Vinnaren i pepparkakshustävlingen!
  • 1
  • 2
2010-07-20, 20:14
  #1
Medlem
raevigaraevs avatar
Har ett litet problem som är sjukt störande. Alla fönster inaktiveras och jag måste därför klicka i de igen så jag kan skriva. När jag spelar tabbas jag även ut i windows efter bara några sekunder. Detta händer hela tiden.

Det ska även tilläggas att jag har scannat min dator med ad-aware, nod32 samt spybot, utan bra resultat.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:07:24, on 2010-07-20
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mx44.com/
O1 - Hosts: 255.255.255.255 easyanticheat.se # misleading site
O1 - Hosts: 255.255.255.255 www.easyanticheat.se # misleading site
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Diamondback] C:\Program Files\Razer\Diamondback 3G\razerhid.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [NodEnabler] "C:\Program Files\ESET\NodEnabler\NodEnabler.exe" /s
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: Antiwpa - antiwpa.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Unknown owner - C:\Program Files\Eset\nod32krn.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe (file missing)

--
End of file - 6229 bytes

Nån som har orken att hjälpa en besvärad man?

Insåg just att det här inte var så värst läsvänligt, nån som har ett bra tips på hur jag kan snygga till loggen?

/raevigaraev
__________________
Senast redigerad av raevigaraev 2010-07-20 kl. 20:21.
Citera
2010-07-20, 23:46
  #2
Medlem
927s avatar
tror inte jag förstår vad som händer men lggen är ok
Citera
2010-10-08, 20:39
  #3
Medlem
snälla någon, jag har exakt samma problem och det håller på att driva mig till vansinne!! Alla tips är välkomna!!
Citera
2010-10-08, 21:08
  #4
Medlem
Megadeths avatar
ett standard svar. men det hjälper ju ofta. till TS kan jag bara säga att du borde uppdatera din dator. och till er båda som skrivit att ni har problem.

http://www.malwarebytes.org/

http://www.superantispyware.com/

skanna av med dessa 2 program och säg sen vad den hittar för roligt. glöm inte att uppdatera programmen innan ni skannar.
Citera
2010-10-08, 23:55
  #5
Medlem
Tack som tar dig tid! Det här hittades på första scanningen...

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 10/08/2010 at 11:47 PM

Application Version : 4.44.1000

Core Rules Database Version : 5658
Trace Rules Database Version: 3470

Scan type : Quick Scan
Total Scan Time : 00:18:58

Memory items scanned : 559
Memory threats detected : 0
Registry items scanned : 1714
Registry threats detected : 14
File items scanned : 6457
File threats detected : 243

Malware.ContraVirus
HKU\S-1-5-21-1993962763-299502267-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{DBE5BEE8-F032-11DB-826A-C4BB56D89593}
HKCR\CLSID\{DBE5BEE8-F032-11DB-826A-C4BB56D89593}
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\bizhhpb
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\enweuaafR
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\esrsyujfq
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\InprocServer32
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\InprocServer32#ThreadingModel
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\maaewLemqy
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\mbAiScjsuWA
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\PeeqhwUduF
HKCR\CLSID\{BFCBB188-18E3-1DEB-59D5-BACE1CE655A4}\UQVCVS
C:\Program\ContraVirus\Logs
C:\Program\ContraVirus

Adware.Tracking Cookie
C:\Documents and Settings\Linda\Cookies\linda@q.q.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@3.h.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@d.o.d.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@3.n.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.f.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@g.h.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@cgm.adbureau[2].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.kilroytravels[1].txt
C:\Documents and Settings\Linda\Cookies\linda@c.n.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@stats.dn[1].txt
C:\Documents and Settings\Linda\Cookies\linda@2.s.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@v.t.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@sifomedia.tv[1].txt
C:\Documents and Settings\Linda\Cookies\linda@naked[1].txt
C:\Documents and Settings\Linda\Cookies\linda@b.p.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.o.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@d.q.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.h.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@my.adservinginternati onal[1].txt
C:\Documents and Settings\Linda\Cookies\linda@s.h.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@r.p.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@z.n.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@1.o.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.s.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@stat.blogorama[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.fsnetwork[1].txt
C:\Documents and Settings\Linda\Cookies\linda@himedia.individuad[2].txt
C:\Documents and Settings\Linda\Cookies\linda@adsby.webtraffic[1].txt
C:\Documents and Settings\Linda\Cookies\linda@jibjab.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@v.o.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@f.g.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@freesex[1].txt
C:\Documents and Settings\Linda\Cookies\linda@f.g.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@s.s.d.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@v.m.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@mediaadviser.adservin ginternational[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.j.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@t.g.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@b.p.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@bredbandsbolaget.112. 2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@r.q.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@p.o.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@c.j.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@i.c.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.stureplan[2].txt
C:\Documents and Settings\Linda\Cookies\linda@d.p.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@r.m.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@j.h.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.n.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@g.t.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.o.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@se.sitestat[4].txt
C:\Documents and Settings\Linda\Cookies\linda@g.t.d.cltomedia[2].txt
Citera
2010-10-08, 23:56
  #6
Medlem
C:\Documents and Settings\Linda\Cookies\linda@y.h.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@k.h.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@u.h.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.youporn[1].txt
C:\Documents and Settings\Linda\Cookies\linda@i.m.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@xiti[1].txt
C:\Documents and Settings\Linda\Cookies\linda@se.sitestat[1].txt
C:\Documents and Settings\Linda\Cookies\linda@e2.emediate[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.s.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@f.m.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@stadiumab.122.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@n.n.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@2.r.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@x.q.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@www.buzzamedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.n.d.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@p.o.i.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@s.a.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@teliasonera.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@u.i.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@se.sitestat[3].txt
C:\Documents and Settings\Linda\Cookies\linda@z.q.i.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@adviva[2].txt
C:\Documents and Settings\Linda\Cookies\linda@x.o.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.f.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@youporn[1].txt
C:\Documents and Settings\Linda\Cookies\linda@c.o.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@postclicktracking[1].txt
C:\Documents and Settings\Linda\Cookies\linda@viasatsatelliteservic es.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@sifomedia.vk[1].txt
C:\Documents and Settings\Linda\Cookies\linda@0.h.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@eas7.emediate[1].txt
C:\Documents and Settings\Linda\Cookies\linda@k.q.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@2.g.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@d.q.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@b.h.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@y.n.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@g.g.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@cltomedia[3].txt
C:\Documents and Settings\Linda\Cookies\linda@u.g.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@4.n.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ad3.clickhype[1].txt
C:\Documents and Settings\Linda\Cookies\linda@h.q.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@5.g.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@atdmt[2].txt
C:\Documents and Settings\Linda\Cookies\linda@x.h.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@x.m.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.p.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@c.n.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@2.c.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@1.n.r.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@d.q.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@stat.swedbank[2].txt
C:\Documents and Settings\Linda\Cookies\linda@k.g.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@e.r.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@n.a.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@3.p.d.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@c.p.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@q.o.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.p.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@partner.smartresponse -media[1].txt
C:\Documents and Settings\Linda\Cookies\linda@u.p.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@2.b.d.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@3.q.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@eas8.emediate[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.g.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@p.o.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@5.f.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@x.o.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@p.o.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@u.o.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.lrfmedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.o.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@0.r.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@sifomedia.dn[1].txt
C:\Documents and Settings\Linda\Cookies\linda@i.b.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.q.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@eas4.emediate[2].txt
C:\Documents and Settings\Linda\Cookies\linda@nordea.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@lararnasriksforbund.1 22.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@r.m.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.i.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@q.p.e.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@svd.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@www.inteletrack[1].txt
C:\Documents and Settings\Linda\Cookies\linda@1.q.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@4.m.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@dustinab.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@z.g.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ad.skyad[1].txt
C:\Documents and Settings\Linda\Cookies\linda@d.p.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@media6degrees[2].txt
C:\Documents and Settings\Linda\Cookies\linda@4.q.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@ads.ad4game[2].txt
C:\Documents and Settings\Linda\Cookies\linda@q.i.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@t.h.i.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@e.s.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.m.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@x.n.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@eset.122.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@l.n.y.cltomedia[2].txt
Citera
2010-10-08, 23:57
  #7
Medlem
C:\Documents and Settings\Linda\Cookies\linda@sonymediasoftware.112 .2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@www.sex-forum[2].txt
C:\Documents and Settings\Linda\Cookies\linda@s.q.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@c.q.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@t.o.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@t.q.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@9.o.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.i.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@4.b.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@click.mediadome[1].txt
C:\Documents and Settings\Linda\Cookies\linda@5.n.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@u.r.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@se.sitestat[2].txt
C:\Documents and Settings\Linda\Cookies\linda@q.p.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@0.o.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@d.m.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@y.o.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.t.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@p.q.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@d.q.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@b.o.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@z.m.e.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@w.n.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@1.h.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@x.n.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@4.n.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@i.p.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@w.n.w.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@b.o.y.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@y.o.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.f.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@n.c.i.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@u.p.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@0.f.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.j.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@2.h.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@i.i.q.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@b.n.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@3.i.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@adply.plymedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@adultfriendfinder[1].txt
C:\Documents and Settings\Linda\Cookies\linda@b.o.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@tv4.122.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@i.n.r.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@t.p.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@w.m.w.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@u.g.q.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.b.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@2.m.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@5.m.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@0.n.i.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.m.i.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@banners.socialflirt[2].txt
C:\Documents and Settings\Linda\Cookies\linda@z.n.y.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@l.q.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@r.n.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@0.h.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@t.n.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@microsoftinternetexpl orer.112.2o7[1].txt
C:\Documents and Settings\Linda\Cookies\linda@c.o.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@d.j.j.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@x.p.j.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@w.o.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@n.g.w.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@stats.newsdesk.se.re. getclicky[1].txt
C:\Documents and Settings\Linda\Cookies\linda@x.m.h.cltomedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@t.m.h.cltomedia[2].txt
C:\Documents and Settings\Linda\Cookies\linda@invitemedia[1].txt
C:\Documents and Settings\Linda\Cookies\linda@interclick[1].txt
aka-cdn-ns.adtech.de [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
bc.youporn.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
cdn5.specificclick.net [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
hstse.tradedoubler.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
ia.media-imdb.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
interclick.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
macromedia.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media.mtvnservices.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media.mtvu.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media.redcatsnordic.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media.tattomedia.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media.thewb.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
media1.break.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
pornotube.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
static.youporn.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]
www.freesex.com [ C:\Documents and Settings\Linda\Application Data\Macromedia\Flash Player\#SharedObjects\6WRDABDH ]

Disabled.SecurityCenterOption
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#ANTIVIRUSDISABLENOTIFY
HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#FIREWALLDISABLENOTIFY

Trojan.Agent/Gen-Nullo[Short]
G:\SYSTEM VOLUME INFORMATION\_RESTORE{C264128E-D92A-4C20-AA2A-F5DEA2C91D7C}\RP594\A0144760.EXE
G:\SYSTEM VOLUME INFORMATION\_RESTORE{C264128E-D92A-4C20-AA2A-F5DEA2C91D7C}\RP594\A0144761.EXE
Citera
2010-10-09, 00:00
  #8
Medlem
Förlåt, vet verkligen inte hur man gör om texten så den tar mindre plats...
Citera
2010-10-09, 00:07
  #9
Medlem
och så här säger den andra scanningen...

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Databasversion: 4781

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702

2010-10-09 00:05:40
mbam-log-2010-10-09 (00-05-40).txt

Skanningstyp: Snabbskanning
Antal skannade objekt: 132882
Förfluten tid: 9 minut(er), 20 sekund(er)

Infekterade minnesprocesser: 0
Infekterade minnesmoduler: 0
Infekterade registernycklar: 14
Infekterade registervärden: 0
Infekterade registerdataposter: 0
Infekterade mappar: 1
Infekterade filer: 0

Infekterade minnesprocesser:
(Inga illasinnade poster hittades)

Infekterade minnesmoduler:
(Inga illasinnade poster hittades)

Infekterade registernycklar:
HKEY_CLASSES_ROOT\cvpro.server (Rogue.ContraVirus) -> No action taken.
HKEY_CLASSES_ROOT\cvpro.server.1 (Rogue.ContraVirus) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{307c2e42-267a-11dc-aca0-7ccb56d89593} (Rogue.ContraVirus) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{5af53372-266a-11dc-874d-879e56d89593} (Rogue.ContraVirus) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{bfcbb188-18e3-1deb-59d5-bace1ce655a4} (Rogue.ContraVirus) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{fe4054f8-266a-11dc-aea3-b9a056d89593} (Rogue.ContraVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{dbe5bee8-f032-11db-826a-c4bb56d89593} (Rogue.ContraVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_CLASSES_ROOT\AppID\ContraVirusPro.exe (Rogue.ContraVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Shell Extensions\Trace7 (Rogue.ContraVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Shell\1das (Rogue.ContraVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Shell\dnl7 (Rogue.ContraVirus) -> No action taken.

Infekterade registervärden:
(Inga illasinnade poster hittades)

Infekterade registerdataposter:
(Inga illasinnade poster hittades)

Infekterade mappar:
C:\Documents and Settings\Linda\Application Data\ContraVirus AntiSpam (Rogue.ContraVirus) -> No action taken.

Infekterade filer:
(Inga illasinnade poster hittades)
Citera
2010-10-09, 00:16
  #10
Medlem
Citat:
Ursprungligen postat av lindaljus
Tack som tar dig tid!.........

Låt programmena rensa allt de hittar.
Såg i MBAM-loggen att du valt att inte agera (No action taken).
Starta om datorn mellan varvena & scanna igen, upprepa alltså, behövs ibland flera ggr.
Tills de inte finner mer.
Citera
2010-10-09, 00:34
  #11
Medlem
Tack! ska jag ta bort från karantän? Vad verkar det som att jag har för skit?
Citera
2010-10-09, 02:44
  #12
Medlem
Nu har jag gjort som ni sagt men måste dessvärre meddela att problemet kvarstår... jäkla skit!! Hjälp!
Citera
  • 1
  • 2

Stöd Flashback

Flashback finansieras genom donationer från våra medlemmar och besökare. Det är med hjälp av dig vi kan fortsätta erbjuda en fri samhällsdebatt. Tack för ditt stöd!

Stöd Flashback