TR/Dropper.Gen2 / av Kalle Kula

  • 17 svar
TR/Dropper.Gen2
2010-11-01 kl 19:33

Blir inte av med en trojan som heter TR/Dropper. Avira placerar den i karantän men den finns där igen om jag scannar efter någon timma.. Avira hittar 1 hidden objekt och 4 TR/Dropper.

Jag är hjälplös och söker råd från den som känner till medicinen.

2010-11-03 kl 06:00

stoppa skyddet för avira. hämta malwarebytes och gör en snabb scan, ta bort det som hittas och posta loggen som visas då

2010-11-03 kl 08:15

Förstår inte riktigt, "stoppaskyddet för avira", stoppa virusprogrammet eller ?

P:S Scannade nu på morgonen och nu har "Hidden objects" ökat till 64 från att i mån varit 1 och i går tisdag 6.

Malwarebytes finns ju ett flertal företag spelar det roll vilket?

Många frågor men detta är helt nytt för mig trots flera års datoranvändande.

2010-11-03 kl 08:56

Blir inte klok på detta.

Nu hittades inga TR/ Dropper trots att jag mig veterligt inte tagit bort några "hidden objects" däremot var 64.
Både måndags och i går hittade 4 olika TR/ Droppers.

Har laddat ner Malwarebytes och skall köra det så fort jag får klart för mig om Avira skall vara stoppad eller avinstallerad.

2010-11-03 kl 11:37

Varit i kontakt även med Avira och fick svar att "simply let avira take care of it"

2010-11-03 kl 19:13

Laddade ner Malwerbytes och har nu i kväll scannat 2 ggr Snabb/fördjupad scanning med Avira avaktiverad utan att något hittades.
Scannade sedan med Avira utan att något hittades förutom 1 hidden object.

Av TR/Dropper.Gen Trojan syns inte ett spår och jag frågar mig vart det tagit vägen, jag har ju inte tagit bort något.

Det enda jag kan tänka mig är att Avira tagit bort trojanen men är det möjligt ?

2010-11-03 kl 23:32

Jag måste få se loggar från avira för jag ska ha en aning om vad som sker, då kan man se vilken/vilka filer det gäller och vart dom finns.
Anledningen till att ett AV inte kan ta bort filer är att dom används, malwarebytes tar bort dom via omstart.
Du skriver ju att avira lägger filerna i karantän så självklart kan det va så att datorn är problemfri nu.
Fördelen med att stoppa/inaktivera skyddet i avira när du scannar med ett annat program är att programmen varnar inte för samma fil, på samma gång då

2010-11-04 kl 08:56

Från att igår kväll inte ha hittat något i varken Mawere eller Avira hittar Avira nu på morgonen 1 Hidden object och 3 TR/Dropper igen.

Avira AntiVir Personal
Report file date: den 4 november 2010 08:05

Scanning for 3004805 virus strains and unwanted programs.

The program is running as an unrestricted full version.
Online services are available:

Licensee : Avira AntiVir Personal - FREE Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows 7 x64
Windows version : (plain) [6.1.7600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : KALLESDATOR

Version information:
BUILD.DAT : 10.0.0.592 31823 Bytes 2010-08-09 11:00:00
AVSCAN.EXE : 10.0.3.1 434344 Bytes 2010-11-02 21:36:19
AVSCAN.DLL : 10.0.3.0 46440 Bytes 2010-04-01 11:57:04
LUKE.DLL : 10.0.2.3 104296 Bytes 2010-03-07 17:33:04
LUKERES.DLL : 10.0.0.1 12648 Bytes 2010-02-10 22:40:49
VBASE000.VDF : 7.10.0.0 19875328 Bytes 2009-11-06 08:05:36
VBASE001.VDF : 7.10.1.0 1372672 Bytes 2009-11-19 18:27:49
VBASE002.VDF : 7.10.3.1 3143680 Bytes 2010-01-20 16:37:42
VBASE003.VDF : 7.10.3.75 996864 Bytes 2010-01-26 15:37:42
VBASE004.VDF : 7.10.4.203 1579008 Bytes 2010-03-05 10:29:03
VBASE005.VDF : 7.10.6.82 2494464 Bytes 2010-04-15 20:28:52
VBASE006.VDF : 7.10.7.218 2294784 Bytes 2010-06-02 20:28:55
VBASE007.VDF : 7.10.9.165 4840960 Bytes 2010-07-23 20:29:00
VBASE008.VDF : 7.10.11.133 3454464 Bytes 2010-09-13 20:52:19
VBASE009.VDF : 7.10.13.80 2265600 Bytes 2010-11-02 21:36:19
VBASE010.VDF : 7.10.13.81 2048 Bytes 2010-11-02 21:36:19
VBASE011.VDF : 7.10.13.82 2048 Bytes 2010-11-02 21:36:19
VBASE012.VDF : 7.10.13.83 2048 Bytes 2010-11-02 21:36:19
VBASE013.VDF : 7.10.13.84 2048 Bytes 2010-11-02 21:36:19
VBASE014.VDF : 7.10.13.85 2048 Bytes 2010-11-02 21:36:19
VBASE015.VDF : 7.10.13.86 2048 Bytes 2010-11-02 21:36:19
VBASE016.VDF : 7.10.13.87 2048 Bytes 2010-11-02 21:36:19
VBASE017.VDF : 7.10.13.88 2048 Bytes 2010-11-02 21:36:19
VBASE018.VDF : 7.10.13.89 2048 Bytes 2010-11-02 21:36:19
VBASE019.VDF : 7.10.13.90 2048 Bytes 2010-11-02 21:36:19
VBASE020.VDF : 7.10.13.91 2048 Bytes 2010-11-02 21:36:19
VBASE021.VDF : 7.10.13.92 2048 Bytes 2010-11-02 21:36:19
VBASE022.VDF : 7.10.13.93 2048 Bytes 2010-11-02 21:36:19
VBASE023.VDF : 7.10.13.94 2048 Bytes 2010-11-02 21:36:19
VBASE024.VDF : 7.10.13.95 2048 Bytes 2010-11-02 21:36:19
VBASE025.VDF : 7.10.13.96 2048 Bytes 2010-11-02 21:36:19
VBASE026.VDF : 7.10.13.97 2048 Bytes 2010-11-02 21:36:19
VBASE027.VDF : 7.10.13.98 2048 Bytes 2010-11-02 21:36:19
VBASE028.VDF : 7.10.13.99 2048 Bytes 2010-11-02 21:36:19
VBASE029.VDF : 7.10.13.100 2048 Bytes 2010-11-02 21:36:19
VBASE030.VDF : 7.10.13.101 2048 Bytes 2010-11-02 21:36:19
VBASE031.VDF : 7.10.13.107 51200 Bytes 2010-11-02 21:36:19
Engineversion : 8.2.4.86
AEVDF.DLL : 8.1.2.1 106868 Bytes 2010-08-05 18:55:13
AESCRIPT.DLL : 8.1.3.45 1368443 Bytes 2010-09-17 20:30:05
AESCN.DLL : 8.1.6.1 127347 Bytes 2010-07-28 20:29:06
AESBX.DLL : 8.1.3.1 254324 Bytes 2010-07-28 20:29:07
AERDL.DLL : 8.1.9.2 635252 Bytes 2010-09-26 06:53:41
AEPACK.DLL : 8.2.3.11 471416 Bytes 2010-10-13 07:40:49
AEOFFICE.DLL : 8.1.1.8 201081 Bytes 2010-07-28 20:29:05
AEHEUR.DLL : 8.1.2.37 2974072 Bytes 2010-10-29 10:26:25
AEHELP.DLL : 8.1.14.0 246134 Bytes 2010-10-13 07:40:47
AEGEN.DLL : 8.1.3.23 401779 Bytes 2010-10-03 20:28:01
AEEMU.DLL : 8.1.2.0 393588 Bytes 2010-07-28 20:29:03
AECORE.DLL : 8.1.17.0 196982 Bytes 2010-09-26 06:53:39
AEBB.DLL : 8.1.1.0 53618 Bytes 2010-07-28 20:29:02
AVWINLL.DLL : 10.0.0.0 19304 Bytes 2010-01-14 11:03:38
AVPREF.DLL : 10.0.0.0 44904 Bytes 2010-01-14 11:03:35
AVREP.DLL : 10.0.0.8 62209 Bytes 2010-02-18 15:47:40
AVREG.DLL : 10.0.3.2 53096 Bytes 2010-11-02 21:36:19
AVSCPLR.DLL : 10.0.3.1 83816 Bytes 2010-11-02 21:36:19
AVARKT.DLL : 10.0.0.14 227176 Bytes 2010-04-01 11:22:13
AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 2010-01-26 08:53:30
SQLITE3.DLL : 3.6.19.0 355688 Bytes 2010-01-28 11:57:58
AVSMTP.DLL : 10.0.0.17 63848 Bytes 2010-03-16 14:38:56
NETNT.DLL : 10.0.0.0 11624 Bytes 2010-02-19 13:41:00
RCIMAGE.DLL : 10.0.0.26 2550120 Bytes 2010-01-28 12:10:20
RCTEXT.DLL : 10.0.58.0 97128 Bytes 2010-11-02 21:36:19

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium

Start of the scan: den 4 november 2010 08:05

Starting search for hidden objects.
C:\Program Files\Common Files\Microsoft Shared\Windows Live
C:\Program Files\Common Files\Microsoft Shared\Windows Live
[NOTE] The registry entry is invisible.

The scan of running processes will be started
Scan process 'avscan.exe' - '96' Module(s) have been scanned
Scan process 'avscan.exe' - '40' Module(s) have been scanned
Scan process 'UNS.exe' - '67' Module(s) have been scanned
Scan process 'avgnt.exe' - '63' Module(s) have been scanned
Scan process 'IAANTMon.exe' - '45' Module(s) have been scanned
Scan process 'UpdaterService.exe' - '32' Module(s) have been scanned
Scan process 'pctsTray.exe' - '61' Module(s) have been scanned
Scan process 'pctsSvc.exe' - '163' Module(s) have been scanned
Scan process 'pctsAuxs.exe' - '39' Module(s) have been scanned
Scan process 'IScheduleSvc.exe' - '70' Module(s) have been scanned
Scan process 'LMS.exe' - '47' Module(s) have been scanned
Scan process 'GregHSRW.exe' - '34' Module(s) have been scanned
Scan process 'BDTUpdateService.exe' - '56' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '51' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '39' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '59' Module(s) have been scanned
Scan process 'SUPERAntiSpyware.exe' - '88' Module(s) have been scanned
Scan process 'avguard.exe' - '77' Module(s) have been scanned
Scan process 'sched.exe' - '50' Module(s) have been scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
Master boot sector HD2
[INFO] No virus was found!
Master boot sector HD3
[INFO] No virus was found!
Master boot sector HD4
[INFO] No virus was found!
Master boot sector HD5
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan executable files (registry).
The registry was scanned ( '96' files ).


Starting the file scan:

Begin scan in 'C:\' <Acer>
C:\Windows\Temp\TMP5700.tmp
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Windows\Temp\TMPBCA2.tmp
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
C:\Windows\Temp\TMPE810.tmp
[DETECTION] Is the TR/Dropper.Gen Trojan
Begin scan in 'D:\' <DATA>

Beginning disinfection:
C:\Windows\Temp\TMPE810.tmp
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to the quarantine directory under the name '48dfc2e8.qua'.
C:\Windows\Temp\TMPBCA2.tmp
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to the quarantine directory under the name '5048ed4f.qua'.
C:\Windows\Temp\TMP5700.tmp
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to the quarantine directory under the name '0217b7a7.qua'.


End of the scan: den 4 november 2010 08:51
Used time: 44:56 Minute(s)

The scan has been done completely.

36082 Scanned directories
451937 Files were scanned
3 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
3 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
451934 Files not concerned
3227 Archives were scanned
0 Warnings
3 Notes
678793 Objects were scanned with rootkit scan
1 Hidden objects were found

2010-11-04 kl 10:16

Försökte även uppdatera Malwerebyte men det gick inte fick ERROR code 732 och rapporterat det till bolaget.

2010-11-04 kl 10:52

Hade fel Malwreversion installerad, Installerade vers 1,46 OK.

2010-11-04 kl 13:05

Du nämner inget om en uppdaterad 1.46 hitta något

Jag tippar på att du har malware i datorn, avira missar nåt eftersom det kommer tillbaka (efter omstart?)

Spara nån av filerna på skrivbordet och kör den. det kommer skapas två loggar, du postar innehållet från den som heter dds.txt. blir loggen lång så skicka upp den till fuskbugg.se
http://download.bleepingcomputer.com/sUBs/dds.scr
http://download.bleepingcomputer.com/sUBs/dds.com

2010-11-04 kl 16:38

DDS (Ver_10-11-03.01) - NTFS_AMD64
Run by Kalles Dator at 16:34:52,48 on 2010-11-04
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_22
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.46.1053.18.6071.4299 [GMT 1:00]

SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\SysWOW64\ZoneLabs\vsmon.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarN
otifier.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Macrium\Reflect\ReflectService.exe
C:\Program Files (x86)\Spyware Doctor\pctsAuxs.exe
C:\Program Files (x86)\Spyware Doctor\pctsSvc.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Spyware Doctor\pctsTray.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files (x86)\WinTrade\11\TradeClient.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Kalles Dator\Downloads\dds.com
C:\Windows\system32\conhost.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.se/
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=a
spire_m5811&r=17360310cn06974554l15qj421y353
uSearch Bar = hxxp://www.crawler.com/search/dispatcher.aspx?tp=
aus&qkw=%s&tbid=66016
mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=a
spire_m5811&r=17360310cn06974554l15qj421y353
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=041d&m=a
spire_m5811&r=17360310cn06974554l15qj421y353
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: N/A: {1cb20bf0-bbae-40a7-93f4-6435ff3d0411} - C:\PROGRA~2\Crawler\ctbr.dll
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: : {1cb20bf0-bbae-40a7-93f4-6435ff3d0411} - C:\PROGRA~2\Crawler\ctbr.dll
BHO: PC Tools Browser Guard BHO: {2a0f3d1b-0909-4ff4-b272-609cce6054e7} - C:\Program Files (x86)\Spyware Doctor\BDT\PCTBrowserDefender.dll
BHO: ZoneAlarm Security Engine Registrar: {8a4a36c2-0535-4d2c-bd3d-496cb7eed6e3} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\
bin\TrustCheckerIEPlugin.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\
swg.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: ZoneAlarm Security Engine: {ee2ac4e5-b0b0-4ec6-88a9-bca1a32ab107} - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\
bin\TrustCheckerIEPlugin.dll
TB: PC Tools Browser Guard: {472734ea-242a-422b-adf8-83d1e48cc825} - C:\Program Files (x86)\Spyware Doctor\BDT\PCTBrowserDefender.dll
TB: &Crawler Toolbar: {4b3803ea-5230-4dc3-a7fc-33638f3d3542} - C:\PROGRA~2\Crawler\ctbr.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [SUPERAntiSpyware] C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarN
otifier.exe"
uRun: [UniblueRegistryBooster] "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000
mRun: [ZoneAlarm Client] "C:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun: [ISTray] "C:\Program Files (x86)\Spyware Doctor\pctsTray.exe"
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: Crawler Search - tbr:iemenu
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950
DF09FAB501E03.dll/cmsidewiki.html
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
LSP: C:\Program Files (x86)\Common Files\PC Tools\Lsp\PCTLsp.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_2
2-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_2
2-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_2
2-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/c
abs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~2\Crawler\ctbr.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - C:\Program Files (x86)\SUPERAntiSpyware\SASSEH.DLL
{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{AA58ED58-01DD-4d91-8333-CF10577473F7}
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}
{2318C2B1-4965-11d4-9B18-009027A5CD4F}
TB-X64: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
TB-X64: {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
mRun-x64: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
STS-X64: {1984DD45-52CF-49cd-AB77-18F378FEA264}: FencesShellExt

================= FIREFOX ===================

FF - ProfilePath - C:\Users\KALLES~1\AppData\Roaming\Mozilla\Firefox\P
rofiles\cgd8ia7w.default\
FF - prefs.js: browser.search.selectedEngine - MyStart Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.se/
FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/?loc=ff_address_ba
r_im2_test_v2&search=
FF - component: C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C
7397BD1}\components\SkypeFfComponent.dll
FF - component: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\
components\TrustCheckerMozillaPlugin.dll
FF - plugin: C:\Program Files (x86)\Canon\ZoomBrowser EX\Program\NPCIG.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.
dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\
bin\npFFApi.dll
FF - plugin: C:\Users\Kalles Dator\AppData\Roaming\Mozilla\Firefox\Profiles\cg
d8ia7w.default\extensions\{E2883E8F-472F-4fb0-952
2-AC9BF37916A7}\plugins\np_gp.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDE
FFEDCBA}

---- FIREFOX POLICIES ----
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("browser.visited_color", "#551A8B");
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional
C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified
C:\Program Files (x86)\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".se");
C:\Program Files (x86)\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.videoFeeds.handler", "ask");

============= SERVICES / DRIVERS ===============

R0 PCTCore;PCTools KDS;C:\Windows\System32\drivers\PCTCore64.sys [2010-3-28 233488]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drive
rs\mwlPSDFilter.sys [2009-6-2 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers
\mwlPSDNserv.sys [2009-6-2 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers
\mwlPSDVDisk.sys [2009-6-2 60464]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-7-28 135336]
R2 AntiVirService;Avira AntiVir Guard;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-7-28 267944]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgnt
flt.sys [2010-7-28 81584]
R2 Browser Defender Update Service;Browser Defender Update Service;C:\Program Files (x86)\Spyware Doctor\BDT\BDTUpdateService.exe [2010-3-28 112592]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 ISWKL;ZoneAlarm Toolbar ISWKL;C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 33008]
R2 IswSvc;ZoneAlarm Toolbar IswSvc;C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe [2009-10-14 823272]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2009-8-13 62208]
R2 ReflectService;Macrium Reflect Image Mounting Service;C:\Program Files\Macrium\Reflect\ReflectService.exe [2010-6-21 301024]
R2 sdAuxService;PC Tools Auxiliary Service;C:\Program Files (x86)\Spyware Doctor\pctsAuxs.exe [2010-3-28 366840]
R2 sdCoreService;PC Tools Security Service;C:\Program Files (x86)\Spyware Doctor\pctsSvc.exe [2010-3-28 1142224]
R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-1-19 2314240]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2009-11-18 240160]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;C:\Windows\System32\drivers\e1k62x64.sys [2009-11-18 283824]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-11-18 56344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\System32\drivers\nvhda64v.sys [2009-11-16 84512]
S1 SASDIFSV;SASDIFSV;C:\Program Files (x86)\SUPERAntiSpyware\sasdifsv.sys [2010-2-17 12872]
S1 SASKUTIL;SASKUTIL;C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.SYS [2010-2-17 66632]
S2 gupdate;Tjänsten Google Update (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-3-27 135664]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr
.sys [2010-10-24 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-9-22 1493352]
S3 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe [2009-9-10 305448]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;C:\Windows\System32\svchost.exe -k nosGetPlusHelper [2009-7-14 27136]
S3 SASENUM;SASENUM;C:\Program Files (x86)\SUPERAntiSpyware\SASENUM.SYS [2010-2-17 12872]
S3 WatAdminSvc;Aktiveringsteknologier för Windows-tjänst;C:\Windows\System32\Wat\WatAdminSvc.
exe [2010-6-22 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]

=============== Created Last 30 ================

2010-11-04 06:59:08 8006480 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{88FE5678-6BF7-48A0-9E30-C3911744349B}\mp
engine.dll
2010-11-03 07:21:23 -------- d-----w- C:\Users\KALLES~1\AppData\Roaming\Malwarebytes
2010-11-03 07:21:18 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2010-11-03 07:21:16 24664 ----a-w- C:\Windows\System32\drivers\mbam.sys
2010-11-03 07:21:16 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2010-11-03 07:21:16 -------- d-----w- C:\PROGRA~3\Malwarebytes
2010-11-01 14:17:40 -------- d-----w- C:\Program Files (x86)\Enigma Software Group
2010-11-01 14:16:52 -------- d-----w- C:\Windows\9EFA732347A048E28F7735DB5EED500A.TMP
2010-10-31 13:52:48 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2010-10-31 13:52:48 472808 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
2010-10-31 13:29:30 -------- d-----w- C:\PROGRA~3\F-Secure
2010-10-27 05:58:17 961024 ----a-w- C:\Windows\System32\CPFilters.dll
2010-10-27 05:58:17 641536 ----a-w- C:\Windows\SysWow64\CPFilters.dll
2010-10-27 05:58:17 552960 ----a-w- C:\Windows\System32\msdri.dll
2010-10-27 05:58:17 288256 ----a-w- C:\Windows\System32\MSNP.ax
2010-10-27 05:58:17 258560 ----a-w- C:\Windows\System32\mpg2splt.ax
2010-10-27 05:58:17 204288 ----a-w- C:\Windows\SysWow64\MSNP.ax
2010-10-27 05:58:17 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax
2010-10-27 05:58:10 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2010-10-24 11:07:11 -------- d-----w- C:\Windows\sv
2010-10-24 11:05:37 48488 ----a-w- C:\Windows\System32\drivers\fssfltr.sys
2010-10-24 11:03:10 206848 ----a-w- C:\Windows\System32\mfps.dll
2010-10-24 11:03:07 257024 ----a-w- C:\Windows\System32\mfreadwrite.dll
2010-10-24 11:03:07 196608 ----a-w- C:\Windows\SysWow64\mfreadwrite.dll
2010-10-24 11:03:07 1888256 ----a-w- C:\Windows\System32\WMVDECOD.DLL
2010-10-24 11:03:07 1619456 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL
2010-10-24 11:03:06 4068864 ----a-w- C:\Windows\System32\mf.dll
2010-10-24 11:03:06 3181568 ----a-w- C:\Windows\SysWow64\mf.dll

==================== Find3M ====================

2010-11-02 21:36:19 81584 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
2010-10-19 09:41:44 270720 ------w- C:\Windows\System32\MpSigStub.exe
2010-09-22 22:47:28 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll
2010-09-22 22:32:56 301936 ----a-w- C:\Windows\WLXPGSS.SCR
2010-09-21 12:49:02 252800 ----a-w- C:\Windows\System32\LIVESSP.DLL
2010-09-21 12:03:14 208768 ----a-w- C:\Windows\SysWow64\LIVESSP.DLL
2010-09-10 05:35:44 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2010-09-10 05:35:43 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
2010-09-08 09:17:46 94208 ----a-w- C:\Windows\SysWow64\QuickTimeVR.qtx
2010-09-08 09:17:46 69632 ----a-w- C:\Windows\SysWow64\QuickTime.qts
2010-09-08 05:36:17 1192960 ----a-w- C:\Windows\System32\wininet.dll
2010-09-08 05:34:34 57856 ----a-w- C:\Windows\System32\licmgr10.dll
2010-09-08 04:30:04 978432 ----a-w- C:\Windows\SysWow64\wininet.dll
2010-09-08 04:28:15 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
2010-09-08 04:16:38 482816 ----a-w- C:\Windows\System32\html.iec
2010-09-08 03:35:30 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2010-09-08 03:22:31 386048 ----a-w- C:\Windows\SysWow64\html.iec
2010-09-08 02:48:16 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2010-09-01 05:12:09 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2010-09-01 04:23:49 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2010-09-01 02:58:34 3123712 ----a-w- C:\Windows\System32\win32k.sys
2010-08-31 04:32:30 954752 ----a-w- C:\Windows\SysWow64\mfc40.dll
2010-08-31 04:32:30 954288 ----a-w- C:\Windows\SysWow64\mfc40u.dll
2010-08-27 06:14:02 236032 ----a-w- C:\Windows\System32\srvsvc.dll
2010-08-27 05:46:48 9728 ----a-w- C:\Windows\SysWow64\sscore.dll
2010-08-27 03:38:04 463360 ----a-w- C:\Windows\System32\drivers\srv.sys
2010-08-27 03:37:48 402944 ----a-w- C:\Windows\System32\drivers\srv2.sys
2010-08-27 03:37:26 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2010-08-26 05:27:28 148992 ----a-w- C:\Windows\System32\t2embed.dll
2010-08-26 04:39:58 109056 ----a-w- C:\Windows\SysWow64\t2embed.dll
2010-08-21 06:38:47 1024512 ----a-w- C:\Windows\System32\wmpmde.dll
2010-08-21 06:36:49 340992 ----a-w- C:\Windows\System32\schannel.dll
2010-08-21 06:31:06 633856 ----a-w- C:\Windows\System32\comctl32.dll
2010-08-21 06:29:47 558592 ----a-w- C:\Windows\System32\spoolsv.exe
2010-08-21 05:36:33 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll
2010-08-21 05:36:24 224256 ----a-w- C:\Windows\SysWow64\schannel.dll
2010-08-21 05:33:24 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll

============= FINISH: 16:35:39,97 ===============

2010-11-04 kl 16:40

Hoppas det blev rätt.

2010-11-04 kl 16:43

Lite till.


UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_10-11-03.01)

Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 2010-03-27 15:13:36
System Uptime: 2010-11-04 14:33:23 (2 hours ago)

Motherboard: Acer | | H57M01
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz | CPU 1 | 2933/133mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 459 GiB total, 411,376 GiB free.
D: is FIXED (NTFS) - 459 GiB total, 459,359 GiB free.
E: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable
J: is Removable

==== Disabled Device Manager Items =============

Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
Description: PS/2 Mouse
Device ID: ACPI\PNP0F03\4&E605FC2&0
Manufacturer: Logitech
Name: PS/2 Mouse
PNP Device ID: ACPI\PNP0F03\4&E605FC2&0
Service: i8042prt

Class GUID: {4d36e96b-e325-11ce-bfc1-08002be10318}
Description: PS/2 Keyboard
Device ID: ACPI\PNP0303\4&E605FC2&0
Manufacturer: Logitech
Name: PS/2 Keyboard
PNP Device ID: ACPI\PNP0303\4&E605FC2&0
Service: i8042prt

==== System Restore Points ===================

RP133: 2010-10-31 14:51:50 - Installed Java(TM) 6 Update 22
RP134: 2010-11-01 15:17:01 - Installed SpyHunter
RP135: 2010-11-01 15:40:46 - Removed SpyHunter
RP136: 2010-11-01 15:42:11 - Removed SpyHunter
RP137: 2010-11-01 15:43:51 - Removed SpyHunter
RP138: 2010-11-01 19:43:44 - Installed HiJackThis
RP139: 2010-11-02 13:38:48 - Windows Update
RP140: 2010-11-02 14:55:49 - Removed HiJackThis
RP141: 2010-11-02 16:34:22 - Installed SpyHunter
RP142: 2010-11-02 16:49:38 - Removed SpyHunter
RP143: 2010-11-04 07:58:28 - Windows Update

==== Installed Programs ======================

123 Free Solitaire
Acer Arcade Deluxe
Acer Backup Manager
Acer eRecovery Management
Acer GameZone Console
Acer Registration
Acer ScreenSaver
Acer Updater
Acrobat.com
ActiveX-kontroll för fjärranslutningar för Windows Live Mesh
Adobe AIR
Adobe Download Manager
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.4.0 MUI
Advertising Center
Alice Greenfingers
Amazonia
Apple Application Support
Apple Software Update
Auslogics BoostSpeed
Auslogics Duplicate File Finder
Avira AntiVir Personal - Free Antivirus
Backup Manager Advance
Browser Defender 2.0.6.15
CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX
Canon MovieEdit Task for ZoomBrowser EX
Canon Utilities CameraWindow
Canon Utilities CameraWindow DC
Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
Canon Utilities MyCamera
Canon Utilities MyCamera DC
Canon Utilities PhotoStitch
Canon Utilities RemoteCapture Task for ZoomBrowser EX
Canon Utilities ZoomBrowser EX
Canon ZoomBrowser EX Memory Card Utility
CCleaner
Chicken Invaders 2
Compatibility Pack för Office 2007-systemet
Crawler Toolbar
D3DX10
Dairy Dash
Dream Day First Home
Dropbox
erLT
eSobi v2
Farm Frenzy 2
Fences
First Class Flurry
Funny Animals Screensaver 1.0
Google Earth Plug-in
Google Toolbar for Internet Explorer
Google Update Helper
Granny In Paradise
Heroes of Hellas
HiYo
HiYo
Hotkey Utility
Identity Card
ImagXpress
IncrediMail
IncrediMail 2.0
Intel(R) Management Engine Components
Java Auto Updater
Java(TM) 6 Update 22
JMicron JMB36X Driver
Junk Mail filter update
Logitech SetPoint
Magentic
Malwarebytes' Anti-Malware
Merriam Websters Spell Jam
Mesh Runtime
Messenger Companion
Microsoft Office PowerPoint Viewer 2007 (Swedish)
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Works
Mozilla Firefox (3.6.12)
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyWinLocker
Nero 9 Essentials
Nero ControlCenter
Nero DiscSpeed
Nero DiscSpeed Help
Nero DriveSpeed
Nero DriveSpeed Help
Nero Express Help
Nero InfoTool
Nero InfoTool Help
Nero Installer
Nero Online Upgrade
Nero StartSmart
Nero StartSmart Help
Nero StartSmart OEM
NeroExpress
neroxml
NVIDIA PhysX
Opera 10.53
PhotoMail Maker
QuickTime
Realtek High Definition Audio Driver
Revo Uninstaller 1.85
Skype Toolbars
Skype™ 4.2
Spyware Doctor 7.0
SUPERAntiSpyware Free Edition
TweakNow PowerPack 2009
Welcome Center
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Mail
Windows Live Mesh
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinTrade 11.5.11
WinUtilities 9.41 Free Edition
ZoneAlarm

==== End Of File ===========================

2010-11-04 kl 16:57

Osäker på det där med dds.txt då jag inte hittar det specifikt

2010-11-04 kl 17:10

Gjorde en snabbscan nu med Mal 1,46 hittade inget.

2010-11-04 kl 18:21

Den första filen heter dds.txt, filnamnet står ju i listen när filen är öppnad

spara på skrivbord, kör fil.Starta om
http://oldtimer.geekstogo.com/TFC.exe

efter omstart så högerklicka på tmp mappen och scanna med avira
C:\Windows\Temp

  • 17 svar
Avatar

Inte inloggad

Logga in Bli medlem

Läs mer

  • Senaste
  • Mest läst
  • Mest kommenterat

Kom in i diskussionen

Detta innehåll är skapat av PC Hemmas besökare

Test: HP Officejet 4500

1 kommentar

andy1n2: 695 kr är priset denna vecka i vår butik i lilla Köping

Forum

Detta innehåll är skapat av PC Hemmas medlemmar.

Tester

  • Senaste
  • Mest läst
  • Mest kommenterat

Artikelkommentarer


Egmont logo
© Egmont Tidskrifter