Avatar billede oldgaard Nybegynder
13. februar 2010 - 05:19 Der er 9 kommentarer og
1 løsning

en der gider kigge denne log efter ?

Har på fornemmelsen at der er noget galt på min pc.

Malwarebytes' Anti-Malware 1.44
Database version: 3732
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18882

13-02-2010 04:48:59
mbam-log-2010-02-13 (04-48-59).txt

Skan type: Hurtig skanning
Objekter skannet: 119490
Tid tilbagelagt: 3 minute(s), 50 second(s)

Inficerede Hukommelses Processer: 0
Inficerede Hukommelses Moduler: 0
Inficerede Registeringsdatabase Nøgler: 0
Inficerede Registeringsdatabase Værdier: 0
Inficerede Registeringsdatabase Filer: 0
Inficerede Mapper: 0
Inficerede Filer: 0

Inficerede Hukommelses Processer:
(Ingen mistænkelige filer fundet)

Inficerede Hukommelses Moduler:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Nøgler:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Værdier:
(Ingen mistænkelige filer fundet)

Inficerede Registeringsdatabase Filer:
(Ingen mistænkelige filer fundet)

Inficerede Mapper:
(Ingen mistænkelige filer fundet)

Inficerede Filer:
(Ingen mistænkelige filer fundet)

--------------------------------------------------------



DDS (Ver_09-12-01.01) - NTFSx86 
Run by Niels at  5:13:20,48 on 13-02-2010
Internet Explorer: 8.0.6001.18882 BrowserJavaVersion: 1.6.0_17
Microsoft® Windows Vista™ Home Premium  6.0.6002.2.1252.45.1030.18.3071.1035 [GMT 1:00]

AV: avast! antivirus 4.8.1356 [VPS 091115-0] *On-access scanning enabled* (Updated)  {7591DB91-41F0-48A3-B128-1A293FD8233D}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
SP: avast! antivirus 4.8.1356 [VPS 091115-0] *enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\svchost.exe -k Akamai
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\DriveHQ\DriveHQ FileManager\DHQFMSvc.exe
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Program Files\nHancer\nHancerService.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Axis Communications\AXIS Camera Station 3\ACSService.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Razer\Copperhead\razerhid.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Razer\Copperhead\razerofa.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\sdclt.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\system32\LogonUI.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Razer\Copperhead\razerhid.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files\Razer\Copperhead\razerofa.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\DriveHQ\DriveHQ FileManager\FileManager.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\sdclt.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Windows Media Player\WMPSideShowGadget.exe
C:\Program Files\Windows Media Player\wmplayer.exe
G:\Mozilla Firefox\firefox.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Niels\Documents\dds.scr
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.one.com/da/
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: Hjælp til tilmelding til Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [fsc-reg] c:\programdata\fsc-reg\fscreg.exe 20100213
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [DriveHQ FileManager] "c:\program files\drivehq\drivehq filemanager\FileManager.exe" autorun
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [recinfo442] c:\recinfo\RecInfo.exe
mRun: [recinfo] RecInfo.exe
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRun: [Skytel] Skytel.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [razer] c:\program files\razer\copperhead\razerhid.exe
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe"  -osboot
mRun: [Launch LgDeviceAgent] "c:\program files\logitech\gamepanel software\LgDevAgt.exe"
mRun: [Launch LCDMon] "c:\program files\logitech\gamepanel software\lcd manager\LCDMon.exe"
mRun: [Launch LGDCore] "c:\program files\logitech\gamepanel software\g-series software\LGDCore.exe" /SHOWHIDE
mRun: [Adobe Acrobat Speed Launcher] "c:\program files\adobe\acrobat 9.0\acrobat\Acrobat_sl.exe"
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 9.0\acrobat\Acrotray.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: E&ksporter til Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mic273~1\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {C32FE9F1-A857-48B0-B7BF-065B5792F28D} - hxxp://10.0.0.2:41291/activex/decoder/intel_mpeg4_dec.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://10.0.0.2:41291/activex/AMC.cab
AppInit_DLLs: acaptuser32.dll

============= SERVICES / DRIVERS ===============

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-11-15 114768]
R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2009-11-15 21504]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-11-15 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2009-11-15 53328]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast4\ashServ.exe [2009-11-15 138680]
R2 AXIS Camera Station;AXIS Camera Station;c:\program files\axis communications\axis camera station 3\ACSService.exe [2009-11-19 36864]
R2 DriveHQ FileManagerFun;DriveHQ FileManagerFun;c:\program files\drivehq\drivehq filemanager\DHQFMSvc.exe [2010-2-7 46080]
R2 StarWindServiceAE;StarWind AE Service;c:\program files\alcohol soft\alcohol 120\starwind\StarWindServiceAE.exe [2007-5-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2009-9-27 240232]
R2 TeamViewer5;TeamViewer 5;c:\program files\teamviewer\version5\TeamViewer_Service.exe [2010-1-12 185640]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast4\ashMaiSv.exe [2009-11-15 254040]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast4\ashWebSv.exe [2009-11-15 352920]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-7-14 19720]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2010-2-13 38224]
S2 gupdate1ca784ad650481a;Tjenesten Google Update (gupdate1ca784ad650481a);c:\program files\google\update\GoogleUpdate.exe [2009-12-8 133104]
S3 FontCache;Tjenesten Windows-skrifttypecache;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2009-11-15 21504]
S3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\drivers\ewusbdev.sys [2009-12-17 100736]
S3 IPCamMailSender;IPCamera Recorder MailSender;c:\program files\ipcamera recorder\SendMailService.exe [2008-10-31 661504]

=============== Created Last 30 ================

2010-02-13 03:43:48    0    d-----w-    c:\users\niels\appdata\roaming\Malwarebytes
2010-02-13 03:43:44    38224    ----a-w-    c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-13 03:43:42    19160    ----a-w-    c:\windows\system32\drivers\mbam.sys
2010-02-13 03:43:42    0    d-----w-    c:\programdata\Malwarebytes
2010-02-13 03:43:42    0    d-----w-    c:\program files\Malwarebytes' Anti-Malware
2010-02-07 23:31:16    223120281    ----a-w-    c:\windows\MEMORY.DMP
2010-02-07 11:30:20    0    d-----w-    c:\users\niels\appdata\roaming\DriveHQ
2010-02-07 11:29:40    0    d-----w-    c:\program files\DriveHQ
2010-02-04 21:33:26    0    d-----w-    c:\users\niels\appdata\roaming\TS3Client
2010-02-04 06:09:12    0    d-----w-    c:\program files\OpenVPN
2010-02-01 19:46:06    14    ----a-w-    c:\windows\system32\systeminfo3.dll
2010-02-01 19:42:51    87608    ----a-w-    c:\users\niels\appdata\roaming\inst.exe
2010-02-01 19:42:51    47360    ----a-w-    c:\windows\system32\drivers\pcouffin.sys
2010-02-01 19:42:51    47360    ----a-w-    c:\users\niels\appdata\roaming\pcouffin.sys
2010-02-01 19:42:43    0    d-----w-    c:\programdata\DVDXStudio
2010-02-01 19:42:43    0    d-----w-    c:\program files\CloneDVD
2010-01-31 23:22:40    49    ----a-w-    c:\windows\NeroDigital.ini
2010-01-31 23:16:50    26    ----a-w-    c:\windows\dvdSanta.INI
2010-01-31 23:07:55    0    d-----w-    C:\TempDVD
2010-01-31 23:07:55    0    d-----w-    C:\dvdsanta
2010-01-28 20:03:28    0    d-----w-    c:\users\niels\appdata\roaming\TeamViewer
2010-01-28 20:03:22    0    d-----w-    c:\program files\TeamViewer
2010-01-28 19:28:07    0    d-----w-    c:\users\niels\appdata\roaming\UltraVNC
2010-01-28 19:27:33    0    d-----w-    c:\program files\UltraVNC
2010-01-24 23:42:54    77824    ----a-w-    c:\windows\system32\xvid.ax
2010-01-24 23:42:54    0    d-----w-    c:\program files\Xvid
2010-01-24 23:34:44    0    d-----w-    c:\program files\VideoLAN
2010-01-24 21:39:57    244416    ----a-w-    c:\windows\system32\MsFlxGrd.ocx
2010-01-24 21:39:57    124688    ----a-w-    c:\windows\system32\MSWinSck.ocx
2010-01-24 21:39:56    2496    ----a-w-    c:\windows\system32\Mschrt20.dep
2010-01-24 21:39:56    1009336    ----a-w-    c:\windows\system32\mschrt20.ocx
2010-01-24 21:39:49    598288    ----a-w-    c:\windows\system32\temp.00C
2010-01-24 21:39:49    326656    ----a-w-    c:\windows\system32\temp.011
2010-01-24 21:39:49    17920    ----a-w-    c:\windows\system32\temp.00F
2010-01-24 21:39:49    164112    ----a-w-    c:\windows\system32\temp.00D
2010-01-24 21:39:49    147728    ----a-w-    c:\windows\system32\temp.00E
2010-01-24 21:39:49    1388544    ----a-w-    c:\windows\system32\temp.010
2010-01-24 17:26:03    129    ----a-w-    c:\users\niels\.jalbum-recent-projects.properties
2010-01-24 16:20:00    0    d-----w-    c:\users\niels\appdata\roaming\JAlbum
2010-01-24 16:18:33    820    ----a-w-    c:\users\niels\.jalbum-ftp-accounts.xml
2010-01-24 16:18:32    900    ----a-w-    c:\users\niels\.jalbum-defaults.jap
2010-01-24 16:17:48    0    d-----w-    c:\program files\Jalbum
2010-01-23 05:33:33    46928    ----a-r-    c:\windows\system32\AdobePDF.dll
2010-01-23 05:33:33    22872    ----a-r-    c:\windows\system32\AdobePDFUI.dll
2010-01-20 19:59:42    0    d-----w-    C:\LMI
2010-01-20 17:07:06    0    d-----w-    c:\programdata\LogMeIn
2010-01-14 19:01:50    0    d-----w-    c:\program files\Microsoft Visual Studio 8
2010-01-14 18:59:51    0    d-----w-    c:\program files\Microsoft Expression
2010-01-14 18:53:23    0    d-----w-    c:\program files\Alcohol Soft
2010-01-14 15:40:08    721904    ----a-w-    c:\windows\system32\drivers\sptd.sys
2010-01-14 11:05:24    0    d-----w-    c:\programdata\Azureus
2010-01-14 11:05:19    0    d-----w-    c:\users\niels\appdata\roaming\Azureus

==================== Find3M  ====================

2010-02-09 22:23:22    189392    ----a-w-    c:\windows\system32\PnkBstrB.exe
2010-02-09 22:22:32    138016    ----a-w-    c:\windows\system32\drivers\PnkBstrK.sys
2010-02-07 21:40:24    76996    ----a-w-    c:\windows\system32\perfc006.dat
2010-02-07 21:40:24    463106    ----a-w-    c:\windows\system32\perfh006.dat
2010-02-04 06:09:43    51200    ----a-w-    c:\windows\inf\infpub.dat
2010-02-04 06:09:43    143360    ----a-w-    c:\windows\inf\infstrng.dat
2010-02-04 06:09:37    143360    ----a-w-    c:\windows\inf\infstor.dat
2010-01-14 10:12:06    181120    ------w-    c:\windows\system32\MpSigStub.exe
2010-01-04 23:22:13    0    ----a-w-    c:\users\niels\appdata\roaming\wklnhst.dat
2010-01-02 06:38:20    916480    ----a-w-    c:\windows\system32\wininet.dll
2010-01-02 06:32:33    71680    ----a-w-    c:\windows\system32\iesetup.dll
2010-01-02 06:32:33    109056    ----a-w-    c:\windows\system32\iesysprep.dll
2010-01-02 04:57:00    133632    ----a-w-    c:\windows\system32\ieUnatt.exe
2009-12-29 10:13:07    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_lgSSBW_01_00_00.Wdf
2009-12-29 10:12:57    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_lgSSQVGA_01_00_00.Wdf
2009-12-29 10:06:23    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_LgLcdSSDriver_01_00_00.Wdf
2009-12-21 18:20:05    112056    ----a-w-    c:\windows\system32\acaptuser32.dll
2009-12-20 09:53:32    234016    ----a-w-    c:\windows\system32\drivers\Rtlh86.sys
2009-12-11 18:00:00    85504    ----a-w-    c:\windows\system32\ff_vfw.dll
2009-12-04 18:30:05    12288    ----a-w-    c:\windows\system32\tsbyuv.dll
2009-12-04 18:29:41    1314816    ----a-w-    c:\windows\system32\quartz.dll
2009-12-04 18:28:52    22528    ----a-w-    c:\windows\system32\msyuv.dll
2009-12-04 18:28:51    31744    ----a-w-    c:\windows\system32\msvidc32.dll
2009-12-04 18:28:51    123904    ----a-w-    c:\windows\system32\msvfw32.dll
2009-12-04 18:28:49    13312    ----a-w-    c:\windows\system32\msrle32.dll
2009-12-04 18:28:27    82944    ----a-w-    c:\windows\system32\mciavi32.dll
2009-12-04 18:28:21    50176    ----a-w-    c:\windows\system32\iyuv_32.dll
2009-12-04 18:27:12    91136    ----a-w-    c:\windows\system32\avifil32.dll
2009-12-03 08:27:28    80416    ----a-w-    c:\windows\system32\RtNicProp32.dll
2009-12-03 08:27:28    100896    ----a-w-    c:\windows\system32\RTNUninst32.dll
2009-11-22 17:37:15    10053112    ----a-w-    c:\users\niels\picasa3-setup.exe
2009-11-19 14:35:03    93234472    ----a-w-    c:\users\niels\iTunesSetup.exe
2009-11-17 02:15:37    665600    ----a-w-    c:\windows\inf\drvindex.dat
2009-11-16 22:08:12    52687    ----a-w-    c:\programdata\nvModes.dat
2009-11-16 21:28:48    139152    ----a-w-    c:\users\niels\appdata\roaming\PnkBstrK.sys
2009-11-16 21:28:29    794408    ----a-w-    c:\windows\system32\pbsvc.exe
2009-11-16 21:28:29    75064    ----a-w-    c:\windows\system32\PnkBstrA.exe
2009-11-16 21:28:22    794408    ----a-w-    c:\users\niels\pbsvc.exe
2009-11-16 15:38:36    318904    ----a-w-    c:\users\niels\wmpfirefoxplugin.exe
2009-11-15 22:46:29    130655944    ----a-w-    c:\users\niels\191.07_desktop_win7_winvista_32bit_international_whql.exe
2009-11-15 16:17:34    2179949    ----a-w-    c:\users\niels\nHancer32_2.5.7_Setup.exe
2009-11-15 15:57:22    989423    ----a-w-    c:\users\niels\brie.exe
2009-11-15 15:56:49    37665    ----a-w-    c:\windows\fonts\GlobalUserInterface.CompositeFont
2009-11-15 15:48:20    162564    ----a-w-    c:\windows\hpoins19.dat
2009-11-15 15:38:37    411368    ----a-w-    c:\windows\system32\deploytk.dll
2009-11-15 13:02:28    171383312    ----a-w-    c:\users\niels\AIO_CDB_Full_Network_dan_NB.exe
2009-11-15 12:29:45    5862994    ----a-w-    c:\users\niels\ts2_client_rc2_2032.exe
2009-11-15 11:17:46    174    --sha-w-    c:\program files\desktop.ini
2009-11-15 10:56:44    101888    ----a-w-    c:\windows\system32\ifxcardm.dll
2009-11-15 10:56:42    82432    ----a-w-    c:\windows\system32\axaltocm.dll
2009-11-15 10:02:26    136975312    ----a-w-    c:\users\niels\OOo_3.1.1_Win32Intel_install_da.exe
2007-09-26 05:01:22    36364    ----a-w-    c:\windows\inf\perflib\0406\perfd.dat
2007-09-26 05:01:22    36364    ----a-w-    c:\windows\inf\perflib\0406\perfc.dat
2007-09-26 05:01:22    300302    ----a-w-    c:\windows\inf\perflib\0406\perfi.dat
2007-09-26 05:01:22    300302    ----a-w-    c:\windows\inf\perflib\0406\perfh.dat
2006-11-02 09:20:21    287440    ----a-w-    c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 09:20:21    287440    ----a-w-    c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 09:20:19    30674    ----a-w-    c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 09:20:19    30674    ----a-w-    c:\windows\inf\perflib\0000\perfc.dat
2007-11-03 14:51:57    8192    --sha-w-    c:\windows\users\default\NTUSER.DAT

============= FINISH:  5:14:45,56 ===============
Avatar billede haverslev Novice
13. februar 2010 - 07:29 #1
Kør lige en "Kør et fuldstændig systemskan" i Malwarebytes - tager lang tid.
Ny log herind efterfølgende

Hvad oplever du af problemer?
Avatar billede f-arn Guru
13. februar 2010 - 08:12 #2
fuldstændig systemskan er ikke hvad Malwarebytes eget forum anbefaler.
Avatar billede haverslev Novice
13. februar 2010 - 08:26 #3
og? - Hvorfor mon muligheden er der så ?
Uhhhaaa nu brænder hele maskinen måske sammen når der køres en "fuldstændig" ;-)
Avatar billede f-arn Guru
13. februar 2010 - 09:09 #4
og? - Hvorfor mon muligheden er der så ?
Uhhhaaa nu brænder hele maskinen måske sammen når der køres en "fuldstændig" ;-)

Det jeg mener er:
Hurtig skan, derefter løsning via logs. Bla. combofix.
Avatar billede haverslev Novice
13. februar 2010 - 09:21 #5
Hvorfor så skrive det "unødige" indlæg istedet for at hjælpe spørger.
Avatar billede haverslev Novice
13. februar 2010 - 09:25 #6
oldgaard > lad f-arn hjælpe dig - jeg smutter af her :-)
Avatar billede 220661 Ekspert
13. februar 2010 - 09:30 #7
Støtter haverslev på dette. Andre partitioner på harddisken kan også være angrebet. Og når programmet alligevel kører kan det ligeså godt tage dette med. Det er muligt der skal andre værktøjer til. Men jeg tror mange ikke får det gjort, når maskinen kører igen. Så derfor "skader" det ikke at scanne hele disken.
Avatar billede f-arn Guru
13. februar 2010 - 09:47 #8
Så derfor "skader" det ikke at scanne hele disken.


Det gør MBAM ikke, men nu ser jeg gerne dette gjort:
Hent og installér CCleaner http://www.ccleaner.com/ + http://www.spywarefri.dk/manualer/ccleaner-manual.htm
Under installationen får du tilbudt [Yahoo Toolbar]. Den bør du sige nej til.
Lad programmer foretage en oprydning.

http://vistaguide.dk/?Artikler/CCleaner-GuideTilOptimeringAfVista/763

Hent "Malwarebytes' Anti-Malware" her: http://www.malwarebytes.org/mbam.php
Installer og start programmet, opdater, lav "Hurtig skan" under fanebladet "skanner".
Bagefter klik på "vis resultater", tryk på "Fjern det valgte" og send loggen herind sammen med de andre.

Hent og installer denne scanner:
http://www.superantispyware.com/superantispywarefreevspro.html

Start superantispyware, klik på Check for updates, når det er opdateret skal du lade det skanne din computer
(Fixed disk betyder harddisk)
Flyt prikken til Perform complete scan og klik på Næste, så kører scanningen.

Når den er færdig kommer der et vindue med en opsummering, klik på OK, klik så på næste og så på Udfør.

Der kommer et vindue med Quarantine and removal Complete, klik på OK, klik på Udfør.
Luk programmet, genstart normalt.

Start så superantispyware, klik på preferences, statistics/logs, view log. Indholdet af denne log må du gerne kopiere herind  sammen med en log fra DDS som du finder her:

http://download.bleepingcomputer.com/sUBs/dds.scr

Den laver to logs,(DDS.txt og Attach.txt) gem dem på skrivebordet og kopier indholdet af DDS.txt  herind.

Mht.: Vista og Windows7- Højreklik på filen - Kør som Administrator.

NB Når du opdaterer Malwarebytes, så klik på opdater til den skriver at der ikke er flere opdateringer.
Avatar billede oldgaard Nybegynder
13. februar 2010 - 21:42 #9
Malware fandt ikke noget.

---------------------
SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 02/13/2010 at 04:04 PM

Application Version : 4.33.1000

Core Rules Database Version : 4583
Trace Rules Database Version: 2395

Scan type      : Complete Scan
Total Scan Time : 01:06:46

Memory items scanned      : 864
Memory threats detected  : 0
Registry items scanned    : 8599
Registry threats detected : 0
File items scanned        : 43804
File threats detected    : 213

Adware.Tracking Cookie
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\lotte@atdmt[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\lotte@track.adform[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\lotte@bluestreak[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@kronos.bravenetmedia[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@stat.onestat[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@doubleclick[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@track.webgains[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@counter.hitslink[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ad.yieldmanager[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@media6degrees[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adserver.adreactor[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adviva[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ads.glispa[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adtech[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@eas8.emediate[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@eas4.emediate[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@at.atwola[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@findpriser[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@zedo[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@statcounter[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@iacas.adbureau[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@lfstmedia[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@seasnve.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@vaf.adservinginternational[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www.googleadservices[5].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www.googleadservices[4].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www.googleadservices[3].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www.googleadservices[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www.googleadservices[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@m1.webstats.motigo[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@fynskemedieradmin.adservinginternational[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@eboks.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@tacoda[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@saxoomis.122.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@account.live[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ads.lycos[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@web4.realtracker[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@bravenet[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@bravenet[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@eas.apm.emediate[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@counter4.bravenet[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@counter4.bravenet[3].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adbrite[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@skdiscount[3].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@skdiscount[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@mycounter.tinycounter[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@fastclick[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@msnaccountservices.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@billigespil.adservinginternational[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@openx.findpriser[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@specificclick[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@nykredit.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@advertising[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@track.webtrekk[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@revenue[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@mediaplex[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adserver.karamco[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ads.geek-tools[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@hi3dk.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@stats.zmags[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@tradedoubler[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@banner.nordvestnyt[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@apmebf[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@movia.112.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@adserver3.openadex[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@banner.jv[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@bs.serving-sys[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@edsa.122.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@homesteadtechnologies.122.2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@content.yieldmanager[3].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@content.yieldmanager[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@serving-sys[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@cdn5.specificclick[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@2o7[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@www3.addfreestats[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@eyewonder[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@atdmt[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@sjaellandske.adservinginternational[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@track.adform[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@statse.webtrendslive[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@tribalfusion[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ad.start[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@banner.vejleamtsfolkeblad[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@ad1.emediate[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@tracking.iqmedier[2].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@bluestreak[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@htmlgear.tripod[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@mmedia.t134[1].txt
    C:\Users\Lotte\AppData\Roaming\Microsoft\Windows\Cookies\Low\lotte@msnportal.112.2o7[1].txt
    .aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    aaotracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .counter4.bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .counter4.bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .pub4.bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .pub4.bravenet.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .statcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .apmebf.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .youporn.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .youporn.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .youporn.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .youporn.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .youporn.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .adultfriendfinder.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .adultfriendfinder.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    eas4.emediate.eu [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    eas4.emediate.eu [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .nakedworldrecords.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .nakedworldrecords.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    eas.apm.emediate.eu [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    eas.apm.emediate.eu [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.googleadservices.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.sexnoveller.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .indextools.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .indextools.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .indextools.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    e2.emediate.se [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    e2.emediate.se [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .multimediaworld.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .multimediaworld.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.multimediaworld.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    www.gametracker.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    ad.yieldmanager.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    ad.yieldmanager.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    ad.yieldmanager.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    ad.yieldmanager.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    hc2.humanclick.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .mediamac.comon.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .mediamac.comon.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    mediamac.comon.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    mediamac.comon.dk [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .imrworldwide.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .imrworldwide.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .pornhub.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .pornhub.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    image.masterstats.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .adultadworld.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .adultadworld.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .yadro.ru [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    .yadro.ru [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    1xxx.cqcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    audit.median.hu [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    us.2.cqcounter.com [ C:\Users\Niels\AppData\Local\Mozilla\Firefox\Profiles\14dw7ns6.default\cookies.txt ]
    C:\Users\Niels\AppData\Roaming\Microsoft\Windows\Cookies\Low\niels@ad.yieldmanager[1].txt
    C:\Users\Niels\AppData\Roaming\Microsoft\Windows\Cookies\Low\niels@server.iad.liveperson[2].txt
    C:\Users\Niels\AppData\Roaming\Microsoft\Windows\Cookies\Low\niels@atdmt[2].txt
    C:\Users\Niels\AppData\Roaming\Microsoft\Windows\Cookies\Low\niels@advertising[1].txt

Trojan.Agent/Gen-Keygen
    G:\VSO\KEYGEN-BRD\KEYGEN.EXE



-----------------------------------------------

DDS (Ver_09-12-01.01) - NTFSx86 
Run by Niels at 21:29:57,28 on 13-02-2010
Internet Explorer: 8.0.6001.18882 BrowserJavaVersion: 1.6.0_17
Microsoft® Windows Vista™ Home Premium  6.0.6002.2.1252.45.1030.18.3071.1034 [GMT 1:00]

AV: avast! antivirus 4.8.1356 [VPS 091115-0] *On-access scanning enabled* (Updated)  {7591DB91-41F0-48A3-B128-1A293FD8233D}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
SP: SUPERAntiSpyware *enabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: avast! antivirus 4.8.1356 [VPS 091115-0] *enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\svchost.exe -k Akamai
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\DriveHQ\DriveHQ FileManager\DHQFMSvc.exe
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Program Files\nHancer\nHancerService.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
C:\firststeps\OnlineDiagnostic\TestManager\TestHandler.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Axis Communications\AXIS Camera Station 3\ACSService.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Razer\Copperhead\razerhid.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files\Razer\Copperhead\razerofa.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\DriveHQ\DriveHQ FileManager\FileManager.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Windows\system32\svchost.exe -k SDRSVC
G:\Mozilla Firefox\firefox.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Razer\Copperhead\razerhid.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Razer\Copperhead\razerofa.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDClock.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDCountdown.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDMedia.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDPop3.exe
C:\Program Files\Logitech\GamePanel Software\Applets\LCDRSS.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\sdclt.exe
C:\Windows\system32\LogonUI.exe
C:\Program Files\Windows Media Player\WMPSideShowGadget.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Niels\Documents\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.one.com/da/
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: Hjælp til tilmelding til Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: SmartSelect Class: {f4971ee7-daa0-4053-9964-665d8ee6a077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [fsc-reg] c:\programdata\fsc-reg\fscreg.exe 20100213
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [DriveHQ FileManager] "c:\program files\drivehq\drivehq filemanager\FileManager.exe" autorun
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [recinfo442] c:\recinfo\RecInfo.exe
mRun: [recinfo] RecInfo.exe
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRun: [Skytel] Skytel.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [razer] c:\program files\razer\copperhead\razerhid.exe
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe"  -osboot
mRun: [Launch LgDeviceAgent] "c:\program files\logitech\gamepanel software\LgDevAgt.exe"
mRun: [Launch LCDMon] "c:\program files\logitech\gamepanel software\lcd manager\LCDMon.exe"
mRun: [Launch LGDCore] "c:\program files\logitech\gamepanel software\g-series software\LGDCore.exe" /SHOWHIDE
mRun: [Adobe Acrobat Speed Launcher] "c:\program files\adobe\acrobat 9.0\acrobat\Acrobat_sl.exe"
mRun: [<NO NAME>]
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 9.0\acrobat\Acrotray.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [Ext2 Volume Manager] c:\program files\ext2fsd\Ext2Mgr.exe -quiet
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: E&ksporter til Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mic273~1\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {C32FE9F1-A857-48B0-B7BF-065B5792F28D} - hxxp://10.0.0.2:41291/activex/decoder/intel_mpeg4_dec.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://10.0.0.2:41291/activex/AMC.cab
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
AppInit_DLLs: acaptuser32.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL

============= SERVICES / DRIVERS ===============

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-11-15 114768]
R1 Ext2fs;Ext2fs;c:\windows\system32\drivers\ext2fs.sys [2010-2-13 189888]
R1 IfsMount;IfsMount;c:\windows\system32\drivers\ifsmount.sys [2010-2-13 60352]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-1-5 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-1-5 74480]
R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2009-11-15 21504]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-11-15 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2009-11-15 53328]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast4\ashServ.exe [2009-11-15 138680]
R2 AXIS Camera Station;AXIS Camera Station;c:\program files\axis communications\axis camera station 3\ACSService.exe [2009-11-19 36864]
R2 DriveHQ FileManagerFun;DriveHQ FileManagerFun;c:\program files\drivehq\drivehq filemanager\DHQFMSvc.exe [2010-2-7 46080]
R2 StarWindServiceAE;StarWind AE Service;c:\program files\alcohol soft\alcohol 120\starwind\StarWindServiceAE.exe [2007-5-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2009-9-27 240232]
R2 TeamViewer5;TeamViewer 5;c:\program files\teamviewer\version5\TeamViewer_Service.exe [2010-1-12 185640]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast4\ashMaiSv.exe [2009-11-15 254040]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast4\ashWebSv.exe [2009-11-15 352920]
R3 Ext2Fsd;Linux ext2 file system driver;c:\windows\system32\drivers\ext2fsd.sys [2010-2-13 659592]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-7-14 19720]
R3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2010-1-5 7408]
S2 gupdate1ca784ad650481a;Tjenesten Google Update (gupdate1ca784ad650481a);c:\program files\google\update\GoogleUpdate.exe [2009-12-8 133104]
S3 FontCache;Tjenesten Windows-skrifttypecache;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2009-11-15 21504]
S3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\drivers\ewusbdev.sys [2009-12-17 100736]
S3 IPCamMailSender;IPCamera Recorder MailSender;c:\program files\ipcamera recorder\SendMailService.exe [2008-10-31 661504]

=============== Created Last 30 ================

2010-02-13 20:29:05    0    d-----w-    c:\users\niels\appdata\roaming\MBizGroup
2010-02-13 20:29:05    0    d-----w-    c:\programdata\DriveHQ
2010-02-13 18:33:56    77760    ----a-w-    c:\windows\system32\ifsdrives.exe
2010-02-13 18:33:56    724    ----a-w-    c:\windows\system32\ifsdrives_tasks.xml
2010-02-13 18:33:56    60352    ----a-w-    c:\windows\system32\drivers\ifsmount.sys
2010-02-13 18:33:56    210432    ----a-w-    c:\windows\system32\ifsdrives.dll
2010-02-13 18:33:56    189888    ----a-w-    c:\windows\system32\drivers\ext2fs.sys
2010-02-13 17:57:24    659592    ----a-w-    c:\windows\system32\drivers\ext2fsd.sys
2010-02-13 17:57:24    0    d-----w-    c:\program files\Ext2Fsd
2010-02-13 13:46:47    0    d-----w-    c:\programdata\SUPERAntiSpyware.com
2010-02-13 13:46:12    0    d-----w-    c:\users\niels\appdata\roaming\SUPERAntiSpyware.com
2010-02-13 13:46:12    0    d-----w-    c:\program files\SUPERAntiSpyware
2010-02-13 09:59:20    0    d-----w-    c:\program files\CCleaner
2010-02-13 03:43:48    0    d-----w-    c:\users\niels\appdata\roaming\Malwarebytes
2010-02-13 03:43:44    38224    ----a-w-    c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-13 03:43:42    19160    ----a-w-    c:\windows\system32\drivers\mbam.sys
2010-02-13 03:43:42    0    d-----w-    c:\programdata\Malwarebytes
2010-02-13 03:43:42    0    d-----w-    c:\program files\Malwarebytes' Anti-Malware
2010-02-07 11:30:20    0    d-----w-    c:\users\niels\appdata\roaming\DriveHQ
2010-02-07 11:29:40    0    d-----w-    c:\program files\DriveHQ
2010-02-04 21:33:26    0    d-----w-    c:\users\niels\appdata\roaming\TS3Client
2010-02-04 06:09:12    0    d-----w-    c:\program files\OpenVPN
2010-02-01 19:46:06    14    ----a-w-    c:\windows\system32\systeminfo3.dll
2010-02-01 19:42:51    87608    ----a-w-    c:\users\niels\appdata\roaming\inst.exe
2010-02-01 19:42:51    47360    ----a-w-    c:\windows\system32\drivers\pcouffin.sys
2010-02-01 19:42:51    47360    ----a-w-    c:\users\niels\appdata\roaming\pcouffin.sys
2010-02-01 19:42:43    0    d-----w-    c:\programdata\DVDXStudio
2010-02-01 19:42:43    0    d-----w-    c:\program files\CloneDVD
2010-01-31 23:22:40    49    ----a-w-    c:\windows\NeroDigital.ini
2010-01-31 23:16:50    26    ----a-w-    c:\windows\dvdSanta.INI
2010-01-31 23:07:55    0    d-----w-    C:\TempDVD
2010-01-31 23:07:55    0    d-----w-    C:\dvdsanta
2010-01-28 20:03:28    0    d-----w-    c:\users\niels\appdata\roaming\TeamViewer
2010-01-28 20:03:22    0    d-----w-    c:\program files\TeamViewer
2010-01-28 19:28:07    0    d-----w-    c:\users\niels\appdata\roaming\UltraVNC
2010-01-28 19:27:33    0    d-----w-    c:\program files\UltraVNC
2010-01-24 23:42:54    77824    ----a-w-    c:\windows\system32\xvid.ax
2010-01-24 23:42:54    0    d-----w-    c:\program files\Xvid
2010-01-24 23:34:44    0    d-----w-    c:\program files\VideoLAN
2010-01-24 21:39:57    244416    ----a-w-    c:\windows\system32\MsFlxGrd.ocx
2010-01-24 21:39:57    124688    ----a-w-    c:\windows\system32\MSWinSck.ocx
2010-01-24 21:39:56    2496    ----a-w-    c:\windows\system32\Mschrt20.dep
2010-01-24 21:39:56    1009336    ----a-w-    c:\windows\system32\mschrt20.ocx
2010-01-24 21:39:49    598288    ----a-w-    c:\windows\system32\temp.00C
2010-01-24 21:39:49    326656    ----a-w-    c:\windows\system32\temp.011
2010-01-24 21:39:49    17920    ----a-w-    c:\windows\system32\temp.00F
2010-01-24 21:39:49    164112    ----a-w-    c:\windows\system32\temp.00D
2010-01-24 21:39:49    147728    ----a-w-    c:\windows\system32\temp.00E
2010-01-24 21:39:49    1388544    ----a-w-    c:\windows\system32\temp.010
2010-01-24 17:26:03    129    ----a-w-    c:\users\niels\.jalbum-recent-projects.properties
2010-01-24 16:20:00    0    d-----w-    c:\users\niels\appdata\roaming\JAlbum
2010-01-24 16:18:33    820    ----a-w-    c:\users\niels\.jalbum-ftp-accounts.xml
2010-01-24 16:18:32    900    ----a-w-    c:\users\niels\.jalbum-defaults.jap
2010-01-24 16:17:48    0    d-----w-    c:\program files\Jalbum
2010-01-23 05:33:33    46928    ----a-r-    c:\windows\system32\AdobePDF.dll
2010-01-23 05:33:33    22872    ----a-r-    c:\windows\system32\AdobePDFUI.dll
2010-01-20 19:59:42    0    d-----w-    C:\LMI
2010-01-20 17:07:06    0    d-----w-    c:\programdata\LogMeIn

==================== Find3M  ====================

2010-02-09 22:23:22    189392    ----a-w-    c:\windows\system32\PnkBstrB.exe
2010-02-09 22:22:32    138016    ----a-w-    c:\windows\system32\drivers\PnkBstrK.sys
2010-02-07 21:40:24    76996    ----a-w-    c:\windows\system32\perfc006.dat
2010-02-07 21:40:24    463106    ----a-w-    c:\windows\system32\perfh006.dat
2010-02-04 06:09:43    51200    ----a-w-    c:\windows\inf\infpub.dat
2010-02-04 06:09:43    143360    ----a-w-    c:\windows\inf\infstrng.dat
2010-02-04 06:09:37    143360    ----a-w-    c:\windows\inf\infstor.dat
2010-01-14 18:39:26    721904    ----a-w-    c:\windows\system32\drivers\sptd.sys
2010-01-14 10:12:06    181120    ------w-    c:\windows\system32\MpSigStub.exe
2010-01-04 23:22:13    0    ----a-w-    c:\users\niels\appdata\roaming\wklnhst.dat
2010-01-02 06:38:20    916480    ----a-w-    c:\windows\system32\wininet.dll
2010-01-02 06:32:33    71680    ----a-w-    c:\windows\system32\iesetup.dll
2010-01-02 06:32:33    109056    ----a-w-    c:\windows\system32\iesysprep.dll
2010-01-02 04:57:00    133632    ----a-w-    c:\windows\system32\ieUnatt.exe
2009-12-29 10:13:07    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_lgSSBW_01_00_00.Wdf
2009-12-29 10:12:57    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_lgSSQVGA_01_00_00.Wdf
2009-12-29 10:06:23    0    ---ha-w-    c:\windows\system32\drivers\Msft_User_LgLcdSSDriver_01_00_00.Wdf
2009-12-21 18:20:05    112056    ----a-w-    c:\windows\system32\acaptuser32.dll
2009-12-20 09:53:32    234016    ----a-w-    c:\windows\system32\drivers\Rtlh86.sys
2009-12-11 18:00:00    85504    ----a-w-    c:\windows\system32\ff_vfw.dll
2009-12-04 18:30:05    12288    ----a-w-    c:\windows\system32\tsbyuv.dll
2009-12-04 18:29:41    1314816    ----a-w-    c:\windows\system32\quartz.dll
2009-12-04 18:28:52    22528    ----a-w-    c:\windows\system32\msyuv.dll
2009-12-04 18:28:51    31744    ----a-w-    c:\windows\system32\msvidc32.dll
2009-12-04 18:28:51    123904    ----a-w-    c:\windows\system32\msvfw32.dll
2009-12-04 18:28:49    13312    ----a-w-    c:\windows\system32\msrle32.dll
2009-12-04 18:28:27    82944    ----a-w-    c:\windows\system32\mciavi32.dll
2009-12-04 18:28:21    50176    ----a-w-    c:\windows\system32\iyuv_32.dll
2009-12-04 18:27:12    91136    ----a-w-    c:\windows\system32\avifil32.dll
2009-12-03 08:27:28    80416    ----a-w-    c:\windows\system32\RtNicProp32.dll
2009-12-03 08:27:28    100896    ----a-w-    c:\windows\system32\RTNUninst32.dll
2009-11-22 17:37:15    10053112    ----a-w-    c:\users\niels\picasa3-setup.exe
2009-11-19 14:35:03    93234472    ----a-w-    c:\users\niels\iTunesSetup.exe
2009-11-17 02:15:37    665600    ----a-w-    c:\windows\inf\drvindex.dat
2009-11-16 22:08:12    52687    ----a-w-    c:\programdata\nvModes.dat
2009-11-16 21:28:48    139152    ----a-w-    c:\users\niels\appdata\roaming\PnkBstrK.sys
2009-11-16 21:28:29    794408    ----a-w-    c:\windows\system32\pbsvc.exe
2009-11-16 21:28:29    75064    ----a-w-    c:\windows\system32\PnkBstrA.exe
2009-11-16 21:28:22    794408    ----a-w-    c:\users\niels\pbsvc.exe
2009-11-16 15:38:36    318904    ----a-w-    c:\users\niels\wmpfirefoxplugin.exe
2009-11-15 22:46:29    130655944    ----a-w-    c:\users\niels\191.07_desktop_win7_winvista_32bit_international_whql.exe
2009-11-15 11:17:46    174    --sha-w-    c:\program files\desktop.ini
2007-09-26 05:01:22    36364    ----a-w-    c:\windows\inf\perflib\0406\perfd.dat
2007-09-26 05:01:22    36364    ----a-w-    c:\windows\inf\perflib\0406\perfc.dat
2007-09-26 05:01:22    300302    ----a-w-    c:\windows\inf\perflib\0406\perfi.dat
2007-09-26 05:01:22    300302    ----a-w-    c:\windows\inf\perflib\0406\perfh.dat
2006-11-02 09:20:21    287440    ----a-w-    c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 09:20:21    287440    ----a-w-    c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 09:20:19    30674    ----a-w-    c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 09:20:19    30674    ----a-w-    c:\windows\inf\perflib\0000\perfc.dat
2007-11-03 14:51:57    8192    --sha-w-    c:\windows\users\default\NTUSER.DAT

============= FINISH: 21:30:28,46 ===============



Problemet er at når computeren bliver tændt efter at været slukket i moget tid ( typisk ca. 6-8 timer) så er den en evighed om at komme i gang, helt op til 10-15 min. men hvis man laver en genstart så er der ingen problemer.
Avatar billede oldgaard Nybegynder
22. februar 2010 - 19:02 #10
lukkes
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester