Avatar billede juliemusen Nybegynder
21. november 2006 - 12:56 Der er 4 kommentarer og
1 løsning

tror jeg har fået virus

Hejsa alle sammen.

Jeg tror jeg har fået en virus, så jeg smider lige en log her:
håber der er en der vil hjælpe.
Det er lidt mærkeligt, jeg tror ikke mit virus program er der mere.

Nå, men her er logèn:

Logfile of HijackThis v1.99.1
Scan saved at 12:57:39, on 21-11-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Programmer\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Programmer\CA\eTrust Antivirus\InoRpc.exe
C:\Programmer\CA\eTrust Antivirus\InoRT.exe
C:\Programmer\CA\eTrust Antivirus\InoTask.exe
C:\WINDOWS\system32\LckFldService.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
C:\Programmer\Fælles filer\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Programmer\CyberLink\Shared Files\RichVideo.exe
C:\Programmer\Diverse\Universial Sheild\US30Service.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\hphmon05.exe
C:\Programmer\Diverse\Winamp\Winampa.exe
C:\WINDOWS\system32\CmUCReye.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmer\Internet Explorer\IEXPLORE.EXE
C:\Programmer\Diverse\Winrar\WinRAR.exe
C:\DOCUME~1\signe\LOKALE~1\Temp\Rar$EX03.500\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.aldi.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmer\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmer\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [Showwnd] showwnd.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AntivirusRegistration] C:\Programmer\CA\Etrust Antivirus\Register.exe
O4 - HKLM\..\Run: [PCMService] "C:\Programmer\Home Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Realtime Monitor] C:\PROGRA~1\CA\ETRUST~1\realmon.exe -s
O4 - HKLM\..\Run: [InstantOn] "C:\Program Files\CyberLink\PowerCinema Linux\ion_install.exe /c "
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [DeltTray] DeltTray.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Programmer\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programmer\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Programmer\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Programmer\Diverse\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [CmUCRRun] C:\WINDOWS\system32\CmUCReye.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmer\Fælles filer\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by121fd.bay121.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1130600261343
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1141318211484
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Programmer\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: eTrust Antivirus RPC Server (InoRPC) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoRpc.exe
O23 - Service: eTrust Antivirus Realtime Server (InoRT) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoRT.exe
O23 - Service: eTrust Antivirus Job Server (InoTask) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoTask.exe
O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Programmer\CyberLink\Shared Files\RichVideo.exe
O23 - Service: US30Service - Unknown owner - C:\Programmer\Diverse\Universial Sheild\US30Service.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

Med Venlig Hilsen
Julie
Avatar billede juliemusen Nybegynder
21. november 2006 - 12:59 #1
jo, virus scanneren er der stadigvæk.
Avatar billede nva Praktikant
21. november 2006 - 13:09 #2
Du har tilsyneladende en enkelt trojaner, så jeg vil foreslå at du følger denne vejledning http://www.eksperten.dk/artikler/954 - kør gerne HiJackThis under et andet navn - altså omdøb den til fx. alternativ.exe
Avatar billede juliemusen Nybegynder
21. november 2006 - 17:11 #3
Hejsa.

Tusind tak for hjælpen indtil videre.
Her er de forskellige log:

SUPERAntiSpyware Scan Log
Generated 11/21/2006 at 04:19 PM

Application Version : 3.3.1020

Core Rules Database Version : 3133
Trace Rules Database Version: 1151

Scan type      : Complete Scan
Total Scan Time : 00:09:09

Memory items scanned      : 167
Memory threats detected  : 0
Registry items scanned    : 6747
Registry threats detected : 0
File items scanned        : 1286
File threats detected    : 369

Adware.Tracking Cookie
    C:\Documents and Settings\signe\Cookies\signe@cz6.clickzs[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[2].txt
    C:\Documents and Settings\signe\Cookies\signe@mediaplex[1].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[4].txt
    C:\Documents and Settings\signe\Cookies\signe@kanoodle[1].txt
    C:\Documents and Settings\signe\Cookies\signe@paypal.112.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4opc5ebp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adtech[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cz11.clickzs[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adecn[2].txt
    C:\Documents and Settings\signe\Cookies\signe@c5.zedo[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adserver.easyad[2].txt
    C:\Documents and Settings\signe\Cookies\signe@16847762[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.realtechnetwork[1].txt
    C:\Documents and Settings\signe\Cookies\signe@xiti[1].txt
    C:\Documents and Settings\signe\Cookies\signe@partypoker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@tacoda[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wglicpdjwbp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[7].txt
    C:\Documents and Settings\signe\Cookies\signe@adultfriendfinder[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfliogazedo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@sexyfashionpictures.blogspot[2].txt
    C:\Documents and Settings\signe\Cookies\signe@as-eu.falkag[1].txt
    C:\Documents and Settings\signe\Cookies\signe@rotator.adjuggler[2].txt
    C:\Documents and Settings\signe\Cookies\signe@casalemedia[1].txt
    C:\Documents and Settings\signe\Cookies\signe@tradedoubler[1].txt
    C:\Documents and Settings\signe\Cookies\signe@azjmp[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whmysndjilo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@counter6.sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ads2.jubii[2].txt
    C:\Documents and Settings\signe\Cookies\signe@pinnaclesystems.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloskc5oho.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@efashionsolutions.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@metacafe.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ad.adition[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.888[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.burstnet[2].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkoenajwbq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkokjcpwdp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmiahaziep.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ad.yieldmanager[2].txt
    C:\Documents and Settings\signe\Cookies\signe@interclick[1].txt
    C:\Documents and Settings\signe\Cookies\signe@sexlist[2].txt
    C:\Documents and Settings\signe\Cookies\signe@m1.webstats4u[2].txt
    C:\Documents and Settings\signe\Cookies\signe@msnportal.112.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@advertising[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adserver.adremedy[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adfair[2].txt
    C:\Documents and Settings\signe\Cookies\signe@geo.precisionclick[1].txt
    C:\Documents and Settings\signe\Cookies\signe@hypertracker[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adbrite[1].txt
    C:\Documents and Settings\signe\Cookies\signe@a.as-us.falkag[1].txt
    C:\Documents and Settings\signe\Cookies\signe@valueclick[1].txt
    C:\Documents and Settings\signe\Cookies\signe@counter.hitslink[1].txt
    C:\Documents and Settings\signe\Cookies\signe@server.iad.liveperson[1].txt
    C:\Documents and Settings\signe\Cookies\signe@counter8.sextracker[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cnn.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkoumd5slp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@drivecleaner[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmigld5obo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@image.masterstats[1].txt
    C:\Documents and Settings\signe\Cookies\signe@netmediagroup[1].txt
    C:\Documents and Settings\signe\Cookies\signe@keywordmax[1].txt
    C:\Documents and Settings\signe\Cookies\signe@bluestreak[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adrevolver[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.gamers-globe[1].txt
    C:\Documents and Settings\signe\Cookies\signe@bs.serving-sys[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4egc5kaq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloapdzofo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlywmajmeo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cassava[1].txt
    C:\Documents and Settings\signe\Cookies\signe@atdmt[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[8].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4aiajokp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@stats1.reliablestats[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adserver.adreactor[1].txt
    C:\Documents and Settings\signe\Cookies\signe@doubleclick[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlyujcjcho.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@burstnet[2].txt
    C:\Documents and Settings\signe\Cookies\signe@gostats[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adultadworld[1].txt
    C:\Documents and Settings\signe\Cookies\signe@2o7[2].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[5].txt
    C:\Documents and Settings\signe\Cookies\signe@webpower[2].txt
    C:\Documents and Settings\signe\Cookies\signe@statse.webtrendslive[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whkoqhdzeao.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.falkag[1].txt
    C:\Documents and Settings\signe\Cookies\signe@statcounter[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.sexnoveller[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4uhajccq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whkikgdpclo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@yourmedia[1].txt
    C:\Documents and Settings\signe\Cookies\signe@revsci[2].txt
    C:\Documents and Settings\signe\Cookies\signe@clicksor[1].txt
    C:\Documents and Settings\signe\Cookies\signe@tribalfusion[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adsrevenue[1].txt
    C:\Documents and Settings\signe\Cookies\signe@webstat[2].txt
    C:\Documents and Settings\signe\Cookies\signe@microsoftuk.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1067259290[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkygmdpsbp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@partygaming.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@as-us.falkag[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wflykgd5mfo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@adserver.banneradministration[1].txt
    C:\Documents and Settings\signe\Cookies\signe@maxserving[2].txt
    C:\Documents and Settings\signe\Cookies\signe@popular[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlioidpico.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@questionmarket[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1070618373[1].txt
    C:\Documents and Settings\signe\Cookies\signe@zedo[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjliqgdjabo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgk4wmc5ifq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wflieodpsfq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@fastclick[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmiqoczodp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@stats.drivecleaner[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4qkdzshq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1070932336[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ehg-ifilm.hitbox[2].txt
    C:\Documents and Settings\signe\Cookies\signe@wt.sexsearchcom[1].txt
    C:\Documents and Settings\signe\Cookies\signe@cz3.clickzs[2].txt
    C:\Documents and Settings\signe\Cookies\signe@us.adrevenue[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.softure[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ifriends[1].txt
    C:\Documents and Settings\signe\Cookies\signe@toplist[1].txt
    C:\Documents and Settings\signe\Cookies\signe@track.adform[2].txt
    C:\Documents and Settings\signe\Cookies\signe@888[1].txt
    C:\Documents and Settings\signe\Cookies\signe@overture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.etracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[9].txt
    C:\Documents and Settings\signe\Cookies\signe@xml.bravenetmedianetwork[1].txt
    C:\Documents and Settings\signe\Cookies\signe@reduxads.valuead[1].txt
    C:\Documents and Settings\signe\Cookies\signe@cz7.clickzs[1].txt
    C:\Documents and Settings\signe\Cookies\signe@sexnoveller[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adopt.hbmediapro[2].txt
    C:\Documents and Settings\signe\Cookies\signe@youtube.112.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@cs.sexcounter[2].txt
    C:\Documents and Settings\signe\Cookies\signe@counter7.sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.burstbeacon[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ad1.emediate[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.sillybanners[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e2.emediate[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adopt.specificclick[2].txt
    C:\Documents and Settings\signe\Cookies\signe@counter2.sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@247realmedia[1].txt
    C:\Documents and Settings\signe\Cookies\signe@aff.primaryads[1].txt
    C:\Documents and Settings\signe\Cookies\signe@please[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4wmd5iao.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfliejcjkcq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@revenue[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjnyugajiho.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmiojdjafp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmyqoajiho.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@stats[4].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[7].txt
    C:\Documents and Settings\signe\Cookies\signe@sexsearchcom[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4ehcpehp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@serving-sys[1].txt
    C:\Documents and Settings\signe\Cookies\signe@bravenetmedianetwork[1].txt
    C:\Documents and Settings\signe\Cookies\signe@adrevolver[1].txt
    C:\Documents and Settings\signe\Cookies\signe@xxxcounter[2].txt
    C:\Documents and Settings\signe\Cookies\signe@realmedia[2].txt
    C:\Documents and Settings\signe\Cookies\signe@counter12.sextracker[2].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1070648409[1].txt
    C:\Documents and Settings\signe\Cookies\signe@divavillage.advertserve[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whmywkdjggo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.estart[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1069154260[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmyqkazolo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1072117319[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ad.zanox[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkoakcpgap.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1068268912[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ehg-foxmovies.hitbox[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkyejdjmkp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkoujcjofo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfl4qgcpcco.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.winfixer[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.jokaroo[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wflichc5kaq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfl4kidpweo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4wmajkgo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whlyqod5sgq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@click-fr[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyamczwfq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1064398213[1].txt
    C:\Documents and Settings\signe\Cookies\signe@counter11.sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1066074947[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1071896576[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wglyugcjoap.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1071427968[1].txt
    C:\Documents and Settings\signe\Cookies\signe@focalex[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmiolczmgo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.smartadserver[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4uicjsbo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmislczcdo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkoclazwbp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ehg-hollywood.hitbox[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkyoicjkbo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfligkdzgfq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfloslc5cho.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@hitbox[1].txt
    C:\Documents and Settings\signe\Cookies\signe@mtr.splash.sexsearch[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4ghcpebo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@trgmedia[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfliopcjweo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@sales.liveperson[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.tarrobads[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.drivecleaner[1].txt
    C:\Documents and Settings\signe\Cookies\signe@paycounter[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.sexbombe[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkogld5cdo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@bizrate[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ehg-foxsports.hitbox[1].txt
    C:\Documents and Settings\signe\Cookies\signe@as1.falkag[2].txt
    C:\Documents and Settings\signe\Cookies\signe@mb[3].txt
    C:\Documents and Settings\signe\Cookies\signe@www.belstat[2].txt
    C:\Documents and Settings\signe\Cookies\signe@targetnet[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.cnn[1].txt
    C:\Documents and Settings\signe\Cookies\signe@stats[1].txt
    C:\Documents and Settings\signe\Cookies\signe@apmebf[1].txt
    C:\Documents and Settings\signe\Cookies\signe@banners.nbcupromotes[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlyclczico.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkyahd5mao.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmisnc5wbp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wglocjczwdo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjligjazego.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@heavycom.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmyekdzsgp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkospazido.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkowjazgeq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmyeic5gfo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@perf.overture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whlishdzmcp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4apc5akq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkyukajoap.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkygic5wap.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmygjajwco.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wflogncjwkq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@stat.onestat[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmiuod5abp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmikjczihq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmiqhd5odo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkoqkcjsgp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@stats[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4updjifo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkigpcpgbp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkoogdjseo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1070527576[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1071968851[1].txt
    C:\Documents and Settings\signe\Cookies\signe@estat[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmyqmazckp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4upcjwhq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@usenext[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.addynamix[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.as4x.tmcs[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkogoczkko.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@48986480[1].txt
    C:\Documents and Settings\signe\Cookies\signe@indextools[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjnygkdpmhp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmyagajalp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.49media[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjliejajago.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@122.2o7[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyqic5gep.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkogmczegp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkyokd5eap.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whl4kod5mdp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgk4wpajilo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@vip.clickzs[2].txt
    C:\Documents and Settings\signe\Cookies\signe@campaign.indieclick[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wakyuicpkao.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1063924626[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkokjdpifp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkykjd5eao.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmyemcjmhq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ad.ofir[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1071327198[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkooiczicp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whloooazafq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@marketlive.122.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.macromedia[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkogmcpeco.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[6].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmiaic5ofo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmispdjgao.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkiknajiep.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@bannere.fyens[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4emcjwho.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmiuhdpadq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkosiazabq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloehc5meq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkywjdpofp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@h.starware[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4onazmbp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4qhajalq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmykodpabp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmiupdjocp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkiehd5igo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ebookers[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmyqlcpafo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloqjdzwgq.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@phpmv2[3].txt
    C:\Documents and Settings\signe\Cookies\signe@1070732260[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjnyuoazsfo.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.adgrup[2].txt
    C:\Documents and Settings\signe\Cookies\signe@4stats[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkigpd5odo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@1071785470[1].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[3].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyqjdpmko.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkishczggp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@winfixer[2].txt
    C:\Documents and Settings\signe\Cookies\signe@den[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfliujc5egp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloujdpsep.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloqjcjwhp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkocld5ccp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjloqkazmlp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjliqhdzmdp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyunajagp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlogldjwgp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfk4koc5waq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@www.xxxmsncam[1].txt
    C:\Documents and Settings\signe\Cookies\signe@counter9.sextracker[1].txt
    C:\Documents and Settings\signe\Cookies\signe@vip2.clickzs[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whk4wkcpwlo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfl4eicziap.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgmysgcpiho.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjnyqlajecp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlycoczabo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4ukdpmhq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkycpcjoeo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyskcjago.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjlisidzibp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whlykiajgdo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ads.pointroll[2].txt
    C:\Documents and Settings\signe\Cookies\signe@as.casalemedia[1].txt
    C:\Documents and Settings\signe\Cookies\signe@www.tgsex[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whlokjcjwho.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@partners.webmasterplan[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjk4khdpklo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wflogkcjigp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkoulajkkp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfl4qnd5gbo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjmigpcpcbp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjl4oicpcgo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkislczeho.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@sextv1[2].txt
    C:\Documents and Settings\signe\Cookies\signe@cgi-bin[10].txt
    C:\Documents and Settings\signe\Cookies\signe@edge.ru4[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfliqnczalo.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@ad[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1069646404[1].txt
    C:\Documents and Settings\signe\Cookies\signe@diggs.112.2o7[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wjkyalajskp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@stat.karamco[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkyehdzshp.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfkoepdzibp.stats.esomniture[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wgkoelajgeq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6wfmyeod5gcq.stats.esomniture[2].txt
    C:\Documents and Settings\signe\Cookies\signe@try.starware[1].txt
    C:\Documents and Settings\signe\Cookies\signe@tracker.wholinked[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1068070286[1].txt
    C:\Documents and Settings\signe\Cookies\signe@1071912545[1].txt
    C:\Documents and Settings\signe\Cookies\signe@e-2dj6whkigjcjklo.stats.esomniture[2].txt

______________________________________________________________________________

MiniBugTransporter.dll    C:\Programmer\Fælles filer\Real\WeatherBug    Adware.Minibug    Renamed.
A0026417.dll    C:\System Volume Information\_restore{FDFF6704-B445-46DC-A83C-5857ED410A5E}\RP63    Adware.Minibug    Renamed.

______________________________________________________________________________,

Logfile of HijackThis v1.99.1
Scan saved at 17:13:26, on 21-11-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Programmer\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Programmer\CA\eTrust Antivirus\InoRpc.exe
C:\Programmer\CA\eTrust Antivirus\InoRT.exe
C:\Programmer\CA\eTrust Antivirus\InoTask.exe
C:\WINDOWS\system32\LckFldService.exe
C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
C:\Programmer\Fælles filer\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Programmer\CyberLink\Shared Files\RichVideo.exe
C:\Programmer\Diverse\Universial Sheild\US30Service.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\CNYHKey.exe
C:\Programmer\Home Cinema\PowerCinema\PCMService.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\CA\ETRUST~1\realmon.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\DeltTray.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
C:\Programmer\HP\hpcoretech\hpcmpmgr.exe
C:\Programmer\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\hphmon05.exe
C:\Programmer\Diverse\Winamp\Winampa.exe
C:\WINDOWS\system32\CmUCReye.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\signe\Skrivebord\virus\Antispy\SUPERAntiSpyware.exe
C:\Documents and Settings\signe\Skrivebord\virus\Antispy\SUPERAntiSpyware.exe
C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Programmer\Internet Explorer\IEXPLORE.EXE
C:\DOCUME~1\signe\LOKALE~1\Temp\Rar$EX00.782\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.aldi.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmer\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmer\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [Showwnd] showwnd.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AntivirusRegistration] C:\Programmer\CA\Etrust Antivirus\Register.exe
O4 - HKLM\..\Run: [PCMService] "C:\Programmer\Home Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Realtime Monitor] C:\PROGRA~1\CA\ETRUST~1\realmon.exe -s
O4 - HKLM\..\Run: [InstantOn] "C:\Program Files\CyberLink\PowerCinema Linux\ion_install.exe /c "
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [DeltTray] DeltTray.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Programmer\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programmer\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Programmer\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Programmer\Diverse\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [CmUCRRun] C:\WINDOWS\system32\CmUCReye.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Documents and Settings\signe\Skrivebord\virus\Antispy\SUPERAntiSpyware.exe
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Programmer\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmer\Fælles filer\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by121fd.bay121.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1130600261343
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1141318211484
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: !SASWinLogon - C:\Documents and Settings\signe\Skrivebord\virus\Antispy\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Programmer\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Programmer\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: eTrust Antivirus RPC Server (InoRPC) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoRpc.exe
O23 - Service: eTrust Antivirus Realtime Server (InoRT) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoRT.exe
O23 - Service: eTrust Antivirus Job Server (InoTask) - Computer Associates International, Inc. - C:\Programmer\CA\eTrust Antivirus\InoTask.exe
O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Programmer\CyberLink\Shared Files\RichVideo.exe
O23 - Service: US30Service - Unknown owner - C:\Programmer\Diverse\Universial Sheild\US30Service.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe

M.V.H
Julie
Avatar billede nva Praktikant
22. november 2006 - 08:08 #4
Har du sat noget remote control på din pc?
Showwnd.exe får lidt blandede beskrivelser på nettet, så jeg ved ikke rigtig om den er skadelig eller ej, men jeg synes det ser ud til at den kommer med  Chicony keyboard software, så den er vist uskadelig men kan fjernes med 'tilføj/fjern programmer' hvis du synes. http://www.google.dk/search?hl=da&q=showwnd.exe+&btnG=Google-s%C3%B8gning&meta=
Mht. remote control så er det denne jeg tænker på:
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
Hvis du ikke kender den så fix den med HiJackThis i fejlsikker tilstand.

Det er det eneste du har i din log nu.
Avatar billede nva Praktikant
28. november 2006 - 07:52 #5
Lægger et svar, som du bare afviser, hvis du ikke kunne bruge mit input.
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester

IT-JOB

Operate Technology A/S

PHP-udvikler til Drupal

Politiets Efterretningstjeneste

Fullstack softwareudvikler i PET

SOS International

Platform Engineer