Hej Starup
Jeg hviste jo ikke at det var det hele som du ønskede så her er det.
Håber det kan bruges da det ikke rigtig siger mig noget.
mvh
JohnScan initialized on 15-08-2002 11:28:25.
(AAW release 5.83, referencefile 029-15.06.2002)
=================================================
Started memory scan
====================
Running processes:
#:1 : smss.exe
#:2 : winlogon.exe
#:3 : services.exe
#:4 : lsass.exe
#:5 : svchost.exe
#:6 : svchost.exe
#:7 : spoolsv.exe
#:8 : explorer.exe
#:9 : navapsvc.exe
#:10 : nisum.exe
#:11 : pctspk.exe
#:12 : trickler_3202.exe
#:13 : navapw32.exe
#:14 : mmkbd.exe
#:15 : keyid.exe
#:16 : iamapp.exe
#:17 : ctfmon.exe
#:18 : symproxysvc.exe
#:19 : nisserv.exe
#:20 : msmsgs.exe
#:21 : msimn.exe
#:22 : iexplore.exe
#:23 : ad-aware.exe
Memory scan result:
Total modules found:23
Suspicious modules found:0
Started registry scan
======================
BrilliantDigital key:HKEY_CLASSES_ROOT\bdeplayer.bdeplayerctrl\
BrilliantDigital key:HKEY_CLASSES_ROOT\bdeplayer.bdeplayerctrl.1\
BrilliantDigital key:HKEY_CLASSES_ROOT\bdesmartinstaller25.bdesmartinstaller25\
BrilliantDigital key:HKEY_CLASSES_ROOT\bdesmartinstaller25.bdesmartinstaller25.1\
Gator key:HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c}\
BrilliantDigital key:HKEY_CLASSES_ROOT\clsid\{3eec42b5-fb94-40d3-a588-bb54b383a7cb}\
BrilliantDigital key:HKEY_CLASSES_ROOT\clsid\{51958169-d5e3-11d1-aa42-0000e842e40a}\
Cydoor key:HKEY_CURRENT_USER\software\cydoor\
Cydoor key:HKEY_LOCAL_MACHINE\software\cydoor\
Cydoor key:HKEY_CURRENT_USER\software\cydoor services\
NetworkEssentials key:HKEY_CURRENT_USER\software\downloadware\
DownloadWare key:HKEY_LOCAL_MACHINE\software\downloadware\
Gator key:HKEY_LOCAL_MACHINE\software\gator.com\
Alexa key:HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}\
Gator key:HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\moduleusage\c:/windows/downloaded program files/iegator.dll\
NetworkEssentials key:HKEY_CURRENT_USER\software\webinstall\
SaveNow key:HKEY_LOCAL_MACHINE\software\whenu\
SaveNow key:HKEY_CLASSES_ROOT\wusn.1\
Web3000 key:HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\trickler
CometCursor key:Software\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\System32\comet.dll
Started extended registry scan
===============================
Gator key:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\moduleusage\C:/WINDOWS/Downloaded Program Files/IEGator.dll
CometCursor key:HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\moduleusage\C:/WINDOWS/System32/comet.dll
Registry scan result:
Suspicious keys found : 22
Started folder scan
====================
Warning, no disk in drive (A)
NetworkEssentials file:C:\WINDOWS\Digital Signature 20020625.htm
NetworkEssentials file:C:\WINDOWS\Digital Signature 20020628.htm
Gator file:C:\WINDOWS\GatorPlugin.log
Cydoor folder:C:\WINDOWS\system32\AdCache
Gator folder:C:\Documents and Settings\John Hansen\Lokale indstillinger\Temp\fsg_tmp
Folder scan result:
Folders processed:1393
Suspicious folders found:2
Started file scan
==================
Cydoor file:C:\WINDOWS\system32\cd_clint.dll
Cydoor file:C:\WINDOWS\system32\cd_htm.dll
NetworkEssentials file:C:\WINDOWS\Digital Signature 20020625.htm
NetworkEssentials file:C:\WINDOWS\Digital Signature 20020628.htm
Gator file:C:\WINDOWS\GatorPlugin.log
Doubleclick file:C:\Documents and Settings\John Hansen\Lokale indstillinger\Temp\Cookies\john hansen@doubleclick[1].txt
Other file:C:\Documents and Settings\John Hansen\Lokale indstillinger\Temp\Cookies\john hansen@valueclick[2].txt
Gator file:C:\Documents and Settings\John Hansen\Lokale indstillinger\Temp\trickler_3202.exe
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@servedby.advertising[2].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@servedby.advertising[3].txt
Doubleclick file:C:\Documents and Settings\John Hansen\Cookies\john hansen@doubleclick[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@fastclick[2].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter4.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter3.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter15.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter5.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter6.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@cbird15.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter1.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@counter12.sextracker[1].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@sextracker[2].txt
Other file:C:\Documents and Settings\John Hansen\Cookies\john hansen@valueclick[1].txt
File scan result:
Suspicious files found:25
Scanning finished
==================
Suspicious modules found:0
Suspicious keys found : 22
Suspicious folders found:2
Suspicious files found:25
==========================
Components ignored:0
Total components found:49