Avatar billede stefan_m Nybegynder
05. marts 2008 - 23:17 Der er 12 kommentarer

Svingende konstant CPU ca 10-40%. højt sidefilforbrug.

Min Cpu kører meget svingende, har 57 processer kørende og aner ikk hvad der gør at der er så mange. Mit sidefilforbrug er på næsten 600 MB.
Zonealarm og Avast kører selvfølgelig.. hvad kan jeg gøre? Har prøvet at køre registrybooster men ingen virkning... :(

Computer: AMD Athlon 64 3700+ (2,19 ghz)
2 GB Ram
Win XP pro - 2002
SP2
Avatar billede levich Nybegynder
05. marts 2008 - 23:20 #1
Hent http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php.
Kør HijackThis, klik på scan, kopier loggens tekst og smidt den herind, så ser jeg på det.
Avatar billede stefan_m Nybegynder
06. marts 2008 - 16:43 #2
Her var loggen.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:57, on 06-03-2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
E:\ProgZ\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
E:\ProgZ\Ad-aware\Ad-Aware SE Personal\aawservice.exe
E:\ProgZ\Avast\Setup\aswUpdSv.exe
E:\ProgZ\Avast\Setup\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
E:\ProgZ\Avast\Setup\ashMaiSv.exe
C:\WINDOWS\system32\wscntfy.exe
E:\ProgZ\Avast\Setup\ashDisp.exe
E:\ProgZ\d-tools\DAEMON Tools\daemon.exe
C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\issch.exe
C:\Programmer\Fælles filer\Logitech\LComMgr\Communications_Helper.exe
C:\WINDOWS\system32\RUNDLL32.EXE
E:\ProgZ\ZoneAlarm\zlclient.exe
E:\ProgZ\Avast\Setup\ashWebSv.exe
C:\Programmer\Fælles filer\Logitech\LComMgr\LVComSX.exe
C:\Programmer\Fælles filer\Ahead\lib\NMBgMonitor.exe
E:\ProgZ\IDM\Internet Download Manager\IDMan.exe
E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Programmer\Macrogaming\SweetIM\SweetIM.exe
C:\Programmer\Uniblue\RegistryBooster 2\RegistryBooster.exe
C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
E:\ProgZ\Logitec\SetPoint\SetPoint.exe
E:\ProgZ\Alienguise\AlienwareDock\ObjectDock.exe
C:\Programmer\Fælles filer\Logitech\khalshared\KHALMNPR.EXE
E:\ProgZ\IDM\Internet Download Manager\IEMonitor.exe
C:\Programmer\MSN Messenger\msnmsgr.exe
c:\progra~1\fllesf~1\instal~1\update~1\isuspm.exe
E:\ProgZ\ZoneAlarm\MailFrontier\mantispm.exe
C:\Programmer\HP\Digital Imaging\bin\hpqSTE08.exe
C:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\agent.exe
C:\WINDOWS\system32\cidaemon.exe
E:\ProgZ\Crazy Browser\Crazy Browser\Crazy Browser.exe
C:\Programmer\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - URLSearchHook: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - E:\ProgZ\IDM\Internet Download Manager\IDMIECC.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Programmer\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Programmer\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [avast!] E:\ProgZ\Avast\Setup\ashDisp.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [DAEMON Tools] "E:\ProgZ\d-tools\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Programmer\Fælles filer\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programmer\Fælles filer\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ZoneAlarm Client] "E:\ProgZ\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Programmer\Fælles filer\Logitech\LComMgr\LVComSX.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmer\Fælles filer\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [IDMan] E:\ProgZ\IDM\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [LDM] E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [msnmsgr] ~"C:\Programmer\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SweetIM] C:\Programmer\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Programmer\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Alienware Dock.lnk = E:\ProgZ\Alienguise\AlienwareDock\ObjectDock.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: Download All Links with IDM - E:\ProgZ\IDM\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - E:\ProgZ\IDM\Internet Download Manager\IEExt.htm
O9 - Extra button: HP Klipsamling - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Programmer\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Smart markering - {700259D7-1666-479a-93B1-3250410481E8} - C:\Programmer\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {60EFC337-15C2-4369-B2A0-3429B071D8B8} (Hewlett-Packard Printer Diagnostics) - http://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISWebManager.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1204623168968
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O18 - Protocol: bw+0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {535BE591-90AE-4932-A0BE-C21D02359C21} - E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FLLESF~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - E:\ProgZ\Ad-aware\Ad-Aware SE Personal\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - E:\ProgZ\Avast\Setup\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - E:\ProgZ\Avast\Setup\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - E:\ProgZ\Avast\Setup\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - E:\ProgZ\Avast\Setup\ashWebSv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programmer\Fælles filer\Logitech\SrvLnch\SrvLnch.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 19724 bytes
Avatar billede levich Nybegynder
06. marts 2008 - 19:12 #3
Jeg ser på det, øjeblik.
Avatar billede levich Nybegynder
06. marts 2008 - 19:21 #4
Læs alle punkterne inden du gør noget.
Gem evt. denne vejledning som en tekstfil på skrivebordet vha. Notepad.

(1)
Hent AVG Anti-Spyware her: http://www.grisoft.com/doc/downloads-products/us/crp/0?prd=triasw
Installer programmer og opdater det, men vent med at scanne.

(2)
Hent AFT-cleaner her: http://www.geekstogo.com/forum/index.php?autocom=downloads&showfile=21
Start programmet og vælg "select all" og derefter "empty all".
Hvis du har Firefox skal du først vælge det i menuen og derefter "select all" og "empty all".

(3)
Genstart computeren i fejlsikret tilstand (tryk F8 når Windows starter op) og Fix alle linjer der starter med "018 - protocol" undtagen denne linje:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FLLESF~1\Skype\SKYPE4~1.DLL

(4)
Start AVG Anti-Spyware, vælg fanebladet "scanner" og klik på "complete system scan".
Bagefter klik "apply all actions", "save report", "save report as" og gem logfil, f.eks. på skrivebordet.

(5)
Genstart computeren normalt. Lav en ny log med HijackThis, og send den herind sammen med loggen fra AVG Anti-Spyware.
Avatar billede stefan_m Nybegynder
07. marts 2008 - 11:50 #5
Så er loggen fra hjt og avg klar...:
Hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:46:58, on 07-03-2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
E:\ProgZ\Ad-aware\Ad-Aware SE Personal\aawservice.exe
E:\ProgZ\AlienGUIse\wbload.exe
E:\ProgZ\Avast\Setup\aswUpdSv.exe
E:\ProgZ\Avast\Setup\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
E:\ProgZ\Avast\Setup\ashDisp.exe
E:\ProgZ\AVG\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\cisvc.exe
E:\ProgZ\d-tools\DAEMON Tools\daemon.exe
C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\issch.exe
C:\Programmer\Fælles filer\Logitech\LComMgr\Communications_Helper.exe
C:\WINDOWS\system32\RUNDLL32.EXE
E:\ProgZ\ZoneAlarm\zlclient.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Programmer\Fælles filer\Logitech\LComMgr\LVComSX.exe
C:\WINDOWS\system32\nvsvc32.exe
E:\ProgZ\AVG\AVG Anti-Spyware 7.5\avgas.exe
C:\Programmer\Fælles filer\Ahead\lib\NMBgMonitor.exe
E:\ProgZ\IDM\Internet Download Manager\IDMan.exe
C:\WINDOWS\System32\svchost.exe
E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Programmer\Macrogaming\SweetIM\SweetIM.exe
C:\Programmer\Uniblue\RegistryBooster 2\RegistryBooster.exe
C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
E:\ProgZ\Logitec\SetPoint\SetPoint.exe
E:\ProgZ\Alienguise\AlienwareDock\ObjectDock.exe
C:\Programmer\Fælles filer\Logitech\khalshared\KHALMNPR.EXE
C:\Programmer\MSN Messenger\msnmsgr.exe
E:\ProgZ\Avast\Setup\ashMaiSv.exe
C:\WINDOWS\system32\wscntfy.exe
E:\ProgZ\Avast\Setup\ashWebSv.exe
E:\ProgZ\ZoneAlarm\MailFrontier\mantispm.exe
C:\WINDOWS\system32\wuauclt.exe
E:\ProgZ\IDM\Internet Download Manager\IEMonitor.exe
C:\Programmer\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programmer\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - URLSearchHook: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - E:\ProgZ\IDM\Internet Download Manager\IDMIECC.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Programmer\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Programmer\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Fælles filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmer\Fælles filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [avast!] E:\ProgZ\Avast\Setup\ashDisp.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [DAEMON Tools] "E:\ProgZ\d-tools\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] C:\Programmer\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\FLLESF~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Programmer\Fælles filer\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programmer\Fælles filer\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ZoneAlarm Client] "E:\ProgZ\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmer\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LVCOMSX] "C:\Programmer\Fælles filer\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "E:\ProgZ\AVG\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmer\Fælles filer\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [IDMan] E:\ProgZ\IDM\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [LDM] E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [msnmsgr] ~"C:\Programmer\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SweetIM] C:\Programmer\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] C:\Programmer\Uniblue\RegistryBooster 2\RegistryBooster.exe /S
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJENESTE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETVÆRKSTJENESTE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Alienware Dock.lnk = E:\ProgZ\Alienguise\AlienwareDock\ObjectDock.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programmer\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\ProgZ\Logitec\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: Download All Links with IDM - E:\ProgZ\IDM\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - E:\ProgZ\IDM\Internet Download Manager\IEExt.htm
O9 - Extra button: HP Klipsamling - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Programmer\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Smart markering - {700259D7-1666-479a-93B1-3250410481E8} - C:\Programmer\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmer\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmer\Messenger\msmsgs.exe
O16 - DPF: {60EFC337-15C2-4369-B2A0-3429B071D8B8} (Hewlett-Packard Printer Diagnostics) - http://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISWebManager.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1204623168968
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FLLESF~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - E:\ProgZ\Ad-aware\Ad-Aware SE Personal\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - E:\ProgZ\Avast\Setup\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - E:\ProgZ\Avast\Setup\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - E:\ProgZ\Avast\Setup\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - E:\ProgZ\Avast\Setup\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - E:\ProgZ\AVG\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programmer\Fælles filer\Logitech\SrvLnch\SrvLnch.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 8728 bytes



AVG:
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at:    07:32:01 07-03-2008

+ Scan result:   



C:\Documents and Settings\QzN\Cookies\qzn@hit.gemius[1].txt -> TrackingCookie.Gemius : Cleaned.
C:\Documents and Settings\QzN\Cookies\qzn@statistik-gallup[1].txt -> TrackingCookie.Statistik-gallup : Cleaned.


::Report end
Avatar billede levich Nybegynder
07. marts 2008 - 19:17 #6
Det ser meget bedre du nu. Hvis computeren kører som den skal, kan du "nulstiller" windows mht. systemgendannelse:

(1)
Deaktiver systemgendannelse, ved at Højreklikke på "Denne Computer" på skrivebordet -> egenskaber -> Systemgendannelse -> sæt flueben i "Deaktiver systemgendannelse" -> Klik OK.

(2)
Genstart normalt og aktiver systemgendannelse igen.
Avatar billede stefan_m Nybegynder
07. marts 2008 - 20:37 #7
Hmm, der er ikke sket det helt vilde. CPU'en er måske blevet lidt mere stabil ellers ikk noget.
Avatar billede stefan_m Nybegynder
09. marts 2008 - 19:48 #8
Min CPU er faktisk kommet helt ned på mellem 0 og 5, så det er jo såmen fint nok, men det andet er jo stadig lidt meget trælst.. :(
Avatar billede levich Nybegynder
09. marts 2008 - 20:00 #9
Hvis du tænker på sidefilen størrelse, så er det vist ikke unormalt at den er 600 Mb. Men du kan naturligvis prøve at reducerede det ved at deaktivere og/eller afinstallere programmer. Du kan se nogle af de programmer, som kører i baggrunden, ved at se på den første del af hijackthis-loggen (running processes), og derved få en idé om, hvilke programmer du skal deaktivere tjenester i eller afinstallere.
Avatar billede stefan_m Nybegynder
09. marts 2008 - 20:06 #10
Mit sidefilforbrug er godt nok også på næsten 900 MB lige nu.. og aner ikk hvad jeg sådan lige kan fjerne
Avatar billede levich Nybegynder
09. marts 2008 - 20:17 #11
Det er supersvært for mig at svare på, da jeg ikke ved hvilke programmer du har installeret. Prøv at gå liste over installerede programmer igennem - den findes i kontrolpanelet under "tilføj/fjern programmer" - og se om der er noget du kan afinstallere.

Hvis du trykker ctrl-alt-delete, kan du se nogle af de programmer, som kører i baggrunden, hvilket måske også kan give en idé om, hvad der kan slettes.
Avatar billede levich Nybegynder
12. juli 2008 - 23:57 #12
Får jeg point for min hjælp?
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester