Langsom pc - måske virus?
Sidder ude hos min ven og hans computer er monster langsom! Fornylig begyndte der at komme en opkaldsforbindelse som han intet kender til.. Jeg tror personligt der ligger rigtig meget snavs, måske en virus eller 2 - dog skal det siges at han har Adaware og kører det tit.. Jeg har hentet hijackthis og har kørt en scan... Hvis der er nogen der gider kigge på loggen ville jeg sætte pris på det!Logfile of HijackThis v1.98.2
Scan saved at 18:18:07, on 02-11-2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\Hotbar\bin\4.5.3.0\HbInst.exe
c:\progra~1\intern~1\iexplore.exe
C:\Programmer\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrator\Skrivebord\hijackthis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.pafrunlxykd.us/8sYQlVc7kF7KX5145KPeZwIEhflCeTk2CormH_cNfGzQUl0cbNQzpSAN14AymGKY.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:NavigationFailure
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:NavigationFailure
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:NavigationFailure
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:NavigationFailure
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchxp.com/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:NavigationFailure
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page_bak = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:24491
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - (no file)
O2 - BHO: joystopbore - {4198190A-E447-47F2-3D29-EF2D2CB86E6D} - C:\PROGRA~1\JUMPBA~1\Sitelong.dll (file missing)
O2 - BHO: SA - {5DAFD089-24B1-4c5e-BD42-8CA72550717B} - (no file)
O2 - BHO: (no name) - {9D9C62D0-2A94-7D4E-6254-15689776DB4E} - C:\DOCUME~1\ADMINI~1\APPLIC~1\JUMPBA~1\Base Junk.exe
O2 - BHO: Hotbar - {B195B3B3-8A05-11D3-97A4-0004ACA6948E} - C:\Programmer\Hotbar\bin\4.5.3.0\HbHostIE.dll
O2 - BHO: (no name) - {B3A1EC5A-E0E3-4659-A09E-91EED05ADFBD} - C:\WINDOWS\System32\mmlbc.dll
O2 - BHO: Cls - {CF021F40-3E14-23A5-CBA2-717177657972} - C:\WINDOWS\System32\qwe7972.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmer\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: PROXY ONLINE - {C988F877-DDA7-DEB9-B315-40FC7F82C835} - C:\PROGRA~1\JUMPBA~1\Sitelong.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\WINDOWS\Downloaded Program Files\googlenav.dll
O3 - Toolbar: Hotbar - {B195B3B3-8A05-11D3-97A4-0004ACA6948E} - C:\Programmer\Hotbar\bin\4.5.3.0\HbHostIE.dll
O4 - HKLM\..\Run: [Realtime Audio Engine] mmrtkrnl.exe
O4 - HKLM\..\Run: [WeatherOnTray] C:\Programmer\Hotbar\bin\4.5.3.0\WeatherOnTray.exe
O4 - HKLM\..\Run: [64 Way Dent Proc] C:\WINDOWS\All Users\Programdata\Acid Extra 64 Way\tool glue.exe
O4 - HKLM\..\Run: [ControlPanel] C:\WINDOWS\System32\twink64.exe internat.dll,LoadKeyboardProfile
O4 - HKLM\..\Run: [Hotbar] C:\Programmer\Hotbar\bin\4.5.3.0\HbInst.exe /Upgrade
O4 - HKCU\..\Run: [dash close] C:\DOCUME~1\ADMINI~1\APPLIC~1\VGAMAN~1\roadgram.exe
O8 - Extra context menu item: &Google Search - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsearch.html
O8 - Extra context menu item: Backward &Links - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmcache.html
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Si&milar Pages - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsimilar.html
O8 - Extra context menu item: Åbn billede i &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~1\OFFICE\1030\PHDINTL.DLL/phdContext.htm
O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin3.dll
O12 - Plugin for .tif: C:\Programmer\Internet Explorer\PLUGINS\npqtplugin5.dll
O13 - WWW Prefix: http://turboinet.com/r.cgi?
O15 - Trusted Zone: *.awmguild.com
O15 - Trusted Zone: *.vladzone.com
O16 - DPF: {09D15CB3-C394-4C2B-8EE6-6B7C585D816B} - http://69.50.177.100/1/rdgDK409.exe
O16 - DPF: {11311111-1111-1111-1111-111111111157} - file://C:\Recycled\Q330995.exe
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralInitialSetup1.0.0.8.cab
O16 - DPF: {3717DF57-0396-463D-98B7-647C7DC6898A} - http://delivery.inet-traffic.com/inetdl.exe
O16 - DPF: {6CB5E471-C305-11D3-99A8-000086395495} (Google Activate) - http://toolbar.google.com/data/da/big/1.1.62-big/GoogleNav.cab
O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.netvenda.com/sites/games-intl/dk/games4.cab
O18 - Filter: text/html - {A1934D02-6346-488C-8B37-FE6AA37FD156} - C:\WINDOWS\System32\mmlbc.dll
O18 - Filter: text/plain - {A1934D02-6346-488C-8B37-FE6AA37FD156} - C:\WINDOWS\System32\mmlbc.dll
