Logfile of HijackThis v1.97.7
Scan saved at 15:03:48, on 08-06-2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:WINNTSystem32smss.exe
C:WINNTsystem32winlogon.exe
C:WINNTsystem32services.exe
C:WINNTsystem32lsass.exe
C:WINNTsystem32svchost.exe
C:WINNTSystem32svchost.exe
C:WINNTsystem32spoolsv.exe
C:PROGRA~1GrisoftAVG6avgserv.exe
C:WINNTSystem32driversCDAC11BA.EXE
C:WINNTSystem32inetsrvinetinfo.exe
C:WINNTSystem32
vsvc32.exe
C:WINNTSystem32 cpsvcs.exe
C:ProgrammerFælles filerSymantec SharedSNDSrvc.exe
C:WINNTSystem32snmp.exe
C:WINNTsystem32oneLabsvsmon.exe
C:WINNTExplorer.EXE
C:ProgrammerGrisoftAVG6avgcc32.exe
C:ProgrammerFælles filerRealUpdate_OB
ealsched.exe
C:WINNTSystem32MMTrayLSI.exe
C:WINNTSystem32MMTray2k.exe
C:WINNTSystem32MMTray.exe
C:Programmerone LabsoneAlarmzlclient.exe
C:WINNTSystem32qttask.exe
C:WINNTSystem32ctfmon.exe
C:ProgrammerRSNetRSEDNClient.exe
C:WINNTSystem32msiexec.exe
C:WINNTSystem32MsiExec.exe
C:Download oolHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet Explorer,SearchURL =
http://www.ewebsearch.net[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar =
http://www.ewebsearch.net[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page =
http://www.ewebsearch.net[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.americasarmy.com[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:ProgrammerSpybot - Search & DestroySDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINNTSystem32msdxm.ocx
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINNTSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [AVG_CC] C:ProgrammerGrisoftAVG6avgcc32.exe /startup
O4 - HKLM..Run: [TkBellExe] "C:ProgrammerFælles filerRealUpdate_OB
ealsched.exe" -osboot
O4 - HKLM..Run: [MMTrayLSI] C:WINNTSystem32MMTrayLSI.exe
O4 - HKLM..Run: [MMTray2K] C:WINNTSystem32MMTray2k.exe
O4 - HKLM..Run: [MMTray] C:WINNTSystem32MMTray.exe
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINNTSystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [Zone Labs Client] "C:Programmerone LabsoneAlarmzlclient.exe"
O4 - HKLM..Run: [QuickTime Task] "C:WINNTSystem32qttask.exe" -atboottime
O4 - HKCU..Run: [CTFMON.EXE] C:WINNTSystem32ctfmon.exe
O4 - HKCU..Run: [Red Swoosh EDN Client] C:ProgrammerRSNetRSEDNClient.exe
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Real.com (HKLM)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) -
http://www.ipix.com[...]
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
http://fpdownload.macromedia.com[...]
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://download.yahoo.com[...]
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) -
http://www.fileplanet.com[...]
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1540.g.akamai.net[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) -
http://appdirectory.messenger.msn.com[...]
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) -
http://v4.windowsupdate.microsoft.com[...]
O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) -
http://games-dl.real.com[...]
O16 - DPF: {D27CDB6E-11CF-96B9-4400-000000000000} -
http://active.macromedia.com[...]
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com[...]
O16 - DPF: {E8EDB60C-951E-4130-93DC-FAF1AD25F8E7} -
http://cdn.climaxbucks.com[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {FE5D6722-826F-11D5-A24E-0060B0F1A5AE} (Tukati Launcher) -
http://www.tukati.com[...]
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} (InstallCtl Class) -
http://download.redswoosh.net[...]
Er der en venlig sjæl der vil analysere denne log?
--
Gæstebruger, opret dit eget
login og få din egen signatur.