Hijackthislog af den seriøse slags.
Logfile of HijackThis v1.99.1Scan saved at 12:20:45, on 15-03-2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\moho\Skrivebord\hijackthis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.1800searchonline.com/sp2.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.signon.stofanet.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.1800searchonline.com/sp2.php
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http:\\signon.stofanet.dk/proxy.pac
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: WTLHelper Object - {6D33B121-5C4C-4450-9D1F-7B67085CC199} - C:\WINDOWS\System32\iifge.dll
O4 - HKLM\..\Run: [Https Locator] C:\WINDOWS\System32\wdfmngr.exe
O4 - HKLM\..\RunServices: [Https Locator] C:\WINDOWS\System32\wdfmngr.exe
O4 - Global Startup: HP OfficeJet T Series Startup.lnk = C:\Programmer\Hewlett-Packard\HP OfficeJet T Series\Bin\HPOstr05.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: SonicWALL VPN Client.lnk = C:\Programmer\SonicWALL\SonicWALL VPN Client\SafeCfg.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programmer\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google Search - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Programmer\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - C:\Programmer\SideFind\sidefind.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\MSMSGS.EXE (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\MSMSGS.EXE (file missing)
O16 - DPF: v3cab - http://searchmiracle.com/cab/7.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=48835
O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - http://192.168.1.6/Citrix/ICAWEB/en/ica32/wficac.cab
O16 - DPF: {4FA3D392-9349-4D85-8FB9-18733534CFE3} (SpyBouncer.SBDownloader) - http://www.spybouncer.com/downloader/gdownloader.ocx
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk/html/activex/e-Safekey/BG/e-Safekey.cab
O20 - Winlogon Notify: iifge - C:\WINDOWS\System32\iifge.dll
O20 - Winlogon Notify: ShellServiceObjectDelayLoad - C:\WINDOWS\system32\lvnq0955e.dll
O23 - Service: Win Logon ( Microsoft Windows Logon Process) - Unknown owner - C:\WINDOWS\winlogon.exe (file missing)
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\TW9ydGVuIEj4aWx1bmQ\command.exe (file missing)
O23 - Service: Ekstern kommando til iSeries Access til Windows (Cwbrxd) - IBM Corporation - C:\WINDOWS\CWBRXD.EXE
O23 - Service: DefWatch - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Programmer\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Programmer\ewido\security suite\ewidoguard.exe
O23 - Service: HttpsV2 - Unknown owner - C:\WINDOWS\System32\wdfmngr.exe
O23 - Service: SafeNet Monitor Service (IPSECMON) - SafeNet - C:\Programmer\SonicWALL\SonicWALL VPN Client\IPSecMon.exe
O23 - Service: IpManager (IPtable) - Unknown owner - C:\WINDOWS\ipconfg32.exe (file missing)
O23 - Service: SafeNet IKE Service (IREIKE) - Unknown owner - C:\Programmer\SonicWALL\SonicWALL VPN Client\IreIKE.exe (file missing)
O23 - Service: mansorr here (mans0r) - Unknown owner - C:\WINDOWS\finderd.exe (file missing)
O23 - Service: cyberz mansor (mansor) - Unknown owner - C:\WINDOWS\mansor.exe (file missing)
O23 - Service: msinit (Microsoft Scheduling Agent) - Unknown owner - C:\WINDOWS\msinit.exe (file missing)
O23 - Service: MS Ins Config (MSiCFG) - Unknown owner - C:\WINDOWS\msiconfig.exe (file missing)
O23 - Service: Word Process (msproc) - Unknown owner - C:\WINDOWS\winpad.exe (file missing)
O23 - Service: Microsoft Network Service (Network) - Unknown owner - C:\WINDOWS\msnet32.exe (file missing)
O23 - Service: Network Monitor - Unknown owner - C:\Programmer\Network Monitor\netmon.exe (file missing)
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: Performance True Type Font (PerfFont) - Unknown owner - C:\WINDOWS\System32\perfont.exe (file missing)
O23 - Service: NTsystem (System) - Unknown owner - C:\WINDOWS\ntsys32.exe (file missing)
O23 - Service: Win32Sr - Unknown owner - C:\WINDOWS\win32ssr.exe (file missing)
O23 - Service: Windows 32 Bit (Windows 32 Bit Drivers) - Unknown owner - C:\WINDOWS\WinVid32.exe (file missing)
Dr Web log;
Scan statistics
-----------------------------------------------------------------------------
Objects scanned: 95
Infected objects found: 0
Objects with modifications found: 0
Suspicious objects found: 0
Adware programs found: 0
Dialer programs found: 0
Joke programs found: 0
Riskware programs found: 0
Hacktool programs found: 0
Objects cured: 0
Objects deleted: 0
Objects renamed: 0
Objects moved: 0
Objects ignored: 0
Scan speed: 3687 Kb/s
Scan time: 00:00:07
Ewido log;
---------------------------------------------------------
ewido anti-malware - Scanningsrapport
---------------------------------------------------------
+ Oprettet den: 12:10:00, 15-03-2006
+ Rapport-Checksum: 846983B5
+ Scanningsresultat:
HKLM\SOFTWARE\Avenue Media -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper\cf1 -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf2 -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf4 -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher -> Adware.BargainBuddy : Renset med backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher\CLSID -> Adware.BargainBuddy : Renset med backup
HKLM\SOFTWARE\Classes\ADP.UrlCatcher.1 -> Adware.BargainBuddy : Renset med backup
HKLM\SOFTWARE\Classes\BrowserHelperObject.BAHelper -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\BrowserHelperObject.BAHelper\CLSID -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\BrowserHelperObject.BAHelper\CurVer -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\BrowserHelperObject.BAHelper.1 -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.ClientInstaller -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.ClientInstaller\CLSID -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.ClientInstaller\CurVer -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.ClientInstaller.1 -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.RequiredComponent -> Adware.Zango : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.RequiredComponent\CLSID -> Adware.Zango : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.RequiredComponent\CurVer -> Adware.Zango : Renset med backup
HKLM\SOFTWARE\Classes\ClientAX.RequiredComponent.1 -> Adware.Zango : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CLSID -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CurVer -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj.1 -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CLSID -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CurVer -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj.1 -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Classes\MediaAccess.Installer -> Adware.WinAd : Renset med backup
HKLM\SOFTWARE\Classes\MediaAccess.Installer\CLSID -> Adware.WinAd : Renset med backup
HKLM\SOFTWARE\Classes\MediaAccess.Installer\CurVer -> Adware.WinAd : Renset med backup
HKLM\SOFTWARE\Classes\MEDIATICKETSINSTALLER.MediaTicketsInstallerCtrl.1 -> Adware.PurityScan : Renset med backup
HKLM\SOFTWARE\Classes\PLOT.PlotCtrl.1 -> Adware.EliteBar : Renset med backup
HKLM\SOFTWARE\Classes\SideFind.Finder -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\SideFind.Finder\CLSID -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\SideFind.Finder\CurVer -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\SideFind.Finder.1 -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Classes\Ysb.YsbObj -> Adware.YourSiteBar : Renset med backup
HKLM\SOFTWARE\Classes\Ysb.YsbObj\CLSID -> Adware.YourSiteBar : Renset med backup
HKLM\SOFTWARE\Classes\Ysb.YsbObj\CurVer -> Adware.YourSiteBar : Renset med backup
HKLM\SOFTWARE\Classes\Ysb.YsbObj.1 -> Adware.YourSiteBar : Renset med backup
HKLM\SOFTWARE\ClickSpring -> Adware.PurityScan : Renset med backup
HKLM\SOFTWARE\Elitum -> Adware.EliteBar : Renset med backup
HKLM\SOFTWARE\Elitum\EliteToolBar -> Adware.EliteBar : Renset med backup
HKLM\SOFTWARE\ISTsvc -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\ISTsvc\history -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\Media Access -> Adware.WinAD : Renset med backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Renset med backup
HKLM\SOFTWARE\Microsoft\SideFind -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\AMeOpt -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BargainBuddy -> Adware.BargainBuddy : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DyFuCA -> Adware.MoneyTree : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EliteBar Internet Explorer Toolbar -> Adware.EliteBar : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ISTsvc -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Media Access -> Adware.WinAD : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MediaTickets -> Adware.PurityScan : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Rotue -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sais -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SideFind -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YourSiteBar -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\Policies\Avenue Media -> Adware.InternetOptimizer : Renset med backup
HKLM\SOFTWARE\PowerScan -> Adware.PowerScan : Renset med backup
HKLM\SOFTWARE\Preview AdService -> Adware.BlazeFind : Renset med backup
HKLM\SOFTWARE\sais -> Adware.180Solutions : Renset med backup
HKLM\SOFTWARE\SideFind -> Adware.SideFind : Renset med backup
HKLM\SOFTWARE\YourSiteBar -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Adware.ISTBar : Renset med backup
HKLM\SOFTWARE\YourSiteBar\Historymusic_keyword -> Adware.ISTBar : Renset med backup
HKU\.DEFAULT\Software\Effective-i -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\.DEFAULT\Software\Effective-i\TheSearchAccelerator -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\.DEFAULT\Software\Effective-i\TheSearchAccelerator\IE5 -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\.DEFAULT\Software\LQ -> Dialer.Generic : Renset med backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt -> Adware.InternetOptimizer : Renset med backup
HKU\.DEFAULT\Software\salm -> Adware.180Solutions : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\Avenue Media -> Adware.InternetOptimizer : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\IST -> Adware.ISTBar : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\LQ -> Dialer.Generic : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt -> Adware.InternetOptimizer : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\Policies\Avenue Media -> Adware.InternetOptimizer : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\PowerScan -> Adware.PowerScan : Renset med backup
HKU\S-1-5-21-1659004503-1202660629-854245398-1003\Software\sais -> Adware.180Solutions : Renset med backup
HKU\S-1-5-18\Software\Effective-i -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\S-1-5-18\Software\Effective-i\TheSearchAccelerator -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\S-1-5-18\Software\Effective-i\TheSearchAccelerator\IE5 -> Adware.EffectiveBrandToolbar : Renset med backup
HKU\S-1-5-18\Software\LQ -> Dialer.Generic : Renset med backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt -> Adware.InternetOptimizer : Renset med backup
HKU\S-1-5-18\Software\salm -> Adware.180Solutions : Renset med backup
[752] C:\WINDOWS\system32\btotvid.dll -> Adware.Look2Me : Fejl under renselse
[832] C:\WINDOWS\system32\btotvid.dll -> Adware.Look2Me : Fejl under renselse
C:\Documents and Settings\moho\Cookies\moho@2o7[2].txt -> TrackingCookie.2o7 : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@adtech[2].txt -> TrackingCookie.Adtech : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@advertising[2].txt -> TrackingCookie.Advertising : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@atdmt[2].txt -> TrackingCookie.Atdmt : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@bfast[1].txt -> TrackingCookie.Bfast : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@burstnet[1].txt -> TrackingCookie.Burstnet : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@data2.perf.overture[1].txt -> TrackingCookie.Overture : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@doubleclick[1].txt -> TrackingCookie.Doubleclick : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@mediaplex[1].txt -> TrackingCookie.Mediaplex : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@perf.overture[1].txt -> TrackingCookie.Overture : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@statcounter[1].txt -> TrackingCookie.Statcounter : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@tacoda[1].txt -> TrackingCookie.Tacoda : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@vitacost.122.2o7[1].txt -> TrackingCookie.2o7 : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@webstat[1].txt -> TrackingCookie.Web-stat : Renset med backup
C:\Documents and Settings\moho\Cookies\moho@z1.adserver[1].txt -> TrackingCookie.Adserver : Renset med backup
C:\Documents and Settings\moho\cx32.exe/rm32.dll -> Downloader.ConHook.y : Fejl under renselse
C:\Documents and Settings\moho\cx32.exe/dr32.exe -> Downloader.VB.vz : Fejl under renselse
C:\Documents and Settings\moho\Lokale indstillinger\Temp\180sainstallersilsais1.#xe/clientax.dll -> Adware.180Solutions : Fejl under renselse
C:\Documents and Settings\moho\Lokale indstillinger\Temp\180sainstallersilsais1.#xe/clientax.dll -> Adware.180Solutions : Fejl under renselse
C:\Documents and Settings\moho\Lokale indstillinger\Temp\bb.#xe -> Downloader.Adload.a : Renset med backup
C:\Documents and Settings\moho\Lokale indstillinger\Temp\Del23.#mp -> Downloader.Small.asf : Renset med backup
C:\Documents and Settings\moho\Lokale indstillinger\Temp\res24.#mp -> Adware.180Solutions : Renset med backup
C:\Documents and Settings\moho\Lokale indstillinger\Temp\rs.exe -> Downloader.PurityScan.w : Renset med backup
C:\Documents and Settings\moho\Lokale indstillinger\Temporary Internet Files\Content.IE5\W58PI3SP\AppWrap[1].#xe -> Adware.AdURL : Renset med backup
C:\Installer.#xe -> Adware.Look2Me : Renset med backup
C:\Program Files\Media Gateway\MediaGateway.#xe -> Adware.WinAD : Renset med backup
C:\Programmer\180searchassistant -> Adware.180Solutions : Renset med backup
C:\Programmer\180searchassistant\sais.#xe -> Adware.180Solutions : Renset med backup
C:\Programmer\180searchassistant\saisau.dat -> Adware.180Solutions : Renset med backup
C:\Programmer\180searchassistant\saishook.#ll -> Adware.180Solutions : Renset med backup
C:\Programmer\180searchassistant\sais_gdf.dat -> Adware.180Solutions : Renset med backup
C:\Programmer\180searchassistant\sais_kyf.dat -> Adware.180Solutions : Renset med backup
C:\Programmer\BullsEye Network -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\ad.dat -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\bin -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\bin\adv.#xe -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\bin\adx.#xe -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\bin\bargains.#xe -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\t1120481653.dec -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\t1120544341.dec -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\t1120595244.dec -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\ub.dat -> Adware.BargainBuddy : Renset med backup
C:\Programmer\BullsEye Network\Uninstall.exe -> Adware.BargainBuddy : Renset med backup
C:\Programmer\Fælles filer\mfqw\mfqwl.#xe -> Downloader.TSUpdate.p : Renset med backup
C:\Programmer\Fælles filer\mfqw\mfqwm.#xe -> Downloader.TSUpdate.n : Renset med backup
C:\Programmer\Fælles filer\mfqw\mfqwp.#xe -> Downloader.TSUpdate.f : Renset med backup
C:\Programmer\ISTsvc -> Adware.ISTBar : Renset med backup
C:\Programmer\Power Scan -> Adware.PowerScan : Renset med backup
C:\Programmer\Power Scan\powerscan.#xe -> Adware.PowerScan : Renset med backup
C:\Programmer\Power Scan\uninstall.#xe -> Adware.PowerScan : Renset med backup
C:\Programmer\SideFind -> Adware.SideFind : Renset med backup
C:\Programmer\SideFind\sfbho.#ll -> Adware.SideFind : Renset med backup
C:\Programmer\SideFind\sfexd001 -> Adware.SideFind : Renset med backup
C:\Programmer\SideFind\sidefind.#ll -> Adware.SideFind : Renset med backup
C:\Programmer\SideFind\update -> Adware.SideFind : Renset med backup
C:\Programmer\SonicWALL\SonicWALL VPN Client\IreIKE.exe -> Heuristic.Win32.Dialer : Renset med backup
C:\Programmer\YourSiteBar -> Adware.YourSiteBar : Renset med backup
C:\Programmer\YourSiteBar\imagemap_normal.bmp -> Adware.YourSiteBar : Renset med backup
C:\Programmer\YourSiteBar\imagemap_over.bmp -> Adware.YourSiteBar : Renset med backup
C:\Programmer\YourSiteBar\version.txt -> Adware.YourSiteBar : Renset med backup
C:\Programmer\YourSiteBar\yoursitebar.xml -> Adware.YourSiteBar : Renset med backup
C:\RECYCLER\S-1-5-21-1659004503-1202660629-854245398-1003\Dc17.#xe -> Trojan.Dialer.jr : Renset med backup
C:\RECYCLER\S-1-5-21-1659004503-1202660629-854245398-1003\Dc18.#xe -> Trojan.Dialer.jr : Renset med backup
C:\RECYCLER\S-1-5-21-1659004503-1202660629-854245398-1003\Dc19.#xe -> Trojan.Dialer.jr : Renset med backup
C:\stub_113_4_0_4_0.#xe -> Downloader.TSUpdate.o : Renset med backup
C:\ucmoreiex.#xe/UCMTSAIE.DLL -> Adware.Ucmore : Fejl under renselse
C:\ucmoreiex.#xe/IUCMORE.DLL -> Adware.Ucmore : Fejl under renselse
C:\WINDOWS\Denmark.#xe -> Trojan.Dialer.jr : Renset med backup
C:\WINDOWS\Downloaded Program Files\ClientAX.#ll -> Adware.180Solutions : Renset med backup
C:\WINDOWS\Downloaded Program Files\MediaTicketsInstaller.#cx -> Adware.MediaTickets : Renset med backup
C:\WINDOWS\Downloaded Program Files\v3.#ll -> Adware.EliteBar : Renset med backup
C:\WINDOWS\etb\nt_hide63.#ll -> Trojan.EliteBar.a : Renset med backup
C:\WINDOWS\etb\pokapoka63.#xe -> Downloader.Agent.tv : Renset med backup
C:\WINDOWS\etb\pokapoka65.#xe -> Downloader.Agent.tv : Renset med backup
C:\WINDOWS\etb\xud_63.#ll -> Downloader.Agent.tv : Renset med backup
C:\WINDOWS\icont.#xe -> Adware.AdURL : Renset med backup
C:\WINDOWS\iconu.#xe -> Adware.Zestyfind : Renset med backup
C:\WINDOWS\mtuninst.#xe -> Adware.MediaTickets : Renset med backup
C:\WINDOWS\protector_update.exe -> Heuristic.Win32.Morphine-Crypted : Renset med backup
C:\WINDOWS\stub_113_4_0_4_0.#xe -> Downloader.TSUpdate.o : Renset med backup
C:\WINDOWS\system32\70tovmto.ini -> Adware.Sahat : Renset med backup
C:\WINDOWS\system32\cfwdm32.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Cookies\system@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Cookies\system@casalemedia[1].txt -> TrackingCookie.Casalemedia : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Cookies\system@revenue[2].txt -> TrackingCookie.Revenue : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Lokale indstillinger\Temporary Internet Files\Content.IE5\N833XDZL\mtrslib2[1].#s -> Downloader.Small.ag : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Lokale indstillinger\Temporary Internet Files\Content.IE5\N833XDZL\ucmoreiex[1].#xe/UCMTSAIE.DLL -> Adware.Ucmore : Fejl under renselse
C:\WINDOWS\system32\config\systemprofile\Lokale indstillinger\Temporary Internet Files\Content.IE5\N833XDZL\ucmoreiex[1].#xe/IUCMORE.DLL -> Adware.Ucmore : Fejl under renselse
C:\WINDOWS\system32\config\systemprofile\Lokale indstillinger\Temporary Internet Files\Content.IE5\OE04BIHQ\webrebates_europe[1].#xe -> Adware.WebRebates : Renset med backup
C:\WINDOWS\system32\config\systemprofile\Lokale indstillinger\Temporary Internet Files\Content.IE5\SHSNWCNH\stub_113_4_0_4_0[2].#xe -> Downloader.TSUpdate.o : Renset med backup
C:\WINDOWS\system32\cxvfat.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\dieinobj.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\dn4201hoe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\dnn4015qe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\docpcsvc.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\e4200efmeh2a0.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\enp6l17s1.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\fpl4033qe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\HDOtap05.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\hr6805jue.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\hrj8051ue.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\hrls0537e.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\hrrq0595e.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\irl2l53o1.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\j20s0cd7ef0.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\j2p0lc7m1f.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\lt4027hmg.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\lv0409dqe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\lv8209loe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\lvj2091oe.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\m4rm0e91eh.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\m8820iloe8qc0.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\morui.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\nztshell.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\oeexl32.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\oins.exe -> Adware.MediaTickets : Renset med backup
C:\WINDOWS\system32\r0r60a9sed.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\r86u0ij9e8o.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\system32\TFTP1460 -> Trojan.Crypt.d : Renset med backup
C:\WINDOWS\system32\wbem\wmiprvi.dll -> Trojan.Mutech.b : Renset med backup
C:\WINDOWS\system32\wnadefui.#ll -> Adware.Look2Me : Renset med backup
C:\WINDOWS\Temp\bw2.#om -> Adware.Zestyfind : Renset med backup
C:\WINDOWS\Temp\Cookies\moho@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Renset med backup
C:\WINDOWS\yhsjober.#xe -> Adware.180Solutions : Renset med backup
::Rapport slut
