Det er DDS'en :).
DDS (Ver_09-12-01.01) - NTFSx86
Run by Casper at 15:49:21,31 on 23-12-2009
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.45.1033.18.3069.1720 [GMT 1:00]
SP: SUPERAntiSpyware *enabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\AVG\AVG9\avgfws9.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgam.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\System32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Users\Casper\AppData\Local\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Casper\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\WSqmCons.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Casper\Documents\Downloads\dds.scr
C:\Windows\system32\conhost.exe
============== Pseudo HJT Report ===============
uStart Page =
www.google.dkBHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
BHO: Hjælp til tilmelding til Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
uRun: [Google Update] "c:\users\casper\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [AVG9_TRAY] c:\progra~1\avg\avg9\avgtray.exe
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
AppInit_DLLs: avgrsstx.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
============= SERVICES / DRIVERS ===============
R0 AVGIDSErHrw7x;AVG9IDSErHr;c:\windows\system32\drivers\AVGIDSwx.sys [2009-12-23 25608]
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2009-12-23 161800]
R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2009-12-23 24856]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-12-23 333192]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-12-23 28424]
R1 AvgTdiX;AVG Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-12-23 360584]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-12-16 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-12-16 74480]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-8-18 176128]
R2 avg9emc;AVG E-mail Scanner;c:\program files\avg\avg9\avgemc.exe [2009-12-23 906520]
R2 avg9wd;AVG WatchDog;c:\program files\avg\avg9\avgwdsvc.exe [2009-12-23 285392]
R2 avgfws9;AVG Firewall;c:\program files\avg\avg9\avgfws9.exe [2009-12-23 2321208]
R2 AVGIDSAgent;AVG9IDSAgent;c:\program files\avg\avg9\identity protection\agent\bin\AVGIDSAgent.exe [2009-12-23 5832712]
R3 AVGIDSDriverw7x;AVG9IDSDriver;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSDriver.sys [2009-12-23 122376]
R3 AVGIDSFilterw7x;AVG9IDSFilter;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSFilter.sys [2009-12-23 30216]
R3 AVGIDSShimw7x;AVG9IDSShim;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSShim.sys [2009-12-23 21208]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2009-12-23 38224]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
R3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-12-16 7408]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
=============== Created Last 30 ================
2009-12-23 21:20:59 0 d-----w- c:\windows\Panther
2009-12-23 14:42:38 0 d-----w- c:\users\casper\appdata\roaming\Malwarebytes
2009-12-23 14:42:34 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-12-23 14:42:33 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-23 14:42:33 0 d-----w- c:\programdata\Malwarebytes
2009-12-23 14:42:33 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-12-23 13:56:33 545 ----a-w- c:\windows\UC.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\RAR.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\PKZIP.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\LHA.PIF
2009-12-23 13:56:33 545 ----a-w- c:\windows\ARJ.PIF
2009-12-23 13:56:33 0 d-----w- c:\users\casper\appdata\roaming\GHISLER
2009-12-23 13:56:33 0 d-----w- C:\totalcmd
2009-12-23 13:23:44 0 d-----w- c:\programdata\SUPERAntiSpyware.com
2009-12-23 13:23:37 0 d-----w- c:\users\casper\appdata\roaming\SUPERAntiSpyware.com
2009-12-23 13:23:37 0 d-----w- c:\program files\SUPERAntiSpyware
2009-12-23 13:23:13 0 d-----w- c:\program files\common files\Wise Installation Wizard
2009-12-23 12:57:19 0 d-----w- c:\users\casper\Tracing
2009-12-23 12:55:58 0 d-----w- c:\program files\Microsoft
2009-12-23 12:55:29 0 d-----w- c:\program files\Windows Live SkyDrive
2009-12-23 12:55:01 0 d-----w- c:\windows\PCHEALTH
2009-12-23 12:52:27 0 d-----w- c:\program files\common files\Windows Live
2009-12-23 12:45:39 0 d--h--w- C:\$AVG
2009-12-23 12:45:36 25608 ----a-w- c:\windows\system32\drivers\AVGIDSwx.sys
2009-12-23 12:45:36 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2009-12-23 12:45:35 161800 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2009-12-23 12:45:32 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-12-23 12:45:30 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-12-23 12:45:15 333192 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-12-23 12:45:13 0 d-----w- c:\windows\system32\drivers\Avg
2009-12-23 12:44:53 24856 ----a-w- c:\windows\system32\drivers\avgfwd6x.sys
2009-12-23 12:44:53 0 d-----w- c:\program files\AVG
2009-12-23 12:44:52 0 d-----w- c:\programdata\avg9
2009-12-23 12:44:09 0 d-sh--w- c:\windows\Installer
2009-12-23 12:33:34 713888 ----a-w- c:\windows\system32\PerfStringBackup.INI
2009-12-23 12:32:13 0 d-----w- c:\windows\system32\wbem\Performance
2009-12-23 12:30:49 0 d-sh--w- C:\Recovery
2009-12-23 12:23:42 0 ----a-w- c:\windows\ativpsrm.bin
==================== Find3M ====================
2009-07-14 04:56:42 31548 ----a-w- c:\windows\inf\perflib\0409\perfd.dat
2009-07-14 04:56:42 31548 ----a-w- c:\windows\inf\perflib\0409\perfc.dat
2009-07-14 04:56:42 291294 ----a-w- c:\windows\inf\perflib\0409\perfi.dat
2009-07-14 04:56:42 291294 ----a-w- c:\windows\inf\perflib\0409\perfh.dat
2009-07-14 04:41:57 174 --sha-w- c:\program files\desktop.ini
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-06-10 21:26:35 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
============= FINISH: 15:49:44,08 ===============