Her er loggen:Logfile of HijackThis v1.97.7
Scan saved at 21:47:51, on 27-11-03
Platform: Windows 98 Gold (Win9x 4.10.1998)
MSIE: Internet Explorer v5.00 (5.00.2314.1000)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAMMER\MCAFEE\VSHWIN32.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAMMER\MEDIASCAPE\TOUCH MANAGER\TOUCHMGR.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\PROGRAMMER\REAL\REALPLAYER\REALPLAY.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\WEBDIALER\OD-STND174.EXE
C:\PROGRAMMER\ULEAD SYSTEMS\ULEAD PHOTO EXPRESS 2 SE\CALCHECK.EXE
C:\PROGRAMMER\STAROFFICE6.0\PROGRAM\SOFFICE.EXE
C:\AMITECH\ONNOW.EXE
C:\AMITECH\FORTRYD.EXE
C:\PROGRAM FILES\WEBDIALER\OD-STND174.EXE
C:\WINDOWS\SKRIVEBORD\HIJACKTHIS.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.hand-book.com/search/R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.hand-book.com/search/R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.com" target="_blank">http://ehttp.cc/?
www.google.comR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.hand-book.com/search/R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.hand-book.com/search/R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://www.hand-book.com/search/R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.hand-book.com/hp/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.hand-book.com/search/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.hand-book.com/search/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.cybercity.dk/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.hand-book.com/search/R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://www.hand-book.com/search/R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.hand-book.com/search/R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://www.hand-book.com/search/R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=proxy.cybercity.dk:8080;https=proxy.cybercity.dk:8080;ftp=proxy.cybercity.dk:8080;gopher=proxy.cybercity.dk:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,(Default) =
http://www.hand-book.com/search/F1 - win.ini: run=hpfsched
O1 - Hosts: 66.118.163.109 auto.search.msn.com
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [Skan registreringsdatabase] c:\windows\scanregw.exe /autorun
O4 - HKLM\..\Run: [Job-oversigt] c:\windows\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [Vshwin32EXE] C:\Programmer\McAfee\VSHWIN32.EXE
O4 - HKLM\..\Run: [KBD MediaCenter] C:\Programmer\Mediascape\Touch Manager\TouchMgr.exe
O4 - HKLM\..\Run: [Startup] C:\Amitech\Startup /START
O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\Run: [PE2CKFNT SE] C:\Programmer\Ulead Systems\Ulead Photo Express 2 SE\ChkFont.exe
O4 - HKLM\..\Run: [RealTray] C:\Programmer\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [LoadQM] loadqm.exe
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [Planlægningsagent] c:\windows\SYSTEM\mstask.exe
O4 - HKLM\..\RunServices: [Vshwin32EXE] C:\Programmer\McAfee\VSHWIN32.EXE
O4 - HKLM\..\RunServices: [BCDetect] c:\windows\SYSTEM\BCDetect.exe defer
O4 - HKCU\..\Run: [AddClass] C:\WINDOWS\ADDCLASS.EXE
O4 - HKCU\..\Run: [od-stnd174] c:\program files\Webdialer\od-stnd174.exe -m
O4 - Startup: Photo Express Calendar Checker SE.lnk = C:\Programmer\Ulead Systems\Ulead Photo Express 2 SE\CalCheck.exe
O4 - Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\OFFICE\OSA9.EXE
O4 - Startup: StarOffice 6.0.lnk = C:\Programmer\StarOffice6.0\program\quickstart.exe
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Real.com (HKLM)
O13 - DefaultPrefix:
http://ehttp.cc/?O13 - WWW Prefix:
http://ehttp.cc/?O13 - WWW. Prefix:
http://ehttp.cc/?O14 - IERESET.INF: SEARCH_PAGE_URL=
O14 - IERESET.INF: START_PAGE_URL=
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cabO16 - DPF: {F6A56D95-A3A3-11D2-AC26-400000058481} (Danske e-Sec) -
https://netbank.danskebank.dk/netbank/activex/DanskeSikker.cabO16 - DPF: {ABCCB0F0-514E-4BA6-989D-C67E5DBC2946} -
https://download.danskebank.dk/download/keydownload/DB/KeyDownload.cabO19 - User stylesheet: C:\WINDOWS\my.css
O19 - User stylesheet: C:\WINDOWS\my.css (HKLM)