2007-05-02, 17:07
  #1
Medlem
Mr 9-5s avatar
Tjenare, sitter och brottas med detta djävulsvirus och har gjort så ett bra tag, den verkar ha infekterat ungefär varenda jävla .exe fil på hela datorn och nu börjar jag ärligt talat blir lite less, den plockar bort rundll32.exe jämt och ständigt för mig, vilket upplevs som mycket irrieterande... Jag har AVG som förvissa hittar alla infekterade, men sen när jag ska försöka reparera 23534 .exe filer så hänger datorn sig illa kvickt.

Nåväl finns det nu någon här med kunskap om det här viruset som kan tala om för mig hurihelvete jag får bort skiten?

Och just det,svar som "Uppdatera ditt AVG och försök igen" unandbedes ödmjukast, (Det funkar inte)

Tack på förhand
Citera
2007-05-02, 18:00
  #2
Medlem
pirates avatar
Citat:
Ursprungligen postat av Mr 9-5
Tjenare, sitter och brottas med detta djävulsvirus och har gjort så ett bra tag, den verkar ha infekterat ungefär varenda jävla .exe fil på hela datorn och nu börjar jag ärligt talat blir lite less, den plockar bort rundll32.exe jämt och ständigt för mig, vilket upplevs som mycket irrieterande... Jag har AVG som förvissa hittar alla infekterade, men sen när jag ska försöka reparera 23534 .exe filer så hänger datorn sig illa kvickt.

Nåväl finns det nu någon här med kunskap om det här viruset som kan tala om för mig hurihelvete jag får bort skiten?

Och just det,svar som "Uppdatera ditt AVG och försök igen" unandbedes ödmjukast, (Det funkar inte)

Tack på förhand

Läs där det står "Removal instructions"
http://www.viruslist.com/en/viruses/...id=145656#doc2
Citera
2007-05-02, 18:12
  #3
Medlem
927s avatar
spara denna fil på skrivbordet.
dubbelklicka på filen >installera >när HJT öppnas klicka på "do a system scan and save logfile" >posta den loggen
http://www.thespykiller.co.uk/files/HJTsetup.exe
Citera
2007-05-02, 18:43
  #4
Medlem
Mr 9-5s avatar
Tackar 927!
Får se om du hittar något som verkar lurigt

Logfile of HijackThis v1.99.1
Scan saved at 18:43:02, on 2007-05-02
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program\Delade filer\Symantec Shared\ccSetMgr.exe
C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE
C:\Program\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
C:\Program\F-Secure Internet Security\Anti-Virus\FSGK32.EXE
C:\Program\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe
C:\Program\F-Secure Internet Security\Common\FSMA32.EXE
C:\Program\F-Secure Internet Security\Anti-Virus\fssm32.exe
C:\Program\F-Secure Internet Security\Common\FSMB32.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program\F-Secure Internet Security\Common\FCH32.EXE
C:\Program\F-Secure Internet Security\Common\FAMEH32.EXE
C:\Program\F-Secure Internet Security\Anti-Virus\fsqh.exe
C:\Program\F-Secure Internet Security\FSPC\fspc.exe
C:\Program\F-Secure Internet Security\Anti-Virus\fsrw.exe
C:\Program\F-Secure Internet Security\Anti-Virus\fsav32.exe
C:\Program\F-Secure Internet Security\FWES\Program\fsdfwd.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program\QuickTime\qttask.exe
C:\Program\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program\DAEMON Tools\daemon.exe
C:\Program\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
C:\Program\Samurize\Client.exe
C:\Program\MSN Messenger\msnmsgr.exe
C:\Program\Mozilla Firefox\firefox.exe
C:\Program\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abonem.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abonem.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
R3 - Default URLSearchHook is missing
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program\Delade filer\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AVG7_CC] C:\Program\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [OM_Monitor] C:\Program\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program\DAEMON Tools\daemon.exe" -lang 1033
O4 - Startup: Adobe Gamma.lnk = C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Client jeeow.lnk = C:\Program\Samurize\Client.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: F-Secure 2006.lnk = C:\Program\F-Secure Internet Security\backweb\4476822\Program\fspex.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Blockera detta popup-fönster - C:\Program\F-Secure Internet Security\Anti-Spyware\blockpopups.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Webbfilter - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Webbfilter - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra button: IE-sköld - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program\F-Secure Internet Security\Anti-Spyware\ieshield.dll
O9 - Extra 'Tools' menuitem: IE-sköld... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program\F-Secure Internet Security\Anti-Spyware\ieshield.dll
O9 - Extra button: MultiPoker - {641F4F4E-6C91-4159-869E-9F5CE6F0F64E} - C:\Program\MultiPoker\MultiPoker.exe
O9 - Extra 'Tools' menuitem: MultiPoker - {641F4F4E-6C91-4159-869E-9F5CE6F0F64E} - C:\Program\MultiPoker\MultiPoker.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\MSMSGS.EXE
O10 - Broken Internet access because of LSP provider 'winsflt.dll' missing
O16 - DPF: {2ED9BC2B-4DF1-472E-9B5E-55477D2C97F5} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn.co...s/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1145376349703
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/Ms...Downloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\Program\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: MediaContentIndex - C:\WINDOWS\system32\dn2601fse.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program\Delade filer\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: F-Secure 2006 (BackWeb Plug-in - 4476822) - F-Secure Internet Security 2005 - C:\Program\F-SECU~1\backweb\4476822\Program\SERVIC~1.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Unknown owner - C:\Program\Norton Internet Security\ccPwdSvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Unknown owner - C:\Program\Norton Internet Security\comHost.exe (file missing)
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program\F-Secure Internet Security\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure HTTP Server (fshttps) - F-Secure Corporation - C:\Program\F-Secure Internet Security\FSPC\fshttps\fshttps.exe
O23 - Service: FSMA - F-Secure Corporation - C:\Program\F-Secure Internet Security\Common\FSMA32.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program\Delade filer\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program\Delade filer\Symantec Shared\SNDSrvc.exe
Citera
2007-05-02, 21:31
  #5
Medlem
927s avatar
ser inget speciellt det är ju inte bra att använda flera antivirusprogram, det bli konstiga problem

spara filen på skrivbordet >klicka på SDFix.exe >sdfixen packas upp här: C:\SDFix.

starta om i felsäkert läge (F8) >gå hit: C:\SDFix >klicka på runthis.bat >välj y.

när scanningen är klar så tryck på valfri tangent för att starta om.
när det står finished så tryck på valfri tangent. en logg kommer automatiskt att visas, kopiera in loggen här.
http://downloads.andymanchesta.com/R...ools/SDFix.exe

sen kör du detta program
http://www.atribune.org/content/view/28/
Citera
2007-05-04, 14:25
  #6
Medlem
Mr 9-5s avatar
Okej, återigen tusen tack för hjälpen, här har du loggen från sdfix.

Safe Mode:
Checking Services:






Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...

Normal Mode:
Checking Files:

Below files will be copied to Backups folder then removed:

C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\EUZO6JPD\CHECKI~1.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\EUZO6JPD\SMARTL~1.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\EUZO6JPD\SMARTL~2.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\EUZO6JPD\SMARTL~3.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\MBJUCEN6\SMARTL~1.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\MBJUCEN6\SMARTL~2.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\MBJUCEN6\SMARTL~3.HTM - Deleted
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM~1\LOKALA~1\TEMPO R~1\CONTENT.IE5\MBJUCEN6\SMARTL~4.HTM - Deleted
C:\WINDOWS\odbc.INI - Deleted
C:\WINDOWS\system32\2pac.txt - Deleted


Folder C:\DOCUME~1\keMpish\LOKALA~1\Temp\ICD1.tmp - Removed

Removing Temp Files

ADS Check:

Checking if ADS is attached to system32 Folder
C:\WINDOWS\system32
No streams found.

Checking if ADS is attached to svchost.exe
C:\WINDOWS\system32\svchost.exe
No streams found.



Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess\Parameters\FirewallPolicy\Standard Profile\AuthorizedApplications\List]
"C:\\Program\\F-Secure Internet Security\\backweb\\4476822\\Program\\fspex.exe"="C :\\Program\\F-Secure Internet Security\\backweb\\4476822\\program\\fspex.exe:*:e nabled:F-Secure 2006"


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\SharedAccess\Parameters\FirewallPolicy\DomainPr ofile\AuthorizedApplications\List]
"C:\\Program\\F-Secure Internet Security\\backweb\\4476822\\Program\\fspex.exe"="C :\\Program\\F-Secure Internet Security\\backweb\\4476822\\program\\fspex.exe:*:e nabled:F-Secure 2006"
Citera
2007-05-04, 14:26
  #7
Medlem
Mr 9-5s avatar
Remaining Files:
---------------

Backups Folder: - C:\SDFix\backups\backups.zip

Checking For Files with Hidden Attributes:

C:\Program\Internet Explorer\IEXPLORE.EXE
C:\Program\Outlook Express\MSIMN.EXE
C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}$BACKUP$\System\wmplayer.exe
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS044F0729-31CC-4C2C-AF76-702CD67F4458.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS092C73CF-42FE-4756-8F7F-A0B0277869E9.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0BBC6034-8FD7-4AD5-AEAF-F87C7E0C28E1.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0E31B869-E34C-4079-9F30-16055EA6D9A0.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS0EC466D3-8991-44BE-8012-446BD3BC3E1C.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1695221D-28AA-44AB-AAD2-9FA089F813F1.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1A0B3536-F9A5-4E79-A56E-5D27A841600D.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1A90853A-387D-4138-9BCE-DB3F522D836F.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS1D2B7663-2D0D-4A9D-A61D-C0EF700F35F1.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS2072CEE5-66FD-4D5B-9D6B-6F3945A54EC1.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS21455826-032A-4A0A-B5A1-80812758E916.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS2684544E-2B33-4043-91DE-F23EBC92716C.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS27711AAC-2D2C-4090-8B56-A0C3BB713783.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS2C4C6EBA-63DB-49B7-B0A8-508B3F892FAE.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS355C50DF-664A-4315-B32C-A1138E6B2549.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3719AC4B-46DA-4502-951D-A10AD96555F7.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS3DEC2937-59C0-47E5-AD91-565BE73C4DE4.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4785EECB-42FB-48F4-B855-A28CE4A16100.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS49144BDE-7E78-4ECE-B7C9-A8FA97295292.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS4DD19021-9E39-47AB-BAAD-C241C69F12E3.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS5290F846-6E2F-4FAD-9225-ECD4B5F4FD64.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS56C2C4C5-B3C8-452D-8385-24A3CFC4945A.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS5D94B39F-9EA3-4236-92C5-20A2BB653863.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS5DD1CB6F-7567-421A-81B6-BC7834FEA25D.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS60BE9B4A-F3A6-4C78-A5AB-43CEA9194D73.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS6D7EAD01-8F76-4124-8884-4141DFAB69FA.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS737D338A-621C-498A-B72A-6782442354AD.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS757A70EF-E84A-4C69-918F-678F2CE281F1.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS76ABAF58-E878-4707-B013-D999E8F2214E.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS79C4FABC-5F13-4ED4-B52C-F040C358EB57.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS7B28D557-F614-4D87-A455-382522852228.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS7BB4745F-5918-4425-9972-DAE33B0B9973.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8055E702-072C-430C-8062-551B40507452.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8B4F22E8-4049-4675-B578-D62F9AFDC36B.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS8C25B520-9747-43EE-9A41-512F0F123B50.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9077137B-63B4-43C6-A02C-A607C851A1C2.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS90778CF8-76E0-4EE1-9256-69EA9352957B.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS915D70EB-CB09-4E4E-8ACE-E32B645094DE.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9E02DC2D-8EA8-4852-9AD4-524C4988FEED.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9E6EFAC2-9120-4733-89DA-B01211EF203A.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCS9FB5FE86-46E1-4873-9B7F-635572C1053D.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSA0C57D41-1DCB-4650-94CF-852E6FE207E5.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBB141793-C68C-4C57-AA18-E47CC6EBAE54.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBBCF1DDF-771C-4D25-BE33-0EC84E2BEB9C.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSBDE0D822-371E-496A-96E2-7B4DC5AE029F.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC2FDE937-C272-41F9-BEAD-AF680BBCC10E.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC6DAC6B9-413C-4B76-B83C-1259F9470542.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSC8F11EB3-11EC-4C91-AF7F-FCD0B901E8DF.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCAE931EE-9B81-4345-AD60-F626539AD3F6.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSCD5CD94E-6C9E-4C7D-8C1B-818320C61A53.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD26D9AA9-3A0C-4BF0-BAB2-31A6451B5B57.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD56B8A17-A43D-46D1-926E-AAEB5E1B946A.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD5D90882-B6CB-43AB-BBE4-451CDE055097.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD5E4CCCB-D3D3-4D19-82F0-F88440FC4ABF.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD67AF543-55AC-4582-857B-74789E860724.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSD6AD1174-5F7B-4165-8301-0E5D870EAABE.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDC531141-BDEA-4FEB-B6C3-409AD5E3B262.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSDF6F060F-A679-4A70-A32F-BFE4881F4715.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE0384C23-9853-4A25-9B27-6633732331A6.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSE7FF1D67-7F42-4540-82D2-22C946BE2943.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEC56CEC4-2780-4521-97A3-44D737FFC39C.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEC7CCC9D-23F0-4B52-9678-8F80BB286AEA.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEDFAE8F3-D52A-4420-826C-A00D93B070BD.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSEEB70EB5-AACB-4CDC-9842-D412F4D39487.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF0D79F64-58D2-497E-A079-A74B7CF23B28.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF12B16CC-A971-4D0E-9DB1-A242DEEE9F39.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF190E7C1-D7A8-4D37-87E3-39A6A2E9C0EC.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF5138F5E-2C69-4761-939E-52835FDA6F60.tmp
C:\Documents and Settings\LocalService\Application Data\Webroot\Spy Sweeper\Temp\SSCSF6CFEE75-C3BC-479A-8E0B-B132B7DDC387.tmp

Finished
Citera
2007-05-04, 18:25
  #8
Medlem
927s avatar
look2me destroyer hitta inget?

synd att du inte använde den senaste versionen av sdfix, det ser ut som v1.81 enligt loggen. den här filen är nämligen ok C:\WINDOWS\odbc.INI - Deleted,
jag vet inte om du kommer märka att den togs bort, den har nåt att göra med inställningar för säkerhetsprogram
Citera
2007-05-05, 12:16
  #9
Medlem
Mr 9-5s avatar
Mnää, nåväl ngt måste iaf ha hänt för AVG hittar Saburex.a nåmer. Tack för hjälpen ändå. Stöter jag på framtida problem så postar jag dem här isf!
Citera

Skapa ett konto eller logga in för att kommentera

Du måste vara medlem för att kunna kommentera

Skapa ett konto

Det är enkelt att registrera ett nytt konto

Bli medlem

Logga in

Har du redan ett konto? Logga in här

Logga in