Gå til innhold

Rage

Medlemmer
  • Innlegg

    158
  • Ble med

  • Besøkte siden sist

Innlegg skrevet av Rage

  1. Tenkte jeg skulle hive ut den gamle Viewsonic 22" skjermen jeg har hatt i alt for mange år nå og vurderer å kjøpe en 27".

     

    Tenkte å bruke rundt 2500kr, og har kikket på disse alternativene:

     

    http://www.netshop.no/Avdelinger/Datautstyr/Skjermer/27--LCD/Samsung/Samsung-27-LCD-Syncmaster-P2770FH-1920x1080,-70000-1,-1ms,-DVI-I-HDMI-45900-p0000160857.aspx

     

    http://www.netshop.no/Avdelinger/Datautstyr/Skjermer/27--LED/ASUS/ASUS-27-LED-Wide-VK278Q-1920x1080,DVI-VGA-HDMI-DISP,-WEBCAM-46729-p0000163759.aspx#

     

    http://www.komplett.no/k/ki.aspx?sku=636012

     

    Ser mye film og spiller noe.

     

    Vil en av disse gjøre jobben?

    Eller er det bedre å gå ned i størrelse (24") for å få noe mer brukbart?

     

    Takk for alle svar!

     

    //Andreas

  2. Jeg har en disk som etter et strømbrudd i sommer ikke er helt seg selv.

    Den fungerte greit en ukes tid, men etterhvert ble den mer og mer vanskelig å ha med å gjøre før jeg tilslutt tok den ut av maskinen.

     

    Er ikke så farlig med disken, men skulle gjerne hatt ut dataene. Hadde en backup, men denne disken tryna tidligere i år, ergo ingen backup.

     

    Windows ser disken både i Windows Explorer og under "Disk management", sier den er OK og jeg får opp størrelsen korrekt. Hvis jeg prøver "utforsk" så får jeg beskjed om at disken ikke er formatert.

     

    Har brukt testdisk (reddet dataene på disk nr2 som ble rar etter strømbruddet i sommer), skrevet ny partisjonstabell uten særlig suksess.

     

    Håper noen har innspill til dette, da det hele virker "litt" rart.

     

    På forhånd, takk!

  3. Har hatt en Nokia N96 (RM-247) en god stund nå, og er kjempefornøyd.

     

    Har den siste firmwaren, versjon 12.043 (26-11-08)

     

    Problem 1:

     

    Finner ingen bluetooth handsfree. Har prøvd 6 forskjellige typer, fra både Nokia, SE, HTC, Jabra osv. Den finner ingen av de når jeg søker etter enheter, men den finner andre mobiler og pcer.

     

    Problem 2:

     

    I det siste så er telefonen tilsynelatende normal å bruke, før den plutselig starter "media-senteret" hvor du kan se bilder og film. Får ikke avsluttet den, og ingen av avbryt, meny eller valg tastene fungerer. Den går vekk etter en stund, prøver jeg feks å skrive en sms, kommer den opp igjen. Da fungerer kun knappen i midten ved navigeringstastene, ikke noen andre. Får såvidt inn samtaler, da den noenganger avbryter de for å starte videofremvisningen igjen. Lever rett og slett sitt eget liv.

     

    Håper noen har noen gode forslag til hva jeg kan gjøre, begynner å bli rimelig lei av å ikke kunne bruke telefonen normalt.

     

    På forhånd, takker for alle svar.

  4. Kjøpte i sommer en Seagate 1TB disk, som jeg idag bruker som systemdisk.

    Den har klikket siden første stund, som gjør at systemet tidvis henger i noen sekunder før den kommer igjen. Typisk mens jeg ser på film.

     

    Prøvde å søke i forumet etter info rundt akkurat denne disken, men det er vel samme rundt 1.5TB diskene?

     

    Hvis jeg skal gjøre en firmware update, må jeg gjøre noe med dataene på disken?

     

    Seagate har et eget verktøy for å oppdatere?

     

    Takker for alle innspill.

  5. Har konvertert en laptop som kun har drivere til Vista, til XP, men den eneste driveren jeg ikke finner er til wireless kortet: Ralink RT2790

     

    Noen som vet hvor jeg kan finne en XP driver til dette kortet? Har prøvd 10-12 driverpakker uten hell.

     

    Maskinen er en http://support.packardbell.com/global/item...;ppn=PC22QD0391

     

    På forhånd, tusen takk for all hjelp!

  6. Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 09:56, on 2008-11-11

    Platform: Windows XP SP3 (WinNT 5.01.2600)

    MSIE: Internet Explorer v7.00 (7.00.6000.16735)

    Boot mode: Normal

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe

    C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe

    C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\Programfiler\Symantec AntiVirus\DefWatch.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Programfiler\Symantec AntiVirus\SavRoam.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Programfiler\Symantec AntiVirus\Rtvscan.exe

    C:\Programfiler\ZumieSearch\zumie.exe

    C:\Programfiler\ZumieSearch\zumie.exe

    C:\Programfiler\Apoint2K\Apoint.exe

    C:\WINDOWS\system32\VTTimer.exe

    C:\WINDOWS\system32\S3trayp.exe

    C:\Programfiler\Apoint2K\Apntex.exe

    C:\Programfiler\Hotkey 1.0.4\FuncKey.exe

    C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe

    C:\PROGRA~1\SYMANT~1\VPTray.exe

    C:\Programfiler\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Programfiler\Dell Photo AIO Printer 922\dlbtbmgr.exe

    C:\Programfiler\Dell Photo AIO Printer 922\dlbtbmon.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Programfiler\Logitech\SetPoint\SetPoint.exe

    C:\Programfiler\Fellesfiler\Logishrd\KHAL2\KHALMNPR.EXE

    C:\WINDOWS\explorer.exe

    C:\Programfiler\Internet Explorer\IEXPLORE.EXE

    C:\Programfiler\Trend Micro\HijackThis\HijackThis.exe

     

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programfiler\Microsoft Office\Office12\GrooveShellExtensions.dll

    O4 - HKLM\..\Run: [Apoint] C:\Programfiler\Apoint2K\Apoint.exe

    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe

    O4 - HKLM\..\Run: [s3Trayp] S3trayp.exe

    O4 - HKLM\..\Run: [FuncKey] "C:\Programfiler\Hotkey 1.0.4\FuncKey.exe"

    O4 - HKLM\..\Run: [synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon

    O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe"

    O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Programfiler\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Programfiler\Dell Photo AIO Printer 922\dlbtbmgr.exe"

    O4 - HKLM\..\Run: [DLBTCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLBTtime.dll,_RunDLLEntry@16

    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')

    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE')

    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS\S-1-5-18\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'SYSTEM')

    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

    O4 - HKUS\.DEFAULT\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'Default user')

    O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe

    O4 - Global Startup: Logitech SetPoint.lnk = C:\Programfiler\Logitech\SetPoint\SetPoint.exe

    O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra 'Tools' menuitem: Opprett mobil favoritt... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll

    O9 - Extra button: SmartShopper - Compare travel rates - {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEC0} - C:\Programfiler\SmartShopper\Bin\2.5.0\SmrtShpr.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

    O14 - IERESET.INF: START_PAGE_URL=http://companyweb

    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

    O16 - DPF: {485D813E-EE26-4DF8-9FAF-DEDF2885306E} (NSHelp Class) - http://vitaelab-sbs/connectcomputer/nshelp.dll

    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = Vitaelab.local

    O17 - HKLM\Software\..\Telephony: DomainName = Vitaelab.local

    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = Vitaelab.local

    O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = Vitaelab.local

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programfiler\Microsoft Office\Office12\GrooveSystemServices.dll

    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe

    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe

    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Programfiler\Symantec AntiVirus\DefWatch.exe

    O23 - Service: dkab_device - - C:\WINDOWS\system32\DKabcoms.exe

    O23 - Service: dlbt_device - Dell - C:\WINDOWS\system32\dlbtcoms.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Programfiler\Fellesfiler\Logitech\Bluetooth\LBTServ.exe

    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

    O23 - Service: SAVRoam (SavRoam) - symantec - C:\Programfiler\Symantec AntiVirus\SavRoam.exe

    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe

    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe

    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Programfiler\Symantec AntiVirus\Rtvscan.exe

    O23 - Service: ZumieSearch Service - Zumie.com - C:\Programfiler\ZumieSearch\zumie.exe

     

    --

    End of file - 7599 bytes

     

     

     

    _____________________________________

     

     

     

     

     

    ComboFix 08-11-10.01 - xxx 2008-11-11 9:49:31.1 - NTFSx86

    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1044.18.360 [GMT 1:00]

    Running from: c:\documents and settings\xxx\Skrivebord\ComboFix.exe

    * Created a new restore point

     

    WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

    .

     

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

    .

     

    c:\documents and settings\All Users\Programdata\Microsoft\Network\Downloader\qmgr0.dat

    c:\documents and settings\All Users\Programdata\Microsoft\Network\Downloader\qmgr1.dat

     

    ----- BITS: Possible infected sites -----

     

    hxxp://vitaelab-sbs:8530

    .

    ((((((((((((((((((((((((( Files Created from 2008-10-11 to 2008-11-11 )))))))))))))))))))))))))))))))

    .

     

    2008-11-11 09:31 . 2008-11-11 09:31 <DIR> d-------- c:\programfiler\Malwarebytes' Anti-Malware

    2008-11-11 09:31 . 2008-11-11 09:31 <DIR> d-------- c:\documents and settings\xxx\Programdata\Malwarebytes

    2008-11-11 09:31 . 2008-11-11 09:31 <DIR> d-------- c:\documents and settings\All Users\Programdata\Malwarebytes

    2008-11-11 09:31 . 2008-10-22 16:10 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys

    2008-11-11 09:31 . 2008-10-22 16:10 15,504 --a------ c:\windows\system32\drivers\mbam.sys

    2008-11-11 09:26 . 2008-11-11 09:26 <DIR> d-------- c:\programfiler\CCleaner

    2008-11-11 09:21 . 2008-11-11 09:21 <DIR> d-------- c:\documents and settings\xxx\Programdata\SmartShopper

    2008-11-11 09:21 . 2008-11-11 09:21 <DIR> d-------- c:\documents and settings\xxx\Programdata\Logitech

    2008-11-11 09:19 . 2007-06-13 02:34 <DIR> dr------- c:\documents and settings\xxx\Start-meny

    2008-11-11 09:19 . 2007-06-13 02:34 <DIR> d--h----- c:\documents and settings\xxx\Skrivere

    2008-11-11 09:19 . 2008-11-11 09:47 <DIR> d-------- c:\documents and settings\xxx\Skrivebord

    2008-11-11 09:19 . <DIR> c:\documents and settings\xxxx\Siste

    2008-11-11 09:19 . 2008-11-11 09:31 <DIR> dr-h----- c:\documents and settings\xxx\Programdata

    2008-11-11 09:19 . 2007-06-13 02:34 <DIR> d--h----- c:\documents and settings\xxx\Maler

    2008-11-11 09:19 . 2008-11-11 09:51 <DIR> d--h----- c:\documents and settings\xxx\Lokale innstillinger

    2008-11-11 09:19 . 2008-11-11 09:20 <DIR> dr------- c:\documents and settings\xxxx\Favoritter

    2008-11-11 09:19 . 2008-11-11 09:20 <DIR> d--h----- c:\documents and settings\xxx\AndrMask

    2008-11-11 09:19 . 2008-11-11 09:19 <DIR> d-------- c:\documents and settings\xxx

    2008-10-23 18:48 . 2008-10-15 17:38 337,408 --------- c:\windows\system32\dllcache\netapi32.dll

    2008-10-22 11:20 . 2008-10-22 11:20 <DIR> d-------- c:\programfiler\ZumieSearch

    2008-10-14 19:20 . 2008-08-14 14:27 2,190,976 --------- c:\windows\system32\dllcache\ntoskrnl.exe

    2008-10-14 19:20 . 2008-08-14 14:27 2,147,328 --------- c:\windows\system32\dllcache\ntkrnlmp.exe

    2008-10-14 19:20 . 2008-08-14 14:27 2,067,840 --------- c:\windows\system32\dllcache\ntkrnlpa.exe

    2008-10-14 19:20 . 2008-08-14 14:27 2,025,984 --------- c:\windows\system32\dllcache\ntkrpamp.exe

    2008-10-14 19:20 . 2008-09-15 16:29 1,846,400 --------- c:\windows\system32\dllcache\win32k.sys

    2008-10-14 19:20 . 2008-09-08 11:41 333,824 --------- c:\windows\system32\dllcache\srv.sys

     

    .

    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2008-11-11 08:19 --------- d-----w c:\programfiler\Symantec AntiVirus

    2008-11-10 17:09 --------- d-----w c:\programfiler\WeFi

    2008-11-10 16:47 --------- d-----w c:\documents and settings\admin\Programdata\SmartShopper

    2008-10-15 01:04 --------- d-----w c:\documents and settings\All Users\Programdata\Microsoft Help

    2008-10-03 17:31 6,066,176 ------w c:\windows\system32\dllcache\ieframe.dll

    2008-09-24 13:39 --------- d-----w c:\documents and settings\admin\Programdata\vlc

    2008-09-24 13:35 --------- d-----w c:\programfiler\VideoLAN

    2008-09-24 13:34 --------- d-----w c:\programfiler\SmartShopper

    2008-09-15 15:29 1,846,400 ----a-w c:\windows\system32\win32k.sys

    2008-08-27 13:00 3,593,216 ----a-w c:\windows\system32\dllcache\mshtml.dll

    2008-08-25 08:41 70,656 ----a-w c:\windows\system32\dllcache\ie4uinit.exe

    2008-08-25 08:38 13,824 ------w c:\windows\system32\dllcache\ieudinit.exe

    2008-08-23 05:56 635,848 ----a-w c:\windows\system32\dllcache\iexplore.exe

    2008-08-23 05:54 161,792 ----a-w c:\windows\system32\dllcache\ieakui.dll

    2008-08-14 13:27 2,147,328 ----a-w c:\windows\system32\ntoskrnl.exe

    2008-08-14 13:27 2,025,984 ----a-w c:\windows\system32\ntkrnlpa.exe

    2008-08-14 10:04 138,496 ------w c:\windows\system32\dllcache\afd.sys

    .

     

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Note* empty entries & legit default entries are not shown

    REGEDIT4

     

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Apoint"="c:\programfiler\Apoint2K\Apoint.exe" [2005-04-16 172032]

    "FuncKey"="c:\programfiler\Hotkey 1.0.4\FuncKey.exe" [2006-07-27 122880]

    "Synchronization Manager"="c:\windows\system32\mobsync.exe" [2008-04-14 143360]

    "ccApp"="c:\programfiler\Fellesfiler\Symantec Shared\ccApp.exe" [2006-11-21 52840]

    "vptray"="c:\progra~1\SYMANT~1\VPTray.exe" [2007-03-14 125632]

    "GrooveMonitor"="c:\programfiler\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 33648]

    "Dell Photo AIO Printer 922"="c:\programfiler\Dell Photo AIO Printer 922\dlbtbmgr.exe" [2004-11-10 290816]

    "DLBTCATS"="c:\windows\System32\spool\DRIVERS\W32X86\3\DLBTtime.dll" [2004-11-09 69632]

    "VTTimer"="VTTimer.exe" [2006-08-03 c:\windows\system32\VTTimer.exe]

    "S3Trayp"="S3trayp.exe" [2006-07-11 c:\windows\system32\S3Trayp.exe]

    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 c:\windows\KHALMNPR.Exe]

     

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

     

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "TSClientMSIUninstaller"="c:\windows\Installer\TSClientMsiTrans\tscuinst.vbs" [2007-10-30 13801]

    "TSClientAXDisabler"="c:\windows\Installer\TSClientMsiTrans\tscdsbl.bat" [2008-01-18 2247]

     

    c:\documents and settings\admin\Start-meny\Programmer\Oppstart\

    OneNote 2007 Screen Clipper og Launcher.lnk - c:\programfiler\Microsoft Office\Office12\ONENOTEM.EXE [2007-12-07 101440]

     

    c:\documents and settings\All Users\Start-meny\Programmer\Oppstart\

    Hurtigstart for Adobe Reader.lnk - c:\programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 29696]

    Logitech SetPoint.lnk - c:\programfiler\Logitech\SetPoint\SetPoint.exe [2008-07-28 805392]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

    "NoWelcomeScreen"= 1 (0x1)

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]

    "DisablePersonalDirChange"= 1 (0x1)

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]

    2008-05-02 01:42 72208 c:\programfiler\Fellesfiler\Logitech\Bluetooth\LBTWLgn.dll

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]

    @=""

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

    "DisableMonitoring"=dword:00000001

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

    "%windir%\\system32\\sessmgr.exe"=

    "c:\\WINDOWS\\system32\\DKabcoms.exe"=

    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=

    "c:\programfiler\Microsoft ActiveSync\rapimgr.exe"= c:\programfiler\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager

    "c:\programfiler\Microsoft ActiveSync\wcescomm.exe"= c:\programfiler\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager

    "c:\programfiler\Microsoft ActiveSync\WCESMgr.exe"= c:\programfiler\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

    "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

     

    R2 ZumieSearch Service;ZumieSearch Service;c:\programfiler\ZumieSearch\zumie.exe c:\programfiler\ZumieSearch\zumie.dll Service [ ]

    R3 S3GIGP;S3GIGP;c:\windows\system32\DRIVERS\S3gIGPm.sys [2006-09-12 659456]

    S3 dkab_device;dkab_device;c:\windows\system32\DKabcoms.exe [2006-10-21 508824]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12

     

    *Newly Created Service* - CATCHME

    *Newly Created Service* - PROCEXP90

    .

    .

    ------- Supplementary Scan -------

    .

    O8 -: E&ksporter til Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000

    O9 -: {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEC0} - {BCEB373D-A35A-4200-BD43-8586CD9DFAE7} - c:\programfiler\SmartShopper\Bin\2.5.0\SmrtShpr.dll

    .

     

    **************************************************************************

     

    catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

    Rootkit scan 2008-11-11 09:51:59

    Windows 5.1.2600 Service Pack 3 NTFS

     

    scanning hidden processes ...

     

    scanning hidden autostart entries ...

     

    HKLM\Software\Microsoft\Windows\CurrentVersion\Run

    DLBTCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\DLBTtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

     

    scanning hidden files ...

     

    scan completed successfully

    hidden files: 0

     

    **************************************************************************

    .

    Completion time: 2008-11-11 9:52:47

    ComboFix-quarantined-files.txt 2008-11-11 08:52:43

     

    Pre-Run: 104 271 753 216 byte ledig

    Post-Run: 104,618,942,464 byte ledig

     

    141 --- E O F --- 2008-10-29 16:44:39

     

     

     

     

    __________________________

     

     

     

    Malwarebytes' Anti-Malware 1.30

    Database versjon: 1382

    Windows 5.1.2600 Service Pack 3

     

    11.11.2008 09:38:27

    mbam-log-2008-11-11 (09-38-27).txt

     

    Skanntype: Rask Skann

    Objekter skannet: 64672

    Tid tilbakelagt: 4 minute(s), 51 second(s)

     

    Minneprosesser infisert: 0

    Minnemoduler infisert: 0

    Registernøkler infisert: 0

    Registerverdier infisert: 0

    Registerfiler infisert: 0

    Mapper infisert: 0

    Filer infisert: 0

     

    Minneprosesser infisert:

    (Ingen mistenkelige filer funnet)

     

    Minnemoduler infisert:

    (Ingen mistenkelige filer funnet)

     

    Registernøkler infisert:

    (Ingen mistenkelige filer funnet)

     

    Registerverdier infisert:

    (Ingen mistenkelige filer funnet)

     

    Registerfiler infisert:

    (Ingen mistenkelige filer funnet)

     

    Mapper infisert:

    (Ingen mistenkelige filer funnet)

     

    Filer infisert:

    (Ingen mistenkelige filer funnet)

     

     

     

    Takker for all hjelp :)

  7. En kompis har akkurat fått seg ny pc og sliter med følgende:

     

    Uansett hvilket spill, så låser det seg etter en liten stund, skjermen blir svart og alt låser seg. Restart er eneste måte for å få liv i den.

     

    Komponenter:

     

    P5Q-Deluxe

    Intel Dual Core 3333MHz

    Asus GeForce 9800GTX+

    2048Mb Corsair Dominator 1066Mhz minne

    1000w Corsair PSU

    2 x Samsung 1TB disker

     

     

    Har prøvd følgende foreløpig:

    Reinstallere spillene

    3 forskjellige drivere for skjermkort

    Oppdatere chipset drivere med både Asus sine, samt Intel sine egne for brikkesettet

    Nyeste DirectX versjonen.

     

    Takker for alle svar, hvis noen har en idé.

  8. Har en tricky maskin her, hadde satt pris på hvis noen kan hjelpe.

    Har prøvd følgende:

     

    - Byttet psu 3 ganger (Stand er dog noe usikkert)

    - Skiftet mellom 6 forskjellige minnebrikker

    - 2 skjermkort

    - 2 hovedkort

    - 2 skjermer

    - Resatt bios

     

    Får ikke skjermbilde uansett hva. Skjermene er i daglig bruk, så de vet jeg fungerer.

     

    Har skiftet mellom et Asrock P4I65G og et Asus A7V-Deluxe hovedkort (med tilhørende cpuer).

     

    Alle svar taes imot med takk.

  9. Hei

     

    Sitter med en kompis sin maskin, har lagt inn WinXP på den, og alt ser ut til å fungere. Men ingen lyd.

    Sjekker enheten i kontrollpanel, og får følgende melding:

     

    Driverfeil.JPG

     

    Jeg får ikke fjernet enheten, får heller ikke oppdatert driverene.

    Har prøvd flere forskjellige driverpakker, prøvd medfølgende Asus driver cd, samt slipstreamer drivere i en WinXP installasjon.

     

    Håper noen kan hjelpe meg, eller guide meg i riktig retning.

  10. Har hatt en maskin kjørendes en stund uten kabinett, montere idag maskinen inn i det nye kabinettet.

     

    For å gjøre en lang historie kort, den startet uten problemer, men finner ikke noe OS på systemdisken. Disken kommer frem i BIOS, har satt den til primary bootdevice, prøvd alle s-ata kanalene på hovedkortet, plugget ut resten av diskene og unødvendig hardware. Ingenting ser ut til å fungere.

     

    Står bare "checking NVRAM"

     

    Håper noen har noen gode forslag, skal ikke være helt vanlig at OSet bare er borte etter 30 min..

     

    Takker for all hjelp :)

  11. Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 23:10, on 2008-07-28

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v7.00 (7.00.6000.16674)

    Boot mode: Normal

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Programfiler\Windows Defender\MsMpEng.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\WINDOWS\system32\agrsmsvc.exe

    C:\Programfiler\TOSHIBA\ConfigFree\CFSvcs.exe

    C:\Programfiler\Trend Micro\Client Server Security Agent\ntrtscan.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\ThpSrv.exe

    C:\Programfiler\TOSHIBA\TME3\Tmesrv31.exe

    C:\Programfiler\Trend Micro\Client Server Security Agent\tmlisten.exe

    C:\WINDOWS\system32\TODDSrv.exe

    C:\Programfiler\Trend Micro\Client Server Security Agent\OfcPfwSvc.exe

    C:\WINDOWS\system32\igfxpers.exe

    C:\WINDOWS\system32\igfxsrvc.exe

    C:\WINDOWS\RTHDCPL.EXE

    C:\WINDOWS\system32THotkey.exe

    C:\Programfiler\Apoint2K\Apoint.exe

    C:\Programfiler\TOSHIBA\DualPointUtility\TEDTray.exe

    C:\Programfiler\TOSHIBA\TouchED\TouchED.exe

    C:\WINDOWS\system32\TFNF5.exe

    C:\Programfiler\TOSHIBA\TOSHIBA zoom\SmoothView.exe

    C:\WINDOWS\system32\TPSMain.exe

    C:\Programfiler\TOSHIBA\TME3\TMERzCtl.EXE

    C:\WINDOWS\system32\igfxext.exe

    C:\Programfiler\TOSHIBA\Wireless Hotkey\TosHKCW.exe

    C:\Programfiler\TOSHIBA\TME3\TMEEJME.EXE

    C:\Programfiler\TOSHIBA\TAudEffect\TAudEff.exe

    C:\Programfiler\TOSHIBA\TOSHIBA Direct Disc Writer\ddwmon.exe

    C:\WINDOWS\system32\TPSBattM.exe

    C:\Programfiler\TOSHIBA\Toshiba Online Product Information\topi.exe

    C:\Programfiler\Trend Micro\Client Server Security Agent\pccntmon.exe

    C:\Programfiler\TOSHIBA\TOSCDSPD\toscdspd.exe

    C:\Programfiler\Protector Suite QL\psqltray.exe

    C:\Programfiler\Apoint2K\Apntex.exe

    C:\Programfiler\Windows Live\Messenger\MsnMsgr.Exe

    C:\Programfiler\Messenger\msmsgs.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Programfiler\Nokia\Nokia PC Suite 6\PCSuite.exe

    C:\Programfiler\Nokia\Nokia PC Suite 6\PCSync2.exe

    C:\Programfiler\PC Connectivity Solution\ServiceLayer.exe

    C:\Programfiler\PC Connectivity Solution\Transports\NclUSBSrv.exe

    C:\Programfiler\PC Connectivity Solution\Transports\NclRSSrv.exe

    C:\Programfiler\Fellesfiler\Nokia\MPAPI\MPAPI3s.exe

    C:\Programfiler\Windows Live\Messenger\usnsvc.exe

    C:\WINDOWS\system32\wuauclt.exe

    C:\WINDOWS\system32\notepad.exe

    C:\WINDOWS\explorer.exe

    C:\Programfiler\Internet Explorer\IEXPLORE.EXE

    C:\Programfiler\Fellesfiler\Microsoft Shared\Windows Live\WLLoginProxy.exe

    C:\Programfiler\Internet Explorer\iexplore.exe

    C:\Programfiler\Trend Micro\HijackThis\HijackThis.exe

     

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startsiden.no/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http://WS-SRV-01:8080

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programfiler\Java\jre1.6.0\bin\ssv.dll

    O2 - BHO: Påloggingshjelp for Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programfiler\Fellesfiler\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe

    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

    O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\system32THotkey.exe

    O4 - HKLM\..\Run: [Apoint] C:\Programfiler\Apoint2K\Apoint.exe

    O4 - HKLM\..\Run: [DpUtil] C:\Programfiler\TOSHIBA\DualPointUtility\TEDTray.exe

    O4 - HKLM\..\Run: [TouchED] C:\Programfiler\TOSHIBA\TouchED\TouchED.exe

    O4 - HKLM\..\Run: [TFNF5] TFNF5.exe

    O4 - HKLM\..\Run: [smoothView] C:\Programfiler\TOSHIBA\TOSHIBA zoom\SmoothView.exe

    O4 - HKLM\..\Run: [TPSODDCtl] TPSODDCtl.exe

    O4 - HKLM\..\Run: [TPSMain] TPSMain.exe

    O4 - HKLM\..\Run: [TMERzCtl.EXE] C:\Programfiler\TOSHIBA\TME3\TMERzCtl.EXE /Service

    O4 - HKLM\..\Run: [TMESRV.EXE] C:\Programfiler\TOSHIBA\TME3\TMESRV31.EXE /Logon

    O4 - HKLM\..\Run: [TOSDCR] TOSDCR.EXE

    O4 - HKLM\..\Run: [TosHKCW.exe] "C:\Programfiler\TOSHIBA\Wireless Hotkey\TosHKCW.exe"

    O4 - HKLM\..\Run: [TAudEffect] C:\Programfiler\TOSHIBA\TAudEffect\TAudEff.exe /run

    O4 - HKLM\..\Run: [DDWMon] C:\Programfiler\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe

    O4 - HKLM\..\Run: [PSQLLauncher] "C:\Programfiler\Protector Suite QL\launcher.exe" /startup

    O4 - HKLM\..\Run: [topi] C:\Programfiler\TOSHIBA\Toshiba Online Product Information\topi.exe -startup

    O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\Programfiler\Trend Micro\Client Server Security Agent\pccntmon.exe" -HideWindow

    O4 - HKLM\..\Run: [synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon

    O4 - HKCU\..\Run: [TOSCDSPD] C:\Programfiler\TOSHIBA\TOSCDSPD\toscdspd.exe

    O4 - HKCU\..\Run: [MsnMsgr] "C:\Programfiler\Windows Live\Messenger\MsnMsgr.Exe" /background

    O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background

    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [PC Suite Tray] "C:\Programfiler\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray

    O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Programfiler\Nokia\Nokia PC Suite 6\PCSync2.exe" /NoDialog

    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')

    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETTVERKSTJENESTE')

    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

    O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.6.0\bin\ssv.dll

    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.6.0\bin\ssv.dll

    O9 - Extra button: Oppslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

    O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

    O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/sit...b?1217078833484

    O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/...lscbase5036.cab

    O16 - DPF: {B7D07999-2ADB-4AEB-997E-F61CB7B2E2CD} (TSEasyInstallX Control) - http://www.trendsecure.com/easy_install/_a...asyInstallX.CAB

    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = WorkSelect.local

    O17 - HKLM\Software\..\Telephony: DomainName = WorkSelect.local

    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = WorkSelect.local

    O20 - Winlogon Notify: TosBtNP - C:\WINDOWS\SYSTEM32\TosBtNP.dll

    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe

    O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Programfiler\TOSHIBA\ConfigFree\CFSvcs.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\1050\Intel 32\IDriverT.exe

    O23 - Service: Trend Micro Client/Server Security Agent RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\Programfiler\Trend Micro\Client Server Security Agent\ntrtscan.exe

    O23 - Service: Trend Micro Client/Server Security Agent Personal Firewall (OfcPfwSvc) - Trend Micro Inc. - C:\Programfiler\Trend Micro\Client Server Security Agent\OfcPfwSvc.exe

    O23 - Service: ServiceLayer - Nokia. - C:\Programfiler\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: TOSHIBA Harddiskbeskyttelse (Thpsrv) - TOSHIBA Corporation - C:\WINDOWS\system32\ThpSrv.exe

    O23 - Service: Tmesrv3 (Tmesrv) - TOSHIBA - C:\Programfiler\TOSHIBA\TME3\Tmesrv31.exe

    O23 - Service: Trend Micro Client/Server Security Agent Listener (tmlisten) - Trend Micro Inc. - C:\Programfiler\Trend Micro\Client Server Security Agent\tmlisten.exe

    O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe

     

    --

    End of file - 9497 bytes

  12. ComboFix 08-07-27.6 - JPS 2008-07-28 22:55:53.4 - NTFSx86

    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1044.18.1400 [GMT 2:00]

    Running from: C:\Documents and Settings\JPS\Skrivebord\ComboFix.exe

    Command switches used :: C:\Documents and Settings\JPS\Skrivebord\CFScript.txt.txt

    * Created a new restore point

     

    WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

     

    FILE ::

    C:\WINDOWS\BM4f6f64ed.xml

    C:\WINDOWS\system32\6R4gOXaA.exe

    C:\WINDOWS\system32\6R4gOXaA.exe.a_a

    C:\WINDOWS\system32\cfoaskoa.dll

    C:\WINDOWS\system32\etthtv.dll

    C:\WINDOWS\system32\glspljwv.dll

    C:\WINDOWS\system32\jhJmLCfV.exe

    C:\WINDOWS\system32\jhJmLCfV.exe.a_a

    C:\WINDOWS\system32\jilzns.dll

    C:\WINDOWS\system32\jvojuyxh.dll

    C:\WINDOWS\system32\lvlljxou.dll

    C:\WINDOWS\system32\mqfobu.dll

    C:\WINDOWS\system32\ndaogthp.dll

    C:\WINDOWS\system32\pklhdxlm.dll

    C:\WINDOWS\system32\sxfyvkka.dll

    C:\WINDOWS\system32\vprohy.dll

    C:\WINDOWS\system32\vtrsodcw.dll

    C:\WINDOWS\system32\xlwtdfvy.dll

    C:\WINDOWS\system32\xyyrjs.dll

    C:\WINDOWS\system32\yidnkjew.dll

    C:\WINDOWS\system32\yoarpuux.dll

    .

     

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

    .

     

    C:\WINDOWS\system32\6R4gOXaA.exe

    C:\WINDOWS\system32\6R4gOXaA.exe.a_a

    C:\WINDOWS\system32\cfoaskoa.dll

    C:\WINDOWS\system32\etthtv.dll

    C:\WINDOWS\system32\glspljwv.dll

    C:\WINDOWS\system32\jhJmLCfV.exe

    C:\WINDOWS\system32\jhJmLCfV.exe.a_a

    C:\WINDOWS\system32\jilzns.dll

    C:\WINDOWS\system32\jvojuyxh.dll

    C:\WINDOWS\system32\lvlljxou.dll

    C:\WINDOWS\system32\mqfobu.dll

    C:\WINDOWS\system32\ndaogthp.dll

    C:\WINDOWS\system32\sxfyvkka.dll

    C:\WINDOWS\system32\vprohy.dll

    C:\WINDOWS\system32\vtrsodcw.dll

    C:\WINDOWS\system32\xlwtdfvy.dll

    C:\WINDOWS\system32\xyyrjs.dll

    C:\WINDOWS\system32\yidnkjew.dll

    C:\WINDOWS\system32\yoarpuux.dll

     

    .

    ((((((((((((((((((((((((( Files Created from 2008-06-28 to 2008-07-28 )))))))))))))))))))))))))))))))

    .

     

    2008-07-28 21:15 . 2008-07-28 22:55 <DIR> dr-h----- C:\Documents and Settings\JPS\Siste

    2008-07-28 20:06 . 2008-07-28 20:06 <DIR> d-------- C:\Programfiler\Malwarebytes' Anti-Malware

    2008-07-28 20:06 . 2008-07-28 20:06 <DIR> d-------- C:\Documents and Settings\JPS\Programdata\Malwarebytes

    2008-07-28 20:06 . 2008-07-28 20:06 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Malwarebytes

    2008-07-28 20:06 . 2008-07-23 20:09 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys

    2008-07-28 20:06 . 2008-07-23 20:09 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys

    2008-07-28 20:02 . 2008-07-28 20:02 <DIR> d-------- C:\Programfiler\CCleaner

    2008-07-28 08:41 . 2007-08-01 22:47 102,664 --a------ C:\WINDOWS\system32\drivers\tmcomm.sys

    2008-07-27 15:39 . 2008-07-27 16:33 <DIR> d-------- C:\Documents and Settings\lg\.housecall6.6

    2008-07-27 08:18 . 2008-07-27 08:18 <DIR> d-------- C:\Programfiler\Windows Defender

    2008-07-26 15:37 . 2008-07-26 15:55 <DIR> d-------- C:\Programfiler\Windows Live Safety Center

    2008-07-26 09:40 . 2008-07-26 09:40 268 --ah----- C:\sqmdata00.sqm

    2008-07-26 09:40 . 2008-07-26 09:40 244 --ah----- C:\sqmnoopt00.sqm

    2008-07-22 06:13 . 2008-07-22 07:52 <DIR> d-------- C:\Documents and Settings\JPS\.housecall6.6

    2008-07-21 10:00 . 2008-07-21 10:00 <DIR> dr------- C:\Documents and Settings\NetworkService\Favoritter

    2008-07-20 12:05 . 2008-07-20 12:05 <DIR> d-------- C:\Programfiler\Fellesfiler\PCSuite

    2008-07-20 12:05 . 2008-07-20 12:05 <DIR> d-------- C:\Programfiler\Fellesfiler\Nokia

    2008-07-20 12:05 . 2007-09-17 15:53 21,632 --a------ C:\WINDOWS\system32\drivers\pccsmcfd.sys

    2008-07-20 12:04 . 2008-07-20 12:04 <DIR> d-------- C:\Programfiler\PC Connectivity Solution

    2008-07-20 10:18 . 2008-07-20 10:18 <DIR> d-------- C:\Programfiler\ToniArts

     

    .

    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2008-07-27 13:33 --------- d-----w C:\Programfiler\Trend Micro

    2008-07-24 14:28 --------- d-----w C:\Programfiler\Azureus

    2008-07-20 10:05 --------- d-----w C:\Programfiler\Nokia

    2008-07-20 10:03 --------- d-----w C:\Documents and Settings\All Users\Programdata\Installations

    2008-07-20 08:24 --------- d-----w C:\Documents and Settings\JPS\Programdata\Azureus

    2008-07-20 08:18 --------- d--h--w C:\Programfiler\InstallShield Installation Information

    2008-06-21 12:43 --------- d-----w C:\Programfiler\Google

    2008-06-20 17:43 246,784 ----a-w C:\WINDOWS\system32\mswsock.dll

    2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys

    2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys

    2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys

    2008-06-14 18:00 272,256 ------w C:\WINDOWS\system32\drivers\bthport.sys

    2008-06-02 17:27 --------- d-----w C:\Programfiler\Microsoft SQL Server

    2008-06-02 17:25 --------- d-----w C:\Programfiler\Windows Live

    2008-05-07 05:16 1,290,752 ----a-w C:\WINDOWS\system32\quartz.dll

    .

     

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Note* empty entries & legit default entries are not shown

    REGEDIT4

     

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "TOSCDSPD"="C:\Programfiler\TOSHIBA\TOSCDSPD\toscdspd.exe" [2005-04-12 11:57 65536]

    "MsnMsgr"="C:\Programfiler\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 12:34 5724184]

    "MSMSGS"="C:\Programfiler\Messenger\msmsgs.exe" [2004-10-13 18:24 1694208]

    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 12:00 15360]

    "PC Suite Tray"="C:\Programfiler\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-04-16 12:53 1079808]

    "Nokia.PCSync"="C:\Programfiler\Nokia\Nokia PC Suite 6\PCSync2.exe" [2008-03-26 18:41 1232896]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Persistence"="C:\WINDOWS\system32\igfxpers.exe" [2007-04-10 00:01 138008]

    "00THotkey"="C:\WINDOWS\system32\00THotkey.exe" [2006-08-14 13:54 253952]

    "Apoint"="C:\Programfiler\Apoint2K\Apoint.exe" [2004-03-24 07:40 196608]

    "DpUtil"="C:\Programfiler\TOSHIBA\DualPointUtility\TEDTray.exe" [2005-08-08 15:43 155648]

    "TouchED"="C:\Programfiler\TOSHIBA\TouchED\TouchED.exe" [2005-09-01 15:26 102400]

    "SmoothView"="C:\Programfiler\TOSHIBA\TOSHIBA zoom\SmoothView.exe" [2007-05-11 12:13 143360]

    "TMERzCtl.EXE"="C:\Programfiler\TOSHIBA\TME3\TMERzCtl.EXE" [2006-09-01 13:21 90112]

    "TMESRV.EXE"="C:\Programfiler\TOSHIBA\TME3\TMESRV31.EXE" [2006-01-19 19:53 118784]

    "TosHKCW.exe"="C:\Programfiler\TOSHIBA\Wireless Hotkey\TosHKCW.exe" [2005-05-17 11:42 49152]

    "TAudEffect"="C:\Programfiler\TOSHIBA\TAudEffect\TAudEff.exe" [2006-08-09 19:48 344144]

    "DDWMon"="C:\Programfiler\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe" [2007-04-26 11:49 495616]

    "PSQLLauncher"="C:\Programfiler\Protector Suite QL\launcher.exe" [2006-05-05 17:36 30208]

    "topi"="C:\Programfiler\TOSHIBA\Toshiba Online Product Information\topi.exe" [2007-04-02 12:48 577536]

    "OfficeScanNT Monitor"="C:\Programfiler\Trend Micro\Client Server Security Agent\pccntmon.exe" [2005-11-03 00:32 372813]

    "RTHDCPL"="RTHDCPL.EXE" [2007-03-13 02:05 16125440 C:\WINDOWS\RTHDCPL.exe]

    "TFNF5"="TFNF5.exe" [2006-04-11 03:14 622592 C:\WINDOWS\system32\TFNF5.exe]

    "TPSODDCtl"="TPSODDCtl.exe" [2007-04-20 16:28 102400 C:\WINDOWS\system32\TPSODDCtl.exe]

    "TPSMain"="TPSMain.exe" [2007-04-20 16:28 299008 C:\WINDOWS\system32\TPSMain.exe]

    "TOSDCR"="TOSDCR.EXE" [2005-12-12 18:54 57344 C:\WINDOWS\system32\TOSDCR.exe]

     

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 12:00 15360]

    "Nokia.PCSync"="C:\Programfiler\Nokia\Nokia PC Suite 6\PcSync2.exe" [2008-03-26 18:41 1232896]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\psfus]

    2006-05-05 17:48 40448 C:\WINDOWS\system32\psqlpwd.dll

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\TosBtNP]

    2006-07-22 04:54 65536 C:\WINDOWS\system32\TosBtNP.dll

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendFirewall]

    "DisableMonitoring"=dword:00000001

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

    "%windir%\\system32\\sessmgr.exe"=

    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=

    "C:\\Programfiler\\Windows Live\\Messenger\\msnmsgr.exe"=

    "C:\\Programfiler\\Windows Live\\Messenger\\livecall.exe"=

    "C:\\Programfiler\\Messenger\\msmsgs.exe"=

    "C:\\Programfiler\\uTorrent\\uTorrent.exe"=

     

    R0 Thpdrv;TOSHIBA HDD Protection Driver;C:\WINDOWS\system32\DRIVERS\thpdrv.sys [2007-03-22 13:07]

    R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;C:\WINDOWS\system32\DRIVERS\Thpevm.SYS [2007-03-09 15:23]

    R1 TMEI3E;TMEI3E;C:\WINDOWS\system32\Drivers\TMEI3E.SYS [2004-06-16 11:08]

    R2 FdRedir;FdRedir;C:\Programfiler\Fellesfiler\Protector Suite QL\Drivers\FdRedir.sys [2006-05-05 18:00]

    R2 FileDisk2;FileDisk Protector Kernel Driver;C:\Programfiler\Fellesfiler\Protector Suite QL\Drivers\filedisk.sys [2006-05-05 17:59]

    R2 smihlp;SMI helper driver;C:\Programfiler\Protector Suite QL\smihlp.sys [2006-05-05 17:33]

    R2 tdudf;TOSHIBA UDF File System Driver;C:\WINDOWS\system32\DRIVERS\tdudf.sys [2007-03-26 12:22]

    R2 trudf;TOSHIBA DVD-RAM UDF File System Driver;C:\WINDOWS\system32\DRIVERS\trudf.sys [2007-02-19 12:15]

    R3 IFXTPM;IFXTPM;C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS [2005-06-10 22:26]

    R3 TEchoCan;Toshiba Audio Effect;C:\WINDOWS\system32\DRIVERS\TEchoCan.sys [2007-02-21 18:20]

    .

    Contents of the 'Scheduled Tasks' folder

     

    2008-07-28 C:\WINDOWS\Tasks\At13.job

    - C:\WINDOWS\system32\6R4gOXaA.exe []

     

    2008-07-28 C:\WINDOWS\Tasks\MP Scheduled Scan.job

    - C:\Programfiler\Windows Defender\MpCmdRun.exe [2006-11-03 19:20]

    .

    **************************************************************************

     

    catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

    Rootkit scan 2008-07-28 22:56:36

    Windows 5.1.2600 Service Pack 2 NTFS

     

    scanning hidden processes ...

     

    scanning hidden autostart entries ...

     

    scanning hidden files ...

     

    scan completed successfully

    hidden files: 0

     

    **************************************************************************

    .

    Completion time: 2008-07-28 22:57:34

    ComboFix-quarantined-files.txt 2008-07-28 20:57:30

    ComboFix2.txt 2008-07-28 20:42:27

    ComboFix3.txt 2008-07-28 19:11:59

    ComboFix4.txt 2008-07-28 17:53:52

     

    Pre-Run: 21,280,354,304 byte ledig

    Post-Run: 21,270,704,128 byte ledig

     

    181 --- E O F --- 2008-07-28 17:57:10

×
×
  • Opprett ny...