Undskyld den lange ventetid - havde en række nedbrud. Har nu kørt en hel ny hijack, følger her:
Logfile of HijackThis v1.98.0
Scan saved at 23:24:35, on 26-07-04
Platform: Windows 98 Gold (Win9x 4.10.1998)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\PROGRAMMER\MCAFEE\MCAFEE VIRUSSCAN\AVSYNMGR.EXE
C:\WINDOWS\SYSTEM\ADDSA32.EXE
C:\WINDOWS\SYSTEM\MFCHK32.EXE
C:\WINDOWS\NETED32.EXE
C:\WINDOWS\SYSTEM\MFCCA.EXE
C:\WINDOWS\NTQG32.EXE
C:\WINDOWS\SYSTEM\ATLKA.EXE
C:\WINDOWS\SYSTEM\ADDPA32.EXE
C:\WINDOWS\SYSTEM\IPFZ32.EXE
C:\WINDOWS\SYSTEM\NETWL.EXE
C:\WINDOWS\NTJX32.EXE
C:\WINDOWS\SYSTEM\ATLLC.EXE
C:\WINDOWS\SYSTEM\IEUJ.EXE
C:\WINDOWS\SYSTEM\SDKGL32.EXE
C:\WINDOWS\ADDBX.EXE
C:\WINDOWS\NTFA32.EXE
C:\WINDOWS\JAVAOT.EXE
C:\WINDOWS\SYSTEM\D3NB32.EXE
C:\WINDOWS\ATLRZ32.EXE
C:\WINDOWS\MSIB32.EXE
C:\WINDOWS\SYSTEM\SDKML.EXE
C:\WINDOWS\SYSTEM\JAVALI32.EXE
C:\WINDOWS\MSDB32.EXE
C:\WINDOWS\NETXN.EXE
C:\WINDOWS\SYSTEM\SYSGR.EXE
C:\WINDOWS\APPJP.EXE
C:\WINDOWS\SYSTEM\IPYY32.EXE
C:\WINDOWS\SYSTEM\APPJU32.EXE
C:\WINDOWS\SYSTEM\NETPX32.EXE
C:\WINDOWS\NETVW32.EXE
C:\WINDOWS\SYSTEM\IPPI.EXE
C:\WINDOWS\SYSTEM\MFCJS.EXE
C:\WINDOWS\SYSTEM\ATLOX.EXE
C:\WINDOWS\MFCGA32.EXE
C:\WINDOWS\SYSTEM\ATLUR32.EXE
C:\WINDOWS\SYSTEM\ATLCH32.EXE
C:\WINDOWS\SYSTEM\IPGJ32.EXE
C:\WINDOWS\IPVN.EXE
C:\WINDOWS\SYSTEM\CRCM.EXE
C:\WINDOWS\SYSTEM\ATLJJ32.EXE
C:\WINDOWS\ATLKR.EXE
C:\WINDOWS\SYSTEM\WINSM32.EXE
C:\WINDOWS\SYSTEM\MFCUR.EXE
C:\WINDOWS\SYSTEM\SDKOU32.EXE
C:\WINDOWS\NETNH.EXE
C:\WINDOWS\SYSTEM\MFCKX.EXE
C:\WINDOWS\CRDH.EXE
C:\WINDOWS\SYSTEM\APIWQ32.EXE
C:\WINDOWS\SYSTEM\JAVAWR32.EXE
C:\WINDOWS\SYSTEM\ATLGL32.EXE
C:\WINDOWS\MFCKE32.EXE
C:\WINDOWS\WINGR32.EXE
C:\WINDOWS\IEDB32.EXE
C:\WINDOWS\SYSTEM\CRMG.EXE
C:\WINDOWS\D3QN.EXE
C:\WINDOWS\CRKX32.EXE
C:\WINDOWS\SYSTEM\IEQP32.EXE
C:\WINDOWS\SYSTEM\IEJO32.EXE
C:\WINDOWS\ADDPX.EXE
C:\WINDOWS\SYSTEM\JAVAPC32.EXE
C:\WINDOWS\SYSTEM\SDKRQ32.EXE
C:\WINDOWS\NTXZ32.EXE
C:\WINDOWS\SYSTEM\IPLW32.EXE
C:\WINDOWS\APIQT.EXE
C:\WINDOWS\SYSTEM\NTDY32.EXE
C:\WINDOWS\D3CJ32.EXE
C:\WINDOWS\ATLCL32.EXE
C:\WINDOWS\JAVAGP.EXE
C:\WINDOWS\WINCM32.EXE
C:\WINDOWS\SYSTEM\SDKIJ32.EXE
C:\WINDOWS\SYSTEM\MFCNZ.EXE
C:\WINDOWS\SYSTEM\ADDEY32.EXE
C:\WINDOWS\SDKNM32.EXE
C:\PROGRAMMER\MCAFEE\MCAFEE VIRUSSCAN\VSSTAT.EXE
C:\WINDOWS\SYSTEM\CROK.EXE
C:\WINDOWS\SYSTEM\APPEK32.EXE
C:\WINDOWS\SYSTEM\IETL.EXE
C:\WINDOWS\SYSTEM\NETRE.EXE
C:\PROGRAMMER\FæLLES FILER\REAL\UPDATE_OB\REALSCHED.EXE
C:\PROGRAMMER\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WND.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAMMER\MICROSOFT OFFICE\OFFICE\FINDFAST.EXE
C:\PROGRAMMER\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WNF.EXE
C:\PROGRAMMER\COMPAQ\ON-SCREEN DISPLAY\OSD.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\CRCM.EXE
C:\WINDOWS\SYSTEM\MSJC.EXE
C:\HIJACKTHIS.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
file://c:\windows\TEMP\sp.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
res://C:\WINDOWS\system\lmgkb.dll/sp.html#96676R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
res://lmgkb.dll/index.html#96676R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
res://lmgkb.dll/index.html#96676R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
res://C:\WINDOWS\system\lmgkb.dll/sp.html#96676R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
file://c:\windows\TEMP\sp.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
res://C:\WINDOWS\system\lmgkb.dll/sp.html#96676R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
res://lmgkb.dll/index.html#96676R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
file://c:\windows\TEMP\sp.htmlR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
file://c:\windows\TEMP\sp.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://search.presario.net/scripts/redirectors/presario/srchredir.dll?c=1c99&s=search&query=%s&i=enuR1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: REALBAR - {4E7BD74F-2B8D-469E-C0FF-FD60B590A87D} - C:\PROGRA~1\FÆLLES~1\REAL\TOOLBAR\REALBAR.DLL (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAMMER\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: ICOO Loader BHO - {B9D90B27-AD4A-413a-88CB-3E6DDC10DC2D} - C:\WINDOWS\MSOPT.DLL (file missing)
O2 - BHO: Class - {2CC07AB9-A5D9-27DD-3113-405AEDC88F6B} - C:\WINDOWS\SYSTEM\MFCJM32.DLL (file missing)
O2 - BHO: Class - {94F50C5F-7EE4-2B92-1BB2-F47C0C0B407F} - C:\WINDOWS\SYSTEM\IEDH.DLL (file missing)
O2 - BHO: Class - {1BEDA55E-0B4B-E5DC-793A-BE375A0C18C7} - C:\WINDOWS\SYSTEM\JAVAIG.DLL (file missing)
O2 - BHO: Class - {6C95404A-E5AF-4D52-3E8A-81F9CF4E4876} - C:\WINDOWS\JAVAAI.DLL (file missing)
O2 - BHO: Class - {6A179565-2A80-B3E8-B301-3F172DD761A4} - C:\WINDOWS\WINMZ32.DLL (file missing)
O2 - BHO: Class - {B1D30F00-A22D-E5B5-37F9-350CF18F2255} - C:\WINDOWS\SYSTEM\IPRD.DLL (file missing)
O2 - BHO: Class - {9D939B9D-A7D9-2322-3649-32D4B58ECFAE} - C:\WINDOWS\SYSTEM\APPGI32.DLL (file missing)
O2 - BHO: Class - {5E72CEE7-CBA9-6EA8-6BD5-672ABB5AF46C} - C:\WINDOWS\APILG.DLL (file missing)
O2 - BHO: Class - {EB3E7E13-02B2-EFC8-085D-F71E98CAF509} - C:\WINDOWS\SYSTEM\JAVAFT32.DLL (file missing)
O2 - BHO: Class - {E99402A8-6CAD-6011-4227-8BE145489A72} - C:\WINDOWS\SYSTEM\JAVAPK32.DLL (file missing)
O2 - BHO: Class - {BF9AAF26-9064-6C4F-091C-07C0FEDA8044} - C:\WINDOWS\WINDV.DLL (file missing)
O2 - BHO: Class - {3BDA5C2B-5649-24F9-6A44-22FDF760EFBB} - C:\WINDOWS\SYSTEM\APIBO.DLL (file missing)
O2 - BHO: Class - {B0306DEB-BBD3-5C3B-9594-EBC25BA84BF8} - C:\WINDOWS\SYSTEM\APPIY.DLL (file missing)
O2 - BHO: Class - {A82A02CC-65E3-A41A-62AD-6DC403543011} - C:\WINDOWS\IPFJ32.DLL (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmer\Spybot - Search & Destroy\SDHelper.dll (file missing)
O2 - BHO: Class - {AD1DBCC5-1F76-3EE9-F75D-5E646CBA5DF8} - C:\WINDOWS\SYSTF.DLL (file missing)
O2 - BHO: Class - {0408BD9F-FBE0-566C-EBDA-DBC97DA7E144} - C:\WINDOWS\NTVF.DLL (file missing)
O2 - BHO: Class - {8763C5DA-0086-6A3C-33BE-57FD86A2E121} - C:\WINDOWS\SYSTEM\ADDGP.DLL (file missing)
O2 - BHO: Class - {316D6034-8672-118C-728F-D9D78EFEA265} - C:\WINDOWS\ATLEK.DLL (file missing)
O2 - BHO: Class - {737E2B23-4481-EB76-174F-477D913E7AA3} - C:\WINDOWS\SYSTEM\ADDII32.DLL (file missing)
O2 - BHO: Class - {57D7ADC8-B570-91D3-461E-38037D7868D0} - C:\WINDOWS\SYSTEM\JAVAGW32.DLL
O2 - BHO: Class - {4C929281-787B-C661-4821-B4EE5169FF8C} - C:\WINDOWS\SYSTEM\APIWB.DLL (file missing)
O2 - BHO: Class - {F0D5369E-9114-47AB-B1CA-76F455C0CFD1} - C:\WINDOWS\WINXP32.DLL (file missing)
O2 - BHO: Class - {9C0FBA5F-3F3D-397E-15C0-85E3828D8424} - C:\WINDOWS\MSOO.DLL (file missing)
O2 - BHO: Class - {853960FB-BE2D-A02D-0AF4-FE92BED9B76F} - C:\WINDOWS\SYSTEM\SYSYD.DLL (file missing)
O2 - BHO: Class - {B61BACAE-2CB6-EF24-C53E-8CA0B2907B91} - C:\WINDOWS\SYSOW.DLL (file missing)
O2 - BHO: Class - {BB32FFA6-E089-668D-E5AD-954034F388EC} - C:\WINDOWS\SYSTEM\MFCZO32.DLL (file missing)
O2 - BHO: Class - {805F48E9-3012-1459-6E21-A0B40429FD48} - C:\WINDOWS\SYSTEM\SYSWL32.DLL (file missing)
O2 - BHO: Class - {8E94E12D-82FB-A5DD-B787-5B86D538F6BF} - C:\WINDOWS\NETRD32.DLL (file missing)
O2 - BHO: Class - {79215374-7B27-A899-FBC1-3D321BA35AE9} - C:\WINDOWS\MSQJ32.DLL (file missing)
O2 - BHO: Class - {69A8956B-7ACA-79FD-92BF-5F3E74F6063C} - C:\WINDOWS\SYSTEM\SYSOE32.DLL (file missing)
O2 - BHO: Class - {F492FBA5-5668-CA6F-54F7-6A546017A1BA} - C:\WINDOWS\SYSTEM\IEOO32.DLL (file missing)
O2 - BHO: Class - {6F2EB59A-6F50-8B14-0D7D-BCC43DC7177A} - C:\WINDOWS\WINXB32.DLL (file missing)
O2 - BHO: Class - {2AB07CAC-2D55-4A38-8D00-5229FCA0DBED} - C:\WINDOWS\SYSTEM\NETNV.DLL (file missing)
O2 - BHO: Class - {52F7369D-0872-7872-D312-5B7E653BCDC4} - C:\WINDOWS\SYSTEM\IERT.DLL (file missing)
O2 - BHO: Class - {4A6CF2F7-DDDD-2A8C-FF62-94A72AA7954F} - C:\WINDOWS\APPKI32.DLL
O2 - BHO: Class - {9A5C3A3F-8512-4B05-8DD1-E190DD541F17} - C:\WINDOWS\SYSTEM\APPQY32.DLL (file missing)
O2 - BHO: Class - {43DD5961-CA21-309E-A707-F9C0813A3D33} - C:\WINDOWS\SYSTEM\CRER32.DLL (file missing)
O2 - BHO: Class - {70590428-FB03-7A67-515B-430D74B04FA4} - C:\WINDOWS\SYSTEM\MFCFJ.DLL (file missing)
O2 - BHO: Class - {E04B2E72-AF5D-42B4-27C2-1DFBEB4A9650} - C:\WINDOWS\IPCT.DLL (file missing)
O2 - BHO: Class - {CC12F8F4-58FB-F424-BB38-E47C13960419} - C:\WINDOWS\SYSTEM\APIWJ.DLL (file missing)
O2 - BHO: Class - {C1B2CC1A-DD3F-7AC3-6E0B-5A177E2A5CE6} - C:\WINDOWS\NTOC32.DLL (file missing)
O2 - BHO: Class - {D7678144-36BD-CABB-B257-C47FF48322B3} - C:\WINDOWS\SYSTEM\MSFU32.DLL (file missing)
O2 - BHO: Class - {DAC94D83-35DB-56CB-E0DC-071478A46ECF} - C:\WINDOWS\SDKDR32.DLL (file missing)
O2 - BHO: Class - {0317AD98-9368-D476-5B88-92ABD481A6D3} - C:\WINDOWS\IEGW32.DLL (file missing)
O2 - BHO: Class - {A006325B-CDDD-9214-0C39-240125681B78} - C:\WINDOWS\MSMS32.DLL (file missing)
O2 - BHO: Class - {FBE082F8-A0D5-70CD-EB90-9C45156A5E8A} - C:\WINDOWS\D3IM32.DLL (file missing)
O2 - BHO: Class - {E4FD7B6B-5237-72CA-7119-58038BA73734} - C:\WINDOWS\SYSTEM\IPUW32.DLL (file missing)
O2 - BHO: Class - {1323FD2C-C2E1-DE0A-5130-CFEAD2AAF490} - C:\WINDOWS\MSRP.DLL (file missing)
O2 - BHO: Class - {174A3954-A3DC-5E4D-FDE9-9589A7D3AC69} - C:\WINDOWS\MFCAR.DLL (file missing)
O2 - BHO: Class - {C28E57E7-AA77-D098-C622-BCA94EE277CC} - C:\WINDOWS\SYSTEM\CRPB32.DLL (file missing)
O2 - BHO: Class - {5964E3A2-2B4D-8894-0FC6-3BCB784625AD} - C:\WINDOWS\IPHB32.DLL (file missing)
O2 - BHO: Class - {3BB31146-3116-E523-81A1-39DC94BD27E5} - C:\WINDOWS\SDKMM.DLL (file missing)
O2 - BHO: Class - {E4347CF2-9AD1-BC8B-54FA-8C960CAB80FE} - C:\WINDOWS\SYSTEM\NETZR32.DLL (file missing)
O2 - BHO: Class - {76E936D9-D854-90B8-286E-78D1A5FD10D6} - C:\WINDOWS\SYSTEM\ATLXS.DLL (file missing)
O2 - BHO: Class - {2CDE3D2A-E587-41C7-9CE3-6C42DA8EA8BA} - C:\WINDOWS\SYSTEM\MFCXS32.DLL (file missing)
O2 - BHO: Class - {98C86A35-29E0-BCE9-E2DD-A478A37E2E2F} - C:\WINDOWS\SYSTEM\CRGJ.DLL (file missing)
O2 - BHO: Class - {D2278A6D-7AB7-3BA8-4BD1-A30D480B2914} - C:\WINDOWS\SYSTEM\APPSB32.DLL (file missing)
O2 - BHO: Class - {A737D6BA-19D7-F827-0FCA-A1970DCD983C} - C:\WINDOWS\SYSTEM\D3KN32.DLL (file missing)
O2 - BHO: ]äÀÒõ‡{')2·3¡Ö@¤y - Data - (no file)
O2 - BHO: Class - {F668D066-07D4-51E5-B567-4852D4C00B49} - C:\WINDOWS\SYSTEM\ATLZK.DLL (file missing)
O2 - BHO: Class - {E655B30E-6312-F0CC-F75E-35C1460C02FD} - C:\WINDOWS\SDKNN32.DLL (file missing)
O2 - BHO: Class - {4EB6319E-49FF-C8C6-FBBF-07BAC7CCFC75} - C:\WINDOWS\CRIC32.DLL (file missing)
O2 - BHO: Class - {A3DEAF74-6173-A931-A080-C91BB529A80E} - C:\WINDOWS\SYSTEM\APPPF32.DLL (file missing)
O2 - BHO: Class - {F5F0086E-C12D-DA23-939A-802FE220ADD3} - C:\WINDOWS\NETPR.DLL (file missing)
O2 - BHO: Class - {149FF75A-CFF6-2848-6EDA-3935097F0675} - C:\WINDOWS\ADDKK.DLL
O2 - BHO: Class - {5C6C89CE-8B09-EB67-08A6-ADCBA95BB4E3} - C:\WINDOWS\IPEI32.DLL (file missing)
O2 - BHO: Class - {F0D9B410-3C4F-707C-2E2D-529E64AA2118} - C:\WINDOWS\ATLQN.DLL (file missing)
O2 - BHO: Class - {7CC0602C-1895-21A0-C895-02B92C46C654} - C:\WINDOWS\JAVAUK.DLL (file missing)
O2 - BHO: Class - {CF546225-341C-30CE-6E17-98A3B9CEEB9D} - C:\WINDOWS\MSHE32.DLL (file missing)
O2 - BHO: Class - {29CAC2B2-5404-8226-89CD-9661EC3C744F} - C:\WINDOWS\SYSTEM\SDKUC.DLL (file missing)
O2 - BHO: Class - {B46E1113-30C3-D6F5-A9AD-77F24D480A73} - C:\WINDOWS\SYSTEM\APPNU.DLL (file missing)
O2 - BHO: Class - {15DB374F-A188-8A46-3C99-8A0FD007ABA7} - C:\WINDOWS\SYSTEM\APIHG.DLL (file missing)
O2 - BHO: Class - {09D55E10-2E07-7D53-29FE-5C3AF9DB4D7A} - C:\WINDOWS\ADDPZ32.DLL (file missing)
O2 - BHO: C:\WINDOWS\SYSTEM\JAVAPK32.DLL - InprocServer32 - (no file)
O2 - BHO: Class - {C964ABCA-619A-D517-19F0-3D02D7587F99} - C:\WINDOWS\NTDO.DLL (file missing)
O2 - BHO: Class - {36831713-F302-4755-78D3-A8F257D74FEF} - C:\WINDOWS\SYSTEM\NTPB32.DLL (file missing)
O2 - BHO: Class - {BB1D4CD3-FD52-C41F-0B05-6F49024773BD} - C:\WINDOWS\SYSTEM\NETHJ32.DLL (file missing)
O2 - BHO: Class - {60EE3993-541E-55E9-33E9-BB7AB0AC2EF3} - C:\WINDOWS\SYSTEM\APPNG.DLL (file missing)
O2 - BHO: Class - {6A361680-C454-C714-DE0E-8D884A7960E2} - C:\WINDOWS\SYSTEM\ATLYI32.DLL (file missing)
O2 - BHO: (no name) - {C9AD70A1-DF59-11D8-B83F-00E095CF4BA0} - C:\WINDOWS\SYSTEM\BBKFD.DLL (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: McAfee VirusScan - {ACB1E670-3217-45C4-A021-6B829A8A27CB} - C:\PROGRAMMER\MCAFEE\MCAFEE VIRUSSCAN\VSCSHELLEXTENSION.DLL
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
O4 - HKLM\..\Run: [AtiKey] Atitask.exe
O4 - HKLM\..\Run: [SXGDSENU] SXGDSENU.exe
O4 - HKLM\..\Run: [EACLEAN] C:\Programmer\Compaq\Easy Access Button Support\eaclean.exe /NORESTART
O4 - HKLM\..\Run: [CPQEASYACC] "C:\PROGRAMMER\COMPAQ\EASY ACCESS BUTTON SUPPORT\Cpqeaui.exe"
O4 - HKLM\..\Run: [AvconsoleEXE] C:\Programmer\Network Associates\McAfee VirusScan\avconsol.exe /minimize
O4 - HKLM\..\Run: [Vshwin32EXE] C:\Programmer\Network Associates\McAfee VirusScan\VSHWIN32.EXE
O4 - HKLM\..\Run: [VsStatEXE] C:\Programmer\Network Associates\McAfee VirusScan\VSSTAT.EXE /SHOWWARNING
O4 - HKLM\..\Run: [LWBMOUSE] C:\app\lwbwheel.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmer\Fælles filer\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [CriticalUpdate] c:\windows\SYSTEM\wucrtupd.exe -startup
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Programmer\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Programmer\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
O4 - HKLM\..\Run: [McAfee Guardian] "C:\PROGRAMMER\MCAFEE\MCAFEE SHARED COMPONENTS\GUARDIAN\CMGRDIAN.EXE" /SU
O4 - HKLM\..\RunServices: [Vshwin32EXE] C:\Programmer\Network Associates\McAfee VirusScan\VSHWIN32.EXE
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [MFCHK32.EXE] C:\WINDOWS\SYSTEM\MFCHK32.EXE
O4 - HKLM\..\RunServices: [McAfeeVirusScanService] C:\Programmer\McAfee\McAfee VirusScan\AVSYNMGR.EXE
O4 - HKLM\..\RunServices: [ADDSA32.EXE] C:\WINDOWS\SYSTEM\ADDSA32.EXE
O4 - HKLM\..\RunServices: [NETED32.EXE] C:\WINDOWS\NETED32.EXE
O4 - HKLM\..\RunServices: [MFCCA.EXE] C:\WINDOWS\SYSTEM\MFCCA.EXE
O4 - HKLM\..\RunServices: [NTQG32.EXE] C:\WINDOWS\NTQG32.EXE
O4 - HKLM\..\RunServices: [ATLKA.EXE] C:\WINDOWS\SYSTEM\ATLKA.EXE
O4 - HKLM\..\RunServices: [ADDPA32.EXE] C:\WINDOWS\SYSTEM\ADDPA32.EXE
O4 - HKLM\..\RunServices: [NETWL.EXE] C:\WINDOWS\SYSTEM\NETWL.EXE
O4 - HKLM\..\RunServices: [IPFZ32.EXE] C:\WINDOWS\SYSTEM\IPFZ32.EXE
O4 - HKLM\..\RunServices: [ATLLC.EXE] C:\WINDOWS\SYSTEM\ATLLC.EXE
O4 - HKLM\..\RunServices: [NTJX32.EXE] C:\WINDOWS\NTJX32.EXE
O4 - HKLM\..\RunServices: [IEUJ.EXE] C:\WINDOWS\SYSTEM\IEUJ.EXE
O4 - HKLM\..\RunServices: [SDKGL32.EXE] C:\WINDOWS\SYSTEM\SDKGL32.EXE
O4 - HKLM\..\RunServices: [ADDBX.EXE] C:\WINDOWS\ADDBX.EXE
O4 - HKLM\..\RunServices: [NTFA32.EXE] C:\WINDOWS\NTFA32.EXE
O4 - HKLM\..\RunServices: [JAVAOT.EXE] C:\WINDOWS\JAVAOT.EXE
O4 - HKLM\..\RunServices: [D3NB32.EXE] C:\WINDOWS\SYSTEM\D3NB32.EXE
O4 - HKLM\..\RunServices: [ATLRZ32.EXE] C:\WINDOWS\ATLRZ32.EXE
O4 - HKLM\..\RunServices: [MSIB32.EXE] C:\WINDOWS\MSIB32.EXE
O4 - HKLM\..\RunServices: [SDKML.EXE] C:\WINDOWS\SYSTEM\SDKML.EXE
O4 - HKLM\..\RunServices: [JAVALI32.EXE] C:\WINDOWS\SYSTEM\JAVALI32.EXE
O4 - HKLM\..\RunServices: [MSDB32.EXE] C:\WINDOWS\MSDB32.EXE
O4 - HKLM\..\RunServices: [NETXN.EXE] C:\WINDOWS\NETXN.EXE
O4 - HKLM\..\RunServices: [SYSGR.EXE] C:\WINDOWS\SYSTEM\SYSGR.EXE
O4 - HKLM\..\RunServices: [IPYY32.EXE] C:\WINDOWS\SYSTEM\IPYY32.EXE
O4 - HKLM\..\RunServices: [APPJP.EXE] C:\WINDOWS\APPJP.EXE
O4 - HKLM\..\RunServices: [NETPX32.EXE] C:\WINDOWS\SYSTEM\NETPX32.EXE
O4 - HKLM\..\RunServices: [APPJU32.EXE] C:\WINDOWS\SYSTEM\APPJU32.EXE
O4 - HKLM\..\RunServices: [MFCJS.EXE] C:\WINDOWS\SYSTEM\MFCJS.EXE
O4 - HKLM\..\RunServices: [NETVW32.EXE] C:\WINDOWS\NETVW32.EXE
O4 - HKLM\..\RunServices: [IPPI.EXE] C:\WINDOWS\SYSTEM\IPPI.EXE
O4 - HKLM\..\RunServices: [MFCGA32.EXE] C:\WINDOWS\MFCGA32.EXE
O4 - HKLM\..\RunServices: [ATLUR32.EXE] C:\WINDOWS\SYSTEM\ATLUR32.EXE
O4 - HKLM\..\RunServices: [ATLOX.EXE] C:\WINDOWS\SYSTEM\ATLOX.EXE
O4 - HKLM\..\RunServices: [CRCM.EXE] C:\WINDOWS\SYSTEM\CRCM.EXE
O4 - HKLM\..\RunServices: [IPVN.EXE] C:\WINDOWS\IPVN.EXE
O4 - HKLM\..\RunServices: [ATLCH32.EXE] C:\WINDOWS\SYSTEM\ATLCH32.EXE
O4 - HKLM\..\RunServices: [IPGJ32.EXE] C:\WINDOWS\SYSTEM\IPGJ32.EXE
O4 - HKLM\..\RunServices: [ATLJJ32.EXE] C:\WINDOWS\SYSTEM\ATLJJ32.EXE
O4 - HKLM\..\RunServices: [ATLKR.EXE] C:\WINDOWS\ATLKR.EXE
O4 - HKLM\..\RunServices: [WINSM32.EXE] C:\WINDOWS\SYSTEM\WINSM32.EXE
O4 - HKLM\..\RunServices: [NETNH.EXE] C:\WINDOWS\NETNH.EXE
O4 - HKLM\..\RunServices: [MFCKX.EXE] C:\WINDOWS\SYSTEM\MFCKX.EXE
O4 - HKLM\..\RunServices: [MFCUR.EXE] C:\WINDOWS\SYSTEM\MFCUR.EXE
O4 - HKLM\..\RunServices: [SDKOU32.EXE] C:\WINDOWS\SYSTEM\SDKOU32.EXE
O4 - HKLM\..\RunServices: [CRDH.EXE] C:\WINDOWS\CRDH.EXE
O4 - HKLM\..\RunServices: [APIWQ32.EXE] C:\WINDOWS\SYSTEM\APIWQ32.EXE
O4 - HKLM\..\RunServices: [JAVAWR32.EXE] C:\WINDOWS\SYSTEM\JAVAWR32.EXE
O4 - HKLM\..\RunServices: [MFCKE32.EXE] C:\WINDOWS\MFCKE32.EXE
O4 - HKLM\..\RunServices: [ATLGL32.EXE] C:\WINDOWS\SYSTEM\ATLGL32.EXE
O4 - HKLM\..\RunServices: [WINGR32.EXE] C:\WINDOWS\WINGR32.EXE
O4 - HKLM\..\RunServices: [D3QN.EXE] C:\WINDOWS\D3QN.EXE
O4 - HKLM\..\RunServices: [CRMG.EXE] C:\WINDOWS\SYSTEM\CRMG.EXE
O4 - HKLM\..\RunServices: [IEDB32.EXE] C:\WINDOWS\IEDB32.EXE
O4 - HKLM\..\RunServices: [IEQP32.EXE] C:\WINDOWS\SYSTEM\IEQP32.EXE
O4 - HKLM\..\RunServices: [CRKX32.EXE] C:\WINDOWS\CRKX32.EXE
O4 - HKLM\..\RunServices: [ADDPX.EXE] C:\WINDOWS\ADDPX.EXE
O4 - HKLM\..\RunServices: [IEJO32.EXE] C:\WINDOWS\SYSTEM\IEJO32.EXE
O4 - HKLM\..\RunServices: [JAVAPC32.EXE] C:\WINDOWS\SYSTEM\JAVAPC32.EXE
O4 - HKLM\..\RunServices: [NTXZ32.EXE] C:\WINDOWS\NTXZ32.EXE
O4 - HKLM\..\RunServices: [SDKRQ32.EXE] C:\WINDOWS\SYSTEM\SDKRQ32.EXE
O4 - HKLM\..\RunServices: [IPLW32.EXE] C:\WINDOWS\SYSTEM\IPLW32.EXE
O4 - HKLM\..\RunServices: [NTDY32.EXE] C:\WINDOWS\SYSTEM\NTDY32.EXE
O4 - HKLM\..\RunServices: [APIQT.EXE] C:\WINDOWS\APIQT.EXE
O4 - HKLM\..\RunServices: [ATLCL32.EXE] C:\WINDOWS\ATLCL32.EXE
O4 - HKLM\..\RunServices: [D3CJ32.EXE] C:\WINDOWS\D3CJ32.EXE
O4 - HKLM\..\RunServices: [SDKIJ32.EXE] C:\WINDOWS\SYSTEM\SDKIJ32.EXE
O4 - HKLM\..\RunServices: [JAVAGP.EXE] C:\WINDOWS\JAVAGP.EXE
O4 - HKLM\..\RunServices: [WINCM32.EXE] C:\WINDOWS\WINCM32.EXE
O4 - HKLM\..\RunServices: [ADDEY32.EXE] C:\WINDOWS\SYSTEM\ADDEY32.EXE
O4 - HKLM\..\RunServices: [SDKNM32.EXE] C:\WINDOWS\SDKNM32.EXE
O4 - HKLM\..\RunServices: [MFCNZ.EXE] C:\WINDOWS\SYSTEM\MFCNZ.EXE
O4 - HKLM\..\RunServices: [CROK.EXE] C:\WINDOWS\SYSTEM\CROK.EXE
O4 - HKLM\..\RunServices: [APPEK32.EXE] C:\WINDOWS\SYSTEM\APPEK32.EXE
O4 - HKLM\..\RunServices: [IETL.EXE] C:\WINDOWS\SYSTEM\IETL.EXE
O4 - HKLM\..\RunServices: [NETRE.EXE] C:\WINDOWS\SYSTEM\NETRE.EXE
O4 - HKLM\..\RunServices: [MSJC.EXE] C:\WINDOWS\SYSTEM\MSJC.EXE
O4 - HKCU\..\Run: [Taskbar Display Controls] RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
O4 - HKCU\..\Run: [McAfee.InstantUpdate.Monitor] "C:\Programmer\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" /STARTMONITOR
O4 - HKCU\..\Run: [SpySweeper] "C:\Programmer\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
O4 - HKCU\..\RunServices: [Taskbar Display Controls] RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
O4 - HKCU\..\RunServices: [McAfee.InstantUpdate.Monitor] "C:\Programmer\McAfee\McAfee Shared Components\Instant Updater\RuLaunch.exe" /STARTMONITOR
O4 - HKCU\..\RunServices: [SpySweeper] "C:\Programmer\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
O4 - Startup: Microsoft Office.lnk = C:\Programmer\Microsoft Office\Office\OSA9.EXE
O4 - Startup: Camio Viewer.lnk = C:\Programmer\Dell Computer\Dell Image Expert\IXApplet.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cabO18 - Protocol: icoo - {4A8DADD4-5A25-4D41-8599-CB7458766220} - C:\WINDOWS\MSOPT.DLL
Det er sgu da kinesisk det her.