Avatar billede monadona Nybegynder
28. maj 2010 - 22:44 Der er 29 kommentarer

Tjenesten windows sikkerhed kan ikke startes

Hej
Jeg har en pc med windows 7 installeret , fornyligt bliv den infiseret med "antispywear soft platinium". efter jeg gennem gik jers fremgangs mode fra jers tidliger indlæg forsvand den.men jeg modtagger dette msg. "Tjenesten windows sikkerhed kan ikke startes" jeg har på fornemelse atpcen er stadig inficeret.
Please  er et nogn der kam hjælpe mig med at fix den.
Avatar billede johnstigers Seniormester
28. maj 2010 - 22:57 #1
Hvilken metode er det helt præcist?
28. maj 2010 - 22:58 #2
Velkommen til E. ...

Nu ved jeg jo ikke hvillke procedure du HAR været igennem...

Hent og instalér CCleaner http://www.ccleaner.com/ + http://www.spywarefri.dk/manualer/manual-for-installation-og-brug-af-ccleaner/
Under installationen får du tilbudt [Yahoo Toolbar]. Du kan sige ja eller *NEJ* til den.
http://vistaguide.dk/?Artikler/CCleaner-GuideTilOptimeringAfVista/763
Lad programmet foretage en oprydning...

--------

Hent Malwarebytes Anti-Malware herfra:
http://www.besttechie.net/tools/mbam-setup.exe

Installer programmet - når det er gjort skal du lade programmet opdatere sig. Herefter åbner et vindue, hvor du skal flytte prikken til "Kør et fuldstændigt systemscan" - klik på Skan Knappen - lad programmet arbejde. Når det er færdig (det tager lidt tid afhængig af hvor meget du har på computeren).
Derefter - Tryk på "Vis resultater" knappen efter scanningen - og herefter tryk på "Fjern det valgte" - nu åbnes log'en og du skal gemme den et sted, hvor du kan finde den igen.
Kopier indholdet herind sammen med en frisk log fra HiJackThis...

...og her er omtalte HiJackThis ->
http://www.spywareinfo.dk/index.htm#/manualer/hijackthis.htm

Bemærk at HiJackThis.exe programmet skal gemmes i en dertil oprettet mappe og IKKE køres direkte fra nettet...

PS: Brug denne version af HJT -> http://www.trendsecure.com/portal/en-US/_download/HiJackThis.exe

Mht.: Vista/Win7 - HøjreMusseTast - "Kør som Administrator..."

------------------
Avatar billede monadona Nybegynder
29. maj 2010 - 00:31 #3
Hej John:jeg brugte somme metode som karise-lary beskriver

Og karise-lary:her er logene efter din henvisning:
_log fra anti_malware


Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4152

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

29-05-2010 00:14:05
mbam-log-2010-05-29 (00-14-05).txt

Skanningstype: Fuldstændig skanning (C:\|D:\|F:\|G:\|)
Objekter skannet: 216629
Tid gået: 35 minut(ter), 14 sekund(er)

Hukommelses Processorer Inficeret: 0
Hukommelses Moduler Inficeret: 0
Registreringsdatabasenøgler Inficeret: 0
Registreringsdatabaseværdier Inficeret: 0
Registreringsdatabasedata Objekter Inficeret: 0
Inficerede Mapper: 0
Inficerede Filer: 323

Hukommelses Processorer Inficeret:
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret:
(Ingen skadelige objekter blev fundet)

Inficerede Mapper:
(Ingen skadelige objekter blev fundet)

Inficerede Filer:
C:\Users\Brumbassen\AppData\Local\12520850scn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\12520850sgc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\aaaaaaaazfs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\accessibilitycplcv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\ACEngSvrhsasy.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\ACEngSvrhsjw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Brumbassen\AppData\Local\ActionCenterx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437j.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437jc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437jq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437jx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437jxk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437jxkw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437x.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520437z.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850c.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850cl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850clf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850cx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850cy.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850cyi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850k.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850ka.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850s.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850scv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850scw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850scwd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850scx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850scxb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfpd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfpdq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfpp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfppv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfppvh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfppvq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sfwc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sga.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgoz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgozf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgrb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgrbj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgrm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sgrs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\12520850sl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaadg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaadgu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaadp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazcm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazct.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazfv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazfz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazfzp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazy.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaaaaaaazyi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbdr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientblg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbtsc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientbtsq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientfc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientfca.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientfcaz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientfm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientfp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientga.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\aaclientuf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ABLKSRr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ABLKSRrn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ABLKSRrnc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ABLKSRrnm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplcb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplcbq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplcp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplcpd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycpli.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\accessibilitycplib.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACCTRESe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrho.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsas.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsns.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhso.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsob.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsoc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsoce.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsog.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsom.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsomc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsrc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhsrcn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhxc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhxq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhxqx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrhxw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrlh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ACEngSvrv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acleditzb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acleditzg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acleditzk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acluid.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acluidz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acluidzi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\acluig.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCentero.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenteroj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterot.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterzi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterzil.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterzix.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterzm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\ActionCenterzr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\activedsc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\activedse.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\activedsn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\activedsx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\actxprxys.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\AdapterTroubleshooterl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\AdapterTroubleshooterle.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\AdapterTroubleshooterll.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\admparsebo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\admparsebos.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\admparsebx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adprovidery.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adsldpq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adsmsextm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adsnth.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adsnthe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\adtschemaz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\advapi32i.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\advpackbi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\advpackbim.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\advpackbj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\advpackbjj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\AgCPanelSpanishe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\AgCPanelTraditionalChineseu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437j.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437jc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437jq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437jx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437jxk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437jxkw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437x.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520437z.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850c.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850cl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850clf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850cx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850cy.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850cyi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850k.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850ka.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850s.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850scv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850scw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850scwd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850scx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850scxb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfpd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfpdq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfpp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfppv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfppvh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfppvq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sfwc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sga.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgoz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgozf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgrb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgrbj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgrm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sgrs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\12520850sl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaadg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaadgu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaadp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazcm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazct.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazfv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazfz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazfzp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazy.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaaaaaaazyi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbdr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientblg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbtsc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientbtsq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientfc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientfca.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientfcaz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientfm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientfp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientga.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientu.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\aaclientuf.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ABLKSRr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ABLKSRrn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ABLKSRrnc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ABLKSRrnm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplcb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplcbq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplcp.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplcpd.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycpli.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\accessibilitycplib.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACCTRESe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrho.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhs.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsa.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsas.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsns.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhso.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsob.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsoc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsoce.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsog.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsom.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsomc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsrc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhsrcn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhxc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhxq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhxqx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrhxw.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrlh.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ACEngSvrv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acleditzb.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acleditzg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acleditzk.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acluid.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acluidz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acluidzi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\acluig.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCentero.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenteroj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterot.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterv.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterzi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterzil.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterzix.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterzm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\ActionCenterzr.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\activedsc.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\activedse.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\activedsn.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\activedsx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\actxprxys.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AdapterTroubleshooterl.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AdapterTroubleshooterle.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AdapterTroubleshooterll.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\admparsebo.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\admparsebos.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\admparsebx.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adprovidery.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adsldpq.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adsmsextm.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adsnth.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adsnthe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\adtschemaz.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\advapi32i.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\advpackbi.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\advpackbim.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\advpackbj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\advpackbjj.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AgCPanelSpanishe.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\AgCPanelTraditionalChineseu.exe (Trojan.Agent) -> Quarantined and deleted successfully.

og her er logen fra HijackThis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:20:19, on 29-05-2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files\MSC\MSC Internet Security Suite\MSC WebSite-Inspector\1.2.1.24.00872482\x86\Toolbar\CAGlobal.exe
C:\Windows\SysWow64\Macromed\Flash\FlashUtil10e.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files\MSC\MSC Internet Security Suite\MSC WebSite-Inspector\1.2.1.24.00872482\x86\Light\CAGlobalLight.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll
O2 - BHO: Hjælp til tilmelding til Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O2 - BHO: MSC Toolbar Helper - {FBF2401B-7447-4727-BE5D-C19B2075CA84} - C:\Program Files\MSC\MSC Internet Security Suite\MSC WebSite-Inspector\1.2.1.24.00872482\x86\Toolbar\CallingIDIE.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll
O3 - Toolbar: MSC Toolbar - {10134636-E7AF-4AC5-A1DC-C7C44BB97D81} - C:\Program Files\MSC\MSC Internet Security Suite\MSC WebSite-Inspector\1.2.1.24.00872482\x86\Toolbar\CallingIDIE.dll
O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files (x86)\Cyberlink\MediaShowEspresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\MediaShowEspresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.0"
O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe"
O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files (x86)\Cyberlink\PowerDVD9\Language\Language.exe"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [setc] C:\Program Files (x86)\MySecurityCenter\Programs\setc.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKLM\..\Policies\Explorer\Run: [rtw9ws] C:\Users\BRUMBA~1\AppData\Local\Temp\jo2lej.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETVÆRKSTJENESTE')
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki ... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
O9 - Extra button: Blog det - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog det i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O13 - Gopher Prefix:
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: callingid - {086D03BA-57AC-4C8E-A33D-0BAABF742411} - C:\Program Files\MSC\MSC Internet Security Suite\MSC WebSite-Inspector\1.2.1.24.00872482\x86\Toolbar\CallingIDToolbar.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Bonjour tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: CaCCProvSP - CA, Inc. - C:\Program Files\MSC\MSC Internet Security Suite\ccprovsp.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\MSC\MSC Internet Security Suite\MSC Anti-Virus Plus\isafe.exe
O23 - Service: CA Common Scheduler Service (ccSchedulerSVC) - Computer Associates International, Inc. - C:\Program Files\MSC\MSC Internet Security Suite\ccschedulersvc.exe
O23 - Service: CyberDefender Launcher (CDLauncher) - Unknown owner - C:\Users\Brumbassen\AppData\Local\CyberDefender Internet Security\AntiSpyware\CDLauncherWS.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MySecurityCenter License Service - Unknown owner - C:\Program Files (x86)\MySecurityCenter\Programs\service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: HIPS Event Manager (UmxAgent) - CA - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe
O23 - Service: HIPS Configuration Interpreter (UmxCfg) - CA - C:\Program Files (x86)\CA\SharedComponents\HIPSEngine\UmxCfg.exe
O23 - Service: HIPS Firewall Helper (UmxFwHlp) - CA - C:\Program Files\CA\SharedComponents\HIPSEngine\UmxFwHlp.exe
O23 - Service: HIPS Policy Manager (UmxPol) - CA - C:\Program Files (x86)\CA\SharedComponents\HIPSEngine\UmxPol.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: vseamps - Authentium, Inc - C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
O23 - Service: vsedsps - Authentium, Inc - C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
O23 - Service: vseqrts - Authentium, Inc - C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinSock Extention Manager (WinExtManager) - Unknown owner - C:\Windows\SysWOW64\mdmcls32.exe
O23 - Service: WinSock Svchost Manager (WinSvchostManager) - Unknown owner - C:\Windows\SysWOW64\svcprs32.exe
O23 - Service: WinSvchostManagerSrv - Unknown owner - C:\Windows\SysWOW64\cfgmig32.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14302 bytes
29. maj 2010 - 11:02 #4
Nøøøøøj - der var jo en del !!!

-------

Kør en scanning med Hijackthis, (HøjreMusseTast - "Kør som administrator...")
Du får herunder nogle filer, som du skal fixe. Det, du skal gøre, er at sætte et flueben ud for disse filer. Når du har gjort det, så lukker du alle andre vinduer ned. Det er meget vigtigt at det eneste vindue, som er åbent er HijackThis vinduet. Husk også at lukke dette vindue, når du har markeret filerne. Nu må du fixe. Klik på Fix checked.

Det er disse, som skal fixes:

R3 - URLSearchHook: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll
O2 - BHO: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll
O3 - Toolbar: freetrialdownloads-DA Toolbar - {704265ca-eb75-4044-899f-f4674807f8c5} - C:\Program Files (x86)\freetrialdownloads-DA\tbfree.dll

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background (Eller bruger du den hele tiden ?)


O4 - HKLM\..\Policies\Explorer\Run: [rtw9ws] C:\Users\BRUMBA~1\AppData\Local\Temp\jo2lej.exe


Genstart normalt...

-------

Hvordan kører PC'en så nu ?
Avatar billede monadona Nybegynder
29. maj 2010 - 11:35 #5
Jeg modtager stadig dette worning at jeg skal slå windows sikkerhedscenter til og når jeg går det få jeg dette meddelse i en popup window:
"Tjenesten Windows Sikkerhedcenter kan ikke startes"
Avatar billede patrick14 Nybegynder
29. maj 2010 - 13:29 #6
Hent Combofix her og gem den som alg.exe

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Det er vigtigt at du gemmer den under dette navn.

PS.: Vista/Win7 - HøjreMusseTast - "Kør som Administrator."


Vigtigt-> Deaktiver dit antivirus/antispyware program.
Hvis du ikke kan deaktiver programmet, så klik bare "Forsæt og ok" når Combofix advarer, så vil den forsætte.

Du må ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.

Når Combofix er færdig, og efter det (muligvis) har genstartet, skulle der gerne åbnes en logfil: combofix.txt som ligger her C:\ Combofix txt

Hvis logfilen ikke åbnes så finder du den her c:\combofix.txt
Indholdet af denne fil må du gerne lægge herind.

Vær tålmodig og vent til Combofix ruden lukker ned.
Avatar billede johnstigers Seniormester
29. maj 2010 - 13:36 #7
patrick14:
Åbn mappen med Combofix, højreklik et tomt sted i mappen, vælg Ny->tekstdokument, åbn tekstdokumentet, kopier følgende ind:

Killall::
Snapshot::

klik på Filer->Gem som, navngiv den CFScript, luk tekstdokumentet.

Tag så fat i den nye fil med musen, og før den hen over Combofix-filen, hvorefter du "giver slip" med musen.
http://www.fromsej.saknet.dk/billeder/swfcombo.gif
Så skulle Combofix gerne give sig til at arbejde. Muligvis vil den kræve en genstart, hvilket du skal tillade. Du bør ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.
Kopier den fremkomne log herind.


Er det ikke sådan, for at undgå en kæmpe log?
Avatar billede johnstigers Seniormester
29. maj 2010 - 13:37 #8
Jeg spørger kun af nysgerrighed....
Avatar billede patrick14 Nybegynder
29. maj 2010 - 13:42 #9
Det kommer lidt an på hvor meget info at jeg ønsker, ud fra det at spørger siger vil jeg gerne se en lidt bredere log.
Avatar billede monadona Nybegynder
29. maj 2010 - 15:03 #10
jeg kan ikke finde C:\ Combofix txt
Avatar billede johnstigers Seniormester
29. maj 2010 - 15:27 #11
Det er fordi den ligger her:

C:\ComboFix\Combofix.txt
Avatar billede monadona Nybegynder
29. maj 2010 - 16:16 #12
Der findes ikke en mape i c som hedder ComboFix heller ikke Combofix.txt
Avatar billede patrick14 Nybegynder
29. maj 2010 - 16:19 #13
Så prøver vi lige noget andet. Boot i safe mode > kør så combofix > når at combofix vil genstarte maskinen sørger du for at den igen boot i safe mode, så burde der komme en log.
Avatar billede patrick14 Nybegynder
29. maj 2010 - 16:25 #14
Loggen hedder bare combofix og er et tekstdokument .txt enedelsen kan du kun se hvis at du har fuld visning slået til.
Avatar billede monadona Nybegynder
29. maj 2010 - 17:19 #15
når jeg kører combofix i safemode modtager dette msg. incompatible OS. Combofix only works with windows 2000 and Xp.
Avatar billede johnstigers Seniormester
29. maj 2010 - 17:24 #16
#14 den ligger ikke der du skriver :)
Har lige kørt en log, og her ligger den i mappen C:\ComboFix
Avatar billede patrick14 Nybegynder
29. maj 2010 - 17:24 #17
Hent og installere SAS



http://kortlink.dk/3g4f/



Start superantispyware, klik på Tjek for opdateringer.
Klik på Skan din computer, sæt flueben ved alle drev. (Fixed disk betyder harddisk)
Flyt prikken til Udfør komplet skan og klik på Næste, så kører scanningen.


Når den er færdig kommer der et vindue med en opsummering, klik på OK, klik så på næste og så på Udfør.

Der kommer et vindue med Quarantine and removal Complete, klik på OK, klik på Udfør.
Luk programmet, genstart normalt.
---------------------------------------
Start SuperAntiSpyware igen, klik på Preferences, skift til fanebladet Statistics/Logs, i vinduet dobbeltklikker du på SUPERAntiSpyware Scan Log.
Avatar billede patrick14 Nybegynder
29. maj 2010 - 17:26 #18
#16 Det plejer den at gøre, jeg har lige kørt combofix igår og der lå loggen der hvor at jeg skriver. Men jeg kender godt til problemet med at loggen ikke kommer, det kan også have noget at gøre med at CF ikke er så glad for 64 bit.
Avatar billede monadona Nybegynder
29. maj 2010 - 17:26 #19
FYI...
Jeg kan se på netet at der frarådes at man kører ComboFix med Vista og windows 7 fordi det kan skade windows og efterlade den i en ugenopretlige tilstand
Avatar billede patrick14 Nybegynder
29. maj 2010 - 17:32 #20
Den trort jeg at du har fået gal i halsen. Afinstaller combofix sådan.

Kopier denne linie ind i kør: combofix /uninstall

Scan så med sas.
Avatar billede monadona Nybegynder
29. maj 2010 - 17:35 #21
der finds ikke combofix /uninstall
Avatar billede patrick14 Nybegynder
29. maj 2010 - 17:51 #22
Kopier den ind i kør.
Avatar billede patrick14 Nybegynder
29. maj 2010 - 17:57 #23
Når at det nu er en 64 bit maskine så vil jeg anbefale at oprette dit spørgsmål her: www.spywarefri.dk/forum og linke til denne tråd, der skal nok bruges en OTS log og den kan jeg ikke tyde.
Avatar billede monadona Nybegynder
29. maj 2010 - 18:01 #24
det hjlæper heller ikke modtager dett popup
"windows kan ikke finde combofix. Kontroller at duskriver navnet korrekt, og...."
Avatar billede monadona Nybegynder
29. maj 2010 - 18:02 #25
er det fordi vi navngivet den som alg.exe
Avatar billede patrick14 Nybegynder
29. maj 2010 - 18:40 #26
Prøv
Avatar billede patrick14 Nybegynder
29. maj 2010 - 18:41 #27
Og scan så med sas bagefter og så ser vi om at der skal bruges en ots log og skal der det, så må du oprette en bruger på spywarefri, de er uddanet indenfor faget, det er jeg ikke.
Avatar billede monadona Nybegynder
01. november 2010 - 22:59 #28
Tak for hjælpen  problemet er løst efter jeg kørte CCleaner samt skanning med MYInternetSecurity GOLD .
Avatar billede johnstigers Seniormester
02. november 2010 - 08:55 #29
Hvad var grunden til du aldrig vendte tilbage hertil?
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester