Tænkte på om der ikke var nogen som ville lægge lidt tid til side og tjekke den her log fil, for har nogle dumme problemer med nogle ting der vil ændre i mine BHO værdier, og det vil jeg skam ikke finde mig i :) Men hvis der er nogen der har forstand på det og lige ville tjekke det igennem ville jeg da blive taknemlig :D
Hilsen LaSeR
Logfile of HijackThis v1.97.7
Scan saved at 17:11:53, on 15-10-2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:ProgrammerFælles filerSymantec SharedccEvtMgr.exe
C:PROGRA~1NORTON~1NORTON~2GHOSTS~2.EXE
C:ProgrammerFælles filerMicrosoft SharedVS7Debugmdm.exe
C:ProgrammerNorton SystemWorksNorton AntiVirus
avapsvc.exe
C:ProgrammerNorton Personal FirewallNISUM.EXE
C:ProgrammerNorton SystemWorksNorton UtilitiesNPROTECT.EXE
C:WINDOWSSystem32
vsvc32.exe
C:ProgrammerAnalog DevicesSoundMAXSMAgent.exe
C:PROGRA~1NORTON~1SPEEDD~1
opdb.exe
C:ProgrammerNorton Personal FirewallSymProxySvc.exe
C:ProgrammerNorton Personal FirewallNISSERV.EXE
C:WINDOWSExplorer.EXE
C:ProgrammerAnalog DevicesSoundMAXSmtray.exe
C:ProgrammerFælles filerSymantec SharedccApp.exe
C:ProgrammerNorton SystemWorksNorton GhostGhostStartTrayApp.exe
C:ProgrammerNorton Personal FirewallIAMAPP.EXE
C:ProgrammerLogitechMouseWaresystemem_exec.exe
C:ProgrammerMessenger Plus! 3MsgPlus.exe
C:ProgrammerCommon filesSearchUpgraderSearchUpgrader.exe
C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe
C:ProgrammerInternet Exploreriexplore.exe
C:programmersteamsteam.exe
c:progra~1intern~1iexplore.exe
C:WINDOWSsystem32wscntfy.exe
C:ProgrammerSpywareGuardsgmain.exe
C:ProgrammerSpywareGuardsgbhp.exe
C:ProgrammerSpybot - Search & DestroySpybotSD.exe
C:ProgrammerInternet Exploreriexplore.exe
C:WINDOWSsystem32DllHost.exe
C:ProgrammerMessengermsmsgs.exe
C:ProgrammerMSN Messengermsnmsgr.exe
C:Documents and SettingsMaibrittDokumenterModtagne filerHijackThis.exe
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.crazyclan.net[...]
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL =
http://home.fragworld.co.uk[...]
R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = localhost
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {029CA12C-89C1-46a7-A3C7-82F2F98635CB} - C:ProgrammerKontikiinh304181.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:ProgrammerAdobeAcrobat 6.0ReaderActiveXAcroIEHelper.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:ProgrammerSpywareGuarddlprotect.dll
O2 - BHO: (no name) - {7559B76E-0222-4d77-9499-CCE9EB4EDC2F} - C:PROGRA~1AdShieldAdShieldAdShield.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammerNorton SystemWorksNorton AntiVirusNavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammerNorton SystemWorksNorton AntiVirusNavShExt.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:Documents and SettingsMaibrittLokale indstillingerTempmsntb.dll
O4 - HKLM..Run: [Smapp] C:ProgrammerAnalog DevicesSoundMAXSmtray.exe
O4 - HKLM..Run: [ccApp] "C:ProgrammerFælles filerSymantec SharedccApp.exe"
O4 - HKLM..Run: [ccRegVfy] "C:ProgrammerFælles filerSymantec SharedccRegVfy.exe"
O4 - HKLM..Run: [GhostStartTrayApp] C:ProgrammerNorton SystemWorksNorton GhostGhostStartTrayApp.exe
O4 - HKLM..Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM..Run: [iamapp] C:ProgrammerNorton Personal FirewallIAMAPP.EXE
O4 - HKLM..Run: [NeroCheck] C:WINDOWSsystem32NeroCheck.exe
O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 - HKLM..Run: [nwiz] nwiz.exe /install
O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSSystem32NvMcTray.dll,NvTaskbarInit
O4 - HKLM..Run: [MessengerPlus3] "C:ProgrammerMessenger Plus! 3MsgPlus.exe"
O4 - HKLM..Run: [SearchUpgrader] C:ProgrammerCommon filesSearchUpgraderSearchUpgrader.exe
O4 - HKLM..Run: [msnappau] "C:ProgrammerMSN AppsUpdater 1.02.3000.1001damsnappau.exe"
O4 - HKLM..Run: [LiveNote] livenote.exe
O4 - HKLM..Run: [blehspamstoreupload] C:Documents and SettingsAll UsersApplication DataSetup Lite Bleh Spamlist barb.exe
O4 - HKCU..Run: [Steam] "c:programmersteamsteam.exe" -silent
O4 - HKCU..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMNET~1SNDMon.exe
O4 - HKCU..Run: [Vc admin] C:DOCUME~1MaibrittAPPLIC~1TITLEJ~1AceJugs.exe
O4 - HKCU..Run: [Yahoo! Pager] C:PROGRA~1Yahoo!MESSEN~1ypager.exe -quiet
O4 - Startup: SpywareGuard.lnk = C:ProgrammerSpywareGuardsgmain.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:ProgrammerGooglegoogletoolbar.dll/cmsearch.html
O8 - Extra context menu item: &Maintain Block List... - C:PROGRA~1AdShieldAdShieldmaintain.htm
O8 - Extra context menu item: Add to &Block List... - C:PROGRA~1AdShieldAdShieldsuppress.htm
O8 - Extra context menu item: AdShield Option &Settings... - C:PROGRA~1AdShieldAdShieldsettings.htm
O8 - Extra context menu item: Backward &Links - res://C:ProgrammerGooglegoogletoolbar.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:ProgrammerGooglegoogletoolbar.dll/cmcache.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 - Extra context menu item: Get It With Kontiki - res://C:ProgrammerKontikiinh304181.dll/201
O8 - Extra context menu item: Si&milar Pages - res://C:ProgrammerGooglegoogletoolbar.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:ProgrammerGooglegoogletoolbar.dll/cmtrans.html
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O9 - Extra button: AdShield (HKCU)
O14 - IERESET.INF: START_PAGE_URL=
http://home.fragworld.co.uk[...]
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {1230CB21-C88D-11CF-0000-000000000000} -
http://www.browserupdate.co.uk[...]
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {19E28AFC-EAE3-4CE5-AC83-2407B42F57C9} (MSSecurityAdvisor Class) -
http://download.microsoft.com[...]
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -
http://imgfarm.com[...]
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540000} (CInstall Class) -
http://www.spywarestormer.com[...]
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.symantec.com[...]
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
http://download.yahoo.com[...]
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) -
http://www.cult3d.com[...]
O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine) -
http://office.microsoft.com[...]
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1408.g.akamai.net[...]
O16 - DPF: {53B3ABEA-4445-44D9-A01E-088144CAABD9} (FileSharingCtrl Class) -
http://appdirectory.messenger.msn.com[...]
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://software-dl.real.com[...]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.symantec.com[...]
O16 - DPF: {665585FD-2068-4C5E-A6D3-53AC3270ECD4} (FileSharingCtrl Class) -
http://appdirectory.messenger.msn.com[...]
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} -
http://v4.windowsupdate.microsoft.com[...]
O16 - DPF: {AD7FAFB0-16D6-40C3-AF27-585D6E6453FD} -
http://dload.ipbill.com[...]
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {BD092CD7-AA66-4FF6-8CE1-D4E01489ED2B} (VacPro.UserControl1) -
http://www.7adpower.com[...]
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) -
http://messenger.zone.msn.com[...]
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) -
http://security.symantec.com[...]
O16 - DPF: {C81B5180-AFD1-41A3-97E1-99E8D254DB98} (CSS Web Installer Class) -
http://scanner.virus112.com[...]
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com[...]
O16 - DPF: {EDAF796E-9210-4417-ADDC-2AB18E4F6C27} (Hjemmeside.KvikFoto) -
http://www.123hjemmeside.dk[...]
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) -
http://messenger.zone.msn.com[...]
--