Her er HJT logen...
Logfile of HijackThis v1.99.1
Scan saved at 1:21:17 PM, on 4/14/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
E:ProgrammerTuneUp Utilities 2004WinStylerThemeSvc.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSExplorer.EXE
C:NORMANinLH.EXE
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerRay AdamsATI Tray Toolsatitray.exe
C:NORMANNvcBINNPFSVICE.EXE
C:NORMANinANDA.EXE
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32wdfmgr.exe
C:NORMANNvcBINNIP.EXE
C:NORMANNvcBIN
pfmsg2.exe
C:NORMANinNJEEVES.EXE
C:NORMANNvcBIN
ipsvc.exe
C:NORMANNvcBIN
vcoas.exe
C:NORMANNvcincclaw.exe
D:ProgrammerXfireXfire.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerTeamspeak2_RC2TeamSpeak.exe
D:ProgrammerwincmdWINCMD32.EXE
C:DOCUME~1TARZOLOKALE~1TEMP$wcHIJACK~1.EXE
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.hol.dk[...]
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.hol.dk[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
C:ProgrammerAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll
O3 - Toolbar: DAP Bar - {62999427-33FC-4baf-9C9C-BCE6BD127F08} -
C:ProgrammerDAPDAPIEBar.dll
O4 - HKLM..Run: [Norman ZANDA] C:NORMANinLH.EXE /LOAD /SPLASH
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [AtiTrayTools] "C:ProgrammerRay AdamsATI Tray Toolsatitray.exe"
O8 - Extra context menu item: &Download with &DAP - C:PROGRA~1DAPdapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:PROGRA~1DAPdapextie2.htm
O16 - DPF: {0F9B4CA4-A30F-480A-841D-69B45C50A8F8} (SekureL0gin.SekureKontrol) -
http://secure2.comned.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation
Tool) -
http://go.microsoft.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupdate.microsoft.com[...]
3847260078
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net[...]
O16 - DPF: {D3A7982E-915D-4589-8ECE-249F70D0C941} (Launch Control) -
http://aaotracker.4players.de[...]
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:WINDOWSsystem32Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:WINDOWSsystem32ati2sgag.exe
O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner -
C:NORMANNvcBIN
ipsvc.exe
O23 - Service: Norman NJeeves - Unknown owner - C:NORMANinNJEEVES.EXE
O23 - Service: Norman Type-R - Unknown owner - C:NORMANNvcBINNPFSVICE.EXE
O23 - Service: Norman ZANDA - Unknown owner - C:NORMANinANDA.EXE
O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA -
C:NORMANNvcBIN
vcoas.exe
O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSsystem32HPZipm12.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH -
E:ProgrammerTuneUp Utilities 2004WinStylerThemeSvc.exe
--
p.s. Jeg er ordblin, så lad være med at gøre nar!
Hvorfor være vanskelig, når du med en lille smule omhu, kan blive fuldstændig umulig!