jeg har afinstalleret Messenger plus, men den er ikke forsvundet...
Her er min Hijack log:
Logfile of HijackThis v1.97.7
Scan saved at 20:19:26, on 11-12-2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32S24EvMon.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerAlwil SoftwareAvast4aswUpdSv.exe
C:ProgrammerAlwil SoftwareAvast4ashServ.exe
C:ProgrammerTOSHIBAConfigFreeCFSvcs.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003service.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003service.exe
C:WINDOWSSystem32
vsvc32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003
undll32.exe
C:WINDOWSSystem32RegSrvc.exe
C:ProgrammerAlwil SoftwareAvast4ashMaiSv.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSsystem32CfgSvc.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSystem321XConfig.exe
C:WINDOWSsystem32TFNF5.exe
C:ProgrammerSigmaTelSigmaTel AC97 Audio Driversstacmon.exe
C:ProgrammerSynapticsSynTPSynTPLpr.exe
C:ProgrammerSynapticsSynTPSynTPEnh.exe
C:ProgrammerTOSHIBATouchEDTouchED.Exe
C:WINDOWSLTSMMSG.exe
C:WINDOWSSystem32 0THotkey.exe
C:WINDOWSsystem32TPSMain.exe
C:ProgrammerTOSHIBATOSHIBA-programmerTFncKy.exe
C:ProgrammerIntelPROSetWirelessNCSPROSetPRONoMgr.exe
C:WINDOWSsystem32TPSBattM.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerD-Toolsdaemon.exe
C:WINDOWSSystem32ctfmon.exe
C:ProgrammerTOSHIBATOSCDSPD oscdspd.exe
C:ProgrammerMessengermsmsgs.exe
C:ProgrammerSkyr@cer Pro UtilityWLANPRO.exe
C:WINDOWSSystem32msdtc.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:RECYCLERS-1-5-21-0606982848-1057904186-854245398-1003devldr32.exe
C:Documents and SettingsLars VilhelmsenSkrivebordHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.google.dk[...]
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:ProgrammerAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM..Run: [TFNF5] TFNF5.exe
O4 - HKLM..Run: [SigmaTel StacMon] C:ProgrammerSigmaTelSigmaTel AC97 Audio Driversstacmon.exe
O4 - HKLM..Run: [SynTPLpr] C:ProgrammerSynapticsSynTPSynTPLpr.exe
O4 - HKLM..Run: [SynTPEnh] C:ProgrammerSynapticsSynTPSynTPEnh.exe
O4 - HKLM..Run: [TouchED] C:ProgrammerTOSHIBATouchEDTouchED.Exe
O4 - HKLM..Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM..Run: [00THotkey] C:WINDOWSSystem32 0THotkey.exe
O4 - HKLM..Run: [000StTHK] 000StTHK.exe
O4 - HKLM..Run: [TPSMain] TPSMain.exe
O4 - HKLM..Run: [TFncKy] TFncKy.exe
O4 - HKLM..Run: [PRONoMgr.exe] c:ProgrammerIntelPROSetWirelessNCSPROSetPRONoMgr.exe
O4 - HKLM..Run: [ownssafecampjugs] C:Documents and SettingsAll UsersApplication DataTHIRDTITLEOWNSSAFEName Log.exe
O4 - HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 - HKLM..Run: [DAEMON Tools-1033] "C:ProgrammerD-Toolsdaemon.exe" -lang 1033
O4 - HKLM..Run: [LOCKS MODE HOLD SIZE] C:Documents and SettingsAll UsersApplication Dataerror math locks modeMulti support.exe
O4 - HKLM..Run: [dllhost.exe] C:WINDOWSsystem32dllhost.exe
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [TOSCDSPD] C:ProgrammerTOSHIBATOSCDSPD oscdspd.exe
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:ProgrammerMicrosoft OfficeOfficeOSA9.EXE
O4 - Global Startup: Skyr@cer Pro Configuration Utility.lnk = C:ProgrammerSkyr@cer Pro UtilityWLANPRO.exe
O9 - Extra button: Create Mobile Favorite (HKLM)
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com[...]
--
Gæstebruger, opret dit eget login og få din egen signatur.