Avatar billede pegazuz Mester
02. juli 2007 - 22:43 Der er 8 kommentarer og
1 løsning

tjek af SAS log

Jeg har kørt en Adaware scan. Derefter har jeg kørt en SAS scan. Her er loggen. Det kunne være lækkert, hvis der var een, der gad kigge på den. Min pc kører mega langsomt, og jeg forsøger at finde fejlen. På forhånd tak. Jakob

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/03/2007 at 10:40 PM

Application Version : 3.9.1008

Core Rules Database Version : 3263
Trace Rules Database Version: 1274

Scan type      : Quick Scan
Total Scan Time : 01:37:47

Memory items scanned      : 574
Memory threats detected  : 0
Registry items scanned    : 1046
Registry threats detected : 0
File items scanned        : 23738
File threats detected    : 71

Adware.Tracking Cookie
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@imrworldwide[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tracking.notabenestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@xiti[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@yourmedia[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.winantivirus[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@vhost.oddcast[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@cgi-bin[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@e2.emediate[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@den[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@anad.tacoda[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@uk[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@dcsbpksfht4p42czdyzk0s7fi_2n9u[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@sales.liveperson[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media.recipeland[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@atdmt[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@ebookers[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@shinystat[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.as4x.tmcs[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads2.jubii[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@ads.mytelus[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.amaena[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@winantivirus[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adcentriconline[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media101.sitebrand[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media.hotels[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@dcsfffwljt4p42czdyzk0s7fi_9n8t[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tracker.affistats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@bonnier.banneradministration[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adfair[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@partner2profit[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@banner.fynskemedier[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@web-stats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.mediamax[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.federal-hotel[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@hypertracker[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www.addfreestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@2.adbrite[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.realtechnetwork[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@click-fr[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adjuggler[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ad.zanox[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@atwola[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tdstats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.bleublancrouge[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stat.postdanmark[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@vitamine.networldmedia[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stat.inleadmedia[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@media.sensis.com[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@nextag[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@eas.apm.emediate[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@sales.liveperson[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.wanadooregie[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@eqtracking[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.benegil[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats2.clicktracks[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.mamut[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@mediadico[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adv.surinter[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www.googleadservices[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@list[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.canalblog[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@toplist[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@statsserver.contensis.co[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ad.ofir[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www8.addfreestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@yadro[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@bannere.fyens[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@e2.emediate[2].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@imrworldwide[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@imrworldwide[2].txt
02. juli 2007 - 22:46 #1
(Virker ikke til at være hel?)

Vil også gerne se en HiJackThis Log ->
http://www.spywareinfo.dk/index.htm#/manualer/hijackthis.htm
Avatar billede pegazuz Mester
03. juli 2007 - 22:21 #2
SAS og hijack logs


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 07/03/2007 at 10:40 PM

Application Version : 3.9.1008

Core Rules Database Version : 3263
Trace Rules Database Version: 1274

Scan type      : Quick Scan
Total Scan Time : 01:37:47

Memory items scanned      : 574
Memory threats detected  : 0
Registry items scanned    : 1046
Registry threats detected : 0
File items scanned        : 23738
File threats detected    : 71

Adware.Tracking Cookie
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@imrworldwide[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tracking.notabenestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@xiti[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@yourmedia[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.winantivirus[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@vhost.oddcast[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@cgi-bin[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@e2.emediate[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@den[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@anad.tacoda[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@uk[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@dcsbpksfht4p42czdyzk0s7fi_2n9u[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@sales.liveperson[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media.recipeland[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@atdmt[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@ebookers[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@shinystat[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.as4x.tmcs[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads2.jubii[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@ads.mytelus[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.amaena[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@winantivirus[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adcentriconline[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media101.sitebrand[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@media.hotels[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@dcsfffwljt4p42czdyzk0s7fi_9n8t[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tracker.affistats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@bonnier.banneradministration[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adfair[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@partner2profit[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@banner.fynskemedier[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@web-stats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie helene@www.mediamax[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.federal-hotel[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@hypertracker[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www.addfreestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@2.adbrite[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.realtechnetwork[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@click-fr[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adjuggler[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ad.zanox[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@atwola[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@tdstats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.bleublancrouge[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stat.postdanmark[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@vitamine.networldmedia[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stat.inleadmedia[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@media.sensis.com[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@nextag[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@eas.apm.emediate[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@sales.liveperson[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.wanadooregie[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@eqtracking[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ads.benegil[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats2.clicktracks[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.mamut[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@mediadico[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@adv.surinter[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www.googleadservices[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@list[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@stats.canalblog[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@toplist[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@statsserver.contensis.co[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@ad.ofir[2].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@www8.addfreestats[1].txt
    C:\Documents and Settings\Marie Helene\Cookies\marie_helene@yadro[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@bannere.fyens[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@e2.emediate[2].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@imrworldwide[1].txt
    C:\Documents and Settings\Jakob\Cookies\jakob@imrworldwide[2].txt

Logfile of HijackThis v1.99.1
Scan saved at 22:21:35, on 04-07-07
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe
C:\WINDOWS\System32\DVDRAMSV.exe
C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
c:\wamp\apache2\bin\httpd.exe
c:\wamp\mysql\bin\mysqld-nt.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\system32\svchost.exe
C:\wamp\apache2\bin\httpd.exe
C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\Program Files\TOSHIBA\Power Management\CePMTray.exe
C:\Program Files\EzButton\CplBTQ00.EXE
C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Palm\HOTSYNC.EXE
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\3M\postit\PsnLite.exe
C:\WINDOWS\system32\RAMASST.exe
C:\IDEACryptoBoxServer\CbNetSrv.exe
C:\IDEACryptoBoxServer\CbNetSrv.srv
C:\wamp\wampmanager.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\PROGRA~1\3M\postit\PSNGive.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\toshiba\ivp\ism\ivpsvmgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Documents and Settings\Marie Helene\My Documents\hijackthis\alternativ.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.toshiba.com/search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe
O4 - HKLM\..\Run: [CplBTQ00] C:\Program Files\EzButton\CplBTQ00.EXE
O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [BDSwitchAgent] "C:\PROGRA~1\softwin\BITDEF~1\bdswitch.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Spyware Doctor] C:\PROGRA~1\SPYWAR~1\swdoctor.exe /Q
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Cryptobox Server.lnk = C:\IDEACryptoBoxServer\CbNetSrv.exe
O4 - Startup: WampServer.lnk = C:\wamp\wampmanager.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart17.exe
O4 - Global Startup: HotSync Manager.lnk = C:\Palm\HOTSYNC.EXE
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\postit\PsnLite.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: FirstClass® - {02011FE3-C22B-451d-9A25-BF4DBB38B8E7} - C:\WINDOWS\Downloaded Program Files\fcplugin.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: Ladbrokes Poker - {C2A80015-C447-4dc4-82DD-AED83D6ED57E} - C:\Program Files\ladbrokesMPP\MPPoker.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://downol.dr.dk/download/netradio/Rawflow.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/SSC/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {3D6DDD23-870A-4FC8-B3AF-5F67C935A9B7} (Util Class) - https://gandalf.certifikat.dk/csp/authenticode/PrimeInkCSP-1204.exe
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by114w.bay114.mail.live.com/mail/resources/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1098711440265
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://80.165.241.106/msrdp.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://195.41.18.51/activex/AxisCamControl.cab
O16 - DPF: {94EB57FE-2720-496C-B33F-D9353C6E23F7} (F-Secure Online Scanner 2.1) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {9B03C5F1-F5AB-47EE-937D-A8EDA626F876} (Anonymizer Anti-Spyware Scanner) - http://download.zonelabs.com/bin/promotions/spywaredetector/WebAAS.cab
O16 - DPF: {9C196458-4145-46AF-8A77-1506878DFECA} (FirstClass® Control) - ftp://ftp.sektornet.dk/sektornet/skolekom/fcplugin.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab
O16 - DPF: {D216644A-C6DB-49D9-BBCF-D38FE7991BF2} (Util Class) - https://opdatering.tdc.dk/csp/authenticode/tdccsp-0506.exe
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by1fd.bay1.hotmail.msn.com/activex/HMAtchmt.ocx
O18 - Protocol: fcp - {B3133379-8789-4D3C-9593-C205D7297501} - C:\WINDOWS\Downloaded Program Files\fcplugin.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\System32\DVDRAMSV.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: wampapache - Unknown owner - c:\wamp\apache2\bin\httpd.exe" -k runservice (file missing)
O23 - Service: wampmysqld - Unknown owner - c:\wamp\mysql\bin\mysqld-nt.exe
03. juli 2007 - 23:13 #3
Umiddelbart er der ikke noget 'utøj' ifølge loggen. Dog en pokkers masse mere eller mindre unødvendige/unyttige programmer i din opstart. Typisk for færdige bærbare fra IBM/TOSHIBA/ACER/...
03. juli 2007 - 23:17 #4
Disable følgende med MSCONFIG - http://www.spywareinfo.dk/#/tip-og-tricks/msconfig.htm ->

SunJavaUpdateSched
TkBellExe
QuickTime Task
iTunesHelper
Adobe Gamma.lnk
WampServer.lnk (Ved du selv hvad dette er ?)
Acrobat Assistant
Adobe Reader Speed Launch

--------------------------------

Registreringsdatabase oprydning kan anbefales ->
RegCleaner http://www.ccleaner.com/ + http://www.spywarefri.dk/manualer/ccleaner-manual.htm (Specielt punktet [Problemer]...)
Under installationen får du tilbudt [Yahoo Toolbar]. Du kan sige ja eller NEJ til den.
Avatar billede pegazuz Mester
11. juli 2007 - 22:12 #5
Jeg kan ikke finde TkBellExe i min msconfig. Kan du huske hvad forkortelsen for det er?

Jeg sidder og lader op til at tygge mig igennem cc cleaner manualen...
Avatar billede pegazuz Mester
12. juli 2007 - 22:27 #6
jeg kørte en cleaner i går, og fik ryddet mere end 1 gb, så det var sikkert tiltrængt. jeg kører både cleaneren og fik ryddet op i "problemerne". maskinen kører lidt hurtigere nu. synes dog ikke, det er så betydeligt.

jeg kører på toshiba laptop. nu kan jeg imidlertid ikke sætte den på stand-by.

jeg får en fejlmeddelse :

"the service Microsoft.NET Framework v.1.0.3705 is preventing the machine from entering standby. Try stopping this service and try again"

jeg mener dog ikke at have pillet ved dette. nogen forslag?
14. juli 2007 - 17:51 #7
(Ikke lige nu...)
Avatar billede pegazuz Mester
22. juli 2007 - 19:14 #8
fiksede det ved at lave en system restore. svar hvis der skal høstes point.
29. juli 2007 - 19:26 #9
Ping...

Læg selv et [svar] og la' os alle dele...
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester