Log :]
Antal indlæg: 46

Logfile of HijackThis v1.98.2
Scan saved at 22:17:40, on 31-10-2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:/WINDOWS/System32/smss.exe
C:/WINDOWS/system32/csrss.exe
C:/WINDOWS/system32/winlogon.exe
C:/WINDOWS/system32/services.exe
C:/WINDOWS/system32/lsass.exe
C:/WINDOWS/system32/svchost.exe
C:/WINDOWS/system32/svchost.exe
C:/WINDOWS/System32/svchost.exe
C:/WINDOWS/System32/svchost.exe
C:/WINDOWS/Explorer.EXE
C:/WINDOWS/System32/svchost.exe
C:/Programmer/Fælles filer/Symantec Shared/ccSetMgr.exe
C:/Programmer/Fælles filer/Symantec Shared/ccEvtMgr.exe
C:/WINDOWS/system32/spoolsv.exe
C:/Programmer/Fælles filer/EPSON/EBAPI/eEBSVC.exe
C:/Programmer/Fælles filer/EPSON/EBAPI/SAgent2.exe
C:/WINDOWS/System32/E_S00RP2.EXE
C:/Programmer/Norton/navapsvc.exe
C:/Programmer/Norton/AdvTools/NPROTECT.EXE
C:/WINDOWS/System32/nvsvc32.exe
C:/Programmer/Norton/SAVScan.exe
C:/WINDOWS/System32/svchost.exe
C:/Programmer/Fælles filer/Symantec Shared/CCPD-LC/symlcsvc.exe
C:/WINDOWS/System32/MsPMSPSv.exe
C:/Programmer/Fælles filer/Symantec Shared/Security Center/SymWSC.exe
C:/WINDOWS/System32/alg.exe
E:/Programmer/Messenger Plus! 3/MsgPlus.exe
E:/Programmer/Ulead Systems/Ulead Photo Explorer 7.0/Monitor.exe
C:/Programmer/Fælles filer/Symantec Shared/ccApp.exe
C:/Programmer/Messenger/msmsgs.exe
C:/Programmer/Logitech/MouseWare/system/em_exec.exe
E:/Programmer/Curse/mirc.exe
C:/Programmer/MSN Messenger/msnmsgr.exe
C:/Programmer/SmartFTP/SmartFTP.exe
E:/Programmer/Winamp/winamp.exe
C:/Programmer/OnlineBanditten/GameZone/GameZone.exe
E:/TOmmyy/Installation/hijackthis.exe

R0 - HKCU/Software/Microsoft/Internet Explorer/Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:/Programmer/Adobe/Acrobat 6.0/Reader/ActiveX/AcroIEHelper.dll
O2 - BHO: Popup Killer - {4A3A071E-F913-4eee-AE15-AEFFA16FB6BC} - C:/WINDOWS/PopUpWasher21.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - E:/Programmer/Spybot - Search & Destroy/SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:/Programmer/Norton/NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:/Programmer/Norton/NavShExt.dll
O4 - HKLM/../Run: [NvCplDaemon] RUNDLL32.EXE C:/WINDOWS/System32/NvCpl.dll,NvStartup
O4 - HKLM/../Run: [nwiz] nwiz.exe /install
O4 - HKLM/../Run: [MessengerPlus3] “E:/Programmer/Messenger Plus! 3/MsgPlus.exe”
O4 - HKLM/../Run: [EPSON Stylus CX3200] C:/WINDOWS/System32/spool/DRIVERS/W32X86/3/E_S10IC2.EXE /P19 “EPSON Stylus CX3200” /O6 “USB001” /M “Stylus CX3200”
O4 - HKLM/../Run: [Ulead Memory Card Detector] e:/Programmer/Ulead Systems/Ulead Photo Explorer 7.0/Monitor.exe
O4 - HKLM/../Run: [NvMediaCenter] RUNDLL32.EXE C:/WINDOWS/System32/NvMcTray.dll,NvTaskbarInit
O4 - HKLM/../Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM/../Run: [ccApp] “C:/Programmer/Fælles filer/Symantec Shared/ccApp.exe”
O4 - HKLM/../Run: [NAV CfgWiz] C:/Programmer/Fælles filer/Symantec Shared/CfgWiz.exe /GUID NAV /CMDLINE “REBOOT”
O4 - HKLM/../Run: [Advanced Tools Check] C:/PROGRA~1/Norton/AdvTools/ADVCHK.EXE
O4 - HKCU/../Run: [MSMSGS] “C:/Programmer/Messenger/msmsgs.exe” /background
O4 - HKCU/../Run: [SpySweeper] “C:/Programmer/Webroot/Spy Sweeper/SpySweeper.exe” /0
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O8 - Extra context menu item: Use as &Display; Picture - C:/Programmer/IEDP2/IEDP.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:/WINDOWS/System32/msjava.dll
O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:/WINDOWS/System32/msjava.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:/PROGRA~1/MICROS~2/OFFICE11/REFIEBAR.DLL
O9 - Extra button: ICQ 4 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:/Programmer/ICQLite/ICQLite.exe
O9 - Extra ‘Tools’ menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:/Programmer/ICQLite/ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:/Programmer/Messenger/msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:/Programmer/Messenger/msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab30149.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1093121253343
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab30149.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab30149.cab
O16 - DPF: {FB48C7B0-EB66-4BE6-A1C5-9DDF3C37249A} (MCSendMessageHandler Class) - http://xtraz.icq.com/xtraz/activex/MISBH.cab

Redaktør
Avatar
Antal indlæg: 11785

Nu er vi absolut ikke vilde med Messenger Plus. Jeg vil anbefale, at du afinstallerer programmet via tilføj/fjern programmer.

Hvad er dette: C:/Programmer/OnlineBanditten/GameZone/GameZone.exe – mine søgninger giver kun noget med cracks og warez?

Signatur

Med venlig hilsen
Resist TeamSpywarefri

Member of: Alliance of Security Analysis Professionals

Antal indlæg: 46

Jeg forstår ikke helt hvad i har imod MSN Plus, jeg oplever ikke nogle problemer med det hvis man bare nægter at installere sponsor programmer smile Men nu sidder jeg jo heller ikke med samme viden som jer..
Det andet er et chat program som ikke gør nogen skade :D
onlinebanditten.dk..
Men ellers ikke noget i loggen?

Administrator
Avatar
Antal indlæg: 29611

For en sikkerheds skyld, så send lige en ny log;)

Antal indlæg: 46

Logfile of HijackThis v1.98.2
Scan saved at 23:11:07, on 01-11-2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:/WINDOWS/System32/smss.exe
C:/WINDOWS/system32/csrss.exe
C:/WINDOWS/system32/winlogon.exe
C:/WINDOWS/system32/services.exe
C:/WINDOWS/system32/lsass.exe
C:/WINDOWS/system32/svchost.exe
C:/WINDOWS/system32/svchost.exe
C:/WINDOWS/System32/svchost.exe
C:/WINDOWS/System32/svchost.exe
C:/WINDOWS/System32/svchost.exe
C:/WINDOWS/Explorer.EXE
C:/Programmer/Fælles filer/Symantec Shared/ccSetMgr.exe
C:/Programmer/Fælles filer/Symantec Shared/ccEvtMgr.exe
C:/WINDOWS/system32/spoolsv.exe
C:/Programmer/Fælles filer/EPSON/EBAPI/eEBSVC.exe
C:/Programmer/Fælles filer/EPSON/EBAPI/SAgent2.exe
C:/WINDOWS/System32/E_S00RP2.EXE
C:/Programmer/Norton/navapsvc.exe
C:/Programmer/Norton/AdvTools/NPROTECT.EXE
C:/WINDOWS/System32/nvsvc32.exe
C:/Programmer/Norton/SAVScan.exe
C:/WINDOWS/System32/svchost.exe
C:/Programmer/Fælles filer/Symantec Shared/CCPD-LC/symlcsvc.exe
C:/WINDOWS/System32/MsPMSPSv.exe
C:/Programmer/Fælles filer/Symantec Shared/Security Center/SymWSC.exe
E:/Programmer/Messenger Plus! 3/MsgPlus.exe
C:/WINDOWS/System32/alg.exe
E:/Programmer/Ulead Systems/Ulead Photo Explorer 7.0/Monitor.exe
C:/Programmer/Fælles filer/Symantec Shared/ccApp.exe
C:/Programmer/Logitech/MouseWare/system/em_exec.exe
C:/Programmer/Messenger/msmsgs.exe
C:/Programmer/Webroot/Spy Sweeper/SpySweeper.exe
C:/Programmer/MSN Messenger/msnmsgr.exe
E:/Programmer/Curse/mirc.exe
C:/Programmer/SmartFTP/SmartFTP.exe
E:/Programmer/Winamp/winamp.exe
C:/Programmer/OnlineBanditten/GameZone/GameZone.exe
C:/Programmer/Internet Explorer/iexplore.exe
E:/TOmmyy/Installation/hijackthis.exe

R0 - HKCU/Software/Microsoft/Internet Explorer/Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:/Programmer/Adobe/Acrobat 6.0/Reader/ActiveX/AcroIEHelper.dll
O2 - BHO: Popup Killer - {4A3A071E-F913-4eee-AE15-AEFFA16FB6BC} - C:/WINDOWS/PopUpWasher21.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - E:/Programmer/Spybot - Search & Destroy/SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:/Programmer/Norton/NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:/Programmer/Norton/NavShExt.dll
O4 - HKLM/../Run: [NvCplDaemon] RUNDLL32.EXE C:/WINDOWS/System32/NvCpl.dll,NvStartup
O4 - HKLM/../Run: [nwiz] nwiz.exe /install
O4 - HKLM/../Run: [MessengerPlus3] “E:/Programmer/Messenger Plus! 3/MsgPlus.exe”
O4 - HKLM/../Run: [EPSON Stylus CX3200] C:/WINDOWS/System32/spool/DRIVERS/W32X86/3/E_S10IC2.EXE /P19 “EPSON Stylus CX3200” /O6 “USB001” /M “Stylus CX3200”
O4 - HKLM/../Run: [Ulead Memory Card Detector] e:/Programmer/Ulead Systems/Ulead Photo Explorer 7.0/Monitor.exe
O4 - HKLM/../Run: [NvMediaCenter] RUNDLL32.EXE C:/WINDOWS/System32/NvMcTray.dll,NvTaskbarInit
O4 - HKLM/../Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM/../Run: [ccApp] “C:/Programmer/Fælles filer/Symantec Shared/ccApp.exe”
O4 - HKLM/../Run: [NAV CfgWiz] C:/Programmer/Fælles filer/Symantec Shared/CfgWiz.exe /GUID NAV /CMDLINE “REBOOT”
O4 - HKLM/../Run: [Advanced Tools Check] C:/PROGRA~1/Norton/AdvTools/ADVCHK.EXE
O4 - HKCU/../Run: [MSMSGS] “C:/Programmer/Messenger/msmsgs.exe” /background
O4 - HKCU/../Run: [SpySweeper] “C:/Programmer/Webroot/Spy Sweeper/SpySweeper.exe” /0
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O8 - Extra context menu item: Use as &Display; Picture - C:/Programmer/IEDP2/IEDP.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:/WINDOWS/System32/msjava.dll
O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:/WINDOWS/System32/msjava.dll
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:/PROGRA~1/MICROS~2/OFFICE11/REFIEBAR.DLL
O9 - Extra button: ICQ 4 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:/Programmer/ICQLite/ICQLite.exe
O9 - Extra ‘Tools’ menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - E:/Programmer/ICQLite/ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:/Programmer/Messenger/msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:/Programmer/Messenger/msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab30149.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1093121253343
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.bitdefender.com/scan/Msie/bitdefender.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab30149.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab30149.cab
O16 - DPF: {FB48C7B0-EB66-4BE6-A1C5-9DDF3C37249A} (MCSendMessageHandler Class) - http://xtraz.icq.com/xtraz/activex/MISBH.cab

smile

Redaktør
Avatar
Antal indlæg: 17644

Din log er ren smile Har du nogen problemer?

Signatur

Gode råd om sikkerhed….

Antal indlæg: 46

Har ingen problemer nej smile Men vil hellere være sikker på jeg slet ikke har noget, end at der kører sådan en lille lort i baggrunden som jeg ikke selv kan se smile
men tak for hjælpen :]

Redaktør
Antal indlæg: 25535

Hej Asskicker

Ok, og velbekomme dig.

Så afslutter vi bare tråden igen, du opretter bare nyt spørgsmål, hvis du får andre problemer.