Hej
Kan I hjælpe mig med denne log?
--------------------------------------------------------
Logfile of HijackThis v1.97.7
Scan saved at 4:11:26 PM, on 7/11/2004
Platform: Windows 2000 SP3 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINNTSystem32smss.exe
C:WINNTsystem32winlogon.exe
C:WINNTsystem32services.exe
C:WINNTsystem32lsass.exe
C:WINNTsystem32svchost.exe
C:WINNTsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:ProgrammerNorton Personal FirewallNISUM.EXE
C:ProgrammerNorton Personal FirewallccPxySvc.exe
C:WINNTSYSTEM32DNTUS26.EXE
C:WINNTSYSTEM32DWRCS.EXE
C:WINNTSystem32svchost.exe
c:winntsystem32quservFireDaemon.EXE
c:winntsystem32quservwindows.exe
C:Program indstallNortom-anti
avapsvc.exe
c:winntsystem32driversetcfiredaemon.exe
c:winntsystem32driversetcsvchost.exe
C:Program indstallNortom-antiAdvToolsNPROTECT.EXE
C:WINNTsystem32
vsvc32.exe
C:WINNTsystem32
egsvc.exe
C:WINNTSystem32
_server.exe
C:WINNTsystem32MSTask.exe
C:WINNTsystem32driversetc
undll32.exe
C:ProgrammerAnalog DevicesSoundMAXSMAgent.exe
C:WINNTsystem32stisvc.exe
C:WINNTSystem32WBEMWinMgmt.exe
C:ProgrammerTDC InternetWrOS.EXE
C:WINNTSystem32mspmspsv.exe
C:WINNTsystem32svchost.exe
C:WINNTExplorer.EXE
C:ProgrammerAnalog DevicesSoundMAXSMax4PNP.exe
C:ProgrammerAnalog DevicesSoundMAXsmax4.exe
C:Program indstallDeemondaemon.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerTDC InternetWinPPPoverEthernet.exe
C:winntfontssystem.exe
C:ProgrammerMessenger Plus! 2MsgPlus.exe
C:program indstallprobeAsusProb.exe
C:WINNTsystem32qttask.exe
C:ProgrammerLogitechMouseWaresystemem_exec.exe
C:WINNTsystem32wuauclt.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:Program indstallDC++DCPlusPlus.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerACE Mega CoDecS PackSystemSRealMediaUpdate_OB
ealsched.exe
C:Program indstallhijackthis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://searchweb2.com[...]
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.hol.dk[...]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://tdconline.dk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Window Title = Microsoft Internet Explorer leveret af TDC Internet
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:ProgrammerAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:Program indstallNortom-antiNavShExt.dll
O2 - BHO: (no name) - {CCCB814A-611C-9365-4B88-10697F105645} - C:PROGRA~1WEBLOG~1DATASETUP.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:Program indstallNortom-antiNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINNTSystem32msdxm.ocx
O3 - Toolbar: DriveSite - {BE8ACB20-1EBD-7A4E-AF12-57EAF9A87534} - C:PROGRA~1WEBLOG~1DATASETUP.dll
O4 - HKLM..Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINNTsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [SoundMAXPnP] C:ProgrammerAnalog DevicesSoundMAXSMax4PNP.exe
O4 - HKLM..Run: [SoundMAX] "C:ProgrammerAnalog DevicesSoundMAXsmax4.exe" /tray
O4 - HKLM..Run: [DAEMON Tools-1033] "C:Program indstallDeemondaemon.exe" -lang 1033
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~2NORTOM~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [WinPoET] C:ProgrammerTDC InternetWinPPPoverEthernet.exe
O4 - HKLM..Run: [Mirabilis ICQ] C:Program indstallICQICQNet.exe
O4 - HKLM..Run: [scanreg] "C:WINNTp0six.exe "
O4 - HKLM..Run: [AcrobatAgent] C:WINNTsystem32AdobeAcrobatAcrobatAGT.exe
O4 - HKLM..Run: [system.exe] c:winntfontssystem.exe
O4 - HKLM..Run: [MessengerPlus2] "C:ProgrammerMessenger Plus! 2MsgPlus.exe"
O4 - HKLM..Run: [ERYC] C:WINNTERYC.exe
O4 - HKLM..Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM..Run: [NeroFilterCheck] C:WINNTsystem32NeroCheck.exe
O4 - HKLM..Run: [NeroCheck] C:WINNTsystem32NeroCheck.exe
O4 - HKLM..Run: [ASUS Probe] c:program indstallprobeAsusProb.exe
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINNTsystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [QuickTime Task] "C:WINNTsystem32qttask.exe" -atboottime
O4 - HKLM..Run: [TkBellExe] "C:ProgrammerACE Mega CoDecS PackSystemSRealMediaUpdate_OB
ealsched.exe" -osboot
O4 - HKCU..Run: [SpySweeper] C:ProgrammerWebrootSpy SweeperSpySweeper.exe /0
O4 - HKCU..Run: [MessengerPlus2] "C:ProgrammerMessenger Plus! 2MsgPlus.exe" /WinStart
O4 - HKCU..Run: [Steam] "c:programmersteamsteam.exe" -silent
O4 - HKCU..Run: [Symantec NetDriver Monitor] C:PROGRA~1SymantecLIVEUP~1SNDMon.EXE
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - Startup: PeerGuardian.lnk = C:ProgrammerPeerGuardian_1.99pr7PeerGuardian_1.99b_pr7.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:ProgrammerLogitechDesktop Messenger8876480ProgramLDMConf.exe
O9 - Extra button: ICQ Pro (HKLM)
O9 - Extra 'Tools' menuitem: ICQ (HKLM)
O9 - Extra button: Real.com (HKLM)
O14 - IERESET.INF: START_PAGE_URL=
http://tdconline.dk[...]
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
http://download.macromedia.com[...]
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com[...]
O16 - DPF: {F5192746-22D6-41BD-9D2D-1E75D14FBD3C} -
http://216.65.38.226[...]
O17 - HKLMSystemCCSServicesTcpip..{8C97D71E-2374-4D31-9938-9AEF142E8228}: NameServer = 193.162.153.164 194.239.134.83
--
+Manga+ | [Ma]Trunks