Hej, så har jeg fået den ære og tjekke min mor og fars computer for alt mulig skidt og lort. Ja, der ligger fanme meget som i nok kan se. Plz tjek den hurtigst muligt da jeg ikke sidder så længe ved den (: På Forhånd Tak.
Held og Lykke, lol (:
(Til Cookie, har jeg fået det hele med, gik ikke så godt sidste gang kan jeg huske (: lol)
Logfile of HijackThis v1.99.0
Scan saved at 23:45:31, on 07-01-2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerSymantec_Client_SecuritySymantec AntiVirusDefWatch.exe
C:ProgrammerSymantec_Client_SecuritySymantec AntiVirusRtvscan.exe
C:WINDOWSSystem32
vsvc32.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSExplorer.EXE
C:PROGRA~1SYMANT~1SYMANT~1vptray.exe
C:ProgrammeraheadInCDInCD.exe
C:PROGRA~1A4TechMouseAmoumain.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerFælles filerRealUpdate_OB
ealsched.exe
C:ProgrammeriTunesiTunesHelper.exe
C:PROGRA~1FLLESF~1PCSuiteDataLayerDataLayer.exe
C:PROGRA~1NokiaNokia PC Suite 6TrayApplication.exe
C:ProgrammerInternet Exploreriexplore.exe
c:progra~1intern~1iexplore.exe
C:ProgrammeriPodiniPodService.exe
C:PROGRA~1FLLESF~1PCSuiteServicesServiceLayer.exe
C:ProgrammerInternet Exploreriexplore.exe
C:Documents and SettingsMathiasSkrivebordHijackThis.exe
R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar =
http://www.caakidvwopfv.com[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.oyfibadgbenazulp.com[...]
R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) =
http://red.clientapps.yahoo.com[...]
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {AC1926F2-1A96-E041-B21D-0A3016B3625E} - C:DOCUME~1HenrikAPPLIC~1MathSize01HelpGrey.exe
O2 - BHO: (no name) - {F7DAD354-8748-E419-E424-11D6D266FA92} - C:DOCUME~1MathiasAPPLIC~1MathSize01HelpGrey.exe
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [vptray] C:PROGRA~1SYMANT~1SYMANT~1vptray.exe
O4 - HKLM..Run: [NeroCheck] C:WINDOWSsystem32NeroCheck.exe
O4 - HKLM..Run: [InCD] C:ProgrammeraheadInCDInCD.exe
O4 - HKLM..Run: [WheelMouse] C:PROGRA~1A4TechMouseAmoumain.exe
O4 - HKLM..Run: [CheckMedi8or] C:ProgrammerMediator 7 ProCheckNewUser.exe
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [TkBellExe] "C:ProgrammerFælles filerRealUpdate_OB
ealsched.exe" -osboot
O4 - HKLM..Run: [Multi Scr Bend Gram] C:Documents and SettingsAll UsersApplication DataVgaAdminMultiScrCornFrag.exe
O4 - HKLM..Run: [QuickTime Task] "C:ProgrammerQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [iTunesHelper] C:ProgrammeriTunesiTunesHelper.exe
O4 - HKLM..Run: [DataLayer] C:PROGRA~1FLLESF~1PCSuiteDataLayerDataLayer.exe
O4 - HKLM..Run: [PCSuiteTrayApplication] C:PROGRA~1NokiaNokia PC Suite 6TrayApplication.exe
O4 - HKLM..Run: [CTRegRun] C:WINDOWSCTRegRun.EXE
O4 - HKLM..Run: [transbalmoneplan] C:Documents and SettingsAll UsersApplication Datacreative dart trans balmfileoption.exe
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [soft loud] C:DOCUME~1MathiasAPPLIC~1Thatbalmdogsite okay.exe
O4 - Global Startup: Microsoft Office.lnk = C:ProgrammerMicrosoft OfficeOffice10OSA.EXE
O8 - Extra context menu item: &Google Search - res://c:programmergoogleGoogleToolbar3.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:programmergoogleGoogleToolbar3.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:programmergoogleGoogleToolbar3.dll/cmcache.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:programmergoogleGoogleToolbar3.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:programmergoogleGoogleToolbar3.dll/cmtrans.html
O8 - Extra context menu item: Web Rebates - file://C: ProgrammerWeb_RebatesSy1150Tp1150scri1150a.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengermsmsgs.exe
O10 - Broken Internet access because of LSP provider 'osmim.dll' missing
O12 - Plugin for .bcf: C:ProgrammerInternet ExplorerPluginsNPBelv32.dll
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -
http://ak.imgfarm.com[...]
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540006} (CInstall Class) -
http://www.errorguard.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://messenger.zone.msn.com[...]
O17 - HKLMSystemCCSServicesVxDMSTCP: Domain = mydomain.com
O17 - HKLMSystemCCSServicesTcpip..{0A098731-0CFC-41FA-A645-CE7C5F5F863D}: NameServer = 62.61.130.1,62.61.131.1
O17 - HKLMSystemCS1ServicesVxDMSTCP: Domain = mydomain.com
O17 - HKLMSystemCS1ServicesTcpip..{0A098731-0CFC-41FA-A645-CE7C5F5F863D}: NameServer = 62.61.130.1,62.61.131.1
O17 - HKLMSystemCS2ServicesVxDMSTCP: Domain = mydomain.com
O17 - HKLMSystemCS2ServicesTcpip..{0A098731-0CFC-41FA-A645-CE7C5F5F863D}: NameServer = 62.61.130.1,62.61.131.1
O23 - Service: DefWatch - Symantec Corporation - C:ProgrammerSymantec_Client_SecuritySymantec AntiVirusDefWatch.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:ProgrammeriPodiniPodService.exe
O23 - Service: Symantec AntiVirus Client - Symantec Corporation - C:ProgrammerSymantec_Client_SecuritySymantec AntiVirusRtvscan.exe
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:WINDOWSSystem32
vsvc32.exe
--