Windows xp recovery virus


Jeg har nu brugt det meste af dagen på at kæmpe mod Windows xp recovery virus. Har fundet en masse gode råd her og andre steder på nettet. Det er lykkedes mig med mange forskellige programmer at få det meste fjernet og min pc begynder så småt at ligne sig selv igen. Men der er dog stadigvæk ting jeg ikke kan se og programmer jeg ikke kan bruge. Det sidste jeg har kørt for at få styr på det hele, er unhide.exe....det hjalp da også en del, men altså ikke helt. Jeg kan f.eks. ikke gå ind og vælge baggrundsbillede til skrivebordet. Der er også mange små tillægsprogrammer der er væk...f.eks. systemtools og regnemaskinen findes ikke under tilbehør mere. Og når jeg går ned i start og så programmer og flytter musen op igennem programmerne, så står der "tom" i den fane der popper ud til højre for programnavnene.

Håber virkelig at der er nogen, der kan hjælpe med at få løst de sidste ting.
Avatar billede Slettet bruger
28. maj 2011 - 20:06 #1

Har du set på denne vejledning, og kørt Malwarebytes.

Det kunne du jo starte med. Der kommer nok nogen til senere der kan læse de hijajk-logs
28. maj 2011 - 20:17 #2
... Fejlsikker tilstand - SYSTEMgendannelse...

(Ikke at forveksle med "Factory Recovery" ...)
Avatar billede kimtheman Novice
29. maj 2011 - 00:07 #3
Ja hent filerne ned på en usb pen som #1 linker til. Og kør det hele derfra.
Har haft nogle stykker med den virus/ snavs og guiden virker.
Avatar billede nyher Novice
29. maj 2011 - 16:12 #4
Har fulgt vejledningen på bleepingcomputer.com og diverse scanninger finder ikke noget mere.

Mht. systemgendannelse i fejlsikker tilstand, så fik jeg mig en mindre overraskelse, da der af en eller anden mærkelig årsag ikke findes nogle gendannelsespunkter...???
29. maj 2011 - 21:13 #5
Vi vil (skal) lige se loggen fra MalwareBytes omgangen - finde i MalwareBytes programmet under fanen - tja - Logs ...
Kopier indholdet herind sammen med en frisk log fra HiJackThis...

...og her er omtalte HiJackThis ->

Bemærk at HiJackThis.exe programmet skal gemmes i en dertil oprettet mappe og IKKE køres direkte fra nettet...

PS: Brug denne version af HJT -> http://www.trendsecure.com/portal/en-US/_download/HiJackThis.exe

Mht.: Vista/Win7 - HøjreMusseTast - "Kør som Administrator..."
Avatar billede nyher Novice
30. maj 2011 - 00:21 #6
Her er først MalwareBytes loggen :

Malwarebytes' Anti-Malware

Database version: 5363

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

28-05-2011 12:44:15
mbam-log-2011-05-28 (12-43-39).txt

Skanningstype: Fuldstændig skanning (C:\|)
Objekter skannet: 207494
Tid gået: 31 minut(ter), 38 sekund(er)

Hukommelses Processorer Inficeret: 0
Hukommelses Moduler Inficeret: 0
Registreringsdatabasenøgler Inficeret: 0
Registreringsdatabaseværdier Inficeret: 0
Registreringsdatabasedata Objekter Inficeret: 1
Inficerede Mapper: 0
Inficerede Filer: 0

Hukommelses Processorer Inficeret:
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallPaper (PUM.Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.

Inficerede Mapper:
(Ingen skadelige objekter blev fundet)

Inficerede Filer:
(Ingen skadelige objekter blev fundet)

Og her loggen fra HiJackThis :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:13:10, on 30-05-2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Heimdal\Service\HeimdalAgentService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\TOSHIBA\TOSHIBA RAID\Service\kraidsvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\SigmaTel\C-dur-lyd\WDM\StacSV.exe
C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe
C:\Program Files\Heimdal\Client\HeimdalAgent.exe
C:\Program Files\TOSHIBA\TOSHIBA-zoomfunktion\SmoothView.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\Program Files\TOSHIBA\Wireless Hotkey\TosHKCW.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\TOSHIBA RAID\Console\Kraidman.exe
C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\ddwmon.exe
C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Stener\Desktop\Hijack\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.dk/0SEDADK/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.dk/0SEDADK/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://tv2.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.dk/0SEDADK/SAOS01?FORM=TOOLBR
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\msntb.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\msntb.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: MP3 Rocket Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\system32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA-zoomfunktion\SmoothView.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [TosHKCW.exe] "C:\Program Files\TOSHIBA\Wireless Hotkey\TosHKCW.exe"
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [TPSODDCtl] TPSODDCtl.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [Kraidman] C:\Program Files\TOSHIBA\TOSHIBA RAID\Console\Kraidman.exe
O4 - HKLM\..\Run: [DDWMon] C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Hurtig start af Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\msntb.dll/search.htm
O8 - Extra context menu item: Google Sidewiki ... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos-beta/OnlineScanner.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Tjenesten Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Tjeneste (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Heimdal Service (HeimdalService) - CSIS Security Group - C:\Program Files\Heimdal\Service\HeimdalAgentService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: TOSHIBA RAID Service (kraidsvc) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA RAID\Service\kraidsvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation  - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-dur-lyd\WDM\StacSV.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

End of file - 11683 bytes
30. maj 2011 - 06:52 #7
Tja - det anede mig

) -> No action taken.

Om igen med MalwareBytes
Tryk på "Vis resultater" knappen efter scanningen - og herefter tryk på "Fjern det valgte"


* Windows Desktop Search
* MSN Search Toolbar
* Ask Toolbar
* MP3 Rocket Toolbar

* Tjenesten Google Update

* McAfee Security Scan


CCleaner - værktøjer - opstart - her kan du disable/fjern følgende elementer rfa din opstart ->

* [MSMSGS]  (Eller bruger du hele tiden denne GAMLE Messenger ?)
* Hurtig start af Microsoft Office OneNote 2003
* OpenOffice.org 3.3.lnk

Avatar billede nyher Novice
30. maj 2011 - 18:44 #8
Måske jeg misforstod det med loggen fra MalwareBytes....sendte loggen på den allerførste kørsel, så man kunne se hvad den fandt af snavs. Vil mene at jeg fik renset ud efter kørslen.....men her en ny log

Malwarebytes' Anti-Malware

Database version: 6723

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

30-05-2011 17:45:06
mbam-log-2011-05-30 (17-45-06).txt

Skanningstype: Fuldstændig skanning (C:\|)
Objekter skannet: 221173
Tid gået: 32 minut(ter), 12 sekund(er)

Hukommelses Processorer Inficeret: 0
Hukommelses Moduler Inficeret: 0
Registreringsdatabasenøgler Inficeret: 0
Registreringsdatabaseværdier Inficeret: 0
Registreringsdatabasedata Objekter Inficeret: 0
Inficerede Mapper: 0
Inficerede Filer: 0

Hukommelses Processorer Inficeret:
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret:
(Ingen skadelige objekter blev fundet)

Inficerede Mapper:
(Ingen skadelige objekter blev fundet)

Inficerede Filer:
(Ingen skadelige objekter blev fundet)

Har forsøgt at lave de ændringer som blev beskrevet, men stødte på nedenstående problemmer...

Har forsøgt at afinstallere Windows Desktop Search....men blev nervøs, da der dukkede en lang liste op med programmer som der blev advaret om måske ikke ville virke bagefter....skal jeg bare afinstallere den alligevel..??

Ask-toolbar og Tjenesten Google Update kunne jeg ikke finde på listen under tilføj/fjern programmer....er der en anden måde at gøre det på..?

MSMSGS....næ, bruger aldrig messenger.....
30. maj 2011 - 19:11 #9
Nedenstående er mest 'oprydning' ->

[Windows Desktop Search] kan du godt afinstal - selv om de beskeder...


Kør en scanning med Hijackthis,
Du får herunder nogle filer, som du skal fixe. Det, du skal gøre, er at sætte et flueben ud for disse filer. Når du har gjort det, så lukker du alle andre vinduer ned. Det er meget vigtigt at det eneste vindue, som er åbent er HijackThis vinduet. Husk også at lukke dette vindue, når du har markeret filerne. Nu må du fixe. Klik på Fix checked.

Det er disse, som skal fixes:

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\msntb.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\msntb.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: MP3 Rocket Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Startup: Hurtig start af Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

Genstart normalt...

Slet mappen
* C:\Program Files\Ask.com\


Opdater AcrobatReader ->
http://get.adobe.com/dk/reader/  (FRAKlik det der Google Halløj!!!)


Hvordan kører PC'en så nu ?
Avatar billede nyher Novice
30. maj 2011 - 20:32 #10
Den starter fint og rimelig hurtigt op...og fungerer som sådan ok.....meeen - stadigvæk når jeg går ind i start/programmer og lader musen kører op igennem programmer, så står der "tom" ude i boksen der popper op til højre for programnavnet og jeg kan ikke starte noget op derinde fra. Jeg kan kun starte mine programmer op via ikonerne på skrivebordet.....Adope Reader kan dog nu startes op via Start/Programmer.
30. maj 2011 - 20:41 #11
Hmmm... andre i denne tråd ?
Avatar billede Slettet bruger
30. maj 2011 - 21:50 #12
Hvis den nu er ren for virus, vil jeg mene at en repair med efterfølgende opdateringer kunne være en mulighed.


For så er det jo nok mere skader i Windows, der driller nu end virus.

Hvis andre har en lettere løsning så brug endelig den.
Avatar billede nyher Novice
30. maj 2011 - 22:43 #13
Ok - lyder som en god mulighed. Der står i vejledningen at man skal være meget obs på, at man har en xp skive med servicepack 2 på...men på mine toshiba xp-skiver står der intet om hvilken SP der er på...og jeg kan heller ikke umiddelbart se det, når jeg kigger på filerne på skiverne...kan se at de er fra 2006. Er der en måde at finde ud af det på..?
Avatar billede f-arn Guru
31. maj 2011 - 06:55 #14
Medmindre der er andet, der har slettet de genveje, er de der nok stadig. Windows XP Recovery plejer ikke at slette dem.


1. Hent dette lille værktøj:

http://images.malwareremoval.com/jpshortstuff/SystemLook.exe (alternativ adresse)

2. Dobbeltklik på systemlook.exe - nu dukker der et lille vindue op, hvor du skal kopiere HELE indholdet med fed skrift ind:

C:\Documents and Settings\All Users /s /n*.lnk /noexpand

3. Luk så alle andre vinduer og klik på knappen Look. Programmet vil nu lede på din computer.

4. Når programmet er færdig med at lede, vil der dukke et notepad-vindue op, med en log fra SystemLook. Den skal du kopiere herind i forum i dit næste indlæg. Log'en kan også findes på dit Skrivebord med navnet: SystemLook.txt.
Avatar billede nyher Novice
31. maj 2011 - 20:10 #15
Her er så Systemlock :

SystemLook 04.09.10 by jpshortstuff
Log created at 20:05 on 31/05/2011 by Stener
Administrator - Elevation successful

========== dir ==========

C:\Documents and Settings\All Users - Parameters: "/s /n*.lnk /noexpand"

None found.

C:\Documents and Settings\All Users\Application Data    dr-----    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Adobe    d------    [12:05 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat    d------    [18:20 30/05/2011]

C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat\10.0    d------    [18:20 30/05/2011]

C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat\10.0\Replicate    d------    [18:20 30/05/2011]

C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat\10.0\Replicate\Security    d------    [18:20 30/05/2011]

C:\Documents and Settings\All Users\Application Data\Adobe\Setup    d------    [18:18 30/05/2011]

C:\Documents and Settings\All Users\Application Data\Adobe\Setup\{AC76BA86-7AD7-1030-7B44-AA0000000001}    d------    [18:18 30/05/2011]

C:\Documents and Settings\All Users\Application Data\ashampoo    d------    [19:23 02/03/2011]

C:\Documents and Settings\All Users\Application Data\ashampoo\drivers    d------    [19:23 02/03/2011]

C:\Documents and Settings\All Users\Application Data\AVG10    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\Chjw    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\Chjw\4a60e26660e25869    d------    [18:37 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\Chjw\807c847d7c846fa8    d------    [18:37 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS\config    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS\config\EN_US    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS\log    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS\malwareprofile    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\IDS\profile    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\log    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\log\IDP    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\log\IDP\log    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\SetupBackup    d----c-    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\Temp    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\update    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\update\backup    d------    [18:48 30/01/2011]

C:\Documents and Settings\All Users\Application Data\AVG10\update\download    d------    [18:36 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Babylon    d------    [12:39 23/02/2011]

C:\Documents and Settings\All Users\Application Data\Birdstep Technology    d------    [18:58 03/02/2011]

C:\Documents and Settings\All Users\Application Data\Birdstep Technology\EasyConnect    d------    [18:58 03/02/2011]

C:\Documents and Settings\All Users\Application Data\Birdstep Technology\EasyConnect\Update    d------    [18:58 03/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\Canon MP640 series Printer    d------    [14:24 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\Canon MP640 series Printer\0002    d------    [14:24 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\Drvlog    d------    [14:24 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\Drvlog\Canon MP640 series Printer    d------    [14:24 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0401    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0404    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0405    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0406    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0407    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0408    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0409    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\040b    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\040c    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\040e    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0410    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0411    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0412    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0413    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0414    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0415    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0419    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\041D    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\041E    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\041F    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0421    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0804    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0816    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\LanguageModules\0c0a    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\Picture    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\UserProfile    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\UserProfile\Stener    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP640 series Printer\UserProfile\SYSTEM    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Application Data\CanonIJEGV    d------    [07:31 16/03/2011]

C:\Documents and Settings\All Users\Application Data\CanonIJScan    d------    [15:16 01/03/2011]

C:\Documents and Settings\All Users\Application Data\CanonIJScan\MP640 series    d------    [15:16 01/03/2011]

C:\Documents and Settings\All Users\Application Data\Common Files    d------    [18:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\CSIS    d------    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\CSIS\HeimdalData    d------    [17:08 12/05/2011]

C:\Documents and Settings\All Users\Application Data\CSIS\HeimdalData\heimdal_trace    d------    [17:08 12/05/2011]

C:\Documents and Settings\All Users\Application Data\DVD Shrink    d------    [15:55 15/02/2011]

C:\Documents and Settings\All Users\Application Data\ESET    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Antispam    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Charon    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Installer    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Logs    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Logs\eScan    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Oldfiles    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Stats    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\SupportRequests    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\SysInspector    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\continuous    d------    [01:09 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_62.67.184.68    d------    [02:10 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_89.202.149.36    d------    [19:07 02/02/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_89.202.157.227    d------    [03:10 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_90.183.101.10    d------    [20:07 02/02/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_93.184.71.27    d------    [07:10 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_um10.eset.com    d------    [05:10 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_um12.eset.com    d------    [04:10 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_um14.eset.com    d------    [01:09 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_um16.eset.com    d------    [21:07 02/02/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_um18.eset.com    d------    [14:53 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\http_update.eset.com    d------    [01:09 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\oldfiles    d------    [01:09 31/01/2011]

C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Updfiles\temp    d------    [01:09 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Custom Buttons    d------    [16:24 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Google Toolbar    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Google Toolbar\Component    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Google Toolbar\Update    d------    [14:32 24/02/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\chrome    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\components    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\components    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\contenthandling    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\custombuttons    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\preferences    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\lib    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\META-INF    d------    [16:22 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Innovative Solutions    d------    [21:27 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Innovative Solutions\DriverMax    d------    [21:27 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Innovative Solutions\DriverMax\Restore    d------    [22:35 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Intel    d------    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Intel\Wireless    d------    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Intel\Wireless\Settings    d------    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Intel\Wireless\WLANProfiles    d--h---    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Malwarebytes    d------    [00:04 28/05/2011]

C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware    d------    [00:04 28/05/2011]

C:\Documents and Settings\All Users\Application Data\McAfee    d------    [17:38 31/01/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS    d------    [17:38 31/01/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\Common    d------    [21:31 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\Common\McCHSvc    d------    [21:31 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\Common\McUICnt    d------    [11:56 26/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\McUICnt    d------    [20:39 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\McUICnt\McUICnt    d------    [20:39 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\PartnerCustom    d------    [17:38 31/01/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\PartnerCustom\McCHSvc    d------    [21:31 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\PartnerCustom\McUICnt    d------    [20:39 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\PartnerCustom\SSScheduler    d------    [17:38 31/01/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\SecurityScanner    d------    [20:39 24/03/2011]

C:\Documents and Settings\All Users\Application Data\McAfee\MCLOGS\SecurityScanner\McUICnt    d------    [20:39 24/03/2011]

C:\Documents and Settings\All Users\Application Data\MFAData    d------    [18:33 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\logs    d------    [18:33 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\mkt    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\mkt\da    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\mkt\hi    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\mkt\res    d------    [18:34 30/01/2011]

C:\Documents and Settings\All Users\Application Data\MFAData\pack    d------    [18:33 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft    d---s--    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto    d---s--    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\DSS    d---s--    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\DSS\MachineKeys    d---s--    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA    d---s--    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys    d---s--    [04:58 31/03/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18    d---s--    [18:13 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson    d------    [18:39 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\EPG    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\EPG\prefs    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\EPG\tracehelper    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\logs    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\eHome\Recording    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\HTML Help    d------    [13:33 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index    d------    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player    d------    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\MSDAIPP    d------    [13:05 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\MSDAIPP\OFFLINE    d------    [13:05 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Network    d------    [13:26 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections    d------    [13:26 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Cm    d------    [13:27 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk    d------    [13:26 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader    d------    [18:41 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE    d------    [05:32 26/09/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA    d------    [05:32 26/09/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\PlayReady    d------    [03:48 19/03/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\Provisioning    d------    [18:12 30/01/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures    d------    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\Default Pictures    d------    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT    d------    [07:06 23/03/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\NTBackup    d------    [07:06 23/03/2011]

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\NTBackup\catalogs51    d------    [07:06 23/03/2011]

C:\Documents and Settings\All Users\Application Data\NOS    d------    [15:25 01/02/2011]

C:\Documents and Settings\All Users\Application Data\NOS\Adobe_Downloads    d------    [18:18 30/05/2011]

C:\Documents and Settings\All Users\Application Data\NOS\GP_GUI_Adobe    d------    [20:39 22/03/2011]

C:\Documents and Settings\All Users\Application Data\NOS\GP_GUI_Adobe\images    d------    [20:39 22/03/2011]

C:\Documents and Settings\All Users\Application Data\Sun    d------    [17:48 14/03/2011]

C:\Documents and Settings\All Users\Application Data\Sun\Java    d------    [17:48 14/03/2011]

C:\Documents and Settings\All Users\Application Data\Sun\Java\Java Update    d------    [17:48 14/03/2011]

C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com    d------    [11:20 28/05/2011]

C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware    d------    [11:20 28/05/2011]

C:\Documents and Settings\All Users\Application Data\Symantec    d------    [13:08 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate    d------    [13:08 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus    d------    [13:08 06/09/2006]

C:\Documents and Settings\All Users\Application Data\Toshiba    d------    [20:31 01/02/2011]

C:\Documents and Settings\All Users\Application Data\Toshiba\Common    d------    [20:31 01/02/2011]

C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage    d------    [01:13 31/01/2011]

C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage\data    d------    [01:13 31/01/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}    d----c-    [07:49 23/03/2011]
HeimdalSetup.lnk    --a--c- 0 bytes    [07:50 23/03/2011]    [07:50 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\1C64893    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\2360D60E    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\45D459ED    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\55361163    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\5C84DFD2    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\860F5894    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\8CDAC5C8    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\A9E24CDE    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\7D3B53E6\BC521D27    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\82372408    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\82372408\81AB6D7D    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\98119B1    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\98119B1\3C341D4F    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\B49B5E53    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\B49B5E53\8888952E    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\D9ED1D5C    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}\OFFLINE\D9ED1D5C\FF95CAC6    d----c-    [07:49 23/03/2011]

C:\Documents and Settings\All Users\Desktop    d------    [14:23 28/08/2006]
3Connect.lnk    --a---- 1579 bytes    [15:19 28/05/2011]    [18:58 03/02/2011]
Adobe Reader X.lnk    --a---- 1734 bytes    [18:20 30/05/2011]    [18:20 30/05/2011]
Ashampoo Burning Studio 6 FREE.lnk    --a---- 849 bytes    [15:19 28/05/2011]    [19:23 02/03/2011]
Babylon.lnk    --a---- 2170 bytes    [15:19 28/05/2011]    [12:39 23/02/2011]
Canon Easy-PhotoPrint EX.lnk    --a---- 1734 bytes    [15:19 28/05/2011]    [14:16 06/02/2011]
Canon IJ Network Tool.lnk    --a---- 1662 bytes    [15:19 28/05/2011]    [14:20 06/02/2011]
Canon MP Navigator EX 3.0.lnk    --a---- 1736 bytes    [15:19 28/05/2011]    [14:15 06/02/2011]
Canon MP640 series Brugerregistrering.LNK    --a---- 1685 bytes    [15:19 28/05/2011]    [14:18 06/02/2011]
Canon MP640 series Vejledning på skærmen.lnk    --a---- 1965 bytes    [15:19 28/05/2011]    [14:14 06/02/2011]
Canon My Printer.lnk    --a---- 1652 bytes    [15:19 28/05/2011]    [14:15 06/02/2011]
Canon Solution Menu.lnk    --a---- 1680 bytes    [15:19 28/05/2011]    [14:16 06/02/2011]
CCleaner.lnk    --a---- 682 bytes    [15:19 28/05/2011]    [07:08 25/05/2011]
DVD-RAM Tool.lnk    --a---- 1426 bytes    [15:19 28/05/2011]    [19:46 02/09/2005]
HD DVD Demo.LNK    --a---- 1710 bytes    [15:19 28/05/2011]    [17:19 23/02/2011]
HD DVD Info.LNK    --a---- 1572 bytes    [15:19 28/05/2011]    [17:31 28/02/2011]
HDtoGo.LNK    --a---- 1726 bytes    [15:19 28/05/2011]    [23:25 23/03/2011]
Malwarebytes' Anti-Malware.lnk    --a---- 784 bytes    [15:19 28/05/2011]    [00:05 28/05/2011]
Media Center.lnk    --a---- 1398 bytes    [15:19 28/05/2011]    [17:05 27/03/2011]
Microsoft Office OneNote 2003.lnk    --a---- 1624 bytes    [15:19 28/05/2011]    [16:33 27/03/2011]
MSN Search Find præcist det, du søger efter, på pc'en.lnk    --a---- 2634 bytes    [15:19 28/05/2011]    [21:41 23/03/2011]
Norton Info.lnk    --a---- 1666 bytes    [15:19 28/05/2011]    [12:46 18/08/2004]
OpenOffice.org 3.3.lnk    --a---- 895 bytes    [15:19 28/05/2011]    [17:49 14/03/2011]
Opret cd-rom med drivere og hjælpeprogrammer.lnk    --a---- 1524 bytes    [15:19 28/05/2011]    [21:24 20/03/2011]
Speccy.lnk    --a---- 654 bytes    [15:19 28/05/2011]    [16:54 19/03/2011]
TOSHIBA Assist.lnk    --a---- 1533 bytes    [15:19 28/05/2011]    [10:35 06/09/2006]
TOSHIBA Brugerhåndbog.lnk    --a---- 1578 bytes    [15:19 28/05/2011]    [12:04 06/09/2006]
TOSHIBA HD DVD Launcher.lnk    --a---- 677 bytes    [15:19 28/05/2011]    [18:16 30/01/2011]
TOSHIBA HD DVD PLAYER.lnk    --a---- 687 bytes    [15:19 28/05/2011]    [18:16 30/01/2011]
Toshiba-garanti.lnk    --a---- 1537 bytes    [15:19 28/05/2011]    [19:59 14/03/2011]
Valg af webbrowser.lnk    --a---- 1503 bytes    [15:19 28/05/2011]    [05:33 31/01/2011]

C:\Documents and Settings\All Users\Documents    dr-----    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Documents\MCE Logs    d--hs--    [17:05 27/03/2011]

C:\Documents and Settings\All Users\Documents\My Music    dr-----    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Alanis Morissette    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Alanis Morissette\Everything - Single    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Deardorf Peterson Group    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Deardorf Peterson Group\Portal    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\King Sunny Ade & His African Beats    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\King Sunny Ade & His African Beats\Synchro Series    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Mark Knopfler    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Mark Knopfler\shangri-la    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\My Playlists    d------    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Robert Randolph & the Family Band    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Robert Randolph & the Family Band\Unclassified    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Rosie Thomas    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Rosie Thomas\Only With Laughter Can You Win    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Sample Music    dr-----    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Sample Playlists    dr-----    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Sample Playlists\0008F064    d------    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Sync Playlists    d------    [13:30 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\Sync Playlists\0008F064    d------    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\The Shins    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Music\The Shins\Chutes Too Narrow    d------    [14:01 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures    dr-----    [13:28 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Impressionism - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Landscapes - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Masterpieces - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Nature - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures    dr-----    [13:28 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Travel - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Pictures\Vintage - GalleryPlayer    d------    [14:02 28/08/2006]

C:\Documents and Settings\All Users\Documents\My Videos    dr-----    [13:27 28/08/2006]

C:\Documents and Settings\All Users\Documents\Recorded TV    d------    [13:36 28/08/2006]

C:\Documents and Settings\All Users\Documents\Recorded TV\TempRec    d--h---    [08:29 06/09/2006]

C:\Documents and Settings\All Users\Documents\Recorded TV\TempRec\TempSBE    d--hs--    [08:29 06/09/2006]

C:\Documents and Settings\All Users\DRM    d--hs--    [05:39 26/09/2006]

C:\Documents and Settings\All Users\Favorites    d------    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Start Menu    dr-----    [14:23 28/08/2006]
Set Program Access and Defaults.lnk    --a---- 1563 bytes    [15:19 28/05/2011]    [15:09 31/01/2011]
Windows Catalog.lnk    --a---- 398 bytes    [15:19 28/05/2011]    [13:32 28/08/2006]
Windows Update.lnk    --a---- 1507 bytes    [15:19 28/05/2011]    [13:32 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs    dr-----    [14:23 28/08/2006]
Adobe Reader X.lnk    --a---- 2315 bytes    [18:20 30/05/2011]    [18:31 30/05/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\3    d------    [18:58 03/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\7-Zip    d------    [22:32 15/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories    dr-----    [13:27 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Accessibility    dr-----    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Communications    dr-----    [13:27 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Entertainment    dr-----    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Media Center    d------    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Media Center\Media Center Programs    d------    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\System Tools    dr-----    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools    dr-----    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Ashampoo    d------    [19:23 02/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Ashampoo\Ashampoo Burning Studio 6 FREE    d------    [19:23 02/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon IJ Network Utilities    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool    d------    [14:20 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP640 series    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP640 series Brugerregistrering    d------    [14:18 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon MP640 series Manual    d------    [14:14 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities    d------    [14:15 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX    d------    [14:16 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities\MP Navigator EX 3.0    d------    [14:15 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities\My Printer    d------    [14:15 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities\Solution Menu    d------    [14:16 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\CD-LabelPrint    d------    [14:16 06/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\CSIS Heimdal    d------    [14:57 30/05/2011]
Afinstaller Heimdal.lnk    --a---- 700 bytes    [14:57 30/05/2011]    [14:57 30/05/2011]
Genstart Heimdal.lnk    --a---- 817 bytes    [14:57 30/05/2011]    [14:57 30/05/2011]
Heimdal.lnk    --a---- 796 bytes    [14:57 30/05/2011]    [14:57 30/05/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\CSIS Heimdal\Docs    d------    [14:57 30/05/2011]
Manual.lnk    --a---- 254 bytes    [14:57 30/05/2011]    [14:57 30/05/2011]
Support.lnk    --a---- 246 bytes    [14:57 30/05/2011]    [14:57 30/05/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\DVD Flick    d------    [16:52 02/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\DVD Flick\Help and Support    d------    [16:52 02/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\DVD Shrink    d------    [15:55 15/02/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\ESET    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\ESET\ESET Smart Security    d------    [00:06 31/01/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Games    dr-----    [13:29 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Intel PROSet Wireless    d------    [18:17 30/01/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\InterVideo WinDVD    d------    [11:11 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\InterVideo WinDVD Creator 2    d------    [10:41 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware    d------    [00:04 28/05/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office    d------    [05:33 26/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office\Microsoft Office-værktøjer    d------    [05:33 26/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight    d------    [03:48 19/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\OpenOffice.org 3.3    d---s--    [17:49 14/03/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup    dr-----    [14:23 28/08/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA    d------    [08:29 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA\Bluetooth    d------    [08:58 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA\CD&DVD-programmer    d------    [11:40 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA\Hjælpeprogrammer    d------    [08:29 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA\Netværk    d------    [08:57 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA\RAID    d------    [10:38 06/09/2006]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA HD DVD Launcher    d------    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\TOSHIBA HD DVD PLAYER    d------    [18:16 30/01/2011]

C:\Documents and Settings\All Users\Start Menu\Programs\Windows Digital Media Enhancements    d------    [13:28 28/08/2006]

C:\Documents and Settings\All Users\Templates    d------    [14:23 28/08/2006]

-= EOF =-
Avatar billede f-arn Guru
31. maj 2011 - 21:29 #16
Ok - Unhide har slet ikke kunnet finde dem. Hvis de stadig er der, burde dette gi' os en idè om hvor.


Kør SystemLook igen, men med nedenstående tekst.

%TEMP% /s /n*.lnk
Avatar billede nyher Novice
31. maj 2011 - 21:39 #17
Her er den nye systemlook :

SystemLook 04.09.10 by jpshortstuff
Log created at 21:35 on 31/05/2011 by Stener
Administrator - Elevation successful

========== dir ==========

C:\DOCUME~1\Stener\LOCALS~1\Temp - Parameters: "/s /n*.lnk"

None found.

C:\DOCUME~1\Stener\LOCALS~1\Temp\2F.dir    d------    [18:43 21/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\31.dir    d------    [15:53 15/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\7zS5.tmp    d------    [18:32 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\AskSearch    d------    [22:48 16/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\CSIS    d------    [07:50 23/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\CSIS\Heimdal    d------    [07:50 23/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\CSIS\Heimdal\Heimdal Free Edition    d------    [07:50 23/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\e4jF2.tmp_dir8848    d------    [14:10 03/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Google Toolbar    d------    [16:22 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\hsperfdata_Stener    d------    [22:25 29/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\isp448.tmp    d------    [17:11 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for 4 cmod-da-20071119115033.zip    d------    [16:55 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for csutil-20080320140443 intel chipsset.zip    d------    [16:52 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for csutil-20080320140443 intel chipsset.zip\Chipset Driver    d------    [16:52 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for ewp2414.zip    d------    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for ewp2414.zip\ewpx-win-1_2_1-ea23    d------    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for ewp2414.zip\ewpx-win-1_2_1-ea23\Res    d------    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for ewp2414.zip\ewpx-win-1_2_1-ea23\Res\EULA    d------    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for ewp2414.zip\ewpx-win-1_2_1-ea23\Res\String    d------    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 1 for install-20080731131307[1].zip    d------    [17:00 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 2 for 12 lan-20081201085550 lan driver2.zip    d------    [17:16 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\Midlertidig mappe 2 for 12 lan-20081201085550 lan driver2.zip\lan-Intel Pro 1000 PL    d------    [17:16 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\NDP1.1sp1-KB2416447-X86    d------    [22:53 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\NDP1.1sp1-KB979906-X86    d------    [19:14 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp    d------    [23:12 27/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1    d------    [23:12 27/05/2011]
Set Program Access and Defaults.lnk    ------- 1563 bytes    [13:32 28/08/2006]    [15:09 31/01/2011]
Windows Catalog.lnk    ------- 398 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Windows Update.lnk    ------- 1507 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs    d------    [23:12 27/05/2011]
Adobe Reader 7.0.lnk    --a---- 1810 bytes    [12:05 06/09/2006]    [12:05 06/09/2006]
Media Center.lnk    --a---- 1466 bytes    [08:04 06/09/2006]    [08:04 06/09/2006]
MSN.lnk    --a---- 1986 bytes    [13:28 28/08/2006]    [13:28 28/08/2006]
Vuze.lnk    --a---- 1505 bytes    [20:20 28/02/2011]    [20:20 28/02/2011]
Windows Messenger.lnk    --a---- 609 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Windows Movie Maker.lnk    --a---- 786 bytes    [13:31 28/08/2006]    [13:31 28/08/2006]
Windows-pc-søgning.lnk    --a---- 1783 bytes    [13:15 06/09/2006]    [13:15 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\3    d------    [23:12 27/05/2011]
3Connect.lnk    --a---- 1591 bytes    [18:58 03/02/2011]    [18:58 03/02/2011]
Afinstaller 3Connect.lnk    --a---- 2108 bytes    [18:58 03/02/2011]    [18:58 03/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\7-Zip    d------    [23:12 27/05/2011]
7-Zip File Manager.lnk    --a---- 645 bytes    [22:32 15/03/2011]    [22:32 15/03/2011]
7-Zip Help.lnk    --a---- 650 bytes    [22:32 15/03/2011]    [22:32 15/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories    d------    [23:12 27/05/2011]
Calculator.lnk    --a---- 1498 bytes    [13:29 28/08/2006]    [18:43 02/02/2011]
Paint.lnk    --a---- 1515 bytes    [13:29 28/08/2006]    [11:06 16/02/2011]
Remote Desktop Connection.lnk    --a---- 1585 bytes    [15:09 31/01/2011]    [15:09 31/01/2011]
Scanner and Camera Wizard.lnk    --a---- 710 bytes    [05:21 28/04/2011]    [05:21 28/04/2011]
WordPad.lnk    --a---- 879 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Accessibility    d------    [23:12 27/05/2011]
Accessibility Wizard.lnk    --a---- 1520 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Communications    d------    [23:12 27/05/2011]
HyperTerminal.lnk    --a---- 786 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Network Connections.lnk    --a---- 1757 bytes    [13:27 28/08/2006]    [13:27 28/08/2006]
Network Setup Wizard.lnk    --a---- 1640 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]
New Connection Wizard.lnk    --a---- 1646 bytes    [13:27 28/08/2006]    [13:27 28/08/2006]
Wireless Network Setup Wizard.lnk    --a---- 1656 bytes    [13:32 28/08/2006]    [15:10 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Entertainment    d------    [23:12 27/05/2011]
Sound Recorder.lnk    --a---- 1528 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Volume Control.lnk    --a---- 1528 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Media Center    d------    [23:12 27/05/2011]
Media Center.lnk    --a---- 1478 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\Media Center\Media Center Programs    d------    [23:12 27/05/2011]
InterVideo Decoder Setup.lnk    --a---- 1896 bytes    [11:11 06/09/2006]    [11:11 06/09/2006]
TOSHIBA-farveindstillinger.lnk    --a---- 815 bytes    [05:25 26/09/2006]    [05:25 26/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Accessories\System Tools    d------    [23:12 27/05/2011]
Backup.lnk    --a---- 1532 bytes    [13:32 28/08/2006]    [07:06 23/03/2011]
Character Map.lnk    --a---- 1521 bytes    [13:29 28/08/2006]    [07:05 23/03/2011]
Disk Cleanup.lnk    --a---- 1532 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]
Disk Defragmenter.lnk    --a---- 1572 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]
Files and Settings Transfer Wizard.lnk    --a---- 1591 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Scheduled Tasks.lnk    --a---- 1753 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]
System Information.lnk    --a---- 1070 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]
System Restore.lnk    --a---- 1616 bytes    [13:30 28/08/2006]    [13:30 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Administrative Tools    d------    [23:12 27/05/2011]
Component Services.lnk    --a---- 1582 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Computer Management.lnk    --a---- 1602 bytes    [13:32 28/08/2006]    [17:30 27/03/2011]
Data Sources (ODBC).lnk    --a---- 1596 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Event Viewer.lnk    --a---- 1592 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Guider i Microsoft .NET Framework 1.1.lnk    --a---- 1198 bytes    [08:05 06/09/2006]    [08:05 06/09/2006]
Konfiguration af Microsoft .NET Framework 1.1.lnk    --a---- 1139 bytes    [08:05 06/09/2006]    [08:05 06/09/2006]
Local Security Policy.lnk    --a---- 1590 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Microsoft .NET Framework 1.1 Configuration.lnk    --a---- 1107 bytes    [13:38 28/08/2006]    [13:38 28/08/2006]
Microsoft .NET Framework 1.1 Wizards.lnk    --a---- 1158 bytes    [13:38 28/08/2006]    [13:38 28/08/2006]
Performance.lnk    --a---- 1591 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]
Services.lnk    --a---- 1602 bytes    [13:32 28/08/2006]    [13:32 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Ashampoo    d------    [23:12 27/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Ashampoo\Ashampoo Burning Studio 6 FREE    d------    [23:12 27/05/2011]
Ashampoo Burning Studio 6 FREE.lnk    --a---- 867 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]
Help.lnk    --a---- 964 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]
Readme.lnk    --a---- 847 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]
Uninstall Ashampoo Burning Studio 6 FREE.lnk    --a---- 842 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon IJ Network Utilities    d------    [23:12 27/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility    d------    [23:12 27/05/2011]
Afinstallationsprogram.lnk    --a---- 1931 bytes    [14:20 06/02/2011]    [14:20 06/02/2011]
Canon IJ Network Scan Utility.lnk    --a---- 1842 bytes    [14:20 06/02/2011]    [14:20 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon IJ Network Utilities\Canon IJ Network Tool    d------    [23:12 27/05/2011]
Canon IJ Network Tool.lnk    --a---- 1772 bytes    [14:20 06/02/2011]    [14:20 06/02/2011]
Uninstaller.lnk    --a---- 1765 bytes    [14:20 06/02/2011]    [14:20 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon MP640 series    d------    [23:12 27/05/2011]
Afinstallationsprogram til MP Drivers.lnk    --a---- 1262 bytes    [14:14 06/02/2011]    [14:23 06/02/2011]
Vigtigt.lnk    --a---- 897 bytes    [14:14 06/02/2011]    [14:23 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon MP640 series Brugerregistrering    d------    [23:12 27/05/2011]
Afinstallation af brugerregistrering.LNK    --a---- 1697 bytes    [14:18 06/02/2011]    [14:18 06/02/2011]
Brugerregistrering.LNK    --a---- 1697 bytes    [14:18 06/02/2011]    [14:18 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon MP640 series Manual    d------    [23:12 27/05/2011]
Afinstaller.lnk    --a---- 865 bytes    [14:14 06/02/2011]    [14:14 06/02/2011]
Canon MP640 series Vejledning på skærmen.lnk    --a---- 1965 bytes    [14:14 06/02/2011]    [14:14 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon Utilities    d------    [23:12 27/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon Utilities\Easy-PhotoPrint EX    d------    [23:12 27/05/2011]
Afinstaller Easy-PhotoPrint EX.lnk    --a---- 1798 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Easy-PhotoPrint EX Vigtigt.lnk    --a---- 1736 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Easy-PhotoPrint EX.lnk    --a---- 1752 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon Utilities\MP Navigator EX 3.0    d------    [23:12 27/05/2011]
Fjernelse af MP Navigator EX.lnk    --a---- 1834 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
MP Navigator EX 3.0.lnk    --a---- 1754 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
Vigtigt til MP Navigator EX.lnk    --a---- 1747 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon Utilities\My Printer    d------    [23:12 27/05/2011]
My Printer Readme.lnk    --a---- 1655 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
My Printer Uninstall.lnk    --a---- 1717 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
My Printer.lnk    --a---- 1670 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Canon Utilities\Solution Menu    d------    [23:12 27/05/2011]
Afinstaller Solution Menu.lnk    --a---- 1744 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Solution Menu - Vigtigt.lnk    --a---- 1682 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Solution Menu.lnk    --a---- 1698 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\CD-LabelPrint    d------    [23:12 27/05/2011]
CD-LabelPrint.lnk    --a---- 1729 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Help.lnk    --a---- 833 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Manual.lnk    --a---- 875 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Read Me.lnk    --a---- 801 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Uninstall.lnk    --a---- 1765 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\CSIS Heimdal    d------    [23:12 27/05/2011]
Afinstaller Heimdal.lnk    --a---- 700 bytes    [17:08 12/05/2011]    [17:08 12/05/2011]
Genstart Heimdal.lnk    --a---- 817 bytes    [17:08 12/05/2011]    [17:08 12/05/2011]
Heimdal.lnk    --a---- 796 bytes    [17:08 12/05/2011]    [17:08 12/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\CSIS Heimdal\Docs    d------    [23:12 27/05/2011]
Manual.lnk    --a---- 254 bytes    [17:08 12/05/2011]    [17:08 12/05/2011]
Support.lnk    --a---- 246 bytes    [17:08 12/05/2011]    [17:08 12/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\DVD Flick    d------    [23:12 27/05/2011]
DVD Flick.lnk    --a---- 1589 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]
Uninstall  DVD Flick.lnk    --a---- 743 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\DVD Flick\Help and Support    d------    [23:12 27/05/2011]
Changelog.lnk    --a---- 732 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]
GNU GPL License.lnk    --a---- 732 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]
Guide.lnk    --a---- 808 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]
Readme.lnk    --a---- 709 bytes    [16:52 02/03/2011]    [16:52 02/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\DVD Shrink    d------    [23:12 27/05/2011]
DVD Shrink 3.2.lnk    --a---- 682 bytes    [15:55 15/02/2011]    [15:55 15/02/2011]
DVD Shrink Information.lnk    --a---- 722 bytes    [15:55 15/02/2011]    [15:55 15/02/2011]
Uninstall DVD Shrink.lnk    --a---- 652 bytes    [15:55 15/02/2011]    [15:55 15/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\ESET    d------    [23:12 27/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\ESET\ESET Smart Security    d------    [23:12 27/05/2011]
Afinstaller.lnk    --a---- 1787 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]
Dokumentation.lnk    --a---- 832 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]
ESET Smart Security.lnk    --a---- 1758 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]
ESET SysInspector.lnk    --a---- 876 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]
ESET SysRescue.lnk    --a---- 861 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]
Licensaftale.lnk    --a---- 832 bytes    [00:06 31/01/2011]    [00:06 31/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Games    d------    [23:12 27/05/2011]
Freecell.lnk    --a---- 1522 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Hearts.lnk    --a---- 1520 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Internet Backgammon.lnk    --a---- 913 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Internet Checkers.lnk    --a---- 913 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Internet Hearts.lnk    --a---- 913 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Internet Reversi.lnk    --a---- 913 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Internet Spades.lnk    --a---- 913 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Minesweeper.lnk    --a---- 1515 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Pinball.lnk    --a---- 885 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Solitaire.lnk    --a---- 1491 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]
Spider Solitaire.lnk    --a---- 1502 bytes    [13:29 28/08/2006]    [13:29 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Intel PROSet Wireless    d------    [23:12 27/05/2011]
Intel PROSet Wireless.lnk    --a---- 826 bytes    [18:17 30/01/2011]    [18:17 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\InterVideo WinDVD    d------    [23:12 27/05/2011]
InterVideo WinDVD Fjern installationen.lnk    --a---- 2222 bytes    [11:11 06/09/2006]    [11:11 06/09/2006]
InterVideo WinDVD.lnk    --a---- 1669 bytes    [11:11 06/09/2006]    [11:11 06/09/2006]
InterVideo WinDVD5 Help.lnk    --a---- 1669 bytes    [11:11 06/09/2006]    [11:11 06/09/2006]
readme1st.txt.lnk    --a---- 1692 bytes    [11:11 06/09/2006]    [11:11 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\InterVideo WinDVD Creator 2    d------    [23:12 27/05/2011]
InterVideo WinDVD Creator.lnk    --a---- 1714 bytes    [10:41 06/09/2006]    [10:41 06/09/2006]
Readme.lnk    --a---- 1698 bytes    [10:41 06/09/2006]    [10:41 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Malwarebytes' Anti-Malware    d------    [00:09 28/05/2011]
Afinstaller (fjern) Malwarebytes' Anti-Malware.lnk    --a---- 820 bytes    [00:05 28/05/2011]    [00:05 28/05/2011]
Malwarebytes' Anti-Malware Help.lnk    --a---- 796 bytes    [00:05 28/05/2011]    [00:05 28/05/2011]
Malwarebytes' Anti-Malware.lnk    --a---- 796 bytes    [00:05 28/05/2011]    [00:05 28/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\McAfee Security Scan Plus    d------    [23:12 27/05/2011]
Afinstaller.lnk    --a---- 915 bytes    [21:31 24/03/2011]    [21:31 24/03/2011]
McAfee Security Scan Plus.lnk    --a---- 1631 bytes    [21:31 24/03/2011]    [21:31 24/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office    d------    [23:12 27/05/2011]
Microsoft Office OneNote 2003.lnk    --a---- 1956 bytes    [05:33 26/09/2006]    [05:33 26/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Office\Microsoft Office-værktøjer    d------    [23:12 27/05/2011]
Microsoft Office 2003 Sprogindstillinger.lnk    --a---- 1898 bytes    [05:33 26/09/2006]    [05:33 26/09/2006]
Microsoft Office 2003-guiden Gem mine indstillinger.lnk    --a---- 1902 bytes    [05:33 26/09/2006]    [05:33 26/09/2006]
Microsoft Office-programgendannelse.lnk    --a---- 1872 bytes    [05:33 26/09/2006]    [05:33 26/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Microsoft Silverlight    d------    [23:12 27/05/2011]
Microsoft Silverlight.lnk    --a---- 1986 bytes    [03:48 19/03/2011]    [01:02 25/04/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\OpenOffice.org 3.3    d------    [23:12 27/05/2011]
OpenOffice.org Base.lnk    --a---- 909 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org Calc.lnk    --a---- 841 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org Draw.lnk    --a---- 807 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org Impress.lnk    --a---- 849 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org Math.lnk    --a---- 807 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org Writer.lnk    --a---- 867 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
OpenOffice.org.lnk    --a---- 907 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Startup    d------    [23:12 27/05/2011]
McAfee Security Scan Plus.lnk    --a---- 1611 bytes    [20:39 22/03/2011]    [21:31 24/03/2011]
Windows-pc-søgning.lnk    --a---- 1767 bytes    [13:15 06/09/2006]    [13:15 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\StreamTorrent NE    d------    [23:12 27/05/2011]
StreamTorrent NE.lnk    --a---- 805 bytes    [20:45 07/05/2011]    [20:45 07/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\SUPERAntiSpyware    d------    [11:48 28/05/2011]
BootSafe.lnk    --a---- 1634 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]
SUPERAntiSpyware Alternate Start.lnk    --a---- 1618 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]
SUPERAntiSpyware Free Edition.lnk    --a---- 1690 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]
SUPERAntiSpyware Help.lnk    --a---- 792 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]
SUPERAntiSpyware Registration-Activation.lnk    --a---- 1712 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA    d------    [23:12 27/05/2011]
Brugerhåndbog.lnk    --a---- 1590 bytes    [12:04 06/09/2006]    [12:04 06/09/2006]
DVD-RAM Tool.lnk    --a---- 1426 bytes    [13:16 06/09/2006]    [19:46 02/09/2005]
HD DVD Info.LNK    --a---- 1572 bytes    [13:25 06/09/2006]    [09:12 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA\Bluetooth    d------    [23:12 27/05/2011]
Bluetooth-indstillinger.lnk    --a---- 812 bytes    [08:58 06/09/2006]    [08:58 06/09/2006]
Bluetooth-informationsudveksling.lnk    --a---- 817 bytes    [08:58 06/09/2006]    [08:58 06/09/2006]
Brugsvejledning.lnk    --a---- 807 bytes    [08:58 06/09/2006]    [08:58 06/09/2006]
Trådløs filoverførsel.lnk    --a---- 827 bytes    [08:58 06/09/2006]    [08:58 06/09/2006]
Trådløst kamera.lnk    --a---- 822 bytes    [08:58 06/09/2006]    [08:58 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA\CD&DVD-programmer    d------    [23:12 27/05/2011]
Direct Disc Writer - Hjælpeprogram til formatering.lnk    --a---- 1823 bytes    [12:00 06/09/2006]    [12:00 06/09/2006]
Disc Creator.lnk    --a---- 1966 bytes    [11:40 06/09/2006]    [11:40 06/09/2006]
Hjælp til Direct Disc Writer.lnk    --a---- 1811 bytes    [12:00 06/09/2006]    [12:00 06/09/2006]
Hjælp til Disc Creator.lnk    --a---- 1788 bytes    [11:40 06/09/2006]    [11:40 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA\Hjælpeprogrammer    d------    [23:12 27/05/2011]
Assist.lnk    --a---- 1551 bytes    [10:35 06/09/2006]    [10:35 06/09/2006]
Formatering af SD-hukommelseskort.lnk    --a---- 1740 bytes    [10:30 06/09/2006]    [10:30 06/09/2006]
Genvejstaster.lnk    --a---- 1763 bytes    [08:29 06/09/2006]    [16:56 31/01/2011]
Hjælp til handicappede.lnk    --a---- 1763 bytes    [10:33 06/09/2006]    [10:33 06/09/2006]
Hjælp til Power Saver.lnk    --a---- 421 bytes    [10:31 06/09/2006]    [10:31 06/09/2006]
Hjælpeprogram til adgangskode.lnk    --a---- 1853 bytes    [10:35 06/09/2006]    [10:35 06/09/2006]
PC Diagnostic Tool.lnk    --a---- 708 bytes    [10:36 06/09/2006]    [10:36 06/09/2006]
QosmioPlayer Filkopieringsværktøj.lnk    --a---- 843 bytes    [12:04 06/09/2006]    [12:04 06/09/2006]
QosmioPlayer - version.lnk    --a---- 811 bytes    [12:04 06/09/2006]    [12:04 06/09/2006]
Touch and Launch.lnk    --a---- 591 bytes    [08:56 06/09/2006]    [08:56 06/09/2006]
Zoomfunktion.lnk    --a---- 617 bytes    [08:50 06/09/2006]    [08:50 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA\Netværk    d------    [23:12 27/05/2011]
ConfigFree-proceslinje.lnk    --a---- 1691 bytes    [09:40 06/09/2006]    [09:40 06/09/2006]
ConfigFree.lnk    --a---- 1684 bytes    [09:40 06/09/2006]    [09:40 06/09/2006]
Hurtig startvejledning til ConfigFree.lnk    --a---- 1751 bytes    [09:40 06/09/2006]    [09:40 06/09/2006]
Modemregionsvalg.lnk    --a---- 609 bytes    [08:57 06/09/2006]    [20:58 01/02/2011]
SUMMIT.lnk    --a---- 1703 bytes    [09:40 06/09/2006]    [09:40 06/09/2006]
Søg efter trådløse enheder.lnk    --a---- 1691 bytes    [09:40 06/09/2006]    [09:40 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA\RAID    d------    [23:12 27/05/2011]
RAID-konsol.lnk    --a---- 1862 bytes    [10:38 06/09/2006]    [10:38 06/09/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA HD DVD Launcher    d------    [23:12 27/05/2011]
TOSHIBA HD DVD Launcher.lnk    --a---- 689 bytes    [18:16 30/01/2011]    [18:16 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\TOSHIBA HD DVD PLAYER    d------    [23:12 27/05/2011]
Hjælp til TOSHIBA HD DVD PLAYER.lnk    --a---- 739 bytes    [18:16 30/01/2011]    [18:16 30/01/2011]
TOSHIBA HD DVD PLAYER.lnk    --a---- 699 bytes    [18:16 30/01/2011]    [18:16 30/01/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\1\Programs\Windows Digital Media Enhancements    d------    [23:12 27/05/2011]
Windows Audio Converter.lnk    --a---- 1082 bytes    [13:28 28/08/2006]    [13:28 28/08/2006]
Windows CD Label Maker.lnk    --a---- 897 bytes    [13:28 28/08/2006]    [13:28 28/08/2006]
Windows Dancer.lnk    --a---- 979 bytes    [13:28 28/08/2006]    [13:28 28/08/2006]
Windows Party Mode.lnk    --a---- 1032 bytes    [13:28 28/08/2006]    [13:28 28/08/2006]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\2    d------    [23:12 27/05/2011]
3Connect.lnk    ------- 1541 bytes    [18:58 03/02/2011]    [18:58 03/02/2011]
Ashampoo Burning Studio 6 FREE.lnk    ------- 867 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]
Launch Internet Explorer Browser.lnk    ------- 815 bytes    [18:14 30/01/2011]    [14:52 31/01/2011]
Media Center.lnk    ------- 1478 bytes    [18:14 30/01/2011]    [18:17 30/01/2011]
Vuze.lnk    ------- 1505 bytes    [20:20 28/02/2011]    [20:20 28/02/2011]
Windows Media Player.lnk    ------- 804 bytes    [18:08 02/02/2011]    [08:05 20/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\smtmp\4    d------    [23:12 27/05/2011]
3Connect.lnk    ------- 1579 bytes    [18:58 03/02/2011]    [18:58 03/02/2011]
Ashampoo Burning Studio 6 FREE.lnk    ------- 849 bytes    [19:23 02/03/2011]    [19:23 02/03/2011]
Babylon.lnk    ------- 2170 bytes    [12:39 23/02/2011]    [12:39 23/02/2011]
Canon Easy-PhotoPrint EX.lnk    ------- 1734 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
Canon IJ Network Tool.lnk    ------- 1662 bytes    [14:20 06/02/2011]    [14:20 06/02/2011]
Canon MP Navigator EX 3.0.lnk    ------- 1736 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
Canon MP640 series Brugerregistrering.LNK    ------- 1685 bytes    [14:18 06/02/2011]    [14:18 06/02/2011]
Canon MP640 series Vejledning på skærmen.lnk    ------- 1965 bytes    [14:14 06/02/2011]    [14:14 06/02/2011]
Canon My Printer.lnk    ------- 1652 bytes    [14:15 06/02/2011]    [14:15 06/02/2011]
Canon Solution Menu.lnk    ------- 1680 bytes    [14:16 06/02/2011]    [14:16 06/02/2011]
CCleaner.lnk    ------- 682 bytes    [07:08 25/05/2011]    [07:08 25/05/2011]
DVD-RAM Tool.lnk    ------- 1426 bytes    [13:16 06/09/2006]    [19:46 02/09/2005]
HD DVD Demo.LNK    ------- 1710 bytes    [13:19 06/09/2006]    [17:19 23/02/2011]
HD DVD Info.LNK    ------- 1572 bytes    [13:25 06/09/2006]    [17:31 28/02/2011]
HDtoGo.LNK    ------- 1726 bytes    [13:18 06/09/2006]    [23:25 23/03/2011]
Malwarebytes' Anti-Malware.lnk    ------- 784 bytes    [00:05 28/05/2011]    [00:05 28/05/2011]
McAfee Security Scan Plus.lnk    ------- 1619 bytes    [20:39 22/03/2011]    [21:31 24/03/2011]
Media Center.lnk    ------- 1398 bytes    [13:24 06/09/2006]    [17:05 27/03/2011]
Microsoft Office OneNote 2003.lnk    ------- 1624 bytes    [05:33 26/09/2006]    [16:33 27/03/2011]
MSN Search Find præcist det, du søger efter, på pc'en.lnk    ------- 2634 bytes    [13:14 06/09/2006]    [21:41 23/03/2011]
Norton Info.lnk    ------- 1666 bytes    [13:13 06/09/2006]    [12:46 18/08/2004]
OpenOffice.org 3.3.lnk    ------- 895 bytes    [17:49 14/03/2011]    [17:49 14/03/2011]
Opret cd-rom med drivere og hjælpeprogrammer.lnk    ------- 1524 bytes    [13:17 06/09/2006]    [21:24 20/03/2011]
Speccy.lnk    ------- 654 bytes    [16:54 19/03/2011]    [16:54 19/03/2011]
SUPERAntiSpyware Free Edition.lnk    ------- 1678 bytes    [11:46 28/05/2011]    [11:46 28/05/2011]
TOSHIBA Assist.lnk    ------- 1533 bytes    [10:35 06/09/2006]    [10:35 06/09/2006]
TOSHIBA Brugerhåndbog.lnk    ------- 1578 bytes    [12:04 06/09/2006]    [12:04 06/09/2006]
TOSHIBA HD DVD Launcher.lnk    ------- 677 bytes    [18:16 30/01/2011]    [18:16 30/01/2011]
TOSHIBA HD DVD PLAYER.lnk    ------- 687 bytes    [18:16 30/01/2011]    [18:16 30/01/2011]
Toshiba-garanti.lnk    ------- 1537 bytes    [13:21 06/09/2006]    [19:59 14/03/2011]
Valg af webbrowser.lnk    ------- 1503 bytes    [05:33 31/01/2011]    [05:33 31/01/2011]
Vuze.lnk    ------- 1505 bytes    [20:20 28/02/2011]    [20:20 28/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\sv3ao.tmp    d------    [14:56 30/05/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\swtlib-32    d------    [20:21 28/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\{CD4E5509-6653-4B6B-86E3-FD330E6C4A02}    d------    [18:57 03/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\{CD4E5509-6653-4B6B-86E3-FD330E6C4A02}\{A899DA1F-D626-401C-8651-F2921E3B4CB3}    d------    [18:57 03/02/2011]

C:\DOCUME~1\Stener\LOCALS~1\Temp\{CD4E5509-6653-4B6B-86E3-FD330E6C4A02}\{A899DA1F-D626-401C-8651-F2921E3B4CB3}\VC2005Redist    d------    [18:57 03/02/2011]

========== filefind ==========

Searching for "Calculator.lnk "
C:\Documents and Settings\Stener\Local Settings\Temp\smtmp\1\Programs\Accessories\Calculator.lnk    --a---- 1498 bytes    [13:29 28/08/2006]    [18:43 02/02/2011] 68A64C557650FFBD2D416E0EF38BA4A1

-= EOF =-
Avatar billede f-arn Guru
31. maj 2011 - 22:47 #18
OK - nu ved jeg hvor de er. Jeg skal bruge flere oplysninger, men jeg får først tid til at lave et OTL Custom Scan i morgen.
Avatar billede f-arn Guru
01. juni 2011 - 07:40 #19
Drop fildeling ->

Afinstaller Vuze.


Download OTL af OldTimer og gem den på dit skrivebord.

Start OTL

Øverst sætter du flueben i "Scan All Users"

I nederste højre hjørne af det øverste panel, sæt fluben ved "LOP Check" og "Purity Check".

I boksen "Custom Scans/Fixes" kopierer du det fremhævede ind.

set /c
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\*. /mp /s
C:\Documents and Settings\*.
C:\Documents and Settings\Stener\Local Settings\Temp\smtmp\1\*.* /s
C:\Documents and Settings\All Users\Start Menu\*.* /s
C:\Documents and Settings\Stener\Local Settings\Temp\smtmp\2\*.* /s
C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\*.* /s
hklm\software\clients\startmenuinternet|command /rs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs

Luk alle åbne vinduer og klik på "Run Scan" øverst til venstre og lad programmet køre. Scanningen kan tage 5-10 minutter.

Det vil give to logfiler på skrivebordet, en kaldet OTL.txt, den anden vil blive navngivet Extras.txt.

Så kopier følgende ind i dit indlæg (i rækkefølge):

indholdet af OTL.txt
indholdet af Extras.txt

Da de er forholdsvis lange, kan du blive nødt til at sende dem i flere indlæg.
Avatar billede nyher Novice
01. juni 2011 - 10:34 #20
OTL logfile created on: 01-06-2011 10:21:30 - Run 1
OTL by OldTimer - Version    Folder = C:\Documents and Settings\Stener\Desktop
Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3,25 Gb Total Physical Memory | 2,71 Gb Available Physical Memory | 83,47% Memory free
5,09 Gb Paging File | 4,58 Gb Available in Paging File | 90,01% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 79,11 Gb Total Space | 43,41 Gb Free Space | 54,87% Space Free | Partition Type: NTFS
Drive D: | 186,31 Gb Total Space | 0,06 Gb Free Space | 0,03% Space Free | Partition Type: NTFS
Drive E: | 6,75 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive F: | 102,54 Gb Total Space | 65,33 Gb Free Space | 63,71% Space Free | Partition Type: NTFS

Computer Name: STENERPC | User Name: Stener | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011-06-01 10:17:52 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
PRC - [2011-05-26 15:34:34 | 001,003,112 | ---- | M] (CSIS Security Group) -- C:\Program Files\Heimdal\Client\HeimdalAgent.exe
PRC - [2011-05-26 15:34:20 | 000,096,872 | ---- | M] (CSIS Security Group) -- C:\Program Files\Heimdal\Service\HeimdalAgentService.exe
PRC - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe
PRC - [2010-11-04 18:15:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
PRC - [2009-07-26 20:10:00 | 001,983,816 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2009-05-19 19:39:44 | 000,136,544 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
PRC - [2008-04-14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006-08-21 17:29:52 | 001,093,708 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\TOSHIBA RAID\Console\KRaidMan.exe
PRC - [2006-08-21 17:29:46 | 000,208,972 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA RAID\Service\kraidsvc.exe
PRC - [2006-08-11 08:42:08 | 000,253,952 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\00THotkey.exe
PRC - [2006-08-10 13:48:20 | 000,184,320 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Controls\TFncKy.exe
PRC - [2006-08-09 10:29:40 | 000,040,960 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\TPSBattM.exe
PRC - [2006-07-27 23:02:54 | 000,090,112 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe
PRC - [2006-07-03 02:07:28 | 000,802,816 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe
PRC - [2006-07-03 01:57:04 | 000,479,232 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
PRC - [2006-07-02 22:50:32 | 000,700,416 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe
PRC - [2006-05-25 19:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\TODDSrv.exe
PRC - [2006-04-28 12:30:06 | 000,262,144 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Direct Disc Writer\DDWMon.exe
PRC - [2006-03-16 22:58:50 | 000,974,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
PRC - [2006-02-14 04:25:42 | 000,077,824 | ---- | M] (SigmaTel, Inc.) -- C:\Program Files\SigmaTel\C-dur-lyd\WDM\stacsv.exe
PRC - [2006-02-14 03:24:10 | 000,593,920 | ---- | M] (TOSHIBA Corp.) -- C:\WINDOWS\system32\TFNF5.exe
PRC - [2005-12-22 11:34:10 | 001,077,329 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\Touch and Launch\PadExe.exe
PRC - [2005-09-01 13:22:50 | 000,102,400 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TouchED\TouchED.exe
PRC - [2005-05-17 12:42:02 | 000,049,152 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Wireless Hotkey\TosHKCW.exe
PRC - [2005-05-12 14:44:38 | 000,118,784 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA-zoomfunktion\SmoothView.exe
PRC - [2005-04-12 11:38:28 | 000,065,536 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
PRC - [2005-01-18 01:38:38 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2001-11-12 14:31:48 | 000,020,480 | ---- | M] (X10) -- C:\Program Files\Common Files\X10\Common\X10nets.exe

========== Modules (SafeList) ==========

MOD - [2011-06-01 10:17:52 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
MOD - [2010-08-23 18:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll

========== Win32 Services (SafeList) ==========

SRV - [2011-05-26 15:34:20 | 000,096,872 | ---- | M] (CSIS Security Group) [Auto | Running] -- C:\Program Files\Heimdal\Service\HeimdalAgentService.exe -- (HeimdalService)
SRV - [2011-03-29 15:41:46 | 000,053,248 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus(R)
SRV - [2010-11-04 18:18:10 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv)
SRV - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2006-08-21 17:29:46 | 000,208,972 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TOSHIBA RAID\Service\kraidsvc.exe -- (kraidsvc)
SRV - [2006-07-27 23:02:54 | 000,090,112 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe -- (TNaviSrv)
SRV - [2006-05-25 19:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\WINDOWS\system32\TODDSrv.exe -- (TODDSrv)
SRV - [2006-02-14 04:25:42 | 000,077,824 | ---- | M] (SigmaTel, Inc.) [Auto | Running] -- C:\Program Files\SigmaTel\C-dur-lyd\WDM\stacsv.exe -- (STacSV)
SRV - [2005-01-18 01:38:38 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe -- (CFSvcs)
SRV - [2001-11-12 14:31:48 | 000,020,480 | ---- | M] (X10) [Auto | Running] -- C:\Program Files\Common Files\X10\Common\X10nets.exe -- (x10nets)

========== Driver Services (SafeList) ==========

DRV - [2011-02-01 22:57:56 | 001,124,097 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2011-02-01 22:36:43 | 004,202,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Intel(R)
DRV - [2011-01-31 18:39:05 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\KR10N.sys -- (KR10N)
DRV - [2010-08-04 11:50:36 | 000,140,752 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010-08-03 13:28:36 | 000,055,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi)
DRV - [2010-07-29 13:31:26 | 000,134,512 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw)
DRV - [2010-07-29 13:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010-07-29 13:31:26 | 000,032,608 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis)
DRV - [2009-09-14 21:06:10 | 000,010,240 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdvrmng.sys -- (mdvrmng)
DRV - [2009-09-14 20:05:10 | 000,102,400 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2008-04-13 20:46:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mpe.sys -- (MPE)
DRV - [2008-04-13 20:45:34 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irbus.sys -- (IrBus)
DRV - [2006-09-06 12:38:38 | 000,066,944 | ---- | M] (TOSHIBA Corporation) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\thdudf.sys -- (thdudf)
DRV - [2006-07-31 20:12:14 | 000,189,184 | ---- | M] (Toshiba Corporation) [Kernel | Auto | Running] -- C:\Program Files\Common Files\TOSHIBA Shared\tos_sps.sys -- (TOS_SPS)
DRV - [2006-07-11 23:44:28 | 000,173,568 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ttv400x.sys -- (ttv400x)
DRV - [2006-07-03 00:16:30 | 000,012,544 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans)
DRV - [2006-06-28 12:50:00 | 000,098,816 | ---- | M] (TOSHIBA Corporation) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\tdudf.sys -- (tdudf)
DRV - [2006-03-02 19:49:50 | 000,015,360 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV - [2006-02-14 04:26:02 | 001,106,888 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2005-12-26 15:33:26 | 000,016,768 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\TVALZ.SYS -- (TVALZ)
DRV - [2005-11-30 19:12:36 | 000,162,560 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tifm21.sys -- (tifm21)
DRV - [2005-11-28 11:45:16 | 000,007,040 | ---- | M] (X10 Wireless Technology, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\x10hid.sys -- (X10Hid)
DRV - [2005-09-09 15:47:10 | 000,009,344 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tosrfec.sys -- (tosrfec)
DRV - [2003-09-19 02:47:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (Pfc)
DRV - [2003-01-29 23:35:00 | 000,012,032 | ---- | M] (TOSHIBA Corporation.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Netdevio.sys -- (Netdevio)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.dk/0SEDADK/SAOS01?FORM=TOOLBR
IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://tv2.dk/
IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: eplgTb@eset.com:

FF - HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c}: C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c} [2011-01-31 18:22:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011-01-31 02:06:33 | 000,000,000 | ---D | M]

O1 HOSTS File: ([2004-08-10 14:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts:      localhost
O3 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  File not found
O3 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\..\Toolbar\WebBrowser: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O4 - HKLM..\Run: [000StTHK] C:\WINDOWS\System32\000StTHK.exe ()
O4 - HKLM..\Run: [00THotkey] C:\WINDOWS\system32\00THotkey.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [DDWMon] C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe (CANON INC.)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe (Intel Corporation)
O4 - HKLM..\Run: [Kraidman] C:\Program Files\Toshiba\TOSHIBA RAID\Console\KRaidMan.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [NDSTray.exe]  File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [PadTouch] C:\Program Files\Toshiba\Touch and Launch\PadExe.exe (TOSHIBA)
O4 - HKLM..\Run: [SigmatelSysTrayApp]  File not found
O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\TOSHIBA-zoomfunktion\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TFncKy]  File not found
O4 - HKLM..\Run: [TFNF5] C:\WINDOWS\System32\TFNF5.exe (TOSHIBA Corp.)
O4 - HKLM..\Run: [TosHKCW.exe] C:\Program Files\TOSHIBA\Wireless Hotkey\TosHKCW.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [TouchED] C:\Program Files\Toshiba\TouchED\TouchED.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TPSMain] C:\WINDOWS\System32\TPSMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TPSODDCtl] C:\WINDOWS\System32\TPSODDCtl.exe (TOSHIBA Corporation)
O4 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005..\Run: [TOSCDSPD] C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe (TOSHIBA)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallVisualStyle = C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles (Microsoft)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallTheme = C:\WINDOWS\Resources\Themes\Royale.theme ()
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki ... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll (Google Inc.)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos-beta/OnlineScanner.cab (OnlineScanner Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_07-windows-i586.cab (Java Plug-in 1.5.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer =
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Stener\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Stener\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-08-28 15:32:51 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{40dff4b2-2fc7-11e0-97be-0018de4ea143}\Shell - "" = AutoRun
O33 - MountPoints2\{40dff4b2-2fc7-11e0-97be-0018de4ea143}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

Restore point Set: OTL Restore Point (56027131116781568)

========== Files/Folders - Created Within 30 Days ==========

[2011-06-01 10:17:52 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
[2011-05-30 20:19:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011-05-30 16:57:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CSIS Heimdal
[2011-05-30 00:11:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Stener\Desktop\Hijack
[2011-05-29 23:53:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011-05-29 23:44:16 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Stener\Recent
[2011-05-29 16:35:32 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011-05-28 23:47:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Stener\My Documents\log antivirus
[2011-05-28 13:20:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011-05-28 12:43:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Stener\Desktop\SWF
[2011-05-28 02:05:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Stener\Application Data\Malwarebytes
[2011-05-28 02:04:59 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011-05-28 02:04:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011-05-28 02:04:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011-05-28 02:04:54 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011-05-28 02:04:54 | 000,000,000 | ---D | C] -- C:\Program Files\Malvvvvbytes' Anti-Malvvvv
[2011-05-28 01:31:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2011-05-25 09:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011-05-16 15:37:31 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011-05-12 19:08:44 | 000,000,000 | ---D | C] -- C:\Program Files\Heimdal
[2011-05-07 22:45:33 | 000,000,000 | ---D | C] -- C:\Program Files\StreamTorrent NE 1.0
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011-06-01 10:17:52 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
[2011-06-01 10:01:50 | 000,043,762 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011-06-01 10:01:22 | 000,000,916 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011-06-01 10:01:14 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-06-01 10:01:03 | 3488,661,504 | -HS- | M] () -- C:\hiberfil.sys
[2011-06-01 09:43:06 | 000,009,728 | ---- | M] () -- C:\Documents and Settings\Stener\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-06-01 09:31:00 | 000,000,920 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-05-31 20:04:44 | 000,075,264 | ---- | M] () -- C:\Documents and Settings\Stener\Desktop\SystemLook.exe
[2011-05-30 21:18:19 | 000,001,023 | ---- | M] () -- C:\Documents and Settings\Stener\Desktop\Tvguide.dk, din personlige guide til alle Danmarks Tv-programmer..url
[2011-05-30 20:20:11 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader X.lnk
[2011-05-30 18:12:39 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011-05-30 00:07:35 | 000,000,224 | -HS- | M] () -- C:\boot.ini
[2011-05-29 14:38:37 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-05-28 17:13:03 | 000,606,105 | ---- | M] () -- C:\Documents and Settings\Stener\Desktop\unhide.exe
[2011-05-28 16:50:15 | 000,137,256 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-05-28 04:12:03 | 000,000,160 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~23191332r
[2011-05-28 04:12:03 | 000,000,136 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\~23191332
[2011-05-28 02:05:00 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-05-28 01:16:35 | 000,000,344 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\23191332
[2011-05-25 09:08:47 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011-05-20 10:05:16 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011-05-20 10:05:16 | 000,000,786 | ---- | M] () -- C:\Documents and Settings\Stener\Desktop\Windows Media Player.lnk
[2011-05-16 15:37:31 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011-05-31 20:04:20 | 000,075,264 | ---- | C] () -- C:\Documents and Settings\Stener\Desktop\SystemLook.exe
[2011-05-30 20:20:11 | 000,002,315 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader X.lnk
[2011-05-30 20:20:11 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader X.lnk
[2011-05-30 18:11:15 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011-05-28 22:01:08 | 3488,661,504 | -HS- | C] () -- C:\hiberfil.sys
[2011-05-28 17:19:35 | 000,001,478 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Media Center.lnk
[2011-05-28 17:19:35 | 000,000,867 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Ashampoo Burning Studio 6 FREE.lnk
[2011-05-28 17:19:35 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011-05-28 17:19:35 | 000,000,804 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
[2011-05-28 17:19:35 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011-05-28 17:19:34 | 000,001,578 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TOSHIBA Brugerhåndbog.lnk
[2011-05-28 17:19:34 | 000,001,541 | ---- | C] () -- C:\Documents and Settings\Stener\Application Data\Microsoft\Internet Explorer\Quick Launch\3Connect.lnk
[2011-05-28 17:19:34 | 000,001,537 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Toshiba-garanti.lnk
[2011-05-28 17:19:34 | 000,001,533 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TOSHIBA Assist.lnk
[2011-05-28 17:19:34 | 000,001,503 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Valg af webbrowser.lnk
[2011-05-28 17:19:34 | 000,000,687 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TOSHIBA HD DVD PLAYER.lnk
[2011-05-28 17:19:34 | 000,000,677 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TOSHIBA HD DVD Launcher.lnk
[2011-05-28 17:19:33 | 000,001,666 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Norton Info.lnk
[2011-05-28 17:19:33 | 000,001,524 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Opret cd-rom med drivere og hjælpeprogrammer.lnk
[2011-05-28 17:19:33 | 000,000,895 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\OpenOffice.org 3.3.lnk
[2011-05-28 17:19:33 | 000,000,654 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Speccy.lnk
[2011-05-28 17:19:32 | 000,002,634 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\MSN Search Find præcist det, du søger efter, på pc'en.lnk
[2011-05-28 17:19:32 | 000,001,624 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Microsoft Office OneNote 2003.lnk
[2011-05-28 17:19:32 | 000,001,398 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Media Center.lnk
[2011-05-28 17:19:32 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011-05-28 17:19:31 | 000,001,965 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP640 series Vejledning på skærmen.lnk
[2011-05-28 17:19:31 | 000,001,736 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP Navigator EX 3.0.lnk
[2011-05-28 17:19:31 | 000,001,726 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\HDtoGo.LNK
[2011-05-28 17:19:31 | 000,001,710 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\HD DVD Demo.LNK
[2011-05-28 17:19:31 | 000,001,685 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP640 series Brugerregistrering.LNK
[2011-05-28 17:19:31 | 000,001,680 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2011-05-28 17:19:31 | 000,001,652 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon My Printer.lnk
[2011-05-28 17:19:31 | 000,001,572 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\HD DVD Info.LNK
[2011-05-28 17:19:31 | 000,001,426 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\DVD-RAM Tool.lnk
[2011-05-28 17:19:31 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011-05-28 17:19:30 | 000,002,170 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Babylon.lnk
[2011-05-28 17:19:30 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Easy-PhotoPrint EX.lnk
[2011-05-28 17:19:30 | 000,001,662 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon IJ Network Tool.lnk
[2011-05-28 17:19:30 | 000,001,579 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\3Connect.lnk
[2011-05-28 17:19:30 | 000,000,849 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Ashampoo Burning Studio 6 FREE.lnk
[2011-05-28 17:13:03 | 000,606,105 | ---- | C] () -- C:\Documents and Settings\Stener\Desktop\unhide.exe
[2011-05-28 03:46:15 | 000,000,160 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~23191332r
[2011-05-28 03:46:15 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\~23191332
[2011-05-28 01:16:35 | 000,000,344 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\23191332
[2011-02-15 20:27:10 | 000,009,728 | ---- | C] () -- C:\Documents and Settings\Stener\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-02-03 20:57:33 | 000,071,253 | ---- | C] () -- C:\WINDOWS\Huawei ModemsUninstall.exe
[2011-02-03 20:57:32 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\drivers\mdvrmng.sys
[2011-01-31 22:36:45 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2011-01-30 20:14:54 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\Stener\Local Settings\Application Data\fusioncache.dat
[2006-09-06 18:11:41 | 001,519,616 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2006-09-06 18:11:40 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2006-09-06 18:11:40 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2006-09-06 18:11:40 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2006-09-06 18:11:39 | 001,470,464 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2006-09-06 18:11:39 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2006-09-06 18:11:38 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2006-09-06 18:11:38 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2006-09-06 15:32:04 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2006-09-06 15:17:28 | 000,000,562 | ---- | C] () -- C:\WINDOWS\TBTdetect.ini
[2006-09-06 15:06:16 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006-09-06 12:41:39 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2006-09-06 12:41:39 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2006-09-06 12:41:39 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2006-09-06 12:41:39 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2006-09-06 12:41:39 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2006-09-06 12:41:39 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2006-09-06 12:39:13 | 000,000,000 | ---- | C] () -- C:\WINDOWS\NDSTray.INI
[2006-09-06 11:45:03 | 000,127,184 | ---- | C] () -- C:\WINDOWS\Unwise.exe
[2006-09-06 10:57:08 | 000,128,113 | ---- | C] () -- C:\WINDOWS\System32\csellang.ini
[2006-09-06 10:57:08 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\csellang.dll
[2006-09-06 10:57:08 | 000,010,150 | ---- | C] () -- C:\WINDOWS\System32\tosmreg.ini
[2006-09-06 10:57:08 | 000,007,671 | ---- | C] () -- C:\WINDOWS\System32\cseltbl.ini
[2006-09-06 10:29:45 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\000StTHK.exe
[2006-08-28 16:23:55 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2006-08-28 16:23:06 | 000,137,256 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2006-08-28 15:35:23 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2006-08-28 15:29:24 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006-08-28 14:18:18 | 000,159,744 | ---- | C] () -- C:\WINDOWS\MakeMrk.exe
[2006-08-28 14:18:18 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\ToshBIOS.dll
[2006-08-28 14:18:18 | 000,000,083 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2006-08-28 14:17:34 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006-08-28 14:17:32 | 001,291,776 | ---- | C] () -- C:\WINDOWS\System32\quartz(2).dll
[2006-08-28 14:17:32 | 001,287,680 | ---- | C] () -- C:\WINDOWS\System32\quartz(3).dll
[2006-08-28 14:17:32 | 000,476,816 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006-08-28 14:17:32 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006-08-28 14:17:32 | 000,086,784 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006-08-28 14:17:32 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006-08-28 14:17:29 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006-08-28 14:17:29 | 000,004,598 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006-08-28 14:17:27 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2006-08-28 14:17:25 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo(2).dll
[2006-08-28 14:17:24 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006-08-28 14:17:24 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006-08-28 14:17:21 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006-08-28 14:17:13 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\devenum(2).dll
[2006-08-28 14:17:13 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006-07-25 18:32:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2005-09-02 15:44:00 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
[2005-08-05 15:01:54 | 000,235,008 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2005-07-22 22:30:00 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
[2004-07-20 18:04:00 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004-01-15 15:43:00 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll

========== LOP Check ==========

[2011-01-31 04:40:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\toshiba
[2011-03-02 21:23:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ashampoo
[2011-01-31 01:57:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011-02-23 14:39:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon
[2011-02-03 20:58:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Birdstep Technology
[2011-02-06 16:14:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2011-03-16 09:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJEGV
[2011-03-01 17:16:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJScan
[2011-01-30 20:35:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011-05-12 19:08:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CSIS
[2011-01-31 02:06:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2011-01-30 23:27:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Innovative Solutions
[2011-01-30 20:34:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011-02-01 22:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Toshiba
[2011-03-23 09:50:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{3AA9729D-AC4C-4B8B-B0D4-F51BC44C7716}
[2011-01-31 04:40:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\toshiba
[2011-01-31 04:40:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\Windows Desktop Search
[2011-01-31 04:42:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\X10 Commander
[2011-03-02 21:24:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Ashampoo
[2011-02-23 14:39:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Babylon
[2011-02-03 20:58:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Birdstep Technology
[2011-03-01 17:16:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Canon
[2011-05-29 17:35:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Canon Easy-WebPrint EX
[2011-03-04 21:57:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\CD-LabelPrint
[2011-01-30 22:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Easeware
[2011-01-31 02:08:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\ESET
[2011-03-02 21:48:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\InterVideo
[2011-05-28 17:24:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\MP3Rocket
[2011-03-15 21:23:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\OpenOffice.org
[2011-01-31 01:50:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Orbit
[2011-02-01 17:25:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Stener\Application Data\Thunderbird
Avatar billede f-arn Guru
01. juni 2011 - 13:56 #25
Start OTL

Kopier nedenstånde med fed skrift ind i feltet "Custom Scans/Fixes"

xcopy "C:\Documents and Settings\Stener\Local Settings\Temp\smtmp\1" "C:\Documents and Settings\All Users\Start Menu" /H /I /S /Y /C
ipconfig /flushdns /c


Luk alle andre åbne vinduer og klik på "Run Fix"

Efter genstart åbnes en logfil, kopier den tekst herind i denne tråd.

Ellers ligger den her: C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log


Hent Rootkit Unhooker og gem den på skrivebordet.


Start den. Klik på report, klik så på scan.
Lad fluebenet stå i Drivers og Stealth. Fjern de andre.
Klik OK
( Hvis den kommer med denne advarsel "Rootkit Unhooker has detected a parasite inside itself!" ignorer den)
Når den er færdig, klik File -> Save Report
Gem den på Skrivebordet og kopier den herind.

Husk at deaktivere dine sikkerheds programmer.


Jeg vil gerne se log fra både OTL og Rootkit Unhooker.

PS Fortæl mig også hvordan PCen kører!
Avatar billede nyher Novice
01. juni 2011 - 17:21 #26
Her er loggen fra otl :

Her er loggen fra Rootkit Unhooker :
01. juni 2011 - 17:32 #27
Report.txt fra Rootkit Unhooker :

RkU Version: 3.8.389.593, Type LE (SR2)
OS Name: Windows XP
Version 5.1.2600 (Service Pack 3)
Number of processors #2
0xB91CC000 C:\WINDOWS\system32\DRIVERS\NETw5x32.sys 4202496 bytes (Intel Corporation, Intel® Wireless WiFi Link Driver)
0xBF012000 C:\WINDOWS\System32\nv4_disp.dll 3964928 bytes (NVIDIA Corporation, NVIDIA Compatible Windows 2000 Display driver, Version 86.05 )
0xB9636000 C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 3620864 bytes (NVIDIA Corporation, NVIDIA Compatible Windows 2000 Miniport Driver, Version 86.05 )
0x804D7000 C:\WINDOWS\system32\ntoskrnl.exe 2265088 bytes (Microsoft Corporation, NT Kernel & System)
0x804D7000 PnpManager 2265088 bytes
0x804D7000 RAW 2265088 bytes
0x804D7000 WMIxWDM 2265088 bytes
0xBF800000 Win32k 1859584 bytes
0xBF800000 C:\WINDOWS\System32\win32k.sys 1859584 bytes (Microsoft Corporation, Multi-User Win32 Driver)
0xB6390000 C:\WINDOWS\system32\DRIVERS\AGRSM.sys 1126400 bytes (Agere Systems, SoftModem Device Driver)
0xB64C7000 C:\WINDOWS\system32\drivers\sthda.sys 1069056 bytes (SigmaTel, Inc., NDRC)
0xA4F25000 C:\WINDOWS\system32\DRIVERS\eamon.sys 684032 bytes (ESET, Amon monitor)
0xF7B52000 Ntfs.sys 577536 bytes (Microsoft Corporation, NT File System Driver)
0xAE956000 C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 458752 bytes (Microsoft Corporation, Windows NT SMB Minirdr)
0xB8B1C000 C:\WINDOWS\system32\DRIVERS\update.sys 385024 bytes (Microsoft Corporation, Update Driver)
0xAEAA5000 C:\WINDOWS\system32\DRIVERS\tcpip.sys 364544 bytes (Microsoft Corporation, TCP/IP Protocol Driver)
0xA479B000 C:\WINDOWS\system32\DRIVERS\srv.sys 360448 bytes (Microsoft Corporation, Server driver)
0xBF3DA000 C:\WINDOWS\System32\ATMFD.DLL 290816 bytes (Adobe Systems Incorporated, Windows NT OpenType/Type 1 Font Driver)
0xA495B000 C:\WINDOWS\System32\Drivers\HTTP.sys 266240 bytes (Microsoft Corporation, HTTP Protocol Stack)
0xA5EAD000 C:\WINDOWS\System32\Drivers\dump_KR10N.sys 212992 bytes
0xF7448000 KR10N.sys 212992 bytes (TOSHIBA CORPORATION, TOSHIBA RAID Driver)
0xB8BA2000 C:\WINDOWS\system32\DRIVERS\rdpdr.sys 196608 bytes (Microsoft Corporation, Microsoft RDP Device redirector)
0xB9095000 C:\WINDOWS\system32\DRIVERS\SynTP.sys 192512 bytes (Synaptics, Inc., Synaptics Touchpad Driver)
0xA467C000 C:\Program Files\Common Files\Toshiba Shared\tos_sps.sys 192512 bytes (Toshiba Corporation, tos_sps)
0xF75A8000 ACPI.sys 188416 bytes (Microsoft Corporation, ACPI Driver for NT)
0xA4E37000 C:\WINDOWS\system32\DRIVERS\mrxdav.sys 184320 bytes (Microsoft Corporation, Windows NT WebDav Minirdr)
0xF7841000 NDIS.sys 184320 bytes (Microsoft Corporation, NDIS 5.1 wrapper driver)
0xB95CE000 C:\WINDOWS\system32\DRIVERS\e1e5132.sys 180224 bytes (Intel Corporation, Intel(R) PRO/1000 Adapter NDIS 5.1 deserialized driver)
0xA27D8000 C:\WINDOWS\system32\drivers\kmixer.sys 176128 bytes (Microsoft Corporation, Kernel Mode Audio Mixer)
0xAE9EE000 C:\WINDOWS\system32\DRIVERS\rdbss.sys 176128 bytes (Microsoft Corporation, Redirected Drive Buffering SubSystem Driver)
0xB9123000 C:\WINDOWS\system32\drivers\ttv400x.sys 176128 bytes (TOSHIBA, TOSHIBA PCI BDA TV Tuner Driver)
0xB95FA000 C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 163840 bytes (Windows (R) Server 2003 DDK provider, High Definition Audio Bus Driver v1.0a)
0xAEA3B000 C:\WINDOWS\system32\DRIVERS\netbt.sys 163840 bytes (Microsoft Corporation, MBT Transport driver)
0xB90D8000 C:\WINDOWS\system32\drivers\tifm21.sys 163840 bytes (Texas Instruments, tifm21.sys)
0xF7494000 dmio.sys 155648 bytes (Microsoft Corp., Veritas Software, NT Disk Manager I/O Driver)
0xAEA6D000 C:\WINDOWS\system32\DRIVERS\ipnat.sys 155648 bytes (Microsoft Corporation, IP Network Address Translator)
0xB64A3000 C:\WINDOWS\system32\drivers\portcls.sys 147456 bytes (Microsoft Corporation, Port Class (Class Driver for Port/Miniport Devices))
0xB914E000 C:\WINDOWS\system32\DRIVERS\USBPORT.SYS 147456 bytes (Microsoft Corporation, USB 1.1 & 2.0 Port Driver)
0xB9100000 C:\WINDOWS\system32\drivers\ks.sys 143360 bytes (Microsoft Corporation, Kernel CSA Library)
0xAEA19000 C:\WINDOWS\System32\drivers\afd.sys 139264 bytes (Microsoft Corporation, Ancillary Function Driver for WinSock)
0xA4EC8000 C:\WINDOWS\system32\DRIVERS\epfw.sys 139264 bytes (ESET, ESET Personal Firewall driver)
0x80700000 ACPI_HAL 134400 bytes
0x80700000 C:\WINDOWS\system32\hal.dll 134400 bytes (Microsoft Corporation, Hardware Abstraction Layer DLL)
0xF7410000 fltmgr.sys 131072 bytes (Microsoft Corporation, Microsoft Filesystem Filter Manager)
0xAEBC7000 C:\WINDOWS\system32\DRIVERS\ehdrv.sys 126976 bytes (ESET, ESET Helper driver)
0xF74BA000 ftdisk.sys 126976 bytes (Microsoft Corporation, FT Disk Driver)
0xF74D9000 pcmcia.sys 122880 bytes (Microsoft Corporation, PCMCIA Bus Driver)
0xF7827000 Mup.sys 106496 bytes (Microsoft Corporation, Multiple UNC Provider driver)
0xA4F0C000 C:\WINDOWS\system32\DRIVERS\tdudf.sys 102400 bytes (TOSHIBA Corporation, TOSHIBA Direct Disc Writer - File System Driver)
0xF747C000 atapi.sys 98304 bytes (Microsoft Corporation, IDE/ATAPI Port Driver)
0xF7430000 C:\WINDOWS\system32\drivers\SCSIPORT.SYS 98304 bytes (Microsoft Corporation, SCSI Port Driver)
0xF786E000 KSecDD.sys 94208 bytes (Microsoft Corporation, Kernel Security Support Provider Interface)
0xB9006000 C:\WINDOWS\system32\DRIVERS\ndiswan.sys 94208 bytes (Microsoft Corporation, MS PPP Framing Driver (Strong Encryption))
0xA4D5F000 C:\WINDOWS\system32\drivers\wdmaud.sys 86016 bytes (Microsoft Corporation, MMSYSTEM Wave/Midi API mapper)
0xA4EB4000 C:\WINDOWS\system32\drivers\mdvrmng.sys 81920 bytes (-, SmartRoaming Client)
0xB90C4000 C:\WINDOWS\system32\DRIVERS\sdbus.sys 81920 bytes (Microsoft Corporation, SecureDigital Bus Driver)
0xB9622000 C:\WINDOWS\system32\DRIVERS\VIDEOPRT.SYS 81920 bytes (Microsoft Corporation, Video Port Driver)
0xAEAFE000 C:\WINDOWS\system32\DRIVERS\ipsec.sys 77824 bytes (Microsoft Corporation, IPSec Driver)
0xBF000000 C:\WINDOWS\System32\drivers\dxg.sys 73728 bytes (Microsoft Corporation, DirectX Graphics Driver)
0xAEA93000 C:\WINDOWS\system32\DRIVERS\epfwtdi.sys 73728 bytes (ESET, ESET Personal Firewall TDI filter)
0xF7885000 sr.sys 73728 bytes (Microsoft Corporation, System Restore Filesystem Filter Driver)
0xF7597000 pci.sys 69632 bytes (Microsoft Corporation, NT Plug and Play PCI Enumerator)
0xB8FF5000 C:\WINDOWS\system32\DRIVERS\psched.sys 69632 bytes (Microsoft Corporation, MS QoS Packet Scheduler)
0xA4EEA000 C:\WINDOWS\system32\DRIVERS\thdudf.sys 69632 bytes (TOSHIBA Corporation, TOSHIBA UDF2.5 Reader File System Driver)
0xA4EFB000 C:\WINDOWS\System32\Drivers\Udfs.SYS 69632 bytes (Microsoft Corporation, UDF File System Driver)
0xA6858000 C:\WINDOWS\System32\Drivers\Cdfs.SYS 65536 bytes (Microsoft Corporation, CD-ROM File System Driver)
0xF7567000 C:\WINDOWS\system32\DRIVERS\cdrom.sys 65536 bytes (Microsoft Corporation, SCSI CD-ROM Driver)
0xF7687000 C:\WINDOWS\system32\DRIVERS\nic1394.sys 65536 bytes (Microsoft Corporation, IEEE1394 Ndis Miniport and Call Manager)
0xF7607000 ohci1394.sys 65536 bytes (Microsoft Corporation, 1394 OpenHCI Port Driver)
0xB5175000 C:\WINDOWS\system32\DRIVERS\arp1394.sys 61440 bytes (Microsoft Corporation, IP/1394 Arp Client)
0xBA6F8000 C:\WINDOWS\system32\drivers\drmk.sys 61440 bytes (Microsoft Corporation, Microsoft Kernel DRM Descrambler Filter)
0xB9A3A000 C:\WINDOWS\system32\DRIVERS\redbook.sys 61440 bytes (Microsoft Corporation, Redbook Audio Filter Driver)
0xA606C000 C:\WINDOWS\system32\drivers\sysaudio.sys 61440 bytes (Microsoft Corporation, System Audio WDM Filter)
0xF7557000 C:\WINDOWS\system32\DRIVERS\usbhub.sys 61440 bytes (Microsoft Corporation, Default Hub Driver for USB)
0xF7617000 C:\WINDOWS\system32\DRIVERS\1394BUS.SYS 57344 bytes (Microsoft Corporation, 1394 Bus Device Driver)
0xF7657000 C:\WINDOWS\system32\DRIVERS\CLASSPNP.SYS 53248 bytes (Microsoft Corporation, SCSI Class System Dll)
0xF76E7000 C:\WINDOWS\system32\DRIVERS\i8042prt.sys 53248 bytes (Microsoft Corporation, i8042 Port Driver)
0xB99FA000 C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 53248 bytes (Microsoft Corporation, RAS L2TP mini-port/call-manager driver)
0xF7637000 VolSnap.sys 53248 bytes (Microsoft Corporation, Volume Shadow Copy Driver)
0xAC806000 C:\WINDOWS\system32\DRIVERS\IrBus.sys 49152 bytes (Microsoft Corporation, USB Consumer IR Driver for eHome)
0xB99DA000 C:\WINDOWS\system32\DRIVERS\raspptp.sys 49152 bytes (Microsoft Corporation, Peer-to-Peer Tunneling Protocol)
0xB9A1A000 C:\WINDOWS\system32\DRIVERS\Epfwndis.sys 45056 bytes (ESET, ESET Personal Firewall NDIS filter)
0xB5155000 C:\WINDOWS\System32\Drivers\Fips.SYS 45056 bytes (Microsoft Corporation, FIPS Crypto Driver)
0xF76F7000 C:\WINDOWS\system32\DRIVERS\imapi.sys 45056 bytes (Microsoft Corporation, IMAPI Kernel Driver)
0xF7627000 MountMgr.sys 45056 bytes (Microsoft Corporation, Mount Manager)
0xB99EA000 C:\WINDOWS\system32\DRIVERS\raspppoe.sys 45056 bytes (Microsoft Corporation, RAS PPPoE mini-port/call-manager driver)
0xF75F7000 isapnp.sys 40960 bytes (Microsoft Corporation, PNP ISA Bus Driver)
0xBA748000 C:\WINDOWS\System32\Drivers\NDProxy.SYS 40960 bytes (Microsoft Corporation, NDIS Proxy)
0xBA768000 C:\WINDOWS\system32\DRIVERS\termdd.sys 40960 bytes (Microsoft Corporation, Terminal Server Driver)
0xA3472000 C:\WINDOWS\System32\Drivers\BlackBox.SYS 36864 bytes (RKU Driver)
0xF7647000 disk.sys 36864 bytes (Microsoft Corporation, PnP Disk Driver)
0xB9A0A000 C:\WINDOWS\System32\Drivers\HIDCLASS.SYS 36864 bytes (Microsoft Corporation, Hid Class Library)
0xB9A2A000 C:\WINDOWS\system32\DRIVERS\intelppm.sys 36864 bytes (Microsoft Corporation, Processor Device Driver)
0xB99CA000 C:\WINDOWS\system32\DRIVERS\msgpc.sys 36864 bytes (Microsoft Corporation, MS General Packet Classifier)
0xB5185000 C:\WINDOWS\system32\DRIVERS\netbios.sys 36864 bytes (Microsoft Corporation, NetBIOS interface driver)
0xB5A37000 C:\WINDOWS\system32\DRIVERS\wanarp.sys 36864 bytes (Microsoft Corporation, MS Remote Access and Routing ARP Driver)
0xF7777000 C:\WINDOWS\System32\Drivers\Modem.SYS 32768 bytes (Microsoft Corporation, Modem Device Driver)
0xF7787000 C:\WINDOWS\System32\Drivers\Npfs.SYS 32768 bytes (Microsoft Corporation, NPFS Driver)
0xF77EF000 C:\WINDOWS\system32\DRIVERS\usbehci.sys 32768 bytes (Microsoft Corporation, EHCI eUSB Miniport Driver)
0xF780F000 C:\WINDOWS\System32\Drivers\HIDPARSE.SYS 28672 bytes (Microsoft Corporation, Hid Parsing Library)
0xF7707000 C:\WINDOWS\system32\DRIVERS\PCIIDEX.SYS 28672 bytes (Microsoft Corporation, PCI IDE Bus Driver Extension)
0xF7807000 C:\WINDOWS\system32\drivers\iviaspi.sys 24576 bytes (InterVideo, Inc., InterVideo ASPI Shell)
0xF77F7000 C:\WINDOWS\system32\DRIVERS\kbdclass.sys 24576 bytes (Microsoft Corporation, Keyboard Class Driver)
0xF777F000 C:\WINDOWS\system32\DRIVERS\mouclass.sys 24576 bytes (Microsoft Corporation, Mouse Class Driver)
0xF77E7000 C:\WINDOWS\system32\DRIVERS\usbuhci.sys 24576 bytes (Microsoft Corporation, UHCI USB Miniport Driver)
0xF77DF000 C:\WINDOWS\System32\drivers\vga.sys 24576 bytes (Microsoft Corporation, VGA/Super VGA Video Driver)
0xADE9A000 C:\WINDOWS\system32\DRIVERS\AegisP.sys 20480 bytes (Meetinghouse Data Communications, IEEE 802.1X Protocol Driver)
0xAD12F000 C:\WINDOWS\system32\DRIVERS\hidir.sys 20480 bytes (Microsoft Corporation, Infrared Miniport Driver for Input Devices)
0xF775F000 C:\WINDOWS\System32\Drivers\Msfs.SYS 20480 bytes (Microsoft Corporation, Mailslot driver)
0xF770F000 PartMgr.sys 20480 bytes (Microsoft Corporation, Partition Manager)
0xF778F000 C:\WINDOWS\system32\DRIVERS\ptilink.sys 20480 bytes (Parallel Technologies, Inc., Parallel Technologies DirectParallel IO Library)
0xF7717000 PxHelp20.sys 20480 bytes (Sonic Solutions, Px Engine Device Driver for Windows 2000/XP)
0xF7797000 C:\WINDOWS\system32\DRIVERS\raspti.sys 20480 bytes (Microsoft Corporation, PTI DirectParallel(R) mini-port/call-manager driver)
0xF7817000 C:\WINDOWS\system32\DRIVERS\TDI.SYS 20480 bytes (Microsoft Corporation, TDI Wrapper)
0xF771F000 TVALZ.SYS 20480 bytes (TOSHIBA Corporation, TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver)
0xA6750000 C:\WINDOWS\System32\watchdog.sys 20480 bytes (Microsoft Corporation, Watchdog Driver)
0xF789F000 C:\WINDOWS\system32\DRIVERS\BATTC.SYS 16384 bytes (Microsoft Corporation, Battery Class Driver)
0xF792B000 C:\WINDOWS\system32\DRIVERS\CmBatt.sys 16384 bytes (Microsoft Corporation, Control Method Battery Driver)
0xA6926000 C:\WINDOWS\System32\Drivers\dump_diskdump.sys 16384 bytes
0xBA7C4000 C:\WINDOWS\system32\DRIVERS\kbdhid.sys 16384 bytes (Microsoft Corporation, HID Mouse Filter Driver)
0xBA7E4000 C:\WINDOWS\system32\DRIVERS\mssmbios.sys 16384 bytes (Microsoft Corporation, System Management BIOS Driver)
0xA67CE000 C:\WINDOWS\system32\DRIVERS\ndisuio.sys 16384 bytes (Microsoft Corporation, NDIS User mode I/O Driver)
0xAEB81000 C:\WINDOWS\system32\DRIVERS\s24trans.sys 16384 bytes (Intel Corporation, Intel WLAN Packet Driver)
0xBA78C000 C:\WINDOWS\system32\DRIVERS\tdcmdpst.sys 16384 bytes (TOSHIBA Corporation., Toshiba ODD Writing Driver.)
0xBA790000 C:\WINDOWS\system32\drivers\BdaSup.SYS 12288 bytes (Microsoft Corporation, Microsoft BDA Driver Support Library)
0xF7897000 C:\WINDOWS\system32\BOOTVID.dll 12288 bytes (Microsoft Corporation, VGA Boot Driver)
0xF789B000 compbatt.sys 12288 bytes (Microsoft Corporation, Composite Battery Driver)
0xA67EA000 C:\WINDOWS\System32\drivers\Dxapi.sys 12288 bytes (Microsoft Corporation, DirectX API Driver)
0xACE02000 C:\WINDOWS\system32\DRIVERS\mouhid.sys 12288 bytes (Microsoft Corporation, HID Mouse Filter Driver)
0xF7937000 C:\WINDOWS\system32\DRIVERS\ndistapi.sys 12288 bytes (Microsoft Corporation, NDIS 3.0 connection wrapper driver)
0xA67CA000 C:\WINDOWS\system32\DRIVERS\netdevio.sys 12288 bytes (TOSHIBA Corporation., Network Device Usermode I/O protocol)
0xBA788000 C:\WINDOWS\system32\drivers\pfc.sys 12288 bytes (Padus, Inc., Padus(R) ASPI Shell)
0xB6119000 C:\WINDOWS\system32\DRIVERS\rasacd.sys 12288 bytes (Microsoft Corporation, RAS Automatic Connection Driver)
0xF7927000 C:\WINDOWS\system32\DRIVERS\tosrfec.sys 12288 bytes (TOSHIBA Corporation, TOSHIBA Bluetooth EC Driver)
0xF79DD000 C:\WINDOWS\System32\Drivers\Beep.SYS 8192 bytes (Microsoft Corporation, BEEP Driver)
0xF798B000 dmload.sys 8192 bytes (Microsoft Corp., Veritas Software., NT Disk Manager Startup Driver)
0xF79DB000 C:\WINDOWS\System32\Drivers\Fs_Rec.SYS 8192 bytes (Microsoft Corporation, File System Recognizer Driver)
0xF7987000 C:\WINDOWS\system32\KDCOM.DLL 8192 bytes (Microsoft Corporation, Kernel Debugger HW Extension DLL)
0xF79E7000 C:\WINDOWS\System32\Drivers\mnmdd.SYS 8192 bytes (Microsoft Corporation, Frame buffer simulator)
0xADFA5000 C:\WINDOWS\system32\drivers\MSPQM.sys 8192 bytes (Microsoft Corporation, MS Proxy Quality Manager)
0xF79E9000 C:\WINDOWS\System32\DRIVERS\RDPCDD.sys 8192 bytes (Microsoft Corporation, RDP Miniport)
0xF79CF000 C:\WINDOWS\system32\DRIVERS\swenum.sys 8192 bytes (Microsoft Corporation, Plug and Play Software Device Enumerator)
0xF79C5000 C:\WINDOWS\system32\DRIVERS\USBD.SYS 8192 bytes (Microsoft Corporation, Universal Serial Bus Driver)
0xF7989000 C:\WINDOWS\system32\DRIVERS\WMILIB.SYS 8192 bytes (Microsoft Corporation, WMILIB WMI support library Dll)
0xF79C7000 C:\WINDOWS\System32\Drivers\x10hid.sys 8192 bytes (X10 Wireless Technology, Inc., X10 HID Control Interface)
0xF7A64000 C:\WINDOWS\system32\DRIVERS\audstub.sys 4096 bytes (Microsoft Corporation, AudStub Driver)
0xA64D2000 C:\WINDOWS\System32\drivers\dxgthk.sys 4096 bytes (Microsoft Corporation, DirectX Graphics Driver Thunk)
0xB6749000 C:\WINDOWS\System32\Drivers\Null.SYS 4096 bytes (Microsoft Corporation, NULL Driver)
0xF7A4F000 pciide.sys 4096 bytes (Microsoft Corporation, Generic PCI IDE Bus Driver)
0x887BEF13 Unknown page with executable code, 237 bytes
0x88A15DA4 Unknown page with executable code, 604 bytes
0x88A1DD46 Unknown page with executable code, 698 bytes
Avatar billede nyher Novice
01. juni 2011 - 17:52 #28
Kunne ikke helt forstå hvornår jeg skulle deaktivere sikkerhedsprogrammerne, så det fik jeg ikke gjort.....Har det haft nogen betydning, så jeg måske skal gøre noget af det om igen..?

Når jeg klikker på start/programmer og kører musen op, popper felterne op til højre som normalt....og jeg starter programmerne op derfra. Nogle af dem står dog på engelsk nu, hvor de tidligere var på dansk.....

Der er også kommet nogle programfelter, med programmer som jeg tidligere har afinstalleret...men når jeg klikker på dem, kan den ikke finde programmet...så de skal vel bare slettes på listen ?

Men ellers så ligner den sig selv igen :-)
Avatar billede nyher Novice
01. juni 2011 - 17:58 #29
Ups...jeg glemte at sige, at da jeg havde ordnet de ting du sagde sidst, da jeg så gik ind på eksperten.dk igen og klikker mig igennem siderne, så dukker dette op hele tiden :

Windows internet explorer.

Stop running the script ?

A script on this page is causing internet explorer to run slowly.

If it continues to run, your computer might become unresponsive.
Avatar billede f-arn Guru
01. juni 2011 - 18:50 #30
Ups...jeg glemte at sige, at da jeg havde ordnet de ting du sagde sidst, da jeg så gik ind på eksperten.dk igen og klikker mig igennem siderne, så dukker dette op hele tiden :

Windows internet explorer.

Stop running the script ?

A script on this page is causing internet explorer to run slowly.

If it continues to run, your computer might become unresponsive.

Det er en fejl der er rapporteret til Admin/Coadmin flere gange. Desværre gider de ikke reagere. Jeg har tidligere flyttet et spørgsmål til Spywarefri pga. det

Nogle af dem står dog på engelsk nu, hvor de tidligere var på dansk.....

Kan du gi' mig et eks. så vil jeg unndersøge det.

Jeg skal lige overveje noget ang din OTL scan log (ikke OTL fix log)
Avatar billede nyher Novice
01. juni 2011 - 20:21 #31
Okay - synes bare det var underligt at dette scriptvindue dukkede op lige efter og stadigvæk......har ikke set det tidligere....

Engelsk - programmer/tilbehør/ - her står der nu calculator, før var det lommeregner

Engelsk - Programmer/tilbehør/system tools/ - her står der nu system restore, før system gendannelse

Engelsk - Programmer/ - her står der nu games, før var det spil (og alle spillene står også på engelsk nu)
Avatar billede f-arn Guru
02. juni 2011 - 08:54 #32
Jeg er desværre ikke klar over hvorfor den er skiftet til Engelsk. Det kan være Windows XP Recovery, men det kan også være Unhide. (den fandt dem, men flyttede dem ikke)


Jeg skal bruge nogle oplysninger så ->

Start OTL

Øverst sætter du flueben i "Scan All Users"

I boksen "Custom Scans/Fixes" kopierer du det fremhævede ind.

hklm\software\clients\startmenuinternet|command /rs
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs

Luk alle åbne vinduer og klik på "Run Scan" øverst til venstre og lad programmet køre. Scanningen kan tage 5-10 minutter.

Det vil give to logfiler på skrivebordet, en kaldet OTL.txt, den anden vil blive navngivet Extras.txt.

KopierOTL.txt (den laver ikke Extras.txt) ind i dit indlæg

Da den er forholdsvis lang, kan du blive nødt til at sende den i flere indlæg.
Avatar billede nyher Novice
02. juni 2011 - 10:14 #33
OTL.txt del 1 :

OTL logfile created on: 02-06-2011 09:06:03 - Run 2
OTL by OldTimer - Version    Folder = C:\Documents and Settings\Stener\Desktop
Windows XP Media Center Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000406 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3,25 Gb Total Physical Memory | 2,72 Gb Available Physical Memory | 83,82% Memory free
5,09 Gb Paging File | 4,59 Gb Available in Paging File | 90,15% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 79,11 Gb Total Space | 43,21 Gb Free Space | 54,62% Space Free | Partition Type: NTFS
Drive D: | 186,31 Gb Total Space | 0,06 Gb Free Space | 0,03% Space Free | Partition Type: NTFS
Drive F: | 102,54 Gb Total Space | 65,33 Gb Free Space | 63,71% Space Free | Partition Type: NTFS

Computer Name: STENERPC | User Name: Stener | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011-06-01 10:17:52 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
PRC - [2011-05-26 15:34:34 | 001,003,112 | ---- | M] (CSIS Security Group) -- C:\Program Files\Heimdal\Client\HeimdalAgent.exe
PRC - [2011-05-26 15:34:20 | 000,096,872 | ---- | M] (CSIS Security Group) -- C:\Program Files\Heimdal\Service\HeimdalAgentService.exe
PRC - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe
PRC - [2010-11-04 18:15:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
PRC - [2009-07-26 20:10:00 | 001,983,816 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2009-05-19 19:39:44 | 000,136,544 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
PRC - [2008-04-14 02:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006-08-21 17:29:52 | 001,093,708 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\TOSHIBA RAID\Console\KRaidMan.exe
PRC - [2006-08-21 17:29:46 | 000,208,972 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA RAID\Service\kraidsvc.exe
PRC - [2006-08-11 08:42:08 | 000,253,952 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\00THotkey.exe
PRC - [2006-08-10 13:48:20 | 000,184,320 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Controls\TFncKy.exe
PRC - [2006-08-09 10:29:40 | 000,040,960 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\TPSBattM.exe
PRC - [2006-07-27 23:02:54 | 000,090,112 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe
PRC - [2006-07-03 02:07:28 | 000,802,816 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe
PRC - [2006-07-03 01:57:04 | 000,479,232 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
PRC - [2006-07-02 22:50:32 | 000,700,416 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe
PRC - [2006-05-25 19:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\system32\TODDSrv.exe
PRC - [2006-04-28 12:30:06 | 000,262,144 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Direct Disc Writer\DDWMon.exe
PRC - [2006-03-16 22:58:50 | 000,974,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\NDSTray.exe
PRC - [2006-02-14 04:25:42 | 000,077,824 | ---- | M] (SigmaTel, Inc.) -- C:\Program Files\SigmaTel\C-dur-lyd\WDM\stacsv.exe
PRC - [2006-02-14 03:24:10 | 000,593,920 | ---- | M] (TOSHIBA Corp.) -- C:\WINDOWS\system32\TFNF5.exe
PRC - [2005-12-22 11:34:10 | 001,077,329 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\Touch and Launch\PadExe.exe
PRC - [2005-09-01 13:22:50 | 000,102,400 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TouchED\TouchED.exe
PRC - [2005-05-17 12:42:02 | 000,049,152 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Wireless Hotkey\TosHKCW.exe
PRC - [2005-05-12 14:44:38 | 000,118,784 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA-zoomfunktion\SmoothView.exe
PRC - [2005-04-12 11:38:28 | 000,065,536 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
PRC - [2005-01-18 01:38:38 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2001-11-12 14:31:48 | 000,020,480 | ---- | M] (X10) -- C:\Program Files\Common Files\X10\Common\X10nets.exe

========== Modules (SafeList) ==========

MOD - [2011-06-01 10:17:52 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Stener\Desktop\OTL.exe
MOD - [2010-08-23 18:12:02 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll

========== Win32 Services (SafeList) ==========

SRV - [2011-05-26 15:34:20 | 000,096,872 | ---- | M] (CSIS Security Group) [Auto | Running] -- C:\Program Files\Heimdal\Service\HeimdalAgentService.exe -- (HeimdalService)
SRV - [2011-03-29 15:41:46 | 000,053,248 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus(R)
SRV - [2010-11-04 18:18:10 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv)
SRV - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2006-08-21 17:29:46 | 000,208,972 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TOSHIBA RAID\Service\kraidsvc.exe -- (kraidsvc)
SRV - [2006-07-27 23:02:54 | 000,090,112 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA HD DVD PLAYER\TNaviSrv.exe -- (TNaviSrv)
SRV - [2006-05-25 19:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\WINDOWS\system32\TODDSrv.exe -- (TODDSrv)
SRV - [2006-02-14 04:25:42 | 000,077,824 | ---- | M] (SigmaTel, Inc.) [Auto | Running] -- C:\Program Files\SigmaTel\C-dur-lyd\WDM\stacsv.exe -- (STacSV)
SRV - [2005-01-18 01:38:38 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe -- (CFSvcs)
SRV - [2001-11-12 14:31:48 | 000,020,480 | ---- | M] (X10) [Auto | Running] -- C:\Program Files\Common Files\X10\Common\X10nets.exe -- (x10nets)

========== Driver Services (SafeList) ==========

DRV - [2011-02-01 22:57:56 | 001,124,097 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2011-02-01 22:36:43 | 004,202,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Intel(R)
DRV - [2011-01-31 18:39:05 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\KR10N.sys -- (KR10N)
DRV - [2010-08-04 11:50:36 | 000,140,752 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010-08-03 13:28:36 | 000,055,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi)
DRV - [2010-07-29 13:31:26 | 000,134,512 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw)
DRV - [2010-07-29 13:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010-07-29 13:31:26 | 000,032,608 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis)
DRV - [2009-09-14 21:06:10 | 000,010,240 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdvrmng.sys -- (mdvrmng)
DRV - [2009-09-14 20:05:10 | 000,102,400 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2008-04-13 20:46:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mpe.sys -- (MPE)
DRV - [2008-04-13 20:45:34 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irbus.sys -- (IrBus)
DRV - [2006-09-06 12:38:38 | 000,066,944 | ---- | M] (TOSHIBA Corporation) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\thdudf.sys -- (thdudf)
DRV - [2006-07-31 20:12:14 | 000,189,184 | ---- | M] (Toshiba Corporation) [Kernel | Auto | Running] -- C:\Program Files\Common Files\TOSHIBA Shared\tos_sps.sys -- (TOS_SPS)
DRV - [2006-07-11 23:44:28 | 000,173,568 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ttv400x.sys -- (ttv400x)
DRV - [2006-07-03 00:16:30 | 000,012,544 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans)
DRV - [2006-06-28 12:50:00 | 000,098,816 | ---- | M] (TOSHIBA Corporation) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\tdudf.sys -- (tdudf)
DRV - [2006-03-02 19:49:50 | 000,015,360 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV - [2006-02-14 04:26:02 | 001,106,888 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA)
DRV - [2005-12-26 15:33:26 | 000,016,768 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\TVALZ.SYS -- (TVALZ)
DRV - [2005-11-30 19:12:36 | 000,162,560 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tifm21.sys -- (tifm21)
DRV - [2005-11-28 11:45:16 | 000,007,040 | ---- | M] (X10 Wireless Technology, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\x10hid.sys -- (X10Hid)
DRV - [2005-09-09 15:47:10 | 000,009,344 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tosrfec.sys -- (tosrfec)
DRV - [2003-09-19 02:47:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (Pfc)
DRV - [2003-01-29 23:35:00 | 000,012,032 | ---- | M] (TOSHIBA Corporation.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Netdevio.sys -- (Netdevio)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.dk/0SEDADK/SAOS01?FORM=TOOLBR
IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://tv2.dk/
IE - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: eplgTb@eset.com:

FF - HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c}: C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c} [2011-01-31 18:22:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011-01-31 02:06:33 | 000,000,000 | ---D | M]

Restore point Set: OTL Restore Point (56027131116781568)

Avatar billede nyher Novice
02. juni 2011 - 10:16 #34
OTL.txt del 2 :

Avatar billede f-arn Guru
02. juni 2011 - 11:08 #35
Det vil give to logfiler på skrivebordet, en kaldet OTL.txt, den anden vil blive navngivet Extras.txt.

Beklager, den linie skulle selvfølge ikke ha' været med  :-)

Jeg har ikke rørt ved dit Skrivebord og din Hurtig start/quick launch. Ser det Normalt ud når du ser på dem ?
Avatar billede nyher Novice
02. juni 2011 - 12:54 #36
Jo - jeg synes faktisk at det hele ser normalt ud og alt virker som det skal. Det er jo helt fantastisk !!
Avatar billede f-arn Guru
02. juni 2011 - 13:32 #37
Vi er ikke færdige endnu.

Start OTL

Kopier nedenstånde med fed skrift ind i feltet "Custom Scans/Fixes"

O3 - HKU\S-1-5-21-2898044737-1287641525-2697268485-1005\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
Her er logfilen :

Her er logfilen fra ComboFix:
2011-05-07 20:45 . 2011-05-29 21:11    --------    d-----w-    c:\program files\StreamTorrent NE 1.0
Avatar billede f-arn Guru
02. juni 2011 - 19:32 #41
Det er ved at se fint ud, men der er lige lidt jeg vil ta' med OTL.


Start OTL

Kopier nedenstånde med fed skrift ind i feltet "Custom Scans/Fixes"

O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk =  File not found
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows-pc-søgning.lnk =  File not found


Luk alle andre åbne vinduer og klik på "Run Fix"

Efter genstart åbnes en logfil, kopier den tekst herind i denne tråd.

Ellers ligger den her: C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log


Hvordan kører PCen nu?

Hvis der er problemer, vil jeg gerne vide det nu.
Ellers vil mit næste indlæg kun handle om at fjerne de værktøjer jeg har brugt. Det vil selvfølge også betyde de backup OTL og ComboFix har lavet.
Avatar billede nyher Novice
02. juni 2011 - 20:34 #42
Jeg synes den kører fint nu.

OTL logfil :

Avatar billede f-arn Guru
02. juni 2011 - 20:51 #43
Tast  <Windows> + <R> samtidig og kopier dette ind: combofix /uninstall
Tryk enter
Det vil fjerne Combofix og nulstille urets indstillinger.
Nulstille systemgendannelsen.
Skjule filtypenavne hvis det kræves.
Skjule System/skjulte filer hvis det kræves.


Start OTL og klik på CleanUp

Det vil fjerne OTL, og andre værktøjer vi har brugt.
Avatar billede nyher Novice
02. juni 2011 - 22:27 #44
Det hele ser rigtig fint ud nu, jeg siger tusind tak for din store indsats.

Har ikke prøvet det her før med point osv. - har jeg gjort det rigtigt ? Skal man gøre noget specielt for at få lukket tråden...?
Avatar billede Slettet bruger
02. juni 2011 - 23:24 #45
f-arn--->  Havde #12 så ikke været nemmere ?
Avatar billede f-arn Guru
03. juni 2011 - 00:37 #46
Velbekomme - og hvad angår point har du gjort det helt rigtigt  :-)

Øhh - for hvem. For mig jo, men nyher skulle stadig enten ha' lavet nye genveje manuelt, eller ha' geninstalleret samtlige programmer på PCen!
Avatar billede Ny bruger Nybegynder

