en der gider at kigge på HijackThis log

har denne log fra min pc hvor jeg er sikker på der er noget som ikke skal være der man kan ikke finde det.
en der kan hjælpe ?

Logfile of HijackThis v1.99.1
Scan saved at 13:42:33, on 12-02-2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)

Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\SetWeb\SetWeb.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Users\Vivian Jensen\Desktop\hijackthis_sfx\test.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\\IPSBHO.DLL
O2 - BHO: Hjælp til tilmelding til Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll
O4 - HKLM\..\Run: [KBD] C:\Program Files (x86)\Hewlett-Packard\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: SetWeb.lnk = C:\Program Files (x86)\SetWeb\SetWeb.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki ... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [INTERNATIONAL] International
O13 - Gopher Prefix:
O15 - Trusted Zone: *.amagerbanken.dk
O15 - Trusted Zone: *.danskebank.dk
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton 360 (N360) - Unknown owner - C:\Program Files (x86)\Norton 360\Engine\\ccSvcHst.exe" /s "N360" /m "C:\Program Files (x86)\Norton 360\Engine\\diMaster.dll" /prefetch:1 (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Sony Ericsson OMSI download service (OMSI download service) - Unknown owner - C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %PROGRAMFILES%\Windows Media Player\wmpnetwk.exe (file missing)

Du bruger en forældet udgave af HijackThis på en 64 bit Vista. Det kan vi ikke bruge til ret meget!


Hent "Malwarebytes' Anti-Malware" her: http://www.besttechie.net/tools/mbam-setup.exe
Installer og start programmet, klik på fanen opdater, klik Tjek for opdatering, lav "Hurtig skan" under fanebladet "skanner"
Bagefter klik på "vis resultater", tryk på "Fjern det valgte" og send loggen herind sammen med en log fra DDS som du finder her: http://download.bleepingcomputer.com/sUBs/dds.scr

eller her: http://www.forospyware.com/sUBs/dds

Den laver to logs,(DDS.txt og Attach.txt) gem dem på skrivebordet og kopier indholdet af DDS.txt  herind.

OBS - DDS skal gemmes på computeren og ikke køres fra nettet

Mht.: Vista og Windows 7 - Højreklik på filen - Kør som Administrator.

NB Når du opdaterer Malwarebytes, så klik på Tjek for opdatering til den skriver at der ikke er flere opdateringer.
oki her er den nye..

Malwarebytes' Anti-Malware 1.44
Database version: 3729
Windows 6.1.7600
Internet Explorer 8.0.7600.16385

12-02-2010 14:26:44
mbam-log-2010-02-12 (14-26-37).txt

Skan type: Hurtig skanning
Objekter skannet: 97950
Tid tilbagelagt: 1 minute(s), 32 second(s)

Inficerede Hukommelses Processer: 0
Inficerede Hukommelses Moduler: 0
Inficerede Registeringsdatabase Nøgler: 0
Inficerede Registeringsdatabase Værdier: 0
Inficerede Registeringsdatabase Filer: 1
Inficerede Mapper: 0
Inficerede Filer: 0

Inficerede Hukommelses Processer:
(Ingen mistænkelige filer fundet)

Inficerede Hukommelses Moduler:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Nøgler:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Værdier:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Filer:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.

Inficerede Mapper:
(Ingen mistænkelige filer fundet)

Inficerede Filer:
(Ingen mistænkelige filer fundet)

DDS (Ver_09-12-01.01) - NTFSX64 
Run by Vivian Jensen at 14:27:10,13 on 12-02-2010
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Ultimate  6.1.7600.0.1252.45.1030.18.4087.2715 [GMT 1:00]

SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}

============== Running Processes ===============

C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Norton 360\Engine\\ccSvcHst.exe
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\SetWeb\SetWeb.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Norton 360\Engine\\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Hewlett-Packard\KBD\kbd.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Vivian Jensen\Desktop\dds.scr

============== Pseudo HJT Report ===============

mLocal Page = c:\windows\syswow64\blank.htm
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files (x86)\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files (x86)\norton 360\engine\\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files (x86)\norton 360\engine\\IPSBHO.DLL
BHO: Hjælp til tilmelding til Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files (x86)\norton 360\engine\\coIEPlg.dll
uRun: [Sony Ericsson PC Suite] "c:\program files (x86)\sony ericsson\sony ericsson pc suite\SEPCSuite.exe" /systray /nologon
uRun: [msnmsgr] "c:\program files (x86)\windows live\messenger\msnmsgr.exe" /background
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [SUPERAntiSpyware] c:\program files (x86)\superantispyware\SUPERAntiSpyware.exe
mRun: [KBD] c:\program files (x86)\hewlett-packard\kbd\KbdStub.EXE
mRun: [Adobe Reader Speed Launcher] "c:\program files (x86)\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files (x86)\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "c:\program files (x86)\java\jre6\bin\jusched.exe"
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files (x86)\malwarebytes' anti-malware\mbamgui.exe /install /silent
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\setweb.lnk - c:\program files (x86)\setweb\SetWeb.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&ksporter til Microsoft Excel - c:\progra~2\micros~1\office12\EXCEL.EXE/3000
IE: Google Sidewiki ... - c:\program files (x86)\google\google toolbar\component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~2\micros~1\office12\REFIEBAR.DLL
Trusted Zone: amagerbanken.dk
Trusted Zone: danskebank.dk
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} - hxxps://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files (x86)\norton 360\engine\\CoIEPlg.dll
Notify: !SASWinLogon - c:\program files (x86)\superantispyware\SASWINLO.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files (x86)\superantispyware\SASSEH.DLL
TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
mRun-x64: [IAAnotif] c:\program files (x86)\intel\intel matrix storage manager\iaanotif.exe

============= SERVICES / DRIVERS ===============

R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\n360x64\0308000.029\SymEFA64.sys [2010-2-3 402992]
R1 BHDrvx64;Symantec Heuristics Driver;c:\windows\system32\drivers\n360x64\0308000.029\BHDrvx64.sys [2010-2-3 334384]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\n360x64\0308000.029\cchpx64.sys [2010-2-3 583296]
R1 IDSVia64;IDSVia64;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20100204.001\IDSviA64.sys [2010-2-7 466992]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 59904]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor;c:\program files (x86)\intel\intel matrix storage manager\IAANTmon.exe [2009-12-30 354840]
R2 N360;Norton 360;c:\program files (x86)\norton 360\engine\\ccSvcHst.exe [2010-2-3 117640]
R2 OMSI download service;Sony Ericsson OMSI download service;c:\program files (x86)\sony ericsson\sony ericsson pc suite\SupServ.exe [2009-12-30 90112]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\nvidia corporation\3d vision\nvSCPAPISvr.exe [2010-1-11 240232]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\drivers\e1y62x64.sys [2009-10-20 289496]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2010-1-31 132656]
R3 netr28x;Driver til Ralink 802.11n trådløst netværkskort til Windows Vista;c:\windows\system32\drivers\netr28x.sys [2009-6-10 620544]
R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\drivers\seehcri.sys [2009-12-30 34032]
R3 SYMNDISV;Symantec Network Filter Driver;c:\windows\system32\drivers\n360x64\0308000.029\symndisv.sys [2010-2-3 56880]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\drivers\vwifimp.sys [2009-7-14 17920]
S1 SASDIFSV;SASDIFSV;c:\program files (x86)\superantispyware\sasdifsv.sys [2010-1-5 9968]
S1 SASKUTIL;SASKUTIL;c:\program files (x86)\superantispyware\SASKUTIL.SYS [2010-1-5 74480]
S3 cxbu0x64;CardMan 3x21;c:\windows\system32\drivers\cxbu0x64.sys [2009-6-24 172544]
S3 SASENUM;SASENUM;c:\program files (x86)\superantispyware\SASENUM.SYS [2010-1-5 7408]
S3 vpcuxd;USB-virtualiseringsstubtjeneste;c:\windows\system32\drivers\vpcuxd.sys [2010-1-28 16384]

=============== Created Last 30 ================

2010-02-12 13:23:44    0    d-----w-    c:\users\vivian~1\appdata\roaming\Malwarebytes
2010-02-12 13:23:40    22104    ----a-w-    c:\windows\system32\drivers\mbam.sys
2010-02-12 13:23:40    0    d-----w-    c:\programdata\Malwarebytes
2010-02-12 13:23:40    0    d-----w-    c:\program files (x86)\Malwarebytes' Anti-Malware
2010-02-12 12:04:17    0    d-----w-    c:\program files (x86)\LSoft Technologies
2010-02-12 12:02:01    0    d-----w-    c:\program files\WinRAR
2010-02-12 10:42:18    0    d-----w-    c:\programdata\SUPERAntiSpyware.com
2010-02-12 10:42:09    0    d-----w-    c:\users\vivian~1\appdata\roaming\SUPERAntiSpyware.com
2010-02-12 10:42:09    0    d-----w-    c:\program files (x86)\SUPERAntiSpyware
2010-02-09 13:12:23    0    d-----w-    c:\program files (x86)\common files\Canon
2010-02-09 09:26:58    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-02-07 10:15:29    0    d-----w-    c:\windows\syswow64\N360_BACKUP
2010-02-01 11:01:15    17816    ----a-w-    c:\windows\system32\tmpidcrl.dll
2010-01-29 10:27:39    0    d-----w-    c:\programdata\Symantec
2010-01-28 13:23:19    0    d-----r-    c:\users\vivian jensen\Virtual Machines
2010-01-28 13:20:51    0    d-----w-    c:\program files (x86)\Windows Virtual PC
2010-01-28 13:19:42    16384    ----a-w-    c:\windows\system32\drivers\vpcuxd.sys
2010-01-28 13:19:42    15872    ----a-w-    c:\windows\system32\vpchbuspipe.dll
2010-01-28 13:19:30    95232    ----a-w-    c:\windows\system32\drivers\vpcusb.sys
2010-01-28 13:19:30    66304    ----a-w-    c:\windows\system32\drivers\vpcnfltr.sys
2010-01-28 13:19:30    359552    ----a-w-    c:\windows\system32\drivers\vpcvmm.sys
2010-01-28 13:19:30    187904    ----a-w-    c:\windows\system32\drivers\vpchbus.sys
2010-01-28 13:19:29    936448    ----a-w-    c:\windows\system32\vmsal.exe
2010-01-28 13:19:29    793600    ----a-w-    c:\windows\syswow64\vmsal.exe
2010-01-28 13:19:29    562176    ----a-w-    c:\windows\system32\VMCPropertyHandler.dll
2010-01-28 13:19:29    4513792    ----a-w-    c:\windows\system32\vpc.exe
2010-01-28 13:19:29    2262016    ----a-w-    c:\windows\system32\VPCWizard.exe
2010-01-28 13:19:29    1369600    ----a-w-    c:\windows\system32\VPCSettings.exe
2010-01-28 13:19:29    1209856    ----a-w-    c:\windows\system32\VMWindow.exe
2010-01-28 13:03:06    0    d-----w-    c:\program files (x86)\common files\Symantec Shared
2010-01-28 13:02:54    0    d-sh--w-    c:\windows\BitLockerDiscoveryVolumeContents
2010-01-28 13:02:53    0    d-----w-    c:\windows\RemotePackages
2010-01-28 13:02:19    389632    ----a-w-    c:\windows\system32\winlogon.exe
2010-01-28 13:02:19    2870272    ----a-w-    c:\windows\explorer.exe
2010-01-28 13:02:19    2614272    ----a-w-    c:\windows\syswow64\explorer.exe
2010-01-28 13:01:34    51867    ----a-w-    c:\windows\Ultimate.xml
2010-01-28 12:27:06    12744    ----a-r-    c:\windows\system32\drivers\Entech64.sys
2010-01-28 12:27:06    0    d-----w-    c:\windows\syswow64\Futuremark
2010-01-28 12:26:11    0    d-----w-    c:\windows\45235788142C44BE8A4DDDE9A84492E5.TMP
2010-01-28 12:13:54    3977496    ----a-w-    c:\windows\system32\d3dx9_31.dll
2010-01-28 12:13:31    0    d-----w-    c:\program files\PerformanceTest
2010-01-28 10:59:10    2414360    ----a-w-    c:\windows\syswow64\d3dx9_31.dll
2010-01-28 10:58:53    0    d---a-w-    c:\programdata\TEMP
2010-01-28 10:23:50    34152    ----a-r-    c:\windows\system32\drivers\GEARAspiWDM.sys
2010-01-28 10:23:50    126312    ----a-r-    c:\windows\system32\GEARAspi64.dll
2010-01-28 10:23:50    107368    ----a-r-    c:\windows\syswow64\GEARAspi.dll
2010-01-28 10:23:49    31280    ----a-r-    c:\windows\system32\drivers\SymIMV.sys
2010-01-28 10:23:47    855    ----a-w-    c:\windows\system32\drivers\SYMEVENT64x86.INF
2010-01-28 10:23:47    7440    ----a-w-    c:\windows\system32\drivers\SYMEVENT64x86.CAT
2010-01-28 10:23:47    172592    ----a-w-    c:\windows\system32\drivers\SYMEVENT64x86.SYS
2010-01-28 10:23:44    0    d-----w-    c:\program files\Symantec
2010-01-28 10:23:44    0    d-----w-    c:\program files\common files\Symantec Shared
2010-01-28 10:23:20    0    d-----w-    c:\windows\system32\drivers\N360x64
2010-01-28 10:23:19    0    d-----w-    c:\program files (x86)\Norton 360
2010-01-28 10:23:18    0    d-----w-    c:\programdata\Norton
2010-01-28 10:22:38    0    d-----w-    c:\programdata\NortonInstaller
2010-01-28 10:22:38    0    d-----w-    c:\program files (x86)\NortonInstaller
2010-01-28 09:22:46    0    d-----w-    c:\program files (x86)\NVIDIA Corporation
2010-01-28 09:22:35    0    d-----w-    c:\program files (x86)\common files\Wise Installation Wizard
2010-01-28 09:22:24    0    d-----w-    c:\program files\NVIDIA Corporation
2010-01-28 09:19:58    5416552    ----a-w-    c:\windows\system32\nvcuda.dll
2010-01-28 09:19:58    4325992    ----a-w-    c:\windows\system32\nvcuvenc.dll
2010-01-28 09:19:58    4077672    ----a-w-    c:\windows\syswow64\nvcuvenc.dll
2010-01-28 09:19:58    4061800    ----a-w-    c:\windows\syswow64\nvcuda.dll
2010-01-28 09:19:58    2332776    ----a-w-    c:\windows\system32\nvcuvid.dll
2010-01-28 09:19:58    2243176    ----a-w-    c:\windows\syswow64\nvcuvid.dll
2010-01-28 09:19:56    202344    ----a-w-    c:\windows\system32\nvcod189.dll
2010-01-28 09:19:56    202344    ----a-w-    c:\windows\system32\nvcod.dll
2010-01-28 09:19:56    16051304    ----a-w-    c:\windows\system32\nvcompiler.dll
2010-01-28 09:19:56    1280616    ----a-w-    c:\windows\syswow64\nvapi.dll
2010-01-28 09:19:56    11639400    ----a-w-    c:\windows\syswow64\nvcompiler.dll
2010-01-28 09:19:54    0    d-----w-    C:\NVIDIA
2010-01-23 15:07:03    5961728    ----a-w-    c:\windows\syswow64\mshtml.dll
2010-01-23 15:07:02    10976768    ----a-w-    c:\windows\syswow64\ieframe.dll
2010-01-23 15:07:01    381440    ----a-w-    c:\windows\syswow64\iedkcs32.dll
2010-01-23 15:07:01    1224704    ----a-w-    c:\windows\syswow64\urlmon.dll
2010-01-23 15:07:01    1192960    ----a-w-    c:\windows\system32\wininet.dll
2010-01-23 15:07:00    977920    ----a-w-    c:\windows\syswow64\wininet.dll
2010-01-23 15:07:00    64512    ----a-w-    c:\windows\syswow64\msfeedsbs.dll
2010-01-21 12:27:43    65536    --sha-w-    c:\users\vivian jensen\ntuser.dat{d2881840-0684-11df-819e-d1ddd235ddc2}.TM.blf
2010-01-21 12:27:43    524288    --sha-w-    c:\users\vivian jensen\ntuser.dat{d2881840-0684-11df-819e-d1ddd235ddc2}.TMContainer00000000000000000002.regtrans-ms
2010-01-21 12:27:43    524288    --sha-w-    c:\users\vivian jensen\ntuser.dat{d2881840-0684-11df-819e-d1ddd235ddc2}.TMContainer00000000000000000001.regtrans-ms
2010-01-20 10:57:08    0    d-----w-    C:\WEBBANK
2010-01-16 13:37:26    411368    ----a-w-    c:\windows\syswow64\deploytk.dll
2010-01-16 13:37:26    149280    ----a-w-    c:\windows\syswow64\javaws.exe
2010-01-16 13:37:26    145184    ----a-w-    c:\windows\syswow64\javaw.exe
2010-01-16 13:37:26    145184    ----a-w-    c:\windows\syswow64\java.exe
2010-01-15 15:04:23    148480    ----a-w-    c:\windows\system32\t2embed.dll
2010-01-15 15:04:22    70656    ----a-w-    c:\windows\syswow64\fontsub.dll
2010-01-15 15:04:22    108544    ----a-w-    c:\windows\syswow64\t2embed.dll
2010-01-15 15:04:22    100864    ----a-w-    c:\windows\system32\fontsub.dll
2010-01-15 10:31:51    451007729    ----a-w-    c:\windows\MEMORY.DMP
2010-01-15 09:30:04    0    d-----w-    c:\program files (x86)\SetWeb
2010-01-15 09:30:00    0    d-----w-    c:\program files (x86)\Multidata chipkort
2010-01-15 09:28:41    305152    ----a-w-    c:\windows\IsUn0406.exe
2010-01-15 09:05:31    305152    ----a-w-    c:\windows\IsUninst.exe
2010-01-14 14:37:44    0    d-----w-    c:\programdata\e-Safekey
2010-01-13 15:08:49    0    d-----w-    c:\program files\Google
2010-01-13 15:08:46    0    d-----w-    c:\programdata\Google
2010-01-13 14:21:54    0    d-----r-    c:\users\vivian~1\appdata\roaming\Brother
2010-01-13 13:42:42    0    d-----w-    c:\users\vivian jensen\Tracing

==================== Find3M  ====================

2010-02-12 12:44:30    77162    ----a-w-    c:\windows\system32\perfc006.dat
2010-02-12 12:44:30    462660    ----a-w-    c:\windows\system32\perfh006.dat
2010-01-14 10:12:06    212352    ------w-    c:\windows\system32\MpSigStub.exe
2010-01-13 10:11:27    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_WUDFUsbccidDriver_01_09_00.Wdf
2010-01-11 22:19:00    159336    ----a-w-    c:\windows\system32\nvvsvc.exe
2010-01-11 22:19:00    1515112    ----a-w-    c:\windows\system32\nvsvcr.dll
2010-01-11 22:19:00    14822504    ----a-w-    c:\windows\system32\nvcpl.dll
2010-01-11 22:19:00    116328    ----a-w-    c:\windows\system32\nvmctray.dll
2010-01-11 22:19:00    1037416    ----a-w-    c:\windows\system32\nvsvc64.dll
2009-12-30 14:08:02    148736    ----a-w-    c:\programdata\hpeC908.dll
2009-12-30 12:10:00    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2009-11-19 20:43:02    645736    ----a-w-    c:\windows\system32\nvuninst.exe
2009-07-14 07:34:23    39236    ----a-w-    c:\windows\inf\perflib\0406\perfd.dat
2009-07-14 07:34:23    39236    ----a-w-    c:\windows\inf\perflib\0406\perfc.dat
2009-07-14 07:34:23    306636    ----a-w-    c:\windows\inf\perflib\0406\perfi.dat
2009-07-14 07:34:23    306636    ----a-w-    c:\windows\inf\perflib\0406\perfh.dat
2009-07-14 04:54:24    174    --sha-w-    c:\program files\desktop.ini
2009-07-14 04:54:24    174    --sha-w-    c:\program files (x86)\desktop.ini
2009-07-14 01:00:34    291294    ----a-w-    c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 01:00:34    291294    ----a-w-    c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 01:00:32    31548    ----a-w-    c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 01:00:32    31548    ----a-w-    c:\windows\inf\perflib\0000\perfc.dat
2009-06-10 20:44:08    9633792    --sha-r-    c:\windows\fonts\StaticCache.dat
2009-07-14 01:39:53    398848    --sha-w-    c:\windows\winsxs\amd64_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_4d4d1f2f696639a2\WinMail.exe
2009-07-14 01:14:45    396800    --sha-w-    c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe

============= FINISH: 14:27:19,83 ===============


DDS (Ver_09-12-01.01)

Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 30-12-2009 13:20:01
System Uptime: 02-12-2010 13:39:46 (-7031 hours ago)

Processor: Intel(R) Core(TM) i7 CPU        920  @ 2.67GHz | CPU 1 | 2668/133mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 579 GiB total, 544,343 GiB free.
D: is FIXED (NTFS) - 17 GiB total, 2,399 GiB free.
E: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP32: 28-01-2010 14:18:21 - Installerede Windows XP Mode
RP33: 28-01-2010 14:19:21 - Windows Update
RP34: 28-01-2010 15:04:02 - Windows Update
RP35: 12-02-2010 10:52:51 - Removed Futuremark SystemInfo
RP36: 12-02-2010 11:36:37 - Fjernede Windows XP Mode
RP37: 12-02-2010 11:41:52 - Installed SUPERAntiSpyware Free Edition

==== Installed Programs ======================

Active@ Boot Disk 4.1 Suite
Adobe Flash Player 10 ActiveX
Adobe Reader 9.2 - Dansk
HP Picasso Media Center Add-In
Java(TM) 6 Update 17
Junk Mail filter update
Malwarebytes' Anti-Malware
Microsoft Choice Guard
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (Danish) 2007
Microsoft Office Excel MUI (Danish) 2007
Microsoft Office Live Add-in 1.4
Microsoft Office Outlook MUI (Danish) 2007
Microsoft Office PowerPoint MUI (Danish) 2007
Microsoft Office Professional 2007
Microsoft Office Proof (Danish) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proofing (Danish) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (Danish) 2007
Microsoft Office Shared MUI (Danish) 2007
Microsoft Office Word MUI (Danish) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Multidata chipkort software
Norton 360
NVIDIA Stereoscopic 3D Driver
Opdatering til Microsoft Office Excel 2007 Help (KB963678)
Opdatering til Microsoft Office Powerpoint 2007 Help (KB963669)
Opdatering til Microsoft Office Word 2007 Help (KB963665)
Overførselsværktøj til Windows Live
Realtek High Definition Audio Driver
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB973704)
Security Update for Microsoft Office Excel 2007 (KB973593)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB957789)
Security Update for Microsoft Office Publisher 2007 (KB969693)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Sony Ericsson PC Suite 6.009.00
SUPERAntiSpyware Free Edition
Udvidet multimedietastatur løsning
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office InfoPath 2007 (KB976416)
Update for Microsoft Office Word 2007 (KB974561)
Update for Outlook 2007 Junk Email Filter (kb977839)
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Sync

==== End Of File ===========================
Der kan man bare se. Den HijackThis var så forældet at den fik mig narret til at tro det var en Vista :)


Find og upload nedenstående hos Jotti eller Virustotal:


http://virusscan.jotti.org/ - http://www.virustotal.com/en/indexf.html

Kopier resultatet herind


Hent og installér CCleaner http://www.ccleaner.com/ + http://www.spywarefri.dk/manualer/ccleaner-manual.htm
Under installationen får du tilbudt [Yahoo Toolbar]. Den bør du sige nej til.
Lad programmer foretage en oprydning. (Både renser og register)



Det malwarebytes fandt betyder ingenting. Jeg tror aldrig jeg har set en Win 7 64 bit, hvor den ikke fandt den ;)
oki prøver dette så

File cxbu0x64.sys received on 2010.02.12 16:44:44 (UTC)Antivirus Version Last Update Result
a-squared 2010.02.12 -
AhnLab-V3 2010.02.12 -
AntiVir 2010.02.12 -
Antiy-AVL 2010.02.11 -
Authentium 2010.02.12 -
Avast 4.8.1351.0 2010.02.12 -
AVG 2010.02.12 -
BitDefender 7.2 2010.02.12 -
CAT-QuickHeal 10.00 2010.02.12 -
ClamAV 2010.02.12 -
Comodo 3911 2010.02.12 -
DrWeb 2010.02.12 -
eSafe 2010.02.11 -
eTrust-Vet 35.2.7299 2010.02.12 -
F-Prot 2010.02.12 -
F-Secure 9.0.15370.0 2010.02.12 -
Fortinet 2010.02.12 -
GData 19 2010.02.12 -
Ikarus T3. 2010.02.12 -
Jiangmin 13.0.900 2010.02.08 -
K7AntiVirus 7.10.971 2010.02.11 -
Kaspersky 2010.02.12 -
McAfee 5889 2010.02.11 -
McAfee+Artemis 5889 2010.02.11 -
McAfee-GW-Edition 6.8.5 2010.02.12 -
Microsoft 1.5406 2010.02.12 -
NOD32 4861 2010.02.12 -
Norman 6.04.08 2010.02.12 -
nProtect 2009.1.8.0 2010.02.12 -
Panda 2010.02.12 -
PCTools 2010.02.12 -
Prevx 3.0 2010.02.12 -
Rising 2010.02.11 -
Sophos 4.50.0 2010.02.12 -
Sunbelt 5671 2010.02.11 -
Symantec 20091.2.0.41 2010.02.12 -
TheHacker 2010.02.12 -
TrendMicro 2010.02.12 -
VBA32 2010.02.12 -
ViRobot 2010.2.12.2184 2010.02.12 -
VirusBuster 2010.02.12 -

Additional information
File size: 172544 bytes
MD5...: b2fb0404bfa484bfa5d9a2be7c0c809c
SHA1..: f1f8757fffc93630af4d90555c6c5310727ea983
SHA256: 4501ca77b1628fe626c478d94c00c5e2fe58e9748deff44f1e317b4a79997d53
ssdeep: 3072:CHK7OZ/APQ86JMEq8CMVg4wykazWdNshNHZdjPXYujCl+WBhVwPdWZsV+yY<BR>e86Dg:K7Ju8fVgFykqWSFPn+wPY1yrN<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x29010<BR>timedatestamp.....: 0x4a420b17 (Wed Jun 24 11:16:39 2009)<BR>machinetype.......: 0x8664 (AMD64)<BR><BR>( 7 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x300 0x223ee 0x22400 6.14 9253b5b90c94a71c3f82b7842664a325<BR>.rdata 0x22700 0x2a6c 0x2a80 5.06 90f4114b065a323cbf7b8fc3378f4146<BR>.data 0x25180 0x2210 0x2280 1.70 d31bc8681b7960fcf3aa65ae3ae283c2<BR>.pdata 0x27400 0x183c 0x1880 5.29 2dc01d14285d698b1f96524ce47d5f03<BR>PAGE 0x28c80 0x305 0x380 5.04 9b4ae9c82057881e288f2bc6e4e856d5<BR>INIT 0x29000 0xa84 0xb00 4.91 c9a5ccad7b17c0e37abc1df77f431600<BR>.rsrc 0x29b00 0x6a0 0x700 3.24 992f88d6e5b0c99859269bc903d4880e<BR><BR>( 5 imports ) <BR>&gt; NTOSKRNL.exe: RtlCompareMemory, IofCompleteRequest, KeReleaseSpinLock, IoReleaseCancelSpinLock, IoAcquireCancelSpinLock, KeAcquireSpinLockRaiseToDpc, IoFreeWorkItem, IoDeleteDevice, IoDetachDevice, RtlFreeUnicodeString, KeWaitForSingleObject, IoQueueWorkItem, IoAllocateWorkItem, RtlCopyUnicodeString, IoCreateDevice, IoAttachDeviceToDeviceStack, KeSetEvent, IofCallDriver, IoSetDeviceInterfaceState, KeCancelTimer, RtlAnsiStringToUnicodeString, KeInitializeEvent, KeClearEvent, PoSetPowerState, PoStartNextPowerIrp, PoSetSystemState, PoRequestPowerIrp, wcsstr, IoWMIRegistrationControl, IoBuildDeviceIoControlRequest, IoFreeIrp, PsTerminateSystemThread, IoCancelIrp, IoRegisterDeviceInterface, ExFreePool, KeSetTimer, ExAllocatePoolWithTag, IoAllocateIrp, ZwClose, ObReferenceObjectByHandle, PsCreateSystemThread, KeDelayExecutionThread, PoCallDriver, KeInitializeMutex, KeReleaseMutex, KeInitializeDpc, KeInitializeTimer, KeWaitForMultipleObjects, IoInitializeRemoveLockEx, IoAcquireRemoveLockEx, IoReleaseRemoveLockEx, IoReleaseRemoveLockAndWaitEx, IoIsWdmVersionAvailable, ZwOpenKey, RtlInitUnicodeString, IoOpenDeviceRegistryKey, RtlQueryRegistryValues, RtlUnicodeStringToAnsiString, RtlFreeAnsiString, RtlCompareUnicodeString, ZwEnumerateKey, RtlWriteRegistryValue, KeBugCheckEx, __C_specific_handler<BR>&gt; HAL.DLL: KeStallExecutionProcessor<BR>&gt; SMCLIB.SYS: SmartcardExit, SmartcardDeviceControl, SmartcardInitialize, SmartcardInvertData, SmartcardT0Reply, SmartcardT0Request, SmartcardT1Request, SmartcardUpdateCardCapabilities<BR>&gt; USBD.SYS: USBD_ParseConfigurationDescriptorEx, USBD_ParseDescriptors, USBD_CreateConfigurationRequestEx<BR>&gt; WMILIB.SYS: WmiSystemControl, WmiCompleteRequest<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
sigcheck:<BR>publisher....: OMNIKEY<BR>copyright....: Copyright (c) 2000 - 2009 OMNIKEY<BR>product......: PC/SC IFD handler for CCID compliant CardMan<BR>description..: PC/SC IFD handler for CCID compliant CardMan<BR>original name: CXBU0X64.sys<BR>internal name: CXBU0X64<BR>file version.:<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
trid..: Win64 Executable Generic (95.5%)<BR>Generic Win/DOS Executable (2.2%)<BR>DOS Executable Generic (2.2%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
pdfid.: -

Antivirus;Version;Last Update;Result

Additional information
File size: 172544 bytes
MD5...: b2fb0404bfa484bfa5d9a2be7c0c809c
SHA1..: f1f8757fffc93630af4d90555c6c5310727ea983
SHA256: 4501ca77b1628fe626c478d94c00c5e2fe58e9748deff44f1e317b4a79997d53
ssdeep: 3072:CHK7OZ/APQ86JMEq8CMVg4wykazWdNshNHZdjPXYujCl+WBhVwPdWZsV+yY<BR>e86Dg:K7Ju8fVgFykqWSFPn+wPY1yrN<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x29010<BR>timedatestamp.....: 0x4a420b17 (Wed Jun 24 11:16:39 2009)<BR>machinetype.......: 0x8664 (AMD64)<BR><BR>( 7 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x300 0x223ee 0x22400 6.14 9253b5b90c94a71c3f82b7842664a325<BR>.rdata 0x22700 0x2a6c 0x2a80 5.06 90f4114b065a323cbf7b8fc3378f4146<BR>.data 0x25180 0x2210 0x2280 1.70 d31bc8681b7960fcf3aa65ae3ae283c2<BR>.pdata 0x27400 0x183c 0x1880 5.29 2dc01d14285d698b1f96524ce47d5f03<BR>PAGE 0x28c80 0x305 0x380 5.04 9b4ae9c82057881e288f2bc6e4e856d5<BR>INIT 0x29000 0xa84 0xb00 4.91 c9a5ccad7b17c0e37abc1df77f431600<BR>.rsrc 0x29b00 0x6a0 0x700 3.24 992f88d6e5b0c99859269bc903d4880e<BR><BR>( 5 imports ) <BR>&gt; NTOSKRNL.exe: RtlCompareMemory, IofCompleteRequest, KeReleaseSpinLock, IoReleaseCancelSpinLock, IoAcquireCancelSpinLock, KeAcquireSpinLockRaiseToDpc, IoFreeWorkItem, IoDeleteDevice, IoDetachDevice, RtlFreeUnicodeString, KeWaitForSingleObject, IoQueueWorkItem, IoAllocateWorkItem, RtlCopyUnicodeString, IoCreateDevice, IoAttachDeviceToDeviceStack, KeSetEvent, IofCallDriver, IoSetDeviceInterfaceState, KeCancelTimer, RtlAnsiStringToUnicodeString, KeInitializeEvent, KeClearEvent, PoSetPowerState, PoStartNextPowerIrp, PoSetSystemState, PoRequestPowerIrp, wcsstr, IoWMIRegistrationControl, IoBuildDeviceIoControlRequest, IoFreeIrp, PsTerminateSystemThread, IoCancelIrp, IoRegisterDeviceInterface, ExFreePool, KeSetTimer, ExAllocatePoolWithTag, IoAllocateIrp, ZwClose, ObReferenceObjectByHandle, PsCreateSystemThread, KeDelayExecutionThread, PoCallDriver, KeInitializeMutex, KeReleaseMutex, KeInitializeDpc, KeInitializeTimer, KeWaitForMultipleObjects, IoInitializeRemoveLockEx, IoAcquireRemoveLockEx, IoReleaseRemoveLockEx, IoReleaseRemoveLockAndWaitEx, IoIsWdmVersionAvailable, ZwOpenKey, RtlInitUnicodeString, IoOpenDeviceRegistryKey, RtlQueryRegistryValues, RtlUnicodeStringToAnsiString, RtlFreeAnsiString, RtlCompareUnicodeString, ZwEnumerateKey, RtlWriteRegistryValue, KeBugCheckEx, __C_specific_handler<BR>&gt; HAL.DLL: KeStallExecutionProcessor<BR>&gt; SMCLIB.SYS: SmartcardExit, SmartcardDeviceControl, SmartcardInitialize, SmartcardInvertData, SmartcardT0Reply, SmartcardT0Request, SmartcardT1Request, SmartcardUpdateCardCapabilities<BR>&gt; USBD.SYS: USBD_ParseConfigurationDescriptorEx, USBD_ParseDescriptors, USBD_CreateConfigurationRequestEx<BR>&gt; WMILIB.SYS: WmiSystemControl, WmiCompleteRequest<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
sigcheck:<BR>publisher....: OMNIKEY<BR>copyright....: Copyright (c) 2000 - 2009 OMNIKEY<BR>product......: PC/SC IFD handler for CCID compliant CardMan<BR>description..: PC/SC IFD handler for CCID compliant CardMan<BR>original name: CXBU0X64.sys<BR>internal name: CXBU0X64<BR>file version.:<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
trid..: Win64 Executable Generic (95.5%)<BR>Generic Win/DOS Executable (2.2%)<BR>DOS Executable Generic (2.2%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
pdfid.: -

File vpcuxd.sys received on 2010.02.12 16:47:13 (UTC)Antivirus Version Last Update Result
a-squared 2010.02.12 -
AhnLab-V3 2010.02.12 -
AntiVir 2010.02.12 -
Antiy-AVL 2010.02.11 -
Authentium 2010.02.12 -
Avast 4.8.1351.0 2010.02.12 -
AVG 2010.02.12 -
BitDefender 7.2 2010.02.12 -
CAT-QuickHeal 10.00 2010.02.12 -
ClamAV 2010.02.12 -
Comodo 3911 2010.02.12 -
DrWeb 2010.02.12 -
eSafe 2010.02.11 -
eTrust-Vet 35.2.7299 2010.02.12 -
F-Prot 2010.02.12 -
F-Secure 9.0.15370.0 2010.02.12 -
Fortinet 2010.02.12 -
GData 19 2010.02.12 -
Ikarus T3. 2010.02.12 -
Jiangmin 13.0.900 2010.02.08 -
K7AntiVirus 7.10.971 2010.02.11 -
Kaspersky 2010.02.12 -
McAfee 5889 2010.02.11 -
McAfee+Artemis 5889 2010.02.11 -
McAfee-GW-Edition 6.8.5 2010.02.12 -
Microsoft 1.5406 2010.02.12 -
NOD32 4861 2010.02.12 -
Norman 6.04.08 2010.02.12 -
nProtect 2009.1.8.0 2010.02.12 -
Panda 2010.02.12 -
PCTools 2010.02.12 -
Prevx 3.0 2010.02.12 -
Rising 2010.02.11 -
Sophos 4.50.0 2010.02.12 -
Sunbelt 5671 2010.02.11 -
Symantec 20091.2.0.41 2010.02.12 -
TheHacker 2010.02.12 -
TrendMicro 2010.02.12 -
VBA32 2010.02.12 -
ViRobot 2010.2.12.2184 2010.02.12 -
VirusBuster 2010.02.12 -

Additional information
File size: 16384 bytes
MD5...: 14578ff302b4c985c9740a0f327ae3c0
SHA1..: 4eb4061cf96c72311d17808f223e19b85b878d30
SHA256: 621d5b2459fd2a5628e8e3777b62254ffe919d433ffef6335f21621a1ec271ff
ssdeep: 384:CcWsBgPC0aIMoutlHkh33cY0HuUY9dWC:CVs+a0ahptlEh8YCuUcH<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x29ec<BR>timedatestamp.....: 0x4ab97ab3 (Wed Sep 23 01:32:35 2009)<BR>machinetype.......: 0x8664 (AMD64)<BR><BR>( 8 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x20ac 0x2200 5.97 16fa5ad431e6a5f2dde900ab02953fb1<BR>.rdata 0x4000 0x2c4 0x400 3.99 2d0eaac8b746ba7d85366e39032d1bc6<BR>.data 0x5000 0x10a0 0x200 0.84 3a9479e31833da8b40b025f7f39221c9<BR>.pdata 0x7000 0x198 0x200 3.27 3d07014bdbcf21a865c7383ff4e8b8a4<BR>PAGE 0x8000 0x57c 0x600 5.86 d988fc4e6c91a6516c942c555399f8c7<BR>INIT 0x9000 0x232 0x400 3.25 fa413633729542c6b5454fd55421b6d4<BR>.rsrc 0xa000 0x5a0 0x600 3.19 df8cd6d93bb4b5669d4266eaf98dd74a<BR>.reloc 0xb000 0x54 0x200 0.28 0fc3751ddeaa0a2e751453abdd7d66fa<BR><BR>( 2 imports ) <BR>&gt; ntoskrnl.exe: IoWMIWriteEvent, RtlInitUnicodeString, MmGetSystemRoutineAddress, ExFreePoolWithTag, KeBugCheckEx, RtlCopyUnicodeString, IoWMIRegistrationControl, RtlCompareMemory, ExAllocatePoolWithTag<BR>&gt; WDFLDR.SYS: WdfVersionUnbind, WdfVersionBind<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
pdfid.: -
trid..: Win64 Executable Generic (95.5%)<BR>Generic Win/DOS Executable (2.2%)<BR>DOS Executable Generic (2.2%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:<BR>publisher....: Microsoft Corporation<BR>copyright....: (c) Microsoft Corporation. All rights reserved.<BR>product......: Virtual USB Stub Driver<BR>description..: Virtual USB Stub Driver<BR>original name: vpcuxd.sys<BR>internal name: vpcuxd.sys<BR>file version.: 6.1.7600.16393 (win7_gdr_oob_vpc(wmbla).090922-1824)<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>

Antivirus;Version;Last Update;Result

Additional information
File size: 16384 bytes
MD5...: 14578ff302b4c985c9740a0f327ae3c0
SHA1..: 4eb4061cf96c72311d17808f223e19b85b878d30
SHA256: 621d5b2459fd2a5628e8e3777b62254ffe919d433ffef6335f21621a1ec271ff
ssdeep: 384:CcWsBgPC0aIMoutlHkh33cY0HuUY9dWC:CVs+a0ahptlEh8YCuUcH<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x29ec<BR>timedatestamp.....: 0x4ab97ab3 (Wed Sep 23 01:32:35 2009)<BR>machinetype.......: 0x8664 (AMD64)<BR><BR>( 8 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x20ac 0x2200 5.97 16fa5ad431e6a5f2dde900ab02953fb1<BR>.rdata 0x4000 0x2c4 0x400 3.99 2d0eaac8b746ba7d85366e39032d1bc6<BR>.data 0x5000 0x10a0 0x200 0.84 3a9479e31833da8b40b025f7f39221c9<BR>.pdata 0x7000 0x198 0x200 3.27 3d07014bdbcf21a865c7383ff4e8b8a4<BR>PAGE 0x8000 0x57c 0x600 5.86 d988fc4e6c91a6516c942c555399f8c7<BR>INIT 0x9000 0x232 0x400 3.25 fa413633729542c6b5454fd55421b6d4<BR>.rsrc 0xa000 0x5a0 0x600 3.19 df8cd6d93bb4b5669d4266eaf98dd74a<BR>.reloc 0xb000 0x54 0x200 0.28 0fc3751ddeaa0a2e751453abdd7d66fa<BR><BR>( 2 imports ) <BR>&gt; ntoskrnl.exe: IoWMIWriteEvent, RtlInitUnicodeString, MmGetSystemRoutineAddress, ExFreePoolWithTag, KeBugCheckEx, RtlCopyUnicodeString, IoWMIRegistrationControl, RtlCompareMemory, ExAllocatePoolWithTag<BR>&gt; WDFLDR.SYS: WdfVersionUnbind, WdfVersionBind<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
pdfid.: -
trid..: Win64 Executable Generic (95.5%)<BR>Generic Win/DOS Executable (2.2%)<BR>DOS Executable Generic (2.2%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:<BR>publisher....: Microsoft Corporation<BR>copyright....: (c) Microsoft Corporation. All rights reserved.<BR>product......: Virtual USB Stub Driver<BR>description..: Virtual USB Stub Driver<BR>original name: vpcuxd.sys<BR>internal name: vpcuxd.sys<BR>file version.: 6.1.7600.16393 (win7_gdr_oob_vpc(wmbla).090922-1824)<BR>comments.....: n/a<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
jeg er sikker på der er noget som ikke skal være der

Det er der altså ikke noget i dine logs der tyder på.
Hvad oplever du af problemer?
se linket her er et billede af den fejl jeg får hele tiden


og det er ikke muligt at køre chkdsk fra windows af .
plus at hver gang jeg starter maskinen op kommer den og vil køre chkdsk men kan ikke starter det op..
hvis man så vælger at fjerne det program den sider der er fejl i kommer den bare med en ny fejl.

man kan heller ikke højre klikke på ikonet så forsvinder det bare.

er 100% på det ikke er windows der kommer med den fejl
er 100% på det ikke er windows der kommer med den fejl

Hvad gør dig så sikker på det?
Har du prøvet at køre chkdsk?
jamen at den forsvinder med det samme og at man ikke kan højre klikke på den..

chkdsk kan ikke køre desvære har prøvet flere gange .
jeg kan heller ikke lave systemgendandelse
lavede en reetablering.
