![]() |
|
#1
| |||
| |||
| Hei, Jeg har et problem med datamaskinen min og håper noen kan ha noen ide hva som ville føre til det. Noen ganger vil jeg høre dyrelyder (cat purring, sauer bahing, osv.) eller en mann ler. Jeg har skannet datamaskinen med ulike antivirus-og antispionprogrammer, men fortsatt ikke kan finne årsaken. Jeg håpet at noen kunne ha noen anelse om hva som kan være årsaken det. Takk:) |
|
#2
| |||
| |||
| Synes du det er malware slekt? Vi kan ta en rask titt å se. Last ned og endre navn HijackThis (HJT)
Vennligst svar på HJT loggen i neste svaret. |
|
#3
| ||||||||||||
| ||||||||||||
| virkelig gjøre det som fikk meg til å le ved tanken (id love my computer å BAH)bare for å bekrefte teser er ikke opprinnelse utenfor rett? Har du sjekket hva prosessen 'er som oppstår når det skjer er det noe programvare som kjøres når den gjør det annonse på en nettside kanskje?
__________________
__________________
Temperaturen inne i denne apple pie er over 1000 grader. Hvis jeg presse den, et jetfly av smeltet Bramley apple vil sprute ut. Kunne gå veien, kunne gå min. Uansett, en av oss går ned! Min System: Min
|
|
#4
| ||||||||||||
| ||||||||||||
| Jeg flyttet dette som det er skadelig programvare som gjør dette ...
__________________
Min System: Hybr! D
|
|
#5
| |||
| |||
| Firefox, MSN IM, googletalk, AIM og YIM jeg har vanligvis kjører hele tiden. |
|
#6
| |||
| |||
| Ok, bare håper jeg housemate ikke laste ned noe skulle ikke av lol Her er loggen Logfile of Trend Micro HijackThis v2.0.2 Scan lagret på 12:30:19, on 1/24/2008 Plattform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Kjører prosesser: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSetMgr.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccEvtMgr.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ system32 \ WLTRYSVC.EXE C: \ WINDOWS \ system32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Programfiler \ Symantec AntiVirus \ DefWatch.exe C: \ Programfiler \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Programfiler \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ Explorer.exe C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Program Files \ Cyberlink \ PowerDVD \ DVDLauncher.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccApp.exe C: \ progra ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Programfiler \ Google \ Google Talk \ googletalk.exe C: \ Programfiler \ Java \ jre1.6.0_03 \ bin \ jusched.exe C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Programfiler \ AIM6 \ aim6.exe C: \ Program Files \ AdwareAlert \ AdwareAlert.exe C: \ Programfiler \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Programfiler \ MSN Messenger \ msnmsgr.exe C: \ Programfiler \ Yahoo! \ Widgeter \ YahooWidgets.exe C: \ Programfiler \ AIM6 \ aolsoftware.exe C: \ Programfiler \ MSN Messenger \ usnsvc.exe C: \ Programfiler \ Mozilla Firefox \ firefox.exe C: \ Programfiler \ Trend Micro \ HijackThis \ sniper.exe.exe C: \ WINDOWS \ system32 \ rundll32.exe C: \ WINDOWS \ system32 \ Notepad.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://cm.my.yahoo.com/ R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. local O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Programfiler \ Yahoo! \ Companion \ Installerer \ cpn \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programfiler \ Fellesfiler \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Foreslå - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Search \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programfiler \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programfiler \ Java \ jre1.6.0_03 \ bin \ ssv.dll O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Programfiler \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Programfiler \ Yahoo! \ Companion \ Installerer \ cpn \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ Cyberlink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ progra ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Programfiler \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programfiler \ Java \ jre1.6.0_03 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Programfiler \ Internet Explorer \ Plugins \ cxsrrs.exe O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Programfiler \ AIM6 \ aim6.exe" / d locale = no ee: / / AOL / imApp O4 - HKCU \ .. \ Run: [AdwareAlert] C: \ Program Files \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Personsøker] "C: \ Programfiler \ Yahoo! \ Messenger \ YahooMessenger.exe" stille O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Programfiler \ MSN Messenger \ msnmsgr.exe" / background O4 - Startup: Yahoo! Widgets.lnk = C: \ Programfiler \ Yahoo! \ Widgeter \ YahooWidgets.exe O8 - Extra sammenheng menyelement: E & ksporter til Microsoft Excel - res: / / c: \ progra ~ 1 \ micros ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra "Verktøy" MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra knappen: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programfiler \ Yahoo! \ Common \ yiesrvc.dll O9 - Extra knappen: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ progra ~ 1 \ micros ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra "Verktøy" MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra knappen: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe O9 - Extra "Verktøy" MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe Ø16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Programfiler \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Klassifikasjon) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klasse) -- http://www.update.microsoft.com/micr...?1183542882812 O23 - Service: Adobe LM Service - Adobe Systems - C: \ Programfiler \ Fellesfiler \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programfiler \ Fellesfiler \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Programfiler \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programfiler \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Programfiler \ Fellesfiler \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C: \ Programfiler \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - c: \ progra ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Macromedia Licensing Service - Unknown owner - C: \ Programfiler \ Fellesfiler \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - Symantec - C: \ Programfiler \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Programfiler \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C: \ WINDOWS \ system32 \ WLTRYSVC.EXE -- End of file - 9405 bytes |
|
#7
| |||
| |||
| Er AdwareAlert en betalt versjon? Hvis ikke så gå til Legg til / fjern programmer og avinstallere den. Åpne HijackThis og velg Gjør et søk. Sett et merke ved siden av følgende oppføringer: O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) Lukk alle vinduer unntatt HijackThis og klikk Fix kontrolleres. Avslutt Hijackthis. ---------- Eldre versjoner av Java har sårbarheter som malware kan bruke til å infisere maskinen. Trinn 1 Gå til http://java.sun.com/javase/downloads/index.jsp På Sun Java-siden blar du til 4de laste ned. ![]() Klikk -knappen og lagre installereren til skrivebordet.Dobbeltklikk installasjonsprogrammet fra skrivebordet og følger instruksjonene for å fullføre installasjonen. Trinn 2 Gå til Start > Kontrollpanel > Legg til / fjern programmer Avinstaller alle eldre versjoner av Java. Fjern eventuelle element med Java Runtime Environment (JRE eller J2SE) i navnet.Ikke ta Java 6 Update 4 Start datamaskinen når alle Java komponenter er fjernet. Dobbeltklikk Min datamaskin på skrivebordet, finner du dette mappe: C: \ Program Files \Java Åpne Java mappe og slette eventuelle undermapper unntatt den, det jre1.6.0_04 mappen som ble opprettet av de nyeste Java installasjon. ---------- Deretter kjører du en ny HJT scan og post loggen. |
|
#8
| |||
| |||
| Ja, Adware Alert betalt versjon, har jeg fortsatt behov for å fjerne den? |
|
#9
| |||
| |||
| Nei du trenger ikke, det bare er ikke en av mine favoritter. Gå videre og gjøre de andre trinnene, og deretter de to neste beskrevet nedenfor. Gå til dette innlegget og gjøre trinn to og tre. Deretter legger loggen fra SAS, og en ny en HJT logg. |
|
#10
| |||
| |||
| Ok her er HJT loggen Logfile of Trend Micro HijackThis v2.0.2 Scan lagret på 4:43:41 PM, on 1/24/2008 Plattform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Kjører prosesser: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSetMgr.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccEvtMgr.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ system32 \ WLTRYSVC.EXE C: \ WINDOWS \ system32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Programfiler \ Symantec AntiVirus \ DefWatch.exe C: \ Programfiler \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Programfiler \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ Explorer.exe C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Program Files \ Cyberlink \ PowerDVD \ DVDLauncher.exe C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccApp.exe C: \ progra ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Programfiler \ Google \ Google Talk \ googletalk.exe C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe C: \ Programfiler \ Java \ jre1.6.0_04 \ bin \ jusched.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Programfiler \ AIM6 \ aim6.exe C: \ Program Files \ AdwareAlert \ AdwareAlert.exe C: \ Programfiler \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Programfiler \ MSN Messenger \ msnmsgr.exe C: \ Programfiler \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Programfiler \ Yahoo! \ Widgeter \ YahooWidgets.exe C: \ Programfiler \ AIM6 \ aolsoftware.exe C: \ Programfiler \ Mozilla Firefox \ firefox.exe C: \ WINDOWS \ system32 \ Notepad.exe C: \ Programfiler \ MSN Messenger \ usnsvc.exe C: \ Programfiler \ Trend Micro \ HijackThis \ sniper.exe.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. local O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Programfiler \ Yahoo! \ Companion \ Installerer \ cpn \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programfiler \ Fellesfiler \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Foreslå - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Search \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programfiler \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programfiler \ Java \ jre1.6.0_04 \ bin \ ssv.dll O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Programfiler \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Programfiler \ Yahoo! \ Companion \ Installerer \ cpn \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ Cyberlink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ progra ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Programfiler \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] C: \ Programfiler \ Internet Explorer \ Plugins \ cxsrrs.exe O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programfiler \ Java \ jre1.6.0_04 \ bin \ jusched.exe" O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Programfiler \ AIM6 \ aim6.exe" / d locale = no ee: / / AOL / imApp O4 - HKCU \ .. \ Run: [AdwareAlert] C: \ Program Files \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Personsøker] "C: \ Programfiler \ Yahoo! \ Messenger \ YahooMessenger.exe" stille O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Programfiler \ MSN Messenger \ msnmsgr.exe" / background O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Programfiler \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - Startup: Yahoo! Widgets.lnk = C: \ Programfiler \ Yahoo! \ Widgeter \ YahooWidgets.exe O8 - Extra sammenheng menyelement: E & ksporter til Microsoft Excel - res: / / c: \ progra ~ 1 \ micros ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra "Verktøy" MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra knappen: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Programfiler \ Yahoo! \ Common \ yiesrvc.dll O9 - Extra knappen: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ progra ~ 1 \ micros ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra "Verktøy" MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra knappen: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe O9 - Extra "Verktøy" MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe Ø16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Programfiler \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Klassifikasjon) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klasse) -- http://www.update.microsoft.com/micr...?1183542882812 O20 - Winlogon Notify:! SASWinLogon - C: \ Programfiler \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Adobe LM Service - Adobe Systems - C: \ Programfiler \ Fellesfiler \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Programfiler \ Fellesfiler \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Programfiler \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programfiler \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Programfiler \ Fellesfiler \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C: \ Programfiler \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - c: \ progra ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Macromedia Licensing Service - Unknown owner - C: \ Programfiler \ Fellesfiler \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - Symantec - C: \ Programfiler \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Programfiler \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C: \ WINDOWS \ system32 \ WLTRYSVC.EXE -- End of file - 9366 bytes og SAS Logg SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 01/24/2008 at 04:21 Application Version: 3.9.1008 Core Rules Database Version: 3387 Trace Rules Database Version: 1381 Scan type: Complete Scan Total Scan Time: 02:02:14 Memory eks skannet: 543 Minne trusler oppdages: 0 Register eks skannet: 7022 Registerverdi trusler oppdages: 18 File eks skannet: 91621 File trusler oppdages: 179 Adware.Tracking Cookie C: \ Documents and Settings \ Amber \ Cookies \ gult @ atwola [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ interclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.burstnet [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eztracks.aavalue [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ar.atwola [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ precisionclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ apmebf [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@stats.sellmosoft [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ maxserving [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ehg-pcsecurityshield.hitbox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.euroclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ casalemedia [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ advertising [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@tremor.adbureau [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ DoubleClick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ screensaversandwallpa persfree [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@statse.webtrendslive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ microsoftwlsearchcrm. 112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ reservert [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@csi.valueclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ adinterax [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ Mediaplex [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad2.adnetinteractive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ hitbox [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@server2.bkvtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@msnlivefavorites.112. 2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.specificclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ atdmt [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ directtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ adlegend [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ fastclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ imrworldwide [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@i.screensavers [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@pub.visicommedia [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@angleinteractive.dire cttrack [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ adtech [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.vlaze [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ tribalfusion [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.glispa [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.diet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.zanox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@richmedia.yahoo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@perf.overture [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@thumbplay.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ microsoftwlmessengerm kt.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ mywebsearch [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ redorbit [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eas.apm.emediate [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ roiservice [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ xiti [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.bridgetrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ questionmarket [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ kollektiv-media [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@login.tracking101 [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ burstnet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftwlmailmkt.11 2.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ cpvfeed [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ Zedo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.pointroll [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ specificclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ revsci [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ serving-sys [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftoffice.112.2 o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ azjmp [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ gult @ adrevolver [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ 2o7 [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ adver tising [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ apmeb f [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator@ar.at wola [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atdmt [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atwol a [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ doubl eclick [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ kanten. ru4 [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ media plex [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ perf. overture [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ revsc i [2]. Txt Unclassified.SpywareBot (Ikke en trussel) HKU \ S-1-5-21-782665702-2079865073-2220674083-1007 \ Software \ SpywareBot HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Setup Versjon HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: App Path HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # InstallLocation HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Icon Gruppe HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Bruker HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Valgt Oppgaver HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Valgt Oppgaver HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # DisplayName HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # DisplayIcon HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # UninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # QuietUninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # DisplayVersion HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Utgiver HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # NoModify HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # NoRepair HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # InstallDate C: \ Program Files \ SpywareBot \ DataBase.ref C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532630_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532711_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-5-1183618812_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-8-1183878034_hosts C: \ Program Files \ SpywareBot \ HOSTS sikkerhetskopier C: \ Program Files \ SpywareBot \ Launcher.exe C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_59.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_18.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_32.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_31.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_54_57.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_55_06.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_13.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_42.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_47.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_29.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_56.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_57.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_42.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_44.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_09.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_11.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_12.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_46.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_48.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_46.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_48.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_43.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_44.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_03.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_07.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_10.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_17.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_15.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_18.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_33_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_34_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_13.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_39.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_00_52.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_01_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_00.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_56.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_41.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_34.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_36.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_43.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_03_00_08.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_22_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_23_22.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_23.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_54_28.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_05.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_09.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_24.log C: \ Program Files \ SpywareBot \ Logg C: \ Program Files \ SpywareBot \ Quarantine C: \ Program Files \ SpywareBot \ Registry sikkerhetskopier C: \ Program Files \ SpywareBot \ Scheduler.exe C: \ Program Files \ SpywareBot \ Settings \ CustomScan.stg C: \ Program Files \ SpywareBot \ Settings \ IgnoreList.stg C: \ Program Files \ SpywareBot \ Settings \ ScanInfo.stg C: \ Program Files \ SpywareBot \ Settings \ ScanResults.stg C: \ Program Files \ SpywareBot \ Settings \ SelectedFolders.stg C: \ Program Files \ SpywareBot \ Settings \ Settings.stg C: \ Program Files \ SpywareBot \ Settings C: \ Program Files \ SpywareBot \ SpywareBot.dll C: \ Program Files \ SpywareBot \ SpywareBot.exe C: \ Program Files \ SpywareBot \ SpywareBot.url C: \ Program Files \ SpywareBot \ unins000.dat C: \ Program Files \ SpywareBot \ unins000.exe C: \ Program Files \ SpywareBot C: \ Documents and Settings \ All Users \ Start-meny \ Programmer \ SpywareBot \ SpywareBot på Web.lnk C: \ Documents and Settings \ All Users \ Start-meny \ Programmer \ SpywareBot \ SpywareBot.lnk C: \ Documents and Settings \ All Users \ Start-meny \ Programmer \ SpywareBot \ Uninstall SpywareBot.lnk C: \ Documents and Settings \ All Users \ Start-meny \ Programmer \ SpywareBot Adware.Lop C: \ SYSTEM VOLUME INFORMATION \ _RESTORE (F02BDCB2-9AAA-42A6-9E59-C24093E0AD6C) \ RP186 \ A0139352.EXE |