HijackThis Logfil, nogen der vil kigge igennem ?
HejsaJeg vil blive meget glad hvis der var en der gad kigge min log igennem.
Jeg har før jeg kørte loggen scannet med:
Ad-aware
Spy bot searh and destroy
Ewido
Norman antivirus
ALLE full updateret.
her kommer loggen:
Logfile of HijackThis v1.99.1
Scan saved at 19:33:18, on 24-11-2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSSYSTEM32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:ProgrammerAheadInCDInCDsrv.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSExplorer.EXE
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerRealUpdate_OB ealsched.exe
C:WINDOWSSOUNDMAN.EXE
C:ProgrammerAheadInCDInCD.exe
C:ProgrammerD-Toolsdaemon.exe
C:WINDOWSVM_STI.EXE
C:ProgrammerMessengerPlus! 3MsgPlus.exe
C:ProgrammeriTunesiTunesHelper.exe
C:ProgrammerQuickTimeqttask.exe
C:NormaninLH.EXE
C:WINDOWSsystem32ctfmon.exe
C:ProgrammerFælles filerAheadlibNMBgMonitor.exe
C:ProgrammerSkypePhoneSkype.exe
C:Programmerewidosecurity suiteewidoctrl.exe
C:ProgrammerHewlett-PackardDigital Imaginginhpohmr08.exe
C:ProgrammerHewlett-PackardDigital Imaginginhpotdd01.exe
C:ProgrammerMicrosoft OfficeOFFICE11ONENOTEM.EXE
C:ProgrammerFælles filerMicrosoft SharedVS7Debugmdm.exe
C:ProgrammerHewlett-PackardDigital Imaginginhpoevm08.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:NormanNpfBINNPFSVICE.EXE
C:Normaninanda.exe
C:WINDOWSsystem32 vsvc32.exe
C:WINDOWSSystem32svchost.exe
C:ProgrammeriPodiniPodService.exe
C:NormanNvcBINNIP.EXE
C:NormanNpfBIN pfmsg2.exe
C:NormanNvcBINNVCSCHED.EXE
C:NormanNvcin vcoas.exe
C:NormaninNJEEVES.EXE
C:NormanNvcBIN ipsvc.exe
C:WINDOWSSystem32alg.exe
C:NormanNvcincclaw.exe
C:ProgrammerMicrosoft AntiSpywaregcasDtServ.exe
C:ProgrammerMicrosoft AntiSpywaregcasServ.exe
C:WINDOWSsystem32wdfmgr.exe
C:WINDOWSsystem32wuauclt.exe
C:Documents and SettingsMichel MooreSkrivebordHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:ProgrammerAdobeAcrobat 7.0ActiveXAcroIEHelper.dll
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:ProgrammerXiNetTransport 2NTIEHelper.dll
O4 - HKLM..Run: [TkBellExe] "C:ProgrammerFælles filerRealUpdate_OB ealsched.exe" -osboot
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 - HKLM..Run: [InCD] C:ProgrammerAheadInCDInCD.exe
O4 - HKLM..Run: [DAEMON Tools-1033] "C:ProgrammerD-Toolsdaemon.exe" -lang 1033
O4 - HKLM..Run: [BigDogPath] C:WINDOWSVM_STI.EXE USB PC Camera 301P
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessengerPlus! 3MsgPlus.exe"
O4 - HKLM..Run: [iTunesHelper] "C:ProgrammeriTunesiTunesHelper.exe"
O4 - HKLM..Run: [QuickTime Task] "C:ProgrammerQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [Norman ZANDA] C:NormaninLH.EXE /LOAD /SPLASH
O4 - HKLM..RunOnce: [WMC_RebootCheck] C:WINDOWSinfunregmp2.exe /FixUps
O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [ObjectDock] -
O4 - HKCU..Run: [DirectX shell driver] C:WINDOWSsammp32.exe
O4 - HKCU..Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:ProgrammerFælles filerAheadlibNMBgMonitor.exe"
O4 - HKCU..Run: [MessengerPlus3] "C:ProgrammerMessengerPlus! 3MsgPlus.exe" /WinStart
O4 - HKCU..Run: [Skype] "C:ProgrammerSkypePhoneSkype.exe" /nosplash /minimized
O4 - HKCU..Run: [msnmsgr] "C:ProgrammerMSN Messengermsnmsgr.exe" /background
O4 - HKCU..RunOnce: [MPlayer2_FixUp] C:WINDOWSinfunregmp2.exe /Fixups
O4 - Startup: Adobe Gamma.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:ProgrammerAdobeAcrobat 7.0Reader eader_sl.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Hurtig start af Microsoft Office OneNote 2003.lnk = C:ProgrammerMicrosoft OfficeOFFICE11ONENOTEM.EXE
O6 - HKCUSoftwarePoliciesMicrosoftInternet ExplorerControl Panel present
O8 - Extra context menu item: Download alle med Net Transport - C:ProgrammerXiNetTransport 2NTAddList.html
O8 - Extra context menu item: Download med Net Transport - C:ProgrammerXiNetTransport 2NTAddLink.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:PROGRA~1MICROS~3OFFICE11EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:ProgrammerJavajre1.5.0_04in pjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:ProgrammerJavajre1.5.0_04in pjpi150_04.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~3OFFICE11REFIEBAR.DLL
O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:WINDOWSsystem32Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgrammerMessengerMSMSGS.EXE
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStat...
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.c...
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStat...
O16 - DPF: {8EC18CE2-D7B4-11D2-88C8-006008A717FD} (NCSView Class) - http://www.kortal.dk/ecwplugins/ncs.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetu...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab312...
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/insta...
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safek...
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab3126...
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:PROGRA~1MSNMES~1msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:ProgrammerFælles filerAdobe Systems SharedServiceAdobelmsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:Programmerewidosecurity suiteewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:ProgrammerFælles filerInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:ProgrammerAheadInCDInCDsrv.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:ProgrammeriPodiniPodService.exe
O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:NormanNvcBIN ipsvc.exe
O23 - Service: Norman NJeeves - Unknown owner - C:NormaninNJEEVES.EXE
O23 - Service: Norman Type-R - Unknown owner - C:NormanNpfBINNPFSVICE.EXE
O23 - Service: Norman ZANDA - Unknown owner - C:Normaninanda.exe
O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:NormanNvcin vcoas.exe
O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Norman Data Defense Systems - C:NormanNvcBINNVCSCHED.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32 vsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSsystem32HPZipm12.exe