ComboFix 10-03-09.08 - Gunnar Nielsen 10-03-2010 18:08:57.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.45.1030.18.1023.548 [GMT 1:00]
Kører fra: c:\documents and settings\Gunnar Nielsen\Skrivebord\combo\ComboFix.exe
Kommandoer benyttet :: c:\documents and settings\Gunnar Nielsen\Skrivebord\combo\CFScript.txt
AV: ESET Smart Security 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personlig firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
((((((((((((((((((((((((((((((((((((((( Andet, der er slettet )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\recycler\S-1-5-21-725345543-1425521274-2147175445-1004
.
((((((((((((((((((((((((((((( Filer skabt fra 2010-02-10 til 2010-03-10 )))))))))))))))))))))))))))))))))))
.
2010-03-09 16:50 . 2001-08-17 19:11 48736 -c—a-w- c:\windows\system32\dllcache\srwlnd5.sys
2010-03-09 16:50 . 2001-10-04 16:07 99328 -c—a-w- c:\windows\system32\dllcache\srusd.dll
2010-03-09 16:49 . 2001-10-04 16:07 24660 -c—a-w- c:\windows\system32\dllcache\spxupchk.dll
2010-03-09 16:49 . 2001-08-17 20:51 61824 -c—a-w- c:\windows\system32\dllcache\speed.sys
2010-03-09 16:49 . 2001-10-04 16:07 106584 -c—a-w- c:\windows\system32\dllcache\spdports.dll
2010-03-09 16:48 . 2001-08-17 21:07 19072 -c—a-w- c:\windows\system32\dllcache\sparrow.sys
2010-03-09 16:48 . 2001-08-17 20:56 7552 -c—a-w- c:\windows\system32\dllcache\sonypvu1.sys
2010-03-09 16:48 . 2001-08-17 19:51 37040 -c—a-w- c:\windows\system32\dllcache\sonypi.sys
2010-03-09 16:47 . 2001-10-04 16:07 114688 -c—a-w- c:\windows\system32\dllcache\sonypi.dll
2010-03-09 16:47 . 2001-08-17 19:51 20752 -c—a-w- c:\windows\system32\dllcache\sonync.sys
2010-03-09 16:47 . 2001-08-17 20:53 9600 -c—a-w- c:\windows\system32\dllcache\sonymc.sys
2010-03-09 16:47 . 2008-04-13 18:40 7552 -c—a-w- c:\windows\system32\dllcache\sonyait.sys
2010-03-09 16:46 . 2001-08-17 20:53 7040 -c—a-w- c:\windows\system32\dllcache\snyaitmc.sys
2010-03-09 16:46 . 2001-08-17 19:51 58368 -c—a-w- c:\windows\system32\dllcache\smiminib.sys
2010-03-09 16:45 . 2001-10-04 16:07 147200 -c—a-w- c:\windows\system32\dllcache\smidispb.dll
2010-03-09 16:45 . 2001-08-17 19:12 25034 -c—a-w- c:\windows\system32\dllcache\smcpwr2n.sys
2010-03-09 16:45 . 2001-10-04 15:51 35913 -c—a-w- c:\windows\system32\dllcache\smcirda.sys
2010-03-09 16:45 . 2001-08-17 19:12 24576 -c—a-w- c:\windows\system32\dllcache\smc8000n.sys
2010-03-09 16:44 . 2001-08-17 20:57 6784 -c—a-w- c:\windows\system32\dllcache\smbhc.sys
2010-03-09 16:44 . 2008-04-13 18:36 6912 -c—a-w- c:\windows\system32\dllcache\smbclass.sys
2010-03-09 16:44 . 2008-04-13 18:36 16000 -c—a-w- c:\windows\system32\dllcache\smbbatt.sys
2010-03-09 16:44 . 2001-10-04 16:07 45568 -c—a-w- c:\windows\system32\dllcache\smb3w.dll
2010-03-09 16:44 . 2001-10-04 16:07 33792 -c—a-w- c:\windows\system32\dllcache\smb0w.dll
2010-03-09 16:43 . 2001-10-04 16:07 28672 -c—a-w- c:\windows\system32\dllcache\sma0w.dll
2010-03-09 16:43 . 2001-10-04 16:07 28160 -c—a-w- c:\windows\system32\dllcache\sm91w.dll
2010-03-09 16:43 . 2008-04-13 18:46 11136 -c—a-w- c:\windows\system32\dllcache\slip.sys
2010-03-09 16:43 . 2004-08-03 20:31 63547 -c—a-w- c:\windows\system32\dllcache\sla30nd5.sys
2010-03-09 16:43 . 2001-08-17 19:12 91294 -c—a-w- c:\windows\system32\dllcache\skfpwin.sys
2010-03-09 16:42 . 2001-10-04 15:51 95018 -c—a-w- c:\windows\system32\dllcache\sk98xwin.sys
2010-03-09 16:42 . 2001-10-04 16:07 157696 -c—a-w- c:\windows\system32\dllcache\sisv256.dll
2010-03-09 16:42 . 2001-08-17 19:50 50432 -c—a-w- c:\windows\system32\dllcache\sisv.sys
2010-03-09 16:42 . 2004-08-03 20:31 32768 -c—a-w- c:\windows\system32\dllcache\sisnic.sys
2010-03-09 16:42 . 2001-10-04 16:07 238592 -c—a-w- c:\windows\system32\dllcache\sisgrv.dll
2010-03-09 16:41 . 2001-08-17 19:50 104064 -c—a-w- c:\windows\system32\dllcache\sisgrp.sys
2010-03-09 16:41 . 2001-10-04 16:07 150144 -c—a-w- c:\windows\system32\dllcache\sis6306v.dll
2010-03-09 16:41 . 2001-08-17 19:50 68608 -c—a-w- c:\windows\system32\dllcache\sis6306p.sys
2010-03-09 16:41 . 2001-10-04 16:07 252032 -c—a-w- c:\windows\system32\dllcache\sis300iv.dll
2010-03-09 16:40 . 2001-08-17 19:50 101760 -c—a-w- c:\windows\system32\dllcache\sis300ip.sys
2010-03-09 16:40 . 2001-10-04 15:50 161760 -c—a-w- c:\windows\system32\dllcache\sgsmusb.sys
2010-03-09 16:39 . 2001-07-21 21:29 18400 -c—a-w- c:\windows\system32\dllcache\sgsmld.sys
2010-03-09 16:39 . 2001-08-17 19:51 98080 -c—a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2010-03-09 16:39 . 2001-10-04 16:07 386560 -c—a-w- c:\windows\system32\dllcache\sgiul50.dll
2010-03-09 16:39 . 2001-08-17 19:19 36480 -c—a-w- c:\windows\system32\dllcache\sfmanm.sys
2010-03-09 16:38 . 2001-10-04 15:50 6784 -c—a-w- c:\windows\system32\dllcache\serscan.sys
2010-03-09 16:38 . 2001-10-04 15:50 17920 -c—a-w- c:\windows\system32\dllcache\sermouse.sys
2010-03-09 16:37 . 2001-08-17 20:53 6912 -c—a-w- c:\windows\system32\dllcache\seaddsmc.sys
2010-03-09 16:37 . 2008-04-13 18:45 11520 -c—a-w- c:\windows\system32\dllcache\scsiscan.sys
2010-03-09 16:37 . 2001-08-17 20:52 11648 -c—a-w- c:\windows\system32\dllcache\scsiprnt.sys
2010-03-09 16:37 . 2001-10-04 15:50 17536 -c—a-w- c:\windows\system32\dllcache\scr111.sys
2010-03-09 16:36 . 2001-10-04 15:50 16640 -c—a-w- c:\windows\system32\dllcache\scmstcs.sys
2010-03-09 16:36 . 2001-08-17 20:51 23936 -c—a-w- c:\windows\system32\dllcache\sccmusbm.sys
2010-03-09 16:36 . 2001-10-04 15:49 23936 -c—a-w- c:\windows\system32\dllcache\sccmn50m.sys
2010-03-09 16:36 . 2008-04-13 18:40 43904 -c—a-w- c:\windows\system32\dllcache\sbp2port.sys
2010-03-09 16:36 . 2001-10-04 16:06 495616 -c—a-w- c:\windows\system32\dllcache\sblfx.dll
2010-03-09 16:35 . 2001-08-17 19:50 75392 -c—a-w- c:\windows\system32\dllcache\s3savmxm.sys
2010-03-09 16:35 . 2001-10-04 16:07 245632 -c—a-w- c:\windows\system32\dllcache\s3savmx.dll
2010-03-09 16:35 . 2001-08-17 19:50 77824 -c—a-w- c:\windows\system32\dllcache\s3sav4m.sys
2010-03-09 16:34 . 2001-10-04 16:07 198400 -c—a-w- c:\windows\system32\dllcache\s3sav4.dll
2010-03-09 16:34 . 2001-08-17 19:50 61504 -c—a-w- c:\windows\system32\dllcache\s3sav3dm.sys
2010-03-09 16:34 . 2001-10-04 16:07 179264 -c—a-w- c:\windows\system32\dllcache\s3sav3d.dll
2010-03-09 16:34 . 2001-10-04 16:07 210496 -c—a-w- c:\windows\system32\dllcache\s3mvirge.dll
2010-03-09 16:34 . 2001-10-04 16:07 62496 -c—a-w- c:\windows\system32\dllcache\s3mtrio.dll
2010-03-09 16:33 . 2001-08-17 19:50 41216 -c—a-w- c:\windows\system32\dllcache\s3mt3d.sys
2010-03-09 16:33 . 2001-10-04 16:07 182272 -c—a-w- c:\windows\system32\dllcache\s3mt3d.dll
2010-03-09 16:33 . 2001-08-17 19:50 166720 -c—a-w- c:\windows\system32\dllcache\s3m.sys
2010-03-09 16:33 . 2001-08-17 20:57 65664 -c—a-w- c:\windows\system32\dllcache\s3legacy.sys
2010-03-09 16:32 . 2001-10-04 16:07 83456 -c—a-w- c:\windows\system32\dllcache\rwia450.dll
2010-03-09 16:32 . 2001-10-04 16:07 80896 -c—a-w- c:\windows\system32\dllcache\rwia430.dll
2010-03-09 16:32 . 2008-04-14 16:05 29696 -c—a-w- c:\windows\system32\dllcache\rw450ext.dll
2010-03-09 16:32 . 2008-04-14 16:05 28160 -c—a-w- c:\windows\system32\dllcache\rw430ext.dll
2010-03-09 16:32 . 2004-08-03 20:31 20992 -c—a-w- c:\windows\system32\dllcache\rtl8139.sys
2010-03-09 16:32 . 2001-08-17 19:12 19017 -c—a-w- c:\windows\system32\dllcache\rtl8029.sys
2010-03-09 16:31 . 2001-08-17 19:19 30720 -c—a-w- c:\windows\system32\dllcache\rthwcls.sys
2010-03-09 16:31 . 2001-10-04 16:07 9728 -c—a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2010-03-09 16:31 . 2001-08-17 19:19 3840 -c—a-w- c:\windows\system32\dllcache\rpfun.sys
2010-03-09 16:31 . 2008-04-14 15:38 79104 -c—a-w- c:\windows\system32\dllcache\rocket.sys
2010-03-09 16:30 . 2001-08-17 19:12 37563 -c—a-w- c:\windows\system32\dllcache\rlnet5.sys
2010-03-09 16:30 . 2001-10-04 16:06 86097 -c—a-w- c:\windows\system32\dllcache\reslog32.dll
2010-03-09 16:29 . 2001-08-17 20:51 19584 -c—a-w- c:\windows\system32\dllcache\rasirda.sys
2010-03-09 16:29 . 2001-10-04 15:47 714858 -c—a-w- c:\windows\system32\dllcache\r2mdmkxx.sys
2010-03-09 16:29 . 2001-10-04 15:47 899274 -c—a-w- c:\windows\system32\dllcache\r2mdkxga.sys
2010-03-09 16:28 . 2001-10-04 16:07 41472 -c—a-w- c:\windows\system32\dllcache\qvusd.dll
2010-03-09 16:28 . 2001-08-17 20:53 3328 -c—a-w- c:\windows\system32\dllcache\qv2kux.sys
2010-03-09 16:28 . 2001-08-17 20:52 49024 -c—a-w- c:\windows\system32\dllcache\ql1280.sys
2010-03-09 16:27 . 2001-08-17 20:52 40448 -c—a-w- c:\windows\system32\dllcache\ql1240.sys
2010-03-09 16:27 . 2001-08-17 20:52 45312 -c—a-w- c:\windows\system32\dllcache\ql12160.sys
2010-03-09 16:27 . 2001-08-17 20:52 33152 -c—a-w- c:\windows\system32\dllcache\ql10wnt.sys
2010-03-09 16:27 . 2001-08-17 20:52 40320 -c—a-w- c:\windows\system32\dllcache\ql1080.sys
2010-03-09 16:27 . 2008-04-13 18:40 6016 -c—a-w- c:\windows\system32\dllcache\qic157.sys
2010-03-09 16:26 . 2001-08-17 20:28 130942 -c—a-w- c:\windows\system32\dllcache\ptserlv.sys
2010-03-09 16:26 . 2001-08-17 20:28 112574 -c—a-w- c:\windows\system32\dllcache\ptserlp.sys
2010-03-09 16:26 . 2001-08-17 20:28 128286 -c—a-w- c:\windows\system32\dllcache\ptserli.sys
2010-03-09 16:26 . 2008-04-14 16:05 159232 -c—a-w- c:\windows\system32\dllcache\ptpusd.dll
2010-03-09 16:26 . 2001-10-04 16:07 5632 -c—a-w- c:\windows\system32\dllcache\ptpusb.dll
2010-03-09 16:25 . 2001-10-04 16:07 35328 -c—a-w- c:\windows\system32\dllcache\psisload.dll
2010-03-09 16:25 . 2008-04-14 16:05 363520 -c—a-w- c:\windows\system32\dllcache\psisdecd.dll
2010-03-09 16:25 . 2001-10-04 15:47 16256 -c—a-w- c:\windows\system32\dllcache\pscr.sys
2010-03-09 16:25 . 2008-04-13 18:41 17664 -c—a-w- c:\windows\system32\dllcache\ppa3.sys
2010-03-09 16:24 . 2001-08-17 20:53 17792 -c—a-w- c:\windows\system32\dllcache\ppa.sys
2010-03-09 16:24 . 2008-04-13 18:40 8832 -c—a-w- c:\windows\system32\dllcache\powerfil.sys
2010-03-09 16:24 . 2001-08-17 20:53 7168 -c—a-w- c:\windows\system32\dllcache\pnrmc.sys
2010-03-09 16:23 . 2001-10-04 16:07 121344 -c—a-w- c:\windows\system32\dllcache\phvfwext.dll
2010-03-09 16:23 . 2001-08-17 21:07 19840 -c—a-w- c:\windows\system32\dllcache\philtune.sys
2010-03-09 16:23 . 2001-08-17 21:04 92416 -c—a-w- c:\windows\system32\dllcache\phildec.sys
2010-03-09 16:23 . 2001-08-17 21:04 173696 -c—a-w- c:\windows\system32\dllcache\philcam2.sys
2010-03-09 16:22 . 2001-08-17 21:04 75776 -c—a-w- c:\windows\system32\dllcache\philcam1.sys
2010-03-09 16:22 . 2001-10-04 16:07 16384 -c—a-w- c:\windows\system32\dllcache\philcam1.dll
2010-03-09 16:22 . 2008-04-14 16:04 259328 -c—a-w- c:\windows\system32\dllcache\perm3dd.dll
2010-03-09 16:22 . 2008-04-13 18:44 28032 -c—a-w- c:\windows\system32\dllcache\perm3.sys
2010-03-09 16:22 . 2008-04-14 16:04 211584 -c—a-w- c:\windows\system32\dllcache\perm2dll.dll
2010-03-09 16:22 . 2008-04-13 18:44 27904 -c—a-w- c:\windows\system32\dllcache\perm2.sys
2010-03-09 16:21 . 2001-08-17 21:07 5504 -c—a-w- c:\windows\system32\dllcache\perc2hib.sys
2010-03-09 16:21 . 2001-08-17 21:07 27296 -c—a-w- c:\windows\system32\dllcache\perc2.sys
2010-03-09 16:21 . 2004-08-03 20:06 169984 -c—a-w- c:\windows\system32\dllcache\pcx500.sys
2010-03-09 16:21 . 2001-10-04 16:07 86016 -c—a-w- c:\windows\system32\dllcache\pctspk.exe
2010-03-09 16:21 . 2001-08-17 19:11 35328 -c—a-w- c:\windows\system32\dllcache\pcntpci5.sys
2010-03-09 16:20 . 2001-08-17 19:11 29769 -c—a-w- c:\windows\system32\dllcache\pcntn5m.sys
2010-03-09 16:20 . 2001-08-17 19:11 30282 -c—a-w- c:\windows\system32\dllcache\pcntn5hl.sys
2010-03-09 16:20 . 2001-08-17 19:12 26153 -c—a-w- c:\windows\system32\dllcache\pcmlm56.sys
2010-03-09 16:20 . 2004-08-03 20:31 29502 -c—a-w- c:\windows\system32\dllcache\pca200e.sys
2010-03-09 16:20 . 2001-08-17 19:12 30495 -c—a-w- c:\windows\system32\dllcache\pc100nds.sys
2010-03-09 16:19 . 2001-10-04 16:06 42496 -c—a-w- c:\windows\system32\dllcache\ovui2rc.dll
2010-03-09 16:19 . 2001-10-04 16:07 44544 -c—a-w- c:\windows\system32\dllcache\ovui2.dll
2010-03-09 16:19 . 2001-08-17 21:05 25216 -c—a-w- c:\windows\system32\dllcache\ovsound2.sys
2010-03-09 16:19 . 2001-10-04 16:07 39424 -c—a-w- c:\windows\system32\dllcache\ovcoms.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-10 17:23 . 2009-10-28 11:03 ———— d——-w- c:\documents and settings\Gunnar Nielsen\Application Data\Skype
2010-03-10 17:23 . 2009-11-04 11:11 ———— d——-w- c:\documents and settings\Gunnar Nielsen\Application Data\skypePM
2010-03-08 19:31 . 2009-10-29 14:38 ———— d——-w- c:\programmer\Mozilla Thunderbird
2010-03-07 15:52 . 2010-03-07 13:47 4708 ——a-w- c:\windows\system32\PerfStringBackup.TMP
2010-03-07 15:52 . 2004-08-27 12:00 79312 ——a-w- c:\windows\system32\perfc006.dat
2010-03-07 15:52 . 2004-08-27 12:00 451242 ——a-w- c:\windows\system32\perfh006.dat
2010-03-07 15:35 . 2009-10-28 11:03 ———— d——-w- c:\programmer\Google
2010-03-07 15:21 . 2009-10-25 15:13 ———— d——-w- c:\programmer\Tracker Software
2010-03-07 13:55 . 2009-10-24 21:03 47120 ——a-w- c:\documents and settings\Gunnar Nielsen\Lokale indstillinger\Application Data\GDIPFONTCACHEV1.DAT
2010-03-07 13:52 . 2010-03-04 17:02 ———— d——-w- c:\programmer\Malwarebytes’ Anti-Malware
2010-03-07 13:52 . 2010-03-07 13:52 ———— d——-r- c:\documents and settings\Gunnar Nielsen\Application Data\Brother
2010-03-07 13:51 . 2010-03-07 13:51 ———— d——-w- c:\programmer\Microsoft.NET
2010-03-04 17:03 . 2010-03-04 17:03 ———— d——-w- c:\documents and settings\Gunnar Nielsen\Application Data\Malwarebytes
2010-03-04 17:02 . 2010-03-04 17:02 ———— d——-w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-03-04 16:55 . 2009-10-25 17:07 1 ——a-w- c:\documents and settings\Gunnar Nielsen\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-03-03 09:09 . 2009-10-24 21:35 ———— d—h—w- c:\programmer\InstallShield Installation Information
2010-02-12 10:03 . 2010-03-05 16:17 293376 ———w- c:\windows\system32\browserchoice.exe
2010-01-07 15:07 . 2010-03-04 17:02 38224 ——a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-07 15:07 . 2010-03-04 17:02 19160 ——a-w- c:\windows\system32\drivers\mbam.sys
2009-12-31 16:50 . 2004-08-27 12:00 353792 ——a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2004-08-27 12:00 916480 ——a-w- c:\windows\system32\wininet.dll
2009-12-21 19:08 . 2004-08-27 12:00 916480 ——a-w- c:\windows\system32\wininet(2)(2).dll
2009-12-21 19:08 . 2004-08-27 12:00 1208832 ——a-w- c:\windows\system32\urlmon(2)(2).dll
2009-12-21 19:07 . 2009-03-08 02:32 1985536 ——a-w- c:\windows\system32\iertutil(2)(2).dll
2009-12-21 19:07 . 2009-03-08 02:39 11070464 ——a-w- c:\windows\system32\ieframe(2)(2).dll
2009-12-17 07:41 . 2009-10-24 17:49 344576 ——a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:09 . 2004-08-27 12:00 33280 ——a-w- c:\windows\system32\csrsrv.dll
2009-12-14 07:09 . 2004-08-27 12:00 33280 ——a-w- c:\windows\system32\csrsrv(2)(2).dll
.
((((((((((((((((((((((((((((((((((( Start steder i reg.basen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“swg”=“c:\programmer\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe” [2009-10-28 39408]
“Skype”=“c:\programmer\Skype\Phone\Skype.exe” [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“SunJavaUpdateSched”=“c:\programmer\Java\jre6\bin\jusched.exe” [2009-10-11 149280]
“egui”=“c:\programmer\ESET\ESET Smart Security\egui.exe” [2009-09-11 2054360]
“SoundMAXPnP”=“c:\programmer\Analog Devices\Core\smax4pnp.exe” [2009-10-25 925696]
“StartCCC”=“c:\programmer\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe” [2009-09-18 98304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“c:\windows\system32\CTFMON.EXE” [2008-04-14 15360]
c:\documents and settings\Gunnar Nielsen\Menuen Start\Programmer\Start\
OpenOffice.org 3.1.lnk - c:\programmer\OpenOffice.org 3\program\quickstart.exe [2009-8-18 384000]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
“EnableFirewall”= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
“%windir%\\system32\\sessmgr.exe”=
“%windir%\\Network Diagnostic\\xpnetdiag.exe”=
“c:\\Programmer\\Skype\\Plugin Manager\\skypePM.exe”=
“c:\\Programmer\\Skype\\Phone\\Skype.exe”=
R0 m5288;m5288;c:\windows\system32\drivers\m5288.sys [24-10-2009 22:35 209536]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [11-09-2009 07:23 108792]
R2 ekrn;ESET Service;c:\programmer\ESET\ESET Smart Security\ekrn.exe [11-09-2009 07:24 735960]
.
Indhold af mappen ‘Planlagte Opgaver’
2010-03-10 c:\windows\Tasks\User_Feed_Synchronization-{56262CCF-5C8D-423B-9A13-2D92CE21A2ED}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
———- Yderligere scanning———-
.
uStart Page = hxxp://www.google.dk/
IE: E&ksporter; til Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Google Sidewiki ... - c:\programmer\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-10 18:22
Windows 5.1.2600 Service Pack 3 NTFS
scanner skjulte processer ...
scanner skjulte autostarter ...
scanner skjulte filer ...
scanning gennemført med succes
skjulte filer: 0
**************************************************************************
.
——————————- DLLs startet under kørende Processer——————————-
- - - - - - - > ‘winlogon.exe’(928)
c:\windows\system32\Ati2evxx.dll
- - - - - - - > ‘explorer.exe’(2764)
c:\windows\system32\webcheck.dll
.
————————————Andre kørende processer————————————
.
c:\programmer\Java\jre6\bin\jqs.exe
c:\programmer\OpenOffice.org 3\program\soffice.exe
c:\programmer\OpenOffice.org 3\program\soffice.bin
c:\windows\system32\wbem\wmiapsrv.exe
c:\programmer\Skype\Plugin Manager\skypePM.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Gennemført tid: 2010-03-10 18:27:40 - maskinen blev genstartet
ComboFix-quarantined-files.txt 2010-03-10 17:27
Pre-Kørsel: 68.771.434.496 byte ledig
Post-Kørsel: 68.964.319.232 byte ledig
WindowsXP-KB310994-SP2-Home-BootDisk-DAN.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT=“Microsoft Windows Recovery Console” /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS=“Microsoft Windows XP Home Edition” /noexecute=optin /fastdetect
- - End Of File - - 5664F1431B0ABD35BFE15BE7CDAD8657