Ændret indstillinger efter besøg.
Antal indlæg: 150

Tjaaa… Overskriften siger ikke så meget, men vil prøve at beskrive det bedre..

Efter et besøg på en hjemmeside, hvor KIS gav sig til at arbejde kraftigt, har jeg nu et problem generelt ..

Jeg kan ikke kigge ind på overskrifter (links) på eks. Tv2’s hjemmeside og facebook teer sig underligt…

Problemet har været værst i Explore, men kunne bedre fungere i Google Chrome, men nu har jeg også problemer der.

F.eks kan jeg ikke klikke videre ind på Spyware forum, fra forsiden, uden at jeg højreklikker og beder den om at åbne.

Troede at KIS havde taget livet af hvad der nu end var kommet ind.

Har scannet med KIS og Malmware uden at der blev fundet noget…

What to doo ???..

Hilsen Nielsen2000

Ps…. Arrrg.. kunne faktisk ikke poste dette her indlæg ... Måtte over på en anden computer for at gøre dette. :-(

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Antal indlæg: 150

Glemte lige at tilføje ....

Kører Win7 .... Alt er opdateret ...

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

Hej                     wink


Lad os lige tjekke.


Download OTL af Oldtimer, gem den på dit skrivebord: 
http://oldtimer.geekstogo.com/OTL.exe
Luk alle åbne vinduer. Klik på OTL ikonet
NB   for Vista/win7, skal du højreklikke på ikonet og Kør som Administrator) for at starte programmet.

Klik så på Run Scan.
·


Det vil give to (2) logfiler på skrivebordet, en kaldet OTL.txt, den anden vil blive navngivet Extras.txt.
Husk, hvor du har gemt disse 2 filer.

Da de er forholdsvis lange, kan du blive nødt til at sende dem i flere indlæg.

Signatur

Sund Computer fornuft

Antal indlæg: 150

Magic ... Du er og bliver min redningsmand, hver gang jeg har nolleret mig ud i et eller andet som jeg ikke fatter en dør af ... cool smile 

Her følger OTL-txt :
OTL logfile created on: 5/23/2012 11:03:05 AM - Run 1
OTL by OldTimer - Version 3.2.43.1   Folder = C:\Users\Britta\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3.86 Gb Total Physical Memory | 2.34 Gb Available Physical Memory | 60.74% Memory free
7.71 Gb Paging File | 6.12 Gb Available in Paging File | 79.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 678.54 Gb Total Space | 628.56 Gb Free Space | 92.63% Space Free | Partition Type: NTFS

Computer Name: BRITTA-PC | User Name: Britta | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/05/23 11:02:26 | 000,595,968 |——| M] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
PRC - [2012/05/14 22:31:23 | 000,351,904 |——| M] (Adobe Systems Incorporated)—C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_235_ActiveX.exe
PRC - [2012/01/03 06:10:42 | 000,063,928 |——| M] (Adobe Systems Incorporated)—C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/07/01 04:51:14 | 000,418,896 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LMutilps32.exe
PRC - [2011/07/01 04:51:14 | 000,343,632 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LMworker.exe
PRC - [2011/07/01 04:51:12 | 001,103,440 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LManager.exe
PRC - [2011/07/01 04:51:12 | 000,353,360 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\dsiwmis.exe
PRC - [2011/05/20 18:44:32 | 000,986,208 |——| M] (CyberLink)—C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
PRC - [2011/04/30 09:32:54 | 000,013,592 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011/04/25 00:15:02 | 000,202,296 |——| M] (Kaspersky Lab ZAO)—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
PRC - [2011/04/22 18:44:14 | 000,244,624 |——| M] (Acer Incorporated)—C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
PRC - [2011/03/31 00:05:00 | 002,009,704 |——| M] (NVIDIA Corporation)—C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011/03/30 00:33:08 | 000,598,312 |——| M] (Nero AG)—C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/01/18 04:52:26 | 000,039,528 |——| M] (Acer Incorporated)—C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
PRC - [2010/12/22 22:25:02 | 002,656,280 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/12/22 22:24:58 | 000,325,656 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010/09/30 12:06:46 | 000,169,408 |——| M] (Adobe Systems Incorporated)—C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe


========== Modules (No Company Name) ==========

MOD - [2011/04/25 00:13:30 | 007,008,656 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtGui4.dll
MOD - [2011/04/25 00:13:28 | 000,192,912 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtSql4.dll
MOD - [2011/04/25 00:13:26 | 001,270,160 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtScript4.dll
MOD - [2011/04/25 00:13:26 | 000,758,160 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtNetwork4.dll
MOD - [2011/04/25 00:13:24 | 002,118,032 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtCore4.dll
MOD - [2011/04/25 00:13:24 | 002,089,360 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtDeclarative4.dll
MOD - [2011/04/20 20:56:28 | 000,025,088 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\imageformats\qgif4.dll
MOD - [2011/03/31 00:05:00 | 000,004,096 |——| M] ()—C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/05/10 23:01:08 | 000,872,552 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe—(ePowerSvc)
SRV:64bit: - [2011/04/22 18:44:14 | 000,244,624 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe—(Live Updater Service)
SRV:64bit: - [2010/09/23 03:10:10 | 000,057,184 |——| M] (Microsoft Corporation) [Disabled | Stopped]—C:\Program Files\Windows Live\Mesh\wlcrasvc.exe—(wlcrasvc)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 |——| M] (Microsoft Corporation) [On_Demand | Stopped]—C:\Program Files\Windows Defender\mpsvc.dll—(WinDefend)
SRV - [2012/01/03 06:10:42 | 000,063,928 |——| M] (Adobe Systems Incorporated) [Auto | Running]—C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe—(AdobeARMservice)
SRV - [2011/07/01 04:51:12 | 000,353,360 |——| M] (Dritek System Inc.) [Auto | Running]—C:\Program Files (x86)\Launch Manager\dsiwmis.exe—(DsiWMIService)
SRV - [2011/04/30 09:32:54 | 000,013,592 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe—(IAStorDataMgrSvc) Intel(R)
SRV - [2011/04/25 00:15:02 | 000,202,296 |——| M] (Kaspersky Lab ZAO) [Auto | Running]—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe—(AVP)
SRV - [2011/03/31 00:05:00 | 002,009,704 |——| M] (NVIDIA Corporation) [Auto | Running]—C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe—(nvUpdatusService)
SRV - [2011/03/30 00:33:08 | 000,598,312 |——| M] (Nero AG) [Auto | Running]—C:\Program Files (x86)\Nero\Update\NASvc.exe—(NAUpdate) @C:\Program Files (x86)
SRV - [2011/01/18 04:52:26 | 000,039,528 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe—(GREGService)
SRV - [2010/12/22 22:25:02 | 002,656,280 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe—(UNS) Intel(R)
SRV - [2010/12/22 22:24:58 | 000,325,656 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe—(LMS) Intel(R)
SRV - [2010/10/12 19:59:12 | 000,206,072 |——| M] (WildTangent, Inc.) [On_Demand | Stopped]—C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe—(GamesAppService)
SRV - [2010/09/30 12:06:46 | 000,169,408 |——| M] (Adobe Systems Incorporated) [Auto | Running]—C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe—(AdobeActiveFileMonitor9.0)
SRV - [2010/03/18 22:16:28 | 000,130,384 |——| M] (Microsoft Corporation) [Auto | Stopped]—C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe—(clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 |——| M] (Microsoft Corporation) [Disabled | Stopped]—C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe—(clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/03/01 08:46:16 | 000,023,408 |——| M] (Microsoft Corporation) [Recognizer | Boot | Unknown]—C:\Windows\SysNative\drivers\fs_rec.sys—(Fs_Rec)
DRV:64bit: - [2012/02/10 21:42:35 | 000,615,728 |——| M] (Kaspersky Lab) [File_System | System | Running]—C:\Windows\SysNative\drivers\klif.sys—(KLIF)
DRV:64bit: - [2011/06/10 20:16:10 | 012,230,912 |——| M] (Intel Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\igdkmd64.sys—(igfx)
DRV:64bit: - [2011/06/08 18:36:14 | 004,729,408 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\BCMWL664.SYS—(BCM43XX)
DRV:64bit: - [2011/05/16 23:57:32 | 000,051,240 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\bScsiMSa.sys—(bScsiMSa)
DRV:64bit: - [2011/05/10 05:42:16 | 000,425,000 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\k57nd60a.sys—(k57nd60a) Broadcom NetLink (TM)
DRV:64bit: - [2011/05/06 19:11:12 | 000,086,056 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\bScsiSDa.sys—(bScsiSDa)
DRV:64bit: - [2011/04/26 20:07:36 | 000,557,848 |——| M] (Intel Corporation) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\iaStor.sys—(iaStor)
DRV:64bit: - [2011/04/05 13:26:26 | 000,142,632 |——| M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\ETD.sys—(ETD)
DRV:64bit: - [2011/03/31 00:05:00 | 000,025,960 |——| M] (NVIDIA Corporation) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\nvpciflt.sys—(nvpciflt)
DRV:64bit: - [2011/03/11 08:41:12 | 000,107,904 |——| M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\amdsata.sys—(amdsata)
DRV:64bit: - [2011/03/11 08:41:12 | 000,027,008 |——| M] (Advanced Micro Devices) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\amdxata.sys—(amdxata)
DRV:64bit: - [2011/03/10 19:36:24 | 000,029,488 |——| M] (Kaspersky Lab ZAO) [Kernel | System | Running]—C:\Windows\SysNative\drivers\klim6.sys—(KLIM6)
DRV:64bit: - [2011/03/04 14:23:28 | 000,011,864 |——| M] (Kaspersky Lab ZAO) [Kernel | System | Running]—C:\Windows\SysNative\drivers\kl2.sys—(kl2)
DRV:64bit: - [2011/03/04 14:23:24 | 000,460,888 |——| M] (Kaspersky Lab ZAO) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\kl1.sys—(KL1)
DRV:64bit: - [2011/01/21 03:15:30 | 000,019,496 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\b57xdmp.sys—(b57xdmp)
DRV:64bit: - [2011/01/21 03:15:28 | 000,067,624 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\b57xdbd.sys—(b57xdbd)
DRV:64bit: - [2010/11/21 05:24:33 | 000,059,392 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\TsUsbFlt.sys—(TsUsbFlt)
DRV:64bit: - [2010/11/21 05:23:47 | 000,109,056 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\sdbus.sys—(sdbus)
DRV:64bit: - [2010/11/21 05:23:47 | 000,078,720 |——| M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\HpSAMD.sys—(HpSAMD)
DRV:64bit: - [2010/11/21 05:23:47 | 000,031,232 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\TsUsbGD.sys—(TsUsbGD)
DRV:64bit: - [2010/10/20 02:34:26 | 000,056,344 |——| M] (Intel Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\HECIx64.sys—(MEIx64) Intel(R)
DRV:64bit: - [2010/10/15 10:28:18 | 000,317,440 |——| M] (Intel(R) Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\IntcDAud.sys—(IntcDAud) Intel(R)
DRV:64bit: - [2010/03/19 12:00:00 | 000,055,856 |——| M] (Sonic Solutions) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\PxHlpa64.sys—(PxHlpa64)
DRV:64bit: - [2009/11/02 21:27:10 | 000,022,544 |——| M] (Kaspersky Lab) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\klmouflt.sys—(klmouflt)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 |——| M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\amdsbs.sys—(amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 |——| M] (LSI Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\lsi_sas2.sys—(LSI_SAS2)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 |——| M] (Promise Technology) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\stexstor.sys—(stexstor)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\evbda.sys—(ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\bxvbda.sys—(b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\b57nd60a.sys—(b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 |——| M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\hcw85cir.sys—(hcw85cir)
DRV - [2009/07/14 03:19:10 | 000,019,008 |——| M] (Microsoft Corporation) [File_System | On_Demand | Stopped]—C:\Windows\SysWOW64\drivers\wimmount.sys—(WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.tv2.dk/
IE - HKCU\..\SearchScopes,DefaultScope = {6D542C77-1520-4B24-9AF5-A40597397A57}
IE - HKCU\..\SearchScopes\{6D542C77-1520-4B24-9AF5-A40597397A57}: “URL” = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie;={inputEncoding?}&oe;={outputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\linkfilter@kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\KavAntiBanner@Kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie;={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl;={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.46\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.46\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.46\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\plugin/npUrlAdvisor.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\plugin/npVKPlugin.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google-s\u00F8gning = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Kaspersky URL-r\u00E5dgiver = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\
CHR - Extension: Virtuelt Tastatur = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\
CHR - Extension: Gmail = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Anti-Banner = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\

O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 |——| M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [AVP] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O8:64bit: - Extra context menu item: E&ksporter; til Microsoft Excel - res://C:\PROGRA~2\MICROS~4\OFFICE11\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Føj til Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm ()
O8 - Extra context menu item: E&ksporter; til Microsoft Excel - res://C:\PROGRA~2\MICROS~4\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Føj til Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm ()
O9:64bit: - Extra Button: &Virtuelt; Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O9:64bit: - Extra Button: URL-&kontrol; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: &Virtuelt; Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: URL-&kontrol; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 88.83.72.106 88.83.68.10 80.71.80.188 80.71.80.189
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{40D51DEA-D2FB-4AF5-A0B8-3141E7EEC628}: DhcpNameServer = 88.83.72.106 88.83.68.10 80.71.80.188 80.71.80.189
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\klogon: DllName - (%SystemRoot%\System32\klogon.dll) - C:\Windows\SysNative\klogon.dll (Kaspersky Lab ZAO)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open]—“%1” %*
O35:64bit: - HKLM\..exefile [open]—“%1” %*
O35 - HKLM\..comfile [open]—“%1” %*
O35 - HKLM\..exefile [open]—“%1” %*
O37:64bit: - HKLM\...com [@ = comfile]—“%1” %*
O37:64bit: - HKLM\...exe [@ = exefile]—“%1” %*
O37 - HKLM\...com [@ = comfile]—“%1” %*
O37 - HKLM\...exe [@ = exefile]—“%1” %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/05/23 11:02:24 | 000,595,968 |——| C] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
[2012/05/23 09:48:12 | 000,000,000 |—-D | C]—C:\Program Files (x86)\ESET
[2012/05/23 09:46:04 | 000,000,000 |—-D | C]—C:\Users\Britta\Desktop\SWF
[2012/05/19 22:24:27 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Local\Diagnostics
[2012/05/18 17:11:18 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Roaming\Malwarebytes
[2012/05/18 17:11:08 | 000,000,000 |—-D | C]—C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes’ Anti-Malware
[2012/05/18 17:11:06 | 000,038,224 |——| C] (Malwarebytes Corporation)—C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2012/05/18 17:11:05 | 000,024,904 |——| C] (Malwarebytes Corporation)—C:\Windows\SysNative\drivers\mbam.sys
[2012/05/18 17:11:05 | 000,000,000 |—-D | C]—C:\Program Files (x86)\Malwarebytes’ Anti-Malware
[2012/05/18 17:11:05 | 000,000,000 |—-D | C]—C:\ProgramData\Malwarebytes
[2012/05/17 11:40:10 | 000,000,000 |—-D | C]—C:\ProgramData\Solidshield
[2012/05/17 11:39:37 | 000,530,776 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_6.dll
[2012/05/17 11:39:37 | 000,528,216 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_6.dll
[2012/05/17 11:39:37 | 000,078,680 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAPOFX1_4.dll
[2012/05/17 11:39:37 | 000,074,072 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAPOFX1_4.dll
[2012/05/17 11:39:36 | 000,238,936 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_6.dll
[2012/05/17 11:39:36 | 000,176,984 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_6.dll
[2012/05/17 11:39:35 | 000,024,920 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_7.dll
[2012/05/17 11:39:35 | 000,022,360 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_7.dll
[2012/05/17 11:39:32 | 000,517,960 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_5.dll
[2012/05/17 11:39:29 | 000,238,936 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_5.dll
[2012/05/17 11:39:29 | 000,176,968 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_5.dll
[2012/05/17 11:39:28 | 005,554,512 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dcsx_42.dll
[2012/05/17 11:39:28 | 005,501,792 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dcsx_42.dll
[2012/05/17 11:39:28 | 002,582,888 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_42.dll
[2012/05/17 11:39:27 | 000,285,024 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx11_42.dll
[2012/05/17 11:39:27 | 000,235,344 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx11_42.dll
[2012/05/17 11:39:20 | 002,475,352 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_42.dll
[2012/05/17 11:39:15 | 002,430,312 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_41.dll
[2012/05/17 11:39:15 | 000,520,544 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_41.dll
[2012/05/17 11:39:14 | 005,425,496 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_41.dll
[2012/05/17 11:39:14 | 004,178,264 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DX9_41.dll
[2012/05/17 11:39:11 | 000,521,560 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_4.dll
[2012/05/17 11:39:11 | 000,517,448 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_4.dll
[2012/05/17 11:39:11 | 000,235,352 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_4.dll
[2012/05/17 11:39:11 | 000,174,936 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_4.dll
[2012/05/17 11:39:11 | 000,073,544 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAPOFX1_3.dll
[2012/05/17 11:39:09 | 000,024,920 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_6.dll
[2012/05/17 11:39:09 | 000,022,360 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_6.dll
[2012/05/17 11:39:06 | 002,605,920 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_40.dll
[2012/05/17 11:39:06 | 002,036,576 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_40.dll
[2012/05/17 11:39:06 | 000,519,000 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_40.dll
[2012/05/17 11:39:06 | 000,452,440 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_40.dll
[2012/05/17 11:39:05 | 005,631,312 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_40.dll
[2012/05/17 11:39:03 | 000,518,480 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_3.dll
[2012/05/17 11:39:03 | 000,514,384 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_3.dll
[2012/05/17 11:39:03 | 000,074,576 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAPOFX1_2.dll
[2012/05/17 11:39:03 | 000,070,992 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAPOFX1_2.dll
[2012/05/17 11:39:02 | 000,235,856 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_3.dll
[2012/05/17 11:39:02 | 000,175,440 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_3.dll
[2012/05/17 11:38:58 | 000,025,936 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_5.dll
[2012/05/17 11:38:58 | 000,023,376 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_5.dll
[2012/05/17 11:38:57 | 000,513,544 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_2.dll
[2012/05/17 11:38:57 | 000,509,448 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_2.dll
[2012/05/17 11:38:57 | 000,072,200 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAPOFX1_1.dll
[2012/05/17 11:38:57 | 000,068,616 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAPOFX1_1.dll
[2012/05/17 11:38:56 | 000,238,088 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_2.dll
[2012/05/17 11:38:56 | 000,177,672 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_2.dll
[2012/05/17 11:38:55 | 001,942,552 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_39.dll
[2012/05/17 11:38:55 | 001,493,528 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_39.dll
[2012/05/17 11:38:55 | 000,540,688 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_39.dll
[2012/05/17 11:38:55 | 000,467,984 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_39.dll
[2012/05/17 11:38:54 | 004,992,520 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_39.dll
[2012/05/17 11:38:54 | 003,851,784 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DX9_39.dll
[2012/05/17 11:38:52 | 000,511,496 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_1.dll
[2012/05/17 11:38:52 | 000,507,400 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_1.dll
[2012/05/17 11:38:52 | 000,238,088 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_1.dll
[2012/05/17 11:38:52 | 000,177,672 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_1.dll
[2012/05/17 11:38:52 | 000,068,104 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAPOFX1_0.dll
[2012/05/17 11:38:52 | 000,065,032 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAPOFX1_0.dll
[2012/05/17 11:38:51 | 001,941,528 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_38.dll
[2012/05/17 11:38:51 | 001,491,992 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_38.dll
[2012/05/17 11:38:51 | 000,540,688 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_38.dll
[2012/05/17 11:38:51 | 000,467,984 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_38.dll
[2012/05/17 11:38:51 | 000,028,168 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_4.dll
[2012/05/17 11:38:51 | 000,025,608 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_4.dll
[2012/05/17 11:38:50 | 004,991,496 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_38.dll
[2012/05/17 11:38:50 | 003,850,760 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DX9_38.dll
[2012/05/17 11:38:49 | 000,489,480 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\XAudio2_0.dll
[2012/05/17 11:38:49 | 000,479,752 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\XAudio2_0.dll
[2012/05/17 11:38:48 | 000,238,088 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine3_0.dll
[2012/05/17 11:38:48 | 000,177,672 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine3_0.dll
[2012/05/17 11:38:48 | 000,028,168 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_3.dll
[2012/05/17 11:38:48 | 000,025,608 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_3.dll
[2012/05/17 11:38:47 | 001,860,120 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_37.dll
[2012/05/17 11:38:47 | 001,420,824 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_37.dll
[2012/05/17 11:38:47 | 000,529,424 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_37.dll
[2012/05/17 11:38:47 | 000,462,864 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_37.dll
[2012/05/17 11:38:46 | 004,910,088 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DX9_37.dll
[2012/05/17 11:38:46 | 003,786,760 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DX9_37.dll
[2012/05/17 11:38:45 | 000,411,656 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_10.dll
[2012/05/17 11:38:45 | 000,267,272 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_10.dll
[2012/05/17 11:38:44 | 005,081,608 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_36.dll
[2012/05/17 11:38:44 | 003,734,536 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_36.dll
[2012/05/17 11:38:44 | 002,006,552 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_36.dll
[2012/05/17 11:38:44 | 001,374,232 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_36.dll
[2012/05/17 11:38:44 | 000,508,264 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_36.dll
[2012/05/17 11:38:44 | 000,444,776 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_36.dll
[2012/05/17 11:38:43 | 001,985,904 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_35.dll
[2012/05/17 11:38:43 | 001,358,192 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_35.dll
[2012/05/17 11:38:43 | 000,508,264 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_35.dll
[2012/05/17 11:38:43 | 000,444,776 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_35.dll
[2012/05/17 11:38:43 | 000,411,496 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_9.dll
[2012/05/17 11:38:43 | 000,267,112 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_9.dll
[2012/05/17 11:38:42 | 005,073,256 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_35.dll
[2012/05/17 11:38:41 | 000,409,960 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_8.dll
[2012/05/17 11:38:41 | 000,266,088 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_8.dll
[2012/05/17 11:38:41 | 000,021,000 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\X3DAudio1_2.dll
[2012/05/17 11:38:41 | 000,017,928 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\X3DAudio1_2.dll
[2012/05/17 11:38:40 | 001,401,200 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_34.dll
[2012/05/17 11:38:40 | 001,124,720 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_34.dll
[2012/05/17 11:38:40 | 000,506,728 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_34.dll
[2012/05/17 11:38:40 | 000,443,752 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_34.dll
[2012/05/17 11:38:39 | 004,496,232 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_34.dll
[2012/05/17 11:38:39 | 000,107,368 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xinput1_3.dll
[2012/05/17 11:38:39 | 000,081,768 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xinput1_3.dll
[2012/05/17 11:38:38 | 001,400,176 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\D3DCompiler_33.dll
[2012/05/17 11:38:38 | 001,123,696 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\D3DCompiler_33.dll
[2012/05/17 11:38:38 | 000,506,728 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10_33.dll
[2012/05/17 11:38:38 | 000,443,752 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10_33.dll
[2012/05/17 11:38:38 | 000,403,304 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_7.dll
[2012/05/17 11:38:38 | 000,261,480 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_7.dll
[2012/05/17 11:38:37 | 004,494,184 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_33.dll
[2012/05/17 11:38:37 | 003,495,784 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_33.dll
[2012/05/17 11:38:36 | 000,393,576 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_6.dll
[2012/05/17 11:38:36 | 000,390,424 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_5.dll
[2012/05/17 11:38:36 | 000,255,848 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_6.dll
[2012/05/17 11:38:36 | 000,251,672 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_5.dll
[2012/05/17 11:38:35 | 000,469,264 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx10.dll
[2012/05/17 11:38:35 | 000,440,080 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx10.dll
[2012/05/17 11:38:34 | 000,364,824 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_4.dll
[2012/05/17 11:38:34 | 000,237,848 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_4.dll
[2012/05/17 11:38:34 | 000,017,688 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\x3daudio1_1.dll
[2012/05/17 11:38:34 | 000,015,128 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\x3daudio1_1.dll
[2012/05/17 11:38:33 | 003,977,496 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_31.dll
[2012/05/17 11:38:33 | 002,414,360 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_31.dll
[2012/05/17 11:38:32 | 000,363,288 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_3.dll
[2012/05/17 11:38:32 | 000,236,824 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_3.dll
[2012/05/17 11:38:32 | 000,083,736 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xinput1_2.dll
[2012/05/17 11:38:32 | 000,062,744 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xinput1_2.dll
[2012/05/17 11:38:31 | 000,354,072 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_2.dll
[2012/05/17 11:38:31 | 000,230,168 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_2.dll
[2012/05/17 11:38:30 | 000,083,664 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xinput1_1.dll
[2012/05/17 11:38:30 | 000,062,672 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xinput1_1.dll
[2012/05/17 11:38:29 | 000,352,464 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_1.dll
[2012/05/17 11:38:29 | 000,229,584 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_1.dll
[2012/05/17 11:38:23 | 003,927,248 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_30.dll
[2012/05/17 11:38:21 | 000,355,536 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\xactengine2_0.dll
[2012/05/17 11:38:21 | 000,230,096 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\xactengine2_0.dll
[2012/05/17 11:38:21 | 000,016,592 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\x3daudio1_0.dll
[2012/05/17 11:38:21 | 000,014,032 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\x3daudio1_0.dll
[2012/05/17 11:38:20 | 003,830,992 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_29.dll
[2012/05/17 11:38:20 | 002,332,368 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_29.dll
[2012/05/17 11:38:19 | 003,815,120 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_28.dll
[2012/05/17 11:38:19 | 002,323,664 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_28.dll
[2012/05/17 11:38:18 | 003,807,440 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_27.dll
[2012/05/17 11:38:18 | 002,319,568 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_27.dll
[2012/05/17 11:38:17 | 003,767,504 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_26.dll
[2012/05/17 11:38:17 | 002,297,552 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_26.dll
[2012/05/17 11:38:16 | 003,823,312 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_25.dll
[2012/05/17 11:38:16 | 002,337,488 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_25.dll
[2012/05/17 11:38:15 | 003,544,272 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\d3dx9_24.dll
[2012/05/17 11:38:15 | 002,222,800 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\d3dx9_24.dll
[2012/05/17 11:28:58 | 000,000,000 |—-D | C]—C:\Program Files (x86)\Ubisoft
[2012/05/17 11:28:13 | 000,000,000 |—-D | C]—C:\Users\Britta\Documents\Telltale Games
[2012/05/13 10:51:03 | 000,000,000 |—-D | C]—C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2012/05/13 10:50:01 | 000,000,000 |—-D | C]—C:\Program Files\Microsoft Silverlight
[2012/05/13 10:50:01 | 000,000,000 |—-D | C]—C:\Program Files (x86)\Microsoft Silverlight
[2012/05/13 10:11:01 | 005,559,664 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\ntoskrnl.exe
[2012/05/13 10:11:00 | 003,968,368 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\ntkrnlpa.exe
[2012/05/13 10:11:00 | 003,913,072 |——| C] (Microsoft Corporation)—C:\Windows\SysWow64\ntoskrnl.exe
[2012/05/13 10:10:52 | 001,544,704 |——| C] (Microsoft Corporation)—C:\Windows\SysNative\DWrite.dll
[2012/05/06 18:46:57 | 000,000,000 |—-D | C]—C:\ProgramData\HP Photo Creations
[2012/05/06 18:46:57 | 000,000,000 |—-D | C]—C:\Program Files (x86)\HP Photo Creations
[2012/05/06 18:46:42 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Roaming\HpUpdate
[2012/05/06 18:46:24 | 000,000,000 |—-D | C]—C:\ProgramData\HP
[2012/05/06 18:46:20 | 000,000,000 |—-D | C]—C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2012/05/06 18:45:52 | 000,000,000 |—-D | C]—C:\Program Files (x86)\HP
[2012/05/06 18:45:28 | 000,000,000 |—-D | C]—C:\Program Files\HP
[2012/05/06 18:45:04 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Local\HP
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012/05/23 11:02:26 | 000,595,968 |——| M] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
[2012/05/23 10:58:02 | 000,000,946 |——| M] ()—C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001UA.job
[2012/05/23 07:41:20 | 000,016,976 | -H—| M] ()—C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/05/23 07:41:20 | 000,016,976 | -H—| M] ()—C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/05/23 07:33:58 | 000,067,584 |—S- | M] ()—C:\Windows\bootstat.dat
[2012/05/23 07:33:52 | 3104,722,944 | -HS- | M] ()—C:\hiberfil.sys
[2012/05/22 19:12:12 | 000,000,322 |——| M] ()—C:\Users\Britta\intlname.ols
[2012/05/20 12:00:43 | 000,000,894 |——| M] ()—C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001Core.job
[2012/05/18 17:13:42 | 000,001,121 |——| M] ()—C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/05/17 11:27:11 | 000,000,834 |——| M] ()—C:\Users\Public\Desktop\CCleaner.lnk
[2012/05/14 22:31:23 | 000,419,488 |——| M] (Adobe Systems Incorporated)—C:\Windows\SysWow64\FlashPlayerApp.exe
[2012/05/14 22:31:23 | 000,070,304 |——| M] (Adobe Systems Incorporated)—C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012/05/13 18:53:09 | 001,264,910 |——| M] ()—C:\Windows\SysNative\PerfStringBackup.INI
[2012/05/13 18:53:09 | 000,616,028 |——| M] ()—C:\Windows\SysNative\perfh009.dat
[2012/05/13 18:53:09 | 000,470,344 |——| M] ()—C:\Windows\SysNative\perfh006.dat
[2012/05/13 18:53:09 | 000,106,408 |——| M] ()—C:\Windows\SysNative\perfc009.dat
[2012/05/13 18:53:09 | 000,079,946 |——| M] ()—C:\Windows\SysNative\perfc006.dat
[2012/05/13 10:47:47 | 000,001,145 |——| M] ()—C:\Users\Britta\Application Data\Microsoft\Internet Explorer\Quick Launch\Start Microsoft Office Outlook.lnk
[2012/05/13 10:40:48 | 000,362,088 |——| M] ()—C:\Windows\SysNative\FNTCACHE.DAT
[2012/05/06 18:47:00 | 000,001,109 |——| M] ()—C:\Users\Public\Desktop\HP Photo Creations.lnk
[2012/05/06 18:46:20 | 000,002,248 |——| M] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk
[2012/05/06 18:46:20 | 000,001,243 |——| M] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series Scan.lnk
[2012/05/06 18:46:20 | 000,001,206 |——| M] ()—C:\Users\Public\Desktop\Køb forbrugsvarer - HP Deskjet 1050 J410 series.lnk
[2012/04/30 22:40:17 | 000,037,814 |——| M] ()—C:\Users\Britta\Desktop\Løn-April.pdf
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012/05/18 17:13:42 | 000,001,121 |——| C] ()—C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/05/06 18:46:59 | 000,001,109 |——| C] ()—C:\Users\Public\Desktop\HP Photo Creations.lnk
[2012/05/06 18:46:20 | 000,002,248 |——| C] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk
[2012/05/06 18:46:20 | 000,001,243 |——| C] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series Scan.lnk
[2012/05/06 18:46:20 | 000,001,206 |——| C] ()—C:\Users\Public\Desktop\Køb forbrugsvarer - HP Deskjet 1050 J410 series.lnk
[2012/04/30 22:40:17 | 000,037,814 |——| C] ()—C:\Users\Britta\Desktop\Løn-April.pdf
[2012/02/24 15:56:56 | 000,000,376 |——| C] ()—C:\Windows\ODBC.INI
[2012/02/11 15:17:07 | 001,290,830 |——| C] ()—C:\Windows\SysWow64\PerfStringBackup.INI
[2012/02/10 21:44:14 | 000,017,408 |——| C] ()—C:\Users\Britta\AppData\Local\WebpageIcons.db
[2011/07/20 16:04:30 | 000,963,116 |——| C] ()—C:\Windows\SysWow64\igkrng600.bin
[2011/07/20 16:04:29 | 000,218,304 |——| C] ()—C:\Windows\SysWow64\igfcg600m.bin
[2011/07/20 16:04:28 | 000,056,832 |——| C] ()—C:\Windows\SysWow64\igdde32.dll
[2011/07/20 16:04:27 | 000,145,804 |——| C] ()—C:\Windows\SysWow64\igcompkrng600.bin
[2011/07/20 16:04:26 | 013,906,944 |——| C] ()—C:\Windows\SysWow64\ig4icd32.dll

< End of report >

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Antal indlæg: 150

Og her følger :

OTL Extras :
OTL Extras logfile created on: 5/23/2012 11:03:05 AM - Run 1
OTL by OldTimer - Version 3.2.43.1   Folder = C:\Users\Britta\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3.86 Gb Total Physical Memory | 2.34 Gb Available Physical Memory | 60.74% Memory free
7.71 Gb Paging File | 6.12 Gb Available in Paging File | 79.36% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 678.54 Gb Total Space | 628.56 Gb Free Space | 92.63% Space Free | Partition Type: NTFS

Computer Name: BRITTA-PC | User Name: Britta | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut]—C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile]—C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open]—“%1” %*
cmdfile [open]—“%1” %*
comfile [open]—“%1” %*
exefile [open]—“%1” %*
helpfile [open]—Reg Error: Key error.
inffile [install]—%SystemRoot%\System32\InfDefaultInstall.exe “%1” (Microsoft Corporation)
InternetShortcut [open]—“C:\Windows\System32\rundll32.exe” “C:\Windows\System32\ieframe.dll”,OpenURL %l (Microsoft Corporation)
InternetShortcut [print]—“C:\Windows\System32\rundll32.exe” “C:\Windows\System32\mshtml.dll”,PrintHTML “%1” (Microsoft Corporation)
piffile [open]—“%1” %*
regfile [merge]—Reg Error: Key error.
scrfile [config]—“%1”
scrfile [install]—rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open]—“%1” /S
txtfile [edit]—Reg Error: Key error.
Unknown [openas]—%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd]—cmd.exe /s /k pushd “%V” (Microsoft Corporation)
Directory [find]—%SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open]—%SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore]—Reg Error: Value error.
Drive [find]—%SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open]—“%1” %*
cmdfile [open]—“%1” %*
comfile [open]—“%1” %*
cplfile [cplopen]—%SystemRoot%\System32\control.exe “%1”,%* (Microsoft Corporation)
exefile [open]—“%1” %*
helpfile [open]—Reg Error: Key error.
inffile [install]—%SystemRoot%\System32\InfDefaultInstall.exe “%1” (Microsoft Corporation)
piffile [open]—“%1” %*
regfile [merge]—Reg Error: Key error.
scrfile [config]—“%1”
scrfile [install]—rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open]—“%1” /S
txtfile [edit]—Reg Error: Key error.
Unknown [openas]—%SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd]—cmd.exe /s /k pushd “%V” (Microsoft Corporation)
Directory [find]—%SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open]—%SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore]—Reg Error: Value error.
Drive [find]—%SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
“cval” = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
“VistaSp1” = 28 4D B2 76 41 04 CA 01 [binary data]
“AntiVirusOverride” = 0
“AntiSpywareOverride” = 0
“FirewallOverride” = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
“DisableMonitoring” = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
“EnableFirewall” = 1
“DisableNotifications” = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
“EnableFirewall” = 0
“DisableNotifications” = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
“EnableFirewall” = 0
“DisableNotifications” = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
“{0CE8340D-69B5-4B5D-872C-02B69E27F62A}” = rport=137 | protocol=17 | dir=out | app=system |
“{2FF5723A-4C45-4AEC-91CB-CBF65A79DC25}” = rport=10243 | protocol=6 | dir=out | app=system |
“{341279C6-9C3D-4CAA-8908-45592D904018}” = lport=2869 | protocol=6 | dir=in | app=system |
“{3F5B6DF6-E8B0-42A7-9F62-E97A867E049A}” = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
“{4DCA2F42-660B-40CB-A3B2-DBC96854D631}” = lport=139 | protocol=6 | dir=in | app=system |
“{509E691A-AD84-4891-AB94-2A3C2EEA1685}” = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
“{53BBDEAF-F785-4678-A433-9568FB860825}” = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
“{5952EA01-8A31-4550-9E56-8E1B29450282}” = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
“{6E51FB50-679C-4184-BFF5-8F067F231B9E}” = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
“{771A8553-54D7-487A-B061-81954DABE75D}” = lport=138 | protocol=17 | dir=in | app=system |
“{97852DDE-21F1-4D46-8670-6FE5441B31A8}” = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
“{9869AF7B-F25F-4E7A-9535-3CB10D7E78B6}” = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
“{9A4CFA03-CF87-46CB-A56B-7EF36D74275C}” = lport=445 | protocol=6 | dir=in | app=system |
“{A840791E-A0B3-4A1F-93E1-9624AF8C864C}” = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
“{AE50B16A-F81B-46E0-8952-8E4427171F8B}” = rport=139 | protocol=6 | dir=out | app=system |
“{B4053DC1-43BB-4A12-A6FE-D269C793D32D}” = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
“{BBE488EA-B2EF-4061-88B5-8D119EF2DADB}” = lport=10243 | protocol=6 | dir=in | app=system |
“{CC2C248C-D60B-48A3-9F2C-462A3F152F52}” = lport=137 | protocol=17 | dir=in | app=system |
“{CEF48EAA-7453-4A2B-AAC1-A917DF9CAAC6}” = rport=138 | protocol=17 | dir=out | app=system |
“{DD1729A6-C26F-4FA5-B05F-12AC4A2AE7C1}” = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
“{DE75F139-8204-4021-BCFE-42C6E52D99BE}” = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
“{E9635888-5582-40B5-BFB5-9BA17B2CD0C4}” = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
“{FD6D8E31-B89D-4649-A736-32F5C3E70FA6}” = rport=445 | protocol=6 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
“{02F9DE45-4CF0-42EC-AB42-79763DEC7EFE}” = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
“{031E4D92-8245-4EF2-AD89-9E45BC812A34}” = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
“{0622BACD-84A6-4E44-B58F-66BEA26169FE}” = dir=in | app=c:\program files (x86)\cyberlink\homemedia\homemedia.exe |
“{15542CAF-171B-4944-B844-A3A5544EFE7A}” = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
“{216645F9-6922-4110-83E4-C25B2D85396F}” = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
“{3001AFBD-1594-4A19-AE8E-622DA7446C00}” = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
“{3329C153-9278-40B7-B67D-A6C811E6C270}” = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
“{39414C0D-A9EF-4F0E-B3DD-005E1944BE9C}” = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
“{3A9E73E7-92F0-4EF3-B30E-E95B71AEB903}” = protocol=6 | dir=out | app=system |
“{450B98FC-D167-41FE-8F6C-05486B396126}” = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
“{4F49AF3D-C0E1-4DC2-AE0B-F7865FEFAD21}” = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
“{64187F14-A5D9-4614-A29C-D4C2F472B217}” = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
“{68B2ACA2-000D-4625-854C-0D2616D232A5}” = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
“{6CA588E1-8C6F-49CD-BF67-3C6B126CC9C1}” = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
“{812815C6-0715-4C62-A77F-531C9A524B0C}” = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
“{83C775A0-86B7-4273-BD35-D170C9F7210C}” = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
“{8A69F9A8-1596-4FBA-9BA8-8F828FA7B237}” = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
“{8C1328D8-6F16-48FC-BB87-FA4DAAE8DFFA}” = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
“{9D4FCD52-C5E2-4998-AB8F-5EBF48BB6B5F}” = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
“{C45E4CB7-BC57-4A53-B589-A17B8355CE28}” = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
“{CA3DC11A-EDCF-4690-9FB7-44C70361D100}” = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
“{E8FBD453-064D-45B5-8A53-7BF458CF24AD}” = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
“{E91B8905-0901-43B7-AF17-EBDADF9CAAEF}” = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
“{EEDB5AB3-402C-47CD-BECB-0B0D81EA50F5}” = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
“{F7F8FCDE-70F4-42A5-8D5B-F1D894D28D2D}” = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
“{0919C44F-F18A-4E3B-A737-03685272CE72}” = Windows Live Remote Service Resources
“{1553D712-B35F-4A82-BC72-D6B11A94BE3E}” = Windows Live Remote Service Resources
“{1685AE50-97ED-485B-80F6-145071EE14B0}” = Windows Live Remote Service Resources
“{17A4FD95-A507-43F1-BC92-D8572AF8340A}” = Windows Live Remote Service Resources
“{19F09425-3C20-4730-9E2A-FC2E17C9F362}” = Windows Live Remote Service Resources
“{1B8ABA62-74F0-47ED-B18C-A43128E591B8}” = Windows Live ID Sign-in Assistant
“{1EB2CFC3-E1C5-4FC4-B1F8-549DD6242C67}” = Windows Live Remote Service Resources
“{22AB5CFD-B3DB-414E-9F99-4D024CCF1DA6}” = Windows Live Remote Client Resources
“{2426E29F-9E8C-4C0B-97FC-0DB690C1ED98}” = Windows Live Remote Client Resources
“{2C1A6191-9804-4FDC-AB01-6F9183C91A13}” = Windows Live Remote Client Resources
“{2F304EF4-0C31-47F4-8557-0641AAE4197C}” = Windows Live Remote Client Resources
“{34384A2A-2CA2-4446-AB0E-1F360BA2AAC5}” = Windows Live Remote Service Resources
“{350FD0E7-175A-4F86-84EF-05B77FCD7161}” = Windows Live Remote Service Resources
“{3921492E-82D2-4180-8124-E347AD2F2DB4}” = Windows Live Remote Client Resources
“{456FB9B5-AFBC-4761-BBDC-BA6BAFBB818F}” = Windows Live Remote Client Resources
“{4710662C-8204-4334-A977-B1AC9E547819}” = Broadcom Card Reader Driver Installer
“{480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF}” = Windows Live Remote Service Resources
“{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}” = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
“{4C2E49C0-9276-4324-841D-774CCCE5DB48}” = Windows Live Remote Client Resources
“{5141AA6E-5FAC-4473-BFFB-BEE69DDC7F2B}” = Windows Live Remote Service Resources
“{5151E2DB-0748-4FD1-86A2-72E2F94F8BE7}” = Windows Live Remote Service Resources
“{57F2BD1C-14A3-4785-8E48-2075B96EB2DF}” = Windows Live Remote Service Resources
“{5E2CD4FB-4538-4831-8176-05D653C3E6D4}” = Windows Live Remote Service Resources
“{5F44A3A1-5D24-4708-8776-66B42B174C64}” = Windows Live Remote Client Resources
“{5FCD6EFE-C2E7-4D77-8212-4BA223D8DF8E}” = Windows Live Remote Client Resources
“{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}” = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
“{5FEAD3E5-A158-4B66-B92B-0C959D7CF838}” = Windows Live Remote Service Resources
“{61407251-7F7D-4303-810D-226A04D5CFF3}” = Windows Live Remote Service Resources
“{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}” = Windows Live Remote Service Resources
“{692CCE55-9EAE-4F57-A834-092882E7FE0B}” = Windows Live Remote Client Resources
“{6B480C9F-8157-406E-BD3F-FCF642D2426F}” = HP Deskjet 1050 J410 series grundlæggende enhedssoftware
“{6C9D3F1D-DBBE-46F9-96A0-726CC72935AF}” = Windows Live Remote Service Resources
“{6CBFDC3C-CF21-4C02-A6DC-A5A2707FAF55}” = Windows Live Remote Service Resources
“{702A632F-99CE-4E2D-B8F2-BF980E9CF62F}” = Windows Live Remote Client Resources
“{7AEC844D-448A-455E-A34E-E1032196BBCD}” = Windows Live Remote Service Resources
“{825C7D3F-D0B3-49D5-A42B-CBB0FBE85E99}” = Windows Live Remote Client Resources
“{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}” = Windows Live Remote Client Resources
“{850B8072-2EA7-4EDC-B930-7FE569495E76}” = Windows Live Remote Client Resources
“{8970AE69-40BE-4058-9916-0ACB1B974A3D}” = Windows Live Remote Client Resources
“{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}” = Microsoft Silverlight
“{8C1B78F9-EC08-4EDE-BF35-D3B233A4C61E}” = HP Deskjet 1050 J410 series produktforbedringsundersøgelse
“{8EB588BD-D398-40D0-ADF7-BE1CEEF7C116}” = Windows Live Remote Client Resources
“{8F7F2D9C-2DBE-4F10-9C7C-2724110A3339}” = Windows Live Remote Service Resources
“{95120000-00B9-0409-1000-0000000FF1CE}” = Microsoft Application Error Reporting
“{97A295A7-8840-4B35-BB61-27A8F4512CA3}” = Windows Live Remote Service Resources
“{9E9C960F-7F47-46D5-A95D-950B354DE2B8}” = Windows Live Remote Service Resources
“{A060182D-CDBE-4AD6-B9B4-860B435D6CBD}” = Windows Live Remote Client Resources
“{A508D5A2-3AC1-4594-A718-A663D6D3CF11}” = Windows Live Remote Service Resources
“{A679FBE4-BA2D-4514-8834-030982C8B31A}” = Windows Live Remote Service Resources
“{A6E0F6BE-30AC-4D36-97B0-1AC20E23CB83}” = Windows Live Remote Client Resources
“{B0BF8602-EA52-4B0A-A2BD-EDABB0977030}” = Windows Live Remote Client Resources
“{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel” = NVIDIA Control Panel 268.00
“{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver” = NVIDIA Graphics Driver 268.00
“{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus” = NVIDIA Optimus 1.0.21
“{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer” = NVIDIA Install Application
“{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update” = NVIDIA Update Components
“{B680A663-1A15-47A5-A07C-7DF9A97558B7}” = Windows Live Remote Client Resources
“{B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}” = Windows Live Remote Client Resources
“{C504EC13-E122-4939-BD6E-EE5A3BAA5FEC}” = Windows Live Remote Client Resources
“{C91DCB72-F5BB-410D-A91A-314F5D1B4284}” = Broadcom NetLink Controller
“{C9F05151-95A9-4B9B-B534-1760E2D014A5}” = Windows Live Remote Client Resources
“{CFF3C688-2198-4BC3-A399-598226949C39}” = Windows Live Remote Client Resources
“{D07A61E5-A59C-433C-BCBD-22025FA2287B}” = Windows Live Language Selector
“{D1C1556C-7FF3-48A3-A5D6-7126F0FAFB66}” = Windows Live Remote Client Resources
“{D3E4F422-7E0F-49C7-8B00-F42490D7A385}” = Windows Live Remote Service Resources
“{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}” = Windows Live Remote Client Resources
“{D930AF5C-5193-4616-887D-B974CEFC4970}” = Windows Live Remote Service Resources
“{DA54F80E-261C-41A2-A855-549A144F2F59}” = Windows Live MIME IFilter
“{DBEDAF67-C5A3-4C91-951D-31F3FE63AF3F}” = Windows Live Remote Client Resources
“{DF6D988A-EEA0-4277-AAB8-158E086E439B}” = Windows Live Remote Client
“{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}” = Windows Live Remote Service
“{ED421F97-E1C3-4E78-9F54-A53888215D58}” = Windows Live Remote Client Resources
“{EFB20CF5-1A6D-41F3-8895-223346CE6291}” = Windows Live Remote Service Resources
“{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}” = Microsoft .NET Framework 4 Client Profile
“{F6CB2C5F-B2C1-4DF1-BF44-39D0DC06FE6F}” = Windows Live Remote Service Resources
“{FAA3933C-6F0D-4350-B66B-9D7F7031343E}” = Windows Live Remote Service Resources
“{FAD0EC0B-753B-4A97-AD34-32AC1EC8DB69}” = Windows Live Remote Client Resources
“Adobe Flash Player ActiveX” = Adobe Flash Player 11 ActiveX 64-bit
“CCleaner” = CCleaner
“Defraggler” = Defraggler
“Elantech” = ETDWare PS/2-X64 8.0.6.3_WHQL
“Microsoft .NET Framework 4 Client Profile” = Microsoft .NET Framework 4 Client Profile

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
“{007F778D-F15C-4EAB-AE92-071D21FAF632}” = Adobe Photoshop Elements 9
“{00884F14-05BD-4D8E-90E5-1ABF78948CA4}” = Windows Live Mesh
“{0125DB4D-98A0-4DBF-B68A-23BF08FFA6A3}” = Windows Live Messenger
“{01FB4998-33C4-4431-85ED-079E3EEFE75D}” = Video Web Camera
“{039480EE-6933-4845-88B8-77FD0C3D059D}” = Windows Live Mesh
“{0557BBDA-69D3-4FA4-A93C-A5300F7034B4}” = Windows Live Writer
“{05E379CC-F626-4E7D-8354-463865B303BF}” = Windows Live UX Platform Language Pack
“{0654EA5D-308A-4196-882B-5C09744A5D81}” = Windows Live Photo Common
“{06B05153-97E4-427E-B1A8-E098F6C5E52F}” = Windows Live Essentials
“{073F306D-9851-4969-B828-7B6444D07D55}” = Windows Live Photo Common
“{0785A0B6-07DF-43CF-B147-E1EB4CEA0345}” = Windows Live Messenger
“{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}” = Nero BackItUp 10 Help (CHM)
“{08D2E121-7F6A-43EB-97FD-629B44903403}” = Microsoft_VC90_CRT_x86
“{09922FFE-D153-44AE-8B60-EA3CB8088F93}” = Windows Live UX Platform Language Pack
“{0A4C4B29-5A9D-4910-A13C-B920D5758744}” = بريد Windows Live
“{0A9256E0-C924-46DE-921B-F6C4548A1C64}” = Windows Live Messenger
“{0B0F231F-CE6A-483D-AA23-77B364F75917}” = Windows Live Installer
“{0C1931EB-8339-4837-8BEC-75029BF42734}” = Windows Live UX Platform Language Pack
“{0C975FCC-A06E-4CB6-8F54-A9B52CF37781}” = Windows Liven sähköposti
“{0D261C88-454B-46FE-B43B-640E621BDA11}” = Windows Live Mail
“{0EC0B576-90F9-43C3-8FAD-A4902DF4B8F4}” = Galeria de Fotografias do Windows Live
“{10186F1A-6A14-43DF-A404-F0105D09BB07}” = Windows Live Mail
“{110668B7-54C6-47C9-BAC4-1CE77F156AF5}” = Windows Live Mesh
“{11417707-1F72-4279-95A3-01E0B898BBF5}” = Windows Live Mesh
“{11778DA1-0495-4ED9-972F-F9E0B0367CD5}” = Windows Live Writer
“{1203DC60-D9BD-44F9-B372-2B8F227E6094}” = Windows Live Temel Parçalar
“{120C160F-F53D-4A15-A873-E79BF5B98B48}” = Windows Live Photo Common
“{128133D3-037A-4C62-B1B7-55666A10587A}” = Windows Live UX Platform Language Pack
“{133D9D67-D475-4407-AC3C-D558087B2453}” = Windows Live Movie Maker
“{14B441B7-774D-4170-98EA-A13667AE6218}” = Windows Live Writer Resources
“{168E7302-890A-4138-9109-A225ACAF7AD1}” = Windows Live Photo Common
“{17835B63-8308-427F-8CF5-D76E0D5FE457}” = Windows Live Essentials
“{17F99FCE-8F03-4439-860A-25C5A5434E18}” = Windows Live Essentials
“{198EA334-8A3F-4CB2-9D61-6C10B8168A6F}” = Windows Live Writer
“{19BA08F7-C728-469C-8A35-BFBD3633BE08}” = Windows Live Movie Maker
“{1A72337E-D126-4BAF-AC89-E6122DB71866}” = Windows Liven valokuvavalikoima
“{1A82AE99-84D3-486D-BAD6-675982603E14}” = Windows Live Writer
“{1D6C2068-807F-4B76-A0C2-62ED05656593}” = Windows Live Writer
“{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}” = Windows Live UX Platform Language Pack
“{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}” = Windows Live Writer Resources
“{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}” = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
“{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}” = Junk Mail filter update
“{1FC83EAE-74C8-4C72-8400-2D8E40A017DE}” = Windows Live Writer
“{200FEC62-3C34-4D60-9CE8-EC372E01C08F}” = Windows Live SOXE Definitions
“{20381A8A-808E-4A53-B6CD-AD2B85E16365}” = Windows Live UX Platform Language Pack
“{220C7F8C-929D-4F71-9DC7-F7A6823B38E4}” = Windows Live UX Platform Language Pack
“{226F0D93-76DE-4F1C-B14D-DE10443ADB60}” = Windows Live Movie Maker
“{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}” = Nero Core Components 10
“{249EE21B-8EDD-4F36-8A23-E580E9DBE80A}” = Windows Live Mail
“{24DF33E0-F924-4D0D-9B96-11F28F0D602D}” = Windows Live UX Platform Language Pack
“{2511AAD7-82DF-4B97-B0B3-E1B933317010}” = Windows Live Writer Resources
“{25175695-4B20-4298-9F34-C2C57CD277B3}” = Elements STI Installer
“{25A381E1-0AB9-4E7A-ACCE-BA49D519CF4E}” = Windows Live Mail
“{25CD4B12-8CC5-433E-B723-C9CB41FA8C5A}” = Windows Live Writer
“{26A24AE4-039D-4CA4-87B4-2F83216031FF}” = Java(TM) 6 Update 31
“{26E3C07C-7FF7-4362-9E99-9E49E383CF16}” = Windows Live Writer Resources
“{28B9D2D8-4304-483F-AD71-51890A063A74}” = Windows Live Photo Common
“{29373E24-AC72-424E-8F2A-FB0F9436F21F}” = Windows Live Photo Common
“{2A07C35B-8384-4DA4-9A95-442B6C89A073}” = Windows Live Essentials
“{2AD2DD70-27F7-4343-BB4E-DE50A32D854B}” = Windows Live Messenger
“{2BA5FD10-653F-4CAF-9CCD-F685082A1DC1}” = Windows Live Writer
“{2C4E06CC-1F04-4C25-8B3C-93A9049EC42C}” = Windows Live UX Platform Language Pack
“{2C7E8AA1-9C03-4606-BF34-5D99D07964DA}” = Windows Live Messenger
“{2C865FB0-051E-4D22-AC62-428E035AEAF0}” = Windows Live Mesh
“{2D3E034E-F76B-410A-A169-55755D2637BB}” = Windows Live Mesh
“{2E50E321-4747-4EB5-9ECB-BBC6C3AC0F31}” = Windows Live Writer Resources
“{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App” = Update Installer for WildTangent Games App
“{303143DD-1F6D-4BC5-9342-FFC2E19B2DBD}” = Windows Live Messenger
“{3125D9DE-8D7A-4987-95F3-8A42389833D8}” = Windows Live Writer Resources
“{3336F667-9049-4D46-98B6-4C743EEBC5B1}” = Windows Live Photo Gallery
“{33643918-7957-4839-92C7-EA96CB621A98}” = Nero Express 10 Help (CHM)
“{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}” = Windows Live
“{34490F4E-48D0-492E-8249-B48BECF0537C}” = Nero DiscSpeed 10
“{34C4F5AF-D757-4E6A-ABCA-65AB5A50A1A8}” = Windows Live Messenger
“{34F4D9A4-42C2-4348-BEF4-E553C84549E7}” = Windows Live Photo Gallery
“{370F888E-42A7-4911-9E34-7D74632E17EB}” = Windows Live Photo Common
“{37B33B16-2535-49E7-8990-32668708A0A3}” = Windows Live UX Platform Language Pack
“{39BDD209-5704-480C-9F4A-B69D0370DDBB}” = Windows Live Messenger
“{39F95B0B-A0B7-4FA7-BB6C-197DA2546468}” = Windows Live Mesh
“{3B72C1E0-26A1-40F6-8516-D50C651DFB3C}” = Windows Live Essentials
“{3B9A92DA-6374-4872-B646-253F18624D5F}” = Windows Live Writer
“{3D0C22FA-96D7-4789-BC5B-991A5A99BFFA}” = Windows Live Messenger
“{3DB0448D-AD82-4923-B305-D001E521A964}” = Packard Bell Power Management
“{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}” = Intel(R) Rapid Storage Technology
“{3F4143A1-9C21-4011-8679-3BC1014C6886}” = Windows Live Mesh
“{40BFD84C-64CD-42CC-9909-8734C50429C6}” = Windows Live UX Platform Language Pack
“{410DF0AA-882D-450D-9E1B-F5397ACFFA80}” = Windows Live Essentials
“{4264C020-850B-4F08-ACBE-98205D9C336C}” = Windows Live Writer
“{429DF1A0-3610-4E9E-8ACE-3C8AC1BA8FCA}” = Windows Live Photo Gallery
“{433EACD8-4747-4A6A-826A-FFA9F39B0D40}” = Elements 9 Organizer
“{43B43577-2514-4CE0-B14A-7E85C17C0453}” = Windows Live Essentials
“{4444F27C-B1A8-464E-9486-4C37BAB39A09}” = Фотогалерия на Windows Live
“{458F399F-62AC-4747-99F5-499BBF073D29}” = Windows Live Writer Resources
“{45E557D6-2271-4F13-8101-C620B4285AB0}” = Kaspersky Internet Security 2012
“{4664ED39-C80A-48F7-93CD-EBDCAFAB6CC5}” = Windows Live Writer Resources
“{46872828-6453-4138-BE1C-CE35FBF67978}” = Windows Live Mesh
“{4736B0ED-F6A1-48EC-A1B7-C053027648F1}” = Galeria fotogràfica del Windows Live
“{488F0347-C4A7-4374-91A7-30818BEDA710}” = Galerie de photos Windows Live
“{48C0DC5E-820A-44F2-890E-29B68EDD3C78}” = Windows Live Writer
“{48F597DD-D397-4CFA-91A0-4C033A0113BD}” = Windows Live Mail
“{4A03706F-666A-4037-7777-5F2748764D10}” = Java Auto Updater
“{4A04DB63-8F81-4EF4-9D09-61A2057EF419}” = Windows Live Essentials
“{4A275FD1-2F24-4274-8C01-813F5AD1A92D}” = Windows Live Messenger
“{4B28D47A-5FF0-45F8-8745-11DC2A1C9D0F}” = Windows Live Writer
“{4C378B16-46B7-4DA1-A2CE-2EE676F74680}” = Windows Live UX Platform Language Pack
“{4D141929-141B-4605-95D6-2B8650C1C6DA}” = Windows Live UX Platform Language Pack
“{4D7BAC8A-51B8-4243-8567-1415C4272D13}” = Windows Live Writer
“{4D83F339-5A5C-4B21-8FD3-5D407B981E72}” = Windows Live Photo Common
“{50300123-F8FC-4B50-B449-E847D04F1BA2}” = Windows Live Messenger
“{506FC723-8E6C-4417-9CFF-351F99130425}” = Windows Live UX Platform Language Pack
“{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}” = Nero ControlCenter 10 Help (CHM)
“{523DF2BB-3A85-4047-9898-29DC8AEB7E69}” = Windows Live UX Platform Language Pack
“{5275D81E-83AD-4DE4-BC2B-6E6BA3A33244}” = Windows Live Writer Resources
“{5495E9A4-501A-4D4C-87C9-E80916CA9478}” = Windows Live UX Platform Language Pack
“{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}” = Windows Live UX Platform Language Pack
“{5C2F5C1B-9732-4F81-8FBF-6711627DC508}” = Windows Live Fotogalleri
“{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}” = HP Deskjet 1050 J410 series Hjælp
“{5CF5B1A5-CBC3-42F0-8533-5A5090665862}” = Windows Live Mesh
“{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}” = Windows Live Movie Maker
“{5D2E7BD7-4B6F-4086-BA8A-E88484750624}” = Windows Live Writer Resources
“{5D90ABE5-8A35-4947-8269-6F40BCE47A95}” = Windows Live Messenger
“{5DA7D148-D2D2-4C67-8444-2F0F9BD88A06}” = Windows Live Writer
“{5E627606-53B9-42D1-97E1-D03F6229E248}” = Windows Live UX Platform Language Pack
“{5F6E678A-7E61-448A-86CB-BC2AD1E04138}” = Windows Live Messenger
“{6057E21C-ABE9-4059-AE3E-3BEB9925E660}” = Windows Live Messenger
“{60C3C026-DB53-4DAB-8B97-7C1241F9A847}” = Windows Live Movie Maker
“{625D45F0-5DCB-48BF-8770-C240A84DAAEB}” = Windows Live Mesh
“{62687B11-58B5-4A18-9BC3-9DF4CE03F194}” = Windows Live Writer Resources
“{62BF4BD3-B1F6-4FA2-8388-CC0647ACBF86}” = Nero Multimedia Suite 10 Essentials
“{63AE67AA-1AB1-4565-B4EF-ABBC5C841E8D}” = Windows Live Messenger
“{63CF7D0C-B6E7-4EE9-8253-816B613CC437}” = Windows Live Mail
“{640798A0-A4FB-4C52-AC72-755134767F1E}” = Windows Live Movie Maker
“{64376910-1860-4CEF-8B34-AA5D205FC5F1}” = Poczta usługi Windows Live
“{644063FA-ABA3-42AC-A8AC-3EDC0706018B}” = Windows Live Mesh
“{6491AB99-A11E-41FD-A5E7-32DE8A097B8E}” = Windows Live Essentials
“{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}” = Windows Live Movie Maker
“{64EF903E-D00A-414C-94A4-FBA368FFCDC9}” = Packard Bell Social Networks
“{65153EA5-8B6E-43B6-857B-C6E4FC25798A}” = Intel(R) Management Engine Components
“{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}” = Nero Update
“{677AAD91-1790-4FC5-B285-0E6A9D65F7DC}” = Windows Live Mail
“{6807427D-8D68-4D30-AF5B-0B38F8F948C8}” = Windows Live Writer Resources
“{682B3E4F-696A-42DE-A41C-4C07EA1678B4}” = Windows Live SOXE
“{68AB6930-5BFF-4FF6-923B-516A91984FE6}” = Nero BackItUp 10
“{68AFA3A7-9265-4ABD-994A-ACA413E3715C}” = Nero Multimedia Suite 10 Essentials
“{6986737B-F286-40D1-87AF-938339DCF6AB}” = Windows Live Messenger
“{69C9C672-400A-43A0-B2DE-9DB38C371282}” = Windows Live Writer
“{69CAC24D-B1DC-4B97-A1BE-FE21843108FE}” = Windows Live Writer Resources
“{6A4ABCDC-0A49-4132-944E-01FBCCB3465C}” = Windows Live UX Platform Language Pack
“{6A563426-3474-41C6-B847-42B39F1485B2}” = Windows Live Messenger
“{6ABE832B-A5C7-44C1-B697-3E123B7B4D5B}” = Windows Live Mesh
“{6B556C37-8919-4991-AC34-93D018B9EA49}” = Windows Live Photo Common
“{6CB36609-E3A6-446C-A3C1-C71E311D2B9C}” = Windows Live Movie Maker
“{6D30E864-46AE-435B-8230-8B5D42B4AE37}” = Windows Live Messenger
“{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}” = Windows Live Movie Maker
“{6DFB899F-17A2-48F0-A533-ED8D6866CF38}” = Nero Control Center 10
“{6EE9F44A-B8C7-4CDB-B2A9-441AF2AE315A}” = Windows Live Messenger
“{6EF2BE2C-3121-48B7-B7A6-C56046B3A588}” = Windows Live Movie Maker
“{6F37D92B-41AA-44B7-80D2-457ABDE11896}” = Windows Live Photo Common
“{70550193-1C22-445C-8FA4-564E155DB1A7}” = Nero Express 10
“{709E38A9-7F80-4598-96CC-44B0D553FECE}” = Windows Live Messenger
“{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-packardbell” = WildTangent Games App (Packard Bell Games)
“{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}” = Microsoft Visual C++ 2005 Redistributable
“{71527C7C-5289-4CB2-88C9-23344C0FF6C1}” = Windows Live Movie Maker
“{71A81378-79D5-40CC-9BDC-380642D1A87F}” = Windows Live Writer
“{71C95134-F6A9-45E7-B7B3-07CA6012BF2A}” = Windows Live Mesh
“{7272F232-A7E0-4B2B-A5D2-71B7C5E2379C}” = Windows Live Fotótár
“{7327080F-6673-421F-BBD9-B618F357EEB3}” = Windows Live UX Platform Language Pack
“{734104DE-C2BF-412F-BB97-FCCE1EC94229}” = Windows Live Writer Resources
“{7373E17D-18E0-44A7-AC3A-6A3BFB85D3B3}” = Windows Live Movie Maker
“{73FC3510-6421-40F7-9503-EDAE4D0CF70D}” = Windows Live Photo Common
“{7465A996-0FCA-4D2D-A52C-F833B0829B5B}” = Windows Live Movie Maker
“{7496FD31-E5CB-4AE4-82D3-31099558BF6A}” = Windows Live Mesh
“{74E8A7F6-575D-42C7-9178-E87D1B3BEFE8}” = Windows Live UX Platform Language Pack
“{77477AEA-5757-47D8-8B33-939F43D82218}” = Windows Live UX Platform Language Pack
“{77F69CA1-E53D-4D77-8BA3-FA07606CC851}” = Фотоальбом Windows Live
“{78906B56-0E81-42A7-AC25-F54C946E1538}” = Windows Live Photo Common
“{78DAE910-CA72-450E-AD22-772CB1A00678}” = Windows Live Mesh
“{7A9D47BA-6D50-4087-866F-0800D8B89383}” = Podstawowe programy Windows Live
“{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}” = Windows Live Photo Common
“{7AF8E500-B349-4A77-8265-9854E9A47925}” = Windows Live Movie Maker
“{7BA19818-F717-4DFB-BC11-FAF17B2B8AEE}” = Pošta Windows Live
“{7C2A3479-A5A0-412B-B0E6-6D64CBB9B251}” = Windows Live Photo Common
“{7CB529B2-6C74-4878-9C3F-C29C3C3BBDC6}” = Windows Live Writer Resources
“{7D0DE76C-874E-4BDE-A204-F4240160693E}” = Windows Live Photo Common
“{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}” = Windows Live Essentials
“{7D926AD2-16D6-42C2-8CA1-AB09E96040BA}” = Windows Live Writer Resources
“{7D99B933-E29C-4599-92F0-DAED2AF041E3}” = Windows Live Essentials
“{7E017923-16F8-4E32-94EF-0A150BD196FE}” = Windows Live Writer
“{7E90B133-FF47-48BB-91B8-36FC5A548FE9}” = Windows Live Writer Resources
“{7F6021AE-E688-4D03-843A-C2260482BA0D}” = Windows Live Messenger
“{7F811A54-5A09-4579-90E1-C93498E230D9}” = Packard Bell Recovery Management
“{7FF11E53-C002-4F40-8D68-6BE751E5DD62}” = Windows Live Writer Resources
“{804DE397-F82C-4867-9085-E0AA539A3294}” = Windows Live Writer
“{80956555-A512-4190-9CAD-B000C36D6B6B}” = Windows Live Messenger
“{80E8C65A-8F70-4585-88A2-ABC54BABD576}” = Windows Live Mesh
“{827D3E4A-0186-48B7-9801-7D1E9DD40C07}” = Windows Live Essentials
“{82803FF3-563F-414F-A403-8D4C167D4120}” = Windows Live Mail
“{837b34e3-7c30-493c-8f6a-2b0f04e2912c}” = Microsoft Visual C++ 2005 Redistributable
“{83C292B7-38A5-440B-A731-07070E81A64F}” = Windows Live PIMT Platform
“{841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}” = Windows Live Mesh
“{84267681-BF16-40B6-9564-27BC57D7D71C}” = Windows Live Photo Common
“{84A411F9-40A5-4CDA-BF46-E09FBB2BC313}” = Windows Live Essentials
“{85373DA7-834E-4850-8AF5-1D99F7526857}” = Windows Live Photo Common
“{859D4022-B76D-40DE-96EF-C90CDA263F44}” = Windows Live Writer
“{861B1145-7762-4794-B40C-3FF0A389DFE6}” = Windows Live Photo Gallery
“{86F444A5-C9B9-41DC-AF28-B5E46F5497C7}” = Windows Live Argazki Galeria
“{873E4648-6F6E-47F6-A7B2-A6F8DFABDCE6}” = Windows Live Messenger
“{885F1BCD-C344-4758-85BD-09640CF449A5}” = Windows Live Photo Gallery
“{8909CFA8-97BF-4077-AC0F-6925243FFE08}” = Windows Liven asennustyökalu
“{8C6D6116-B724-4810-8F2D-D047E6B7D68E}” = Mesh Runtime
“{8CF5D47D-27B7-49D6-A14F-10550B92749D}” = Windows Live UX Platform Language Pack
“{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}” = MSVCRT
“{8E285C75-9BE2-4349-972B-DECDDF472656}” = Windows Live Writer Resources
“{90110406-6000-11D3-8CFE-0150048383C9}” = Microsoft Office Professional Edition 2003
“{90120000-0020-0409-0000-0000000FF1CE}” = Compatibility Pack for the 2007 Office system
“{90140000-2005-0000-0000-0000000FF1CE}” = Microsoft Office File Validation Add-In
“{924B4D82-1B97-48EB-8F1E-55C4353C22DB}” = Windows Live Mail
“{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}” = Microsoft_VC80_CRT_x86
“{92E25238-61A3-4ACD-A407-3C480EEF47A7}” = Nero RescueAgent 10 Help (CHM)
“{92EA4134-10D1-418A-91E1-5A0453131A38}” = Windows Live Movie Maker
“{93C4B7D5-4E00-491F-BA3E-25B7B63EE7F6}” = Windows Live Mail
“{93E464B3-D075-4989-87FD-A828B5C308B1}” = Windows Live Writer Resources
“{97F77D62-5110-4FA3-A2D3-410B92D31199}” = Windows Live Fotogaléria
“{99BE7F5D-AB52-4404-9E03-4240FFAA7DE9}” = Windows Live Mesh
“{9A25302D-30C0-39D9-BD6F-21E6EC160475}” = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
“{9BD262D0-B788-4546-A0A5-F4F56EC3834B}” = Windows Live Photo Common
“{9BE518E6-ECC6-35A9-88E4-87755C07200F}” = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
“{9D56775A-93F3-44A3-8092-840E3826DE30}” = Windows Live Mail
“{9DA3F03B-2CEE-4344-838E-117861E61FAF}” = Windows Live Mail
“{9DB90178-B5B0-45BD-B0A7-D40A6A1DF1CA}” = Windows Live Movie Maker
“{9E2C5B0E-7A2D-4767-A9B2-77469FB1873A}” = Windows Live Mesh
“{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}” = Windows Live Mail
“{A0B91308-6666-4249-8FF6-1E11AFD75FE1}” = Windows Live Mail
“{A0C91188-C88F-4E86-93E6-CD7C9A266649}” = Windows Live Mesh
“{A101F637-2E56-42C0-8E08-F1E9086BFAF3}” = Windows Live Movie Maker
“{A199DB88-E22D-4CE7-90AC-B8BE396D7BF4}” = Windows Live Movie Maker
“{A2BCA9F1-566C-4805-97D1-7FDC93386723}” = Adobe AIR
“{A41A708E-3BE6-4561-855D-44027C1CF0F8}” = Windows Live Photo Common
“{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}” = Windows Live Photo Gallery
“{A726AE06-AAA3-43D1-87E3-70F510314F04}” = Windows Live Writer
“{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}” = Windows Live Photo Common
“{AA4BF92B-2AAF-11DA-9D78-000129760D75}” = HomeMedia
“{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}” = Windows Live Writer
“{AAF454FC-82CA-4F29-AB31-6A109485E76E}” = Windows Live Writer
“{AB0B2113-5B96-4B95-8AD1-44613384911F}” = Windows Live Mesh
“{AB78C965-5C67-409B-8433-D7B5BDB12073}” = Windows Live Writer Resources
“{ABD534B7-E951-470E-92C2-CD5AF1735726}” = Windows Live Essentials
“{ABE2F2AA-7ADC-4717-9573-BF3F83C696AC}” = Windows Live Mail
“{AC76BA86-7AD7-FFFF-7B44-AA0000000001}” = Adobe Reader X (10.1.3) MUI
“{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}” = Windows Live Mesh
“{AD001A69-88CC-4766-B2DB-3C1DFAB9AC72}” = Windows Live Mesh
“{ADE85655-8D1E-4E4B-BF88-5E312FB2C74F}” = Windows Live Mail
“{ADFE4AED-7F8E-4658-8D6E-742B15B9F120}” = Windows Live Photo Common
“{AF01B90A-D25C-4F60-AECD-6EEDF509DC11}” = Windows Live Mesh
“{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}” = HP Update
“{B0AD205F-60D0-4084-AFB8-34D9A706D9A8}” = Windows Live Essentials
“{B113D18C-67B0-4FB7-B329-E89B66194AE6}” = Windows Live Fotogalerie
“{B1239994-A850-44E2-BED8-E70A21124E16}” = Windows Live Mail
“{B2BCA478-EC0F-45EE-A9E9-5EABE87EA72D}” = Windows Live Photo Common
“{B33B61FE-701F-425F-98AB-2B85725CBF68}” = Windows Live Photo Common
“{B3BE54A4-8DFE-4593-8E66-56AB7133B812}” = Windows Live Writer
“{B618C3BF-5142-4630-81DD-F96864F97C7E}” = Windows Live Essentials
“{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}” = Почта Windows Live
“{B7B67AA5-12DA-4F01-918D-B1BF66779D8A}” = Windows Live Writer Resources
“{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}” = NVIDIA PhysX
“{BD4EBDB5-EB14-4120-BB04-BE0A26C7FB3E}” = Windows Live Photo Common
“{BD695C2F-3EA0-4DA4-92D5-154072468721}” = Windows Live Fotoğraf Galerisi
“{BF022D76-9F72-4203-B8FA-6522DC66DFDA}” = Windows Live Movie Maker
“{BF35168D-F6F9-4202-BA87-86B5E3C9BF7A}” = Windows Live Mesh
“{C00C2A91-6CB3-483F-80B3-2958E29468F1}” = Συλλογή φωτογραφιών του Windows Live
“{C01FCACE-CC3D-49A2-ADC2-583A49857C58}” = Windows Live Essentials
“{C08D5964-C42F-48EE-A893-2396F9562A7C}” = Windows Live Mesh
“{C18A0418-442A-4186-AF98-D08F5054A2FC}” = Nero DiscSpeed 10 Help (CHM)
“{C1C9D199-B4DD-4895-92DD-9A726A2FE341}” = Windows Live Writer
“{C29FC15D-E84B-4EEC-8505-4DED94414C59}” = Windows Live Writer Resources
“{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}” = Windows Live Photo Common
“{C454280F-3C3E-4929-B60E-9E6CED5717E7}” = Windows Live Mail
“{C66824E4-CBB3-4851-BB3F-E8CFD6350923}” = Windows Live Mail
“{C8421D85-CA0E-4E93-A9A9-B826C4FB88EA}” = Windows Live Mail
“{C893D8C0-1BA0-4517-B11C-E89B65E72F70}” = Windows Live Photo Common
“{CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431}” = Galeria fotografii usługi Windows Live
“{CB66242D-12B1-4494-82D2-6F53A7E024A3}” = Galerie foto Windows Live
“{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}” = Windows Live Movie Maker
“{CD442136-9115-4236-9C14-278F6A9DCB3F}” = Windows Live Movie Maker
“{CD7CB1E6-267A-408F-877D-B532AD2C882E}” = Windows Live Photo Common
“{CDC39BF2-9697-4959-B893-A2EE05EF6ACB}” = Windows Live Writer
“{CE929F09-3853-4180-BD90-30764BFF7136}” = גלריית התמונות של Windows Live
“{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}” = Windows Live UX Platform
“{CF671BFE-6BA3-44E7-98C1-500D9C51D947}” = Windows Live Photo Gallery
“{D07B1FDA-876B-4914-9E9A-309732B6D44F}” = Windows Live Mail
“{D0B44725-3666-492D-BEF6-587A14BD9BD9}” = MSVCRT_amd64
“{D1A19B02-817E-4296-A45B-07853FD74D57}” = Microsoft_VC80_MFC_x86
“{D299197D-CDEA-41A6-A363-F532DE4114FD}” = Windows Live UX Platform Language Pack
“{D31169F2-CD71-4337-B783-3E53F29F4CAD}” = Windows Live Mail
“{D436F577-1695-4D2F-8B44-AC76C99E0002}” = Windows Live Photo Common
“{D45240D3-B6B3-4FF9-B243-54ECE3E10066}” = Windows Live Communications Platform
“{D54A52A8-DF24-4CE8-850B-074CA47DFA74}” = Windows Live Messenger
“{D588365A-AE39-4F27-BDAE-B4E72C8E900C}” = Windows Live Mail
“{D6CBB3B2-F510-483D-AE0D-1CF3F43CF1EE}” = Windows Live Writer Resources
“{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}” = Windows Live UX Platform Language Pack
“{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}” = Microsoft_VC80_MFCLOC_x86
“{DA29F644-2420-4448-8128-1331BE588999}” = Windows Live Writer
“{DAEF48AD-89C8-4A93-B1DD-45B7E4FB6071}” = Windows Live Movie Maker
“{DB1208F4-B2FE-44E9-BFE6-8824DBD7891B}” = Windows Live Movie Maker
“{DBAA2B17-D596-4195-A169-BA2166B0D69B}” = Windows Live Mail
“{DCAB6BA7-6533-44BF-9235-E5BF33B7431C}” = Windows Live Writer
“{DDC1E1BD-7615-4186-89E1-F5F43F9B6491}” = Windows Live Movie Maker
“{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}” = Windows Live Writer Resources
“{DE7C13A6-E4EA-4296-B0D5-5D7E8AD69501}” = Windows Live Writer
“{DE8F99FD-2FC7-4C98-AA67-2729FDE1F040}” = Windows Live Writer Resources
“{DECDCB7C-58CC-4865-91AF-627F9798FE48}” = Windows Live Mesh
“{DEF91E0F-D266-453D-B6F2-1BA002B40CB6}” = Windows Live Essentials
“{DF71ABBB-B834-41C0-BB58-80B0545D754C}” = Windows Live UX Platform Language Pack
“{E09C4DB7-630C-4F06-A631-8EA7239923AF}” = D3DX10
“{E2AE009D-37E5-4724-A6B8-0ED6A6BA4F68}” = Elements STI Installer
“{E337E787-CF61-4B7B-B84F-509202A54023}” = Nero RescueAgent 10
“{E3739848-5329-48E3-8D28-5BBD6E8BE384}” = CyberLink MediaEspresso
“{E4E88B54-4777-4659-967A-2EED1E6AFD83}” = Windows Live Movie Maker
“{E5377D46-83C5-445A-A1F1-830336B42A10}” = Windows Live Galerija fotografija
“{E55E0C35-AC3C-4683-BA2F-834348577B80}” = Windows Live Writer
“{E59969EA-3B5B-4B24-8B94-43842A7FBFE9}” = Fotogalerija Windows Live
“{E5DD4723-FE0B-436E-A815-DC23CF902A0B}” = Windows Live UX Platform Language Pack
“{E62E0550-C098-43A2-B54B-03FB1E634483}” = Windows Live Writer
“{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}” = Windows Live Writer Resources
“{E7688C7D-DE09-4D43-9785-534EDE9BC18E}” = Windows Live Messenger
“{E83DC314-C926-4214-AD58-147691D6FE9F}” = Основные компоненты Windows Live
“{E8524B28-3BBB-4763-AC83-0E83FE31C350}” = Windows Live Writer
“{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}” = Galería fotográfica de Windows Live
“{E9D98402-21AB-4E9F-BF6B-47AF36EF7E97}” = Windows Live Writer Resources
“{EA777812-4905-4C08-8F6E-13BDCC734609}” = Windows Live UX Platform Language Pack
“{EB4DF488-AAEF-406F-A341-CB2AAA315B90}” = Windows Live Messenger
“{EB9955F8-467C-47FC-90F8-12CD5DF684C3}” = Adobe Premiere Elements 9
“{ED16B700-D91F-44B0-867C-7EB5253CA38D}” = Raccolta foto di Windows Live
“{EE171732-BEB4-4576-887D-CB62727F01CA}” = Packard Bell Updater
“{EE492B20-FB15-4A98-883C-3054354A11F8}” = Windows Live Messenger
“{EEF99142-3357-402C-B298-DEC303E12D92}” = Windows Live 影像中心
“{EF7EAB13-46FC-49DD-8E3C-AAF8A286C5BB}” = Windows Live 程式集
“{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}” = Microsoft SQL Server 2005 Compact Edition [ENU]
“{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}” = Intel(R) Processor Graphics
“{F0F5D89A-197C-495B-827E-3E98B811CD2E}” = Windows Live Photo Common
“{F0F9505B-3ACF-4158-9311-D0285136AA00}” = Windows Live Essentials
“{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}” = Realtek High Definition Audio Driver
“{F13587F7-AA4C-4C2E-AE7D-F33F3CCE57A9}” = Windows Live Messenger
“{F302F4F0-588D-6501-1ACF-BE3FDCC9135D}” = Adobe Community Help
“{F4BEA6C1-AAC3-4810-AAEA-588E26E0F237}” = Windows Live UX Platform Language Pack
“{F52C5BE7-3F57-464E-8A54-908402E43CE8}” = Windows Live Writer Resources
“{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}” = Nero StartSmart 10 Help (CHM)
“{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}” = Nero StartSmart 10
“{F694D1F7-1F12-4550-9B7A-C871273ABAD5}” = Windows Live Messenger
“{F7A46527-DF1F-4B0F-9637-98547E189442}” = Windows Live Galeria de Fotos
“{F7E80BA7-A09D-4DD1-828B-C4A0274D4720}” = Windows Live Mesh
“{F80E5450-3EF3-4270-B26C-6AC53BEC5E76}” = Windows Live Movie Maker
“{F8A9085D-4C7A-41a9-8A77-C8998A96C421}” = Intel(R) Control Center
“{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}” = Windows Live Essentials
“{FA6CF94F-DACF-4FE7-959D-55C421B91B17}” = Windows Live Mail
“{FB3D07AE-73D0-47A9-AC12-6F50BF8B6202}” = Windows Live Movie Maker
“{FB79FDB7-4DE1-453D-99FE-9A880F57380E}” = Windows Live Fotogalerie
“{FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69}” = معرض صور Windows Live
“{FCBC19F7-E068-4B7A-ACBB-CE9CCEB4B21F}” = Windows Live Messenger
“{FCDE76CB-989D-4E32-9739-6A272D2B0ED7}” = Windows Live Mesh
“{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}” = Windows Live Essentials
“{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}” = Windows Live Essentials
“{FEEF7F78-5876-438B-B554-C4CC426A4302}” = Windows Live Essentials
“{FF105207-8423-4E13-B0B1-50753170B245}” = Windows Live Movie Maker
“{FF3DFA01-1E98-46B4-A065-DA8AD47C9598}” = Windows Live Movie Maker
“{FF737490-5A2D-4269-9D82-97DB2F7C0B09}” = Windows Live Movie Maker
“Adobe AIR” = Adobe AIR
“Adobe Photoshop Elements 9” = Adobe Photoshop Elements 9
“chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1” = Adobe Community Help
“CSI - Fatal Conspiracy” = CSI - Fatal Conspiracy
“ESET Online Scanner” = ESET Online Scanner v3
“HP Photo Creations” = HP Photo Creations
“Identity Card” = Identity Card
“InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}” = Video Web Camera
“InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}” = Packard Bell Social Networks
“InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}” = CyberLink MediaEspresso
“InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}” = Kaspersky Internet Security 2012
“LManager” = Launch Manager
“Malwarebytes’ Anti-Malware_is1” = Malwarebytes Anti-Malware version 1.61.0.1400
“Packard Bell Registration” = Packard Bell Registration
“Packard Bell Screensaver” = Packard Bell ScreenSaver
“Packard Bell Welcome Center” = Welcome Center
“PremElem90” = Adobe Premiere Elements 9
“WildTangent packardbell Master Uninstall” = Packard Bell Games
“WinLiveSuite” = Windows Live Essentials
“WTA-008131b8-7cca-4536-9d3d-e4771ff74b2d” = Penguins!
“WTA-047dc6c6-e40a-4df6-b4d5-2ef0d746cc6c” = Agatha Christie - Death on the Nile
“WTA-05ec8a03-608f-412a-b602-3fa167d2f117” = Chuzzle Deluxe
“WTA-09e484e9-54d1-46ef-b048-dbfdc47e3eaf” = Jewel Quest Solitaire
“WTA-0a0cac8d-3e39-4f86-a504-99dc8b5fc4cb” = Insaniquarium Deluxe
“WTA-13d63ef2-22cb-4c25-9f7c-47d565700cea” = Mystery of Mortlake Mansion
“WTA-21a14518-4122-4918-967a-a37c8fe1647a” = Jewel Match 3
“WTA-33d6e137-7dcd-4870-b175-100993634dc7” = Crazy Chicken Kart 2
“WTA-3ffc030f-aac2-414b-9b99-75ad1254d8c2” = Zuma Deluxe
“WTA-4b128ebb-6577-47cc-80f3-6f3871f9efe5” = Torchlight
“WTA-55991bff-d67c-4369-83d7-f0a5754e272b” = Slingo Deluxe
“WTA-5b009bb2-6b6a-4076-a8b0-a82cd34b738f” = Polar Bowler
“WTA-5ee7d076-c2cb-4a30-b524-ba44b05c1ce4” = Plants vs. Zombies - Game of the Year
“WTA-6484cd9f-c0db-4bef-a182-0ca292550e88” = Final Drive: Nitro
“WTA-9698dcd7-bc52-4c1f-9002-ee2ed0b11777” = FATE
“WTA-9af5fcb3-0333-46e4-806c-6d8aebf4cc06” = Bejeweled 2 Deluxe
“WTA-b76f1667-bf5e-4880-9a77-c265b365fba7” = John Deere Drive Green
“WTA-ec387079-eb2e-4ec0-a11f-b8efdbcc1620” = Wedding Dash
“WTA-f23a6332-d7bd-4158-abf7-fa03095d3afd” = Virtual Villagers 4 - The Tree of Life

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
“Google Chrome” = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 9000
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 7040
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 7042
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 9002
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 3029
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 3029
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 3028
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 3058
Description =

Error - 4/5/2012 3:34:59 AM | Computer Name = Britta-Pc | Source = Windows Search Service | ID = 7010
Description =

Error - 4/5/2012 3:35:01 AM | Computer Name = Britta-Pc | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 5/12/2012 3:20:51 PM | Computer Name = Britta-Pc | Source = BugCheck | ID = 1001
Description =

Error - 5/14/2012 4:24:57 PM | Computer Name = Britta-Pc | Source = EventLog | ID = 6008
Description = Den foregående systemlukning kl. 23:35:08 d. ?13-?05-?2012 var uventet.

Error - 5/15/2012 12:45:12 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7024
Description = Tjenesten Windows Search blev afbrudt med den tjenestespecifikke fejl
%%-1073473535.

Error - 5/15/2012 12:45:12 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7031
Description = Tjenesten Windows Search blev afbrudt uventet. Dette er sket 1 gange.
Følgende korrigerende handling foretages om 30000 millisekunder: Genstart tjenesten.

Error - 5/15/2012 12:45:19 PM | Computer Name = Britta-Pc | Source = DCOM | ID = 10005
Description =

Error - 5/15/2012 12:45:19 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7009
Description = Der opstod timeout (30000 millisekunder), mens systemet ventede på,
at der blev oprettet forbindelse til tjenesten Windows Search.

Error - 5/15/2012 12:45:19 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7000
Description = Tjenesten Windows Search kunne ikke starte pga. følgende fejl:  S

Error - 5/15/2012 12:45:30 PM | Computer Name = Britta-Pc | Source = DCOM | ID = 10005
Description =

Error - 5/15/2012 12:45:30 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7009
Description = Der opstod timeout (30000 millisekunder), mens systemet ventede på,
at der blev oprettet forbindelse til tjenesten Windows Search.

Error - 5/15/2012 12:45:30 PM | Computer Name = Britta-Pc | Source = Service Control Manager | ID = 7000
Description = Tjenesten Windows Search kunne ikke starte pga. følgende fejl:  S


< End of report >

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

hver gang jeg har nolleret mig ud i et eller andet som jeg ikke fatter en dør af


Vil du ikke indvie mig i hvordan du gør det, for det lyder spændende             LOL

 

Bortset fra det, så er der forbløffende mange installationer der har noget at gøre med - Windows Live Essentials - har der været ged i (nogen) installationer der ?


· Start OTL
· Kopier nedenstånde med fed skrift ind  i Custom Scan feltet

 

:OTL
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://www.bing.com/search?q={searchTerms}&form=APBTDF&pc=MAPB&src=IE-SearchBox
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4 - HKLM..\Run: []  File not found
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
:Reg
:Files
echo,Y|cacls “%WinDir%\system32\drivers\etc\hosts” /G everyone:f /c
netsh int ip reset c:\resetlog.txt /c
netsh winsock reset catalog /c
ipconfig /flushdns /c
:Commands
[purity]
[resethosts]
[CreateRestorePoint]
[emptytemp]
[EMPTYFLASH]


· Klik på   Run Fix - Knappen
· Hvis OTL spørger om at genstarte, så sig ja.
· Klik på OK.

· En log vil åbne, kopier den herind i dit næste svar.
· 
· Ellers kan den findes her:
·  C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log, where mmddyyyy_hhmmss 

Signatur

Sund Computer fornuft

Antal indlæg: 150
Magic Emeritus - 23.05.2012 15:06:39

hver gang jeg har nolleret mig ud i et eller andet som jeg ikke fatter en dør af


Vil du ikke indvie mig i hvordan du gør det, for det lyder spændende             LOL

 

Kan ikke give dig en forklaring på hvordan jeg gør det ... Men ved bare jeg bliver HYS, når computeren ikke virker som jeg vil ha den skal !! ... Og så prøver man jo alverdens ideer til at fixe skidtet ... Men sjovt nok - Så ender jeg skisme altid herinde ..  LOL  red face

Vender lige tilbage, når OTL er kørt igen.

Hilsen Nielsen2000

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Antal indlæg: 150

Så er der kørt fix ..

All processes killed
========== OTL ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\ deleted successfully.
C:\Windows\SysWow64\sho9C3F.tmp deleted successfully.
File rity] not found.
File sethosts] not found.
File eateRestorePoint] not found.
File ptytemp] not found.
File PTYFLASH] not found.

OTL by OldTimer - Version 3.2.43.1 log created on 05232012_160241

Files\Folders moved on Reboot…

Registry entries deleted on Reboot…


Har kun brugt Windows Live-dims til Mail kortvarrigt, indtil jeg fik lagt outlook på computeren. Så derfor har jeg ikke oplevet problemer der.

Er der mere at komme efter ??

Hilsen Nielsen2000

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

Lad os lige tage et tjek mere.


Hent Combofix, og gem den på dit skrivebord:
Her

NB -> Deaktiver dit antivirus/antispyware program. Da det/de kan ”forstyrre” og konflikte med combofix, eller fjerne vigtige combofix filer, hvilket kan få computeren til fryse. 


Kør så combofix.exe, og følg anvisningerne.


Du bør ikke klikke på vinduet imens værktøjet kører, idet det kan få din computer til at fryse.

Når combofix er færdig, og efter det (muligvis) har genstartet, skulle der gerne åbnes en logfil: combofix.txt
Indholdet af denne fil må du gerne lægge herind.

Den kan også findes her - > C: combofix txt

Signatur

Sund Computer fornuft

Antal indlæg: 150

Så blev Combofix færdig ...

ComboFix 12-05-23.05 - Britta 23-05-2012 18:57:04.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.45.1030.18.3948.2603 [GMT 2:00]
Kører fra: c:\users\Britta\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {2EAA32A5-1EE1-1B22-95DA-337730C6E984}
FW: Kaspersky Internet Security *Disabled* {1691B380-548E-1A7A-BE85-9A42CE15AEFF}
SP: Kaspersky Internet Security *Disabled/Updated* {95CBD341-38DB-14AC-AF6A-08054B41A339}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((  Filer skabt fra 2012-04-23 til 2012-05-23 )))))))))))))))))))))))))))))))))))
.
.
2012-05-23 17:03 . 2012-05-23 17:03   ————  d——-w-  c:\users\UpdatusUser\AppData\Local\temp
2012-05-23 17:03 . 2012-05-23 17:03   ————  d——-w-  c:\users\Default\AppData\Local\temp
2012-05-23 14:02 . 2012-05-23 14:02   ————  d——-w-  C:\_OTL
2012-05-23 07:48 . 2012-05-23 07:48   ————  d——-w-  c:\program files (x86)\ESET
2012-05-19 20:24 . 2012-05-19 20:24   ————  d——-w-  c:\users\Britta\AppData\Local\Diagnostics
2012-05-18 15:11 . 2012-05-18 15:11   ————  d——-w-  c:\users\Britta\AppData\Roaming\Malwarebytes
2012-05-18 15:11 . 2010-04-29 13:39   38224   ——a-w-  c:\windows\SysWow64\drivers\mbamswissarmy.sys
2012-05-18 15:11 . 2012-05-18 15:13   ————  d——-w-  c:\program files (x86)\Malwarebytes’ Anti-Malware
2012-05-18 15:11 . 2012-05-18 15:11   ————  d——-w-  c:\programdata\Malwarebytes
2012-05-18 15:11 . 2012-04-04 13:56   24904   ——a-w-  c:\windows\system32\drivers\mbam.sys
2012-05-17 09:40 . 2012-05-17 09:41   ————  d——-w-  c:\programdata\Solidshield
2012-05-17 09:38 . 2008-10-27 08:04   25936   ——a-w-  c:\windows\system32\X3DAudio1_5.dll
2012-05-17 09:28 . 2012-05-17 09:28   ————  d——-w-  c:\program files (x86)\Ubisoft
2012-05-13 08:50 . 2012-05-13 08:50   ————  d——-w-  c:\program files\Microsoft Silverlight
2012-05-13 08:50 . 2012-05-13 08:50   ————  d——-w-  c:\program files (x86)\Microsoft Silverlight
2012-05-13 08:11 . 2012-03-31 05:42   1732096   ——a-w-  c:\program files\Windows Journal\NBDoc.DLL
2012-05-13 08:11 . 2012-03-31 05:40   1402880   ——a-w-  c:\program files\Windows Journal\JNWDRV.dll
2012-05-13 08:11 . 2012-03-31 05:40   1367552   ——a-w-  c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2012-05-13 08:11 . 2012-03-31 05:40   1393664   ——a-w-  c:\program files\Windows Journal\JNTFiltr.dll
2012-05-13 08:11 . 2012-03-31 04:29   936960   ——a-w-  c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2012-05-13 08:11 . 2012-03-31 06:05   5559664   ——a-w-  c:\windows\system32\ntoskrnl.exe
2012-05-13 08:11 . 2012-03-30 11:35   1918320   ——a-w-  c:\windows\system32\drivers\tcpip.sys
2012-05-13 08:11 . 2012-03-31 04:39   3968368   ——a-w-  c:\windows\SysWow64\ntkrnlpa.exe
2012-05-13 08:11 . 2012-03-31 04:39   3913072   ——a-w-  c:\windows\SysWow64\ntoskrnl.exe
2012-05-13 08:11 . 2012-03-31 03:10   3146240   ——a-w-  c:\windows\system32\win32k.sys
2012-05-13 08:10 . 2012-03-03 06:35   1544704   ——a-w-  c:\windows\system32\DWrite.dll
2012-05-13 08:10 . 2012-03-03 05:31   1077248   ——a-w-  c:\windows\SysWow64\DWrite.dll
2012-05-13 08:10 . 2012-03-17 07:58   75120   ——a-w-  c:\windows\system32\drivers\partmgr.sys
2012-05-06 16:46 . 2012-05-06 16:52   ————  d——-w-  c:\programdata\HP Photo Creations
2012-05-06 16:46 . 2012-05-06 16:46   ————  d——-w-  c:\program files (x86)\HP Photo Creations
2012-05-06 16:46 . 2012-05-06 16:46   ————  d——-w-  c:\users\Britta\AppData\Roaming\HpUpdate
2012-05-06 16:46 . 2012-05-06 16:46   ————  d——-w-  c:\programdata\HP
2012-05-06 16:45 . 2012-05-06 16:46   ————  d——-w-  c:\program files (x86)\HP
2012-05-06 16:45 . 2012-05-06 16:45   ————  d——-w-  c:\program files\HP
2012-05-06 16:45 . 2012-05-06 16:49   ————  d——-w-  c:\users\Britta\AppData\Local\HP
.
.
.
((((((((((((((((((((((((((((((((((((((((  Find3M Rapport   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-14 20:31 . 2012-04-01 07:09   419488   ——a-w-  c:\windows\SysWow64\FlashPlayerApp.exe
2012-05-14 20:31 . 2011-07-20 14:06   70304   ——a-w-  c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-03-01 06:46 . 2012-04-12 20:23   23408   ——a-w-  c:\windows\system32\drivers\fs_rec.sys
2012-03-01 06:38 . 2012-04-12 20:23   220672   ——a-w-  c:\windows\system32\wintrust.dll
2012-03-01 06:33 . 2012-04-12 20:23   81408   ——a-w-  c:\windows\system32\imagehlp.dll
2012-03-01 06:28 . 2012-04-12 20:23   5120   ——a-w-  c:\windows\system32\wmi.dll
2012-03-01 05:37 . 2012-04-12 20:23   172544   ——a-w-  c:\windows\SysWow64\wintrust.dll
2012-03-01 05:33 . 2012-04-12 20:23   159232   ——a-w-  c:\windows\SysWow64\imagehlp.dll
2012-03-01 05:29 . 2012-04-12 20:23   5120   ——a-w-  c:\windows\SysWow64\wmi.dll
2012-02-28 06:56 . 2012-04-12 20:26   2311168   ——a-w-  c:\windows\system32\jscript9.dll
2012-02-28 06:49 . 2012-04-12 20:26   1390080   ——a-w-  c:\windows\system32\wininet.dll
2012-02-28 06:48 . 2012-04-12 20:26   1493504   ——a-w-  c:\windows\system32\inetcpl.cpl
2012-02-28 06:42 . 2012-04-12 20:26   2382848   ——a-w-  c:\windows\system32\mshtml.tlb
2012-02-28 01:18 . 2012-04-12 20:26   1799168   ——a-w-  c:\windows\SysWow64\jscript9.dll
2012-02-28 01:11 . 2012-04-12 20:26   1427456   ——a-w-  c:\windows\SysWow64\inetcpl.cpl
2012-02-28 01:11 . 2012-04-12 20:26   1127424   ——a-w-  c:\windows\SysWow64\wininet.dll
2012-02-28 01:03 . 2012-04-12 20:26   2382848   ——a-w-  c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((((((((  Start steder i reg.basen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Bemærk* tomme linier & lovlige standard linier vises ikke
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“Sidebar”=“c:\program files\Windows Sidebar\sidebar.exe” [2010-11-21 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
“LManager”=“c:\program files (x86)\Launch Manager\LManager.exe” [2011-07-01 1103440]
“AVP”=“c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe” [2011-04-24 202296]
“SunJavaUpdateSched”=“c:\program files (x86)\Common Files\Java\Java Update\jusched.exe” [2012-01-18 254696]
“Adobe ARM”=“c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe” [2012-01-03 843712]
“HP Software Update”=“c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe” [2010-06-09 49208]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
“ConsentPromptBehaviorUser”= 3 (0x3)
“EnableUIADesktopToggle”= 0 (0x0)
“EnableLinkedConnections”= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
“AppInit_DLLs”=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
“aux”=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages   REG_MULTI_SZ     kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
“DisableMonitoring”=dword:00000001
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Tjenesten Windows Aktivering;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x]
S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-07-01 353360]
S2 ePowerSvc;Acer ePower Service;c:\program files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2011-05-10 872552]
S2 GREGService;GREGService;c:\program files (x86)\Packard Bell\Registration\GREGsvc.exe [2011-01-18 39528]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-04-30 13592]
S2 Live Updater Service;Live Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2011-04-22 244624]
S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2011-03-29 598312]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-03-30 2009704]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-22 2656280]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [x]
S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
.
.
—- Andre Services/Drivers i Hukommelsen—-
.
*NewlyCreated* - WS2IFSL
.
Indhold af mappen ‘Planlagte Opgaver’
.
2012-05-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001Core.job
- c:\users\Britta\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-10 20:48]
.
2012-05-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001UA.job
- c:\users\Britta\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-10 20:48]
.
.
————- x86-64—————-
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“IgfxTray”=“c:\windows\system32\igfxtray.exe” [2011-06-21 167704]
“HotKeysCmds”=“c:\windows\system32\hkcmd.exe” [2011-06-21 392472]
“Persistence”=“c:\windows\system32\igfxpers.exe” [2011-06-21 416024]
“RtHDVCpl”=“c:\program files\Realtek\Audio\HDA\RAVCpl64.exe” [2011-03-10 11785832]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
“LoadAppInit_DLLs”=0x1
“AppInit_DLLs”=c:\windows\System32\nvinitx.dll
.
———- Yderligere scanning———-
.
uStart Page = hxxp://www.tv2.dk/
uLocal Page = c:\windows\system32\blank.htm
mStart Page =
mLocal Page =
IE: E&ksporter; til Microsoft Excel - c:\progra~2\MICROS~4\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 88.83.72.106 88.83.68.10 80.71.80.188 80.71.80.189
.
- - - - TOMME GENVEJE FJERNET - - - -
.
HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe
.
.
.
——————————- LÅSTE REGISTRERINGS NØGLER——————————-
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@=“FlashBroker”
“LocalizedString”=”@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
“Enabled”=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@=“c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@=”{FAB3E735-69C7-453B-A446-B6823C6DF1C9}”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@=“Shockwave Flash Object”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@=“c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx”
“ThreadingModel”=“Apartment”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@=“0”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@=“ShockwaveFlash.ShockwaveFlash.11”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@=“c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@=”{D27CDB6B-AE6D-11cf-96B8-444553540000}”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@=“1.0”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@=“ShockwaveFlash.ShockwaveFlash”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@=“Macromedia Flash Factory Object”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@=“c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx”
“ThreadingModel”=“Apartment”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@=“FlashFactory.FlashFactory.1”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@=“c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@=”{D27CDB6B-AE6D-11cf-96B8-444553540000}”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@=“1.0”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@=“FlashFactory.FlashFactory”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@=“IFlashBroker4”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@=”{00020424-0000-0000-C000-000000000046}”
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@=”{FAB3E735-69C7-453B-A446-B6823C6DF1C9}”
“Version”=“1.0”
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
————————————Andre kørende processer————————————
.
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
.
**************************************************************************
.
Gennemført tid: 2012-05-23 19:08:39 - maskinen blev genstartet
ComboFix-quarantined-files.txt 2012-05-23 17:08
.

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

Det ser godt nok ud, så fortæl lige hvordan tingene kører nu ?

Signatur

Sund Computer fornuft

Antal indlæg: 150

har stadig problemer med klikkeriet, men har min mus mistænkt for at den trænger til en udskiftning ... fordi når jeg bruger touchpad’n, er der ingen problemer..

Er der andet jeg burde gøre ??..  smile

Hilsen Nielsen2000

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

Lyder som en god idé med en ny mus.

Er der andet jeg burde gøre


Ikke ud fra logfilerne, og hvordan du nollererer dig ud i noget, vil jeg slet ikke blande mig i     cheese


For du er jo altid velkommen herinde…............


Start OTL, tryk på Cleanup, så vil den fjerne de programmer vi har kørt.

Signatur

Sund Computer fornuft

Antal indlæg: 150

Har kørt en CleanUp med OTL ...

Men har lige et sidste spørgsmål ...
Når jeg kører En Ccleaner og scanner i Register efter problemer, så bliver jeg ved at med få de samme 37 problemer op, selvom jeg siger ok til at slette dem ..
Hvordan kan det være ??

Følgende bliver ved at dukke op :

ActiveX/COM problem   ehGLID.GLIDPlugInUDCR - {C3F8B282-5B69-47F0-80C3-A22A97FF2EB5}  HKCR\ehGLID.GLIDPlugInUDCR
ActiveX/COM problem   ehGLID.GLIDPlugInUDCR.1 - {C3F8B282-5B69-47F0-80C3-A22A97FF2EB5}  HKCR\ehGLID.GLIDPlugInUDCR.1
ActiveX/COM problem   InProcServer32\C:\Windows\SysWOW64\wpcmig.dll   HKCR\CLSID\{343D770D-7788-47c2-B62A-B7C4CED925CB}
ActiveX/COM problem   InProcServer32\C:\Windows\SysWOW64\wpcumi.dll   HKCR\CLSID\{DFA14C43-F385-4170-99CC-1B7765FA0E4A}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\tm20dec.ax   HKCR\CLSID\{4CB63E62-C611-11D0-83AA-000092900184}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\tm20dec.ax   HKCR\CLSID\{4CB63E61-C611-11D0-83AA-000092900184}
ActiveX/COM problem   InProcServer32\%systemroot%\system32\sharemediacpl.cpl   HKCR\CLSID\{B977CB2D-EC6E-4A8F-BFFE-D18682BB0D52}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{E369A160-F3C2-11D0-91D4-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{C1C0FE00-F3C2-11D0-91D4-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{84725EA1-2FBC-11D1-BC86-00A0C969FC67}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{665A444A-D905-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{665A4448-D905-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{665A4445-D905-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{665A4444-D905-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{665A4443-D905-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{30355649-0000-0010-8000-00AA00389B71}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{2DE89781-DBF6-11D0-A30E-444553540000}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir50_32.dll   HKCR\CLSID\{1F73E9B1-8C3A-11D0-A3BE-00A0C9244436}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{BD323433-CE94-11CE-82DD-0800095A5B55}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{BD323432-CE94-11CE-82DD-0800095A5B55}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{BD323431-CE94-11CE-82DD-0800095A5B55}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{BD323430-CE94-11CE-82DD-0800095A5B55}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{A2551F60-705F-11CF-A424-00AA003735BE}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{87CA6F04-49E4-11CF-A3FE-00AA003735BE}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{87CA6F02-49E4-11CF-A3FE-00AA003735BE}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\ir41_32.ax   HKCR\CLSID\{31345649-0000-0010-8000-00AA00389B71}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\iac25_32.ax   HKCR\CLSID\{C83B5610-E0DF-11D0-9E00-00AA00AF3494}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\iac25_32.ax   HKCR\CLSID\{B4CA2971-DD2B-11D0-9DFA-00AA00AF3494}
ActiveX/COM problem   InProcServer32\C:\Windows\system32\iac25_32.ax   HKCR\CLSID\{B4CA2970-DD2B-11D0-9DFA-00AA00AF3494}
Manglende TypeLib reference   IRoamRemoteStore - {38e8db48-2747-444f-970d-8437534991ca}  HKCR\Interface\{062c7f3f-5d6c-426b-95d9-69dddcf524ad}
Manglende TypeLib reference   IRoamTokens - {38e8db48-2747-444f-970d-8437534991ca}  HKCR\Interface\{3581572a-9b9e-4500-bcad-5bb5a737b0e2}
Manglende TypeLib reference   IRoamLocalStore - {38e8db48-2747-444f-970d-8437534991ca}  HKCR\Interface\{435eb1b8-b681-4569-b862-551e13764315}
Manglende TypeLib reference   IRoamFilters - {38e8db48-2747-444f-970d-8437534991ca}  HKCR\Interface\{5a36a745-8357-49ff-92ee-9a5bfe043496}
Manglende TypeLib reference   IRoamConflictResolution - {38e8db48-2747-444f-970d-8437534991ca}  HKCR\Interface\{5c60f565-4f7f-4894-a9c8-1c4cad355f16}
Manglende TypeLib reference   IIndeoEncodeOA - {665A4446-D905-11D0-A30E-444553540000}  HKCR\Interface\{665A4449-D905-11D0-A30E-444553540000}
Manglende TypeLib reference   IIndeoDecodeOA - {665A4446-D905-11D0-A30E-444553540000}  HKCR\Interface\{665A4447-D905-11D0-A30E-444553540000}
Programstis problem   SnippingTool.exe - %SystemRoot%\system32\SnippingTool.exe   HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\SnippingTool.exe

What to do now ???

Hilsen Nielsen2000

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink

Administrator
Avatar
Antal indlæg: 32085

Der kom en Pinse i vejen - Beklager         cheese


Lad os komme lidt længere ind i systemet, for at se om du kan blive fri for at scanne de filer hele tiden.


· Start OTL
· Kopier nedenstånde med fed skrift ind  i Custom Scan feltet.

netsvcs
drivers32
%SYSTEMDRIVE%\*.*
%systemroot%\Fonts\*.com
%systemroot%\Fonts\*.dll
%systemroot%\Fonts\*.ini
%systemroot%\Fonts\*.ini2
%systemroot%\Fonts\*.exe
%systemroot%\system32\spool\prtprocs\w32x86\*.*
%systemroot%\REPAIR\*.bak1
%systemroot%\REPAIR\*.ini
%systemroot%\system32\*.jpg
%systemroot%\*.jpg
%systemroot%\*.png
%systemroot%\*.scr
%systemroot%\*._sy
%APPDATA%\Adobe\Update\*.*
%ALLUSERSPROFILE%\Favorites\*.*
%APPDATA%\Microsoft\*.*
%PROGRAMFILES%\*.*
%APPDATA%\Update\*.*
%systemroot%\*. /mp /s
CREATERESTOREPOINT
%systemroot%\System32\config\*.sav
%PROGRAMFILES%\bak. /s
%systemroot%\system32\bak. /s
%ALLUSERSPROFILE%\Start Menu\*.lnk /x
%systemroot%\system32\config\systemprofile\*.dat /x
%systemroot%\*.config
%systemroot%\system32\*.db
%APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x
%USERPROFILE%\Desktop\*.exe
%PROGRAMFILES%\Common Files\*.*
%systemroot%\*.src
%systemroot%\install\*.*
%systemroot%\system32\DLL\*.*
%systemroot%\system32\HelpFiles\*.*
%systemroot%\system32\rundll\*.*
%systemroot%\winn32\*.*
%systemroot%\Java\*.*
%systemroot%\system32\test\*.*
%systemroot%\system32\Rundll32\*.*
%systemroot%\AppPatch\Custom\*.*
%APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x
%PROGRAMFILES%\PC-Doctor\Downloads\*.*
%PROGRAMFILES%\Internet Explorer\*.tmp
%PROGRAMFILES%\Internet Explorer\*.dat
%USERPROFILE%\My Documents\*.exe
%USERPROFILE%\*.exe
%systemroot%\ADDINS\*.*
%systemroot%\assembly\*.bak2
%systemroot%\Config\*.*
%systemroot%\REPAIR\*.bak2
%systemroot%\SECURITY\Database\*.sdb /x
%systemroot%\SYSTEM\*.bak2
%systemroot%\Web\*.bak2
%systemroot%\Driver Cache\*.*
%PROGRAMFILES%\Mozilla Firefox\0*.exe
%ProgramFiles%\Microsoft Common\*.*
%ProgramFiles%\TinyProxy.
%USERPROFILE%\Favorites\*.url /x
%systemroot%\system32\*.bk
%systemroot%\*.te
%systemroot%\system32\system32\*.*
%ALLUSERSPROFILE%\*.dat /x
%systemroot%\system32\drivers\*.rmv
dir /b “%systemroot%\system32\*.exe” | find /i ” ” /c
dir /b “%systemroot%\*.exe” | find /i ” ” /c
%PROGRAMFILES%\Microsoft\*.*
%systemroot%\System32\Wbem\proquota.exe
%PROGRAMFILES%\Mozilla Firefox\*.dat
%USERPROFILE%\Cookies\*.txt /x
%SystemRoot%\system32\fonts\*.*
%systemroot%\system32\winlog\*.*
%systemroot%\system32\Language\*.*
%systemroot%\system32\Settings\*.*
%systemroot%\system32\*.quo
%SYSTEMROOT%\AppPatch\*.exe
%SYSTEMROOT%\inf\*.exe
%SYSTEMROOT%\Installer\*.exe
%systemroot%\system32\config\*.bak2
%systemroot%\system32\Computers\*.*
%SystemRoot%\system32\Sound\*.*
%SystemRoot%\system32\SpecialImg\*.*
%SystemRoot%\system32\code\*.*
%SystemRoot%\system32\draft\*.*
%SystemRoot%\system32\MSSSys\*.*
%ProgramFiles%\Javascript\*.*
%systemroot%\pchealth\helpctr\System\*.exe /s
%systemroot%\Web\*.exe
%systemroot%\system32\msn\*.*
%systemroot%\system32\*.tro
%AppData%\Microsoft\Installer\msupdates\*.*
%ProgramFiles%\Messenger\*.*
%systemroot%\system32\system32\*.*
%systemroot%\system\*.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
/md5start
/md5stop


Klik så på QuickScan.

Det vil give to (2) logfiler på skrivebordet, en kaldet OTL.txt, den anden vil blive navngivet Extras.txt.
Husk, hvor du har gemt disse 2 filer.

Da de er forholdsvis lange, kan du blive nødt til at sende dem i flere indlæg.

Signatur

Sund Computer fornuft

Antal indlæg: 150

Pinsen skal jo holdes og nydes ... Det er jo med at passe kirketiden ..  cool smile

Har scannet med OTL endnu en gang

OTL logfile created on: 5/28/2012 10:20:04 AM - Run 1
OTL by OldTimer - Version 3.2.43.2   Folder = C:\Users\Britta\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Danmark | Language: DAN | Date Format: dd-MM-yyyy

3.86 Gb Total Physical Memory | 2.50 Gb Available Physical Memory | 64.96% Memory free
7.71 Gb Paging File | 6.21 Gb Available in Paging File | 80.62% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 678.54 Gb Total Space | 630.54 Gb Free Space | 92.93% Space Free | Partition Type: NTFS

Computer Name: BRITTA-PC | User Name: Britta | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/05/28 10:18:30 | 000,595,968 |——| M] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
PRC - [2012/05/14 22:31:23 | 000,351,904 |——| M] (Adobe Systems Incorporated)—C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_235_ActiveX.exe
PRC - [2012/01/03 06:10:42 | 000,063,928 |——| M] (Adobe Systems Incorporated)—C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/07/01 04:51:14 | 000,418,896 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LMutilps32.exe
PRC - [2011/07/01 04:51:14 | 000,343,632 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LMworker.exe
PRC - [2011/07/01 04:51:12 | 001,103,440 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\LManager.exe
PRC - [2011/07/01 04:51:12 | 000,353,360 |——| M] (Dritek System Inc.)—C:\Program Files (x86)\Launch Manager\dsiwmis.exe
PRC - [2011/05/20 18:44:32 | 000,986,208 |——| M] (CyberLink)—C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
PRC - [2011/04/30 09:32:54 | 000,013,592 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011/04/25 00:15:02 | 000,202,296 |——| M] (Kaspersky Lab ZAO)—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
PRC - [2011/04/22 18:44:14 | 000,244,624 |——| M] (Acer Incorporated)—C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
PRC - [2011/03/31 00:05:00 | 002,009,704 |——| M] (NVIDIA Corporation)—C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011/03/30 00:33:08 | 000,598,312 |——| M] (Nero AG)—C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/01/18 04:52:26 | 000,039,528 |——| M] (Acer Incorporated)—C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
PRC - [2010/12/22 22:25:02 | 002,656,280 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/12/22 22:24:58 | 000,325,656 |——| M] (Intel Corporation)—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010/09/30 12:06:46 | 000,169,408 |——| M] (Adobe Systems Incorporated)—C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe


========== Modules (No Company Name) ==========

MOD - [2011/04/25 00:13:30 | 007,008,656 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtGui4.dll
MOD - [2011/04/25 00:13:28 | 000,192,912 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtSql4.dll
MOD - [2011/04/25 00:13:26 | 001,270,160 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtScript4.dll
MOD - [2011/04/25 00:13:26 | 000,758,160 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtNetwork4.dll
MOD - [2011/04/25 00:13:24 | 002,118,032 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtCore4.dll
MOD - [2011/04/25 00:13:24 | 002,089,360 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\QtDeclarative4.dll
MOD - [2011/04/20 20:56:28 | 000,025,088 |——| M] ()—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\imageformats\qgif4.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/05/10 23:01:08 | 000,872,552 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe—(ePowerSvc)
SRV:64bit: - [2011/04/22 18:44:14 | 000,244,624 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe—(Live Updater Service)
SRV:64bit: - [2010/09/23 03:10:10 | 000,057,184 |——| M] (Microsoft Corporation) [Disabled | Stopped]—C:\Program Files\Windows Live\Mesh\wlcrasvc.exe—(wlcrasvc)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 |——| M] (Microsoft Corporation) [On_Demand | Stopped]—C:\Program Files\Windows Defender\mpsvc.dll—(WinDefend)
SRV - [2012/01/03 06:10:42 | 000,063,928 |——| M] (Adobe Systems Incorporated) [Auto | Running]—C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe—(AdobeARMservice)
SRV - [2011/07/01 04:51:12 | 000,353,360 |——| M] (Dritek System Inc.) [Auto | Running]—C:\Program Files (x86)\Launch Manager\dsiwmis.exe—(DsiWMIService)
SRV - [2011/04/30 09:32:54 | 000,013,592 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe—(IAStorDataMgrSvc) Intel(R)
SRV - [2011/04/25 00:15:02 | 000,202,296 |——| M] (Kaspersky Lab ZAO) [Auto | Running]—C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe—(AVP)
SRV - [2011/03/31 00:05:00 | 002,009,704 |——| M] (NVIDIA Corporation) [Auto | Running]—C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe—(nvUpdatusService)
SRV - [2011/03/30 00:33:08 | 000,598,312 |——| M] (Nero AG) [Auto | Running]—C:\Program Files (x86)\Nero\Update\NASvc.exe—(NAUpdate) @C:\Program Files (x86)
SRV - [2011/01/18 04:52:26 | 000,039,528 |——| M] (Acer Incorporated) [Auto | Running]—C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe—(GREGService)
SRV - [2010/12/22 22:25:02 | 002,656,280 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe—(UNS) Intel(R)
SRV - [2010/12/22 22:24:58 | 000,325,656 |——| M] (Intel Corporation) [Auto | Running]—C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe—(LMS) Intel(R)
SRV - [2010/10/12 19:59:12 | 000,206,072 |——| M] (WildTangent, Inc.) [On_Demand | Stopped]—C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe—(GamesAppService)
SRV - [2010/09/30 12:06:46 | 000,169,408 |——| M] (Adobe Systems Incorporated) [Auto | Running]—C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe—(AdobeActiveFileMonitor9.0)
SRV - [2010/03/18 22:16:28 | 000,130,384 |——| M] (Microsoft Corporation) [Auto | Stopped]—C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe—(clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 |——| M] (Microsoft Corporation) [Disabled | Stopped]—C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe—(clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/03/01 08:46:16 | 000,023,408 |——| M] (Microsoft Corporation) [Recognizer | Boot | Unknown]—C:\Windows\SysNative\drivers\fs_rec.sys—(Fs_Rec)
DRV:64bit: - [2012/02/10 21:42:35 | 000,615,728 |——| M] (Kaspersky Lab) [File_System | System | Running]—C:\Windows\SysNative\drivers\klif.sys—(KLIF)
DRV:64bit: - [2011/06/10 20:16:10 | 012,230,912 |——| M] (Intel Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\igdkmd64.sys—(igfx)
DRV:64bit: - [2011/06/08 18:36:14 | 004,729,408 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\BCMWL664.SYS—(BCM43XX)
DRV:64bit: - [2011/05/16 23:57:32 | 000,051,240 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\bScsiMSa.sys—(bScsiMSa)
DRV:64bit: - [2011/05/10 05:42:16 | 000,425,000 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\k57nd60a.sys—(k57nd60a) Broadcom NetLink (TM)
DRV:64bit: - [2011/05/06 19:11:12 | 000,086,056 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\bScsiSDa.sys—(bScsiSDa)
DRV:64bit: - [2011/04/26 20:07:36 | 000,557,848 |——| M] (Intel Corporation) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\iaStor.sys—(iaStor)
DRV:64bit: - [2011/04/05 13:26:26 | 000,142,632 |——| M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\ETD.sys—(ETD)
DRV:64bit: - [2011/03/31 00:05:00 | 000,025,960 |——| M] (NVIDIA Corporation) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\nvpciflt.sys—(nvpciflt)
DRV:64bit: - [2011/03/11 08:41:12 | 000,107,904 |——| M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\amdsata.sys—(amdsata)
DRV:64bit: - [2011/03/11 08:41:12 | 000,027,008 |——| M] (Advanced Micro Devices) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\amdxata.sys—(amdxata)
DRV:64bit: - [2011/03/10 19:36:24 | 000,029,488 |——| M] (Kaspersky Lab ZAO) [Kernel | System | Running]—C:\Windows\SysNative\drivers\klim6.sys—(KLIM6)
DRV:64bit: - [2011/03/04 14:23:28 | 000,011,864 |——| M] (Kaspersky Lab ZAO) [Kernel | System | Running]—C:\Windows\SysNative\drivers\kl2.sys—(kl2)
DRV:64bit: - [2011/03/04 14:23:24 | 000,460,888 |——| M] (Kaspersky Lab ZAO) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\kl1.sys—(KL1)
DRV:64bit: - [2011/01/21 03:15:30 | 000,019,496 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\b57xdmp.sys—(b57xdmp)
DRV:64bit: - [2011/01/21 03:15:28 | 000,067,624 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\b57xdbd.sys—(b57xdbd)
DRV:64bit: - [2010/11/21 05:24:33 | 000,059,392 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\TsUsbFlt.sys—(TsUsbFlt)
DRV:64bit: - [2010/11/21 05:23:47 | 000,109,056 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\sdbus.sys—(sdbus)
DRV:64bit: - [2010/11/21 05:23:47 | 000,078,720 |——| M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\HpSAMD.sys—(HpSAMD)
DRV:64bit: - [2010/11/21 05:23:47 | 000,031,232 |——| M] (Microsoft Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\TsUsbGD.sys—(TsUsbGD)
DRV:64bit: - [2010/10/20 02:34:26 | 000,056,344 |——| M] (Intel Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\HECIx64.sys—(MEIx64) Intel(R)
DRV:64bit: - [2010/10/15 10:28:18 | 000,317,440 |——| M] (Intel(R) Corporation) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\IntcDAud.sys—(IntcDAud) Intel(R)
DRV:64bit: - [2010/03/19 12:00:00 | 000,055,856 |——| M] (Sonic Solutions) [Kernel | Boot | Running]—C:\Windows\SysNative\drivers\PxHlpa64.sys—(PxHlpa64)
DRV:64bit: - [2009/11/02 21:27:10 | 000,022,544 |——| M] (Kaspersky Lab) [Kernel | On_Demand | Running]—C:\Windows\SysNative\drivers\klmouflt.sys—(klmouflt)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 |——| M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\amdsbs.sys—(amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 |——| M] (LSI Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\lsi_sas2.sys—(LSI_SAS2)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 |——| M] (Promise Technology) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\stexstor.sys—(stexstor)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\evbda.sys—(ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\bxvbda.sys—(b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 |——| M] (Broadcom Corporation) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\b57nd60a.sys—(b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 |——| M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped]—C:\Windows\SysNative\drivers\hcw85cir.sys—(hcw85cir)
DRV - [2009/07/14 03:19:10 | 000,019,008 |——| M] (Microsoft Corporation) [File_System | On_Demand | Stopped]—C:\Windows\SysWOW64\drivers\wimmount.sys—(WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKLM\..\SearchScopes,DefaultScope =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.tv2.dk/
IE - HKCU\..\SearchScopes,DefaultScope = {6D542C77-1520-4B24-9AF5-A40597397A57}
IE - HKCU\..\SearchScopes\{6D542C77-1520-4B24-9AF5-A40597397A57}: “URL” = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie;={inputEncoding?}&oe;={outputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\linkfilter@kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\KavAntiBanner@Kaspersky.ru [2012/05/02 14:18:37 | 000,000,000 |—-D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie;={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl;={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.52\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\plugin/npUrlAdvisor.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\plugin/npVKPlugin.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: WildTangent Games App Presence Detector (Enabled) = C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Britta\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google-s\u00F8gning = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Kaspersky URL-r\u00E5dgiver = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\
CHR - Extension: Virtuelt Tastatur = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\
CHR - Extension: Gmail = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Anti-Banner = C:\Users\Britta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\

O1 HOSTS File: ([2012/05/23 19:04:50 | 000,000,027 |——| M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1     localhost
O2:64bit: - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O2:64bit: - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AVP] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: E&ksporter; til Microsoft Excel - res://C:\PROGRA~2\MICROS~4\OFFICE11\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Føj til Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm ()
O8 - Extra context menu item: E&ksporter; til Microsoft Excel - res://C:\PROGRA~2\MICROS~4\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Føj til Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm ()
O9:64bit: - Extra Button: &Virtuelt; Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O9:64bit: - Extra Button: URL-&kontrol; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: &Virtuelt; Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: URL-&kontrol; - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 88.83.72.106 88.83.68.10 80.71.80.188 80.71.80.189
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{40D51DEA-D2FB-4AF5-A0B8-3141E7EEC628}: DhcpNameServer = 88.83.72.106 88.83.68.10 80.71.80.188 80.71.80.189
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (C:\Windows\System32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\klogon: DllName - (%SystemRoot%\System32\klogon.dll) - C:\Windows\SysNative\klogon.dll (Kaspersky Lab ZAO)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open]—“%1” %*
O35:64bit: - HKLM\..exefile [open]—“%1” %*
O35 - HKLM\..comfile [open]—“%1” %*
O35 - HKLM\..exefile [open]—“%1” %*
O37:64bit: - HKLM\...com [@ = ComFile]—“%1” %*
O37:64bit: - HKLM\...exe [@ = exefile]—“%1” %*
O37 - HKLM\...com [@ = ComFile]—“%1” %*
O37 - HKLM\...exe [@ = exefile]—“%1” %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)


Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2012/05/28 10:18:27 | 000,595,968 |——| C] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
[2012/05/23 19:04:52 | 000,000,000 |—-D | C]—C:\$RECYCLE.BIN
[2012/05/23 18:55:56 | 000,000,000 |—-D | C]—C:\Windows\ERDNT
[2012/05/19 22:24:27 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Local\Diagnostics
[2012/05/18 17:11:18 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Roaming\Malwarebytes
[2012/05/18 17:11:05 | 000,000,000 |—-D | C]—C:\ProgramData\Malwarebytes
[2012/05/17 11:40:10 | 000,000,000 |—-D | C]—C:\ProgramData\Solidshield
[2012/05/17 11:28:58 | 000,000,000 |—-D | C]—C:\Program Files (x86)\Ubisoft
[2012/05/17 11:28:13 | 000,000,000 |—-D | C]—C:\Users\Britta\Documents\Telltale Games
[2012/05/13 10:51:03 | 000,000,000 |—-D | C]—C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2012/05/13 10:50:01 | 000,000,000 |—-D | C]—C:\Program Files\Microsoft Silverlight
[2012/05/13 10:50:01 | 000,000,000 |—-D | C]—C:\Program Files (x86)\Microsoft Silverlight
[2012/05/06 18:46:57 | 000,000,000 |—-D | C]—C:\ProgramData\HP Photo Creations
[2012/05/06 18:46:57 | 000,000,000 |—-D | C]—C:\Program Files (x86)\HP Photo Creations
[2012/05/06 18:46:42 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Roaming\HpUpdate
[2012/05/06 18:46:24 | 000,000,000 |—-D | C]—C:\ProgramData\HP
[2012/05/06 18:46:20 | 000,000,000 |—-D | C]—C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2012/05/06 18:45:52 | 000,000,000 |—-D | C]—C:\Program Files (x86)\HP
[2012/05/06 18:45:28 | 000,000,000 |—-D | C]—C:\Program Files\HP
[2012/05/06 18:45:04 | 000,000,000 |—-D | C]—C:\Users\Britta\AppData\Local\HP

========== Files - Modified Within 30 Days ==========

[2012/05/28 10:18:48 | 000,016,976 | -H—| M] ()—C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/05/28 10:18:48 | 000,016,976 | -H—| M] ()—C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/05/28 10:18:30 | 000,595,968 |——| M] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe
[2012/05/28 10:11:26 | 000,067,584 |—S- | M] ()—C:\Windows\bootstat.dat
[2012/05/28 10:11:21 | 3104,722,944 | -HS- | M] ()—C:\hiberfil.sys
[2012/05/27 21:58:00 | 000,000,946 |——| M] ()—C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001UA.job
[2012/05/26 11:58:00 | 000,000,894 |——| M] ()—C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-777042287-347743208-1728553009-1001Core.job
[2012/05/23 19:04:50 | 000,000,027 |——| M] ()—C:\Windows\SysNative\drivers\etc\hosts
[2012/05/23 11:10:21 | 000,000,322 |——| M] ()—C:\Users\Britta\intlname.ols
[2012/05/17 11:27:11 | 000,000,834 |——| M] ()—C:\Users\Public\Desktop\CCleaner.lnk
[2012/05/13 18:53:09 | 001,264,910 |——| M] ()—C:\Windows\SysNative\PerfStringBackup.INI
[2012/05/13 18:53:09 | 000,616,028 |——| M] ()—C:\Windows\SysNative\perfh009.dat
[2012/05/13 18:53:09 | 000,470,344 |——| M] ()—C:\Windows\SysNative\perfh006.dat
[2012/05/13 18:53:09 | 000,106,408 |——| M] ()—C:\Windows\SysNative\perfc009.dat
[2012/05/13 18:53:09 | 000,079,946 |——| M] ()—C:\Windows\SysNative\perfc006.dat
[2012/05/13 10:47:47 | 000,001,145 |——| M] ()—C:\Users\Britta\Application Data\Microsoft\Internet Explorer\Quick Launch\Start Microsoft Office Outlook.lnk
[2012/05/13 10:40:48 | 000,362,088 |——| M] ()—C:\Windows\SysNative\FNTCACHE.DAT
[2012/05/06 18:47:00 | 000,001,109 |——| M] ()—C:\Users\Public\Desktop\HP Photo Creations.lnk
[2012/05/06 18:46:20 | 000,002,248 |——| M] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk
[2012/05/06 18:46:20 | 000,001,243 |——| M] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series Scan.lnk
[2012/05/06 18:46:20 | 000,001,206 |——| M] ()—C:\Users\Public\Desktop\Køb forbrugsvarer - HP Deskjet 1050 J410 series.lnk
[2012/04/30 22:40:17 | 000,037,814 |——| M] ()—C:\Users\Britta\Desktop\Løn-April.pdf

========== Files Created - No Company Name ==========

[2012/05/06 18:46:59 | 000,001,109 |——| C] ()—C:\Users\Public\Desktop\HP Photo Creations.lnk
[2012/05/06 18:46:20 | 000,002,248 |——| C] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk
[2012/05/06 18:46:20 | 000,001,243 |——| C] ()—C:\Users\Public\Desktop\HP Deskjet 1050 J410 series Scan.lnk
[2012/05/06 18:46:20 | 000,001,206 |——| C] ()—C:\Users\Public\Desktop\Køb forbrugsvarer - HP Deskjet 1050 J410 series.lnk
[2012/04/30 22:40:17 | 000,037,814 |——| C] ()—C:\Users\Britta\Desktop\Løn-April.pdf
[2012/02/24 15:56:56 | 000,000,376 |——| C] ()—C:\Windows\ODBC.INI
[2012/02/11 15:17:07 | 001,290,830 |——| C] ()—C:\Windows\SysWow64\PerfStringBackup.INI
[2012/02/10 21:44:14 | 000,017,408 |——| C] ()—C:\Users\Britta\AppData\Local\WebpageIcons.db
[2011/07/20 16:04:30 | 000,963,116 |——| C] ()—C:\Windows\SysWow64\igkrng600.bin
[2011/07/20 16:04:29 | 000,218,304 |——| C] ()—C:\Windows\SysWow64\igfcg600m.bin
[2011/07/20 16:04:28 | 000,056,832 |——| C] ()—C:\Windows\SysWow64\igdde32.dll
[2011/07/20 16:04:27 | 000,145,804 |——| C] ()—C:\Windows\SysWow64\igcompkrng600.bin
[2011/07/20 16:04:26 | 013,906,944 |——| C] ()—C:\Windows\SysWow64\ig4icd32.dll

========== LOP Check ==========

[2012/02/20 00:22:13 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\FloodLightGames
[2012/02/10 23:47:41 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\iWin
[2012/02/21 22:09:08 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\PlayFirst
[2012/02/23 18:55:54 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\SNS
[2012/02/24 15:43:30 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\SoftGrid Client
[2012/02/11 15:17:44 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\TP
[2012/02/10 23:37:39 | 000,000,000 |—-D | M]—C:\Users\Britta\AppData\Roaming\Windows Live Writer
[2012/04/30 07:33:16 | 000,032,640 |——| M] ()—C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========

< %SYSTEMDRIVE%\*.* >
[2011/07/20 16:11:24 | 000,008,192 | RHS- | M] ()—C:\BOOTSECT.BAK
[2012/05/28 10:11:21 | 3104,722,944 | -HS- | M] ()—C:\hiberfil.sys
[2012/05/28 10:11:24 | 4139,630,592 | -HS- | M] ()—C:\pagefile.sys

<  %systemroot%\Fonts\*.com >
[2009/07/14 07:32:31 | 000,026,040 |——| M] ()—C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2009/07/14 07:32:31 | 000,026,489 |——| M] ()—C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2009/07/14 07:32:31 | 000,029,779 |——| M] ()—C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/07/14 07:32:31 | 000,043,318 |——| M] ()—C:\Windows\Fonts\GlobalUserInterface.CompositeFont

<  %systemroot%\Fonts\*.dll >

<  %systemroot%\Fonts\*.ini >
[2009/06/10 22:49:50 | 000,000,065 |——| M] ()—C:\Windows\Fonts\desktop.ini

<  %systemroot%\Fonts\*.ini2 >

<  %systemroot%\Fonts\*.exe >

<  %systemroot%\system32\spool\prtprocs\w32x86\*.* >

<  %systemroot%\REPAIR\*.bak1 >

<  %systemroot%\REPAIR\*.ini >

<  %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >

< %systemroot%\*.png >

< %systemroot%\*.scr >
[2010/11/10 11:28:46 | 000,301,936 |——| M] (Microsoft Corporation)—C:\Windows\WLXPGSS.SCR

<  %systemroot%\*._sy >

<  %APPDATA%\Adobe\Update\*.* >

<  %ALLUSERSPROFILE%\Favorites\*.* >

<  %APPDATA%\Microsoft\*.*  >

< %PROGRAMFILES%\*.* >
[2009/07/14 06:54:24 | 000,000,174 | -HS- | M] ()—C:\Program Files (x86)\desktop.ini

<  %APPDATA%\Update\*.* >

<  %systemroot%\*. /mp /s >

<  %systemroot%\System32\config\*.sav >

< %PROGRAMFILES%\bak. /s >

<  %systemroot%\system32\bak. /s >

<  %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

< %systemroot%\system32\config\systemprofile\*.dat /x >

<  %systemroot%\*.config >

<  %systemroot%\system32\*.db >

<  %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2012/02/10 20:49:45 | 000,000,221 | -HS- | M] ()—C:\Users\Britta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

<  %USERPROFILE%\Desktop\*.exe >
[2012/05/28 10:18:30 | 000,595,968 |——| M] (OldTimer Tools)—C:\Users\Britta\Desktop\OTL.exe

<  %PROGRAMFILES%\Common Files\*.* >

<  %systemroot%\*.src >

<  %systemroot%\install\*.* >

<  %systemroot%\system32\DLL\*.* >

<  %systemroot%\system32\HelpFiles\*.* >

<  %systemroot%\system32\rundll\*.* >

<  %systemroot%\winn32\*.* >

<  %systemroot%\Java\*.* >

<  %systemroot%\system32\test\*.* >

<  %systemroot%\system32\Rundll32\*.* >

<  %systemroot%\AppPatch\Custom\*.* >

<  %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >

<  %PROGRAMFILES%\PC-Doctor\Downloads\*.* >

<  %PROGRAMFILES%\Internet Explorer\*.tmp >

<  %PROGRAMFILES%\Internet Explorer\*.dat >

<  %USERPROFILE%\My Documents\*.exe >

<  %USERPROFILE%\*.exe >

<  %systemroot%\ADDINS\*.* >
[2009/06/10 23:20:04 | 000,000,802 |——| M] ()—C:\Windows\ADDINS\FXSEXT.ecf

<  %systemroot%\assembly\*.bak2 >

<  %systemroot%\Config\*.* >

<  %systemroot%\REPAIR\*.bak2 >

<  %systemroot%\SECURITY\Database\*.sdb /x >

<  %systemroot%\SYSTEM\*.bak2 >

<  %systemroot%\Web\*.bak2 >

<  %systemroot%\Driver Cache\*.* >

<  %PROGRAMFILES%\Mozilla Firefox\0*.exe >

<  %ProgramFiles%\Microsoft Common\*.* >

<  %ProgramFiles%\TinyProxy. >

<  %USERPROFILE%\Favorites\*.url /x >
[2012/02/16 08:45:08 | 000,000,402 | -HS- | M] ()—C:\Users\Britta\Favorites\desktop.ini

<  %systemroot%\system32\*.bk >

<  %systemroot%\*.te >

<  %systemroot%\system32\system32\*.* >

<  %ALLUSERSPROFILE%\*.dat /x >

<  %systemroot%\system32\drivers\*.rmv >

<  dir /b “%systemroot%\system32\*.exe” | find /i ” ” /c >

<  dir /b “%systemroot%\*.exe” | find /i ” ” /c >

<  %PROGRAMFILES%\Microsoft\*.* >

<  %systemroot%\System32\Wbem\proquota.exe >

<  %PROGRAMFILES%\Mozilla Firefox\*.dat >

<  %USERPROFILE%\Cookies\*.txt /x >

<  %SystemRoot%\system32\fonts\*.* >

<  %systemroot%\system32\winlog\*.* >

<  %systemroot%\system32\Language\*.* >

<  %systemroot%\system32\Settings\*.* >

<  %systemroot%\system32\*.quo >

<  %SYSTEMROOT%\AppPatch\*.exe >

<  %SYSTEMROOT%\inf\*.exe >

<  %SYSTEMROOT%\Installer\*.exe >

<  %systemroot%\system32\config\*.bak2 >

<  %systemroot%\system32\Computers\*.* >

<  %SystemRoot%\system32\Sound\*.* >

<  %SystemRoot%\system32\SpecialImg\*.* >

<  %SystemRoot%\system32\code\*.* >

<  %SystemRoot%\system32\draft\*.* >

<  %SystemRoot%\system32\MSSSys\*.* >

<  %ProgramFiles%\Javascript\*.* >

<  %systemroot%\pchealth\helpctr\System\*.exe /s >

<  %systemroot%\Web\*.exe >

<  %systemroot%\system32\msn\*.* >

<  %systemroot%\system32\*.tro >

<  %AppData%\Microsoft\Installer\msupdates\*.* >

<  %ProgramFiles%\Messenger\*.* >

<  %systemroot%\system32\system32\*.* >

<  %systemroot%\system\*.exe >

<  HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

<  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >

< End of report >

Signatur

SkabsBlondinen roder IGEN med noget som hun tror hun har forstand på wink