Avatar billede hknak Nybegynder
10. december 2009 - 14:46 Der er 14 kommentarer

Langsommelig pc, Security Update PS3-opgraderingsproblem og meget stor HD-aktivitet

Kære Eksperten,

Jeg har en LENOVO W500 med VISTA, som har en række udfordringer:
1. den kan ikke installere Security Update for SQL Service Pack 3 (KB970892)
2. PC'en er blevet stadig langsommere.
3. Der er konstant en stor aktivitet på min harddrive.

Jeg har kørt CCleaner og renset ud samt forsøgt at køre Malwarebytes Antio-Malware, som dog går ned. Har hentet nedenstående log fra Hijackthis.

Hvad er der galt - hvordan kan jeg installere opdateringen?

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:45:16, on 10-12-2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Windows\System32\TpShocks.exe
C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
C:\Windows\System32\rundll32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe
C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\WinTV\EPG Services\System\EPGClient.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Windows\PixArt\PAC207\Monitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUIAux.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\QNAP\QGet\QGetIEMenuExt.exe
C:\Program Files\ThinkPad\Bluetooth Software\BtStackServer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Henrik Knak\Downloads\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton 360\Engine\3.0.0.134\IPSBHO.DLL
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Hjælp til tilmelding til Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe /r
O4 - HKLM\..\Run: [TpShocks] TpShocks.exe
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
O4 - HKLM\..\Run: [LPMailChecker] C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe
O4 - HKLM\..\Run: [AMSG] C:\Program Files\ThinkVantage\AMSG\Amsg.exe /startup
O4 - HKLM\..\Run: [PWMTRV] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog
O4 - HKLM\..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe
O4 - HKLM\..\Run: [ACWlIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWlIcon.exe
O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [Monitor] C:\Windows\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Download by QGet - C:\Program Files\QNAP\QGet\QGetCatch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki ... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Send billede til &Bluetooth-enhed... - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send siden til &Bluetooth-enhed... - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Blog det - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog det i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O13 - Gopher Prefix:
O15 - Trusted Zone: http://*.danid.dk
O15 - Trusted Zone: *.danskebank.dk
O15 - Trusted Zone: http://*.danid.dk (HKLM)
O16 - DPF: {493ACF15-5CD9-4474-82A6-91670C3DD66E} (LinkedIn ContactFinderControl) - http://www.linkedin.com/cab/LinkedInContactFinderControl.cab
O16 - DPF: {4F2A3649-7A9F-4950-9C31-409FAC6FC7C8} (IssueUtilCtrl Class) - https://danid.dk/csp/authenticode/csp.exe
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {937FE81C-FECF-4A55-9754-49D6D6550EDC} (NAS NVR(V) Monitor) - http://192.168.0.192:8080/cgi-bin/NNVRVMon.cab
O16 - DPF: {E1B26101-23FB-4855-9171-F79F29CC7728} (UltraCamX Class) - http://192.168.0.240/UltraCamX.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
O23 - Service: EPGService - Hauppauge Computer Works - C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Google Desktop-administrator 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Tjenesten Google Update (gupdate1ca744bea1cb6c0) (gupdate1ca744bea1cb6c0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HauppaugeTVServer - Hauppauge Computer Works - C:\PROGRA~1\WinTV\HCWTVS~1.EXE
O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\Windows\system32\ibmpmsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files\Norton 360\Engine\3.0.0.134\ccSvcHst.exe
O23 - Service: Power Manager DBC Service - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: System Update (SUService) - Lenovo Group Limited - C:\Program Files\Lenovo\System Update\SUService.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\Windows\System32\TPHDEXLG.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TSS Core Service (TSSCoreService) - Lenovo - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
O23 - Service: TVT Backup Protection Service - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
O23 - Service: TVT Scheduler - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
O23 - Service: TVT Windows Update Monitor (TVT_UpdateMonitor) - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 16220 bytes
Avatar billede f-arn Guru
10. december 2009 - 15:39 #1
ent og gem Combofix på dit skrivebord:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Højreklik på skrivebordet og vælg ny->tekstdokument og kopier  indholdet mellem  linierne ind og gem filen som CFScript.txt

Du skal sikre dig at den ikke kommer til at hedde CFScript.txt.txt

--------------

Killall::
Snapshot::


-------------

Da Combofix kan konflikte med din antivirus er det vigtigt at du deaktiverer den.

Tag så fat i den nye fil med musen, og før den hen over Combofix-filen, hvorefter du "giver slip" med musen.
http://www.fromsej.saknet.dk/billeder/cfscript.gif


Så skulle Combofix gerne give sig til at arbejde. Muligvis vil den kræve en genstart, hvilket du skal tillade. Du bør ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.
Når Combofix er færdig, og efter det (muligvis) har genstartet, skulle der gerne åbnes en logfil: combofix.txt som ligger her C:\ Combofix.txt

Indholdet af denne fil må du gerne lægge herind.
Avatar billede hknak Nybegynder
10. december 2009 - 16:24 #2
Jeg kan nu ikke starte en række programmer, fx iexplore.exe med fejlteksten "Der blev forsøgt en ugyldig handling på en registreringsdatabasenøgle, som er blevet mærket til sletning."

Det lykkes mig alligevel at få filen ud via en usb-nøgle og her er den:

ComboFix 09-12-09.04 - Henrik Knak 10-12-2009  15:54:21.1.2 - x86
Microsoft® Windows Vista™ Business  6.0.6002.2.1252.45.1030.18.2519.1063 [GMT 1:00]
Kører fra: c:\users\Henrik Knak\Desktop\ComboFix.exe
Kommandoer benyttet :: c:\users\Henrik Knak\Desktop\CFScript.txt
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

(((((((((((((((((((((((((((((((((((((((  Andet, der er slettet  )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\$recycle.bin\S-1-5-21-4254445121-1549904427-1429176171-500
C:\install.exe
Q:\Autorun.inf
S:\Autorun.inf

.
(((((((((((((((((((((((((((((  Filer skabt fra 2009-11-10 til 2009-12-10  )))))))))))))))))))))))))))))))))))
.

2009-12-10 15:02 . 2009-12-10 15:11    --------    dc----w-    c:\users\Henrik Knak\AppData\Local\temp
2009-12-10 15:02 . 2009-12-10 15:02    --------    dc----w-    c:\users\Nina Knak\AppData\Local\temp
2009-12-10 15:02 . 2009-12-10 15:02    --------    dc----w-    c:\users\Josephine Knak\AppData\Local\temp
2009-12-10 10:11 . 2009-12-10 10:11    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\Malwarebytes
2009-12-10 10:11 . 2009-12-03 15:14    38224    -c--a-w-    c:\windows\system32\drivers\mbamswissarmy.sys
2009-12-10 10:11 . 2009-12-10 10:11    --------    dc----w-    c:\programdata\Malwarebytes
2009-12-10 10:11 . 2009-12-10 10:11    --------    dc----w-    c:\program files\Malwarebytes' Anti-Malware
2009-12-10 10:11 . 2009-12-03 15:13    19160    -c--a-w-    c:\windows\system32\drivers\mbam.sys
2009-12-10 09:44 . 2009-12-10 09:44    --------    dc----w-    c:\program files\CCleaner
2009-12-10 08:39 . 2009-12-10 08:39    --------    dc----w-    c:\users\Henrik Knak\AppData\Local\Apps
2009-12-09 10:06 . 2009-11-09 12:31    24064    -c--a-w-    c:\windows\system32\nshhttp.dll
2009-12-09 10:06 . 2009-11-09 10:36    411648    -c--a-w-    c:\windows\system32\drivers\http.sys
2009-12-09 10:06 . 2009-11-09 12:30    30720    -c--a-w-    c:\windows\system32\httpapi.dll
2009-12-09 07:56 . 2009-10-07 11:36    243712    -c--a-w-    c:\windows\system32\rastls.dll
2009-12-07 09:03 . 2009-12-07 09:03    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\Intel
2009-12-03 19:07 . 2009-12-03 19:07    --------    dc----w-    c:\program files\Common Files\DivX Shared
2009-12-03 19:07 . 2009-12-03 19:08    --------    dc----w-    c:\program files\DivX
2009-11-28 20:55 . 2009-11-28 20:55    --------    dc----w-    c:\program files\TurnTool
2009-11-28 20:55 . 2009-11-28 20:55    --------    dc----w-    c:\users\Henrik Knak\AppData\Local\TurnTool
2009-11-26 22:19 . 2009-11-26 22:19    --------    dc----w-    c:\program files\Common Files\PCSuite
2009-11-26 22:17 . 2008-08-26 08:26    18816    -c--a-w-    c:\windows\system32\drivers\pccsmcfd.sys
2009-11-26 22:16 . 2009-11-26 22:16    --------    dc----w-    c:\program files\PC Connectivity Solution
2009-11-26 20:16 . 2009-10-29 09:17    2048    -c--a-w-    c:\windows\system32\tzres.dll
2009-11-25 23:10 . 2009-08-11 16:44    1401856    -c--a-w-    c:\windows\system32\msxml6.dll
2009-11-25 23:10 . 2009-08-11 16:44    1248768    -c--a-w-    c:\windows\system32\msxml3.dll
2009-11-23 14:17 . 2009-11-23 14:17    --------    dc----w-    c:\program files\iPod
2009-11-23 14:17 . 2009-11-23 14:17    --------    dc----w-    c:\program files\iTunes
2009-11-23 14:11 . 2009-11-23 14:12    --------    dc----w-    c:\program files\QuickTime
2009-11-16 08:40 . 2009-11-16 08:40    --------    dc----w-    c:\program files\Windows Portable Devices
2009-11-14 23:53 . 2009-09-10 02:00    92672    -c--a-w-    c:\windows\system32\UIAnimation.dll
2009-11-14 23:53 . 2009-09-10 02:01    3023360    -c--a-w-    c:\windows\system32\UIRibbon.dll
2009-11-14 23:53 . 2009-09-10 02:00    1164800    -c--a-w-    c:\windows\system32\UIRibbonRes.dll
2009-11-14 23:51 . 2009-10-08 21:07    4096    -c--a-w-    c:\windows\system32\oleaccrc.dll
2009-11-14 23:51 . 2009-10-08 21:08    555520    -c--a-w-    c:\windows\system32\UIAutomationCore.dll
2009-11-14 23:51 . 2009-10-08 21:08    234496    -c--a-w-    c:\windows\system32\oleacc.dll
2009-11-14 22:30 . 2009-11-14 22:30    --------    dc----w-    c:\users\Gæst\AppData\Local\Broadcom
2009-11-11 07:56 . 2009-08-14 13:27    2036736    -c--a-w-    c:\windows\system32\win32k.sys
2009-11-11 07:56 . 2009-08-10 12:35    355328    -c--a-w-    c:\windows\system32\WSDApi.dll

.
((((((((((((((((((((((((((((((((((((((((  Find3M Rapport  ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-10 15:04 . 2008-11-06 01:17    3204    ----a-w-    c:\windows\bthservsdp.dat
2009-12-10 14:50 . 2008-11-15 15:43    1048576    --sha-w-    c:\users\Gæst\NTUSER.DAT
2009-12-10 10:01 . 2008-11-06 01:53    --------    dc----w-    c:\program files\Microsoft SQL Server
2009-12-09 14:44 . 2006-11-02 11:18    --------    dc----w-    c:\program files\Windows Mail
2009-12-09 10:12 . 2008-11-06 01:49    --------    dc----w-    c:\programdata\Microsoft Help
2009-12-09 09:00 . 2009-12-09 09:00    2747440    -c--a-w-    c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091209.041\CCERASER.DLL
2009-12-06 18:26 . 2009-04-28 20:33    --------    dc----w-    c:\programdata\PC Suite
2009-12-04 07:45 . 2009-12-04 07:45    484976    -c--a-w-    c:\programdata\Google\Google Toolbar\Update\gtb9C6F.tmp.exe
2009-12-03 19:09 . 2008-11-15 15:14    --------    dc----w-    c:\program files\Google
2009-12-01 18:45 . 2008-04-25 22:15    95568    -c--a-w-    c:\windows\system32\perfc006.dat
2009-12-01 18:45 . 2008-04-25 22:15    512956    -c--a-w-    c:\windows\system32\perfh006.dat
2009-11-28 20:34 . 2009-03-22 17:53    0    -c--a-w-    c:\users\Henrik Knak\temp.dat
2009-11-26 22:19 . 2009-07-06 21:26    --------    dc----w-    c:\program files\Common Files\Nokia
2009-11-26 22:19 . 2009-04-28 17:03    --------    dc----w-    c:\program files\Nokia
2009-11-26 22:19 . 2009-04-28 17:08    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\Nokia
2009-11-26 22:08 . 2009-11-26 22:08    95232    -c--a-w-    c:\programdata\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Installer\CommonCustomActions\pcswpcsi.exe
2009-11-26 22:08 . 2009-11-26 22:08    8192    -c--a-w-    c:\programdata\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Installer\CommonCustomActions\UninstCCD.exe
2009-11-26 22:08 . 2009-11-26 22:08    61440    -c--a-w-    c:\programdata\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
2009-11-26 22:08 . 2009-11-26 22:08    10240    -c--a-w-    c:\programdata\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Installer\CommonCustomActions\UninstPCS.exe
2009-11-26 22:08 . 2009-04-28 17:02    --------    dc----w-    c:\programdata\Installations
2009-11-26 22:08 . 2009-11-26 22:08    33652688    -c--a-w-    c:\programdata\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Nokia_PC_Suite_7_1_40_1_dan.exe
2009-11-26 20:56 . 2008-12-03 22:51    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\dvdcss
2009-11-23 20:10 . 2008-11-12 21:52    1356    -c--a-w-    c:\users\Henrik Knak\AppData\Local\d3d9caps.dat
2009-11-23 14:17 . 2009-01-10 15:58    --------    dc----w-    c:\program files\Common Files\Apple
2009-11-23 14:05 . 2009-11-23 14:05    79144    -c--a-w-    c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-11-21 06:40 . 2009-12-09 07:57    916480    -c--a-w-    c:\windows\system32\wininet.dll
2009-11-21 06:34 . 2009-12-09 07:57    109056    -c--a-w-    c:\windows\system32\iesysprep.dll
2009-11-21 06:34 . 2009-12-09 07:57    71680    -c--a-w-    c:\windows\system32\iesetup.dll
2009-11-21 04:59 . 2009-12-09 07:57    133632    -c--a-w-    c:\windows\system32\ieUnatt.exe
2009-11-16 08:40 . 2006-11-02 10:25    665600    ----a-w-    c:\windows\inf\drvindex.dat
2009-11-16 08:31 . 2009-11-16 08:31    0    -c-ha-w-    c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
2009-11-16 08:30 . 2009-11-16 08:30    0    -c-ha-w-    c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2009-11-14 22:30 . 2008-11-15 15:44    99864    -c--a-w-    c:\users\Gæst\AppData\Local\GDIPFONTCACHEV1.DAT
2009-11-10 07:51 . 2008-11-06 01:39    --------    dc----w-    c:\program files\Java
2009-11-08 22:46 . 2009-11-08 22:46    432246    -c--a-r-    c:\users\Henrik Knak\AppData\Roaming\Microsoft\Installer\{B81CAB9E-7955-4AA3-8BA6-3DD71056AC29}\_63F1617EA4C480D1BE0B72.exe
2009-11-08 22:46 . 2009-11-08 16:01    --------    dc----w-    c:\program files\TRENDnet
2009-11-08 16:01 . 2009-11-08 16:01    297173    -c--a-r-    c:\users\Henrik Knak\AppData\Roaming\Microsoft\Installer\{2DB8CA48-6DDB-4FCB-8F65-02D7513FF0DA}\_C69774C29F45AD66328E49.exe
2009-10-23 10:44 . 2008-11-06 01:23    --------    dc----w-    c:\program files\ThinkPad
2009-10-19 20:00 . 2009-01-31 19:12    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\Skype
2009-10-19 14:37 . 2009-01-31 19:19    --------    dc----w-    c:\users\Henrik Knak\AppData\Roaming\skypePM
2009-10-11 03:17 . 2008-12-05 19:18    411368    -c--a-w-    c:\windows\system32\deploytk.dll
2009-10-06 10:52 . 2009-04-28 17:03    91136    -c--a-w-    c:\windows\system32\nmwcdcls.dll
2009-10-01 01:02 . 2009-11-14 23:52    2537472    -c--a-w-    c:\windows\system32\wpdshext.dll
2009-10-01 01:02 . 2009-11-14 23:52    30208    -c--a-w-    c:\windows\system32\WPDShextAutoplay.exe
2009-10-01 01:02 . 2009-11-14 23:52    334848    -c--a-w-    c:\windows\system32\PortableDeviceApi.dll
2009-10-01 01:02 . 2009-11-14 23:52    87552    -c--a-w-    c:\windows\system32\WPDShServiceObj.dll
2009-10-01 01:02 . 2009-11-14 23:52    31232    -c--a-w-    c:\windows\system32\BthMtpContextHandler.dll
2009-10-01 01:01 . 2009-11-14 23:52    546816    -c--a-w-    c:\windows\system32\wpd_ci.dll
2009-10-01 01:01 . 2009-11-14 23:52    160256    -c--a-w-    c:\windows\system32\PortableDeviceTypes.dll
2009-10-01 01:01 . 2009-11-14 23:52    60928    -c--a-w-    c:\windows\system32\PortableDeviceConnectApi.dll
2009-10-01 01:01 . 2009-11-14 23:52    350208    -c--a-w-    c:\windows\system32\WPDSp.dll
2009-10-01 01:01 . 2009-11-14 23:52    196608    -c--a-w-    c:\windows\system32\PortableDeviceWMDRM.dll
2009-10-01 01:01 . 2009-11-14 23:52    100864    -c--a-w-    c:\windows\system32\PortableDeviceClassExtension.dll
2009-10-01 01:01 . 2009-11-14 23:52    81920    -c--a-w-    c:\windows\system32\wpdbusenum.dll
2009-10-01 01:01 . 2009-11-14 23:52    40448    -c--a-w-    c:\windows\system32\drivers\WpdUsb.sys
2009-10-01 01:01 . 2009-11-14 23:52    226816    -c--a-w-    c:\windows\system32\WpdMtp.dll
2009-10-01 01:01 . 2009-11-14 23:52    61952    -c--a-w-    c:\windows\system32\WpdMtpUS.dll
2009-10-01 01:01 . 2009-11-14 23:52    33280    -c--a-w-    c:\windows\system32\WpdConns.dll
2009-09-25 02:10 . 2009-11-14 23:52    974848    -c--a-w-    c:\windows\system32\WindowsCodecs.dll
2009-09-25 02:07 . 2009-11-14 23:52    189440    -c--a-w-    c:\windows\system32\WindowsCodecsExt.dll
2009-09-25 02:04 . 2009-11-14 23:52    321024    -c--a-w-    c:\windows\system32\PhotoMetadataHandler.dll
2009-09-25 01:49 . 2009-11-14 23:52    1554432    -c--a-w-    c:\windows\system32\xpsservices.dll
2009-09-25 01:48 . 2009-11-14 23:52    351232    -c--a-w-    c:\windows\system32\XpsPrint.dll
2009-09-25 01:38 . 2009-11-14 23:52    847360    -c--a-w-    c:\windows\system32\OpcServices.dll
2009-09-25 01:36 . 2009-11-14 23:52    280064    -c--a-w-    c:\windows\system32\XpsGdiConverter.dll
2009-09-25 01:35 . 2009-11-14 23:52    135680    -c--a-w-    c:\windows\system32\XpsRasterService.dll
2009-09-25 01:33 . 2009-11-14 23:52    195584    -c--a-w-    c:\windows\system32\dxdiagn.dll
2009-09-25 01:33 . 2009-11-14 23:52    829440    -c--a-w-    c:\windows\system32\d3d10warp.dll
2009-09-25 01:33 . 2009-11-14 23:52    369664    -c--a-w-    c:\windows\system32\WMPhoto.dll
2009-09-25 01:32 . 2009-11-14 23:52    252928    -c--a-w-    c:\windows\system32\dxdiag.exe
2009-09-25 01:31 . 2009-11-14 23:52    519680    -c--a-w-    c:\windows\system32\d3d11.dll
2009-09-25 01:31 . 2009-11-14 23:52    486912    -c--a-w-    c:\windows\system32\d3d10level9.dll
2009-09-25 01:31 . 2009-11-14 23:52    161280    -c--a-w-    c:\windows\system32\d3d10_1.dll
2009-09-25 01:31 . 2009-11-14 23:52    218112    -c--a-w-    c:\windows\system32\d3d10_1core.dll
2009-09-25 01:31 . 2009-11-14 23:52    1030144    -c--a-w-    c:\windows\system32\d3d10.dll
2009-09-25 01:31 . 2009-11-14 23:52    828928    -c--a-w-    c:\windows\system32\d2d1.dll
2009-09-25 01:30 . 2009-11-14 23:52    190464    -c--a-w-    c:\windows\system32\d3d10core.dll
2009-09-25 01:30 . 2009-11-14 23:52    481792    -c--a-w-    c:\windows\system32\dxgi.dll
2009-09-25 01:27 . 2009-11-14 23:52    634880    -c--a-w-    c:\windows\system32\drivers\dxgkrnl.sys
2009-09-25 01:27 . 2009-11-14 23:52    37888    -c--a-w-    c:\windows\system32\cdd.dll
2009-09-25 01:27 . 2009-11-14 23:52    793088    -c--a-w-    c:\windows\system32\FntCache.dll
2009-09-25 01:27 . 2009-11-14 23:52    1064448    -c--a-w-    c:\windows\system32\DWrite.dll
2009-09-24 22:54 . 2009-11-14 23:52    258048    -c--a-w-    c:\windows\system32\winspool.drv
2009-09-24 22:54 . 2009-11-14 23:52    667648    -c--a-w-    c:\windows\system32\printfilterpipelinesvc.exe
2009-09-24 22:54 . 2009-11-14 23:52    26112    -c--a-w-    c:\windows\system32\printfilterpipelineprxy.dll
2009-09-22 08:00 . 2009-12-10 07:54    259440    ----a-w-    c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091209.041\ECMSVR32.DLL
2009-09-22 08:00 . 2009-12-02 00:43    259440    ----a-w-    c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091201.025\ECMSVR32.DLL
2009-09-15 08:00 . 2009-12-02 00:43    2747952    ----a-w-    c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091201.025\CCERASER.DLL
2009-09-14 09:29 . 2009-10-14 00:57    144896    -c--a-w-    c:\windows\system32\drivers\srv2.sys
2008-11-06 01:00 . 2008-11-06 00:59    8192    --sha-w-    c:\windows\Users\Default\NTUSER.DAT
.

(((((((((((((((((((((((((((((((((((  Start steder i reg.basen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke 
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray" [X]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-01-01 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe -hide" [X]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun" [X]
"cssauth"="c:\program files\Lenovo\Client Security Solution\cssauth.exe silent" [X]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-11-21 820520]
"TPFNF7"="c:\program files\Lenovo\NPDIRECT\TPFNF7SP.exe" [2008-07-30 60192]
"TpShocks"="TpShocks.exe" [2008-06-07 181536]
"TPHOTKEY"="c:\program files\Lenovo\HOTKEY\TPOSDSVC.exe" [2008-03-24 68464]
"EZEJMNAP"="c:\progra~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe" [2008-06-04 242976]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-06-12 150040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-06-12 170520]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-06-12 145944]
"TVT Scheduler Proxy"="c:\program files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe" [2008-05-25 487424]
"LPManager"="c:\progra~1\THINKV~1\PrdCtr\LPMGR.exe" [2008-08-31 165208]
"LPMailChecker"="c:\progra~1\THINKV~1\PrdCtr\LPMLCHK.exe" [2008-08-31 124248]
"AMSG"="c:\program files\ThinkVantage\AMSG\Amsg.exe" [2009-03-06 458752]
"PWMTRV"="c:\progra~1\ThinkPad\UTILIT~1\PWMTR32V.DLL" [2008-09-18 632096]
"BLOG"="c:\progra~1\ThinkPad\UTILIT~1\BTVLogEx.DLL" [2008-09-18 214576]
"ACTray"="c:\program files\ThinkPad\ConnectUtilities\ACTray.exe" [2008-09-29 431392]
"ACWlIcon"="c:\program files\ThinkPad\ConnectUtilities\ACWlIcon.exe" [2008-09-29 148768]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-11-23 30192]

c:\users\G‘st\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

c:\users\Nina Knak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\ThinkPad\Bluetooth Software\BTTray.exe [2009-7-1 795936]
Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2009-7-14 67128]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~4\GoogleDesktopNetwork3.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]
@="FSFilter Activity Monitor"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):95,04,1b,b3,66,1a,ca,01

R0 SymEFA;Symantec Extended File Attributes;c:\windows\System32\drivers\N360\0300000.086\SymEFA.sys [21-08-2009 12:26 310320]
R0 TPDIGIMN;TPDIGIMN;c:\windows\System32\drivers\ApsHM86.sys [15-05-2008 01:21 19496]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\System32\drivers\N360\0300000.086\BHDrvx86.sys [21-08-2009 12:26 258608]
R1 ccHP;Symantec Hash Provider;c:\windows\System32\drivers\N360\0300000.086\cchpx86.sys [21-08-2009 12:26 482352]
R1 IDSVix86;IDSVix86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20091111.001\IDSvix86.sys [11-11-2009 05:16 343088]
R1 lenovo.smi;Lenovo System Interface Driver;c:\windows\System32\drivers\smiif32.sys [20-05-2008 03:12 13480]
R2 EPGService;EPGService;c:\progra~1\WinTV\EPG Services\System\EPGService.exe [15-11-2008 11:31 437248]
R2 N360;Norton 360;c:\program files\Norton 360\Engine\3.0.0.134\ccSvcHst.exe [21-08-2009 12:26 115560]
R2 Power Manager DBC Service;Power Manager DBC Service;c:\program files\ThinkPad\Utilities\PWMDBSVC.exe [06-11-2008 02:39 66848]
R2 TPHKSVC;On Screen Display;c:\program files\Lenovo\HOTKEY\TPHKSVC.exe [24-09-2008 03:20 53325]
R2 TVT Backup Protection Service;TVT Backup Protection Service;c:\program files\Lenovo\Rescue and Recovery\rrpservice.exe [25-05-2008 01:17 520192]
R3 amdkmdag;amdkmdag;c:\windows\System32\drivers\atikmdag.sys [06-11-2008 02:27 3881472]
R3 amdkmdap;amdkmdap;c:\windows\System32\drivers\atikmpag.sys [06-11-2008 02:27 54784]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\System32\drivers\btwl2cap.sys [23-10-2009 11:44 29472]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\System32\drivers\e1y6032.sys [06-11-2008 01:55 225408]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [26-08-2009 09:00 102448]
R3 intelkmd;intelkmd;c:\windows\System32\drivers\igdkmd32.sys [06-11-2008 02:27 2381312]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\System32\drivers\NETw5v32.sys [29-08-2008 08:48 3664384]
R3 SYMNDISV;Symantec Network Filter Driver;c:\windows\System32\drivers\N360\0300000.086\symndisv.sys [21-08-2009 12:26 39984]
R3 TVTI2C;Lenovo SM bus driver;c:\windows\System32\drivers\tvti2c.sys [23-02-2008 00:54 37312]
S1 tvtumon;tvtumon;c:\windows\System32\drivers\tvtumon.sys [25-05-2008 00:28 48192]
S2 gupdate1ca744bea1cb6c0;Tjenesten Google Update (gupdate1ca744bea1cb6c0);c:\program files\Google\Update\GoogleUpdate.exe [03-12-2009 20:07 133104]
S2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\program files\Lenovo\Rescue and Recovery\UpdateMonitor.exe [25-05-2008 00:28 253952]
S3 FontCache;Tjenesten Windows-skrifttypecache;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21-01-2008 03:24 21504]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [05-10-2009 07:48 54632]
S3 fsssvc;Windows Live-tjenesten Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [05-08-2009 21:48 704864]
S3 GoogleDesktopManager-110309-193829;Google Desktop-administrator 5.9.911.3589;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [23-11-2009 15:53 30192]
S3 HauppaugeTVServer;HauppaugeTVServer;c:\progra~1\WinTV\HCWTVS~1.EXE [15-11-2008 11:29 823296]
S3 hcw95bda;Hauppauge MOD7700 Tuner Driver;c:\windows\System32\drivers\hcw95bda.sys [15-11-2008 11:24 560640]
S3 hcw95rc;Hauppauge MOD7700 IR Driver;c:\windows\System32\drivers\hcw95rc.sys [15-11-2008 11:24 15616]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\System32\drivers\mbamswissarmy.sys [10-12-2009 11:11 38224]
S3 PAC207;PC Camera;c:\windows\System32\drivers\PFC027.SYS [29-05-2007 13:30 508160]
S3 USBAAPL;Apple Mobile USB Driver;c:\windows\System32\drivers\usbaapl.sys [28-08-2009 18:42 40448]
S3 WSDPrintDevice;Support til WSD-udskrivning via UMB;c:\windows\System32\drivers\WSDPrint.sys [21-01-2008 03:23 16896]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork    REG_MULTI_SZ      PLA DPS BFE mpssvc
bthsvcs    REG_MULTI_SZ      BthServ
WindowsMobile    REG_MULTI_SZ      wcescomm rapimgr
LocalServiceRestricted    REG_MULTI_SZ      WcesComm RapiMgr
HPZ12    REG_MULTI_SZ      Pml Driver HPZ12 Net Driver HPZ12
LocalServiceAndNoImpersonation    REG_MULTI_SZ      FontCache
.
------- Yderligere scanning -------
.
uStart Page = hxxp://www.google.dk/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Download by QGet - c:\program files\QNAP\QGet\QGetCatch.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki ... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
IE: Send billede til &Bluetooth-enhed... - c:\program files\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send siden til &Bluetooth-enhed... - c:\program files\ThinkPad\Bluetooth Software\btsendto_ie.htm
Trusted Zone: danid.dk
Trusted Zone: danskebank.dk
Trusted Zone: danid.dk
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
DPF: {4F2A3649-7A9F-4950-9C31-409FAC6FC7C8} - hxxps://danid.dk/csp/authenticode/csp.exe
DPF: {937FE81C-FECF-4A55-9754-49D6D6550EDC} - hxxp://192.168.0.192:8080/cgi-bin/NNVRVMon.cab
DPF: {E1B26101-23FB-4855-9171-F79F29CC7728} - hxxp://192.168.0.240/UltraCamX.cab
.

**************************************************************************
scanner skjulte processer ... 

scanner skjulte autostarter ...

scanner skjulte filer ... 

scanning gennemført med succes
skjulte filer:

**************************************************************************

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\N360]
"ImagePath"="\"c:\program files\Norton 360\Engine\3.0.0.134\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files\Norton 360\Engine\3.0.0.134\diMaster.dll\" /prefetch:1"
.
--------------------- LÅSTE REGISTRERINGS NØGLER ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs startet under kørende Processer ---------------------

- - - - - - - > 'Explorer.exe'(3160)
c:\windows\system32\ieframe.dll
c:\program files\ThinkPad\Bluetooth Software\btncopy.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_dan.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Andre kørende processer ------------------------
.
c:\windows\system32\ibmpmsvc.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\WLANExt.exe
c:\program files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\ThinkPad\Bluetooth Software\btwdins.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
c:\windows\System32\TPHDEXLG.exe
c:\program files\Lenovo\Client Security Solution\tvttcsd.exe
c:\program files\Lenovo\Rescue and Recovery\rrservice.exe
c:\program files\Common Files\Lenovo\Scheduler\tvtsched.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\windows\system32\DRIVERS\xaudio.exe
c:\program files\ThinkPad\ConnectUtilities\AcSvc.exe
c:\program files\Lenovo\System Update\SUService.exe
c:\windows\system32\WUDFHost.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
c:\windows\system32\conime.exe
c:\program files\QNAP\NetBak\NetBak.exe
c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
c:\program files\Canon\MyPrinter\BJMyPrt.exe
c:\program files\LENOVO\Message Center Plus\MCPLaunch.exe
c:\program files\QNAP\QGet\QGet.exe
c:\program files\Digital Line Detect\DLG.exe
c:\program files\QNAP\QGet\QGetIEMenuExt.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
c:\program files\PC Connectivity Solution\NclInstaller.exe
c:\windows\system32\DrvInst.exe
c:\windows\system32\WUDFHost.exe
.
**************************************************************************
.
Gennemført tid: 2009-12-10  16:18:39 - maskinen blev genstartet
ComboFix-quarantined-files.txt  2009-12-10 15:18

Pre-Kørsel: 7.247.360.000 byte ledig
Post-Kørsel: 7.435.137.024 byte ledig

- - End Of File - - BB07EA0AEE0B53F9C593C9C0A9E8C245
Avatar billede f-arn Guru
10. december 2009 - 17:40 #3
Hvad lagde du du ind i den CFScript.txt fil?
Hvad sker der hvis du under opstart trykker <F8> Hvilke múgliheder får du?
Avatar billede hknak Nybegynder
10. december 2009 - 21:16 #4
Jeg lagde de to linier ind, som angivet:

Killall::
Snapshot::

Filen er nu væk fra desktop.

Jeg har bootet et antal gange uden held med tryk på <F8>. Der er ingen effekt på noget tidspunkt, ud over hvis jeg holder tasten nede ifm de første 5-10 sekunder - så kommer der fejl om at en tast sidder fast.

What to do?
Avatar billede f-arn Guru
10. december 2009 - 22:42 #5
Kopier nedenstående (med fed skrift) ad en gang.

dir c:\ /a > roden.txt
notepad roden.txt

Tryk på Windows tasten+R samtidig
I det vindue der der fremkommer skriver du cmd
Klik ok
I dos vinduet der fremkommer hojreklikker du og vælger sæt ind
Så skulle der gerne åbnes et vindue. kopier indholdet herind.
Avatar billede hknak Nybegynder
11. december 2009 - 13:38 #6
Hej ekspert,

Maskinen kører normalt igen, dvs ingen registerdatabase-problemer. Jeg kan dog fortsat ikke installere sikkerhedsopdateringen. Aktiviteten på harddisken er faldet markant. Her er indhold som ønsket:

Disken i drev C er SW_Preload
Diskens serienummer er 46BF-8CAD

Indhold af c:\

10-12-2009  16:09    <DIR>          $RECYCLE.BIN
18-09-2006  22:43                24 autoexec.bat
10-12-2009  16:18    <DIR>          ComboFix
10-12-2009  16:18            27.555 ComboFix.txt
18-09-2006  22:43                10 config.sys
02-11-2006  14:02    <JUNCTION>    Documents and Settings [C:\Users]
23-10-2009  11:32    <DIR>          DRIVERS
07-11-2007  07:00            17.734 eula.1028.txt
07-11-2007  07:00            17.734 eula.1031.txt
07-11-2007  07:00            10.134 eula.1033.txt
07-11-2007  07:00            17.734 eula.1036.txt
07-11-2007  07:00            17.734 eula.1040.txt
07-11-2007  07:00              118 eula.1041.txt
07-11-2007  07:00            17.734 eula.1042.txt
07-11-2007  07:00            17.734 eula.2052.txt
07-11-2007  07:00            17.734 eula.3082.txt
07-11-2007  07:00            1.110 globdata.ini
26-05-2009  14:40    <DIR>          HP LJP3005 PCL5 Driver
07-11-2007  07:00              843 install.ini
07-11-2007  07:03            76.304 install.res.1028.dll
07-11-2007  07:03            96.272 install.res.1031.dll
07-11-2007  07:03            91.152 install.res.1033.dll
07-11-2007  07:03            97.296 install.res.1036.dll
07-11-2007  07:03            95.248 install.res.1040.dll
07-11-2007  07:03            81.424 install.res.1041.dll
07-11-2007  07:03            79.888 install.res.1042.dll
07-11-2007  07:03            75.792 install.res.2052.dll
07-11-2007  07:03            96.272 install.res.3082.dll
06-11-2008  02:24    <DIR>          Intel
06-11-2008  01:47    <DIR>          mfg
06-11-2008  02:49    <DIR>          MSOCache
16-11-2008  17:38    <DIR>          MyVideos
26-05-2009  15:48    <DIR>          OkiDriver
31-01-2009  21:45          230.432 PA207.DAT
11-12-2009  08:56    2.956.009.472 pagefile.sys
21-01-2008  03:33    <DIR>          PerfLogs
10-12-2009  21:47    <DIR>          Program Files
10-12-2009  11:11    <DIR>          ProgramData
10-12-2009  16:18    <DIR>          Qoobox
17-05-2009  10:38    <DIR>          RRbackups
06-11-2008  02:25                86 setup.log
16-07-2009  11:00    <DIR>          SWShare
12-11-2008  22:52    <DIR>          SWTOOLS
15-11-2008  15:01    <DIR>          swwork
11-12-2009  08:56          158.334 sysiclog.txt
11-12-2009  11:00    <DIR>          System Volume Information
15-11-2008  17:00            1.732 tvtpktfilter.dat
15-04-2009  19:05    <DIR>          Users
07-11-2007  07:00            5.686 vcredist.bmp
07-11-2007  07:09        1.442.522 VC_RED.cab
07-11-2007  07:12          232.960 VC_RED.MSI
11-12-2009  13:07    <DIR>          Windows
              31 fil(er)    2.959.034.804 byte
              21 mappe(r)  6.748.422.144 byte ledig
Avatar billede f-arn Guru
11. december 2009 - 14:27 #7
Filen er nu væk fra desktop

Hvilken fil?

Har du prøvet Malwarebytes igen?

Er det kun Security Update for SQL Service Pack 3 (KB970892) du har problemer med? Kommer den ikke med en fejlkode?
Avatar billede hknak Nybegynder
11. december 2009 - 16:01 #8
Jeg prøver Malwarebytes igen. Har ellers ingen problemer end fortsat høj aktivitet på HD når den ikke er i brug. Kommer retur.
Avatar billede hknak Nybegynder
12. december 2009 - 17:11 #9
Malwarebyte går stadig ned (efter 2 timer og 42 minutter eller ca 631.000 filer). Kan det være VISTA, som slår den ned?

Fejlen, som opstår ved opdateringen er Kode 6D9E, som er en ukendt fejl jeg ikke kan få hjælp til hos MS services.

Nogle ideer?
Avatar billede f-arn Guru
12. december 2009 - 18:13 #10
Der er noget helt galt her, men foreløbig har jeg ikke nok til at ha' nogen ide om hvad det er.
Hent random's system information tool (RSIT) af random/random

http://images.malwareremoval.com/random/RSIT.exe

Den laver to log filer log.txt og info.txt
Jeg vil gerne se begge to.
Avatar billede hknak Nybegynder
13. december 2009 - 01:24 #11
Her er de:

Logfile of random's system information tool 1.06 (written by random/random)
Run by Henrik Knak at 2009-12-13 01:11:02
Microsoft® Windows Vista™ Business  Service Pack 2
System drive C: has 7 GB (8%) free of 84 GB
Total RAM: 2519 MB (30% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-11-18 1082880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dll [2009-08-21 372592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton 360\Engine\3.0.0.134\IPSBHO.DLL [2009-08-21 107896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Hjælp til tilmelding til Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-04 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-29 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2}]
IePasswordManagerHelper Class - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll [2008-06-14 808248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton 360\Engine\3.0.0.134\coIEPlg.dll [2009-08-21 372592]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-04 263280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-11-21 820520]
"TPFNF7"=C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe [2008-07-30 60192]
"TpShocks"=C:\Windows\system32\TpShocks.exe [2008-06-07 181536]
"TPHOTKEY"=C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe [2008-03-24 68464]
"EZEJMNAP"=C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe [2008-06-04 242976]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-06-13 150040]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-06-13 170520]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-06-13 145944]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"TVT Scheduler Proxy"=C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe [2008-05-25 487424]
"LPManager"=C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe [2008-08-31 165208]
"LPMailChecker"=C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe [2008-08-31 124248]
"AMSG"=C:\Program Files\ThinkVantage\AMSG\Amsg.exe [2009-03-06 458752]
"PWMTRV"=rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor []
"BLOG"=rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog []
"ACTray"=C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe [2008-09-29 431392]
"ACWlIcon"=C:\Program Files\ThinkPad\ConnectUtilities\ACWlIcon.exe [2008-09-29 148768]
"cssauth"=C:\Program Files\Lenovo\Client Security Solution\cssauth.exe [2008-06-25 3077432]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2009-11-23 30192]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-07-26 3883856]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-01-01 39408]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~4\GoogleDesktopNetwork3.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-06-12 208896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SymEFA.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe"="C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe"="C:\Program Files\Logitech\Logitech Harmony Remote Software 7\HarmonyRemote.exe:*:Enabled:Logitech Harmony Remote Software 7"

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2009-12-13 01:11:04 ----DC---- C:\Program Files\trend micro
2009-12-13 01:11:02 ----DC---- C:\rsit
2009-12-10 16:18:40 ----AC---- C:\ComboFix.txt
2009-12-10 16:09:39 ----SHDC---- C:\$RECYCLE.BIN
2009-12-10 15:50:06 ----AC---- C:\Windows\zip.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\SWXCACLS.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\SWSC.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\SWREG.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\sed.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\PEV.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\NIRCMD.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\MBR.exe
2009-12-10 15:50:06 ----AC---- C:\Windows\grep.exe
2009-12-10 15:49:48 ----DC---- C:\Windows\ERDNT
2009-12-10 15:49:47 ----DC---- C:\ComboFix
2009-12-10 15:49:03 ----ADC---- C:\Qoobox
2009-12-10 11:11:44 ----DC---- C:\Users\Henrik Knak\AppData\Roaming\Malwarebytes
2009-12-10 11:11:37 ----DC---- C:\ProgramData\Malwarebytes
2009-12-10 11:11:36 ----DC---- C:\Program Files\Malwarebytes' Anti-Malware
2009-12-10 10:44:07 ----DC---- C:\Program Files\CCleaner
2009-12-09 11:06:37 ----AC---- C:\Windows\system32\nshhttp.dll
2009-12-09 11:06:34 ----AC---- C:\Windows\system32\httpapi.dll
2009-12-09 08:57:36 ----AC---- C:\Windows\system32\winhttp.dll
2009-12-09 08:57:33 ----AC---- C:\Windows\system32\mshtml.dll
2009-12-09 08:57:32 ----AC---- C:\Windows\system32\iertutil.dll
2009-12-09 08:57:32 ----AC---- C:\Windows\system32\ieframe.dll
2009-12-09 08:57:31 ----AC---- C:\Windows\system32\wininet.dll
2009-12-09 08:57:31 ----AC---- C:\Windows\system32\urlmon.dll
2009-12-09 08:57:31 ----AC---- C:\Windows\system32\occache.dll
2009-12-09 08:57:31 ----AC---- C:\Windows\system32\msfeeds.dll
2009-12-09 08:57:31 ----AC---- C:\Windows\system32\iedkcs32.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\msfeedssync.exe
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\msfeedsbs.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\jsproxy.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\ieUnatt.exe
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\ieui.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\iesysprep.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\iepeers.dll
2009-12-09 08:57:30 ----AC---- C:\Windows\system32\ie4uinit.exe
2009-12-09 08:57:29 ----AC---- C:\Windows\system32\iesetup.dll
2009-12-09 08:57:29 ----AC---- C:\Windows\system32\iernonce.dll
2009-12-09 08:56:36 ----AC---- C:\Windows\system32\rastls.dll
2009-12-07 10:03:12 ----DC---- C:\Users\Henrik Knak\AppData\Roaming\Intel
2009-12-03 20:07:31 ----DC---- C:\Program Files\Common Files\DivX Shared
2009-12-03 20:07:28 ----DC---- C:\Program Files\DivX
2009-11-28 21:55:42 ----DC---- C:\Program Files\TurnTool
2009-11-26 23:19:38 ----DC---- C:\Program Files\Common Files\PCSuite
2009-11-26 23:16:18 ----DC---- C:\Program Files\PC Connectivity Solution
2009-11-26 21:16:32 ----AC---- C:\Windows\system32\tzres.dll
2009-11-26 00:10:03 ----AC---- C:\Windows\system32\msxml6.dll
2009-11-26 00:10:02 ----AC---- C:\Windows\system32\msxml3.dll
2009-11-23 15:17:09 ----DC---- C:\Program Files\iPod
2009-11-23 15:17:04 ----DC---- C:\Program Files\iTunes
2009-11-23 15:11:32 ----DC---- C:\Program Files\QuickTime
2009-11-16 09:40:26 ----DC---- C:\Program Files\Windows Portable Devices
2009-11-15 00:53:27 ----AC---- C:\Windows\system32\UIAnimation.dll
2009-11-15 00:53:26 ----AC---- C:\Windows\system32\UIRibbonRes.dll
2009-11-15 00:53:26 ----AC---- C:\Windows\system32\UIRibbon.dll
2009-11-15 00:52:58 ----AC---- C:\Windows\system32\WMPhoto.dll
2009-11-15 00:52:56 ----AC---- C:\Windows\system32\cdd.dll
2009-11-15 00:52:55 ----AC---- C:\Windows\system32\XpsRasterService.dll
2009-11-15 00:52:55 ----AC---- C:\Windows\system32\XpsGdiConverter.dll
2009-11-15 00:52:55 ----AC---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-11-15 00:52:55 ----AC---- C:\Windows\system32\d3d10warp.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\xpsservices.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\XpsPrint.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\WindowsCodecs.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\OpcServices.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\FntCache.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\dxdiagn.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\dxdiag.exe
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\DWrite.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\d3d10level9.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\d3d10core.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\d3d10_1core.dll
2009-11-15 00:52:54 ----AC---- C:\Windows\system32\d2d1.dll
2009-11-15 00:52:53 ----AC---- C:\Windows\system32\dxgi.dll
2009-11-15 00:52:53 ----AC---- C:\Windows\system32\d3d11.dll
2009-11-15 00:52:53 ----AC---- C:\Windows\system32\d3d10_1.dll
2009-11-15 00:52:53 ----AC---- C:\Windows\system32\d3d10.dll
2009-11-15 00:52:28 ----AC---- C:\Windows\system32\WPDShextAutoplay.exe
2009-11-15 00:52:28 ----AC---- C:\Windows\system32\wpdbusenum.dll
2009-11-15 00:52:28 ----AC---- C:\Windows\system32\BthMtpContextHandler.dll
2009-11-15 00:52:25 ----AC---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\WPDSp.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\WPDShServiceObj.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\wpdshext.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\WpdMtpUS.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\WpdMtp.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\WpdConns.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\wpd_ci.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\PortableDeviceTypes.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-11-15 00:52:24 ----AC---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-15 00:51:21 ----AC---- C:\Windows\system32\oleaccrc.dll
2009-11-15 00:51:18 ----AC---- C:\Windows\system32\UIAutomationCore.dll
2009-11-15 00:51:18 ----AC---- C:\Windows\system32\oleacc.dll

======List of files/folders modified in the last 1 months======

2009-12-13 01:11:04 ----RDC---- C:\Program Files
2009-12-13 01:11:04 ----DC---- C:\Windows\Temp
2009-12-13 01:07:35 ----SDC---- C:\Windows\Downloaded Program Files
2009-12-13 01:04:26 ----DC---- C:\Windows\Prefetch
2009-12-13 01:03:56 ----DC---- C:\Windows
2009-12-12 19:17:09 ----SHD---- C:\System Volume Information
2009-12-12 17:06:32 ----SHDC---- C:\Windows\Installer
2009-12-12 17:06:32 ----DC---- C:\Program Files\Microsoft SQL Server
2009-12-12 09:37:19 ----AC---- C:\sysiclog.txt
2009-12-11 11:20:09 ----DC---- C:\Users\Henrik Knak\AppData\Roaming\SummaSummarum
2009-12-10 20:25:09 ----DC---- C:\Windows\system32\catroot2
2009-12-10 20:05:43 ----DC---- C:\Windows\System32
2009-12-10 20:05:43 ----DC---- C:\Windows\inf
2009-12-10 20:05:43 ----AC---- C:\Windows\system32\PerfStringBackup.INI
2009-12-10 16:18:44 ----DC---- C:\Windows\system32\drivers
2009-12-10 16:09:52 ----AC---- C:\Windows\system.ini
2009-12-10 16:03:51 ----DC---- C:\Windows\system32\config
2009-12-10 15:59:16 ----DC---- C:\Windows\AppPatch
2009-12-10 15:59:15 ----DC---- C:\Program Files\Common Files
2009-12-10 11:11:37 ----DC---- C:\ProgramData
2009-12-10 10:51:28 ----DC---- C:\Windows\Debug
2009-12-09 16:04:25 ----D---- C:\Windows\rescache
2009-12-09 15:58:36 ----D---- C:\Windows\winsxs
2009-12-09 15:48:18 ----DC---- C:\Windows\system32\catroot
2009-12-09 15:44:40 ----DC---- C:\Windows\system32\migration
2009-12-09 15:44:39 ----DC---- C:\Windows\system32\da-DK
2009-12-09 15:44:39 ----DC---- C:\Program Files\Windows Mail
2009-12-09 15:44:39 ----DC---- C:\Program Files\Internet Explorer
2009-12-09 11:12:13 ----DC---- C:\ProgramData\Microsoft Help
2009-12-09 11:06:05 ----RSDC---- C:\Windows\assembly
2009-12-07 20:01:04 ----SDC---- C:\Users\Henrik Knak\AppData\Roaming\Microsoft
2009-12-06 19:26:13 ----DC---- C:\ProgramData\PC Suite
2009-12-04 23:40:42 ----DC---- C:\Windows\system32\Tasks
2009-12-03 20:18:18 ----DC---- C:\Windows\Tasks
2009-12-03 20:09:43 ----DC---- C:\Program Files\Google
2009-12-01 21:06:19 ----AC---- C:\Windows\system32\mrt.exe
2009-11-26 23:19:32 ----DC---- C:\Program Files\Nokia
2009-11-26 23:19:32 ----DC---- C:\Program Files\Common Files\Nokia
2009-11-26 23:19:04 ----DC---- C:\Users\Henrik Knak\AppData\Roaming\Nokia
2009-11-26 23:17:50 ----DC---- C:\Windows\system32\DRVSTORE
2009-11-26 23:08:09 ----DC---- C:\ProgramData\Installations
2009-11-26 21:56:55 ----DC---- C:\Users\Henrik Knak\AppData\Roaming\dvdcss
2009-11-23 16:12:44 ----DC---- C:\Windows\Registration
2009-11-23 15:17:09 ----DC---- C:\Program Files\Common Files\Apple
2009-11-16 09:40:25 ----DC---- C:\Windows\system32\wbem
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\zh-HK
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\uk-UA
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\tr-TR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\th-TH
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\sr-Latn-CS
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\sl-SI
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\pt-PT
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\pt-BR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\pl-PL
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\nl-NL
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\ko-KR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\it-IT
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\hu-HU
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\hr-HR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\he-IL
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\fr-FR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\fi-FI
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\el-GR
2009-11-16 09:40:24 ----DC---- C:\Windows\system32\bg-BG
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\zh-TW
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\zh-CN
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\sv-SE
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\sk-SK
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\ru-RU
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\ro-RO
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\nb-NO
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\lv-LV
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\lt-LT
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\ja-JP
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\et-EE
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\es-ES
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\en-US
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\de-DE
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\cs-CZ
2009-11-16 09:40:23 ----DC---- C:\Windows\system32\ar-SA

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 BHDrvx86;Symantec Heuristics Driver; \??\C:\Windows\system32\drivers\N360\0300000.086\BHDrvx86.sys [2009-08-21 258608]
R1 ccHP;Symantec Hash Provider; \??\C:\Windows\system32\drivers\N360\0300000.086\ccHPx86.sys [2009-08-21 482352]
R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2009-04-11 351744]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2009-08-26 371248]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20091111.001\IDSvix86.sys [2009-10-28 343088]
R1 lenovo.smi;Lenovo System Interface Driver; C:\Windows\system32\DRIVERS\smiif32.sys [2008-05-12 13480]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); \??\C:\Windows\system32\drivers\N360\0300000.086\SRTSPX.SYS [2009-08-21 43696]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2009-08-21 25136]
R1 SYMTDI;Symantec Network Dispatch Driver; \??\C:\Windows\system32\drivers\N360\0300000.086\SYMTDI.SYS [2009-08-21 217392]
R1 TPPWRIF;TPPWRIF; C:\Windows\System32\drivers\Tppwr32v.sys [2008-09-18 12080]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2008-04-09 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-15 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R2 tvtfilter;tvtfilter; C:\Windows\system32\DRIVERS\tvtfilter.sys [2008-11-06 33536]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-18 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-09-19 3881472]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2008-09-19 54784]
R3 BthEnum;Tjeneste til Bluetooth-optælling; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;USB-driver til Bluetooth-radio; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 btwaudio;Bluetooth-audioenhed; C:\Windows\system32\drivers\btwaudio.sys [2009-07-01 86056]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2009-07-01 108072]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 29472]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2009-07-01 18344]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-05-28 220672]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6032.sys [2008-08-22 225408]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-08-26 102448]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-05-18 26600]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2008-03-26 40832]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-03-25 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-03-25 207872]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2008-02-20 22696]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-06-12 2381312]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2009-12-03 38224]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091212.004\NAVENG.SYS [2009-08-25 84912]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091212.004\NAVEX15.SYS [2009-08-25 1323568]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-08-29 3664384]
R3 psadd;Lenovo Parties Service Access Device Driver; C:\Windows\system32\DRIVERS\psadd.sys [2008-11-06 30144]
R3 RFCOMM;Bluetooth-enhed (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SRTSP;Symantec Real Time Storage Protection; \??\C:\Windows\system32\drivers\N360\0300000.086\SRTSP.SYS [2009-08-21 307760]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2009-08-21 124464]
R3 SYMFW;Symantec Network Filter Driver; \??\C:\Windows\system32\drivers\N360\0300000.086\SYMFW.SYS [2009-08-21 89776]
R3 SYMNDISV;Symantec Network Filter Driver; \??\C:\Windows\system32\drivers\N360\0300000.086\SYMNDISV.SYS [2009-08-21 39984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-11-21 181168]
R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2008-01-21 45624]
R3 TVTI2C;Lenovo SM bus driver; C:\Windows\system32\DRIVERS\Tvti2c.sys [2008-02-23 37312]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2008-03-25 661504]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S1 tvtumon;tvtumon; C:\Windows\system32\DRIVERS\tvtumon.sys [2008-05-25 48192]
S3 BTHPORT;Bluetooth-portdriver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-21 220672]
S3 FreshIO;FreshIO; \??\C:\Program Files\FreshDevices\FreshDiagnose\FreshIO.sys [2004-10-26 2410]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632]
S3 FTD2XX;FTD2XX.SYS FT8U2XX device driver; C:\Windows\System32\Drivers\FTD2XX.sys []
S3 hcw95bda;Hauppauge MOD7700 Tuner Driver; C:\Windows\System32\Drivers\hcw95bda.sys [2008-04-17 560640]
S3 hcw95rc;Hauppauge MOD7700 IR Driver; C:\Windows\system32\DRIVERS\hcw95rc.sys [2008-04-17 15616]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 PAC207;PC Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-05-29 508160]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
S3 usb_rndisx;USB RNDIS-kort; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 usbscan;USB-scannerdriver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-08-28 40448]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-04-19 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WSDPrintDevice;Support til WSD-udskrivning via UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2008-01-21 16896]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcPrfMgrSvc;Ac Profile Manager Service; C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe [2008-09-29 116000]
R2 AcSvc;Access Connections Main Service; C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe [2008-09-29 238880]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-09-19 700416]
R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-12 30312]
R2 Bonjour Service;Bonjour-tjeneste; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe [2009-07-01 582944]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2008-08-21 860160]
R2 IBMPMSVC;ThinkPad PM Service; C:\Windows\system32\ibmpmsvc.exe [2008-02-20 36128]
R2 IviRegMgr;IviRegMgr; C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 N360;Norton 360; C:\Program Files\Norton 360\Engine\3.0.0.134\ccSvcHst.exe [2009-08-21 115560]
R2 Power Manager DBC Service;Power Manager DBC Service; C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE [2008-09-18 66848]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2008-08-21 466944]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904]
R2 SUService;System Update; C:\Program Files\Lenovo\System Update\SUService.exe [2008-10-20 28672]
R2 ThinkVantage Registry Monitor Service;ThinkVantage Registry Monitor Service; c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe [2008-06-14 746808]
R2 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\Windows\System32\TPHDEXLG.exe [2008-05-15 37416]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2008-08-08 53325]
R2 TSSCoreService;TSS Core Service; C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe [2008-06-14 779576]
R2 TVT Backup Protection Service;TVT Backup Protection Service; C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe [2008-05-25 520192]
R2 TVT Backup Service;TVT Backup Service; C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe [2008-05-25 950272]
R2 TVT Scheduler;TVT Scheduler; c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe [2008-05-25 1155072]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-03-30 1533808]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-18 386560]
R3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
S2 EPGService;EPGService; C:\PROGRA~1\WinTV\EPG Services\System\EPGService.exe [2008-05-30 437248]
S2 gupdate1ca744bea1cb6c0;Tjenesten Google Update (gupdate1ca744bea1cb6c0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-03 133104]
S2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-11-24 29263712]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 TVT_UpdateMonitor;TVT Windows Update Monitor; C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe [2008-05-25 253952]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-21 523776]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 fsssvc;Windows Live-tjenesten Family Safety; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-110309-193829;Google Desktop-administrator 5.9.911.3589; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2009-11-23 30192]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-27 182768]
S3 HauppaugeTVServer;HauppaugeTVServer; C:\PROGRA~1\WinTV\HCWTVS~1.EXE [2008-06-02 823296]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 iPod Service;iPod-tjeneste; C:\Program Files\iPod\bin\iPodService.exe [2009-11-12 545568]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2009-04-11 918528]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408]

-----------------EOF-----------------

samt:

info.txt logfile of random's system information tool 1.06 2009-12-13 01:11:09

======Uninstall list======

-->C:\Program Files\Conexant\SmartAudio\SETUP.EXE -U -ISmartAudio -SM=SMAUDIO.EXE,1801
-->C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\SETUP.exe  -l0x0009 -removeonly
-->C:\Program Files\InstallShield Installation Information\{69333A04-5134-40A5-A055-9166A7AA1EC8}\setup.exe -runfromtemp -l0x0009 -removeonly
-->C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\SETUP.exe  -l0x0009 -removeonly
2007 Microsoft Office system-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROHYBRIDR /dll OSETUP.DLL
32 Bit HP BiDi Channel Components Installer-->MsiExec.exe /I{9DE3F260-B88E-42CE-90E7-73C78C37D95E}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 9 Plugin-->MsiExec.exe /X{61E8B062-51F9-4BBB-B1FC-E2A4A40944F5}
Adobe Reader 8.1.4-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003}
Apple Application Support-->MsiExec.exe /I{3FA365DF-2D68-45ED-8F83-8C8A33E65143}
Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ATI Uninstaller-->C:\Program Files\ATI\CIM\Bin\Atisetup.exe -uninstall all
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
Business Contact Manager for Outlook 2007 SP2-->"C:\Program Files\Microsoft Small Business\Business Contact Manager\SetupBootstrap\Setup.exe" /remove {B32C4059-6E7A-41EF-AD20-56DF1872B923}
Business Contact Manager for Outlook 2007 SP2-->MsiExec.exe /X{B32C4059-6E7A-41EF-AD20-56DF1872B923}
Canon MP Navigator EX 2.0-->"C:\Program Files\Canon\MP Navigator EX 2.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 2.0\uninst.ini
Canon MP630 series Brugerregistrering-->C:\Program Files\Canon\IJEREG\MP630 series\UNINST.EXE
Canon MP630 series MP Drivers-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP630_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP630_series /L0x0006
Canon Utilities Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe uninst.ini
Canon Utilities My Printer-->C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
Catalyst Control Center - Branding-->MsiExec.exe /I{9FCE66F0-EE03-43BD-916E-66EDF0DBC18C}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
Client Security - Password Manager-->MsiExec.exe /X{44E9D4C2-946C-4378-9354-558803C47A68}
Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -ITPCMLWKz.INF
Digital Signatur-->"C:\ProgramData\{BE1D7187-C39B-4B11-9EBD-9D19FAE66E65}\csp.exe" REMOVE=TRUE MODIFY=FALSE
Digital Signatur-->C:\ProgramData\{BE1D7187-C39B-4B11-9EBD-9D19FAE66E65}\csp.exe
DivX Plus Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
doPDF 6.3  printer-->"C:\Program Files\Softland\doPDF 6\unins000.exe"
Driveropdatering til Windows Mobile-enheder-->MsiExec.exe /X{E7044E25-3038-4A76-9064-344AC038043E}
FreshDiagnose-->"C:\Program Files\FreshDevices\FreshDiagnose\unins000.exe"
GEAR driver installer for x86 and x64-->MsiExec.exe /I{2EA45803-BEB7-46C4-9ADC-46A5F9E7BB77}
GearDrvs-->MsiExec.exe /I{206FD69B-F9FE-4164-81BD-D52552BC9C23}
GearDrvs-->MsiExec.exe /I{CB84F0F2-927B-458D-9DC5-87832E3DC653}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\3.0.195.33\Installer\setup.exe" --uninstall --system-level
Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_0E996B068B56FCA2.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Hauppauge English Help Files and Resources-->C:\PROGRA~1\WinTV\UNHLPeng.EXE C:\PROGRA~1\WinTV\WTV2Keng.LOG
Hauppauge WinTV DVB-T EPG Service-->C:\Windows\System32\UNWISE.EXE C:\Windows\System32\UNEPGS~1.LOG
Hauppauge WinTV Infrared Remote-->C:\PROGRA~1\WinTV\UNir32.EXE C:\PROGRA~1\WinTV\ir32.LOG
Hauppauge WinTV Scheduler-->C:\PROGRA~1\WinTV\\SCHEDU~1\uniSCHED.exe C:\PROGRA~1\WinTV\\SCHEDU~1\uniSCHED.log
Hauppauge WinTV TV Services-->C:\PROGRA~1\WinTV\uniTvSrv.exe C:\PROGRA~1\WinTV\UniTVSrv.LOG
Hauppauge WinTV-->C:\PROGRA~1\WinTV\UNTV6.EXE C:\PROGRA~1\WinTV\WINTV6.LOG
Help Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{986F64DC-FF15-449D-998F-EE3BCEC6666A}\Setup.exe" -l0x9 -AddRemove
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall  /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Intel(R) Management Engine Interface-->C:\Windows\system32\heciudlg.exe -uninstall
InterVideo FilterSDK for Hauppauge-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2227E1FA-01F5-483C-AB0E-2A308E900B3D}\setup.exe"  REMOVEALL
InterVideo WinDVD-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
IPSetup-->MsiExec.exe /I{2DB8CA48-6DDB-4FCB-8F65-02D7513FF0DA}
iTunes-->MsiExec.exe /I{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
Lenovo Registration-->C:\Program Files\Lenovo Registration\uninstall.exe
Lenovo System Interface Driver-->RunDll32.exe setupapi.dll,InstallHinfSection DefaultUninstall.NTx86 130 C:\Program Files\Lenovo\SMIIF\lnvsmi.inf
Lenovo Welcome v1.0.24.3-->"C:\Program Files\Lenovo\Lenovo Welcome\unins000.exe"
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\setup.exe" -l0x6 UNINSTALL
Logitech Harmony Remote Software 7-->C:\Program Files\InstallShield Installation Information\{5C6F884D-680C-448B-B4C9-22296EE1B206}\setup.exe -runfromtemp -l0x0006 -removeonly
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Message Center Plus-->MsiExec.exe /X{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}
Message Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7E836B8-4BDD-454F-82E6-5FEA17C83AD4}\Setup.exe" -l0x9 -AddRemove
Microsoft .NET Framework 3.5 Language Pack SP1 - dan-->MsiExec.exe /I{B69349AE-2D41-3708-8BA4-4DC22645CA04}
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Office 2003 Web Components-->MsiExec.exe /I{90A40409-6000-11D3-8CFE-0150048383C9}
Microsoft Office 2007 Primary Interop Assemblies-->MsiExec.exe /X{50120000-1105-0000-0000-0000000FF1CE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0406-0000-0000000FF1CE} /uninstall {652017DD-E99F-4420-9CC8-AC25CE8375A5}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0406-0000-0000000FF1CE} /uninstall {50865937-2EBB-4BBF-8861-BF5972C95D4B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Access MUI (Danish) 2007-->MsiExec.exe /X{90120000-0015-0406-0000-0000000FF1CE}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISER /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{91120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Danish) 2007-->MsiExec.exe /X{90120000-0016-0406-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
Microsoft Office Live Add-in Patches-->MsiExec.exe /I{8DCD7A9A-8B0B-4184-A5D7-C4BDAA31C750}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0122-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Danish) 2007-->MsiExec.exe /X{90120000-001A-0406-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Danish) 2007-->MsiExec.exe /X{90120000-0018-0406-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Hybrid 2007-->MsiExec.exe /X{91120000-0031-0000-0000-0000000FF1CE}
Microsoft Office Proof (Danish) 2007-->MsiExec.exe /X{90120000-001F-0406-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (Danish) 2007-->MsiExec.exe /X{90120000-002C-0406-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0406-0000-0000000FF1CE} /uninstall {25E093C2-374E-44A9-9BCE-3881BD442F3F}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Publisher MUI (Danish) 2007-->MsiExec.exe /X{90120000-0019-0406-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (Danish) 2007-->MsiExec.exe /X{90120000-006E-0406-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Small Business Connectivity Components-->MsiExec.exe /X{A939D341-5A04-4E0A-BB55-3E65B386432D}
Microsoft Office Suite Activation Assistant-->MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
Microsoft Office Word MUI (Danish) 2007-->MsiExec.exe /X{90120000-001B-0406-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs-->MsiExec.exe /X{90120000-00B2-0409-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)-->MsiExec.exe /I{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}
Microsoft SQL Server 2005-->"c:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove
Microsoft SQL Server Native Client-->MsiExec.exe /I{BD68F46D-8A82-4664-8E68-F87C55BDEFD4}
Microsoft SQL Server Setup Support Files (English)-->MsiExec.exe /X{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{56B4002F-671C-49F4-984C-C760FE3806B5}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft® Office Language Pack 2007 - Dansk (til Office Outlook 2007 med Business Contact Manager SP1)-->MsiExec.exe /X{2A9C5F12-0557-4F03-B887-60B11D9A5013}
Mobile Broadband Connect-->MsiExec.exe /I{DB34E5AF-6DC0-4C21-8A70-EAEA2CECE469}
MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nokia Connectivity Cable Driver-->MsiExec.exe /I{6869591A-7DD8-46D2-837F-57CBF7358955}
Nokia Map Loader-->MsiExec.exe /I{45D4F727-43B5-49CD-B474-B9866A8F4FB8}
Nokia Maps Updater 1.0.8-->"C:\Program Files\Nokia\Nokia Maps Updater\Uninstall Information\unins000.exe"
Nokia PC Suite-->C:\ProgramData\Installations\{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}\Nokia_PC_Suite_7_1_40_1_dan.exe
Nokia PC Suite-->MsiExec.exe /I{9249D7E7-33E7-4CC8-BB0B-3DF3C3CB2568}
Nokia Software Updater-->MsiExec.exe /X{F983B4FE-547B-4C44-BAF7-4F4DBA93D548}
Norton 360-->C:\Program Files\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360\562C4DD5\3.0.0.134\InstStub.exe /X
OGA Notifier 2.0.0048.0-->MsiExec.exe /I{B2544A03-10D0-4E5E-BA69-0362FFC20D18}
On Screen Display-->rundll32.exe "C:\Program Files\Lenovo\HOTKEY\cleanup.dll",InfUninstall DefaultUninstall.LH 132 C:\Program Files\Lenovo\HOTKEY\tphk_tp.inf
Opdatering til Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0406-0000-0000000FF1CE} /uninstall {7304A9DD-2F95-4147-8CD4-E135168C61E6}
Opdatering til Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0406-0000-0000000FF1CE} /uninstall {0C315122-B0FA-428D-A3BB-6F6510F866FF}
Opdatering til Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0406-0000-0000000FF1CE} /uninstall {EA60117C-C535-4A3F-AED1-C888F5114210}
Overførselsværktøj til Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
PC Camera -->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{F4749535-2B87-498A-B74D-0A01B174E36D} /l1033
PC Connectivity Solution-->MsiExec.exe /I{6E0352EE-6F0D-4FBC-B1B8-4FF032C78BE0}
PC-Doctor 5 for Windows-->C:\Program Files\PCDR5\uninst.exe
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
PPC Sync 1.95.03-->C:\Program Files\PPC Sync\uninst.exe
Presentation Director-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65706020-7B6F-41F2-8047-FC69579E386A}\Setup.exe" -l0x9 -AddRemove
Product Recovery Disc Burning Utility-->MsiExec.exe /X{FA62B4C2-6CFD-462F-9B59-68A730001AB3}
Productivity Center Supplement for ThinkPad-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D728E945-256D-4477-B377-6BBA693714AC}\SETUP.EXE" -l0x9 -AddRemove
QNAP Finder-->C:\Program Files\QNAP\Finder\qnapuninstall.exe QNAP_FINDER
QNAP NetBak Replicator-->C:\Windows\system32\qnapuninstall.exe QNAP_NASNetBak
QNAP QGet-->"C:\Program Files\QNAP\QGet\uninstall.exe"
QuickTime-->MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
Registry patch for Windows Vista USB S3 PM Enablement-->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\USBPMon\USBPMon.inf
Registry patch of Changing Timing of IDLE IRP by Finger Print Driver for Windows Vista -->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\FPIRPOn\FPIRPOn.inf
Registry Patch of Enabling Device Initiated Power Management(DIPM) on SATA for Windows Vista-->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\Dipmon\Dipmon.inf
Registry patch to improve USB device detection on resume from sleep for Windows Vista-->MsiExec.exe /X{4AB5764A-3894-49A2-BAA8-C4665F74CD4C}
Remote Control USB Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8471021C-F529-43DE-84DF-3612E10F58C4}\setup.exe" -l0x9  -removeonly
Rescue and Recovery-->MsiExec.exe /X{7E4C16B8-8F76-4940-8505-98E93C00BF19}
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.02-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\setup.exe" -l0x9 anything
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
SecurView ver.1.2.0.7-->MsiExec.exe /I{B81CAB9E-7955-4AA3-8BA6-3DD71056AC29}
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Spelling Dictionaries Support For Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-800000000003}
Sprogpakke til Microsoft .NET Framework 3.5 SP1 - dansk-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - dan\setup.exe
Stone's Summa Påmindelser 1-->"C:\Program Files\SummaSummarum\unins001.exe"
Stone's SummaSummarum 3.5.2-->"C:\Program Files\SummaSummarum\unins000.exe"
System Update-->MsiExec.exe /X{8675339C-128C-44DD-83BF-0A5D6ABD8297}
ThinkPad Bluetooth with Enhanced Data Rate Software-->MsiExec.exe /X{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}
ThinkPad EasyEject Utility -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1297C681-92D7-40EF-93BF-03F66EC5105C}\SETUP.EXE" -l0x9 -AddRemove
ThinkPad FullScreen Magnifier-->rundll32.exe "C:\Program Files\Lenovo\ZOOM\cleanup.dll",InfUninstall DefaultUninstall 132 C:\Program Files\Lenovo\Zoom\TpScrex.inf
ThinkPad Mobility Center Customization-->MsiExec.exe /X{90FABD40-E741-446F-839D-CEAE905D63BE}
ThinkPad Modem Adapter-->C:\Program Files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe -U -AWB -ITkp5051z.INF
ThinkPad Power Management Driver-->RunDll32.exe tpinspm.dll,Uninstall
ThinkPad Power Manager-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}\SETUP.EXE" -l0x9 -AddRemove
ThinkPad UltraNav Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
ThinkPad UltraNav Utility-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17CBC505-D1AE-459D-B445-3D2000A85842}\Setup.exe" -l0x9 UNINSTALL
ThinkVantage Access Connections-->MsiExec.exe /X{4BD295B9-0190-4C54-B08E-33A6ECA922DF}
ThinkVantage Active Protection System-->MsiExec.exe /X{46A84694-59EC-48F0-964C-7E76E9F8A2ED}
ThinkVantage Productivity Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CF5737AF-8550-4546-A69B-0EA9EF5A9B55}\Setup.exe" -l0x9 -AddRemove
ThinkVantage Status Gadget-->MsiExec.exe /X{5523092E-13AA-4EED-8E18-255860F6D9DC}
ThinkVantage Technologies Welcome Message-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1007F41F-7D69-468E-8017-3849A5A973C2}\SETUP.EXE" -l0x9 anything
Tilmeldingsassistent til Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
Trafikteori-->C:\PROGRA~1\TRAFIK~1\UNWISE.EXE C:\PROGRA~1\TRAFIK~1\INSTALL.LOG
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP
Avatar billede hknak Nybegynder
18. december 2009 - 11:08 #12
Kære ekspert,

Jeg kan endnu ikke updatere Security Update for SQL Service Pack 3 (KB970892)- fejlkode 6D9E (ukendt).

Kan nogen hjælpe mig?

Tpf
Knak
Avatar billede f-arn Guru
18. december 2009 - 14:38 #13
Beklager - jeg ved ikke lige hvorfor jeg ikke har fået mail om dette spørgsmål.
Hent:
http://cid-802680f7e9e24f69.skydrive.live.com/self.aspx/Diverse/WindowsUpdate-Reg.cmd
Højreklik på WindowsUpdate-Reg.cmd og vælg Kør som administrator.
Tjek Windows Update.
Avatar billede hknak Nybegynder
06. januar 2010 - 16:03 #14
Kære F-arn,

Forsøgte og alt gik fint - undtagen selve Windows Update. Fejl er fortsat 6D9E:

1 resultat for "WindowsUpdate_00006D9E" "WindowsUpdate_dt000":
1.  1 Fejlfinding i forbindelse med installation af opdateringer

Jeg har ca 8% disk tilbage (6,5 Gb) - kan det have en betydning?

Tak for din tålmodighed.

Knak
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester