hej igen det tog sin tid men der er også 750 gigabit hd at skanne, lavede en fejl med hensyn til mwave men håber du kan bruge det.
superantispywaer log:
SUPERAntiSpyware Scan Log
Generated 01/31/2007 at 08:07 PM
Application Version : 3.5.1016
Core Rules Database Version : 3165
Trace Rules Database Version: 1176
Scan type : Quick Scan
Total Scan Time : 01:00:53
Memory items scanned : 456
Memory threats detected : 0
Registry items scanned : 805
Registry threats detected : 1
File items scanned : 71456
File threats detected : 20
Adware.Lop-Gen
[FilmStart] C:\DOCUME~1\HARDY\APPLIC~1\DRIVEA~1\SAFE GLOBAL.EXE
C:\DOCUME~1\HARDY\APPLIC~1\DRIVEA~1\SAFE GLOBAL.EXE
C:\DOCUMENTS AND SETTINGS\HARDY\APPLICATION DATA\DRIVE AMOK LIST\SAFE GLOBAL.EXE
C:\DOCUMENTS AND SETTINGS\HARDY\LOKALE INDSTILLINGER\TEMP\BIS51.EXE
C:\WINDOWS\Prefetch\SAFE GLOBAL.EXE-32045D7B.pf
Adware.Tracking Cookie
C:\Documents and Settings\hardy\Cookies\hardy@partygaming.122.2o7[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@xiti[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@partypoker[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@track.adform[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@e2.emediate[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@adultfriendfinder[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@ehg-lexmark.hitbox[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@overture[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@ad.yieldmanager[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@ad1.emediate[2].txt
C:\Documents and Settings\hardy\Cookies\hardy@doubleclick[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@mediaplex[1].txt
C:\Documents and Settings\hardy\Cookies\hardy@tradedoubler[1].txt
G:\Ny mappe (4)\Documents and Settings\spil\Cookies\spil@ads.gorillanation[2].txt
G:\Ny mappe (4)\Documents and Settings\spil\Cookies\spil@sales.liveperson[1].txt
G:\Ny mappe (4)\Documents and Settings\spil.HARDY\Cookies\spil@hypertracker[2].txt
mwave log : lavede en fejl ved denne fik ikke læst alt igennem før jeg startede så jeg fik ikke gemt på den måde du beskrev men jeg håber at du kan bruge dette
[0x000004c4] 31/01/2007 15:57:00:812 :[msvLclnt.dll]ModuleName = C:\Kaspersky\mwavscan.com
[0x000004c4] 31/01/2007 15:57:00:812 :[msvLclnt.dll]WARNING!!! "Autokey" Not Found
[0x000004c4] 31/01/2007 15:57:02:796 :[msvLclnt.dll]Options Set by External applications mwavscan.com are 9896960 (0x970400):
[0x000004c4] 31/01/2007 15:57:02:796 :[msvLclnt.dll]Mode :PACKED,ARCHIVED,CA,WARNINGS,MAILPLAIN
[0x000004c4] 31/01/2007 15:57:02:796 :[msvLclnt.dll]TimeOut : ffffffff
[0x000004c4] 31/01/2007 15:57:02:796 :[msvLclnt.dll]Priority : NORMAL
[0x000004c4] 31/01/2007 15:57:03:078 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
[0x00000980] 31/01/2007 15:57:48:062 :[msvLclnt.dll][00000001] File C:\DOCUME~1\ALLUSE~1\APPLIC~1\RULEBR~1\1LOVE~1.EXE infected by Trojan.Win32.Obfuscated.bk
[0x00000980] 31/01/2007 15:57:48:125 :[msvLclnt.dll][00000001] File C:\DOCUME~1\ALLUSE~1\APPLIC~1\RULEBR~1\1LOVE~1.EXE infected by Trojan.Win32.Obfuscated.bk
[0x00000980] 31/01/2007 15:58:21:093 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
[0x000004c4] 31/01/2007 15:58:24:015 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
[0x0000040c] 31/01/2007 16:02:50:109 :[msvLclnt.dll]ModuleName = C:\Kaspersky\mwavscan.com
[0x0000040c] 31/01/2007 16:02:50:203 :[msvLclnt.dll]Registry Key Deleted Properly!!!
[0x0000040c] 31/01/2007 16:02:52:140 :[msvLclnt.dll]Options Set by External applications mwavscan.com are 9896960 (0x970400):
[0x0000040c] 31/01/2007 16:02:52:140 :[msvLclnt.dll]Mode :PACKED,ARCHIVED,CA,WARNINGS,MAILPLAIN
[0x0000040c] 31/01/2007 16:02:52:140 :[msvLclnt.dll]TimeOut : ffffffff
[0x0000040c] 31/01/2007 16:02:52:140 :[msvLclnt.dll]Priority : NORMAL
[0x0000040c] 31/01/2007 16:02:52:406 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
[0x00000470] 31/01/2007 16:07:00:156 :[msvLclnt.dll][00000001] File C:\Documents and Settings\hardy\Application Data\drive amok list\lipkisnm.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:07:00:234 :[msvLclnt.dll][00000001] File C:\Documents and Settings\hardy\Application Data\drive amok list\lipkisnm.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:11:03:625 :[msvLclnt.dll][00000001] File C:\Documents and Settings\hardy\Skrivebord\inztallations filer\keyfinder.exe infected by not-a-virus:PSWTool.Win32.RAS.a
[0x00000470] 31/01/2007 16:20:31:234 :[msvLclnt.dll][00000001] File C:\Programmer\MyGlobalSearch\bar\1.bin\M9PLUGIN.DLL infected by not-a-virus:AdTool.Win32.MyWebSearch.l
[0x00000470] 31/01/2007 16:20:31:296 :[msvLclnt.dll][00000001] File C:\Programmer\MyGlobalSearch\bar\1.bin\NPMYGLSH.DLL infected by not-a-virus:AdTool.Win32.MyWebSearch.i
[0x00000470] 31/01/2007 16:24:37:593 :[msvLclnt.dll][00000001] File C:\Programmer\XP Smoker\shutdown.exe infected by not-a-virus:RiskTool.Win32.Shutdown.c
[0x00000470] 31/01/2007 16:27:26:171 :[msvLclnt.dll][00000001] File C:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058921.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:27:26:203 :[msvLclnt.dll][00000001] File C:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058921.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:27:27:625 :[msvLclnt.dll][00000001] File C:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058943.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:27:27:656 :[msvLclnt.dll][00000001] File C:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058943.exe infected by Trojan.Win32.Obfuscated.bk
[0x00000470] 31/01/2007 16:41:52:875 :[msvLclnt.dll][00000001] File D:\eMule\Ny mappe\Star Wars - Knights Of The Old Republic - Nocd - Keygen - Crack.zip infected by not-a-virus:Porn-Dialer.Win32.Star
[0x00000470] 31/01/2007 16:41:52:953 :[msvLclnt.dll][00000001] File D:\eMule\Ny mappe\The Great Escape.crack nocd keygen.zip infected by not-a-virus:Porn-Dialer.Win32.Star
[0x00000470] 31/01/2007 16:43:39:390 :[msvLclnt.dll][00000001] File D:\Ny mappe\Ny mappe (2)\plugin\VNCServer\vncconfig.exe infected by not-a-virus:RemoteAdmin.Win32.WinVNC.4
[0x00000470] 31/01/2007 16:43:39:468 :[msvLclnt.dll][00000001] File D:\Ny mappe\Ny mappe (2)\plugin\VNCServer\winvnc4.exe infected by not-a-virus:RemoteAdmin.Win32.WinVNC.4
[0x00000470] 31/01/2007 16:43:39:500 :[msvLclnt.dll][00000001] File D:\Ny mappe\Ny mappe (2)\plugin\VNCServer\wm_hooks.dll infected by not-a-virus:RemoteAdmin.Win32.WinVNC.4
[0x00000470] 31/01/2007 17:45:21:156 :[msvLclnt.dll][00000001] File G:\Incoming\Advanced WMA Workshop v2_01 Crack updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:21:328 :[msvLclnt.dll][00000001] File G:\Incoming\Advanced WMA Workshop v2_01 Crack updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:21:796 :[msvLclnt.dll][00000001] File G:\Incoming\Alibre Design Xpress 8.2 Crack & Serial.rar infected by Trojan-Clicker.Win32.Delf.eg
[0x00000470] 31/01/2007 17:45:21:843 :[msvLclnt.dll][00000001] File G:\Incoming\Alibre Design Xpress 8.2 Crack & Serial.rar infected by Trojan-Clicker.Win32.Delf.eg
[0x00000470] 31/01/2007 17:45:22:156 :[msvLclnt.dll][00000001] File G:\Incoming\AutoCAD hydraulic blocks updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:22:203 :[msvLclnt.dll][00000001] File G:\Incoming\AutoCAD hydraulic blocks updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:23:921 :[msvLclnt.dll][00000001] File G:\Incoming\Autodesk Inventor 10 Keygen updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:25:562 :[msvLclnt.dll][00000001] File G:\Incoming\Autodesk Inventor 10 Keygen updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:26:937 :[msvLclnt.dll][00000001] File G:\Incoming\Battle Field 2 Keygen updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:27:078 :[msvLclnt.dll][00000001] File G:\Incoming\Battle Field 2 Keygen updated-fixed 10-2006.zip infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:28:031 :[msvLclnt.dll][00000001] File G:\Incoming\Eagames Battle Field 2 Nocd Crack By Gtr.zip infected by Trojan-Spy.Win32.Harvester.02
[0x00000470] 31/01/2007 17:45:28:078 :[msvLclnt.dll][00000001] File G:\Incoming\Eagames Battle Field 2 Nocd Crack By Gtr.zip infected by Trojan-Spy.Win32.Harvester.02
[0x00000470] 31/01/2007 17:45:28:828 :[msvLclnt.dll][00000001] File G:\Incoming\Microsoft Visual C++ 6 patch crack multiLanguage with serial by ParadoX.zip infected by Backdoor.Win32.Agent.abv
[0x00000470] 31/01/2007 17:45:28:875 :[msvLclnt.dll][00000001] File G:\Incoming\Microsoft Visual C++ 6 patch crack multiLanguage with serial by ParadoX.zip infected by Backdoor.Win32.Agent.abv
[0x00000470] 31/01/2007 17:45:29:421 :[msvLclnt.dll][00000001] File G:\Incoming\SpamBully.for.Outlook.3.0.0.30.WinALL.Keygen.Only.READ.NFO-ViRiLiTY.rar infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 17:45:29:500 :[msvLclnt.dll][00000001] File G:\Incoming\SpamBully.for.Outlook.3.0.0.30.WinALL.Keygen.Only.READ.NFO-ViRiLiTY.rar infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 17:45:29:703 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack updated-fixed 08-2006.rar infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:29:734 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack updated-fixed 08-2006.rar infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:29:859 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack(1).rar infected by Trojan-Dropper.Win32.Delf.vt
[0x00000470] 31/01/2007 17:45:30:140 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack(1).rar infected by Trojan-Dropper.Win32.Delf.vt
[0x00000470] 31/01/2007 17:45:30:390 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack.rar infected by Trojan-Dropper.Win32.Delf.vt
[0x00000470] 31/01/2007 17:45:30:484 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet TV 6.8 crack.rar infected by Trojan-Dropper.Win32.Delf.vt
[0x00000470] 31/01/2007 17:45:30:578 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet Tv 6.8 Keygen-Ssg(1).rar infected by Trojan-PSW.Win32.Delf.nw
[0x00000470] 31/01/2007 17:45:30:640 :[msvLclnt.dll][00000001] File G:\Incoming\Super Internet Tv 6.8 Keygen-Ssg(1).rar infected by Trojan-PSW.Win32.Delf.nw
[0x00000470] 31/01/2007 17:45:31:062 :[msvLclnt.dll][00000001] File G:\Incoming\Superantispyware Professional 3.2.1028 Winall Keygen Only Read Nfo-Virility.rar infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 17:45:31:140 :[msvLclnt.dll][00000001] File G:\Incoming\Superantispyware Professional 3.2.1028 Winall Keygen Only Read Nfo-Virility.rar infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 17:45:31:625 :[msvLclnt.dll][00000001] File G:\Incoming\XoftSpy.v4.21.134.WinALL.Keygen.Only-ViRiLiTY updated-fixed 10-2006.rar infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:45:31:687 :[msvLclnt.dll][00000001] File G:\Incoming\XoftSpy.v4.21.134.WinALL.Keygen.Only-ViRiLiTY updated-fixed 10-2006.rar infected by P2P-Worm.Win32.Kapucen.b
[0x00000470] 31/01/2007 17:49:25:734 :[msvLclnt.dll][00000001] File G:\Ny mappe (3)\Programmer\MyGlobalSearch\bar\1.bin\M9PLUGIN.DLL infected by not-a-virus:AdTool.Win32.MyWebSearch.l
[0x00000470] 31/01/2007 17:49:25:765 :[msvLclnt.dll][00000001] File G:\Ny mappe (3)\Programmer\MyGlobalSearch\bar\1.bin\NPMYGLSH.DLL infected by not-a-virus:AdTool.Win32.MyWebSearch.i
[0x00000470] 31/01/2007 17:51:06:000 :[msvLclnt.dll][00000001] File G:\Ny mappe (3)\Programmer\XP Smoker\shutdown.exe infected by not-a-virus:RiskTool.Win32.Shutdown.c
[0x00000470] 31/01/2007 18:18:16:156 :[msvLclnt.dll][00000001] File G:\Ny mappe (4)\Programmer\XP Smoker\shutdown.exe infected by not-a-virus:RiskTool.Win32.Shutdown.c
[0x00000470] 31/01/2007 18:21:51:343 :[msvLclnt.dll][00000001] File G:\super\keygen.exe infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 18:21:51:421 :[msvLclnt.dll][00000001] File G:\super\keygen.exe infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 18:21:58:390 :[msvLclnt.dll][00000001] File G:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058946.exe infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 18:21:58:437 :[msvLclnt.dll][00000001] File G:\System Volume Information\_restore{283EBDC1-642D-4C7E-849E-0A6B48C89F0A}\RP184\A0058946.exe infected by Trojan-Spy.Win32.Agent.pd
[0x00000470] 31/01/2007 18:22:00:812 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
[0x0000040c] 31/01/2007 18:52:25:234 :[msvLclnt.dll]VirusCount = 260293 Latest Date = 2007/01/21
higjack log:Logfile of HijackThis v1.99.1
Scan saved at 20:12:32, on 31-01-2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Norman\npm\bin\nvoy.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Norman\npf\bin\npfsvc32.exe
C:\Programmer\FLLESF~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Norman\npm\bin\ZLH.EXE
C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmer\Java\jre1.5.0_10\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\Cacheman\Cacheman.exe
C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
G:\Programmer\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Programmer\MSI\Core Center\CoreCenter.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\svchost.exe
C:\Norman\npm\Bin\Zanda.exe
C:\Programmer\NVIDIA Corporation\nTune\nTuneService.exe
C:\Norman\nvc\BIN\NIP.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Norman\npm\bin\NJEEVES.EXE
C:\Norman\npc\bin\npcsvc32.exe
C:\Norman\Nvc\bin\nvcoas.exe
C:\Norman\npc\bin\nuaa.exe
C:\WINDOWS\System32\alg.exe
C:\Norman\nvc\bin\cclaw.exe
C:\Documents and Settings\hardy\Skrivebord\hjk\hjtspecial.exe
C:\WINDOWS\system32\wuauclt.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.dk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - URLSearchHook: Share Accelerator Toolbar - {f5c93451-2609-4723-a053-5c19516be1a8} - C:\Programmer\Share_Accelerator\tbShar.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - G:\Programmer\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SolidConverter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmer\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar3.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - G:\Programmer\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: SolidConverter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmer\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - G:\Programmer\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar3.dll
O3 - Toolbar: Share Accelerator Toolbar - {f5c93451-2609-4723-a053-5c19516be1a8} - C:\Programmer\Share_Accelerator\tbShar.dll
O4 - HKLM\..\Run: [Norman ZANDA] C:\Norman\npm\bin\ZLH.EXE /LOAD /SPLASH
O4 - HKLM\..\Run: [NPCTray] C:\Norman\npc\bin\npc_tray.exe /LOAD
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmer\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Programmer\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Cacheman] C:\Programmer\Cacheman\Cacheman.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Acrobat Assistant.lnk = G:\Programmer\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: AutoCAD Startup Accelerator.lnk = ?
O4 - Global Startup: CoreCenter.lnk = C:\Programmer\MSI\Core Center\CoreCenter.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Programmer\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_10\bin\npjpi150_10.dll
O9 - Extra button: Klik her for at tilføje varen til din elektroniske ønskeliste. - {A2C4C6DA-8C02-4425-A5B2-D6E58B99BEF0} -
C:\Programmer\DetGodeProgram\DETGODEPROGRAMREMINDER.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra button: (no name) - SolidConverterPDF - (no file) (HKCU)
O10 - Unknown file in Winsock LSP: c:\norman\npc\bin\nlf.dll
O10 - Unknown file in Winsock LSP: c:\norman\npc\bin\nlf.dll
O10 - Unknown file in Winsock LSP: c:\norman\npc\bin\nlf.dll
O10 - Unknown file in Winsock LSP: c:\norman\npc\bin\nlf.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {01111C00-3E00-11D2-8470-0060089874ED} (Support.com ActionRunner Class) -
http://netsupport2.tdconline.dk/sdccommon/download/tgctlar.cab
O16 - DPF: {01111E00-3E00-11D2-8470-0060089874ED} (Support.com SmartIssue) -
http://netsupport2.tdconline.dk/sdccommon/download/tgctlsi.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) -
http://a516.g.akamai.net/f/516/25175/7d/runaware.download.akamai.com/25175/citrix/wficat-no-eula.cab
O16 - DPF: {2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B} (DownloadManager Control) -
http://dlmanager.akamaitools.com.edgesuite.net/dlmanager/versions/activex/dlm-activex-2.0.5.1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1157615270406
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1137909963500
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) -
http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) -
https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} (SABScanProcesses Class) -
http://www.superadblocker.com/activex/sabspx.cab
O16 - DPF: {BB637307-92FA-47EC-B3F7-6969078673CC} (Royal Control) -
http://www.worldwinner.com/games/v44/royal/royal.cab
O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) -
http://driveragent.com/files/driveragent.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) -
http://creative.com/su/ocx/15021/CTPID.cab
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Programmer\Fælles filer\Microsoft Shared\Help\hxds.dll
O18 - Protocol: pcl - {182D0C85-206F-4103-B4FA-DCC1FB0A0A44} - G:\Programmer\Autodesk\Inventor Professional 8\bin\HSPCLPRO10.dll
O20 - AppInit_DLLs: C:\Programmer\Google\GOOGLE~3\GOEC62~1.DLL,wbsys.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: MCPClient - C:\Programmer\FLLESF~1\Stardock\mcpstub.dll
O20 - Winlogon Notify: WBSrv - C:\Programmer\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Programmer\Fælles filer\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Norman NJeeves - Unknown owner - C:\Norman\npm\bin\NJEEVES.EXE
O23 - Service: Norman ZANDA - Unknown owner - C:\Norman\npm\Bin\Zanda.exe
O23 - Service: Norman Parental Control (NPC) - Norman ASA - C:\Norman\npc\bin\npcsvc32.exe
O23 - Service: Norman Personal Firewall Service (NPFSvc32) - Norman ASA - C:\Norman\npf\bin\npfsvc32.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Programmer\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: Norman User Activity Agent (NUAA) - Norman ASA - C:\Norman\npc\bin\nuaa.exe
O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Norman\Nvc\bin\nvcoas.exe
O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Unknown owner - C:\Norman\Nvc\BIN\NVCSCHED.EXE (file missing)
O23 - Service: Norman V.O.Y. (NVOY) - Norman ASA - C:\Norman\npm\bin\nvoy.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Programmer\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcSandraSrv.exe
mvh hardy