Just nu i M3-nätverket
Gå till innehåll

Hanic

Medlem
  • Antal inlägg

    29
  • Gick med

  • Senaste besök

Om Hanic

  • Medlemstitel
    Användare
  • Födelsedag 1985-03-09

Profil

  • Ort
    Diö
  1. Hej. Mitt problem uppstår följande Har inget ljud i spelet, I alla program spel förutom Warhammer fungerar ljudet. Kör Windows Vista Home Premium. Har testa köra med ett annat ljudkort med men det hjälper inte, Någon som har någon idé vad detta kan vara? Mvh Andreas
  2. Hanic

    RunDLL

    Nu fick jag bort viruset. använde Hijackthis för att fixa till dll filen så det verkar fungera nu har inte fått något fel meddelande mer iaf
  3. Hanic

    RunDLL

    Det gick inte att läsa in c:\\Windows\system32\geBumLd.dll Får upp detta meddelandet efter windows startat. Tror det är i samband med ett virus. vet någon hur man får bort det. Kör Windows Vista Premium Hijack this logg [log] Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:37:47, on 2009-07-16 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v7.00 (7.00.6002.18005) Boot mode: Normal Running processes: C:\PROGRAM FILES\PANDA SECURITY\PANDA INTERNET SECURITY 2009\WebProxy.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Panda Security\Panda Internet Security 2009\ApvxdWin.exe C:\Windows\system32\taskeng.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Panda Security\Panda Internet Security 2009\PavBckPT.exe C:\Windows\System32\rundll32.exe C:\Windows\System32\rundll32.exe C:\Program Files\uTorrent\uTorrent.exe C:\Program Files\Personal\bin\Personal.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\System32\rundll32.exe C:\Program Files\OpenOffice.org 3\program\soffice.exe C:\Program Files\OpenOffice.org 3\program\soffice.bin C:\Windows\System32\mobsync.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Security\Panda Internet Security 2009\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [sCANINICIO] "C:\Program Files\Panda Security\Panda Internet Security 2009\Inicio.exe" O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [skytel] Skytel.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [MSServer] rundll32.exe C:\Windows\system32\geBuUmLd.dll,#1 O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST') O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program Files\Personal\bin\Personal.exe O13 - Gopher Prefix: O23 - Service: Panda Software Controller - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\PsCtrls.exe O23 - Service: Panda Function Service (PAVFNSVR) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\PavFnSvr.exe O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Security, S.L. - C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe O23 - Service: Panda On-Access Anti-Malware Service (PAVSRV) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\pavsrvx86.exe O23 - Service: Panda Host Service (PSHost) - Panda Software International - c:\program files\panda security\panda internet security 2009\firewall\PSHOST.EXE O23 - Service: Panda IManager Service (PSIMSVC) - Panda Security S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\PsImSvc.exe O23 - Service: Panda PSK service (PskSvcRetail) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\PskSvc.exe O23 - Service: Panda TPSrv (TPSrv) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Internet Security 2009\TPSrv.exe -- End of file - 5307 bytes [/log]
  4. Hej. Jo det är så att jag har ett mycket störigt problem. Explorer.exe låser sig hela tiden med jämna mellan rum. Tar olika lång tid ibland timmar ibland oftare. Det resulterar i att jag får ta upp aktivitetsahanteraren och starta om explorer.exe men det hjälper förstås bara tillfälligt.. Kör Windows Vista [v.6.0.6.001] någon som har en ide vad man kan göra. Har testat att försöka uppdatera windows men utan resultat.. Mvh Andreas
  5. Hej jag har ett väldigt udda problem.. Det utspelar sig så här.. Efter ett tag när jag använt datorn. Kan musen få ett mycket skumt beteende. Musen sveper runt helt som vanligt som man drar musen.. Fast den fungerar bara att klicka på skrivbordet.. jag kan med andra ord trycka på alla ikoner på skrivbordet så dess fönster dyker upp.. Fast i det fönster som dyker upp kan inte musen aktivera.. Inte trycka på några funktioner i dessa fönster.. Höger klick på skrivbordet och jag får upp sidmenyn för de olika egenskaper så som bildskärm och så vidare..' Har precis formaterat datorn då jag körde windows XP SP2 innan. det problemet fanns även i XP. Fast där kunde det hävas genom att trycka "ALT"+"TAB". Men i Windows Vista fungera inte den lösningen.. Då jag trodde att det skulle försvinna efter uppgradering av OS.. men nu har detta dykt upp ingen.. Mina problem sökningar är i princip.. Testat byta Tagentbord, mus. Använt olika tagentbord och möss tillsammans.. men det har ingen effekt. Är det någon som vart med om något liknade? Den ända lösning som jag kommit på är att starta om.. Fast detta dyker upp titt som tätt.. Vore glad om någon vet vad detta mycket skumma problem kan orsakas av. Tacksam för svar MVH Andreas
  6. Har min dator kopplad till tvn via DVI på datorn till HDingången på tv.. Problemet är att det saknas kanske 0.5 cm i varje hörn. Se på film och sånt fungerar ju bra. Men lite irreterande i windows då man inte ser ex hela startmenyn klockan.. osv.. Spel blir ju med lite halv intressant när man inte ser allt... TVn är en Samsung 32" LCD tv Grafikortet är GeForce 6600 GT.. Tacksam för hjälp
  7. Hanic

    Ritprogram

    Är ute efter något mycket simpelt program man kan använda när man ska rita hus och planera tomten runt huset.. Ex så man kan lägga ut en dörr där och kanske sätta en buske där.. Vet att detta går att gör med Cad men är ute efter ett mindre avancerat program.. Om någon hänger med på hur jag tänkte är jag öppen för förslag.. // Andreas
  8. Det Monshi säger är det jag är ute efter vill att den ska räkna med 2 decimaler.. har använt det med att minska till två decimaler men i uträkningen använder den fler.. Bara att den inte visar alla.. Det resultatet blir är ju att det kan slå anurlunda på någon siffra om man använder oändligt med decimaler.. Jag vill att den ska använda 2 decimaler när den gör sin uträckning... Så hur gör man för att trunkera. Ska forsätta laborera lite själv.. Tack för all hjälp hittils iaf..
  9. hej har ett litet problem. Är så att jag vill att excel ska räkna med 2 decimaler istället för som nu den räknar med obegränsat antal. Blir så att den slår några ören anorlunda annars.. någon som har en idé hur jag kan lösa detta?
  10. Okej. men provar mig fram lite.. kanske någon annan som kommer på en bra idé. Men tack för hjälpe iaf..
  11. Saken är den att den aldrig får upp någon bild på skärmen.. så vet inte vad den hittar eller inte hittar, Piper direkt innan skärmen ens startat.. Men kanske ska köra uteslutningsmetoden ändå?
  12. Hej är så att en polare har problem med sin dator den startat inte. Dessa är det vi lyckas få fram Ihållande pip ljud när man trycker på datorn.. Letat i BIOS beep codes men inget som verkar stämma med ljudet.. Skärmen går till läge "No signal input" Har testat att byta grafikort men samma resultat. Så funderar på vad felet är. om det har med procesor eller moderkort att göra
  13. Det blir något fel när jag kör Lm2fix det står att den inte kommer åt vissa filer.. så vet inte om det är därför det inte blir en riktigt.
  14. Här är l2fix Logen [log]L2MFIX find log 121605 These are the registry keys present ********************************************************************************** Winlogon/notify: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,33,00,32,00,2e,00,64,00,6c,00, 6c,00,00,00 "Logoff"="ChainWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,6e,00,65,00,74,00,2e,00,64,00, 6c,00,6c,00,00,00 "Logoff"="CryptnetWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll] "DLLName"="cscdll.dll" "Logon"="WinlogonLogonEvent" "Logoff"="WinlogonLogoffEvent" "ScreenSaver"="WinlogonScreenSaverEvent" "Startup"="WinlogonStartupEvent" "Shutdown"="WinlogonShutdownEvent" "StartShell"="WinlogonStartShellEvent" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP] "Asynchronous"=dword:00000000 "DllName"="C:\\WINDOWS\\system32\\lvru0999e.dll" "Impersonate"=dword:00000000 "Logon"="WinLogon" "Logoff"="WinLogoff" "Shutdown"="WinShutdown" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp] "DLLName"="wlnotify.dll" "Logon"="SCardStartCertProp" "Logoff"="SCardStopCertProp" "Lock"="SCardSuspendCertProp" "Unlock"="SCardResumeCertProp" "Enabled"=dword:00000001 "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 "Impersonate"=dword:00000000 "StartShell"="SchedStartShell" "Logoff"="SchedEventLogOff" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy] "Logoff"="WLEventLogoff" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 "DllName"=hex(2):73,00,63,00,6c,00,67,00,6e,00,74,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn] "DLLName"="WlNotify.dll" "Lock"="SensLockEvent" "Logon"="SensLogonEvent" "Logoff"="SensLogoffEvent" "Safe"=dword:00000001 "MaxWait"=dword:00000258 "StartScreenSaver"="SensStartScreenSaverEvent" "StopScreenSaver"="SensStopScreenSaverEvent" "Startup"="SensStartupEvent" "Shutdown"="SensShutdownEvent" "StartShell"="SensStartShellEvent" "PostShell"="SensPostShellEvent" "Disconnect"="SensDisconnectEvent" "Reconnect"="SensReconnectEvent" "Unlock"="SensUnlockEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 "Impersonate"=dword:00000000 "Logoff"="TSEventLogoff" "Logon"="TSEventLogon" "PostShell"="TSEventPostShell" "Shutdown"="TSEventShutdown" "StartShell"="TSEventStartShell" "Startup"="TSEventStartup" "MaxWait"=dword:00000258 "Reconnect"="TSEventReconnect" "Disconnect"="TSEventDisconnect" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon] "DLLName"="wlnotify.dll" "Logon"="RegisterTicketExpiredNotificationEvent" "Logoff"="UnregisterTicketExpiredNotificationEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 ********************************************************************************** useragent: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform] "{279536F0-7E66-280E-8918-1BC6A142BF98}"="" ********************************************************************************** Shell Extension key: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] "{00022613-0000-0000-C000-000000000046}"="Egenskapsf”rteckning f”r multimediefiler" "{176d6597-26d3-11d1-b350-080036a75b03}"="Hantering av ICM-skanner" "{1F2E5C40-9550-11CE-99D2-00AA006E086C}"="NTFS-s„kerhetssida" "{3EA48300-8CF6-101B-84FB-666CCB9BCD32}"="Egenskapssida f”r OLE-dokumentfiler" "{40dd6e20-7c17-11ce-a804-00aa003ca9f6}"="Shell-till„gg f”r delning" "{41E300E0-78B6-11ce-849B-444553540000}"="PlusPack CPL Extension" "{42071712-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rmskort" "{42071713-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rm" "{42071714-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rmspanorering" "{4E40F770-369C-11d0-8922-00A024AB2DBB}"="DS-s„kerhetssida" "{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}"="Kompatibilitetssida" "{56117100-C0CD-101B-81E2-00AA004AE837}"="Shell Scrap DataHandler" "{59099400-57FF-11CE-BD94-0020AF85B590}"="Diskkopiering - till„gg" "{59be4990-f85c-11ce-aff7-00aa003ca9f6}"="Shell-till„gg f”r Microsoft Windows Network-objekt" "{5DB2625A-54DF-11D0-B6C4-0800091AA605}"="Hantering av ICM-bildsk„rm" "{675F097E-4C4D-11D0-B6C1-0800091AA605}"="Hantering av ICM-skrivare" "{764BF0E1-F219-11ce-972D-00AA00A14F56}"="Shell-till„gg f”r filkomprimering" "{77597368-7b15-11d0-a0c2-080036af3f03}"="Shell-till„gg f”r webbutskrift" "{7988B573-EC89-11cf-9C00-00AA00A14F56}"="Disk Quota UI" "{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA}"="Snabbmeny f”r kryptering" "{85BBD920-42A0-1069-A2E4-08002B30309D}"="Portf”lj" "{88895560-9AA2-1069-930E-00AA0030EBC8}"="HyperTerminal-ikontill„gg" "{BD84B380-8CA2-1069-AB1D-08000948F534}"="Fonts" "{DBCE2480-C732-101B-BE72-BA78E9AD5B27}"="ICC-profil" "{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}"="Skrivars„kerhetssida" "{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}"="Shell-till„gg f”r delning" "{f92e8c40-3d33-11d2-b1aa-080036a75b03}"="Display TroubleShoot CPL Extension" "{7444C717-39BF-11D1-8CD9-00C04FC29D45}"="Crypto PKO-till„gg" "{7444C719-39BF-11D1-8CD9-00C04FC29D45}"="Till„gg f”r kryptografisk signering" "{7007ACC7-3202-11D1-AAD2-00805FC1270E}"="N„tverksanslutningar" "{992CFFA0-F557-101A-88EC-00DD010CCC48}"="N„tverksanslutningar" "{E211B736-43FD-11D1-9EFB-0000F8757FCD}"="Skannrar och kameror" "{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}"="Skannrar och kameror" "{905667aa-acd6-11d2-8080-00805f6596d2}"="Skannrar och kameror" "{3F953603-1008-4f6e-A73A-04AAC7A992F1}"="Skannrar och kameror" "{83bbcbf3-b28a-4919-a5aa-73027445d672}"="Skannrar och kameror" "{F0152790-D56E-4445-850E-4F3117DB740C}"="Remote Sessions CPL Extension" "{60254CA5-953B-11CF-8C96-00AA00B8708C}"="Shell-till„gg f”r Windows Script Host" "{2206CDB2-19C1-11D1-89E0-00C04FD7A829}"="Microsoft-datal„nk" "{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Icon Handler" "{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Shell Extension" "{D6277990-4C6A-11CF-8D87-00AA0060F5BF}"="Schemalagda aktiviteter" "{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}"="Set Program Access and Defaults" "{5F327514-6C5E-4d60-8F16-D07FA08A78ED}"="Auto Update Property Sheet Extension" "{0DF44EAA-FF21-4412-828E-260A8728E7F1}"="Aktivitetsf„ltet och Start-menyn" "{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}"="S”k" "{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}"="Hj„lp och support" "{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}"="Hj„lp och support" "{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}"="K”r..." "{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}"="Internet" "{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}"="E-post" "{D20EA4E1-3957-11d2-A40B-0C5020524152}"="Fonts" "{D20EA4E1-3957-11d2-A40B-0C5020524153}"="Administrationsverktyg" "{596AB062-B4D2-4215-9F74-E9109B0A8153}"="Egenskapssida f”r tidigare versioner" "{9DB7A13C-F208-4981-8353-73CC61AE2783}"="Tidigare versioner" "{875CB1A1-0F29-45de-A1AE-CFB4950D0B78}"="Audio Media Properties Handler" "{40C3D757-D6E4-4b49-BB41-0E5BBEA28817}"="Video Media Properties Handler" "{E4B29F9D-D390-480b-92FD-7DDB47101D71}"="Wav Properties Handler" "{87D62D94-71B3-4b9a-9489-5FE6850DC73E}"="Avi Properties Handler" "{A6FD9E45-6E44-43f9-8644-08598F5A74D9}"="Midi Properties Handler" "{c5a40261-cd64-4ccf-84cb-c394da41d590}"="Video Thumbnail Extractor" "{5E6AB780-7743-11CF-A12B-00AA004AE837}"="Microsoft Internet Toolbar" "{22BF0C20-6DA7-11D0-B373-00A0C9034938}"="Download Status" "{91EA3F8B-C99B-11d0-9815-00C04FD91972}"="Augmented Shell Folder" "{6413BA2C-B461-11d1-A18A-080036B11A03}"="Augmented Shell Folder 2" "{F61FFEC1-754F-11d0-80CA-00AA005B4383}"="BandProxy" "{7BA4C742-9E81-11CF-99D3-00AA004AE837}"="Microsoft BrowserBand" "{30D02401-6A81-11d0-8274-00C04FD5AE38}"="Search Band" "{169A0691-8DF9-11d1-A1C4-00C04FD75D13}"="In-pane search" "{07798131-AF23-11d1-9111-00A0C98BA67D}"="Web Search" "{AF4F6510-F982-11d0-8595-00AA004CD6D8}"="Registry Tree Options Utility" "{01E04581-4EEE-11d0-BFE9-00AA005B4383}"="&Adress" "{A08C11D2-A228-11d0-825B-00AA005B4383}"="Address EditBox" "{00BB2763-6A77-11D0-A535-00C04FD7D062}"="Microsoft AutoComplete" "{7376D660-C583-11d0-A3A5-00C04FD706EC}"="TridentImageExtractor" "{6756A641-DE71-11d0-831B-00AA005B4383}"="MRU AutoComplete List" "{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}"="Custom MRU AutoCompleted List" "{7e653215-fa25-46bd-a339-34a2790f3cb7}"="Accessible" "{acf35015-526e-4230-9596-becbe19f0ac9}"="Track Popup Bar" "{00BB2764-6A77-11D0-A535-00C04FD7D062}"="Microsoft History AutoComplete List" "{03C036F1-A186-11D0-824A-00AA005B4383}"="Microsoft Shell Folder AutoComplete List" "{00BB2765-6A77-11D0-A535-00C04FD7D062}"="Microsoft Multiple AutoComplete List Container" "{ECD4FC4E-521C-11D0-B792-00A0C90312E1}"="Shell Band Site Menu" "{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}"="Shell DeskBarApp" "{ECD4FC4C-521C-11D0-B792-00A0C90312E1}"="Shell DeskBar" "{ECD4FC4D-521C-11D0-B792-00A0C90312E1}"="Shell Rebar BandSite" "{DD313E04-FEFF-11d1-8ECD-0000F87A470C}"="User Assist" "{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}"="Globala mappinst„llningar" "{EFA24E61-B078-11d0-89E4-00C04FC9E26E}"="Favorites Band" "{0A89A860-D7B1-11CE-8350-444553540000}"="Shell Automation Inproc Service" "{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}"="Shell DocObject Viewer" "{A5E46E3A-8849-11D1-9D8C-00C04FC99D61}"="Microsoft Browser Architecture" "{FBF23B40-E3F0-101B-8488-00AA003E56F8}"="InternetShortcut" "{3C374A40-BAE4-11CF-BF7D-00AA006946EE}"="Microsoft-tj„nst f”r tidigare adresser (URL)" "{FF393560-C2A7-11CF-BFF4-444553540000}"="Tidigare" "{7BD29E00-76C1-11CF-9DD0-00A0C9034933}"="Tillf„lliga Internet-filer" "{7BD29E01-76C1-11CF-9DD0-00A0C9034933}"="Tillf„lliga Internet-filer" "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"="Microsoft Url Search Hook" "{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}"="V„lkomstsk„rm f”r Internet Explorer 4.0 Suite" "{67EA19A0-CCEF-11d0-8024-00C04FD75D13}"="CDF Extension Copy Hook" "{131A6951-7F78-11D0-A979-00C04FD705A2}"="ISFBand OC" "{9461b922-3c5a-11d2-bf8b-00c04fb93661}"="Search Assistant OC" "{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}"="Internet" "{871C5380-42A0-1069-A2EA-08002B30309D}"="Internet Name Space" "{EFA24E64-B078-11d0-89E4-00C04FC9E26E}"="Explorer Band" "{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service" "{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service" "{88C6C381-2E85-11D0-94DE-444553540000}"="Mappen ActiveX Cache" "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"="WebCheck" "{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}"="Subscription Mgr" "{F5175861-2688-11d0-9C5E-00AA00A45957}"="Mappen Subscriptions" "{08165EA0-E946-11CF-9C87-00AA005127ED}"="WebCheckWebCrawler" "{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}"="WebCheckChannelAgent" "{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}"="TrayAgent" "{7D559C10-9FE9-11d0-93F7-00AA0059CE02}"="Code Download Agent" "{E6CC6978-6B6E-11D0-BECA-00C04FD940BE}"="ConnectionAgent" "{D8BD2030-6FC9-11D0-864F-00AA006809D9}"="PostAgent" "{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}"="WebCheck SyncMgr Handler" "{352EC2B7-8B9A-11D1-B8AE-006008059382}"="Programhanteraren" "{0B124F8F-91F0-11D1-B8B5-006008059382}"="Uppr„knare f”r installerade program" "{CFCCC7A0-A282-11D1-9082-006008059382}"="Darwin App Publisher" "{e84fda7c-1d6a-45f6-b725-cb260c236066}"="Shell Image Verbs" "{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}"="Shell Image Data Factory" "{00E7B358-F65B-4dcf-83DF-CD026B94BFD4}"="Autoplay for SlideShow" "{3F30C968-480A-4C6C-862D-EFC0897BB84B}"="Extraherare f”r GDI+-filminiatyrer" "{9DBD2C50-62AD-11d0-B806-00C04FD706EC}"="Information om miniatyrer (DOC-filer)" "{EAB841A0-9550-11cf-8C16-00805F1408F3}"="Extraherare f”r HTML-miniatyrer" "{eb9b1153-3b57-4e68-959a-a3266bc3d7fe}"="Shell Image Property Handler" "{CC6EEFFB-43F6-46c5-9619-51D571967F7D}"="Webbpubliceringsguiden" "{add36aa8-751a-4579-a266-d66f5202ccbb}"="Guiden Best„ll foton via Internet" "{6b33163c-76a5-4b6c-bf21-45de9cd503a1}"="Objekt f”r webbpubliceringsguiden" "{58f1f272-9240-4f51-b6d4-fd63d1618591}"="Guiden Skaffa Passport" "{7A9D77BD-5403-11d2-8785-2E0420524153}"="Anv„ndarkonton" "{BD472F60-27FA-11cf-B8B4-444553540000}"="Compressed (zipped) Folder Right Drag Handler" "{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}"="Compressed (zipped) Folder SendTo Target" "{f39a0dc0-9cc8-11d0-a599-00c04fd64433}"="Kanalfil" "{f3aa0dc0-9cc8-11d0-a599-00c04fd64434}"="Kanalgenv„g" "{f3ba0dc0-9cc8-11d0-a599-00c04fd64435}"="Channel Handler Object" "{f3da0dc0-9cc8-11d0-a599-00c04fd64437}"="Channel Menu" "{f3ea0dc0-9cc8-11d0-a599-00c04fd64438}"="Channel Properties" "{692F0339-CBAA-47e6-B5B5-3B84DB604E87}"="Extensions Manager Folder" "{63da6ec0-2e98-11cf-8d82-444553540000}"="FTP Folders Webview" "{883373C3-BF89-11D1-BE35-080036B11A03}"="Microsoft DocProp Shell Ext" "{A9CF0EAE-901A-4739-A481-E35B73E47F6D}"="Microsoft DocProp Inplace Edit Box Control" "{8EE97210-FD1F-4B19-91DA-67914005F020}"="Microsoft DocProp Inplace ML Edit Box Control" "{0EEA25CC-4362-4A12-850B-86EE61B0D3EB}"="Microsoft DocProp Inplace Droplist Combo Control" "{6A205B57-2567-4A2C-B881-F787FAB579A3}"="Microsoft DocProp Inplace Calendar Control" "{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33}"="Microsoft DocProp Inplace Time Control" "{8A23E65E-31C2-11d0-891C-00A024AB2DBB}"="Directory Query UI" "{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}"="Shell properties for a DS object" "{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}"="Directory Object Find" "{F020E586-5264-11d1-A532-0000F8757D7E}"="Directory Start/Search Find" "{0D45D530-764B-11d0-A1CA-00AA00C16E65}"="Directory Property UI" "{62AE1F9A-126A-11D0-A14B-0800361B1103}"="Directory Context Menu Verbs" "{ECF03A33-103D-11d2-854D-006008059367}"="MyDocs Copy Hook" "{ECF03A32-103D-11d2-854D-006008059367}"="MyDocs Drop Target" "{4a7ded0a-ad25-11d0-98a8-0800361b1103}"="MyDocs Properties" "{750fdf0e-2a26-11d1-a3ea-080036587f03}"="Offline Files Menu" "{10CFC467-4392-11d2-8DB4-00C04FA31A66}"="Offline Files Folder Options" "{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}"="Offlinefiler" "{143A62C8-C33B-11D1-84FE-00C04FA34A14}"="Microsoft Agent Character Property Sheet Handler" "{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}"="DfsShell" "{60fd46de-f830-4894-a628-6fa81bc0190d}"="%DESC_PublishDropTarget%" "{7A80E4A8-8005-11D2-BCF8-00C04F72C717}"="MMC Icon Handler" "{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}"=".CAB file viewer" "{32714800-2E5F-11d0-8B85-00AA0044F941}"="Efter &personer..." "{8DD448E6-C188-4aed-AF92-44956194EB1F}"="Windows Media Player Play as Playlist Context Menu Handler" "{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C}"="Windows Media Player Burn Audio CD Context Menu Handler" "{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD}"="Windows Media Player Add to Playlist Context Menu Handler" "{5E44E225-A408-11CF-B581-008029601108}"="Adaptec DirectCD Shell Extension" "{A70C977A-BF00-412C-90B7-034C51DA2439}"="NvCpl DesktopContext Class" "{FFB699E0-306A-11d3-8BD1-00104B6F7516}"="Play on my TV helper" "{1CDB2949-8F65-4355-8456-263E7C208A5D}"="Desktop Explorer" "{1E9B04FB-F9E5-4718-997B-B8DA88302A47}"="Desktop Explorer Menu" "{1E9B04FB-F9E5-4718-997B-B8DA88302A48}"="nView Desktop Context Menu" "{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"="Webbmappar" "{0006F045-0000-0000-C000-000000000046}"="Microsoft Outlook Custom Icon Handler" "{42042206-2D85-11D3-8CFF-005004838597}"="Microsoft Office HTML Icon Handler" "{21569614-B795-46b1-85F4-E737A8DC09AD}"="Shell Search Band" "{BA050CB1-A4E9-488C-B08E-92B870224283}"="" "{0115EB27-0298-4641-800F-A2C274FC9CD9}"="" "{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}"="" "{D2B1480F-109A-4178-9C56-B331377709F3}"="" "{C50984BC-9B7D-4979-A134-A316B97DFED4}"="" ********************************************************************************** HKEY ROOT CLASSIDS: Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}] @="" [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}] @="" [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}] @="" [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\InprocServer32] @="C:\\WINDOWS\\system32\\veajet32.dll" "ThreadingModel"="Apartment" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\InprocServer32] @="C:\\WINDOWS\\system32\\guard.tmp" "ThreadingModel"="Apartment" ********************************************************************************** Files Found are not all bad files: C:\WINDOWS\SYSTEM32 browseui.dll Thu 2005-11-24 1.39.16 A.... 1 022 464 998,50 K cdfview.dll Fri 2005-10-21 4.41.56 A.... 151 552 148,00 K danim.dll Sat 2005-11-05 4.20.32 A.... 1 055 232 1,00 M dxtrans.dll Fri 2005-10-21 4.41.56 A.... 205 312 200,50 K esent.dll Thu 2005-10-20 23.31.16 A.... 1 084 416 1,03 M extmgr.dll Fri 2005-10-21 4.41.56 A.... 55 808 54,50 K gdi32.dll Thu 2005-10-06 4.19.00 A.... 280 064 273,50 K iepeers.dll Fri 2005-10-21 4.41.56 A.... 251 392 245,50 K inseng.dll Fri 2005-10-21 4.41.56 A.... 96 768 94,50 K irlql5~1.dll Tue 2005-12-20 17.04.02 ..S.R 235 282 229,77 K lvru09~1.dll Tue 2005-12-20 17.02.22 ..S.R 233 747 228,27 K mshtml.dll Thu 2005-11-24 1.39.20 A.... 3 013 632 2,87 M mshtmled.dll Fri 2005-10-21 4.41.58 A.... 448 512 438,00 K msrating.dll Fri 2005-10-21 4.41.58 A.... 146 432 143,00 K mstime.dll Fri 2005-10-21 4.41.58 A.... 530 944 518,50 K pngfilt.dll Fri 2005-10-21 4.41.58 A.... 39 424 38,50 K s32evnt1.dll Thu 2005-12-01 12.14.20 A.... 86 091 84,07 K shdocvw.dll Thu 2005-12-01 4.33.22 A.... 1 492 480 1,42 M shell32.dll Fri 2005-09-23 4.07.46 A.... 8 458 240 8,07 M shlwapi.dll Fri 2005-10-21 4.42.00 A.... 473 600 462,50 K spmsg.dll Thu 2005-10-13 0.26.58 ..... 15 072 14,72 K urlmon.dll Sat 2005-11-05 4.20.38 A.... 604 160 590,00 K veajet32.dll Tue 2005-12-20 17.04.02 ..S.R 233 747 228,27 K wininet.dll Fri 2005-10-21 4.42.00 A.... 658 944 643,50 K 24 items found: 24 files (3 H/S), 0 directories. Total of file sizes: 20 873 315 bytes 19,91 M Locate .tmp files: No matches found. ********************************************************************************** Directory Listing of system files: Volymen i enhet C har ingen etikett. Volymens serienummer „r A4FD-21B6 Inneh†ll i katalogen C:\WINDOWS\System32 2005-12-20 17:04 233ÿ747 veajet32.dll 2005-12-20 17:04 235ÿ282 irlql5351.dll 2005-12-20 17:02 233ÿ747 lvru0999e.dll 2005-12-13 19:33 <KAT> dllcache 2005-09-29 10:39 <KAT> Microsoft 3 fil(er) 702ÿ776 byte 2 katalog(er) 91ÿ687ÿ866ÿ368 byte ledigt [/log] Och hijackthis [log] Logfile of HijackThis v1.99.1 Scan saved at 13:29:39, on 2005-12-21 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program\Delade filer\Symantec Shared\ccSetMgr.exe C:\Program\Delade filer\Symantec Shared\SNDSrvc.exe C:\WINDOWS\system32\rundll32.exe C:\Program\Delade filer\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\Program\ewido anti-malware\ewidoctrl.exe C:\Program\ewido anti-malware\ewidoguard.exe C:\Program\Delade filer\Microsoft Shared\VS7Debug\mdm.exe C:\Program\Norton AntiVirus\navapsvc.exe C:\Program\Norton AntiVirus\IWP\NPFMntor.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program\Delade filer\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\Explorer.EXE C:\Program\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program\CyberLink\PowerDVD\PDVDServ.exe C:\Program\Delade filer\Symantec Shared\ccApp.exe C:\Program\Java\jre1.5.0_06\bin\jusched.exe C:\Program\Error Nuker\bin\ErrorNuker.exe C:\Program\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe C:\WINDOWS\system32\ctfmon.exe C:\Program\Messenger\msmsgs.exe C:\WINDOWS\System32\svchost.exe C:\Program\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program\Hijackthis\HijackThis.exe O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [RemoteControl] C:\Program\CyberLink\PowerDVD\PDVDServ.exe O4 - HKLM\..\Run: [ccApp] "C:\Program\Delade filer\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\Program\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [Error Nuker] C:\Program\Error Nuker\bin\ErrorNuker.exe autostart O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program\Messenger\msmsgs.exe" /background O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\Program\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\npjpi150_06.dll O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\npjpi150_06.dll O20 - Winlogon Notify: BITS - C:\WINDOWS\system32\lvru0999e.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccSetMgr.exe O23 - Service: ewido security suite control - ewido networks - C:\Program\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program\ewido anti-malware\ewidoguard.exe O23 - Service: Norton AntiVirus Auto Protect-tjänst (navapsvc) - Symantec Corporation - C:\Program\Norton AntiVirus\navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\Program\DELADE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\Security Center\SymWSC.exe [/log]
  15. Hej.. här kommer loggen från l2mfix [log]L2MFIX find log 121605 These are the registry keys present ********************************************************************************** Winlogon/notify: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,33,00,32,00,2e,00,64,00,6c,00, 6c,00,00,00 "Logoff"="ChainWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,6e,00,65,00,74,00,2e,00,64,00, 6c,00,6c,00,00,00 "Logoff"="CryptnetWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll] "DLLName"="cscdll.dll" "Logon"="WinlogonLogonEvent" "Logoff"="WinlogonLogoffEvent" "ScreenSaver"="WinlogonScreenSaverEvent" "Startup"="WinlogonStartupEvent" "Shutdown"="WinlogonShutdownEvent" "StartShell"="WinlogonStartShellEvent" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IPConfTSP] "Asynchronous"=dword:00000000 "DllName"="C:\\WINDOWS\\system32\\lvru0999e.dll" "Impersonate"=dword:00000000 "Logon"="WinLogon" "Logoff"="WinLogoff" "Shutdown"="WinShutdown" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp] "DLLName"="wlnotify.dll" "Logon"="SCardStartCertProp" "Logoff"="SCardStopCertProp" "Lock"="SCardSuspendCertProp" "Unlock"="SCardResumeCertProp" "Enabled"=dword:00000001 "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 "Impersonate"=dword:00000000 "StartShell"="SchedStartShell" "Logoff"="SchedEventLogOff" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy] "Logoff"="WLEventLogoff" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 "DllName"=hex(2):73,00,63,00,6c,00,67,00,6e,00,74,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn] "DLLName"="WlNotify.dll" "Lock"="SensLockEvent" "Logon"="SensLogonEvent" "Logoff"="SensLogoffEvent" "Safe"=dword:00000001 "MaxWait"=dword:00000258 "StartScreenSaver"="SensStartScreenSaverEvent" "StopScreenSaver"="SensStopScreenSaverEvent" "Startup"="SensStartupEvent" "Shutdown"="SensShutdownEvent" "StartShell"="SensStartShellEvent" "PostShell"="SensPostShellEvent" "Disconnect"="SensDisconnectEvent" "Reconnect"="SensReconnectEvent" "Unlock"="SensUnlockEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00, 6c,00,6c,00,00,00 "Impersonate"=dword:00000000 "Logoff"="TSEventLogoff" "Logon"="TSEventLogon" "PostShell"="TSEventPostShell" "Shutdown"="TSEventShutdown" "StartShell"="TSEventStartShell" "Startup"="TSEventStartup" "MaxWait"=dword:00000258 "Reconnect"="TSEventReconnect" "Disconnect"="TSEventDisconnect" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon] "DLLName"="wlnotify.dll" "Logon"="RegisterTicketExpiredNotificationEvent" "Logoff"="UnregisterTicketExpiredNotificationEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 ********************************************************************************** useragent: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform] "{279536F0-7E66-280E-8918-1BC6A142BF98}"="" ********************************************************************************** Shell Extension key: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] "{00022613-0000-0000-C000-000000000046}"="Egenskapsf”rteckning f”r multimediefiler" "{176d6597-26d3-11d1-b350-080036a75b03}"="Hantering av ICM-skanner" "{1F2E5C40-9550-11CE-99D2-00AA006E086C}"="NTFS-s„kerhetssida" "{3EA48300-8CF6-101B-84FB-666CCB9BCD32}"="Egenskapssida f”r OLE-dokumentfiler" "{40dd6e20-7c17-11ce-a804-00aa003ca9f6}"="Shell-till„gg f”r delning" "{41E300E0-78B6-11ce-849B-444553540000}"="PlusPack CPL Extension" "{42071712-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rmskort" "{42071713-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rm" "{42071714-76d4-11d1-8b24-00a0c9068ff3}"="Kontrollpanelstill„gg f”r bildsk„rmspanorering" "{4E40F770-369C-11d0-8922-00A024AB2DBB}"="DS-s„kerhetssida" "{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}"="Kompatibilitetssida" "{56117100-C0CD-101B-81E2-00AA004AE837}"="Shell Scrap DataHandler" "{59099400-57FF-11CE-BD94-0020AF85B590}"="Diskkopiering - till„gg" "{59be4990-f85c-11ce-aff7-00aa003ca9f6}"="Shell-till„gg f”r Microsoft Windows Network-objekt" "{5DB2625A-54DF-11D0-B6C4-0800091AA605}"="Hantering av ICM-bildsk„rm" "{675F097E-4C4D-11D0-B6C1-0800091AA605}"="Hantering av ICM-skrivare" "{764BF0E1-F219-11ce-972D-00AA00A14F56}"="Shell-till„gg f”r filkomprimering" "{77597368-7b15-11d0-a0c2-080036af3f03}"="Shell-till„gg f”r webbutskrift" "{7988B573-EC89-11cf-9C00-00AA00A14F56}"="Disk Quota UI" "{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA}"="Snabbmeny f”r kryptering" "{85BBD920-42A0-1069-A2E4-08002B30309D}"="Portf”lj" "{88895560-9AA2-1069-930E-00AA0030EBC8}"="HyperTerminal-ikontill„gg" "{BD84B380-8CA2-1069-AB1D-08000948F534}"="Fonts" "{DBCE2480-C732-101B-BE72-BA78E9AD5B27}"="ICC-profil" "{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}"="Skrivars„kerhetssida" "{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}"="Shell-till„gg f”r delning" "{f92e8c40-3d33-11d2-b1aa-080036a75b03}"="Display TroubleShoot CPL Extension" "{7444C717-39BF-11D1-8CD9-00C04FC29D45}"="Crypto PKO-till„gg" "{7444C719-39BF-11D1-8CD9-00C04FC29D45}"="Till„gg f”r kryptografisk signering" "{7007ACC7-3202-11D1-AAD2-00805FC1270E}"="N„tverksanslutningar" "{992CFFA0-F557-101A-88EC-00DD010CCC48}"="N„tverksanslutningar" "{E211B736-43FD-11D1-9EFB-0000F8757FCD}"="Skannrar och kameror" "{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}"="Skannrar och kameror" "{905667aa-acd6-11d2-8080-00805f6596d2}"="Skannrar och kameror" "{3F953603-1008-4f6e-A73A-04AAC7A992F1}"="Skannrar och kameror" "{83bbcbf3-b28a-4919-a5aa-73027445d672}"="Skannrar och kameror" "{F0152790-D56E-4445-850E-4F3117DB740C}"="Remote Sessions CPL Extension" "{60254CA5-953B-11CF-8C96-00AA00B8708C}"="Shell-till„gg f”r Windows Script Host" "{2206CDB2-19C1-11D1-89E0-00C04FD7A829}"="Microsoft-datal„nk" "{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Icon Handler" "{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Shell Extension" "{D6277990-4C6A-11CF-8D87-00AA0060F5BF}"="Schemalagda aktiviteter" "{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}"="Set Program Access and Defaults" "{5F327514-6C5E-4d60-8F16-D07FA08A78ED}"="Auto Update Property Sheet Extension" "{0DF44EAA-FF21-4412-828E-260A8728E7F1}"="Aktivitetsf„ltet och Start-menyn" "{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}"="S”k" "{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}"="Hj„lp och support" "{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}"="Hj„lp och support" "{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}"="K”r..." "{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}"="Internet" "{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}"="E-post" "{D20EA4E1-3957-11d2-A40B-0C5020524152}"="Fonts" "{D20EA4E1-3957-11d2-A40B-0C5020524153}"="Administrationsverktyg" "{596AB062-B4D2-4215-9F74-E9109B0A8153}"="Egenskapssida f”r tidigare versioner" "{9DB7A13C-F208-4981-8353-73CC61AE2783}"="Tidigare versioner" "{875CB1A1-0F29-45de-A1AE-CFB4950D0B78}"="Audio Media Properties Handler" "{40C3D757-D6E4-4b49-BB41-0E5BBEA28817}"="Video Media Properties Handler" "{E4B29F9D-D390-480b-92FD-7DDB47101D71}"="Wav Properties Handler" "{87D62D94-71B3-4b9a-9489-5FE6850DC73E}"="Avi Properties Handler" "{A6FD9E45-6E44-43f9-8644-08598F5A74D9}"="Midi Properties Handler" "{c5a40261-cd64-4ccf-84cb-c394da41d590}"="Video Thumbnail Extractor" "{5E6AB780-7743-11CF-A12B-00AA004AE837}"="Microsoft Internet Toolbar" "{22BF0C20-6DA7-11D0-B373-00A0C9034938}"="Download Status" "{91EA3F8B-C99B-11d0-9815-00C04FD91972}"="Augmented Shell Folder" "{6413BA2C-B461-11d1-A18A-080036B11A03}"="Augmented Shell Folder 2" "{F61FFEC1-754F-11d0-80CA-00AA005B4383}"="BandProxy" "{7BA4C742-9E81-11CF-99D3-00AA004AE837}"="Microsoft BrowserBand" "{30D02401-6A81-11d0-8274-00C04FD5AE38}"="Search Band" "{169A0691-8DF9-11d1-A1C4-00C04FD75D13}"="In-pane search" "{07798131-AF23-11d1-9111-00A0C98BA67D}"="Web Search" "{AF4F6510-F982-11d0-8595-00AA004CD6D8}"="Registry Tree Options Utility" "{01E04581-4EEE-11d0-BFE9-00AA005B4383}"="&Adress" "{A08C11D2-A228-11d0-825B-00AA005B4383}"="Address EditBox" "{00BB2763-6A77-11D0-A535-00C04FD7D062}"="Microsoft AutoComplete" "{7376D660-C583-11d0-A3A5-00C04FD706EC}"="TridentImageExtractor" "{6756A641-DE71-11d0-831B-00AA005B4383}"="MRU AutoComplete List" "{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}"="Custom MRU AutoCompleted List" "{7e653215-fa25-46bd-a339-34a2790f3cb7}"="Accessible" "{acf35015-526e-4230-9596-becbe19f0ac9}"="Track Popup Bar" "{00BB2764-6A77-11D0-A535-00C04FD7D062}"="Microsoft History AutoComplete List" "{03C036F1-A186-11D0-824A-00AA005B4383}"="Microsoft Shell Folder AutoComplete List" "{00BB2765-6A77-11D0-A535-00C04FD7D062}"="Microsoft Multiple AutoComplete List Container" "{ECD4FC4E-521C-11D0-B792-00A0C90312E1}"="Shell Band Site Menu" "{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}"="Shell DeskBarApp" "{ECD4FC4C-521C-11D0-B792-00A0C90312E1}"="Shell DeskBar" "{ECD4FC4D-521C-11D0-B792-00A0C90312E1}"="Shell Rebar BandSite" "{DD313E04-FEFF-11d1-8ECD-0000F87A470C}"="User Assist" "{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}"="Globala mappinst„llningar" "{EFA24E61-B078-11d0-89E4-00C04FC9E26E}"="Favorites Band" "{0A89A860-D7B1-11CE-8350-444553540000}"="Shell Automation Inproc Service" "{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}"="Shell DocObject Viewer" "{A5E46E3A-8849-11D1-9D8C-00C04FC99D61}"="Microsoft Browser Architecture" "{FBF23B40-E3F0-101B-8488-00AA003E56F8}"="InternetShortcut" "{3C374A40-BAE4-11CF-BF7D-00AA006946EE}"="Microsoft-tj„nst f”r tidigare adresser (URL)" "{FF393560-C2A7-11CF-BFF4-444553540000}"="Tidigare" "{7BD29E00-76C1-11CF-9DD0-00A0C9034933}"="Tillf„lliga Internet-filer" "{7BD29E01-76C1-11CF-9DD0-00A0C9034933}"="Tillf„lliga Internet-filer" "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"="Microsoft Url Search Hook" "{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}"="V„lkomstsk„rm f”r Internet Explorer 4.0 Suite" "{67EA19A0-CCEF-11d0-8024-00C04FD75D13}"="CDF Extension Copy Hook" "{131A6951-7F78-11D0-A979-00C04FD705A2}"="ISFBand OC" "{9461b922-3c5a-11d2-bf8b-00c04fb93661}"="Search Assistant OC" "{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}"="Internet" "{871C5380-42A0-1069-A2EA-08002B30309D}"="Internet Name Space" "{EFA24E64-B078-11d0-89E4-00C04FC9E26E}"="Explorer Band" "{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service" "{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service" "{88C6C381-2E85-11D0-94DE-444553540000}"="Mappen ActiveX Cache" "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"="WebCheck" "{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}"="Subscription Mgr" "{F5175861-2688-11d0-9C5E-00AA00A45957}"="Mappen Subscriptions" "{08165EA0-E946-11CF-9C87-00AA005127ED}"="WebCheckWebCrawler" "{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}"="WebCheckChannelAgent" "{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}"="TrayAgent" "{7D559C10-9FE9-11d0-93F7-00AA0059CE02}"="Code Download Agent" "{E6CC6978-6B6E-11D0-BECA-00C04FD940BE}"="ConnectionAgent" "{D8BD2030-6FC9-11D0-864F-00AA006809D9}"="PostAgent" "{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}"="WebCheck SyncMgr Handler" "{352EC2B7-8B9A-11D1-B8AE-006008059382}"="Programhanteraren" "{0B124F8F-91F0-11D1-B8B5-006008059382}"="Uppr„knare f”r installerade program" "{CFCCC7A0-A282-11D1-9082-006008059382}"="Darwin App Publisher" "{e84fda7c-1d6a-45f6-b725-cb260c236066}"="Shell Image Verbs" "{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}"="Shell Image Data Factory" "{00E7B358-F65B-4dcf-83DF-CD026B94BFD4}"="Autoplay for SlideShow" "{3F30C968-480A-4C6C-862D-EFC0897BB84B}"="Extraherare f”r GDI+-filminiatyrer" "{9DBD2C50-62AD-11d0-B806-00C04FD706EC}"="Information om miniatyrer (DOC-filer)" "{EAB841A0-9550-11cf-8C16-00805F1408F3}"="Extraherare f”r HTML-miniatyrer" "{eb9b1153-3b57-4e68-959a-a3266bc3d7fe}"="Shell Image Property Handler" "{CC6EEFFB-43F6-46c5-9619-51D571967F7D}"="Webbpubliceringsguiden" "{add36aa8-751a-4579-a266-d66f5202ccbb}"="Guiden Best„ll foton via Internet" "{6b33163c-76a5-4b6c-bf21-45de9cd503a1}"="Objekt f”r webbpubliceringsguiden" "{58f1f272-9240-4f51-b6d4-fd63d1618591}"="Guiden Skaffa Passport" "{7A9D77BD-5403-11d2-8785-2E0420524153}"="Anv„ndarkonton" "{BD472F60-27FA-11cf-B8B4-444553540000}"="Compressed (zipped) Folder Right Drag Handler" "{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}"="Compressed (zipped) Folder SendTo Target" "{f39a0dc0-9cc8-11d0-a599-00c04fd64433}"="Kanalfil" "{f3aa0dc0-9cc8-11d0-a599-00c04fd64434}"="Kanalgenv„g" "{f3ba0dc0-9cc8-11d0-a599-00c04fd64435}"="Channel Handler Object" "{f3da0dc0-9cc8-11d0-a599-00c04fd64437}"="Channel Menu" "{f3ea0dc0-9cc8-11d0-a599-00c04fd64438}"="Channel Properties" "{692F0339-CBAA-47e6-B5B5-3B84DB604E87}"="Extensions Manager Folder" "{63da6ec0-2e98-11cf-8d82-444553540000}"="FTP Folders Webview" "{883373C3-BF89-11D1-BE35-080036B11A03}"="Microsoft DocProp Shell Ext" "{A9CF0EAE-901A-4739-A481-E35B73E47F6D}"="Microsoft DocProp Inplace Edit Box Control" "{8EE97210-FD1F-4B19-91DA-67914005F020}"="Microsoft DocProp Inplace ML Edit Box Control" "{0EEA25CC-4362-4A12-850B-86EE61B0D3EB}"="Microsoft DocProp Inplace Droplist Combo Control" "{6A205B57-2567-4A2C-B881-F787FAB579A3}"="Microsoft DocProp Inplace Calendar Control" "{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33}"="Microsoft DocProp Inplace Time Control" "{8A23E65E-31C2-11d0-891C-00A024AB2DBB}"="Directory Query UI" "{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}"="Shell properties for a DS object" "{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}"="Directory Object Find" "{F020E586-5264-11d1-A532-0000F8757D7E}"="Directory Start/Search Find" "{0D45D530-764B-11d0-A1CA-00AA00C16E65}"="Directory Property UI" "{62AE1F9A-126A-11D0-A14B-0800361B1103}"="Directory Context Menu Verbs" "{ECF03A33-103D-11d2-854D-006008059367}"="MyDocs Copy Hook" "{ECF03A32-103D-11d2-854D-006008059367}"="MyDocs Drop Target" "{4a7ded0a-ad25-11d0-98a8-0800361b1103}"="MyDocs Properties" "{750fdf0e-2a26-11d1-a3ea-080036587f03}"="Offline Files Menu" "{10CFC467-4392-11d2-8DB4-00C04FA31A66}"="Offline Files Folder Options" "{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}"="Offlinefiler" "{143A62C8-C33B-11D1-84FE-00C04FA34A14}"="Microsoft Agent Character Property Sheet Handler" "{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}"="DfsShell" "{60fd46de-f830-4894-a628-6fa81bc0190d}"="%DESC_PublishDropTarget%" "{7A80E4A8-8005-11D2-BCF8-00C04F72C717}"="MMC Icon Handler" "{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}"=".CAB file viewer" "{32714800-2E5F-11d0-8B85-00AA0044F941}"="Efter &personer..." "{8DD448E6-C188-4aed-AF92-44956194EB1F}"="Windows Media Player Play as Playlist Context Menu Handler" "{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C}"="Windows Media Player Burn Audio CD Context Menu Handler" "{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD}"="Windows Media Player Add to Playlist Context Menu Handler" "{5E44E225-A408-11CF-B581-008029601108}"="Adaptec DirectCD Shell Extension" "{A70C977A-BF00-412C-90B7-034C51DA2439}"="NvCpl DesktopContext Class" "{FFB699E0-306A-11d3-8BD1-00104B6F7516}"="Play on my TV helper" "{1CDB2949-8F65-4355-8456-263E7C208A5D}"="Desktop Explorer" "{1E9B04FB-F9E5-4718-997B-B8DA88302A47}"="Desktop Explorer Menu" "{1E9B04FB-F9E5-4718-997B-B8DA88302A48}"="nView Desktop Context Menu" "{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"="Webbmappar" "{0006F045-0000-0000-C000-000000000046}"="Microsoft Outlook Custom Icon Handler" "{42042206-2D85-11D3-8CFF-005004838597}"="Microsoft Office HTML Icon Handler" "{21569614-B795-46b1-85F4-E737A8DC09AD}"="Shell Search Band" "{BA050CB1-A4E9-488C-B08E-92B870224283}"="" "{0115EB27-0298-4641-800F-A2C274FC9CD9}"="" "{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}"="" "{D2B1480F-109A-4178-9C56-B331377709F3}"="" "{C50984BC-9B7D-4979-A134-A316B97DFED4}"="" ********************************************************************************** HKEY ROOT CLASSIDS: Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}] @="" [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{BA050CB1-A4E9-488C-B08E-92B870224283}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}] @="" [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{0115EB27-0298-4641-800F-A2C274FC9CD9}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}] @="" [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{03D9A4AB-AC60-44C7-8E98-EAB54D290C48}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" [HKEY_CLASSES_ROOT\CLSID\{D2B1480F-109A-4178-9C56-B331377709F3}\InprocServer32] @="C:\\WINDOWS\\system32\\veajet32.dll" "ThreadingModel"="Apartment" Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" [HKEY_CLASSES_ROOT\CLSID\{C50984BC-9B7D-4979-A134-A316B97DFED4}\InprocServer32] @="C:\\WINDOWS\\system32\\guard.tmp" "ThreadingModel"="Apartment" ********************************************************************************** Files Found are not all bad files: C:\WINDOWS\SYSTEM32 browseui.dll Thu 2005-11-24 1.39.16 A.... 1 022 464 998,50 K cdfview.dll Fri 2005-10-21 4.41.56 A.... 151 552 148,00 K danim.dll Sat 2005-11-05 4.20.32 A.... 1 055 232 1,00 M dxtrans.dll Fri 2005-10-21 4.41.56 A.... 205 312 200,50 K esent.dll Thu 2005-10-20 23.31.16 A.... 1 084 416 1,03 M extmgr.dll Fri 2005-10-21 4.41.56 A.... 55 808 54,50 K gdi32.dll Thu 2005-10-06 4.19.00 A.... 280 064 273,50 K iepeers.dll Fri 2005-10-21 4.41.56 A.... 251 392 245,50 K inseng.dll Fri 2005-10-21 4.41.56 A.... 96 768 94,50 K irlql5~1.dll Tue 2005-12-20 17.04.02 ..S.R 235 282 229,77 K lvru09~1.dll Tue 2005-12-20 17.02.22 ..S.R 233 747 228,27 K mshtml.dll Thu 2005-11-24 1.39.20 A.... 3 013 632 2,87 M mshtmled.dll Fri 2005-10-21 4.41.58 A.... 448 512 438,00 K msrating.dll Fri 2005-10-21 4.41.58 A.... 146 432 143,00 K mstime.dll Fri 2005-10-21 4.41.58 A.... 530 944 518,50 K pngfilt.dll Fri 2005-10-21 4.41.58 A.... 39 424 38,50 K s32evnt1.dll Thu 2005-12-01 12.14.20 A.... 86 091 84,07 K shdocvw.dll Thu 2005-12-01 4.33.22 A.... 1 492 480 1,42 M shell32.dll Fri 2005-09-23 4.07.46 A.... 8 458 240 8,07 M shlwapi.dll Fri 2005-10-21 4.42.00 A.... 473 600 462,50 K spmsg.dll Thu 2005-10-13 0.26.58 ..... 15 072 14,72 K urlmon.dll Sat 2005-11-05 4.20.38 A.... 604 160 590,00 K veajet32.dll Tue 2005-12-20 17.04.02 ..S.R 233 747 228,27 K wininet.dll Fri 2005-10-21 4.42.00 A.... 658 944 643,50 K 24 items found: 24 files (3 H/S), 0 directories. Total of file sizes: 20 873 315 bytes 19,91 M Locate .tmp files: No matches found. ********************************************************************************** Directory Listing of system files: Volymen i enhet C har ingen etikett. Volymens serienummer „r A4FD-21B6 Inneh†ll i katalogen C:\WINDOWS\System32 2005-12-20 17:04 233ÿ747 veajet32.dll 2005-12-20 17:04 235ÿ282 irlql5351.dll 2005-12-20 17:02 233ÿ747 lvru0999e.dll 2005-12-13 19:33 <KAT> dllcache 2005-09-29 10:39 <KAT> Microsoft 3 fil(er) 702ÿ776 byte 2 katalog(er) 91ÿ687ÿ866ÿ368 byte ledigt [/log]
×
×
  • Skapa nytt...