Gå til innhold

Topic endret: Noen som vet hvordan jeg kan få fjernet hele programmet/skrudd av Trend Micro autoscannen?


Anbefalte innlegg

Har Trend Micro på pc-en, det fulgte med. Fikk i en annen tråd anbefalt dette framfor AVG, men problemet er at den driver å scanner av seg selv hele tiden, og jeg vet verken hvordan jeg skal slå av eller skru av autoscanningen. Rettere sagt jeg skjønner ikke en dritt av dette programmet. Noen som kan forklare meg? Eller er AVG (som jeg kan) like bra?

Endret av ZiroN
Lenke til kommentar
Videoannonse
Annonse

Takk det funket, fikk slettet det og har lagt inn AVG ;) Men pc-en sliter enda, da jeg skulle scanne med AVG brukte den nesten like lang tid som Trend Micro. Og det lagger fortsatt når jeg spiller av filmer. Har slettet masse filer for å få mer hard-disk plass, og har kjørt tre forskjellige spy-ware programmer. Skjønner ikke hva som er galt. Når jeg åpner Oppgavebehandling viser den ingen filer som bruker mye av CPU-en. Om jeg har virus så vil det jo ta evig å få scannet pcen for å finne det :s Har du noen anelse om hva som kan være problemet? Den var ikke sånn for et par dager siden, jeg skjønner ingenting!

 

Det er en Dell latitude d531 med win xp pro.

Lenke til kommentar

Hent Combofix, og legg det på skrivebordet

 

Kjør combofix.exe, og følg veiledningen.

Du må ikke klikke på vinduet mens programmet kjører.

 

Post loggfilen fra combofix (c:\combofix.txt). Loggen kan evt. si noe om det ligger ting og tang på PC-en som bør vekk.

 

Edit: Noen ganger kan det være hensiktmessig å deaktivere funksjonen for gjenoppretting, men man bør, om man ikke bruker et eget program, aktivere funksjonen igjen.

Endret av norbat
Lenke til kommentar

Done. ;)

 

Klikk for å se/fjerne innholdet nedenfor
ComboFix 07-12-21.4 - Bruker 2007-12-22 0:38:22.1 - NTFSx86

Microsoft Windows XP Professional 5.1.2600.2.1252.1.1044.18.470 [GMT 1:00]

Running from: C:\Documents and Settings\SomeUser\Skrivebord\ComboFix.exe

* Created a new restore point

.

 

((((((((((((((((((((((((( Files Created from 2007-11-21 to 2007-12-21 )))))))))))))))))))))))))))))))

.

 

2007-12-21 21:57 . 2007-12-21 21:57 3,888 --a------ C:\WINDOWS\system32\drivers\NTHANDLE.SYS

2007-12-21 21:41 . 2007-12-21 22:04 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\AVG7

2007-12-21 21:40 . 2007-12-21 21:40 <DIR> d-------- C:\Documents and Settings\LocalService\Programdata\AVG7

2007-12-21 21:40 . 2007-12-21 21:40 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Grisoft

2007-12-21 16:48 . 2007-12-21 23:50 <DIR> dr-h----- C:\Documents and Settings\SomeUser\Siste

2007-12-19 09:05 . 2007-12-19 09:05 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\dvdcss

2007-12-16 17:22 . 2003-10-27 14:06 140,488 --a------ C:\WINDOWS\system32\comdlg32.ocx

2007-12-16 17:22 . 2003-10-27 14:06 115,016 --a------ C:\WINDOWS\system32\MSINET.OCX

2007-12-16 17:22 . 2003-10-27 14:06 69,632 --a------ C:\WINDOWS\system32\xmltok.dll

2007-12-16 17:22 . 2003-10-27 14:06 36,864 --a------ C:\WINDOWS\system32\xmlparse.dll

2007-12-16 17:22 . 2003-10-27 14:06 35,840 --a------ C:\WINDOWS\system32\comdlg32.oca

2007-12-16 17:22 . 2003-10-27 14:06 29,184 --a------ C:\WINDOWS\system32\MSINET.oca

2007-12-16 17:22 . 2003-10-27 14:06 26,096 --a------ C:\WINDOWS\system32\xmlinst.exe

2007-12-16 17:22 . 2003-10-27 14:06 24,576 --a------ C:\WINDOWS\system32\msxml3a.dll

2007-12-16 17:19 . 2007-12-21 21:59 <DIR> d-------- C:\Programfiler\UBISOFT

2007-12-15 22:11 . 2007-12-15 22:11 <DIR> d-------- C:\Programfiler\iTunes

2007-12-15 22:11 . 2007-12-15 22:11 <DIR> d-------- C:\Programfiler\iPod

2007-12-15 22:11 . 2007-12-15 22:11 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Apple Computer

2007-12-15 22:10 . 2007-12-15 22:10 <DIR> d-------- C:\Programfiler\Fellesfiler\Apple

2007-12-15 22:03 . 2007-12-15 22:03 <DIR> d-------- C:\Programfiler\QuickTime

2007-12-15 22:03 . 2007-12-15 22:11 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Apple Computer

2007-12-15 17:11 . 2007-12-15 17:11 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\TVU Networks

2007-12-15 17:09 . 2007-12-15 17:11 <DIR> d-------- C:\Programfiler\TVUPlayer

2007-12-15 16:59 . 2007-12-15 17:00 <DIR> d-------- C:\Programfiler\TVAnts

2007-12-14 02:03 . 2007-12-14 02:03 59 --a------ C:\WINDOWS\pp.enc

2007-12-12 13:57 . 2007-12-12 13:57 <DIR> d-------- C:\casio

2007-12-11 10:57 . 2007-12-11 10:57 65,536 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx

2007-12-11 10:57 . 2007-12-11 10:57 49,152 --a------ C:\WINDOWS\system32\QuickTime.qts

2007-12-05 21:39 . 2007-12-05 21:40 <DIR> d-------- C:\Programfiler\SopCast

2007-12-05 14:20 . 2007-12-05 14:20 <DIR> d-------- C:\Programfiler\GameSpy Arcade

2007-12-05 14:17 . 2007-12-05 14:17 <DIR> d-------- C:\Programfiler\Aspyr

2007-12-05 14:00 . 2007-12-05 14:00 1,635,291 --a------ C:\WINDOWS\WANEUninstaller.exe

2007-12-05 13:57 . 2007-12-05 13:58 <DIR> d-------- C:\Programfiler\Worms Armageddon - New Edition

2007-12-04 16:23 . 2007-12-15 23:04 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Hamachi

2007-12-04 16:22 . 2007-12-04 16:23 <DIR> d-------- C:\Programfiler\Hamachi

2007-12-04 16:22 . 2007-12-04 18:12 25,280 --a------ C:\WINDOWS\system32\drivers\hamachi.sys

2007-12-04 16:17 . 2007-12-04 16:18 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Ventrilo

2007-12-04 16:16 . 2007-12-04 16:16 <DIR> d-------- C:\Programfiler\Ventrilo

2007-12-03 23:17 . 2007-02-19 14:26 4,939,776 --a------ C:\WINDOWS\system32\stacgui.cpl

2007-12-03 23:17 . 2007-02-19 14:26 1,601,536 --a------ C:\WINDOWS\system32\stlang.dll

2007-12-03 23:17 . 2007-02-19 14:26 303,104 --a------ C:\WINDOWS\stsystra.exe

2007-12-03 23:17 . 2007-02-19 14:27 90,112 --a------ C:\WINDOWS\system32\stacsv.exe

2007-12-03 22:49 . 2007-12-03 22:49 <DIR> d-------- C:\Programfiler\DellTPad

2007-12-03 22:49 . 2006-11-02 08:09 1,419,232 --a------ C:\WINDOWS\system32\WdfCoInstaller01005.dll

2007-12-03 22:49 . 2007-06-25 18:53 155,136 --a------ C:\WINDOWS\system32\drivers\Apfiltr.sys

2007-12-03 22:49 . 2007-06-25 19:51 100,418 --a------ C:\WINDOWS\system32\Vxdif.dll

2007-12-03 22:49 . 2007-12-03 22:49 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf

2007-12-03 22:49 . 2007-12-03 22:49 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_Apfiltr_01005.Wdf

2007-12-03 22:13 . 2007-12-03 22:13 <DIR> d--h----- C:\WINDOWS\PIF

2007-12-03 03:33 . 2007-12-21 23:58 54,156 --ah----- C:\WINDOWS\QTFont.qfn

2007-12-03 03:33 . 2007-12-03 03:33 1,409 --a------ C:\WINDOWS\QTFont.for

2007-12-03 03:32 . 2007-12-03 03:32 <DIR> d-------- C:\Programfiler\Apple Software Update

2007-12-03 03:32 . 2007-12-03 03:32 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Apple

2007-12-03 01:16 . 2007-12-03 01:16 <DIR> d-------- C:\Programfiler\Project64 1.6

2007-12-03 00:30 . 2007-12-21 22:04 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Avg7

2007-12-02 12:21 . 2007-12-02 12:21 <DIR> d-------- C:\Programfiler\Fellesfiler\Adobe

2007-12-01 17:00 . 2007-12-01 17:00 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\SUPERAntiSpyware.com

2007-12-01 16:59 . 2007-12-21 15:26 <DIR> d-------- C:\Programfiler\SUPERAntiSpyware

2007-12-01 16:59 . 2007-12-01 16:59 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\SUPERAntiSpyware.com

2007-12-01 16:58 . 2007-12-04 16:16 <DIR> d-------- C:\Programfiler\Fellesfiler\Wise Installation Wizard

2007-12-01 15:55 . 2007-12-01 15:55 <DIR> d-------- C:\Programfiler\Sports Interactive

2007-12-01 08:07 . 2007-12-01 08:07 <DIR> d-------- C:\Programfiler\Microsoft CAPICOM 2.1.0.2

2007-12-01 07:59 . 2007-12-01 07:59 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Sports Interactive

2007-12-01 06:16 . 2007-12-01 06:16 1,152 --a------ C:\WINDOWS\mozver.dat

2007-12-01 05:11 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll

2007-12-01 05:11 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll

2007-12-01 05:11 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui

2007-11-30 22:07 . 2007-12-02 23:56 <DIR> d-------- C:\Programfiler\Fellesfiler\Symantec Shared

2007-11-30 21:08 . 2007-12-19 16:53 <DIR> d-------- C:\Programfiler\mIRC

2007-11-30 21:08 . 2007-12-19 16:56 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\mIRC

2007-11-30 20:48 . 2007-11-30 20:48 <DIR> d-------- C:\Documents and Settings\All Users\Programdata\Azureus

2007-11-30 20:47 . 2007-11-30 20:47 <DIR> dr-h----- C:\Documents and Settings\SomeUser\Programdata\SecuROM

2007-11-30 20:47 . 2007-12-21 21:53 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Azureus

2007-11-30 20:47 . 2007-11-30 20:47 107,888 --a------ C:\WINDOWS\system32\CmdLineExt.dll

2007-11-30 20:44 . 2007-11-30 20:46 <DIR> d--h----- C:\Programfiler\Zero G Registry

2007-11-30 20:44 . 2007-11-30 20:44 <DIR> d--h----- C:\Documents and Settings\SomeUser\InstallAnywhere

2007-11-30 20:36 . 2007-12-01 00:13 <DIR> d-------- C:\Programfiler\DAEMON Tools

2007-11-30 20:36 . 2007-11-30 20:36 223,128 --a------ C:\WINDOWS\system32\drivers\dtscsi.sys

2007-11-30 20:18 . 2007-11-30 20:18 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\DAEMON Tools Pro

2007-11-30 20:17 . 2007-11-30 20:20 <DIR> d-------- C:\Programfiler\DAEMON Tools Pro

2007-11-30 20:14 . 2007-11-30 20:14 685,816 --a------ C:\WINDOWS\system32\drivers\sptd.sys

2007-11-30 20:06 . 2007-12-20 00:10 <DIR> d-------- C:\Programfiler\Azureus

2007-11-30 19:11 . 2001-10-06 13:36 12,160 --a------ C:\WINDOWS\system32\drivers\mouhid.sys

2007-11-30 19:11 . 2001-10-06 13:36 12,160 --a--c--- C:\WINDOWS\system32\dllcache\mouhid.sys

2007-11-30 19:11 . 2001-08-17 22:02 9,600 --a------ C:\WINDOWS\system32\drivers\hidusb.sys

2007-11-30 19:11 . 2001-08-17 22:02 9,600 --a--c--- C:\WINDOWS\system32\dllcache\hidusb.sys

2007-11-30 17:44 . 2007-12-21 23:59 <DIR> d-------- C:\Programfiler\Steam

2007-11-30 16:38 . 2007-12-11 00:02 <DIR> d-------- C:\Programfiler\DC++

2007-11-30 16:38 . 2007-11-30 16:38 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\vlc

2007-11-30 16:37 . 2007-11-30 16:37 <DIR> d-------- C:\Programfiler\VideoLAN

2007-11-30 16:28 . 2007-11-30 16:28 <DIR> d-------- C:\Programfiler\Winamp

2007-11-30 16:28 . 2007-11-30 16:32 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Winamp

2007-11-30 16:25 . 2007-11-30 16:25 <DIR> d-------- C:\Programfiler\CCleaner

2007-11-30 16:24 . 2007-11-30 16:24 <DIR> d-------- C:\Programfiler\Lavasoft

2007-11-30 16:24 . 2007-11-30 16:24 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Lavasoft

2007-11-30 16:20 . 2007-12-20 12:38 <DIR> d-------- C:\Programfiler\Bizipoker3D

2007-11-30 16:08 . 2007-11-30 16:08 <DIR> d-------- C:\Microgaming

2007-11-30 16:08 . 2007-12-21 18:46 <DIR> d-------- C:\Documents and Settings\SomeUser\Programdata\Microgaming

2007-11-30 14:29 . 2007-11-30 15:58 <DIR> d-------- C:\Documents and Settings\SomeUser\Contacts

2007-11-30 14:18 . 2007-11-30 14:28 <DIR> d-------- C:\Programfiler\Windows Live

 

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2007-11-22 09:20 --------- d-----w C:\Programfiler\Fellesfiler\SpeechEngines

2007-11-22 09:20 --------- d-----w C:\Programfiler\Fellesfiler\ODBC

2007-11-22 08:40 --------- d-----w C:\Programfiler\microsoft frontpage

2007-11-22 08:38 --------- d-----w C:\Programfiler\Elektroniske tjenester

2007-11-22 08:37 --------- d-----w C:\Programfiler\Fellesfiler\Tjenester

2007-11-22 08:37 --------- d-----w C:\Programfiler\Fellesfiler\MSSoap

2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys

2007-10-29 22:45 1,290,752 ----a-w C:\WINDOWS\system32\quartz.dll

2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll

2007-10-18 10:31 51,224 ----a-w C:\WINDOWS\system32\sirenacm.dll

2007-10-09 18:17 806,912 ----a-w C:\WINDOWS\system32\BCMLogon.dll

2007-10-09 18:17 753,664 ----a-w C:\WINDOWS\system32\bcm1xsup.dll

2007-10-09 18:17 69,632 ----a-w C:\WINDOWS\system32\bcmwlpkt.dll

2007-10-09 18:17 65,536 ----a-w C:\WINDOWS\system32\wltrynt.dll

2007-10-09 18:17 278,528 ----a-w C:\WINDOWS\system32\bcmwlu00.exe

2007-10-09 18:17 24,064 ----a-w C:\WINDOWS\system32\WLTRYSVC.EXE

2007-10-09 18:17 2,682,880 ----a-w C:\WINDOWS\system32\vcredist_x86.exe

2007-10-09 18:17 2,670,592 ----a-w C:\WINDOWS\system32\WLBCGCBPRO731.DLL

2007-10-09 18:17 2,183,168 ----a-w C:\WINDOWS\system32\WLTRAY.EXE

2007-10-09 18:17 139,264 ----a-w C:\WINDOWS\system32\preflib.dll

2007-10-09 18:17 1,921,024 ----a-w C:\WINDOWS\system32\BCMWLTRY.EXE

.

 

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MsnMsgr"="C:\Programfiler\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34]

"Steam"="C:\Programfiler\Steam\Steam.exe" [2007-11-30 17:45]

"SUPERAntiSpyware"="C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2007-06-21 14:06]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 13:00]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Broadcom Wireless Manager UI"="C:\WINDOWS\system32\WLTRAY.exe" [2007-10-09 19:17]

"ATICCC"="C:\Programfiler\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-09-25 09:12]

"EPA_EZ_GPO_Tool"="C:\WINDOWS\system32\EZ_GPO_Tool.exe" [2007-08-05 20:04]

"SunJavaUpdateSched"="C:\Programfiler\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11]

"Synchronization Manager"="C:\WINDOWS\system32\mobsync.exe" [2004-08-04 13:00]

"WinampAgent"="C:\Programfiler\Winamp\winampa.exe" []

"DAEMON Tools"="C:\Programfiler\DAEMON Tools\daemon.exe" [2005-12-10 15:57]

"Adobe Reader Speed Launcher"="C:\Programfiler\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51]

"Apoint"="C:\Programfiler\DellTPad\Apoint.exe" [2007-07-02 13:29]

"SigmatelSysTrayApp"="stsystra.exe" [2007-02-19 14:26 C:\WINDOWS\stsystra.exe]

"QuickTime Task"="C:\Programfiler\QuickTime\QTTask.exe" [2007-12-11 10:56]

"iTunesHelper"="C:\Programfiler\iTunes\iTunesHelper.exe" [2007-12-11 12:10]

"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-12-21 22:02]

 

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 13:00]

"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2007-12-21 21:40]

 

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]

"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Programfiler\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 13:55 77824]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]

C:\Programfiler\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 13:41 294912 C:\Programfiler\SUPERAntiSpyware\SASWINLO.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\group policy\state\S-1-5-21-2534152711-3714080840-1993296370-21673\Scripts\Logon\0\0]

"Script"=\\gvs.no\SYSVOL\gvs.no\scripts\felles.bat

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\group policy\state\S-1-5-21-2534152711-3714080840-1993296370-21673\Scripts\Logon\1\0]

"Script"=\\gvs.no\sysvol\gvs.no\scripts\felles.bat

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\group policy\state\S-1-5-21-2534152711-3714080840-1993296370-500\Scripts\Logon\0\0]

"Script"=\\gvs.no\sysvol\gvs.no\scripts\felles.bat

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

@="Driver"

 

R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;C:\Programfiler\Broadcom\ASFIPMon\AsfIpMon.exe -service []

R2 EPA_GPO_PMService;Energy Star EZ GPO Power Management Configuration Tool;C:\WINDOWS\system32\PMService.exe [2007-08-05 20:05]

S3 PVUSB;CESG502 USB Driver;C:\WINDOWS\system32\DRIVERS\CESG502.sys [2002-06-12 21:50]

 

*Newly Created Service* - CATCHME

*Newly Created Service* - PROCEXP90

.

Contents of the 'Scheduled Tasks' folder

"2007-12-15 20:59:02 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"

- C:\Programfiler\Apple Software Update\SoftwareUpdate.exe

.

**************************************************************************

 

catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2007-12-22 00:41:49

Windows 5.1.2600 Service Pack 2 NTFS

 

scanning hidden processes ...

 

scanning hidden autostart entries ...

 

scanning hidden files ...

 

scan completed successfully

hidden files: 0

 

**************************************************************************

.

Completion time: 2007-12-22 0:42:46

.

2007-12-14 02:02:14 --- E O F ---

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
  • Hvem er aktive   0 medlemmer

    • Ingen innloggede medlemmer aktive
×
×
  • Opprett ny...