<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0">
<channel>
	<title>Säkerhet</title>
	<description>Säkerhet - Eforum</description>
	<link>http://eforum.idg.se/index.php</link>
	<pubDate>Mon, 13 Feb 2012 23:13:12 +0000</pubDate>
	<ttl>5</ttl>
	<item>
		<title>Nytt virusprogram</title>
		<link>http://eforum.idg.se/topic/334611-nytt-virusprogram/</link>
		<description><![CDATA[Hej<br />
<br />
Kom på att jag inte hade nått antivirus program i laptopen. Finns de några bra för en vanlig hemanvändare som kanske är gratis?<br />
<br />
Vänligen<br />
...RLR]]></description>
		<pubDate>Mon, 13 Feb 2012 23:13:12 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334611-nytt-virusprogram/</guid>
	</item>
	<item>
		<title>Vill få DDS loggen kollad</title>
		<link>http://eforum.idg.se/topic/334577-vill-fa-dds-loggen-kollad/</link>
		<description><![CDATA[Hej!<br />
<br />
Jag skulle villa ha loggen kollad.<br />
<br />
<br />
DDS (Ver_10-12-12.02) - NTFSx86  <br />
Run by Andreas Janson at 19:58:42,05 on 2012-02-11<br />
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_29<br />
Microsoft Windows XP Home Edition  5.1.2600.3.1252.46.1053.18.1271.541 [GMT 1:00]<br />
<br />
AV: Panda Cloud Antivirus *Enabled/Updated* {5AD27692-540A-464E-B625-78275FA38393}<br />
FW: Online Armor Firewall *Enabled* <br />
<br />
============== Running Processes ===============<br />
<br />
C:&#092;WINDOWS&#092;system32&#092;svchost -k DcomLaunch<br />
svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k netsvcs<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k WudfServiceGroup<br />
svchost.exe<br />
svchost.exe<br />
C:&#092;Program&#092;Tall Emu&#092;Online Armor&#092;OAcat.exe<br />
C:&#092;Program&#092;Tall Emu&#092;Online Armor&#092;oasrv.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
svchost.exe<br />
C:&#092;Program&#092;SUPERAntiSpyware&#092;SASCORE.EXE<br />
C:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
C:&#092;Program&#092;Panda Security&#092;Panda Cloud Antivirus&#092;PSANHost.exe<br />
C:&#092;Program&#092;NDAS&#092;System&#092;ndassvc.exe<br />
C:&#092;Program&#092;Secunia&#092;PSI&#092;PSIA.exe<br />
C:&#092;Program&#092;SQUEEZ~2&#092;server&#092;Bin&#092;MSWIN3~1&#092;mysqld.exe<br />
C:&#092;Program&#092;Secunia&#092;PSI&#092;sua.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;igfxtray.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k HTTPFilter<br />
C:&#092;Program&#092;Tall Emu&#092;Online Armor&#092;OAui.exe<br />
C:&#092;WINDOWS&#092;SOUNDMAN.EXE<br />
C:&#092;Program&#092;Delade filer&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program&#092;Tall Emu&#092;Online Armor&#092;OAhlp.exe<br />
C:&#092;Program&#092;Panda Security&#092;Panda Cloud Antivirus&#092;PSUNMain.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;Program&#092;Windows Live&#092;Messenger&#092;msnmsgr.exe<br />
C:&#092;Program&#092;Secunia&#092;PSI&#092;psi_tray.exe<br />
C:&#092;Program&#092;Mozilla Firefox&#092;firefox.exe<br />
C:&#092;Program&#092;Mozilla Firefox&#092;plugin-container.exe<br />
C:&#092;Documents and Settings&#092;Andreas Janson&#092;Skrivbord&#092;dds.scr<br />
<br />
============== Pseudo HJT Report ===============<br />
<br />
uStart Page = hxxp://www.bredbandskollen.se/<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:&#092;program&#092;delade filer&#092;adobe&#092;acrobat&#092;activex&#092;AcroIEHelperShim.dll<br />
BHO: Winamp Toolbar Loader: {25cee8ec-5730-41bc-8b58-22ddc8ab8c20} - c:&#092;program&#092;winamp toolbar&#092;winamptb.dll<br />
BHO: Windows Live inloggningshjälpen: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:&#092;program&#092;delade filer&#092;microsoft shared&#092;windows live&#092;WindowsLiveLogin.dll<br />
BHO: Java&#153; Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:&#092;program&#092;java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:&#092;program&#092;java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll<br />
TB: Winamp Toolbar: {ebf2ba02-9094-4c5a-858b-bb198f3d8de2} - c:&#092;program&#092;winamp toolbar&#092;winamptb.dll<br />
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File<br />
uRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;ctfmon.exe<br />
uRun: [msnmsgr] "c:&#092;program&#092;windows live&#092;messenger&#092;msnmsgr.exe" /background<br />
uRun: [SUPERAntiSpyware] c:&#092;program&#092;superantispyware&#092;SUPERAntiSpyware.exe<br />
mRun: [IgfxTray] c:&#092;windows&#092;system32&#092;igfxtray.exe<br />
mRun: [HotKeysCmds] c:&#092;windows&#092;system32&#092;hkcmd.exe<br />
mRun: [@OnlineArmor GUI] "c:&#092;program&#092;tall emu&#092;online armor&#092;OAui.exe"<br />
mRun: [SoundMan] SOUNDMAN.EXE<br />
mRun: [KONICA MINOLTA magicolor 2400W STD] c:&#092;windows&#092;system32&#092;MSTMON_S.EXE STARTUP<br />
mRun: [Adobe ARM] "c:&#092;program&#092;delade filer&#092;adobe&#092;arm&#092;1.0&#092;AdobeARM.exe"<br />
mRun: [SunJavaUpdateSched] "c:&#092;program&#092;delade filer&#092;java&#092;java update&#092;jusched.exe"<br />
mRun: [QuickTime Task] "c:&#092;program&#092;quicktime&#092;qttask.exe" -atboottime<br />
mRun: [APSDaemon] "c:&#092;program&#092;delade filer&#092;apple&#092;apple application support&#092;APSDaemon.exe"<br />
mRun: [PSUNMain] "c:&#092;program&#092;panda security&#092;panda cloud antivirus&#092;PSUNMain.exe" /Traybar<br />
dRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;CTFMON.EXE<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;secuni~1.lnk - c:&#092;program&#092;secunia&#092;psi&#092;psi_tray.exe<br />
IE: &Winamp Search - c:&#092;documents and settings&#092;all users&#092;application data&#092;winamp toolbar&#092;ietoolbar&#092;resources&#092;en-us&#092;local&#092;search.html<br />
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:&#092;program&#092;messenger&#092;msmsgs.exe<br />
LSP: c:&#092;program&#092;netlimiter&#092;nl_lsp.dll<br />
DPF: Microsoft XML Parser for Java - file://c:&#092;windows&#092;java&#092;classes&#092;xmldso.cab<br />
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1273668429105<br />
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
Notify: !SASWinLogon - c:&#092;program&#092;superantispyware&#092;SASWINLO.DLL<br />
Notify: igfxcui - igfxsrvc.dll<br />
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:&#092;windows&#092;system32&#092;WPDShServiceObj.dll<br />
SEH: OA Shell Helper: {4f07da45-8170-4859-9b5f-037ef2970034} - c:&#092;program&#092;tallem~1&#092;online~1&#092;oaevent.dll<br />
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:&#092;program&#092;superantispyware&#092;SASSEH.DLL<br />
<br />
================= FIREFOX ===================<br />
<br />
FF - ProfilePath - c:&#092;docume~1&#092;andrea~1&#092;applic~1&#092;mozilla&#092;firefox&#092;profiles&#092;diu8etui.default&#092;<br />
FF - prefs.js: browser.startup.homepage - hxxp://www.tradera.com/-4-x-1-digiality-diseqc-switch--auktion_302323_148089808|http://www.tradera.com/silvercrest-sl-80-digital-harddisk-satellit-mottagare-auktion_302318_148427146|http://www.tradera.com/usb-tv-mottagare--auktion_170903_148809270|http://www.tradera.com/internetradio-natverksspelare-pinnacle-soundbridge-m400-auktion_170611_148006247|http://www.tradera.com/popcorn-hour-a-110-tradlost-natverk-sata-320gb-hd-hdmi-auktion_170205_148647943|http://www.tradera.com/popcorn-hour-a-110-43-1000-gb-hd-auktion_170205_148670509|http://www.tradera.com/hd-mediaspelare-boxee-med-hdmi-tradlost-natverk-auktion_302385_148508647|http://www.tradera.com/pinnacle-soundbridge-homemusic-internetradio-natverksspelare-auktion_170611_148900652<br />
FF - prefs.js: keyword.URL - hxxp://se.search.yahoo.com/search?ei=utf-8&fr=panda&type=PCAFSI1190&p=<br />
FF - plugin: c:&#092;program&#092;adobe&#092;reader 10.0&#092;reader&#092;air&#092;nppdf32.dll<br />
FF - plugin: c:&#092;program&#092;adobe&#092;reader 9.0&#092;reader&#092;air&#092;nppdf32.dll<br />
FF - plugin: c:&#092;program&#092;java&#092;jre6&#092;bin&#092;new_plugin&#092;npdeployJava1.dll<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npdeployJava1.dll<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npwachk.dll<br />
FF - plugin: c:&#092;program&#092;personal&#092;bin&#092;np_prsnl.dll<br />
<br />
============= SERVICES / DRIVERS ===============<br />
<br />
R0 lfsfilt;Lean File Sharing;c:&#092;windows&#092;system32&#092;drivers&#092;lfsfilt.sys [2010-9-4 254440]<br />
R0 lpx;LPX Protocol;c:&#092;windows&#092;system32&#092;drivers&#092;lpx.sys [2007-6-29 62056]<br />
R0 pavboot;pavboot;c:&#092;windows&#092;system32&#092;drivers&#092;pavboot.sys [2011-12-26 28552]<br />
R1 ndasfat;NDAS FAT;c:&#092;windows&#092;system32&#092;drivers&#092;ndasfat.sys [2010-9-4 372584]<br />
R1 OADevice;OADriver;c:&#092;windows&#092;system32&#092;drivers&#092;OADriver.sys [2010-5-17 205864]<br />
R1 oahlpXX;Online Armor helper driver;c:&#092;windows&#092;system32&#092;drivers&#092;oahlp32.sys [2011-4-27 40296]<br />
R1 OAmon;OAmon;c:&#092;windows&#092;system32&#092;drivers&#092;OAmon.sys [2010-5-17 25192]<br />
R1 OAnet;OAnet;c:&#092;windows&#092;system32&#092;drivers&#092;OAnet.sys [2010-5-17 29464]<br />
R1 PSINKNC;PSINKNC;c:&#092;windows&#092;system32&#092;drivers&#092;PSINKNC.sys [2011-4-28 129992]<br />
R1 SASDIFSV;SASDIFSV;c:&#092;program&#092;superantispyware&#092;SASDIFSV.SYS [2010-2-17 12880]<br />
R1 SASKUTIL;SASKUTIL;c:&#092;program&#092;superantispyware&#092;SASKUTIL.SYS [2010-5-6 67664]<br />
R2 !SASCORE;SAS Core Service;c:&#092;program&#092;superantispyware&#092;SASCORE.EXE [2010-7-5 116608]<br />
R2 NanoServiceMain;Panda Cloud Antivirus Service;c:&#092;program&#092;panda security&#092;panda cloud antivirus&#092;PSANHost.exe [2011-4-28 140608]<br />
R2 PSINAflt;PSINAflt;c:&#092;windows&#092;system32&#092;drivers&#092;PSINAflt.sys [2011-8-1 143752]<br />
R2 PSINFile;PSINFile;c:&#092;windows&#092;system32&#092;drivers&#092;PSINFile.sys [2011-4-28 97096]<br />
R2 PSINProc;PSINProc;c:&#092;windows&#092;system32&#092;drivers&#092;PSINProc.sys [2011-4-28 111688]<br />
R2 PSINProt;PSINProt;c:&#092;windows&#092;system32&#092;drivers&#092;PSINProt.sys [2011-4-28 112456]<br />
R3 ndasbus;NDAS Bus Driver;c:&#092;windows&#092;system32&#092;drivers&#092;ndasbus.sys [2007-6-29 75880]<br />
R3 PSI;PSI;c:&#092;windows&#092;system32&#092;drivers&#092;psi_mf.sys [2010-9-1 15544]<br />
S0 aessqgy;aessqgy;c:&#092;windows&#092;system32&#092;drivers&#092;pjcwqtqc.sys --&gt; c:&#092;windows&#092;system32&#092;drivers&#092;pjcwqtqc.sys [?]<br />
S3 hwusbfake;Huawei DataCard USB Fake;c:&#092;windows&#092;system32&#092;drivers&#092;ewusbfake.sys [2011-4-27 103168]<br />
S3 ndasscsi;NDAS SCSI Miniport Driver;c:&#092;windows&#092;system32&#092;drivers&#092;ndasscsi.sys [2007-6-29 187368]<br />
S3 NPF;NetGroup Packet Filter Driver;c:&#092;windows&#092;system32&#092;drivers&#092;npf.sys [2005-8-2 32512]<br />
S3 TdsNordecr;Nordea NCR1 SmartCard Reader;c:&#092;windows&#092;system32&#092;drivers&#092;nordecr.sys [2007-10-30 23040]<br />
S3 VAC;S5L840F USB Device;c:&#092;windows&#092;system32&#092;drivers&#092;S5L840F.sys [2010-6-8 94829]<br />
<br />
=============== Created Last 30 ================<br />
<br />
<br />
==================== Find3M  ====================<br />
<br />
2011-11-25 21:57:54	293376	----a-w-	c:&#092;windows&#092;system32&#092;winsrv.dll<br />
2011-11-23 22:01:43	414368	----a-w-	c:&#092;windows&#092;system32&#092;FlashPlayerCPLApp.cpl<br />
2011-11-23 14:40:46	1859584	----a-w-	c:&#092;windows&#092;system32&#092;win32k.sys<br />
2011-11-20 06:12:55	60928	----a-w-	c:&#092;windows&#092;system32&#092;packager.exe<br />
2011-11-16 14:22:17	354816	----a-w-	c:&#092;windows&#092;system32&#092;winhttp.dll<br />
2011-11-16 14:22:17	152064	----a-w-	c:&#092;windows&#092;system32&#092;schannel.dll<br />
<br />
============= FINISH: 20:11:27,03 ===============<div id='attach_wrap' class='rounded clearfix'>
	<h4>Bifogade filer</h4>
	<ul>
		
			<li class='clear'>
				<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14253" title="Ladda ner bilaga"><img src="http://eforum.idg.se/public/style_extra/mime_types/txt.gif" alt="Bifogad fil" /></a>
&nbsp;<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14253" title="Ladda ner bilaga">Attach.txt</a> <span class='desc'><strong>(13,31Kb)</strong></span>
<br /><span class="desc info">Antal nedladdningar: 4</span>
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Sat, 11 Feb 2012 19:23:12 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334577-vill-fa-dds-loggen-kollad/</guid>
	</item>
	<item>
		<title>Fundering över säkerhet i Windows Live Mail</title>
		<link>http://eforum.idg.se/topic/334517-fundering-over-sakerhet-i-windows-live-mail/</link>
		<description><![CDATA[Hej<br />
<br />
I tidigare versioner av mail som Outlook Express så klickade man bort Förhandsgranska för att förhindra att elakheter skulle kunna smitta ned datorn.<br />
 <br />
Har inte hittat att man kan klicka bort Förhandsgranska i Windows Live Mail utan där ser man alla nya mail. Funderar över om detta kan innebära en säkerhetsrisk eller har man tagit bort denna risk i Live Mail?<br />
<br />
Någon som vet?<br />
<br />
/Olle]]></description>
		<pubDate>Wed, 08 Feb 2012 10:46:52 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334517-fundering-over-sakerhet-i-windows-live-mail/</guid>
	</item>
	<item>
		<title>Virus vid namn internet security</title>
		<link>http://eforum.idg.se/topic/334496-virus-vid-namn-internet-security/</link>
		<description><![CDATA[Hej<br />
Igår fick jag ett virus som heter internet security som gav väldigt mycket problem. Jag kunde inte starta upp någonting men  jag kunde gå in i msconfig-autostart och där fanns internet security som jag bockade av och då kunde jag starta om datorn och få igång malware. Jag körde en snabbskanning och hittade ett par skadliga program bland annat internet security och alla dessa togs bort, men jag vet inte om jag fått bort hela viruset för när jag gick in i msconfig-autostart igen så finns internet security fortfarande där. Det är dock avbockat. Jag kunde se var filen isecurity.exe låg...C:&#092;users&#092;patrik&#092;appdata&#092;roaming&#092;isecurity.exe men där finns ingenting. Jag kommer till roaming men hittar inte isecurity.exe filen. <br />
Är det för att filen fortfarande ligger där gömd eller har jag fått bort allt?]]></description>
		<pubDate>Tue, 07 Feb 2012 08:27:53 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334496-virus-vid-namn-internet-security/</guid>
	</item>
	<item>
		<title>Drabbad av Trojan.Generic och Tracur.X på datorn</title>
		<link>http://eforum.idg.se/topic/334494-drabbad-av-trojangeneric-och-tracurx-pa-datorn/</link>
		<description><![CDATA[Hej, <br />
<br />
för några dagar sedan så spammade jag hela mitt LinkedIn nätverk via min hotmailkonto. Jag vet inte varför det skedde (var i skidbacken när hela processen satte igång. <br />
<br />
Nu när jag kommit hem från fjällen valde jag att köra diverse antivirus och maleware- program, bland annat CCleaner, Malewarebytes Anti-Malware och SpyHunter. <br />
<br />
Malewarebytes upptäckte en trojan som jag valde att läsa om och enligt den sidan rekommenderades en sökning med Spyhunter. <br />
<br />
Vid körning med Spyhunter dyker diverse trojaner upp:<br />
<br />
- Trojan.Generic (jestertb.dll)<br />
- Trojan.Downloader.Tracur.X  (iExplorer.exe)<br />
- UnknownRootkit (HDAShCut.exe)<br />
- Atlas DMT (4st bl.a. ANON.9VMNIKLO.txt)<br />
<br />
För att ta bort dessa behöver jag "nu" köpa Spyhunter. Vill inte lägga ut pengar på detta då jag inte är säker på att detta verkligen löser mitt problem?!?!?<br />
<br />
Kan någon av dessa "stulit med" lösen till hotmail och sedan genererat alla mail? Behöver jag efter rensning se till att uppdatera lösenord på diverse sajter eller redan nu påbörja denna uppdatering av lösenord via annan dator?<br />
<br />
Bfogar nedan DSS<br />
<br />
<div class="bbc_log">
				<input type="button" class="bbc_log_show" value="+" />
				<div class="bbc_log_wrapper">
					<div class="bbc_log_short_content" id="bbc_log_short_content">.</div>
					<div class="bbc_log_content" id="bbc_log_content" style="display:none;">.<br />
DDS (Ver_2011-08-26.01) - NTFSx86 <br />
Internet Explorer: 8.0.6001.18702  BrowserJavaVersion: 1.6.0_20<br />
Run by agare at 23:11:13 on 2012-02-06<br />
Microsoft Windows XP Home Edition  5.1.2600.3.1252.46.1053.18.2046.737 [GMT 1:00]<br />
.<br />
AV: Norton 360 *Enabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8}<br />
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}<br />
FW: Norton 360 *Enabled* <br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Program&#092;ENIGMA~1&#092;SPYHUN~1&#092;SH4SER~1.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost -k DcomLaunch<br />
svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k netsvcs<br />
C:&#092;Program&#092;Ahead&#092;InCD&#092;InCDsrv.exe<br />
svchost.exe<br />
svchost.exe<br />
C:&#092;Program&#092;Alwil Software&#092;Avast5&#092;AvastSvc.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
svchost.exe<br />
C:&#092;Program&#092;Adobe&#092;Photoshop Elements 4.0&#092;PhotoshopElementsFileAgent.exe<br />
C:&#092;Program&#092;Delade filer&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
C:&#092;Program&#092;Bonjour&#092;mDNSResponder.exe<br />
svchost.exe<br />
C:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
C:&#092;Program&#092;Delade filer&#092;Microsoft Shared&#092;VS7DEBUG&#092;MDM.EXE<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;ncpclcfg.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;ncprwsnt.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;ncpsec.exe<br />
C:&#092;Program&#092;PortWise&#092;Access Client&#092;AccessClient-Service.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;rwsrsu.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;WINDOWS&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;Program&#092;Canon&#092;CAL&#092;CALMAIN.exe<br />
C:&#092;WINDOWS&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;Program&#092;Malwarebytes' Anti-Malware&#092;mbamservice.exe<br />
C:&#092;Program&#092;ATI Technologies&#092;ATI.ACE&#092;cli.exe<br />
C:&#092;WINDOWS&#092;sm56hlpr.exe<br />
C:&#092;Program&#092;Google&#092;Quick Search Box&#092;GoogleQuickSearchBox.exe<br />
C:&#092;WINDOWS&#092;RTHDCPL.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;rundll32.exe<br />
C:&#092;Program&#092;ScanSoft&#092;OmniPageSE2.0&#092;OpwareSE2.exe<br />
C:&#092;Program&#092;Ahead&#092;InCD&#092;InCD.exe<br />
C:&#092;Program&#092;Adobe&#092;Photoshop Elements 4.0&#092;apdproxy.exe<br />
C:&#092;Program&#092;CyberLink&#092;PowerDVD&#092;PDVDServ.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;NcpBudgetGui.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;ncpmon.exe<br />
C:&#092;Program&#092;WatchGuard&#092;Mobile VPN&#092;rwsrsu.exe<br />
C:&#092;Program&#092;Delade filer&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program&#092;ALWILS~1&#092;Avast5&#092;avastUI.exe<br />
C:&#092;Program&#092;Net iD&#092;iid.exe<br />
C:&#092;Program&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;WINDOWS&#092;system32&#092;wbem&#092;wmiapsrv.exe<br />
C:&#092;Program&#092;SpyDig&#092;spydig.exe<br />
C:&#092;Program&#092;iPod&#092;bin&#092;iPodService.exe<br />
C:&#092;Program&#092;Enigma Software Group&#092;SpyHunter&#092;SpyHunter4.exe<br />
C:&#092;Program&#092;Malwarebytes' Anti-Malware&#092;mbamgui.exe<br />
C:&#092;Program&#092;Windows Live&#092;Messenger&#092;msnmsgr.exe<br />
C:&#092;Program&#092;Skype&#092;Phone&#092;Skype.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;Program&#092;Google&#092;GoogleToolbarNotifier&#092;GoogleToolbarNotifier.exe<br />
C:&#092;Program&#092;Garmin&#092;ANT Agent&#092;ANT Agent.exe<br />
C:&#092;Program&#092;CleanMyPC&#092;Registry Cleaner&#092;RCHelper.exe<br />
C:&#092;Program&#092;Logitech&#092;SetPoint&#092;SetPoint.exe<br />
C:&#092;Program&#092;McAfee Security Scan&#092;2.0.181&#092;SSScheduler.exe<br />
C:&#092;Program&#092;Nike+ Utility&#092;Nike+ Utility.exe<br />
C:&#092;Program&#092;Windows Desktop Search&#092;WindowsSearch.exe<br />
C:&#092;Program&#092;ATI Technologies&#092;ATI.ACE&#092;cli.exe<br />
C:&#092;Program&#092;ATI Technologies&#092;ATI.ACE&#092;cli.exe<br />
C:&#092;Program&#092;Delade filer&#092;Logishrd&#092;KHAL2&#092;KHALMNPR.EXE<br />
C:&#092;Program&#092;Windows Live&#092;Contacts&#092;wlcomm.exe<br />
C:&#092;Program&#092;Delade filer&#092;Java&#092;Java Update&#092;jucheck.exe<br />
C:&#092;Program&#092;Mozilla Firefox&#092;firefox.exe<br />
C:&#092;WINDOWS&#092;system32&#092;SearchProtocolHost.exe<br />
C:&#092;Documents and Settings&#092;agare&#092;Mina dokument&#092;Hämtade filer&#092;dds.scr<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://www.google.se/<br />
uInternet Settings,ProxyOverride = *.local<br />
uURLSearchHooks: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:&#092;program&#092;vuze_remote&#092;prxtbVuz1.dll<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:&#092;program&#092;delade filer&#092;adobe&#092;acrobat&#092;activex&#092;AcroIEHelperShim.dll<br />
BHO: {28387537-e3f9-4ed7-860c-11e69af4a8a0} - No File<br />
BHO: Windows Live inloggningshjälpen: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:&#092;program&#092;delade filer&#092;microsoft shared&#092;windows live&#092;WindowsLiveLogin.dll<br />
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:&#092;program&#092;google&#092;google toolbar&#092;GoogleToolbar_32.dll<br />
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:&#092;program&#092;google&#092;googletoolbarnotifier&#092;5.7.7227.1100&#092;swg.dll<br />
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:&#092;program&#092;micros~3&#092;office14&#092;URLREDIR.DLL<br />
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:&#092;program&#092;vuze_remote&#092;prxtbVuz1.dll<br />
BHO: Java&#153; Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:&#092;program&#092;java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:&#092;program&#092;java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll<br />
TB: Easy-WebPrint: {327c2873-e90d-4c37-aa9d-10ac9baba46c} - c:&#092;program&#092;canon&#092;easy-webprint&#092;Toolband.dll<br />
TB: {28387537-e3f9-4ed7-860c-11e69af4a8a0} - No File<br />
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:&#092;program&#092;vuze_remote&#092;prxtbVuz1.dll<br />
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:&#092;program&#092;google&#092;google toolbar&#092;GoogleToolbar_32.dll<br />
uRun: [msnmsgr] "c:&#092;program&#092;windows live&#092;messenger&#092;msnmsgr.exe" /background<br />
uRun: [Skype] "c:&#092;program&#092;skype&#092;&#092;phone&#092;Skype.exe" /nosplash /minimized<br />
uRun: [Polar Sync] <br />
uRun: [NBJ] "c:&#092;program&#092;ahead&#092;nero backitup&#092;NBJ.exe"<br />
uRun: [ctfmon.exe] c:&#092;windows&#092;system32&#092;ctfmon.exe<br />
uRun: [swg] "c:&#092;program&#092;google&#092;googletoolbarnotifier&#092;GoogleToolbarNotifier.exe"<br />
uRun: [ANT Agent] c:&#092;program&#092;garmin&#092;ant agent&#092;ANT Agent.exe<br />
uRun: [Registry Cleaner Scheduler] "c:&#092;program&#092;cleanmypc&#092;registry cleaner&#092;RCHelper.exe" /startup<br />
mRun: [Genväg till egenskapssida för High Definition Audio] HDAShCut.exe<br />
mRun: [ATICCC] "c:&#092;program&#092;ati technologies&#092;ati.ace&#092;cli.exe" runtime -Delay<br />
mRun: [SMSERIAL] sm56hlpr.exe<br />
mRun: [Google Quick Search Box] "c:&#092;program&#092;google&#092;quick search box&#092;GoogleQuickSearchBox.exe"  /autorun<br />
mRun: [RTHDCPL] RTHDCPL.EXE<br />
mRun: [Alcmtr] ALCMTR.EXE<br />
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent<br />
mRun: [OpwareSE2] "c:&#092;program&#092;scansoft&#092;omnipagese2.0&#092;OpwareSE2.exe"<br />
mRun: [NeroFilterCheck] c:&#092;windows&#092;system32&#092;NeroCheck.exe<br />
mRun: [InCD] c:&#092;program&#092;ahead&#092;incd&#092;InCD.exe<br />
mRun: [Adobe Photo Downloader] "c:&#092;program&#092;adobe&#092;photoshop elements 4.0&#092;apdproxy.exe"<br />
mRun: [RemoteControl] c:&#092;program&#092;cyberlink&#092;powerdvd&#092;PDVDServ.exe<br />
mRun: [Adobe Reader Speed Launcher] "c:&#092;program&#092;adobe&#092;reader 9.0&#092;reader&#092;Reader_sl.exe"<br />
mRun: [NcpBudgetGui] "c:&#092;program&#092;watchguard&#092;mobile vpn&#092;NcpBudgetGui.exe" -start<br />
mRun: [NcpPopup] "c:&#092;program&#092;watchguard&#092;mobile vpn&#092;ncppopup.exe" noerrmsg<br />
mRun: [NcpMonitor] "c:&#092;program&#092;watchguard&#092;mobile vpn&#092;ncpmon.exe" autorun<br />
mRun: [NcpRsuGui] "c:&#092;program&#092;watchguard&#092;mobile vpn&#092;rwsrsu.exe" -gui<br />
mRun: [SunJavaUpdateSched] "c:&#092;program&#092;delade filer&#092;java&#092;java update&#092;jusched.exe"<br />
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE<br />
mRun: [avast5] c:&#092;program&#092;alwils~1&#092;avast5&#092;avastUI.exe /nogui<br />
mRun: [AppleSyncNotifier] c:&#092;program&#092;delade filer&#092;apple&#092;mobile device support&#092;AppleSyncNotifier.exe<br />
mRun: [Net iD] "c:&#092;program&#092;net id&#092;iid.exe"<br />
mRun: [QuickTime Task] "c:&#092;program&#092;quicktime&#092;qttask.exe" -atboottime<br />
mRun: [APSDaemon] "c:&#092;program&#092;delade filer&#092;apple&#092;apple application support&#092;APSDaemon.exe"<br />
mRun: [iTunesHelper] "c:&#092;program&#092;itunes&#092;iTunesHelper.exe"<br />
mRun: [spydig.exe] c:&#092;program&#092;spydig&#092;spydig.exe<br />
mRun: [SpyHunter Security Suite] c:&#092;program&#092;enigma software group&#092;spyhunter&#092;SpyHunter4.exe<br />
mRun: [Malwarebytes' Anti-Malware] "c:&#092;program&#092;malwarebytes' anti-malware&#092;mbamgui.exe" /starttray<br />
dRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;CTFMON.EXE<br />
StartupFolder: c:&#092;docume~1&#092;agare&#092;start-~1&#092;program&#092;autost~1&#092;adobeg~1.lnk - c:&#092;program&#092;delade filer&#092;adobe&#092;calibration&#092;Adobe Gamma Loader.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;logite~1.lnk - c:&#092;program&#092;logitech&#092;setpoint&#092;SetPoint.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;mcafee~1.lnk - c:&#092;program&#092;mcafee security scan&#092;2.0.181&#092;SSScheduler.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;nike_u~1.lnk - c:&#092;program&#092;nike+ utility&#092;Nike+ Utility.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;window~1.lnk - c:&#092;program&#092;windows desktop search&#092;WindowsSearch.exe<br />
IE: E&xportera till Microsoft Excel - c:&#092;program&#092;micros~3&#092;office14&#092;EXCEL.EXE/3000<br />
IE: Easy-WebPrint Add To Print List - c:&#092;program&#092;canon&#092;easy-webprint&#092;Resource.dll/RC_AddToList.html<br />
IE: Easy-WebPrint High Speed Print - c:&#092;program&#092;canon&#092;easy-webprint&#092;Resource.dll/RC_HSPrint.html<br />
IE: Easy-WebPrint Preview - c:&#092;program&#092;canon&#092;easy-webprint&#092;Resource.dll/RC_Preview.html<br />
IE: Easy-WebPrint Print - c:&#092;program&#092;canon&#092;easy-webprint&#092;Resource.dll/RC_Print.html<br />
IE: Ski&cka till OneNote - c:&#092;program&#092;micros~3&#092;office14&#092;ONBttnIE.dll/105<br />
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:&#092;program&#092;messenger&#092;msmsgs.exe<br />
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:&#092;program&#092;microsoft office&#092;office14&#092;ONBttnIE.dll<br />
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:&#092;program&#092;microsoft office&#092;office14&#092;ONBttnIELinkedNotes.dll<br />
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:&#092;program&#092;micros~3&#092;office11&#092;REFIEBAR.DLL<br />
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab<br />
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab<br />
DPF: {19D6A3D5-EA50-4C3B-88F0-79627C325570} - hxxps://www.one.com/static/controls/IlosoftMultipleImageUpload.dll<br />
DPF: {3195CF7C-E9E2-49B2-8B61-14F285298E1C} - hxxps://outside.comhem.com/wa/AccessClientLoader.cab<br />
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1250792942406<br />
DPF: {7ECB1A47-6647-4B2C-A8DA-675569C9FF15} - hxxp://www.fujidirekt.se/asp/_upload/activex/ImageUploader7.cab<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab<br />
DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab<br />
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
TCP: DhcpNameServer = 192.168.1.254<br />
TCP: Interfaces&#092;{9A596260-169D-462F-92C0-EA1504C2796B} : DhcpNameServer = 192.168.1.254<br />
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:&#092;program&#092;delade filer&#092;microsoft shared&#092;office14&#092;MSOXMLMF.DLL<br />
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:&#092;program&#092;delade~1&#092;skype&#092;SKYPE4~1.DLL<br />
Notify: AtiExtEvent - Ati2evxx.dll<br />
Notify: LBTWlgn - c:&#092;program&#092;delade filer&#092;logishrd&#092;bluetooth&#092;LBTWlgn.dll<br />
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:&#092;windows&#092;system32&#092;WPDShServiceObj.dll<br />
SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:&#092;program&#092;windows desktop search&#092;MSNLNamespaceMgr.dll<br />
Hosts: 192.168.0.221 r3-sbs01.r3.local<br />
Hosts: 192.168.0.222 r3tsrv01.r3.local<br />
================= FIREFOX ===================<br />
.<br />
FF - ProfilePath - c:&#092;documents and settings&#092;agare&#092;application data&#092;mozilla&#092;firefox&#092;profiles&#092;33cdtdca.default&#092;<br />
FF - plugin: c:&#092;program&#092;canon&#092;zoombrowser ex&#092;program&#092;NPCIG.dll<br />
FF - plugin: c:&#092;program&#092;google&#092;update&#092;1.3.21.99&#092;npGoogleUpdate3.dll<br />
FF - plugin: c:&#092;program&#092;micros~3&#092;office14&#092;NPAUTHZ.DLL<br />
FF - plugin: c:&#092;program&#092;micros~3&#092;office14&#092;NPSPWRAP.DLL<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npdeployJava1.dll<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npdjvu.dll<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npiidplg.dll<br />
FF - plugin: c:&#092;program&#092;mozilla firefox&#092;plugins&#092;npOGAPlugin.dll<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R1 aswSnx;aswSnx;c:&#092;windows&#092;system32&#092;drivers&#092;aswSnx.sys [2011-7-15 435032]<br />
R1 aswSP;aswSP;c:&#092;windows&#092;system32&#092;drivers&#092;aswSP.sys [2009-8-24 314456]<br />
R1 waclient;Portwise Access Client Driver;c:&#092;windows&#092;system32&#092;drivers&#092;waclient.sys [2009-10-11 39552]<br />
R2 aswFsBlk;aswFsBlk;c:&#092;windows&#092;system32&#092;drivers&#092;aswFsBlk.sys [2009-8-24 20568]<br />
R2 avast! Antivirus;avast! Antivirus;c:&#092;program&#092;alwil software&#092;avast5&#092;AvastSvc.exe [2010-7-29 44768]<br />
R2 LBeepKE;LBeepKE;c:&#092;windows&#092;system32&#092;drivers&#092;LBeepKE.sys [2009-12-28 10384]<br />
R2 MBAMService;MBAMService;c:&#092;program&#092;malwarebytes' anti-malware&#092;mbamservice.exe [2009-8-24 652360]<br />
R2 ncpclcfg;ncpclcfg;c:&#092;program&#092;watchguard&#092;mobile vpn&#092;ncpclcfg.exe [2009-11-16 86016]<br />
R2 ncprwsnt;ncprwsnt;c:&#092;program&#092;watchguard&#092;mobile vpn&#092;NCPRWSNT.EXE [2009-11-16 1065480]<br />
R2 NcpSec;NcpSec;c:&#092;program&#092;watchguard&#092;mobile vpn&#092;NCPSEC.EXE [2009-11-16 32768]<br />
R2 pwClientService;PortWise Client Service;c:&#092;program&#092;portwise&#092;access client&#092;AccessClient-Service.exe [2011-4-26 177392]<br />
R2 rwsrsu;RwsRsu;c:&#092;program&#092;watchguard&#092;mobile vpn&#092;rwsrsu.exe [2009-11-16 850432]<br />
R2 SpyHunter 4 Service;SpyHunter 4 Service;c:&#092;program&#092;enigma~1&#092;spyhun~1&#092;SH4SER~1.EXE [2012-1-18 737184]<br />
R3 esgiguard;esgiguard;c:&#092;program&#092;enigma software group&#092;spyhunter&#092;esgiguard.sys [2011-5-6 13904]<br />
R3 MBAMProtector;MBAMProtector;c:&#092;windows&#092;system32&#092;drivers&#092;mbam.sys [2009-8-24 20464]<br />
R3 NcpFiltMP;NcpFiltMP;c:&#092;windows&#092;system32&#092;drivers&#092;ncpvaxp.sys [2009-11-16 79528]<br />
S2 gupdate;Tjänsten Google Update (gupdate);c:&#092;program&#092;google&#092;update&#092;GoogleUpdate.exe [2010-2-11 135664]<br />
S3 gupdatem;Tjänsten Google Update (gupdatem);c:&#092;program&#092;google&#092;update&#092;GoogleUpdate.exe [2010-2-11 135664]<br />
S3 kwwalpgr;kwwalpgr;&#092;??&#092;c:&#092;docume~1&#092;agare&#092;lokala~1&#092;temp&#092;kwwalpgr.sys --&gt; c:&#092;docume~1&#092;agare&#092;lokala~1&#092;temp&#092;kwwalpgr.sys [?]<br />
S3 libusb0;LibUsb-Win32 - Kernel Driver 07/07/2009, 0.1.12.2;c:&#092;windows&#092;system32&#092;drivers&#092;libusb0.sys [2011-5-4 28160]<br />
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:&#092;program&#092;mcafee security scan&#092;2.0.181&#092;McCHSvc.exe [2010-1-15 227232]<br />
S3 MosIrUsb;MosIrUsb.sys;c:&#092;windows&#092;system32&#092;drivers&#092;MosIrUsb.sys [2004-4-14 20736]<br />
S3 NcpFilt;Ncp Filter Service;c:&#092;windows&#092;system32&#092;drivers&#092;ncpvaxp.sys [2009-11-16 79528]<br />
S3 ncpvaxp;NCP Secure Client Virtual Adapter Driver;c:&#092;windows&#092;system32&#092;drivers&#092;ncpvaxp.sys [2009-11-16 79528]<br />
S3 Netaapl;Apple Mobile Device Ethernet Service;c:&#092;windows&#092;system32&#092;drivers&#092;netaapl.sys [2010-6-29 18432]<br />
S3 osppsvc;Office Software Protection Platform;c:&#092;program&#092;delade filer&#092;microsoft shared&#092;officesoftwareprotectionplatform&#092;OSPPSVC.EXE [2010-1-9 4640000]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2012-02-06 20:38:46	110080	----a-r-	c:&#092;documents and settings&#092;agare&#092;application data&#092;microsoft&#092;installer&#092;{4e0c6314-a8b8-4026-ac15-084e8b63afb5}&#092;IconF7A21AF7.exe<br />
2012-02-06 20:38:46	110080	----a-r-	c:&#092;documents and settings&#092;agare&#092;application data&#092;microsoft&#092;installer&#092;{4e0c6314-a8b8-4026-ac15-084e8b63afb5}&#092;IconD7F16134.exe<br />
2012-02-06 20:38:46	110080	----a-r-	c:&#092;documents and settings&#092;agare&#092;application data&#092;microsoft&#092;installer&#092;{4e0c6314-a8b8-4026-ac15-084e8b63afb5}&#092;IconCF33A0CE.exe<br />
2012-02-06 20:37:46	--------	d-----w-	c:&#092;windows&#092;4E0C6314A8B84026AC15084E8B63AFB5.TMP<br />
2012-02-06 19:42:42	--------	d-----w-	c:&#092;program&#092;CleanMyPC<br />
2012-02-06 19:41:51	34736	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;RKHit.sys<br />
2012-02-06 19:41:50	--------	d-----w-	c:&#092;program&#092;SpyDig<br />
2012-02-06 19:30:52	--------	d-----w-	c:&#092;program&#092;CCleaner<br />
2012-02-06 18:39:03	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;McAfee Security Scan<br />
2012-02-06 18:38:41	--------	d-----w-	c:&#092;program&#092;McAfee Security Scan<br />
2012-01-22 19:31:06	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin&#092;audiences<br />
2012-01-22 19:31:05	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin&#092;common<br />
2012-01-22 19:31:05	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin&#092;codecs<br />
2012-01-22 19:31:04	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin&#092;plugins<br />
2012-01-22 19:31:02	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin&#092;tools<br />
2012-01-22 19:31:01	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;myrmbin<br />
2012-01-22 19:30:53	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;mycodec<br />
2012-01-22 19:30:40	--------	d-----w-	c:&#092;program&#092;MyVideoConverter<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2012-02-06 18:45:59	414368	----a-w-	c:&#092;windows&#092;system32&#092;FlashPlayerCPLApp.cpl<br />
2011-12-20 13:48:48	163934	----a-w-	c:&#092;windows&#092;system32&#092;DirShowEXMyVC.dll<br />
2011-12-16 08:34:18	3017728	----a-w-	c:&#092;windows&#092;system32&#092;DVDDec2.exe<br />
2011-12-10 14:24:06	20464	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;mbam.sys<br />
2011-11-28 18:01:25	41184	----a-w-	c:&#092;windows&#092;avastSS.scr<br />
2011-11-28 17:53:53	435032	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;aswSnx.sys<br />
2011-11-25 21:57:54	293376	----a-w-	c:&#092;windows&#092;system32&#092;winsrv.dll<br />
2011-11-23 14:40:46	1859584	----a-w-	c:&#092;windows&#092;system32&#092;win32k.sys<br />
2011-11-20 06:12:55	60928	----a-w-	c:&#092;windows&#092;system32&#092;packager.exe<br />
2011-11-16 14:22:17	354816	----a-w-	c:&#092;windows&#092;system32&#092;winhttp.dll<br />
2011-11-16 14:22:17	152064	----a-w-	c:&#092;windows&#092;system32&#092;schannel.dll<br />
.<br />
=================== ROOTKIT  ====================<br />
.<br />
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, <a href='http://www.gmer.net' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.gmer.net</a><br />
Windows 5.1.2600 <br />
.<br />
CreateFile("&#092;&#092;.&#092;PHYSICALDRIVE0"): Det går inte att komma åt filen eftersom den<br />
används av en annan process.<br />
device: opened successfully<br />
user: error reading MBR <br />
.<br />
Disk trace:<br />
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys SCSIPORT.SYS hal.dll viamraid.sys <br />
c:&#092;windows&#092;system32&#092;drivers&#092;viamraid.sys VIA Technologies inc,.ltd VIA RAID driver<br />
1 ntkrnlpa!IofCallDriver[0x804EF1A6] -&gt; &#092;Device&#092;Harddisk0&#092;DR0[0x89442030]<br />
3 CLASSPNP[0xBA118FD7] -&gt; ntkrnlpa!IofCallDriver[0x804EF1A6] -&gt; &#092;Device&#092;Scsi&#092;viamraid1Port2Path0Target0Lun0[0x89443030]<br />
kernel: MBR read successfully<br />
_asm { XOR AX, AX; MOV SS, AX; MOV SP, 0x7c00; STI ; PUSH AX; POP ES; PUSH AX; POP DS; CLD ; MOV SI, 0x7c1b; MOV DI, 0x61b; PUSH AX; PUSH DI; MOV CX, 0x1e5; REP MOVSB ; RETF ; MOV BP, 0x7be; MOV CL, 0x4; CMP [BP+0x0], CH; JL 0x2e; JNZ 0x3a;  }<br />
user != kernel MBR !!! <br />
.<br />
============= FINISH: 23:15:05,48 ===============</div>
				</div>
			</div><div id='attach_wrap' class='rounded clearfix'>
	<h4>Bifogade filer</h4>
	<ul>
		
			<li class='clear'>
				<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14201" title="Ladda ner bilaga"><img src="http://eforum.idg.se/public/style_extra/mime_types/zip.gif" alt="Bifogad fil" /></a>
&nbsp;<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14201" title="Ladda ner bilaga">attach.zip</a> <span class='desc'><strong>(4,53Kb)</strong></span>
<br /><span class="desc info">Antal nedladdningar: 2</span>
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Mon, 06 Feb 2012 22:27:22 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334494-drabbad-av-trojangeneric-och-tracurx-pa-datorn/</guid>
	</item>
	<item>
		<title>Gratis antivirusprogram</title>
		<link>http://eforum.idg.se/topic/334431-gratis-antivirusprogram/</link>
		<description><![CDATA[Hej!<br />
<br />
Jag letar efter ett gratis antivirusprogram som är bra.<br />
Har ni några tips?]]></description>
		<pubDate>Sat, 04 Feb 2012 11:31:25 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334431-gratis-antivirusprogram/</guid>
	</item>
	<item>
		<title>Nortonvarningar</title>
		<link>http://eforum.idg.se/topic/334406-nortonvarningar/</link>
		<description><![CDATA[<span style='font-family: Times New Roman'><span style='font-size: 15px;'>Hej,  tur att den här sidan finns. Här får man vid behov bra hjälp samtidigt som man annars lär av andras undringar och problem. Nu har jag en konkret undring. Jag har Win7, Explorer 9, Norton 360.</span></span><br />
<br />
<span style='font-family: Times New Roman'></span><br />
<br />
<span style='font-family: Times New Roman'><span style='font-size: 15px;'>Igår fick jag en meddelande om att Norton blockerat någonting med Exploit Website 9 (IP-nummer Moskva). Ingen åtgärd behövdes från min sida. Idag fick jag ett meddelande om att Norton blockerat någonting med Mass Injection Website (IP-nummer Jämtland). Inte nu heller behövdes åtgärd från min sida. </span></span><br />
<br />
<span style='font-family: Times New Roman'></span><br />
<br />
<span style='font-family: Times New Roman'><span style='font-size: 15px;'>Misstänksam som jag är ibland, så har jag ändå kört full Nortonsökning (=Ok), sökning med Malwarebytes (gratisversion, =Ok), Norton Power Eraser (=Ok, förutom ett frågetecken för en genväg till Photoshop) samt DDS. Resultaten från DDS bifogas här.</span></span><br />
<br />
<span style='font-family: Times New Roman'></span><br />
<br />
<span style='font-family: Times New Roman'><span style='font-size: 15px;'>Vad är det frågan om? Vad säger DDS-resultatet? Bör jag kunna sitta lugnt nu vid min dator? <br />
<br />
<br />
/Ulf<br />
<br />
.<br />
DDS (Ver_2011-08-26.01) - NTFSAMD64 <br />
Internet Explorer: 9.0.8112.16421<br />
Run by Ulf at 12:15:45 on 2012-02-03<br />
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.46.1053.18.6071.4644 [GMT 1:00]<br />
.<br />
AV: Norton 360 *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}<br />
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br />
SP: Norton 360 *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}<br />
FW: Norton 360 *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}<br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Windows&#092;system32&#092;wininit.exe<br />
C:&#092;Windows&#092;system32&#092;lsm.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k DcomLaunch<br />
C:&#092;Windows&#092;system32&#092;nvvsvc.exe<br />
C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k RPCSS<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalServiceNetworkRestricted<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalSystemNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k netsvcs<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkService<br />
C:&#092;Windows&#092;System32&#092;spoolsv.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceAndNoImpersonation<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceNoNetwork<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;armsvc.exe<br />
C:&#092;Program Files&#092;NVIDIA Corporation&#092;Display&#092;nvxdsync.exe<br />
C:&#092;Windows&#092;system32&#092;nvvsvc.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;AsHookDevice.exe<br />
C:&#092;Program Files (x86)&#092;Canon&#092;IJPLM&#092;IJPLMSVC.EXE<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;LMS&#092;LMS.exe<br />
C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Nero&#092;Nero BackItUp 4&#092;NBService.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k HPZ12<br />
C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Suite&#092;SupServ.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k HPZ12<br />
C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;SeaPort&#092;SeaPort.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSVC.EXE<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSvcM.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkServiceNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;Windows&#092;system32&#092;taskhost.exe<br />
C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Program Files (x86)&#092;ASUS&#092;EPU-4 Engine&#092;FourEngine.exe<br />
C:&#092;Program Files&#092;Realtek&#092;Audio&#092;HDA&#092;RAVCpl64.exe<br />
C:&#092;Program Files&#092;LTONHIS&#092;Touch Manager&#092;SKDaemon.exe<br />
C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;Real&#092;RealPlayer&#092;Update&#092;realsched.exe<br />
C:&#092;Program Files&#092;NVIDIA Corporation&#092;Display&#092;nvtray.exe<br />
C:&#092;Program Files&#092;Windows Media Player&#092;wmpnetwk.exe<br />
C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;NVIDIA Updatus&#092;daemonu.exe<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;UNS&#092;UNS.exe<br />
C:&#092;Program Files (x86)&#092;Internet Explorer&#092;IELowutil.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
C:&#092;Windows&#092;system32&#092;SearchProtocolHost.exe<br />
C:&#092;Windows&#092;system32&#092;SearchFilterHost.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cmd.exe<br />
C:&#092;Windows&#092;system32&#092;conhost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cscript.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://svd.se/<br />
mWinlogon: Userinit=userinit.exe,<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:&#092;ProgramData&#092;Real&#092;RealPlayer&#092;BrowserRecordPlugin&#092;IE&#092;rpbrowserrecordplugin.dll<br />
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;coIEPlg.dll<br />
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;IPS&#092;IPSBHO.DLL<br />
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;Search Helper&#092;SEPsearchhelperie.dll<br />
BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;ssv.dll<br />
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;coIEPlg.dll<br />
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File<br />
uRun: [RESTART_STICKY_NOTES] C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
mRun: [RunAIShell] C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
mRun: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
mRun: [TkBellExe] "c:&#092;program files (x86)&#092;real&#092;realplayer&#092;Update&#092;realsched.exe" -osboot<br />
mRun: [Adobe ARM] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
mPolicies-explorer: NoActiveDesktop = 1 (0x1)<br />
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)<br />
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)<br />
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)<br />
IE: E&xportera till Microsoft Excel - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;EXCEL.EXE/3000<br />
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;REFIEBAR.DLL<br />
Trusted Zone: skatteverket.se<br />
Trusted Zone: transportstyrelsen.se<br />
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab<br />
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab<br />
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab<br />
DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} - hxxp://quickscan.bitdefender.com/qsax/qsax.cab<br />
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
TCP: DhcpNameServer = 81.26.228.3 81.26.227.3<br />
TCP: Interfaces&#092;{855FC6ED-6AD4-47DC-83EE-94A2DCB530EE} : DhcpNameServer = 81.26.228.3 81.26.227.3<br />
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll<br />
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}<br />
{3049C3E9-B461-4BC5-8870-4C09146192CA}<br />
{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}<br />
{6D53EC84-6AAE-4787-AEEE-F4628F01010C}<br />
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}<br />
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}<br />
{9030D464-4C02-4ABF-8ECC-5164760863C6}<br />
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}<br />
{DBC80044-A445-435b-BC74-9C25C1C588A9}<br />
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}<br />
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File<br />
mRun-x64: [RunAIShell] C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
mRun-x64: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
mRun-x64: [TkBellExe] "c:&#092;program files (x86)&#092;real&#092;realplayer&#092;Update&#092;realsched.exe" -osboot<br />
mRun-x64: [Adobe ARM] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R0 SMR250;Symantec SMR Utility Service 2.5.0;C:&#092;Windows&#092;system32&#092;drivers&#092;SMR250.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;SMR250.SYS [?]<br />
R0 SymDS;Symantec Data Store;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMDS64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMDS64.SYS [?]<br />
R0 SymEFA;Symantec Extended File Attributes;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMEFA64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMEFA64.SYS [?]<br />
R1 BHDrvx64;BHDrvx64;C:&#092;ProgramData&#092;Norton&#092;{0C55C096-0F1D-4F28-AAA2-85EF591126E7}&#092;N360_5.1.0.29&#092;Definitions&#092;BASHDefs&#092;20120121.002&#092;BHDrvx64.sys [2012-1-24 1157240]<br />
R1 IDSVia64;IDSVia64;C:&#092;ProgramData&#092;Norton&#092;{0C55C096-0F1D-4F28-AAA2-85EF591126E7}&#092;N360_5.1.0.29&#092;Definitions&#092;IPSDefs&#092;20120202.002&#092;IDSviA64.sys [2012-2-3 488568]<br />
R1 SymIRON;Symantec Iron Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;Ironx64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;Ironx64.SYS [?]<br />
R1 SymNetS;Symantec Network Security WFP Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMNETS.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMNETS.SYS [?]<br />
R2 AdobeARMservice;Adobe Acrobat Update Service;C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;armsvc.exe [2012-1-3 63928]<br />
R2 Device Handle Service;Device Handle Service;C:&#092;Windows&#092;SysWOW64&#092;AsHookDevice.exe [2010-8-28 203392]<br />
R2 N360;Norton 360;C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe [2011-10-6 130008]<br />
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;NVIDIA Updatus&#092;daemonu.exe [2011-7-24 2253120]<br />
R2 OMSI download service;Sony Ericsson OMSI download service;C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Suite&#092;SupServ.exe [2011-6-4 90112]<br />
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe [2011-10-14 381248]<br />
R2 UNS;Intel® Management & Security Application User Notification Service;C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;UNS&#092;UNS.exe [2010-8-28 2314240]<br />
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:&#092;Program Files (x86)&#092;Common Files&#092;Symantec Shared&#092;EENGINE&#092;EraserUtilRebootDrv.sys [2011-11-9 138360]<br />
R3 HECIx64;Intel® Management Engine Interface;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;HECIx64.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;HECIx64.sys [?]<br />
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;nvhda64v.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;nvhda64v.sys [?]<br />
R3 RTL8167;Realtek 8167 NT Driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;Rt64win7.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;Rt64win7.sys [?]<br />
R3 WDC_SAM;WD SCSI Pass Thru driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;wdcsam64.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;wdcsam64.sys [?]<br />
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:&#092;Windows&#092;Microsoft.NET&#092;Framework&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 130384]<br />
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:&#092;Windows&#092;Microsoft.NET&#092;Framework64&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 138576]<br />
S2 gupdate;Tjänsten Google Update (gupdate);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-4-19 136176]<br />
S3 fssfltr;fssfltr;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;fssfltr.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;fssfltr.sys [?]<br />
S3 fsssvc;Windows Live Family Safety Service;C:&#092;Program Files (x86)&#092;Windows Live&#092;Family Safety&#092;fsssvc.exe [2010-9-22 1493352]<br />
S3 ggflt;SEMC USB Flash Driver Filter;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ggflt.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ggflt.sys [?]<br />
S3 gupdatem;Tjänsten Google Update (gupdatem);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-4-19 136176]<br />
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039bus.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039bus.sys [?]<br />
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdfl.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdfl.sys [?]<br />
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdm.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdm.sys [?]<br />
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mgmt.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mgmt.sys [?]<br />
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039nd5.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039nd5.sys [?]<br />
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039obex.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039obex.sys [?]<br />
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039unic.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039unic.sys [?]<br />
S3 TsUsbFlt;TsUsbFlt;C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys [?]<br />
S3 WatAdminSvc;Aktiveringsteknologier för Windows-tjänst;C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe --&gt; C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe [?]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2012-02-03 10:57:02 96376 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;SMR250.SYS<br />
2012-02-03 08:46:48 -------- d-----w- C:&#092;Users&#092;Ulf&#092;AppData&#092;Local&#092;NPE<br />
2012-01-31 08:01:18 912504 ----a-r- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;symefa64.sys<br />
2012-01-31 08:01:18 744568 ----a-r- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;srtsp64.sys<br />
2012-01-31 08:01:18 450680 ----a-r- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;symds64.sys<br />
2012-01-31 08:01:18 40568 ----a-r- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;srtspx64.sys<br />
2012-01-31 08:01:18 386168 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;symnets.sys<br />
2012-01-31 08:01:18 171128 ----a-r- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D&#092;ironx64.sys<br />
2012-01-31 08:01:11 -------- d-----w- C:&#092;Windows&#092;System32&#092;drivers&#092;N360x64&#092;0502000.00D<br />
2012-01-30 19:42:44 -------- d-----w- C:&#092;Users&#092;Ulf&#092;AppData&#092;Local&#092;{114036CE-A0BC-4C6D-8EED-2EEDB072E806}<br />
2012-01-16 11:12:31 230352 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;truecrypt.sys<br />
2012-01-11 07:42:43 514560 ----a-w- C:&#092;Windows&#092;SysWow64&#092;qdvd.dll<br />
2012-01-11 07:42:43 1572864 ----a-w- C:&#092;Windows&#092;System32&#092;quartz.dll<br />
2012-01-11 07:42:43 1328128 ----a-w- C:&#092;Windows&#092;SysWow64&#092;quartz.dll<br />
2012-01-11 07:42:42 366592 ----a-w- C:&#092;Windows&#092;System32&#092;qdvd.dll<br />
2012-01-11 07:42:42 1731920 ----a-w- C:&#092;Windows&#092;System32&#092;ntdll.dll<br />
2012-01-11 07:42:42 1292080 ----a-w- C:&#092;Windows&#092;SysWow64&#092;ntdll.dll<br />
2012-01-11 07:42:41 77312 ----a-w- C:&#092;Windows&#092;System32&#092;packager.dll<br />
2012-01-11 07:42:41 67072 ----a-w- C:&#092;Windows&#092;SysWow64&#092;packager.dll<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-11-24 04:52:09 3145216 ----a-w- C:&#092;Windows&#092;System32&#092;win32k.sys<br />
2011-11-23 14:55:18 414368 ----a-w- C:&#092;Windows&#092;SysWow64&#092;FlashPlayerCPLApp.cpl<br />
2011-11-20 07:54:43 499712 ----a-w- C:&#092;Windows&#092;SysWow64&#092;msvcp71.dll<br />
2011-11-20 07:54:43 348160 ----a-w- C:&#092;Windows&#092;SysWow64&#092;msvcr71.dll<br />
2011-11-17 06:49:14 95600 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;ksecdd.sys<br />
2011-11-17 06:49:14 152432 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;ksecpkg.sys<br />
2011-11-17 06:44:43 459232 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;cng.sys<br />
2011-11-17 06:35:28 395776 ----a-w- C:&#092;Windows&#092;System32&#092;webio.dll<br />
2011-11-17 06:35:26 29184 ----a-w- C:&#092;Windows&#092;System32&#092;sspisrv.dll<br />
2011-11-17 06:35:26 136192 ----a-w- C:&#092;Windows&#092;System32&#092;sspicli.dll<br />
2011-11-17 06:35:25 340992 ----a-w- C:&#092;Windows&#092;System32&#092;schannel.dll<br />
2011-11-17 06:35:25 28160 ----a-w- C:&#092;Windows&#092;System32&#092;secur32.dll<br />
2011-11-17 06:35:19 1447936 ----a-w- C:&#092;Windows&#092;System32&#092;lsasrv.dll<br />
2011-11-17 06:33:55 31232 ----a-w- C:&#092;Windows&#092;System32&#092;lsass.exe<br />
2011-11-17 05:35:02 314880 ----a-w- C:&#092;Windows&#092;SysWow64&#092;webio.dll<br />
2011-11-17 05:34:52 224768 ----a-w- C:&#092;Windows&#092;SysWow64&#092;schannel.dll<br />
2011-11-17 05:34:52 22016 ----a-w- C:&#092;Windows&#092;SysWow64&#092;secur32.dll<br />
2011-11-17 05:28:48 96768 ----a-w- C:&#092;Windows&#092;SysWow64&#092;sspicli.dll<br />
2011-11-10 04:54:13 472808 ----a-w- C:&#092;Windows&#092;SysWow64&#092;deployJava1.dll<br />
.<br />
============= FINISH: 12:16:29,59 ===============<br />
<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14169" title="Ladda ner bilaga"><img src="http://eforum.idg.se/public/style_extra/mime_types/txt.gif" alt="Bifogad fil" /></a>
&nbsp;<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=14169" title="Ladda ner bilaga">Attach.txt</a> <span class='desc'><strong>(6,86Kb)</strong></span>
<br /><span class="desc info">Antal nedladdningar: 1</span><br />
</span></span>]]></description>
		<pubDate>Fri, 03 Feb 2012 11:45:05 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334406-nortonvarningar/</guid>
	</item>
	<item>
		<title><![CDATA['win32/win maximizer irriterar]]></title>
		<link>http://eforum.idg.se/topic/334388-win32win-maximizer-irriterar/</link>
		<description><![CDATA[Sedan två dar påpekar påpekar Security Essentials att man identifierat ett potentiellt hot, som då heter win32win maximizer. Jag har rensat åtskilliga gånger och startat om datorn efter varje rensning men problemet kvarstår. <br />
Jag har nyss uppdaterat Security Essentials, Windows Vista.<br />
Vad kan man göra???]]></description>
		<pubDate>Thu, 02 Feb 2012 16:03:50 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334388-win32win-maximizer-irriterar/</guid>
	</item>
	<item>
		<title>Surun, erfarenheter?</title>
		<link>http://eforum.idg.se/topic/334258-surun-erfarenheter/</link>
		<description><![CDATA[Surun, finns det någon här som har erfarenheter?<br />
<br />
<a href='http://translate.google.com/translate?u=http%3A%2F%2Fkay-bruns.de%2Fwp%2Fsoftware%2Fsurun%2F&langpair=de|en&hl=de&safe=active&ie=UTF-8&oe=UTF-8&prev=%2Flanguage_tools' class='bbc_url' title='Extern länk' rel='nofollow external'>http://translate.google.com/translate?u=http%3A%2F%2Fkay-bruns.de%2Fwp%2Fsoftware%2Fsurun%2F&langpair=de|en&hl=de&safe=active&ie=UTF-8&oe=UTF-8&prev=%2Flanguage_tools</a>]]></description>
		<pubDate>Thu, 26 Jan 2012 08:48:01 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334258-surun-erfarenheter/</guid>
	</item>
	<item>
		<title>En tråkig historia</title>
		<link>http://eforum.idg.se/topic/334240-en-trakig-historia/</link>
		<description><![CDATA[En tråkig historia: <a href='http://www.h-online.com/security/news/item/Botnet-operator-used-to-work-for-anti-virus-company-1420620.html' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.h-online....ny-1420620.html</a>]]></description>
		<pubDate>Tue, 24 Jan 2012 21:28:18 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334240-en-trakig-historia/</guid>
	</item>
	<item>
		<title><![CDATA[Hjälp med &#34;rensning&#34;...]]></title>
		<link>http://eforum.idg.se/topic/334214-hjalp-med-rensning/</link>
		<description><![CDATA[Hej,<br />
<br />
Här kommer lite loggar som jag undrar om de ser "farliga" ut och vad jag bör göra.<br />
<br />
Malwarebytes Anti-Malware 1.60.0.1800<br />
www.malwarebytes.org<br />
<br />
Databasversion: v2012.01.23.02<br />
<br />
Windows XP Service Pack 3 x86 NTFS<br />
Internet Explorer 7.0.5730.13<br />
Tomas Stenlund :: TOMAS [administratör]<br />
<br />
2012-01-23 12:34:14<br />
mbam-log-2012-01-23 (14-17-32).txt<br />
<br />
Skanningstyp: Snabbskanning<br />
Aktiverade skanningsalternativ: Minne | Start | Register | Filsystem | Heuristik/Extra | Heuristik/Shuriken | PUP | PUM<br />
Inaktiverade skanningsalternativ: P2P<br />
Antal skannade objekt: 191067<br />
Förfluten tid: 6 minut(er), 9 sekund(er)<br />
<br />
Upptäckta minnesprocesser: 1<br />
C:&#092;Documents and Settings&#092;Tomas Stenlund&#092;xxlmi91t9w.exe (Trojan.Scar) -&gt; 3216 -&gt; Ingen åtgärd.<br />
<br />
Upptäckta minnesmoduler: 0<br />
(Inga skadliga poster hittades)<br />
<br />
Upptäckta registernycklar: 0<br />
(Inga skadliga poster hittades)<br />
<br />
Upptäckta registervärden: 2<br />
HKCU&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run|xxlmi91t9w (Trojan.Scar) -&gt; Data: C:&#092;Documents and Settings&#092;Tomas Stenlund&#092;xxlmi91t9w.exe -&gt; Ingen åtgärd.<br />
HKCU&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run|{95678ACD-AB74-7538-BA75-440222005237} (Trojan.Ransom.BP) -&gt; Data: "C:&#092;Documents and Settings&#092;Tomas Stenlund&#092;Application Data&#092;Exyte&#092;kooglo.exe" -&gt; Ingen åtgärd.<br />
<br />
Upptäckta registerdataposter: 0<br />
(Inga skadliga poster hittades)<br />
<br />
Upptäckta mappar: 0<br />
(Inga skadliga poster hittades)<br />
<br />
Upptäckta filer: 2<br />
C:&#092;Documents and Settings&#092;Tomas Stenlund&#092;xxlmi91t9w.exe (Trojan.Scar) -&gt; Ingen åtgärd.<br />
C:&#092;Documents and Settings&#092;Tomas Stenlund&#092;Application Data&#092;Exyte&#092;kooglo.exe (Trojan.Ransom.BP) -&gt; Ingen åtgärd.<br />
<br />
(klar)<br />
<br />
<br />
<br />
<br />
.<br />
DDS (Ver_2011-08-26.01) - NTFSx86 <br />
Internet Explorer: 7.0.5730.13<br />
Run by Tomas Stenlund at 15:01:14 on 2012-01-23<br />
Microsoft Windows XP Professional  5.1.2600.3.1252.46.1053.18.2047.1424 [GMT 1:00]<br />
.<br />
AV: Norman Security Suite *Enabled/Updated* {EB9EFB40-AE72-4C43-B204-0FCD0E92D5F1}<br />
FW: Norman Security Suite *Enabled* <br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Program&#092;Norman&#092;Npm&#092;Bin&#092;elogsvc.exe<br />
C:&#092;Program&#092;Norman&#092;Ngs&#092;Bin&#092;Nnf.exe<br />
C:&#092;Program&#092;Norman&#092;Ngs&#092;Bin&#092;Nprosec.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost -k DcomLaunch<br />
C:&#092;WINDOWS&#092;system32&#092;svchost -k rpcss<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k netsvcs<br />
C:&#092;Program&#092;Norman&#092;Npm&#092;Bin&#092;Zanda.exe<br />
C:&#092;Program&#092;Norman&#092;npm&#092;bin&#092;nvoy.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k NetworkService<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Program&#092;Norman&#092;npf&#092;bin&#092;npfsvc32.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
C:&#092;WINDOWS&#092;System32&#092;SCardSvr.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Program&#092;Delade filer&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
C:&#092;Program&#092;Dassault Systemes&#092;B20&#092;intel_a&#092;code&#092;bin&#092;CATSysDemon.exe<br />
C:&#092;Program&#092;Bonjour&#092;mDNSResponder.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k HTTPFilter<br />
C:&#092;Program&#092;Delade filer&#092;Microsoft Shared&#092;VS7Debug&#092;mdm.exe<br />
C:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe<br />
C:&#092;Program&#092;Analog Devices&#092;SoundMAX&#092;SMAgent.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;Program&#092;Windows Media Player&#092;WMPNetwk.exe<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;WINDOWS&#092;system32&#092;RUNDLL32.EXE<br />
C:&#092;Program&#092;Analog Devices&#092;SoundMAX&#092;SMax4PNP.exe<br />
C:&#092;Program&#092;Analog Devices&#092;SoundMAX&#092;Smax4.exe<br />
C:&#092;Program&#092;Logitech&#092;MediaLife&#092;MediaLifeService.exe<br />
C:&#092;Program&#092;Musicmatch&#092;Musicmatch Jukebox&#092;mm_tray.exe<br />
C:&#092;Program&#092;Musicmatch&#092;Musicmatch Jukebox&#092;mmtask.exe<br />
C:&#092;Program&#092;Java&#092;jre1.6.0_07&#092;bin&#092;jusched.exe<br />
C:&#092;Program&#092;TOPRO&#092;TPPOLL.EXE<br />
C:&#092;Program&#092;Delade filer&#092;Pure Networks Shared&#092;Platform&#092;nmctxth.exe<br />
C:&#092;Program&#092;Linksys&#092;Linksys Wireless Manager&#092;LinksysWirelessManager.exe<br />
C:&#092;Program&#092;Norman&#092;Npm&#092;Bin&#092;ZLH.EXE<br />
C:&#092;Program&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;Program&#092;Logitech&#092;Desktop Messenger&#092;8876480&#092;Program&#092;LogitechDesktopMessenger.exe<br />
C:&#092;Program&#092;Windows Media Player&#092;WMPNSCFG.exe<br />
C:&#092;Program&#092;Adobe&#092;Acrobat 5.0&#092;Distillr&#092;AcroTray.exe<br />
C:&#092;Program&#092;Logitech&#092;SetPoint&#092;SetPoint.exe<br />
C:&#092;Program&#092;Personal&#092;bin&#092;Personal.exe<br />
C:&#092;Program&#092;Delade filer&#092;Logitech&#092;KHAL&#092;KHALMNPR.EXE<br />
C:&#092;Program&#092;Norman&#092;npf&#092;bin&#092;npfuser.exe<br />
C:&#092;WINDOWS&#092;system32&#092;wuauclt.exe<br />
C:&#092;Program&#092;iPod&#092;bin&#092;iPodService.exe<br />
C:&#092;WINDOWS&#092;System32&#092;alg.exe<br />
C:&#092;Program&#092;Norman&#092;Npm&#092;Bin&#092;scheduler.exe<br />
C:&#092;Program&#092;Norman&#092;Npm&#092;Bin&#092;Njeeves.exe<br />
C:&#092;Program&#092;Norman&#092;Nse&#092;Bin&#092;NSESVC.EXE<br />
C:&#092;Program&#092;Norman&#092;Nvc&#092;Bin&#092;nvcoas.exe<br />
C:&#092;Program&#092;Norman&#092;Nvc&#092;Bin&#092;Nip.exe<br />
C:&#092;Program&#092;Norman&#092;Nvc&#092;Bin&#092;cclaw.exe<br />
C:&#092;WINDOWS&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://www.leta.se/<br />
uSearch Page = hxxp://www.google.com<br />
uSearch Bar = hxxp://www.google.com/ie<br />
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8<br />
uInternet Settings,ProxyOverride = *.local<br />
uSearchAssistant = hxxp://www.google.com/ie<br />
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s<br />
mSearchAssistant = hxxp://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=54ee21620000000000000013d33c9162&tlver=1.4.19.19&affID=17160<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:&#092;program&#092;delade filer&#092;adobe&#092;acrobat&#092;activex&#092;AcroIEHelperShim.dll<br />
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:&#092;program&#092;java&#092;jre1.6.0_07&#092;bin&#092;ssv.dll<br />
TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File<br />
uRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;ctfmon.exe<br />
uRun: [LDM] c:&#092;program&#092;logitech&#092;desktop messenger&#092;8876480&#092;program&#092;LogitechDesktopMessenger.exe<br />
uRun: [Google Update] "c:&#092;documents and settings&#092;tomas stenlund&#092;lokala inställningar&#092;application data&#092;google&#092;update&#092;GoogleUpdate.exe" /c<br />
uRun: [Startw3i] c:&#092;program&#092;pc speed maximizer&#092;Startw3i.exe<br />
uRun: [WMPNSCFG] c:&#092;program&#092;windows media player&#092;WMPNSCFG.exe<br />
uRun: [1k0qd29gzp] c:&#092;documents and settings&#092;tomas stenlund&#092;1k0qd29gzp.exe<br />
uRun: [xxlmi91t9w] c:&#092;documents and settings&#092;tomas stenlund&#092;xxlmi91t9w.exe<br />
mRun: [NvCplDaemon] RUNDLL32.EXE c:&#092;windows&#092;system32&#092;NvCpl.dll,NvStartup<br />
mRun: [nwiz] nwiz.exe /install<br />
mRun: [NvMediaCenter] RUNDLL32.EXE c:&#092;windows&#092;system32&#092;NvMcTray.dll,NvTaskbarInit<br />
mRun: [SoundMAXPnP] c:&#092;program&#092;analog devices&#092;soundmax&#092;SMax4PNP.exe<br />
mRun: [SoundMAX] "c:&#092;program&#092;analog devices&#092;soundmax&#092;Smax4.exe" /tray<br />
mRun: [KAZAA] "c:&#092;program&#092;kazaa lite k++&#092;kpp.exe" "c:&#092;program&#092;kazaa lite k++&#092;KazaaLite.kpp" /SYSTRAY<br />
mRun: [MediaLifeService] "c:&#092;program&#092;logitech&#092;medialife&#092;MediaLifeService.exe"<br />
mRun: [MMTray] "c:&#092;program&#092;musicmatch&#092;musicmatch jukebox&#092;mm_tray.exe"<br />
mRun: [mmtask] "c:&#092;program&#092;musicmatch&#092;musicmatch jukebox&#092;mmtask.exe"<br />
mRun: [SunJavaUpdateSched] "c:&#092;program&#092;java&#092;jre1.6.0_07&#092;bin&#092;jusched.exe"<br />
mRun: [TPPOLL] c:&#092;program&#092;topro&#092;TPPOLL.EXE<br />
mRun: [nmctxth] "c:&#092;program&#092;delade filer&#092;pure networks shared&#092;platform&#092;nmctxth.exe"<br />
mRun: [Linksys Wireless Manager] "c:&#092;program&#092;linksys&#092;linksys wireless manager&#092;LinksysWirelessManager.exe" /cm /min /lcid 1053<br />
mRun: [Norman ZANDA] "c:&#092;program&#092;norman&#092;npm&#092;bin&#092;ZLH.EXE" /LOAD /SPLASH<br />
mRun: [QuickTime Task] "c:&#092;program&#092;quicktime&#092;qttask.exe" -atboottime<br />
mRun: [AppleSyncNotifier] c:&#092;program&#092;delade filer&#092;apple&#092;mobile device support&#092;AppleSyncNotifier.exe<br />
mRun: [iTunesHelper] "c:&#092;program&#092;itunes&#092;iTunesHelper.exe"<br />
mRun: [KernelFaultCheck] %systemroot%&#092;system32&#092;dumprep 0 -k<br />
mRun: [UserFaultCheck] %systemroot%&#092;system32&#092;dumprep 0 -u<br />
mRun: [Adobe Reader Speed Launcher] "c:&#092;program&#092;adobe&#092;reader 9.0&#092;reader&#092;Reader_sl.exe"<br />
mRun: [Adobe ARM] "c:&#092;program&#092;delade filer&#092;adobe&#092;arm&#092;1.0&#092;AdobeARM.exe"<br />
dRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;CTFMON.EXE<br />
StartupFolder: c:&#092;docume~1&#092;tomass~1&#092;start-~1&#092;program&#092;autost~1&#092;allian~1.lnk - &#092;&#092;bokföring&#092;c&#092;allians&#092;allians&#092;data&#092;AlliansPathfinder.exe<br />
StartupFolder: c:&#092;docume~1&#092;tomass~1&#092;start-~1&#092;program&#092;autost~1&#092;flipto~1.lnk - c:&#092;program&#092;fliptoast&#092;fliptoast.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;acroba~1.lnk - c:&#092;program&#092;adobe&#092;acrobat 5.0&#092;distillr&#092;AcroTray.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;adobeg~1.lnk - c:&#092;program&#092;delade filer&#092;adobe&#092;calibration&#092;Adobe Gamma Loader.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;logite~2.lnk - c:&#092;program&#092;logitech&#092;desktop messenger&#092;8876480&#092;program&#092;LogitechDesktopMessenger.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;logite~1.lnk - c:&#092;program&#092;logitech&#092;setpoint&#092;SetPoint.exe<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;micros~1.lnk - c:&#092;program&#092;microsoft office&#092;office10&#092;OSA.EXE<br />
StartupFolder: c:&#092;docume~1&#092;alluse~1&#092;start-~1&#092;program&#092;autost~1&#092;personal.lnk - c:&#092;program&#092;personal&#092;bin&#092;Personal.exe<br />
IE: E&xportera till Microsoft Excel - c:&#092;program&#092;micros~2&#092;office10&#092;EXCEL.EXE/3000<br />
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:&#092;program&#092;messenger&#092;msmsgs.exe<br />
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:&#092;program&#092;java&#092;jre1.6.0_07&#092;bin&#092;ssv.dll<br />
LSP: c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nlf.dll<br />
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab<br />
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} - hxxp://kitchenplanner.ikea.com/SE/Core/Player/2020PlayerAX_IKEA_Win32.cab<br />
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1127129685578<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab<br />
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
TCP: DhcpNameServer = 192.168.2.1<br />
TCP: Interfaces&#092;{188CA1A0-EAC7-42AE-B1A6-AC3854AE4924} : DhcpNameServer = 192.168.2.1<br />
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:&#092;program&#092;logitech&#092;desktop messenger&#092;8876480&#092;program&#092;GAPlugProtocol-8876480.dll<br />
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:&#092;program&#092;delade filer&#092;microsoft shared&#092;web folders&#092;PKMCDO.DLL<br />
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:&#092;program&#092;delade filer&#092;pure networks shared&#092;platform&#092;puresp4.dll<br />
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:&#092;windows&#092;system32&#092;WPDShServiceObj.dll<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R1 NGS;Norman General Security Driver;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;ngs.sys [2010-9-23 26744]<br />
R1 NPROSEC;Norman Security driver;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nprosec.sys [2010-9-23 74144]<br />
R1 tdi_nf;Norman Network Filter TDIL driver;c:&#092;windows&#092;system32&#092;drivers&#092;tdi_nf.sys [2010-9-23 378000]<br />
R2 BBDemon;Backbone Service;c:&#092;program&#092;dassault systemes&#092;b20&#092;intel_a&#092;code&#092;bin&#092;CATSysDemon.exe [2010-1-9 36864]<br />
R2 Ndiskio;Ndiskio;c:&#092;program&#092;norman&#092;nse&#092;bin&#092;Ndiskio.sys [2010-9-23 22880]<br />
R2 NNFSVC;Norman Network Filtering service;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nnf.exe [2010-9-23 223000]<br />
R2 Norman ZANDA;Norman ZANDA;c:&#092;program&#092;norman&#092;npm&#092;bin&#092;Zanda.exe [2010-5-18 428912]<br />
R2 NPFSvc32;Norman Personal Firewall Service;c:&#092;program&#092;norman&#092;npf&#092;bin&#092;npfsvc32.exe [2010-9-23 290472]<br />
R2 NPROSECSVC;Norman Security service;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nprosec.exe [2010-9-23 90144]<br />
R2 nregsec;Norman Registry Security driver;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nregsec.sys [2010-9-23 40384]<br />
R2 NVOY;Norman Resource Provider;c:&#092;program&#092;norman&#092;npm&#092;bin&#092;nvoy.exe [2010-9-23 100336]<br />
R3 nnetsec;Norman Network Security service;c:&#092;windows&#092;system32&#092;drivers&#092;nnetsec.sys [2010-9-23 48272]<br />
R3 NNetSecC;Norman Network Filter NDIS common driver;c:&#092;program&#092;norman&#092;ngs&#092;bin&#092;nnetsecc.sys [2010-8-18 23040]<br />
R3 nsesvc;Norman Scanner Engine Service;c:&#092;program&#092;norman&#092;nse&#092;bin&#092;Nsesvc.exe [2010-9-23 288072]<br />
R3 NvcMFlt;NvcMFlt;c:&#092;windows&#092;system32&#092;drivers&#092;nvcw32mf.sys [2010-9-23 24176]<br />
R3 nvcoas;Norman Virus Control on-access component;c:&#092;program&#092;norman&#092;nvc&#092;bin&#092;Nvcoas.exe [2010-9-23 198168]<br />
R3 Scheduler;Norman Scheduler Service;c:&#092;program&#092;norman&#092;npm&#092;bin&#092;scheduler.exe [2010-9-23 99312]<br />
S3 DCamUSBIntel;Digi-Microscope;c:&#092;windows&#092;system32&#092;drivers&#092;TP6800.SYS [2010-7-7 210924]<br />
S3 LUMDriver;LUMDriver;c:&#092;windows&#092;system32&#092;drivers&#092;LUMDriver.sys [2007-4-24 16688]<br />
S3 rt2870;Linksys 802.11n USB Wireless LAN Card Driver;c:&#092;windows&#092;system32&#092;drivers&#092;rt2870.sys [2010-9-2 644096]<br />
S3 SetupNTGLM7X;SetupNTGLM7X;&#092;??&#092;d:&#092;ntglm7x.sys --&gt; d:&#092;NTGLM7X.sys [?]<br />
S3 TdsNordecr;Nordea NCR1 SmartCard Reader;c:&#092;windows&#092;system32&#092;drivers&#092;nordecr.sys [2010-5-3 23040]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2023-04-03 13:06:00	135168	----a-w-	c:&#092;windows&#092;system32&#092;vbSendMail.dll<br />
2012-01-23 14:01:14	--------	d--h--w-	c:&#092;documents and settings&#092;tomas stenlund&#092;Skrivare<br />
2012-01-23 14:01:14	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;Favoriter<br />
2012-01-16 08:31:48	--------	d-----w-	C:&#092;dd65e93db154262c1fe7bb27ba98<br />
2012-01-05 16:34:47	--------	d-----w-	c:&#092;documents and settings&#092;tomas stenlund&#092;application data&#092;Tuidgob<br />
2012-01-05 16:34:47	--------	d-----w-	c:&#092;documents and settings&#092;tomas stenlund&#092;application data&#092;Exyte<br />
2012-01-04 16:45:07	--------	d-----w-	c:&#092;windows&#092;system32&#092;20-20 Technologies<br />
2012-01-03 07:22:02	103864	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;nppdf32.dll<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-12-10 14:24:06	20464	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;mbam.sys<br />
2011-11-25 21:57:54	293376	----a-w-	c:&#092;windows&#092;system32&#092;SET20A.tmp<br />
2011-11-23 14:40:46	1859584	----a-w-	c:&#092;windows&#092;system32&#092;win32k.sys<br />
2011-11-20 06:12:55	60928	----a-w-	c:&#092;windows&#092;system32&#092;packager.exe<br />
2011-11-16 14:22:17	354816	----a-w-	c:&#092;windows&#092;system32&#092;SET204.tmp<br />
2011-11-16 14:22:17	152064	----a-w-	c:&#092;windows&#092;system32&#092;SET203.tmp<br />
2011-11-11 08:02:32	414368	----a-w-	c:&#092;windows&#092;system32&#092;FlashPlayerCPLApp.cpl<br />
2011-11-01 16:07:11	1288192	----a-w-	c:&#092;windows&#092;system32&#092;ole32.dll<br />
2011-10-31 23:37:14	832512	----a-w-	c:&#092;windows&#092;system32&#092;wininet.dll<br />
2011-10-31 23:37:14	1830912	----a-w-	c:&#092;windows&#092;system32&#092;inetcpl.cpl<br />
2011-10-31 23:37:13	78336	----a-w-	c:&#092;windows&#092;system32&#092;ieencode.dll<br />
2011-10-31 23:37:13	17408	----a-w-	c:&#092;windows&#092;system32&#092;corpol.dll<br />
2011-10-28 05:32:19	33280	----a-w-	c:&#092;windows&#092;system32&#092;csrsrv.dll<br />
2011-10-26 10:49:54	2149888	----a-w-	c:&#092;windows&#092;system32&#092;ntoskrnl.exe<br />
2011-10-26 10:49:54	2028032	----a-w-	c:&#092;windows&#092;system32&#092;ntkrnlpa.exe<br />
.<br />
============= FINISH: 15:01:53,71 ===============]]></description>
		<pubDate>Mon, 23 Jan 2012 14:16:51 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334214-hjalp-med-rensning/</guid>
	</item>
	<item>
		<title>VundoFix</title>
		<link>http://eforum.idg.se/topic/334203-vundofix/</link>
		<description><![CDATA[Nån som vet var jag kan få tag på  <strong class='bbc'>senaste </strong>VundoFix (v6.3.23) ?]]></description>
		<pubDate>Sun, 22 Jan 2012 15:56:36 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334203-vundofix/</guid>
	</item>
	<item>
		<title>HiJackThis-logg</title>
		<link>http://eforum.idg.se/topic/334202-hijackthis-logg/</link>
		<description><![CDATA[Tja!<br />
<br />
Min dator börjar bli lite seg tycker jag och beter sig skumt ibland.<br />
Kan någon vänlig själ tyda denna HiJackThis-logg åt mig?<br />
<br />
Logfile of Trend Micro HijackThis v2.0.4<br />
Scan saved at 16:34:51, on 2012-01-22<br />
Platform: Windows 7 SP1 (WinNT 6.00.3505)<br />
MSIE: Internet Explorer v9.00 (9.00.8112.16421)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;Program Files (x86)&#092;Renesas Electronics&#092;USB 3.0 Host Controller Driver&#092;Application&#092;nusb3mon.exe<br />
C:&#092;Program Files (x86)&#092;Epson Software&#092;Event Manager&#092;EEventManager.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;Trend Micro&#092;HiJackThis&#092;HiJackThis.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;DllHost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;rundll32.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;DllHost.exe<br />
<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://www.google.se/' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.google.se/</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,CustomizeSearch = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = C:&#092;Windows&#092;SysWOW64&#092;blank.htm<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Toolbar,LinksFolderName = <br />
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)<br />
F2 - REG:system.ini: UserInit=userinit.exe<br />
O2 - BHO: Trend Micro NSC BHO - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:&#092;Program Files&#092;Trend Micro&#092;AMSP&#092;Module&#092;20004&#092;1.5.1504&#092;6.6.1088&#092;TmIEPlg32.dll<br />
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Companion&#092;companioncore.dll<br />
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:&#092;Program Files&#092;Trend Micro&#092;AMSP&#092;Module&#092;20002&#092;6.6.1010&#092;6.6.1010&#092;TmBpIe32.dll<br />
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:&#092;Program Files (x86)&#092;Microsoft&#092;BingBar&#092;BingExt.dll" (file missing)<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:&#092;Program Files (x86)&#092;Microsoft&#092;BingBar&#092;BingExt.dll" (file missing)<br />
O4 - HKLM&#092;..&#092;Run: [NUSB3MON] "C:&#092;Program Files (x86)&#092;Renesas Electronics&#092;USB 3.0 Host Controller Driver&#092;Application&#092;nusb3mon.exe"<br />
O4 - HKLM&#092;..&#092;Run: [EEventManager] "C:&#092;Program Files (x86)&#092;Epson Software&#092;Event Manager&#092;EEventManager.exe"<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
O4 - HKCU&#092;..&#092;Run: [EPSON SX525WD Series] C:&#092;Windows&#092;system32&#092;spool&#092;DRIVERS&#092;x64&#092;3&#092;E_IATIGAE.EXE /FU "C:&#092;Windows&#092;TEMP&#092;E_SF0F2.tmp" /EF "HKCU"<br />
O4 - HKCU&#092;..&#092;Run: [Google Update] "C:&#092;Users&#092;na&#092;AppData&#092;Local&#092;Google&#092;Update&#092;GoogleUpdate.exe" /c<br />
O9 - Extra button: @C:&#092;Program Files (x86)&#092;Windows Live&#092;Companion&#092;companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Companion&#092;companioncore.dll<br />
O9 - Extra button: @C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
O9 - Extra 'Tools' menuitem: @C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics<br />
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - <a href='http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab</a><br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a href='http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab</a><br />
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:&#092;Program Files&#092;Trend Micro&#092;AMSP&#092;Module&#092;20002&#092;6.6.1010&#092;6.6.1010&#092;TmBpIe32.dll<br />
O18 - Protocol: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:&#092;Program Files&#092;Trend Micro&#092;AMSP&#092;Module&#092;20004&#092;1.5.1504&#092;6.6.1088&#092;TmIEPlg32.dll<br />
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll<br />
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:&#092;Program Files (x86)&#092;Common Files&#092;ABBYY&#092;FineReaderSprint&#092;9.00&#092;Licensing&#092;NetworkLicenseServer.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Alg.exe,-112 (ALG) - Unknown owner - C:&#092;Windows&#092;System32&#092;alg.exe (file missing)<br />
O23 - Service: Trend Micro Solution Platform (Amsp) - Trend Micro Inc. - C:&#092;Program Files&#092;Trend Micro&#092;AMSP&#092;coreServiceShell.exe<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;efssvc.dll,-100 (EFS) - Unknown owner - C:&#092;Windows&#092;System32&#092;lsass.exe (file missing)<br />
O23 - Service: EPSON V5 Service4(04) (EPSON_EB_RPCV4_04) - SEIKO EPSON CORPORATION - C:&#092;Program Files&#092;Common Files&#092;EPSON&#092;EPW!3 SSRP&#092;E_S50STB.EXE<br />
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:&#092;Program Files&#092;Common Files&#092;EPSON&#092;EPW!3 SSRP&#092;E_S50RPB.EXE<br />
O23 - Service: @%systemroot%&#092;system32&#092;fxsresm.dll,-118 (Fax) - Unknown owner - C:&#092;Windows&#092;system32&#092;fxssvc.exe (file missing)<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:&#092;Windows&#092;System32&#092;msdtc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;System32&#092;netlogon.dll,-102 (Netlogon) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;nvvsvc.exe (file missing)<br />
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;NVIDIA Updatus&#092;daemonu.exe<br />
O23 - Service: PnkBstrA - Unknown owner - C:&#092;Windows&#092;system32&#092;PnkBstrA.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;Locator.exe,-2 (RpcLocator) - Unknown owner - C:&#092;Windows&#092;system32&#092;locator.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;samsrv.dll,-1 (SamSs) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:&#092;Windows&#092;System32&#092;snmptrap.exe (file missing)<br />
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCService.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;spoolsv.exe,-1 (Spooler) - Unknown owner - C:&#092;Windows&#092;System32&#092;spoolsv.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;sppsvc.exe,-101 (sppsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;sppsvc.exe (file missing)<br />
O23 - Service: Steam Client Service - Valve Corporation - C:&#092;Program Files (x86)&#092;Common Files&#092;Steam&#092;SteamService.exe<br />
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:&#092;Windows&#092;system32&#092;UI0Detect.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vds.exe,-100 (vds) - Unknown owner - C:&#092;Windows&#092;System32&#092;vds.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;vssvc.exe,-102 (VSS) - Unknown owner - C:&#092;Windows&#092;system32&#092;vssvc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Wat&#092;WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;wbengine.exe,-104 (wbengine) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbengine.exe (file missing)<br />
O23 - Service: @%Systemroot%&#092;system32&#092;wbem&#092;wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbem&#092;WmiApSrv.exe (file missing)<br />
O23 - Service: @%PROGRAMFILES%&#092;Windows Media Player&#092;wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:&#092;Program Files (x86)&#092;Windows Media Player&#092;wmpnetwk.exe (file missing)<br />
<br />
--<br />
End of file - 9496 bytes]]></description>
		<pubDate>Sun, 22 Jan 2012 15:48:43 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334202-hijackthis-logg/</guid>
	</item>
	<item>
		<title>Emotum mobile broadband?</title>
		<link>http://eforum.idg.se/topic/334195-emotum-mobile-broadband/</link>
		<description><![CDATA[Hej<br />
Jag har upptäckt att jag har ett program Emotum mobile broadband installerat på min laptop.      Jag kör med Net1 och mig veterligen har jag inte sett detta ovannämda program i datorn tidigare.   Vad är det? Och måste jag ha det kvar då jag ibland kör med en "dong" från net1?<br />
Tacksam för svar innan jag avinstallerar det.]]></description>
		<pubDate>Sun, 22 Jan 2012 09:13:37 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334195-emotum-mobile-broadband/</guid>
	</item>
	<item>
		<title>Problem med datorvirus, olmarik tdl4 win32</title>
		<link>http://eforum.idg.se/topic/334190-problem-med-datorvirus-olmarik-tdl4-win32/</link>
		<description><![CDATA[Hej, har som sagt fått ett virus som heter olmarik och har haft det ca en månad nu kanske. Har ESET som virusprogram, men det går inte att ta bort med det programmet. Datorn har automatiskt ändrat aktivitetsfältet & startmenyn till det gamla, gråa som finns på de äldre operativsystemen. Har kört combofix och fått en logg. Vet inte vad jag ska göra härnäst, ska jag posta loggen som kanske är till hjälp för någon av er? Tack.]]></description>
		<pubDate>Sat, 21 Jan 2012 20:25:07 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334190-problem-med-datorvirus-olmarik-tdl4-win32/</guid>
	</item>
	<item>
		<title><![CDATA[Symantec erkänner: &#34;Hackare stal källkod&#34;]]></title>
		<link>http://eforum.idg.se/topic/334164-symantec-erkanner-hackare-stal-kallkod/</link>
		<description><![CDATA[2012-01-18 07:11<br />
PC För Alla - <a href='http://pcforalla.idg.se/2.1054/1.427150/symantec-erkanner-hackare-stal-kallkod' class='bbc_url' title='Extern länk' rel='nofollow external'>Symantec erkänner: "Hackare stal källkod"</a><br />
Dålig reklam för ett stort säkerhetsföretag...<img src='http://eforum.idg.se/public/style_emoticons/default/thumbsdown.gif' class='bbc_emoticon' alt=':thumbsdown:' /><br />
<br />
Har själv Norton Internet Security 2012 (NIS 2012) men inte PCanywhere som också nämns i artikeln.<br />
Är det något som en annan behöver tänka på?<br />
Vilka drabbas egentligen?]]></description>
		<pubDate>Fri, 20 Jan 2012 18:45:35 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334164-symantec-erkanner-hackare-stal-kallkod/</guid>
	</item>
	<item>
		<title>Nortons gratisprogram</title>
		<link>http://eforum.idg.se/topic/334122-nortons-gratisprogram/</link>
		<description><![CDATA[Jag har redan Nortons internet security och ska snart förnya det. Hur bär jag mig åt för att få del av gratisversionen som prenumerant? Ska jag avinstallera min gamla version?<br />
Alva]]></description>
		<pubDate>Wed, 18 Jan 2012 14:33:36 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334122-nortons-gratisprogram/</guid>
	</item>
	<item>
		<title>McAfee får kritik</title>
		<link>http://eforum.idg.se/topic/334096-mcafee-far-kritik/</link>
		<description><![CDATA[McAfee får kritik för att fortfarande efter 180 dagar inte åtgärdat öppet hål i sin produkt. <br />
<br />
<a href='http://www.h-online.com/security/news/item/Critical-hole-in-McAfee-products-still-open-after-more-than-180-days-1413775.html' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.h-online.com/security/news/item/Critical-hole-in-McAfee-products-still-open-after-more-than-180-days-1413775.html</a>]]></description>
		<pubDate>Mon, 16 Jan 2012 16:45:55 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334096-mcafee-far-kritik/</guid>
	</item>
	<item>
		<title>Virus vid namn Trojan.Agent/Gen-FraudLoad</title>
		<link>http://eforum.idg.se/topic/334080-virus-vid-namn-trojanagentgen-fraudload/</link>
		<description><![CDATA[Hittade detta med SuperAntiSpyware. <br />
<br />
Någon som känner till om det är något allvarligt? Kommer det ens funka att ta bort?<br />
<br />
Edit: provade att ta bort det med Superantispyware. Ska skanna igen och se om den finner något..]]></description>
		<pubDate>Sun, 15 Jan 2012 14:25:04 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/334080-virus-vid-namn-trojanagentgen-fraudload/</guid>
	</item>
	<item>
		<title>Min dator motta/skickar data til en mängd olika ip-adresser?</title>
		<link>http://eforum.idg.se/topic/333972-min-dator-mottaskickar-data-til-en-mangd-olika-ip-adresser/</link>
		<description><![CDATA[Hej,<br />
<br />
Min dator har plötsligt börjat skicka ut data till en mängd olika ip-adresser (ses under TCP-anslutningar).<br />
Tittar man på aktivitetshanteraren under ressursövervakning så ser man en massa nätverksaktivitet. <br />
<br />
Någon som vet vad det kan bero på? Virus eller okända "gäster" på besök?<br />
Finns det någon software som kan fixa detta? Har redan kört Malwarebytes men problemet kvarstår.<br />
<br />
Jag upptäckte detta då min internetanslutning har börjat krångla och nu går extremt långsamt och slår av och på.<br />
<br />
Ca varje 30:sekund mottar/ skickar min dator information til x antal ip adresser. Jag ser vilka i Resursövervakaren (TCP anslutningar). Har kollat olika adresser och dom flesta finns i USA.<br />
Det känns som att någon typ av script har blivit installerat på min dator som nu sätter igång detta utskick av vad det nu är.<br />
Jag har kopplat bort min router och köra direkt mot mitt modem men problemet är precis samma som tidigare.]]></description>
		<pubDate>Mon, 09 Jan 2012 22:54:21 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333972-min-dator-mottaskickar-data-til-en-mangd-olika-ip-adresser/</guid>
	</item>
	<item>
		<title>Ljudet knastrar och sprakar, CPU:n går i taket men datorn flyter ok i övrigt</title>
		<link>http://eforum.idg.se/topic/333968-ljudet-knastrar-och-sprakar-cpun-gar-i-taket-men-datorn-flyter-ok-i-ovrigt/</link>
		<description><![CDATA[Blev tipsad av fantastiskt hjälpsamma <a href='http://eforum.idg.se/user/23870-cecilia/' class='bbc_url' title=''>Cecilia</a> att göra ett inlägg i den här tråden efter att sökt hjälp i <a href='http://eforum.idg.se/topic/333920-datorn-ater-cpu-och-gor-att-ljudet-knastrar/page__p__1566540#entry1566540' class='bbc_url' title=''>en tidigare tråd</a>. <br />
<br />
Mitt problem är att jag inte kan spela ljud och se på video för att CPU:n går upp i 100 % och ljudet bara sprakar. Funkar ok till och från men sprakar för mycket för att det ska gå att se på film eller lyssna på musik. <br />
<br />
Jag körde F-Secure (via comhem) igår och den scanningen hittade inget virus eller skadligt program.<br />
<br />
Har kört DDS och klistrar här nedan in DDS.txt<br />
<br />
<br />
.<br />
DDS (Ver_2011-08-26.01) - NTFSAMD64 <br />
Internet Explorer: 9.0.8112.16421<br />
Run by Berner at 20:13:07 on 2012-01-09<br />
Microsoft Windows 7 Home Premium   6.1.7600.0.1252.46.1053.18.4092.2435 [GMT 1:00]<br />
.<br />
AV: Com Hem Säkerhetspaket 9.12 *Enabled/Updated* {15414183-282E-D62C-CA37-EF24860A2F17}<br />
SP: Com Hem Säkerhetspaket 9.12 *Enabled/Updated* {AE20A067-0E14-D9A2-F087-D456FD8D65AA}<br />
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br />
FW: Com Hem Säkerhetspaket 9.12 *Enabled* {2D7AC0A6-6241-D774-E168-461178D9686C}<br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Windows&#092;system32&#092;wininit.exe<br />
C:&#092;Windows&#092;system32&#092;lsm.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k DcomLaunch<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k RPCSS<br />
C:&#092;Windows&#092;system32&#092;atiesrxx.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalServiceNetworkRestricted<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalSystemNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k netsvcs<br />
C:&#092;Windows&#092;System32&#092;DriverStore&#092;FileRepository&#092;stwrt64.inf_amd64_neutral_960c1f056a541068&#092;STacSV64.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Windows&#092;system32&#092;atieclxx.exe<br />
C:&#092;Windows&#092;system32&#092;Hpservice.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkService<br />
C:&#092;Windows&#092;System32&#092;spoolsv.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceNoNetwork<br />
C:&#092;Windows&#092;system32&#092;taskhost.exe<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;armsvc.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Windows&#092;System32&#092;DriverStore&#092;FileRepository&#092;stwrt64.inf_amd64_neutral_960c1f056a541068&#092;AESTSr64.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;svchost.exe -k netsvcs<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Anti-Virus&#092;fsgk32st.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceAndNoImpersonation<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Anti-Virus&#092;FSGK32.EXE<br />
C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynTPEnh.exe<br />
C:&#092;Program Files&#092;Java&#092;jre6&#092;bin&#092;jusched.exe<br />
C:&#092;Program Files&#092;IDT&#092;WDM&#092;sttray64.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSMA32.EXE<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;LightScribe&#092;LSSrvc.exe<br />
C:&#092;Program Files (x86)&#092;Personal&#092;bin&#092;Personal.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSM32.EXE<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSHDLL32.EXE<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSHDLL64.EXE<br />
C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;MOM.exe<br />
C:&#092;Program Files (x86)&#092;CyberLink&#092;Shared files&#092;RichVideo.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSVC.EXE<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
c:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;Media&#092;DVD&#092;DVDAgent.exe<br />
c:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;TouchSmart&#092;Media&#092;Kernel&#092;CLML&#092;CLMLSvc.exe<br />
c:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;Media&#092;Live TV&#092;TVAgent.exe<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSvcM.exe<br />
C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CCC.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;ORSP Client&#092;fsorsp.exe<br />
C:&#092;Windows&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;FWES&#092;Program&#092;fsdfwd.exe<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Anti-Virus&#092;fssm32.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkServiceNetworkRestricted<br />
C:&#092;Windows&#092;servicing&#092;TrustedInstaller.exe<br />
C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Windows&#092;system32&#092;SearchProtocolHost.exe<br />
C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynTPHelper.exe<br />
C:&#092;Windows&#092;Microsoft.NET&#092;Framework&#092;v4.0.30319&#092;mscorsvw.exe<br />
C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalServicePeerNet<br />
C:&#092;Program Files (x86)&#092;com hem security&#092;Anti-Virus&#092;fsav32.exe<br />
C:&#092;Program Files&#092;Windows Media Player&#092;wmpnetwk.exe<br />
C:&#092;Windows&#092;Microsoft.NET&#092;Framework64&#092;v4.0.30319&#092;mscorsvw.exe<br />
&#092;&#092;?&#092;C:&#092;Windows&#092;system32&#092;wbem&#092;WMIADAP.EXE<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
C:&#092;Windows&#092;system32&#092;sppsvc.exe<br />
C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office10&#092;WINWORD.EXE<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k secsvcs<br />
C:&#092;Windows&#092;splwow64.exe<br />
C:&#092;Windows&#092;system32&#092;SearchFilterHost.exe<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Program Files (x86)&#092;Hewlett-Packard&#092;HP Support Framework&#092;HPSF.exe<br />
C:&#092;Windows&#092;system32&#092;wuauclt.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cmd.exe<br />
C:&#092;Windows&#092;system32&#092;conhost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cscript.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://g.live.com/1rewlive4startup/home<br />
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sv_SE&c=94&bd=Pavilion&pf=cnnb<br />
uSearch Bar = hxxp://www.google.com/ie<br />
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sv_SE&c=94&bd=Pavilion&pf=cnnb<br />
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=sv_SE&c=94&bd=Pavilion&pf=cnnb<br />
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s<br />
mWinlogon: Userinit=userinit.exe<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
BHO: Java&#153; Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;ssv.dll<br />
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Companion&#092;companioncore.dll<br />
BHO: Java&#153; Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
mRun: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
mRun: [&lt;NO NAME&gt;] <br />
mRun: [F-Secure Manager] "C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSM32.EXE" /splash<br />
mRun: [F-Secure TNB] "C:&#092;Program Files (x86)&#092;com hem security&#092;FSGUI&#092;TNBUtil.exe" /CHECKALL /WAITFORSW<br />
mRun: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
StartupFolder: C:&#092;PROGRA~3&#092;MICROS~1&#092;Windows&#092;STARTM~1&#092;Programs&#092;Startup&#092;BANKID~1.LNK - C:&#092;Program Files (x86)&#092;Personal&#092;bin&#092;Personal.exe<br />
uPolicies-system: WallpaperStyle = 2<br />
mPolicies-explorer: NoActiveDesktop = 1 (0x1)<br />
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)<br />
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)<br />
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)<br />
mPolicies-system: HideFastUserSwitching = 0 (0x0)<br />
dPolicies-system: WallpaperStyle = 2<br />
IE: Add to Google Photos Screensa&ver - C:&#092;Windows&#092;system32&#092;GPhotos.scr/200<br />
IE: E&xportera till Microsoft Excel - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office10&#092;EXCEL.EXE/3000<br />
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Companion&#092;companioncore.dll<br />
LSP: C:&#092;Program Files (x86)&#092;com hem security&#092;FSPS&#092;program&#092;FSLSP.DLL<br />
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/2.9.2.0/GarminAxControl.CAB<br />
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab<br />
DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} - hxxp://kitchenplanner.ikea.com/SE/Core/Player/2020PlayerAX_Win32.cab<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {B1953AD6-C50E-11D3-B020-00A0C9251384} - hxxp://www.o2c.de/download/o2cplayer.cab<br />
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx<br />
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab<br />
DPF: {D821DC4A-0814-435E-9820-661C543A4679} - hxxp://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx<br />
TCP: DhcpNameServer = 83.255.245.11 193.150.193.150<br />
TCP: Interfaces&#092;{38F1F2BF-ECF8-442C-B6D6-3DC879DA3607} : DhcpNameServer = 40.4.1.100<br />
TCP: Interfaces&#092;{D6B611A5-69E8-4A2D-B6BF-9CA47F54CB08} : DhcpNameServer = 83.255.245.11 193.150.193.150<br />
TCP: Interfaces&#092;{D6B611A5-69E8-4A2D-B6BF-9CA47F54CB08}&#092;E42465 : DhcpNameServer = 213.142.0.244 213.142.0.242<br />
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll<br />
SEH: EasyBits ShellExecute Hook: {e54729e8-bb3d-4270-9d49-7389ea579090} - C:&#092;Windows&#092;SysWow64&#092;EZUPBH~1.DLL<br />
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:&#092;Program Files (x86)&#092;Common Files&#092;LightScribe&#092;LSRunOnce.exe"<br />
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}<br />
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}<br />
{9030D464-4C02-4ABF-8ECC-5164760863C6}<br />
{9FDDE16B-836F-4806-AB1F-1455CBEFF289}<br />
{DBC80044-A445-435b-BC74-9C25C1C588A9}<br />
mRun-x64: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
mRun-x64: [(Standard)] <br />
mRun-x64: [F-Secure Manager] "C:&#092;Program Files (x86)&#092;com hem security&#092;Common&#092;FSM32.EXE" /splash<br />
mRun-x64: [F-Secure TNB] "C:&#092;Program Files (x86)&#092;com hem security&#092;FSGUI&#092;TNBUtil.exe" /CHECKALL /WAITFORSW<br />
mRun-x64: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
SEH-X64: {E54729E8-BB3D-4270-9D49-7389EA579090}: EasyBits Security Shield Hook - prevents launching insecure programs by kids<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2012-01-09 19:08:37	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Windows Defender&#092;Definition Updates&#092;{1B4AEA1E-93F7-4AB0-A5F1-938E1B734E65}&#092;offreg.dll<br />
2012-01-07 21:42:38	--------	d-----w-	C:&#092;Windows&#092;System32&#092;SPReview<br />
2012-01-06 14:46:57	8822856	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Windows Defender&#092;Definition Updates&#092;{1B4AEA1E-93F7-4AB0-A5F1-938E1B734E65}&#092;mpengine.dll<br />
2012-01-06 09:55:12	--------	d-----w-	C:&#092;Program Files&#092;CCleaner<br />
2012-01-03 20:53:50	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{FDD407F2-D56A-46DE-B4E1-6F63B96F34B8}<br />
2012-01-03 19:21:29	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;Apps<br />
2012-01-03 15:39:02	--------	d-----w-	C:&#092;Windows&#092;pss<br />
2012-01-03 08:11:17	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{BCD32E93-9407-446F-8EEC-88D535040394}<br />
2012-01-03 08:09:53	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{51DC5D14-6791-40F0-833B-3B86831E2582}<br />
2012-01-02 09:08:00	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{5C5799A4-9A0B-4380-91BC-FA7EA597F6C6}<br />
2012-01-02 09:07:04	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{6161F307-A0EA-4EDF-935A-4DEF74555578}<br />
2012-01-01 14:32:05	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{01FC0597-A551-4CDB-9088-5E35333F9083}<br />
2012-01-01 14:31:36	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{2BB98DA9-3A11-44AB-9A20-534676ED75F3}<br />
2012-01-01 10:48:07	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{9ECA1CD6-3088-4AFA-BB72-E76450AD37F9}<br />
2012-01-01 10:47:05	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{94F61658-4F34-4144-A0AA-24D2390004D5}<br />
2011-12-28 17:00:00	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{37E97785-4BAD-49F0-A504-968E29612689}<br />
2011-12-28 16:57:48	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{5D10DEB4-2665-48C7-9783-34FB5E104894}<br />
2011-12-27 18:50:13	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{B19DEC2B-C134-44DA-9BD9-91B8EFD16BF1}<br />
2011-12-23 07:00:34	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{9DB164AB-8FA2-4998-9BC8-D92D2E3DC9E1}<br />
2011-12-20 18:59:35	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{FDEB5A0A-5DFC-4C9D-A65A-CEE2316212E7}<br />
2011-12-20 18:58:47	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{0B8B47AD-CA54-4693-924B-82A2B31F87BB}<br />
2011-12-19 18:43:15	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{04DB037B-164A-499E-8BBF-2D11BF2268FB}<br />
2011-12-19 18:42:12	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{7D35B883-7ADA-4566-959B-10ED90F0578F}<br />
2011-12-18 18:37:27	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{1F43E1BF-9EA8-45FC-BCB1-32E5BA75D4BA}<br />
2011-12-18 18:35:50	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{ED62FC79-C896-4FD8-9069-3AC3446FC380}<br />
2011-12-17 15:53:51	43520	----a-w-	C:&#092;Windows&#092;System32&#092;csrsrv.dll<br />
2011-12-17 15:53:47	3141632	----a-w-	C:&#092;Windows&#092;System32&#092;win32k.sys<br />
2011-12-17 15:53:43	723456	----a-w-	C:&#092;Windows&#092;System32&#092;EncDec.dll<br />
2011-12-17 15:53:42	534528	----a-w-	C:&#092;Windows&#092;SysWow64&#092;EncDec.dll<br />
2011-12-17 15:52:04	2048	----a-w-	C:&#092;Windows&#092;SysWow64&#092;tzres.dll<br />
2011-12-17 15:52:04	2048	----a-w-	C:&#092;Windows&#092;System32&#092;tzres.dll<br />
2011-12-17 15:36:05	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{7E2697C6-48F4-465B-B9C4-04499EBAD6A6}<br />
2011-12-17 15:34:17	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{DBFE306F-453F-42DA-8750-B27410F8ED0C}<br />
2011-12-14 19:32:54	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{2D4B1FE6-405E-47D9-91AF-27862DA6F36A}<br />
2011-12-14 19:32:00	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{4C6E5422-D02E-400B-82D6-17F7EAE6E95F}<br />
2011-12-13 18:07:34	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{5780B71B-2430-4035-9FDD-17AAD005E68A}<br />
2011-12-13 18:06:36	--------	d-----w-	C:&#092;Users&#092;Berner&#092;AppData&#092;Local&#092;{FA772689-9875-401A-8627-71DC5EA8BE8E}<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2012-01-08 10:12:54	152064	----a-w-	C:&#092;Windows&#092;SysWow64&#092;msclmd.dll<br />
2012-01-08 10:12:52	175104	----a-w-	C:&#092;Windows&#092;System32&#092;msclmd.dll<br />
2011-11-15 13:29:56	270720	------w-	C:&#092;Windows&#092;System32&#092;MpSigStub.exe<br />
2011-11-10 04:54:13	472808	----a-w-	C:&#092;Windows&#092;SysWow64&#092;deployJava1.dll<br />
2011-11-07 20:58:34	50384	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;fses.sys<br />
2011-11-07 20:30:03	42672	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;fsbts.sys<br />
2011-11-04 01:53:39	2309120	----a-w-	C:&#092;Windows&#092;System32&#092;jscript9.dll<br />
2011-11-04 01:44:47	1390080	----a-w-	C:&#092;Windows&#092;System32&#092;wininet.dll<br />
2011-11-04 01:44:21	1493504	----a-w-	C:&#092;Windows&#092;System32&#092;inetcpl.cpl<br />
2011-11-04 01:34:43	2382848	----a-w-	C:&#092;Windows&#092;System32&#092;mshtml.tlb<br />
2011-11-03 22:47:42	1798144	----a-w-	C:&#092;Windows&#092;SysWow64&#092;jscript9.dll<br />
2011-11-03 22:40:21	1427456	----a-w-	C:&#092;Windows&#092;SysWow64&#092;inetcpl.cpl<br />
2011-11-03 22:39:47	1127424	----a-w-	C:&#092;Windows&#092;SysWow64&#092;wininet.dll<br />
2011-11-03 22:31:57	2382848	----a-w-	C:&#092;Windows&#092;SysWow64&#092;mshtml.tlb<br />
.<br />
============= FINISH: 20:21:13,28 ===============<br />
<br />
<br />
Hoppas ni kan hjälpa mig.<div id='attach_wrap' class='rounded clearfix'>
	<h4>Bifogade filer</h4>
	<ul>
		
			<li class='clear'>
				<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=13813" title="Ladda ner bilaga"><img src="http://eforum.idg.se/public/style_extra/mime_types/txt.gif" alt="Bifogad fil" /></a>
&nbsp;<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=13813" title="Ladda ner bilaga">Attach.txt</a> <span class='desc'><strong>(5,26Kb)</strong></span>
<br /><span class="desc info">Antal nedladdningar: 3</span>
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Mon, 09 Jan 2012 19:39:26 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333968-ljudet-knastrar-och-sprakar-cpun-gar-i-taket-men-datorn-flyter-ok-i-ovrigt/</guid>
	</item>
	<item>
		<title>Låsta sektorer på HD.</title>
		<link>http://eforum.idg.se/topic/333855-lasta-sektorer-pa-hd/</link>
		<description><![CDATA[Hej! En process körs hela tiden. Denna process (   ej startad av mig ) gör  att jag ej kan komma åt vissa kataloger . Jag får beskedet " Åtkomst nekad"! Det har åxå skapats en massa kataloger och filer ( som jag ej skapat). Dessa har oftast attributet HIDDEN! Det går ej att ändra attribut på dessa, varken i windows eller Dos. Det ligger LOCKED sectors på HD. Det går ej att<br />
gå in med en sektor-editor. Jag har Norton 360 men denna visar inte på något som är fel. Jag har åxå Norton Utilities, men<br />
en del funktioner i denna går ej att köra då HD är upptagen av ett annat program (Jag hade inget program igång).<br />
Jag har använt TUNE-UP UTILITIES ( bra program) och sett en process som är igång hela tiden. I detta program kunde<br />
jag åxå se, att det fanns Locked sectors på min HD.  Det går att "döda" alla processer med detta program utom den process<br />
jag nämnt. Vad gör man? Finns det ngt program som låser upp alla låsta sectorer? Då kunde man kanske boota från dvd- enheten (utan att installera) och sedan låsa upp de låsta sectorerna och därefter göra Clean free space?]]></description>
		<pubDate>Tue, 03 Jan 2012 16:37:35 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333855-lasta-sektorer-pa-hd/</guid>
	</item>
	<item>
		<title>Norton Internet Security ovanpå 360?</title>
		<link>http://eforum.idg.se/topic/333833-norton-internet-security-ovanpa-360/</link>
		<description><![CDATA[Nappade på PC för Alla erbjudandet om gratis Norton Internet Security paket. Jag har redan Norton 360 Premium på datorn men vill ju så klart slippa pröjsa för uppdateringar. Måste jag avinstallera 360  innan jag lägger på NIS?<br />
Gunnar]]></description>
		<pubDate>Mon, 02 Jan 2012 22:29:11 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333833-norton-internet-security-ovanpa-360/</guid>
	</item>
	<item>
		<title>Hjälp nån sida som heter www.p95.com ger mig virus</title>
		<link>http://eforum.idg.se/topic/333761-hjalp-nan-sida-som-heter-wwwp95com-ger-mig-virus/</link>
		<description>Hej jag har fått problem på internet när jag ska gå in på en sida så kommer någon sida som heter www.p95.com och spärrar mig HJÄLP!</description>
		<pubDate>Thu, 29 Dec 2011 12:54:25 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333761-hjalp-nan-sida-som-heter-wwwp95com-ger-mig-virus/</guid>
	</item>
	<item>
		<title>msi-filer och _6ad647e.exe</title>
		<link>http://eforum.idg.se/topic/333752-msi-filer-och-6ad647eexe/</link>
		<description><![CDATA[Hej,<br />
jag har den senaste veckan fått en mängd .msi-filer på min dator. Vid en grundligare sökning (Norton) hittade jag också en fil, _6ad647e.exe som inte gick att testa. Är det någon som har en susning om vad det här handlar om? <br />
<br />
Hänger exe-filen ihop med .msi-filerna är det två olika problem min dator drabbats av? Eller det kanske helt enkelt inte rör sig om några problem? Please, help, är beroende av min dator i arbetet och har inte råd att drabbas av nåt otrevligt.]]></description>
		<pubDate>Wed, 28 Dec 2011 19:57:50 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333752-msi-filer-och-6ad647eexe/</guid>
	</item>
	<item>
		<title>root kit win 7</title>
		<link>http://eforum.idg.se/topic/333717-root-kit-win-7/</link>
		<description><![CDATA[Finns det något root kit som biter på win 7 64-bit ?<br />
<br />
nån som vet?]]></description>
		<pubDate>Tue, 27 Dec 2011 15:43:30 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333717-root-kit-win-7/</guid>
	</item>
	<item>
		<title>Är detta virus ?</title>
		<link>http://eforum.idg.se/topic/333713-ar-detta-virus/</link>
		<description><![CDATA[Hej Forumister<br />
<br />
Jag undrar om detta är virus som Malware visade<br />
och hur får man bort det ????<br />
<br />
Jag klickade på knappen "Ta bort valda" längst ner<br />
och programmet ville att jag skulle starta om datorn för<br />
att det skulle gå bort, men<br />
när jag körde Malware igen fick jag samma resultat<br />
<br />
Hjälp mig är ni snälla<br />
<br />
Kristian<br />
<br />
P.S.<br />
Jag har tagit bort bilderna som jag la upp tidigare dom fyller ju ingen funktion längre.]]></description>
		<pubDate>Tue, 27 Dec 2011 13:38:11 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333713-ar-detta-virus/</guid>
	</item>
	<item>
		<title>Byta virus program</title>
		<link>http://eforum.idg.se/topic/333686-byta-virus-program/</link>
		<description><![CDATA[Hej!<br />
<br />
Jag har använt Norton Internet Security i flera år och börjar fundera på att byta virusprogram. Känner mest att Norton ibland tar mycket plats och prestanda och att det kanske finns bättre alternativ. Jag kollade på följande länk <br />
<a href='http://www.matousec.com/projects/proactive-security-challenge/results.php' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.matousec.com/projects/proactive-security-challenge/results.php</a><br />
och enligt den var Comodo Internet Security den bästa. Vad jag har förståt så finns det brandväggar och Antivirus program. Vad är skillnaden? Norton innehöll båda. Innehåller Comodo båda? Finns det något annat alternativ som passar bättre?]]></description>
		<pubDate>Sun, 25 Dec 2011 14:43:15 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333686-byta-virus-program/</guid>
	</item>
	<item>
		<title>Litet snabbt gratis virusprogram, vilket ska jag ha?</title>
		<link>http://eforum.idg.se/topic/333683-litet-snabbt-gratis-virusprogram-vilket-ska-jag-ha/</link>
		<description><![CDATA[Jag har börjat få strul med mitt AVG Virusprogram så nu tänker jag prova nåt annat. Då jag inte ORKAR läsa igenom alla trådar i testerna som finns här på IDG och där dom flesta dessutom är på engelska så frågar jag här och nu. Vilket virusprogramm är i dag det minst resurskrävande, gratis och gärna snabbt förstås <img src='http://eforum.idg.se/public/style_emoticons/default/biggrin.gif' class='bbc_emoticon' alt=':D' /> Ser och hör av många bekanta att Nod 32 ska vara det jag söker  <img src='http://eforum.idg.se/public/style_emoticons/default/unsure.gif' class='bbc_emoticon' alt=':unsure:' />  Vad säger ni som säkert kan detta område bäst?]]></description>
		<pubDate>Sun, 25 Dec 2011 13:39:10 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333683-litet-snabbt-gratis-virusprogram-vilket-ska-jag-ha/</guid>
	</item>
	<item>
		<title>Mysko filer hjälp tack!</title>
		<link>http://eforum.idg.se/topic/333678-mysko-filer-hjalp-tack/</link>
		<description><![CDATA[Jag satt och kollade igenom mina filer nyss och märkte att jag hade 3 filer med filer i sig dessa 1 av dessa hette 2b7fe9a446e8d3ea1b8c39ad och dom andra hade liknande namn och hade filer i sig som hade namn som 1025 eller 1046 och det står att jag inte har behörighet att ta bort filerna, är dessa skadliga? och om dom är skadliga hur får jag bort dom? mitt anti virus program säger att datorn mår jätte fint men jag blev lite osäker på om det är så.<br />
Hoppas bara på att det itne är spyware som snor mina konton men det borde jag redan märkt i så fall det står att dom skapades 7e juli 2011 men senast ändrad 2011-11-10 02:38<br />
Skulle vara jätte bra med ett svar.<br />
<br />
Tack på förhand och god jul!<br />
M.V.H en rädd gamer]]></description>
		<pubDate>Sat, 24 Dec 2011 12:54:14 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333678-mysko-filer-hjalp-tack/</guid>
	</item>
	<item>
		<title>HOT VID KÖRNING AV MALWAREBYTES</title>
		<link>http://eforum.idg.se/topic/333645-hot-vid-korning-av-malwarebytes/</link>
		<description><![CDATA[]JAG ÄR FUNDERSAM VAD JAG SKA GÖRA MED HIJACKTHISHKOMMEMTAREN SE BILAGA  H ANSLUTNINGEN ÄR EN EXTERM HÅRDDISK  VID EN KÖRNING AV MALWAREBYTES KOM FÖLJANDE UPP mban-log<br />
<div class="bbc_log">
				<input type="button" class="bbc_log_show" value="+" />
				<div class="bbc_log_wrapper">
					<div class="bbc_log_short_content" id="bbc_log_short_content">Malwarebytes' Anti-Malware 1.51.2.1300</div>
					<div class="bbc_log_content" id="bbc_log_content" style="display:none;">Malwarebytes' Anti-Malware 1.51.2.1300<br />
www.malwarebytes.org<br />
<br />
Databasversion: 911122102<br />
<br />
Windows 6.1.7601 Service Pack 1<br />
Internet Explorer 9.0.8112.16421<br />
<br />
2011-12-21 12:30:53<br />
mbam-log-2011-12-21 (12-30-53).txt<br />
<br />
Skanningstyp: Fullständig skanning (C:&#092;|F:&#092;|G:&#092;|H:&#092;|)<br />
Antal skannade objekt: 373116<br />
Förfluten tid: 1 timme(ar), 22 minut(er), 53 sekund(er)<br />
<br />
Infekterade minnesprocesser: 0<br />
Infekterade minnesmoduler: 0<br />
Infekterade registernycklar: 0<br />
Infekterade registervärden: 0<br />
Infekterade registerdataposter: 0<br />
Infekterade mappar: 0<br />
Infekterade filer: 2<br />
<br />
Infekterade minnesprocesser:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade minnesmoduler:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade registernycklar:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade registervärden:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade registerdataposter:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade mappar:<br />
(Inga skadliga poster hittades)<br />
<br />
Infekterade filer:<br />
c:&#092;Users&#092;ANDERS&#092;downloads&#092;cnet_opera_1152_1100_int_distribution_00_exe.exe&isdlm=1 (Adware.Downloader) -&gt; Quarantined and deleted successfully.<br />
h:&#092;anders_säkerhetskopiera&#092;2011-12-13_20-55-29&#092;Memeo&#092;2011-12-13_20-55-29&#092;C_&#092;Users&#092;ANDERS&#092;downloads&#092;cnet_opera_1152_1100_int_distribution_00_exe.exe&isdlm=1 (Adware.Downloader) -&gt; Quarantined and deleted successfully.<br /></div>
				</div>
			</div> DDS LOG .<br />
DDS (Ver_2011-08-26.01) - NTFSAMD64 <br />
Internet Explorer: 9.0.8112.16421<br />
Run by ANDERS at 13:55:59 on 2011-12-21<br />
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.46.1053.18.3835.2016 [GMT 1:00]<br />
.<br />
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}<br />
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}<br />
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br />
FW: ZoneAlarm Free Firewall *Enabled* {E6380B7E-D4B2-19F1-083E-56486607704B}<br />
.<br />
============== Running Processes ===============<br />
.<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
C:&#092;Windows&#092;system32&#092;taskhost.exe<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;ForceField.exe<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Program Files (x86)&#092;SlimDrivers&#092;SlimDrivers.exe<br />
svchost.exe<br />
svchost.exe<br />
svchost.exe<br />
C:&#092;Program Files&#092;Realtek&#092;Audio&#092;HDA&#092;RAVCpl64.exe<br />
C:&#092;Program Files (x86)&#092;EgisTec MyWinLocker&#092;x86&#092;mwlDaemon.exe<br />
C:&#092;Program Files&#092;Elantech&#092;ETDCtrl.exe<br />
C:&#092;Program Files&#092;Acer&#092;Acer ePower Management&#092;ePowerTray.exe<br />
C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCompanion.exe<br />
C:&#092;Program Files&#092;SUPERAntiSpyware&#092;SUPERANTISPYWARE.EXE<br />
C:&#092;Program Files (x86)&#092;IObit&#092;Advanced SystemCare 5&#092;ASCTray.exe<br />
C:&#092;Program Files (x86)&#092;Secunia&#092;PSI&#092;psi_tray.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;CBS Interactive&#092;CNET TechTracker&#092;TechTracker.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Dropbox&#092;bin&#092;Dropbox.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;unsecapp.exe<br />
C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;PmmUpdate.exe<br />
C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCompanionInfo.exe<br />
C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;BackupManagerTray.exe<br />
C:&#092;Program Files&#092;Elantech&#092;ETDCtrlHelper.exe<br />
C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;EgisUpdate.exe<br />
C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;AvastUI.exe<br />
C:&#092;Program Files (x86)&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtcmd.exe<br />
C:&#092;Program Files (x86)&#092;Launch Manager&#092;MMDx64Fx.exe<br />
C:&#092;Program Files (x86)&#092;Launch Manager&#092;LMworker.exe<br />
C:&#092;Program Files (x86)&#092;Real&#092;RealPlayer&#092;Update&#092;realsched.exe<br />
C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;mw.exe<br />
C:&#092;Program Files (x86)&#092;CheckPoint&#092;ZoneAlarm&#092;zatray.exe<br />
C:&#092;Program Files (x86)&#092;Seagate&#092;Seagate Dashboard&#092;MemeoDashboard.exe<br />
C:&#092;Program Files (x86)&#092;Memeo&#092;AutoBackup&#092;InstantBackup.exe<br />
C:&#092;Program Files (x86)&#092;Seagate&#092;Seagate Dashboard&#092;HipServAgent&#092;HipServAgent.exe<br />
C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;MOM.exe<br />
C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CCC.exe<br />
svchost.exe<br />
C:&#092;Program Files (x86)&#092;Telia mobile broadband&#092;Telia mobile broadband.exe<br />
C:&#092;Program Files (x86)&#092;Windows Media Player&#092;wmplayer.exe<br />
C:&#092;Program Files (x86)&#092;Secunia&#092;PSI&#092;psi.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;rundll32.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cmd.exe<br />
C:&#092;Windows&#092;system32&#092;conhost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cscript.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://isearch.avg.com/?cid={9986541E-F5B5-421B-ADB6-2DD91DB3F901}&mid=888582f3181347d1a90259e75b47d252-33a198595110f914f75244d5dea7745fbc956da8&lang=en&ds=ts024&pr=&d=2011-12-14 05:59:22&v=8.0.0.34&sap=hp<br />
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5552&r=273612110225l0444z1i5v47j2110n<br />
uSearch Page = hxxp://www.google.com<br />
uSearch Bar = hxxp://www.google.com/ie<br />
uDefault_Search_URL = hxxp://www.google.com/ie<br />
mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5552&r=273612110225l0444z1i5v47j2110n<br />
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5552&r=273612110225l0444z1i5v47j2110n<br />
uSearchAssistant = hxxp://www.google.com/ie<br />
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s<br />
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:&#092;PROGRA~2&#092;mcafee&#092;SITEAD~1&#092;mcieplg.dll<br />
mWinlogon: Userinit=userinit.exe,<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:&#092;ProgramData&#092;Real&#092;RealPlayer&#092;BrowserRecordPlugin&#092;IE&#092;rpbrowserrecordplugin.dll<br />
BHO: Partner BHO Class: {83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} - C:&#092;ProgramData&#092;Partner&#092;Partner.dll<br />
BHO: ZoneAlarm Security Engine Registrar: {8a4a36c2-0535-4d2c-bd3d-496cb7eed6e3} - C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;WOW64&#092;TrustChecker&#092;bin&#092;TrustCheckerIEPlugin.dll<br />
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;aswWebRepIE.dll<br />
BHO: Windows Live inloggningshjälpen: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:&#092;Program Files (x86)&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll<br />
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:&#092;PROGRA~2&#092;mcafee&#092;SITEAD~1&#092;mcieplg.dll<br />
BHO: WOT Helper: {c920e44a-7f78-4e64-bdd7-a57026e7feb7} - C:&#092;Program Files (x86)&#092;WOT&#092;WOT.dll<br />
BHO: TBHelper Class: {e46a2169-e328-471a-9788-f2b52bb9c681} - C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;miebho.dll<br />
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:&#092;PROGRA~2&#092;mcafee&#092;SITEAD~1&#092;mcieplg.dll<br />
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;aswWebRepIE.dll<br />
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:&#092;Program Files (x86)&#092;Google&#092;Google Toolbar&#092;GoogleToolbar_32.dll<br />
TB: eSms Verktygsfält: {6b49f76b-190a-4fc6-83ea-baad234baff8} - C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;mie.dll<br />
TB: WOT: {71576546-354d-41c9-aae8-31f2ec22bf0d} - C:&#092;Program Files (x86)&#092;WOT&#092;WOT.dll<br />
TB: ZoneAlarm Security Engine: {ee2ac4e5-b0b0-4ec6-88a9-bca1a32ab107} - C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;WOW64&#092;TrustChecker&#092;bin&#092;TrustCheckerIEPlugin.dll<br />
uRun: [swg] "C:&#092;Program Files (x86)&#092;Google&#092;GoogleToolbarNotifier&#092;GoogleToolbarNotifier.exe"<br />
uRun: [Google Update] "C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Update&#092;GoogleUpdate.exe" /c<br />
uRun: [Sony Ericsson PC Companion] "C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCompanion.exe" /Background<br />
uRun: [SUPERAntiSpyware] C:&#092;Program Files&#092;SUPERAntiSpyware&#092;SUPERAntiSpyware.exe<br />
uRun: [Advanced SystemCare 5] "C:&#092;Program Files (x86)&#092;IObit&#092;Advanced SystemCare 5&#092;ASCTray.exe" /AutoStart<br />
mRun: [SuiteTray] "C:&#092;Program Files (x86)&#092;EgisTec MyWinLockerSuite&#092;x86&#092;SuiteTray.exe"<br />
mRun: [EgisUpdate] "C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;EgisUpdate.exe" -d<br />
mRun: [EgisTecPMMUpdate] "C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;PmmUpdate.exe"<br />
mRun: [Adobe Reader Speed Launcher] "C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 9.0&#092;Reader&#092;Reader_sl.exe"<br />
mRun: [BackupManagerTray] "C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;BackupManagerTray.exe" -h -k<br />
mRun: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
mRun: [LManager] C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
mRun: [Adobe ARM] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
mRun: [avast] "C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;avastUI.exe" /nogui<br />
mRun: [Telia] "C:&#092;Program Files (x86)&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtcmd.exe" /P TeliaDA<br />
mRun: [Memeo Instant Backup] C:&#092;Program Files (x86)&#092;Memeo&#092;AutoBackup&#092;MemeoLauncher2.exe --silent --no_ui<br />
mRun: [Memeo AutoSync] C:&#092;Program Files (x86)&#092;Memeo&#092;AutoSync&#092;MemeoLauncher2.exe --silent<br />
mRun: [Seagate Dashboard] C:&#092;Program Files (x86)&#092;Seagate&#092;Seagate Dashboard&#092;MemeoLauncher.exe --silent --no_ui<br />
mRun: [TkBellExe] "C:&#092;Program Files (x86)&#092;Real&#092;RealPlayer&#092;Update&#092;realsched.exe" -osboot<br />
mRun: [Sms och mms i datorn Desktop] "C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;mw.exe" /AutoStart<br />
mRun: [ZoneAlarm] "C:&#092;Program Files (x86)&#092;CheckPoint&#092;ZoneAlarm&#092;zatray.exe"<br />
mRun: [APSDaemon] "C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Apple Application Support&#092;APSDaemon.exe"<br />
mRun: [QuickTime Task] "C:&#092;Program Files (x86)&#092;QuickTime&#092;QTTask.exe" -atboottime<br />
StartupFolder: C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;MICROS~1&#092;Windows&#092;STARTM~1&#092;Programs&#092;Startup&#092;CNETTE~1.LNK - C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;CBS Interactive&#092;CNET TechTracker&#092;TechTracker.exe<br />
StartupFolder: C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;MICROS~1&#092;Windows&#092;STARTM~1&#092;Programs&#092;Startup&#092;Dropbox.lnk - C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Dropbox&#092;bin&#092;Dropbox.exe<br />
StartupFolder: C:&#092;PROGRA~3&#092;MICROS~1&#092;Windows&#092;STARTM~1&#092;Programs&#092;Startup&#092;SECUNI~1.LNK - C:&#092;Program Files (x86)&#092;Secunia&#092;PSI&#092;psi_tray.exe<br />
mPolicies-explorer: NoActiveDesktop = 1 (0x1)<br />
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)<br />
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)<br />
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)<br />
IE: Add to Google Photos Screensa&ver - C:&#092;Windows&#092;system32&#092;GPhotos.scr/200<br />
IE: Skicka som mms... - C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;sendmms.htm<br />
IE: Skicka som sms... - C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;sendsms.htm<br />
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
TCP: Interfaces&#092;{D2953E45-8039-4C98-A678-36FA81160210} : NameServer = 195.67.199.18 195.67.199.19<br />
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:&#092;PROGRA~2&#092;McAfee&#092;SITEAD~1&#092;McIEPlg.dll<br />
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:&#092;PROGRA~2&#092;McAfee&#092;SITEAD~1&#092;McIEPlg.dll<br />
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:&#092;Program Files (x86)&#092;WOT&#092;WOT.dll<br />
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}<br />
{3049C3E9-B461-4BC5-8870-4C09146192CA}<br />
{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}<br />
{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}<br />
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}<br />
{9030D464-4C02-4ABF-8ECC-5164760863C6}<br />
{AA58ED58-01DD-4d91-8333-CF10577473F7}<br />
{B164E929-A1B6-4A06-B104-2CD0E90A88FF}<br />
{C920E44A-7F78-4E64-BDD7-A57026E7FEB7}<br />
{E46A2169-E328-471A-9788-F2B52BB9C681}<br />
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064}<br />
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}<br />
{2318C2B1-4965-11d4-9B18-009027A5CD4F}<br />
{6B49F76B-190A-4FC6-83EA-BAAD234BAFF8}<br />
{71576546-354D-41c9-AAE8-31F2EC22BF0D}<br />
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}<br />
mRun-x64: [SuiteTray] "C:&#092;Program Files (x86)&#092;EgisTec MyWinLockerSuite&#092;x86&#092;SuiteTray.exe"<br />
mRun-x64: [EgisUpdate] "C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;EgisUpdate.exe" -d<br />
mRun-x64: [EgisTecPMMUpdate] "C:&#092;Program Files (x86)&#092;EgisTec IPS&#092;PmmUpdate.exe"<br />
mRun-x64: [Adobe Reader Speed Launcher] "C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 9.0&#092;Reader&#092;Reader_sl.exe"<br />
mRun-x64: [BackupManagerTray] "C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;BackupManagerTray.exe" -h -k<br />
mRun-x64: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
mRun-x64: [LManager] C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
mRun-x64: [Adobe ARM] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
mRun-x64: [avast] "C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;avastUI.exe" /nogui<br />
mRun-x64: [Telia] "C:&#092;Program Files (x86)&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtcmd.exe" /P TeliaDA<br />
mRun-x64: [Memeo Instant Backup] C:&#092;Program Files (x86)&#092;Memeo&#092;AutoBackup&#092;MemeoLauncher2.exe --silent --no_ui<br />
mRun-x64: [Memeo AutoSync] C:&#092;Program Files (x86)&#092;Memeo&#092;AutoSync&#092;MemeoLauncher2.exe --silent<br />
mRun-x64: [Seagate Dashboard] C:&#092;Program Files (x86)&#092;Seagate&#092;Seagate Dashboard&#092;MemeoLauncher.exe --silent --no_ui<br />
mRun-x64: [TkBellExe] "C:&#092;Program Files (x86)&#092;Real&#092;RealPlayer&#092;Update&#092;realsched.exe" -osboot<br />
mRun-x64: [Sms och mms i datorn Desktop] "C:&#092;Program Files (x86)&#092;Telia&#092;Sms och mms i datorn Desktop&#092;mw.exe" /AutoStart<br />
mRun-x64: [ZoneAlarm] "C:&#092;Program Files (x86)&#092;CheckPoint&#092;ZoneAlarm&#092;zatray.exe"<br />
mRun-x64: [APSDaemon] "C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Apple Application Support&#092;APSDaemon.exe"<br />
mRun-x64: [QuickTime Task] "C:&#092;Program Files (x86)&#092;QuickTime&#092;QTTask.exe" -atboottime<br />
.<br />
================= FIREFOX ===================<br />
.<br />
FF - ProfilePath - C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Mozilla&#092;Firefox&#092;Profiles&#092;uxoulm9f.default&#092;<br />
FF - prefs.js: browser.startup.homepage - hxxp://isearch.avg.com/?cid={9986541E-F5B5-421B-ADB6-2DD91DB3F901}&mid=888582f3181347d1a90259e75b47d252-33a198595110f914f75244d5dea7745fbc956da8&lang=en&ds=ts024&pr=&d=2011-12-14%2005:59:22&v=8.0.0.34&sap=hp<br />
FF - prefs.js: network.proxy.type - 0<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 9.0&#092;Reader&#092;AIR&#092;nppdf32.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Google&#092;Google Earth&#092;plugin&#092;npgeplugin.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Google&#092;Picasa3&#092;npPicasa3.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;1.3.21.79&#092;npGoogleUpdate3.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;McAfee&#092;SiteAdvisor&#092;NPMcFFPlg32.dll<br />
FF - plugin: c:&#092;Program Files (x86)&#092;Microsoft Silverlight&#092;4.0.60831.0&#092;npctrlui.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Nitro PDF&#092;Reader 2&#092;npdf.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Nitro PDF&#092;Reader 2&#092;npnitromozilla.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Sony&#092;Media Go&#092;npmediago.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Sony&#092;PLAYSTATION Network Downloader&#092;nppsndl.dll<br />
FF - plugin: C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;NPWLPG.dll<br />
FF - plugin: C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;WOW64&#092;TrustChecker&#092;bin&#092;npFFApi.dll<br />
FF - plugin: C:&#092;ProgramData&#092;Real&#092;RealPlayer&#092;BrowserRecordPlugin&#092;MozillaPlugins&#092;nprpchromebrowserrecordext.dll<br />
FF - plugin: C:&#092;ProgramData&#092;Real&#092;RealPlayer&#092;BrowserRecordPlugin&#092;MozillaPlugins&#092;nprphtml5videoshim.dll<br />
FF - plugin: C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google&#092;Update&#092;1.3.21.79&#092;npGoogleUpdate3.dll<br />
FF - plugin: C:&#092;Windows&#092;SysWOW64&#092;Macromed&#092;Flash&#092;NPSWF32.dll<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R1 aswSnx;aswSnx;C:&#092;Windows&#092;system32&#092;drivers&#092;aswSnx.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;aswSnx.sys [?]<br />
R1 aswSP;aswSP;C:&#092;Windows&#092;system32&#092;drivers&#092;aswSP.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;aswSP.sys [?]<br />
R1 mwlPSDFilter;mwlPSDFilter;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDFilter.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDFilter.sys [?]<br />
R1 mwlPSDNServ;mwlPSDNServ;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDNServ.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDNServ.sys [?]<br />
R1 mwlPSDVDisk;mwlPSDVDisk;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDVDisk.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;mwlPSDVDisk.sys [?]<br />
R1 SASDIFSV;SASDIFSV;C:&#092;Program Files&#092;SUPERAntiSpyware&#092;sasdifsv64.sys [2011-7-22 14928]<br />
R1 SASKUTIL;SASKUTIL;C:&#092;Program Files&#092;SUPERAntiSpyware&#092;saskutil64.sys [2011-7-12 12368]<br />
R1 vwififlt;Virtual WiFi Filter Driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;vwififlt.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;vwififlt.sys [?]<br />
R2 !SASCORE;SAS Core Service;C:&#092;Program Files&#092;SUPERAntiSpyware&#092;SASCore64.exe [2011-8-12 140672]<br />
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5;C:&#092;Program Files (x86)&#092;IObit&#092;Advanced SystemCare 5&#092;ASCService.exe [2011-12-15 494424]<br />
R2 AMD External Events Utility;AMD External Events Utility;C:&#092;Windows&#092;system32&#092;atiesrxx.exe --&gt; C:&#092;Windows&#092;system32&#092;atiesrxx.exe [?]<br />
R2 aswFsBlk;aswFsBlk;C:&#092;Windows&#092;system32&#092;drivers&#092;aswFsBlk.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;aswFsBlk.sys [?]<br />
R2 aswMonFlt;aswMonFlt;&#092;??&#092;C:&#092;Windows&#092;system32&#092;drivers&#092;aswMonFlt.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;aswMonFlt.sys [?]<br />
R2 avast! Antivirus;avast! Antivirus;C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;AvastSvc.exe [2011-12-12 44768]<br />
R2 DsiWMIService;Dritek WMI Service;C:&#092;Program Files (x86)&#092;Launch Manager&#092;dsiwmis.exe [2010-7-14 321104]<br />
R2 ePowerSvc;Acer ePower Service;C:&#092;Program Files&#092;Acer&#092;Acer ePower Management&#092;ePowerSvc.exe [2011-12-10 868896]<br />
R2 GREGService;GREGService;C:&#092;Program Files (x86)&#092;Acer&#092;Registration&#092;GREGsvc.exe [2010-1-8 23584]<br />
R2 ISWKL;ZoneAlarm Toolbar ISWKL;C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;ISWKL.sys [2011-11-3 33672]<br />
R2 IswSvc;ZoneAlarm Toolbar IswSvc;C:&#092;Program Files&#092;CheckPoint&#092;ZAForceField&#092;ISWSVC.exe [2011-11-3 827520]<br />
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:&#092;PROGRA~2&#092;mcafee&#092;SITEAD~1&#092;McSACore.exe [2011-12-15 102608]<br />
R2 MemeoBackgroundService;MemeoBackgroundService;C:&#092;Program Files (x86)&#092;Memeo&#092;AutoBackup&#092;MemeoBackgroundService.exe [2011-5-4 25824]<br />
R2 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;C:&#092;Program Files&#092;Common Files&#092;Nitro PDF&#092;Reader&#092;2.0&#092;NitroPDFReaderDriverService2x64.exe [2011-6-21 341296]<br />
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;IScheduleSvc.exe [2010-6-28 255744]<br />
R2 SeagateDashboardService;Seagate Dashboard Service;C:&#092;Program Files (x86)&#092;Seagate&#092;Seagate Dashboard&#092;SeagateDashboardService.exe [2011-6-1 14088]<br />
R2 Secunia PSI Agent;Secunia PSI Agent;C:&#092;Program Files (x86)&#092;Secunia&#092;PSI&#092;psia.exe [2011-10-14 994360]<br />
R2 Secunia Update Agent;Secunia Update Agent;C:&#092;Program Files (x86)&#092;Secunia&#092;PSI&#092;sua.exe [2011-10-14 399416]<br />
R2 sprtsvc_teliada;SupportSoft Sprocket Service (teliada);C:&#092;Program Files (x86)&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtsvc.exe [2011-12-12 206120]<br />
R2 tgsrvc_teliada;SupportSoft Repair Service (teliada);C:&#092;Program Files (x86)&#092;Telia&#092;Supportassistenten&#092;bin&#092;tgsrvc.exe [2011-12-12 185640]<br />
R2 Updater Service;Updater Service;C:&#092;Program Files&#092;Acer&#092;Acer Updater&#092;UpdaterService.exe [2010-7-14 243232]<br />
R3 amdkmdag;amdkmdag;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;atipmdag.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;atipmdag.sys [?]<br />
R3 amdkmdap;amdkmdap;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;atikmpag.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;atikmpag.sys [?]<br />
R3 ETD;ELAN PS/2 Port Input Device;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ETD.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ETD.sys [?]<br />
R3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;k57nd60a.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;k57nd60a.sys [?]<br />
R3 MBAMProtector;MBAMProtector;&#092;??&#092;C:&#092;Windows&#092;system32&#092;drivers&#092;mbam.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;mbam.sys [?]<br />
R3 PSI;PSI;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;psi_mf.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;psi_mf.sys [?]<br />
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:&#092;Windows&#092;system32&#092;Drivers&#092;RtsUStor.sys --&gt; C:&#092;Windows&#092;system32&#092;Drivers&#092;RtsUStor.sys [?]<br />
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;vwifimp.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;vwifimp.sys [?]<br />
R4 MBAMService;MBAMService;C:&#092;Program Files (x86)&#092;Malwarebytes' Anti-Malware&#092;mbamservice.exe [2011-12-21 366152]<br />
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:&#092;Windows&#092;Microsoft.NET&#092;Framework&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 130384]<br />
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:&#092;Windows&#092;Microsoft.NET&#092;Framework64&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 138576]<br />
S2 gupdate;Tjänsten Google Update (gupdate);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-12-11 135664]<br />
S3 cpuz134;cpuz134;C:&#092;Program Files (x86)&#092;CPUID&#092;PC Wizard 2010&#092;pcwiz_x64.sys [2011-12-14 21480]<br />
S3 gupdatem;Tjänsten Google Update (gupdatem);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-12-11 135664]<br />
S3 hwusbdev;Huawei DataCard USB PNP Device;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ewusbdev.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ewusbdev.sys [?]<br />
S3 MWLService;MyWinLocker Service;C:&#092;Program Files (x86)&#092;EgisTec MyWinLocker&#092;x86&#092;MWLService.exe [2010-5-27 305520]<br />
S3 Partner Service;Partner Service;C:&#092;ProgramData&#092;Partner&#092;Partner.exe [2010-7-14 332272]<br />
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCService.exe [2011-12-14 155344]<br />
S3 SWDUMon;SWDUMon;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;SWDUMon.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;SWDUMon.sys [?]<br />
S3 TsUsbFlt;TsUsbFlt;C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys [?]<br />
S3 WatAdminSvc;Aktiveringsteknologier för Windows-tjänst;C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe --&gt; C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe [?]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2011-12-21 11:37:10	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Windows Defender&#092;Definition Updates&#092;{2CF584B3-2B6A-46DA-9660-9D9646F4521A}&#092;offreg.dll<br />
2011-12-21 06:08:25	388096	----a-r-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Microsoft&#092;Installer&#092;{45A66726-69BC-466B-A7A4-12FCBA4883D7}&#092;HiJackThis.exe<br />
2011-12-21 06:08:24	--------	d-----w-	C:&#092;Program Files (x86)&#092;Trend Micro<br />
2011-12-21 05:07:00	709968	----a-w-	C:&#092;Windows&#092;isRS-000.tmp<br />
2011-12-21 05:04:05	25416	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;mbam.sys<br />
2011-12-21 05:04:04	--------	d-----w-	C:&#092;Program Files (x86)&#092;Malwarebytes' Anti-Malware<br />
2011-12-20 06:07:01	8822856	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Windows Defender&#092;Definition Updates&#092;{2CF584B3-2B6A-46DA-9660-9D9646F4521A}&#092;mpengine.dll<br />
2011-12-20 05:30:24	--------	d-----w-	C:&#092;Program Files (x86)&#092;VideoLAN<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin7.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin6.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin5.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin4.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin3.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin2.dll<br />
2011-12-19 20:32:49	159744	----a-w-	C:&#092;Program Files (x86)&#092;Internet Explorer&#092;Plugins&#092;npqtplugin.dll<br />
2011-12-18 06:35:45	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Solid State Networks<br />
2011-12-16 12:06:23	17200	----a-w-	C:&#092;Windows&#092;System32&#092;nitrolocalui2.dll<br />
2011-12-16 12:06:22	28976	----a-w-	C:&#092;Windows&#092;System32&#092;nitrolocalmon2.dll<br />
2011-12-16 12:06:04	--------	d-----w-	C:&#092;Program Files&#092;Common Files&#092;Nitro PDF<br />
2011-12-16 12:06:04	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Nitro PDF<br />
2011-12-16 11:17:31	95008	----a-w-	C:&#092;Windows&#092;System32&#092;Primomonnt.dll<br />
2011-12-16 11:17:29	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;OpenCandy<br />
2011-12-16 11:17:26	--------	d-----w-	C:&#092;Program Files (x86)&#092;Nitro PDF<br />
2011-12-16 06:02:15	--------	d-----w-	C:&#092;Program Files (x86)&#092;BurnAware Free<br />
2011-12-16 03:06:32	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Secunia PSI<br />
2011-12-16 03:06:15	--------	d-----w-	C:&#092;Program Files (x86)&#092;Secunia<br />
2011-12-15 18:33:08	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;Podcasts<br />
2011-12-15 17:46:57	22872	----a-w-	C:&#092;Windows&#092;System32&#092;RegistryDefragBootTime.exe<br />
2011-12-15 17:25:28	--------	d-----w-	C:&#092;Program Files (x86)&#092;IObit<br />
2011-12-15 16:16:07	--------	d-----w-	C:&#092;Program Files&#092;CCleaner<br />
2011-12-15 14:38:22	--------	d-----w-	C:&#092;Program Files&#092;CheckPoint<br />
2011-12-15 05:57:31	--------	d-----w-	C:&#092;Program Files (x86)&#092;CheckPoint<br />
2011-12-15 05:33:16	--------	d-----w-	C:&#092;Program Files (x86)&#092;WOT<br />
2011-12-15 05:29:28	--------	d-----w-	C:&#092;Program Files (x86)&#092;uTorrent<br />
2011-12-15 05:27:46	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;uTorrent<br />
2011-12-15 05:15:57	--------	d-----w-	C:&#092;Program Files&#092;SUPERAntiSpyware<br />
2011-12-15 03:00:46	--------	d-----w-	C:&#092;Windows&#092;System32&#092;SPReview<br />
2011-12-15 02:59:57	--------	d-----w-	C:&#092;Windows&#092;System32&#092;EventProviders<br />
2011-12-15 02:37:59	3650560	----a-w-	C:&#092;Windows&#092;System32&#092;MSVidCtl.dll<br />
2011-12-15 02:36:59	758272	----a-w-	C:&#092;Windows&#092;System32&#092;PortableDeviceApi.dll<br />
2011-12-15 02:35:59	776192	----a-w-	C:&#092;Windows&#092;SysWow64&#092;calc.exe<br />
2011-12-15 02:34:59	76800	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;hidclass.sys<br />
2011-12-15 02:33:59	656384	----a-w-	C:&#092;Windows&#092;SysWow64&#092;nshwfp.dll<br />
2011-12-15 02:32:59	94208	----a-w-	C:&#092;Windows&#092;SysWow64&#092;eappgnui.dll<br />
2011-12-15 02:31:57	189952	----a-w-	C:&#092;Windows&#092;SysWow64&#092;sqmapi.dll<br />
2011-12-15 02:31:26	189952	----a-w-	C:&#092;Program Files (x86)&#092;Windows Portable Devices&#092;sqmapi.dll<br />
2011-12-15 02:31:25	606208	----a-w-	C:&#092;Windows&#092;SysWow64&#092;wbem&#092;fastprox.dll<br />
2011-12-15 02:31:25	363008	----a-w-	C:&#092;Windows&#092;SysWow64&#092;wbemcomn.dll<br />
2011-12-15 02:26:33	244736	----a-w-	C:&#092;Program Files&#092;Windows Portable Devices&#092;sqmapi.dll<br />
2011-12-15 02:26:32	529408	----a-w-	C:&#092;Windows&#092;System32&#092;wbemcomn.dll<br />
2011-12-15 02:26:07	244736	----a-w-	C:&#092;Windows&#092;System32&#092;sqmapi.dll<br />
2011-12-14 21:09:03	723456	----a-w-	C:&#092;Windows&#092;System32&#092;EncDec.dll<br />
2011-12-14 21:09:02	534528	----a-w-	C:&#092;Windows&#092;SysWow64&#092;EncDec.dll<br />
2011-12-14 20:53:08	3145216	----a-w-	C:&#092;Windows&#092;System32&#092;win32k.sys<br />
2011-12-14 20:50:12	43520	----a-w-	C:&#092;Windows&#092;System32&#092;csrsrv.dll<br />
2011-12-14 20:41:09	2048	----a-w-	C:&#092;Windows&#092;SysWow64&#092;tzres.dll<br />
2011-12-14 20:41:09	2048	----a-w-	C:&#092;Windows&#092;System32&#092;tzres.dll<br />
2011-12-14 20:15:42	14744	----a-w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Microsoft&#092;IdentityCRL&#092;PRODUCTION&#092;ppcrlconfig.dll<br />
2011-12-14 19:49:26	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Sony Shared<br />
2011-12-14 19:24:19	--------	d-----w-	C:&#092;Program Files (x86)&#092;Sony<br />
2011-12-14 19:00:58	404640	----a-w-	C:&#092;Windows&#092;SysWow64&#092;FlashPlayerCPLApp.cpl<br />
2011-12-14 18:53:42	--------	d-----w-	C:&#092;Program Files (x86)&#092;Sony Media Go Install<br />
2011-12-14 06:27:39	--------	d-----w-	C:&#092;Program Files (x86)&#092;Sony Ericsson<br />
2011-12-14 06:20:06	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;TweakNow SecureDelete<br />
2011-12-14 06:20:06	--------	d-----w-	C:&#092;Program Files (x86)&#092;TweakNow SecureDelete<br />
2011-12-14 06:03:43	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;xing shared<br />
2011-12-14 05:19:59	15672	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;SWDUMon.sys<br />
2011-12-14 04:59:05	--------	d-----w-	C:&#092;Program Files (x86)&#092;SlimDrivers<br />
2011-12-14 04:05:51	--------	d-----w-	C:&#092;Program Files (x86)&#092;Canon<br />
2011-12-14 04:04:48	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Canon<br />
2011-12-14 03:46:30	114176	----a-w-	C:&#092;Windows&#092;SysWow64&#092;PCWizard.cpl<br />
2011-12-14 03:46:30	--------	d-----w-	C:&#092;Windows&#092;Java<br />
2011-12-14 03:46:25	--------	d-----w-	C:&#092;Program Files (x86)&#092;CPUID<br />
2011-12-14 03:34:32	--------	d-----w-	C:&#092;Program Files (x86)&#092;Avant Browser<br />
2011-12-14 03:31:23	--------	d-----w-	C:&#092;Program Files (x86)&#092;VS Revo Group<br />
2011-12-14 03:11:17	--------	d-----w-	C:&#092;ProgramData&#092;Norton<br />
2011-12-14 03:10:56	--------	d-----w-	C:&#092;ProgramData&#092;NortonInstaller<br />
2011-12-13 19:54:29	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Memeo<br />
2011-12-13 19:54:09	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Seagate<br />
2011-12-13 19:53:26	--------	d-----w-	C:&#092;Program Files (x86)&#092;Memeo<br />
2011-12-13 19:53:03	--------	d-----w-	C:&#092;Program Files (x86)&#092;Seagate<br />
2011-12-13 09:35:44	8822856	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Windows Defender&#092;Definition Updates&#092;Backup&#092;mpengine.dll<br />
2011-12-12 21:18:51	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;SupportSoft<br />
2011-12-12 21:18:46	--------	d-----w-	C:&#092;Program Files (x86)&#092;Telia<br />
2011-12-12 18:42:24	--------	d-----w-	C:&#092;Program Files&#092;SDExplorer<br />
2011-12-12 18:06:33	591192	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;aswSnx.sys<br />
2011-12-12 18:06:29	66904	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;aswMonFlt.sys<br />
2011-12-12 18:04:52	41184	----a-w-	C:&#092;Windows&#092;avastSS.scr<br />
2011-12-12 18:04:43	--------	d-----w-	C:&#092;Program Files&#092;AVAST Software<br />
2011-12-12 15:49:24	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;ElevatedDiagnostics<br />
2011-12-12 14:12:49	2565632	----a-w-	C:&#092;Windows&#092;System32&#092;esent.dll<br />
2011-12-12 14:12:49	1659776	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;ntfs.sys<br />
2011-12-12 14:12:48	96768	----a-w-	C:&#092;Windows&#092;System32&#092;fsutil.exe<br />
2011-12-12 14:12:48	74240	----a-w-	C:&#092;Windows&#092;SysWow64&#092;fsutil.exe<br />
2011-12-12 14:12:48	410496	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;iaStorV.sys<br />
2011-12-12 14:12:48	27008	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;amdxata.sys<br />
2011-12-12 14:12:48	189824	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;storport.sys<br />
2011-12-12 14:12:48	1699328	----a-w-	C:&#092;Windows&#092;SysWow64&#092;esent.dll<br />
2011-12-12 14:12:48	166272	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;nvstor.sys<br />
2011-12-12 14:12:48	148352	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;nvraid.sys<br />
2011-12-12 14:12:48	107904	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;amdsata.sys<br />
2011-12-12 13:15:20	98816	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbccgp.sys<br />
2011-12-12 13:15:20	7936	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbd.sys<br />
2011-12-12 13:15:20	52736	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbehci.sys<br />
2011-12-12 13:15:20	343040	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbhub.sys<br />
2011-12-12 13:15:20	325120	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbport.sys<br />
2011-12-12 13:15:20	30720	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbuhci.sys<br />
2011-12-12 13:15:20	25600	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;usbohci.sys<br />
2011-12-12 12:29:54	29696	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;ewdcsc.sys<br />
2011-12-12 12:29:54	246224	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;ewusbnet.sys<br />
2011-12-12 12:29:54	117504	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;ewusbmdm.sys<br />
2011-12-12 12:29:54	114304	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;ewusbdev.sys<br />
2011-12-11 12:45:01	--------	d-----w-	C:&#092;Windows&#092;SysWow64&#092;Wat<br />
2011-12-11 12:45:01	--------	d-----w-	C:&#092;Windows&#092;System32&#092;Wat<br />
2011-12-11 12:43:49	1544192	----a-w-	C:&#092;Windows&#092;System32&#092;DWrite.dll<br />
2011-12-11 12:43:49	1139200	----a-w-	C:&#092;Windows&#092;System32&#092;FntCache.dll<br />
2011-12-11 12:43:49	1076736	----a-w-	C:&#092;Windows&#092;SysWow64&#092;DWrite.dll<br />
2011-12-11 12:43:48	902656	----a-w-	C:&#092;Windows&#092;System32&#092;d2d1.dll<br />
2011-12-11 12:43:48	739840	----a-w-	C:&#092;Windows&#092;SysWow64&#092;d2d1.dll<br />
2011-12-11 12:00:24	270720	------w-	C:&#092;Windows&#092;System32&#092;MpSigStub.exe<br />
2011-12-11 11:33:25	294912	----a-w-	C:&#092;Windows&#092;System32&#092;browserchoice.exe<br />
2011-12-11 11:01:06	499200	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;afd.sys<br />
2011-12-11 11:00:51	467456	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;srv.sys<br />
2011-12-11 11:00:50	410112	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;srv2.sys<br />
2011-12-11 11:00:50	168448	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;srvnet.sys<br />
2011-12-11 11:00:48	1923952	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;tcpip.sys<br />
2011-12-11 11:00:47	288640	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;FWPKCLNT.SYS<br />
2011-12-11 11:00:28	870912	----a-w-	C:&#092;Windows&#092;SysWow64&#092;XpsPrint.dll<br />
2011-12-11 11:00:28	1465344	----a-w-	C:&#092;Windows&#092;System32&#092;XpsPrint.dll<br />
2011-12-11 10:58:59	1359872	----a-w-	C:&#092;Windows&#092;System32&#092;mfc42u.dll<br />
2011-12-11 10:57:57	27520	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;Diskdump.sys<br />
2011-12-11 10:44:04	5561216	----a-w-	C:&#092;Windows&#092;System32&#092;ntoskrnl.exe<br />
2011-12-11 10:44:01	3912576	----a-w-	C:&#092;Windows&#092;SysWow64&#092;ntoskrnl.exe<br />
2011-12-11 10:43:59	3967872	----a-w-	C:&#092;Windows&#092;SysWow64&#092;ntkrnlpa.exe<br />
2011-12-11 10:43:16	974336	----a-w-	C:&#092;Windows&#092;System32&#092;WFS.exe<br />
2011-12-11 10:43:16	267776	----a-w-	C:&#092;Windows&#092;System32&#092;FXSCOVER.exe<br />
2011-12-11 10:43:12	90624	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;bowser.sys<br />
2011-12-11 10:43:10	976896	----a-w-	C:&#092;Windows&#092;System32&#092;inetcomm.dll<br />
2011-12-11 10:43:10	741376	----a-w-	C:&#092;Windows&#092;SysWow64&#092;inetcomm.dll<br />
2011-12-11 10:42:34	64512	----a-w-	C:&#092;Windows&#092;SysWow64&#092;devobj.dll<br />
2011-12-11 10:42:34	44544	----a-w-	C:&#092;Windows&#092;SysWow64&#092;devrtl.dll<br />
2011-12-11 10:42:34	404480	----a-w-	C:&#092;Windows&#092;System32&#092;umpnpmgr.dll<br />
2011-12-11 10:42:34	252928	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drvinst.exe<br />
2011-12-11 10:42:34	207872	----a-w-	C:&#092;Windows&#092;System32&#092;cfgmgr32.dll<br />
2011-12-11 10:42:34	145920	----a-w-	C:&#092;Windows&#092;SysWow64&#092;cfgmgr32.dll<br />
2011-12-11 10:17:53	--------	d-----w-	C:&#092;ProgramData&#092;MemeoCommon<br />
2011-12-11 10:15:11	--------	d-----w-	C:&#092;ZoneAlarmBackup<br />
2011-12-11 05:38:56	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;GoogleChromePortable<br />
2011-12-11 05:38:56	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;fontconfig<br />
2011-12-11 05:38:53	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;EPOST<br />
2011-12-11 05:38:24	--------	d-----r-	C:&#092;Users&#092;ANDERS&#092;Dropbox<br />
2011-12-11 05:33:02	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;ZoomBrowser EX<br />
2011-12-11 05:33:02	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;XnView<br />
2011-12-11 05:33:02	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;wsInspector<br />
2011-12-11 05:33:02	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;Windows Live Writer<br />
2011-12-11 05:31:56	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;r2 Studios<br />
2011-12-11 05:31:55	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;QuickScan<br />
2011-12-11 05:31:55	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;qualys<br />
2011-12-11 05:31:55	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;PrimoPDF<br />
2011-12-11 05:31:55	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;PhotoFiltre<br />
2011-12-11 05:31:52	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;OpenOffice.org<br />
2011-12-11 05:27:59	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Roaming&#092;AccurateRip<br />
2011-12-11 05:27:11	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Zylom<br />
2011-12-11 05:27:11	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Windows Live Writer<br />
2011-12-11 05:27:11	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Windows Live<br />
2011-12-11 05:26:52	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Tific<br />
2011-12-11 05:26:52	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Thunderbird<br />
2011-12-11 05:26:52	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Symantec<br />
2011-12-11 05:26:37	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;SupportSoft<br />
2011-12-11 05:26:03	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Spotify<br />
2011-12-11 05:26:03	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Sony Ericsson<br />
2011-12-11 05:26:01	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Sony<br />
2011-12-11 05:20:32	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;SlimWare Utilities Inc<br />
2011-12-11 05:20:25	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Opera<br />
2011-12-11 05:20:25	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Oberon Games<br />
2011-12-11 05:20:23	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;NPE<br />
2011-12-11 05:20:23	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Nero_AG<br />
2011-12-11 05:18:08	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Nero<br />
2011-12-11 05:17:50	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Mozilla<br />
2011-12-11 05:17:50	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;MigWiz<br />
2011-12-11 05:17:49	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Microsoft Games<br />
2011-12-11 05:16:25	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;IsolatedStorage<br />
2011-12-11 05:16:25	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Ilivid Player<br />
2011-12-11 05:09:31	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;F-Secure Online Backup<br />
2011-12-11 05:09:26	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Evernote<br />
2011-12-11 05:09:22	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Downloaded Installations<br />
2011-12-11 05:09:08	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;CrashDumps<br />
2011-12-11 05:09:08	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Conduit<br />
2011-12-11 05:09:07	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Click.to<br />
2011-12-11 05:09:05	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Babylon<br />
2011-12-11 05:09:03	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;assembly<br />
2011-12-11 05:09:03	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;ashampoo<br />
2011-12-11 05:09:03	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Apple Computer<br />
2011-12-11 05:09:02	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Apple<br />
2011-12-11 05:09:00	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Adobe<br />
2011-12-11 05:04:55	--------	d-----w-	C:&#092;ProgramData&#092;MFAData<br />
2011-12-11 04:59:09	--------	d-----w-	C:&#092;MGADiagToolOutput<br />
2011-12-11 04:59:09	--------	d-----w-	C:&#092;IBVSSTEMP<br />
2011-12-11 04:59:06	--------	d-----w-	C:&#092;CIMTEMP<br />
2011-12-11 04:59:05	--------	d-----w-	C:&#092;Buziol Games<br />
2011-12-10 21:48:14	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Memeo<br />
2011-12-10 15:08:01	--------	d-----w-	C:&#092;Windows&#092;SysWow64&#092;XPSViewer<br />
2011-12-10 15:08:01	--------	d-----w-	C:&#092;Windows&#092;SysWow64&#092;wbem&#092;sv-SE<br />
2011-12-10 15:08:01	--------	d-----w-	C:&#092;Windows&#092;SysWow64&#092;sv<br />
2011-12-10 15:08:01	--------	d-----w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE<br />
2011-12-10 15:08:00	--------	d-----w-	C:&#092;Windows&#092;System32&#092;sv<br />
2011-12-10 15:08:00	--------	d-----w-	C:&#092;Windows&#092;System32&#092;drivers&#092;UMDF&#092;sv-SE<br />
2011-12-10 15:06:59	3584	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;sv-SE&#092;modem.sys.mui<br />
2011-12-10 15:02:11	--------	d-----w-	C:&#092;Windows&#092;NAPP_Dism_Log<br />
2011-12-10 07:56:31	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Diagnostics<br />
2011-12-10 07:35:41	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;Google<br />
2011-12-10 07:29:39	--------	d-----w-	C:&#092;Program Files (x86)&#092;Telia mobile broadband<br />
2011-12-10 07:24:36	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;ATI<br />
2011-12-10 07:23:24	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;EgisTec IPS<br />
2011-12-10 07:22:26	--------	d-----w-	C:&#092;Users&#092;ANDERS&#092;AppData&#092;Local&#092;VirtualStore<br />
2011-12-10 07:21:30	--------	d-----w-	C:&#092;Program Files&#092;Acer Accessory Store<br />
2011-12-10 06:55:42	4398360	----a-w-	C:&#092;Windows&#092;System32&#092;d3dx9_32.dll<br />
2011-12-10 06:55:42	3426072	----a-w-	C:&#092;Windows&#092;SysWow64&#092;d3dx9_32.dll<br />
2011-12-10 06:55:39	--------	d-----w-	C:&#092;Program Files (x86)&#092;Microsoft SQL Server Compact Edition<br />
2011-12-10 06:54:54	--------	d-----w-	C:&#092;Program Files (x86)&#092;Microsoft<br />
2011-12-10 06:54:37	--------	d-----w-	C:&#092;Program Files (x86)&#092;Windows Live SkyDrive<br />
2011-12-10 06:54:19	--------	d-----w-	C:&#092;Windows&#092;PCHEALTH<br />
2011-12-10 06:54:06	74520	----a-w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Windows Live&#092;.cache&#092;825cb5221ccb708&#092;DSETUP.dll<br />
2011-12-10 06:54:06	484632	----a-w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Windows Live&#092;.cache&#092;825cb5221ccb708&#092;DXSETUP.exe<br />
2011-12-10 06:54:06	1670936	----a-w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Windows Live&#092;.cache&#092;825cb5221ccb708&#092;dsetup32.dll<br />
2011-12-10 06:53:43	139787088	----a-w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Windows Live&#092;.cache&#092;wlc5C81.tmp<br />
2011-12-10 06:53:35	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;Windows Live<br />
2011-12-10 06:51:19	--------	d-----w-	C:&#092;Program Files (x86)&#092;Common Files&#092;CyberLink<br />
2011-12-10 06:50:06	499712	----a-w-	C:&#092;Windows&#092;SysWow64&#092;msvcp71.dll<br />
2011-12-10 06:50:06	348160	----a-w-	C:&#092;Windows&#092;SysWow64&#092;msvcr71.dll<br />
2011-12-10 06:50:06	29480	----a-w-	C:&#092;Windows&#092;SysWow64&#092;msxml3a.dll<br />
2011-12-10 06:43:58	95432	----a-w-	C:&#092;Windows&#092;System32&#092;RTEEL64H.dll<br />
2011-12-10 06:43:58	76488	----a-w-	C:&#092;Windows&#092;System32&#092;RTEEG64H.dll<br />
2011-12-10 06:43:58	68640	----a-w-	C:&#092;Windows&#092;System32&#092;RHCoInst64.dll<br />
2011-12-10 06:43:58	369864	----a-w-	C:&#092;Windows&#092;System32&#092;RTEEP64H.dll<br />
2011-12-10 06:43:58	307936	----a-w-	C:&#092;Windows&#092;System32&#092;RH3DHT64.dll<br />
2011-12-10 06:43:58	307936	----a-w-	C:&#092;Windows&#092;System32&#092;RH3DAA64.dll<br />
2011-12-10 06:43:58	231328	----a-w-	C:&#092;Windows&#092;System32&#092;drivers&#092;RtHDMIVX.sys<br />
2011-12-10 06:43:58	201928	----a-w-	C:&#092;Windows&#092;System32&#092;RTEED64H.dll<br />
2011-12-10 06:43:58	1814048	----a-w-	C:&#092;Windows&#092;System32&#092;RHDMEx64.dll<br />
2011-12-10 06:43:58	1631264	----a-w-	C:&#092;Windows&#092;System32&#092;RtkHDM64.dll<br />
2011-12-10 06:42:49	--------	d-----w-	C:&#092;Program Files&#092;Elantech<br />
2011-12-10 06:39:25	--------	d-----w-	C:&#092;Program Files (x86)&#092;Launch Manager<br />
2011-12-10 06:30:58	--------	d-----w-	C:&#092;Program Files (x86)&#092;Acer Crystal Eye webcam<br />
2011-12-10 06:30:34	--------	d---a-w-	C:&#092;book<br />
2011-12-10 06:28:50	0	----a-w-	C:&#092;Windows&#092;ativpsrm.bin<br />
2011-12-10 06:27:45	3	----a-w-	C:&#092;Windows&#092;System32&#092;PLD_Framework.cmd<br />
2011-12-10 06:24:43	--------	d-----w-	C:&#092;Program Files&#092;ATI<br />
2011-12-10 06:24:40	--------	d-----w-	C:&#092;Program Files (x86)&#092;ATI Technologies<br />
2011-12-07 00:26:40	4448256	----a-w-	C:&#092;Windows&#092;SysWow64&#092;GPhotos.scr<br />
2011-12-01 02:57:55	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{8224BDBD-DAA6-41CC-A26D-F2117A8FB1BF}&#092;offreg.dll<br />
2011-12-01 02:57:49	8822856	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{8224BDBD-DAA6-41CC-A26D-F2117A8FB1BF}&#092;mpengine.dll<br />
2011-11-30 20:31:06	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{062452A9-5872-4022-9EF1-3A225779535D}&#092;offreg.dll<br />
2011-11-30 20:31:02	8570192	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{062452A9-5872-4022-9EF1-3A225779535D}&#092;mpengine.dll<br />
2011-11-28 01:14:30	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{BF70EA4C-0D41-483C-AF2D-F2A6629C6617}&#092;offreg.dll<br />
2011-11-28 01:14:24	8570192	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{BF70EA4C-0D41-483C-AF2D-F2A6629C6617}&#092;mpengine.dll<br />
2011-11-22 01:13:53	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{F4D63686-C6F2-42DF-BC14-3918E73D5E0B}&#092;offreg.dll<br />
2011-11-22 01:13:51	8570192	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{F4D63686-C6F2-42DF-BC14-3918E73D5E0B}&#092;mpengine.dll<br />
2011-11-21 16:32:55	69000	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{C63BB3BF-272C-49E7-9B64-58E11CA33D3A}&#092;offreg.dll<br />
2011-11-21 16:32:42	8570192	----a-w-	C:&#092;ProgramData&#092;Microsoft&#092;Microsoft Antimalware&#092;Definition Updates&#092;{C63BB3BF-272C-49E7-9B64-58E11CA33D3A}&#092;mpengine.dll<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-12-15 03:12:31	175616	----a-w-	C:&#092;Windows&#092;System32&#092;msclmd.dll<br />
2011-12-15 03:12:31	152576	----a-w-	C:&#092;Windows&#092;SysWow64&#092;msclmd.dll<br />
2011-12-10 15:07:11	2560	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;qwavedrv.sys.mui<br />
2011-12-10 15:06:57	2560	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;scfilter.sys.mui<br />
2011-12-10 15:06:56	5632	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;ndiscap.sys.mui<br />
2011-12-10 15:06:50	47104	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;tcpip.sys.mui<br />
2011-12-10 15:06:47	15872	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;pacer.sys.mui<br />
2011-12-10 15:06:46	28672	----a-w-	C:&#092;Windows&#092;SysWow64&#092;drivers&#092;sv-SE&#092;bfe.dll.mui<br />
2011-11-04 01:53:39	2309120	----a-w-	C:&#092;Windows&#092;System32&#092;jscript9.dll<br />
2011-11-04 01:44:47	1390080	----a-w-	C:&#092;Windows&#092;System32&#092;wininet.dll<br />
2011-11-04 01:44:21	1493504	----a-w-	C:&#092;Windows&#092;System32&#092;inetcpl.cpl<br />
2011-11-04 01:34:43	2382848	----a-w-	C:&#092;Windows&#092;System32&#092;mshtml.tlb<br />
2011-11-03 22:47:42	1798144	----a-w-	C:&#092;Windows&#092;SysWow64&#092;jscript9.dll<br />
2011-11-03 22:40:21	1427456	----a-w-	C:&#092;Windows&#092;SysWow64&#092;inetcpl.cpl<br />
2011-11-03 22:39:47	1127424	----a-w-	C:&#092;Windows&#092;SysWow64&#092;wininet.dll<br />
2011-11-03 22:31:57	2382848	----a-w-	C:&#092;Windows&#092;SysWow64&#092;mshtml.tlb<br />
2011-10-24 13:29:02	94208	----a-w-	C:&#092;Windows&#092;SysWow64&#092;QuickTimeVR.qtx<br />
2011-10-24 13:29:02	69632	----a-w-	C:&#092;Windows&#092;SysWow64&#092;QuickTime.qts<br />
.<br />
============= FINISH: 13:59:38,20 ===============<div id='attach_wrap' class='rounded clearfix'>
	<h4>Bifogade bilder</h4>
	<ul>
		
			<li class=''>
				<img src="http://eforum.idg.se/uploads/monthly_12_2011/post-124897-0-36168300-1324473320.png" class='bbc_img linked-image' alt="Bifogad bild: monthly_12_2011/post-124897-0-36168300-1324473320.png" />
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Wed, 21 Dec 2011 13:17:45 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333645-hot-vid-korning-av-malwarebytes/</guid>
	</item>
	<item>
		<title>Hänvisning till fel webbsida</title>
		<link>http://eforum.idg.se/topic/333637-hanvisning-till-fel-webbsida/</link>
		<description><![CDATA[Hej,<br />
skulle hjälp med att läsa nedanstående Hijack this logg. Jag blir hänvisad till fel webbsida när jag använder Internet. Detta oberoende av webbläsare. Har testat Chrome, Firefox och IE och även rensat all historik och cookies utan framgång.<br />
<br />
<br />
Logfile of Trend Micro HijackThis v2.0.4<br />
Scan saved at 21:18:56, on 2011-12-20<br />
Platform: Windows 7  (WinNT 6.00.3504)<br />
MSIE: Internet Explorer v9.00 (9.00.8112.16421)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAAnotif.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe<br />
C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 10.0&#092;Acrobat&#092;acrotray.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;Malwarebytes' Anti-Malware&#092;mbamgui.exe<br />
C:&#092;Program Files (x86)&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;Program Files (x86)&#092;Spybot - Search & Destroy&#092;SpybotSD.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;Macromed&#092;Flash&#092;FlashUtil11c_ActiveX.exe<br />
C:&#092;Program Files (x86)&#092;Trend Micro&#092;HiJackThis&#092;HiJackThis.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;DllHost.exe<br />
<br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=041d&m=en_butterfly_m&r=27360510s306l0321z1k5f4831u257' class='bbc_url' title='Extern länk' rel='nofollow external'>http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=041d&m=en_butterfly_m&r=27360510s306l0321z1k5f4831u257</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,CustomizeSearch = <br />
F2 - REG:system.ini: UserInit=userinit.exe,<br />
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:&#092;Program Files (x86)&#092;TechSmith&#092;Snagit 9&#092;SnagitBHO.dll<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:&#092;Program Files (x86)&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveShellExtensions.dll<br />
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
O2 - BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:&#092;PROGRA~2&#092;WI3C8A~1&#092;Datamngr&#092;ToolBar&#092;searchqudtx.dll (file missing)<br />
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll<br />
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:&#092;Program Files (x86)&#092;TechSmith&#092;Snagit 9&#092;SnagitIEAddin.dll<br />
O3 - Toolbar: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:&#092;PROGRA~2&#092;WI3C8A~1&#092;Datamngr&#092;ToolBar&#092;searchqudtx.dll (file missing)<br />
O4 - HKLM&#092;..&#092;Run: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
O4 - HKLM&#092;..&#092;Run: [Adobe Reader Speed Launcher] "C:&#092;Program Files (x86)&#092;Adobe&#092;Reader 9.0&#092;Reader&#092;Reader_sl.exe"<br />
O4 - HKLM&#092;..&#092;Run: [LManager] C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
O4 - HKLM&#092;..&#092;Run: [Adobe ARM] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;AdobeARM.exe"<br />
O4 - HKLM&#092;..&#092;Run: [GrooveMonitor] "C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveMonitor.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Adobe Acrobat Speed Launcher] "C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 10.0&#092;Acrobat&#092;Acrobat_sl.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Acrobat Assistant 8.0] "C:&#092;Program Files (x86)&#092;Adobe&#092;Acrobat 10.0&#092;Acrobat&#092;Acrotray.exe"<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
O4 - HKLM&#092;..&#092;Run: [Malwarebytes' Anti-Malware] "C:&#092;Program Files (x86)&#092;Malwarebytes' Anti-Malware&#092;mbamgui.exe" /starttray<br />
O4 - HKLM&#092;..&#092;Run: [APSDaemon] "C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Apple Application Support&#092;APSDaemon.exe"<br />
O4 - HKLM&#092;..&#092;Run: [QuickTime Task] "C:&#092;Program Files (x86)&#092;QuickTime&#092;QTTask.exe" -atboottime<br />
O4 - HKLM&#092;..&#092;Run: [iTunesHelper] "C:&#092;Program Files (x86)&#092;iTunes&#092;iTunesHelper.exe"<br />
O4 - HKCU&#092;..&#092;RunOnce: [FlashPlayerUpdate] C:&#092;Windows&#092;SysWOW64&#092;Macromed&#092;Flash&#092;FlashUtil10h_Plugin.exe -update plugin<br />
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIEAppendSelLinks.html<br />
O8 - Extra context menu item: Append to Existing PDF - res://C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIEAppend.html<br />
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIECaptureSelLinks.html<br />
O8 - Extra context menu item: Convert to Adobe PDF - res://C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEFavClient.dll/AcroIECapture.html<br />
O9 - Extra button: @C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
O9 - Extra 'Tools' menuitem: @C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra button: @C:&#092;Windows&#092;WindowsMobile&#092;INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:&#092;Windows&#092;WindowsMobile&#092;INetRepl.dll<br />
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:&#092;Windows&#092;WindowsMobile&#092;INetRepl.dll<br />
O9 - Extra 'Tools' menuitem: @C:&#092;Windows&#092;WindowsMobile&#092;INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:&#092;Windows&#092;WindowsMobile&#092;INetRepl.dll<br />
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:&#092;Program Files (x86)&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:&#092;Program Files (x86)&#092;Spybot - Search & Destroy&#092;SDHelper.dll<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics<br />
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - <a href='http://www.ipix.com/download/ipixx.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.ipix.com/download/ipixx.cab</a><br />
O16 - DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} (IlosoftImageUploadCtl Class) - <a href='http://webc.mariakyrkan.org/auth/controls/IlosoftImageUpload.dll' class='bbc_url' title='Extern länk' rel='nofollow external'>http://webc.mariakyrkan.org/auth/controls/IlosoftImageUpload.dll</a><br />
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - <a href='http://gfx1.hotmail.com/mail/w4/m3/photouploadcontrol/VistaMSNPUplden-us.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://gfx1.hotmail.com/mail/w4/m3/photouploadcontrol/VistaMSNPUplden-us.cab</a><br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveSystemServices.dll<br />
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:&#092;PROGRA~2&#092;COMMON~1&#092;Skype&#092;SKYPE4~1.DLL<br />
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll<br />
O20 - AppInit_DLLs:   <br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Alg.exe,-112 (ALG) - Unknown owner - C:&#092;Windows&#092;System32&#092;alg.exe (file missing)<br />
O23 - Service: AMD External Events Utility - Unknown owner - C:&#092;Windows&#092;system32&#092;atiesrxx.exe (file missing)<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:&#092;Program Files (x86)&#092;Launch Manager&#092;dsiwmis.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;efssvc.dll,-100 (EFS) - Unknown owner - C:&#092;Windows&#092;System32&#092;lsass.exe (file missing)<br />
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:&#092;Program Files&#092;Packard Bell&#092;Packard Bell PowerSave Solution&#092;ePowerSvc.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;fxsresm.dll,-118 (Fax) - Unknown owner - C:&#092;Windows&#092;system32&#092;fxssvc.exe (file missing)<br />
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:&#092;Program Files (x86)&#092;Common Files&#092;Macrovision Shared&#092;FLEXnet Publisher&#092;FNPLicensingService.exe<br />
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:&#092;Program Files (x86)&#092;Packard Bell&#092;Registration&#092;GregHSRW.exe<br />
O23 - Service: Intel&reg; Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAANTMon.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: MBAMService - Malwarebytes Corporation - C:&#092;Program Files (x86)&#092;Malwarebytes' Anti-Malware&#092;mbamservice.exe<br />
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:&#092;Windows&#092;System32&#092;msdtc.exe (file missing)<br />
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:&#092;Program Files (x86)&#092;Common Files&#092;Nero&#092;Nero BackItUp 4&#092;NBService.exe<br />
O23 - Service: @%SystemRoot%&#092;System32&#092;netlogon.dll,-102 (Netlogon) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Packard Bell MyBackup&#092;IScheduleSvc.exe<br />
O23 - Service: Acer ODD Power Service (ODDPwrSvc) - Acer Incorporated - C:&#092;Program Files&#092;Packard Bell&#092;Optical Drive Power Management&#092;ODDPWRSvc.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;Locator.exe,-2 (RpcLocator) - Unknown owner - C:&#092;Windows&#092;system32&#092;locator.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;samsrv.dll,-1 (SamSs) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:&#092;Program Files (x86)&#092;Spybot - Search & Destroy&#092;SDWinSec.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:&#092;Windows&#092;System32&#092;snmptrap.exe (file missing)<br />
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Companion&#092;PCCService.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;spoolsv.exe,-1 (Spooler) - Unknown owner - C:&#092;Windows&#092;System32&#092;spoolsv.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;sppsvc.exe,-101 (sppsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;sppsvc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:&#092;Windows&#092;system32&#092;UI0Detect.exe (file missing)<br />
O23 - Service: Updater Service - Acer - C:&#092;Program Files&#092;Packard Bell&#092;Packard Bell Updater&#092;UpdaterService.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vds.exe,-100 (vds) - Unknown owner - C:&#092;Windows&#092;System32&#092;vds.exe (file missing)<br />
O23 - Service: VoddlerNet - Voddler - C:&#092;Program Files (x86)&#092;Voddler&#092;service&#092;voddler.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;vssvc.exe,-102 (VSS) - Unknown owner - C:&#092;Windows&#092;system32&#092;vssvc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Wat&#092;WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;wbengine.exe,-104 (wbengine) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbengine.exe (file missing)<br />
O23 - Service: @%Systemroot%&#092;system32&#092;wbem&#092;wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbem&#092;WmiApSrv.exe (file missing)<br />
O23 - Service: @%PROGRAMFILES%&#092;Windows Media Player&#092;wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:&#092;Program Files (x86)&#092;Windows Media Player&#092;wmpnetwk.exe (file missing)<br />
<br />
--<br />
End of file - 13338 bytes]]></description>
		<pubDate>Tue, 20 Dec 2011 20:26:37 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333637-hanvisning-till-fel-webbsida/</guid>
	</item>
	<item>
		<title>SvenAlbert - Seg dator</title>
		<link>http://eforum.idg.se/topic/333638-svenalbert-seg-dator/</link>
		<description><![CDATA[Hejsan! Min dator har blivit väldigt seg. Jag har rensat bort mycket men det hjälper inte.<br />
Tacksam för en analys!  <br />
<br />
Logfile of Trend Micro HijackThis v2.0.4<br />
Scan saved at 20:03:09, on 2011-12-20<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
D:&#092;WINDOWS&#092;System32&#092;smss.exe<br />
D:&#092;WINDOWS&#092;system32&#092;winlogon.exe<br />
D:&#092;WINDOWS&#092;system32&#092;services.exe<br />
D:&#092;WINDOWS&#092;system32&#092;lsass.exe<br />
D:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe<br />
D:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
D:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgchsvx.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgrsx.exe<br />
D:&#092;Program&#092;Sygate&#092;SPF&#092;smc.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgcsrvx.exe<br />
D:&#092;WINDOWS&#092;system32&#092;svchost.exe<br />
D:&#092;Program&#092;Lavasoft&#092;Ad-Aware&#092;AAWService.exe<br />
D:&#092;WINDOWS&#092;Explorer.EXE<br />
D:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
D:&#092;Program&#092;Google&#092;Update&#092;GoogleUpdate.exe<br />
D:&#092;WINDOWS&#092;System32&#092;svchost.exe<br />
D:&#092;Program&#092;Fighters&#092;sfus.exe<br />
D:&#092;Program&#092;Fighters&#092;FighterSuiteService.exe<br />
D:&#092;Program&#092;Delade filer&#092;AVG Secure Search&#092;vToolbarUpdater&#092;9.0.1&#092;ToolbarUpdater.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgnsx.exe<br />
D:&#092;WINDOWS&#092;system32&#092;devldr32.exe<br />
D:&#092;Program&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
D:&#092;Program&#092;Personal&#092;bin&#092;Personal.exe<br />
D:&#092;Program&#092;Mozilla Firefox&#092;firefox.exe<br />
D:&#092;Program&#092;Trend Micro&#092;HijackThis&#092;HiJackThis.exe<br />
<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://swedish.toggle.com/sv/index.php?rvs=google' class='bbc_url' title='Extern länk' rel='nofollow external'>http://swedish.toggle.com/sv/index.php?rvs=google</a><br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://google.se/' class='bbc_url' title='Extern länk' rel='nofollow external'>http://google.se/</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://swedish.toggle.com/sv/index.php?rvs=google' class='bbc_url' title='Extern länk' rel='nofollow external'>http://swedish.toggle.com/sv/index.php?rvs=google</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://swedish.toggle.com/sv/index.php?rvs=google' class='bbc_url' title='Extern länk' rel='nofollow external'>http://swedish.toggle.com/sv/index.php?rvs=google</a><br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyOverride = localhost<br />
F2 - REG:system.ini: UserInit=D:&#092;WINDOWS&#092;system32&#092;userinit.exe<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:&#092;Program&#092;Delade filer&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:&#092;Program&#092;AVG&#092;AVG9&#092;avgssie.dll<br />
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:&#092;Program&#092;AVG Secure Search&#092;9.0.0.18&#092;AVG Secure Search_toolbar.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:&#092;Program&#092;Java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll<br />
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:&#092;Program&#092;AVG Secure Search&#092;9.0.0.18&#092;AVG Secure Search_toolbar.dll<br />
O4 - HKLM&#092;..&#092;Run: [SmcService] D:&#092;Program&#092;Sygate&#092;SPF&#092;smc.exe -startgui<br />
O4 - HKLM&#092;..&#092;Run: [AVG9_TRAY] D:&#092;Program&#092;AVG&#092;AVG9&#092;avgtray.exe<br />
O4 - HKLM&#092;..&#092;Run: [NvCplDaemon] RUNDLL32.EXE D:&#092;WINDOWS&#092;system32&#092;NvCpl.dll,NvStartup<br />
O4 - Global Startup: BankID säkerhetsprogram.lnk = D:&#092;Program&#092;Personal&#092;bin&#092;Personal.exe<br />
O15 - Trusted Zone: <a href='http://www.browserscope.org' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.browserscope.org</a><br />
O15 - Trusted Zone: *.handelsbanken.se<br />
O15 - Trusted Zone: <a href='http://www.hijackthis.de' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.hijackthis.de</a><br />
O15 - Trusted Zone: <a href='http://*.novalogic.com' class='bbc_url' title='Extern länk' rel='nofollow external'>http://*.novalogic.com</a><br />
O15 - Trusted Zone: <a href='http://www.tele2.se' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.tele2.se</a><br />
O15 - Trusted Zone: <a href='http://blogg.tkj.se' class='bbc_url' title='Extern länk' rel='nofollow external'>http://blogg.tkj.se</a><br />
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} - file:///D:/Program/Letters%20from%20Nowhere/Images/stg_drm.ocx<br />
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - <a href='http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab</a><br />
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - <a href='http://download.divx.com/player/DivXBrowserPlugin.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://download.divx.com/player/DivXBrowserPlugin.cab</a><br />
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - <a href='http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab</a><br />
O16 - DPF: {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class) - <a href='http://www.tele2mail.com/static/apps/utils/AccountHelper.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.tele2mail.com/static/apps/utils/AccountHelper.cab</a><br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a href='http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab</a><br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href='http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab</a><br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:&#092;Program&#092;AVG&#092;AVG9&#092;avgpp.dll<br />
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - D:&#092;Program&#092;Delade filer&#092;AVG Secure Search&#092;ViProtocolInstaller&#092;9.0.1&#092;ViProtocol.dll<br />
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)<br />
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:&#092;WINDOWS&#092;system32&#092;browseui.dll<br />
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:&#092;WINDOWS&#092;system32&#092;browseui.dll<br />
O23 - Service: AVG Security Toolbar Service - Unknown owner - D:&#092;Program&#092;AVG&#092;AVG9&#092;Toolbar&#092;ToolbarBroker.exe<br />
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - D:&#092;Program&#092;AVG&#092;AVG9&#092;avgwdsvc.exe<br />
O23 - Service: Google Update Service (gupdate1c903864f25ec9a) (gupdate1c903864f25ec9a) - Google Inc. - D:&#092;Program&#092;Google&#092;Update&#092;GoogleUpdate.exe<br />
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - D:&#092;Program&#092;Google&#092;Update&#092;GoogleUpdate.exe<br />
O23 - Service: Google Software Updater (gusvc) - Google - D:&#092;Program&#092;Google&#092;Common&#092;Google Updater&#092;GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:&#092;Program&#092;Delade filer&#092;InstallShield&#092;Driver&#092;11&#092;Intel 32&#092;IDriverT.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jqs.exe<br />
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - D:&#092;Program&#092;Lavasoft&#092;Ad-Aware&#092;AAWService.exe<br />
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - D:&#092;Program&#092;McAfee Security Scan&#092;2.0.181&#092;McCHSvc.exe<br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe<br />
O23 - Service: Pml Driver HPZ12 - HP - D:&#092;WINDOWS&#092;system32&#092;HPZipm12.exe<br />
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - D:&#092;Program&#092;Sygate&#092;SPF&#092;smc.exe<br />
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - D:&#092;Program&#092;Fighters&#092;sfus.exe<br />
O23 - Service: Suite Service - SPAMfighter ApS - D:&#092;Program&#092;Fighters&#092;FighterSuiteService.exe<br />
O23 - Service: vToolbarUpdater - Unknown owner - D:&#092;Program&#092;Delade filer&#092;AVG Secure Search&#092;vToolbarUpdater&#092;9.0.1&#092;ToolbarUpdater.exe<br />
O24 - Desktop Component 0: (no name) - (no file)<br />
<br />
--<br />
End of file - 6757 bytes]]></description>
		<pubDate>Tue, 20 Dec 2011 19:06:09 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333638-svenalbert-seg-dator/</guid>
	</item>
	<item>
		<title>Vill att någon som kan kollar Hijackthis log</title>
		<link>http://eforum.idg.se/topic/333628-vill-att-nagon-som-kan-kollar-hijackthis-log/</link>
		<description><![CDATA[Hej! Jag hjälper min flickväns familj med en flytt och har satt upp denna dator men den är fruktansvärt seg. Skulle tro att det ligger lite skit (Virus?) i den. så skulle vara väldigt tacksam om någon kollar igenom denna hijackthis log <img src='http://eforum.idg.se/public/style_emoticons/default/smile.gif' class='bbc_emoticon' alt=':)' /><br />
<br />
<div class="bbc_log">
				<input type="button" class="bbc_log_show" value="+" />
				<div class="bbc_log_wrapper">
					<div class="bbc_log_short_content" id="bbc_log_short_content">Logfile of Trend Micro HijackThis v2.0.4 </div>
					<div class="bbc_log_content" id="bbc_log_content" style="display:none;">Logfile of Trend Micro HijackThis v2.0.4 <br />
Scan saved at 13:28:32, on 2011-06-16 <br />
Platform: Windows XP SP3 (WinNT 5.01.2600) <br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702) <br />
Boot mode: Normal <br />
<br />
Running processes: <br />
C:&#092;WINDOWS&#092;System32&#092;smss.exe <br />
C:&#092;WINDOWS&#092;system32&#092;winlogon.exe <br />
C:&#092;WINDOWS&#092;system32&#092;services.exe <br />
C:&#092;WINDOWS&#092;system32&#092;lsass.exe <br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe <br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe <br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe <br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe <br />
C:&#092;WINDOWS&#092;Explorer.EXE <br />
C:&#092;WINDOWS&#092;system32&#092;RUNDLL32.EXE <br />
C:&#092;WINDOWS&#092;system32&#092;LVCOMSX.EXE <br />
C:&#092;Program&#092;Logitech&#092;Video&#092;LogiTray.exe <br />
C:&#092;Program&#092;Winamp&#092;winampa.exe <br />
C:&#092;Program&#092;Adobe&#092;Photoshop Album Starter Edition&#092;3.2&#092;Apps&#092;apdproxy.exe <br />
C:&#092;Program&#092;D-Link&#092;AirPlus G&#092;AirGCFG.exe <br />
C:&#092;Program&#092;ANI&#092;ANIWZCS2 Service&#092;WZCSLDR2.exe <br />
C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtcmd.exe <br />
C:&#092;Program&#092;HP&#092;HP Software Update&#092;HPWuSchd2.exe <br />
C:&#092;Program&#092;Delade filer&#092;Java&#092;Java Update&#092;jusched.exe <br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe <br />
C:&#092;Program&#092;Delade filer&#092;Ahead&#092;Lib&#092;NMBgMonitor.exe <br />
C:&#092;Program&#092;Delade filer&#092;Ahead&#092;Lib&#092;NMIndexStoreSvr.exe <br />
C:&#092;Program&#092;Logitech&#092;Video&#092;FxSvr2.exe <br />
C:&#092;Program&#092;Personal&#092;bin&#092;Personal.exe <br />
C:&#092;Program&#092;HP&#092;Digital Imaging&#092;bin&#092;hpqtra08.exe <br />
C:&#092;Program&#092;Windows Desktop Search&#092;WindowsSearch.exe <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Anti-Virus&#092;fsgk32st.exe <br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe <br />
C:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jqs.exe <br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe <br />
C:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe <br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe <br />
C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtsvc.exe <br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe <br />
C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;tgsrvc.exe <br />
C:&#092;WINDOWS&#092;system32&#092;SearchIndexer.exe <br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe <br />
C:&#092;Program&#092;HP&#092;Digital Imaging&#092;bin&#092;hpqSTE08.exe <br />
C:&#092;Program&#092;HP&#092;Digital Imaging&#092;bin&#092;hpqbam08.exe <br />
C:&#092;Program&#092;HP&#092;Digital Imaging&#092;bin&#092;hpqgpc01.exe <br />
C:&#092;WINDOWS&#092;system32&#092;msiexec.exe <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Anti-Virus&#092;FSGK32.EXE <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Anti-Virus&#092;fssm32.exe <br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe <br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe <br />
C:&#092;Program&#092;HP&#092;Digital Imaging&#092;Smart Web Printing&#092;hpswp_clipbook.exe <br />
C:&#092;WINDOWS&#092;system32&#092;wuauclt.exe <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Common&#092;FSMA32.EXE <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Common&#092;FSHDLL32.EXE <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Common&#092;FSM32.EXE <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;FWES&#092;Program&#092;fsdfwd.exe <br />
C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Anti-Virus&#092;fsav32.exe <br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe <br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe <br />
C:&#092;WINDOWS&#092;system32&#092;SearchProtocolHost.exe <br />
C:&#092;Program&#092;hijackthis&#092;Trend Micro&#092;HiJackThis&#092;HiJackThis.exe <br />
<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://www.youtube.com/' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.youtube.com/</a> <br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft....k/?LinkId=69157</a> <br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft....k/?LinkId=54896</a> <br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft....k/?LinkId=54896</a> <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://go.microsoft.com/fwlink/?LinkId=69157' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft....k/?LinkId=69157</a> <br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Toolbar,LinksFolderName = Länkar <br />
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:&#092;Program&#092;HP&#092;Digital Imaging&#092;Smart Web Printing&#092;hpswp_printenhancer.dll <br />
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:&#092;Program&#092;Adobe&#092;Acrobat 7.0&#092;ActiveX&#092;AcroIEHelper.dll <br />
O2 - BHO: Winamp Toolbar BHO - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:&#092;Program&#092;Winamp Toolbar&#092;winamptb.dll <br />
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) <br />
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll <br />
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:&#092;Program&#092;Java&#092;jre6&#092;lib&#092;deploy&#092;jqs&#092;ie&#092;jqs_plugin.dll <br />
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:&#092;Program&#092;HP&#092;Digital Imaging&#092;Smart Web Printing&#092;hpswp_BHO.dll <br />
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:&#092;Program&#092;Winamp Toolbar&#092;winamptb.dll <br />
O4 - HKLM&#092;..&#092;Run: [NvCplDaemon] RUNDLL32.EXE C:&#092;WINDOWS&#092;system32&#092;NvCpl.dll,NvStartup <br />
O4 - HKLM&#092;..&#092;Run: [nwiz] nwiz.exe /install <br />
O4 - HKLM&#092;..&#092;Run: [NvMediaCenter] RUNDLL32.EXE C:&#092;WINDOWS&#092;system32&#092;NvMcTray.dll,NvTaskbarInit <br />
O4 - HKLM&#092;..&#092;Run: [LVCOMSX] C:&#092;WINDOWS&#092;system32&#092;LVCOMSX.EXE <br />
O4 - HKLM&#092;..&#092;Run: [LogitechVideoRepair] C:&#092;Program&#092;Logitech&#092;Video&#092;ISStart.exe <br />
O4 - HKLM&#092;..&#092;Run: [LogitechVideoTray] C:&#092;Program&#092;Logitech&#092;Video&#092;LogiTray.exe <br />
O4 - HKLM&#092;..&#092;Run: [Telia] "C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtcmd.exe" /P TeliaDA <br />
O4 - HKLM&#092;..&#092;Run: [F-Secure Manager] "C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Common&#092;FSM32.EXE" /splash <br />
O4 - HKLM&#092;..&#092;Run: [F-Secure TNB] "C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;FSGUI&#092;TNBUtil.exe" /CHECKALL /WAITFORSW <br />
O4 - HKLM&#092;..&#092;Run: [HP Software Update] C:&#092;Program&#092;HP&#092;HP Software Update&#092;HPWuSchd2.exe <br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program&#092;Delade filer&#092;Java&#092;Java Update&#092;jusched.exe" <br />
O4 - HKLM&#092;..&#092;Run: [MSConfig] C:&#092;WINDOWS&#092;PCHealth&#092;HelpCtr&#092;Binaries&#092;MSConfig.exe /auto <br />
O4 - HKCU&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe <br />
O4 - HKCU&#092;..&#092;Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:&#092;Program&#092;Delade filer&#092;Ahead&#092;Lib&#092;NMBgMonitor.exe" <br />
O4 - HKCU&#092;..&#092;Run: [LogitechSoftwareUpdate] C:&#092;Program&#092;Logitech&#092;Video&#092;ManifestEngine.exe boot <br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;System32&#092;CTFMON.EXE (User 'LOKAL TJÄNST') <br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;System32&#092;CTFMON.EXE (User 'NETWORK SERVICE') <br />
O4 - HKUS&#092;S-1-5-18&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;System32&#092;CTFMON.EXE (User 'SYSTEM') <br />
O4 - HKUS&#092;.DEFAULT&#092;..&#092;Run: [CTFMON.EXE] C:&#092;WINDOWS&#092;System32&#092;CTFMON.EXE (User 'Default user') <br />
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:&#092;Program&#092;Adobe&#092;Acrobat 7.0&#092;Reader&#092;reader_sl.exe <br />
O4 - Global Startup: BankID säkerhetsprogram.lnk = C:&#092;Program&#092;Personal&#092;bin&#092;Personal.exe <br />
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:&#092;Program&#092;HP&#092;Digital Imaging&#092;bin&#092;hpqtra08.exe <br />
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:&#092;Program Files&#092;Logitech&#092;Desktop Messenger&#092;8876480&#092;Program&#092;LDMConf.exe <br />
O4 - Global Startup: Windows Skrivbordssökning.lnk = C:&#092;Program&#092;Windows Desktop Search&#092;WindowsSearch.exe <br />
O8 - Extra context menu item: &Search - <a href='http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZJxdm147YYSE' class='bbc_url' title='Extern länk' rel='nofollow external'>http://edits.mywebse...?p=ZJxdm147YYSE</a> <br />
O8 - Extra context menu item: &Winamp Toolbar Search - C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;Winamp Toolbar&#092;ieToolbar&#092;resources&#092;en-US&#092;local&#092;search.html <br />
O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:&#092;Program&#092;MICROS~2&#092;Office12&#092;EXCEL.EXE/3000 <br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;Program&#092;MICROS~2&#092;Office12&#092;REFIEBAR.DLL <br />
O9 - Extra button: Visa eller dölj HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:&#092;Program&#092;HP&#092;Digital Imaging&#092;Smart Web Printing&#092;hpswp_BHO.dll <br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe <br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:&#092;WINDOWS&#092;Network Diagnostic&#092;xpnetdiag.exe <br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Program&#092;Messenger&#092;msmsgs.exe <br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:&#092;Program&#092;Messenger&#092;msmsgs.exe <br />
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - <a href='http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei/ZwinkyInitialSetup1.0.0.15-3.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://ak.exe.imgfar...p1.0.0.15-3.cab</a> <br />
O16 - DPF: {274967E8-7BE3-4195-B719-CFE8878B2E39} (FotolaboUploader Control) - <a href='http://web04.ifi.fi/WEBUPLOAD/app_support/ActiveX/FotolaboUploader.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://web04.ifi.fi/...aboUploader.cab</a> <br />
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - <a href='http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://gfx2.hotmail....es/MSNPUpld.cab</a> <br />
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - <a href='http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1181142980625' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.update.mi...b?1181142980625</a> <br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - <a href='http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181198953921' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.update.mi...b?1181198953921</a> <br />
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href='http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab' class='bbc_url' title='Extern länk' rel='nofollow external'>http://platformdl.ad...Plus/1.6/gp.cab</a> <br />
O20 - Winlogon Notify: __c00B4390 - C:&#092;WINDOWS&#092;system32&#092;__c00B4390.dat (file missing) <br />
O20 - Winlogon Notify: __c00CD064 - C:&#092;WINDOWS&#092;system32&#092;__c00CD064.dat (file missing) <br />
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:&#092;WINDOWS&#092;System32&#092;browseui.dll <br />
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:&#092;WINDOWS&#092;System32&#092;browseui.dll <br />
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Anti-Virus&#092;fsgk32st.exe <br />
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;FWES&#092;Program&#092;fsdfwd.exe <br />
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;Common&#092;FSMA32.EXE <br />
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:&#092;Program&#092;Telia&#092;Telias sakerhetstjanster&#092;ORSP Client&#092;fsorsp.exe <br />
O23 - Service: Tjänsten Google Update (gupdate) (gupdate) - Google Inc. - C:&#092;Program&#092;Google&#092;Update&#092;GoogleUpdate.exe <br />
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - C:&#092;Program&#092;Google&#092;Update&#092;GoogleUpdate.exe <br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:&#092;Program&#092;Java&#092;jre6&#092;bin&#092;jqs.exe <br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:&#092;WINDOWS&#092;system32&#092;nvsvc32.exe <br />
O23 - Service: SupportSoft Sprocket Service (teliada) (sprtsvc_teliada) - SupportSoft, Inc. - C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;sprtsvc.exe <br />
O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:&#092;Program&#092;Delade filer&#092;SupportSoft&#092;bin&#092;ssrc.exe <br />
O23 - Service: SupportSoft Repair Service (teliada) (tgsrvc_teliada) - SupportSoft, Inc. - C:&#092;Program&#092;Telia&#092;Supportassistenten&#092;bin&#092;tgsrvc.exe <br />
<br />
-- <br />
End of file - 10469 bytes <br /></div>
				</div>
			</div><br />
<br />
Tacksam för all hjälp jag kan få! <br />
Mvh Peter]]></description>
		<pubDate>Tue, 20 Dec 2011 12:29:57 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333628-vill-att-nagon-som-kan-kollar-hijackthis-log/</guid>
	</item>
	<item>
		<title>Finns antivirus för Windows ME?</title>
		<link>http://eforum.idg.se/topic/333614-finns-antivirus-for-windows-me/</link>
		<description>Finns det något (gratis) antivirusprogram för Windows ME? Eller någon slags on-line-scanning?</description>
		<pubDate>Mon, 19 Dec 2011 16:33:07 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333614-finns-antivirus-for-windows-me/</guid>
	</item>
	<item>
		<title>Omöjligt att avinstallera nya Zone Alarm</title>
		<link>http://eforum.idg.se/topic/333508-omojligt-att-avinstallera-nya-zone-alarm/</link>
		<description><![CDATA[Dator:  Windows XP<br />
<br />
Efter att ha fått stora problem med nya versionen av free Zone Alarm, så beslöt jag att avinstallera det.<br />
Avinstallerade med Revo Uninstaller för att säkerställa att alla filer försvann.<br />
Har efteråt rensat med CCleaner.<br />
<br />
Men nu till problemet -  Det går inte att ta bort den mapp som Zone Alarm ligger i (CheckPoint), <strong class='bbc'>inte heller i felsäkert läge</strong>. <br />
Åtkomsten är nekad.<br />
<br />
CheckPoint-mappen innehåller fortfarande hela Zone Alarm-paketet men det går inte att hitta mappen i Revo Uninstaller eller under program/ Lägg till / Ta bort. <br />
Med andra ord verkar det vara avinstallerat (men är det inte).<br />
<br />
Har försökt att avinstallera det som Administratör, det hjälper inte heller. "Ett fel uppstod när nyckeln togs bort". <br />
<br />
Gick sedan in i registret för att försöka plocka bort det därifrån (även i Felsäkert läge) men samma felmeddelande kom.<br />
<br />
TrueVector går inte heller att ta bort - allt verkar blockerat från att ta bort som har med ZoneAlarm att göra.<br />
<br />
Har ni några förslag? Hur löser jag det här, skulle bli mycket tacksam för hjälp!]]></description>
		<pubDate>Wed, 14 Dec 2011 15:26:28 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333508-omojligt-att-avinstallera-nya-zone-alarm/</guid>
	</item>
	<item>
		<title>Någonting äter minne! Datorn jätteseg</title>
		<link>http://eforum.idg.se/topic/333441-nagonting-ater-minne-datorn-jatteseg/</link>
		<description><![CDATA[Min dator har gått så oerhört segt ett tag nu, vet inte varför. Känns som en trojan eller någonting som äter minne och prestanda. Mina scanningar hittar dock ingenting, kört Norton 360, Malwarebytes, F-secure online scan.  De hittade nåt virus förut när jag sökte för kanske 2-3månader sen, datorn går fortfarande segt! + att minnesanvändningen känns alldeles för hög.<br />
<br />
Någon som är mer insatt i detta som kan säga vad det är för fel? <br />
<br />
Förövrigt tar det 100 år att få igång datorn, den kommer till att visa skrivbordet relativt snabbt men där står den och nöter ett bra tag. går inte att klicka på något programm etc för den jobbar så hårt.<br />
Ibland blir det även så när den stått på nån timme utan användning. Att växling mellan program osv är gaaalet seg]]></description>
		<pubDate>Sun, 11 Dec 2011 16:08:43 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333441-nagonting-ater-minne-datorn-jatteseg/</guid>
	</item>
	<item>
		<title>Seg dator!</title>
		<link>http://eforum.idg.se/topic/333430-seg-dator/</link>
		<description><![CDATA[Vet inte om det har med datorns hårdvara att göra, eller om det är något virus eller liknande. Skulle någon vänlig själ kunna hjälpa mig? Något virus? Program som behöver updateras? Någonting <img src='http://eforum.idg.se/public/style_emoticons/default/smile.gif' class='bbc_emoticon' alt=':)' /><br />
<div class="bbc_log">
				<input type="button" class="bbc_log_show" value="+" />
				<div class="bbc_log_wrapper">
					<div class="bbc_log_short_content" id="bbc_log_short_content">Logfile of Trend Micro HijackThis v2.0.4</div>
					<div class="bbc_log_content" id="bbc_log_content" style="display:none;">Logfile of Trend Micro HijackThis v2.0.4<br />
Scan saved at 2:20:31 AM, on 12/11/2011<br />
Platform: Windows 7 SP1 (WinNT 6.00.3505)<br />
MSIE: Internet Explorer v8.00 (8.00.7601.17514)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAAnotif.exe<br />
C:&#092;Program Files (x86)&#092;EgisTec&#092;MyWinLocker 3&#092;x86&#092;mwlDaemon.exe<br />
C:&#092;Windows&#092;PLFSetI.exe<br />
C:&#092;Program Files (x86)&#092;Windows Live&#092;Messenger&#092;msnmsgr.exe<br />
C:&#092;Program Files (x86)&#092;Dyyno&#092;Dyyno Broadcaster&#092;dyyno_launcher.exe<br />
C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;BackupManagerTray.exe<br />
C:&#092;Program Files (x86)&#092;EgisTec Egis Software Update&#092;EgisUpdate.exe<br />
C:&#092;Program Files (x86)&#092;OpenOffice.org 3&#092;program&#092;soffice.exe<br />
C:&#092;Program Files (x86)&#092;OpenOffice.org 3&#092;program&#092;soffice.bin<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;rundll32.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;AvastUI.exe<br />
C:&#092;Program Files (x86)&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;Ask.com&#092;Updater&#092;Updater.exe<br />
C:&#092;Program Files (x86)&#092;Windows Live&#092;Contacts&#092;wlcomm.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;CS5.5ServiceManager&#092;CS5.5ServiceManager.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Program Files (x86)&#092;The KMPlayer&#092;KMPlayer.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Program Files (x86)&#092;DVDVideoSoft&#092;Free YouTube Download&#092;FreeYouTubeDownload.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;OOBE&#092;PDApp&#092;UWA&#092;AAM Updates Notifier.exe<br />
C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Chrome&#092;Application&#092;chrome.exe<br />
C:&#092;Program Files (x86)&#092;Trend Micro&#092;HiJackThis&#092;HiJackThis.exe<br />
<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200' class='bbc_url' title='Extern länk' rel='nofollow external'>http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200</a><br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200' class='bbc_url' title='Extern länk' rel='nofollow external'>http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Page_URL = <a href='http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200' class='bbc_url' title='Extern länk' rel='nofollow external'>http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Default_Search_URL = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Search Page = <a href='http://go.microsoft.com/fwlink/?LinkId=54896' class='bbc_url' title='Extern länk' rel='nofollow external'>http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Start Page = <a href='http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200' class='bbc_url' title='Extern länk' rel='nofollow external'>http://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=aspire_5738&r=273611117916l0498z1i5t4481h200</a><br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,SearchAssistant = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Search,CustomizeSearch = <br />
R0 - HKLM&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main,Local Page = C:&#092;Windows&#092;SysWOW64&#092;blank.htm<br />
R1 - HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings,ProxyOverride = *.local<br />
R0 - HKCU&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Toolbar,LinksFolderName = <br />
F2 - REG:system.ini: UserInit=userinit.exe<br />
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveShellExtensions.dll<br />
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;aswWebRepIE.dll<br />
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:&#092;Program Files (x86)&#092;Ask.com&#092;GenericAskToolbar.dll<br />
O2 - BHO: Java&#153; Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;aswWebRepIE.dll<br />
O3 - Toolbar: KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:&#092;Program Files (x86)&#092;Ask.com&#092;GenericAskToolbar.dll<br />
O4 - HKLM&#092;..&#092;Run: [BackupManagerTray] "C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;BackupManagerTray.exe" -h -k<br />
O4 - HKLM&#092;..&#092;Run: [EgisTecLiveUpdate] "C:&#092;Program Files (x86)&#092;EgisTec Egis Software Update&#092;EgisUpdate.exe"<br />
O4 - HKLM&#092;..&#092;Run: [StartCCC] "C:&#092;Program Files (x86)&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CLIStart.exe" MSRun<br />
O4 - HKLM&#092;..&#092;Run: [LManager] C:&#092;Program Files (x86)&#092;Launch Manager&#092;LManager.exe<br />
O4 - HKLM&#092;..&#092;Run: [avast] "C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;avastUI.exe" /nogui<br />
O4 - HKLM&#092;..&#092;Run: [SwitchBoard] C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;SwitchBoard&#092;SwitchBoard.exe<br />
O4 - HKLM&#092;..&#092;Run: [AdobeCS5.5ServiceManager] "C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;CS5.5ServiceManager&#092;CS5.5ServiceManager.exe" -launchedbylogin<br />
O4 - HKLM&#092;..&#092;Run: [APSDaemon] "C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Apple Application Support&#092;APSDaemon.exe"<br />
O4 - HKLM&#092;..&#092;Run: [iTunesHelper] "C:&#092;Program Files (x86)&#092;iTunes&#092;iTunesHelper.exe"<br />
O4 - HKLM&#092;..&#092;Run: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
O4 - HKLM&#092;..&#092;Run: [ApnUpdater] "C:&#092;Program Files (x86)&#092;Ask.com&#092;Updater&#092;Updater.exe"<br />
O4 - HKLM&#092;..&#092;Run: [GrooveMonitor] "C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveMonitor.exe"<br />
O4 - HKCU&#092;..&#092;Run: [Google Update] "C:&#092;Users&#092;Louise&#092;AppData&#092;Local&#092;Google&#092;Update&#092;GoogleUpdate.exe" /c<br />
O4 - HKCU&#092;..&#092;Run: [msnmsgr] "C:&#092;Program Files (x86)&#092;Windows Live&#092;Messenger&#092;msnmsgr.exe" /background<br />
O4 - HKCU&#092;..&#092;Run: [Dyyno Launcher] "C:&#092;Program Files (x86)&#092;Dyyno&#092;Dyyno Broadcaster&#092;dyyno_launcher.exe" 30100 30101 30102 30103 30104<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /autoRun (User 'Lokal tjänst')<br />
O4 - HKUS&#092;S-1-5-19&#092;..&#092;RunOnce: [mctadmin] C:&#092;Windows&#092;System32&#092;mctadmin.exe (User 'Lokal tjänst')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;Run: [Sidebar] %ProgramFiles%&#092;Windows Sidebar&#092;Sidebar.exe /autoRun (User 'Nätverkstjänst')<br />
O4 - HKUS&#092;S-1-5-20&#092;..&#092;RunOnce: [mctadmin] C:&#092;Windows&#092;System32&#092;mctadmin.exe (User 'Nätverkstjänst')<br />
O4 - Startup: OpenOffice.org 3.3.lnk = C:&#092;Program Files (x86)&#092;OpenOffice.org 3&#092;program&#092;quickstart.exe<br />
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;EXCEL.EXE/3000<br />
O8 - Extra context menu item: Free YouTube Download - C:&#092;Users&#092;Louise&#092;AppData&#092;Roaming&#092;DVDVideoSoftIEHelpers&#092;freeyoutubedownload.htm<br />
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:&#092;Users&#092;Louise&#092;AppData&#092;Roaming&#092;DVDVideoSoftIEHelpers&#092;freeyoutubetomp3converter.htm<br />
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;ONBttnIE.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:&#092;PROGRA~2&#092;MICROS~2&#092;Office12&#092;REFIEBAR.DLL<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O10 - Unknown file in Winsock LSP: c:&#092;program files (x86)&#092;common files&#092;microsoft shared&#092;windows live&#092;wlidnsp.dll<br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:&#092;Program Files (x86)&#092;Microsoft Office&#092;Office12&#092;GrooveSystemServices.dll<br />
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll (file missing)<br />
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:&#092;Program Files&#092;LSI SoftModem&#092;agr64svc.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Alg.exe,-112 (ALG) - Unknown owner - C:&#092;Windows&#092;System32&#092;alg.exe (file missing)<br />
O23 - Service: AMD External Events Utility - Unknown owner - C:&#092;Windows&#092;system32&#092;atiesrxx.exe (file missing)<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:&#092;Program Files (x86)&#092;Common Files&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
O23 - Service: avast! Antivirus - AVAST Software - C:&#092;Program Files&#092;AVAST Software&#092;Avast&#092;AvastSvc.exe<br />
O23 - Service: Bonjour Service - Apple Inc. - C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
O23 - Service: Dyyno Service (Dyyno Launcher) - Unknown owner - C:&#092;Program Files (x86)&#092;Dyyno&#092;Dyyno Broadcaster&#092;launcherd.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;efssvc.dll,-100 (EFS) - Unknown owner - C:&#092;Windows&#092;System32&#092;lsass.exe (file missing)<br />
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:&#092;Program Files&#092;Acer&#092;Acer ePower Management&#092;ePowerSvc.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;fxsresm.dll,-118 (Fax) - Unknown owner - C:&#092;Windows&#092;system32&#092;fxssvc.exe (file missing)<br />
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:&#092;Program Files (x86)&#092;Acer&#092;Registration&#092;GregHSRW.exe<br />
O23 - Service: Intel&reg; Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:&#092;Program Files (x86)&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAANTMon.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:&#092;Windows&#092;System32&#092;msdtc.exe (file missing)<br />
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:&#092;Program Files (x86)&#092;EgisTec&#092;MyWinLocker 3&#092;x86&#092;&#092;MWLService.exe<br />
O23 - Service: @%SystemRoot%&#092;System32&#092;netlogon.dll,-102 (Netlogon) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;Acer Backup Manager&#092;IScheduleSvc.exe<br />
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;NTI Backup Now 5&#092;BackupSvc.exe<br />
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:&#092;Program Files (x86)&#092;NewTech Infosystems&#092;NTI Backup Now 5&#092;SchedulerSvc.exe<br />
O23 - Service: @%systemroot%&#092;system32&#092;psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;Locator.exe,-2 (RpcLocator) - Unknown owner - C:&#092;Windows&#092;system32&#092;locator.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;samsrv.dll,-1 (SamSs) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:&#092;Windows&#092;System32&#092;snmptrap.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;spoolsv.exe,-1 (Spooler) - Unknown owner - C:&#092;Windows&#092;System32&#092;spoolsv.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;sppsvc.exe,-101 (sppsvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;sppsvc.exe (file missing)<br />
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;SwitchBoard&#092;SwitchBoard.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:&#092;Windows&#092;system32&#092;UI0Detect.exe (file missing)<br />
O23 - Service: Updater Service - Acer - C:&#092;Program Files&#092;Acer&#092;Acer Updater&#092;UpdaterService.exe<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;lsass.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;vds.exe,-100 (vds) - Unknown owner - C:&#092;Windows&#092;System32&#092;vds.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;vssvc.exe,-102 (VSS) - Unknown owner - C:&#092;Windows&#092;system32&#092;vssvc.exe (file missing)<br />
O23 - Service: @%SystemRoot%&#092;system32&#092;Wat&#092;WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe (file missing)<br />
O23 - Service: @%systemroot%&#092;system32&#092;wbengine.exe,-104 (wbengine) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbengine.exe (file missing)<br />
O23 - Service: @%Systemroot%&#092;system32&#092;wbem&#092;wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:&#092;Windows&#092;system32&#092;wbem&#092;WmiApSrv.exe (file missing)<br />
O23 - Service: @%PROGRAMFILES%&#092;Windows Media Player&#092;wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:&#092;Program Files (x86)&#092;Windows Media Player&#092;wmpnetwk.exe (file missing)<br />
<br />
--<br />
End of file - 12858 bytes<br /></div>
				</div>
			</div>]]></description>
		<pubDate>Sun, 11 Dec 2011 01:20:57 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333430-seg-dator/</guid>
	</item>
	<item>
		<title>Dator som tar lång tid att starta och är seg på det mesta.</title>
		<link>http://eforum.idg.se/topic/333426-dator-som-tar-lang-tid-att-starta-och-ar-seg-pa-det-mesta/</link>
		<description><![CDATA[Har en dator som jag antar har fått ett virus eller liknande i, eftersom den ändrat sig i beteende för ett tag sen. <br />
Nu tar det ca fem minuter innan jag får skriva in mina inloggningsuppgifter efter att jag startat eller startat om datorn och efter det att jag loggat in så tar det ytterligare några minuter innan jag kan t.ex starta program och när jag gör det så laggar allt.<br />
Lyckas inte bifoga 'attach.txt' som en fil.<br />
<br />
Cecilia, var är du? <img src='http://eforum.idg.se/public/style_emoticons/default/wink.gif' class='bbc_emoticon' alt=';)' /><br />
<br />
<br />
DDS (Ver_2011-08-26.01) - NTFSx86 <br />
Internet Explorer: 8.0.6001.18702<br />
Run by Admin at 22:26:46 on 2011-12-10<br />
Microsoft Windows XP Professional  5.1.2600.3.1252.46.1053.18.3326.2675 [GMT 1:00]<br />
.<br />
AV: AntiVir Desktop *Enabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}<br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;WINDOWS&#092;system32&#092;svchost -k DcomLaunch<br />
svchost.exe<br />
C:&#092;WINDOWS&#092;System32&#092;svchost.exe -k netsvcs<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k WudfServiceGroup<br />
svchost.exe<br />
svchost.exe<br />
C:&#092;WINDOWS&#092;system32&#092;spoolsv.exe<br />
C:&#092;Program&#092;Avira&#092;AntiVir Desktop&#092;sched.exe<br />
svchost.exe<br />
C:&#092;Program&#092;Avira&#092;AntiVir Desktop&#092;avguard.exe<br />
C:&#092;Program&#092;Delade filer&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
C:&#092;Program&#092;Avira&#092;AntiVir Desktop&#092;avshadow.exe<br />
C:&#092;Program&#092;Bonjour&#092;mDNSResponder.exe<br />
C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;DatacardService&#092;HWDeviceService.exe<br />
C:&#092;Program&#092;iPod&#092;bin&#092;iPodService.exe<br />
C:&#092;WINDOWS&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;WINDOWS&#092;Explorer.EXE<br />
C:&#092;Program&#092;Avira&#092;AntiVir Desktop&#092;avgnt.exe<br />
C:&#092;WINDOWS&#092;system32&#092;ctfmon.exe<br />
C:&#092;Documents and Settings&#092;Admin&#092;Application Data&#092;Spotify&#092;Spotify.exe<br />
C:&#092;Program&#092;Tele2 Mobile Partner&#092;Tele2 Mobile Partner.exe<br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program&#092;Trend Micro&#092;HiJackThis&#092;HiJackThis.exe<br />
C:&#092;WINDOWS&#092;system32&#092;NOTEPAD.EXE<br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program&#092;Internet Explorer&#092;iexplore.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://www.google.se/<br />
uInternet Settings,ProxyOverride = *.local<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:&#092;program&#092;delade filer&#092;adobe&#092;acrobat&#092;activex&#092;AcroIEHelperShim.dll<br />
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File<br />
uRun: [ctfmon.exe] c:&#092;windows&#092;system32&#092;ctfmon.exe<br />
uRun: [Spotify] "c:&#092;documents and settings&#092;admin&#092;application data&#092;spotify&#092;Spotify.exe" /uri spotify:autostart<br />
mRun: [QuickTime Task] "c:&#092;program&#092;quicktime&#092;qttask.exe" -atboottime<br />
mRun: [avgnt] "c:&#092;program&#092;avira&#092;antivir desktop&#092;avgnt.exe" /min<br />
dRun: [CTFMON.EXE] c:&#092;windows&#092;system32&#092;CTFMON.EXE<br />
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%&#092;Network Diagnostic&#092;xpnetdiag.exe<br />
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:&#092;program&#092;messenger&#092;msmsgs.exe<br />
DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} - hxxp://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab<br />
DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} - hxxp://60.248.39.151:1025/RtspVaPgDec.cab<br />
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1270171563500<br />
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab<br />
TCP: DhcpNameServer = 130.244.127.161 130.244.127.169<br />
TCP: Interfaces&#092;{AF743218-FC87-42F4-A78B-96A05340E038} : DhcpNameServer = 130.244.127.161 130.244.127.169<br />
Notify: AtiExtEvent - Ati2evxx.dll<br />
Notify: LBTWlgn - c:&#092;program&#092;delade filer&#092;logishrd&#092;bluetooth&#092;LBTWlgn.dll<br />
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:&#092;windows&#092;system32&#092;WPDShServiceObj.dll<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R1 avgio;avgio;c:&#092;program&#092;avira&#092;antivir desktop&#092;avgio.sys [2010-4-28 11608]<br />
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:&#092;program&#092;avira&#092;antivir desktop&#092;sched.exe [2010-4-28 136360]<br />
R2 AntiVirService;Avira AntiVir Guard;c:&#092;program&#092;avira&#092;antivir desktop&#092;avguard.exe [2010-4-28 269480]<br />
R2 avgntflt;avgntflt;c:&#092;windows&#092;system32&#092;drivers&#092;avgntflt.sys [2010-4-28 66616]<br />
R2 HWDeviceService.exe;HWDeviceService.exe;c:&#092;documents and settings&#092;all users&#092;application data&#092;datacardservice&#092;HWDeviceService.exe [2011-3-14 271712]<br />
R2 LBeepKE;Logitech Beep Suppression Driver;c:&#092;windows&#092;system32&#092;drivers&#092;LBeepKE.sys [2010-8-17 10448]<br />
R3 ew_usbenumfilter;huawei_CompositeFilter;c:&#092;windows&#092;system32&#092;drivers&#092;ew_usbenumfilter.sys [2011-11-27 11136]<br />
R3 ewusbnet;HUAWEI USB-NDIS miniport;c:&#092;windows&#092;system32&#092;drivers&#092;ewusbnet.sys [2011-11-27 239104]<br />
R3 huawei_enumerator;huawei_enumerator;c:&#092;windows&#092;system32&#092;drivers&#092;ew_jubusenum.sys [2011-11-27 73984]<br />
R3 seehcri;Sony Ericsson seehcri Device Driver;c:&#092;windows&#092;system32&#092;drivers&#092;seehcri.sys [2010-4-2 27632]<br />
S2 Tele2 Mobile Partner. RunOuc;Tele2 Mobile Partner. OUC;c:&#092;program&#092;tele2 mobile partner&#092;updatedog&#092;ouc.exe [2011-11-27 655712]<br />
S3 Ambfilt;Ambfilt;c:&#092;windows&#092;system32&#092;drivers&#092;Ambfilt.sys [2010-4-1 1684736]<br />
S3 DrvAgent32;DrvAgent32;c:&#092;windows&#092;system32&#092;drivers&#092;DrvAgent32.sys [2010-8-17 23456]<br />
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:&#092;windows&#092;system32&#092;drivers&#092;ew_hwusbdev.sys [2011-11-27 102784]<br />
S3 ggflt;SEMC USB Flash Driver Filter;c:&#092;windows&#092;system32&#092;drivers&#092;ggflt.sys [2010-5-9 13224]<br />
S3 MBAMProtector;MBAMProtector;c:&#092;windows&#092;system32&#092;drivers&#092;mbam.sys [2010-4-2 22216]<br />
S4 MBAMService;MBAMService;c:&#092;program&#092;malwarebytes' anti-malware&#092;mbamservice.exe [2010-4-2 366152]<br />
S4 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:&#092;program&#092;sony ericsson&#092;sony ericsson pc companion&#092;PCCService.exe [2011-11-18 155344]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2011-12-10 20:59:11	388096	----a-r-	c:&#092;documents and settings&#092;admin&#092;application data&#092;microsoft&#092;installer&#092;{45a66726-69bc-466b-a7a4-12fcba4883d7}&#092;HiJackThis.exe<br />
2011-12-10 20:59:06	--------	d-----w-	c:&#092;program&#092;Trend Micro<br />
2011-12-08 19:56:07	--------	d-----w-	c:&#092;program&#092;delade filer&#092;Symantec Shared<br />
2011-12-08 19:55:22	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;nss&#092;0306010.00B<br />
2011-12-08 19:55:22	--------	d-----w-	c:&#092;windows&#092;system32&#092;drivers&#092;NSS<br />
2011-12-08 19:55:22	--------	d-----w-	c:&#092;program&#092;Norton Security Scan<br />
2011-12-08 19:55:20	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;Norton<br />
2011-12-08 19:55:00	--------	d-----w-	c:&#092;program&#092;NortonInstaller<br />
2011-12-08 19:55:00	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;NortonInstaller<br />
2011-12-03 08:17:56	--------	d--h--w-	c:&#092;windows&#092;PIF<br />
2011-11-27 21:43:03	89856	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_jucdcacm.sys<br />
2011-11-27 21:43:03	66688	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_jucdcecm.sys<br />
2011-11-27 21:43:03	26624	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_juextctrl.sys<br />
2011-11-27 21:43:00	861696	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;mod7700.sys<br />
2011-11-27 21:43:00	73984	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_jubusenum.sys<br />
2011-11-27 21:43:00	28672	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;usbccid.sys<br />
2011-11-27 21:43:00	25856	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ewdcsc.sys<br />
2011-11-27 21:43:00	239104	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ewusbnet.sys<br />
2011-11-27 21:43:00	195200	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ewusbmdm.sys<br />
2011-11-27 21:43:00	19200	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_hwupgrade.sys<br />
2011-11-27 21:43:00	11136	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_usbenumfilter.sys<br />
2011-11-27 21:43:00	102784	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;ew_hwusbdev.sys<br />
2011-11-22 17:35:17	--------	d-----w-	c:&#092;documents and settings&#092;admin&#092;application data&#092;Spotify<br />
2011-11-19 09:28:59	--------	d-sh--w-	c:&#092;documents and settings&#092;admin&#092;IECompatCache<br />
2011-11-19 09:28:38	--------	d-sh--w-	c:&#092;documents and settings&#092;admin&#092;PrivacIE<br />
2011-11-19 09:02:59	--------	d-sh--w-	c:&#092;documents and settings&#092;admin&#092;IETldCache<br />
2011-11-19 07:56:44	--------	d-----w-	c:&#092;windows&#092;ie8updates<br />
2011-11-19 07:40:20	--------	dc-h--w-	c:&#092;windows&#092;ie8<br />
2011-11-19 07:36:35	6144	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;iecompat.dll<br />
2011-11-19 07:34:27	743424	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;iedvtool.dll<br />
2011-11-19 07:34:27	247808	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;ieproxy.dll<br />
2011-11-19 07:34:27	12800	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;xpshims.dll<br />
2011-11-19 06:56:47	--------	d-----w-	c:&#092;program&#092;VS Revo Group<br />
2011-11-18 21:43:48	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin7.dll<br />
2011-11-18 21:43:48	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin6.dll<br />
2011-11-18 21:43:47	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin5.dll<br />
2011-11-18 21:43:47	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin4.dll<br />
2011-11-18 21:43:47	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin3.dll<br />
2011-11-18 21:43:47	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin2.dll<br />
2011-11-18 21:43:47	159744	----a-w-	c:&#092;program&#092;internet explorer&#092;plugins&#092;npqtplugin.dll<br />
2011-11-18 21:28:36	--------	d-----w-	c:&#092;program&#092;iPod<br />
2011-11-18 21:28:03	--------	d-----w-	c:&#092;program&#092;iTunes<br />
2011-11-18 21:15:14	--------	d-----w-	c:&#092;program&#092;Bonjour<br />
2011-11-18 19:44:06	--------	d-----w-	c:&#092;windows&#092;pss<br />
2011-11-18 18:14:47	414368	----a-w-	c:&#092;windows&#092;system32&#092;FlashPlayerCPLApp.cpl<br />
2011-11-18 03:15:12	953856	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;mfc40u.dll<br />
2011-11-18 03:12:19	617472	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;comctl32.dll<br />
2011-11-18 03:09:07	40960	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;ndproxy.sys<br />
2011-11-18 03:05:28	139656	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;rdpwd.sys<br />
2011-11-18 03:05:22	105472	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;mup.sys<br />
2011-11-18 02:59:34	10496	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;ndistapi.sys<br />
2011-11-18 02:55:34	45568	-c----w-	c:&#092;windows&#092;system32&#092;dllcache&#092;wab.exe<br />
2011-11-17 21:46:01	--------	d-----w-	c:&#092;program&#092;Avanquest update<br />
2011-11-17 21:45:52	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;Avanquest<br />
2011-11-17 20:20:41	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;Tele2 Mobile Partner<br />
2011-11-17 20:19:45	1112288	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;WdfCoInstaller01007.dll<br />
2011-11-17 20:17:18	--------	d-----w-	c:&#092;program&#092;Tele2 Mobile Partner<br />
2011-11-17 19:30:59	--------	d-----w-	c:&#092;documents and settings&#092;all users&#092;application data&#092;DatacardService<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-11-27 21:40:59	1112288	----a-w-	c:&#092;windows&#092;system32&#092;wdfcoinstaller01007.dll<br />
2011-11-18 18:09:13	16400	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;LNonPnP.sys<br />
2011-11-17 21:49:43	66616	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;avgntflt.sys<br />
2011-10-24 13:29:02	94208	----a-w-	c:&#092;windows&#092;system32&#092;QuickTimeVR.qtx<br />
2011-10-24 13:29:02	69632	----a-w-	c:&#092;windows&#092;system32&#092;QuickTime.qts<br />
2011-10-10 14:22:54	692736	----a-w-	c:&#092;windows&#092;system32&#092;inetcomm.dll<br />
2011-09-28 07:06:45	602112	----a-w-	c:&#092;windows&#092;system32&#092;crypt32.dll<br />
2011-09-26 10:41:40	612352	----a-w-	c:&#092;windows&#092;system32&#092;uiautomationcore.dll<br />
2011-09-26 10:41:40	20480	----a-w-	c:&#092;windows&#092;system32&#092;oleaccrc.dll<br />
2011-09-26 10:41:20	220160	----a-w-	c:&#092;windows&#092;system32&#092;oleacc.dll<br />
2010-11-21 10:14:50	568648	----a-w-	c:&#092;program&#092;GoogleEarthSetup.exe<br />
.<br />
============= FINISH: 22:29:00,06 ===============]]></description>
		<pubDate>Sat, 10 Dec 2011 22:43:22 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333426-dator-som-tar-lang-tid-att-starta-och-ar-seg-pa-det-mesta/</guid>
	</item>
	<item>
		<title>PRIVACY PROTECTION!</title>
		<link>http://eforum.idg.se/topic/333403-privacy-protection/</link>
		<description><![CDATA[Hej!<br />
<br />
jag behöver akut hjälp. <br />
skulle ladda ner ett mod till call of duty mw2 (det var ej något cheat) sedan så scannade jag filen. Men NEJ det hjälpte inte så nu har privacy protection angripit min dator. Inget program går att gå in på. Är privacy protection ett fake program?? skannade tills det stog något likande ''97threaths found'' Jag har testat att lägga över olika program till usb minne men dom går inte att öppna. När jag t ex ska öppna f-secure eller något annat program så står det ''programmets namn''.exe  could not open<br />
<br />
Vad skall jag göra??. Hjälp!!]]></description>
		<pubDate>Fri, 09 Dec 2011 21:47:18 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333403-privacy-protection/</guid>
	</item>
	<item>
		<title><![CDATA[Facebook &#34;IQ test 2011&#34; Virus !]]></title>
		<link>http://eforum.idg.se/topic/333392-facebook-iq-test-2011-virus/</link>
		<description><![CDATA[Hej nu är jag jätteorolig för att jag har fått nåt.<br />
<br />
Igår tog jag ett IQ test på Facebook, och fick sedan höra att det är virus som kapar allt! <br />
<br />
Skulle någon kunna vara så snäll och titta om jag har fått nåt??<br />
<br />
Här är DDS :<br />
<div class="bbc_log">
				<input type="button" class="bbc_log_show" value="+" />
				<div class="bbc_log_wrapper">
					<div class="bbc_log_short_content" id="bbc_log_short_content">.</div>
					<div class="bbc_log_content" id="bbc_log_content" style="display:none;">.<br />
DDS (Ver_2011-08-26.01) - NTFSx86 <br />
Internet Explorer: 8.0.6001.19154  BrowserJavaVersion: 1.6.0_25<br />
Run by Paula at 11:16:25 on 2011-12-09<br />
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.46.1053.18.2046.718 [GMT 1:00]<br />
.<br />
AV: avast! Antivirus *Enabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308}<br />
SP: avast! Antivirus *Enabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}<br />
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Windows&#092;system32&#092;wininit.exe<br />
C:&#092;Windows&#092;system32&#092;lsm.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k DcomLaunch<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k rpcss<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k secsvcs<br />
C:&#092;Windows&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalServiceNetworkRestricted<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalSystemNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k netsvcs<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k GPSvcGroup<br />
C:&#092;Windows&#092;system32&#092;SLsvc.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Windows&#092;system32&#092;Ati2evxx.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkService<br />
C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastSvc.exe<br />
C:&#092;Windows&#092;System32&#092;spoolsv.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceNoNetwork<br />
C:&#092;Program Files&#092;Common Files&#092;Apple&#092;Mobile Device Support&#092;AppleMobileDeviceService.exe<br />
C:&#092;Program Files&#092;Bonjour&#092;mDNSResponder.exe<br />
C:&#092;Windows&#092;Microsoft.Net&#092;Framework&#092;v3.0&#092;WPF&#092;PresentationFontCache.exe<br />
C:&#092;Program Files&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAANTMon.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkServiceNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSVC.EXE<br />
C:&#092;Windows&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSvcM.exe<br />
C:&#092;Windows&#092;system32&#092;WUDFHost.exe<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Program Files&#092;Windows Defender&#092;MSASCui.exe<br />
C:&#092;Program Files&#092;TOSHIBA&#092;Utilities&#092;KeNotify.exe<br />
C:&#092;Program Files&#092;Windows Media Player&#092;wmpnscfg.exe<br />
C:&#092;Windows&#092;RtHDVCpl.exe<br />
C:&#092;Program Files&#092;Camera Assistant Software for Toshiba&#092;traybar.exe<br />
C:&#092;Program Files&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;MOM.EXE<br />
C:&#092;Windows&#092;system32&#092;wuauclt.exe<br />
C:&#092;Program Files&#092;Windows Media Player&#092;wmpnetwk.exe<br />
C:&#092;Program Files&#092;Camera Assistant Software for Toshiba&#092;CEC_MAIN.exe<br />
C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynTPEnh.exe<br />
C:&#092;Program Files&#092;Synaptics&#092;SynTP&#092;SynToshiba.exe<br />
C:&#092;Program Files&#092;TOSHIBA&#092;Registration&#092;ToshibaRegistration.exe<br />
C:&#092;Program Files&#092;Intel&#092;Intel Matrix Storage Manager&#092;IAAnotif.exe<br />
C:&#092;Program Files&#092;Alwil Software&#092;Avast5&#092;AvastUI.exe<br />
C:&#092;Program Files&#092;Microsoft Office&#092;Office12&#092;GrooveMonitor.exe<br />
C:&#092;Program Files&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files&#092;iTunes&#092;iTunesHelper.exe<br />
C:&#092;Program Files&#092;Windows Sidebar&#092;sidebar.exe<br />
C:&#092;Program Files&#092;TOSHIBA&#092;TOSCDSPD&#092;TOSCDSPD.exe<br />
C:&#092;Program Files&#092;Personal&#092;bin&#092;Personal.exe<br />
C:&#092;Program Files&#092;iPod&#092;bin&#092;iPodService.exe<br />
C:&#092;Program Files&#092;ATI Technologies&#092;ATI.ACE&#092;Core-Static&#092;CCC.exe<br />
C:&#092;Program Files&#092;Mozilla Firefox&#092;firefox.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceAndNoImpersonation<br />
C:&#092;Program Files&#092;Mozilla Firefox&#092;plugin-container.exe<br />
C:&#092;Windows&#092;system32&#092;SearchProtocolHost.exe<br />
C:&#092;Windows&#092;system32&#092;SearchFilterHost.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;system32&#092;conime.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uInternet Settings,ProxyOverride = *.local<br />
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:&#092;program files&#092;adobe&#092;acrobat 7.0&#092;activex&#092;AcroIEHelper.dll<br />
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:&#092;program files&#092;microsoft office&#092;office12&#092;GrooveShellExtensions.dll<br />
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:&#092;program files&#092;common files&#092;microsoft shared&#092;windows live&#092;WindowsLiveLogin.dll<br />
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:&#092;program files&#092;skype&#092;toolbars&#092;internet explorer&#092;skypeieplugin.dll<br />
BHO: Java&#153; Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:&#092;program files&#092;java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
uRun: [Sidebar] c:&#092;program files&#092;windows sidebar&#092;sidebar.exe /autoRun<br />
uRun: [TOSCDSPD] c:&#092;program files&#092;toshiba&#092;toscdspd&#092;TOSCDSPD.exe<br />
uRun: [Google Update] "c:&#092;users&#092;paula&#092;appdata&#092;local&#092;google&#092;update&#092;GoogleUpdate.exe" /c<br />
uRun: [msnmsgr] "c:&#092;program files&#092;windows live&#092;messenger&#092;msnmsgr.exe" /background<br />
uRun: [Spotify] "c:&#092;users&#092;paula&#092;appdata&#092;roaming&#092;spotify&#092;Spotify.exe" /uri spotify:autostart<br />
mRun: [Windows Defender] %ProgramFiles%&#092;Windows Defender&#092;MSASCui.exe -hide<br />
mRun: [KeNotify] c:&#092;program files&#092;toshiba&#092;utilities&#092;KeNotify.exe<br />
mRun: [SVPWUTIL] c:&#092;program files&#092;toshiba&#092;utilities&#092;SVPWUTIL.exe SVPwUTIL<br />
mRun: [RtHDVCpl] RtHDVCpl.exe<br />
mRun: [StartCCC] c:&#092;program files&#092;ati technologies&#092;ati.ace&#092;core-static&#092;CLIStart.exe<br />
mRun: [Camera Assistant Software] "c:&#092;program files&#092;camera assistant software for toshiba&#092;traybar.exe"<br />
mRun: [SynTPEnh] c:&#092;program files&#092;synaptics&#092;syntp&#092;SynTPEnh.exe<br />
mRun: [Toshiba Registration] c:&#092;program files&#092;toshiba&#092;registration&#092;ToshibaRegistration.exe<br />
mRun: [IAAnotif] c:&#092;program files&#092;intel&#092;intel matrix storage manager&#092;iaanotif.exe<br />
mRun: [avast5] "c:&#092;program files&#092;alwil software&#092;avast5&#092;avastUI.exe" /nogui<br />
mRun: [GrooveMonitor] "c:&#092;program files&#092;microsoft office&#092;office12&#092;GrooveMonitor.exe"<br />
mRun: [SunJavaUpdateSched] "c:&#092;program files&#092;common files&#092;java&#092;java update&#092;jusched.exe"<br />
mRun: [QuickTime Task] "c:&#092;program files&#092;quicktime&#092;QTTask.exe" -atboottime<br />
mRun: [iTunesHelper] "c:&#092;program files&#092;itunes&#092;iTunesHelper.exe"<br />
mRun: [Skytel] Skytel.exe<br />
StartupFolder: c:&#092;progra~2&#092;micros~1&#092;windows&#092;startm~1&#092;programs&#092;startup&#092;bankid~1.lnk - c:&#092;program files&#092;personal&#092;bin&#092;Personal.exe<br />
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)<br />
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)<br />
IE: E&xport to Microsoft Excel - c:&#092;progra~1&#092;micros~2&#092;office12&#092;EXCEL.EXE/3000<br />
IE: {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - <a href='http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?SW' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?SW</a><br />
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:&#092;progra~1&#092;micros~2&#092;office12&#092;ONBttnIE.dll<br />
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:&#092;program files&#092;skype&#092;toolbars&#092;internet explorer&#092;skypeieplugin.dll<br />
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:&#092;progra~1&#092;micros~2&#092;office12&#092;REFIEBAR.DLL<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab<br />
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab<br />
TCP: DhcpNameServer = 193.150.193.150 83.255.245.11<br />
TCP: Interfaces&#092;{15E9DD37-560A-46F4-B40A-33CAF1E55DC3} : DhcpNameServer = 193.150.193.150 83.255.245.11<br />
TCP: Interfaces&#092;{A7147A3D-82D6-481C-AA2A-1A83E3E2718D} : DhcpNameServer = 193.150.193.150 83.255.245.11<br />
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:&#092;program files&#092;microsoft office&#092;office12&#092;GrooveSystemServices.dll<br />
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:&#092;program files&#092;skype&#092;toolbars&#092;internet explorer&#092;skypeieplugin.dll<br />
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:&#092;progra~1&#092;common~1&#092;skype&#092;SKYPE4~1.DLL<br />
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:&#092;program files&#092;microsoft office&#092;office12&#092;GrooveShellExtensions.dll<br />
.<br />
================= FIREFOX ===================<br />
.<br />
FF - ProfilePath - c:&#092;users&#092;paula&#092;appdata&#092;roaming&#092;mozilla&#092;firefox&#092;profiles&#092;y84dp9zl.default&#092;<br />
FF - prefs.js: browser.startup.homepage - www.google.se<br />
FF - component: c:&#092;program files&#092;mozilla firefox&#092;extensions&#092;{ab2ce124-6272-4b12-94a9-7303c7397bd1}&#092;components&#092;SkypeFfComponent.dll<br />
FF - plugin: c:&#092;program files&#092;google&#092;google earth&#092;plugin&#092;npgeplugin.dll<br />
FF - plugin: c:&#092;program files&#092;google&#092;update&#092;1.3.21.57&#092;npGoogleUpdate3.dll<br />
FF - plugin: c:&#092;program files&#092;google&#092;update&#092;1.3.21.65&#092;npGoogleUpdate3.dll<br />
FF - plugin: c:&#092;program files&#092;google&#092;update&#092;1.3.21.69&#092;npGoogleUpdate3.dll<br />
FF - plugin: c:&#092;program files&#092;google&#092;update&#092;1.3.21.79&#092;npGoogleUpdate3.dll<br />
FF - plugin: c:&#092;program files&#092;java&#092;jre6&#092;bin&#092;new_plugin&#092;npdeployJava1.dll<br />
FF - plugin: c:&#092;program files&#092;microsoft silverlight&#092;4.0.60831.0&#092;npctrlui.dll<br />
FF - plugin: c:&#092;program files&#092;mozilla firefox&#092;plugins&#092;npdeployJava1.dll<br />
FF - plugin: c:&#092;program files&#092;personal&#092;bin&#092;np_prsnl.dll<br />
FF - plugin: c:&#092;users&#092;paula&#092;appdata&#092;local&#092;google&#092;update&#092;1.3.21.79&#092;npGoogleUpdate3.dll<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R0 CplIR;Embedded IR Driver;c:&#092;windows&#092;system32&#092;drivers&#092;CplIR.sys [2007-3-6 14848]<br />
R1 aswSP;aswSP;c:&#092;windows&#092;system32&#092;drivers&#092;aswSP.sys [2011-1-4 294608]<br />
R2 aswFsBlk;aswFsBlk;c:&#092;windows&#092;system32&#092;drivers&#092;aswFsBlk.sys [2011-1-4 17744]<br />
R2 aswMonFlt;aswMonFlt;c:&#092;windows&#092;system32&#092;drivers&#092;aswMonFlt.sys [2011-1-4 51280]<br />
R2 avast! Antivirus;avast! Antivirus;c:&#092;program files&#092;alwil software&#092;avast5&#092;AvastSvc.exe [2011-2-3 40384]<br />
R3 FontCache;Windows Font Cache Service;c:&#092;windows&#092;system32&#092;svchost.exe -k LocalServiceAndNoImpersonation [2011-4-6 21504]<br />
S2 gupdate;Tjänsten Google Update (gupdate);c:&#092;program files&#092;google&#092;update&#092;GoogleUpdate.exe [2011-7-20 136176]<br />
S3 gupdatem;Tjänsten Google Update (gupdatem);c:&#092;program files&#092;google&#092;update&#092;GoogleUpdate.exe [2011-7-20 136176]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2011-12-08 08:30:11	56200	----a-w-	c:&#092;programdata&#092;microsoft&#092;windows defender&#092;definition updates&#092;{58541eb6-ac55-4cf8-bc9c-de239761a4e3}&#092;offreg.dll<br />
2011-12-08 08:30:07	6823496	----a-w-	c:&#092;programdata&#092;microsoft&#092;windows defender&#092;definition updates&#092;{58541eb6-ac55-4cf8-bc9c-de239761a4e3}&#092;mpengine.dll<br />
2011-12-04 22:05:08	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{25754E04-B074-4194-A6AD-8DB6EB825325}<br />
2011-12-04 22:04:48	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{F5F59AC3-26FC-4C75-BC95-A8E3224A26B9}<br />
2011-12-02 00:06:56	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{65E0F6CB-E436-45B5-A98E-43944A2D5634}<br />
2011-12-02 00:06:32	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{18C4D045-C37D-4FE1-A944-07ED76A5E327}<br />
2011-11-30 00:55:42	414368	----a-w-	c:&#092;windows&#092;system32&#092;FlashPlayerCPLApp.cpl<br />
2011-11-13 13:31:20	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{36BB6C0D-B0C4-4F21-AFD2-49BC64B38B32}<br />
2011-11-13 13:30:59	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{6DE9A3F5-E282-4163-BFFE-0B0A0A341A6C}<br />
2011-11-10 09:25:53	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{60214215-39D3-46C4-9642-E248EB1090B6}<br />
2011-11-10 09:25:29	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;{FC65EA95-D95A-49E0-9A5D-22784DE208A0}<br />
2011-11-09 19:32:02	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;local&#092;Spotify<br />
2011-11-09 19:31:55	--------	d-----w-	c:&#092;users&#092;paula&#092;appdata&#092;roaming&#092;Spotify<br />
2011-11-09 13:22:20	905088	----a-w-	c:&#092;windows&#092;system32&#092;drivers&#092;tcpip.sys<br />
2011-11-09 13:22:18	707584	----a-w-	c:&#092;program files&#092;common files&#092;system&#092;wab32.dll<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-12-04 22:01:38	142124	----a-w-	c:&#092;windows&#092;DUMP45b6.tmp<br />
2011-09-30 23:06:24	916480	----a-w-	c:&#092;windows&#092;system32&#092;wininet.dll<br />
2011-09-30 23:02:06	43520	----a-w-	c:&#092;windows&#092;system32&#092;licmgr10.dll<br />
2011-09-30 23:01:51	1469440	----a-w-	c:&#092;windows&#092;system32&#092;inetcpl.cpl<br />
2011-09-30 23:01:34	71680	----a-w-	c:&#092;windows&#092;system32&#092;iesetup.dll<br />
2011-09-30 23:01:34	109056	----a-w-	c:&#092;windows&#092;system32&#092;iesysprep.dll<br />
2011-09-30 22:07:25	385024	----a-w-	c:&#092;windows&#092;system32&#092;html.iec<br />
2011-09-30 21:29:54	133632	----a-w-	c:&#092;windows&#092;system32&#092;ieUnatt.exe<br />
2011-09-30 21:28:36	1638912	----a-w-	c:&#092;windows&#092;system32&#092;mshtml.tlb<br />
.<br />
============= FINISH: 11:17:37,01 ===============</div>
				</div>
			</div>]]></description>
		<pubDate>Fri, 09 Dec 2011 10:26:15 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333392-facebook-iq-test-2011-virus/</guid>
	</item>
	<item>
		<title>Säkerhet angående lösenord</title>
		<link>http://eforum.idg.se/topic/333351-sakerhet-angaende-losenord/</link>
		<description><![CDATA[Hej.<br />
<br />
Jag har en fråga angående säkerhet etc. Om jag t.ex använder en unik epostadress för detta forumet, men sedan t.ex. registrerar mig på ett annat forum, med en helt annan epostadadress, och ett helt annat logg in, fast med samma lösenord, hur stor är chansen då att om den ena sidan blir hackad, och mitt lösenord blir kapat, att nån skulle kunna ta sig in på den andra sidan med hjälp av det?<br />
<br />
Tacksam för svar...]]></description>
		<pubDate>Wed, 07 Dec 2011 10:57:41 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333351-sakerhet-angaende-losenord/</guid>
	</item>
	<item>
		<title>Säkerhetsproblem?</title>
		<link>http://eforum.idg.se/topic/333350-sakerhetsproblem/</link>
		<description><![CDATA[För någon månad sedan fick en vän låna min stationära dator en halvdag för att testa ett hemmagjort program. Jag vet vad det är för program. Inga problem där. Efter några dagar började dock mitt Noron 360 och min Outlook bråka. Nortonraden ville inte komma fram i Outlook. För att lösa det enkelt avinstallerade jag Norton och återinstallerade därefter. Resultatet blev till synes perfekt. <br />
<br />
Datorn är mindre än ett år gammal. Den har både före och efter "testet" gått alldeles utmärkt. Men, jag kan inte släppa min misstänksamhet. Kan något olämpligt ha "följt med" in i datorns mjukvara vid testet? <br />
<br />
Jag skulle uppskatta mycket om någon kunnig (Cecilia!) kunde ta en titt på bifogat DDS-resultat. <br />
<br />
.<br />
DDS (Ver_2011-08-26.01) - NTFSAMD64 <br />
Internet Explorer: 9.0.8112.16421<br />
Run by Ulf at 11:11:12 on 2011-12-07<br />
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.46.1053.18.6071.4534 [GMT 1:00]<br />
.<br />
AV: Norton 360 *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}<br />
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br />
SP: Norton 360 *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}<br />
FW: Norton 360 *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}<br />
.<br />
============== Running Processes ===============<br />
.<br />
C:&#092;Windows&#092;system32&#092;wininit.exe<br />
C:&#092;Windows&#092;system32&#092;lsm.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k DcomLaunch<br />
C:&#092;Windows&#092;system32&#092;nvvsvc.exe<br />
C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k RPCSS<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalServiceNetworkRestricted<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k LocalSystemNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k netsvcs<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalService<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkService<br />
C:&#092;Program Files&#092;NVIDIA Corporation&#092;Display&#092;nvxdsync.exe<br />
C:&#092;Windows&#092;system32&#092;nvvsvc.exe<br />
C:&#092;Windows&#092;System32&#092;spoolsv.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceAndNoImpersonation<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k LocalServiceNoNetwork<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;armsvc.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;AsHookDevice.exe<br />
C:&#092;Program Files (x86)&#092;Canon&#092;IJPLM&#092;IJPLMSVC.EXE<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;LMS&#092;LMS.exe<br />
C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Nero&#092;Nero BackItUp 4&#092;NBService.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k HPZ12<br />
C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Suite&#092;SupServ.exe<br />
C:&#092;Windows&#092;System32&#092;svchost.exe -k HPZ12<br />
C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;SeaPort&#092;SeaPort.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k imgsvc<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSVC.EXE<br />
C:&#092;Program Files&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WLIDSvcM.exe<br />
C:&#092;Windows&#092;system32&#092;svchost.exe -k NetworkServiceNetworkRestricted<br />
C:&#092;Windows&#092;system32&#092;SearchIndexer.exe<br />
C:&#092;Windows&#092;system32&#092;taskhost.exe<br />
C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe<br />
C:&#092;Windows&#092;system32&#092;Dwm.exe<br />
C:&#092;Windows&#092;system32&#092;taskeng.exe<br />
C:&#092;Windows&#092;Explorer.EXE<br />
C:&#092;Program Files (x86)&#092;ASUS&#092;EPU-4 Engine&#092;FourEngine.exe<br />
C:&#092;Program Files&#092;Realtek&#092;Audio&#092;HDA&#092;RAVCpl64.exe<br />
C:&#092;Program Files&#092;LTONHIS&#092;Touch Manager&#092;SKDaemon.exe<br />
C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe<br />
C:&#092;Program Files (x86)&#092;Real&#092;RealPlayer&#092;Update&#092;realsched.exe<br />
C:&#092;Program Files&#092;NVIDIA Corporation&#092;Display&#092;nvtray.exe<br />
C:&#092;Program Files&#092;Windows Media Player&#092;wmpnetwk.exe<br />
C:&#092;Program Files (x86)&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Program Files (x86)&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;Macromed&#092;Flash&#092;FlashUtil11e_ActiveX.exe<br />
C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;NVIDIA Updatus&#092;daemonu.exe<br />
C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;UNS&#092;UNS.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
C:&#092;Program Files (x86)&#092;Internet Explorer&#092;iexplore.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;system32&#092;DllHost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cmd.exe<br />
C:&#092;Windows&#092;system32&#092;conhost.exe<br />
C:&#092;Windows&#092;SysWOW64&#092;cscript.exe<br />
C:&#092;Windows&#092;system32&#092;wbem&#092;wmiprvse.exe<br />
.<br />
============== Pseudo HJT Report ===============<br />
.<br />
uStart Page = hxxp://svd.se/<br />
mWinlogon: Userinit=userinit.exe,<br />
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;Acrobat&#092;ActiveX&#092;AcroIEHelperShim.dll<br />
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:&#092;ProgramData&#092;Real&#092;RealPlayer&#092;BrowserRecordPlugin&#092;IE&#092;rpbrowserrecordplugin.dll<br />
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;coIEPlg.dll<br />
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;IPS&#092;IPSBHO.DLL<br />
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:&#092;Program Files (x86)&#092;Microsoft&#092;Search Enhancement Pack&#092;Search Helper&#092;SEPsearchhelperie.dll<br />
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:&#092;Program Files (x86)&#092;Common Files&#092;Microsoft Shared&#092;Windows Live&#092;WindowsLiveLogin.dll<br />
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:&#092;Program Files (x86)&#092;Java&#092;jre6&#092;bin&#092;jp2ssv.dll<br />
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;coIEPlg.dll<br />
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File<br />
uRun: [RESTART_STICKY_NOTES] C:&#092;Windows&#092;System32&#092;StikyNot.exe<br />
mRun: [RunAIShell] C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
mRun: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
mRun: [TkBellExe] "c:&#092;program files (x86)&#092;real&#092;realplayer&#092;Update&#092;realsched.exe" -osboot<br />
mPolicies-explorer: NoActiveDesktop = 1 (0x1)<br />
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)<br />
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)<br />
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)<br />
IE: E&xportera till Microsoft Excel - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;EXCEL.EXE/3000<br />
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Writer&#092;WriterBrowserExtension.dll<br />
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:&#092;PROGRA~2&#092;MICROS~1&#092;Office12&#092;REFIEBAR.DLL<br />
Trusted Zone: skatteverket.se<br />
Trusted Zone: transportstyrelsen.se<br />
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab<br />
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab<br />
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab<br />
DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} - hxxp://quickscan.bitdefender.com/qsax/qsax.cab<br />
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab<br />
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab<br />
TCP: DhcpNameServer = 195.54.122.198 195.54.122.199<br />
TCP: Interfaces&#092;{855FC6ED-6AD4-47DC-83EE-94A2DCB530EE} : DhcpNameServer = 195.54.122.198 195.54.122.199<br />
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:&#092;Program Files (x86)&#092;Skype&#092;Toolbars&#092;Internet Explorer&#092;skypeieplugin.dll<br />
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:&#092;Program Files (x86)&#092;Windows Live&#092;Photo Gallery&#092;AlbumDownloadProtocolHandler.dll<br />
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}<br />
{3049C3E9-B461-4BC5-8870-4C09146192CA}<br />
{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}<br />
{6D53EC84-6AAE-4787-AEEE-F4628F01010C}<br />
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}<br />
{9030D464-4C02-4ABF-8ECC-5164760863C6}<br />
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}<br />
{DBC80044-A445-435b-BC74-9C25C1C588A9}<br />
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}<br />
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File<br />
mRun-x64: [RunAIShell] C:&#092;Program Files (x86)&#092;ASUS&#092;AI Manager&#092;AsShellApplication.exe<br />
mRun-x64: [SunJavaUpdateSched] "C:&#092;Program Files (x86)&#092;Common Files&#092;Java&#092;Java Update&#092;jusched.exe"<br />
mRun-x64: [TkBellExe] "c:&#092;program files (x86)&#092;real&#092;realplayer&#092;Update&#092;realsched.exe" -osboot<br />
.<br />
============= SERVICES / DRIVERS ===============<br />
.<br />
R0 SymDS;Symantec Data Store;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMDS64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMDS64.SYS [?]<br />
R0 SymEFA;Symantec Extended File Attributes;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMEFA64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMEFA64.SYS [?]<br />
R1 BHDrvx64;BHDrvx64;C:&#092;ProgramData&#092;Norton&#092;{0C55C096-0F1D-4F28-AAA2-85EF591126E7}&#092;N360_5.1.0.29&#092;Definitions&#092;BASHDefs&#092;20111123.001&#092;BHDrvx64.sys [2011-11-30 1156216]<br />
R1 IDSVia64;IDSVia64;C:&#092;ProgramData&#092;Norton&#092;{0C55C096-0F1D-4F28-AAA2-85EF591126E7}&#092;N360_5.1.0.29&#092;Definitions&#092;IPSDefs&#092;20111206.001&#092;IDSviA64.sys [2011-12-7 488568]<br />
R1 SymIRON;Symantec Iron Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;Ironx64.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;Ironx64.SYS [?]<br />
R1 SymNetS;Symantec Network Security WFP Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMNETS.SYS --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;N360x64&#092;0501000.01D&#092;SYMNETS.SYS [?]<br />
R2 AdobeARMservice;Adobe Acrobat Update Service;C:&#092;Program Files (x86)&#092;Common Files&#092;Adobe&#092;ARM&#092;1.0&#092;armsvc.exe [2011-6-6 64952]<br />
R2 Device Handle Service;Device Handle Service;C:&#092;Windows&#092;SysWOW64&#092;AsHookDevice.exe [2010-8-28 203392]<br />
R2 N360;Norton 360;C:&#092;Program Files (x86)&#092;Norton 360&#092;Engine&#092;5.1.0.29&#092;ccSvcHst.exe [2011-10-6 130008]<br />
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;NVIDIA Updatus&#092;daemonu.exe [2011-7-24 2253120]<br />
R2 OMSI download service;Sony Ericsson OMSI download service;C:&#092;Program Files (x86)&#092;Sony Ericsson&#092;Sony Ericsson PC Suite&#092;SupServ.exe [2011-6-4 90112]<br />
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:&#092;Program Files (x86)&#092;NVIDIA Corporation&#092;3D Vision&#092;nvSCPAPISvr.exe [2011-10-14 381248]<br />
R2 UNS;Intel® Management & Security Application User Notification Service;C:&#092;Program Files (x86)&#092;Intel&#092;Intel® Management Engine Components&#092;UNS&#092;UNS.exe [2010-8-28 2314240]<br />
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:&#092;Program Files (x86)&#092;Common Files&#092;Symantec Shared&#092;EENGINE&#092;EraserUtilRebootDrv.sys [2011-11-9 138360]<br />
R3 HECIx64;Intel® Management Engine Interface;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;HECIx64.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;HECIx64.sys [?]<br />
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:&#092;Windows&#092;system32&#092;drivers&#092;nvhda64v.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;nvhda64v.sys [?]<br />
R3 RTL8167;Realtek 8167 NT Driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;Rt64win7.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;Rt64win7.sys [?]<br />
R3 WDC_SAM;WD SCSI Pass Thru driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;wdcsam64.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;wdcsam64.sys [?]<br />
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:&#092;Windows&#092;Microsoft.NET&#092;Framework&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 130384]<br />
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:&#092;Windows&#092;Microsoft.NET&#092;Framework64&#092;v4.0.30319&#092;mscorsvw.exe [2010-3-18 138576]<br />
S2 gupdate;Tjänsten Google Update (gupdate);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-4-19 136176]<br />
S3 fssfltr;fssfltr;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;fssfltr.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;fssfltr.sys [?]<br />
S3 fsssvc;Windows Live Family Safety Service;C:&#092;Program Files (x86)&#092;Windows Live&#092;Family Safety&#092;fsssvc.exe [2010-9-22 1493352]<br />
S3 ggflt;SEMC USB Flash Driver Filter;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ggflt.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;ggflt.sys [?]<br />
S3 gupdatem;Tjänsten Google Update (gupdatem);C:&#092;Program Files (x86)&#092;Google&#092;Update&#092;GoogleUpdate.exe [2011-4-19 136176]<br />
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039bus.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039bus.sys [?]<br />
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdfl.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdfl.sys [?]<br />
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdm.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mdm.sys [?]<br />
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mgmt.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039mgmt.sys [?]<br />
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039nd5.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039nd5.sys [?]<br />
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039obex.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039obex.sys [?]<br />
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039unic.sys --&gt; C:&#092;Windows&#092;system32&#092;DRIVERS&#092;s1039unic.sys [?]<br />
S3 TsUsbFlt;TsUsbFlt;C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys --&gt; C:&#092;Windows&#092;system32&#092;drivers&#092;tsusbflt.sys [?]<br />
S3 WatAdminSvc;Aktiveringsteknologier för Windows-tjänst;C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe --&gt; C:&#092;Windows&#092;system32&#092;Wat&#092;WatAdminSvc.exe [?]<br />
.<br />
=============== Created Last 30 ================<br />
.<br />
2011-11-20 07:54:55 -------- d-----w- C:&#092;Program Files (x86)&#092;Common Files&#092;xing shared<br />
2011-11-20 07:54:43 499712 ----a-w- C:&#092;Windows&#092;SysWow64&#092;msvcp71.dll<br />
2011-11-20 07:54:43 348160 ----a-w- C:&#092;Windows&#092;SysWow64&#092;msvcr71.dll<br />
2011-11-09 09:10:08 886784 ----a-w- C:&#092;Program Files&#092;Common Files&#092;System&#092;wab32.dll<br />
2011-11-09 09:10:08 708608 ----a-w- C:&#092;Program Files (x86)&#092;Common Files&#092;System&#092;wab32.dll<br />
2011-11-09 09:10:05 1923952 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;tcpip.sys<br />
2011-11-09 09:10:03 3144704 ----a-w- C:&#092;Windows&#092;System32&#092;win32k.sys<br />
.<br />
==================== Find3M  ====================<br />
.<br />
2011-11-23 14:55:18 414368 ----a-w- C:&#092;Windows&#092;SysWow64&#092;FlashPlayerCPLApp.cpl<br />
2011-10-14 22:54:52 321856 ----a-w- C:&#092;Windows&#092;SysWow64&#092;nvStreaming.exe<br />
2011-10-06 07:00:42 174200 ----a-w- C:&#092;Windows&#092;System32&#092;drivers&#092;SYMEVENT64x86.SYS<br />
2011-10-03 03:06:03 472808 ----a-w- C:&#092;Windows&#092;SysWow64&#092;deployJava1.dll<br />
.<br />
============= FINISH: 11:11:41,54 ===============<div id='attach_wrap' class='rounded clearfix'>
	<h4>Bifogade filer</h4>
	<ul>
		
			<li class='clear'>
				<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=13632" title="Ladda ner bilaga"><img src="http://eforum.idg.se/public/style_extra/mime_types/txt.gif" alt="Bifogad fil" /></a>
&nbsp;<a href="http://eforum.idg.se/index.php?app=core&module=attach&section=attach&attach_id=13632" title="Ladda ner bilaga">Attach 1.txt</a> <span class='desc'><strong>(6,47Kb)</strong></span>
<br /><span class="desc info">Antal nedladdningar: 2</span>
			</li>
		
	</ul>
</div>]]></description>
		<pubDate>Wed, 07 Dec 2011 10:47:56 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333350-sakerhetsproblem/</guid>
	</item>
	<item>
		<title>Rootkit</title>
		<link>http://eforum.idg.se/topic/333334-rootkit/</link>
		<description><![CDATA[Har fått nåt skit på en dator. Troligtvis rootkit. C:&#092;WINDOWS&#092;system32&#092;....&#092;sfloppy.sys Vad göra?]]></description>
		<pubDate>Tue, 06 Dec 2011 15:52:41 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333334-rootkit/</guid>
	</item>
	<item>
		<title>Troligen klickat på msn-virus</title>
		<link>http://eforum.idg.se/topic/333305-troligen-klickat-pa-msn-virus/</link>
		<description><![CDATA[Så här ligger det till... Har en bärbar dator, dr jag ej använder musen för att styra. HAr en vän på msn som mer eller mindre konstant skickar ut en viruslänk (var tredje minut lr nåt sånt), och givetvis råkade jag klicka på denna när jag skulle navigera med fingrarna på styrplattan (lr vad fan saken nu heter)..<br />
<br />
Skannar nu med norton och superantispyware.. och får se vad de hittar..  Tänkte om att han skicakr länken igen så kan jag skriva namnet på den, och nån kan möjligtvis analysera vad viruset gör, om det är allvarligt etc...  Bör jag byta lösenord med mera... har verkligen inte råd att få detta kontot kapat <img src='http://eforum.idg.se/public/style_emoticons/default/sad.gif' class='bbc_emoticon' alt=':(' /><br />
<br />
Extremt tacksam för hjälp.]]></description>
		<pubDate>Sun, 04 Dec 2011 22:00:31 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333305-troligen-klickat-pa-msn-virus/</guid>
	</item>
	<item>
		<title>Förslag på spamfilter finns här</title>
		<link>http://eforum.idg.se/topic/333303-forslag-pa-spamfilter-finns-har/</link>
		<description><![CDATA[Förslag på spamfilter finns här<br />
<br />
<a href='http://www.techsupportalert.com/best-free-spam-filter-for-the-average-user.htm' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.techsupportalert.com/best-free-spam-filter-for-the-average-user.htm</a>]]></description>
		<pubDate>Sun, 04 Dec 2011 20:14:15 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333303-forslag-pa-spamfilter-finns-har/</guid>
	</item>
	<item>
		<title>Trög dator, speciellt vid kontakt med nätet. Rootkit?</title>
		<link>http://eforum.idg.se/topic/333254-trog-dator-speciellt-vid-kontakt-med-natet-rootkit/</link>
		<description><![CDATA[Eller har jag installerat något olämpligt tillägg tro? Jag försökte köra DDS men kan inte starta filen, den öppnas i Anteckningar som en enda röra så att säga, på vilket sätt jag än försöker starta den. <br />
<br />
Datorn är visserligen gammal men har blivit mycket segare de senaste veckorna. Har Avast Antivirus installerat, den hittar inget. Körde Eset online scanner för nån vecka sen, den hittade heller inget, inte Malwarebytes Antimalware heller. <br />
<br />
Kan t.ex. knappt köra VPN mot jobbet längre, laddtid på ca 5 min nu under kvällen (det är dock en privat dator så jag kan inte be jobbets IT-avd). Tacksam för hjälp! <br />
<br />
/Jessica]]></description>
		<pubDate>Thu, 01 Dec 2011 19:57:32 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333254-trog-dator-speciellt-vid-kontakt-med-natet-rootkit/</guid>
	</item>
	<item>
		<title>Två leverantörer har blivit hackade</title>
		<link>http://eforum.idg.se/topic/333246-tva-leverantorer-har-blivit-hackade/</link>
		<description><![CDATA[Två leverantörer har blivit hackade<br />
<a href='http://news.softpedia.com/news/NOD32-and-Kaspersky-Websites-Hacked-237647.shtml' class='bbc_url' title='Extern länk' rel='nofollow external'>http://news.softpedia.com/news/NOD32-and-Kaspersky-Websites-Hacked-237647.shtml</a>]]></description>
		<pubDate>Thu, 01 Dec 2011 14:09:34 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333246-tva-leverantorer-har-blivit-hackade/</guid>
	</item>
	<item>
		<title>Datorn kraschar! :(</title>
		<link>http://eforum.idg.se/topic/333226-datorn-kraschar/</link>
		<description><![CDATA[Hej,<br />
Jag har fått jätte problem med min dator och vet inte alls vad jag ska göra nu!<br />
Behöver hjälp. <img src='http://eforum.idg.se/public/style_emoticons/default/sad.gif' class='bbc_emoticon' alt=':(' /><br />
<br />
Min dator är cirka 2 år gammal.<br />
Hewplett-Packard Company, Systemtyp 64-bitars.<br />
VISTA home premium, service pack 2. <br />
(när jag försökt uppdatera VISTA så finns det inte längre uppdateringar utan den anser att jag ska byta helt.)<br />
<br />
För ett halvår sedan fick jag stora problem med datorn och sökte då hjälp från AVAST! <br />
Där fick jag råd att ladda ned advanced systemcare 4 och har sedan dess haft den kvar. Fick även göra lite andra grejer men dem har jag inte längre kvar då han sa att de kunde störa. Vi löste det då och fann runt 1500 virus osv på datorn, de åtgärdades. Problemet som kvarstod var att datorn blev väldigt långsam när jag anslöt till internet, likaså när den skulle starta.<br />
<br />
NU har liknande problem uppstått igen. Började med att datamusen och tangentbordet låste sig och till slut blev hela bildskärmen svart. Efter att ha återställt BIOS så fungerade det igen (internet fortfarande segt).<br />
går dock inte att uppdatera BIOS för då blir det samma igen. har kollat om det är någon annan uppdatering som behövs via enhetshanteraren men enligt datorn så används de senaste (bortsett från vista.) <br />
<br />
Efter detta har problemen bara ökat!<br />
<br />
Ibland blir den fortfarande svart när man startar den men fungerar när man startat om den några gånger.<br />
Innan den fungerar har dock Startreparationer börjat och sedan har det fungerat under tiden datorn varit på. Internet segt.<br />
Det jag märkte när datorn började igen var att jag inte kommer åt windows defender, felmeddelande "åtgärden har avbrutits på grund av begränsningar i datorn. Kontakta systemadministratören".<br />
Jag är administratören på datorn.<br />
<br />
Och nu när jag skulle starta datorn och startreparationerna blivit klara så fungerar inte AVAST!<br />
Och jag kan inte åtgärda det heller (trots att jag kör som administratör). Den jobbar några sekunder men sen händer ingenting. När jag går in på säkerhetsenheten och försöker aktivera därifrån så får jag ett felmeddelande: "fil system shield provider not found"...<br />
<br />
Snälla hjälp mig, är helt maktlös här! <img src='http://eforum.idg.se/public/style_emoticons/default/sad.gif' class='bbc_emoticon' alt=':(' /><br />
<br />
Med vänliga hälsningar<br />
Pejtan]]></description>
		<pubDate>Wed, 30 Nov 2011 12:30:46 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333226-datorn-kraschar/</guid>
	</item>
	<item>
		<title>Virusvarning</title>
		<link>http://eforum.idg.se/topic/333222-virusvarning/</link>
		<description><![CDATA[Varning för meil från DHL.com.   Klickar man på  bif filen säger virus programmet "Trolig kapning av webbläsaren"  Följande text finns:  "Shipment status may also be obtained from our Internet site in USA under <a href='http://track.dhl-usa.com' class='bbc_url' title='Extern länk' rel='nofollow external'>http://track.dhl-usa.com</a> or Globally under <a href='http://www.dhl.com/track' class='bbc_url' title='Extern länk' rel='nofollow external'>http://www.dhl.com/track</a> <br />
Please do not reply <br />
<br />
Har fler drabbats?<br />
<br />
Givetvis är inte DHL inblandad.]]></description>
		<pubDate>Wed, 30 Nov 2011 09:27:45 +0000</pubDate>
		<guid>http://eforum.idg.se/topic/333222-virusvarning/</guid>
	</item>
</channel>
</rss>
