Tjek af logfil ønskes
Efter at ha installeret og kørt Spywareguard, Spywareblaster, IE-Spyad og IE Privacy Keeper, ser min hijackthis-logfil sådan ud. Har ikke nogen problemer som sådan, har bare ingen forstand på at læse en log, og er derfor interesseret i at vide om alt er ok? ;-)Den kommer her:
Logfile of HijackThis v1.97.7
Scan saved at 12:01:16, on 09-05-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
F:\WINDOWS\System32\smss.exe
F:\WINDOWS\system32\winlogon.exe
F:\WINDOWS\system32\services.exe
F:\WINDOWS\system32\lsass.exe
F:\WINDOWS\system32\svchost.exe
F:\WINDOWS\System32\svchost.exe
F:\WINDOWS\system32\spoolsv.exe
F:\NORMAN\Nvc\BIN\NPFSVICE.EXE
F:\Norman\NVC\BIN\Zanda.exe
F:\WINDOWS\Explorer.EXE
F:\NORMAN\nvc\BIN\NVCSCHED.EXE
F:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
F:\WINDOWS\System32\hphmon04.exe
F:\NORMAN\nvc\BIN\nvcoas.exe
F:\NORMAN\nvc\BIN\NJEEVES.EXE
F:\PROGRA~1\PANICW~1\POP-UP~1\dpps2.exe
F:\Programmer\ahead\InCD\InCD.exe
F:\NORMAN\Nvc\BIN\ZLH.EXE
F:\Programmer\QuickTime\qttask.exe
F:\Programmer\Fælles filer\Real\Update_OB\realsched.exe
F:\NORMAN\Nvc\BIN\NYMSE.EXE
F:\WINDOWS\System32\ctfmon.exe
F:\WINDOWS\System32\HPHipm11.exe
F:\Programmer\Schmaili30\Schmaili.exe
F:\NORMAN\Nvc\BIN\npfmsg2.exe
F:\NORMAN\Nvc\BIN\cclaw.exe
F:\Programmer\Gallup Interactive\NetBehaviour\NetBehaviour.exe
F:\Programmer\Ulead Systems\Ulead Photo Express 2 SE\CalCheck.exe
F:\Programmer\SpywareGuard\sgmain.exe
F:\Programmer\SpywareGuard\sgbhp.exe
F:\Documents and Settings\Ole Jensen\Dokumenter\Sikkerheds programmer\Hijackthis\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - F:\Programmer\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: IE Privacy Keeper - Last IE Window Detector - {1201333E-BAD9-481C-BCF5-6904498CF85B} - F:\Programmer\UnH Solutions\IE Privacy Keeper\IEPKbho.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - F:\Programmer\SpywareGuard\dlprotect.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - F:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] F:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
O4 - HKLM\..\Run: [HPHmon04] F:\WINDOWS\System32\hphmon04.exe
O4 - HKLM\..\Run: [HPHUPD04] "F:\Programmer\HP Photosmart 11\hphinstall\UniPatch\hphupd04.exe"
O4 - HKLM\..\Run: [Pop-Up Stopper] "F:\PROGRA~1\PANICW~1\POP-UP~1\dpps2.exe"
O4 - HKLM\..\Run: [InCD] F:\Programmer\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [NeroCheck] F:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Norman ZANDA] F:\NORMAN\Nvc\BIN\ZLH.EXE /LOAD /SPLASH
O4 - HKLM\..\Run: [QuickTime Task] "F:\Programmer\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "F:\Programmer\Fælles filer\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] F:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Schmaili] F:\Programmer\Schmaili30\Schmaili.exe
O4 - Startup: SpywareGuard.lnk = F:\Programmer\SpywareGuard\sgmain.exe
O4 - Global Startup: Microsoft Office.lnk = F:\Programmer\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NetBehaviour.lnk = ?
O4 - Global Startup: Photo Express Calendar Checker SE.lnk = F:\Programmer\Ulead Systems\Ulead Photo Express 2 SE\CalCheck.exe
O9 - Extra 'Tools' menuitem: IE Privacy Keeper (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: Profile CAPI 6,0,0,499 - https://skinfakse.certifikat.dk/enroll/applets/entrustprofileapplet-capi.cab
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} (Microsoft Office Template and Media Control) - http://office.microsoft.com/templates/ieawsdc.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {11818680-FCF6-11D0-9808-0800092A4865} (FormFlow Form Control) - http://www.kps.dk/Codebase/FormCtl.cab
O16 - DPF: {1469FF24-47F6-11D2-8805-006008C537E3} (FormFlow Mail Control) - http://www.kps.dk/codebase/ffmail.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {224F7DEA-B7C1-11D3-AB40-00902712A5C9} (PLSAddin Class) - http://www.kps.dk/codebase/plsspeller.cab
O16 - DPF: {71AEE1E3-1B65-41FA-BBD2-565CBD1359D8} (Util Class) - https://skinfakse.certifikat.dk/csp/authenticode/PrimeInkCSPInstall0703.exe
O16 - DPF: {85D6F6C5-97FE-11D1-86CC-080009B6ACE6} (JetForm Image Filter (JPG)) - http://www.kps.dk/codebase/imagejpg.cab
O16 - DPF: {8EC18CE2-D7B4-11D2-88C8-006008A717FD} (NCSView Class) - http://130.228.229.67/ecwplugins/ncs.cab
O16 - DPF: {92EB6641-286A-11D2-A68E-00A0C996A6DD} (FormFlow Signature Object) - http://www.kps.dk/codebase/jfsignature.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37741.4884375
O16 - DPF: {AD90E8D1-3B47-11D2-A696-00A0C996A6DD} (jfCryptoSignature Class) - http://www.kps.dk/codebase/jfcrypto.cab
O16 - DPF: {AFB8BDEE-965D-11D1-86CC-080009B6ACE6} (JetForm Image Filter (BMP)) - http://www.kps.dk/codebase/imagebmp.cab
O16 - DPF: {CDDCFBB3-4D93-11D2-B1A9-00A0C9B742BE} (FormFlowScriptObject Class) - http://www.kps.dk/codebase/scriptobject.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {EF2FB80F-0975-408E-A871-B00CC863478A} (FormFlow Soft Font Installer) - http://www.kps.dk/codebase/fontinstaller.cab
O16 - DPF: {FAC462CF-7E63-4042-8620-312D71652326} - http://81.19.245.211/speedtest/SpeedTest_2.cab
