hijack.log - Krise!
Jeg vil høre, om en eller flere vil forsøge at hjælpe mig? Jeg har problemer med "A fatal error in IE has occured at 0028:C0011E36 in VXD VMM(01) + 00010E36. Error was caused by Trojan-Spy.HTML.Smitfraud.c"Her er min hijack.log:
Logfile of HijackThis v1.99.1
Scan saved at 23:31:00, on 23-06-05
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
D:\WINDOWS\SYSTEM\KERNEL32.DLL
D:\WINDOWS\SYSTEM\MSGSRV32.EXE
c:\JETSUITE\jshelper.exe
D:\WINDOWS\SYSTEM\MPREXE.EXE
D:\WINDOWS\SYSTEM\mmtask.tsk
D:\WINDOWS\SYSTEM\MSTASK.EXE
D:\WINDOWS\SYSTEM\SPOOLSRV32.EXE
D:\WINDOWS\EXPLORER.EXE
C:\JETSUITE\JETSTAT.EXE
D:\WINDOWS\TASKMON.EXE
D:\WINDOWS\SYSTEM\SYSTRAY.EXE
D:\PROGRAMMER\MATROX MGA POWERDESK\MGACTRL.EXE
D:\PROGRAMMER\MATROX MGA POWERDESK\COLOR\HGCCTL95.EXE
D:\WINDOWS\LOADQM.EXE
D:\IMAGEMATE COMPACTFLASH USB\SANDICON.EXE
D:\WINDOWS\SYSTEM\QTTASK.EXE
C:\JETSUITE\JSFMAN.EXE
D:\PROGRAMMER\MATROX MGA POWERDESK\QDESK\MGAQDESK.EXE
D:\PROGRAMMER\MSN MESSENGER\MSNMSGR.EXE
D:\PROGRAMMER\ADOBE\ACROBAT 5.0\DISTILLR\ACROTRAY.EXE
D:\PROGRAMMER\SPYWAREGUARD\SGMAIN.EXE
D:\WINDOWS\SYSTEM\WMIEXE.EXE
D:\PROGRAMMER\ADWAREFILTER\ADWAREFILTER.EXE
C:\PROGRAM FILES\INTERMUTE\SPYSUBTRACT\SPYSUB.EXE
C:\PROGRAM FILES\INTERMUTE\ADSUBTRACT\ADSUB.EXE
D:\WINDOWS\SYSTEM\DDHELP.EXE
D:\WINDOWS\SYSTEM\PSTORES.EXE
D:\PROGRAMMER\SPYWAREGUARD\SGBHP.EXE
D:\WINDOWS\SYSTEM\SPOOL32.EXE
D:\PROGRAMMER\INTERNET EXPLORER\IEXPLORE.EXE
D:\WINDOWS\SKRIVEBORD\HIJACKTHIS.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.dk/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:1029
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\PROGRAMMER\ADOBE\ACROBAT 5.0\ACROBAT\ACTIVEX\ACROIEHELPER.OCX
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINDOWS\SYSTEM\MSDXM.OCX
O3 - Toolbar: AdSubtract Toolbar - {F14AABDD-0232-4e5a-9B52-4178AC0A62B5} - D:\WINDOWS\SYSTEM\ADSUBTB.DLL
O4 - HKLM\..\Run: [Skan registreringsdatabase] D:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [Job-oversigt] D:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [Matrox Control Center] D:\Programmer\Matrox MGA PowerDesk\mgactrl.exe
O4 - HKLM\..\Run: [Matrox Color Control] D:\Programmer\Matrox MGA PowerDesk\Color\hgcctl95.exe
O4 - HKLM\..\Run: [Matrox Diagnostic] D:\Programmer\Matrox MGA PowerDesk\diag\mgadiag.exe -s
O4 - HKLM\..\Run: [LoadQM] loadqm.exe
O4 - HKLM\..\Run: [SandIcon] D:\ImageMate CompactFlash USB\SandIcon.Exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
O4 - HKLM\..\Run: [PSGuard] D:\PROGRAMMER\PSGUARD\PSGUARD.EXE
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [Planlægningsagent] D:\WINDOWS\SYSTEM\mstask.exe
O4 - HKLM\..\RunServices: [Srv32 spool service] D:\WINDOWS\System\spoolsrv32.exe
O4 - HKCU\..\Run: [Matrox QuickDesk] D:\Programmer\Matrox MGA PowerDesk\QDesk\mgaqdesk.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\PROGRAMMER\MSN MESSENGER\MSNMSGR.EXE" /background
O4 - Startup: vpsched.lnk = D:\Programmer\Matrox Video Tools\vpsched.exe
O4 - Startup: Acrobat Assistant.lnk = D:\Programmer\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Startup: SpywareGuard.lnk = D:\Programmer\SpywareGuard\sgmain.exe
O4 - Startup: AdwareFilter Background Protection.lnk = D:\Programmer\AdwareFilter\adwarefilter.exe
O4 - Startup: SpySubtract.lnk = C:\Program Files\interMute\SpySubtract\SpySub.exe
O4 - Startup: AdSubtract.lnk = C:\Program Files\interMute\AdSubtract\AdSub.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: AdSubtract: Cloak Image - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/361
O8 - Extra context menu item: AdSubtract: Report Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/359
O8 - Extra context menu item: AdSubtract: Bypass Site - res://C:\Program Files\interMute\AdSubtract\AdSub.exe/360
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
