Avatar billede danishmaggot Nybegynder
25. april 2006 - 19:35 Der er 7 kommentarer og
1 løsning

Spyware og muligvis virus

Hej Experter.

Så er jeg på den igen :/ Jeg har en del spyware og noget skidt liggende, så jeg har scannet i fejlsikret med ewido,drweb og hijackthis. Her er loggen fra ewido og hijack, håber i lige vil kigge på den :)

---------------------------------------------------------
ewido anti-malware - Scanningsrapport
---------------------------------------------------------

+ Oprettet den:            11:52:18, 25-04-2006
+ Rapport-Checksum:        8051BB31

+ Scanningsresultat:
    [228] VM_00DB0000 -> Downloader.Agent.uj : Fejl under renselse
    [252] VM_00C40000 -> Downloader.Agent.uj : Fejl under renselse
    [956] VM_00A20000 -> Downloader.Agent.uj : Fejl under renselse
    [1052] VM_003F0000 -> Downloader.Agent.uj : Fejl under renselse
    [1072] VM_003A0000 -> Downloader.Agent.uj : Fejl under renselse
    [1144] VM_00380000 -> Downloader.Agent.uj : Fejl under renselse
    :mozilla.10:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Doubleclick : Renset med backup
    :mozilla.13:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.14:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.15:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.16:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.17:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.18:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.20:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Mediaplex : Renset med backup
    :mozilla.64:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.65:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.70:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.71:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.74:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.75:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.76:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.77:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.84:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Enhance : Renset med backup
    :mozilla.119:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Atdmt : Renset med backup
    :mozilla.123:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.124:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.125:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.129:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Zedo : Renset med backup
    :mozilla.130:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Zedo : Renset med backup
    :mozilla.131:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Zedo : Renset med backup
    :mozilla.132:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Zedo : Renset med backup
    :mozilla.137:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Weborama : Renset med backup
    :mozilla.146:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.147:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.148:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.149:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.151:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.152:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.179:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Valueclick : Renset med backup
    :mozilla.226:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Overture : Renset med backup
    :mozilla.235:C:\Documents and Settings\Thomas\Application Data\Mozilla\Firefox\Profiles\bihqgjhm.default\cookies.txt -> TrackingCookie.Epilot : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@2o7[1].txt -> TrackingCookie.2o7 : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@ads1.revenue[1].txt -> TrackingCookie.Revenue : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@adtech[2].txt -> TrackingCookie.Adtech : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@advertisingcom.122.2o7[1].txt -> TrackingCookie.2o7 : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@as1.falkag[2].txt -> TrackingCookie.Falkag : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@bluestreak[2].txt -> TrackingCookie.Bluestreak : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@burstnet[2].txt -> TrackingCookie.Burstnet : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@c1.zedo[1].txt -> TrackingCookie.Zedo : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@casalemedia[2].txt -> TrackingCookie.Casalemedia : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@casinotropez[1].txt -> TrackingCookie.Casinotropez : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@clickbank[1].txt -> TrackingCookie.Clickbank : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@com[1].txt -> TrackingCookie.Com : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@data4.perf.overture[2].txt -> TrackingCookie.Overture : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@hotlog[1].txt -> TrackingCookie.Hotlog : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@ivwbox[1].txt -> TrackingCookie.Ivwbox : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@login.tracking101[2].txt -> TrackingCookie.Tracking101 : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@revenue[2].txt -> TrackingCookie.Revenue : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@sel.as-eu.falkag[2].txt -> TrackingCookie.Falkag : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@serving-sys[2].txt -> TrackingCookie.Serving-sys : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@stats.adbrite[1].txt -> TrackingCookie.Adbrite : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@www.directnetadvertising[1].txt -> TrackingCookie.Directnetadvertising : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@yadro[2].txt -> TrackingCookie.Yadro : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@z1.adserver[1].txt -> TrackingCookie.Adserver : Renset med backup
    C:\Documents and Settings\Thomas\Cookies\thomas@zedo[2].txt -> TrackingCookie.Zedo : Renset med backup
    C:\Documents and Settings\Thomas\Lokale indstillinger\Temporary Internet Files\Content.IE5\TDG2OVH3\ErrorSafeFreeInstall_dk[1].cab/UERSK_0001_N68M2202NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Renset med backup
    C:\RECYCLER\NPROTECT\00035133.dll -> Adware.CASClient : Renset med backup
    :mozilla.6:C:\RECYCLER\NPROTECT\00035325.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.7:C:\RECYCLER\NPROTECT\00035325.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.7:C:\RECYCLER\NPROTECT\00035326.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.9:C:\RECYCLER\NPROTECT\00035326.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.10:C:\RECYCLER\NPROTECT\00035326.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.11:C:\RECYCLER\NPROTECT\00035326.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.14:C:\RECYCLER\NPROTECT\00035326.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.6:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.7:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.9:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.10:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.11:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.12:C:\RECYCLER\NPROTECT\00035328.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.11:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.12:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.13:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.14:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.15:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.16:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.20:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Doubleclick : Renset med backup
    :mozilla.27:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Mediaplex : Renset med backup
    :mozilla.35:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.36:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.38:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.48:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.49:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.50:C:\RECYCLER\NPROTECT\00035353.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.8:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.10:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.11:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.13:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.16:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.17:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.29:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Mediaplex : Renset med backup
    :mozilla.30:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Doubleclick : Renset med backup
    :mozilla.64:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.65:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.66:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.67:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.71:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.72:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.82:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.83:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.84:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.85:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.86:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.87:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.88:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.89:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.90:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.91:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.147:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Enhance : Renset med backup
    :mozilla.165:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Valueclick : Renset med backup
    :mozilla.167:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Overture : Renset med backup
    :mozilla.183:C:\RECYCLER\NPROTECT\00035357.MOZ -> TrackingCookie.Epilot : Renset med backup
    :mozilla.7:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.8:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Mediaplex : Renset med backup
    :mozilla.9:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Doubleclick : Renset med backup
    :mozilla.11:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.12:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.13:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.14:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.15:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Yieldmanager : Renset med backup
    :mozilla.64:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Atdmt : Renset med backup
    :mozilla.79:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.80:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.81:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Targetnet : Renset med backup
    :mozilla.85:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.86:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adbrite : Renset med backup
    :mozilla.88:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.89:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.90:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.91:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Zedo : Renset med backup
    :mozilla.94:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.95:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.96:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.97:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.98:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.101:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Fastclick : Renset med backup
    :mozilla.111:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Weborama : Renset med backup
    :mozilla.124:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.126:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.127:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.128:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.129:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.130:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Adorigin : Renset med backup
    :mozilla.135:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Enhance : Renset med backup
    :mozilla.163:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Valueclick : Renset med backup
    :mozilla.212:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Overture : Renset med backup
    :mozilla.224:C:\RECYCLER\NPROTECT\00035360.MOZ -> TrackingCookie.Epilot : Renset med backup


::Rapport slut

-----------------------------------------------------------------


Logfile of HijackThis v1.99.1
Scan saved at 11:53:18, on 25-04-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Thomas\Skrivebord\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ccApp] C:\Programmer\Fælles filer\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ccRegVfy] C:\Programmer\Fælles filer\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] C:\Programmer\Creative\SBLive\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Programmer\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmer\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Programmer\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Programmer\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &Google-søgning - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Oversæt engelsk ord - res://C:\Programmer\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Lignende sider - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Tilbage via links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Øjebliksbillede af side i cache - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O12 - Plugin for .spop: C:\Programmer\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1142880812890
O17 - HKLM\System\CCS\Services\Tcpip\..\{839630FD-D7F3-418F-A064-022221000C80}: NameServer = 85.255.113.125,85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\..\{A33F3D11-F1ED-4A4F-A5D4-8640A570045E}: NameServer = 85.255.113.125,85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\..\{C876B28C-E1AE-406E-A659-7FA03056EC76}: NameServer = 85.255.113.125,85.255.112.92
O18 - Filter: text/html - {994D478A-45D0-4DB4-AE77-288B1E346E99} - C:\Programmer\FCAdvice\FCAdvice.dll
O20 - AppInit_DLLs: Runner.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccPwdSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Programmer\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmer\Fælles filer\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Programmer\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programmer\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FLLESF~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\Security Center\SymWSC.exe
Avatar billede levithan Nybegynder
25. april 2006 - 19:41 #1
kigger
Avatar billede levithan Nybegynder
25. april 2006 - 19:57 #2
Læs hele tåden igennem først inden du går igang.

********************************
hent FixWareout her:
http://downloads.subratam.org/Fixwareout.exe

Save it to your desktop and run it. Click Next, then Install, then make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your system may take longer than usual to load; this is normal.

When your system reboots, follow the prompts. Afterwards, HijackThis will launch. Please click Scan, and check the following items, if they are there:

O17 - HKLM\System\CCS\Services\Tcpip\..\{839630FD-D7F3-418F-A064-022221000C80}: NameServer = 85.255.113.125,85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\..\{A33F3D11-F1ED-4A4F-A5D4-8640A570045E}: NameServer = 85.255.113.125,85.255.112.92
O17 - HKLM\System\CCS\Services\Tcpip\..\{C876B28C-E1AE-406E-A659-7FA03056EC76}: NameServer = 85.255.113.125,85.255.112.92

If they aren't there, just close HJT.

Click Fix Checked. Close HijackThis, and click OK to proceed.

At the end of the fix, you may need to restart your computer again.

After restart, if you have any connection problems, do this:

Please go to Start -> Control Panel, and choose Network Connections. Then right click on your default connection, usually Local Area Connection or Dial-up Connection if you are using Dial-up, and left click on properties. Double-click on the Internet Protocol (TCP/IP) item and select the radio button that says Obtain DNS servers automatically. Click OK twice, and restart your computer.

******************************

hijackthis

1) Boot into Safe Mode to ensure nothing is running in the background

2) Run Hijackthis and remove the following items

O18 - Filter: text/html - {994D478A-45D0-4DB4-AE77-288B1E346E99} - C:\Program Files\FCAdvice\FCAdvice.dll
O20 - AppInit_DLLs: Runner.dll

3) Open My Computer, Drive C, Program Files

4) Right-click on the FCADVICE folder and delete it

5) Open My Computer, Drive C, Windows, System32 folder

6) Find and delete the Runner.dll file by right-clicking on it and choosing Delete

7) Restart your computer in Normal mode and run Hijackthis again to make sure its gone.

*******************

post den ny log fra hijackhis ind
Avatar billede danishmaggot Nybegynder
25. april 2006 - 20:20 #3
Her en den nye log:

Logfile of HijackThis v1.99.1
Scan saved at 20:17:27, on 25-04-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Thomas\Skrivebord\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ccApp] C:\Programmer\Fælles filer\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ccRegVfy] C:\Programmer\Fælles filer\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] C:\Programmer\Creative\SBLive\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Programmer\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmer\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Programmer\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Programmer\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &Google-søgning - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Oversæt engelsk ord - res://C:\Programmer\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Lignende sider - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Tilbage via links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Øjebliksbillede af side i cache - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O12 - Plugin for .spop: C:\Programmer\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1142880812890
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccPwdSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Programmer\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmer\Fælles filer\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Programmer\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programmer\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FLLESF~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\Security Center\SymWSC.exe
Avatar billede levithan Nybegynder
25. april 2006 - 20:57 #4
så er din log ren :D
Avatar billede danishmaggot Nybegynder
25. april 2006 - 21:09 #5
Kanon, tak skal du have. Smid et svar så giver jeg point.
Avatar billede tonnybrandt Nybegynder
26. april 2006 - 01:04 #6
Loggen er taget i fejlsikret tilstand.
Du bør lægge en log fra normal tilstand, da ikke alt kan ses i en log fra fejlsikret tilstand.
Avatar billede danishmaggot Nybegynder
26. april 2006 - 01:25 #7
Logfile of HijackThis v1.99.1
Scan saved at 01:24:10, on 26-04-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\Fælles filer\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Programmer\ewido anti-malware\ewidoguard.exe
C:\Programmer\Norton AntiVirus\navapsvc.exe
C:\Programmer\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Programmer\Fælles filer\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\Fælles filer\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Programmer\ATI Technologies\ATI.ACE\cli.exe
C:\Programmer\QuickTime\qttask.exe
C:\Programmer\D-Tools\daemon.exe
C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\ATI Technologies\ATI.ACE\CLI.exe
C:\Programmer\VIA\RAID\raid_tool.exe
C:\Programmer\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\rsvp.exe
D:\ABC\abc.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\MSN Messenger\msnmsgr.exe
C:\Documents and Settings\Thomas\Skrivebord\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmer\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmer\google\googletoolbar1.dll
O4 - HKLM\..\Run: [ccApp] C:\Programmer\Fælles filer\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ccRegVfy] C:\Programmer\Fælles filer\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] C:\Programmer\Creative\SBLive\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Programmer\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmer\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmer\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Programmer\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmer\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Programmer\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Programmer\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &Google-søgning - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Oversæt engelsk ord - res://C:\Programmer\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Lignende sider - res://C:\Programmer\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Tilbage via links - res://C:\Programmer\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Øjebliksbillede af side i cache - res://C:\Programmer\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmer\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programmer\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe (file missing)
O12 - Plugin for .spop: C:\Programmer\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1142880812890
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\ccPwdSvc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Programmer\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmer\Fælles filer\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Programmer\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Programmer\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FLLESF~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programmer\Fælles filer\Symantec Shared\Security Center\SymWSC.exe
Avatar billede levithan Nybegynder
26. april 2006 - 08:38 #8
Din log er ren
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester