Avatar billede martinellekilde Nybegynder
09. februar 2007 - 19:40 Der er 12 kommentarer og
1 løsning

scvhost.exe kan ikke findes.

Når jeg starter min computer op, popper der en meddelse der ser således ud:

"Windows kan ikke finde 'scvhost.exe'. Kontroller, at du skrev nanvet korrekt og forsøg derefter igen. Hvis du vil søge på en fil, skal du klikke på knappen Start og derefter klikke på Søg."

Så klikker jeg på OK, og derefter kommer denne meddelse...

"Det lykkedes ikke at indlæse eller køre C:\\WINDOWS\scvhost.exe, der er angivet i registreringsdatabasen. Kontroller, at filen findes på computeren eller fjern referencen til den i registreringsdatabasen."

Nu er mit spørgsmål så bare hvorfor den lige pludselig gør det?
jeg har prøvet at køre sfc /scannow, men der kræver den en cd, som jeg ikke har fået oprettet da jeg sidder på en HP bærbar og  der var ingen skiver med den da jeg købte den. De skiver man skal bruge er nogle man selv skal lave, åbentbart.

Men nu er det jo sådan at hvis jeg laver de cd'er så kopierer de jo bare sådan som registreringsdatabasen er ud lige nu, og der er jo det problem med svchost.exe, og vil jo derfor bare tage problemet med på cd'en.

Så hvad skal jeg gøre?

Hilsen den uheldige....

PS. Havde en ven til at rode med HiJackThis, og det var derefter at der var problemer, ved ikke om det har noget at skulle sige.
Avatar billede kabbak Professor
09. februar 2007 - 19:49 #1
Avatar billede haverslev Novice
09. februar 2007 - 20:02 #2
Hvis det er scvhost.exe, så udfør:
http://www.eksperten.dk/artikler/954
Avatar billede martinellekilde Nybegynder
09. februar 2007 - 20:08 #3
det er scvhost.exe der blvier spurgt om.. Prøver dine link
Avatar billede martinellekilde Nybegynder
09. februar 2007 - 20:09 #4
http://www.liutilities.com/products/wintaskspro/processlibrary/scvhost/
-----

Det link er en trial, og kan kun fixe 15 af min åbentbart "115 errors"..
Avatar billede kabbak Professor
09. februar 2007 - 20:18 #5
følg haverslevs link
Avatar billede martinellekilde Nybegynder
09. februar 2007 - 21:28 #6
ok.. smider min log ind om lidt
Avatar billede martinellekilde Nybegynder
10. februar 2007 - 00:34 #7
Log fil for SUPERAntiSpyware
--------------------------------------------------------------------
SUPERAntiSpyware Scan Log
Generated 02/10/2007 at 00:24 AM

Application Version : 3.5.1016

Core Rules Database Version : 3181
Trace Rules Database Version: 1191

Scan type      : Complete Scan
Total Scan Time : 00:41:05

Memory items scanned      : 169
Memory threats detected  : 2
Registry items scanned    : 6878
Registry threats detected : 10
File items scanned        : 57674
File threats detected    : 162

Unclassified.Unknown Origin/System
    C:\WINDOWS\SYSTEM32\JKKLL.DLL
    C:\WINDOWS\SYSTEM32\JKKLL.DLL
    Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\jkkll

Trojan.Downloader-WBRock
    C:\WINDOWS\SYSTEM32\YAYAWVV.DLL
    C:\WINDOWS\SYSTEM32\YAYAWVV.DLL
    Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\yayawvv

Trojan.WinFixer
    HKLM\Software\Classes\CLSID\{F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF}
    HKCR\CLSID\{F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF}
    HKCR\CLSID\{F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF}\InprocServer32
    HKCR\CLSID\{F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF}\InprocServer32#ThreadingModel
    HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF}

Adware.Tracking Cookie
    C:\Documents and Settings\Martin\Cookies\martin@1071890404[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ads.humornsex[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@tribalfusion[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@serving-sys[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@usenext[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@yourmedia[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@list[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@tradedoubler[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@ehg-deltatre.hitbox[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@as-eu.falkag[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@cpvfeed[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@m1.webstats4u[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@vhost.oddcast[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[4].txt
    C:\Documents and Settings\Martin\Cookies\martin@casalemedia[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@mb[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@adserver.easyad[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.searchenginetracking[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@blockbuster.112.2o7[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@stats1.reliablestats[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad1.emediate[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.burstnet[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@banner.bolddk[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@id1113[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@track.adform[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@flixbanner.bearshare[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@clicktorrent[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@targetnet[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@estat[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@sextracker[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@adserver.adreactor[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adrevolver[3].txt
    C:\Documents and Settings\Martin\Cookies\martin@statcounter[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@data2.perf.overture[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad.abum[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@maxserving[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adtech[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@mb[4].txt
    C:\Documents and Settings\Martin\Cookies\martin@tacoda[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@spylog[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@1072556060[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@edge.ru4[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@admarketplace[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@doubleclick[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@partygaming.122.2o7[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.animalsex[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@audit.median[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adfair[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[3].txt
    C:\Documents and Settings\Martin\Cookies\martin@realmedia[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@xiti[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@496666666436666[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@rambler[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@zedo[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@ehg-sigames.hitbox[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@msnportal.112.2o7[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@as1.falkag[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.serials[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@toplist[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[7].txt
    C:\Documents and Settings\Martin\Cookies\martin@bluestreak[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@hitbox[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@fastclick[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@partypoker[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@atwola[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@tracking.notabenestats[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ads.rlcomics[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@as-us.falkag[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@mediametrics.mpsa[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@counter9.sextracker[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@media.fastclick[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[5].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.winantivirus[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@76711721[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@mtg.banneradministration[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@questionmarket[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@adrevolver[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@eaeacom.112.2o7[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@yadro[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@indextools[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@netmediagroup[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@programs.wegcash[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad.ifrance[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@mediaplex[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@revenue[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adinterax[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@offers.intermediainteractive[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@mb[5].txt
    C:\Documents and Settings\Martin\Cookies\martin@usenext[3].txt
    C:\Documents and Settings\Martin\Cookies\martin@ehg-nokiafin.hitbox[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@advertising[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@revsci[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@adbrite[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@perf.overture[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad1.clickhype[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@stat.onestat[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@oddcast[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@id1777[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@dk.winantivirus[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@atdmt[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad.yieldmanager[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@2o7[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@yieldmanager[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@drivecleaner[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@clickbank[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@image.masterstats[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ads.mediamayhemcorp[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@indexstats[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@stats[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.riverbelle[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ad.zanox[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@a[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@warlog[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adsrevenue[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@ads.estart[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.drivecleaner[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@bs.serving-sys[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@dk.drivecleaner[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@1071434493[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@www.humornsex[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@burstnet[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@stats.drivecleaner[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@counter1.sextracker[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@mb[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@cgi-bin[8].txt
    C:\Documents and Settings\Martin\Cookies\martin@focusin.ads.targetnet[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@server.iad.liveperson[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@networksolutions.112.2o7[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@e2.emediate[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@statse.webtrendslive[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@mtr.splash.sexsearch[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@adultfriendfinder[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@adultadworld[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@humornsex[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@winantivirus[2].txt
    C:\Documents and Settings\Martin\Cookies\martin@1068415716[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@centrebet.advertserve[1].txt
    C:\Documents and Settings\Martin\Cookies\martin@kinxxx[2].txt

Adware.Vundo Variant
    HKCR\CLSID\{68D5CF1D-EC5C-4BDD-A9EF-F0E517565D50}
    HKCR\CLSID\{68D5CF1D-EC5C-4BDD-A9EF-F0E517565D50}\InprocServer32
    HKCR\CLSID\{68D5CF1D-EC5C-4BDD-A9EF-F0E517565D50}\InprocServer32#ThreadingModel

Adware.VSToolbar
    C:\Program Files\VSAdd-in\VSAdd-in.#ll
    C:\Program Files\VSAdd-in

BearShare File Sharing Client
    C:\MY DOWLOADS\BEARSHARE.EXE

Trace.Known Threat Sources
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\2DS703O1\wav_banner[1].swf
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\C5S3WJ4V\tracking[1].js
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\C5S3WJ4V\checksoft[1].js
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\IVIT2TWT\ico1[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\C5S3WJ4V\index[3].htm
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\YXCBQVCF\ico4[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\YXCBQVCF\2006[1].htm
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\2DS703O1\2006[2].htm
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\YXCBQVCF\download2[1].htm
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\IVIT2TWT\logo[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\IVIT2TWT\ico5[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\ZEVHP53F\2006[1].htm
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\YXCBQVCF\top_pic2[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\YXCBQVCF\arrow[2].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\2DS703O1\spacer[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\2DS703O1\ico2[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\C5S3WJ4V\ico3[1].gif
    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\ZEVHP53F\index[1].htm
Avatar billede martinellekilde Nybegynder
10. februar 2007 - 00:35 #8
Logfil for Dr.Web
--------------------------------------------------------------
jkkll.dll    c:\windows\system32    Trojan.Virtumod    Will be cured after reboot.
webupdate.exe    c:\windows\system32    Win32.HLLW.MyBot    Deleted.
yayawvv.dll    c:\windows\system32    Trojan.Virtumod    Will be cured after reboot.
P2P Networkingp2p10C.EXE\data001    C:\Documents and Settings\Martin\Local Settings\Temp\P2P Networkingp2p10C.EXE    Adware.PeerNet   
P2P Networkingp2p10C.EXE    C:\Documents and Settings\Martin\Local Settings\Temp    Archive contains infected objects    Moved.
p2psetup.exe\data001    C:\Documents and Settings\Martin\Local Settings\Temp\p2psetup.exe    Adware.PeerNet   
p2psetup.exe    C:\Documents and Settings\Martin\Local Settings\Temp    Archive contains infected objects    Moved.
WinAntiVirusPro2006FreeInstall_dk[1].exe    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\2DS703O1    Trojan.DownLoader.10963    Deleted.
lo1[1]    C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\IVIT2TWT    Trojan.Virtumod    Deleted.
NAV071400.exe    C:\Documents and Settings\Martin\My Documents\McAfee 2007 Plus & Norton Antivirus 2007 Incl SERIAL & KEY & UPDATES AVAILABLE\No    Program.Ardamax    Renamed.
VSAdd-in.dll    C:\Program Files\VSAdd-in    Adware.TopSearch    Renamed.
A0028711.exe\data001    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP67\A0028711.exe    Adware.PeerNet   
A0028711.exe    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP67    Archive contains infected objects    Moved.
A0028715.dll    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP68    Adware.RXToolbar    Renamed.
A0028723.dll    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP68    Adware.Altnet    Renamed.
A0028724.exe    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP68    Adware.Altnet    Renamed.
A0001284.ocx    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP7    Trojan.Isbar.439    Deleted.
A0041207.exe    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP83    BackDoor.Generic.1453    Deleted.
A0044997.dll    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP85    Trojan.Virtumod    Deleted.
A0045184.dll    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP85    Trojan.Virtumod    Deleted.
A0048808.exe    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP87    Win32.HLLW.MyBot    Deleted.
A0048809.dll    C:\System Volume Information\_restore{8A6E0DCF-04FF-4752-8465-1C935F3B92FF}\RP87    Adware.TopSearch    Renamed.
actskn45.ocx    C:\WINDOWS\system32    Trojan.Isbar.439    Deleted.
gbatpdux.exe    C:\WINDOWS\system32    Adware.TopSearch    Renamed.
jkkll.dll    C:\WINDOWS\system32    Trojan.Virtumod    Will be cured after reboot.
ljjkkif.dll    C:\WINDOWS\system32    Trojan.Virtumod    Deleted.
pmnopop.dll    C:\WINDOWS\system32    Trojan.Virtumod    Deleted.
spqxjhrw.dll    C:\WINDOWS\system32    Trojan.Virtumod    Deleted.
vtuvvtr.dll    C:\WINDOWS\system32    Trojan.Virtumod    Deleted.
yayawvv.dll    C:\WINDOWS\system32    Trojan.Virtumod    Will be cured after reboot.
Avatar billede martinellekilde Nybegynder
10. februar 2007 - 00:37 #9
Log fil for HiJackThis
---------------------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 00:37:12, on 10-02-2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\WIDCOMM\Bluetooth-software\bin\btwdins.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\NclBTHandler.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\WIDCOMM\Bluetooth-software\BTTray.exe
C:\PROGRA~1\MICROS~2\OFFICE11\ois.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\Documents and Settings\Martin\Local Settings\Temporary Internet Files\Content.IE5\93VP7X3K\hijackthis[1].exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=DA_DK&c=64&bd=pavilion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=DA_DK&c=64&bd=pavilion&pf=laptop
F2 - REG:system.ini: Shell=Explorer.exe scvhost.exe
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {68D5CF1D-EC5C-4bdd-A9EF-F0E517565D50} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {BFACBC52-B6D2-4F84-A486-37A921169F28} - C:\WINDOWS\system32\yayawvv.dll (file missing)
O2 - BHO: (no name) - {F5254D0B-7F2C-42D6-A34D-02FC9B3C85BF} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /nodetect
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe"  -lang 1033
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [msconfig] C:\WINDOWS\scvhost.exe
O4 - HKLM\..\Run: [Update Checker] C:\WINDOWS\scvhost.exe
O4 - HKLM\..\Run: [] C:\WINDOWS\scvhost.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\RunServices: [msconfig] C:\WINDOWS\scvhost.exe
O4 - HKLM\..\RunServices: [Update Checker] C:\WINDOWS\scvhost.exe
O4 - HKLM\..\RunServices: [] C:\WINDOWS\scvhost.exe
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe /NoDialog
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [Uniblue Registry Booster] C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Adobe Reader Hurtigstart.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Photosmart Premier Hurtig start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send til &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth-software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Automatisk LiveUpdate-planlægning - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth-software\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Avatar billede martinellekilde Nybegynder
10. februar 2007 - 00:39 #10
Således.. Ifølge haderslev kommentar har jeg fulgt den guide som bedte mig lægge log files af Dr.Web, SUPERAntiSpyware og HiJackThis...
Avatar billede kabbak Professor
10. februar 2007 - 00:48 #11
Nu har jeg ikke så meget forstand på at rense for virus og lignende, men jeg kan se at du havde snavs.

denne har du vist selv sagt ok til, engang på nettet,"WinAntiVirusPro2006", det er snavs.

du må vente til en ekspert kommer forbi og tjekker den.
Avatar billede martinellekilde Nybegynder
10. februar 2007 - 12:43 #12
ok lukker spørgsmål, og derefter opretter en i virus afdelingen
Avatar billede haverslev Novice
10. februar 2007 - 12:55 #13
Der var ellers lige noget under opsejling, men det er ligemeget nu, hvor du har flyttet spg. ;o)
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester