Gå til innhold

Anbefalte innlegg

Kan noen se på loggen min? Dataen har vært litt treig i det siste

 

Klikk for å se/fjerne innholdet nedenfor
ComboFix 09-11-07.02 - Marius 07.11.2009 20:59.1.2 - NTFSx86

Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.47.1044.18.2045.1330 [GMT 1:00]

Kjører fra: c:\users\Marius\Documents\Downloads\ComboFix.exe

SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

 

((((((((((((((((((((((((((((((((((((((( Andre slettinger )))))))))))))))))))))))))))))))))))))))))))))))))

.

 

c:\$recycle.bin\S-1-5-21-2152478756-3922319563-605102323-500

c:\$recycle.bin\S-1-5-21-3824107140-769587410-694210621-500

c:\$recycle.bin\S-1-5-21-95090361-2487781077-3476452942-500

 

.

((((((((((((((((((((((((((( Filer Opprettet Fra 2009-10-07 til 2009-11-07 )))))))))))))))))))))))))))))))))

.

 

2009-11-07 20:26 . 2009-11-07 20:27 -------- d-----w- c:\users\Marius\AppData\Local\temp

2009-11-07 20:26 . 2009-11-07 20:26 -------- d-----w- c:\users\Torunn\AppData\Local\temp

2009-11-07 20:26 . 2009-11-07 20:26 -------- d-----w- c:\users\Default\AppData\Local\temp

2009-11-07 20:26 . 2009-11-07 20:26 -------- d-----w- c:\users\Ida Sofie\AppData\Local\temp

2009-11-07 20:26 . 2009-11-07 20:26 -------- d-----w- c:\users\Arild\AppData\Local\temp

2009-10-28 18:19 . 2009-10-28 18:19 -------- d-----w- c:\program files\Windows Portable Devices

2009-10-28 13:26 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll

2009-10-28 13:26 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll

2009-10-28 13:26 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll

2009-10-28 13:24 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe

2009-10-28 13:23 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll

2009-10-28 13:23 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll

2009-10-28 13:23 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll

2009-10-28 13:18 . 2009-09-10 14:58 310784 ----a-w- c:\windows\system32\unregmp2.exe

2009-10-28 13:18 . 2009-09-10 14:59 8147456 ----a-w- c:\windows\system32\wmploc.DLL

2009-10-25 18:42 . 2009-11-03 20:43 4096 d-----w- c:\users\Marius\AppData\Roaming\vlc

2009-10-24 21:02 . 2009-10-24 21:02 -------- d-----w- c:\program files\Microsoft Sync Framework

2009-10-23 06:28 . 2009-10-23 07:28 -------- d-----w- c:\users\Arild\AppData\Roaming\Skype

2009-10-22 18:14 . 2009-10-22 18:22 -------- d-----w- c:\users\Marius\AppData\Roaming\Ventrilo

2009-10-22 18:13 . 2009-10-22 18:13 4096 d-----w- c:\program files\Ventrilo

2009-10-22 15:53 . 2009-11-05 20:12 -------- d-----w- c:\users\Marius\AppData\Roaming\skypePM

2009-10-22 15:53 . 2009-11-05 21:31 4096 d-----w- c:\users\Marius\AppData\Roaming\Skype

2009-10-22 15:53 . 2009-10-22 15:53 -------- d-----w- c:\program files\Common Files\Skype

2009-10-22 15:52 . 2009-10-22 15:53 -------- d-----r- c:\program files\Skype

2009-10-21 08:42 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll

2009-10-21 08:42 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe

2009-10-21 08:42 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll

2009-10-21 08:42 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll

2009-10-21 08:41 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll

2009-10-21 08:41 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll

2009-10-21 08:41 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll

2009-10-21 08:41 . 2009-08-06 17:23 171608 ----a-w- c:\windows\system32\wuwebv.dll

2009-10-21 08:41 . 2009-08-06 16:44 33792 ----a-w- c:\windows\system32\wuapp.exe

2009-10-19 14:08 . 2009-11-07 18:50 63 ----a-w- c:\users\Marius\jagex_runescape_preferences2.dat

2009-10-19 14:08 . 2009-10-19 14:08 -------- d-----w- c:\users\Marius\.jagex_cache_32

2009-10-19 14:08 . 2009-11-07 18:48 38 ----a-w- c:\users\Marius\jagex_runescape_preferences.dat

2009-10-14 11:36 . 2009-09-04 11:41 60928 ----a-w- c:\windows\system32\msasn1.dll

2009-10-14 11:36 . 2009-09-14 09:29 144896 ----a-w- c:\windows\system32\drivers\srv2.sys

2009-10-14 11:36 . 2009-05-08 12:53 604672 ----a-w- c:\windows\system32\WMSPDMOD.DLL

2009-10-12 16:54 . 2009-10-12 17:07 -------- d-----w- c:\users\Ida Sofie\AppData\Local\Deployment

2009-10-12 16:54 . 2009-10-12 16:54 -------- d-----w- c:\users\Ida Sofie\AppData\Local\Apps

2009-10-11 15:17 . 2009-10-11 15:25 16384 d-----w- c:\program files\Superia

2009-10-11 15:11 . 2009-10-11 15:13 141298108 ----a-w- c:\users\Public\superia.exe

 

.

(((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-11-07 19:44 . 2007-12-24 19:59 16384 d-----w- c:\program files\Steam

2009-11-07 19:26 . 2009-03-19 16:44 81054 ----a-w- c:\programdata\nvModes.dat

2009-11-05 17:39 . 2009-10-29 14:47 4096 d-----w- c:\program files\SystemRequirementsLab

2009-11-05 17:22 . 2009-03-18 12:38 411368 ----a-w- c:\windows\system32\deploytk.dll

2009-11-05 17:22 . 2007-10-22 11:51 -------- d-----w- c:\program files\Java

2009-11-05 14:23 . 2007-12-24 20:19 -------- d-----w- c:\program files\Common Files\Steam

2009-11-04 17:14 . 2007-10-22 11:51 4096 d--h--w- c:\program files\InstallShield Installation Information

2009-11-04 17:10 . 2009-11-04 17:10 -------- d-----w- c:\programdata\Futuremark

2009-11-04 17:00 . 2009-09-15 12:06 4096 d-----w- c:\program files\Common Files\Wise Installation Wizard

2009-11-03 20:42 . 2009-11-03 20:42 -------- d-----w- c:\users\Marius\AppData\Roaming\dvdcss

2009-11-03 14:23 . 2009-11-03 14:22 4096 d-----w- c:\program files\Windows User

2009-11-03 14:14 . 2006-11-21 05:16 80524 ----a-w- c:\windows\system32\perfc014.dat

2009-11-03 14:14 . 2006-11-21 05:16 460234 ----a-w- c:\windows\system32\perfh014.dat

2009-11-03 14:14 . 2009-11-03 14:14 -------- d-----w- c:\program files\Sports Interactive

2009-11-02 19:42 . 2009-10-02 18:01 195456 ------w- c:\windows\system32\MpSigStub.exe

2009-10-28 18:19 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat

2009-10-28 18:19 . 2009-10-28 18:19 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf

2009-10-28 18:18 . 2009-10-28 18:18 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf

2009-10-24 21:02 . 2009-04-06 09:10 4096 d-----w- c:\program files\Windows Live

2009-10-24 21:01 . 2009-02-26 17:17 -------- d-----w- c:\program files\Microsoft

2009-10-22 15:52 . 2009-08-25 19:27 -------- d-----w- c:\programdata\Skype

2009-10-21 20:09 . 2007-12-26 09:38 4096 d-----w- c:\users\Marius\AppData\Roaming\Sports Interactive

2009-10-21 15:32 . 2009-06-23 20:43 4096 d-----w- c:\program files\EA GAMES

2009-10-20 18:45 . 2009-08-04 19:04 -------- d-----w- c:\program files\Common Files\Adobe

2009-10-19 18:56 . 2009-04-16 20:52 -------- d-----w- c:\program files\Dl_cats

2009-10-18 13:48 . 2008-12-22 10:32 -------- d-----w- c:\programdata\Sports Interactive

2009-10-15 15:50 . 2009-08-21 19:15 4096 d-----w- c:\program files\Everest Poker

2009-10-15 13:40 . 2006-11-02 11:18 4096 d-----w- c:\program files\Windows Mail

2009-10-15 13:31 . 2008-01-28 17:27 8192 d-----w- c:\programdata\Microsoft Help

2009-10-15 13:29 . 2007-10-22 11:56 24576 d-----w- c:\program files\Microsoft Works

2009-10-04 21:15 . 2009-10-04 21:15 -------- d-----w- c:\program files\Trend Micro

2009-10-04 21:15 . 2009-10-04 21:15 812344 ----a-w- c:\users\Public\HijackThisInstaller.exe

2009-10-01 22:04 . 2009-10-01 22:04 -------- d-----w- c:\users\Torunn\AppData\Roaming\Malwarebytes

2009-10-01 01:02 . 2009-10-28 13:24 2537472 ----a-w- c:\windows\system32\wpdshext.dll

2009-10-01 01:02 . 2009-10-28 13:24 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll

2009-10-01 01:02 . 2009-10-28 13:24 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll

2009-10-01 01:02 . 2009-10-28 13:24 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll

2009-10-01 01:01 . 2009-10-28 13:24 546816 ----a-w- c:\windows\system32\wpd_ci.dll

2009-10-01 01:01 . 2009-10-28 13:24 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll

2009-10-01 01:01 . 2009-10-28 13:24 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll

2009-10-01 01:01 . 2009-10-28 13:24 350208 ----a-w- c:\windows\system32\WPDSp.dll

2009-10-01 01:01 . 2009-10-28 13:24 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll

2009-10-01 01:01 . 2009-10-28 13:24 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll

2009-10-01 01:01 . 2009-10-28 13:24 81920 ----a-w- c:\windows\system32\wpdbusenum.dll

2009-10-01 01:01 . 2009-10-28 13:24 40448 ----a-w- c:\windows\system32\drivers\WpdUsb.sys

2009-10-01 01:01 . 2009-10-28 13:24 226816 ----a-w- c:\windows\system32\WpdMtp.dll

2009-10-01 01:01 . 2009-10-28 13:24 61952 ----a-w- c:\windows\system32\WpdMtpUS.dll

2009-10-01 01:01 . 2009-10-28 13:24 33280 ----a-w- c:\windows\system32\WpdConns.dll

2009-09-26 09:34 . 2009-08-18 18:15 4096 d-----w- c:\programdata\TrackMania

2009-09-25 02:10 . 2009-10-28 13:25 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll

2009-09-25 02:07 . 2009-10-28 13:25 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll

2009-09-25 02:04 . 2009-10-28 13:25 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll

2009-09-25 01:49 . 2009-10-28 13:25 1554432 ----a-w- c:\windows\system32\xpsservices.dll

2009-09-25 01:48 . 2009-10-28 13:25 351232 ----a-w- c:\windows\system32\XpsPrint.dll

2009-09-25 01:38 . 2009-10-28 13:25 847360 ----a-w- c:\windows\system32\OpcServices.dll

2009-09-25 01:36 . 2009-10-28 13:25 280064 ----a-w- c:\windows\system32\XpsGdiConverter.dll

2009-09-25 01:35 . 2009-10-28 13:25 135680 ----a-w- c:\windows\system32\XpsRasterService.dll

2009-09-25 01:33 . 2009-10-28 13:25 195584 ----a-w- c:\windows\system32\dxdiagn.dll

2009-09-25 01:33 . 2009-10-28 13:25 829440 ----a-w- c:\windows\system32\d3d10warp.dll

2009-09-25 01:33 . 2009-10-28 13:25 369664 ----a-w- c:\windows\system32\WMPhoto.dll

2009-09-25 01:32 . 2009-10-28 13:25 252928 ----a-w- c:\windows\system32\dxdiag.exe

2009-09-25 01:31 . 2009-10-28 13:25 519680 ----a-w- c:\windows\system32\d3d11.dll

2009-09-25 01:31 . 2009-10-28 13:25 486912 ----a-w- c:\windows\system32\d3d10level9.dll

2009-09-25 01:31 . 2009-10-28 13:25 161280 ----a-w- c:\windows\system32\d3d10_1.dll

2009-09-25 01:31 . 2009-10-28 13:25 218112 ----a-w- c:\windows\system32\d3d10_1core.dll

2009-09-25 01:31 . 2009-10-28 13:25 1030144 ----a-w- c:\windows\system32\d3d10.dll

2009-09-25 01:31 . 2009-10-28 13:25 828928 ----a-w- c:\windows\system32\d2d1.dll

2009-09-25 01:30 . 2009-10-28 13:25 190464 ----a-w- c:\windows\system32\d3d10core.dll

2009-09-25 01:30 . 2009-10-28 13:25 481792 ----a-w- c:\windows\system32\dxgi.dll

2009-09-25 01:27 . 2009-10-28 13:25 634880 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys

2009-09-25 01:27 . 2009-10-28 13:25 793088 ----a-w- c:\windows\system32\FntCache.dll

2009-09-25 01:27 . 2009-10-28 13:25 37888 ----a-w- c:\windows\system32\cdd.dll

2009-09-25 01:27 . 2009-10-28 13:25 1064448 ----a-w- c:\windows\system32\DWrite.dll

2009-09-24 22:54 . 2009-10-28 13:25 258048 ----a-w- c:\windows\system32\winspool.drv

2009-09-24 22:54 . 2009-10-28 13:25 667648 ----a-w- c:\windows\system32\printfilterpipelinesvc.exe

2009-09-24 22:54 . 2009-10-28 13:25 26112 ----a-w- c:\windows\system32\printfilterpipelineprxy.dll

2009-09-23 07:26 . 2007-11-08 15:34 88144 ----a-w- c:\users\Torunn\AppData\Local\GDIPFONTCACHEV1.DAT

2009-09-18 13:35 . 2009-08-22 08:29 4096 d-----w- c:\users\Marius\AppData\Roaming\Hamachi

2009-09-17 16:20 . 2009-09-17 15:21 8192 d-----w- c:\users\Marius\AppData\Roaming\uTorrent

2009-09-17 15:22 . 2009-09-17 15:22 -------- d-----w- c:\program files\uTorrent

2009-09-15 12:15 . 2008-09-07 09:01 -------- d-----w- c:\programdata\NVIDIA

2009-09-15 12:06 . 2009-09-15 12:06 8192 d-----w- c:\program files\AGEIA Technologies

2009-09-14 15:01 . 2009-04-10 20:23 4096 d-----w- c:\program files\Malwarebytes' Anti-Malware

2009-09-14 15:00 . 2009-05-29 10:29 4045528 ----a-w- c:\programdata\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe

2009-09-13 19:57 . 2009-09-13 19:57 -------- d-----w- c:\program files\Secunia

2009-09-10 16:48 . 2009-10-14 11:37 218624 ----a-w- c:\windows\system32\msv1_0.dll

2009-09-10 12:54 . 2009-04-10 20:23 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2009-09-10 12:53 . 2009-04-10 20:23 19160 ----a-w- c:\windows\system32\drivers\mbam.sys

2009-09-09 20:19 . 2008-09-07 08:56 4096 d-----w- c:\program files\Microsoft Silverlight

2009-09-06 20:16 . 2009-09-06 20:16 139152 ----a-w- c:\users\Marius\AppData\Roaming\PnkBstrK.sys

2009-09-06 20:16 . 2009-09-06 20:16 139152 ----a-w- c:\users\Marius\AppData\Roaming\PnkBstrK.sys

2009-08-31 13:05 . 2007-11-13 18:10 88144 ----a-w- c:\users\Ida Sofie\AppData\Local\GDIPFONTCACHEV1.DAT

2009-08-29 00:27 . 2009-09-03 13:39 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll

2009-08-29 00:14 . 2009-09-03 13:40 28672 ----a-w- c:\windows\system32\Apphlpdm.dll

2009-08-27 18:19 . 2009-08-27 18:19 75064 ----a-w- c:\windows\system32\PnkBstrA.exe

2009-08-27 05:22 . 2009-10-14 11:37 916480 ----a-w- c:\windows\system32\wininet.dll

2009-08-27 05:17 . 2009-10-14 11:37 71680 ----a-w- c:\windows\system32\iesetup.dll

2009-08-27 05:17 . 2009-10-14 11:37 109056 ----a-w- c:\windows\system32\iesysprep.dll

2009-08-27 03:42 . 2009-10-14 11:37 133632 ----a-w- c:\windows\system32\ieUnatt.exe

2009-08-22 16:21 . 2007-11-02 16:44 88144 ----a-w- c:\users\Arild\AppData\Local\GDIPFONTCACHEV1.DAT

2007-10-22 19:35 . 2007-10-22 19:29 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT

.

 

(((((((((((((((((((((((((((((((( Oppstartspunkter I Registeret )))))))))))))))))))))))))))))))))))))))))))))

.

.

*Merk* tomme oppføringer & gyldige standardoppføringer vises ikke

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ECenter"="c:\dell\E-Center\EULALauncher.exe" [2007-05-25 17920]

"Apoint"="c:\program files\DellTPad\Apoint.exe" [2007-04-18 159744]

"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2006-11-02 215552]

"DLCGCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\DLCGtime.dll" [2006-10-21 73728]

"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]

"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-08-19 13793824]

"NVHotkey"="c:\windows\system32\nvHotkey.dll" [2009-08-19 92704]

"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-05 149280]

"SigmatelSysTrayApp"="sttray.exe" - c:\windows\sttray.exe [2007-03-06 303104]

 

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2007-10-22 50688]

QuickSet.lnk - c:\windows\Installer\{7F0C4457-8E64-491B-8D7B-991504365D1E}\NewShortcut2_53A01CC614B04512A2E710D39BF83DC4.exe [2007-10-22 45056]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"EnableUIADesktopToggle"= 0 (0x0)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~2\GoogleDesktopNetwork3.dll

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

@="Service"

 

[HKLM\~\startupfolder\C:^Users^Marius^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Screen Clipper og Launcher.lnk]

path=c:\users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper og Launcher.lnk

backup=c:\windows\pss\OneNote 2007 Screen Clipper og Launcher.lnk.Startup

backupExtension=.Startup

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"

"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]

"DisableMonitoring"=dword:00000001

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

"VistaSp2"=hex(b):ea,eb,b9,25,c2,ff,c9,01

 

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [28.04.2009 17:31 108289]

R2 wlidsvc;Windows Live ID Sign-in Assistant;c:\program files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE [30.03.2009 15:28 1533808]

R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\System32\drivers\mbamswissarmy.sys [10.04.2009 21:23 38224]

S3 FontCache;Windows skriftbuffertjeneste;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [11.09.2008 19:58 21504]

S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [22.10.2007 13:05 29744]

S3 PSI;PSI;c:\windows\System32\drivers\psi_mf.sys [17.06.2009 13:20 12648]

S3 Razerlow;Diamondback 3G USB Filter Driver;c:\windows\System32\drivers\DB3G.sys [29.05.2009 11:44 13225]

 

--- Andre tjenester/drivere lastet i minnet ---

 

*NewlyCreated* - MBAMSWISSARMY

*NewlyCreated* - MBR

*NewlyCreated* - PROCEXP113

*Deregistered* - mbr

*Deregistered* - PROCEXP113

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

WindowsMobile REG_MULTI_SZ wcescomm rapimgr

LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr

LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

.

Innholdet i mappen 'Scheduled Tasks' (planlagte oppgaver)

 

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-95090361-2487781077-3476452942-1001Core.job

- c:\users\Marius\AppData\Local\Google\Update\GoogleUpdate.exe [2009-06-19 22:24]

 

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-95090361-2487781077-3476452942-1001UA.job

- c:\users\Marius\AppData\Local\Google\Update\GoogleUpdate.exe [2009-06-19 22:24]

 

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-95090361-2487781077-3476452942-1005Core.job

- c:\users\Ida Sofie\AppData\Local\Google\Update\GoogleUpdate.exe [2009-10-12 17:07]

 

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-95090361-2487781077-3476452942-1005UA.job

- c:\users\Ida Sofie\AppData\Local\Google\Update\GoogleUpdate.exe [2009-10-12 17:07]

 

2009-11-07 c:\windows\Tasks\User_Feed_Synchronization-{8E0E9978-96FB-48ED-8960-458719BB1E9E}.job

- c:\windows\system32\msfeedssync.exe [2009-10-14 03:41]

 

2009-11-06 c:\windows\Tasks\User_Feed_Synchronization-{9F7D8FF2-193B-452B-94CC-A3A8D2F5CB74}.job

- c:\windows\system32\msfeedssync.exe [2009-10-14 03:41]

.

.

------- Tilleggsskanning -------

.

uStart Page = hxxp://united.no/

IE: E&ksporter til Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000

Trusted Zone: skandiabanken.no

DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab

DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} - hxxps://www.battlefieldheroes.com/static/updater/BFHUpdater_4.0.21.0.cab

.

- - - - TOMME PEKERE FJERNET - - - -

 

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)

 

 

 

**************************************************************************

 

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-11-07 21:27

Windows 6.0.6002 Service Pack 2 NTFS

 

skanner skjulte prosesser ...

 

skanner skjulte autostart-oppføringer ...

 

HKLM\Software\Microsoft\Windows\CurrentVersion\Run

DLCGCATS = rundll32 c:\windows\system32\spool\DRIVERS\W32X86\3\DLCGtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

 

skanner skjulte filer ...

 

 

c:\users\Marius\AppData\Local\Temp\catchme.dll 53248 bytes executable

 

skanning vellykket

skjulte filer: 1

 

**************************************************************************

.

--------------------- LÅSTE REGISTERNØKLER ---------------------

 

[HKEY_USERS\S-1-5-21-95090361-2487781077-3476452942-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]

"??"=hex:2f,5d,66,43,11,f1,f0,b3,5b,a7,d9,e8,de,39,47,0f,a0,a9,80,07,42,86,f4,

23,2c,b9,07,d0,ec,a1,51,4e,76,5c,c5,b9,2c,62,73,b8,d6,09,5b,3e,65,26,b9,18,\

"??"=hex:f3,6f,52,16,33,8f,8e,c8,26,d8,8e,78,45,2f,b2,d8

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

Tidspunkt ferdig: 2009-11-07 21:35

ComboFix-quarantined-files.txt 2009-11-07 20:35

 

Pre-Run: 156 723 044 352 byte ledig

Post-Run: 156 728 074 240 byte ledig

 

- - End Of File - - FB92270F59F8B7C0527BAB07974EB6FB

Endret av Mazatuslasagne
Lenke til kommentar
Videoannonse
Annonse

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
×
×
  • Opprett ny...