Hjælp til Logfiler..!!
Hej Jeg ved ikke lige om dette er den rigtige kategori, men jeg har i hvert fald nogle logfiler jeg gerne il have hjælp til, da systemet crasher af og til.MALVAREBYTES:
_______________________________________
Malwarebytes' Anti-Malware 1.37
Database version: 2232
Windows 5.1.2600 Service Pack 3
05-06-2009 09:48:13
mbam-log-2009-06-05 (09-48-13).txt
Skan type: Fuldstændig skanning (C:\|D:\|)
Objekter skannet: 109097
Tid tilbagelagt: 29 minute(s), 27 second(s)
Inficerede Hukommelses Processer: 0
Inficerede Hukommelses Moduler: 0
Inficerede Registeringsdatabase Nøgler: 0
Inficerede Registeringsdatabase Værdier: 0
Inficerede Registeringsdatabase Filer: 0
Inficerede Mapper: 0
Inficerede Filer: 0
Inficerede Hukommelses Processer:
(Ingen mistænkelige filer fundet)
Inficerede Hukommelses Moduler:
(Ingen mistænkelige filer fundet)
Inficerede Registeringsdatabase Nøgler:
(Ingen mistænkelige filer fundet)
Inficerede Registeringsdatabase Værdier:
(Ingen mistænkelige filer fundet)
Inficerede Registeringsdatabase Filer:
(Ingen mistænkelige filer fundet)
Inficerede Mapper:
(Ingen mistænkelige filer fundet)
Inficerede Filer:
(Ingen mistænkelige filer fundet)
COMBOFIX :
____________________________________________
ComboFix 09-06-04.06 - Vinnie Søgaard 05-06-2009 10:25.1 - FAT32x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.45.1030.18.477.279 [GMT 2:00]
Kører fra: c:\documents and settings\Vinnie Søgaard\Skrivebord\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Andet, der er slettet )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\xpysys.dll
.
((((((((((((((((((((((((((((( Filer skabt fra 2009-05-05 til 2009-06-05 )))))))))))))))))))))))))))))))))))
.
2009-06-05 07:13 . 2009-05-26 11:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-05 07:13 . 2009-06-05 07:13 -------- d-----w- c:\programmer\Malwarebytes' Anti-Malware
2009-06-05 07:13 . 2009-06-05 07:13 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-06-05 07:13 . 2009-05-26 11:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-05 06:55 . 2009-06-05 06:55 -------- d-----w- c:\programmer\Fælles filer\Adobe
2009-06-05 06:52 . 2009-06-05 06:52 -------- d-----w- c:\windows\system32\Adobe
2009-06-05 06:51 . 2009-06-05 06:51 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-06-05 06:51 . 2009-06-05 06:51 -------- d-----w- c:\programmer\NOS
2009-05-26 17:28 . 2009-05-26 17:29 -------- d-----w- c:\programmer\CoffeeCup Software
2009-05-25 14:41 . 2008-04-11 19:05 691712 ------w- c:\windows\system32\dllcache\inetcomm.dll
2009-05-25 14:39 . 2008-06-14 17:35 272256 ------w- c:\windows\system32\dllcache\bthport.sys
2009-05-25 14:39 . 2008-10-15 16:37 337408 ------w- c:\windows\system32\dllcache\netapi32.dll
2009-05-25 14:39 . 2008-04-21 21:15 217088 ------w- c:\windows\system32\dllcache\wordpad.exe
2009-05-25 14:37 . 2009-05-25 14:37 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2009-05-25 14:30 . 2009-05-25 14:30 -------- d-----w- c:\windows\system32\da
2009-05-25 14:30 . 2009-05-25 14:30 -------- d-----w- c:\windows\l2schemas
2009-05-25 14:30 . 2009-05-25 14:30 -------- d-----w- c:\windows\system32\bits
2009-05-25 14:26 . 2009-05-25 14:26 -------- d-----w- c:\windows\ServicePackFiles
2009-05-25 14:14 . 2009-05-25 14:14 -------- d-----w- c:\windows\EHome
2009-05-19 10:10 . 2009-05-15 07:13 2051864 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgcorex.dll
2009-05-19 10:10 . 2009-05-15 07:13 424472 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgwdwsc.dll
2009-05-19 10:10 . 2009-05-15 07:13 312088 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avglngx.dll
2009-05-19 10:10 . 2009-05-15 07:13 177432 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgmail.dll
2009-05-19 10:10 . 2009-05-15 07:13 3288344 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\setup.exe
2009-05-19 10:10 . 2009-05-15 07:13 486168 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgrsx.exe
2009-05-19 10:09 . 2009-05-15 07:13 755992 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avginet.dll
2009-05-19 10:09 . 2009-05-15 07:13 1437464 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgupd.dll
2009-05-16 10:01 . 2004-08-26 15:48 701440 ------w- c:\windows\system32\drivers\ati2mtag.sys
2009-05-15 20:37 . 2009-05-15 20:37 -------- d-----w- c:\windows\Sun
2009-05-15 16:38 . 2008-04-14 16:05 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-05-15 16:01 . 2009-05-15 16:01 -------- d-----w- c:\documents and settings\All Users\Application Data\TVU Networks
2009-05-15 16:00 . 2009-05-15 16:00 -------- d-----w- c:\programmer\TVUPlayer
2009-05-15 15:39 . 2009-05-15 15:39 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-05-15 15:38 . 2009-05-15 15:38 -------- d-----w- c:\programmer\Java
2009-05-15 10:20 . 2009-05-15 10:20 -------- d-----w- c:\programmer\CONEXANT
2009-05-15 10:00 . 2008-06-27 12:55 65536 ------w- c:\windows\system32\SiSHook.dll
2009-05-15 10:00 . 2008-06-27 12:54 110592 ------w- c:\windows\system32\TVMode.dll
2009-05-15 10:00 . 2008-06-27 12:53 135168 ------w- c:\windows\system32\SiSApCom.dll
2009-05-15 09:59 . 2008-06-27 12:54 262144 ----a-w- c:\windows\system32\sistray.exe
2009-05-15 09:59 . 2008-06-27 12:55 53248 ----a-w- c:\windows\system32\SiSPower.dll
2009-05-15 09:59 . 2008-06-27 12:53 12288 ----a-w- c:\windows\InstFunc.dll
2009-05-15 09:59 . 2006-04-28 07:56 49152 ----a-w- c:\windows\InstFunc.exe
2009-05-15 09:59 . 2006-04-12 17:35 208896 ----a-w- c:\windows\Progress.exe
2009-05-15 09:59 . 2006-03-22 19:53 337320 ----a-w- c:\windows\difxapi.dll
2009-05-15 09:59 . 2009-05-15 09:59 -------- d-----w- c:\programmer\SiS VGA Utilities V3.85
2009-05-15 08:31 . 2009-05-15 08:31 -------- d-----w- c:\programmer\MSXML 4.0
2009-05-15 08:22 . 2009-05-15 08:22 -------- d-----w- c:\windows\ie8updates
2009-05-15 08:20 . 2009-05-15 08:20 -------- d--h--w- c:\windows\ie8
2009-05-15 08:20 . 2009-05-15 08:20 -------- d-----w- c:\windows\system32\da-DK
2009-05-15 08:18 . 2009-04-25 05:30 102400 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-05-15 07:48 . 2004-12-15 13:18 200576 ----a-w- c:\windows\system32\drivers\HSFHWSIS.sys
2009-05-15 07:48 . 2004-12-15 13:18 703232 ----a-w- c:\windows\system32\drivers\HSF_CNXT.sys
2009-05-15 07:48 . 2004-12-15 13:18 1038208 ----a-w- c:\windows\system32\drivers\HSF_DP.sys
2009-05-15 07:48 . 2004-03-17 09:04 13059 ----a-w- c:\windows\system32\drivers\mdmxsdk.sys
2009-05-15 07:48 . 2004-03-17 09:00 86016 ----a-w- c:\windows\system32\mdmxsdk.dll
2009-05-15 07:44 . 2009-05-15 07:44 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Drivers HeadQuarters
2009-05-15 07:39 . 2008-06-14 17:35 272256 ------w- c:\windows\system32\drivers\bthport.sys
2009-05-15 07:35 . 2009-05-15 07:35 -------- d-----w- c:\programmer\Driver Checker
2009-05-15 07:13 . 2009-05-15 07:13 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-05-15 07:13 . 2009-05-15 07:13 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-05-15 07:13 . 2009-05-15 07:13 325896 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-05-15 07:13 . 2009-05-15 07:13 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-05-15 07:13 . 2009-05-15 07:13 -------- d-----w- c:\windows\system32\drivers\Avg
2009-05-15 07:13 . 2009-05-15 07:13 -------- d-----w- c:\programmer\AVG
2009-05-15 07:13 . 2009-05-15 07:13 -------- d-----w- c:\documents and settings\All Users\Application Data\avg8
2009-05-15 07:12 . 2009-05-15 07:12 -------- d-----w- c:\programmer\CCleaner
2009-05-15 07:12 . 2009-05-15 07:12 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2009-05-15 07:12 . 2009-05-15 07:12 -------- d-----w- c:\programmer\SUPERAntiSpyware
2009-05-15 07:12 . 2009-05-15 07:12 -------- d-----w- c:\programmer\Fælles filer\Wise Installation Wizard
2009-05-15 07:10 . 2009-01-07 16:20 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2009-05-15 07:10 . 2009-05-15 07:10 -------- d--h--w- c:\windows\$hf_mig$
2009-05-14 21:13 . 2004-12-10 09:49 147456 ----a-w- c:\windows\UNINST32.EXE
2009-05-14 21:11 . 2005-09-26 14:40 258048 ----a-w- c:\windows\system32\Uninstall_eRecovery.exe
2009-05-14 21:11 . 2009-05-14 21:11 -------- d-sh--w- C:\FOUND.000
2009-05-14 21:08 . 2002-12-19 13:58 49152 ----a-w- c:\windows\system32\QtBtLib.dll
2009-05-14 21:07 . 2009-05-14 21:07 -------- d-----w- c:\documents and settings\Vinnie Søgaard
2009-05-14 20:59 . 2001-10-04 14:35 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2009-05-14 20:59 . 2008-04-13 18:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-05-14 20:58 . 2004-08-26 08:23 163840 ----a-w- c:\windows\AExec.exe
2009-05-14 20:58 . 2004-08-25 03:48 589824 ----a-w- c:\windows\AntiV.EXE
.
(((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-05 07:05 . 2005-08-10 22:23 69904 ----a-w- c:\windows\system32\perfc006.dat
2009-06-05 07:05 . 2005-08-10 22:23 408572 ----a-w- c:\windows\system32\perfh006.dat
2009-05-25 14:33 . 2005-08-10 22:12 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-05-15 07:13 . 2009-05-16 10:01 2302232 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avguiadv.dll
2009-05-15 07:13 . 2009-05-16 10:01 3399960 ----a-w- c:\documents and settings\All Users\Application Data\avg8\update\backup\avgui.exe
2009-05-14 20:58 . 2005-03-09 19:12 657 ----a-w- c:\windows\CLEANUP.CMD
2009-05-14 20:58 . 2004-06-25 00:13 868 ----a-w- c:\windows\HotFix.bat
2009-03-08 02:34 . 2004-08-27 03:00 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2004-08-27 03:00 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2004-08-27 03:00 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2004-08-27 03:00 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2004-08-27 03:00 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2004-08-27 03:00 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2004-08-27 03:00 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2004-08-27 03:00 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2004-08-27 03:00 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2004-08-27 03:00 156160 ----a-w- c:\windows\system32\msls31.dll
.
((((((((((((((((((((((((((((((((((( Start steder i reg.basen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"SUPERAntiSpyware"="c:\programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-06-05 1830128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LaunchApp"="Alaunch" [X]
"SynTPLpr"="c:\programmer\Synaptics\SynTP\SynTPLpr.exe" [2004-10-07 98394]
"SynTPEnh"="c:\programmer\Synaptics\SynTP\SynTPEnh.exe" [2004-10-07 688218]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-27 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-27 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-27 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-27 455168]
"eRecoveryService"="c:\acer\Empowering Technology\eRecovery\Monitor.exe" [2005-11-16 393216]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-05-15 1947928]
"SunJavaUpdateSched"="c:\programmer\Java\jre6\bin\jusched.exe" [2009-05-15 136600]
"Adobe Reader Speed Launcher"="c:\programmer\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"SiSPower"="SiSPower.dll" - c:\windows\system32\SiSPower.dll [2008-06-27 53248]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\soundman.exe [2005-02-23 77824]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Menuen Start\Programmer\Start\
Utility Tray.lnk - c:\windows\system32\sistray.exe [2009-5-15 262144]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\programmer\SUPERAntiSpyware\SASSEH.DLL" [2009-05-15 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-05-15 07:26 356352 ----a-w- c:\programmer\SUPERAntiSpyware\SASWINLO.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-05-15 07:13 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmer\\AVG\\AVG8\\avgemc.exe"=
"c:\\Programmer\\AVG\\AVG8\\avgupd.exe"=
"c:\\Programmer\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Programmer\\TVUPlayer\\TVUPlayer.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [15-05-2009 09:13 325896]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [15-05-2009 09:13 108552]
R1 SASDIFSV;SASDIFSV;c:\programmer\SUPERAntiSpyware\SASDIFSV.SYS [10-10-2006 12:53 9968]
R1 SASKUTIL;SASKUTIL;c:\programmer\SUPERAntiSpyware\SASKUTIL.SYS [09-01-2007 14:09 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [15-05-2009 09:13 908568]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [15-05-2009 09:13 298776]
R3 HSFHWSIS;HSFHWSIS;c:\windows\system32\drivers\HSFHWSIS.sys [15-05-2009 09:48 200576]
R3 SASENUM;SASENUM;c:\programmer\SUPERAntiSpyware\SASENUM.SYS [16-02-2006 16:51 4096]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\programmer\NOS\bin\getPlus_HelperSvc.exe [05-06-2009 08:51 33176]
--- Andre Services/Drivers i Hukommelsen ---
*NewlyCreated* - INT15.SYS
*NewlyCreated* - SASDIFSV
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
- - - - TOMME GENVEJE FJERNET - - - -
SafeBoot-procexp90.Sys
.
------- Yderligere scanning -------
.
uStart Page = hxxp://www.google.dk/
uInternet Connection Wizard,ShellNext = hxxp://global.acer.com/
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-05 10:28
Windows 5.1.2600 Service Pack 3 FAT NTAPI
scanner skjulte processer ...
scanner skjulte autostarter ...
scanner skjulte filer ...
c:\windows\system32\shmedia.dll 163840 bytes
c:\windows\system32\msvcrt40.dll 65536 bytes
c:\windows\system32\Uninstall_eRecovery.exe 262144 bytes
c:\windows\system32\msvcp60.dll 425984 bytes
c:\windows\system32\msvcirt.dll 65536 bytes
c:\windows\system32\mstlsapi.dll 131072 bytes
c:\windows\system32\mstinit.exe 32768 bytes
c:\windows\system32\msscds32.ax 98304 bytes
c:\windows\system32\mspaint.exe 360448 bytes
c:\windows\system32\msorc32r.dll 32768 bytes
c:\windows\system32\msoert2.dll 131072 bytes
c:\windows\system32\msimtf.dll 163840 bytes
c:\windows\system32\msimsg.dll 884736 bytes
c:\windows\system32\msimg32.dll 32768 bytes
c:\windows\system32\msihnd.dll 294912 bytes
c:\windows\system32\msiexec.exe 98304 bytes
c:\windows\system32\msieftp.dll 262144 bytes
c:\windows\system32\cdm.dll 98304 bytes
c:\windows\system32\msident.dll 65536 bytes
c:\windows\system32\msh263.drv 294912 bytes
c:\windows\system32\msexcl40.dll 327680 bytes
c:\windows\system32\wuapi.dll 589824 bytes
c:\windows\system32\msdtc.exe 32768 bytes
c:\windows\system32\msctfp.dll 98304 bytes
c:\windows\system32\wuauclt.exe 65536 bytes
c:\windows\system32\msconf.dll 98304 bytes
c:\windows\system32\msdxm.ocx 851968 bytes
c:\windows\system32\msapsspc.dll 98304 bytes
c:\windows\system32\mprdim.dll 65536 bytes
c:\windows\system32\mpr.dll 65536 bytes
c:\windows\system32\msaud32.acm 294912 bytes
c:\windows\system32\mobsync.exe 163840 bytes
c:\windows\system32\miniime.tpl 32768 bytes
c:\windows\system32\mfcsubs.dll 32768 bytes
c:\windows\system32\mfc42u.dll 983040 bytes
c:\windows\system32\wuaueng.dll 1835008 bytes
c:\windows\system32\mfc42.dll 1048576 bytes
c:\windows\system32\mfc40u.dll 950272 bytes
c:\windows\system32\mciwave.dll 32768 bytes
c:\windows\system32\lprhelp.dll 32768 bytes
c:\windows\system32\wucltui.dll 327680 bytes
c:\windows\system32\SoftwareDistribution
c:\windows\system32\localui.dll 32768 bytes
c:\windows\system32\lmrt.dll 425984 bytes
c:\windows\system32\licwmi.dll 65536 bytes
c:\windows\system32\wups2.dll 65536 bytes
c:\windows\system32\ksproxy.ax 131072 bytes
c:\windows\system32\kmddsp.tsp 65536 bytes
c:\windows\system32\keymgr.dll 163840 bytes
c:\windows\system32\kd1394.dll 32768 bytes
c:\windows\system32\ipsecsnp.dll 360448 bytes
c:\windows\system32\wuweb.dll 229376 bytes
c:\windows\system32\ipmontr.dll 163840 bytes
c:\windows\system32\ipconfig.exe 65536 bytes
c:\windows\system32\intl.cpl 163840 bytes
c:\windows\system32\inetmib1.dll 32768 bytes
c:\windows\system32\inetcfg.dll 294912 bytes
c:\windows\system32\imjp81k.dll 819200 bytes
c:\windows\system32\imapi.exe 163840 bytes
c:\windows\system32\wuaucpl.cpl.mui 32768 bytes
c:\windows\system32\iasrad.dll 131072 bytes
c:\windows\system32\hlink.dll 98304 bytes
c:\windows\system32\wuaueng.dll.mui 32768 bytes
c:\windows\system32\hid.dll 32768 bytes
c:\windows\system32\hhsetup.dll 65536 bytes
c:\windows\system32\wucltui.dll.mui 32768 bytes
c:\windows\system32\wuapi.dll.mui 32768 bytes
c:\windows\system32\help.exe 32768 bytes
c:\windows\system32\grpconv.exe 65536 bytes
c:\windows\system32\fxsxp32.dll 425984 bytes
c:\windows\system32\fxsres.dll 32768 bytes
c:\windows\system32\fxsext32.dll 32768 bytes
c:\windows\system32\fxsdrv.dll 32768 bytes
c:\windows\system32\framebuf.dll 32768 bytes
c:\windows\system32\eudcedit.exe 196608 bytes
c:\windows\system32\ersvc.dll 32768 bytes
c:\windows\system32\els.dll 196608 bytes
c:\windows\system32\LegitCheckControl.dll 1507328 bytes
c:\windows\system32\dssec.dll 65536 bytes
c:\windows\system32\PreInstall
c:\windows\system32\dxmasf.dll 524288 bytes
c:\windows\system32\dmutil.dll 65536 bytes
c:\windows\system32\ddeshare.exe 32768 bytes
c:\windows\system32\dbnmpntw.dll 32768 bytes
c:\windows\system32\datime.dll 196608 bytes
c:\windows\system32\csrss.exe 32768 bytes
c:\windows\system32\cscui.dll 360448 bytes
c:\windows\system32\cryptui.dll 524288 bytes
c:\windows\system32\cryptsvc.dll 65536 bytes
c:\windows\system32\cryptnet.dll 65536 bytes
c:\windows\system32\cryptdlg.dll 98304 bytes
c:\windows\system32\credui.dll 196608 bytes
c:\windows\system32\conime.exe 32768 bytes
c:\windows\system32\confmsp.dll 360448 bytes
c:\windows\system32\comsnap.dll 196608 bytes
c:\windows\system32\avgrsstx.dll 32768 bytes
c:\windows\system32\comrepl.dll 98304 bytes
c:\windows\system32\cnbjmon.dll 65536 bytes
c:\windows\system32\cmutil.dll 65536 bytes
c:\windows\system32\clipsrv.exe 65536 bytes
c:\windows\system32\clbcatex.dll 131072 bytes
c:\windows\system32\cdosys.dll 2097152 bytes
c:\windows\system32\catsrvps.dll 98304 bytes
c:\windows\system32\capesnpn.dll 163840 bytes
c:\windows\system32\c_g18030.dll 229376 bytes
c:\windows\system32\browser.dll 98304 bytes
c:\windows\system32\dfshim.dll 98304 bytes
c:\windows\system32\mscoree.dll 294912 bytes
c:\windows\system32\mscorier.dll 163840 bytes
c:\windows\system32\mscories.dll 98304 bytes
c:\windows\system32\netfxperf.dll 32768 bytes
c:\windows\system32\browselc.dll 65536 bytes
c:\windows\system32\basesrv.dll 65536 bytes
c:\windows\system32\avifil32.dll 98304 bytes
c:\windows\system32\audiosrv.dll 65536 bytes
c:\windows\system32\attrib.exe 32768 bytes
c:\windows\system32\at.exe 32768 bytes
c:\windows\system32\amstream.dll 98304 bytes
c:\windows\system32\ahui.exe 98304 bytes
c:\windows\system32\adsldp.dll 196608 bytes
c:\windows\system32\actmovie.exe 32768 bytes
c:\windows\system32\aclui.dll 131072 bytes
c:\windows\system32\xmlprovi.dll 65536 bytes
c:\windows\system32\xmlprov.dll 131072 bytes
c:\windows\system32\wuauserv.dll 32768 bytes
c:\windows\system32\wuaueng1.dll 196608 bytes
c:\windows\system32\wscntfy.exe 32768 bytes
c:\windows\system32\wlanapi.dll 98304 bytes
c:\windows\system32\winshfhc.dll 32768 bytes
c:\windows\system32\winbrand.dll 1671168 bytes
c:\windows\system32\windowscodecsext.dll 360448 bytes
c:\windows\system32\gdi32.dll 294912 bytes
c:\windows\system32\windowscodecs.dll 720896 bytes
c:\windows\system32\verclsid.exe 32768 bytes
c:\windows\system32\tzchange.exe 65536 bytes
c:\windows\system32\twext.dll 65536 bytes
c:\windows\system32\tsgqec.dll 65536 bytes
c:\windows\system32\strmfilt.dll 98304 bytes
c:\windows\system32\xpsp3res.dll 753664 bytes
c:\windows\system32\xpsp2res.dll 2949120 bytes
c:\windows\system32\xpsp1res.dll 196608 bytes
c:\windows\system32\slrundll.exe 65536 bytes
c:\windows\system32\slgen.dll 196608 bytes
c:\windows\system32\slextspk.dll 294912 bytes
c:\windows\system32\slcoinst.dll 98304 bytes
c:\windows\system32\setupn.exe 32768 bytes
c:\windows\system32\sdhcinst.dll 32768 bytes
c:\windows\system32\rhttpaa.dll 294912 bytes
c:\windows\system32\rasqec.dll 65536 bytes
c:\windows\system32\qutil.dll 98304 bytes
c:\windows\system32\qcliprov.dll 65536 bytes
c:\windows\system32\MRT.exe 24707072 bytes
c:\windows\system32\qagentrt.dll 294912 bytes
c:\windows\system32\icrav03.rat 32768 bytes
c:\windows\system32\qagent.dll 163840 bytes
c:\windows\system32\idndl.dll 32768 bytes
c:\windows\system32\powercfg.exe 65536 bytes
c:\windows\system32\ieudinit.exe 65536 bytes
c:\windows\system32\xpob2res.dll 458752 bytes
c:\windows\system32\msdbg2.dll 294912 bytes
c:\windows\system32\netsetup.cpl 32768 bytes
c:\windows\system32\nlsdl.dll 32768 bytes
c:\windows\system32\napmontr.dll 196608 bytes
c:\windows\system32\normaliz.dll 32768 bytes
c:\windows\system32\napipsec.dll 32768 bytes
c:\windows\system32\normidna.nls 65536 bytes
c:\windows\system32\mtxparhd.dll 1769472 bytes
c:\windows\system32\normnfc.nls 65536 bytes
c:\windows\system32\mssha.dll 163840 bytes
c:\windows\system32\normnfd.nls 65536 bytes
c:\windows\system32\mssap.dll 163840 bytes
c:\windows\system32\normnfkc.nls 98304 bytes
c:\windows\system32\mmcperf.exe 65536 bytes
c:\windows\system32\normnfkd.nls 65536 bytes
c:\windows\system32\mmcex.dll 425984 bytes
c:\windows\system32\da-DK
c:\windows\system32\spupdsvc.exe 32768 bytes
c:\windows\system32\photometadatahandler.dll 425984 bytes
c:\windows\system32\spmsg.dll 32768 bytes
c:\windows\systcatchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
c:\windows\system32\mmcfxcommon.dll 131072 bytes
c:\windows\system32\mstscax.dll 2064384 bytes
c:\windows\system32\kbdukx.dll 32768 bytes
c:\windows\system32\admparse.dll 98304 bytes
c:\windows\system32\kbdno1.dll 32768 bytes
c:\windows\system32\advpack.dll 131072 bytes
c:\windows\system32\l2gpstore.dll 65536 bytes
c:\windows\system32\advpack.dll.mui 32768 bytes
c:\windows\system32\kbdmlt48.dll 32768 bytes
c:\windows\system32\kbdinmal.dll 32768 bytes
c:\windows\system32\corpol.dll 32768 bytes
c:\windows\system32\ivfsrc.ax 163840 bytes
c:\windows\system32\dxtmsft.dll 360448 bytes
c:\windows\system32\iac25_32.ax 229376 bytes
c:\windows\system32\dxtrans.dll 229376 bytes
c:\windows\system32\hccoin.dll 32768 bytes
c:\windows\system32\html.iec 393216 bytes
c:\windows\system32\extmgr.dll 65536 bytes
c:\windows\system32\icardie.dll 65536 bytes
c:\windows\system32\eapqec.dll 65536 bytes
c:\windows\system32\ie4uinit.exe 196608 bytes
c:\windows\system32\eappprxy.dll 65536 bytes
c:\windows\system32\eapphost.dll 196608 bytes
c:\windows\system32\ie4uinit.exe.mui 32768 bytes
c:\windows\system32\eappgnui.dll 98304 bytes
c:\windows\system32\eappcfg.dll 131072 bytes
c:\windows\system32\IE8Eula.rtf 32768 bytes
c:\windows\system32\eapp3hst.dll 196608 bytes
c:\windows\system32\ieakeng.dll 131072 bytes
c:\windows\system32\eapolqec.dll 32768 bytes
c:\windows\system32\ieaksie.dll 229376 bytes
c:\windows\system32\dxdiagn.dll 2129920 bytes
c:\windows\system32\ieakui.dll 163840 bytes
c:\windows\system32\dot3svc.dll 163840 bytes
c:\windows\system32\ieapfltr.dat 3702784 bytes
c:\windows\system32\dot3msm.dll 65536 bytes
c:\windows\system32\ieapfltr.dll 458752 bytes
c:\windows\system32\dot3dlg.dll 32768 bytes
c:\windows\system32\iedkcs32.dll 393216 bytes
c:\windows\system32\dot3cfg.dll 65536 bytes
c:\windows\system32\dot3api.dll 32768 bytes
c:\windows\system32\iedkcs32.dll.mui 98304 bytes
c:\windows\system32\dimsroam.dll 65536 bytes
c:\windows\system32\ieframe.dll 11075584 bytes
c:\windows\system32\dimsntfy.dll 32768 bytes
c:\windows\system32\dhcpqec.dll 65536 bytes
c:\windows\system32\ieframe.dll.mui 1277952 bytes
c:\windows\system32\d3d9.dll 1703936 bytes
c:\windows\system32\iepeers.dll 196608 bytes
c:\windows\system32\btpanui.dll 65536 bytes
c:\windows\system32\iernonce.dll 65536 bytes
c:\windows\system32\bitsprx3.dll 32768 bytes
c:\windows\system32\iertutil.dll 1998848 bytes
c:\windows\system32\auditusr.exe 32768 bytes
c:\windows\system32\iesetup.dll 98304 bytes
c:\windows\system32\ativtmxx.dll 32768 bytes
c:\windows\system32\ieui.dll 196608 bytes
c:\windows\system32\ativmvxx.ax 32768 bytes
c:\windows\system32\ieuinit.inf 65536 bytes
c:\windows\system32\ativdaxx.ax 32768 bytes
c:\windows\system32\imgutil.dll 65536 bytes
c:\windows\system32\ati3duag.dll 1900544 bytes
c:\windows\system32\inetcpl.cpl 1474560 bytes
c:\windows\system32\ati3d1ag.dll 884736 bytes
c:\windows\system32\inseng.dll 98304 bytes
c:\windows\system32\ati2dvag.dll 229376 bytes
c:\windows\system32\jscript.dll 753664 bytes
c:\windows\system32\ati2dvaa.dll 393216 bytes
c:\windows\system32\jsproxy.dll 32768 bytes
c:\windows\system32\ati2cqag.dll 229376 bytes
c:\windows\system32\licmgr10.dll 65536 bytes
c:\windows\system32\aaclient.dll 163840 bytes
c:\windows\system32\msfeeds.dll 622592 bytes
c:\windows\system32\proxycfg.exe 32768 bytes
c:\windows\system32\pidgen.dll 32768 bytes
c:\windows\system32\msfeedsbs.dll 65536 bytes
c:\windows\system32\msxml6r.dll 98304 bytes
c:\windows\system32\msfeedssync.exe 32768 bytes
c:\windows\system32\mshta.exe 65536 bytes
c:\windows\system32\mshta.exe.mui 32768 bytes
c:\windows\system32\mshtml.dll 5963776 bytes
c:\windows\system32\mshtml.tlb 1671168 bytes
c:\windows\system32\mshtmled.dll 98304 bytes
c:\windows\system32\mshtmler.dll 65536 bytes
c:\windows\system32\msls31.dll 163840 bytes
c:\windows\system32\msrating.dll 196608 bytes
c:\windows\system32\msrating.dll.mui 65536 bytes
c:\windows\system32\mstime.dll 622592 bytes
c:\windows\system32\occache.dll 131072 bytes
c:\windows\system32\pngfilt.dll 65536 bytes
c:\windows\system32\tdc.ocx 98304 bytes
c:\windows\system32\ticrf.rat 32768 bytes
c:\windows\system32\url.dll 131072 bytes
c:\windows\system32\urlmon.dll 1212416 bytes
c:\windows\system32\vbscript.dll 425984 bytes
c:\windows\system32\webcheck.dll 262144 bytes
c:\windows\system32\WinFXDocObj.exe 229376 bytes
c:\windows\system32\wininet.dll 917504 bytes
c:\windows\system32\dot3gpclnt.dll 65536 bytes
c:\windows\system32\microsoft.managementconsole.dll 196608 bytes
c:\windows\system32\msxml4.dll 1310720 bytes
c:\windows\system32\msxml4r.dll 98304 bytes
c:\windows\system32\msxml3.dll 1114112 bytes
c:\windows\system32\strmdll.dll 262144 bytes
c:\windows\system32\TZLog.log 229376 bytes
c:\windows\system32\SynTPCo2.dll 98304 bytes
c:\windows\system32\VGAunistlog.ini 98304 bytes
c:\windows\system32\sisgrv.dll 3473408 bytes
c:\windows\system32\sis660.bin 65536 bytes
c:\windows\system32\sis741.bin 65536 bytes
c:\windows\system32\sis760.bin 65536 bytes
c:\windows\system32\sisgl.dll 1572864 bytes
c:\windows\system32\SiSBase.dll 65536 bytes
c:\windows\system32\SiSParse.dll 262144 bytes
c:\windows\system32\SiSInst.dll 196608 bytes
c:\windows\system32\SiSPIns2.dll 32768 bytes
c:\windows\system32\SiSPower.dll 65536 bytes
c:\windows\system32\sistray.exe 262144 bytes
c:\windows\system32\SiSApCom.dll 163840 bytes
c:\windows\system32\SiSHook.dll 65536 bytes
c:\windows\system32\TVMode.dll 131072 bytes
c:\windows\system32\mdmxsdk.dll 98304 bytes
c:\windows\system32\hsfci012.dll 65536 bytes
c:\windows\system32\ChCfg.exe 65536 bytes
c:\windows\system32\ALSNDMGR.CPL 17760256 bytes
c:\windows\system32\ALSNDMGR.WAV 163840 bytes
c:\windows\system32\RTLCPL.EXE 9306112 bytes
c:\windows\system32\RtlCPAPI.dll 163840 bytes
c:\windows\system32\CSH.DLL 65536 bytes
c:\windows\system32\java.exe 163840 bytes
c:\windows\system32\javaw.exe 163840 bytes
c:\windows\system32\javaws.exe 163840 bytes
c:\windows\system32\deploytk.dll 425984 bytes
c:\windows\system32\javacpl.cpl 98304 bytes
c:\windows\system32\wmv9dmod.dll 819200 bytes
c:\windows\system32\wmpns.dll 229376 bytes
c:\windows\system32\spdwnwxp.exe 32768 bytes
c:\windows\system32\HAL.DLL 163840 bytes
c:\windows\system32\wkssvc.dll 163840 bytes
c:\windows\system32\winspool.drv 163840 bytes
c:\windows\system32\win32spl.dll 131072 bytes
c:\windows\system32\userinit.exe 32768 bytes
c:\windows\system32\untfs.dll 327680 bytes
c:\windows\system32\ulib.dll 294912 bytes
c:\windows\system32\tcpmonui.dll 65536 bytes
c:\windows\system32\syssetup.dll 1015808 bytes
c:\windows\system32\sysdm.cpl 327680 bytes
c:\windows\system32\srvsvc.dll 98304 bytes
c:\windows\system32\sorttbls.nls 32768 bytes
c:\windows\system32\smss.exe 65536 bytes
c:\windows\system32\setupapi.dll 1015808 bytes
c:\windows\system32\sessmgr.exe 163840 bytes
c:\windows\system32\scardsvr.exe 98304 bytes
c:\windows\system32\savedump.exe 32768 bytes
c:\windows\system32\samsrv.dll 458752 bytes
c:\windows\system32\samlib.dll 65536 bytes
c:\windows\system32\rshx32.dll 65536 bytes
c:\windows\system32\rastapi.dll 65536 bytes
c:\windows\system32\rasman.dll 65536 bytes
c:\windows\system32\rasdlg.dll 688128 bytes
c:\windows\system32\rasauto.dll 98304 bytes
c:\windows\system32\rasapi32.dll 262144 bytes
c:\windows\system32\printui.dll 589824 bytes
c:\windows\system32\perfctrs.dll 65536 bytes
c:\windows\system32\olecnv32.dll 65536 bytes
c:\windows\system32\oleaut32.dll 557056 bytes
c:\windows\system32\nwprovau.dll 163840 bytes
c:\windows\system32\ntvdm.exe 425984 bytes
c:\windows\system32\ntprint.dll 98304 bytes
c:\windows\system32\ntlsapi.dll 32768 bytes
c:\windows\system32\nslookup.exe 98304 bytes
c:\windows\system32\msv1_0.dll 163840 bytes
scanning gennemført med succes
skjulte filer: 352
**************************************************************************
.
--------------------- DLLs startet under kørende Processer ---------------------
- - - - - - - > 'winlogon.exe'(588)
c:\programmer\SUPERAntiSpyware\SASWINLO.DLL
.
Gennemført tid: 2009-06-05 10:29
ComboFix-quarantined-files.txt 2009-06-05 08:29
Pre-Kørsel: 26.701.889.536 byte ledig
Post-Kørsel: 26.756.251.648 byte ledig
WindowsXP-KB310994-SP2-Home-BootDisk-DAN.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
552 --- E O F --- 2009-06-05 06:59
HIJACKTHIS :
____________________________________
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:56:56, on 05-06-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Acer\eManager\anbmServ.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\Programmer\Java\jre6\bin\jqs.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmer\Java\jre6\bin\jusched.exe
C:\Programmer\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\sistray.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Programmer\AVG\AVG8\avgcsrvx.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmer\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programmer\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmer\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programmer\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SynTPLpr] C:\Programmer\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmer\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programmer\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Programmer\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programmer\Java\jre6\bin\jqs.exe
--
End of file - 5458 bytes
