MSN virus log fil chekup
Hej eksperter.Jeg har gennegået artiklen om hvordan man fjerne den irriterende msn virus, og så håber jeg at I har tid til at gennemgår mine logfiler og se om der er noget at finde der?
Here goes:
----------------------
Dr. Web logfil
----------------------
Update.exe;C:\Programmer\Fælles filer\{22170B0E-05D8-1030-0708-05122220002d};Trojan.DownLoader.12291;Deleted.;
popcaploader.dll;C:\WINDOWS\Downloaded Program Files;Program.PopcapLoader;Renamed.;
A0018463.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245;Trojan.DownLoader.12291;Deleted.;
A0019465.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245;Trojan.DownLoader.12291;Deleted.;
A0019473.dll;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245;Adware.Softomate;Renamed.;
A0019486.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245;Trojan.DownLoader.12291;Deleted.;
A0019556.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP247;Trojan.DownLoader.12291;Deleted.;
A0019638.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Trojan.Click.1474;Deleted.;
A0019639.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Trojan.DownLoader.5013;Deleted.;
A0019640.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Adware.DollarRevenue;Renamed.;
A0019641.dll;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Adware.FastSearch;Renamed.;
A0019642.dll;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Adware.FastSearch;Renamed.;
A0019643.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Adware.Look2me;Renamed.;
A0019644.exe;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249;Adware.Look2me;Renamed.;
A0019739.dll;C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP252;Adware.Look2me;Renamed.;
---------------------------------------------------------
ewido anti-malware - Scanningsrapport
---------------------------------------------------------
+ Oprettet den: 17:15:12, 23-09-2006
+ Rapport-Checksum: 288537B0
+ Scanningsresultat:
C:\WINDOWS\system32\3.exe/dev.exe -> Backdoor.Rbot.biz : Renset med backup
C:\WINDOWS\Downloaded Program Files\popcaploader.#ll -> Not-A-Virus.Downloader.Win32.PopCap.b : Renset med backup
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temporary Internet Files\Content.IE5\MJAZA1UN\popcaploader_v6[1].cab/PopCapLoader.dll -> Not-A-Virus.Downloader.Win32.PopCap.b : Renset med backup
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@webstat[1].txt -> TrackingCookie.Web-stat : Renset med backup
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@com[2].txt -> TrackingCookie.Com : Renset med backup
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@webstat[2].txt -> TrackingCookie.Web-stat : Renset med backup
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.myaffiliateprogram[2].txt -> TrackingCookie.Myaffiliateprogram : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0019473.#ll -> Adware.Softomate : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019637.exe -> Downloader.VB.ach : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019640.#xe -> Downloader.Adload.ds : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019641.#ll -> Adware.Softomate : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019642.#ll -> Adware.Softomate : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019643.#xe -> Adware.Look2Me : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP249\A0019644.#xe -> Adware.Look2Me : Renset med backup
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP252\A0019739.#ll -> Adware.Look2Me : Renset med backup
::Rapport slut
--------------------------
Logfile of HijackThis v1.99.1
Scan saved at 17:19:51, on 23-09-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Programmer\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\Programmer\Launch Manager\LaunchAp.exe
C:\Programmer\Launch Manager\PowerKey.exe
C:\Programmer\Launch Manager\HotkeyApp.exe
C:\Programmer\Launch Manager\OSDCtrl.exe
C:\Programmer\Launch Manager\Wbutton.exe
C:\acer\epm\epm-dm.exe
C:\Program Files\Arcade\PCMService.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Programmer\iTunes\iTunesHelper.exe
C:\Programmer\QuickTime\qttask.exe
C:\Programmer\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Programmer\iPod\bin\iPodService.exe
C:\Programmer\acer\eRecovery\Monitor.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Christina Kirkegaard\Skrivebord\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com/
O4 - HKLM\..\Run: [preload] C:\Windows\RUNXMLPL.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LaunchAp] "C:\Programmer\Launch Manager\LaunchAp.exe"
O4 - HKLM\..\Run: [PowerKey] "C:\Programmer\Launch Manager\PowerKey.exe"
O4 - HKLM\..\Run: [LManager] "C:\Programmer\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [CtrlVol] "C:\Programmer\Launch Manager\CtrlVol.exe"
O4 - HKLM\..\Run: [LMgrOSD] "C:\Programmer\Launch Manager\OSDCtrl.exe"
O4 - HKLM\..\Run: [Wbutton] "C:\Programmer\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Arcade\PCMService.exe"
O4 - HKLM\..\Run: [eRecoveryService] C:\Windows\System32\Check.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmer\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Programmer\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: BitTorrent.lnk = C:\Programmer\BitTorrent\bittorrent.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://downol.dr.dk/download/netradio/Rawflow.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1145291767296
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Programmer\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmer\Fælles filer\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Programmer\iPod\bin\iPodService.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
-----------------------------
SUPERAntiSpyware Scan Log
Generated 09/23/2006 at 03:44 PM
Core Rules Database Version : 3090
Trace Rules Database Version: 1119
Memory threats detected : 0
Registry threats detected : 17
File threats detected : 239
Adware.Tracking Cookie
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.yieldmanager[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@belnk[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.thebestbannerexchange[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@indextools[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@S112653[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@cgi-bin[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@clicks.hmcampaign[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@webstat[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@cgi-bin[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@rotator.adjuggler[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@112.2o7[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.comprabanner[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@sitestats.tiscali.co[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@superstats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@xiti[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@doubleclick[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stats2.clicktracks[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ebookers[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.webstat[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adbrite[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adopt.hbmediapro[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@revsci[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@S0014-01-2-6-222789-51611[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.ofir[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@den[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.redzoneglobal[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads2.drivelinemedia[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@a[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjkycic5wbo.stats.esomniture[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tacoda[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dist.belnk[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@atwola[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@20289911[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e2.emediate[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wfkiupazodo.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@webmarketing-tracker-2[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tradedoubler[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@track.adform[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@globalstat[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wfkiomajwep.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stats.manticoretechnology[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@clicktorrent[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads2.jubii[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad1.emediate[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@S153399[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@4978972[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@burstnet[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@nextag[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@S154727[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@sexnoveller[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@hotbar[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@38492175[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tripod.lycos[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@marketlive.122.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjnyokcjmep.stats.esomniture[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adq.nextag[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.cnn[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@89490505[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@cbs.112.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.webreseau[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stats1.reliablestats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@optimost[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@S[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@interclick[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@thomasvillefurniture.122.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dcsggjvuu4twkfs6httblqcdo_8o2r[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjliopcjcao.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@aua[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@highbeam.122.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@mb[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.as4x.tmcs[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@link-stats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@counter.impressur[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@hit.stat[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@data2.perf.overture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.burstbeacon[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.perfion[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@web-stat[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjmiumczgco.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wfkiahcpiaq.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adopt.specificclick[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stats.ladotstats[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1070618373[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.monster[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.sexnoveller[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@bizrate[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adfair[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dk.winantivirus[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@server.iad.liveperson[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@advertising[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.mininova[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@data1.perf.overture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adlegend[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.burstnet[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjnyojdjcao.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@s[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.adition[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www1.flatmateclick.co[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.zanox[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjkocidjkdo.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adopt.euroclick[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjl4gnc5ekp.stats.esomniture[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjlouncpahp.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wfkisldpolp.stats.esomniture[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjlisoajscp.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@europages-com[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ehg-nokiafin.hitbox[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@admarketplace[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1071427968[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wgmiood5wgp.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@clickauditor[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@mediaplex[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@noeb[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@nextstat[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@34292599[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.as4x.tmcs.ticketmaster[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@harpo.122.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@roiservice[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.winantivirus[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@toplist[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@yieldmanager[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@polo.112.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@qnsr[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1070527576[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dealtime[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.estart[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tribalfusion[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.guardian.co[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@gostats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1070926688[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@indexstats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad1.clickhype[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@track.effiliation[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@hitbox[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adtech[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@mb[4].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@centrebet.advertserve[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@cgi-bin[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@bluestreak[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjl4coajolo.stats.esomniture[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@40715998[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1067696873[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1067259290[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.seelite[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@sexfriends[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1071802871[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjliujcpsho.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1071912545[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@winantivirus[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@cpvfeed[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wjk4koajekp.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wgliaiczmlp.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@sales.liveperson[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wgk4wjcpaeo.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@atdmt[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@csselite[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1067189903[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@38632698[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.pointroll[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@keywordmax[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@1072117319[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stat.postdanmark[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wgkoqocpeep.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stat.dealtime[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@msnportal.112.2o7[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ilead.itrack[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@www.roommateclick[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tracker.myspacemaps[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@drivecleaner[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@e-2dj6wgkiaoajscp.stats.esomniture[2].txt
C:\WINDOWS\Temp\Cookies\christina kirkegaard@ad.yieldmanager[1].txt
C:\WINDOWS\Temp\Cookies\christina kirkegaard@cpvfeed[2].txt
C:\WINDOWS\Temp\Cookies\christina kirkegaard@www.winantivirus[1].txt
C:\WINDOWS\Temp\Cookies\christina kirkegaard@dk.winantivirus[1].txt
C:\WINDOWS\Temp\Cookies\christina kirkegaard@winantivirus[2].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@admarketplace[2].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@indextools[1].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@indexstats[1].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@cpvfeed[2].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@dk.winantivirus[1].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@www.winantivirus[1].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@winantivirus[2].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@ad.yieldmanager[1].txt
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Cookies\christina kirkegaard@e-2dj6wjkocidjkdo.stats.esomniture[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tacoda[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.yieldmanager[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dist.belnk[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@clicktorrent[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@superstats[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@m1.webstats4u[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@indextools[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad1.emediate[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@burstnet[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@nextag[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@clicktorrent[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@track.adform[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@indextools[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ads.estart[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adfair[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@dist.belnk[3].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@interclick[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@atwola[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@adopt.specificclick[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad.yieldmanager[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@bizrate[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@m1.webstats4u[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@revsci[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@burstnet[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@tacoda[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@ad1.emediate[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@stats1.reliablestats[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@track.adform[2].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@bradpix[1].txt
C:\Documents and Settings\Christina Kirkegaard\Cookies\christina kirkegaard@statsW[1].txt
Adware.Toolbar888
HKCR\Interface\{C6F2214E-0B54-45A9-B90D-7DD4BA45ED0B}
HKCR\Interface\{C6F2214E-0B54-45A9-B90D-7DD4BA45ED0B}\ProxyStubClsid
HKCR\Interface\{C6F2214E-0B54-45A9-B90D-7DD4BA45ED0B}\ProxyStubClsid32
HKCR\Interface\{C6F2214E-0B54-45A9-B90D-7DD4BA45ED0B}\TypeLib
HKCR\Interface\{C6F2214E-0B54-45A9-B90D-7DD4BA45ED0B}\TypeLib#Version
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ToolBar888
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ToolBar888#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ToolBar888#UninstallString
HKU\S-1-5-21-1536209723-2589437732-2551803574-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CBCC61FA-0221-4CCC-B409-CEE865CACA3A}
HKU\S-1-5-21-1536209723-2589437732-2551803574-1005\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser#{cbcc61fa-0221-4ccc-b409-cee865caca3a} [ úaÌË!ÌL´ ÎèeÊÊ: ]
Trojan.SmartLoad
HKLM\Software\Microsoft\drsmartload2
HKLM\Software\Microsoft\drsmartload2#Installed
C:\WINDOWS\drsmartload2.dat
Browser Hijacker.Internet Explorer Settings Hijack
HKU\S-1-5-21-1536209723-2589437732-2551803574-1005\Software\Microsoft\Internet Explorer\Search\SearchAssistant Explorer\Main#Default_Search_URL [ http://searchbar.findthewebsiteyouneed.com ]
Trojan.DollarRevenue
C:\WINDOWS\newname.dat
C:\WINDOWS\keyboard1.dat
Browser Hijacker.Deskbar
HKCR\DBTB00001.DeskbarEnabler
HKCR\DBTB00001.DeskbarEnabler\CLSID
HKCR\DBTB00001.DeskbarEnabler.1
HKCR\DBTB00001.DeskbarEnabler.1\CLSID
C:\deskbar7.exe
C:\WINDOWS\Prefetch\DESKBAR7.EXE-25683193.pf
Trojan.Freeprod
C:\WINDOWS\system32\alfa.exe
C:\Documents and Settings\Christina Kirkegaard\Lokale indstillinger\Temp\Temporary Internet Files\Content.IE5\0ZBY6IA1\alfa[1].exe
C:\Documents and Settings\Christina Kirkegaard\alfa.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0018342.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0018465.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0019461.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0019470.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0019484.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP247\A0019553.exe
C:\WINDOWS\Prefetch\ALFA.EXE-2971F6E5.pf
C:\WINDOWS\Prefetch\ALFA.EXE-2A9EDE2A.pf
Trojan.Defender1
C:\WINDOWS\Prefetch\DFNDRFF_E7.EXE-0E0729EE.pf
Trojan.Unknown Origin
C:\WINDOWS\teller2.chk
Adware.Director
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP245\A0019466.exe
C:\System Volume Information\_restore{F54E5166-566F-42CC-AF40-B51007CE2568}\RP248\A0019601.exe
Trojan.WinSysBan
C:\kybrdff_e7.exe
C:\WINDOWS\Prefetch\KYBRDFF_E7.EXE-015E454E.pf
Trojan.GimmySmilies
C:\nwnmff_e7.exe
C:\WINDOWS\Prefetch\NWNMFF_E7.EXE-00D340C0.pf
Har sat mac point på som tak for hjælpen :-)
