Vinduet jeg omtaler er det der automatisk åbner ved opstart at computeren (og som jeg gerne vil have den til at lade være med at åbne).
Jeg kan godt se der er en hel masse danske bank ting, det er ikke noget vi bruger eller har installeret, som sagt er det en gammel firmacomputer måske det er et levn derfra? Men jeg kan ikke finde et sted, hvor jeg kan afinstallere det?!
Jeg har gjort som beskrevet i "18/07-2004 21:00:13" - her er ny log (prøver lige at genstarte for at se om problemet er væk):
Logfile of HijackThis v1.98.0
Scan saved at 21:07:43, on 18-07-04
Platform: Windows NT 4 SP6 (WinNT 4.00.1381)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\spoolss.exe
C:\WINNT\System32\nddeagnt.exe
C:\WINNT\System32\drmon\smartagt\smartagt.exe
C:\WINNT\Explorer.exe
C:\WINNT\system32\RpcSs.exe
c:\winnt\system32\pstores.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\comsmd.exe
C:\programmer\WinSmart\smart32.exe
C:\Program Files\Common Files\Seagate Software\enl\ENLNTAPP.EXE
C:\WINNT\System32\loadwc.exe
C:\Programmer\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\PROGRA~1\FÆLLES~1\ADAPTE~1\CreateCD\CREATE~1.EXE
C:\Program Files\Common Files\Seagate Software\enl\SCS.EXE
C:\WINNT\System32\ddhelp.exe
C:\WINNT\Profiles\administrator.000\Skrivebord\hijack\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhomeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearchR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearchR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=homeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://www.microsoft.com/isapi/redir.dll?Prd=ie&Pver=5.0&Ar=ie5update&O1=b1R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
F2 - REG:system.ini: UserInit=userinit,nddeagnt.exe
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmer\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [COMSMDEXE] comsmd.exe -on
O4 - HKLM\..\Run: [WsAgent] c:\programmer\WinSmart\smart32.exe Service-2
O4 - HKLM\..\Run: [SeagateENL] C:\Program Files\Common Files\Seagate Software\enl\ENLNTAPP.EXE
O4 - HKLM\..\Run: [SchedulingAgent] mstinit.exe /logon
O4 - HKLM\..\Run: [BrowserWebCheck] loadwc.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Programmer\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [CreateCD50] C:\PROGRA~1\FÆLLES~1\ADAPTE~1\CreateCD\CREATE~1.EXE -r
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\DBTS\DBTSWebInterface.ocx] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\DBTS\DBTSWebInterface.ocx"
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\DBTS\DBTSTekst.ocx] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\DBTS\DBTSTekst.ocx"
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\DBTS\DBTSReturBesked.ocx] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\DBTS\DBTSReturBesked.ocx"
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\DBTS\DBTSBehandling.dll] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\DBTS\DBTSBehandling.dll"
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\DBTS\DBTSMedO.dll] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\DBTS\DBTSMedO.dll"
O4 - HKLM\..\RunOnce: [DBTS 3.10 - C:\Programmer\Fælles filer\Danskebank\DanskeSikker.ocx] C:\WINNT\System32\regsvr32.exe /s "C:\Programmer\Fælles filer\Danskebank\DanskeSikker.ocx"
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O13 - WWW. Prefix: http://
O16 - DPF: {F5D98C43-DB16-11CF-8ECA-0000C0FD59C7} (ActiveCGM Control) -
file://C:\Programmer\InterCAP\ActiveCGM\ActiveX\Acgm.cabO16 - DPF: {F6A56D95-A3A3-11D2-AC26-400000058481} -
https://netbank.danskebank.dk/netbank/activex/DanskeSikker.cab