Just nu i M3-nätverket
Gå till innehåll

perjak

Medlem
  • Antal inlägg

    38
  • Gick med

  • Senaste besök

Allt postat av perjak

  1. Trots att alla försök att uppdatera drivisar sa att de senaste var installerade fortsatte det att krascha. Dessutom hittade inte WhoCrached några dumpfiler. Nåväl. Testade att återinstallera äldre drivrutiner från datortillverkarens hemsida och vips så gick uppdateringen igenom! tack för era inlägg i ärendet.
  2. Hej! Nu har jag läst och provat ett otal guider men lyckas ändå inte uppdatera till senaste versionen (1803) av Windows 10. Den uppdaterar till 43% sen blir det blå skärm där det står DRIVER_PNP_WATCHDOG. Jag har prövat att uppdatera drivrutinerna men det hjälpte inte.
  3. Och nu när jag bytte USB-port för femtielfte gången hittade plötsligt maskinen kameran och vips fungerar allt som det ska. Tack Cecilia för att du tog dig tid.
  4. Ja, det blir ett litet gult utropstecken på en av USB-ikonerna i enhetshanteraren.
  5. Jag har testat alla upptänkliga varianter utan någon framgång.
  6. Jag har råkat ut för ett synnerligen besvärligt problem. Jag har en gammal Microsoft Lifecam Cinema och den funkade utmärkt på min gamla W7-dator. Nu när jag bytt till en ny dator där uppgraderingen från W8.1 till W10 skedde direkt när jag startade den första gången funkar inte kameran längre. Jag får antingen felet: USB-porten kunde inte återställas eller en USB-enhet känns inte igen. Jag har prövat att ladda ny programvara/drivisar både via update i enhetshanteraren (för USB-enheterna) och hämtat hem diverse versioner av kameradrivisar och annat från Microsoft. Det som gör saken ännu märkligare är att kameran fungerar perfekt på min gamla bärbara maskin som jag uppgraderade från W7 till W10. Där pluggade jag i den och vips letade Windows upp lämplig programvara och installerade den.
  7. Hej! Jag jobbar med Excel 2003 (stenålder, jag vet) Jag skall försöka skapa ett macro som skapar en PDF via CutePDF och dessutom skriver in en förutbestämd sökväg där skapad PDF skall sparas och gärna även ett förutbestämt filnamn. Om det skulle fungera vill jag även få makrot att spara ner PDFen utan att jag ska behöva trycka på ok.
  8. jag har just installerat om datorn med Windows 7 64bit. När jag ska lägga på mitt Office 2007, Student klagar installationen på att proofingfiler saknas och installationen avstannar. Jag har prövat två gånger men ingen lycka. Vad göra?
  9. perjak

    Sover hårt

    Det är precis det jag också misstänker. Det enda jag med säkerhet vet att jag uppdaterat på båda är windows update och de automatiska uppdateringarna till säkerhetspaketet (F-secure via Bredbandsbolaget). Jag har övervägt en återställningspunkt, men min förhoppning är att någon ska konfirmera att det uppstått denna typ av fel just i samband med någon av de två nämnda programmens uppdateringar på senare tid.
  10. perjak

    Sover hårt

    Jag har två datorer som börjat bete sig på exakt samma sätt. Den ena är en 32 bitars stationär och den andra en 64 bitars laptop. Båda är DELL-maskiner. Problemen började runt nyår eller strax därefter. När datorn gått i viloläge vaknar den inte av musrörelser eller tangenttryck. Först trodde jag att det bara gick att lösa med strömbrytaren, men efter ett tag kom jag på att prova ctrl-alt-del. Detta kommando "hör" den och vaknar. Utöver detta har båda datorerna vid två tillfällen blinkat till och bytt utseende på fönstren. Den gick tillbaka till originalschemat. Efter några minuter gick den tillbaka till ursprunget igen utan att jag gjorde något. De har även uppvisat kortare frysningar av skärmen när jag sitter och jobbar. Jag har genomsökt båda datorerna efter virus och andra elakheter men kammar noll.
  11. Jag tror att jag har samma problem som trådskaparen och jag har samma problem på två av varandra oberoende datorer. Jag kör dock Windows 7. Den ena är en 32 bitars stationär och den andra en 64 bitars laptop. Båda är DELL-maskiner. Problemen började runt nyår eller strax därefter. När datorn gått i viloläge vaknar den inte av musrörelser eller tangenttryck. Först trodde jag att det bara gick att lösa med strömbrytaren, men efter ett tag kom jag på att prova ctrl-alt-del. Detta kommando "hör" den och vaknar. Utöver detta har båda datorerna vid två tillfällen blinkat till och bytt utseende på fönstren. Den gick tillbaka till originalschemat. Efter några minuter gick den tillbaka till ursprunget igen utan att jag gjorde något. De har även uppvisat kortare frysningar av skärmen när jag sitter och jobbar. Jag har genomsökt båda datorerna efter virus och andra elakheter men kammar noll.
  12. Det verkar lovande. Nu kör vi ett tag och ser hur det går. Tack för hjälpen!
  13. Jag kom på att jag kanske borde köra maleware på samtliga konton på maskinen. Det fanns lite till attrensa där, men det verkade vara rester av samma skit som fanns på det första kontot. Här kommer en rykande färsk hijack [log]Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:13:13, on 2009-10-10 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Program\Norman\Npm\bin\ELOGSVC.EXE C:\Program\Norman\Ngs\Bin\Nprosec.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\Npm\Bin\Zanda.exe C:\Program\Norman\npm\bin\nvoy.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\npf\bin\npfsvc32.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\svchost.exe C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program\Bonjour\mDNSResponder.exe C:\WINDOWS\system32\svchost.exe C:\Program\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\Npm\Bin\scheduler.exe C:\Program\Norman\Npm\Bin\Njeeves.exe C:\Program\iPod\bin\iPodService.exe C:\Program\Norman\nse\bin\NSESVC.EXE C:\WINDOWS\System32\alg.exe C:\Program\Norman\Nvc\bin\nvcoas.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program\Analog Devices\Core\smax4pnp.exe C:\Program\Norman\Npm\Bin\ZLH.EXE C:\Program\Norman\Nvc\Bin\Nip.exe C:\Program\iTunes\iTunesHelper.exe C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe C:\Program\Norman\Nvc\Bin\cclaw.exe C:\Program\Dell Photo AIO Printer 942\memcard.exe C:\Program\Dell Photo AIO Printer 942\dlbubmon.exe C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe C:\WINDOWS\system32\rundll32.exe C:\Program\Java\jre6\bin\jusched.exe C:\Program\Adobe\Reader 9.0\Reader\Reader_sl.exe C:\WINDOWS\system32\ctfmon.exe C:\Program\Trend Micro\HijackThis\HijackThis.exe C:\Program\Windows Live\Messenger\MsnMsgr.Exe C:\Program\Delade filer\Teleca Shared\CapabilityManager.exe C:\Program\Messenger\msmsgs.exe C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program\Personal\bin\Personal.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe C:\Program\PC Connectivity Solution\ServiceLayer.exe C:\Program\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program\PC Connectivity Solution\Transports\NclToBTSrv.exe C:\Program\Delade filer\Teleca Shared\Generic.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.blocket.se/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program\Delade filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [ATIPTA] C:\Program\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [soundMAXPnP] C:\Program\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [Norman ZANDA] "C:\Program\Norman\Npm\Bin\ZLH.EXE" /LOAD /SPLASH O4 - HKLM\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe" O4 - HKLM\..\Run: [DellMCM] "C:\Program\Dell Photo AIO Printer 942\memcard.exe" O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [steam] "C:\Program\Valve\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [MSMSGS] "C:\Program\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] "C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program\Personal\bin\Personal.exe O4 - Global Startup: Bluetooth Manager.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\Program\MICROS~4\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1215378632093 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215378624468 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program\Bonjour\mDNSResponder.exe O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe O23 - Service: Norman eLogger service 6 (eLoggerSvc6) - Norman ASA - C:\Program\Norman\Npm\bin\ELOGSVC.EXE O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program\Delade filer\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Tjänsten Google Update (gupdate1c9c1398c573c56) (gupdate1c9c1398c573c56) - Google Inc. - C:\Program\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod Service - Apple Inc. - C:\Program\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program\Java\jre6\bin\jqs.exe O23 - Service: Norman NJeeves - Norman ASA - C:\Program\Norman\Npm\Bin\Njeeves.exe O23 - Service: Norman ZANDA - Norman ASA - C:\Program\Norman\Npm\Bin\Zanda.exe O23 - Service: Norman Personal Firewall Service (NPFSvc32) - Norman ASA - C:\Program\Norman\npf\bin\npfsvc32.exe O23 - Service: Norman Security service (NPROSECSVC) - Norman ASA - C:\Program\Norman\Ngs\Bin\Nprosec.exe O23 - Service: Norman Scanner Engine Service (nsesvc) - Norman ASA - C:\Program\Norman\nse\bin\NSESVC.EXE O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Program\Norman\Nvc\bin\nvcoas.exe O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Unknown owner - C:\Program\Norman\Nvc\BIN\NVCSCHED.EXE (file missing) O23 - Service: Norman Resource Provider (NVOY) - Norman ASA - C:\Program\Norman\npm\bin\nvoy.exe O23 - Service: Norman Scheduler Service (Scheduler) - Norman ASA - C:\Program\Norman\Npm\Bin\scheduler.exe O23 - Service: ServiceLayer - Nokia. - C:\Program\PC Connectivity Solution\ServiceLayer.exe -- End of file - 10558 bytes [/log]
  14. Hehe. Jo jag vet att det bara var en månad sen. Men nu är det så att jag hjälper en kompis att rensa upp i hans dataträsk. Min egen maskin mår prima och går som tåget. Maleware gav inga napp. Nya Hijack ser ut så här. [log]Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:36:01, on 2009-10-10 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Program\Norman\Npm\bin\ELOGSVC.EXE C:\Program\Norman\Ngs\Bin\Nprosec.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\Npm\Bin\Zanda.exe C:\Program\Norman\npm\bin\nvoy.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\npf\bin\npfsvc32.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\svchost.exe C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program\Bonjour\mDNSResponder.exe C:\WINDOWS\system32\svchost.exe C:\Program\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\Npm\Bin\scheduler.exe C:\Program\Norman\Npm\Bin\Njeeves.exe C:\WINDOWS\System32\alg.exe C:\Program\Norman\nse\bin\NSESVC.EXE C:\Program\Norman\Nvc\bin\nvcoas.exe C:\WINDOWS\Explorer.EXE C:\Program\Analog Devices\Core\smax4pnp.exe C:\Program\Norman\Npm\Bin\ZLH.EXE C:\Program\Norman\Nvc\Bin\Nip.exe C:\Program\iTunes\iTunesHelper.exe C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe C:\Program\Norman\Nvc\Bin\cclaw.exe C:\Program\Dell Photo AIO Printer 942\memcard.exe C:\Program\Dell Photo AIO Printer 942\dlbubmon.exe C:\WINDOWS\System32\svchost.exe C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe C:\WINDOWS\system32\rundll32.exe C:\Program\Java\jre6\bin\jusched.exe C:\Program\iPod\bin\iPodService.exe C:\Program\Delade filer\Teleca Shared\CapabilityManager.exe C:\WINDOWS\system32\ctfmon.exe C:\Program\Windows Live\Messenger\MsnMsgr.Exe C:\Program\Messenger\msmsgs.exe C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program\Personal\bin\Personal.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe C:\Program\PC Connectivity Solution\ServiceLayer.exe C:\Program\Delade filer\Teleca Shared\Generic.exe C:\Program\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program\PC Connectivity Solution\Transports\NclToBTSrv.exe C:\Program\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe C:\Program\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.blocket.se/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program\AskBarDis\bar\bin\askBar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program\Delade filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program\AskBarDis\bar\bin\askBar.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [ATIPTA] C:\Program\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [soundMAXPnP] C:\Program\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [Norman ZANDA] "C:\Program\Norman\Npm\Bin\ZLH.EXE" /LOAD /SPLASH O4 - HKLM\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe" O4 - HKLM\..\Run: [DellMCM] "C:\Program\Dell Photo AIO Printer 942\memcard.exe" O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [steam] "C:\Program\Valve\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [MSMSGS] "C:\Program\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] "C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program\Personal\bin\Personal.exe O4 - Global Startup: Bluetooth Manager.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\Program\MICROS~4\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1215378632093 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215378624468 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program\Bonjour\mDNSResponder.exe O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe O23 - Service: Norman eLogger service 6 (eLoggerSvc6) - Norman ASA - C:\Program\Norman\Npm\bin\ELOGSVC.EXE O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program\Delade filer\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Tjänsten Google Update (gupdate1c9c1398c573c56) (gupdate1c9c1398c573c56) - Google Inc. - C:\Program\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod Service - Apple Inc. - C:\Program\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program\Java\jre6\bin\jqs.exe O23 - Service: Norman NJeeves - Norman ASA - C:\Program\Norman\Npm\Bin\Njeeves.exe O23 - Service: Norman ZANDA - Norman ASA - C:\Program\Norman\Npm\Bin\Zanda.exe O23 - Service: Norman Personal Firewall Service (NPFSvc32) - Norman ASA - C:\Program\Norman\npf\bin\npfsvc32.exe O23 - Service: Norman Security service (NPROSECSVC) - Norman ASA - C:\Program\Norman\Ngs\Bin\Nprosec.exe O23 - Service: Norman Scanner Engine Service (nsesvc) - Norman ASA - C:\Program\Norman\nse\bin\NSESVC.EXE O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Program\Norman\Nvc\bin\nvcoas.exe O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Unknown owner - C:\Program\Norman\Nvc\BIN\NVCSCHED.EXE (file missing) O23 - Service: Norman Resource Provider (NVOY) - Norman ASA - C:\Program\Norman\npm\bin\nvoy.exe O23 - Service: Norman Scheduler Service (Scheduler) - Norman ASA - C:\Program\Norman\Npm\Bin\scheduler.exe O23 - Service: ServiceLayer - Nokia. - C:\Program\PC Connectivity Solution\ServiceLayer.exe -- End of file - 10792 bytes [/log]
  15. Datorn beter sig konstigt. Jag misstänker att det är rätt mycket konstigeheter i den. Hjälp! Här kommer loggar från Hijack och malewarebytes Hijack Malewarebytes [log]Malwarebytes' Anti-Malware 1.41 Databasversion: 2936 Windows 5.1.2600 Service Pack 3 2009-10-10 15:39:48 mbam-log-2009-10-10 (15-39-42).txt Skanningstyp: Snabb skanning Antal skannade objekt: 115196 Förfluten tid: 11 minute(s), 36 second(s) Infekterade minnesprocesser: 0 Infekterade minnesmoduler: 0 Infekterade registernycklar: 33 Infekterade registervärden: 2 Infekterade registerdataposter: 2 Infekterade mappar: 30 Infekterade filer: 219 Infekterade minnesprocesser: (Inga illasinnade poster hittades) Infekterade minnesmoduler: (Inga illasinnade poster hittades) Infekterade registernycklar: HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Interface\{d8560ac2-21b5-4c1a-bdd4-bd12bc83b082} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{c9ccbb35-d123-4a31-affc-9b2933132116} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.ShopperReports) -> No action taken. HKEY_CLASSES_ROOT\Typelib\{e343edfc-1e6c-4cb5-aa29-e9c922641c80} (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.ShopperReports) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.ShopperReports) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Zango (Adware.Zango) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\zangosa (Adware.Zango) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShoppingReport (Adware.ShopperReports) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> No action taken. Infekterade registervärden: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx\Windows Service (Backdoor.Bot) -> No action taken. Infekterade registerdataposter: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken. Infekterade mappar: C:\Documents and Settings\Linnea\Application Data\ShoppingReport (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\db (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\dwld (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\report (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\res1 (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\db (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\dwld (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\report (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\res1 (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\IESkins (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\HostOI (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\HostOI\dynamic (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\HostOL (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\HostOL\dynamic (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\ustat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad (Adware.Zango) -> No action taken. C:\Program\ShoppingReport (Adware.ShopperReports) -> No action taken. C:\Program\ShoppingReport\Bin (Adware.ShopperReports) -> No action taken. C:\Program\ShoppingReport\Bin\2.5.0 (Adware.ShopperReports) -> No action taken. Infekterade filer: C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\Config.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Linnea\Application Data\ShoppingReport\cs\res1\WhiteList.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\Config.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\ShoppingReport\cs\res1\WhiteList.dbs (Adware.ShopperReports) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\1.sdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\1386824.sdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\3251993.sdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\3893245.sdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\819382.sdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\domains.txt (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\17040 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\198406 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\211683 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\223385 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\231028 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\233027 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\23923 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\27503 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\288733 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\297076 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\33201 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\34123 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\390259 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\427075 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\427148 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\455563 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\455743 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\516030 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\52335 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\53813 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\54979 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\575586 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\591955 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\67220 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\738022 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\747635 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\753300 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\753335 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\753344 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\7690 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\81480 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\81830 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\93110 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\95917 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML\96961 (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\dynamic\ustat\3715.dat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\avatar.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\btntrans.idx (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\btntrans1.dat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\buttondir.txt (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\components.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\cursors.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\default.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_511745-514279.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_bidzC_ZT_IE-ca.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_bidzC_ZT_IE-us.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_categorize.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_comparison.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_explorer-Mails.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_explorer-people.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_favorites.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_Games.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_Hide.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_hotbarcom.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_Hotmail.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_hsskin.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_jemster.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_jemsterie.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_jemsteruk.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_jobsearch.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_Mails.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_MobileSidewalk.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_new.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_premium.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_reun.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_ringtones.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_SearchBoxTrapper.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_searchfor.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_searchgo.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_weather.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Default_yellowpages.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_1000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_2000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_3000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_bar.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_bbar1.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_logos.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_buttons_other.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\d_icons_weather.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\editblbuttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\email-def-511724-548964.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\email-def-511724-9595.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\email-t1-bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\icons2.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\ie_games_icon.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\ie_video.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\keywords.idx (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\keywords1.dat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\layout.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\linkpathlegal.txt (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\progress.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\sales_buttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\sdfmodifier.xml (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\s_icons_buttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\t2_bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\theweb.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\top7.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\Top7_theweb.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\tsd_bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\zango_btn.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\1\zango_ie_menu.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\avatar.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\btntrans.idx (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\btntrans1.dat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\buttondir.txt (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\components.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\cursors.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\default.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_511745-514279.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_bidzC_ZT_IE-ca.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_bidzC_ZT_IE-us.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_categorize.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_comparison.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_explorer-Mails.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_explorer-people.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_favorites.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_Games.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_Hide.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_hotbarcom.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_Hotmail.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_hsskin.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_jemster.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_jemsterie.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_jemsteruk.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_jobsearch.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_Mails.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_MobileSidewalk.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_new.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_premium.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_reun.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_ringtones.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_SearchBoxTrapper.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_searchfor.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_searchgo.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_weather.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Default_yellowpages.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_1000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_2000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_3000.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_bar.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_bbar1.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_logos.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_buttons_other.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\d_icons_weather.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\editblbuttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\email-def-511724-548964.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\email-def-511724-9595.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\email-t1-bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\icons2.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\ie_games_icon.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\ie_video.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\keywords.idx (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\keywords1.dat (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\layout.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\linkpathlegal.txt (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\progress.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\sales_buttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\sdfmodifier.xml (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\s_icons_buttons.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\t2_bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\theweb.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\top7.cdf (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\Top7_theweb.mnu (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\tsd_bg.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\zango_btn.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\2\zango_ie_menu.res (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\avatar.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\BtnTrans.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\BtnTrans1.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\buttondir.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\cursors.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\default.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_1000.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_2000.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_3000.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bar.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_bbar1.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_logos.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_buttons_other.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\d_icons_weather.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\editblbuttons.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\email-t1-bg.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\icons2.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\ie_games_icon.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\ie_video.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\keywords.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\keywords1.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\layout.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\linkpathlegal.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\progress.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\sales_buttons.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\sdfmodifier.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\s_icons_buttons.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\t2_bg.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\top7.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\tsd_bg.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\zango_btn.xip (Adware.Zango) -> No action taken. C:\Documents and Settings\Stefan\Application Data\Zango\v3.0\Zango\static\DownLoad\zango_ie_menu.xip (Adware.Zango) -> No action taken. C:\WINDOWS\system32\TDSSwkod.log (Rootkit.TDSS) -> No action taken. [/log] [log]Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:49:02, on 2009-10-10 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Program\Norman\Npm\bin\ELOGSVC.EXE C:\Program\Norman\Ngs\Bin\Nprosec.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\Npm\Bin\Zanda.exe C:\Program\Norman\npm\bin\nvoy.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program\Norman\npf\bin\npfsvc32.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program\Analog Devices\Core\smax4pnp.exe C:\Program\Norman\Npm\Bin\ZLH.EXE C:\Program\iTunes\iTunesHelper.exe C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe C:\Program\Dell Photo AIO Printer 942\memcard.exe C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe C:\Program\Dell Photo AIO Printer 942\dlbubmon.exe C:\WINDOWS\system32\rundll32.exe C:\Program\Java\jre6\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program\Windows Live\Messenger\MsnMsgr.Exe C:\Program\Messenger\msmsgs.exe C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program\Delade filer\Teleca Shared\CapabilityManager.exe C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program\Personal\bin\Personal.exe C:\WINDOWS\system32\svchost.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe C:\Program\Bonjour\mDNSResponder.exe C:\WINDOWS\system32\svchost.exe C:\Program\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\Program\Delade filer\Teleca Shared\Generic.exe C:\Program\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe C:\Program\Norman\Npm\Bin\scheduler.exe C:\Program\Norman\Npm\Bin\Njeeves.exe C:\Program\iPod\bin\iPodService.exe C:\Program\PC Connectivity Solution\ServiceLayer.exe C:\Program\Norman\nse\bin\NSESVC.EXE C:\WINDOWS\System32\alg.exe C:\Program\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program\PC Connectivity Solution\Transports\NclToBTSrv.exe C:\WINDOWS\System32\svchost.exe C:\Program\Norman\Nvc\bin\nvcoas.exe C:\Program\Norman\Nvc\Bin\Nip.exe C:\Program\Norman\Nvc\Bin\cclaw.exe C:\Program\Internet Explorer\iexplore.exe C:\Program\Internet Explorer\iexplore.exe C:\Program\Internet Explorer\iexplore.exe C:\Program\Norman\npf\bin\npfuser.exe C:\Program\Malwarebytes' Anti-Malware\mbam.exe C:\Program\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.blocket.se/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar O2 - BHO: ShoppingReport - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - C:\Program\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (file missing) O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program\AskBarDis\bar\bin\askBar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program\Delade filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program\AskBarDis\bar\bin\askBar.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [ATIPTA] C:\Program\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [soundMAXPnP] C:\Program\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [Norman ZANDA] "C:\Program\Norman\Npm\Bin\ZLH.EXE" /LOAD /SPLASH O4 - HKLM\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program\Dell Photo AIO Printer 942\dlbubmgr.exe" O4 - HKLM\..\Run: [DellMCM] "C:\Program\Dell Photo AIO Printer 942\memcard.exe" O4 - HKLM\..\Run: [sony Ericsson PC Suite] "C:\Program\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [steam] "C:\Program\Valve\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [MSMSGS] "C:\Program\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [swg] "C:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program\Personal\bin\Personal.exe O4 - Global Startup: Bluetooth Manager.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program\Microsoft Office\Office10\OSA.EXE O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\Program\MICROS~4\Office10\EXCEL.EXE/3000 O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (file missing) O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (file missing) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1215378632093 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1215378624468 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program\Bonjour\mDNSResponder.exe O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe O23 - Service: Norman eLogger service 6 (eLoggerSvc6) - Norman ASA - C:\Program\Norman\Npm\bin\ELOGSVC.EXE O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program\Delade filer\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Tjänsten Google Update (gupdate1c9c1398c573c56) (gupdate1c9c1398c573c56) - Google Inc. - C:\Program\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod Service - Apple Inc. - C:\Program\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program\Java\jre6\bin\jqs.exe O23 - Service: Norman NJeeves - Norman ASA - C:\Program\Norman\Npm\Bin\Njeeves.exe O23 - Service: Norman ZANDA - Norman ASA - C:\Program\Norman\Npm\Bin\Zanda.exe O23 - Service: Norman Personal Firewall Service (NPFSvc32) - Norman ASA - C:\Program\Norman\npf\bin\npfsvc32.exe O23 - Service: Norman Security service (NPROSECSVC) - Norman ASA - C:\Program\Norman\Ngs\Bin\Nprosec.exe O23 - Service: Norman Scanner Engine Service (nsesvc) - Norman ASA - C:\Program\Norman\nse\bin\NSESVC.EXE O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Program\Norman\Nvc\bin\nvcoas.exe O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Unknown owner - C:\Program\Norman\Nvc\BIN\NVCSCHED.EXE (file missing) O23 - Service: Norman Resource Provider (NVOY) - Norman ASA - C:\Program\Norman\npm\bin\nvoy.exe O23 - Service: Norman Scheduler Service (Scheduler) - Norman ASA - C:\Program\Norman\Npm\Bin\scheduler.exe O23 - Service: ServiceLayer - Nokia. - C:\Program\PC Connectivity Solution\ServiceLayer.exe -- End of file - 11574 bytes [/log]
  16. Jag har läst på din sida och den är väldigt matnyttig. Jag har bredbandsbolagets säker bas som rullar och uppdaterar sig automatiskt och den scannar igenom datorn en gång i veckan. Kör även Maleware lite då och då. Dessutom görs en Norton Ghost-backup varje kväll. NU verkar allt funka och tills vidare tillskriver vi strulet konflikt mellan F-secure och Microsoft update. Du ska ha jättetack för din hjälp!
  17. Nu har jag lyckats installera samtliga uppdateringar för Vista och datorn verkar må prima. Tänk om det hela berodde på F-secur För att få ett kvitto på detta hoppas jag att jag kan få ett utlåtande över följande Hijack-log. (jag har även scannat med Malewarebytes och dess log visade noll fel) [log]Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:04:42, on 2009-09-12 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18813) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files\Dell Support Center\bin\sprtcmd.exe C:\Program Files\Norton Ghost\Agent\VProTray.exe C:\Program Files\Bredbandsbolaget Security Services\Common\FSM32.EXE C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Java\jre6\bin\jusched.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Personal\bin\Personal.exe C:\Program Files\palmOne\Hotsync.exe C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe C:\Program Files\Bredbandsbolaget Security Services\FSGUI\fsguidll.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe C:\Program Files\Pantone\huey\hueyTray.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\System32\mobsync.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.se/ig/dell?hl=sv&client=dell-row&channel=se&ibd=4081106 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.se/advanced_search?hl=sv R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer erhållet från Dell R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [dellsupportcenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [Norton Ghost 14.0] "C:\Program Files\Norton Ghost\Agent\VProTray.exe" O4 - HKLM\..\Run: [Media Codec Update Service] C:\Program Files\Essentials Codec Pack\update.exe -silent O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Bredbandsbolaget Security Services\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Bredbandsbolaget Security Services\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST') O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program Files\Personal\bin\Personal.exe O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe O4 - Global Startup: hueyTray.lnk = C:\Program Files\Pantone\huey\hueyTray.exe O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Referensinformation - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O13 - Gopher Prefix: O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {44990B00-3C9D-426D-81DF-AAB636FA4345} (Symantec Configuration Class) - https://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlcm.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Windows\system32\AERTSrv.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\Anti-Virus\fsgk32st.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\FSAUA\program\fsaua.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\FWES\Program\fsdfwd.exe O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\Common\FSMA32.EXE O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\ORSP Client\fsorsp.exe O23 - Service: getPlus® Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Norton Ghost\Agent\VProSvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe O23 - Service: SymSnapService - Symantec - C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe -- End of file - 10324 bytes [/log]
  18. Jag valde att backa igen. Nu funkar allt som det ska och det första jag gjorde efter att jag lagt tillbaka backupen var att ladda ner Bredbandsbolagets säkerhetscenter igen. (F-secure) Nu ska jag försöka lägga in uppdateringar en och en för att se vad det är som gör att utforskaren börjar trilskas.
  19. Jag lägger till lite info. För att få in uppdateringar var först windows update tvunget att uppdateras till microsoft update. Gjorde detta och startade om datorn. Då hamnade jag i en loop där datorn startas om hela tiden. Man kommer till skärmen Uppdateringar konfigureras steg 3 av 3 0% sen görs ny omstart. Jag blir tokig!!!!!
  20. Nu återupptas arbetet. Jag har backat systemet till en backup gjord strax efter installationen av SP2. (norton ghost) Nu funkar det. Helst skulle jag vilja ominstallera ett antal uppdateringar till bakåt, inkl sp2, men det går inte. Windows påstår att alla uppdateringar inte kunde avinstalleras. (se bifogad bild) Kan jag tvinga på systemet redan installerade uppdateringar? Jag har prövat att söka dom separat via microsofts download-sida men systemet vägrar ta emot dom. Jag har kört malewarebytes (fullständig skanning) och hijackthis enligt tidigare instruktion. Jag bifogar loggar nedan. Syns det något konstigt? [log]Malwarebytes' Anti-Malware 1.40 Databasversion: 2773 Windows 6.0.6002 Service Pack 2 2009-09-10 21:32:41 mbam-log-2009-09-10 (21-32-41).txt Skanningstyp: Fullständig skanning (C:\|M:\|) Antal skannade objekt: 298318 Förfluten tid: 1 hour(s), 15 minute(s), 1 second(s) Infekterade minnesprocesser: 0 Infekterade minnesmoduler: 0 Infekterade registernycklar: 0 Infekterade registervärden: 0 Infekterade registerdataposter: 0 Infekterade mappar: 0 Infekterade filer: 0 Infekterade minnesprocesser: (Inga illasinnade poster hittades) Infekterade minnesmoduler: (Inga illasinnade poster hittades) Infekterade registernycklar: (Inga illasinnade poster hittades) Infekterade registervärden: (Inga illasinnade poster hittades) Infekterade registerdataposter: (Inga illasinnade poster hittades) Infekterade mappar: (Inga illasinnade poster hittades) Infekterade filer: (Inga illasinnade poster hittades) [/log] [log]Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:36:18, on 2009-09-10 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18813) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Dell Support Center\bin\sprtcmd.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files\Norton Ghost\Agent\VProTray.exe C:\Program Files\Bredbandsbolaget Security Services\Common\FSM32.EXE C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Windows\ehome\ehtray.exe C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe C:\Program Files\Personal\bin\Personal.exe C:\Program Files\palmOne\Hotsync.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Pantone\huey\hueyTray.exe C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe C:\Program Files\Bredbandsbolaget Security Services\FSGUI\fsguidll.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\SearchProtocolHost.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.se/ig/dell?hl=sv&client=dell-row&channel=se&ibd=4081106 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.se/advanced_search?hl=sv R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157'>http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer erhållet från Dell R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [dellsupportcenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [Norton Ghost 14.0] "C:\Program Files\Norton Ghost\Agent\VProTray.exe" O4 - HKLM\..\Run: [Media Codec Update Service] C:\Program Files\Essentials Codec Pack\update.exe -silent O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Bredbandsbolaget Security Services\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Bredbandsbolaget Security Services\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe -p O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST') O4 - Startup: palmOne Registration.lnk = C:\Program Files\palmOne\register.exe O4 - Global Startup: BankID säkerhetsprogram.lnk = C:\Program Files\Personal\bin\Personal.exe O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe O4 - Global Startup: hueyTray.lnk = C:\Program Files\Pantone\huey\hueyTray.exe O4 - Global Startup: Nikon Monitor.lnk = C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Referensinformation - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O13 - Gopher Prefix: O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {44990B00-3C9D-426D-81DF-AAB636FA4345} (Symantec Configuration Class) - https://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlcm.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Windows\system32\AERTSrv.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\Anti-Virus\fsgk32st.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\FSAUA\program\fsaua.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\FWES\Program\fsdfwd.exe O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\Common\FSMA32.EXE O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Bredbandsbolaget Security Services\ORSP Client\fsorsp.exe O23 - Service: getPlus® Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Norton Ghost\Agent\VProSvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe O23 - Service: SymSnapService - Symantec - C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe -- End of file - 10364 bytes [/log] [bild bifogad 2009-09-10 21:39:40 av perjak]
  21. När jag jobbade mig nedåt i listan med uppdateringar så var det 3-4 säkerhetsuppdateringar och uppdateringar till Windows som inte kunde avinstalleras helt. Detsamma gäller servicepacken. Det kommer upp ett windows felmeddelandefönster som säger att vissa delar inte kunde avinstalleras. (finns det något sätt att tvinga en redan installerad uppdatering att installeras igen? Då skulle jag ju kunna tvinga på datorn SP2 igen om det skulle vara så att något gick snett när den installerades) Jag lät microsoft upate lägga in allt som den funktionen ansåg behövas och så var jag tillbaka på ruta ett. :-( Ny rensning påbörjades, men efter en stund hoppade automatisk uppdatering igång och la dit flera av dom uppdateringar jag just avinstallerat... Tänk om jag kommit på den briljanta att stänga av den funktionen. Nåväl, nu blir det uppehåll för i kväll. Jag tackar för ditt engagemang såhär långt och återkommer med nya försök i morgon. [inlägget ändrat 2009-09-09 21:26:51 av perjak]
  22. Nu är allt borta. Vissa uppdateringar, inklusive SP2, kunde inte avinstalleras helt. Innan åter installation påbörjas verkar allt funka som det ska.
  23. Ok. Tack för hjälpen så här långt. Nu ska jag avinstallera samtliga uppdateringar bakåt i tiden t.o.m. SP2. Sen får Microsoft update göra om det hela. Jag lär återkomma med resultatet.
  24. Tyvärr samma problem. Vad var det för något som jag fixade med hijack tidigare?
×
×
  • Skapa nytt...