Marianne - 06-10-27 20:46:26,71 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Marianne\Skrivebord"
((((((((((((((((((((((((((((((( Files Created from 2006-09-27 to 2006-10-27 ))))))))))))))))))))))))))))))))))
2006-10-03 21:14 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-10-27 17:25 -------- d-------- C:\Programmer\F‘lles filer
2006-10-27 11:31 -------- d-------- C:\Programmer\SUPERAntiSpyware
2006-10-27 11:31 -------- d-------- C:\Documents and Settings\Marianne\Application Data\SUPERAntiSpyware.com
2006-10-27 11:30 -------- d-------- C:\Programmer\F‘lles filer\Wise Installation Wizard
2006-10-27 09:23 -------- d-------- C:\Programmer\Norton AntiVirus
2006-10-27 08:06 -------- d-------- C:\Programmer\F‘lles filer\Symantec Shared
2006-10-27 08:05 -------- d-------- C:\Programmer\SpywareBlaster
2006-10-04 08:34 -------- d-------- C:\Documents and Settings\Marianne\Application Data\Skype
2006-10-03 20:30 -------- d-------- C:\Programmer\TweakNow RegCleaner Std
2006-10-03 19:01 -------- dr-h----- C:\Documents and Settings\Marianne\Application Data\yahoo!
2006-09-20 14:49 -------- d-------- C:\Programmer\F‘lles filer\Microsoft Shared
2006-09-19 23:22 -------- d-------- C:\Programmer\Windows Live Toolbar
2006-09-19 23:20 -------- d-------- C:\Programmer\MSN Messenger
2006-09-19 23:11 -------- d-------- C:\Documents and Settings\Marianne\Application Data\MSN6
2006-09-19 12:10 -------- d-------- C:\Programmer\Google
2006-09-19 11:05 -------- d-------- C:\Documents and Settings\Marianne\Application Data\Windows Live Safety Center
2006-09-19 10:59 -------- d-------- C:\Programmer\Windows Live Safety Center
2006-09-19 10:54 -------- d-------- C:\Documents and Settings\Marianne\Application Data\AdobeUM
2006-09-19 09:27 -------- d-------- C:\Programmer\Symantec
2006-09-19 08:51 -------- d-------- C:\Programmer\Yahoo!
2006-09-17 12:46 -------- d-------- C:\Programmer\Lavasoft
2006-09-17 12:46 -------- d-------- C:\Documents and Settings\Marianne\Application Data\Lavasoft
2006-09-16 21:57 -------- d---s---- C:\Documents and Settings\Marianne\Application Data\Microsoft
2006-09-16 15:36 38599 --a------ C:\WINDOWS\system32\drivers\tsmali.sys
2006-09-16 15:36 -------- d-------- C:\Programmer\Matinsoft
2006-09-16 14:21 -------- d-------- C:\Programmer\JanSoft
2006-09-15 22:52 91904 --a------ C:\WINDOWS\system32\S32EVNT1.DLL
2006-09-15 22:52 124016 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.SYS
2006-09-13 07:06 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-09-11 21:24 -------- d--h----- C:\Programmer\InstallShield Installation Information
2006-09-11 21:23 -------- d-------- C:\Programmer\EPSON
2006-09-11 21:22 -------- d-------- C:\Programmer\F‘lles filer\EPSON
2006-08-27 14:46 869 --a------ C:\Documents and Settings\Marianne\Application Data\AdobeDLM.log
2006-08-27 14:46 22947704 --a------ C:\AdbeRdr708_da_DK.exe
2006-08-27 14:46 0 --a------ C:\Documents and Settings\Marianne\Application Data\dm.ini
2006-08-27 14:46 -------- d-------- C:\Programmer\Adobe
2006-08-27 14:33 -------- d-------- C:\Programmer\F‘lles filer\Adobe
2006-08-27 14:33 -------- d-------- C:\Documents and Settings\Marianne\Application Data\Adobe
2006-08-25 17:51 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 14:27 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 11:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 13:59 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-07-29 19:32 48936 --a------ C:\WINDOWS\system32\sirenacm.dll
2006-07-27 15:26 679424 --a------ C:\WINDOWS\system32\inetcomm.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"MSMSGS"="\"C:\\Programmer\\Messenger\\msmsgs.exe\" /background"
"Felix"="C:\\Program Files\\ScreenMates\\Felix2.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"ccApp"="\"C:\\Programmer\\Fælles filer\\Symantec Shared\\ccApp.exe\""
"Symantec NetDriver Monitor"="C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe /Consumer"
"Windows Defender"="\"C:\\Programmer\\Windows Defender\\MSASCui.exe\" -hide"
"SunJavaUpdateSched"="C:\\Programmer\\Java\\jre1.5.0_07\\bin\\jusched.exe"
"EPSON Stylus C44 Series"="C:\\WINDOWS\\System32\\spool\\DRIVERS\\W32X86\\3\\E_S10IC2.EXE /P23 \"EPSON Stylus C44 Series\" /O6 \"USB001\" /M \"Stylus C44\""
"GoldTach"="C:\\Programmer\\Matinsoft\\GoldTach\\GoldTach.exe"
"!AVG Anti-Spyware"="\"C:\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000004
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="
http://www.komogvind.dk/images/topkov_fade.gif"
"SubscribedURL"="
http://www.komogvind.dk/images/topkov_fade.gif"
"FriendlyName"=""
"Flags"=dword:00000001
"Position"=hex:2c,00,00,00,dc,02,00,00,19,01,00,00,44,00,00,00,4e,01,00,00,e8,\
03,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=dword:40000001
"OriginalStateInfo"=hex:18,00,00,00,dc,02,00,00,19,01,00,00,44,00,00,00,4e,01,\
00,00,01,00,00,40
"RestoredStateInfo"=hex:14,6d,c6,09,41,c0,b0,74,e8,7d,32,05,68,de,c6,09,20,6d,\
c6,09,68,5c,00,00
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\1]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,de,02,00,00,ea,\
03,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=dword:40000004
"OriginalStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,de,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,de,02,\
00,00,01,00,00,00
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\System32\\CTFMON.EXE"
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\System32\\CTFMON.EXE"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
C:\WINDOWS\tasks\Norton AntiVirus - Skan Denne computer - Marianne.job
Completion time: 06-10-27 20:48:10.88
C:\ComboFix.txt ... 06-10-27 20:48
STL_S