Gå til innhold

YMF

Medlemmer
  • Innlegg

    148
  • Ble med

  • Besøkte siden sist

Innlegg skrevet av YMF

  1. åja.. her om dagen så fikk jeg en feilmelding om at PC'n brukte for mye minne blablabla

    så den ba meg om å lukke firefox.

     

    HJT log:

     

    Logfile of Trend Micro HijackThis v2.0.3 (BETA)

    Scan saved at 23:39:45, on 17.03.2010

    Platform: Unknown Windows (WinNT 6.01.3504)

    MSIE: Internet Explorer v8.00 (8.00.7600.16385)

    Boot mode: Normal

     

    Running processes:

    C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

    C:\Program Files (x86)\uTorrent\uTorrent.exe

    C:\Program Files (x86)\Steam\Steam.exe

    C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Windows\SysWOW64\Ctxfihlp.exe

    C:\Program Files (x86)\PowerISO\PWRISOVM.EXE

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Windows\SysWOW64\CTXFISPI.EXE

    C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    E:\spill\World of Warcraft\Launcher.exe

    E:\spill\World of Warcraft\WoW-3.2.0-enGB-downloader.exe

    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

    C:\Program Files (x86)\TrendMicro\HiJackThis\HiJackThis.exe

     

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: Påloggingshjelp for Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: CacherBHO - {9B4DF450-DCC7-4B07-935D-0CD757A64583} - C:\Program Files (x86)\Moyea\YouTube FLV Downloader\MoyeaCatcher.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE

    O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"

    O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O4 - Startup: CurseClientStartup.ccip

    O13 - Gopher Prefix:

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15111/CTPID.cab

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

    O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe

    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe

    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

    O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe

    O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

     

    --

    End of file - 8024 bytes

     

     

  2. testa wow ja,

    det er den feilmeldinga jeg fikk etter scannen.

     

    husker ikke hvilken feilmelding jeg fikk før scannen

    men sikkert noe lignenes.

     

    Memtest funka ikke for windows 7 64-bit

     

    Edit klokka 23:06:

     

    Jeg har 2 WoW, en på ekstern hardisk og en på vanlig HD,

    Begge slutta å funke samtidig.

     

    Jeg kjørte blizzard repair tool på begge, den på eksterne disken ble fiksa, men så fikk jeg DruidCatTaurenSkinRed.blp error ca. 15min ingame.

     

    Den andre WoW'n ble degradert av repair tool, enda ikke fått patcha den. driver på.

  3. Hei

     

    Er ikke så lenge siden jeg formaterte PC'n

    grunnen til at jeg formaterte var for at jeg fikk et u-løst World of Warcraft error problem

    Når har WoW igjen blitt ødelagt.

     

     

    MBAM Log:

     

    Malwarebytes' Anti-Malware 1.44

    Database version: 3877

    Windows 6.1.7600

    Internet Explorer 8.0.7600.16385

     

    17.03.2010 21:41:23

    mbam-log-2010-03-17 (21-41-23).txt

     

    Scan type: Quick Scan

    Objects scanned: 101480

    Time elapsed: 2 minute(s), 25 second(s)

     

    Memory Processes Infected: 0

    Memory Modules Infected: 0

    Registry Keys Infected: 0

    Registry Values Infected: 0

    Registry Data Items Infected: 1

    Folders Infected: 0

    Files Infected: 3

     

    Memory Processes Infected:

    (No malicious items detected)

     

    Memory Modules Infected:

    (No malicious items detected)

     

    Registry Keys Infected:

    (No malicious items detected)

     

    Registry Values Infected:

    (No malicious items detected)

     

    Registry Data Items Infected:

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

     

    Folders Infected:

    (No malicious items detected)

     

    Files Infected:

    C:\Users\klack\AppData\Local\Temp\data\luancher.exe (Trojan.GamesThief) -> Quarantined and deleted successfully.

    C:\Users\klack\AppData\Local\Temp\data\rhin13.dll (Worm.Tibia) -> Quarantined and deleted successfully.

    C:\Users\klack\AppData\Local\Temp\data\rhin32.exe (Worm.Tibia) -> Quarantined and deleted successfully.

     

     

    DDS Log:

     

     

    DDS (Ver_10-03-17.01) - NTFSX64

    Run by klack at 21:45:09,22 on 17.03.2010

    Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_18

    Microsoft Windows 7 Ultimate 6.1.7600.0.1252.47.1033.18.4095.3094 [GMT 1:00]

     

     

    ============== Running Processes ===============

     

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe -k DcomLaunch

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe -k RPCSS

    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

    C:\Windows\system32\svchost.exe -k netsvcs

    C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe

    C:\Windows\system32\svchost.exe -k LocalService

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe -k NetworkService

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

    C:\Program Files (x86)\Bonjour\mDNSResponder.exe

    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

    C:\Windows\system32\WUDFHost.exe

    C:\Windows\SysWOW64\PnkBstrA.exe

    C:\Windows\system32\sppsvc.exe

    C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    C:\Windows\system32\svchost.exe -k imgsvc

    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

    C:\Windows\system32\taskhost.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

    C:\Program Files (x86)\uTorrent\uTorrent.exe

    C:\Program Files (x86)\Steam\Steam.exe

    C:\Users\klack\AppData\Local\Apps\2.0\HL0QE4OE.JNK\33MRAZYO.8KK\curs..tion_eee711038731a406_0004.0000_152ef8e82e8f5a48\CurseClient.exe

    C:\Program Files (x86)\iTunes\iTunesHelper.exe

    C:\Windows\SysWOW64\Ctxfihlp.exe

    C:\Program Files (x86)\PowerISO\PWRISOVM.EXE

    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\SysWOW64\CTXFISPI.EXE

    C:\Program Files\iPod\bin\iPodService.exe

    C:\Windows\system32\SearchIndexer.exe

    C:\Windows\system32\SearchProtocolHost.exe

    C:\Windows\system32\SearchFilterHost.exe

    C:\Program Files (x86)\Mozilla Firefox\firefox.exe

    C:\Windows\SysWOW64\dxdiag.exe

    C:\Users\klack\Downloads\dds.scr

    C:\Windows\system32\conhost.exe

     

    ============== Pseudo HJT Report ===============

     

    mLocal Page = c:\windows\syswow64\blank.htm

    BHO: Påloggingshjelp for Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll

    BHO: CatcherBHO Class: {9b4df450-dcc7-4b07-935d-0cd757a64583} - c:\program files (x86)\moyea\youtube flv downloader\MoyeaCatcher.dll

    BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll

    uRun: [msnmsgr] "c:\program files (x86)\windows live\messenger\msnmsgr.exe" /background

    uRun: [uTorrent] "c:\program files (x86)\utorrent\uTorrent.exe"

    uRun: [steam] "c:\program files (x86)\steam\Steam.exe" -silent

    mRun: [QuickTime Task] "c:\program files (x86)\quicktime\QTTask.exe" -atboottime

    mRun: [iTunesHelper] "c:\program files (x86)\itunes\iTunesHelper.exe"

    mRun: [CTxfiHlp] CTXFIHLP.EXE

    mRun: [PWRISOVM.EXE] c:\program files (x86)\poweriso\PWRISOVM.EXE

    mRun: [AdobeCS4ServiceManager] "c:\program files (x86)\common files\adobe\cs4servicemanager\CS4ServiceManager.exe" -launchedbylogin

    mRun: [sunJavaUpdateSched] "c:\program files (x86)\common files\java\java update\jusched.exe"

    StartupFolder: c:\users\klack\appdata\roaming\microsoft\windows\start menu\programs\startup\CurseClientStartup.ccip

    mPolicies-explorer: NoActiveDesktop = 1 (0x1)

    mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)

    mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)

    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

    mPolicies-system: EnableLUA = 0 (0x0)

    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

    mPolicies-system: PromptOnSecureDesktop = 0 (0x0)

    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab

    DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab

    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab

    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15111/CTPID.cab

     

    ================= FIREFOX ===================

     

    FF - ProfilePath - c:\users\klack\appdata\roaming\mozilla\firefox\profiles\8k3e8an0.default\

    FF - plugin: c:\program files (x86)\nvidia corporation\3d vision\npnv3dv.dll

    FF - HiddenExtension: Java Console: No Registry Reference - c:\program files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}

     

    ---- FIREFOX POLICIES ----

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);

    c:\program files (x86)\mozilla firefox\greprefs\all.js - pref("html5.enable", false);

    c:\program files (x86)\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);

    c:\program files (x86)\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);

     

    ============= SERVICES / DRIVERS ===============

     

    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\nvidia corporation\3d vision\nvSCPAPISvr.exe [2010-1-11 240232]

    R3 CT20XUT.SYS;CT20XUT.SYS;c:\windows\system32\drivers\CT20XUT.sys [2009-6-4 202776]

    R3 CTEXFIFX.SYS;CTEXFIFX.SYS;c:\windows\system32\drivers\CTEXFIFX.sys [2009-6-4 1417240]

    R3 CTHWIUT.SYS;CTHWIUT.SYS;c:\windows\system32\drivers\CTHWIUT.sys [2009-6-4 94744]

    R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam_x64.sys [2008-3-13 27136]

    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\drivers\usbaapl64.sys [2009-8-28 49152]

    S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\common files\creative labs shared\service\CTAELicensing.exe [2010-2-11 79360]

    S3 CT20XUT;CT20XUT;c:\windows\system32\drivers\CT20XUT.sys [2009-6-4 202776]

    S3 CTEXFIFX;CTEXFIFX;c:\windows\system32\drivers\CTEXFIFX.sys [2009-6-4 1417240]

    S3 CTHWIUT;CTHWIUT;c:\windows\system32\drivers\CTHWIUT.sys [2009-6-4 94744]

    S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\common files\macrovision shared\flexnet publisher\FNPLicensingService64.exe [2010-2-22 1038088]

     

    =============== Created Last 30 ================

     

    2010-03-17 20:38:08 0 d-----w- c:\users\klack\appdata\roaming\Malwarebytes

    2010-03-17 20:38:03 22104 ----a-w- c:\windows\system32\drivers\mbam.sys

    2010-03-17 20:38:03 0 d-----w- c:\programdata\Malwarebytes

    2010-03-17 20:38:03 0 d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

    2010-03-17 19:11:22 0 d-----w- c:\program files (x86)\VideoLAN

    2010-03-11 02:00:36 294912 ----a-w- c:\windows\system32\browserchoice.exe

    2010-03-09 20:02:54 0 d-----w- c:\program files (x86)\common files\Blizzard Entertainment

    2010-03-07 16:24:45 0 d-----w- c:\program files\Ventrilo

    2010-03-07 16:24:42 262 ----a-w- c:\windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini

    2010-03-04 04:52:16 215128 ----a-w- c:\windows\syswow64\PnkBstrB.xtr

    2010-03-04 04:49:46 215128 ----a-w- c:\windows\syswow64\PnkBstrB.exe

    2010-03-04 04:49:45 75064 ----a-w- c:\windows\syswow64\PnkBstrA.exe

    2010-03-04 04:49:45 2434856 ----a-w- c:\windows\syswow64\pbsvc_bc2.exe

    2010-03-03 17:43:25 0 d-----w- c:\users\klack\appdata\roaming\yess

    2010-03-03 15:23:55 0 d-----w- c:\programdata\Blizzard

    2010-03-01 20:43:19 1031804 ----a-w- c:\users\klack\1356493609_17ef673f90_o.jpg

    2010-03-01 20:31:57 194062 ----a-w- c:\users\klack\skylinefk4.jpg

    2010-03-01 20:15:53 113271 ----a-w- c:\users\klack\IMG_0286500.JPG

    2010-03-01 18:24:28 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf

    2010-03-01 18:01:38 0 d-----w- c:\users\klack\appdata\roaming\AVS4YOU

    2010-03-01 18:00:54 974848 ----a-w- c:\windows\syswow64\mfc70.dll

    2010-03-01 18:00:54 487424 ----a-w- c:\windows\syswow64\msvcp70.dll

    2010-03-01 18:00:54 344064 ----a-w- c:\windows\syswow64\msvcr70.dll

    2010-03-01 18:00:54 24576 ----a-w- c:\windows\syswow64\msxml3a.dll

    2010-03-01 18:00:54 1700352 ----a-w- c:\windows\syswow64\GdiPlus.dll

    2010-03-01 18:00:54 0 d-----w- c:\programdata\AVS4YOU

    2010-03-01 18:00:54 0 d-----w- c:\program files (x86)\common files\AVSMedia

    2010-03-01 18:00:54 0 d-----w- c:\program files (x86)\AVS4YOU

    2010-03-01 17:14:14 0 d-----w- c:\users\klack\appdata\roaming\Moyea

    2010-03-01 17:14:03 0 d-----w- c:\program files (x86)\Moyea

    2010-02-28 17:14:53 0 d-----w- c:\users\klack\appdata\roaming\ManyCam

    2010-02-28 17:14:53 0 d-----w- c:\program files (x86)\ManyCam 2.4

    2010-02-27 13:54:08 0 d-----w- c:\program files (x86)\common files\Steam

    2010-02-27 13:54:07 0 d-----w- c:\program files (x86)\Steam

    2010-02-25 19:25:20 420928041 ----a-w- c:\windows\MEMORY.DMP

    2010-02-25 13:26:31 0 d-----w- c:\programdata\Sun

    2010-02-25 13:26:23 153376 ----a-w- c:\windows\syswow64\javaws.exe

    2010-02-25 13:26:23 145184 ----a-w- c:\windows\syswow64\javaw.exe

    2010-02-25 13:26:23 145184 ----a-w- c:\windows\syswow64\java.exe

    2010-02-24 01:40:33 0 d-----w- c:\program files (x86)\WinPcap

    2010-02-24 01:40:20 0 d-----w- c:\program files (x86)\Cain

    2010-02-23 14:39:45 0 d-----w- c:\users\klack\appdata\roaming\Bioshock2

    2010-02-23 14:21:52 373114 ----a-w- C:\AnalysisLog.sr0

    2010-02-23 14:19:32 0 d-sh--w- c:\programdata\SecuROM

    2010-02-23 14:18:44 453456 ----a-w- c:\windows\syswow64\d3dx10_42.dll

    2010-02-23 14:18:44 1892184 ----a-w- c:\windows\syswow64\D3DX9_42.dll

    2010-02-23 14:18:42 0 d-----w- c:\windows\syswow64\xlive

    2010-02-23 14:18:42 0 d-----w- c:\program files (x86)\Microsoft Games for Windows - LIVE

    2010-02-22 12:06:54 426067 ----a-w- c:\users\klack\city.jpg

    2010-02-22 05:44:44 0 d-----w- c:\programdata\FLEXnet

    2010-02-22 05:42:35 0 d-----w- c:\program files\Adobe

    2010-02-22 05:40:26 0 d-----w- c:\windows\syswow64\spool

    2010-02-22 05:38:50 0 d-----w- c:\programdata\Adobe

    2010-02-22 05:38:36 0 d-----w- c:\program files\common files\Macrovision Shared

    2010-02-22 05:38:35 0 d-----w- c:\program files\common files\Adobe

    2010-02-22 05:38:32 0 d-----w- c:\program files (x86)\common files\Macrovision Shared

    2010-02-22 04:40:43 68295634 ----a-w- c:\users\klack\DM4.mp4

    2010-02-21 07:02:56 1561772 ----a-w- c:\users\klack\1266714236464.gif

    2010-02-21 05:45:40 4170043 ----a-w- c:\users\klack\1266729686702.gif

    2010-02-20 22:54:21 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf

    2010-02-19 20:54:23 0 d-----w- c:\users\klack\.dvdcss

    2010-02-16 18:48:44 0 d-----w- c:\program files (x86)\FLAC

     

    ==================== Find3M ====================

     

    2010-02-25 13:26:20 411368 ----a-w- c:\windows\syswow64\deploytk.dll

    2010-02-24 08:16:06 212864 ------w- c:\windows\system32\MpSigStub.exe

    2010-02-11 04:33:21 466456 ----a-w- c:\windows\system32\wrap_oal.dll

    2010-02-11 04:33:21 444952 ----a-w- c:\windows\syswow64\wrap_oal.dll

    2010-02-11 04:33:21 121880 ----a-w- c:\windows\system32\OpenAL32.dll

    2010-02-11 04:33:21 109080 ----a-w- c:\windows\syswow64\OpenAL32.dll

    2010-02-02 18:00:00 85504 ----a-w- c:\windows\syswow64\ff_vfw.dll

    2010-02-02 08:36:47 2048 ----a-w- c:\windows\system32\tzres.dll

    2010-02-02 07:45:54 2048 ----a-w- c:\windows\syswow64\tzres.dll

    2010-01-19 09:05:57 424960 ----a-w- c:\windows\system32\secproc.dll

    2010-01-19 09:05:57 422912 ----a-w- c:\windows\system32\secproc_isv.dll

    2010-01-19 09:05:57 121856 ----a-w- c:\windows\system32\secproc_ssp_isv.dll

    2010-01-19 09:05:57 121856 ----a-w- c:\windows\system32\secproc_ssp.dll

    2010-01-19 09:00:44 305152 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe

    2010-01-19 09:00:43 357888 ----a-w- c:\windows\system32\RMActivate_isv.exe

    2010-01-19 09:00:37 356352 ----a-w- c:\windows\system32\RMActivate.exe

    2010-01-19 09:00:37 306688 ----a-w- c:\windows\system32\RMActivate_ssp.exe

    2010-01-18 23:29:31 85504 ----a-w- c:\windows\syswow64\secproc_ssp_isv.dll

    2010-01-18 23:29:31 85504 ----a-w- c:\windows\syswow64\secproc_ssp.dll

    2010-01-18 23:29:31 365568 ----a-w- c:\windows\syswow64\secproc_isv.dll

    2010-01-18 23:29:30 369152 ----a-w- c:\windows\syswow64\secproc.dll

    2010-01-18 23:28:33 324608 ----a-w- c:\windows\syswow64\RMActivate_isv.exe

    2010-01-18 23:28:33 277504 ----a-w- c:\windows\syswow64\RMActivate_ssp_isv.exe

    2010-01-18 23:28:30 320512 ----a-w- c:\windows\syswow64\RMActivate.exe

    2010-01-18 23:28:30 280064 ----a-w- c:\windows\syswow64\RMActivate_ssp.exe

    2010-01-11 22:19:00 61032 ----a-w- c:\windows\system32\nvshext.dll

    2010-01-11 22:19:00 159336 ----a-w- c:\windows\system32\nvvsvc.exe

    2010-01-11 22:19:00 14822504 ----a-w- c:\windows\system32\nvcpl.dll

    2010-01-11 22:19:00 116328 ----a-w- c:\windows\system32\nvmctray.dll

    2010-01-11 22:19:00 1037416 ----a-w- c:\windows\system32\nvsvc64.dll

    2010-01-11 07:12:38 381440 ----a-w- c:\windows\syswow64\iedkcs32.dll

    2009-12-22 08:36:19 243200 ----a-w- c:\windows\system32\wow64.dll

    2009-12-22 08:24:35 14336 ----a-w- c:\windows\syswow64\ntvdm64.dll

    2009-12-22 08:23:35 25600 ----a-w- c:\windows\syswow64\setup16.exe

    2009-12-22 08:22:10 5120 ----a-w- c:\windows\syswow64\wow32.dll

    2009-12-22 04:28:10 7680 ----a-w- c:\windows\syswow64\instnm.exe

    2009-12-22 04:28:08 2048 ----a-w- c:\windows\syswow64\user.exe

    2009-12-19 09:51:24 1192960 ----a-w- c:\windows\system32\wininet.dll

    2009-12-19 09:50:56 14848 ----a-w- c:\windows\system32\tsbyuv.dll

    2009-12-19 09:49:47 1572352 ----a-w- c:\windows\system32\quartz.dll

    2009-12-19 09:47:56 25088 ----a-w- c:\windows\system32\msyuv.dll

    2009-12-19 09:47:53 38912 ----a-w- c:\windows\system32\msvidc32.dll

    2009-12-19 09:47:46 16384 ----a-w- c:\windows\system32\msrle32.dll

    2009-12-19 09:46:35 54272 ----a-w- c:\windows\system32\iyuv_32.dll

    2009-07-14 05:37:38 31548 ----a-w- c:\windows\inf\perflib\0409\perfd.dat

    2009-07-14 05:37:38 31548 ----a-w- c:\windows\inf\perflib\0409\perfc.dat

    2009-07-14 05:37:38 291294 ----a-w- c:\windows\inf\perflib\0409\perfi.dat

    2009-07-14 05:37:38 291294 ----a-w- c:\windows\inf\perflib\0409\perfh.dat

    2009-07-14 04:54:24 174 --sha-w- c:\program files\desktop.ini

    2009-07-14 04:54:24 174 --sha-w- c:\program files (x86)\desktop.ini

    2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat

    2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat

    2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat

    2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat

    2009-06-10 20:44:08 9633792 --sha-r- c:\windows\fonts\StaticCache.dat

    2009-07-14 04:55:03 16384 --sha-w- c:\windows\syswow64\config\systemprofile\appdata\local\microsoft\windows\history\history.ie5\index.dat

    2009-07-14 04:55:03 32768 --sha-w- c:\windows\syswow64\config\systemprofile\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat

    2009-07-14 04:55:03 16384 --sha-w- c:\windows\syswow64\config\systemprofile\appdata\roaming\microsoft\windows\cookies\index.dat

    2009-07-14 01:39:53 398848 --sha-w- c:\windows\winsxs\amd64_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_4d4d1f2f696639a2\WinMail.exe

    2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe

     

    ============= FINISH: 21:45:35,46 ===============

     

     

     

     

    WoW Error Log:

     

    ==============================================================================

    World of WarCraft (build 11403)

     

    Exe: G:\Games\World of Warcraft\Wow.exe

    Time: Mar 17, 2010 10:24:26.346 PM

    User: klack

    Computer: LATSOM

    ------------------------------------------------------------------------------

     

    This application has encountered a critical error:

     

    ERROR #134 (0x85100086) Fatal Condition

    Program: G:\Games\World of Warcraft\Wow.exe

     

    Failed to read file Creature\DruidCatTauren\DruidCatTaurenSkinRed.blp.

     

    Debug Details:

     

    [2] err=0 text=SFileReadFile - Creature\DruidCatTauren\DruidCatTaurenSkinRed.blp - Data\patch.MPQ

    [1] err=0 text=ReadSectors/DecompressData failed

    [0] err=0 text=ReadSectors/DecompressData failed

     

     

     

    WoWBuild: 11403

    Settings:

    SET locale "enGB"

    SET portal "eu"

    SET realmList "eu.logon.worldofwarcraft.com"

    SET patchlist "eu.version.worldofwarcraft.com"

    SET hwDetect "0"

    SET gxRefresh "60"

    SET gxMultisampleQuality "0.000000"

    SET gxFixLag "0"

    SET videoOptionsVersion "3"

    SET movie "0"

    SET mouseSpeed "1"

    SET Gamma "1.000000"

    SET readTOS "1"

    SET readEULA "1"

    SET readTerminationWithoutNotice "1"

    SET showToolsUI "1"

    SET accounttype "LK"

    SET VoiceActivationSensitivity "0.39999997615814"

    SET Sound_OutputDriverName "System Default"

    SET ChatMusicVolume "0.29999998211861"

    SET ChatSoundVolume "0.39999997615814"

    SET ChatAmbienceVolume "0.29999998211861"

    SET Sound_MasterVolume "0.10000000149012"

    SET Sound_MusicVolume "0.40000000596046"

    SET Sound_AmbienceVolume "0.60000002384186"

    SET farclip "777.000000"

    SET specular "1"

    SET groundEffectDensity "24"

    SET projectedTextures "1"

    SET realmName "Jaedenar"

    SET gameTip "2"

     

    ----------------------------------------

    GxInfo

    ----------------------------------------

    GxApi: D3D9

    Adapter Count: 2

     

    Adapter 0 (primary):

    Driver: nvd3dum.dll

    Version: 8.17.0011.9621

    Description: NVIDIA GeForce GTX 280

    DeviceName: \\.\DISPLAY1

     

    Adapter 1:

    Driver: nvd3dum.dll

    Version: 8.17.0011.9621

    Description: NVIDIA GeForce GTX 280

    DeviceName: \\.\DISPLAY2

     

    ------------------------------------------------------------------------------

     

    ----------------------------------------

    Stack Trace (Manual)

    ----------------------------------------

     

    Address Frame Logical addr Module

     

    Showing 32/32 threads...

     

    --- Thread ID: 3352 ---

    756A1184 001FFE40 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 001FFE54 0001:00001138 C:\Windows\syswow64\kernel32.dll

    00707370 001FFE64 0001:00306370 G:\Games\World of Warcraft\Wow.exe

    00425F38 001FFE80 0001:00024F38 G:\Games\World of Warcraft\Wow.exe

    0042614A 001FFED4 0001:0002514A G:\Games\World of Warcraft\Wow.exe

    00426191 001FFEEC 0001:00025191 G:\Games\World of Warcraft\Wow.exe

    00406D8D 001FFF88 0001:00005D8D G:\Games\World of Warcraft\Wow.exe

    756A3677 001FFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 001FFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 001FFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 4016 ---

    75653520 002DFF14 0001:00012520 C:\Windows\syswow64\KERNELBASE.dll

    0072C635 002DFF34 0001:0032B635 G:\Games\World of Warcraft\Wow.exe

    0074231A 002DFF48 0001:0034131A G:\Games\World of Warcraft\Wow.exe

    0086A0BF 002DFF80 0001:004690BF G:\Games\World of Warcraft\Wow.exe

    0086A164 002DFF94 0001:00469164 G:\Games\World of Warcraft\Wow.exe

    77499D72 002DFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 002DFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2256 ---

    756A3677 0428FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0428FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0428FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2136 ---

    756A1184 0618FF50 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0618FF64 0001:00001138 C:\Windows\syswow64\kernel32.dll

    6E2F7AAF 0618FF80 0001:00116AAF C:\Windows\system32\d3d9.dll

    6E2F7B03 0618FF88 0001:00116B03 C:\Windows\system32\d3d9.dll

    756A3677 0618FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0618FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0618FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 548 [Current Thread] ---

    00705C75 0693FA08 0001:00304C75 G:\Games\World of Warcraft\Wow.exe

    0071609B 0693FB2C 0001:0031509B G:\Games\World of Warcraft\Wow.exe

    0046157F 0693FF60 0001:0006057F G:\Games\World of Warcraft\Wow.exe

    0070318B 0693FF88 0001:0030218B G:\Games\World of Warcraft\Wow.exe

    756A3677 0693FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0693FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0693FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3504 ---

    756A1184 070FFF24 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 070FFF38 0001:00001138 C:\Windows\syswow64\kernel32.dll

    00707370 070FFF48 0001:00306370 G:\Games\World of Warcraft\Wow.exe

    007F5422 070FFF60 0001:003F4422 G:\Games\World of Warcraft\Wow.exe

    0070318B 070FFF88 0001:0030218B G:\Games\World of Warcraft\Wow.exe

    756A3677 070FFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 070FFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 070FFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2412 ---

    756A3677 0A7CFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0A7CFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0A7CFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 1956 ---

    75653520 0A93FF68 0001:00012520 C:\Windows\syswow64\KERNELBASE.dll

    008A0FED 0A93FF74 0001:0049FFED G:\Games\World of Warcraft\Wow.exe

    008A180C 0A93FF88 0001:004A080C G:\Games\World of Warcraft\Wow.exe

    756A3677 0A93FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0A93FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0A93FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2360 ---

    75653520 0AAAFF68 0001:00012520 C:\Windows\syswow64\KERNELBASE.dll

    008A0FED 0AAAFF74 0001:0049FFED G:\Games\World of Warcraft\Wow.exe

    008A180C 0AAAFF88 0001:004A080C G:\Games\World of Warcraft\Wow.exe

    756A3677 0AAAFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0AAAFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0AAAFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 452 ---

    756A1184 0BBEFF28 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0BBEFF3C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    00707370 0BBEFF4C 0001:00306370 G:\Games\World of Warcraft\Wow.exe

    00497379 0BBEFF88 0001:00096379 G:\Games\World of Warcraft\Wow.exe

    756A3677 0BBEFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0BBEFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0BBEFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2448 ---

    756A1184 0C48FF18 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0C48FF2C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    00707370 0C48FF3C 0001:00306370 G:\Games\World of Warcraft\Wow.exe

    00421425 0C48FF54 0001:00020425 G:\Games\World of Warcraft\Wow.exe

    00421591 0C48FF60 0001:00020591 G:\Games\World of Warcraft\Wow.exe

    0070318B 0C48FF88 0001:0030218B G:\Games\World of Warcraft\Wow.exe

    756A3677 0C48FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0C48FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0C48FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2572 ---

    756A162D 0C5FFCE0 0001:0000162D C:\Windows\syswow64\kernel32.dll

    756A1921 0C5FFCFC 0001:00001921 C:\Windows\syswow64\kernel32.dll

    00421C3B 0C5FFF54 0001:00020C3B G:\Games\World of Warcraft\Wow.exe

    004213CE 0C5FFF60 0001:000203CE G:\Games\World of Warcraft\Wow.exe

    0070318B 0C5FFF88 0001:0030218B G:\Games\World of Warcraft\Wow.exe

    756A3677 0C5FFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0C5FFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0C5FFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3412 ---

    756A162D 0D08FE98 0001:0000162D C:\Windows\syswow64\kernel32.dll

    750B03DA 0D08FEEC 0001:000103DA C:\Windows\syswow64\USER32.dll

    750B066E 0D08FF08 0001:0001066E C:\Windows\syswow64\USER32.dll

    007413A6 0D08FF34 0001:003403A6 G:\Games\World of Warcraft\Wow.exe

    0074231A 0D08FF48 0001:0034131A G:\Games\World of Warcraft\Wow.exe

    0086A0BF 0D08FF80 0001:004690BF G:\Games\World of Warcraft\Wow.exe

    0086A164 0D08FF94 0001:00469164 G:\Games\World of Warcraft\Wow.exe

    77499D72 0D08FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0D08FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2040 ---

    74BF678C 0E5DFBA8 0001:0000578C C:\Windows\system32\mswsock.dll

    76924A20 0E5DFC28 0001:00003A20 C:\Windows\syswow64\WS2_32.dll

    769FB654 0E5DFF80 0001:0003A654 C:\Windows\syswow64\WININET.dll

    769EA48B 0E5DFF88 0001:0002948B C:\Windows\syswow64\WININET.dll

    756A3677 0E5DFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0E5DFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0E5DFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3316 ---

    756A1184 0EF8FF24 0001:00001184 C:\Windows\syswow64\kernel32.dll

    6F3533B7 0EF8FF88 0001:000023B7 C:\Windows\system32\rasman.dll

    756A3677 0EF8FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0EF8FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0EF8FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2400 ---

    756A1184 0F65FF14 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0F65FF28 0001:00001138 C:\Windows\syswow64\kernel32.dll

    769E7AF9 0F65FF6C 0001:00026AF9 C:\Windows\syswow64\WININET.dll

    769E8753 0F65FF84 0001:00027753 C:\Windows\syswow64\WININET.dll

    769E94DE 0F65FF94 0001:000284DE C:\Windows\syswow64\WININET.dll

    77499D72 0F65FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0F65FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3556 ---

    756A1184 0FB0FF34 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0FB0FF48 0001:00001138 C:\Windows\syswow64\kernel32.dll

    008E1D35 0FB0FF64 0001:004E0D35 G:\Games\World of Warcraft\Wow.exe

    008A1189 0FB0FF74 0001:004A0189 G:\Games\World of Warcraft\Wow.exe

    008A17D0 0FB0FF88 0001:004A07D0 G:\Games\World of Warcraft\Wow.exe

    756A3677 0FB0FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0FB0FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0FB0FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 1152 ---

    756A162D 0FC7FE98 0001:0000162D C:\Windows\syswow64\kernel32.dll

    750B03DA 0FC7FEEC 0001:000103DA C:\Windows\syswow64\USER32.dll

    750B066E 0FC7FF08 0001:0001066E C:\Windows\syswow64\USER32.dll

    007413A6 0FC7FF34 0001:003403A6 G:\Games\World of Warcraft\Wow.exe

    0074231A 0FC7FF48 0001:0034131A G:\Games\World of Warcraft\Wow.exe

    0086A0BF 0FC7FF80 0001:004690BF G:\Games\World of Warcraft\Wow.exe

    0086A164 0FC7FF94 0001:00469164 G:\Games\World of Warcraft\Wow.exe

    77499D72 0FC7FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0FC7FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 1732 ---

    756A1184 0FDEFF34 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0FDEFF48 0001:00001138 C:\Windows\syswow64\kernel32.dll

    008E1D35 0FDEFF64 0001:004E0D35 G:\Games\World of Warcraft\Wow.exe

    008A1189 0FDEFF74 0001:004A0189 G:\Games\World of Warcraft\Wow.exe

    008A17D0 0FDEFF88 0001:004A07D0 G:\Games\World of Warcraft\Wow.exe

    756A3677 0FDEFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0FDEFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0FDEFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2180 ---

    756A162D 0FF5FE98 0001:0000162D C:\Windows\syswow64\kernel32.dll

    750B03DA 0FF5FEEC 0001:000103DA C:\Windows\syswow64\USER32.dll

    750B066E 0FF5FF08 0001:0001066E C:\Windows\syswow64\USER32.dll

    007413A6 0FF5FF34 0001:003403A6 G:\Games\World of Warcraft\Wow.exe

    0074231A 0FF5FF48 0001:0034131A G:\Games\World of Warcraft\Wow.exe

    0086A0BF 0FF5FF80 0001:004690BF G:\Games\World of Warcraft\Wow.exe

    0086A164 0FF5FF94 0001:00469164 G:\Games\World of Warcraft\Wow.exe

    77499D72 0FF5FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0FF5FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2148 ---

    756A162D 210DFE98 0001:0000162D C:\Windows\syswow64\kernel32.dll

    750B03DA 210DFEEC 0001:000103DA C:\Windows\syswow64\USER32.dll

    750B066E 210DFF08 0001:0001066E C:\Windows\syswow64\USER32.dll

    007413A6 210DFF34 0001:003403A6 G:\Games\World of Warcraft\Wow.exe

    0074231A 210DFF48 0001:0034131A G:\Games\World of Warcraft\Wow.exe

    0086A0BF 210DFF80 0001:004690BF G:\Games\World of Warcraft\Wow.exe

    0086A164 210DFF94 0001:00469164 G:\Games\World of Warcraft\Wow.exe

    77499D72 210DFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 210DFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2888 ---

    756A3677 238EFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 238EFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 238EFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3808 ---

    756A1184 0471FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0471FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 0471FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 0471FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 0471FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 0471FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 0471FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0471FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0471FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3728 ---

    756A1184 05DEFF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 05DEFF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 05DEFF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 05DEFF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 05DEFF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 05DEFF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 05DEFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 05DEFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 05DEFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 708 ---

    756A1184 062FFF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 062FFF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 062FFF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 062FFF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 062FFF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 062FFF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 062FFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 062FFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 062FFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2368 ---

    756A1184 0646FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 0646FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 0646FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 0646FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 0646FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 0646FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 0646FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0646FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0646FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 1268 ---

    756A1184 10A4FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 10A4FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 10A4FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 10A4FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 10A4FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 10A4FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 10A4FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 10A4FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 10A4FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 952 ---

    756A1184 1910FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 1910FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 1910FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 1910FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 1910FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 1910FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 1910FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 1910FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 1910FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 4004 ---

    756A1184 1962FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 1962FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 1962FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 1962FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 1962FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 1962FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 1962FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 1962FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 1962FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 1892 ---

    756A1184 1D27FF08 0001:00001184 C:\Windows\syswow64\kernel32.dll

    756A1138 1D27FF1C 0001:00001138 C:\Windows\syswow64\kernel32.dll

    69A1DCA6 1D27FF34 0001:0034CCA6 C:\Windows\system32\nvd3dum.dll

    69A1DBA2 1D27FF44 0001:0034CBA2 C:\Windows\system32\nvd3dum.dll

    69BD9E0D 1D27FF7C 0001:00508E0D C:\Windows\system32\nvd3dum.dll

    69BD9EB5 1D27FF88 0001:00508EB5 C:\Windows\system32\nvd3dum.dll

    756A3677 1D27FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 1D27FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 1D27FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 3964 ---

    756A3677 065EFF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 065EFFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 065EFFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    --- Thread ID: 2076 ---

    756A3677 0ED9FF94 0001:00003677 C:\Windows\syswow64\kernel32.dll

    77499D72 0ED9FFD4 0001:00029D72 C:\Windows\SysWOW64\ntdll.dll

    77499D45 0ED9FFEC 0001:00029D45 C:\Windows\SysWOW64\ntdll.dll

     

    ----------------------------------------

    Stack Trace (Using DBGHELP.DLL)

    ----------------------------------------

     

    Showing 32/32 threads...

     

    --- Thread ID: 3352 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x000021B8,0x00000001,0x00000000,0x001FFE64)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x000021B8,0x00000001,0x001FFE80,0x00425F38)

    00707370 Wow.exe <unknown symbol>+0 (0x00000001,0x00001DB0,0x00000000,0x00000001)

    00425F38 Wow.exe <unknown symbol>+0 (0x00000000,0x001FFEDC,0x00000002,0x69676E45)

    0042614A Wow.exe <unknown symbol>+0 (0x00000000,0x00406D12,0x00000001,0x00000001)

    00426191 Wow.exe <unknown symbol>+0 (0x0040B9A9,0x00400000,0x00000000,0x00EF2C9D)

    00406D8D Wow.exe <unknown symbol>+0 (0x7EFDE000,0x001FFFD4,0x77499D72,0x7EFDE000)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x7EFDE000,0x7745E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x00401000,0x7EFDE000,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x00401000,0x7EFDE000,0x00000000,0x78746341)

     

    --- Thread ID: 4016 ---

    75653520 KERNELBASE.dll Sleep+15 (0x00000064,0x00000000,0x02D3F908,0x02CADE38)

    0072C635 Wow.exe <unknown symbol>+0 (0x00000000,0x00000000,0x02D3F908,0x002DFF80)

    0074231A Wow.exe <unknown symbol>+0 (0x02CADE38,0x13885C7F,0x00000000,0x02D3F908)

    0086A0BF Wow.exe <unknown symbol>+0 (0x00000000,0x756A3677,0x02D3F908,0x002DFFD4)

    0086A164 Wow.exe <unknown symbol>+0 (0x02D3F908,0x7777E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x0086A0E5,0x02D3F908,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x0086A0E5,0x02D3F908,0x00000000,0x00905A4D)

     

    --- Thread ID: 2256 ---

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00F5E6A0,0x7372E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x774C1C7F,0x00F5E6A0,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x774C1C7F,0x00F5E6A0,0x00000000,0x5BF64758)

     

    --- Thread ID: 2136 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002274,0xFFFFFFFF,0x00000000,0x0618FF80)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002274,0xFFFFFFFF,0x00000000,0x00000000)

    6E2F7AAF d3d9.dll DebugSetLevel+455798 (0x0618FF94,0x756A3677,0x05E90040,0x0618FFD4)

    6E2F7B03 d3d9.dll DebugSetLevel+455882 (0x05E90040,0x0618FFD4,0x77499D72,0x05E90040)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x05E90040,0x7142E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x6E2F7AF6,0x05E90040,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x6E2F7AF6,0x05E90040,0x00000000,0x00000000)

     

    --- Thread ID: 548 [Current Thread] ---

     

    --- Thread ID: 3504 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x0000213C,0xFFFFFFFF,0x00000000,0x070FFF48)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x0000213C,0xFFFFFFFF,0x070FFF60,0x007F5422)

    00707370 Wow.exe <unknown symbol>+0 (0xFFFFFFFF,0x000022BC,0x00000DB0,0x03313EE0)

    007F5422 Wow.exe <unknown symbol>+0 (0x00D60190,0x00000000,0x00000000,0x03313EE0)

    0070318B Wow.exe <unknown symbol>+0 (0x00CC5E00,0x070FFFD4,0x77499D72,0x03313EE0)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x03313EE0,0x7055E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x007030F0,0x03313EE0,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x007030F0,0x03313EE0,0x00000000,0x079D0000)

     

    --- Thread ID: 2412 ---

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00000000,0x7D26E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x74DDA3F5,0x00000000,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x74DDA3F5,0x00000000,0x00000000,0x00000000)

     

    --- Thread ID: 1956 ---

    75653520 KERNELBASE.dll Sleep+15 (0x0000000A,0x0A93FF88,0x008A180C,0x0000000A)

    008A0FED Wow.exe <unknown symbol>+0 (0x0000000A,0x00000000,0x000007A4,0x0A93FF94)

    008A180C Wow.exe <unknown symbol>+0 (0x09435D28,0x0A93FFD4,0x77499D72,0x09435D28)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x09435D28,0x7DC9E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x008A1790,0x09435D28,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x008A1790,0x09435D28,0x00000000,0x00000000)

     

    --- Thread ID: 2360 ---

    75653520 KERNELBASE.dll Sleep+15 (0x0000000A,0x0AAAFF88,0x008A180C,0x0000000A)

    008A0FED Wow.exe <unknown symbol>+0 (0x0000000A,0x00000000,0x00000938,0x0AAAFF94)

    008A180C Wow.exe <unknown symbol>+0 (0x0942D6A8,0x0AAAFFD4,0x77499D72,0x0942D6A8)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0942D6A8,0x7DF0E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x008A1790,0x0942D6A8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x008A1790,0x0942D6A8,0x00000000,0x2BFBF4F7)

     

    --- Thread ID: 452 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002130,0xFFFFFFFF,0x00000000,0x0BBEFF4C)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002130,0xFFFFFFFF,0x0BBEFF88,0x00497379)

    00707370 Wow.exe <unknown symbol>+0 (0xFFFFFFFF,0x000001C4,0x0AD26258,0x00002344)

    00497379 Wow.exe <unknown symbol>+0 (0x00CC5E20,0x0BBEFFD4,0x77499D72,0x0AD26258)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0AD26258,0x7CE4E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x007030F0,0x0AD26258,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x007030F0,0x0AD26258,0x00000000,0x00000000)

     

    --- Thread ID: 2448 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x0000234C,0x000003E8,0x00000000,0x0C48FF3C)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x0000234C,0x000003E8,0x0C48FF54,0x00421425)

    00707370 Wow.exe <unknown symbol>+0 (0x000003E8,0x00000990,0x0AD26258,0x000023EC)

    00421425 Wow.exe <unknown symbol>+0 (0x00000000,0x0C48FF88,0x0070318B,0x0A2494F8)

    00421591 Wow.exe <unknown symbol>+0 (0x0A2494F8,0x00000000,0x00000000,0x0AD26258)

    0070318B Wow.exe <unknown symbol>+0 (0x00CC5E40,0x0C48FFD4,0x77499D72,0x0AD26258)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0AD26258,0x7B12E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x007030F0,0x0AD26258,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x007030F0,0x0AD26258,0x00000000,0x00000000)

     

    --- Thread ID: 2572 ---

    756A162D kernel32.dll WaitForMultipleObjectsEx+142 (0x00000003,0x7EFDE000,0x00000000,0x000001F4)

    756A1921 kernel32.dll WaitForMultipleObjects+24 (0x00000003,0x0C5FFE20,0x00000000,0x000001F4)

    00421C3B Wow.exe <unknown symbol>+0 (0x0AD26288,0x0C5FFF88,0x0070318B,0x0A2494E8)

    004213CE Wow.exe <unknown symbol>+0 (0x0A2494E8,0x00000000,0x00000000,0x0AD26288)

    0070318B Wow.exe <unknown symbol>+0 (0x00CC5E60,0x0C5FFFD4,0x77499D72,0x0AD26288)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0AD26288,0x7B05E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x007030F0,0x0AD26288,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x007030F0,0x0AD26288,0x00000000,0x0D1E0000)

     

    --- Thread ID: 3412 ---

    756A162D kernel32.dll WaitForMultipleObjectsEx+142 (0x00000003,0x7EFDE000,0x00000000,0xFFFFFFFF)

    750B03DA USER32.dll MsgWaitForMultipleObjectsEx+250 (0x00002404,0x0D08FF2C,0xFFFFFFFF,0x00000000)

    750B066E USER32.dll MsgWaitForMultipleObjects+31 (0x00000002,0x0D08FF2C,0x00000000,0xFFFFFFFF)

    007413A6 Wow.exe <unknown symbol>+0 (0x00CD2698,0x00000000,0x0B070890,0x0D08FF80)

    0074231A Wow.exe <unknown symbol>+0 (0x09D8D760,0x1EAD5C7F,0x00000000,0x0B070890)

    0086A0BF Wow.exe <unknown symbol>+0 (0x00000000,0x756A3677,0x0B070890,0x0D08FFD4)

    0086A164 Wow.exe <unknown symbol>+0 (0x0B070890,0x7A52E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x0086A0E5,0x0B070890,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x0086A0E5,0x0B070890,0x00000000,0x00000000)

     

    --- Thread ID: 2040 ---

    74BF678C mswsock.dll <unknown symbol>+0 (0x00000001,0x0E5DFE58,0x0E5DFC50,0x0E5DFD54)

    76924A20 WS2_32.dll select+159 (0x00000001,0x0E5DFE58,0x0E5DFC50,0x0E5DFD54)

    769FB654 WININET.dll InternetCanonicalizeUrlW+637 (0x0E5DFF94,0x756A3677,0x00F6BD18,0x0E5DFFD4)

    769EA48B WININET.dll InternetSetStatusCallbackA+597 (0x00F6BD18,0x0E5DFFD4,0x77499D72,0x00F6BD18)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00F6BD18,0x7907E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x769EA47E,0x00F6BD18,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x769EA47E,0x00F6BD18,0x00000000,0x00000000)

     

    --- Thread ID: 3316 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002538,0xFFFFFFFF,0x00000001,0x00000000)

    6F3533B7 rasman.dll RasAddNotification+1088 (0x00000000,0x0EF8FFD4,0x77499D72,0x00000000)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00000000,0x79A2E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x6F3532FB,0x00000000,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x6F3532FB,0x00000000,0x00000000,0x0F0E0000)

     

    --- Thread ID: 2400 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x000025C0,0x001B7740,0x00000000,0x0F65FF6C)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x000025C0,0x001B7740,0x00000000,0x0EB397F8)

    769E7AF9 WININET.dll FindNextUrlCacheEntryExA+247 (0x00000000,0x00000000,0x0EB397F8,0x00000001)

    769E8753 WININET.dll InternetOpenA+2359 (0x756A3677,0x0EB397F8,0x0F65FFD4,0x77499D72)

    769E94DE WININET.dll InternetOpenA+5826 (0x0EB397F8,0x783FE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x769E94D3,0x0EB397F8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x769E94D3,0x0EB397F8,0x00000000,0x19110000)

     

    --- Thread ID: 3556 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x000026F0,0xFFFFFFFF,0x00000000,0x0FB0FF64)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x000026F0,0xFFFFFFFF,0x00000000,0x0B2F8EB4)

    008E1D35 Wow.exe <unknown symbol>+0 (0x09D14A08,0xFFFFFFFF,0x0FB0FF88,0x008A17D0)

    008A1189 Wow.exe <unknown symbol>+0 (0x09D14A08,0x00000000,0x00000DE4,0x0FB0FF94)

    008A17D0 Wow.exe <unknown symbol>+0 (0x0B2F8EB4,0x0FB0FFD4,0x77499D72,0x0B2F8EB4)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0B2F8EB4,0x78EAE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x008A1790,0x0B2F8EB4,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x008A1790,0x0B2F8EB4,0x00000000,0x00000000)

     

    --- Thread ID: 1152 ---

    756A162D kernel32.dll WaitForMultipleObjectsEx+142 (0x00000003,0x7EFDE000,0x00000000,0xFFFFFFFF)

    750B03DA USER32.dll MsgWaitForMultipleObjectsEx+250 (0x00002738,0x0FC7FF2C,0xFFFFFFFF,0x00000000)

    750B066E USER32.dll MsgWaitForMultipleObjects+31 (0x00000002,0x0FC7FF2C,0x00000000,0xFFFFFFFF)

    007413A6 Wow.exe <unknown symbol>+0 (0x00CD26E0,0x00000000,0x0B5934D0,0x0FC7FF80)

    0074231A Wow.exe <unknown symbol>+0 (0x09D8E680,0x1C625C7F,0x00000000,0x0B5934D0)

    0086A0BF Wow.exe <unknown symbol>+0 (0x00000000,0x756A3677,0x0B5934D0,0x0FC7FFD4)

    0086A164 Wow.exe <unknown symbol>+0 (0x0B5934D0,0x789DE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x0086A0E5,0x0B5934D0,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x0086A0E5,0x0B5934D0,0x00000000,0x00000000)

     

    --- Thread ID: 1732 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002744,0xFFFFFFFF,0x00000000,0x0FDEFF64)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002744,0xFFFFFFFF,0x00000000,0x0B2F902C)

    008E1D35 Wow.exe <unknown symbol>+0 (0x09D14B70,0xFFFFFFFF,0x0FDEFF88,0x008A17D0)

    008A1189 Wow.exe <unknown symbol>+0 (0x09D14B70,0x00000000,0x000006C4,0x0FDEFF94)

    008A17D0 Wow.exe <unknown symbol>+0 (0x0B2F902C,0x0FDEFFD4,0x77499D72,0x0B2F902C)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0B2F902C,0x7884E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x008A1790,0x0B2F902C,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x008A1790,0x0B2F902C,0x00000000,0x00000000)

     

    --- Thread ID: 2180 ---

    756A162D kernel32.dll WaitForMultipleObjectsEx+142 (0x00000003,0x7EFDE000,0x00000000,0xFFFFFFFF)

    750B03DA USER32.dll MsgWaitForMultipleObjectsEx+250 (0x00002768,0x0FF5FF2C,0xFFFFFFFF,0x00000000)

    750B066E USER32.dll MsgWaitForMultipleObjects+31 (0x00000002,0x0FF5FF2C,0x00000000,0xFFFFFFFF)

    007413A6 Wow.exe <unknown symbol>+0 (0x00CD2740,0x00000000,0x0B593F98,0x0FF5FF80)

    0074231A Wow.exe <unknown symbol>+0 (0x09D92148,0x1C505C7F,0x00000000,0x0B593F98)

    0086A0BF Wow.exe <unknown symbol>+0 (0x00000000,0x756A3677,0x0B593F98,0x0FF5FFD4)

    0086A164 Wow.exe <unknown symbol>+0 (0x0B593F98,0x78AFE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x0086A0E5,0x0B593F98,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x0086A0E5,0x0B593F98,0x00000000,0x22650000)

     

    --- Thread ID: 2148 ---

    756A162D kernel32.dll WaitForMultipleObjectsEx+142 (0x00000003,0x7EFDE000,0x00000000,0xFFFFFFFF)

    750B03DA USER32.dll MsgWaitForMultipleObjectsEx+250 (0x000027EC,0x210DFF2C,0xFFFFFFFF,0x00000000)

    750B066E USER32.dll MsgWaitForMultipleObjects+31 (0x00000002,0x210DFF2C,0x00000000,0xFFFFFFFF)

    007413A6 Wow.exe <unknown symbol>+0 (0x00CD27A0,0x00000000,0x25777248,0x210DFF80)

    0074231A Wow.exe <unknown symbol>+0 (0x2D002E48,0x32A85C7F,0x00000000,0x25777248)

    0086A0BF Wow.exe <unknown symbol>+0 (0x00000000,0x756A3677,0x25777248,0x210DFFD4)

    0086A164 Wow.exe <unknown symbol>+0 (0x25777248,0x5657E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x0086A0E5,0x25777248,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x0086A0E5,0x25777248,0x00000000,0x21360000)

     

    --- Thread ID: 2888 ---

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00F5D848,0x54D4E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x774C2C91,0x00F5D848,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x774C2C91,0x00F5D848,0x00000000,0x23B10000)

     

    --- Thread ID: 3808 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002888,0xFFFFFFFF,0x00000000,0x0471FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002888,0xFFFFFFFF,0x00000000,0x3F04F208)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000000,0x00000000,0x0471FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9F28,0x17ECB3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x0471FF94,0x756A3677,0x3F04F208)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x3F04F208,0x0471FFD4,0x77499D72,0x3F04F208)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x3F04F208,0x732BE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x3F04F208,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x3F04F208,0x00000000,0x00000000)

     

    --- Thread ID: 3728 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002888,0xFFFFFFFF,0x00000000,0x05DEFF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002888,0xFFFFFFFF,0x00000000,0x3F04F430)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000001,0x00000000,0x05DEFF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9F30,0x1643B3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x05DEFF94,0x756A3677,0x3F04F430)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x3F04F430,0x05DEFFD4,0x77499D72,0x3F04F430)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x3F04F430,0x7284E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x3F04F430,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x3F04F430,0x00000000,0x00000000)

     

    --- Thread ID: 708 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002888,0xFFFFFFFF,0x00000000,0x062FFF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002888,0xFFFFFFFF,0x00000000,0x3F04F658)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000002,0x00000000,0x062FFF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9F38,0x15B2B3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x062FFF94,0x756A3677,0x3F04F658)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x3F04F658,0x062FFFD4,0x77499D72,0x3F04F658)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x3F04F658,0x7175E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x3F04F658,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x3F04F658,0x00000000,0x00000000)

     

    --- Thread ID: 2368 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002888,0xFFFFFFFF,0x00000000,0x0646FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002888,0xFFFFFFFF,0x00000000,0x3F04FAA8)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000003,0x00000000,0x0646FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9F40,0x15DBB3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x0646FF94,0x756A3677,0x3F04FAA8)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x3F04FAA8,0x0646FFD4,0x77499D72,0x3F04FAA8)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x3F04FAA8,0x711CE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x3F04FAA8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x3F04FAA8,0x00000000,0x00000000)

     

    --- Thread ID: 1268 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002408,0xFFFFFFFF,0x00000000,0x10A4FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002408,0xFFFFFFFF,0x00000000,0x246FBBD8)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000000,0x00000000,0x10A4FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9CB4,0x0339B3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x10A4FF94,0x756A3677,0x246FBBD8)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x246FBBD8,0x10A4FFD4,0x77499D72,0x246FBBD8)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x246FBBD8,0x67FEE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x246FBBD8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x246FBBD8,0x00000000,0x110F0000)

     

    --- Thread ID: 952 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002408,0xFFFFFFFF,0x00000000,0x1910FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002408,0xFFFFFFFF,0x00000000,0x23F27000)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000001,0x00000000,0x1910FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9CBC,0x0A8DB3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x1910FF94,0x756A3677,0x23F27000)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x23F27000,0x1910FFD4,0x77499D72,0x23F27000)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x23F27000,0x6E4AE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x23F27000,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x23F27000,0x00000000,0x18E20000)

     

    --- Thread ID: 4004 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002408,0xFFFFFFFF,0x00000000,0x1962FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002408,0xFFFFFFFF,0x00000000,0x246FBBD8)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000002,0x00000000,0x1962FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9CC4,0x0AFFB3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x1962FF94,0x756A3677,0x246FBBD8)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x246FBBD8,0x1962FFD4,0x77499D72,0x246FBBD8)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x246FBBD8,0x6E38E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x246FBBD8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x246FBBD8,0x00000000,0x1D720000)

     

    --- Thread ID: 1892 ---

    756A1184 kernel32.dll WaitForSingleObjectEx+67 (0x00002408,0xFFFFFFFF,0x00000000,0x1D27FF34)

    756A1138 kernel32.dll WaitForSingleObject+18 (0x00002408,0xFFFFFFFF,0x00000000,0x23F27000)

    69A1DCA6 nvd3dum.dll QueryOglResource+379702 (0x00000003,0x00000000,0x1D27FF7C,0x69BD9E0D)

    69A1DBA2 nvd3dum.dll QueryOglResource+379442 (0x139E9CCC,0x0EBAB3AD,0x00000000,0x00000000)

    69BD9E0D nvd3dum.dll QueryOglResource+2198685 (0x00000000,0x1D27FF94,0x756A3677,0x23F27000)

    69BD9EB5 nvd3dum.dll QueryOglResource+2198853 (0x23F27000,0x1D27FFD4,0x77499D72,0x23F27000)

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x23F27000,0x6A7DE436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x69BD9E33,0x23F27000,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x69BD9E33,0x23F27000,0x00000000,0x21570000)

     

    --- Thread ID: 3964 ---

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x00F5E8D8,0x7104E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x774C2C91,0x00F5E8D8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x774C2C91,0x00F5E8D8,0x00000000,0x00000000)

     

    --- Thread ID: 2076 ---

    756A3677 kernel32.dll BaseThreadInitThunk+18 (0x0EB721F8,0x7983E436,0x00000000,0x00000000)

    77499D72 ntdll.dll RtlInitializeExceptionChain+99 (0x74BF6F14,0x0EB721F8,0x00000000,0x00000000)

    77499D45 ntdll.dll RtlInitializeExceptionChain+54 (0x74BF6F14,0x0EB721F8,0x00000000,0x00000000)

     

     

    ----------------------------------------

    Loaded Modules

    ----------------------------------------

     

    0x00400000 - 0x00E24000 G:\Games\World of Warcraft\Wow.exe

    0x00E30000 - 0x00E58000 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStereoApiI.dll

    0x01510000 - 0x01563000 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI.dll

    0x03D40000 - 0x03E82000 C:\Windows\system32\nvapi.dll

    0x10000000 - 0x10069000 G:\Games\World of Warcraft\DivxDecoder.dll

    0x3C910000 - 0x3C984000 G:\Games\World of Warcraft\Battle.net.dll

    0x696D0000 - 0x69FD3000 C:\Windows\system32\nvd3dum.dll

    0x6B890000 - 0x6B9A5000 G:\Games\World of Warcraft\dbghelp.dll

    0x6DE80000 - 0x6DEB0000 C:\Windows\system32\DINPUT8.dll

    0x6DEB0000 - 0x6DF78000 C:\Windows\system32\OPENGL32.dll

    0x6E1D0000 - 0x6E1D6000 C:\Windows\system32\d3d8thk.dll

    0x6E1E0000 - 0x6E3A3000 C:\Windows\system32\d3d9.dll

    0x6E420000 - 0x6E427000 C:\Windows\system32\midimap.dll

    0x6E430000 - 0x6E460000 C:\Windows\system32\wdmaud.drv

    0x6E460000 - 0x6E496000 C:\Windows\system32\AUDIOSES.DLL

    0x6E4A0000 - 0x6E595000 C:\Windows\System32\PROPSYS.dll

    0x6E5A0000 - 0x6E5D9000 C:\Windows\System32\MMDevApi.dll

    0x6F240000 - 0x6F29A000 C:\Windows\System32\netprofm.dll

    0x6F2A0000 - 0x6F2D8000 C:\Windows\System32\fwpuclnt.dll

    0x6F2E0000 - 0x6F2F2000 C:\Windows\system32\pnrpnsp.dll

    0x6F300000 - 0x6F310000 C:\Windows\system32\napinsp.dll

    0x6F310000 - 0x6F318000 C:\Windows\System32\winrnr.dll

    0x6F320000 - 0x6F326000 C:\Windows\system32\rasadhlp.dll

    0x6F330000 - 0x6F340000 C:\Windows\system32\NLAapi.dll

    0x6F340000 - 0x6F34D000 C:\Windows\system32\rtutils.dll

    0x6F350000 - 0x6F365000 C:\Windows\system32\rasman.dll

    0x6F370000 - 0x6F3C2000 C:\Windows\system32\RASAPI32.dll

    0x6F7C0000 - 0x6F7C8000 C:\Windows\System32\npmproxy.dll

    0x6F940000 - 0x6F94E000 C:\Windows\system32\RpcRtRemote.dll

    0x71980000 - 0x71BC0000 C:\Windows\system32\msi.dll

    0x71BC0000 - 0x71BD2000 C:\Windows\system32\MPR.dll

    0x71BE0000 - 0x71BF3000 C:\Windows\system32\dwmapi.dll

    0x71C00000 - 0x71C06000 C:\Windows\system32\DCIMAN32.dll

    0x71C10000 - 0x71CF7000 C:\Windows\system32\DDRAW.dll

    0x71D00000 - 0x71D79000 C:\Windows\system32\mscms.dll

    0x71D80000 - 0x71DFB000 C:\Windows\AppPatch\AcSpecfc.DLL

    0x71E00000 - 0x71E08000 C:\Windows\system32\msacm32.drv

    0x71E10000 - 0x71E14000 C:\Windows\system32\ksuser.dll

    0x71E30000 - 0x71E37000 C:\Windows\system32\AVRT.dll

    0x71F00000 - 0x71F4B000 C:\Windows\system32\apphelp.dll

    0x72180000 - 0x72186000 C:\Windows\system32\sensapi.dll

    0x72190000 - 0x721A4000 C:\Windows\system32\MSACM32.dll

    0x72250000 - 0x723EE000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll

    0x72850000 - 0x728EB000 C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4927_none_d08a205e442db5b5\MSVCR80.dll

    0x73720000 - 0x73764000 C:\Windows\system32\dnsapi.DLL

    0x737A0000 - 0x737A6000 C:\Windows\System32\wship6.dll

    0x737B0000 - 0x737EB000 C:\Windows\system32\rsaenh.dll

    0x73E70000 - 0x73E79000 C:\Windows\system32\HID.DLL

    0x74B70000 - 0x74B86000 C:\Windows\system32\CRYPTSP.dll

    0x74B90000 - 0x74B99000 C:\Windows\system32\VERSION.dll

    0x74BB0000 - 0x74BB7000 C:\Windows\system32\WINNSI.DLL

    0x74BC0000 - 0x74BDC000 C:\Windows\system32\iphlpapi.DLL

    0x74BE0000 - 0x74BE5000 C:\Windows\System32\wshtcpip.dll

    0x74BF0000 - 0x74C2C000 C:\Windows\system32\mswsock.dll

    0x74C30000 - 0x74C51000 C:\Windows\system32\ntmarta.dll

    0x74C60000 - 0x74C6B000 C:\Windows\system32\profapi.dll

    0x74C70000 - 0x74C87000 C:\Windows\system32\USERENV.dll

    0x74CE0000 - 0x74D02000 C:\Windows\system32\GLU32.dll

    0x74D10000 - 0x74D2B000 C:\Windows\system32\AUTHZ.dll

    0x74D30000 - 0x74D55000 C:\Windows\system32\peerdist.dll

    0x74DA0000 - 0x74DC5000 C:\Windows\system32\powrprof.dll

    0x74DD0000 - 0x74E02000 C:\Windows\system32\WINMM.dll

    0x74FC0000 - 0x74FCC000 C:\Windows\syswow64\CRYPTBASE.dll

    0x74FD0000 - 0x75030000 C:\Windows\syswow64\SspiCli.dll

    0x75090000 - 0x75190000 C:\Windows\syswow64\USER32.dll

    0x75190000 - 0x7519A000 C:\Windows\syswow64\LPK.dll

    0x751B0000 - 0x7523F000 C:\Windows\syswow64\OLEAUT32.dll

    0x75240000 - 0x75267000 C:\Windows\syswow64\CFGMGR32.dll

    0x75270000 - 0x752F4000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16385_none_ebf82fc36c758ad5\COMCTL32.dll

    0x75300000 - 0x7537B000 C:\Windows\syswow64\COMDLG32.dll

    0x75380000 - 0x7542C000 C:\Windows\syswow64\msvcrt.dll

    0x75430000 - 0x754C0000 C:\Windows\syswow64\GDI32.dll

    0x754C0000 - 0x754D2000 C:\Windows\syswow64\DEVOBJ.dll

    0x754E0000 - 0x7563C000 C:\Windows\syswow64\ole32.dll

    0x75640000 - 0x75686000 C:\Windows\syswow64\KERNELBASE.dll

    0x75690000 - 0x75790000 C:\Windows\syswow64\kernel32.dll

    0x75790000 - 0x75793000 C:\Windows\syswow64\Normaliz.dll

    0x757A0000 - 0x757CD000 C:\Windows\syswow64\WINTRUST.dll

    0x757D0000 - 0x75870000 C:\Windows\syswow64\ADVAPI32.dll

    0x75870000 - 0x7598C000 C:\Windows\syswow64\CRYPT32.dll

    0x75990000 - 0x759D5000 C:\Windows\syswow64\WLDAP32.dll

    0x759E0000 - 0x75A63000 C:\Windows\syswow64\CLBCatQ.DLL

    0x75A70000 - 0x766B9000 C:\Windows\syswow64\SHELL32.dll

    0x766C0000 - 0x768B9000 C:\Windows\syswow64\iertutil.dll

    0x768C0000 - 0x76917000 C:\Windows\syswow64\SHLWAPI.dll

    0x76920000 - 0x76955000 C:\Windows\syswow64\WS2_32.dll

    0x76960000 - 0x769C0000 C:\Windows\syswow64\IMM32.dll

    0x769C0000 - 0x76AB4000 C:\Windows\syswow64\WININET.dll

    0x76AF0000 - 0x76C8D000 C:\Windows\syswow64\SETUPAPI.dll

    0x76C90000 - 0x76D5C000 C:\Windows\syswow64\MSCTF.dll

    0x76D60000 - 0x76D79000 C:\Windows\SysWOW64\sechost.dll

    0x76D80000 - 0x76E1D000 C:\Windows\syswow64\USP10.dll

    0x76E20000 - 0x76E26000 C:\Windows\syswow64\NSI.dll

    0x76E30000 - 0x76F20000 C:\Windows\syswow64\RPCRT4.dll

    0x76F20000 - 0x77055000 C:\Windows\syswow64\urlmon.dll

    0x77430000 - 0x7743C000 C:\Windows\syswow64\MSASN1.dll

    0x77460000 - 0x775E0000 C:\Windows\SysWOW64\ntdll.dll

     

     

    ----------------------------------------

    Memory Dump

    ----------------------------------------

     

    Stack: 1024 bytes starting at (ESP = 0693F184)

     

    * = addr ** *

    0693F180: 84 F1 93 06 7C 28 00 00 02 00 00 00 9C 12 71 00 ....|(........q.

    0693F190: 84 F1 93 06 98 F1 93 06 C8 F1 93 06 25 55 70 00 ............%Up.

    0693F1A0: 01 00 6E 00 70 42 70 00 7C 28 00 00 03 00 00 00 ..n.pBp.|(......

    0693F1B0: 00 00 00 00 70 96 A1 00 00 00 00 00 00 00 00 00 ....p...........

    0693F1C0: 01 78 86 00 F4 F1 93 06 F4 F9 93 06 2D 5C 70 00 .x..........-\p.

    0693F1D0: 86 00 10 85 00 00 00 00 00 00 00 00 F4 F1 93 06 ................

    0693F1E0: 00 00 00 00 01 00 00 00 11 11 11 11 E0 D6 9A 22 ..............."

    0693F1F0: B8 B8 A6 22 46 61 69 6C 65 64 20 74 6F 20 72 65 ..."Failed to re

    0693F200: 61 64 20 66 69 6C 65 20 43 72 65 61 74 75 72 65 ad file Creature

    0693F210: 5C 44 72 75 69 64 43 61 74 54 61 75 72 65 6E 5C \DruidCatTauren\

    0693F220: 44 72 75 69 64 43 61 74 54 61 75 72 65 6E 53 6B DruidCatTaurenSk

    0693F230: 69 6E 52 65 64 2E 62 6C 70 2E 0A 0A 44 65 62 75 inRed.blp...Debu

    0693F240: 67 20 44 65 74 61 69 6C 73 3A 0A 0A 5B 32 5D 20 g Details:..[2]

    0693F250: 65 72 72 3D 30 20 74 65 78 74 3D 53 46 69 6C 65 err=0 text=SFile

    0693F260: 52 65 61 64 46 69 6C 65 20 2D 20 43 72 65 61 74 ReadFile - Creat

    0693F270: 75 72 65 5C 44 72 75 69 64 43 61 74 54 61 75 72 ure\DruidCatTaur

    0693F280: 65 6E 5C 44 72 75 69 64 43 61 74 54 61 75 72 65 en\DruidCatTaure

    0693F290: 6E 53 6B 69 6E 52 65 64 2E 62 6C 70 20 2D 20 44 nSkinRed.blp - D

    0693F2A0: 61 74 61 5C 70 61 74 63 68 2E 4D 50 51 0A 5B 31 ata\patch.MPQ.[1

    0693F2B0: 5D 20 65 72 72 3D 30 20 74 65 78 74 3D 52 65 61 ] err=0 text=Rea

    0693F2C0: 64 53 65 63 74 6F 72 73 2F 44 65 63 6F 6D 70 72 dSectors/Decompr

    0693F2D0: 65 73 73 44 61 74 61 20 66 61 69 6C 65 64 0A 5B essData failed.[

    0693F2E0: 30 5D 20 65 72 72 3D 30 20 74 65 78 74 3D 52 65 0] err=0 text=Re

    0693F2F0: 61 64 53 65 63 74 6F 72 73 2F 44 65 63 6F 6D 70 adSectors/Decomp

    0693F300: 72 65 73 73 44 61 74 61 20 66 61 69 6C 65 64 0A ressData failed.

    0693F310: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F320: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F330: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F340: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F350: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F360: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F370: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F380: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F390: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F3F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F400: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F410: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F420: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F430: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F440: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F450: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

    0693F460: 25 73 00 75 74 10 65 75 1C 2D 33 15 E0 22 74 00 %s.ut.eu.-3.."t.

    0693F470: 04 5A 05 00 E0 90 F4 2C 0C E2 48 77 E2 EE C9 71 .Z.....,..Hw...q

    0693F480: 58 0F EF 00 3C 02 EF 00 00 00 EF 00 C8 11 21 0B X...<.........!.

    0693F490: 00 00 00 00 29 00 47 00 90 00 00 00 02 00 00 00 ....).G.........

    0693F4A0: C4 FF 93 06 AB C5 9A 00 C8 F4 93 06 2A 00 30 00 ............*.0.

    0693F4B0: 14 F6 93 06 04 00 00 00 D8 F4 93 06 9B 46 4A 77 .............FJw

    0693F4C0: A0 C8 B3 0E 20 F2 25 00 04 00 00 00 09 00 00 00 .... .%.........

    0693F4D0: 20 F2 25 00 14 F6 93 06 B8 F5 93 06 42 46 4A 77 .%.........BFJw

    0693F4E0: 00 00 00 00 20 F2 25 00 02 00 00 00 14 F6 93 06 .... .%.........

    0693F4F0: 09 00 00 00 14 F6 93 06 4F 46 4A 77 58 C9 B3 0E ........OFJwX...

    0693F500: 00 00 00 00 02 00 00 00 58 0F EF 00 00 00 00 00 ........X.......

    0693F510: 00 00 00 00 2A 00 30 00 90 00 00 00 72 65 6E 5C ....*.0.....ren\

    0693F520: 44 72 75 69 64 43 61 74 54 61 75 72 2B 00 19 00 DruidCatTaur+...

    0693F530: 90 00 00 00 64 2E 62 6C 70 20 2D 20 00 00 00 00 ....d.blp - ....

    0693F540: 00 00 EF 00 58 C9 B3 0E 50 51 00 77 00 00 00 00 ....X...PQ.w....

    0693F550: 29 00 47 00 90 00 00 00 68 77 EF 00 A0 C8 B3 0E ).G.....hw......

    0693F560: 18 82 EF 00 D0 C7 B3 0E 01 00 00 00 50 C9 B3 0E ............P...

    0693F570: 88 F5 93 06 A3 DE 48 77 58 C9 B3 0E 34 00 00 C0 ......HwX...4...

    0693F580: 00 00 00 00 50 C9 B3 0E B8 F5 93 06 68 4D 4A 77 ....P.......hMJw

     

     

    ------------------------------------------------------------------------------

     

    ======================================================================

    Hardware/Driver Information:

    Processor: 0x9

    Page Size: 4096

    Min App Address: 0x10000

    Max App Address: 0x7ffeffff

    Processor Mask: 0xf

    Number of Processors: 4

    Processor Type: 8664

    Allocation Granularity: 65536

    Processor Level: 6

    Processor Revision: 5895

    Os Version: 6.1

    Os Service Pack: 0.0

     

    Percent memory used: 54

    Total physical memory: 4293451776

    Free Memory: 1967198208

    Page file: 8584962048

    Total virtual memory: 2147352576

     

     

  4. Kan vel bare si at du sitter å snakker om Studio mens han vurderer Solo. Studio koster vel det dobbelte, men er mange som mener at Solo har like god lyd som Studio.

     

    åja, hehe, hoppa over ordet solo, sorry :p

    uansett så tror jeg Beats er de beste på markedet for de som ikke vil bruke mer enn 30 000,- på headset : p

  5. Hei

     

    Jeg prøver å fikse lyd fra pc'n til en reciever[DENONfunction]

    jeg bruker minijack til rød/hvit kabel.

     

    Hittil har jeg bare fått lyd i subwoofer og venstre høytaller.

    Det jeg har er 2 front, 1 center og 1 sub.

    stort sett prøvd alle innganger i reciever'n.

     

    Jeg vet det har funket tidligere, med iaff 2 front og subwoofern, klarer ikke å skjønne hva problemet er, muligens noen innstillinger med lydkort.

     

    Windows 7 64bit

    Creative SB X-FI

     

    Prøvd alle innganger på PC'n, har også prøvd å bytte rød med hvit, vice versa.[Da ble det omvendt, høyre høytaller og subwoofer fungerer]

     

    Prøvde også alle innganger i lydkortet på hovedkortet.

     

    Det jeg ikke har prøvd er en annen kabel, kanskje den har blitt ødelagt.

     

    takk for alle bidrag håper det bare er noe innstillinger ellernoe, skal ta turen til butikken på mandag å kjøpe en annen kabel, se hva som skjer da.

  6. jeg har hatt de i 8 måneder, aldri prøvd bedre headsett, storfornøyd, mye bedre lyd enn forventet, uansett musikk sjanger.

     

    men jeg har 2 negative ting å si av min erfaring.

     

    1. Bruker du headsettet 24/7 bokstavelig talt så kan det gå endel AAA batterier.

     

    2. Reiser du veldig mye blir kablene utslitte, jeg har ødelagt den ene kabelen PGA dette, og snart den andre som også fulgte med, men jeg reiste nesten hver dag i 6 måneder.

  7. hei

     

    Har noen audio problemer på laptoppen, den klarer ikke å kjøre 2 audio kilder på

    1 gang, da starter lyden å skurre. prøvd å slette å reinnstallere flere ganger,

    det hjelper lite.

     

    eksempler på 2 audio kilder:

    spill + mp3

    iTunes på pause + youtube

     

    uansett hva det er så klikker lyden.

     

    Har ingen virus, nettopp sjekka combofix og hijackthis logger.

     

    OS: Vista 32

    Lydkort: realtek elns, orginalt 8930g

     

    Lurer på om noen vet hvordan det her fikses uten å formatere : p

     

    takk på forhånd

  8. Pc'n min klarer ikke lenger å dra Call of Duty: MW

    har mine mistanker om at jeg muligens har virus.. eller så har jeg kanskje utdaterte drivere.

     

    jeg vil slette alt som jeg ikke har bruk for, vil bare vite hva jeg kan slette

     

    Fant ikkenoe med MBAM.

     

    Combofix

     

     

    ComboFix 09-10-07.05 - klack 08.10.2009 16:38.1.2 - NTFSx86

    Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.47.1033.18.3068.1221 [GMT 2:00]

    Kjører fra: c:\users\klack\Downloads\ComboFix.exe

    SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

    .

     

    ((((((((((((((((((((((((((((((((((((((( Andre slettinger )))))))))))))))))))))))))))))))))))))))))))))))))

    .

     

    c:\windows\Installer\19837.msi

    c:\windows\Suyin.reg

     

    .

    ((((((((((((((((((((((((((( Filer Opprettet Fra 2009-09-08 til 2009-10-08 )))))))))))))))))))))))))))))))))

    .

     

    2009-10-08 15:04 . 2009-10-08 15:07 -------- d-----w- c:\users\klack\AppData\Local\temp

    2009-10-08 15:04 . 2009-10-08 15:04 -------- d-----w- c:\users\Default\AppData\Local\temp

    2009-10-08 13:54 . 2009-10-08 13:54 -------- d-----w- c:\users\klack\AppData\Roaming\Malwarebytes

    2009-10-08 13:54 . 2009-09-10 12:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

    2009-10-08 13:54 . 2009-10-08 13:54 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

    2009-10-08 13:54 . 2009-10-08 13:54 -------- d-----w- c:\programdata\Malwarebytes

    2009-10-08 13:54 . 2009-09-10 12:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys

    2009-10-03 17:54 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll

    2009-10-03 17:54 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe

    2009-10-03 17:54 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll

    2009-10-03 17:54 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll

    2009-10-03 17:54 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll

    2009-10-03 17:54 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll

    2009-10-03 17:54 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll

    2009-10-03 17:54 . 2009-08-06 17:23 171608 ----a-w- c:\windows\system32\wuwebv.dll

    2009-10-03 17:54 . 2009-08-06 16:44 33792 ----a-w- c:\windows\system32\wuapp.exe

    2009-10-02 20:14 . 2009-10-01 08:29 195440 ------w- c:\windows\system32\MpSigStub.exe

    2009-09-30 22:16 . 2009-09-30 22:16 -------- d-----w- C:\Programs

    2009-09-29 20:53 . 2009-09-29 20:53 -------- d-----w- c:\users\klack\AppData\Roaming\NCH Software

    2009-09-29 20:53 . 2007-08-29 13:36 110592 ----a-w- c:\users\klack\AppData\Roaming\NCH Software\Components\mp3el\mp3enc.exe

    2009-09-29 20:13 . 2009-09-29 20:13 -------- d-----w- c:\program files\Ask.com

    2009-09-29 20:13 . 2009-09-29 20:13 -------- d-----w- c:\program files\Common Files\DVDVideoSoft

    2009-09-29 20:13 . 2009-09-29 20:13 -------- d-----w- c:\program files\DVDVideoSoft

    2009-09-29 20:09 . 2009-09-29 20:09 -------- d-----w- c:\programdata\NCH Swift Sound

    2009-09-29 20:09 . 2009-09-29 20:09 -------- d-----w- c:\users\klack\AppData\Roaming\NCH Swift Sound

    2009-09-29 20:09 . 2009-09-29 20:09 -------- d-----w- c:\program files\NCH Swift Sound

    2009-09-18 16:18 . 2009-09-18 16:18 -------- d-----w- c:\users\klack\AppData\Roaming\Moyea

    2009-09-18 16:17 . 2009-09-18 16:17 -------- d-----w- c:\program files\Moyea

    2009-09-17 17:10 . 2008-03-13 15:48 290816 ----a-w- c:\windows\RTKVADDA.EXE

    2009-09-11 00:08 . 2009-09-11 00:09 -------- d-----w- C:\Disk Images

     

    .

    (((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2009-10-08 15:06 . 2009-03-05 04:56 197831 ----a-w- c:\programdata\nvModes.dat

    2009-10-08 15:05 . 2009-03-09 20:59 12 ----a-w- c:\windows\bthservsdp.dat

    2009-10-08 13:24 . 2001-01-06 18:09 -------- d--h--w- c:\program files\InstallShield Installation Information

    2009-10-08 13:21 . 2009-03-05 20:50 -------- d-----w- c:\users\klack\AppData\Roaming\uTorrent

    2009-10-05 14:40 . 2009-03-09 16:57 -------- d-----w- c:\program files\Common Files\Steam

    2009-09-17 17:08 . 2001-01-06 18:15 319456 ----a-w- c:\windows\DIFxAPI.dll

    2009-09-17 17:08 . 2009-09-17 17:08 -------- d-----w- c:\program files\Realtek

    2009-09-11 01:19 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail

    2009-09-07 17:15 . 2009-05-21 17:55 -------- d-----w- c:\users\klack\AppData\Roaming\Apple Computer

    2009-09-07 14:58 . 2009-08-10 07:08 139072 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys

    2009-09-07 14:58 . 2009-08-10 07:08 189672 ----a-w- c:\windows\system32\PnkBstrB.exe

    2009-09-07 14:11 . 2009-03-26 14:25 -------- d-----w- c:\programdata\Apple

    2009-09-03 13:33 . 2009-07-13 20:01 -------- d-----w- c:\users\klack\AppData\Roaming\dvdcss

    2009-09-03 11:44 . 2009-07-13 18:14 -------- d-----w- c:\program files\Heroes of Newerth

    2009-08-28 12:39 . 2009-09-03 08:53 28672 ----a-w- c:\windows\system32\Apphlpdm.dll

    2009-08-28 10:15 . 2009-09-03 08:53 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll

    2009-08-27 17:51 . 2009-05-31 17:28 680 ----a-w- c:\users\klack\AppData\Local\d3d9caps.dat

    2009-08-14 17:07 . 2009-09-10 08:38 897608 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2009-08-14 16:29 . 2009-09-10 08:38 104960 ----a-w- c:\windows\system32\netiohlp.dll

    2009-08-14 16:29 . 2009-09-10 08:38 17920 ----a-w- c:\windows\system32\netevent.dll

    2009-08-14 14:16 . 2009-09-10 08:38 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 17920 ----a-w- c:\windows\system32\ROUTE.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 11264 ----a-w- c:\windows\system32\MRINFO.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 27136 ----a-w- c:\windows\system32\NETSTAT.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 19968 ----a-w- c:\windows\system32\ARP.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE

    2009-08-14 14:16 . 2009-09-10 08:38 10240 ----a-w- c:\windows\system32\finger.exe

    2009-08-13 16:24 . 2009-08-13 16:21 -------- d-----w- c:\programdata\Mobile Broadband

    2009-08-13 16:21 . 2009-08-13 16:21 -------- d-----w- c:\program files\Telenor

    2009-08-10 07:08 . 2009-08-10 07:08 139152 ----a-w- c:\users\klack\AppData\Roaming\PnkBstrK.sys

    2009-08-10 07:08 . 2009-08-10 07:08 139152 ----a-w- c:\users\klack\AppData\Roaming\PnkBstrK.sys

    2009-08-10 07:08 . 2009-08-10 07:08 794408 ----a-w- c:\windows\system32\pbsvc.exe

    2009-08-10 07:08 . 2009-08-10 07:08 75064 ----a-w- c:\windows\system32\PnkBstrA.exe

    2009-08-08 16:13 . 2009-08-08 15:46 98304 ----a-w- c:\users\klack\AppData\Roaming\Soldat\Battleye\BEClient.dll

    2009-07-18 16:06 . 2009-07-30 16:32 827904 ----a-w- c:\windows\system32\wininet.dll

    2009-07-18 16:01 . 2009-07-30 16:32 78336 ----a-w- c:\windows\system32\ieencode.dll

    2009-07-18 09:46 . 2009-07-30 16:32 26624 ----a-w- c:\windows\system32\ieUnatt.exe

    2009-07-17 14:35 . 2009-08-13 17:03 71680 ----a-w- c:\windows\system32\atl.dll

    2009-07-14 13:00 . 2009-08-13 17:03 313344 ----a-w- c:\windows\system32\wmpdxm.dll

    2009-07-14 12:59 . 2009-08-13 17:03 4096 ----a-w- c:\windows\system32\dxmasf.dll

    2009-07-14 12:58 . 2009-08-13 17:03 7680 ----a-w- c:\windows\system32\spwmp.dll

    2009-07-14 10:59 . 2009-08-13 17:03 8147456 ----a-w- c:\windows\system32\wmploc.DLL

    2009-07-11 19:32 . 2009-09-10 08:38 293376 ----a-w- c:\windows\system32\wlanmsm.dll

    2009-07-11 19:32 . 2009-09-10 08:38 513024 ----a-w- c:\windows\system32\wlansvc.dll

    2009-07-11 19:32 . 2009-09-10 08:38 302592 ----a-w- c:\windows\system32\wlansec.dll

    2009-07-11 19:29 . 2009-09-10 08:38 127488 ----a-w- c:\windows\system32\L2SecHC.dll

    .

     

    (((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret )))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Merk* tomme oppføringer & gyldige standardoppføringer vises ikke

    REGEDIT4

     

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]

    "{ad55c869-668e-457c-b270-0cfb2f61116f}"= "c:\program files\livetvbar\tblive.dll" [2008-07-10 1600024]

     

    [HKEY_CLASSES_ROOT\clsid\{ad55c869-668e-457c-b270-0cfb2f61116f}]

     

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{ad55c869-668e-457c-b270-0cfb2f61116f}]

    2008-07-10 12:04 1600024 ----a-w- c:\program files\livetvbar\tblive.dll

     

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]

    2009-06-16 15:22 1144712 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

    "{ad55c869-668e-457c-b270-0cfb2f61116f}"= "c:\program files\livetvbar\tblive.dll" [2008-07-10 1600024]

    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-06-16 1144712]

     

    [HKEY_CLASSES_ROOT\clsid\{ad55c869-668e-457c-b270-0cfb2f61116f}]

     

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]

    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]

    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]

    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

     

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

    "{AD55C869-668E-457C-B270-0CFB2F61116F}"= "c:\program files\livetvbar\tblive.dll" [2008-07-10 1600024]

    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-06-16 1144712]

     

    [HKEY_CLASSES_ROOT\clsid\{ad55c869-668e-457c-b270-0cfb2f61116f}]

     

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]

    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]

    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]

    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]

    @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"

    [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]

    2008-07-29 16:52 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll

     

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-02-06 3885408]

    "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2009-03-05 219952]

    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-05 68856]

    "Steam"="c:\steam\Steam.exe" [2009-08-08 1217784]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]

    "IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2008-07-21 182808]

    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-04 1037608]

    "eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-07-29 526896]

    "BkupTray"="c:\program files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" [2008-04-25 28672]

    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-03-08 40048]

    "WarReg_PopUp"="c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe" [2008-01-29 303104]

    "Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-03-05 24064]

    "ZPdtWzdVitaKey MC3000"="c:\program files\Acer\Acer Bio Protection\PdtWzd.exe" [2009-03-05 3719680]

    "PLFSetI"="c:\windows\PLFSetI.exe" [2008-06-30 200704]

    "LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2008-06-16 809480]

    "ePower_DMC"="c:\program files\Acer\Empowering Technology\ePower\ePower_DMC.exe" [2008-08-01 405504]

    "eAudio"="c:\program files\Acer\Empowering Technology\eAudio\eAudio.exe" [2008-05-30 544768]

    "ArcadeDeluxeAgent"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe" [2008-07-24 147456]

    "CLMLServer"="c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe" [2008-07-24 167936]

    "PlayMovie"="c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe" [2008-07-18 167936]

    "PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2008-11-02 167936]

    "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-06-13 148888]

    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-05-27 13781536]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-05-26 413696]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-06-05 292136]

    "RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-05-07 6139904]

    "Skytel"="Skytel.exe" - c:\windows\SkyTel.exe [2007-11-20 1826816]

     

    c:\users\klack\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2007-12-7 101440]

    Warkeys Update.lnk - c:\program files\Warkeys\AutoWarkey\AutoHotkey\AutoHotkey.exe [2009-5-3 244736]

     

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    Acer VCM.lnk - c:\program files\Acer\Acer VCM\AcerVCM.exe [2009-3-5 1216512]

    Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-4-24 723760]

    Net Send GUI.lnk - c:\program files\Fomine Net Send GUI\NetSendGUI.exe [2008-2-25 258048]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\AWinNotifyVitaKey MC3000]

    2009-03-05 04:57 3162624 ----a-w- c:\program files\Acer\Acer Bio Protection\WinNotify.dll

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

    "AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

    @="Service"

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-430739751-1610099454-676001698-1000]

    "EnableNotificationsRef"=dword:00000002

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]

    "{90C3CC63-350A-4E1B-B8D4-69AF559903B3}"= UDP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote

    "{0786B602-9200-4A8E-9E8D-D55816E339CE}"= TCP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote

    "{ACFA88A9-0658-4423-8F36-00BF618901E1}"= UDP:c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe:BackupSvc.exe

    "{84200E1F-FC35-49F7-9D33-590CAC142BB7}"= UDP:c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe:SchedulerSvc.exe

    "{EB3A99A1-B0AC-46FA-BDB7-5D8397082668}"= TCP:c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe:BackupSvc.exe

    "{3FE412CA-F5EA-41B6-AFAB-49A5B78791A5}"= TCP:c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe:SchedulerSvc.exe

    "{75D11B41-EF22-40C2-B99F-ABCA9D6B6450}"= UDP:c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe:AgentSvc.exe

    "{A69C6B86-4F1C-4DFF-BECF-EB0320C5F397}"= TCP:c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe:AgentSvc.exe

    "{02CD36AC-5CF7-4394-8C78-0D245A1109C7}"= c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\Acer Arcade Deluxe.exe:Acer Arcade Deluxe

    "{6C3E1111-C120-410D-9ADC-827747629748}"= c:\program files\Acer Arcade Deluxe\PlayMovie\PlayMovie.exe:Acer Play Movie

    "{EC1765CE-95BC-4594-9C27-0DBC13D54B2B}"= c:\program files\Acer Arcade Deluxe\PlayMovie\PMVService.exe:Acer Play Movie Resident Program

    "{F0C9EAB3-A2E1-4644-8288-CA83E8D29BED}"= c:\program files\Acer Arcade Deluxe\HomeMedia\HomeMedia.exe:Acer HomeMedia

    "{C4A946DE-4A95-490A-8216-3C27B98E1E9F}"= c:\program files\Cyberlink\PowerDirector\PDR.EXE:CyberLink PowerDirector

    "{F3A48979-4426-4917-847E-CEA18480D7A1}"= c:\program files\Acer\Acer VCM\VC.exe:Acer VCM

    "TCP Query User{3E974972-4EAA-46F5-A789-FC0DA0C72FAA}c:\\program files\\utorrent\\utorrent.exe"= UDP:c:\program files\utorrent\utorrent.exe:uTorrent

    "UDP Query User{9E756B0C-76EC-4485-80F4-3625A968720A}c:\\program files\\utorrent\\utorrent.exe"= TCP:c:\program files\utorrent\utorrent.exe:uTorrent

    "{1C0FE553-A13D-4CEC-92BD-C00D389F9A9F}"= UDP:d:\games\Call Of Duty Modern Warfare\iw3mp.exe:Call of Duty® 4 - Modern Warfare

    "{693ADE07-3DD8-40AB-BD92-4829844B653A}"= TCP:d:\games\Call Of Duty Modern Warfare\iw3mp.exe:Call of Duty® 4 - Modern Warfare

    "{AE2B98A8-13C5-4484-9A93-3E7B4CCC6D73}"= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour

    "{B7D54A76-BF4C-4ECE-96D9-6CAB9B9E7C5D}"= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour

    "{F0C70D32-9A1B-4742-BAF2-07BA8D41B396}"= UDP:d:\games\Far Cry 2\bin\FarCry2.exe:Far Cry 2

    "{4CD44C40-8F28-48C0-BBD7-66492039D1AD}"= TCP:d:\games\Far Cry 2\bin\FarCry2.exe:Far Cry 2

    "{09BCA2D5-1FC6-454A-8738-6E9B7E65F385}"= UDP:d:\games\Far Cry 2\bin\FC2Launcher.exe:Far Cry 2 Updater

    "{DE83C243-A5C7-435A-8E47-093A0EC31629}"= TCP:d:\games\Far Cry 2\bin\FC2Launcher.exe:Far Cry 2 Updater

    "{EEA67206-6718-42A5-AA6D-C4E1B8183324}"= UDP:d:\games\Far Cry 2\bin\FC2Editor.exe:Editor

    "{8BED107F-5DDD-4D65-9632-A9379BA2E8FA}"= TCP:d:\games\Far Cry 2\bin\FC2Editor.exe:Editor

    "{3C3192AE-6735-494C-A257-F6A315155DFB}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes

    "{6E03550D-A0ED-43EB-8304-A64B5A668FD7}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes

    "{680881E4-B725-40E8-8FAD-5528BF81D44A}"= UDP:c:\program files\Ventrilo\Ventrilo.exe:Ventrilo.exe

    "{6B92FE5C-1158-42FB-8014-1B9867DEB7B8}"= TCP:c:\program files\Ventrilo\Ventrilo.exe:Ventrilo.exe

    "{F5A80C43-2E3C-4E76-982B-9D9875CFB282}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA

    "{E26012A5-DA49-4473-ADC3-DCB6519F11A2}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA

    "{90186AA9-6B24-4792-B91D-BDF7DE3221FF}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB

    "{1CE5EA22-3AAF-45A6-B7A8-76DD7342FE27}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB

    "{D230ADFC-DCCC-4165-B6B5-0F86B0795F55}"= UDP:d:\games\Operation Flashpoint\OFDR.exe:OF Dragon Rising

    "{1D47094D-7377-4165-9811-72EF10C2A93C}"= TCP:d:\games\Operation Flashpoint\OFDR.exe:OF Dragon Rising

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]

    "EnableFirewall"= 0 (0x0)

     

    R0 AlfaFF;AlfaFF File System mini-filter;c:\windows\System32\drivers\AlfaFF.sys [05.03.2009 06:56 43184]

    R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\Acer Arcade Deluxe\PlayMovie00.fcl [05.03.2009 07:25 61424]

    R2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [03.03.2008 14:11 16384]

    R2 CLHNService;CLHNService;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [05.03.2009 07:28 81504]

    R2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [06.01.2001 20:17 24576]

    R2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [25.04.2008 22:36 45056]

    R2 NTIPPKernel;NTIPPKernel;c:\program files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys [05.03.2009 07:28 122368]

    R2 RS_Service;Raw Socket Service;c:\program files\Acer\Acer VCM\RS_Service.exe [05.03.2009 19:36 233472]

    R2 SesamService;Sesam Control Service;c:\program files\Telenor\Mobile Broadband\Sesam\BIN\SecMIPService.exe [09.05.2008 17:01 1216296]

    R2 vfsFPService;Validity Fingerprint Service;c:\windows\System32\vfsFPService.exe [26.05.2008 06:43 599344]

    R3 itecir;ITECIR Infrared Receiver;c:\windows\System32\drivers\itecir.sys [05.03.2009 07:02 54784]

    R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller;c:\windows\System32\drivers\L1E60x86.sys [06.01.2001 19:28 47104]

    R3 NETw5v32;Intel® Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\System32\drivers\NETw5v32.sys [06.01.2001 19:28 3658752]

    R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\System32\drivers\nvhda32v.sys [30.04.2009 21:43 64032]

    R3 vfs101x;vfs101x;c:\windows\System32\drivers\vfs101x.sys [26.05.2008 06:44 40752]

    R3 wtsmpadap;Sesam Virtual Adapter;c:\windows\System32\drivers\wtsmpadap.sys [29.04.2008 16:24 39720]

    R3 WtSmpFlt;Sesam Adapter;c:\windows\System32\drivers\wtsmpflt.sys [29.04.2008 16:24 272424]

    S2 IGBASVC;iGroupTec Service;c:\program files\Acer\Acer Bio Protection\BASVC.exe [05.03.2009 06:56 3520512]

    S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [25.04.2008 22:36 131072]

    S3 GoogleDesktopManager-080708-050100;Google Desktop Manager 5.7.808.7150;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [05.03.2009 06:54 24064]

    S3 GT72NDISIPXP;GT 72 IP NDIS;c:\windows\System32\drivers\Gt51Ip.sys [09.07.2007 14:17 95744]

    S3 GT72UBUS;GT 72 U BUS;c:\windows\System32\drivers\gt72ubus.sys [26.06.2007 13:38 51968]

    S3 GTMM Device Service;GTMM Device Service;c:\program files\Telenor\Mobile Broadband\GtmmDeviceService.exe [02.07.2008 15:32 106496]

    S3 GTPTSER;GT PT SER;c:\windows\System32\drivers\gtptser.sys [30.03.2007 13:38 8064]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    bthsvcs REG_MULTI_SZ BthServ

    .

    .

    ------- Tilleggsskanning -------

    .

    uStart Page = hxxp://www.ask.com?o=15015&l=dis

    mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0414&s=2&o=vp32&d=0309&m=aspire_8930

    uInternet Settings,ProxyOverride = *.local

    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000

    IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

    IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

    FF - ProfilePath - c:\users\klack\AppData\Roaming\Mozilla\Firefox\Profiles\5ecm2p93.default\

    FF - prefs.js: browser.search.selectedEngine - Google

    FF - prefs.js: browser.startup.homepage - hxxp://www.ask.com?o=15015&l=dis

    FF - prefs.js: keyword.URL - hxxp://supertoolbar.ask.com/redirect?client=ff&src=kw&tb=DVSV5&o=15012&locale=en_US&q=

    FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

    FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

    FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll

    FF - plugin: c:\users\klack\AppData\Roaming\Mozilla\Firefox\Profiles\5ecm2p93.default\extensions\[email protected]\platform\WINNT_x86-msvc\plugins\npBFHUpdater.dll

    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    .

    - - - - TOMME PEKERE FJERNET - - - -

     

    HKLM-Run-eRecoveryService - (no file)

     

     

     

    **************************************************************************

     

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

    Rootkit scan 2009-10-08 17:06

    Windows 6.0.6001 Service Pack 1 NTFS

     

    skanner skjulte prosesser ...

     

    skanner skjulte autostart-oppføringer ...

     

    skanner skjulte filer ...

     

    skanning vellykket

    skjulte filer: 0

     

    **************************************************************************

     

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]

    "ImagePath"="\??\c:\program files\Acer Arcade Deluxe\PlayMovie00.fcl"

    .

    --------------------- LÅSTE REGISTERNØKLER ---------------------

     

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    "MSCurrentCountry"=dword:000000b5

     

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}001\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

     

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}002\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

     

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}003\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    --------------------- DLL'er Lastet Av Kjørende Prosesser ---------------------

     

    - - - - - - - > 'Explorer.exe'(3340)

    c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll

    c:\program files\Acer\Empowering Technology\eDataSecurity\x86\sysenv.dll

    c:\windows\system32\btncopy.dll

    .

    ------------------------ Andre Kjørende Prosesser ------------------------

    .

    c:\windows\System32\nvvsvc.exe

    c:\windows\System32\audiodg.exe

    c:\windows\System32\nvvsvc.exe

    c:\windows\System32\wlanext.exe

    c:\program files\Acer\Acer Bio Protection\CompPtcVUI.exe

    c:\windows\System32\agrsmsvc.exe

    c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

    c:\program files\Bonjour\mDNSResponder.exe

    c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    c:\program files\Intel\WiFi\bin\EvtEng.exe

    c:\program files\Intel\Intel Matrix Storage Manager\IAANTmon.exe

    c:\program files\Common Files\LightScribe\LSSrvc.exe

    c:\acer\Mobility Center\MobilityService.exe

    c:\windows\System32\PnkBstrA.exe

    c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe

    c:\program files\Cyberlink\Shared files\RichVideo.exe

    c:\windows\System32\wbem\WMIADAP.exe

    .

    **************************************************************************

    .

    Tidspunkt ferdig: 2009-10-08 17:12 - maskinen ble startet på nytt

    ComboFix-quarantined-files.txt 2009-10-08 15:12

     

    Pre-Run: 14 530 461 696 bytes free

    Post-Run: 32 858 628 096 bytes free

     

    328 --- E O F --- 2009-10-05 14:47

     

     

    på forhånd takk :D

     

    EDIT: 09-10-09 - 10:45

     

    Pc'n min har tidligere kjørt Call of duty: MW og 720p.mkv filer

    har nettop opdatert drivere.

    Lyden lagger også vist jeg har 2 programmer med lyd oppe samtidig,

    f.eks youtube og itunes, samme om jeg har på pause eller ikke..

  9. Hei,

     

    JEg sitter på en kantine i en militær leir, stort sett alt av torrent sider er blokkert, søker jeg f.eks på "torrent" i google så får jeg bare "Connection Interrupted".

     

    For en tid tilbake så fikk jeg komme inn på noen sider når jeg bukte proxy server, men nå er det helt dødt.

     

    Eneste sida som funker er mininova og jeg regner med at den blir blokkert ganske snart.

     

    Jeg lurer på om det er noen som vet om noen bra torrent sider som ikke har ordet torrent i adressa, eller om det er mulig å få gjort noe annet uten å ha tilgang til routeren eller noe...

  10. combofix

     

     

    ComboFix 08-12-02.02 - klack 2008-12-03 17:08:01.1 - NTFSx86

    Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.1.1044.18.2164 [GMT 1:00]

    Kjører fra: d:\spill\World of Warcraft\Interface\ComboFix.exe

    * Opprettet nytt gjenopprettingspunkt

    .

     

    ((((((((((((((((((((((((((((((((((((((( Andre slettinger )))))))))))))))))))))))))))))))))))))))))))))))))

    .

     

    .

    ((((((((((((((((((((((((((((((((((((((( Drivere/Tjenester )))))))))))))))))))))))))))))))))))))))))))))))))

    .

     

    -------\Legacy_TCPSR

     

     

    ((((((((((((((((((((((((((( Filer Opprettet Fra 2008-11-03 til 2008-12-03 )))))))))))))))))))))))))))))))))

    .

     

    2008-12-03 16:58 . 2008-12-03 16:58 <DIR> d-------- c:\users\klack\AppData\Roaming\Malwarebytes

    2008-12-03 16:58 . 2008-12-03 16:58 <DIR> d-------- c:\programdata\Malwarebytes

    2008-12-03 16:58 . 2008-12-03 16:58 <DIR> d-------- c:\program files\Malwarebytes' Anti-Malware

    2008-12-03 16:58 . 2008-10-22 16:10 38,496 --a------ c:\windows\System32\drivers\mbamswissarmy.sys

    2008-12-03 16:58 . 2008-10-22 16:10 15,504 --a------ c:\windows\System32\drivers\mbam.sys

    2008-11-30 23:59 . 2008-11-30 23:59 <DIR> d-------- c:\program files\Curse

    2008-11-27 15:08 . 2008-11-27 15:08 268 --ah----- C:\sqmdata03.sqm

    2008-11-27 15:08 . 2008-11-27 15:08 244 --ah----- C:\sqmnoopt03.sqm

    2008-11-24 22:20 . 2008-11-24 22:20 268 --ah----- C:\sqmdata02.sqm

    2008-11-24 22:20 . 2008-11-24 22:20 244 --ah----- C:\sqmnoopt02.sqm

    2008-11-24 13:00 . 2008-11-24 13:00 268 --ah----- C:\sqmdata01.sqm

    2008-11-24 13:00 . 2008-11-24 13:00 244 --ah----- C:\sqmnoopt01.sqm

    2008-11-24 02:20 . 2008-11-24 02:20 268 --ah----- C:\sqmdata00.sqm

    2008-11-24 02:20 . 2008-11-24 02:20 244 --ah----- C:\sqmnoopt00.sqm

    2008-11-20 09:45 . 2008-11-20 09:45 <DIR> d-------- c:\program files\Common Files\Adobe AIR

    2008-11-20 09:45 . 2008-11-20 09:45 <DIR> d-------- c:\program files\Common Files\Adobe

    2008-11-20 09:33 . 2008-11-20 09:33 <DIR> d-------- c:\users\klack\UPSInvoice_89076152

    2008-11-20 09:33 . 2008-11-20 09:33 65,388 --a------ c:\users\klack\UPSInvoice_89076152.zip

    2008-11-20 07:59 . 2008-11-20 07:59 <DIR> d-------- c:\program files\Google

    2008-11-15 08:31 . 2008-10-16 22:13 1,809,944 --a------ c:\windows\System32\wuaueng.dll

    2008-11-15 08:31 . 2008-10-16 21:56 1,524,736 --a------ c:\windows\System32\wucltux.dll

    2008-11-15 08:31 . 2008-10-16 22:09 51,224 --a------ c:\windows\System32\wuauclt.exe

    2008-11-15 08:31 . 2008-10-16 22:09 43,544 --a------ c:\windows\System32\wups2.dll

    2008-11-15 08:30 . 2008-10-16 22:12 561,688 --a------ c:\windows\System32\wuapi.dll

    2008-11-15 08:30 . 2008-10-16 14:08 162,064 --a------ c:\windows\System32\wuwebv.dll

    2008-11-15 08:30 . 2008-10-16 21:55 83,456 --a------ c:\windows\System32\wudriver.dll

    2008-11-15 08:30 . 2008-10-16 22:08 34,328 --a------ c:\windows\System32\wups.dll

    2008-11-15 08:30 . 2008-10-16 13:56 31,232 --a------ c:\windows\System32\wuapp.exe

    2008-11-12 02:24 . 2008-09-05 06:14 1,191,936 --a------ c:\windows\System32\msxml3.dll

    2008-11-12 02:21 . 2008-09-10 04:40 1,334,272 --a------ c:\windows\System32\msxml6.dll

    2008-11-12 01:56 . 2008-08-27 02:05 212,480 --a------ c:\windows\System32\drivers\mrxsmb10.sys

    2008-11-08 23:16 . 2007-05-16 16:45 3,497,832 --a------ c:\windows\System32\d3dx9_34.dll

    2008-11-08 22:38 . 2008-11-08 22:38 <DIR> d--hs---- c:\windows\ftpcache

     

    .

    (((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2008-12-03 16:10 --------- d-----w c:\users\klack\AppData\Roaming\uTorrent

    2008-12-03 16:05 --------- d-----w c:\users\klack\AppData\Roaming\Hamachi

    2008-12-03 16:05 --------- d-----w c:\program files\Common Files\Steam

    2008-11-20 08:36 --------- d-----w c:\program files\mIRC

    2008-11-13 02:00 --------- d-----w c:\programdata\Microsoft Help

    2008-11-12 15:31 202,000 ----a-w c:\windows\System32\PnkBstrB.exe

    2008-11-12 15:31 139,280 ----a-w c:\windows\system32\drivers\PnkBstrK.sys

    2008-11-11 19:46 --------- d--h--w c:\program files\InstallShield Installation Information

    2008-11-08 21:59 682,280 ----a-w c:\windows\System32\pbsvc.exe

    2008-11-08 21:59 22,328 ----a-w c:\users\klack\AppData\Roaming\PnkBstrK.sys

    2008-11-06 15:39 66,872 ----a-w c:\windows\System32\PnkBstrA.exe

    2008-11-02 23:38 --------- d---a-w c:\programdata\TEMP

    2008-10-21 18:28 --------- d-----w c:\program files\Common Files\Wise Installation Wizard

    2008-10-21 18:28 --------- d-----w c:\program files\AGEIA Technologies

    2008-10-21 10:06 --------- d-----w c:\program files\Microsoft Silverlight

    2008-10-20 12:18 --------- d-----w c:\program files\Common Files\Blizzard Entertainment

    2008-10-15 09:08 --------- d-----w c:\program files\Windows Mail

    2008-10-15 01:26 --------- d-----w c:\program files\Tortun

    2008-10-08 18:13 --------- d-----w c:\programdata\NVIDIA

    2008-10-07 18:59 --------- d-----w c:\programdata\TrackMania

    2008-10-06 22:05 --------- d-----w c:\programdata\Blizzard

    2008-10-06 06:09 --------- d-----w c:\programdata\Codemasters

    2008-10-06 06:07 444,952 ----a-w c:\windows\System32\wrap_oal.dll

    2008-10-06 06:07 109,080 ----a-w c:\windows\System32\OpenAL32.dll

    2008-10-06 06:07 --------- d-----w c:\program files\OpenAL

    2008-10-02 03:49 827,392 ----a-w c:\windows\System32\wininet.dll

    2008-09-23 23:52 107,888 ----a-w c:\windows\System32\CmdLineExt.dll

    2008-09-23 18:34 315,392 ----a-w c:\windows\HideWin.exe

    2008-09-18 05:09 3,601,464 ----a-w c:\windows\System32\ntkrnlpa.exe

    2008-09-18 05:09 3,549,240 ----a-w c:\windows\System32\ntoskrnl.exe

    2008-09-18 04:56 147,456 ----a-w c:\windows\System32\Faultrep.dll

    2008-09-18 04:56 125,952 ----a-w c:\windows\System32\wersvc.dll

    2008-09-18 02:16 2,032,640 ----a-w c:\windows\System32\win32k.sys

    2008-09-10 06:37 81,920 ----a-w c:\windows\System32\frapsvid.dll

    2008-01-21 02:57 174 --sha-w c:\program files\desktop.ini

    .

     

    (((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret )))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Merk* tomme oppføringer & gyldige standardoppføringer vises ikke

    REGEDIT4

     

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]

    "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2008-09-23 219952]

    "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 5724184]

    "Steam"="d:\spill\steam\Steam.exe" [2008-11-01 1410296]

    "CurseClient"="c:\program files\Curse\CurseClient.exe" [2008-10-10 4789760]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2008-07-07 167936]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-09-06 413696]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-09-10 289576]

    "SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]

    "NvSvc"="c:\windows\system32\nvsvc.dll" [2008-07-09 551456]

    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-07-09 13535776]

    "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-07-09 92704]

    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]

    "RtHDVCpl"="RtHDVCpl.exe" [2008-05-28 c:\windows\RtHDVCpl.exe]

    "CTHelper"="CTHELPER.EXE" [2007-10-25 c:\windows\System32\CTHELPER.EXE]

    "CTxfiHlp"="CTXFIHLP.EXE" [2007-10-25 c:\windows\System32\CTXFIHLP.EXE]

     

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

    "DevconDefaultDB"="c:\windows\system32\READREG" [X]

     

    c:\users\klack\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2008-09-25 625952]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableLUA"= 0 (0x0)

    "EnableUIADesktopToggle"= 0 (0x0)

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

    "DisableMonitoring"=dword:00000001

     

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2326656311-3407321000-1026724571-1003]

    "EnableNotificationsRef"=dword:00000001

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]

    "{F70E7930-7174-457C-BE7B-A123EF81C595}"= TCP:6004|c:\program files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook

    "{D093172C-0BCA-40A9-8485-73A5119CE98D}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)

    "TCP Query User{A2967E2F-7730-4C11-9D14-48B4553EA0FA}c:\\program files\\utorrent\\utorrent.exe"= UDP:c:\program files\utorrent\utorrent.exe:uTorrent

    "UDP Query User{15EC4599-D448-461B-9B2E-F3A91F8609F7}c:\\program files\\utorrent\\utorrent.exe"= TCP:c:\program files\utorrent\utorrent.exe:uTorrent

    "{264BC2B6-8AAB-4859-BFF6-F81582B3D708}"= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour

    "{902FE166-BB79-4055-8F8F-8A56F89BF050}"= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour

    "{382A297A-5C1D-4381-9FC1-E0A876F85E9D}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes

    "{989DB579-971C-4EB3-9CB7-1C8705DF9556}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes

    "TCP Query User{B91BAA2F-8F99-4825-B14A-D63635126F9F}c:\\program files\\mirc\\mirc.exe"= UDP:c:\program files\mirc\mirc.exe:mIRC

    "UDP Query User{5E4DDCF5-83FC-45B9-9CA8-48520BC33723}c:\\program files\\mirc\\mirc.exe"= TCP:c:\program files\mirc\mirc.exe:mIRC

    "{CFB33F9F-5A39-44E7-B32E-908D943E207B}"= UDP:d:\spill\Battlefield 2\BF2.exe:Battlefield 2

    "{880C1B08-0F1E-40A8-8758-896C00F5C6BE}"= TCP:d:\spill\Battlefield 2\BF2.exe:Battlefield 2

    "{FF9AE1AC-D87F-4BB6-B7FE-EB2BE9C1C4E0}"= UDP:c:\program files\uTorrent\uTorrent.exe:µTorrent

    "{ABEA37CB-BE5C-486F-8036-E19A78D35ECC}"= TCP:c:\program files\uTorrent\uTorrent.exe:µTorrent

    "{5CA08B72-1DFF-4AD3-A6C5-BED0A6BABA30}"= UDP:d:\spill\Race.Driver.GRID-RELOADED\GRID.exe:GRID

    "{9846B191-0287-470E-944E-8EA63203AD56}"= TCP:d:\spill\Race.Driver.GRID-RELOADED\GRID.exe:GRID

    "{E0E02CEC-86E9-4328-A270-77C3C1C5D407}"= UDP:c:\windows\System32\PnkBstrA.exe:PnkBstrA

    "{D56B2A99-CCA2-400E-BD88-41B65399FA66}"= TCP:c:\windows\System32\PnkBstrA.exe:PnkBstrA

    "{2F7857B7-3350-40A4-87B6-6A7620337E99}"= UDP:c:\windows\System32\PnkBstrB.exe:PnkBstrB

    "{2D741CD8-4B0D-4274-B75E-28492F99F0CF}"= TCP:c:\windows\System32\PnkBstrB.exe:PnkBstrB

    "{8F93D36F-33E5-426F-897C-4A15ABCE9EB8}"= UDP:d:\spill\Call Of Duty WAW\CoDWaW.exe:Call of Duty® - World at War

    "{41717E43-B243-4550-846B-B029F31E8D95}"= TCP:d:\spill\Call Of Duty WAW\CoDWaW.exe:Call of Duty® - World at War

    "{E00B93CC-20E8-4707-959B-8312E18E25AF}"= UDP:d:\spill\Call Of Duty WAW\CoDWaWmp.exe:Call of Duty® - World at War

    "{156C0623-45A9-4FAB-82BE-FE439ED327D5}"= TCP:d:\spill\Call Of Duty WAW\CoDWaWmp.exe:Call of Duty® - World at War

    "{890AAAB2-56C3-452B-9819-DAECE1B545C9}"= UDP:c:\program files\Curse\CurseClient.exe:Curse Client

    "{C559D4A1-1057-467D-8868-17809662D5D2}"= TCP:c:\program files\Curse\CurseClient.exe:Curse Client

     

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]

    "EnableFirewall"= 0 (0x0)

     

    R2 BcmSqlStartupSvc;Oppstartstjeneste for Business Contact Manager SQL Server;"c:\program files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe" [2008-01-16 30312]

    S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ);"c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ [2008-02-26 29183504]

    S4 mv61xx;mv61xx;c:\windows\system32\drivers\mv61xx.sys [2008-09-17 143256]

    S4 nvrd32;NVIDIA nForce RAID Driver;c:\windows\system32\drivers\nvrd32.sys [2008-09-17 134688]

    S4 UGURU;UGURU;c:\windows\system32\drivers\uguru.sys [2008-09-17 21048]

     

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\L]

    \shell\AutoRun\command - L:\autorun.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8010bb39-8434-11dd-b254-806e6f6e6963}]

    \shell\AutoRun\command - E:\Installer.exe

    .

    - - - - TOMME PEKERE FJERNET - - - -

     

    HKU-Default-Run-rs32net - c:\windows\System32\rs32net.exe

    Notify-pucjfi - pucjfi32.dll

     

     

    .

    ------- Tilleggsskanning -------

    .

    FireFox -: Profile - c:\users\klack\AppData\Roaming\Mozilla\Firefox\Profiles\j1px2c7t.default\

    FF -: plugin - c:\program files\iTunes\Mozilla Plugins\npitunes.dll

    FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

    FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

    FF -: plugin - c:\program files\Microsoft Silverlight\2.0.31005.0\npctrl.1.0.30716.0.dll

    FF -: plugin - c:\program files\Microsoft Silverlight\2.0.31005.0\npctrl.dll

    .

     

    **************************************************************************

     

    catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

    Rootkit scan 2008-12-03 17:11:07

    Windows 6.0.6001 Service Pack 1 NTFS

     

    skanner skjulte prosesser ...

     

    skanner skjulte autostart-oppføringer ...

     

    skanner skjulte filer ...

     

     

    c:\users\klack\AppData\Local\Temp\Cab816E.tmp 27023 bytes

    c:\users\klack\AppData\Local\Temp\Tar816F.tmp 69595 bytes

     

    skanning vellykket

    skjulte filer: 2

     

    **************************************************************************

    .

    ------------------------ Andre Kjørende Prosesser ------------------------

    .

    c:\windows\System32\nvvsvc.exe

    c:\windows\System32\audiodg.exe

    c:\windows\System32\rundll32.exe

    c:\windows\System32\conime.exe

    c:\windows\System32\rundll32.exe

    c:\program files\Bonjour\mDNSResponder.exe

    c:\windows\System32\PnkBstrA.exe

    c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    c:\program files\iPod\bin\iPodService.exe

    c:\program files\Windows Media Player\wmpnscfg.exe

    c:\program files\Windows Media Player\wmpnetwk.exe

    .

    **************************************************************************

    .

    Tidspunkt ferdig: 2008-12-03 17:13:08 - maskinen ble startet på nytt

    ComboFix-quarantined-files.txt 2008-12-03 16:13:01

     

    Pre-Run: 579 262 984 192 byte ledig

    Post-Run: 580,639,039,488 byte ledig

     

    211 --- E O F --- 2008-11-19 10:38:35

     

     

     

    hijackthis:

     

    Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 17:15:14, on 03.12.2008

    Platform: Windows Vista SP1 (WinNT 6.00.1905)

    MSIE: Internet Explorer v7.00 (7.00.6001.18000)

    Boot mode: Normal

     

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\conime.exe

    C:\Windows\RtHDVCpl.exe

    C:\Program Files\PowerISO\PWRISOVM.EXE

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe

    C:\Windows\System32\rundll32.exe

    C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe

    C:\Program Files\Windows Sidebar\sidebar.exe

    C:\Program Files\uTorrent\uTorrent.exe

    C:\Program Files\Windows Live\Messenger\msnmsgr.exe

    C:\Program Files\Curse\CurseClient.exe

    C:\Program Files\Hamachi\hamachi.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Windows\Explorer.exe

    C:\Windows\system32\notepad.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Windows\explorer.exe

    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    C:\Windows\system32\SearchFilterHost.exe

     

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE

    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

    O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart

    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"

    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [steam] "D:\spill\steam\Steam.exe" -silent

    O4 - HKCU\..\Run: [CurseClient] C:\Program Files\Curse\CurseClient.exe -silent

    O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM')

    O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user')

    O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe

    O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll

    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

    O13 - Gopher Prefix:

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su2...15106/CTPID.cab

    O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

     

    --

    End of file - 4982 bytes

     

     

     

    17:18 edit: kjørte en ny runde med MBAM, fant 0 infiserte filer :D

     

    Jeg fikk en mail av Nextgentel i dag, og de informerte meg at jeg hadde Trojan, så vist jeg ikke fjerner dette selv innen 3 dager så kommer de på døra å formaterer PC'n :p

     

    Jeg nekter å formatere : | Gla jeg har diskusjon.no :p

  11. MBAM:

     

    Malwarebytes' Anti-Malware 1.30

    Database versjon: 1454

    Windows 6.0.6001 Service Pack 1

     

    03.12.2008 17:01:23

    mbam-log-2008-12-03 (17-01-23).txt

     

    Skanntype: Rask Skann

    Objekter skannet: 48622

    Tid tilbakelagt: 2 minute(s), 1 second(s)

     

    Minneprosesser infisert: 1

    Minnemoduler infisert: 0

    Registernøkler infisert: 3

    Registerverdier infisert: 4

    Registerfiler infisert: 3

    Mapper infisert: 1

    Filer infisert: 11

     

    Minneprosesser infisert:

    C:\Windows\System32\twext.exe (Backdoor.Bot) -> Unloaded process successfully.

     

    Minnemoduler infisert:

    (Ingen mistenkelige filer funnet)

     

    Registernøkler infisert:

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\tcpsr (Trojan.Agent) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\fci (Rootkit.Agent) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ICF (Rootkit.Agent) -> Quarantined and deleted successfully.

     

    Registerverdier infisert:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rs32net (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rs32net (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\advap32 (Trojan.Agent) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace) -> Quarantined and deleted successfully.

     

    Registerfiler infisert:

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Backdoor.Bot) -> Data: c:\windows\system32\twext.exe -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Backdoor.Bot) -> Data: system32\twext.exe -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Hijack.UserInit) -> Bad: (C:\Windows\system32\userinit.exe,C:\Windows\system32\twext.exe,) Good: (userinit.exe) -> Quarantined and deleted successfully.

     

    Mapper infisert:

    C:\Windows\System32\twain_32 (Backdoor.Bot) -> Delete on reboot.

     

    Filer infisert:

    C:\Windows\System32\rs32net.exe (Trojan.FakeAlert.H) -> Delete on reboot.

    C:\Users\klack\AppData\Local\Temp\jhw6B6E.tmp (Rootkit.Agent) -> Quarantined and deleted successfully.

    C:\Users\klack\AppData\Local\Temp\ztl4FF.tmp (Rootkit.Agent) -> Quarantined and deleted successfully.

    C:\Windows\System32\twain_32\local.ds (Backdoor.Bot) -> Delete on reboot.

    C:\Windows\System32\twain_32\user.ds (Backdoor.Bot) -> Delete on reboot.

    C:\Windows\Temp\3F1B.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

    C:\Windows\System32\twext.exe (Backdoor.Bot) -> Delete on reboot.

    C:\Windows\System32\delself.bat (Malware.Trace) -> Quarantined and deleted successfully.

    C:\Windows\System32\fci.exe.exe (Worm.Zhelatin) -> Quarantined and deleted successfully.

    C:\Windows\System32\icf.exe.exe (Worm.Zhelatin) -> Quarantined and deleted successfully.

    C:\Users\klack\UPSInvoice_89076152.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.

     

     

  12. Har spillene jeg vil ha til konsoll, er ute etter PC-spill serru ;)

     

    Jeg vil anbefale Brothers in Arms: Hell's Highway og Call of duty: Modern Warfare som singleplayer.

     

    De 2 spillene er de beste singelplayer spillene jeg har spillt på mange år, er ikke så fan av krigs spill heller egentlig, de passer for alle.

     

    Brother's in Arms er det egentlig en veldig fin story i, så du burde kanskje spille de tidligere utgivelsene først.

     

    Alle disse spillene har også Multiplayer : )

×
×
  • Opprett ny...