-23 12:27 C:\WINDOWS\SOUNDMAN.EXE]
"AlcWzrd"="ALCWZRD.EXE" [2004-09-24 11:06 C:\WINDOWS\ALCWZRD.EXE]
"DAEMON Tools-1033"="C:\Programmer\D-Tools\daemon.exe" [2007-11-14 19:20]
"RemoteControl"="C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe" [2005-01-12 03:01]
"WinampAgent"="C:\Programmer\Winamp\winampa.exe" [2007-09-13 17:24]
"Adobe Reader Speed Launcher"="C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-09-06 12:06]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [2002-09-09 15:13]
"msnmsgr"="C:\Programmer\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55]
"SUPERAntiSpyware"="C:\Documents and Settings\heine\Skrivebord\clean\SUPERAntiSpyware.exe" [2007-11-13 17:52]
"AdobeUpdater"="C:\Programmer\Fælles filer\Adobe\Updater5\AdobeUpdater.exe" [2007-03-01 10:37]

C:\Documents and Settings\All Users\Menuen Start\Programmer\Start\
Microsoft Office.lnk - C:\Programmer\Microsoft Office\Office\OSA9.EXE [1999-02-17 14:05:56]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Documents and Settings\heine\Skrivebord\clean\SASSEH.DLL [2006-12-20 13:55 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll 2007-04-19 13:41 294912 C:\Documents and Settings\heine\Skrivebord\clean\SASWINLO.dll

R0 iteraid;ITERAID_Service_Install;C:\WINDOWS\System32\DRIVERS\iteraid.sys

*Newly Created Service* - AAVMKER4
*Newly Created Service* - ASWMON2
*Newly Created Service* - ASWRDR
*Newly Created Service* - ASWTDI
*Newly Created Service* - ASWUPDSV
*Newly Created Service* - AVAST!_ANTIVIRUS
*Newly Created Service* - AVAST!_MAIL_SCANNER
*Newly Created Service* - AVAST!_WEB_SCANNER
.
Contents of the 'Scheduled Tasks' folder
"2007-11-14 19:09:00 C:\WINDOWS\Tasks\Søg efter opdateringer til Windows Live Toolbar.job"
- C:\Programmer\Windows Live Toolbar\MSNTBUP.EXE
.
**************************************************************************

catchme 0.3.1250 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-14 21:00:26
Windows 5.1.2600 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2007-11-14 21:00:58
C:\ComboFix2.txt ... 2007-11-13 18:00
.
    --- E O F ---
Avatar billede fromsej Praktikant
15. november 2007 - 19:05 #35
Så skal vi have resultatet fra Jotti og Virustotal.
Avatar billede mekanikeren Nybegynder
21. november 2007 - 19:38 #36
det behøves ikke.
nu virker den som den skal. har købt norton 2007,
nu mangler jeg bare et svar fra dig fromsej, så du kan få dine piont.
takker mange gange for hjælpen,
Avatar billede fromsej Praktikant
21. november 2007 - 19:50 #37
Velbekomme. :-)
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester