ja, men det ændre ikke noget. Kan det være virus. Har prøvet at køre spay bot search & Destroy, men den kunne ikke fjerne alt.
Jeg ved ikke om nogen kan tyde rapporten, men den ser sådan ud:
--- Search result list ---
BackWeb lite: Autorun settings (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\S-1-5-21-823518204-1220945662-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\LDM
BackWeb lite: File extension link (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\.iad
BackWeb lite: File extension link (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\.bwp
BackWeb lite: File extension link (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\bwpfile
BackWeb lite: File extension link (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\iadfile
BackWeb lite: Global settings (Registreringsdatabasenøgle, nothing done)
HKEY_LOCAL_MACHINE\Software\BackWeb
BackWeb lite: Interface ( (IBackWebDownloadTimeConstraint)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{0D1F7C83-8123-11D0-B5CA-0000B43698D6}
BackWeb lite: Interface ( (IBackWebDirectoryEntry)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{0C6E0440-0B50-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebChannel4_2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{025632A0-BCEC-11D1-8B35-00609761C47A}
BackWeb lite: Interface ( (IBackWebDownloadTimeConstraintCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{0D1F7C84-8123-11D0-B5CA-0000B43698D6}
BackWeb lite: Interface ( (IBackWebGeneralSettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{12473FC3-61A7-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebCommSettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{12473FC5-61A7-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebSetup)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{12473FC7-61A7-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebStoryFieldCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{1D91D9E0-004B-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebInfoPakDownloadServices)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{2DE07D90-DC04-11D0-A875-0000B43699FC}
BackWeb lite: Interface ( (IBackWebChannelTableNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{2F523082-5A0B-11D0-9B9C-444553540000}
BackWeb lite: Interface ( (IBackWebFileAccess)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{3AF78A6E-6F14-11D1-A884-0000B43699FC}
BackWeb lite: Interface ( (IBackWebInfoPakFile)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{3AF78A74-6F14-11D1-A884-0000B43699FC}
BackWeb lite: Interface ( (IBackWebDirectoryNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{41CEBDC0-32C1-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebInfoPakNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{4A3666F3-5F2D-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebChannelCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{53FCF35A-5323-11D0-A864-0000B43699FC}
BackWeb lite: Interface ( (IBackWebStoryField)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{5B1E13A0-004B-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebFileAccessViaDir)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{608FE360-6FB2-11D1-A885-0000B43699FC}
BackWeb lite: Interface ( (IBackWebAlertSettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{72B62B40-17D1-11D1-96A7-F8E906C10000}
BackWeb lite: Interface ( (IBackWebPlayer)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{8028B940-4932-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebChannelDownloadServices)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{9132E380-DC21-11D0-A875-0000B43699FC}
BackWeb lite: Interface ( (IBackWebChannel2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{9647FB70-DC0F-11D0-A875-0000B43699FC}
BackWeb lite: Interface ( (IBackWebAllStoryCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{9DB46423-FF61-11D0-9951-444553540000}
BackWeb lite: Interface ( (IBackWebChannelVariableCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{A4BC67F0-6C90-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebCommunications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{BAD37BC0-2231-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebFilterSettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{C8CEEEE0-17D6-11D1-96A7-F8E906C10000}
BackWeb lite: Interface ( (IBackWebGeneralSettings2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{E01AD640-F87D-11D0-9A50-00AA004812C2}
BackWeb lite: Interface ( (IBackWebInfoPak)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{EB1FFFC2-5688-11D0-A865-0000B43699FC}
BackWeb lite: Interface ( (IBackWebChannelVariable)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{FEFCA7F0-6C8E-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebInfoPakCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{EB1FFFC1-5688-11D0-A865-0000B43699FC}
BackWeb lite: Interface ( (IBackWebApplicationNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{D0894D60-6C6C-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebChannelCollection4)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{BCD0C200-69C1-11D1-8AF8-00609761C47A}
BackWeb lite: Interface ( (IBackWebChannel4)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{AEE96320-2131-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebStory)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{9DB46424-FF61-11D0-9951-444553540000}
BackWeb lite: Interface ( (IBackWebStoryCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{9DB46422-FF61-11D0-9951-444553540000}
BackWeb lite: Interface ( (IBackWebItemDownloadServices)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{93BF8F00-DBE8-11D0-A875-0000B43699FC}
BackWeb lite: Interface ( (IBackWebAllInfoPakCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{8131F530-649E-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWeb4)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{740904E0-0BFB-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebInfoPak4_2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{610141C2-7701-11D1-B042-004095903824}
BackWeb lite: Interface ( (IBackWebDirectoryEntryCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{5DF6CE40-0B50-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebChannel)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{53FCF35B-5323-11D0-A864-0000B43699FC}
BackWeb lite: Interface ( (IBackWeb)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{53FCF355-5323-11D0-A864-0000B43699FC}
BackWeb lite: Interface ( (IBackWebStoryTableNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{44230BC0-3105-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebOpenInfoPakFile)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{3AF78A77-6F14-11D1-A884-0000B43699FC}
BackWeb lite: Interface ( (IBackWebInfoPakFilesCollection)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{3AF78A71-6F14-11D1-A884-0000B43699FC}
BackWeb lite: Interface ( (IBackWebSetup4)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{3667E7B0-4F28-11D1-8ADB-00609761C47A}
BackWeb lite: Interface ( (IBackWebSetupNotifications)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{2F099AF0-6329-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWeb2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{23F43240-F78D-11D0-9A50-00AA004812C2}
BackWeb lite: Interface ( (IBackWebDirectory)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{15030BC0-0B52-11D1-9951-444553540000}
BackWeb lite: Interface ( (IBackWebDisplaySettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{12473FC6-61A7-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebDialerSettings)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{12473FC4-61A7-11D0-A866-0000B43699FC}
BackWeb lite: Interface ( (IBackWebExtension)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{0F4FE440-983F-11D0-9B9C-444553540000}
BackWeb lite: Interface ( (IBackWebDisplaySettings4_2)) (Registreringsdatabasenøgle, nothing done)
HKEY_CLASSES_ROOT\Interface\{001B3F20-D866-11D1-8B4C-00609761C47A}
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\S-1-5-21-823518204-1220945662-682003330-1003\Software\Netscape\Netscape Navigator\Viewers\application/x-iad
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\S-1-5-18\Software\Netscape\Netscape Navigator\Viewers\application/x-iad
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\.DEFAULT\Software\Netscape\Netscape Navigator\Viewers\application/x-iad
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\S-1-5-18\Software\Netscape\Netscape Navigator\Viewers\application/x-bwpreview
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\S-1-5-21-823518204-1220945662-682003330-1003\Software\Netscape\Netscape Navigator\Viewers\application/x-bwpreview
BackWeb lite: Netscape viewer (Registreringsdatabaseværdi, nothing done)
HKEY_USERS\.DEFAULT\Software\Netscape\Netscape Navigator\Viewers\application/x-bwpreview
BackWeb lite: Program file (Filer, nothing done)
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
BackWeb lite: User settings (Registreringsdatabasenøgle, nothing done)
HKEY_USERS\S-1-5-18\Software\BackWeb
BackWeb lite: User settings (Registreringsdatabasenøgle, nothing done)
HKEY_USERS\S-1-5-21-823518204-1220945662-682003330-1003\Software\BackWeb
BackWeb lite: User settings (Registreringsdatabasenøgle, nothing done)
HKEY_USERS\.DEFAULT\Software\BackWeb
MediaPlex: Tracking cookie or cookie of tracking site (Filer, fixed)
C:\Documents and Settings\gunnar\Cookies\gunnar@mediaplex[1].txt
--- Spybot-S&D version: 1.2 ---
2003-03-16 Includes\Cookies.sbi
2003-03-16 Includes\Dialer.sbi
2003-03-16 Includes\Hijackers.sbi
2003-03-16 Includes\Keyloggers.sbi
2003-03-16 Includes\Malware.sbi
2003-03-16 Includes\plugin-ignore.ini
2003-11-12 Includes\QA Tests.sbi
2003-03-16 Includes\Security.sbi
2003-03-16 Includes\Spybots.sbi
2003-03-16 Includes\Temporary.sbi
2003-03-16 Includes\Tracks.uti
2003-03-16 Includes\Trojans.sbi
--- System information ---
Windows XP (Build: 2600) Service Pack 2
/ DataAccess: Microsoft Data Access Components KB870669
/ DataAccess: Patch Available For XMLHTTP Vulnerability
/ DataAccess: Patch Available For XMLHTTP Vulnerability
/ DataAccess: Security Update for Microsoft Data Access Components
/ DirectX: DirectX Update 819696
/ Windows Media Player: Windows Media Player Hotfix [Yderligere oplysninger finder du i Q828026]
/ Windows Media Player / SP0: Windows Media Player Hotfix [Yderligere oplysninger finder du i Q828026]
/ Windows Media Player: Windows Media Update 320920
/ Windows Media Player: Windows Media Update 817787
/ Windows XP / SP2: Windows XP Service Pack 2
/ Windows XP / SP2: Windows XP Hotfix - KB826939
/ Windows XP / SP3: Windows XP Hotfix - KB834707
/ Windows XP / SP3: Windows XP Hotfix - KB867282
/ Windows XP / SP3: Windows XP Hotfix - KB873333
/ Windows XP / SP3: Windows XP Hotfix - KB873339
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB883939)
/ Windows XP / SP3: Windows XP Hotfix - KB885250
/ Windows XP / SP3: Windows XP Hotfix - KB885835
/ Windows XP / SP3: Windows XP Hotfix - KB885836
/ Windows XP / SP3: Windows XP Hotfix - KB885884
/ Windows XP / SP3: Windows XP Hotfix - KB886185
/ Windows XP / SP3: Windows XP Hotfix - KB887472
/ Windows XP / SP3: Windows XP Hotfix - KB887742
/ Windows XP / SP3: Windows XP Hotfix - KB888113
/ Windows XP / SP3: Windows XP Hotfix - KB888302
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB890046)
/ Windows XP / SP3: Windows XP Hotfix - KB890047
/ Windows XP / SP3: Windows XP Hotfix - KB890175
/ Windows XP / SP3: Windows XP Hotfix - KB890859
/ Windows XP / SP3: Windows XP Hotfix - KB890923
/ Windows XP / SP3: Windows XP Hotfix - KB891781
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB893066)
/ Windows XP / SP3: Windows XP Hotfix - KB893086
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB893756)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Opdatering til Windows XP (KB894391)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896358)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896422)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896423)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB896428)
/ Windows XP / SP3: Opdatering til Windows XP (KB896727)
/ Windows XP / SP3: Opdatering til Windows XP (KB898461)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899587)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899588)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB899591)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB901214)
/ Windows XP / SP3: Sikkerhedsopdatering til Windows XP (KB903235)
--- Startup entries list ---
Spybot-S&D Startup list report, 11-09-2005 09:48:12
Located: HK_CU:Run, MSMSGS
file: "C:\Programmer\Messenger\msmsgs.exe" /background
Located: HK_CU:Run, NvMediaCenter
file: RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
Located: HK_CU:Run, LogitechSoftwareUpdate
file: C:\Programmer\Logitech\Video\ManifestEngine.exe boot
Located: HK_CU:Run, LDM
file: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
MD5: B9B7084F7DB3D1B036C0B9178472E96A
Located: HK_LM:Run, Cmaudio
file: RunDll32 cmicnfg.cpl,CMICtrlWnd
Located: HK_LM:Run, NeroCheck
file: C:\WINDOWS\System32\\NeroCheck.exe
MD5: 3E4C03CEFAD8DE135263236B61A49C90
Located: HK_LM:Run, iTunesHelper
file: C:\Programmer\iTunes\iTunesHelper.exe
MD5: 5CC003310F8FD8FCFB01EA13522203F0
Located: HK_LM:Run, QuickTime Task
file: "C:\Programmer\QuickTime\qttask.exe" -atboottime
Located: HK_LM:Run, NvCplDaemon
file: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
Located: HK_LM:Run, nwiz
file: nwiz.exe /install
Located: HK_LM:Run, F-Secure Manager
file: "C:\Programmer\WebSpeed Sikkerhedspakke\Common\FSM32.EXE" /splash
Located: HK_LM:Run, F-Secure TNB
file: "C:\Programmer\WebSpeed Sikkerhedspakke\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
Located: HK_LM:Run, DXM6Patch_981116
file: C:\WINDOWS\p_981116.exe /Q:A
Located: HK_LM:Run, SunJavaUpdateSched
file: C:\Programmer\Java\jre1.5.0_04\bin\jusched.exe
MD5: D3E445A99A1142C35D8D3100B5564591
Located: HK_LM:Run, F-Secure Startup Wizard
file: "C:\Programmer\WebSpeed Sikkerhedspakke\FSGUI\FSSW.EXE" /reboot
Located: HK_LM:Run, News Service
file: "C:\Programmer\WebSpeed Sikkerhedspakke\FSGUI\ispnews.exe"
Located: HK_LM:Run, LVCOMSX
file: C:\WINDOWS\system32\LVCOMSX.EXE
MD5: BCD419D4EA19087E91601C1C2914323A
Located: HK_LM:Run, LogitechVideoRepair
file: C:\Programmer\Logitech\Video\ISStart.exe
MD5: 3D9D5AA7B8A3D9F447274599D3EFB578
Located: HK_LM:Run, LogitechVideoTray
file: C:\Programmer\Logitech\Video\LogiTray.exe
MD5: EE2A9192A73D51E7F4D9099FC35C32D0
Located: HK_LM:Run, Ulead AutoDetector
file: C:\Programmer\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
MD5: 22FF027C2D7FEAED1ED5910B982594E7
Located: HK_LM:Run, Picasa Media Detector
file: C:\Programmer\Picasa2\PicasaMediaDetector.exe
MD5: F64689FE37BE359CA3C3D0ECF7BC3C33
Located: Startup (common), Adobe Reader Hurtigstart.lnk
file: C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
MD5: DEB88AEF013DD1EEFB462D7CAD642166
Located: Startup (common), Logitech Desktop Messenger.lnk
file: C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
MD5: A5E4CD281C93E174181C5873FAFD4F16
--- Browser helper object list ---
Spybot-S&D Browser helper object report, 11-09-2005 09:48:12
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
Class file: AcroIEHelper.dll
Attributes: archive
Date: 14-12-2004 01:56:50
MD5: 42729C3DE75A7A51FC6F9EF6546C9199
Path: C:\Programmer\Adobe\Acrobat 7.0\ActiveX\
Short name: ACROIE~1.DLL
Size: 63136 bytes
Version: 0.7.0.0
Class name: AcroIEHlprObj Class
CLSID database: legitimate software
Description: Adobe Acrobat reader
Filename: ACROIEHELPER.OCX
--- ActiveX list ---
Spybot-S&D ActiveX report, 11-09-2005 09:48:12
Microsoft XML Parser for Java
Download location:
file://C:\WINDOWS\Java\classes\xmldso.cab Name: Microsoft XML Parser for Java
Version: 1,0,9,2
Nordea Online investering
Download location:
https://www.onlineinvestering.nordea.dk/oiclient.nsf/files/client/$FILE/oiclient.cab Last modified: Sat, 04 Dec 2004 03:01:23 GMT
Name: Nordea Online investering
Version: 6,1,0,120
{33564D57-0000-0010-8000-00AA00389B71}
Download location:
http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB Version: 0,0,0,1
{33564D57-9980-0010-8000-00AA00389B71}
Download location:
http://codecs.microsoft.com/codecs/i386/wmv9dmo.cab Last modified: Thu, 12 Dec 2002 21:29:19 GMT
Version: 0,0,0,1
{3D6DDD23-870A-4FC8-B3AF-5F67C935A9B7}
Class file: csputil_6_2_20.dll
Attributes: archive
Date: 30-11-2004 14:04:58
MD5: D52220A369933939500DB405978E88C7
Path: C:\Programmer\TDC\CSP\
Short name: CSPUTI~1.DLL
Size: 253952 bytes
Version: 0.1.0.1
Class name: Util Class
Download location:
https://udstedelse.certifikat.tdc.dk/csp/authenticode/PrimeInkCSP-1204.exe Last modified: Tue, 07 Dec 2004 10:16:07 GMT
Version: 1,1,0,0
{3E68E405-C6DE-49FF-83AE-41EE9F4C36CE}
Class file: opuc.dll
Attributes: archive
Date: 27-08-2003 05:10:30
MD5: 1E32EC4A8A17B19926B49EA5F6B79A76
Path: C:\WINDOWS\
Short name:
Size: 314368 bytes
Version: 0.11.0.0
Class name: Office Update Installation Engine
Contains file: opuc.dll
Attributes: archive
Date: 27-08-2003 05:10:30
MD5: 1E32EC4A8A17B19926B49EA5F6B79A76
Path: C:\WINDOWS\
Short name:
Size: 314368 bytes
Version: 0.11.0.0
Download location:
http://office.microsoft.com/officeupdate/content/opuc.cab Last modified: Fri, 29 Aug 2003 19:59:02 GMT
Version: 11,0,5626,0
{469C7080-8EC8-43A6-AD97-45848113743C}
Class file: nethv32.dll
Attributes: archive
Date: 02-06-2004 15:30:20
MD5: DD3A23AADA91D199DC2FDE4CA2BFF4B4
Path: C:\WINDOWS\System32\
Short name:
Size: 9728 bytes
Version: 0.1.0.0
Contains file: nethv32.dll
Attributes: archive
Date: 02-06-2004 15:30:20
MD5: DD3A23AADA91D199DC2FDE4CA2BFF4B4
Path: C:\WINDOWS\System32\
Short name:
Size: 9728 bytes
Version: 0.1.0.0
Download location:
http://akamai.downloadv3.com/binaries/IA/nethv32_EN_XP.cab Last modified: Wed, 02 Jun 2004 15:23:43 GMT
Version: 0,0,0,1
{78AF2F24-A9C3-11D3-BF8C-0060B0FCC122}
Class file: ACDCTO~1.OCX
Attributes: archive
Date: 16-06-2000 05:20:10
MD5: 5E9240B7F6596E50456E3E043A12A5DD
Path: C:\WINDOWS\DOWNLO~1\
Short name: ACDCTO~1.OCX
Size: 54696 bytes
Version: 0.15.0.0
Class name: AcDcToday Control
Contains file: AcDcToday.ocx
Attributes: archive
Date: 16-06-2000 05:20:10
MD5: 5E9240B7F6596E50456E3E043A12A5DD
Path: C:\WINDOWS\Downloaded Program Files\
Short name: ACDCTO~1.OCX
Size: 54696 bytes
Version: 0.15.0.0
Download location:
file://C:\Programmer\AutoCAD LT 2000i\AcDcToday.ocx
Version: 15,0,5,91
{89A312AE-8D21-42B1-848B-FD8E27F9A2A9}
Class file: web.dll
Attributes: archive
Date: 28-06-2005 16:14:12
MD5: 57C9CA1DC152E2269AC9B89C10BC2551
Path: c:\windows\system32\
Short name:
Size: 165648 bytes
Version: 0.7.0.0
Class name: PrimeInk for Web Applications Signing Component
Contains file: web.dll
Attributes: archive
Date: 28-06-2005 16:05:02
MD5: 57C9CA1DC152E2269AC9B89C10BC2551
Path: C:\WINDOWS\Downloaded Program Files\
Short name:
Size: 165648 bytes
Version: 0.7.0.0
Download location:
https://webreg.dk/web.dll Last modified: Thu, 14 Apr 2005 12:16:45 GMT
Version: 7,0,0,2
{8AD9C840-044E-11D1-B3E9-00805F499D93}
Class file: npjpi150_04.dll
Attributes: archive
Date: 03-06-2005 04:09:54
MD5: 8548FE98BD687F35AFD0AED9C2A2DEE3
Path: C:\Programmer\Java\jre1.5.0_04\bin\
Short name: NPJPI1~1.DLL
Size: 69746 bytes
Version: 0.5.0.0
Class name: Java Plug-in 1.5.0_04
CLSID database: legitimate software
Description: Sun Java
Filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
Download location:
http://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab Name: Java Runtime Environment 1.5.0
Version: 1.5.0.4
{94F5DCB7-816C-4B94-A2C1-856C6E323C5B}
Class file: LiveService_4.dll
Path: C:\WINDOWS\System32\
Contains file: eglivecam_1027.dll
Attributes: archive
Date: 18-05-2004 14:28:16
MD5: EB0809D50E8E8A364AF9C82D433334AC
Path: C:\WINDOWS\System32\
Short name: EGLIVE~1.DLL
Size: 16896 bytes
Version: 255.255.255.255
Contains file: LiveService_4.dll
Path: C:\WINDOWS\System32\
Download location:
http://akamai.downloadv3.com/binaries/LiveService/LiveService_4_EN_XP.cab Last modified: Tue, 18 May 2004 17:15:06 GMT
Version: 0,0,0,1
{C6637286-300D-11D4-AE0A-0010830243BD}
Class file: InstFred.ocx
Attributes: archive
Date: 25-08-2000 05:39:20
MD5: 0784B095759CFF075729BA23A26C1716
Path: C:\WINDOWS\DOWNLO~1\
Short name:
Size: 304496 bytes
Version: 0.1.0.0
Class name: NOXLATE
Contains file: InstFred.ocx
Attributes: archive
Date: 25-08-2000 05:39:20
MD5: 0784B095759CFF075729BA23A26C1716
Path: C:\WINDOWS\Downloaded Program Files\
Short name:
Size: 304496 bytes
Version: 0.1.0.0
Download location:
file://C:\Programmer\AutoCAD LT 2000i\InstFred.ocx
Version: 1,0,0,10
{C81B5180-AFD1-41A3-97E1-99E8D254DB98}
Class file: cssweb.dll
Attributes: archive
Date: 27-03-2002 13:02:28
MD5: 9705A693612CA913E80A66A03C7B4850
Path: C:\WINDOWS\Downloaded Program Files\
Short name:
Size: 168014 bytes
Version: 0.1.0.4
Class name: CSS Web Installer Class
CLSID database: open for discussion
Description: CSS Web Installer Class
Filename: CSSWEB.DLL
Contains file: cssweb.dll
Attributes: archive
Date: 27-03-2002 13:02:28
MD5: 9705A693612CA913E80A66A03C7B4850
Path: C:\WINDOWS\Downloaded Program Files\
Short name:
Size: 168014 bytes
Version: 0.1.0.4
Download location:
http://scanner.virus112.com/cabs/cssweb.cab Last modified: Thu, 24 Apr 2003 08:29:08 GMT
Version: 1,4,0,20327
{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}
Class file: npjpi142_06.dll
Attributes: archive
Date: 28-09-2004 21:26:00
MD5: 69E5147BA901A9238C4EB08C84E1A85B
Path: C:\Programmer\Java\j2re1.4.2_06\bin\
Short name: NPJPI1~1.DLL
Size: 65650 bytes
Version: 0.1.0.4
Class name: Java Plug-in 1.4.2_06
Download location:
http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab Name: Java Runtime Environment 1.4.2
Version: 1,4,2,6
{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}
Class file: npjpi150_04.dll
Attributes: archive
Date: 03-06-2005 04:09:54
MD5: 8548FE98BD687F35AFD0AED9C2A2DEE3
Path: C:\Programmer\Java\jre1.5.0_04\bin\
Short name: NPJPI1~1.DLL
Size: 69746 bytes
Version: 0.5.0.0
Class name: Java Plug-in 1.5.0_04
Download location:
http://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab Name: Java Runtime Environment 1.5.0
Version: 1.5.0.4
{CEFB7B49-9652-464F-8AFD-A577C0500F39}
Class file: P2ECOM.dll
Path: C:\WINDOWS\System32\
Class name: EGP2ECOM Class
Contains file: EGDHTML_1026.dll
Path: C:\WINDOWS\System32\
Contains file: P2ECOM.dll
Path: C:\WINDOWS\System32\
Download location:
http://akamai.downloadv3.com/binaries/P2EClient/EGAUTH_pack_XP.cab Last modified: Wed, 17 Dec 2003 17:13:55 GMT
Version: 1,0,0,2
{D27CDB6E-AE6D-11CF-96B8-444553540000}
Class file: Flash.ocx
Attributes: archive
Date: 08-12-2003 14:01:58
MD5: F7E435D02F7A48120B746E33254A70BC
Path: C:\WINDOWS\System32\macromed\flash\
Short name:
Size: 933888 bytes
Version: 0.7.0.0
Class name: Shockwave Flash Object
CLSID database: legitimate software
Description: Macromedia Shockwave Flash Player
Download location:
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Last modified: Thu, 11 Dec 2003 15:54:18 GMT
Version: 7,0,19,0
{D8575CE3-3432-4540-88A9-85A1325D3375}
Class file: e-Safekey.dll
Attributes: archive
Date: 19-01-2004 13:56:56
MD5: 96F42EA316D6663C07D28985C05B82B5
Path: C:\WINDOWS\Downloaded Program Files\
Short name: E-SAFE~1.DLL
Size: 651264 bytes
Version: 0.4.0.0
Class name: e-Safekey®
Contains file: e-Safekey.dll
Attributes: archive
Date: 19-01-2004 13:56:56
MD5: 96F42EA316D6663C07D28985C05B82B5
Path: C:\WINDOWS\Downloaded Program Files\
Short name: E-SAFE~1.DLL
Size: 651264 bytes
Version: 0.4.0.0
Download location:
https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab Last modified: Wed, 04 Feb 2004 04:06:11 GMT
Version: 4,0,1,11
{F281A59C-7B65-11D3-8617-0010830243BD}
Class file: ACPREV~1.OCX
Attributes: archive
Date: 16-06-2000 05:20:06
MD5: AB5D2C740F962CFA7AE9EED9A7F0CD2D
Path: C:\WINDOWS\DOWNLO~1\
Short name: ACPREV~1.OCX
Size: 120240 bytes
Version: 0.15.0.0
Class name: AcPreview Control
Contains file: AcPreview.ocx
Attributes: archive
Date: 16-06-2000 05:20:06
MD5: AB5D2C740F962CFA7AE9EED9A7F0CD2D
Path: C:\WINDOWS\Downloaded Program Files\
Short name: ACPREV~1.OCX
Size: 120240 bytes
Version: 0.15.0.0
Download location:
file://C:\Programmer\AutoCAD LT 2000i\AcPreview.ocx
Version: 15,0,5,91
{F6A56D95-A3A3-11D2-AC26-400000058481}
Class file: DANSKE~1.OCX
Attributes: archive
Date: 27-01-2003 13:31:50
MD5: 2D5E1D34A98011239447475BA55A8C94
Path: C:\WINDOWS\DOWNLO~1\
Short name: DANSKE~1.OCX
Size: 512070 bytes
Version: 0.3.0.1
Class name: Danske e-Sec
Contains file: DanskeSikker.ocx
Attributes: archive
Date: 27-01-2003 13:31:50
MD5: 2D5E1D34A98011239447475BA55A8C94
Path: C:\WINDOWS\Downloaded Program Files\
Short name: DANSKE~1.OCX
Size: 512070 bytes
Version: 0.3.0.1
Contains file: mfc42.dll
Attributes: archive
Date: 26-08-2004 17:53:38
MD5: BF8A144B32F0B55561535F410315102E
Path: C:\WINDOWS\System32\
Short name:
Size: 1028096 bytes
Version: 0.6.0.2
Contains file: msvcrt.dll
Attributes: archive
Date: 26-08-2004 17:53:40
MD5: 1545BE01ABCC204F0EB33DDCE8CDD17E
Path: C:\WINDOWS\System32\
Short name:
Size: 343040 bytes
Version: 0.7.0.0
Contains file: olepro32.dll
Attributes: archive
Date: 26-08-2004 17:53:42
MD5: 25FF0B36AABC35D112A618D656BE937A
Path: C:\WINDOWS\System32\
Short name:
Size: 83456 bytes
Version: 0.5.0.1
Download location:
https://netbank.danskebank.dk/html/activex/danskesikker/DB/DanskeSikker.cab Last modified: Wed, 05 Mar 2003 02:22:38 GMT
Version: 3,1,0,45
--- Process list ---
Spybot-S&D process list report, 11-09-2005 09:48:12
PID: 0 ( 0) [System]
PID: 4 ( 0) System
PID: 176 (1732) C:\Programmer\Logitech\Video\LogiTray.exe
PID: 200 (1732) C:\Programmer\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
PID: 212 (1732) C:\Programmer\Picasa2\PicasaMediaDetector.exe
PID: 232 (1732) C:\Programmer\Messenger\msmsgs.exe
PID: 248 (1732) C:\WINDOWS\system32\RUNDLL32.EXE
PID: 292 (1732) C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
PID: 324 ( 780) C:\WINDOWS\System32\svchost.exe
PID: 484 ( 4) \SystemRoot\System32\smss.exe
PID: 560 ( 948) C:\Programmer\Logitech\Video\FxSvr2.exe
PID: 712 ( 484) csrss.exe
PID: 736 ( 484) \??\C:\WINDOWS\system32\winlogon.exe
PID: 780 ( 736) C:\WINDOWS\system32\services.exe
PID: 792 ( 736) C:\WINDOWS\system32\lsass.exe
PID: 948 ( 780) C:\WINDOWS\system32\svchost.exe
PID: 1004 ( 780) svchost.exe
PID: 1144 ( 780) C:\WINDOWS\System32\svchost.exe
PID: 1196 ( 780) svchost.exe
PID: 1228 ( 780) C:\PROGRA~1\WEBSPE~1\backweb\7791805\Program\SERVIC~1.EXE
PID: 1248 ( 780) C:\WINDOWS\System32\drivers\CDAC11BA.EXE
PID: 1256 ( 780) svchost.exe
PID: 1356 ( 780) C:\Programmer\WebSpeed Sikkerhedspakke\Anti-Virus\fsgk32st.exe
PID: 1384 ( 780) C:\Programmer\WebSpeed Sikkerhedspakke\backweb\7791805\program\fsbwsys.exe
PID: 1404 (1356) C:\Programmer\WebSpeed Sikkerhedspakke\Anti-Virus\FSGK32.EXE
PID: 1416 (1228) C:\Programmer\WebSpeed Sikkerhedspakke\backweb\7791805\Program\fspex.exe
PID: 1432 ( 780) C:\Programmer\WebSpeed Sikkerhedspakke\Common\FSMA32.EXE
PID: 1456 (1404) C:\Programmer\WebSpeed Sikkerhedspakke\Anti-Virus\fssm32.exe
PID: 1564 ( 780) C:\WINDOWS\System32\gearsec.exe
PID: 1584 ( 780) wdfmgr.exe
PID: 1624 (1432) C:\Programmer\WebSpeed Sikkerhedspakke\Common\FSMB32.EXE
PID: 1732 (1712) C:\WINDOWS\Explorer.EXE
PID: 1760 ( 780) C:\WINDOWS\system32\spoolsv.exe
PID: 1804 ( 780) C:\Programmer\Fælles filer\Microsoft Shared\VS7Debug\mdm.exe
PID: 1892 (1732) C:\WINDOWS\system32\RunDll32.exe
PID: 1920 (1732) C:\Programmer\iTunes\iTunesHelper.exe
PID: 1928 (1732) C:\Programmer\QuickTime\qttask.exe
PID: 1952 (1732) C:\Programmer\WebSpeed Sikkerhedspakke\Common\FSM32.EXE
PID: 1968 ( 780) C:\WINDOWS\System32\nvsvc32.exe
PID: 1976 (1732) C:\Programmer\Java\jre1.5.0_04\bin\jusched.exe
PID: 2036 (1732) C:\WINDOWS\system32\LVCOMSX.EXE
PID: 2204 (1432) C:\Programmer\WebSpeed Sikkerhedspakke\Common\FCH32.EXE
PID: 2284 (1732) C:\Programmer\Internet Explorer\iexplore.exe
PID: 2304 ( 780) C:\Programmer\iPod\bin\iPodService.exe
PID: 2456 (1432) C:\Programmer\WebSpeed Sikkerhedspakke\Common\FAMEH32.EXE
PID: 2776 ( 780) C:\Programmer\WebSpeed Sikkerhedspakke\FWES\Program\fsdfwd.exe
PID: 2964 ( 780) alg.exe
PID: 3272 (1432) C:\Programmer\WebSpeed Sikkerhedspakke\Anti-Virus\fsav32.exe
PID: 3484 (1952) C:\Programmer\WebSpeed Sikkerhedspakke\FSGUI\fsguiexe.exe
PID: 3936 (1732) C:\Programmer\Spybot - Search & Destroy\SpybotSD.exe
--- Browser start & search pages list ---
Spybot-S&D browser pages report, 11-09-2005 09:48:12
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearchHKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.google.dk/HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearchHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=homeHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhomeHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearchHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htmHKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm--- Winsock Layered Service Provider list ---
Spybot-S&D winsock LSP report, 11-09-2005 09:48:12
NS Provider ( 1) NWLink IPX/SPX/NetBIOS-kompatibel transportprotokol ({E02DAAF0-7E9F-11CF-AE5A-00AA00A7112B})
NS Provider ( 2) Tcpip ({22059D40-7E9E-11CF-AE5A-00AA00A7112B})
NS Provider ( 3) NTDS ({3B2637EE-E580-11CF-A555-00C04FD8D4AC})
NS Provider ( 4) NLA-navneområde (Network Location Awareness) ({6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83})
Protocol ( 1) MSAFD Tcpip [TCP/IP] ({E70F1AA0-AB8B-11CF-8CA3-00805F48A192})
Protocol ( 2) MSAFD Tcpip [UDP/IP] ({E70F1AA0-AB8B-11CF-8CA3-00805F48A192})
Protocol ( 3) MSAFD Tcpip [RAW/IP] ({E70F1AA0-AB8B-11CF-8CA3-00805F48A192})
Protocol ( 4) RSVP UDP Service Provider ({9D60A9E0-337A-11D0-BD88-0000C082E69A})
Protocol ( 5) RSVP TCP Service Provider ({9D60A9E0-337A-11D0-BD88-0000C082E69A})
Protocol ( 6) MSAFD nwlnkipx [IPX] ({11058240-BE47-11CF-95C8-00805F48A192})
Protocol ( 7) MSAFD nwlnkspx [SPX] ({11058241-BE47-11CF-95C8-00805F48A192})
Protocol ( 8) MSAFD nwlnkspx [SPX] [Pseudo Stream] ({11058241-BE47-11CF-95C8-00805F48A192})
Protocol ( 9) MSAFD nwlnkspx [SPX II] ({11058241-BE47-11CF-95C8-00805F48A192})
Protocol (10) MSAFD nwlnkspx [SPX II] [Pseudo Stream] ({11058241-BE47-11CF-95C8-00805F48A192})
Protocol (11) MSAFD NetBIOS [\Device\NwlnkNb] SEQPACKET 4 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (12) MSAFD NetBIOS [\Device\NwlnkNb] DATAGRAM 4 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (13) MSAFD NetBIOS [\Device\NetBT_Tcpip_{7333FF09-D98E-4A16-AFE5-3072C8DAC538}] SEQPACKET 5 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (14) MSAFD NetBIOS [\Device\NetBT_Tcpip_{7333FF09-D98E-4A16-AFE5-3072C8DAC538}] DATAGRAM 5 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (15) MSAFD NetBIOS [\Device\NetBT_Tcpip_{B604E71F-BBBC-4824-899B-5F58C428448B}] SEQPACKET 3 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (16) MSAFD NetBIOS [\Device\NetBT_Tcpip_{B604E71F-BBBC-4824-899B-5F58C428448B}] DATAGRAM 3 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (17) MSAFD NetBIOS [\Device\NetBT_Tcpip_{B0887B46-B3E0-4A71-844D-1363FEAA47DE}] SEQPACKET 0 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (18) MSAFD NetBIOS [\Device\NetBT_Tcpip_{B0887B46-B3E0-4A71-844D-1363FEAA47DE}] DATAGRAM 0 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (19) MSAFD NetBIOS [\Device\NetBT_Tcpip_{23BDE44B-045D-4888-9985-77CEEBB9D7FA}] SEQPACKET 1 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (20) MSAFD NetBIOS [\Device\NetBT_Tcpip_{23BDE44B-045D-4888-9985-77CEEBB9D7FA}] DATAGRAM 1 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (21) MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A434BCE-8508-4566-A4D1-AB3B07C1F97B}] SEQPACKET 2 ({8D5F1830-C273-11CF-95C8-00805F48A192})
Protocol (22) MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A434BCE-8508-4566-A4D1-AB3B07C1F97B}] DATAGRAM 2 ({8D5F1830-C273-11CF-95C8-00805F48A192})