And Deckards two logs:
Deckard's System Scanner v20071014.68
Run by Mathias Poulsen on 2008-05-29 22:32:40
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- HijackThis (run as Mathias Poulsen.exe) -------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:32:41, on 29-05-2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.EXE
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Mathias Poulsen\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\MATHIA~1.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Hjælp til tilmelding til Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~1\TEXTware\QUICKF~1\PlugIns\IEHelp.dll
O2 - BHO: (no name) - {E218C729-921F-45A6-94B8-C901B16CBA62} - (no file)
O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files\TechSmith\SnagIt 8\SnagItIEAddin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETVÆRKSTJENESTE')
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky...can_unicode.cabO16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) -
http://sdlc-esd.sun....ows-i586-jc.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.m...ash/swflash.cabO18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 8509 bytes
-- Files created between 2008-04-29 and 2008-05-29 -----------------------------
2008-05-29 13:09:35 0 d-------- C:\Users\All Users\CyberLink
2008-05-29 13:09:07 0 d-------- C:\Program Files\Fraps
2008-05-29 13:03:36 0 d-------- C:\Program Files\CyberLink
2008-05-29 12:43:10 0 d-------- C:\Windows\LastGood
2008-05-29 11:42:20 0 d-------- C:\Windows\system32\Kaspersky Lab
2008-05-29 11:42:20 0 d-------- C:\Users\All Users\Kaspersky Lab
2008-05-29 01:48:03 123376 --ah----- C:\Windows\system32\mlfcache.dat
2008-05-29 01:27:53 0 d-------- C:\Program Files\Picasa2
2008-05-29 01:23:11 0 d-------- C:\Downloads
2008-05-27 15:19:03 0 d-------- C:\Program Files\Panda Security
2008-05-27 14:28:51 176235 --a------ C:\Windows\system32\Primomonnt.dll
2008-05-27 14:28:47 0 d-------- C:\Windows\PrimoPDF4
2008-05-27 14:28:46 0 d-------- C:\Program Files\activePDF
2008-05-27 12:57:29 0 d-------- C:\Users\All Users\SUPERAntiSpyware.com
2008-05-27 12:57:17 0 d-------- C:\Program Files\SUPERAntiSpyware
2008-05-27 12:05:56 0 d-------- C:\Users\All Users\Malwarebytes
2008-05-27 12:05:56 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-05-27 12:01:47 0 d-------- C:\Windows\system32\appmgmt
2008-05-27 11:44:47 0 d-------- C:\Program Files\Trend Micro
2008-05-27 11:43:28 0 d-------- C:\VundoFix Backups
2008-05-27 00:22:13 0 d-------- C:\Users\All Users\TechSmith
2008-05-27 00:22:08 0 d-------- C:\Program Files\TechSmith
2008-05-27 00:21:36 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-05-26 23:31:50 171136 -rahs---- C:\grldr
2008-05-26 22:16:19 1276 --ahs---- C:\Windows\system32\wEfNTvut.ini2
2008-05-26 22:04:46 0 d-------- C:\Users\All Users\Kaspersky Lab Setup Files
2008-05-23 16:11:24 0 d-------- C:\Users\All Users\Gamespot
2008-05-23 16:11:23 0 d-------- C:\Program Files\GameSpot
2008-05-23 16:02:44 0 d-------- C:\Users\All Users\Media Center Programs
2008-05-23 13:14:10 520192 --a------ C:\Windows\system32\Grand Theft Auto IV Screenshot.scr <Not Verified; ScreenTime Media; ScreenTime For Flash>
2008-05-23 13:14:10 0 d-------- C:\Windows\system32\Grand Theft Auto IV Screenshot dir
2008-05-23 11:15:53 0 d-------- C:\Program Files\VideoLAN
2008-05-23 11:15:24 0 d-------- C:\Program Files\Frameworkx
2008-05-22 23:38:10 0 d-------- C:\Program Files\Common Files\Steam
2008-05-22 23:38:08 0 d-------- C:\Program Files\Steam
2008-05-22 21:55:52 0 d-------- C:\PerfLogs
2008-05-22 11:01:17 0 d-------- C:\Users\All Users\Nero
2008-05-22 11:01:17 0 d-------- C:\Program Files\Nero
2008-05-21 13:58:22 192000 --a------ C:\Windows\NCFOM_screensaver.scr <Not Verified; ScreenTime Media; ScreenTime For Flash>
2008-05-21 13:58:18 0 d-------- C:\Windows\NCFOM_screensaver dir
2008-05-21 13:58:18 12288 --a------ C:\Windows\impborl.dll
2008-05-21 13:58:18 545280 --a------ C:\Windows\flashax.exe <Not Verified; Microsoft Corporation; Microsoft® Windows NT® Operating System>
2008-05-21 13:53:38 0 d-------- C:\Program Files\UselessCreations
2008-05-21 03:00:47 0 d-------- C:\Program Files\MSXML 4.0
2008-05-20 17:18:24 0 d-------- C:\Program Files\ffdshow
2008-05-20 14:43:27 0 d-------- C:\Program Files\Runtime Software
2008-05-20 14:11:24 0 d-------- C:\Program Files\Google
2008-05-17 00:10:47 0 d-------- C:\Program Files\Common Files\Microsoft Games
2008-05-16 23:15:10 0 d-------- C:\Users\All Users\LogiShrd
2008-05-16 22:26:53 0 d-------- C:\Users\All Users\Logitech
2008-05-16 22:26:51 0 d-------- C:\Program Files\Common Files\Logishrd
2008-05-16 22:26:48 0 d-------- C:\Program Files\Logitech
2008-05-16 22:14:16 545 --a------ C:\Windows\UC.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\RAR.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\PKZIP.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\PKUNZIP.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\NOCLOSE.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\LHA.PIF
2008-05-16 22:14:16 545 --a------ C:\Windows\ARJ.PIF
2008-05-16 22:14:07 0 d-------- C:\Program Files\TC
2008-05-16 22:06:03 0 d-------- C:\Program Files\Common Files\Sony Ericsson Shared
2008-05-16 22:06:02 0 d-------- C:\Program Files\Common Files\Teleca Shared
2008-05-16 22:06:01 0 d-------- C:\Program Files\Sony Ericsson
2008-05-16 22:05:50 0 d-------- C:\Windows\Downloaded Installations
2008-05-16 22:03:15 0 d-------- C:\Users\All Users\Teleca
2008-05-16 22:03:15 0 d-------- C:\Users\All Users\Sony Ericsson
2008-05-16 13:15:48 2580 --a------ C:\Windows\mozver.dat
2008-05-16 11:10:33 0 d-------- C:\Program Files\CCleaner
2008-05-16 10:32:49 115200 --a------ C:\Windows\system32\UnzDll.dll <Not Verified; ; BCB/Delphi UnZip>
2008-05-16 10:32:49 147456 --a------ C:\Windows\system32\Twavbx32.dll
2008-05-16 10:32:49 9216 --a------ C:\Windows\system32\TWASFI.DLL
2008-05-16 10:32:49 102400 --a------ C:\Windows\system32\Twasbb01.dll
2008-05-16 10:32:49 18432 --a------ C:\Windows\system32\TWAIED02.DLL
2008-05-16 10:32:49 69632 --a------ C:\Windows\system32\TwaBcu01.dll <Not Verified; TEXTware A/S; TEXTware A/S TwaBcu01>
2008-05-16 10:32:49 70656 --a------ C:\Windows\system32\polspell.dll <Not Verified; Polar; Polar SpellChecker ActiveX Control Module>
2008-05-16 10:32:49 143360 --a------ C:\Windows\system32\ILXTBS.DLL
2008-05-16 10:32:49 143360 --a------ C:\Windows\system32\ILXTBL.DLL
2008-05-16 10:32:49 143360 --a------ C:\Windows\system32\ILXIMC.DLL
2008-05-16 10:32:49 322048 --a------ C:\Windows\system32\IllViSup.dll
2008-05-16 10:32:49 205312 --a------ C:\Windows\system32\Illprs.dll <Not Verified; TEXTware A/S; Illuminator 2.0>
2008-05-16 10:32:49 160768 --a------ C:\Windows\system32\ILLKRN.DLL <Not Verified; TEXTware A/S; Illuminator 2.0>
2008-05-16 10:32:48 297472 --a------ C:\Windows\system32\ltkrn10N.dll <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 114176 --a------ C:\Windows\system32\ltimg10N.dll <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 103424 --a------ C:\Windows\system32\ltfil10N.DLL <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 231424 --a------ C:\Windows\system32\LTDIS10N.dll <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 134144 --a------ C:\Windows\system32\lfpng10N.dll <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 266752 --a------ C:\Windows\system32\LFCMP10N.DLL <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 34304 --a------ C:\Windows\system32\lfbmp10N.dll <Not Verified; LEAD Technologies, Inc.; LEADTOOLS® DLL for Win32>
2008-05-16 10:32:48 0 d-------- C:\Program Files\TEXTware
2008-05-16 10:32:46 0 d-------- C:\Program Files\Gyldendal
2008-05-16 10:32:35 307200 --a------ C:\Windows\IsUn0406.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-05-16 08:09:18 0 d-------- C:\Program Files\Polob32
2008-05-16 08:01:17 0 d-------- C:\Program Files\DAEMON Tools
2008-05-16 07:57:13 685816 --a------ C:\Windows\system32\drivers\sptd.sys
2008-05-16 07:56:16 0 d-------- C:\Program Files\Winamp
2008-05-16 07:53:07 0 --a------ C:\Windows\nsreg.dat
2008-05-16 07:52:55 0 d-------- C:\Windows\Sun
2008-05-16 07:52:16 0 d-------- C:\Program Files\Java
2008-05-16 07:51:43 0 d-------- C:\Program Files\Common Files\Java
2008-05-16 07:49:36 0 d-------- C:\Users\All Users\Adobe
2008-05-16 07:49:25 0 d-------- C:\Program Files\Common Files\Adobe
2008-05-16 07:47:08 0 d-------- C:\Program Files\Microsoft Works
2008-05-16 07:46:04 0 d-------- C:\Windows\PCHEALTH
2008-05-16 07:46:04 0 d-------- C:\Program Files\Microsoft.NET
2008-05-16 07:44:31 0 d-------- C:\Program Files\Microsoft Visual Studio 8
2008-05-16 07:43:29 0 d-------- C:\Users\All Users\Microsoft Help
2008-05-16 07:42:51 0 dr-h----- C:\MSOCache
2008-05-16 00:41:26 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller
2008-05-16 00:41:09 0 d-------- C:\Program Files\Windows Live
2008-05-16 00:41:02 0 d-------- C:\Users\All Users\WLInstaller
2008-05-16 00:30:14 0 d-------- C:\Windows\system32\Macromed
2008-05-16 00:01:04 0 d-------- C:\Users\All Users\Grisoft
2008-05-16 00:00:46 0 d-------- C:\UNISECUR
2008-05-16 00:00:07 0 d-------- C:\Windows\Panther
2008-05-15 23:59:52 0 d--hs---- C:\Boot
2008-05-15 23:58:44 0 d-------- C:\Users\All Users\NVIDIA
2008-05-15 23:54:23 0 d-a------ C:\Users\All Users\TEMP
2008-05-15 23:54:18 118784 --a------ C:\Windows\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library>
2008-05-15 23:54:17 0 d-------- C:\Program Files\SpywareBlaster
2008-05-15 23:53:20 0 d-------- C:\Program Files\Alwil Software
2008-05-15 23:50:12 143360 -r------- C:\Windows\system32\xRaidAPI.dll <Not Verified; JMicron Technology Corp.; JMB36X RAID API Dynamic Link Library>
2008-05-15 23:50:10 1953792 -r------- C:\Windows\system32\xRaidSetup.exe <Not Verified; JMicron Technology Corp.; JMicron JMB36X RAID Configurer>
2008-05-15 23:50:10 0 d-------- C:\RaidTool
2008-05-15 23:49:56 0 d-------- C:\Windows\RaidTool
2008-05-15 23:46:22 0 d-------- C:\Windows\system32\Attansic
2008-05-15 23:43:44 0 d-------- C:\Windows\system32\RTCOM
2008-05-15 23:43:14 0 d-------- C:\Program Files\Realtek
2008-05-15 23:43:11 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-05-15 23:42:28 520192 -r------- C:\Windows\RtlExUpd.dll <Not Verified; Realtek Semiconductor Corp.; RtlExUpd Dynamic Link Library>
2008-05-15 23:42:28 315392 --a------ C:\Windows\HideWin.exe <Not Verified; Realtek Semiconductor Corp.; HD Audio Hide windows program>
2008-05-15 23:42:23 0 d-------- C:\Program Files\Common Files\InstallShield
2008-05-15 23:41:10 0 d-------- C:\Windows\ASUSInstAll
2008-05-15 23:35:19 0 d-------- C:\Program Files\Intel
2008-05-15 23:35:12 0 d-------- C:\Intel
2008-05-15 23:34:21 10288 --a------ C:\Windows\system32\drivers\ASUSHWIO.SYS
2008-05-15 23:32:05 240128 --a------ C:\Windows\system32\drivers\royal.sys <Not Verified; PARADOX; SLP Kernel-Mode Driver>
2008-05-15 23:32:01 0 d-------- C:\Program Files\ClonySoft
2008-05-15 23:31:25 0 d--hs---- C:\Windows\Installer
2008-05-15 23:27:35 0 dr------- C:\Users\Mathias Poulsen\Searches
2008-05-15 23:27:27 0 dr------- C:\Users\Mathias Poulsen\Contacts
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Skabeloner
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\SendTo
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Recent
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Printere
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Menuen Start
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Lokale indstillinger
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Dokumenter
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Cookies
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Application Data
2008-05-15 23:27:24 0 d--hs---- C:\Users\Mathias Poulsen\Andre computere
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Videos
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Saved Games
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Pictures
2008-05-15 23:27:23 2359296 --ahs---- C:\Users\Mathias Poulsen\NTUSER.DAT
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Music
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Links
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Favorites
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Downloads
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Documents
2008-05-15 23:27:23 0 dr------- C:\Users\Mathias Poulsen\Desktop
2008-05-15 23:27:23 0 d--h----- C:\Users\Mathias Poulsen\AppData
2008-05-15 23:25:55 0 d--hs---- C:\Program Files\Fælles filer
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Skabeloner
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Printere
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Menuen Start
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Lokale indstillinger
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Dokumenter
2008-05-15 23:25:54 0 d--hs---- C:\Users\Default\Andre computere
2008-05-15 23:25:54 0 d--hs---- C:\Users\All Users\Skrivebord
2008-05-15 23:25:54 0 d--hs---- C:\Users\All Users\Skabeloner
2008-05-15 23:25:54 0 d--hs---- C:\Users\All Users\Menuen Start
2008-05-15 23:25:54 0 d--hs---- C:\Users\All Users\Favoritter
2008-05-15 23:25:54 0 d--hs---- C:\Users\All Users\Dokumenter
2008-05-15 23:25:54 0 d--hs---- C:\Programmer <PROGRA~1>
2008-05-15 23:03:34 0 d-------- C:\Windows\SoftwareDistribution
2008-05-15 23:02:25 0 d-------- C:\Windows\system32\catroot2
2008-05-15 23:02:17 0 d-------- C:\Windows\Debug
2008-05-15 23:02:17 0 d-------- C:\Windows\CSC
2008-05-15 23:01:11 0 d-------- C:\Windows\Prefetch
2008-05-15 13:02:18 0 d--hs---- C:\System Volume Information
-- Find3M Report ---------------------------------------------------------------
2008-05-29 22:06:39 6025 --a------ C:\Users\Mathias Poulsen\AppData\Roaming\PrimoPDFSet.xml
2008-05-29 01:23:55 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\GetRightToGo
2008-05-29 01:23:43 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\CursorArts
2008-05-27 14:43:33 224 --a------ C:\Users\Mathias Poulsen\AppData\Roaming\APUSet.xml
2008-05-27 12:57:17 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\SUPERAntiSpyware.com
2008-05-27 12:06:05 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Malwarebytes
2008-05-27 12:05:37 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Download Manager
2008-05-27 11:59:23 0 d-------- C:\Program Files\Common Files
2008-05-26 19:55:02 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Vso
2008-05-26 19:55:02 33 --a------ C:\Users\Mathias Poulsen\AppData\Roaming\pcouffin.log
2008-05-26 19:55:01 7887 --a------ C:\Users\Mathias Poulsen\AppData\Roaming\pcouffin.cat
2008-05-25 14:33:36 466064 --a------ C:\Windows\system32\perfh006.dat
2008-05-25 14:33:36 78004 --a------ C:\Windows\system32\perfc006.dat
2008-05-25 00:58:47 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Microsoft Games
2008-05-25 00:51:09 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\WinRAR
2008-05-25 00:05:41 0 d-------- C:\Program Files\Microsoft Games
2008-05-24 01:03:51 0 dr-h----- C:\Users\Mathias Poulsen\AppData\Roaming\SecuROM
2008-05-23 16:11:24 6897 --a------ C:\Program Files\install.log
2008-05-23 12:55:51 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Gyldendal
2008-05-23 12:55:46 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\TEXTware
2008-05-22 22:02:52 174 --ahs---- C:\Program Files\desktop.ini
2008-05-22 21:56:22 0 d-------- C:\Program Files\Windows Calendar
2008-05-22 21:56:21 0 d-------- C:\Program Files\Windows Sidebar
2008-05-22 21:56:21 0 d-------- C:\Program Files\Windows Photo Gallery
2008-05-22 21:56:21 0 d-------- C:\Program Files\Windows Mail
2008-05-22 21:56:21 0 d-------- C:\Program Files\Windows Journal
2008-05-22 21:56:21 0 d-------- C:\Program Files\Windows Collaboration
2008-05-22 21:56:21 0 d-------- C:\Program Files\Movie Maker
2008-05-22 21:56:20 0 d-------- C:\Program Files\Windows Defender
2008-05-22 11:04:11 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Nero
2008-05-22 00:10:20 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Winamp
2008-05-17 09:47:00 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Teleca
2008-05-16 23:58:55 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Adobe
2008-05-16 23:15:10 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Logitech
2008-05-16 22:26:48 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\InstallShield
2008-05-16 22:14:07 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\GHISLER
2008-05-16 22:06:13 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Sony Ericsson
2008-05-16 07:53:05 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Mozilla
2008-05-16 07:46:53 0 d-------- C:\Program Files\MSBuild
2008-05-16 00:30:15 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Macromedia
2008-05-16 00:01:10 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Grisoft
2008-05-15 23:31:24 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\ClonySoft
2008-05-15 23:27:28 0 d-------- C:\Users\Mathias Poulsen\AppData\Roaming\Identities
2008-05-15 23:25:55 0 d-------- C:\Program Files\Windows NT
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E218C729-921F-45A6-94B8-C901B16CBA62}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [19-01-2008 09:38]
"RtHDVCpl"="RtHDVCpl.exe" [23-03-2007 21:04 C:\Windows\RtHDVCpl.exe]
"JMB36X IDE Setup"="C:\Windows\RaidTool\xInsIDE.exe" [20-03-2007 16:36]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [29-03-2008 19:37]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [11-06-2007 11:25]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [24-08-2007 07:00]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [11-01-2008 22:16]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [22-02-2008 04:25]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [01-04-2008 20:49]
"Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [13-06-2007 08:16]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [29-11-2007 02:17 C:\Windows\KHALMNPR.Exe]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"="C:\Program Files\Google\Gmail Notifier\gnotify.exe" [15-07-2005 23:48]
"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" []
"NvSvc"="C:\Windows\system32\nvsvc.dll" [11-12-2007 17:06]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [11-12-2007 17:06]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [11-12-2007 17:06]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [07-02-2007 16:24]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [07-02-2007 16:21]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [29-08-2007 17:09]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [18-10-2007 11:34]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" []
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [13-05-2008 12:43]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe [16-05-2008 22:26:56]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
"EnableLUA"=0 (0x0)
"EnableUIADesktopToggle"=0 (0x0)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [13-05-2008 10:13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 19-04-2007 13:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\Windows\system32\tuvTNfEw
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalService nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE Mcx2Svc WebClient SstpSvc
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{05b586c7-22c9-11dd-8512-806e6f6e6963}]
AutoRun\command- F:\Autorun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0c6f39ba-230d-11dd-8a94-001d6045e152}]
AutoRun\command- H:\autorun.exe
setup\command- H:\setup.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fb4b0410-22c1-11dd-913e-806e6f6e6963}]
AutoRun\command- F:\.\Bin\Assetup.exe
*Newly Created Service* - {95808DC4-FA4A-4C74-92FE-5B863F82066B}
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
-- End of Deckard's System Scanner: finished at 2008-05-29 22:33:21 ------------
Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------
-- System Information ----------------------------------------------------------
Microsoft® Windows Vista™ Ultimate (build 6001) SP 1.0
Architecture: X86; Language: Other (0406) - see
http://preview.tinyurl.com/mhhp6CPU 0: Intel® Core2 Duo CPU E6750 @ 2.66GHz
Percentage of Memory in Use: 37%
Physical Memory (total/avail): 3326.19 MiB / 2091.83 MiB
Pagefile Memory (total/avail): 6895.39 MiB / 5593.42 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1879.38 MiB
A: is Removable (No Media)
C: is Fixed (NTFS) - 349.39 GiB total, 299.89 GiB free.
D: is Fixed (NTFS) - 372.61 GiB total, 118.4 GiB free.
E: is Fixed (NTFS) - 349.25 GiB total, 160.86 GiB free.
F: is CDROM (UDF)
G: is CDROM (No Media)
H: is CDROM (UDF)
I: is Fixed (FAT32) - 76.54 GiB total, 21.88 GiB free.
J: is Fixed (NTFS) - 72.47 GiB total, 16.43 GiB free.
\\.\PHYSICALDRIVE1 - SAMSUNG HD403LJ ATA Device - 372.61 GiB - 1 partition
\PARTITION0 - Logical Disk Manager - 372.61 GiB - D: - D:
\\.\PHYSICALDRIVE0 - SAMSUNG HD753LJ ATA Device - 698.64 GiB - 2 partitions
\PARTITION0 (bootable) - Installable File System - 349.39 GiB - C:
\PARTITION1 - Installable File System - 349.25 GiB - E:
\\.\PHYSICALDRIVE2 - WD 1600BEVExternal USB Device - 149.05 GiB - 2 partitions
\PARTITION0 - Unknown - 76.57 GiB - I:
\PARTITION1 - Extended w/Extended Int 13 - 72.47 GiB - J:
-- Security Center -------------------------------------------------------------
AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.
AV: avast! antivirus 4.8.1169 [VPS 080529-0] v4.8.1169 (ALWIL Software)
AS: AVG Anti-Spyware v7, 5, 1, 43 (GRISOFT s.r.o.)
OutdatedAS: Windows Defender v1.1.1505.0 (Microsoft Corporation)
AS: SUPERAntiSpyware v4, 1, 0, 1046 (SUPERAntiSpyware.com)
AS: avast! antivirus 4.8.1169 [VPS 080529-0] v4.8.1169 (ALWIL Software)
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
-- Environment Variables -------------------------------------------------------
ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\Mathias Poulsen\AppData\Roaming
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=MPPC
ComSpec=C:\Windows\system32\cmd.exe
DEFAULT_CA_NR=CA8
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Users\Mathias Poulsen
LOCALAPPDATA=C:\Users\Mathias Poulsen\AppData\Local
LOGONSERVER=\\MPPC
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Program Files\Common Files\Teleca Shared
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 6 Model 15 Stepping 11, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=0f0b
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
PROMPT=$P$G
PUBLIC=C:\Users\Public
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\Windows
TEMP=C:\Users\MATHIA~1\AppData\Local\Temp
TMP=C:\Users\MATHIA~1\AppData\Local\Temp
USERDOMAIN=MPPC
USERNAME=Mathias Poulsen
USERPROFILE=C:\Users\Mathias Poulsen
windir=C:\Windows
-- User Profiles ---------------------------------------------------------------
Mathias Poulsen
(admin)-- Add/Remove Programs ---------------------------------------------------------
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0015-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0016-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0018-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0019-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001A-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001B-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0406-0000-0000000FF1CE} /uninstall {AAA2F315-90E9-40B3-8F83-4E52A5B461B2}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0044-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-006E-0406-0000-0000000FF1CE} /uninstall {C378B07F-6A3F-44DB-B340-AADCED1A3B4C}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-00A1-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-00BA-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0100-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0101-0406-0000-0000000FF1CE} /uninstall {C0223E33-0993-416D-A389-3AD29D4BE333}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
Adobe Flash Player ActiveX --> C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Dansk --> MsiExec.exe /I{AC76BA86-7AD7-1030-7B44-A81200000003}
Attansic L1 Gigabit Ethernet Driver --> rundll32.exe C:\Windows\system32\Attansic\L1\atcInst.dll,VisUninst C:\Windows\system32\Attansic\L1 x86 pci\ven_1969&dev_1048
avast! Antivirus --> C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe"
CDDRV_Installer --> MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
Counter-Strike --> "C:\Program Files\Steam\steam.exe" steam://uninstall/10
ffdshow (remove only) --> "C:\Program Files\ffdshow\uninstall.exe"
Fraps --> "C:\Program Files\Fraps\uninstall.exe"
GameSpot Download Manager --> "C:\Program Files\GameSpot\uninstall.exe"
Gears of War --> C:\Program Files\InstallShield Installation Information\{1170D24F-42B7-40CF-AA1B-6395CE562354}\setup.exe -runfromtemp -l0x0409
GetDataBack for NTFS --> "C:\Program Files\Runtime Software\GetDataBack for NTFS\Uninstall.exe" "C:\Program Files\Runtime Software\GetDataBack for NTFS\install.log" -u
Google Gmail Notifier --> "C:\Program Files\Google\Gmail Notifier\UninstallGmail.exe"
Grand Theft Auto IV Screenshot Screen Saver --> C:\Windows\system32\Grand Theft Auto IV Screenshot.scr /u
Gyldendals Røde Ordbøger Dansk-Engelsk/Engelsk-Dansk Ordbog --> C:\Windows\IsUn0406.exe -f"C:\Program Files\Gyldendal\DER002GL\Uninst.isu"
Half-Life 2 --> "C:\Program Files\Steam\steam.exe" steam://uninstall/220
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Java 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
JMB36X Raid Configurer --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9 -removeonly
Kaspersky Online Scanner --> C:\Windows\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe
KhalInstallWrapper --> MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
Logitech SetPoint --> C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x0006 -removeonly
Malwarebytes' Anti-Malware --> "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Games for Windows - LIVE Redistributable --> MsiExec.exe /X{20DEB77C-21D6-4D22-BB47-233E47613D57}
Microsoft Office Access MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0015-0406-0000-0000000FF1CE}
Microsoft Office Access MUI (English) 2007 --> MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007 --> MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0016-0406-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007 --> MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (Danish) 2007 --> MsiExec.exe /X{90120000-00BA-0406-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007 --> MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0044-0406-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007 --> MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Language Pack 2007 - Danish/dansk --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall OMUI.DA-DK /dll OSETUP.DLL
Microsoft Office O MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0100-0406-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Danish) 2007 --> MsiExec.exe /X{90120000-00A1-0406-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007 --> MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Danish) 2007 --> MsiExec.exe /X{90120000-001A-0406-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007 --> MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0018-0406-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007 --> MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (Danish) 2007 --> MsiExec.exe /X{90120000-001F-0406-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (Danish) 2007 --> MsiExec.exe /X{90120000-002C-0406-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007 --> MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0019-0406-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007 --> MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (Danish) 2007 --> MsiExec.exe /X{90120000-006E-0406-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007 --> MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office SharePoint Designer 2007 Service Pack 1 (SP1) --> msiexec /package {90120000-0017-0406-0000-0000000FF1CE} /uninstall {8B051E89-F509-438E-BB1D-5FF70B5BF872}
Microsoft Office SharePoint Designer MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0017-0406-0000-0000000FF1CE}
Microsoft Office Word MUI (Danish) 2007 --> MsiExec.exe /X{90120000-001B-0406-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007 --> MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Office X MUI (Danish) 2007 --> MsiExec.exe /X{90120000-0101-0406-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (2.0.0.14) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB936181) --> MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833) --> MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
NCFOM_screensaver --> C:\Windows\NCFOM_screensaver.scr /u
NVIDIA Drivers --> C:\Windows\system32\NVUNINST.EXE UninstallGUI
Panda ActiveScan 2.0 --> C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
Picasa 2 --> "C:\Program Files\Picasa2\Uninstall.exe"
Politikens Nudansk Ordbog --> MsiExec.exe /I{C2314384-9A4F-11D5-8A18-0080AD737527}
PowerDVD --> "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -l0x000409 /z-uninstall
PrimoPDF --> "C:\Windows\PrimoPDF4\uninstall.exe" "/U:C:\Program Files\activePDF\PrimoPDF\Uninstall\uninstallPrimoPDF4.xml"
Realtek High Definition Audio Driver --> RtlUpd.exe -r -m
Security Update for Excel 2007 (KB946974) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {85E83E2E-AF9B-439B-B4F9-EB9B7EF6A00E}
Security Update for Microsoft Office Publisher 2007 (KB950114) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
Security Update for Microsoft Office system 2007 (KB951808) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}
Security Update for Microsoft Office Word 2007 (KB950113) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}
Security Update for Office 2007 (KB947801) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {02B5A17B-01BE-4BA6-95F1-1CBB46EBC76E}
Security Update for Outlook 2007 (KB946983) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {66B9496E-C0C3-4065-9868-85CCA92126C3}
SnagIt 8 --> MsiExec.exe /I{DA0BF7AB-88EB-4675-8FA1-531EAD938821}
Sony Ericsson Device Data --> MsiExec.exe /I{C92E7DF1-624A-4D95-A4C4-18CB491B44A4}
Sony Ericsson Drivers --> MsiExec.exe /I{C60BA916-9E44-4DA4-B11A-9E27B7624EF5}
Sony Ericsson PC Suite --> C:\Windows\Installer\{D6BF6477-8369-489F-8DE6-3731F4B88560}\Setup.exe /uninstall
Sony Ericsson PC Suite --> MsiExec.exe /I{25BEC3AB-5CD4-481D-9143-215C1BBB189E}
SpywareBlaster 4.0 --> "C:\Program Files\SpywareBlaster\unins000.exe"
Steam --> MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
SUPERAntiSpyware Free Edition --> MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
The Matrix Trilogy 3D Code Screen Saver v3.4 --> "C:\Program Files\UselessCreations\Matrix3D\uninst.exe"
Tilmeldingsassistent til Windows Live --> MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
Total Commander (Remove or Repair) --> C:\Program Files\TC\tcuninst.exe
UniveRSS --> rundll32.exe dfshim.dll,ShArpMaintain UniveRSS.application, Culture=neutral, PublicKeyToken=0ad98f39d1bae51a, processorArchitecture=msil
Update for Office 2007 (KB946691) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
Update for Outlook 2007 Junk Email Filter (kb950378) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F6296086-AED5-4EC0-938B-08EA0254F20E}
VideoLAN VLC media player 0.8.6f --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Vista Shortcut Manager --> MsiExec.exe /I{47609E69-4C5E-48B1-A889-24C6B82B5C04}
Vista x86 OneClick Activator --> MsiExec.exe /I{2876AEE2-A9C9-4585-A46A-44CF451C960E}
Winamp --> "C:\Program Files\Winamp\UninstWA.exe"
Windows Live installer --> MsiExec.exe /X{38092A00-F9C8-420F-B5CB-C56F89F94B12}
Windows Live Messenger --> MsiExec.exe /X{1EDF0646-14CE-46FE-8785-9E12E29686DF}
WinRAR a