Hoppa till innehåll

  • 3 sidor +
  • 1
  • 2
  • 3
  • Du kan inte starta en ny tråd
  • Du kan inte svara i tråden

Seg dator som hänger sig

#1

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 11 jun 2012, 12:43

Hej,

har tyvärr drabbats av att vår dator är seg och hänger sig. Har kört Ad-aware men det hjälper inte.
Hittade en tråd om lite förberedelser som man skulle göra för att underlätta för er och jag tror
att jag gjort vad som stod.

Bifogar Attach.txt

Hoppas på hjälp :)

Carin

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_18
Run by mattias at 13:29:02 on 2012-06-11
Microsoft Windows XP Home Edition 5.1.2600.3.1252.46.1053.18.1534.443 [GMT 2:00]
.
AV: AVG Anti-Virus Free *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Watch Live! Antivirus *Enabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\Program\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program\Samsung\Kies\KiesTrayAgent.exe
C:\program\real\realplayer\update\realsched.exe
C:\Program\Analog Devices\Core\smax4pnp.exe
C:\Program\Microsoft Security Client\msseces.exe
C:\Program\BrowserCompanion\BCHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
svchost.exe
C:\Program\Delade filer\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program\Personal\bin\Personal.exe
C:\Program\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program\Java\jre6\bin\jqs.exe
C:\Program\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe
C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program\Mozilla Firefox\firefox.exe
C:\Program\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
C:\WINDOWS\system32\WgaTray.exe
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
uStart Page = hxxp://search.babylon.com/?affID=112059&tt=060612_5_&babsrc=HP_ss&mntrId=f0c2ba8c000000000000001111b84a30
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = 192.168.*.*
uSearchURL,(Default) = hxxp://g.msn.se/0SESVSE/SAOS01?FORM=TOOLBR
uURLSearchHooks: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program\vuze_remote\prxtbVuze.dll
mWinlogon: Userinit=c:\windows\system32\userinit.exe
BHO: Chatvibes Browser Helper: {00cbb66b-1d3b-46d3-9577-323a336acb50} - c:\program\browsercompanion\jsloader.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program\delade filer\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Babylon toolbar helper: {2eecd738-5844-4a99-b4b6-146bf802613b} - c:\program\babylontoolbar\babylontoolbar\1.5.3.17\bh\BabylonToolbar.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - c:\program\adawaretb\adawareDx.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program\java\jre6\bin\ssv.dll
BHO: Chatvibes Browser Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - c:\program\browsercompanion\updatebhoWin32.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program\vuze_remote\prxtbVuze.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program\vuze_remote\prxtbVuze.dll
TB: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - c:\program\adawaretb\adawareDx.dll
TB: Babylon Toolbar: {98889811-442d-49dd-99d7-dc866be87dbc} - c:\program\babylontoolbar\babylontoolbar\1.5.3.17\BabylonToolbarTlbr.dll
TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File
TB: &Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MsnMsgr] "c:\program\windows live\messenger\msnmsgr.exe" /background
uRun: [UniblueRegistryBooster] "c:\program\uniblue\registrybooster\launcher.exe" delay 20000
uRun: [KiesPDLR] c:\program\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [KiesHelper] c:\program\samsung\kies\KiesHelper.exe /s
uRun: [WMPNSCFG] c:\program\windows media player\WMPNSCFG.exe
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [IAAnotif] c:\program\intel\intel application accelerator\iaanotif.exe
mRun: [SunJavaUpdateSched] c:\program\java\jre6\bin\jusched.exe
mRun: [Adobe ARM] "c:\program\delade filer\adobe\arm\1.0\AdobeARM.exe"
mRun: [KiesTrayAgent] c:\program\samsung\kies\KiesTrayAgent.exe
mRun: [APSDaemon] "c:\program\delade filer\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program\quicktime\QTTask.exe" -atboottime
mRun: [TkBellExe] "c:\program\real\realplayer\update\realsched.exe" -osboot
mRun: [SoundMAXPnP] c:\program\analog devices\core\smax4pnp.exe
mRun: [MSC] "c:\program\microsoft security client\msseces.exe" -hide -runkey
mRun: [Ad-Aware Browsing Protection] "c:\documents and settings\all users\application data\ad-aware browsing protection\adawarebp.exe"
mRun: [Browser companion helper] c:\program\browsercompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej
mRun: [Ad-Aware Antivirus] "c:\program\ad-aware antivirus\AdAwareLauncher" --windows-run
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
dRun: [DWQueuedReporting] "c:\program\delade~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
StartupFolder: c:\docume~1\mattias\start-~1\program\autost~1\pmbver~1.lnk - c:\program\sony\sony picture utility\pmbcore\SPUVolumeWatcher.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\adobeg~1.lnk - c:\program\delade filer\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\bankid~1.lnk - c:\program\personal\bin\Personal.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\micros~1.lnk - c:\program\office10\OSA.EXE
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program\windows live\writer\WriterBrowserExtension.dll
DPF: {00000055-9980-0010-8000-00AA00389B71} - hxxp://codecs.microsoft.com/codecs/i386/fhg.CAB
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://www.apple.com/qtactivex/qtplugin.cab
DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} - hxxps://support.microsoft.com/OAS/ActiveX/MSDcode.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://by110fd.bay110.hotmail.msn.com/resources/MsnPUpld.cab
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1180713662609
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} - hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} - hxxp://webc.carinpallin.se/auth/controls/IlosoftImageUpload.dll
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : NameServer = 79.138.0.180,85.8.31.209
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : DhcpNameServer = 192.168.0.1
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Notify: avgrsstarter - avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=112059&tt=060612_5_&babsrc=HP_ss&mntrId=f0c2ba8c000000000000001111b84a30
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&SearchSource=2&q=
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}\plugins\np-mswmp.dll
FF - plugin: c:\program\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program\microsoft\office live\npOLW.dll
FF - plugin: c:\program\opera\program\plugins\np_gp.dll
FF - plugin: c:\program\opera\program\plugins\npjpi160_18.dll
FF - plugin: c:\program\opera\program\plugins\npoji610.dll
FF - plugin: c:\program\personal\bin\np_prsnl.dll
FF - plugin: c:\program\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\program\windows media player\npdsplay(2).dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_2_202_235.dll
.
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.zencast - );user_pref(extensions.BabylonToolbar_i.babTrack, affID=112059&tt=060612_5_
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.hardId - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15499
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:23:39
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-7-10 64288]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 171064]
R1 MpKsld7e4d013;MpKsld7e4d013;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsld7e4d013.sys [2012-6-11 29904]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-8-22 54752]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program\lavasoft\ad-aware\AAWService.exe [2010-8-12 2152152]
R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\drivers\seehcri.sys [2009-11-8 27632]
R4 sbaphd;sbaphd;c:\windows\system32\drivers\sbaphd.sys --> c:\windows\system32\drivers\sbaphd.sys [?]
R4 sbtis;sbtis;c:\windows\system32\drivers\sbtis.sys [2012-6-11 217976]
RUnknown MpKsl0ed7a543;MpKsl0ed7a543; [x]
RUnknown SbFw;SbFw; [x]
S1 SBRE;SBRE;c:\windows\system32\drivers\SBREDrv.sys [2011-10-26 101112]
S1 tvtool;tvtool;\??\c:\program\tvtool 9.5\tvtool.sys --> c:\program\tvtool 9.5\tvtool.sys [?]
S2 Ad-Aware Service;Ad-Aware Service;c:\program\ad-aware antivirus\AdAwareService.exe [2012-5-3 1226096]
S2 SBAMSvc;GFI VIPRE Antivirus Service;c:\program\ad-aware antivirus\SBAMSvc.exe [2011-12-19 3289032]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-4-3 257696]
S3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\drivers\motfilt.sys --> c:\windows\system32\drivers\motfilt.sys [?]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-10-2 20032]
S3 fsssvc;Windows Live Family Safety Service;c:\program\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-6-1 13352]
S3 JabraDFU;Jabra Bluecore headset DFU driver;c:\windows\system32\drivers\jabramobilecsrdfux86.sys --> c:\windows\system32\drivers\JabraMobileCsrDfuX86.sys [?]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program\lavasoft\ad-aware\kernexplorer.sys [2010-8-12 15232]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys --> c:\windows\system32\drivers\motccgp.sys [?]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys --> c:\windows\system32\drivers\motccgpfl.sys [?]
S3 Motousbnet;Motorola USB Networking Driver Service;c:\windows\system32\drivers\motousbnet.sys --> c:\windows\system32\drivers\Motousbnet.sys [?]
S3 motusbdevice;Motorola USB Dev Driver;c:\windows\system32\drivers\motusbdevice.sys --> c:\windows\system32\drivers\motusbdevice.sys [?]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program\mozilla maintenance service\maintenanceservice.exe [2012-5-5 129976]
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);c:\windows\system32\drivers\s1039bus.sys [2011-7-30 98672]
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;c:\windows\system32\drivers\s1039mdfl.sys [2011-7-30 14960]
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;c:\windows\system32\drivers\s1039mdm.sys [2011-7-30 124016]
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s1039mgmt.sys [2011-7-30 117872]
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);c:\windows\system32\drivers\s1039nd5.sys [2011-7-30 25456]
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;c:\windows\system32\drivers\s1039obex.sys [2011-7-30 113904]
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);c:\windows\system32\drivers\s1039unic.sys [2011-7-30 123504]
SUnknown sbhips;sbhips; [x]
UnknownUnknown SBFWIMCLMP;SBFWIMCLMP; [x]
.
=============== Created Last 30 ================
.
2012-06-11 10:55:38 56200 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\offreg.dll
2012-06-11 10:55:38 29904 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsld7e4d013.sys
2012-06-11 10:50:32 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\mpengine.dll
2012-06-11 10:45:31 217976 ----a-w- c:\windows\system32\drivers\sbtis.sys
2012-06-11 10:44:51 94584 ----a-w- c:\windows\system32\drivers\SbFwIm.sys
2012-06-11 10:44:45 -------- d-----w- c:\windows\system32\drivers\VDD
2012-06-11 10:44:39 -------- d-----w- c:\program\Ad-Aware Antivirus
2012-06-11 10:42:43 -------- dc----w- c:\documents and settings\mattias\application data\Ad-Aware Antivirus
2012-06-11 10:39:03 -------- dc----w- c:\documents and settings\all users\application data\GFI Software
2012-06-10 14:26:53 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2012-06-08 20:35:21 6144 -c----w- c:\windows\system32\dllcache\iecompat.dll
2012-06-08 20:35:11 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2012-06-08 20:35:10 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2012-06-08 20:35:05 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2012-06-08 20:35:04 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2012-06-08 20:35:04 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2012-06-08 20:35:03 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll
2012-06-08 20:35:00 11082752 -c----w- c:\windows\system32\dllcache\ieframe.dll
2012-06-08 20:23:45 -------- d-----w- c:\program\BabylonToolbar
2012-06-08 20:23:40 -------- dc----w- c:\documents and settings\mattias\application data\BabylonToolbar
2012-06-08 20:22:27 -------- dc----w- c:\documents and settings\mattias\AppData
2012-06-08 20:22:20 -------- d-----w- c:\program\BrowserCompanion
2012-06-08 20:22:19 -------- dc----w- c:\documents and settings\all users\application data\Babylon
2012-06-08 20:22:17 -------- dc----w- c:\documents and settings\mattias\application data\Babylon
2012-05-15 08:47:45 -------- dc----w- c:\documents and settings\all users\application data\Ad-Aware Browsing Protection
2012-05-15 08:47:24 -------- d-----w- c:\program\Toolbar Cleaner
2012-05-15 08:46:44 -------- dc----w- c:\documents and settings\mattias\application data\adawaretb
2012-05-15 08:46:32 -------- d-----w- c:\program\adawaretb
.
==================== Find3M ====================
.
2012-06-11 10:35:23 26112 ----a-w- c:\windows\system32\userinit.exe
2012-05-31 13:22:03 602112 ----a-w- c:\windows\system32\crypt32.dll
2012-05-05 11:26:27 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-05-05 11:26:27 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-04-20 15:56:47 16432 ----a-w- c:\windows\system32\lsdelete.exe
2012-04-11 13:55:27 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 13:55:17 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 13:55:03 2149376 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-20 18:44:12 171064 ----a-w- c:\windows\system32\drivers\MpFilter.sys
.
============= FINISH: 13:32:34,04 ===============

Bifogade filer


0

#2
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 11 jun 2012, 13:31

Avinstalllera:
Vuze Remote Toolbar orsak: http://www.systemloo...tbVuz2_dll.html
Babylon toolbar on IE http://www.systemloo...arTlbr_dll.html
BrowserCompanion http://www.systemloo...loader_dll.html
Java™ 6 Update 18 gammal version med säkerhetshål som gör det lätt att infektera datorn från en webbsida

Starta om datorn och kör DDS igen så får vi se vad som är kvar.

Vad är det för version av Ad-Aware du har?
0

#3

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 11 jun 2012, 20:48

Jag har installerat en ny version av Ad-Aware men tyckte att det gjorde problemet värre än
vad det var förut så ja avinstallerade den idag.

Här är det som kom ur DDS:

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_18
Run by mattias at 21:36:55 on 2012-06-11
Microsoft Windows XP Home Edition 5.1.2600.3.1252.46.1053.18.1534.527 [GMT 2:00]
.
AV: AVG Anti-Virus Free *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Watch Live! Antivirus *Enabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
AV: Lavasoft Ad-Aware *Enabled/Updated* {964FCE60-0B18-4D30-ADD6-EB178909041C}
FW: Lavasoft Ad-Aware *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\Program\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program\Samsung\Kies\KiesTrayAgent.exe
C:\program\real\realplayer\update\realsched.exe
C:\Program\Analog Devices\Core\smax4pnp.exe
C:\Program\Microsoft Security Client\msseces.exe
C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
C:\Program\BrowserCompanion\BCHelper.exe
svchost.exe
C:\Program\Ad-Aware Antivirus\AdAwareService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program\Delade filer\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program\Personal\bin\Personal.exe
C:\Program\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program\Java\jre6\bin\jqs.exe
C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe
C:\Program\Ad-Aware Antivirus\SBAMSvc.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program\AD-AWA~1\AdAware.exe
C:\Program\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program\Mozilla Firefox\firefox.exe
C:\Program\Mozilla Firefox\plugin-container.exe
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
uStart Page = hxxp://search.babylon.com/?affID=112059&tt=060612_5_&babsrc=HP_ss&mntrId=f0c2ba8c000000000000001111b84a30
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = 192.168.*.*
uSearchURL,(Default) = hxxp://g.msn.se/0SESVSE/SAOS01?FORM=TOOLBR
mWinlogon: Userinit=c:\windows\system32\userinit.exe
BHO: Chatvibes Browser Helper: {00cbb66b-1d3b-46d3-9577-323a336acb50} - c:\program\browsercompanion\jsloader.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program\delade filer\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - c:\program\adawaretb\adawareDx.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program\java\jre6\bin\ssv.dll
BHO: Chatvibes Browser Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - c:\program\browsercompanion\updatebhoWin32.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Ad-Aware Security Toolbar: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - c:\program\adawaretb\adawareDx.dll
TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File
TB: &Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MsnMsgr] "c:\program\windows live\messenger\msnmsgr.exe" /background
uRun: [UniblueRegistryBooster] "c:\program\uniblue\registrybooster\launcher.exe" delay 20000
uRun: [KiesPDLR] c:\program\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [KiesHelper] c:\program\samsung\kies\KiesHelper.exe /s
uRun: [WMPNSCFG] c:\program\windows media player\WMPNSCFG.exe
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [IAAnotif] c:\program\intel\intel application accelerator\iaanotif.exe
mRun: [SunJavaUpdateSched] c:\program\java\jre6\bin\jusched.exe
mRun: [Adobe ARM] "c:\program\delade filer\adobe\arm\1.0\AdobeARM.exe"
mRun: [KiesTrayAgent] c:\program\samsung\kies\KiesTrayAgent.exe
mRun: [APSDaemon] "c:\program\delade filer\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program\quicktime\QTTask.exe" -atboottime
mRun: [TkBellExe] "c:\program\real\realplayer\update\realsched.exe" -osboot
mRun: [SoundMAXPnP] c:\program\analog devices\core\smax4pnp.exe
mRun: [MSC] "c:\program\microsoft security client\msseces.exe" -hide -runkey
mRun: [Ad-Aware Browsing Protection] "c:\documents and settings\all users\application data\ad-aware browsing protection\adawarebp.exe"
mRun: [Browser companion helper] c:\program\browsercompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej
mRun: [Ad-Aware Antivirus] "c:\program\ad-aware antivirus\AdAwareLauncher" --windows-run
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
dRun: [DWQueuedReporting] "c:\program\delade~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
StartupFolder: c:\docume~1\mattias\start-~1\program\autost~1\pmbver~1.lnk - c:\program\sony\sony picture utility\pmbcore\SPUVolumeWatcher.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\adobeg~1.lnk - c:\program\delade filer\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\bankid~1.lnk - c:\program\personal\bin\Personal.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\micros~1.lnk - c:\program\office10\OSA.EXE
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program\windows live\writer\WriterBrowserExtension.dll
DPF: {00000055-9980-0010-8000-00AA00389B71} - hxxp://codecs.microsoft.com/codecs/i386/fhg.CAB
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://www.apple.com/qtactivex/qtplugin.cab
DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} - hxxps://support.microsoft.com/OAS/ActiveX/MSDcode.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://by110fd.bay110.hotmail.msn.com/resources/MsnPUpld.cab
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1180713662609
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} - hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} - hxxp://webc.carinpallin.se/auth/controls/IlosoftImageUpload.dll
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : NameServer = 79.138.0.180,85.8.31.209
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : DhcpNameServer = 192.168.0.1
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Notify: avgrsstarter - avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=112059&tt=060612_5_&babsrc=HP_ss&mntrId=f0c2ba8c000000000000001111b84a30
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&SearchSource=2&q=
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}\plugins\np-mswmp.dll
FF - plugin: c:\program\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program\microsoft\office live\npOLW.dll
FF - plugin: c:\program\opera\program\plugins\np_gp.dll
FF - plugin: c:\program\opera\program\plugins\npjpi160_18.dll
FF - plugin: c:\program\opera\program\plugins\npoji610.dll
FF - plugin: c:\program\personal\bin\np_prsnl.dll
FF - plugin: c:\program\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\program\windows media player\npdsplay(2).dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_2_202_235.dll
.
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.zencast - );user_pref(extensions.BabylonToolbar_i.babTrack, affID=112059&tt=060612_5_
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.hardId - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15499
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:23:39
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-7-10 64288]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 171064]
R1 MpKsl0a64c852;MpKsl0a64c852;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsl0a64c852.sys [2012-6-11 29904]
R1 sbaphd;sbaphd;c:\windows\system32\drivers\sbaphd.sys [2012-6-11 21240]
R1 SBRE;SBRE;c:\windows\system32\drivers\SBREDrv.sys [2011-10-26 101112]
R2 Ad-Aware Service;Ad-Aware Service;c:\program\ad-aware antivirus\AdAwareService.exe [2012-5-3 1226096]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-8-22 54752]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program\lavasoft\ad-aware\AAWService.exe [2010-8-12 2152152]
R2 SBAMSvc;Ad-Aware;c:\program\ad-aware antivirus\SBAMSvc.exe [2011-12-19 3289032]
R2 sbapifs;sbapifs;c:\windows\system32\drivers\sbapifs.sys [2012-6-11 77816]
R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\drivers\seehcri.sys [2009-11-8 27632]
S1 tvtool;tvtool;\??\c:\program\tvtool 9.5\tvtool.sys --> c:\program\tvtool 9.5\tvtool.sys [?]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-4-3 257696]
S3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\drivers\motfilt.sys --> c:\windows\system32\drivers\motfilt.sys [?]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-10-2 20032]
S3 fsssvc;Windows Live Family Safety Service;c:\program\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-6-1 13352]
S3 JabraDFU;Jabra Bluecore headset DFU driver;c:\windows\system32\drivers\jabramobilecsrdfux86.sys --> c:\windows\system32\drivers\JabraMobileCsrDfuX86.sys [?]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program\lavasoft\ad-aware\kernexplorer.sys [2010-8-12 15232]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys --> c:\windows\system32\drivers\motccgp.sys [?]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys --> c:\windows\system32\drivers\motccgpfl.sys [?]
S3 Motousbnet;Motorola USB Networking Driver Service;c:\windows\system32\drivers\motousbnet.sys --> c:\windows\system32\drivers\Motousbnet.sys [?]
S3 motusbdevice;Motorola USB Dev Driver;c:\windows\system32\drivers\motusbdevice.sys --> c:\windows\system32\drivers\motusbdevice.sys [?]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program\mozilla maintenance service\maintenanceservice.exe [2012-5-5 129976]
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);c:\windows\system32\drivers\s1039bus.sys [2011-7-30 98672]
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;c:\windows\system32\drivers\s1039mdfl.sys [2011-7-30 14960]
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;c:\windows\system32\drivers\s1039mdm.sys [2011-7-30 124016]
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s1039mgmt.sys [2011-7-30 117872]
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);c:\windows\system32\drivers\s1039nd5.sys [2011-7-30 25456]
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;c:\windows\system32\drivers\s1039obex.sys [2011-7-30 113904]
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);c:\windows\system32\drivers\s1039unic.sys [2011-7-30 123504]
.
=============== Created Last 30 ================
.
2012-06-11 18:41:15 29904 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsl0a64c852.sys
2012-06-11 18:41:11 77816 ----a-w- c:\windows\system32\drivers\sbapifs.sys
2012-06-11 18:40:47 21240 ----a-w- c:\windows\system32\drivers\sbaphd.sys
2012-06-11 10:50:32 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\mpengine.dll
2012-06-11 10:45:31 217976 ----a-w- c:\windows\system32\drivers\sbtis.sys
2012-06-11 10:44:51 94584 ----a-w- c:\windows\system32\drivers\SbFwIm.sys
2012-06-11 10:44:45 -------- d-----w- c:\windows\system32\drivers\VDD
2012-06-11 10:44:39 -------- d-----w- c:\program\Ad-Aware Antivirus
2012-06-11 10:42:43 -------- dc----w- c:\documents and settings\mattias\application data\Ad-Aware Antivirus
2012-06-11 10:39:03 -------- dc----w- c:\documents and settings\all users\application data\GFI Software
2012-06-10 14:26:53 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2012-06-08 20:35:21 6144 -c----w- c:\windows\system32\dllcache\iecompat.dll
2012-06-08 20:35:11 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2012-06-08 20:35:10 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2012-06-08 20:35:05 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2012-06-08 20:35:04 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2012-06-08 20:35:04 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2012-06-08 20:35:03 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll
2012-06-08 20:35:00 11082752 -c----w- c:\windows\system32\dllcache\ieframe.dll
2012-06-08 20:22:27 -------- dc----w- c:\documents and settings\mattias\AppData
2012-06-08 20:22:20 -------- d-----w- c:\program\BrowserCompanion
2012-06-08 20:22:19 -------- dc----w- c:\documents and settings\all users\application data\Babylon
2012-06-08 20:22:17 -------- dc----w- c:\documents and settings\mattias\application data\Babylon
2012-05-15 08:47:45 -------- dc----w- c:\documents and settings\all users\application data\Ad-Aware Browsing Protection
2012-05-15 08:47:24 -------- d-----w- c:\program\Toolbar Cleaner
2012-05-15 08:46:44 -------- dc----w- c:\documents and settings\mattias\application data\adawaretb
2012-05-15 08:46:32 -------- d-----w- c:\program\adawaretb
.
==================== Find3M ====================
.
2012-06-11 10:35:23 26112 ----a-w- c:\windows\system32\userinit.exe
2012-05-31 13:22:03 602112 ----a-w- c:\windows\system32\crypt32.dll
2012-05-05 11:26:27 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-05-05 11:26:27 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-04-20 15:56:47 16432 ----a-w- c:\windows\system32\lsdelete.exe
2012-04-11 13:55:27 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 13:55:17 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 13:55:03 2149376 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-20 18:44:12 171064 ----a-w- c:\windows\system32\drivers\MpFilter.sys
.
============= FINISH: 21:39:34,67 ===============

Hittade inget ställe att bifoga "attach.txt" så jag klistar in det:

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 2012-03-01 11:39:03
System Uptime: 2012-06-11 20:35:59 (1 hours ago)
.
Motherboard: Dell Inc. | | 0J3492
Processor: Intel® Pentium® 4 CPU 3.00GHz | Microprocessor | 2992/800mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 146 GiB total, 69,178 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP91: 2012-06-08 22:42:42 - Windows Internet Explorer 8 installerades.
RP92: 2012-06-08 22:46:56 - Software Distribution Service 3.0
RP93: 2012-06-09 00:10:25 - Software Distribution Service 3.0
RP94: 2012-06-09 00:23:28 - Software Distribution Service 3.0
RP95: 2012-06-10 16:26:26 - Software Distribution Service 3.0
RP96: 2012-06-11 12:36:14 - Removed Ad-Aware Antivirus.
RP97: 2012-06-11 12:50:12 - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
7-Zip 4.65
Acrobat.com
Ad-Aware
Ad-Aware Antivirus
Ad-Aware Browsing Protection
Ad-Aware Security Toolbar
Adobe AIR
Adobe Flash Player 11 Plugin
Adobe Photoshop 7.0
Adobe Reader X (10.1.3) - Svenska
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ATI Display Driver
µTorrent
BabylonObjectInstaller
BankID säkerhetsprogram
Bonniers Trafikskola 2007
BrowserCompanion
CutePDF Writer 2.8
Dell Driver Download Manager
Dell Driver Reset Tool
Dell System Restore
DVD Decrypter (Remove Only)
Garmin MapSource
Garmin USB Drivers
Garmin WebUpdater
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel Application Accelerator
Java Auto Updater
Java™ 6 Update 18
Junk Mail filter update
Macromedia Shockwave Player
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - SVE
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - SVE
Microsoft .NET Framework 3.5 Language Pack SP1 - sve
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware Service SV-SE Language Pack
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Office Live Add-in 1.3
Microsoft Office XP Professional med FrontPage
Microsoft Security Client
Microsoft Security Client SV-SE Language Pack
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works 7.0
MicroStaff WINASPI
MotoHelper MergeModules
Mozilla Firefox 12.0 (x86 en-US)
Mozilla Maintenance Service
MP3 music player
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
MyFreeCodec
MyPhoneExplorer
Nero OEM
Nero Suite
neroxml
Norrlands Skoterledskarta Autorouting v3.0.2.1
OGA Notifier 1.7.0105.35.0
OpenOffice.org Installer 1.0
Primo
QuickTime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Runtime
Samsung Kies
SAMSUNG USB Driver for Mobile Phones
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Segoe UI
Snabbkorrigering för Windows XP (KB952287)
Snabbkorrigering för Windows XP (KB961118)
Säkerhetsuppdatering för Microsoft Windows (KB2564958)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2510531)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2544521)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2618444)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2647516)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2675157)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB982381)
Säkerhetsuppdatering för Windows Media Player (KB973540)
Säkerhetsuppdatering för Windows XP (KB2079403)
Säkerhetsuppdatering för Windows XP (KB2115168)
Säkerhetsuppdatering för Windows XP (KB2229593)
Säkerhetsuppdatering för Windows XP (KB2296011)
Säkerhetsuppdatering för Windows XP (KB2347290)
Säkerhetsuppdatering för Windows XP (KB2360937)
Säkerhetsuppdatering för Windows XP (KB2387149)
Säkerhetsuppdatering för Windows XP (KB2393802)
Säkerhetsuppdatering för Windows XP (KB2412687)
Säkerhetsuppdatering för Windows XP (KB2419632)
Säkerhetsuppdatering för Windows XP (KB2423089)
Säkerhetsuppdatering för Windows XP (KB2440591)
Säkerhetsuppdatering för Windows XP (KB2443105)
Säkerhetsuppdatering för Windows XP (KB2476490)
Säkerhetsuppdatering för Windows XP (KB2478960)
Säkerhetsuppdatering för Windows XP (KB2478971)
Säkerhetsuppdatering för Windows XP (KB2479943)
Säkerhetsuppdatering för Windows XP (KB2481109)
Säkerhetsuppdatering för Windows XP (KB2483185)
Säkerhetsuppdatering för Windows XP (KB2485663)
Säkerhetsuppdatering för Windows XP (KB2491683)
Säkerhetsuppdatering för Windows XP (KB2506212)
Säkerhetsuppdatering för Windows XP (KB2507618)
Säkerhetsuppdatering för Windows XP (KB2507938)
Säkerhetsuppdatering för Windows XP (KB2508429)
Säkerhetsuppdatering för Windows XP (KB2509553)
Säkerhetsuppdatering för Windows XP (KB2510581)
Säkerhetsuppdatering för Windows XP (KB2535512)
Säkerhetsuppdatering för Windows XP (KB2536276-v2)
Säkerhetsuppdatering för Windows XP (KB2544521)
Säkerhetsuppdatering för Windows XP (KB2544893-v2)
Säkerhetsuppdatering för Windows XP (KB2566454)
Säkerhetsuppdatering för Windows XP (KB2570222)
Säkerhetsuppdatering för Windows XP (KB2570947)
Säkerhetsuppdatering för Windows XP (KB2584146)
Säkerhetsuppdatering för Windows XP (KB2585542)
Säkerhetsuppdatering för Windows XP (KB2592799)
Säkerhetsuppdatering för Windows XP (KB2598479)
Säkerhetsuppdatering för Windows XP (KB2603381)
Säkerhetsuppdatering för Windows XP (KB2619339)
Säkerhetsuppdatering för Windows XP (KB2620712)
Säkerhetsuppdatering för Windows XP (KB2621440)
Säkerhetsuppdatering för Windows XP (KB2624667)
Säkerhetsuppdatering för Windows XP (KB2631813)
Säkerhetsuppdatering för Windows XP (KB2633171)
Säkerhetsuppdatering för Windows XP (KB2641653)
Säkerhetsuppdatering för Windows XP (KB2646524)
Säkerhetsuppdatering för Windows XP (KB2647516)
Säkerhetsuppdatering för Windows XP (KB2647518)
Säkerhetsuppdatering för Windows XP (KB2653956)
Säkerhetsuppdatering för Windows XP (KB2659262)
Säkerhetsuppdatering för Windows XP (KB2660465)
Säkerhetsuppdatering för Windows XP (KB2675157)
Säkerhetsuppdatering för Windows XP (KB2676562)
Säkerhetsuppdatering för Windows XP (KB2686509)
Säkerhetsuppdatering för Windows XP (KB2695962)
Säkerhetsuppdatering för Windows XP (KB923561)
Säkerhetsuppdatering för Windows XP (KB923789)
Säkerhetsuppdatering för Windows XP (KB941569)
Säkerhetsuppdatering för Windows XP (KB946648)
Säkerhetsuppdatering för Windows XP (KB950762)
Säkerhetsuppdatering för Windows XP (KB950974)
Säkerhetsuppdatering för Windows XP (KB951376-v2)
Säkerhetsuppdatering för Windows XP (KB951748)
Säkerhetsuppdatering för Windows XP (KB952004)
Säkerhetsuppdatering för Windows XP (KB952954)
Säkerhetsuppdatering för Windows XP (KB953155)
Säkerhetsuppdatering för Windows XP (KB955069)
Säkerhetsuppdatering för Windows XP (KB956572)
Säkerhetsuppdatering för Windows XP (KB956744)
Säkerhetsuppdatering för Windows XP (KB956802)
Säkerhetsuppdatering för Windows XP (KB956803)
Säkerhetsuppdatering för Windows XP (KB956844)
Säkerhetsuppdatering för Windows XP (KB958644)
Säkerhetsuppdatering för Windows XP (KB958869)
Säkerhetsuppdatering för Windows XP (KB959426)
Säkerhetsuppdatering för Windows XP (KB960225)
Säkerhetsuppdatering för Windows XP (KB960803)
Säkerhetsuppdatering för Windows XP (KB960859)
Säkerhetsuppdatering för Windows XP (KB961501)
Säkerhetsuppdatering för Windows XP (KB969059)
Säkerhetsuppdatering för Windows XP (KB970238)
Säkerhetsuppdatering för Windows XP (KB970430)
Säkerhetsuppdatering för Windows XP (KB971468)
Säkerhetsuppdatering för Windows XP (KB971657)
Säkerhetsuppdatering för Windows XP (KB972270)
Säkerhetsuppdatering för Windows XP (KB973507)
Säkerhetsuppdatering för Windows XP (KB973869)
Säkerhetsuppdatering för Windows XP (KB973904)
Säkerhetsuppdatering för Windows XP (KB974112)
Säkerhetsuppdatering för Windows XP (KB974318)
Säkerhetsuppdatering för Windows XP (KB974392)
Säkerhetsuppdatering för Windows XP (KB974571)
Säkerhetsuppdatering för Windows XP (KB975025)
Säkerhetsuppdatering för Windows XP (KB975467)
Säkerhetsuppdatering för Windows XP (KB975560)
Säkerhetsuppdatering för Windows XP (KB975561)
Säkerhetsuppdatering för Windows XP (KB975562)
Säkerhetsuppdatering för Windows XP (KB975713)
Säkerhetsuppdatering för Windows XP (KB977816)
Säkerhetsuppdatering för Windows XP (KB977914)
Säkerhetsuppdatering för Windows XP (KB978037)
Säkerhetsuppdatering för Windows XP (KB978338)
Säkerhetsuppdatering för Windows XP (KB978542)
Säkerhetsuppdatering för Windows XP (KB978601)
Säkerhetsuppdatering för Windows XP (KB978706)
Säkerhetsuppdatering för Windows XP (KB979309)
Säkerhetsuppdatering för Windows XP (KB979482)
Säkerhetsuppdatering för Windows XP (KB979559)
Säkerhetsuppdatering för Windows XP (KB979683)
Säkerhetsuppdatering för Windows XP (KB979687)
Säkerhetsuppdatering för Windows XP (KB980218)
Säkerhetsuppdatering för Windows XP (KB980232)
Säkerhetsuppdatering för Windows XP (KB981322)
Säkerhetsuppdatering för Windows XP (KB981997)
Säkerhetsuppdatering för Windows XP (KB982132)
Säkerhetsuppdatering för Windows XP (KB982381)
Säkerhetsuppdatering för Windows XP (KB982665)
Sony Picture Utility
Språkpaket för Microsoft .NET Framework 3.5 SP 1 - sve
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Uppdatering för Windows Internet Explorer 8 (KB2598845)
Uppdatering för Windows XP (KB2345886)
Uppdatering för Windows XP (KB2467659)
Uppdatering för Windows XP (KB2641690)
Uppdatering för Windows XP (KB2718704)
Uppdatering för Windows XP (KB951978)
Uppdatering för Windows XP (KB955759)
Uppdatering för Windows XP (KB961503)
Uppdatering för Windows XP (KB967715)
Uppdatering för Windows XP (KB968389)
Uppdatering för Windows XP (KB971029)
Uppdatering för Windows XP (KB971737)
Uppdatering för Windows XP (KB973687)
Uppdatering för Windows XP (KB973815)
WebFldrs XP
VideoLAN VLC media player 0.8.4
Videora iPhone 3GS Converter 6
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage v1.3.0254.0
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live Mail
Windows Live Photo Gallery
Windows Live Sync
Windows Live Writer
Windows Media Connect
Windows Media Format 11 runtime
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 11
Windows Media Player Firefox Plugin
Windows XP Service Pack 3
Visma Administration
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
XML Paper Specification Shared Components Language Pack 1.0
.
==== Event Viewer Messages From Past Week ========
.
2012-06-11 12:35:33, information: Windows File Protection [64004] - Det gick inte att återställa den skyddade systemfilen userinit.exe till den giltiga originalversionen. Den ogiltiga filens version är 5.1.2600.5512 Följande felkod returnerades: 0x8e5e0442.
2012-06-10 18:54:51, information: Windows File Protection [64004] - Det gick inte att återställa den skyddade systemfilen userinit.exe till den giltiga originalversionen. Den ogiltiga filens version är 5.1.2600.5512 Följande felkod returnerades: 0x8e5e0442.
.
==== End Of File ===========================
0

#4

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 11 jun 2012, 20:50

Glömde att säga att ja hittade inte BrowsweComparison, avinstallerade de andra

// Carin
0

#5
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 11 jun 2012, 22:08

Senaste Ad-Aware, dvs version 10, innehåller även ett antivirusprogram med fullt realtidsskydd så det ska inte kombineras med andra antivirusprogram. Det ser inte ut som att Ad-Aware är avinstallerat i loggarna så om du avinstallerade Ad-Aware efter att du hade skapat loggarna, kör DDS igen och klistra in nya loggar.

Följande finns i listan över program som kan avinstalleras i Attach.txt:
Ad-Aware
Ad-Aware Antivirus
Ad-Aware Browsing Protection
Ad-Aware Security Toolbar
0

#6

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 12 jun 2012, 09:00

Har nu försökt avinstallera allt som har med Ad-Aware att göra.


.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_18
Run by mattias at 9:56:36 on 2012-06-12
Microsoft Windows XP Home Edition 5.1.2600.3.1252.46.1053.18.1534.861 [GMT 2:00]
.
AV: AVG Anti-Virus Free *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
c:\Program\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program\Samsung\Kies\KiesTrayAgent.exe
C:\program\real\realplayer\update\realsched.exe
C:\Program\Analog Devices\Core\smax4pnp.exe
C:\Program\Microsoft Security Client\msseces.exe
C:\Program\BrowserCompanion\BCHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program\Personal\bin\Personal.exe
C:\Program\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe
svchost.exe
C:\Program\Delade filer\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program\Java\jre6\bin\jqs.exe
C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program\Mozilla Firefox\firefox.exe
C:\Program\Mozilla Firefox\plugin-container.exe
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
uStart Page = hxxp://search.babylon.com/?affID=112059&tt=060612_5_&babsrc=HP_ss&mntrId=f0c2ba8c000000000000001111b84a30
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = 192.168.*.*
uSearchURL,(Default) = hxxp://g.msn.se/0SESVSE/SAOS01?FORM=TOOLBR
mWinlogon: Userinit=c:\windows\system32\userinit.exe
BHO: Chatvibes Browser Helper: {00cbb66b-1d3b-46d3-9577-323a336acb50} - c:\program\browsercompanion\jsloader.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program\delade filer\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program\java\jre6\bin\ssv.dll
BHO: Chatvibes Browser Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - c:\program\browsercompanion\updatebhoWin32.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File
TB: &Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MsnMsgr] "c:\program\windows live\messenger\msnmsgr.exe" /background
uRun: [UniblueRegistryBooster] "c:\program\uniblue\registrybooster\launcher.exe" delay 20000
uRun: [KiesPDLR] c:\program\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [KiesHelper] c:\program\samsung\kies\KiesHelper.exe /s
uRun: [WMPNSCFG] c:\program\windows media player\WMPNSCFG.exe
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [IAAnotif] c:\program\intel\intel application accelerator\iaanotif.exe
mRun: [SunJavaUpdateSched] c:\program\java\jre6\bin\jusched.exe
mRun: [Adobe ARM] "c:\program\delade filer\adobe\arm\1.0\AdobeARM.exe"
mRun: [KiesTrayAgent] c:\program\samsung\kies\KiesTrayAgent.exe
mRun: [APSDaemon] "c:\program\delade filer\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program\quicktime\QTTask.exe" -atboottime
mRun: [TkBellExe] "c:\program\real\realplayer\update\realsched.exe" -osboot
mRun: [SoundMAXPnP] c:\program\analog devices\core\smax4pnp.exe
mRun: [MSC] "c:\program\microsoft security client\msseces.exe" -hide -runkey
mRun: [Browser companion helper] c:\program\browsercompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
dRun: [DWQueuedReporting] "c:\program\delade~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
StartupFolder: c:\docume~1\mattias\start-~1\program\autost~1\pmbver~1.lnk - c:\program\sony\sony picture utility\pmbcore\SPUVolumeWatcher.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\adobeg~1.lnk - c:\program\delade filer\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\bankid~1.lnk - c:\program\personal\bin\Personal.exe
StartupFolder: c:\docume~1\alluse~1\start-~1\program\autost~1\micros~1.lnk - c:\program\office10\OSA.EXE
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program\windows live\writer\WriterBrowserExtension.dll
DPF: {00000055-9980-0010-8000-00AA00389B71} - hxxp://codecs.microsoft.com/codecs/i386/fhg.CAB
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://www.apple.com/qtactivex/qtplugin.cab
DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} - hxxps://support.microsoft.com/OAS/ActiveX/MSDcode.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://by110fd.bay110.hotmail.msn.com/resources/MsnPUpld.cab
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1180713662609
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} - hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} - hxxp://webc.carinpallin.se/auth/controls/IlosoftImageUpload.dll
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : NameServer = 79.138.0.180,85.8.31.209
TCP: Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306} : DhcpNameServer = 192.168.0.1
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program\browsercompanion\tdataprotocol.dll
Notify: avgrsstarter - avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://www.superstart.se/
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\documents and settings\mattias\application data\mozilla\firefox\profiles\uyuu74s4.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}\plugins\np-mswmp.dll
FF - plugin: c:\program\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program\microsoft\office live\npOLW.dll
FF - plugin: c:\program\opera\program\plugins\np_gp.dll
FF - plugin: c:\program\opera\program\plugins\npjpi160_18.dll
FF - plugin: c:\program\opera\program\plugins\npoji610.dll
FF - plugin: c:\program\personal\bin\np_prsnl.dll
FF - plugin: c:\program\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\program\windows media player\npdsplay(2).dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_2_202_235.dll
.
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.zencast - );user_pref(extensions.BabylonToolbar_i.babTrack, affID=112059&tt=060612_5_
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.hardId - f0c2ba8c000000000000001111b84a30
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15499
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:23:39
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-7-10 64288]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 171064]
R1 MpKsl759c4bd1;MpKsl759c4bd1;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsl759c4bd1.sys [2012-6-12 29904]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-8-22 54752]
R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\drivers\seehcri.sys [2009-11-8 27632]
S1 SBRE;SBRE;\??\c:\windows\system32\drivers\sbredrv.sys --> c:\windows\system32\drivers\SBREdrv.sys [?]
S1 tvtool;tvtool;\??\c:\program\tvtool 9.5\tvtool.sys --> c:\program\tvtool 9.5\tvtool.sys [?]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-4-3 257696]
S3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\drivers\motfilt.sys --> c:\windows\system32\drivers\motfilt.sys [?]
S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-10-2 20032]
S3 fsssvc;Windows Live Family Safety Service;c:\program\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-6-1 13352]
S3 JabraDFU;Jabra Bluecore headset DFU driver;c:\windows\system32\drivers\jabramobilecsrdfux86.sys --> c:\windows\system32\drivers\JabraMobileCsrDfuX86.sys [?]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;\??\c:\program\lavasoft\ad-aware\kernexplorer.sys --> c:\program\lavasoft\ad-aware\KernExplorer.sys [?]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys --> c:\windows\system32\drivers\motccgp.sys [?]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys --> c:\windows\system32\drivers\motccgpfl.sys [?]
S3 Motousbnet;Motorola USB Networking Driver Service;c:\windows\system32\drivers\motousbnet.sys --> c:\windows\system32\drivers\Motousbnet.sys [?]
S3 motusbdevice;Motorola USB Dev Driver;c:\windows\system32\drivers\motusbdevice.sys --> c:\windows\system32\drivers\motusbdevice.sys [?]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program\mozilla maintenance service\maintenanceservice.exe [2012-5-5 129976]
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);c:\windows\system32\drivers\s1039bus.sys [2011-7-30 98672]
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;c:\windows\system32\drivers\s1039mdfl.sys [2011-7-30 14960]
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;c:\windows\system32\drivers\s1039mdm.sys [2011-7-30 124016]
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s1039mgmt.sys [2011-7-30 117872]
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);c:\windows\system32\drivers\s1039nd5.sys [2011-7-30 25456]
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;c:\windows\system32\drivers\s1039obex.sys [2011-7-30 113904]
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);c:\windows\system32\drivers\s1039unic.sys [2011-7-30 123504]
.
=============== Created Last 30 ================
.
2012-06-12 07:51:14 29904 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\MpKsl759c4bd1.sys
2012-06-11 10:50:32 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{10a612a4-b030-44c4-9163-1fac39bf9ce0}\mpengine.dll
2012-06-11 10:45:31 217976 ----a-w- c:\windows\system32\drivers\sbtis.sys
2012-06-11 10:44:51 94584 ----a-w- c:\windows\system32\drivers\SbFwIm.sys
2012-06-11 10:39:03 -------- dc----w- c:\documents and settings\all users\application data\GFI Software
2012-06-10 14:26:53 6737808 -c--a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2012-06-08 20:35:21 6144 -c----w- c:\windows\system32\dllcache\iecompat.dll
2012-06-08 20:35:11 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2012-06-08 20:35:10 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2012-06-08 20:35:05 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2012-06-08 20:35:04 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2012-06-08 20:35:04 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2012-06-08 20:35:03 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll
2012-06-08 20:35:00 11082752 -c----w- c:\windows\system32\dllcache\ieframe.dll
2012-06-08 20:22:27 -------- dc----w- c:\documents and settings\mattias\AppData
2012-06-08 20:22:20 -------- d-----w- c:\program\BrowserCompanion
2012-06-08 20:22:19 -------- dc----w- c:\documents and settings\all users\application data\Babylon
2012-06-08 20:22:17 -------- dc----w- c:\documents and settings\mattias\application data\Babylon
2012-05-15 08:47:45 -------- dc----w- c:\documents and settings\all users\application data\Ad-Aware Browsing Protection
.
==================== Find3M ====================
.
2012-06-11 10:35:23 26112 ----a-w- c:\windows\system32\userinit.exe
2012-05-31 13:22:03 602112 ----a-w- c:\windows\system32\crypt32.dll
2012-05-05 11:26:27 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-05-05 11:26:27 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-04-11 13:55:27 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 13:55:17 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 13:55:03 2149376 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-20 18:44:12 171064 ----a-w- c:\windows\system32\drivers\MpFilter.sys
.
============= FINISH: 9:57:58,54 ===============


.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 2012-03-01 11:39:03
System Uptime: 2012-06-12 09:50:24 (0 hours ago)
.
Motherboard: Dell Inc. | | 0J3492
Processor: Intel® Pentium® 4 CPU 3.00GHz | Microprocessor | 2992/800mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 146 GiB total, 69,939 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP93: 2012-06-09 00:10:25 - Software Distribution Service 3.0
RP94: 2012-06-09 00:23:28 - Software Distribution Service 3.0
RP95: 2012-06-10 16:26:26 - Software Distribution Service 3.0
RP96: 2012-06-11 12:36:14 - Removed Ad-Aware Antivirus.
RP97: 2012-06-11 12:50:12 - Software Distribution Service 3.0
RP98: 2012-06-12 09:39:06 - Removed Ad-Aware Antivirus.
.
==== Installed Programs ======================
.
7-Zip 4.65
Acrobat.com
Ad-Aware Browsing Protection
Adobe AIR
Adobe Flash Player 11 Plugin
Adobe Photoshop 7.0
Adobe Reader X (10.1.3) - Svenska
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ATI Display Driver
µTorrent
BabylonObjectInstaller
BankID säkerhetsprogram
Bonniers Trafikskola 2007
BrowserCompanion
CutePDF Writer 2.8
Dell Driver Download Manager
Dell Driver Reset Tool
Dell System Restore
DVD Decrypter (Remove Only)
Garmin MapSource
Garmin USB Drivers
Garmin WebUpdater
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel Application Accelerator
Java Auto Updater
Java™ 6 Update 18
Junk Mail filter update
Macromedia Shockwave Player
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - SVE
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - SVE
Microsoft .NET Framework 3.5 Language Pack SP1 - sve
Microsoft .NET Framework 3.5 SP1
Microsoft Antimalware Service SV-SE Language Pack
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Office Live Add-in 1.3
Microsoft Office XP Professional med FrontPage
Microsoft Security Client
Microsoft Security Client SV-SE Language Pack
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works 7.0
MicroStaff WINASPI
MotoHelper MergeModules
Mozilla Firefox 12.0 (x86 en-US)
Mozilla Maintenance Service
MP3 music player
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
MyFreeCodec
MyPhoneExplorer
Nero OEM
Nero Suite
neroxml
Norrlands Skoterledskarta Autorouting v3.0.2.1
OGA Notifier 1.7.0105.35.0
OpenOffice.org Installer 1.0
Primo
QuickTime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Runtime
Samsung Kies
SAMSUNG USB Driver for Mobile Phones
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Segoe UI
Snabbkorrigering för Windows XP (KB952287)
Snabbkorrigering för Windows XP (KB961118)
Säkerhetsuppdatering för Microsoft Windows (KB2564958)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2510531)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2544521)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2618444)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2647516)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB2675157)
Säkerhetsuppdatering för Windows Internet Explorer 8 (KB982381)
Säkerhetsuppdatering för Windows Media Player (KB973540)
Säkerhetsuppdatering för Windows XP (KB2079403)
Säkerhetsuppdatering för Windows XP (KB2115168)
Säkerhetsuppdatering för Windows XP (KB2229593)
Säkerhetsuppdatering för Windows XP (KB2296011)
Säkerhetsuppdatering för Windows XP (KB2347290)
Säkerhetsuppdatering för Windows XP (KB2360937)
Säkerhetsuppdatering för Windows XP (KB2387149)
Säkerhetsuppdatering för Windows XP (KB2393802)
Säkerhetsuppdatering för Windows XP (KB2412687)
Säkerhetsuppdatering för Windows XP (KB2419632)
Säkerhetsuppdatering för Windows XP (KB2423089)
Säkerhetsuppdatering för Windows XP (KB2440591)
Säkerhetsuppdatering för Windows XP (KB2443105)
Säkerhetsuppdatering för Windows XP (KB2476490)
Säkerhetsuppdatering för Windows XP (KB2478960)
Säkerhetsuppdatering för Windows XP (KB2478971)
Säkerhetsuppdatering för Windows XP (KB2479943)
Säkerhetsuppdatering för Windows XP (KB2481109)
Säkerhetsuppdatering för Windows XP (KB2483185)
Säkerhetsuppdatering för Windows XP (KB2485663)
Säkerhetsuppdatering för Windows XP (KB2491683)
Säkerhetsuppdatering för Windows XP (KB2506212)
Säkerhetsuppdatering för Windows XP (KB2507618)
Säkerhetsuppdatering för Windows XP (KB2507938)
Säkerhetsuppdatering för Windows XP (KB2508429)
Säkerhetsuppdatering för Windows XP (KB2509553)
Säkerhetsuppdatering för Windows XP (KB2510581)
Säkerhetsuppdatering för Windows XP (KB2535512)
Säkerhetsuppdatering för Windows XP (KB2536276-v2)
Säkerhetsuppdatering för Windows XP (KB2544521)
Säkerhetsuppdatering för Windows XP (KB2544893-v2)
Säkerhetsuppdatering för Windows XP (KB2566454)
Säkerhetsuppdatering för Windows XP (KB2570222)
Säkerhetsuppdatering för Windows XP (KB2570947)
Säkerhetsuppdatering för Windows XP (KB2584146)
Säkerhetsuppdatering för Windows XP (KB2585542)
Säkerhetsuppdatering för Windows XP (KB2592799)
Säkerhetsuppdatering för Windows XP (KB2598479)
Säkerhetsuppdatering för Windows XP (KB2603381)
Säkerhetsuppdatering för Windows XP (KB2619339)
Säkerhetsuppdatering för Windows XP (KB2620712)
Säkerhetsuppdatering för Windows XP (KB2621440)
Säkerhetsuppdatering för Windows XP (KB2624667)
Säkerhetsuppdatering för Windows XP (KB2631813)
Säkerhetsuppdatering för Windows XP (KB2633171)
Säkerhetsuppdatering för Windows XP (KB2641653)
Säkerhetsuppdatering för Windows XP (KB2646524)
Säkerhetsuppdatering för Windows XP (KB2647516)
Säkerhetsuppdatering för Windows XP (KB2647518)
Säkerhetsuppdatering för Windows XP (KB2653956)
Säkerhetsuppdatering för Windows XP (KB2659262)
Säkerhetsuppdatering för Windows XP (KB2660465)
Säkerhetsuppdatering för Windows XP (KB2675157)
Säkerhetsuppdatering för Windows XP (KB2676562)
Säkerhetsuppdatering för Windows XP (KB2686509)
Säkerhetsuppdatering för Windows XP (KB2695962)
Säkerhetsuppdatering för Windows XP (KB923561)
Säkerhetsuppdatering för Windows XP (KB923789)
Säkerhetsuppdatering för Windows XP (KB941569)
Säkerhetsuppdatering för Windows XP (KB946648)
Säkerhetsuppdatering för Windows XP (KB950762)
Säkerhetsuppdatering för Windows XP (KB950974)
Säkerhetsuppdatering för Windows XP (KB951376-v2)
Säkerhetsuppdatering för Windows XP (KB951748)
Säkerhetsuppdatering för Windows XP (KB952004)
Säkerhetsuppdatering för Windows XP (KB952954)
Säkerhetsuppdatering för Windows XP (KB953155)
Säkerhetsuppdatering för Windows XP (KB955069)
Säkerhetsuppdatering för Windows XP (KB956572)
Säkerhetsuppdatering för Windows XP (KB956744)
Säkerhetsuppdatering för Windows XP (KB956802)
Säkerhetsuppdatering för Windows XP (KB956803)
Säkerhetsuppdatering för Windows XP (KB956844)
Säkerhetsuppdatering för Windows XP (KB958644)
Säkerhetsuppdatering för Windows XP (KB958869)
Säkerhetsuppdatering för Windows XP (KB959426)
Säkerhetsuppdatering för Windows XP (KB960225)
Säkerhetsuppdatering för Windows XP (KB960803)
Säkerhetsuppdatering för Windows XP (KB960859)
Säkerhetsuppdatering för Windows XP (KB961501)
Säkerhetsuppdatering för Windows XP (KB969059)
Säkerhetsuppdatering för Windows XP (KB970238)
Säkerhetsuppdatering för Windows XP (KB970430)
Säkerhetsuppdatering för Windows XP (KB971468)
Säkerhetsuppdatering för Windows XP (KB971657)
Säkerhetsuppdatering för Windows XP (KB972270)
Säkerhetsuppdatering för Windows XP (KB973507)
Säkerhetsuppdatering för Windows XP (KB973869)
Säkerhetsuppdatering för Windows XP (KB973904)
Säkerhetsuppdatering för Windows XP (KB974112)
Säkerhetsuppdatering för Windows XP (KB974318)
Säkerhetsuppdatering för Windows XP (KB974392)
Säkerhetsuppdatering för Windows XP (KB974571)
Säkerhetsuppdatering för Windows XP (KB975025)
Säkerhetsuppdatering för Windows XP (KB975467)
Säkerhetsuppdatering för Windows XP (KB975560)
Säkerhetsuppdatering för Windows XP (KB975561)
Säkerhetsuppdatering för Windows XP (KB975562)
Säkerhetsuppdatering för Windows XP (KB975713)
Säkerhetsuppdatering för Windows XP (KB977816)
Säkerhetsuppdatering för Windows XP (KB977914)
Säkerhetsuppdatering för Windows XP (KB978037)
Säkerhetsuppdatering för Windows XP (KB978338)
Säkerhetsuppdatering för Windows XP (KB978542)
Säkerhetsuppdatering för Windows XP (KB978601)
Säkerhetsuppdatering för Windows XP (KB978706)
Säkerhetsuppdatering för Windows XP (KB979309)
Säkerhetsuppdatering för Windows XP (KB979482)
Säkerhetsuppdatering för Windows XP (KB979559)
Säkerhetsuppdatering för Windows XP (KB979683)
Säkerhetsuppdatering för Windows XP (KB979687)
Säkerhetsuppdatering för Windows XP (KB980218)
Säkerhetsuppdatering för Windows XP (KB980232)
Säkerhetsuppdatering för Windows XP (KB981322)
Säkerhetsuppdatering för Windows XP (KB981997)
Säkerhetsuppdatering för Windows XP (KB982132)
Säkerhetsuppdatering för Windows XP (KB982381)
Säkerhetsuppdatering för Windows XP (KB982665)
Sony Picture Utility
Språkpaket för Microsoft .NET Framework 3.5 SP 1 - sve
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Uppdatering för Windows Internet Explorer 8 (KB2598845)
Uppdatering för Windows XP (KB2345886)
Uppdatering för Windows XP (KB2467659)
Uppdatering för Windows XP (KB2641690)
Uppdatering för Windows XP (KB2718704)
Uppdatering för Windows XP (KB951978)
Uppdatering för Windows XP (KB955759)
Uppdatering för Windows XP (KB961503)
Uppdatering för Windows XP (KB967715)
Uppdatering för Windows XP (KB968389)
Uppdatering för Windows XP (KB971029)
Uppdatering för Windows XP (KB971737)
Uppdatering för Windows XP (KB973687)
Uppdatering för Windows XP (KB973815)
WebFldrs XP
VideoLAN VLC media player 0.8.4
Videora iPhone 3GS Converter 6
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage v1.3.0254.0
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live Mail
Windows Live Photo Gallery
Windows Live Sync
Windows Live Writer
Windows Media Connect
Windows Media Format 11 runtime
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 11
Windows Media Player Firefox Plugin
Windows XP Service Pack 3
Visma Administration
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
XML Paper Specification Shared Components Language Pack 1.0
.
==== Event Viewer Messages From Past Week ========
.
2012-06-11 12:35:33, information: Windows File Protection [64004] - Det gick inte att återställa den skyddade systemfilen userinit.exe till den giltiga originalversionen. Den ogiltiga filens version är 5.1.2600.5512 Följande felkod returnerades: 0x8e5e0442.
2012-06-10 18:54:51, information: Windows File Protection [64004] - Det gick inte att återställa den skyddade systemfilen userinit.exe till den giltiga originalversionen. Den ogiltiga filens version är 5.1.2600.5512 Följande felkod returnerades: 0x8e5e0442.
.
==== End Of File ===========================
0

#7
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 12 jun 2012, 10:34

Hittar du något med Babylon på någon av flikarna i Firefox - Verktyg - Tillägg? I så fall avinstallera eller inaktivera.

Det är gamla Java-versioner med säkerhetshål i datorn. Avinstallera Java™ 6 Update 18
och hämta en ny från http://www.java.com/sv/

Starta om datorn.
Spara ComboFix på Skrivbordet: http://download.blee...Bs/ComboFix.exe

Stäng av alla program du ser inklusive antivirusprogram och antispionprogram, men lämna brandväggen på.
Hur? Se http://www.bleepingc...opic114351.html
Kör ComboFix och följ anvisningarna som visas.
Om det kommer upp en fråga om du vill installera återställningskonsolen så svara Ja.
Mer detaljerad vägledning finns på http://www.bleepingc...ix-ska-anvandas

Om det kommer upp något meddelande, t ex att ett rootkit har hittats, från ComboFix skriv ner det och skriv det sedan i ditt svar.

VIKTIGT! Klicka inte på ComboFix-fönstret med musen när det körs eftersom så det kan hänga upp sig då.

När ComboFix är färdig ska en logg komma upp, klistra in den i ditt svar. Kontrollera att antivirusprogram mm är igång innan du ansluter till internet.

Om du får problem med att komma ut på internet:
Kontrollpanelen - Nätverksanslutningar
högerklicka på din internetanslutning och välj Reparera och/eller starta om datorn.
0

#8

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 12 jun 2012, 12:07

Har laddat ner Combofix och körde det men då kom det upp en varningsruta
som sa att "AVG Anti-Virus Free" var igång med något.

Hittar inte hur jag ska avinstallera/avaktivera för den står inte med under programen ???
0

#9
Medlem är utloggad   Thirteen 

  • Flitig
  • PipPipPipPip
  • Grupp: Medlemmar
  • Inlägg: 978
  • Gick med: 2010-03-17

Skrivet 12 jun 2012, 13:01

Visa inläggmattebackman, den 12 jun 2012, 12:07, sa:

Har laddat ner Combofix och körde det men då kom det upp en varningsruta
som sa att "AVG Anti-Virus Free" var igång med något.

Hittar inte hur jag ska avinstallera/avaktivera för den står inte med under programen ???


Om du vill avinstallera AVG Anti-Virus Free så har du avinstallationsverktyg här: http://www.avg.com/ww-en/utilities

Du kan alltid återinstallera AVG Anti-Virus Free senare.
Kaspersky Anti-Virus, LibreOffice, Mozilla Firefox, Piriform CCleaner
0

#10

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 12 jun 2012, 13:11

Visa inläggThirteen, den 12 jun 2012, 13:01, sa:

Om du vill avinstallera AVG Anti-Virus Free så har du avinstallationsverktyg här: http://www.avg.com/ww-en/utilities

Du kan alltid återinstallera AVG Anti-Virus Free senare.


Testade det, körde den första i raden men när jag körde ComboFixen igen sa
den samma sak.

Måste jag starta om datorn efter jag kört avinstalationsprogrammet kanske...?

Ska iaf testa att starta om den nu :)
0

#11
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 12 jun 2012, 13:46

AVG är inte igång i datorn utan det finns bara någon rest kvar så ignorera varningen och kör ComboFix ändå.
0

#12
Medlem är utloggad   pralin 

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 17
  • Gick med: 2008-07-03
  • Ort:umeå

Skrivet 12 jun 2012, 17:05

Jag testade att starta om men då ville inte uppkopplingen fungera. Testade att göra som det stod ovan,
att reparera men det funkade inte, ej heller att starta om. Det verkar som jag inte har ngn ip-adress????

Fick åka till en kompis och låna uppkoppling...

Vad göra???
0

#13
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 12 jun 2012, 21:33

Gör en systemåterställning till en tidpunkt innan ComboFix-körningen:
Start-menyn - Alla program - Tillbehör - Systemverktyg - Systemåterställning
0

#14

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 13 jun 2012, 20:09

Systemåterställning gjord och det lyckades...pust!!

Ska jag börja om helt från början?
0

#15
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 13 jun 2012, 21:55

Om filen C:\ComboFix.txt finns i datorn så öppna den i Anteckningar, kopiera innehållet och klistra in i ditt svar.

Spara OTL på Skrivbordet.
http://oldtimer.geekstogo.com/OTL.exe
Stäng alla program.
Kör OTL.

Under Output högt upp så välj Minimal Output.
Bocka för LOP Check och Purity Check.
Tryck på Run Scan och låt programmet köra ostört.

När det är klart så skapas två loggfiler på Skrivbordet, OTL.txt och Extras.txt. I ditt svar klistrar du in loggen OTL.txt. Medan du bifogar Extras.txt som en fil.
0

#16

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 13 jun 2012, 22:16

Gjorde en sökning, hittar ingen ComboFix.txt fil...
0

#17
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 13 jun 2012, 22:24

Kör OTL då.
0

#18

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 14 jun 2012, 12:28

OTL logfile created on: 2012-06-14 12:54:29 - Run 1
OTL by OldTimer - Version 3.2.48.0 Folder = C:\Documents and Settings\mattias\Skrivbord
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041D | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd

1,50 Gb Total Physical Memory | 0,98 Gb Available Physical Memory | 65,30% Memory free
3,35 Gb Paging File | 2,97 Gb Available in Paging File | 88,54% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program
Drive C: | 146,21 Gb Total Space | 72,13 Gb Free Space | 49,34% Space Free | Partition Type: NTFS

Computer Name: MB | User Name: mattias | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\mattias\Skrivbord\OTL(1).exe (OldTimer Tools)
PRC - C:\Program\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
PRC - C:\Program\Microsoft Security Client\msseces.exe (Microsoft Corporation)
PRC - c:\Program\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
PRC - C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
PRC - C:\Program\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
PRC - C:\Program\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
PRC - C:\Program\Personal\bin\Personal.exe (Technology Nexus AB)
PRC - C:\Program\Ad-Aware Antivirus\SBAMSvc.exe (GFI Software)
PRC - C:\Program\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
PRC - C:\Program\Delade filer\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
PRC - C:\WINDOWS\SYSTEM32\WGATray.exe (Microsoft Corporation)
PRC - C:\Program\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program\Intel\Intel Application Accelerator\IAAnotif.exe (Intel Corporation)
PRC - C:\Program\Intel\Intel Application Accelerator\IAANTmon.exe (Intel Corporation)
PRC - C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)


========== Modules (No Company Name) ==========

MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\9080c8e8e7b6dfb502c1328673d636f8\System.Management.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\92d58f840f549f9bd880783d43db7e3c\System.Runtime.Remoting.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\3d5b7368bde0f65aa15d9f46b498cc89\System.Configuration.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\995fcf39ead2c2a53e084505c2c67d49\System.Windows.Forms.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\8ca00132a08c69697adf1cda32ebd835\System.Drawing.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core\38d07a5ac34b99d94fd14f42e779f625\System.Core.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7416fe825e6e49a87fa8ff60c8971813\PresentationFramework.Classic.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\5b8ff47c1db373a2a4c638ca31988bd2\PresentationFramework.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\4eb3cd1f1d5a83617524a9dfb96a657d\PresentationCore.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\6d8bef0d008389874e55c0308f0c18e5\WindowsBase.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll ()
MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll ()
MOD - C:\Program\adawaretb\adawareDx.dll ()
MOD - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\PDFShell.SVE ()
MOD - C:\Documents and Settings\mattias\Lokala inställningar\Temp\85e80529-e4f2-4f39-a0f4-8e660bf7f00d\CliSecureRT.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\sv-SE\CommonModule.resources.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\FirmwareUpdateAgent.Common.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\FirmwareUpdate.MVVM.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\IPCServer.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\ISharedIPCInterface.dll ()
MOD - C:\Program\Samsung\Kies\External\FirmwareUpdate\CommonModule.dll ()
MOD - C:\WINDOWS\SYSTEM32\cpwmon2k.dll ()
MOD - C:\Program\Ad-Aware Antivirus\Definitions\libMachoUniv.dll ()
MOD - C:\Program\Ad-Aware Antivirus\Definitions\libBase64.dll ()
MOD - C:\Program\Delade filer\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program\Delade filer\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program\BrowserCompanion\sqlite3.dll ()
MOD - C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_sv_b77a5c561934e089\mscorlib.resources.dll ()


========== Win32 Services (SafeList) ==========

SRV - (NipSvc) -- C:\NORMAN\Nvc\BIN\nipsvc.exe File not found
SRV - (AppMgmt) -- %SystemRoot%\System32\appmgmts.dll File not found
SRV - (MozillaMaintenance) -- C:\Program\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (Ad-Aware Service) -- C:\Program\Ad-Aware Antivirus\AdAwareService.exe (Lavasoft Limited)
SRV - (Lavasoft Ad-Aware Service) -- C:\Program\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SRV - (MsMpSvc) -- c:\Program\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SRV - (SBAMSvc) -- C:\Program\Ad-Aware Antivirus\SBAMSvc.exe (GFI Software)
SRV - (Apple Mobile Device) -- C:\Program\Delade filer\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (IDriverT) -- C:\Program\Delade filer\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (IAANTMon) -- C:\Program\Intel\Intel Application Accelerator\IAANTmon.exe (Intel Corporation)
SRV - (MDM) -- C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV - (WDICA) -- File not found
DRV - (tvtool) -- C:\Program\TVTool 9.5\tvtool.sys File not found
DRV - (PDRFRAME) -- File not found
DRV - (PDRELI) -- File not found
DRV - (PDFRAME) -- File not found
DRV - (PDCOMP) -- File not found
DRV - (PCIDump) -- File not found
DRV - (motusbdevice) -- system32\DRIVERS\motusbdevice.sys File not found
DRV - (Motousbnet) -- system32\DRIVERS\Motousbnet.sys File not found
DRV - (MotoSwitchService) -- system32\DRIVERS\motswch.sys File not found
DRV - (motmodem) -- system32\DRIVERS\motmodem.sys File not found
DRV - (motccgpfl) -- system32\DRIVERS\motccgpfl.sys File not found
DRV - (motccgp) -- system32\DRIVERS\motccgp.sys File not found
DRV - (lbrtfdc) -- File not found
DRV - (JabraDFU) -- System32\Drivers\JabraMobileCsrDfuX86.sys File not found
DRV - (Changer) -- File not found
DRV - (BTCFilterService) -- system32\DRIVERS\motfilt.sys File not found
DRV - (Lavasoft Kernexplorer) -- C:\Program\Lavasoft\Ad-Aware\kernexplorer.sys ()
DRV - (sbapifs) -- C:\WINDOWS\SYSTEM32\DRIVERS\sbapifs.sys (GFI Software)
DRV - (sbaphd) -- C:\WINDOWS\SYSTEM32\DRIVERS\sbaphd.sys (GFI Software)
DRV - (SBRE) -- C:\WINDOWS\SYSTEM32\DRIVERS\SBREDrv.sys (GFI Software)
DRV - (dgderdrv) -- C:\WINDOWS\SYSTEM32\DRIVERS\dgderdrv.sys (Devguru Co., Ltd)
DRV - (Lbd) -- C:\WINDOWS\SYSTEM32\DRIVERS\Lbd.sys (Lavasoft AB)
DRV - (s1039bus) Sony Ericsson Device 1039 driver (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039bus.sys (MCCI Corporation)
DRV - (s1039nd5) Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039nd5.sys (MCCI Corporation)
DRV - (s1039mdm) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039mdm.sys (MCCI Corporation)
DRV - (s1039unic) Sony Ericsson Device 1039 USB Ethernet Emulation (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039unic.sys (MCCI Corporation)
DRV - (s1039mgmt) Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039mgmt.sys (MCCI Corporation)
DRV - (s1039obex) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039obex.sys (MCCI Corporation)
DRV - (s1039mdfl) -- C:\WINDOWS\SYSTEM32\DRIVERS\s1039mdfl.sys (MCCI Corporation)
DRV - (fssfltr) -- C:\WINDOWS\SYSTEM32\DRIVERS\fssfltr_tdi.sys (Microsoft Corporation)
DRV - (ggsemc) -- C:\WINDOWS\SYSTEM32\DRIVERS\ggsemc.sys (Sony Ericsson Mobile Communications)
DRV - (ggflt) -- C:\WINDOWS\SYSTEM32\DRIVERS\ggflt.sys (Sony Ericsson Mobile Communications)
DRV - (seehcri) -- C:\WINDOWS\SYSTEM32\DRIVERS\seehcri.sys (Sony Ericsson Mobile Communications)
DRV - (s117obex) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117obex.sys (MCCI Corporation)
DRV - (s117mdm) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117mdm.sys (MCCI Corporation)
DRV - (s117mgmt) Sony Ericsson Device 117 USB WMC Device Management Drivers (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117mgmt.sys (MCCI Corporation)
DRV - (s117unic) Sony Ericsson Device 117 USB Ethernet Emulation SEMC117 (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117unic.sys (MCCI Corporation)
DRV - (s117nd5) Sony Ericsson Device 117 USB Ethernet Emulation SEMC117 (NDIS) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117nd5.sys (MCCI Corporation)
DRV - (s117mdfl) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117mdfl.sys (MCCI Corporation)
DRV - (s117bus) Sony Ericsson Device 117 driver (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\s117bus.sys (MCCI Corporation)
DRV - (w200obex) -- C:\WINDOWS\SYSTEM32\DRIVERS\w200obex.sys (MCCI)
DRV - (w200mgmt) Sony Ericsson W200 USB WMC Device Management Drivers (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\w200mgmt.sys (MCCI)
DRV - (w200mdm) -- C:\WINDOWS\SYSTEM32\DRIVERS\w200mdm.sys (MCCI)
DRV - (w200mdfl) -- C:\WINDOWS\SYSTEM32\DRIVERS\w200mdfl.sys (MCCI)
DRV - (w200bus) Sony Ericsson W200 driver (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\w200bus.sys (MCCI)
DRV - (k750obex) -- C:\WINDOWS\SYSTEM32\DRIVERS\k750obex.sys (MCCI)
DRV - (k750mgmt) -- C:\WINDOWS\SYSTEM32\DRIVERS\k750mgmt.sys (MCCI)
DRV - (k750mdm) -- C:\WINDOWS\SYSTEM32\DRIVERS\k750mdm.sys (MCCI)
DRV - (k750mdfl) -- C:\WINDOWS\SYSTEM32\DRIVERS\k750mdfl.sys (MCCI)
DRV - (k750bus) Sony Ericsson 750 driver (WDM) -- C:\WINDOWS\SYSTEM32\DRIVERS\k750bus.sys (MCCI)
DRV - (senfilt) -- C:\WINDOWS\SYSTEM32\DRIVERS\senfilt.sys (Creative Technology Ltd.)
DRV - (SQTECH905C) -- C:\WINDOWS\SYSTEM32\DRIVERS\Capt905c.sys (Service & Quality Technology.)
DRV - (ati2mtag) -- C:\WINDOWS\SYSTEM32\DRIVERS\ati2mtag.sys (ATI Technologies Inc.)
DRV - (b57w2k) -- C:\WINDOWS\SYSTEM32\DRIVERS\b57xp32.sys (Broadcom Corporation)
DRV - (omci) -- C:\WINDOWS\SYSTEM32\DRIVERS\omci.sys (Dell Computer Corporation)
DRV - (MASPINT) -- C:\WINDOWS\System32\drivers\MASPINT.SYS (MicroStaff Co.,Ltd.)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.c...ferrer:source?}
IE - HKLM\..\SearchScopes\{F57AD34E-FF46-4960-82CF-EA11EE6FB2DD}: "URL" = http://search.live.c...ferrer:source?}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://se.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.bing.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Live Search
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.live.c...ferrer:source?}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylo...000001111b84a30
IE - HKCU\..\URLSearchHook: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
IE - HKCU\..\SearchScopes,DefaultScope = {C61A771F-AA7C-4CBA-9746-C151914AC855}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{A19D7C86-5339-4F9A-8DCD-9C531F2C65A9}: "URL" = http://search.live.c...ferrer:source?}
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT2504091
IE - HKCU\..\SearchScopes\{C61A771F-AA7C-4CBA-9746-C151914AC855}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{D2E5E204-4778-4801-A620-FF81D995F650}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 192.168.*.*

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.superstart.se/"
FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: wrc@avast.com:20110101
FF - prefs.js..keyword.URL: "http://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q="


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandasecurity.com/activescan: C:\Program\Panda Security\ActiveScan 2.0\npwrapper.dll (Panda Security)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.2.72: c:\program\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.2.72: c:\program\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.2.72: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.2.72: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=15.0.2.72: c:\program\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@se.nexus/Personal: C:\Program\Personal\bin\np_prsnl.dll (Technology Nexus AB)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-03-01 02:22:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program\Mozilla Firefox\components [2012-06-13 20:34:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program\Mozilla Firefox\plugins [2012-06-12 12:29:34 | 000,000,000 | ---D | M]

[2009-10-24 01:04:13 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Extensions
[2012-06-13 20:55:33 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\extensions
[2010-04-28 09:23:42 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009-07-26 15:44:36 | 000,000,000 | ---D | M] (Codetch) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\extensions\{420ed894-c19f-4318-a83f-bacae374db28}
[2012-05-15 10:47:11 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
[2008-05-31 23:31:48 | 000,000,000 | ---D | M] ("Svensk ordlista">) -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\extensions\sv@dictionaries.addons.mozilla(2).org
[2009-08-23 09:56:34 | 000,002,163 | ---- | M] () -- C:\Documents and Settings\mattias\Application Data\Mozilla\Firefox\Profiles\uyuu74s4.default\searchplugins\bing.xml
[2011-11-12 11:18:49 | 000,000,000 | ---D | M] (No name found) -- C:\Program\Mozilla Firefox\extensions
[2012-03-01 02:22:04 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\MATTIAS\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\UYUU74S4.DEFAULT\EXTENSIONS\{BA14329E-9550-4989-B3F2-9732E92D17CC}
[2012-05-05 15:16:26 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program\mozilla firefox\components\browsercomps.dll
[2012-06-08 22:23:24 | 000,002,352 | ---- | M] () -- C:\Program\mozilla firefox\searchplugins\babylon.xml
[2011-10-02 16:23:31 | 000,002,252 | ---- | M] () -- C:\Program\mozilla firefox\searchplugins\bing.xml
[2011-11-12 11:18:33 | 000,002,040 | ---- | M] () -- C:\Program\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - default_search_provider: MSN Live Search ()
CHR - default_search_provider: search_url = http://search.live.c...ferrer:source?}
CHR - default_search_provider: suggest_url =

O1 HOSTS File: ([2008-07-04 15:15:13 | 000,000,027 | ---- | M]) - C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Chatvibes Browser Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program\BrowserCompanion\jsloader.dll ( )
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Ad-Aware Security Toolbar) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program\adawaretb\adawareDx.dll ()
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Chatvibes Browser Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program\BrowserCompanion\updatebhoWin32.dll ( )
O2 - BHO: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Ad-Aware Security Toolbar) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program\adawaretb\adawareDx.dll ()
O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (Babylon Ltd.)
O3 - HKLM\..\Toolbar: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {472734EA-242A-422B-ADF8-83D1E48CC825} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Vuze Remote Toolbar) - {BA14329E-9550-4989-B3F2-9732E92D17CC} - C:\Program\Vuze_Remote\prxtbVuze.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Ad-Aware Antivirus] C:\Program\Ad-Aware Antivirus\AdAwareLauncher.exe (Lavasoft Limited)
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft)
O4 - HKLM..\Run: [Adobe ARM] C:\Program\Delade filer\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program\Delade filer\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [Browser companion helper] C:\Program\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD)
O4 - HKLM..\Run: [IAAnotif] C:\Program\Intel\Intel Application Accelerator\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [MSC] c:\Program\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\SYSTEM32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program\Java\jre6\bin\jusched.exe File not found
O4 - HKLM..\Run: [TkBellExe] C:\program\real\realplayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [KiesHelper] C:\Program\Samsung\Kies\KiesHelper.exe (Samsung)
O4 - HKCU..\Run: [KiesPDLR] C:\Program\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe ()
O4 - HKCU..\Run: [MsnMsgr] "C:\Program\Windows Live\Messenger\msnmsgr.exe" /background File not found
O4 - HKCU..\Run: [UniblueRegistryBooster] "C:\Program\Uniblue\RegistryBooster\launcher.exe" delay 20000 File not found
O4 - Startup: C:\Documents and Settings\All Users\Start-meny\Program\Autostart\Adobe Gamma Loader.lnk = C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start-meny\Program\Autostart\BankID säkerhetsprogram.lnk = C:\Program\Personal\bin\Personal.exe (Technology Nexus AB)
O4 - Startup: C:\Documents and Settings\All Users\Start-meny\Program\Autostart\Microsoft Office.lnk = C:\Program\Office10\OSA.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\mattias\Start-meny\Program\Autostart\PMB verktyg för mediekontroll.lnk = C:\Program\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0
O9 - Extra 'Tools' menuitem : Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O16 - DPF: {00000055-9980-0010-8000-00AA00389B71} http://codecs.micros...cs/i386/fhg.CAB (Reg Error: Key error.)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://www.apple.com...ex/qtplugin.cab (QuickTime Object)
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} https://support.micr...veX/MSDcode.cab (Microsoft Data Collection Control)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft....k/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://by110fd.bay11...es/MsnPUpld.cab (MSN Photo Upload Tool)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://download.bitd...can8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.mi...b?1180713662609 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} http://support.dell....lSystemLite.CAB (DellSystemLite.Scanner)
O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_18)
O16 - DPF: {DC6FEBC5-0A2D-458A-A01B-5DB15EEC4305} http://webc.carinpal...ImageUpload.dll (IlosoftImageUploadCtl Class)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://www.creative....15035/CTPID.cab (Creative Software AutoUpdate Support Package)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D5298D39-63D1-47CC-BB5B-B2CB4B4E0306}: NameServer = 79.138.0.180,85.8.31.209
O18 - Protocol\Handler\base64 {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O18 - Protocol\Handler\chrome {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program\Delade filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program\Delade filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program\Delade filer\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program\Delade filer\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program\Delade filer\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\prox {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\SYSTEM32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - (avgrsstx.dll) - File not found
O24 - Desktop Components:0 (Min aktuella startsida) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\mattias\Lokala inställningar\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\mattias\Lokala inställningar\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004-09-16 11:55:54 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{854c2011-ba7a-11e0-b2a3-001111b84a30}\Shell - "" = AutoRun
O33 - MountPoints2\{854c2011-ba7a-11e0-b2a3-001111b84a30}\Shell\AutoRun\command - "" = G:\Startme.exe
O33 - MountPoints2\{c0581cd1-c5c6-11dc-abb3-001111b84a30}\Shell - "" = AutoRun
O33 - MountPoints2\{c0581cd1-c5c6-11dc-abb3-001111b84a30}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{d211102e-b244-11e0-b28f-001111b84a30}\Shell - "" = AutoRun
O33 - MountPoints2\{d211102e-b244-11e0-b28f-001111b84a30}\Shell\AutoRun\command - "" = G:\setup.exe -a
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (lsdelete)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2012-06-14 12:47:35 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\mattias\Skrivbord\OTL(1).exe
[2012-06-14 12:24:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Lokala inställningar\Application Data\PCHealth
[2012-06-13 20:40:19 | 000,521,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsdbgui.dll
[2012-06-13 20:39:03 | 000,077,816 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\sbapifs.sys
[2012-06-13 20:37:21 | 000,021,240 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\sbaphd.sys
[2012-06-13 20:34:42 | 000,000,000 | ---D | C] -- C:\Program\BabylonToolbar
[2012-06-13 20:34:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Application Data\BabylonToolbar
[2012-06-13 20:34:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Program\Azureus Vuze
[2012-06-13 20:34:39 | 000,000,000 | ---D | C] -- C:\Program\Vuze_Remote
[2012-06-13 20:34:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Lokala inställningar\Application Data\Vuze_Remote
[2012-06-13 20:34:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Application Data\Ad-Aware Antivirus
[2012-06-13 20:34:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Program\Ad-Aware Antivirus
[2012-06-13 20:34:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\VDD
[2012-06-13 20:34:27 | 000,000,000 | ---D | C] -- C:\Program\Ad-Aware Antivirus
[2012-06-13 20:34:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start-meny\Program\Lavasoft
[2012-06-13 20:34:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{ECC164E0-3133-4C70-A831-F08DB2940F70}
[2012-06-13 20:34:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Lokala inställningar\Application Data\adaware
[2012-06-13 20:34:11 | 000,000,000 | ---D | C] -- C:\Program\Toolbar Cleaner
[2012-06-13 20:34:11 | 000,000,000 | ---D | C] -- C:\Program\adawaretb
[2012-06-13 20:34:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Application Data\adawaretb
[2012-06-13 20:34:01 | 000,000,000 | ---D | C] -- C:\Program\Delade filer\Java
[2012-06-13 20:33:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection
[2012-06-12 13:41:40 | 000,000,000 | --SD | C] -- C:\ComboFix(2)
[2012-06-12 12:46:08 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012-06-12 12:40:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Lokala inställningar\Application Data\Sun
[2012-06-12 12:33:34 | 000,000,000 | ---D | C] -- C:\Program\Delade filer\Java(2)
[2012-06-12 12:30:45 | 000,000,000 | ---D | C] -- C:\Program\Oracle
[2012-06-11 12:45:31 | 000,217,976 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\sbtis.sys
[2012-06-11 12:44:51 | 000,094,584 | ---- | C] (GFI Software) -- C:\WINDOWS\System32\drivers\SbFwIm.sys
[2012-06-11 12:39:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\GFI Software
[2012-06-08 22:35:11 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2012-06-08 22:35:10 | 000,629,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2012-06-08 22:35:04 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2012-06-08 22:35:03 | 002,000,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2012-06-08 22:35:00 | 011,111,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2012-06-08 22:22:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\AppData
[2012-06-08 22:22:20 | 000,000,000 | ---D | C] -- C:\Program\BrowserCompanion
[2012-06-08 22:22:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Babylon
[2012-06-08 22:22:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mattias\Application Data\Babylon
[2012-05-15 19:03:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Ad-Aware Antivirus
[7 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[11 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012-06-14 12:48:25 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\mattias\Skrivbord\OTL(1).exe
[2012-06-14 12:46:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\WPA.DBL
[2012-06-14 12:30:39 | 000,000,384 | -H-- | M] () -- C:\WINDOWS\tasks\Microsoft Antimalware Scheduled Scan.job
[2012-06-14 12:26:00 | 000,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012-06-14 12:20:41 | 000,000,270 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-2849076640-103697791-4167111720-1006.job
[2012-06-14 12:20:14 | 000,002,048 | --S- | M] () -- C:\WINDOWS\BOOTSTAT.DAT
[2012-06-14 12:20:11 | 1608,683,520 | -HS- | M] () -- C:\hiberfil.sys
[2012-06-14 12:20:11 | 000,185,816 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-06-13 23:27:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012-06-12 09:46:06 | 000,000,482 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2012-06-11 12:49:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\SBRC.dat
[2012-06-11 12:45:32 | 000,001,691 | ---- | M] () -- C:\Documents and Settings\All Users\Skrivbord\Ad-Aware Antivirus.lnk
[2012-06-11 12:35:23 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\userinit.exe
[2012-06-10 16:10:20 | 000,000,064 | ---- | M] () -- C:\WINDOWS\System32\rp_stats.dat
[2012-06-10 16:10:20 | 000,000,044 | ---- | M] () -- C:\WINDOWS\System32\rp_rules.dat
[2012-06-08 23:00:38 | 000,000,783 | ---- | M] () -- C:\Documents and Settings\mattias\Application Data\Microsoft\Internet Explorer\Quick Launch\Starta webbläsaren Internet Explorer.lnk
[2012-06-08 22:23:54 | 000,000,250 | ---- | M] () -- C:\user.js
[2012-06-08 22:14:34 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\mattias\Skrivbord\Genväg (2) till Internet Explorer.lnk
[2012-06-08 22:13:25 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\mattias\Skrivbord\Genväg till Internet Explorer.lnk
[2012-06-08 17:15:00 | 000,000,386 | ---- | M] () -- C:\WINDOWS\tasks\1-Click Maintenance.job
[2012-05-31 15:22:03 | 000,602,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\crypt32.dll
[2012-05-31 13:42:06 | 000,001,190 | ---- | M] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2012-05-27 18:10:37 | 000,141,312 | ---- | M] () -- C:\Documents and Settings\mattias\Lokala inställningar\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012-05-27 17:27:51 | 000,000,155 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2012-05-16 17:09:37 | 000,916,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll
[2012-05-15 19:04:16 | 000,000,944 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012-05-15 15:55:49 | 001,863,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win32k.sys
[2012-05-15 15:55:49 | 001,863,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\win32k.sys
[7 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[11 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012-06-11 12:49:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\SBRC.dat
[2012-06-11 12:45:32 | 000,001,691 | ---- | C] () -- C:\Documents and Settings\All Users\Skrivbord\Ad-Aware Antivirus.lnk
[2012-06-08 22:23:48 | 000,000,250 | ---- | C] () -- C:\user.js
[2012-06-08 22:14:34 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\mattias\Skrivbord\Genväg (2) till Internet Explorer.lnk
[2012-06-08 22:13:25 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\mattias\Skrivbord\Genväg till Internet Explorer.lnk
[2012-05-31 13:42:06 | 000,001,190 | ---- | C] () -- C:\WINDOWS\System32\ServiceConfig.xml
[2012-05-15 19:04:16 | 000,000,944 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012-05-12 12:11:46 | 002,702,168 | ---- | C] () -- C:\Documents and Settings\LocalService\Lokala inställningar\Application Data\FontCache3.0.0.0.dat
[2012-04-24 23:21:31 | 000,088,656 | ---- | C] () -- C:\WINDOWS\System32\cpwmon2k.dll
[2012-03-01 17:38:44 | 000,016,432 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe
[2012-02-15 17:56:35 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011-09-16 11:54:48 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe
[2011-09-16 11:54:44 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll
[2011-09-16 11:54:44 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll
[2011-09-16 11:54:44 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll
[2011-09-16 11:54:44 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll
[2011-04-26 14:21:20 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\rp_stats.dat
[2011-04-26 14:21:20 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\rp_rules.dat

========== LOP Check ==========

[2012-06-13 20:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection
[2010-08-27 09:25:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2011-08-13 10:24:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2011-03-09 16:38:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\avg9
[2007-04-10 22:17:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Azureus
[2012-06-08 22:22:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon
[2009-11-06 23:00:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Boss Media
[2008-12-20 01:15:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Fighters
[2009-12-29 00:17:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GARMIN
[2012-06-11 12:39:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GFI Software
[2012-01-22 16:06:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InstallMate
[2012-06-12 13:37:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011-07-19 22:57:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Motorola
[2007-01-10 01:14:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NPF
[2011-12-11 12:58:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Premium
[2007-07-22 17:06:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\REMOTE CDROM DEAF LITE
[2011-10-02 13:01:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2008-06-06 21:54:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2010-03-17 20:35:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SPCS
[2009-10-16 23:11:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011-04-15 11:24:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\VS
[2010-04-08 15:15:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010-02-17 13:20:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2009-05-21 09:41:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2012-06-13 20:34:12 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{ECC164E0-3133-4C70-A831-F08DB2940F70}
[2012-06-13 20:34:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Ad-Aware Antivirus
[2012-06-13 20:34:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\adawaretb
[2012-06-13 20:34:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Azureus
[2012-06-08 22:22:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Babylon
[2012-06-13 20:34:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\BabylonToolbar
[2011-01-23 22:49:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\BoneTown Demo
[2012-02-29 22:22:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Dropbox
[2007-07-22 17:06:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\File Media Setup
[2011-01-26 00:36:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\GARMIN
[2011-11-20 20:05:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\HandBrake
[2012-02-29 23:07:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\iid
[2005-03-23 20:03:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Leadertech
[2006-01-21 13:04:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Microgaming
[2011-07-19 22:57:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\motorola
[2011-12-12 15:34:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\MP3toiPodAudioBookConverter
[2011-10-02 12:28:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\MyPhoneExplorer
[2011-10-02 12:28:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\OpenCandy
[2009-10-21 20:58:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Opera
[2010-02-10 22:50:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Personal
[2012-01-29 18:36:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Red Kawa
[2011-08-19 10:54:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Rovio
[2011-10-02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Samsung
[2011-10-29 12:09:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Sony
[2011-07-30 09:46:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Sony Setup
[2009-10-18 13:10:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Teleca
[2011-11-27 01:21:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Temp
[2005-04-21 11:07:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Template
[2005-04-19 11:13:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\TuneUp Software
[2011-10-02 15:41:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\Uniblue
[2012-03-27 13:10:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\uTorrent
[2006-12-31 00:17:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\mattias\Application Data\XnView
[2012-06-08 17:15:00 | 000,000,386 | ---- | M] () -- C:\WINDOWS\Tasks\1-Click Maintenance.job
[2012-05-15 19:04:16 | 000,000,944 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Antivirus Scheduled Scan.job
[2012-06-12 09:46:06 | 000,000,482 | ---- | M] () -- C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 147 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A8ADE5D8

< End of report >

Bifogade filer


0

#19
Medlem är utloggad   Cecilia 

  • Beroende
  • Ikon
  • Grupp: Huvudmoderator
  • Inlägg: 80 901
  • Gick med: 2003-05-06
  • Ort:Stockholm

Skrivet 14 jun 2012, 12:49

Avinstallera enligt inlägg 2, jag ser fortfarande allihop i loggarna.

Enligt loggen har det varit diverse fel under installation av Ad-Aware. Gick installationen bra sista gången? Dvs felmeddelanden hör ihop med tidigare installationsförsök och Ad-Aware fungerar bra nu.

Spara SystemLook på Skrivbordet från en av dessa länkar:
http://jpshortstuff..../SystemLook.exe
http://images.malwar.../SystemLook.exe

Dubbelklicka på SystemLook-filen för att köra den.

Kopiera alla rader i rutan
:filefind 
userinit.exe
:file
c:\windows\system32\userinit.exe

och klistra in i det stora textfältet i SýstemLook.
Tryck på knappen Look för att starta sökningen.
När det är klart så kommer Anteckningar upp med en logg, och den klistrar du in här. Om loggen inte kommer upp så finns den som SystemLook.txt på Skrivbordet.
0

#20

  • Användare
  • PipPip
  • Grupp: Medlemmar
  • Inlägg: 58
  • Gick med: 2008-12-23
  • Ort:umeå

Skrivet 14 jun 2012, 13:34

Jag har försökt inte försökt installera den igen utan bara avinstallera, men det vill sig inte. Går in på kontrollpanelen men när jag klickar på "ta bort" ikonen händer inget. Fick bort två men de andra har bitit sig fast.

När jag startade datorn idag så kom det upp några pop-up´s från Ad-Aware, det har aldrig kommit upp sådana tidigare. Nu vill jag verkligen inte ha Ad-Aware mer, vill bli av med skiten så att säga...
0
  • 3 sidor +
  • 1
  • 2
  • 3
  • Du kan inte starta en ny tråd
  • Du kan inte svara i tråden

1 besökare läser just nu den här tråden, varav 0 medlem(mar) och 1 gäst(er)
 
 
Senast obesvarade trådar
Prenumerera på nyheter

Missa inte våra nya
smarta nyhetsbrev

Läs mer om nyhetsbreven här!
Beställ direkt:


Extreme
PC för Alla-nätverket