Det troede jeg, men gør selvfølgelig, som der bliver anbefalet. Vedlægger en frisk Combofix log.
ComboFix 10-06-14.01 - lars 14-06-2010 20:12:57.5.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.45.1030.18.1023.736 [GMT 2:00]
Kører fra: c:\documents and settings\lars\Skrivebord\ComboFix.exe
Kommandoer benyttet :: c:\documents and settings\lars\Skrivebord\CFScript.txt
AV: avast! antivirus 4.8.1368 [VPS 100614-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((( Filer skabt fra 2010-05-14 til 2010-06-14 )))))))))))))))))))))))))))))))))))
.
2010-06-13 17:50 . 2010-06-13 18:19 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Adobe
2010-06-13 17:46 . 2010-06-13 17:47 -------- d-----w- c:\programmer\Fælles filer\Adobe
2010-06-12 23:09 . 2010-06-12 23:09 -------- d-----w- c:\documents and settings\lars\Application Data\Download Manager
2010-06-12 20:34 . 2010-06-12 20:34 133 ----a-w- c:\documents and settings\lars\Lokale indstillinger\Application Data\fusioncache.dat
2010-06-12 20:34 . 2010-06-12 20:47 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\ApplicationHistory
2010-06-11 16:35 . 2010-05-06 10:34 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-06-11 11:08 . 2010-06-11 11:08 -------- d-----w- C:\32788R22FWJFW.1.tmp
2010-06-11 10:47 . 2010-06-11 10:47 -------- d-----w- c:\documents and settings\lars\Application Data\Windows Search
2010-06-11 08:57 . 2010-06-11 08:57 -------- d-----w- c:\documents and settings\lars\Application Data\MSN6
2010-06-11 08:57 . 2010-06-11 08:57 -------- d-----w- c:\documents and settings\All Users\Application Data\MSN6
2010-06-08 07:01 . 2010-06-08 07:01 -------- d-----w- c:\documents and settings\lars\DoctorWeb
2010-06-08 06:26 . 2008-04-14 07:05 26624 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2010-06-07 19:37 . 2002-01-01 10:19 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2010-06-07 19:26 . 2010-06-07 19:26 57344 ----a-w- c:\documents and settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-06-07 19:21 . 2010-06-07 19:21 57409 ----a-w- c:\documents and settings\All Users\Application Data\DivX\ControlPanel\Uninstaller.exe
2010-06-07 19:21 . 2010-06-07 19:21 52963 ----a-w- c:\documents and settings\All Users\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
2010-06-07 19:21 . 2010-06-07 19:21 54073 ----a-w- c:\documents and settings\All Users\Application Data\DivX\Qt4.5\Uninstaller.exe
2010-06-07 19:21 . 2010-06-07 19:21 -------- d-----w- c:\programmer\Fælles filer\DivX Shared
2010-06-07 19:21 . 2010-06-07 19:21 56969 ----a-w- c:\documents and settings\All Users\Application Data\DivX\ASPEncoder\Uninstaller.exe
2010-06-07 19:20 . 2010-06-07 19:22 -------- d-----w- c:\programmer\DivX
2010-06-07 19:19 . 2010-06-07 19:22 -------- d-----w- c:\documents and settings\All Users\Application Data\DivX
2010-06-07 18:17 . 2010-06-07 18:17 -------- d-----w- c:\programmer\Microsoft.NET
2010-06-07 18:16 . 2010-06-07 18:16 -------- d-----w- c:\programmer\MSXML 6.0
2010-06-07 18:14 . 2010-06-07 18:19 -------- d-----w- c:\programmer\Microsoft SQL Server
2010-06-07 18:13 . 2010-06-07 18:20 -------- d-----w- c:\documents and settings\All Users\Application Data\Team MediaPortal
2010-06-07 18:12 . 2008-07-31 08:41 68616 ----a-w- c:\windows\system32\XAPOFX1_1.dll
2010-06-07 18:12 . 2008-07-31 08:40 509448 ----a-w- c:\windows\system32\XAudio2_2.dll
2010-06-07 18:12 . 2008-07-31 08:41 238088 ----a-w- c:\windows\system32\xactengine3_2.dll
2010-06-07 18:12 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\system32\D3DCompiler_39.dll
2010-06-07 18:12 . 2008-07-12 06:18 467984 ----a-w- c:\windows\system32\d3dx10_39.dll
2010-06-07 18:12 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\system32\D3DX9_39.dll
2010-06-07 18:12 . 2008-05-30 12:19 507400 ----a-w- c:\windows\system32\XAudio2_1.dll
2010-06-07 18:12 . 2008-05-30 12:17 65032 ----a-w- c:\windows\system32\XAPOFX1_0.dll
2010-06-07 18:10 . 2010-06-07 18:10 -------- d-----w- c:\windows\Logs
2010-06-07 17:17 . 2010-06-07 18:20 -------- d-----w- c:\programmer\Team MediaPortal
2010-06-07 16:37 . 2010-06-07 16:37 -------- d-----w- c:\documents and settings\lars\Application Data\Malwarebytes
2010-06-07 16:37 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-06-07 16:37 . 2010-06-07 16:37 -------- d-----w- c:\programmer\Malwarebytes' Anti-Malware
2010-06-07 16:37 . 2010-06-07 16:37 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-06-07 16:37 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-06-07 15:51 . 2010-06-12 20:48 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Temp
2010-06-07 15:38 . 2008-04-13 09:46 15232 -c--a-w- c:\windows\system32\dllcache\mpe.sys
2010-06-07 15:38 . 2008-04-13 09:46 15232 ----a-w- c:\windows\system32\drivers\MPE.sys
2010-06-07 15:37 . 2008-04-14 07:05 363520 -c--a-w- c:\windows\system32\dllcache\psisdecd.dll
2010-06-07 15:37 . 2008-04-14 07:05 363520 ----a-w- c:\windows\system32\PsisDecd.dll
2010-06-07 15:37 . 2008-04-13 09:46 11776 -c--a-w- c:\windows\system32\dllcache\bdasup.sys
2010-06-07 15:37 . 2008-04-13 09:46 11776 ----a-w- c:\windows\system32\drivers\BdaSup.sys
2010-06-07 15:37 . 2010-06-07 15:37 -------- dc----w- c:\windows\system32\DRVSTORE
2010-06-07 15:37 . 2006-12-18 15:53 1121536 ----a-w- c:\windows\system32\drivers\3xHybrid.sys
2010-06-07 15:37 . 2003-02-27 08:07 3072 ----a-w- c:\windows\system32\34CoInstaller.dll
2010-06-07 14:17 . 2010-06-07 14:17 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Innovative Solutions
2010-06-07 14:17 . 2010-06-07 14:17 -------- d-----w- c:\documents and settings\All Users\Application Data\Innovative Solutions
2010-06-07 14:00 . 2010-06-07 14:00 -------- d-----w- c:\programmer\Speccy
2010-06-07 13:57 . 2010-06-07 13:57 -------- d-----w- c:\programmer\CCleaner
2010-06-07 13:43 . 2010-06-07 13:43 -------- d-----w- c:\windows\system32\XPSViewer
2010-06-07 13:43 . 2010-06-07 13:43 -------- d-----w- c:\programmer\MSBuild
2010-06-07 13:43 . 2010-06-07 13:43 -------- d-----w- c:\programmer\Reference Assemblies
2010-06-07 13:42 . 2008-07-06 12:06 89088 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-06-07 13:42 . 2008-07-06 12:06 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2010-06-07 13:42 . 2008-07-06 12:06 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2010-06-07 13:42 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2010-06-07 13:42 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2010-06-07 13:42 . 2008-07-06 10:50 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2010-06-07 13:42 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2010-06-07 13:42 . 2008-07-06 12:06 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2010-06-07 13:42 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2010-06-07 13:42 . 2010-06-07 13:42 -------- d-----w- C:\d48e3c61ea876d5c833a368f98
2010-06-07 13:38 . 2010-06-07 13:38 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Identities
2010-06-07 13:38 . 2010-06-07 13:38 -------- d-----w- c:\documents and settings\lars\Application Data\Windows Desktop Search
2010-06-07 13:38 . 2010-06-07 13:38 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2010-06-07 13:38 . 2010-06-12 20:35 -------- d-----w- c:\programmer\Windows Desktop Search
2010-06-07 13:38 . 2010-06-07 13:38 -------- d-----w- c:\windows\system32\GroupPolicy
2010-06-07 13:37 . 2008-03-07 17:02 98304 -c----w- c:\windows\system32\dllcache\nlhtml.dll
2010-06-07 13:37 . 2008-03-07 17:02 29696 -c----w- c:\windows\system32\dllcache\mimefilt.dll
2010-06-07 13:37 . 2008-03-07 17:02 192000 -c----w- c:\windows\system32\dllcache\offfilt.dll
2010-06-07 13:37 . 2010-06-07 13:37 -------- d-----w- c:\programmer\Windows Media Connect 2
2010-06-07 13:35 . 2010-06-07 13:36 -------- d-----w- c:\windows\system32\drivers\UMDF
2010-06-07 13:35 . 2010-06-07 13:35 -------- d-----w- c:\windows\system32\LogFiles
2010-06-07 13:33 . 2010-06-07 13:34 -------- d-----w- c:\windows\system32\URTTemp
2010-06-07 13:25 . 2010-06-07 13:25 -------- d-sh--w- c:\documents and settings\lars\IECompatCache
2010-06-07 13:24 . 2010-06-07 13:24 -------- d-sh--w- c:\documents and settings\lars\PrivacIE
2010-06-07 13:18 . 2010-06-07 13:18 -------- d-sh--w- c:\documents and settings\lars\IETldCache
2010-06-07 13:16 . 2010-04-16 11:43 41984 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-06-07 13:15 . 2002-01-01 01:42 -------- d-----w- c:\windows\ie8updates
2010-06-07 13:15 . 2010-05-06 10:34 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-06-07 13:15 . 2010-05-06 10:34 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-06-07 13:15 . 2010-05-06 10:34 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-06-07 13:15 . 2010-05-06 10:34 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-06-07 13:15 . 2010-05-06 10:34 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-06-07 13:15 . 2010-05-06 10:34 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-06-07 13:14 . 2010-06-07 13:15 -------- dc-h--w- c:\windows\ie8
2010-06-03 07:14 . 2008-04-14 07:05 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-06-02 06:09 . 2010-04-08 00:50 1496064 ----a-w- c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
2010-06-02 06:09 . 2010-04-08 00:50 43008 ----a-w- c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
2010-06-02 06:09 . 2010-04-08 00:50 338944 ----a-w- c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll
2010-06-02 06:09 . 2010-04-08 00:50 346112 ----a-w- c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll
2010-06-02 06:08 . 2010-06-02 06:08 0 ----a-w- c:\windows\nsreg.dat
2010-06-02 06:08 . 2010-06-02 06:08 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Mozilla
2010-06-01 14:53 . 2010-06-01 14:53 -------- d-----w- c:\programmer\Fælles filer\Java
2010-06-01 14:53 . 2010-06-01 14:53 503808 ----a-w- c:\documents and settings\lars\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-2280a7a2-n\msvcp71.dll
2010-06-01 14:53 . 2010-06-01 14:53 499712 ----a-w- c:\documents and settings\lars\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-2280a7a2-n\jmc.dll
2010-06-01 14:53 . 2010-06-01 14:53 348160 ----a-w- c:\documents and settings\lars\Application Data\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-2280a7a2-n\msvcr71.dll
2010-06-01 14:53 . 2010-06-01 14:53 61440 ----a-w- c:\documents and settings\lars\Application Data\Sun\Java\Deployment\SystemCache\6.0\50\5535ab32-54f8b941-n\decora-sse.dll
2010-06-01 14:53 . 2010-06-01 14:53 12800 ----a-w- c:\documents and settings\lars\Application Data\Sun\Java\Deployment\SystemCache\6.0\50\5535ab32-54f8b941-n\decora-d3d.dll
2010-06-01 14:52 . 2010-06-01 14:52 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-06-01 14:52 . 2010-06-01 14:52 -------- d-----w- c:\programmer\Java
2010-06-01 14:51 . 2010-06-01 14:51 -------- d-----w- c:\windows\system32\Adobe
2010-06-01 14:32 . 2010-06-01 14:32 -------- d-----w- c:\documents and settings\NetworkService\Lokale indstillinger\Application Data\Google
2010-06-01 14:28 . 2010-06-01 14:28 -------- d-----w- c:\programmer\WOT
2010-06-01 14:27 . 2010-06-01 14:27 -------- d-----w- c:\documents and settings\LocalService\Lokale indstillinger\Application Data\Google
2010-06-01 14:27 . 2010-06-14 10:23 -------- d-----w- c:\documents and settings\lars\Lokale indstillinger\Application Data\Google
2010-06-01 14:26 . 2010-06-09 13:16 -------- d-----w- c:\programmer\Google
2010-06-01 13:25 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-06-01 13:24 . 2010-02-24 13:11 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-06-01 13:23 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-06-01 13:23 . 2009-12-31 16:50 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-06-01 13:22 . 2009-10-15 16:32 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-06-01 13:22 . 2009-10-15 16:32 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-06-01 13:22 . 2009-11-21 15:58 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-06-01 13:20 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-06-01 13:17 . 2009-07-31 04:34 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2010-06-01 13:17 . 2008-10-15 16:37 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-06-01 13:17 . 2008-05-01 14:36 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-06-01 13:17 . 2008-06-14 17:35 272256 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-06-01 13:16 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-12 20:46 . 2002-09-16 12:00 525444 ----a-w- c:\windows\system32\perfh006.dat
2010-06-12 20:46 . 2002-09-16 12:00 108292 ----a-w- c:\windows\system32\perfc006.dat
2010-06-10 13:44 . 2010-06-07 19:22 -------- d-----w- c:\documents and settings\lars\Application Data\DivX
2010-06-01 14:39 . 2010-06-01 14:39 -------- d-----w- c:\programmer\Alwil Software
2010-06-01 12:47 . 2010-06-11 09:06 150070 ----a-w- c:\windows\PCHealth\HelpCtr\Config\Cache\Personal_32_1030.dat
2010-06-01 12:47 . 2010-06-01 11:52 76487 ----a-w- c:\windows\PCHealth\HelpCtr\OfflineCache\index.dat
2010-06-01 11:53 . 2010-06-01 11:53 -------- d-----w- c:\programmer\microsoft frontpage
2010-06-01 11:53 . 2010-06-01 11:53 558142 ----a-w- c:\windows\java\Packages\P77JZB5R.ZIP
2010-06-01 11:53 . 2010-06-01 11:53 2678 ----a-w- c:\windows\java\Packages\Data\0XBPZVRV.DAT
2010-06-01 11:53 . 2010-06-01 11:53 2678 ----a-w- c:\windows\java\Packages\Data\93XB9ZLV.DAT
2010-06-01 11:53 . 2010-06-01 11:53 155995 ----a-w- c:\windows\java\Packages\GOCDNJH7.ZIP
2010-06-01 11:53 . 2010-06-01 11:53 2678 ----a-w- c:\windows\java\Packages\Data\PRN7XJHJ.DAT
2010-06-01 11:53 . 2010-06-01 11:53 2678 ----a-w- c:\windows\java\Packages\Data\DRFF7ZL3.DAT
2010-06-01 11:53 . 2010-06-01 11:53 2678 ----a-w- c:\windows\java\Packages\Data\5JZ5FNDR.DAT
2010-06-01 11:52 . 2010-06-01 11:49 -------- d-----w- c:\programmer\Onlinetjenester
2010-06-01 11:51 . 2010-06-01 11:51 -------- d-----w- c:\programmer\Fælles filer\Tjenester
2010-06-01 11:50 . 2010-06-01 11:50 21644 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-06 10:34 . 2002-09-16 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 08:09 . 2002-09-16 12:00 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-27 18:40 . 2010-06-07 19:22 9200 ------w- c:\windows\system32\drivers\cdralw2k.sys
2010-04-27 18:40 . 2010-06-07 19:22 9072 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2010-04-27 18:40 . 2010-06-07 19:22 45648 ------w- c:\windows\system32\drivers\PxHelp20.sys
2010-04-27 18:40 . 2010-06-07 19:22 133616 ------w- c:\windows\system32\pxafs.dll
2010-04-27 18:40 . 2010-06-07 19:22 126448 ------w- c:\windows\system32\pxinsi64.exe
2010-04-27 18:40 . 2010-06-07 19:22 123888 ------w- c:\windows\system32\pxcpyi64.exe
2010-04-20 05:31 . 2002-09-16 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll
.
((((((((((((((((((((((((((((( SnapShot_2002-01-01_11.16.40 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-06-14 17:56 . 2010-06-14 17:56 16384 c:\windows\Temp\Perflib_Perfdata_4c0.dat
- 2002-01-01 11:16 . 2002-01-01 11:16 16384 c:\windows\Temp\Perflib_Perfdata_4c0.dat
+ 2010-06-14 17:56 . 2010-06-14 17:56 16384 c:\windows\Temp\Perflib_Perfdata_3b4.dat
- 2002-09-16 12:00 . 2002-01-01 01:47 88702 c:\windows\system32\perfc009.dat
+ 2002-09-16 12:00 . 2010-06-12 20:46 88702 c:\windows\system32\perfc009.dat
+ 2009-11-05 20:17 . 2009-11-05 20:17 11600 c:\windows\system32\mui\0409\mscorees.dll
+ 2009-06-24 17:56 . 2009-06-24 17:56 73728 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
+ 2010-04-01 09:42 . 2010-04-01 09:42 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2010-03-31 12:51 . 2010-03-31 12:51 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2003-02-20 18:09 . 2003-02-20 18:09 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2010-03-31 12:51 . 2010-03-31 12:51 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2003-02-20 18:09 . 2003-02-20 18:09 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2004-07-14 23:32 . 2004-07-14 23:32 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2010-03-31 12:51 . 2010-03-31 12:51 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2004-07-15 00:49 . 2004-07-15 00:49 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-03-31 13:32 . 2010-03-31 13:32 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:19 . 2003-02-20 18:19 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-03-31 13:32 . 2010-03-31 13:32 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-06-12 20:45 . 2010-06-12 20:45 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_c94ab093\System.Drawing.Design.dll
+ 2010-06-12 20:36 . 2010-06-12 20:36 61440 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_f08558b8\CustomMarshalers.dll
+ 2010-06-12 20:34 . 2010-06-12 20:34 81920 c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2002-09-16 12:00 . 2010-06-12 20:46 487832 c:\windows\system32\perfh009.dat
- 2002-09-16 12:00 . 2002-01-01 01:47 487832 c:\windows\system32\perfh009.dat
+ 2008-05-26 20:18 . 2009-05-24 22:24 350208 c:\windows\system32\mssph.dll
- 2008-05-26 20:18 . 2008-05-26 20:18 350208 c:\windows\system32\mssph.dll
+ 2010-06-01 12:43 . 2007-06-27 13:34 317952 c:\windows\system32\dllcache\unregmp2.exe
- 2004-07-14 23:33 . 2004-07-14 23:33 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2010-03-31 12:51 . 2010-03-31 12:51 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2004-07-14 23:25 . 2004-07-14 23:25 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2010-03-31 12:49 . 2010-03-31 12:49 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2010-03-31 13:32 . 2010-03-31 13:32 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2004-07-15 00:49 . 2004-07-15 00:49 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2009-03-20 09:48 . 2009-03-20 09:48 183808 c:\windows\Installer\83a64d.msp
+ 2002-09-16 12:00 . 2007-06-27 13:34 317952 c:\windows\inf\unregmp2.exe
+ 2009-05-20 10:17 . 2009-05-20 10:17 689536 c:\windows\Downloaded Program Files\Manager.exe
+ 2010-06-12 20:46 . 2010-06-12 20:46 835584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_cb738bc3\System.Drawing.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 192512 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_073f1e56\System.Drawing.Design.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 118784 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_4471f3f1\CustomMarshalers.dll
+ 2010-04-01 09:42 . 2010-04-01 09:42 1265664 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2010-04-01 09:42 . 2010-04-01 09:42 1232896 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2010-03-31 12:50 . 2010-03-31 12:50 2514944 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2010-03-31 12:50 . 2010-03-31 12:50 2527232 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2010-04-01 09:42 . 2010-04-01 09:42 2142208 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2010-06-13 17:47 . 2010-06-13 17:47 3954688 c:\windows\Installer\1898e3.msi
+ 2010-06-12 20:46 . 2010-06-12 20:46 4792320 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_b8e9418d\System.dll
+ 2010-06-12 20:36 . 2010-06-12 20:36 1966080 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_2b018445\System.dll
+ 2010-06-12 20:45 . 2010-06-12 20:45 2088960 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_8e3d0750\System.Xml.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 5513216 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_3af909e6\System.Xml.dll
+ 2010-06-12 20:45 . 2010-06-12 20:45 3018752 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_c10c63f5\System.Windows.Forms.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 7884800 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_5b82b544\System.Windows.Forms.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 2244608 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_3c4aa288\System.Drawing.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 3395584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_a6183718\System.Design.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 1466368 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_4fd05f04\System.Design.dll
+ 2010-06-12 20:47 . 2010-06-12 20:47 8908800 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_ea7a4824\mscorlib.dll
+ 2010-06-12 20:46 . 2010-06-12 20:46 3391488 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_305b6d1d\mscorlib.dll
+ 2010-06-12 20:34 . 2010-06-12 20:34 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2010-06-12 20:34 . 2010-06-12 20:34 1265664 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-04-02 17:29 . 2010-04-02 17:29 11413504 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp
+ 2010-04-02 10:30 . 2010-04-02 10:30 17456640 c:\windows\Installer\83a66a.msp
.
-- Snapshot sat til dags dato --
.
((((((((((((((((((((((((((((((((((( Start steder i reg.basen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\programmer\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-06-09 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"Adobe Reader Speed Launcher"="c:\programmer\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760]
"Adobe ARM"="c:\programmer\Fælles filer\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\programmer\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [01-06-2010 16:39 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [01-06-2010 16:39 20560]
R3 3xHybrid;Pinnacle PCTV 100i-110i-300i-310i-MCE;c:\windows\system32\drivers\3xHybrid.sys [07-06-2010 17:37 1121536]
S2 gupdate;Tjenesten Google Update (gupdate);c:\programmer\Google\Update\GoogleUpdate.exe [09-06-2010 15:16 136176]
S3 TVService;TVService;c:\programmer\Team MediaPortal\MediaPortal TV Server\TvService.exe [09-05-2009 00:36 192512]
.
Indhold af mappen 'Planlagte Opgaver'
2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\programmer\Google\Update\GoogleUpdate.exe [2010-06-09 13:16]
2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\programmer\Google\Update\GoogleUpdate.exe [2010-06-09 13:16]
.
.
------- Yderligere scanning -------
.
uStart Page =
hxxp://www.google.dk/uSearchAssistant =
hxxp://www.google.com/ieuSearchURL,(Default) =
hxxp://www.google.com/search?q=%sIE: Google Sidewiki ... - c:\programmer\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
DPF: DirectAnimation Java Classes -
file://c:\windows\Java\classes\dajava.cabDPF: Microsoft XML Parser for Java -
file://c:\windows\Java\classes\xmldso.cabFF - ProfilePath - c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.google.dk/FF - prefs.js: keyword.URL -
hxxp://www.google.com/search?sourceid=navclient&hl=da&q=FF - component: c:\documents and settings\lars\Application Data\Mozilla\Firefox\Profiles\sd41e0ao.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - plugin: c:\programmer\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\programmer\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\programmer\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLITIKKER ----
c:\programmer\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\programmer\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\programmer\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\programmer\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\programmer\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\programmer\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\programmer\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\programmer\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".dk");
c:\programmer\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "
chrome://browser/locale/browser.properties");
c:\programmer\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "
chrome://browser/locale/browser.properties");
c:\programmer\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-06-14 20:17
Windows 5.1.2600 Service Pack 3 NTFS
scanner skjulte processer ...
scanner skjulte autostarter ...
scanner skjulte filer ...
scanning gennemført med succes
skjulte filer: 0
**************************************************************************
.
--------------------- DLLs startet under kørende Processer ---------------------
- - - - - - - > 'explorer.exe'(1924)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Gennemført tid: 2010-06-14 20:19:24
ComboFix-quarantined-files.txt 2010-06-14 18:19
ComboFix2.txt 2002-01-01 19:14
ComboFix3.txt 2002-01-01 18:48
ComboFix4.txt 2002-01-01 11:21
Pre-Kørsel: 72.875.499.520 byte ledig
Post-Kørsel: 72.865.615.872 byte ledig
Current=3 Default=3 Failed=2 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 1AFF592AE032F1BFB8E3BF44B6517ED2