![]() |
|
#1
| |||
| |||
| Hej, Jeg har et problem med min computer og håber nogen kan have en idé om, hvad der ville få det. Indimellem vil jeg høre dyrelyde (kat spinder, får bahing, osv.) eller en mand leende. Jeg har scannet computeren med forskellige antivirus-og antispyware-programmer, men kan stadig ikke finde årsagen. Jeg håbede nogen kunne have en idé om hvad der kan forårsage det. Thanks:) |
|
#2
| |||
| |||
| Tror du, det er malware relateret? Vi kan tage et hurtigt kig til at se. Download og omdøbe HijackThis (HJT)
Skriv venligst i HJT loggen i næste svar. |
|
#3
| ||||||||||||
| ||||||||||||
| fair do's, der fik mig til at grine ved tanken (id elsker min computer til bah)blot for at bekræfte teser ikke har oprindelse uden ret? Har du checket, hvad processen "er ved at ske, når det sker er der noget software, der kører, når det gør det annonce på en hjemmeside måske?
__________________
__________________
Temperaturen inde i denne æbletærte er over 1000 grader. Hvis jeg kan klemme det, en stråle af smeltet Bramley æble vil sprøjte ud. Kunne gå din vej; kunne gå minen. Uanset hvad, en af os er på vej ned! Mit system: Min
|
|
#4
| ||||||||||||
| ||||||||||||
| Jeg flyttede dette, da der er malware, som gør dette ...
__________________
Mit system: Hybr! D
|
|
#5
| |||
| |||
| Firefox, MSN IM, GoogleTalk, AIM, og YIM jeg har normalt kører hele tiden. |
|
#6
| |||
| |||
| Ok, bare håber, at min housemate ikke downloade noget burde ikke lol Her er loggen Logfile af Trend Micro HijackThis v2.0.2 Scan gemt kl 12:30:19, om 1/24/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Kørende processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Programmer \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ System32 \ WLTRYSVC.EXE C: \ WINDOWS \ System32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Programmer \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Programmer \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ Explorer.EXE C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Programmer \ Cyberlink \ PowerDVD \ DVDLauncher.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Programmer \ Google \ Google Talk \ googletalk.exe C: \ Programmer \ Java \ jre1.6.0_03 \ bin \ jusched.exe C: \ Programmer \ Unlocker \ UnlockerAssistant.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Programmer \ AIM6 \ aim6.exe C: \ Programmer \ AdwareAlert \ AdwareAlert.exe C: \ Programmer \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Programmer \ MSN Messenger \ msnmsgr.exe C: \ Programmer \ Yahoo! \ Widgets \ YahooWidgets.exe C: \ Programmer \ AIM6 \ aolsoftware.exe C: \ Programmer \ MSN Messenger \ usnsvc.exe C: \ Programmer \ Mozilla Firefox \ firefox.exe C: \ Programmer \ Trend Micro \ HijackThis \ sniper.exe.exe C: \ WINDOWS \ system32 \ rundll32.exe C: \ WINDOWS \ system32 \ Notepad.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://cm.my.yahoo.com/ R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. lokale O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Programmer \ Yahoo! \ Companion \ Installerer \ CPN \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programmer \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Programmer \ Yahoo! \ Search \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programmer \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programmer \ Java \ jre1.6.0_03 \ bin \ ssv.dll O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Programmer \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Programmer \ Yahoo! \ Companion \ Installerer \ CPN \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Programmer \ Cyberlink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Programmer \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programmer \ Java \ jre1.6.0_03 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Programmer \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Programmer \ Internet Explorer \ PLUGINS \ cxsrrs.exe O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Programmer \ AIM6 \ aim6.exe" / d locale = en-US ee: / / AOL / imApp O4 - HKCU \ .. \ Run: [AdwareAlert] C: \ Programmer \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Programmer \ Yahoo! \ Messenger \ YahooMessenger.exe"-quiet O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Programmer \ MSN Messenger \ msnmsgr.exe" / baggrund O4 - Startup: Yahoo! Widgets.lnk = C: \ Programmer \ Yahoo! \ Widgets \ YahooWidgets.exe O8 - Extra sammenhæng menupunktet: E & ksporter til Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ mikroer ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Ekstra knap: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programmer \ Yahoo! \ Common \ yiesrvc.dll O9 - Ekstra knap: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ mikroer ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Ekstra knap: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Programmer \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812 O23 - Service: Adobe LM Service - Adobe Systems - C: \ Programmer \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Programmer \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programmer \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Tabel Manager (IDriverT) - Macrovision Corporation - C: \ Programmer \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C: \ Programmer \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Macromedia Licensing Service - Unknown ejer - C: \ Programmer \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Programmer \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - Symantec - C: \ Programmer \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Ukendt ejer - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE -- End of file - 9405 bytes |
|
#7
| |||
| |||
| Er AdwareAlert en betalt version? Hvis ikke så gå til tilføj / fjern programmer og afinstallere det. Åbn HijackThis og vælg Må en systemscanning kun. Anbringe en markering ved siden af følgende poster: O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) Luk alle vinduer undtagen HijackThis og klik Fix kontrolleres. Afslut Hijackthis. ---------- Ældre versioner af Java have sårbarheder, at malware kan bruge til at inficere dit system. Trin 1 Gå til http://java.sun.com/javase/downloads/index.jsp På Sun Java side rulle til den 4. downloade. ![]() Klik på knappen og gemme installationsprogrammet til skrivebordet.Dobbeltklik på installationsprogrammet fra skrivebordet, og følg instruktionerne for at fuldføre installationen. Trin 2 Gå til Start > Kontrolpanel > Tilføj / Fjern programmer Afinstaller alle ældre versioner af Java. Fjern eventuelle post med Java Runtime Environment (JRE eller J2SE) i navnet.Tag ikke Java 6 Update 4 Genstart din computer, når alle Java komponenter er fjernet. Dobbeltklik Min Computer på skrivebordet, Find denne mappe: C: \ Programmer \Java Åbn Java mappen og slette alle undermapper undtagen den jre1.6.0_04 mappe, som kun var skabt af den nyeste Java-installation. ---------- Derefter køre en ny HJT scanning og post loggen. |
|
#8
| |||
| |||
| Ja, Adware Alert er betalt version, kan jeg stadig nødt til at fjerne det? |
|
#9
| |||
| |||
| Nej du behøver ikke at, det er bare ikke en af mine favoritter. Gå videre og gøre de andre trin, og derefter de næste to er beskrevet nedenfor. Gå til dette indlæg og gøre trin to og tre. Derefter sende loggen fra SAS, og en ny en HJT log. |
|
#10
| |||
| |||
| Ok her er det HJT log Logfile af Trend Micro HijackThis v2.0.2 Scan gemt på 4:43:41, den 1/24/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Kørende processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Programmer \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ System32 \ WLTRYSVC.EXE C: \ WINDOWS \ System32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Programmer \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Programmer \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ Explorer.EXE C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Programmer \ Cyberlink \ PowerDVD \ DVDLauncher.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Programmer \ Google \ Google Talk \ googletalk.exe C: \ Programmer \ Unlocker \ UnlockerAssistant.exe C: \ Programmer \ Java \ jre1.6.0_04 \ bin \ jusched.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Programmer \ AIM6 \ aim6.exe C: \ Programmer \ AdwareAlert \ AdwareAlert.exe C: \ Programmer \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Programmer \ MSN Messenger \ msnmsgr.exe C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Programmer \ Yahoo! \ Widgets \ YahooWidgets.exe C: \ Programmer \ AIM6 \ aolsoftware.exe C: \ Programmer \ Mozilla Firefox \ firefox.exe C: \ WINDOWS \ system32 \ Notepad.exe C: \ Programmer \ MSN Messenger \ usnsvc.exe C: \ Programmer \ Trend Micro \ HijackThis \ sniper.exe.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. lokale O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Programmer \ Yahoo! \ Companion \ Installerer \ CPN \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programmer \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Programmer \ Yahoo! \ Search \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programmer \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programmer \ Java \ jre1.6.0_04 \ bin \ ssv.dll O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Programmer \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Programmer \ Yahoo! \ Companion \ Installerer \ CPN \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Programmer \ Cyberlink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Programmer \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Programmer \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Programmer \ Internet Explorer \ PLUGINS \ cxsrrs.exe O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programmer \ Java \ jre1.6.0_04 \ bin \ jusched.exe" O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Programmer \ AIM6 \ aim6.exe" / d locale = en-US ee: / / AOL / imApp O4 - HKCU \ .. \ Run: [AdwareAlert] C: \ Programmer \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Programmer \ Yahoo! \ Messenger \ YahooMessenger.exe"-quiet O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Programmer \ MSN Messenger \ msnmsgr.exe" / baggrund O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - Startup: Yahoo! Widgets.lnk = C: \ Programmer \ Yahoo! \ Widgets \ YahooWidgets.exe O8 - Extra sammenhæng menupunktet: E & ksporter til Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ mikroer ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Ekstra knap: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programmer \ Yahoo! \ Common \ yiesrvc.dll O9 - Ekstra knap: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ mikroer ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Ekstra knap: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Programmer \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812 O20 - Winlogon Notify:! SASWinLogon - C: \ Programmer \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Adobe LM Service - Adobe Systems - C: \ Programmer \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Programmer \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programmer \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Tabel Manager (IDriverT) - Macrovision Corporation - C: \ Programmer \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C: \ Programmer \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Macromedia Licensing Service - Unknown ejer - C: \ Programmer \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Programmer \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - Symantec - C: \ Programmer \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Ukendt ejer - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE -- End of file - 9366 bytes og SAS Log SUPERAntiSpyware Scan Log http://www.superantispyware.com Genereret 01/24/2008 kl 04:21 Application Version: 3.9.1008 Core Rules Database Version: 3387 Trace Rules Database Version: 1381 Scan type: Complete Scan Total Scan Time: 02:02:14 Memory poster skannet: 543 Memory trusler opdaget: 0 Elementer i registreringsdatabasen skannet: 7022 Topdomæneadministratoren trusler opdaget: 18 File poster skannet: 91.621 File trusler opdaget: 179 Adware.Tracking Cookie C: \ Documents and Settings \ Amber \ Cookies \ rav @ atwola [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ interclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.burstnet [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eztracks.aavalue [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ar.atwola [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ precisionclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ apmebf [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@stats.sellmosoft [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ maxserving [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ehg-pcsecurityshield.hitbox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.euroclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ casalemedia [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ reklame [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@tremor.adbureau [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ doubleclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ screensaversandwallpa persfree [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@statse.webtrendslive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ microsoftwlsearchcrm. 112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ ValueClick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@csi.valueclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ adinterax [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ Mediaplex [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad2.adnetinteractive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ hitbox [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@server2.bkvtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@msnlivefavorites.112. 2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.specificclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ atdmt [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ directtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ adlegend [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ fastclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ imrworldwide [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@i.screensavers [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@pub.visicommedia [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@angleinteractive.dire cttrack [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ Adtech [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.vlaze [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ tribalfusion [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.glispa [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.diet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.zanox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@richmedia.yahoo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@perf.overture [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@thumbplay.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ microsoftwlmessengerm kt.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ mywebsearch [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ redorbit [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eas.apm.emediate [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ roiservice [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ xiti [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.bridgetrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ questionmarket [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ kollektiv-medier [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@login.tracking101 [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ burstnet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftwlmailmkt.11 2.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ cpvfeed [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ Zedo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.pointroll [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ specificclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ revsci [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ tjener-sys [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftoffice.112.2 O7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ azjmp [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ rav @ adrevolver [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ 2o7 [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ adver tising [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ apmeb f [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator@ar.at Wola [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atdmt [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atwol en [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ doubl eclick [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ kant. ru4 [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ medier plekse [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ PERF. overture [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ revsc I [2]. Txt Unclassified.SpywareBot (ikke en trussel) HKU \ S-1-5-21-782665702-2079865073-2220674083-1007 \ Software \ SpywareBot HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: Setup Version HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: App Path HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # InstallLocation HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: Icon Gruppen HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: User HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: Udvalgte Opgaver HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Inno Setup: Fravalgt Opgaver HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # DisplayName HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # DisplayIcon HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # UninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # QuietUninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # DisplayVersion HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # Publisher HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # NoModify HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # NoRepair HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstallér \ SpywareBot_is1 # InstallDate C: \ Programmer \ SpywareBot \ DataBase.ref C: \ Programmer \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532630_hosts C: \ Programmer \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532711_hosts C: \ Programmer \ SpywareBot \ HOSTS Backups \ 2007-7-5-1183618812_hosts C: \ Programmer \ SpywareBot \ HOSTS Backups \ 2007-7-8-1183878034_hosts C: \ Programmer \ SpywareBot \ HOSTS Backups C: \ Programmer \ SpywareBot \ Launcher.exe C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_31_58.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_31_59.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_42_18.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_42_32.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_45_31.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_45_37.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_54_57.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_09_55_06.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_10_04_16.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_10_04_27.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_10_38_13.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_10_38_16.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_20_55.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_20_58.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_22_42.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_22_47.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_25_27.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_25_29.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_31_56.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_11_31_57.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_15_52_42.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_15_52_44.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_16_27_09.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_16_27_11.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_05_16_27_12.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_08_45.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_08_46.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_08_48.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_46_46.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_46_48.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_58_43.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_58_44.log C: \ Programmer \ SpywareBot \ Log \ log_2007_01_08_08_58_45.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_22_17_15_03.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_22_17_15_07.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_10_10.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_10_17.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_28_15.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_28_18.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_33_58.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_34_01.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_35_13.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_24_09_35_16.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_27_09_09_37.log C: \ Programmer \ SpywareBot \ Log \ log_2007_06_27_09_09_55.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_01_17_33_37.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_01_17_33_39.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_01_17_33_45.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_01_21_00_52.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_01_21_01_01.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_03_03_00.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_03_03_01.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_03_04_55.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_03_04_56.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_08_14_41.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_04_08_14_45.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_05_22_23_34.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_05_22_23_36.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_05_22_23_43.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_03_00_08.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_08_22_16.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_08_23_22.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_20_53_23.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_20_53_27.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_08_20_54_28.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_10_22_05_05.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_10_22_05_09.log C: \ Programmer \ SpywareBot \ Log \ log_2007_07_10_22_05_24.log C: \ Programmer \ SpywareBot \ log C: \ Programmer \ SpywareBot \ Quarantine C: \ Programmer \ SpywareBot \ Registry Backups C: \ Programmer \ SpywareBot \ Scheduler.exe C: \ Programmer \ SpywareBot \ Settings \ CustomScan.stg C: \ Programmer \ SpywareBot \ Settings \ IgnoreList.stg C: \ Programmer \ SpywareBot \ Settings \ ScanInfo.stg C: \ Programmer \ SpywareBot \ Settings \ ScanResults.stg C: \ Programmer \ SpywareBot \ Settings \ SelectedFolders.stg C: \ Programmer \ SpywareBot \ Settings \ Settings.stg C: \ Programmer \ SpywareBot \ Indstillinger C: \ Programmer \ SpywareBot \ SpywareBot.dll C: \ Programmer \ SpywareBot \ SpywareBot.exe C: \ Programmer \ SpywareBot \ SpywareBot.url C: \ Programmer \ SpywareBot \ unins000.dat C: \ Programmer \ SpywareBot \ unins000.exe C: \ Programmer \ SpywareBot C: \ Documents and Settings \ All Users \ Menuen Start \ Programmer \ SpywareBot \ SpywareBot på Web.lnk C: \ Documents and Settings \ All Users \ Menuen Start \ Programmer \ SpywareBot \ SpywareBot.lnk C: \ Documents and Settings \ All Users \ Menuen Start \ Programmer \ SpywareBot \ Uninstall SpywareBot.lnk C: \ Documents and Settings \ All Users \ Menuen Start \ Programmer \ SpywareBot Adware.Lop C: \ SYSTEM VOLUME INFORMATION \ _RESTORE (F02BDCB2-9AAA-42A6-9E59-C24093E0AD6C) \ RP186 \ A0139352.EXE |