1
hijackthis log
Postat av halleluja den 19 Januari 2008, 13:13
6 kommentarer · 211 träffar
Undrar bara om någon kunning vet ifall det är något otrevkligt i denna loggen :
Logfile of HijackThis v1.99.1
Scan saved at 13:12:09, on 2008-01-19
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Running processes:
C:\\\\WINDOW S\\\\System32& #92;\\\smss.exe
C:\\\\WINDOW S\\\\system32& #92;\\\winlogon.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\services.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\lsass.exe
C:\\\\WINDOW S\\\\system32& #92;\\\Ati2evxx.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\svchost.exe
C:\\\\WINDOW S\\\\System32& #92;\\\svchost.exe
C:\\\\Progra m\\\\TGTSoft 92;\\\StyleXP\ \\\StyleXPService. exe
C:\\\\WINDOW S\\\\system32& #92;\\\Ati2evxx.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\spoolsv.exe
C:\\\\Progra m\\\\Delade filer\\\\Apple \\\\Mobile Device Support\\\\bin \\\\AppleMobil eDeviceService.exe
C:\\\\Progra m\\\\Delade filer\\\\EPSON \\\\EBAPI\ \\\SAgent2.exe
C:\\\\Progra m\\\\Eset\ \\\nod32krn.exe
C:\\\\WINDOW S\\\\system32& #92;\\\svchost.exe
C:\\\\WINDOW S\\\\system32& #92;\\\WgaTray.exe
C:\\\\WINDOW S\\\\Explorer. EXE
C:\\\\WINDOW S\\\\SOUNDMAN. EXE
C:\\\\WINDOW S\\\\VM_STI.EX E
C:\\\\Progra m\\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ MOM.EXE
C:\\\\Progra m\\\\Eset\ \\\nod32kui.exe
C:\\\\Progra m\\\\Java\ \\\jre1.6.0_03\ ;\\\bin\\& #92;\jusched.exe
C:\\\\Progra m\\\\Microsoft Office\\\\Offi ce12\\\\Groove Monitor.exe
C:\\\\Progra m\\\\Unlocker& #92;\\\UnlockerAss istant.exe
C:\\\\Progra m\\\\D-Tools 92;\\\daemon.exe
C:\\\\Progra m\\\\iTunes 2;\\\iTunesHelper. exe
C:\\\\Progra m\\\\Google 2;\\\GoogleToolbar Notifier\\\\Go ogleToolbarNotifier.exe
C:\\\\Progra m\\\\Windows Live\\\\Messen ger\\\\msnmsgr .exe
C:\\\\WINDOW S\\\\system32& #92;\\\ctfmon.exe
C:\\\\Progra m\\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ ccc.exe
C:\\\\Progra m\\\\Personal& #92;\\\bin\ 2;\\Personal.exe
C:\\\\WINDOW S\\\\System32& #92;\\\spool\& #92;\\DRIVERS\\ ;\\W32X86\\ 2;\3\\\\E_ S10IC2.EXE
C:\\\\Progra m\\\\Philips 92;\\\SPC 300NC PC Camera\\\\Tray Min300.exe
C:\\\\Progra m\\\\iPod\ \\\bin\\ 92;\iPodService.exe
C:\\\\Progra m\\\\Winamp 2;\\\winamp.exe
C:\\\\WINDOW S\\\\system32& #92;\\\msiexec.exe
C:\\\\Progra m\\\\SUPERAnti Spyware\\\\SUP ERAntiSpyware.exe
C:\\\\Progra m\\\\HijackThi s\\\\HijackThi s.exe
R0 - HKCU\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Start Page = http://www.google.se /
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Default_Page_URL = http://go.microsoft.com/fwlink /?LinkId=69157
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Default_Search_URL = http://go.microsoft.com/fwlink /?LinkId=54896
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Search Page = http://go.microsoft.com/fwlink /?LinkId=54896
R0 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Start Page = http://go.microsoft.com/fwlink /?LinkId=69157
R0 - HKCU\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\To olbar,LinksFolderName = Länkar
O2 - BHO: Länkhjälp till Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7 D6BE0B3} - C:\\\\Program& #92;\\\Delade filer\\\\Adobe \\\\Acrobat 2;\\\ActiveX\& #92;\\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1 D38A37E} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF 1D92D43} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5 E23E045} - (no file)
O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-51647 60863C6} - C:\\\\Program& #92;\\\Delade filer\\\\Micro soft Shared\\\\Wind ows Live\\\\Window sLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF105 77473F7} - c:\\\\program& #92;\\\google\ \\\googletoolbar1. dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B 5AD205D} - C:\\\\Program& #92;\\\Google\ \\\GoogleToolbarNo tifier\\\\2.0. 301.7164\\\\sw g.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-00902 7A5CD4F} - c:\\\\program& #92;\\\google\ \\\googletoolbar1. dll
O4 - HKLM\\\\..\ ;\\\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\\\\..\ ;\\\Run: [StartCCC] "C:\\\\Program \\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ CLIStart.exe"
O4 - HKLM\\\\..\ ;\\\Run: [BigDogPath] C:\\\\WINDOWS& #92;\\\VM_STI.EXE %;USB\\\\VID_0 AC8&PID_0302.DeviceDesc%
O4 - HKLM\\\\..\ ;\\\Run: [nod32kui] "C:\\\\Program \\\\Eset\& #92;\\nod32kui.exe" /WAITSERVICE
O4 - HKLM\\\\..\ ;\\\Run: [Adobe Reader Speed Launcher] "C:\\\\Program \\\\Adobe\ \\\Reader 8.0\\\\Reader& #92;\\\Reader_sl.e xe"
O4 - HKLM\\\\..\ ;\\\Run: [SunJavaUpdateSched] "C:\\\\Program \\\\Java\& #92;\\jre1.6.0_03\ \\\bin\\ 92;\jusched.exe"
O4 - HKLM\\\\..\ ;\\\Run: [GrooveMonitor] "C:\\\\Program \\\\Microsoft Office\\\\Offi ce12\\\\Groove Monitor.exe"
O4 - HKLM\\\\..\ ;\\\Run: [UnlockerAssistant] "C:\\\\Program \\\\Unlocker 92;\\\UnlockerAssi stant.exe"
O4 - HKLM\\\\..\ ;\\\Run: [DAEMON Tools-1033] "C:\\\\Program \\\\D-Tools 2;\\\daemon.exe" -lang 1033
O4 - HKLM\\\\..\ ;\\\Run: [QuickTime Task] "C:\\\\Program \\\\QuickTime& #92;\\\QTTask.exe" -atboottime
O4 - HKLM\\\\..\ ;\\\Run: [NeroFilterCheck] C:\\\\WINDOWS& #92;\\\system32 2;\\\NeroCheck.exe
O4 - HKLM\\\\..\ ;\\\Run: [iTunesHelper] "C:\\\\Program \\\\iTunes\ ;\\\iTunesHelper.e xe"
O4 - HKCU\\\\..\ ;\\\Run: [swg] C:\\\\Program& #92;\\\Google\ \\\GoogleToolbarNo tifier\\\\Goog leToolbarNotifier.exe
O4 - HKCU\\\\..\ ;\\\Run: [MsnMsgr] "C:\\\\Program \\\\Windows Live\\\\Messen ger\\\\msnmsgr .exe" /background
O4 - HKCU\\\\..\ ;\\\Run: [ctfmon.exe] C:\\\\WINDOWS& #92;\\\system32 2;\\\ctfmon.exe
O4 - HKCU\\\\..\ ;\\\Run: [STYLEXP] C:\\\\Program& #92;\\\TGTSoft\ ;\\\StyleXP\ 92;\\StyleXP.exe -Hide
O4 - HKCU\\\\..\ ;\\\Run: [SUPERAntiSpyware] C:\\\\Program& #92;\\\SUPERAntiSp yware\\\\SUPER AntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\\\\Program& #92;\\\Delade filer\\\\Adobe \\\\Calibratio n\\\\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\\\\WINDOWS& #92;\\\system32 2;\\\spool\ 2;\\drivers\\& #92;\w32x86\\\ \3\\\\E_SR CV02.EXE
O4 - Global Startup: Personal.lnk = C:\\\\Program& #92;\\\Personal 2;\\\bin\\ \\Personal.exe
O4 - Global Startup: TrayMin300.exe.lnk = C:\\\\Program& #92;\\\Philips\ ;\\\SPC 300NC PC Camera\\\\Tray Min300.exe
O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\\\\Pr ogram\\\\MICRO S~2\\\\Office1 2\\\\EXCEL.EXE /3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401 C608501} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401 C608501} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O9 - Extra button: Skicka till OneNote - {2670000A-7350-4f3c-8081-5663E E0C6C49} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Ski&cka till OneNote - {2670000A-7350-4f3c-8081-5663E E0C6C49} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5 71A8263} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3 8496583} - %windir%\\\\Ne twork Diagnostic\\\\ xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3 8496583} - %windir%\\\\Ne twork Diagnostic\\\\ xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04 F795683} - C:\\\\Program& #92;\\\Messenger 92;\\\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04 F795683} - C:\\\\Program& #92;\\\Messenger 92;\\\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {5C051655-FCD5-4969-9182-770EA 5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/ binary/SolitaireShowdown.cab56 986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF 33E833C} (WUWebControl Class) - http://www.update.microsoft.co m/windowsupdate/v6/V5Controls/ en/x86/client/wuweb_site.cab?1 194873900546
O17 - HKLM\\\\System \\\\CCS\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O17 - HKLM\\\\System \\\\CS1\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O17 - HKLM\\\\System \\\\CS2\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB62 48B04CD} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305 202313F} - C:\\\\Program& #92;\\\WINDOW~4 2;\\\MESSEN~1\ \\\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04 F8EC294} - C:\\\\Program& #92;\\\Delade filer\\\\Micro soft Shared\\\\Help \\\\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305 202313F} - C:\\\\Program& #92;\\\WINDOW~4 2;\\\MESSEN~1\ \\\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7B E1653C0} - C:\\\\Program& #92;\\\Windows Live\\\\Mail 92;\\\mailcomm.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D 022E945} - C:\\\\Program& #92;\\\DELADE~1 2;\\\MICROS~1\ \\\OFFICE12\ 92;\\MSOXMLMF.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\\\\Program& #92;\\\SUPERAntiSp yware\\\\SASWI NLO.dll
O20 - Winlogon Notify: WgaLogon - C:\\\\WINDOWS& #92;\\\SYSTEM32 2;\\\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\\\\Program& #92;\\\Delade filer\\\\Adobe Systems Shared\\\\Serv ice\\\\Adobelm svc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\\\\Program& #92;\\\Delade filer\\\\Apple \\\\Mobile Device Support\\\\bin \\\\AppleMobil eDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\\\\WINDOWS& #92;\\\system32 2;\\\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\\\\WINDOWS& #92;\\\system32 2;\\\ati2sgag.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\\\\Program& #92;\\\Delade filer\\\\EPSON \\\\EBAPI\ \\\SAgent2.exe
O23 - Service: EvenSystems - Unknown owner - c:\\\\Recycler \\\\svchost.ex e
O23 - Service: Google Updater Service (gusvc) - Google - C:\\\\Program& #92;\\\Google\ \\\Common\\ ;\\Google Updater\\\\Goo gleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\\\\Program& #92;\\\iPod\ 92;\\bin\\\ ;\iPodService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\\\\Program& #92;\\\Eset\ 92;\\nod32krn.exe
O23 - Service: StyleXPService - Unknown owner - C:\\\\Program& #92;\\\TGTSoft\ ;\\\StyleXP\ 92;\\StyleXPService.ex e
Logfile of HijackThis v1.99.1
Scan saved at 13:12:09, on 2008-01-19
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Running processes:
C:\\\\WINDOW S\\\\System32& #92;\\\smss.exe
C:\\\\WINDOW S\\\\system32& #92;\\\winlogon.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\services.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\lsass.exe
C:\\\\WINDOW S\\\\system32& #92;\\\Ati2evxx.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\svchost.exe
C:\\\\WINDOW S\\\\System32& #92;\\\svchost.exe
C:\\\\Progra m\\\\TGTSoft 92;\\\StyleXP\ \\\StyleXPService. exe
C:\\\\WINDOW S\\\\system32& #92;\\\Ati2evxx.ex e
C:\\\\WINDOW S\\\\system32& #92;\\\spoolsv.exe
C:\\\\Progra m\\\\Delade filer\\\\Apple \\\\Mobile Device Support\\\\bin \\\\AppleMobil eDeviceService.exe
C:\\\\Progra m\\\\Delade filer\\\\EPSON \\\\EBAPI\ \\\SAgent2.exe
C:\\\\Progra m\\\\Eset\ \\\nod32krn.exe
C:\\\\WINDOW S\\\\system32& #92;\\\svchost.exe
C:\\\\WINDOW S\\\\system32& #92;\\\WgaTray.exe
C:\\\\WINDOW S\\\\Explorer. EXE
C:\\\\WINDOW S\\\\SOUNDMAN. EXE
C:\\\\WINDOW S\\\\VM_STI.EX E
C:\\\\Progra m\\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ MOM.EXE
C:\\\\Progra m\\\\Eset\ \\\nod32kui.exe
C:\\\\Progra m\\\\Java\ \\\jre1.6.0_03\ ;\\\bin\\& #92;\jusched.exe
C:\\\\Progra m\\\\Microsoft Office\\\\Offi ce12\\\\Groove Monitor.exe
C:\\\\Progra m\\\\Unlocker& #92;\\\UnlockerAss istant.exe
C:\\\\Progra m\\\\D-Tools 92;\\\daemon.exe
C:\\\\Progra m\\\\iTunes 2;\\\iTunesHelper. exe
C:\\\\Progra m\\\\Google 2;\\\GoogleToolbar Notifier\\\\Go ogleToolbarNotifier.exe
C:\\\\Progra m\\\\Windows Live\\\\Messen ger\\\\msnmsgr .exe
C:\\\\WINDOW S\\\\system32& #92;\\\ctfmon.exe
C:\\\\Progra m\\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ ccc.exe
C:\\\\Progra m\\\\Personal& #92;\\\bin\ 2;\\Personal.exe
C:\\\\WINDOW S\\\\System32& #92;\\\spool\& #92;\\DRIVERS\\ ;\\W32X86\\ 2;\3\\\\E_ S10IC2.EXE
C:\\\\Progra m\\\\Philips 92;\\\SPC 300NC PC Camera\\\\Tray Min300.exe
C:\\\\Progra m\\\\iPod\ \\\bin\\ 92;\iPodService.exe
C:\\\\Progra m\\\\Winamp 2;\\\winamp.exe
C:\\\\WINDOW S\\\\system32& #92;\\\msiexec.exe
C:\\\\Progra m\\\\SUPERAnti Spyware\\\\SUP ERAntiSpyware.exe
C:\\\\Progra m\\\\HijackThi s\\\\HijackThi s.exe
R0 - HKCU\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Start Page = http://www.google.se /
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Default_Page_URL = http://go.microsoft.com/fwlink /?LinkId=69157
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Default_Search_URL = http://go.microsoft.com/fwlink /?LinkId=54896
R1 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Search Page = http://go.microsoft.com/fwlink /?LinkId=54896
R0 - HKLM\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\Ma in,Start Page = http://go.microsoft.com/fwlink /?LinkId=69157
R0 - HKCU\\\\Softwa re\\\\Microsof t\\\\Internet Explorer\\\\To olbar,LinksFolderName = Länkar
O2 - BHO: Länkhjälp till Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7 D6BE0B3} - C:\\\\Program& #92;\\\Delade filer\\\\Adobe \\\\Acrobat 2;\\\ActiveX\& #92;\\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1 D38A37E} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF 1D92D43} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5 E23E045} - (no file)
O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-51647 60863C6} - C:\\\\Program& #92;\\\Delade filer\\\\Micro soft Shared\\\\Wind ows Live\\\\Window sLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF105 77473F7} - c:\\\\program& #92;\\\google\ \\\googletoolbar1. dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B 5AD205D} - C:\\\\Program& #92;\\\Google\ \\\GoogleToolbarNo tifier\\\\2.0. 301.7164\\\\sw g.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-00902 7A5CD4F} - c:\\\\program& #92;\\\google\ \\\googletoolbar1. dll
O4 - HKLM\\\\..\ ;\\\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\\\\..\ ;\\\Run: [StartCCC] "C:\\\\Program \\\\ATI Technologies\\\ 2;ATI.ACE\\\\C ore-Static\\\\ CLIStart.exe"
O4 - HKLM\\\\..\ ;\\\Run: [BigDogPath] C:\\\\WINDOWS& #92;\\\VM_STI.EXE %;USB\\\\VID_0 AC8&PID_0302.DeviceDesc%
O4 - HKLM\\\\..\ ;\\\Run: [nod32kui] "C:\\\\Program \\\\Eset\& #92;\\nod32kui.exe" /WAITSERVICE
O4 - HKLM\\\\..\ ;\\\Run: [Adobe Reader Speed Launcher] "C:\\\\Program \\\\Adobe\ \\\Reader 8.0\\\\Reader& #92;\\\Reader_sl.e xe"
O4 - HKLM\\\\..\ ;\\\Run: [SunJavaUpdateSched] "C:\\\\Program \\\\Java\& #92;\\jre1.6.0_03\ \\\bin\\ 92;\jusched.exe"
O4 - HKLM\\\\..\ ;\\\Run: [GrooveMonitor] "C:\\\\Program \\\\Microsoft Office\\\\Offi ce12\\\\Groove Monitor.exe"
O4 - HKLM\\\\..\ ;\\\Run: [UnlockerAssistant] "C:\\\\Program \\\\Unlocker 92;\\\UnlockerAssi stant.exe"
O4 - HKLM\\\\..\ ;\\\Run: [DAEMON Tools-1033] "C:\\\\Program \\\\D-Tools 2;\\\daemon.exe" -lang 1033
O4 - HKLM\\\\..\ ;\\\Run: [QuickTime Task] "C:\\\\Program \\\\QuickTime& #92;\\\QTTask.exe" -atboottime
O4 - HKLM\\\\..\ ;\\\Run: [NeroFilterCheck] C:\\\\WINDOWS& #92;\\\system32 2;\\\NeroCheck.exe
O4 - HKLM\\\\..\ ;\\\Run: [iTunesHelper] "C:\\\\Program \\\\iTunes\ ;\\\iTunesHelper.e xe"
O4 - HKCU\\\\..\ ;\\\Run: [swg] C:\\\\Program& #92;\\\Google\ \\\GoogleToolbarNo tifier\\\\Goog leToolbarNotifier.exe
O4 - HKCU\\\\..\ ;\\\Run: [MsnMsgr] "C:\\\\Program \\\\Windows Live\\\\Messen ger\\\\msnmsgr .exe" /background
O4 - HKCU\\\\..\ ;\\\Run: [ctfmon.exe] C:\\\\WINDOWS& #92;\\\system32 2;\\\ctfmon.exe
O4 - HKCU\\\\..\ ;\\\Run: [STYLEXP] C:\\\\Program& #92;\\\TGTSoft\ ;\\\StyleXP\ 92;\\StyleXP.exe -Hide
O4 - HKCU\\\\..\ ;\\\Run: [SUPERAntiSpyware] C:\\\\Program& #92;\\\SUPERAntiSp yware\\\\SUPER AntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\\\\Program& #92;\\\Delade filer\\\\Adobe \\\\Calibratio n\\\\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\\\\WINDOWS& #92;\\\system32 2;\\\spool\ 2;\\drivers\\& #92;\w32x86\\\ \3\\\\E_SR CV02.EXE
O4 - Global Startup: Personal.lnk = C:\\\\Program& #92;\\\Personal 2;\\\bin\\ \\Personal.exe
O4 - Global Startup: TrayMin300.exe.lnk = C:\\\\Program& #92;\\\Philips\ ;\\\SPC 300NC PC Camera\\\\Tray Min300.exe
O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\\\\Pr ogram\\\\MICRO S~2\\\\Office1 2\\\\EXCEL.EXE /3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401 C608501} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401 C608501} - C:\\\\Program& #92;\\\Java\ 92;\\jre1.6.0_03\& #92;\\bin\\ 2;\ssv.dll
O9 - Extra button: Skicka till OneNote - {2670000A-7350-4f3c-8081-5663E E0C6C49} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Ski&cka till OneNote - {2670000A-7350-4f3c-8081-5663E E0C6C49} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5 71A8263} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3 8496583} - %windir%\\\\Ne twork Diagnostic\\\\ xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3 8496583} - %windir%\\\\Ne twork Diagnostic\\\\ xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04 F795683} - C:\\\\Program& #92;\\\Messenger 92;\\\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04 F795683} - C:\\\\Program& #92;\\\Messenger 92;\\\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {5C051655-FCD5-4969-9182-770EA 5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/ binary/SolitaireShowdown.cab56 986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF 33E833C} (WUWebControl Class) - http://www.update.microsoft.co m/windowsupdate/v6/V5Controls/ en/x86/client/wuweb_site.cab?1 194873900546
O17 - HKLM\\\\System \\\\CCS\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O17 - HKLM\\\\System \\\\CS1\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O17 - HKLM\\\\System \\\\CS2\ 92;\\Services\\ ;\\Tcpip\\\ ;\..\\\\{3 7D352F3-A715-4518-8234-B5BF65C 1F971}: NameServer = 195.67.199.27,195.67.199.28
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB62 48B04CD} - C:\\\\Program& #92;\\\MICROS~2 2;\\\Office12\ \\\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305 202313F} - C:\\\\Program& #92;\\\WINDOW~4 2;\\\MESSEN~1\ \\\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04 F8EC294} - C:\\\\Program& #92;\\\Delade filer\\\\Micro soft Shared\\\\Help \\\\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305 202313F} - C:\\\\Program& #92;\\\WINDOW~4 2;\\\MESSEN~1\ \\\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7B E1653C0} - C:\\\\Program& #92;\\\Windows Live\\\\Mail 92;\\\mailcomm.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D 022E945} - C:\\\\Program& #92;\\\DELADE~1 2;\\\MICROS~1\ \\\OFFICE12\ 92;\\MSOXMLMF.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\\\\Program& #92;\\\SUPERAntiSp yware\\\\SASWI NLO.dll
O20 - Winlogon Notify: WgaLogon - C:\\\\WINDOWS& #92;\\\SYSTEM32 2;\\\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\\\\Program& #92;\\\Delade filer\\\\Adobe Systems Shared\\\\Serv ice\\\\Adobelm svc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\\\\Program& #92;\\\Delade filer\\\\Apple \\\\Mobile Device Support\\\\bin \\\\AppleMobil eDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\\\\WINDOWS& #92;\\\system32 2;\\\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\\\\WINDOWS& #92;\\\system32 2;\\\ati2sgag.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\\\\Program& #92;\\\Delade filer\\\\EPSON \\\\EBAPI\ \\\SAgent2.exe
O23 - Service: EvenSystems - Unknown owner - c:\\\\Recycler \\\\svchost.ex e
O23 - Service: Google Updater Service (gusvc) - Google - C:\\\\Program& #92;\\\Google\ \\\Common\\ ;\\Google Updater\\\\Goo gleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\\\\Program& #92;\\\iPod\ 92;\\bin\\\ ;\iPodService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\\\\Program& #92;\\\Eset\ 92;\\nod32krn.exe
O23 - Service: StyleXPService - Unknown owner - C:\\\\Program& #92;\\\TGTSoft\ ;\\\StyleXP\ 92;\\StyleXPService.ex e






