#19
Netop den side, som du linker til i #16 har jeg været inde på for at læse om filen, men kunne ikke finde nogen løsning :/
Jeg har kørt en SAS scan, og den fandt noget adware. WhenU og noget andet, men den løste ikke mit IE problem, og den har lukket ned 2-3 gange efter jeg kørte scanningen :(
Jeg har kørt en HJT, og smider lige loggen her, håber du får tid til at kigge på den:
Logfile of HijackThis v1.99.1
Scan saved at 19:01:00, on 24-11-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5700.0006)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:ProgrammerIntelWirelessBinEvtEng.exe
C:ProgrammerIntelWirelessBinS24EvMon.exe
c:ProgrammerFælles filerSymantec SharedccProxy.exe
C:ProgrammerIntelWirelessBincfgSvc.exe
c:ProgrammerFælles filerSymantec SharedccSetMgr.exe
c:ProgrammerNorton Internet SecurityISSVC.exe
c:ProgrammerFælles filerSymantec SharedSNDSrvc.exe
c:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:PROGRA~1IntelWirelessBin1XConfig.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerPortrait DisplaysforteManagerdtsslsrv.exe
C:ProgrammerSymantecLiveUpdateALUSchedulerSvc.exe
C:PROGRA~1GrisoftAVGFRE~1avgamsvr.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSExplorer.EXE
C:PROGRA~1GrisoftAVGFRE~1avgupsvc.exe
C:PROGRA~1GrisoftAVGFRE~1avgemc.exe
C:WINDOWSsystem32driversCDAC11BA.EXE
C:ProgrammerVPNcvpnd.exe
C:ProgrammerPortrait DisplaysforteManagerDTSRVC.exe
C:ProgrammerIntelWirelessBinOProtSvc.exe
C:ProgrammerIntelWirelessBinRegSrvc.exe
C:WINDOWSATK0100HControl.exe
C:WINDOWSALCMTR.EXE
C:ProgrammerASUSWireless Consolewcourier.exe
C:ProgrammerSynapticsSynTPSynTPLpr.exe
C:ProgrammerSynapticsSynTPSynTPEnh.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerATI TechnologiesATI Control Panelatiptaxx.exe
C:ProgrammerASUSPower4 GearBatteryLife.exe
C:ProgrammerIntelWirelessBinifrmewrk.exe
C:ProgrammerIntelWirelessBinEOUWiz.exe
C:ProgrammerJavajre1.5.0_06injusched.exe
C:PROGRA~1GrisoftAVGFRE~1avgcc.exe
C:ProgrammerLClockLClock.exe
C:WINDOWSsystem32ctfmon.exe
C:ProgrammerLogitechSetPoint.exe
C:WINDOWSATK0100ATKOSD.exe
C:ProgrammerFælles filerLogitechKhalSharedKHALMNPR.EXE
C:ProgrammerRainlendarRainlendar.exe
C:WINDOWSSystem32svchost.exe
C:ProgrammerInternet ExplorerIEXPLORE.EXE
C:Documents and SettingsKasperSkrivebordHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.google.dk[...]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://go.microsoft.com[...]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL =
http://go.microsoft.com[...]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://go.microsoft.com[...]
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://go.microsoft.com[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:ProgrammerAdobeAcrobat 7.0ActiveXAcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:ProgrammerJavajre1.5.0_06inssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:ProgrammerFælles filerMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:ProgrammerFælles filerSymantec SharedAdBlockingNISShExt.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:ProgrammerNorton Internet SecurityNorton AntiVirusNavShExt.dll
O2 - BHO: CIEObjectObj Object - {CA13D72F-2DAC-4D99-B08D-C5EA1C920E89} - C:WINDOWSIECodecPlg.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:ProgrammerFælles filerSymantec SharedAdBlockingNISShExt.dll
O4 - HKLM..Run: [HControl] C:WINDOWSATK0100HControl.exe
O4 - HKLM..Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM..Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM..Run: [Wireless Console] C:ProgrammerASUSWireless Consolewcourier.exe
O4 - HKLM..Run: [SynTPLpr] C:ProgrammerSynapticsSynTPSynTPLpr.exe
O4 - HKLM..Run: [SynTPEnh] C:ProgrammerSynapticsSynTPSynTPEnh.exe
O4 - HKLM..Run: [ccApp] "c:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ATIPTA] C:ProgrammerATI TechnologiesATI Control Panelatiptaxx.exe
O4 - HKLM..Run: [Power_Gear] C:ProgrammerASUSPower4 GearBatteryLife.exe 1
O4 - HKLM..Run: [IntelWireless] C:ProgrammerIntelWirelessBinifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM..Run: [EOUApp] C:ProgrammerIntelWirelessBinEOUWiz.exe
O4 - HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMNET~1SNDMon.exe /Consumer
O4 - HKLM..Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM..Run: [SunJavaUpdateSched] C:ProgrammerJavajre1.5.0_06injusched.exe
O4 - HKLM..Run: [QuickTime Task] "C:ProgrammerQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [AVG7_CC] C:PROGRA~1GrisoftAVGFRE~1avgcc.exe /STARTUP
O4 - HKLM..Run: [LClock] C:ProgrammerLClockLClock.exe
O4 - HKCU..Run: [MsnMsgr] "C:ProgrammerMSN MessengerMsnMsgr.Exe" /background
O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [SUPERAntiSpyware] C:ProgrammerSUPERAntiSpywareSUPERAntiSpyware.exe
O4 - Startup: Rainlendar.lnk = C:ProgrammerRainlendarRainlendar.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:ProgrammerLogitechSetPoint.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:ProgrammerJavajre1.5.0_06inssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:ProgrammerJavajre1.5.0_06inssv.dll
O9 - Extra button: VC Poker - {40B2063F-DB01-4962-BE63-59435C01283C} - C:PROGRA~1POKERVCPOKE~1client.exe
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 - Extra button: (no name) - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengermsmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=
http://www.asus.com[...]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com[...]
O16 - DPF: {360E40AA-EE8B-4101-BA67-0CAD3F7A48DD} (Nyoko Downloader Class) -
http://www.gamingclubpoker.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com[...]
O16 - DPF: {D216644A-C6DB-49D9-BBCF-D38FE7991BF2} (Util Class) -
https://udstedelse.certifikat.tdc.dk[...]
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) -
https://flashpoker.ladbrokes.com[...]
O16 - DPF: {F9043C85-F6F2-101A-A3C9-08002B2F49FB} (Microsoft Common Dialog Control, version 6.0) - file://C: ProgrammerThe Tournament Directorcomdlg32.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:PROGRA~1MSNMES~1MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:PROGRA~1MSNMES~1MSGRAP~1.DLL
O18 - Protocol: talkto - {828030A1-22C1-4009-854F-8E305202313F} - C:PROGRA~1MSNMES~1MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:ProgrammerSUPERAntiSpywareSASWINLO.dll
O20 - Winlogon Notify: AutorunsDisabled - C:WINDOWS
O20 - Winlogon Notify: IntelWireless - C:ProgrammerIntelWirelessBinLgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:WINDOWSSYSTEM32WgaLogon.dll
O23 - Service: Asset Management Daemon - Unknown owner - C:ProgrammerPortrait DisplaysforteManagerdtsslsrv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:WINDOWSsystem32Ati2evxx.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:ProgrammerSymantecLiveUpdateALUSchedulerSvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVGFRE~1avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVGFRE~1avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:PROGRA~1GrisoftAVGFRE~1avgemc.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:WINDOWSsystem32driversCDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedccSetMgr.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:ProgrammerVPNcvpnd.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:ProgrammerPortrait DisplaysforteManagerDTSRVC.exe
O23 - Service: EvtEng - Intel Corporation - C:ProgrammerIntelWirelessBinEvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:ProgrammerFælles filerInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - c:ProgrammerNorton Internet SecurityISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:PROGRA~1SymantecLIVEUP~1LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - c:ProgrammerNorton Internet SecurityNorton AntiVirus
avapsvc.exe
O23 - Service: OwnershipProtocol - Intel Corporation - C:ProgrammerIntelWirelessBinOProtSvc.exe
O23 - Service: RegSrvc - Intel Corporation - C:ProgrammerIntelWirelessBinRegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:ProgrammerIntelWirelessBinS24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - c:ProgrammerNorton Internet SecurityNorton AntiVirusSAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedSNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:ProgrammerFælles filerSymantec SharedSPBBCSPBBCSvc.exe
Min computer kører genenrelt ret langsom for tiden, så hvis du kan se noget andet krimskrams i loggen udover den fil vi snakker om, må du gerne sige til... På forhånd TUSIND tak for hjælpen!
Mvh
Kasper
--
Pokerking :D