* Uofficiel Black/White liste V3
|
Denne tråd er over 6 måneder gammel
Er du sikker på, at du har noget relevant at tilføje?
Julehjælp (HJT)Af Superbruger jackeb | 24-12-2004 17:47 | 1456 visninger | 21 svar, hop til seneste
Hej og god jul. Jeg sidder her med min mors bærbare og hun har en masse lort på som jeg ved ikke skal være der, jeg har kørt en HJT den kommer her:
Logfile of HijackThis v1.99.0
Scan saved at 17:37:00, on 24-12-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSExplorer.EXE
C:ProgrammerNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINDOWS
etrq32.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis[1].zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
Hvad skal væk, og hvordan er det nu man skal gøre? Håber i kan hjælpe min mutter
Mvh Jack --
Vær sød og hjælpe mig
Sorry.. her er den hele
Logfile of HijackThis v1.99.0
Scan saved at 17:37:00, on 24-12-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSExplorer.EXE
C:ProgrammerNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINDOWS
etrq32.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis[1].zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
-- Vær sød og hjælpe mig Okay.. Hvad sker der, hvorfor vil den ikke sætte resten ind? -- Vær sød og hjælpe mig Jeg prøver lige igen...
Logfile of HijackThis v1.99.0
Scan saved at 17:37:00, on 24-12-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSExplorer.EXE
C:ProgrammerNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINDOWS
etrq32.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis[1].zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe -- Vær sød og hjælpe mig undskyld, men jeg prøver altså lige igen
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis[1].zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
-- Vær sød og hjælpe mig Logfile of HijackThis v1.99.0
Scan saved at 17:37:00, on 24-12-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSExplorer.EXE
C:ProgrammerNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINDOWS
etrq32.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis[1].zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
-- Vær sød og hjælpe mig Hvorfor vil den ikke sætte det hele ind? -- Vær sød og hjælpe mig
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.zhylaeftezaywxslyyswmqx.uk[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
-- Vær sød og hjælpe mig O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe
-- Vær sød og hjælpe mig Jeg brækker mig da snart!! Hvad fanden sker der!!!! -- Vær sød og hjælpe mig Stop med det der spam, brug hjernecellerne lidt.. Overvej at uploade den på http://up.peecee.dk[...] ?!
Kan godt være det er juleaften, men prøv at tænke lidt selv... -- Når man affyrer en kanonkugle mod fortet og hører en derinde råbe: "Jeg har!", så ved man, man har med nogle virkelig dumme folk at gøre. jeg blir jo for fanden nød til at prøve og se om det virker, jeg kan godt sætte det hele ind, men når jeg opretter svar, så kommer halvdelen kun frem.. Jeg kan heller ikke uploade på dit link. Jeg tror den her computer er meget syg! Det ville være rart hvis man kunne slett sine svar, eller redigere i dem, så ville jeg ikke spamme så meget, sorry for det btw.. Jeg giver den lige et sidste forsøg:
Logfile of HijackThis v1.99.0
Scan saved at 19:12:19, on 24-12-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:WINDOWSSystem32alg.exe
C:ProgrammerNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
C:WINDOWS
etrq32.exe
C:WINDOWSExplorer.EXE
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:WINDOWSsystem32msmn.exe
C:ProgrammerWinampwinampa.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerWebrootSpy SweeperSpySweeper.exe
C:ProgrammerInternet Exploreriexplore.exe
C:ProgrammerMessengermsmsgs.exe
c:progra~1intern~1iexplore.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:Documents and SettingsmigLokale indstillingerTempMidlertidig mappe 1 for hijackthis.zipHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.ewupjqngxbajcxxesmfu.com[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = about:blank
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = res://C:WINDOWSsystem32 kfeo.dll/sp.html#96676
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {6D4097E2-E32A-4E3E-A270-070E73AF19AC} - C:WINDOWSsysqc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmergooglegoogletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSystem32msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton AntiVirusNavShExt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:ProgrammerMSN AppsMSN Toolbar 1.02.3000.1001damsntb.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmergooglegoogletoolbar1.dll
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [msmn.exe] C:WINDOWSsystem32msmn.exe
O4 - HKLM..Run: [WinampAgent] C:ProgrammerWinampwinampa.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [hide meet bat pure] C:Documents and SettingsAll UsersApplication DataFord draw hide meetMultihelp.exe
O4 - HKLM..RunOnce: [SpybotSnD] "C:ProgrammerSpybot - Search & DestroySpybotSD.exe" /autocheck
O4 - HKCU..Run: [SpySweeper] "C:ProgrammerWebrootSpy SweeperSpySweeper.exe" /0
O4 - HKCU..Run: [Castfive] C:DOCUME~1migAPPLIC~1MFCDRO~1More Wipe Drive.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [MSMSGS] "C:ProgrammerMessengermsmsgs.exe" /background
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL= http://google.com[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com[...]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com[...]
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com[...]
O23 - Service: Symantec Event Manager - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - C:ProgrammerFælles filerSymantec SharedccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - C:ProgrammerNorton AntiVirus
avapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - C:ProgrammerNorton AntiVirusAdvToolsNPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - C:PROGRA~1FÆLLES~1SYMANT~1SCRIPT~1SBServ.exe
O23 - Service: Network Security Service (NSS) - Unknown - C:WINDOWS
etrq32.exe (file missing)
-- Vær sød og hjælpe mig Bare slet den her tråd, det virker alligevel ikke.. Sorry! -- Vær sød og hjælpe mig Hva med at prøve på upit.dk? Ellers så prøv at post det hele ind lidt efter lidt... For det der er der jo ikke nogen der kan finde hoved eller hale i...
Men du kan da lige prøve at downloade det her program:
CW-shredder:
http://www.softpedia.com[...]
//Kim In Chul
-- MSN: [email protected] hej i raske pc gutter, hvem kan hjælpe èn gammel! ny begynder....... først fik jeg gjordt så meget lo... på min søns pc, nu har han foræret mig hans gamle apple g3, så hjælpå mig,,, er også begyndt at lave lo... med den?` -- Gæstebruger, opret dit eget login og få din egen signatur. #15
Jeg er godt nok en "gut-inde", men håber, jeg må prøve at hjælpe alligevel.
Du skulle faktisk have oprettet din egen tråd, for man skriver ikke bare i en andens tråd her. Men du er jo gæst, så det kunne du ikke vide :o).
Hvad mener du med at "lave lo.... med den"? Mener du, at du har fået en masse snavs på den eller hvad? Hvis det er, kan du evt. køre med nedenstående programmer, som kan tage en del snavs (dog ikke det hele).
Installer, opdater online, kør og fix/fjern det, de finder.
Ad-Aware SE Personal
http://www.lavasoft.de[...]
SpyBot S&D
http://www.safer-networking.org[...]
Her skal du bruge Immunisering.
Spywareblaster
http://www.javacoolsoftware.com[...]
Her skal du bruge Enable All Protection.
Spywareguard
http://www.javacoolsoftware.com[...]
Du kan så evt. give en tilbagemelding om, hvad dit problem egl. gik ud på og om det har hjulpet. Hvis det ikke har, kan vi tage andre midler i brug.
//*Cookie
-- Make somebody else's day - commit an act of kindness ... TODAY :o)!
Hej hunkøn!
foreløbig tak for din hjælp -- Gæstebruger, opret dit eget login og få din egen signatur.
hej alle i dygtige pc brugere.
jeg har lånt en apple ebook g3 af min søn, desværre er den me.....get langsom ?
nu har jeg brugt timer på at finde et gratis virus program, for at se om det er fordi pc er inficeret med alt mulig skidt, som ikke skulle være der.
desværre er der ikke nogen af de programmer jeg har været inde på, som kunne køre explorer 5,2 som denne pc er indrettet på.
som sagt jeg har ik...ke meget forstand på pcere, men der står noget med 10.2.8 om denne mac.
håber det er oplysninger nok, til at der er en, som kunne give mig lidt hjælp.
jan -- Gæstebruger, opret dit eget login og få din egen signatur.
hej alle i dygtige pc brugere.
jeg har lånt en apple ebook g3 af min søn, desværre er den me.....get langsom ?
nu har jeg brugt timer på at finde et gratis virus program, for at se om det er fordi pc er inficeret med alt mulig skidt, som ikke skulle være der.
desværre er der ikke nogen af de programmer jeg har været inde på, som kunne køre explorer 5,2 som denne pc er indrettet på.
som sagt jeg har ik...ke meget forstand på pcere, men der står noget med 10.2.8 om denne mac.
håber det er oplysninger nok, til at der er en, som kunne give mig lidt hjælp.
jan -- Gæstebruger, opret dit eget login og få din egen signatur. #19
ØV, jeg kan ikke hjælpe dig så meget alligevel, som jeg havde håbet på. Overså i første omgang, at der var tale om en MAC.... og det har jeg desværre ikke så meget styr på. Kender kun til Windows.
Men håber da, andre kan hjælpe dig :o)!
//*Cookie
-- Make somebody else's day - commit an act of kindness ... TODAY :o)!
kære //*Cookie !
tak for din interresse.
-- Gæstebruger, opret dit eget login og få din egen signatur.
Grundet øget spam aktivitet fra gæstebrugere, er det desværre ikke længere muligt, at oprette svar som gæst.
Hvis du ønsker at deltage i debatten, skal du oprette en brugerprofil.
Opret bruger | Login
|
Du skal være logget ind for at tilmelde dig nyhedsbrev.
Hvilken udbyder har du til internet? 425 personer har stemt - Mit energiselskab (Ewii f.eks) 12%
|
|
|