Venligst tjek af logfil
En venlig sjæl, der vil tjekke denne logfil:Logfile of HijackThis v1.97.7
Scan saved at 14:39:34, on 19-03-2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Programmer\Fælles filer\Symantec Shared\ccEvtMgr.exe
D:\WINDOWS\Explorer.EXE
D:\Programmer\Fælles filer\Symantec Shared\ccApp.exe
D:\Programmer\Real\RealPlayer\realplay.exe
D:\windows\saap.exe
D:\WINDOWS\Krl.exe
D:\Programmer\BullsEye Network\bin\bargains.exe
D:\WINDOWS\System32\ap9h4qmo.exe
D:\WINDOWS\System32\ctfmon.exe
D:\Programmer\Messenger\msmsgs.exe
D:\WINDOWS\System32\ntddetect.exe
D:\Documents and Settings\Michael Rex Sørensen\Application Data\orec.exe
D:\WINDOWS\System32\l?gonui.exe
D:\Programmer\Fælles filer\Microsoft Shared\VS7Debug\mdm.exe
D:\Programmer\Norton AntiVirus\navapsvc.exe
D:\Programmer\Norton AntiVirus\AdvTools\NPROTECT.EXE
D:\WINDOWS\System32\svchost.exe
D:\Programmer\Internet Explorer\IEXPLORE.EXE
D:\WINDOWS\System32\n5l5l224ypthd.exe
D:\WINDOWS\System32\wuauclt.exe
D:\Documents and Settings\Michael Rex Sørensen\Dokumenter\hjt Hiackthis.exe
D:\Documents and Settings\Michael Rex Sørensen\Dokumenter\hjt Hiackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://letgohome.com/hp.htm?id=293
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hyperlinks
O2 - BHO: (no name) - {467FAEB2-5F5B-4c81-BAE0-2A4752CA7F4E} - D:\WINDOWS\System32\U6EUN9~1.DLL
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Programmer\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NeroCheck] D:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [IE6] gscon.exe
O4 - HKLM\..\Run: [Winupdate Service] winxp2.exe
O4 - HKLM\..\Run: [USB Device] win32usb.exe
O4 - HKLM\..\Run: [Cryptographic Service] D:\WINDOWS\System32\xcvmbppa.exe
O4 - HKLM\..\Run: [ccApp] "D:\Programmer\Fælles filer\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "D:\Programmer\Fælles filer\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] D:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] D:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [SSC_UserPrompt] D:\Programmer\Fælles filer\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [RealTray] D:\Programmer\Real\RealPlayer\realplay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [saap] d:\windows\saap.exe
O4 - HKLM\..\Run: [Bkd] D:\WINDOWS\Krl.exe
O4 - HKLM\..\Run: [BullsEye Network] D:\Programmer\BullsEye Network\bin\bargains.exe
O4 - HKLM\..\Run: [ntddetect] D:\WINDOWS\System32\ntddetect.exe
O4 - HKLM\..\Run: [ap9h4qmo] D:\WINDOWS\System32\ap9h4qmo.exe
O4 - HKLM\..\Run: [Tgp] D:\WINDOWS\Lno.exe
O4 - HKLM\..\Run: [Flh] D:\WINDOWS\System32\Pih.exe
O4 - HKLM\..\Run: [Rvs] D:\WINDOWS\Qmv.exe
O4 - HKLM\..\Run: [Ctf] D:\WINDOWS\System32\Ctk.exe
O4 - HKLM\..\Run: [shin] D:\WINDOWS\shin.exe
O4 - HKLM\..\Run: [Control handler] D:\WINDOWS\System32\n5l5l224ypthd.exe
O4 - HKLM\..\Run: [Security iGuard] D:\Programmer\Security iGuard\Security iGuard.exe
O4 - HKLM\..\RunServices: [IE6] gscon.exe
O4 - HKLM\..\RunServices: [Winupdate Service] winxp2.exe
O4 - HKLM\..\RunServices: [USB Device] win32usb.exe
O4 - HKLM\..\RunServices: [ntddetect] D:\WINDOWS\System32\ntddetect.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "D:\Programmer\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [USB Device] win32usb.exe
O4 - HKCU\..\Run: [Bkd] D:\WINDOWS\Krl.exe
O4 - HKCU\..\Run: [ntddetect] D:\WINDOWS\System32\ntddetect.exe
O4 - HKCU\..\Run: [Mobs] D:\Documents and Settings\Michael Rex Sørensen\Application Data\orec.exe
O4 - HKCU\..\Run: [Sgslq] D:\WINDOWS\System32\l?gonui.exe
O4 - HKCU\..\Run: [Tgp] D:\WINDOWS\Lno.exe
O4 - HKCU\..\Run: [Flh] D:\WINDOWS\System32\Pih.exe
O4 - HKCU\..\Run: [Rvs] D:\WINDOWS\Qmv.exe
O4 - HKCU\..\Run: [Ctf] D:\WINDOWS\System32\Ctk.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Programmer\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: RealDownload.lnk = D:\Programmer\Real\RealDownload\Realdownload.exe
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.danskebank.dk/html/activex/e-Safekey/DB/e-Safekey.cab
