Avatar billede comeasyouare Nybegynder
04. januar 2015 - 14:52 Der er 17 kommentarer og
1 løsning

Mulig virus, DNS problemer

Hej

Jeg sidder og roder med naboens pc, som er/har været ramt af forskelligt vira. Det gjorde at den slet ikke kunne komme på nettet har taget det jeg kunne med CCLeaner og Malwarebytes anti-malware.

Den vil stadig ikke gå på nettet. Det ser umiddelbart ud til at det er et DNS problem.
Jeg er forbundet til nettet via WIFI på min telefon. Herfra kan jeg pinge gateway og min egen faste ip addresse(ADSL forbindelse her i huset.), men jeg kan ikke pinge f.eks dr.dk. Je ghar set under tcp/ip configuration for net kortet, og den står til automatisk settings for ipadresse og DNS.

Nogen forslag?
Avatar billede Slettet bruger
04. januar 2015 - 15:16 #1
dns og ip kommer fra udbyderen, og står i routeren.
Avatar billede comeasyouare Nybegynder
04. januar 2015 - 15:31 #2
Det gør vel ikke nogen forskel, alle andre enheder på nettet har ikke noget problem med at komme på nettet. Og jeg tror bare at det er dns, da jeg kan pinge ip addresser og ikke dr.dk f.eks.
Avatar billede CRKrogh Ekspert
04. januar 2015 - 18:20 #3
Hej.

  Malware kan sagtens "overstyre" DNS-info fra din router (som den jo så igen har modtaget fra din internetudbyder).

  Prøv lige at sætte DNS manuelt på netværksforbindelsen til [8.8.8.8] og se, om ikke du så kan navneopløse igen?

De bedste hilsner
Avatar billede comeasyouare Nybegynder
04. januar 2015 - 18:42 #4
Det gjorde ingen forskel.

Bare for at vi er enige:
Jeg har sat primær dns for  tcp ip4 for det trådløse netkort til 8.8.8.8. Det er stadig samme resultat. hvis jeg laver ping dr.dk får jeg:
Ping-anmodningen kunne ikke finde værten dr.dk. KOntroller navmet og prøv igen.....
Avatar billede CRKrogh Ekspert
04. januar 2015 - 19:10 #5
Prøv at gå ud i en kommando-prompt og skriv "nslookup" - hvilken DNS-server spørger den så?
Avatar billede comeasyouare Nybegynder
04. januar 2015 - 19:24 #6
Standardserver: UnKnown
Address: 8.8.8.8
Avatar billede CRKrogh Ekspert
04. januar 2015 - 19:48 #7
Og du kan pinge både gateway og DNS-serverens adresse?
Avatar billede comeasyouare Nybegynder
04. januar 2015 - 19:54 #8
Jeps
Avatar billede 220661 Ekspert
04. januar 2015 - 21:00 #9
Ved ikke om det kan hjælpe på dit problem, men prøv fra anden pc at hente AdwCleaner og scan med den på den syge pc.

Prøv at hente AdwCleaner her:
http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner
Start programmet, og når det er startet trykker du på [Scan]
Pc scannes, og ved endt scanning skal du trykke på [Clean].
Og derefter (automatisk) genstart...
Tilbage fra genstart kommer en log, som du gerne må kopiere herind.
Mht.: Vista og Windows 7/8 - Højreklik på filen - Kør som Administrator.
Avatar billede dronningen Novice
06. januar 2015 - 17:20 #10
Avatar billede f-arn Guru
06. januar 2015 - 18:20 #11
Hvad var det for en virus(malware), og har du prøvet ipconfig /flushdns?
Avatar billede comeasyouare Nybegynder
06. januar 2015 - 19:05 #12
ipconfig /flushdns gjorde ikke nogen forskel.

I min iver for at få det fjernet hæftede jeg mig egentlig ikke ved hvad det var for en virus, kørte bare malware bytes.
Det jeg hæftede mig ved, var at der i internet indstillinger for LAN sat til at bruge et script til automatisk configuration, og selvom jeg ændrede det til "Automatisk registrering af indstillinger", var der noget andet der stod og overskrev det, for det havde altid ændret sig tilbage når jeg gik i indstillinger igen
Avatar billede comeasyouare Nybegynder
06. januar 2015 - 19:32 #13
Det gjorde en forskel med AdwCleaner!!!
Her er loggen:

# AdwCleaner v4.106 - Report created 06/01/2015 at 19:19:58
# Updated 21/12/2014 by Xplode
# Database : 2014-12-21.4 [Local]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Søren Hagelskjær - SØRENHAGELSKJÆR
# Running from : C:\Users\Søren Hagelskjær\Desktop\adwcleaner_4.106.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : BackupStack
[#] Service Deleted : DatamngrCoordinator
[#] Service Deleted : F06DEFF2-5B9C-490D-910F-35D3A9119622
Service Deleted : sbmntr
Service Deleted : SPBIUpd
[#] Service Deleted : SPBIUpdd
Service Deleted : torchcrashhandler
Service Deleted : UniversalUpdater
Service Deleted : WindowsMangerProtect
[#] Service Deleted : b786bdb3c67d
[#] Service Deleted : SWUpdater
[#] Service Deleted : fc67e7a0
[#] Service Deleted : webinstrNewH

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
[!] Folder Deleted : C:\ProgramData\DataMngr
Folder Deleted : C:\ProgramData\Registry Helper
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\torchcrashhandler
Folder Deleted : C:\ProgramData\WindowsMangerProtect
[!] Folder Deleted : C:\ProgramData\Datamngr
Folder Deleted : C:\ProgramData\8268095611313269647
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkypEmoticons
Folder Deleted : C:\Program Files (x86)\Driver Pro
Folder Deleted : C:\Program Files (x86)\globalUpdate
[!] Folder Deleted : C:\Program Files (x86)\Movies App
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\Universal Updater
Folder Deleted : C:\Program Files (x86)\YTDownloader
Folder Deleted : C:\Program Files (x86)\StormWatch
Folder Deleted : C:\Program Files (x86)\BuyNsave
Folder Deleted : C:\Program Files (x86)\Optimizer Pro 3.13
Folder Deleted : C:\Users\SRENHA~1\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\iLivid
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\torch
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\StormWatch
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\Weather_Protector_LLC
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\LocalLow\DataMngr
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\LocalLow\searchresultstb
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\AnyProtectEx
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\SkypEmoticons
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\mystartsearch
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch
Folder Deleted : C:\Users\Søren Hagelskjær\Documents\Optimizer Pro
File Deleted : C:\Windows\SysWOW64\RegistryHelperLM.ocx
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StormWatch.lnk
File Deleted : C:\Users\Søren Hagelskjær\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StormWatchApp.lnk
File Deleted : C:\Users\Søren Hagelskjær\Desktop\MyPC Backup.lnk
File Deleted : C:\Users\Søren Hagelskjær\Desktop\Sync Folder.lnk

***** [ Scheduled Tasks ] *****

Task Deleted : APSnotifierPP1
Task Deleted : APSnotifierPP2
Task Deleted : APSnotifierPP3
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : LaunchSignup
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SMupdate1
Task Deleted : SPDriver
Task Deleted : YTDownloader

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaafeopjhkcolncjbedbhofpocmdbn
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [se]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Key Deleted : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\torch.exe
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\TorchVLC
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Value Deleted : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{F141E8D0-D54F-4EA2-B8E6-8211756190D6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKCU\Software\AnyProtect
Key Deleted : HKCU\Software\APNDTX
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\Driver Pro
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\StormWatchApp
Key Deleted : HKCU\Software\YTDownloader
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\Software\BlockAndSurf
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\StormWatch
Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware
Key Deleted : HKLM\SOFTWARE\YTDownloader
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\ilivid
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\StormWatch
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SkypEmoticons_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{842C4394-47F7-60DE-480B-C09116B63559}
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\YTDownloader
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17496

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v39.0.2171.71

[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.searchmania.info/?l=1&q={searchTerms}&pid=3482&r=2014/12/11&hid=11813707707284025404&lg=EN&cc=DK&unqvl=70
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : flpcjncodpafbgdpnkljologafpionhb

-\\ Opera v26.0.1656.32

[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.searchmania.info/?l=1&q={searchTerms}&pid=3482&r=2014/12/11&hid=11813707707284025404&lg=EN&cc=DK&unqvl=70
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}
[C:\Users\Søren Hagelskjær\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1418326875&from=amt&uid=HitachiXHTS545032B9A300_101031PD3308ETEG5GVJX&q={searchTerms}

*************************

AdwCleaner[R0].txt - [17794 octets] - [06/01/2015 19:08:31]
AdwCleaner[S0].txt - [16056 octets] - [06/01/2015 19:19:58]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [16117 octets] ##########
Avatar billede 220661 Ekspert
06. januar 2015 - 20:17 #14
Det var da rigtig godt.
Den fik da også fjernet en del skrammel :-)

Kan ikke lige pege på hviken der var synderen, men kan se at indstillingerne i IE er blevet gendannet. Der er mange kendte gengangere i loggen, men for mig også en del ukendte.
Dem har jeg så ikke lige søgt på i denne omgang.

Håber den virker godt nok nu?
Avatar billede 220661 Ekspert
06. januar 2015 - 20:53 #15
Måske man lige skulle prøve at køre en tur endnu med CCleaner og Malwarebytes, for at tjekke op på kørslen med AdwCleaner.
Avatar billede comeasyouare Nybegynder
06. januar 2015 - 20:53 #16
Det ser fint ud. Tusind Tak for hjælpen. Lægger du et svar så du kan få point.
Avatar billede comeasyouare Nybegynder
07. januar 2015 - 16:35 #17
Det så fint ud :)

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4052

Windows 6.1.7601 Service Pack 1
Internet Explorer 9.11.9600.17501

06-01-2015 23:35:49
mbam-log-2015-01-06 (23-35-49).txt

Skanningstype: Fuldstændig skanning (C:\|D:\|)
Objekter skannet: 302736
Tid gået: 1 time(e), 30 minut(ter), 49 sekund(er)

Hukommelses Processorer Inficeret: 0
Hukommelses Moduler Inficeret: 0
Registreringsdatabasenøgler Inficeret: 0
Registreringsdatabaseværdier Inficeret: 0
Registreringsdatabasedata Objekter Inficeret: 0
Inficerede Mapper: 0
Inficerede Filer: 0

Hukommelses Processorer Inficeret:
(Ingen skadelige objekter blev fundet)

Hukommelses Moduler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasenøgler Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabaseværdier Inficeret:
(Ingen skadelige objekter blev fundet)

Registreringsdatabasedata Objekter Inficeret:
(Ingen skadelige objekter blev fundet)

Inficerede Mapper:
(Ingen skadelige objekter blev fundet)

Inficerede Filer:
(Ingen skadelige objekter blev fundet)
Avatar billede 220661 Ekspert
07. januar 2015 - 17:16 #18
Velbekomme.
Lægger et svar.
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester