Avatar billede mkiii Nybegynder
11. december 2006 - 19:52 Der er 7 kommentarer og
1 løsning

Hjælp til log

Hej har du fulgt guiden og håber at en/nogle vil hjælpe:

SuperAntiSpyware
SUPERAntiSpyware Scan Log
Generated 12/11/2006 at 07:44 PM

Application Version : 3.4.1000

Core Rules Database Version : 3144
Trace Rules Database Version: 1160

Scan type      : Complete Scan
Total Scan Time : 00:03:52

Memory items scanned      : 221
Memory threats detected  : 1
Registry items scanned    : 4720
Registry threats detected : 18
File items scanned        : 3892
File threats detected    : 92

Adware.Vundo Variant
    C:\WINDOWS\SYSTEM32\DDABX.DLL
    C:\WINDOWS\SYSTEM32\DDABX.DLL
    Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\ddabx

Adware.Tracking Cookie
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@tradedoubler[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@dk.drivecleaner[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@msnportal.112.2o7[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.nabosex[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ads.realtechnetwork[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@amaena[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@xiti[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@admarketplace[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@atdmt[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ad.yieldmanager[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ad.zanox[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@stats.drivecleaner[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@1072704879[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@metacafe.122.2o7[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@interclick[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@e2.emediate[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@2o7[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@usenext[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.fullreleases[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.amaena[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@audit.median[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@dk.winantivirus[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ad1.clickhype[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@yadro[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@banner.32vegas[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.winantivirus[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@mediaplex[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@xtendmedia[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@m1.webstats4u[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@winantivirus[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@atwola[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@adtech[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@hotbar[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@adsrevenue[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ads.dailyrush[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@partygaming.122.2o7[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@tacoda[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@partypoker[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@doubleclick[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@warlog[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@mb[3].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.crackserver[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@advertpro[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@adserver.banneradministration[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.drivecleaner[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@clicksor[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@crackmafia[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@heavycom.122.2o7[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@mb[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@as-eu.falkag[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@stats1.reliablestats[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@rotator.adjuggler[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@drivecleaner[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@mb[4].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@warez[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@cgi-bin[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@ads.mininova[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@1072556060[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@adbrite[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@clicktorrent[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@track.adform[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@serving.rpowermedia[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@cassava[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@indexstats[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@crackserver[2].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@888[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@sexdebut[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@advertising[1].txt
    C:\Documents and Settings\Dan Riis\Cookies\dan riis@www.winantiviruspro[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@ad.yieldmanager[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@ad1.clickhype[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@ad1.emediate[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@adbrite[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@advertpro[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@clicktorrent[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@e2.emediate[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@ilead.itrack[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@indextools[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@mediametrics.mpsa[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@partygaming.122.2o7[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@partypoker[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@rotator.adjuggler[2].txt
    D:\backup\Dan Riis\Cookies\dan riis@track.adform[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@www.multimediaworld[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@xiti[1].txt
    D:\backup\Dan Riis\Cookies\dan riis@yadro[1].txt

Unclassified.Unknown Origin
    HKCR\CLSID\{35F7813A-AF74-4474-B1DC-7EE6FB6C43C6}
    HKCR\CLSID\{35F7813A-AF74-4474-B1DC-7EE6FB6C43C6}\InprocServer32
    HKCR\CLSID\{35F7813A-AF74-4474-B1DC-7EE6FB6C43C6}\InprocServer32#ThreadingModel

Trojan.Unknown Origin
    HKLM\SOFTWARE\Microsoft\MSSMGR
    HKLM\SOFTWARE\Microsoft\MSSMGR#Data
    HKLM\SOFTWARE\Microsoft\MSSMGR#LSTV
    HKLM\SOFTWARE\Microsoft\MSSMGR#Brnd
    HKLM\SOFTWARE\Microsoft\MSSMGR#Rid
    HKLM\SOFTWARE\Microsoft\MSSMGR#LID
    HKLM\SOFTWARE\Microsoft\MSSMGR#SCLIST
    HKLM\SOFTWARE\Microsoft\MSSMGR#SSLIST
    HKLM\SOFTWARE\Microsoft\MSSMGR#BSTV
    HKLM\SOFTWARE\Microsoft\MSSMGR#MSLIST
    HKLM\SOFTWARE\Microsoft\MSSMGR#BPTV
    HKLM\SOFTWARE\Microsoft\MSSMGR#PSTV
    HKLM\SOFTWARE\Microsoft\MSSMGR#SSTV
    HKLM\SOFTWARE\Microsoft\MSSMGR#OCCUR

Adware.VSToolbar
    C:\Documents and Settings\Dan Riis\Application Data\SearchToolbarCorp\Toolbar Vision\PageHistory.txt
    C:\Documents and Settings\Dan Riis\Application Data\SearchToolbarCorp\Toolbar Vision\WebHistory.txt
    C:\Documents and Settings\Dan Riis\Application Data\SearchToolbarCorp\Toolbar Vision
    C:\Documents and Settings\Dan Riis\Application Data\SearchToolbarCorp


**************************************
Dr. Web

ErrorSafeFreeInstall_dk[1].exe    C:\Documents and Settings\Christina Priisholm\Lokale indstillinger\Temporary Internet Files\Content.IE5\QL0DSNQF    Trojan.DownLoader.10963    Deleted.
bpftpserver-service.exe    C:\Programmer\BPFTP Server    Trojan.Runas    Deleted.
A0010876.dll    C:\System Volume Information\_restore{5F1C04AB-EDB9-4AEC-99F2-CEC5E50B6BB8}\RP51    Trojan.Mezzia    Deleted.
A0012012.exe    C:\System Volume Information\_restore{5F1C04AB-EDB9-4AEC-99F2-CEC5E50B6BB8}\RP56    Trojan.Runas    Deleted.
ljjijkh.dll    C:\WINDOWS\system32    Trojan.Virtumod    Deleted.
oepvxbov.exe    C:\WINDOWS\system32    Adware.TopSearch    Renamed.
wwyjwnid.exe    C:\WINDOWS\system32    Adware.TopSearch    Renamed.
A0000632.dll    D:\System Volume Information\_restore{5F1C04AB-EDB9-4AEC-99F2-CEC5E50B6BB8}\RP12    Modification of Trojan.DownLoader.4268    Moved.


*********************************
HijackThis log

Logfile of HijackThis v1.99.1
Scan saved at 19:49:41, on 11-12-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmer\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Programmer\Fælles filer\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\D-Link\AirPlus G\AirGCFG.exe
C:\Programmer\ASUS\Probe\AsusProb.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Programmer\Windows Defender\MSASCui.exe
C:\Programmer\MSN Messenger\MsnMsgr.Exe
C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Dan Riis\Lokale indstillinger\Temporary Internet Files\Content.IE5\SZ5JEQB1\hijackthis[1].exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2D4DA4A2-6E0F-4B18-BB96-13B0F51064F9} - C:\WINDOWS\system32\ddabx.dll (file missing)
O2 - BHO: (no name) - {35F7813A-AF74-4474-B1DC-7EE6FB6C43C6} - (no file)
O4 - HKLM\..\Run: [D-Link AirPlus G] C:\Programmer\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [ASUS Probe] C:\Programmer\ASUS\Probe\AsusProb.exe
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Windows Defender] "C:\Programmer\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmer\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = ?
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\WINDOWS\system32\shdocvw.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1163933364046
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk/html/activex/e-Safekey/BG/e-Safekey.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{86A164D6-787F-4048-83D3-D92F4B179AC1}: NameServer = 192.168.0.1
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winjks32 - winjks32.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmer\Fælles filer\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Programmer\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe








På forhånd tak
11. december 2006 - 20:19 #1
De andre programmer du har gennemført har pelset det værste/meste !!! FINT...

Kør en scanning med Hijackthis,
Du får herunder nogle filer, som du skal fixe. Det, du skal gøre, er at sætte et flueben ud for disse filer. Når du har gjort det, så lukker du alle andre vinduer ned. Det er meget vigtigt at det eneste vindue, som er åbent er HijackThis vinduet. Husk også at lukke dette vindue, når du har markeret filerne. Nu må du fixe. Klik på Fix checked.

Det er disse, som skal fixes:

O2 - BHO: (no name) - {2D4DA4A2-6E0F-4B18-BB96-13B0F51064F9} - C:\WINDOWS\system32\ddabx.dll (file missing)
O2 - BHO: (no name) - {35F7813A-AF74-4474-B1DC-7EE6FB6C43C6} - (no file)
O20 - Winlogon Notify: winjks32 - winjks32.dll (file missing)

Genstart, kør en ny scanning med hijackthis, og kopier en frisk log herind til tjek.

NB: Inden næste kørsel med HiJackThis.exe skal du OMDØBE programfilen HiJackThis.exe til ALTERNATIV.exe , da visse uønskede elementer har en tendens til at skjule sig når der kører en process ved navn HiJackThis.exe !!!

------------------------------------------------------------------------
Avatar billede mkiii Nybegynder
11. december 2006 - 20:29 #2
tak for hurtigt svar
nu ser loggen sådan ud:

Logfile of HijackThis v1.99.1
Scan saved at 20:27:46, on 11-12-2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmer\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmer\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Programmer\Fælles filer\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\Programmer\D-Link\AirPlus G\AirGCFG.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Programmer\Windows Defender\MSASCui.exe
C:\Programmer\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Dan Riis\Skrivebord\hallloooo.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmer\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [D-Link AirPlus G] C:\Programmer\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Windows Defender] "C:\Programmer\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmer\MSN Messenger\MsnMsgr.Exe" /background
O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Opslag - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\WINDOWS\system32\shdocvw.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1163933364046
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://netbank.bgbank.dk/html/activex/e-Safekey/BG/e-Safekey.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{86A164D6-787F-4048-83D3-D92F4B179AC1}: NameServer = 192.168.0.1
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Programmer\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmer\Fælles filer\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Programmer\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
11. december 2006 - 21:04 #3
Nydeligt...

PS: Bruger du dette [PartyPoker] halløj ?
11. december 2006 - 21:05 #4
Du er velkommen en anden gang...

Åbn en mappe, klik på Funktioner >Mappeindstillinger >Vis.
Sæt flueben ved "Skjul beskyttede operativsystemfiler".
Sæt prik i "Vis ikke skjulte filer og mapper".

Du bør rense temp med denne fil, det tager kun få sek.
http://www.spywareinfo.dk/download/cleantempxp2k.bat

Efter sådan en tur er det altid en god ide og rydde op i systemgendannelsesfilerne.
Deaktiver systemgendannelse -> http://www.spywareinfo.dk/#/tip-og-tricks/deaktiver_systemgendannelse.htm
Genstart din computer - aktiver systemgendannelse. Dette gøres samme sted, hvor du deaktiverede, denne gang skal du blot aktivere.
Det vil også være en god idé manuelt at oprette et nyt punkt, som du kan navngive, og vende tilbage til, hvis du skulle få problemer af nogen art.

Et par artikler om sikker surfing finder du her:
http://www.spywarefri.dk/forum/topic.asp?TOPIC_ID=14414

Safe Surfing...
Avatar billede mkiii Nybegynder
11. december 2006 - 21:36 #5
nej bruger ikke det poker der.
okay tak nu har jeg slået det system gendanelse fra.
11. december 2006 - 22:37 #6
... og TIL IGEN !!!
Avatar billede mkiii Nybegynder
12. december 2006 - 16:23 #7
ja selvfølgelig glemte vidst at skrive hehe
men kan jeg også fjerne de 2 hvor der står partypoker ved hvis jeg ikke bruger det ?
12. december 2006 - 21:50 #8
... kig først i
- kontrolpanel - tilføj/fjern programmer og den ka' ædes derfra...

Ellers som du selv foreslår ...
Avatar billede Ny bruger Nybegynder

Din løsning...

Tilladte BB-code-tags: [b]fed[/b] [i]kursiv[/i] [u]understreget[/u] Web- og emailadresser omdannes automatisk til links. Der sættes "nofollow" på alle links.

Loading billede Opret Preview
Kategori
IT-kurser om Microsoft 365, sikkerhed, personlig vækst, udvikling, digital markedsføring, grafisk design, SAP og forretningsanalyse.

Log ind eller opret profil

Hov!

For at kunne deltage på Computerworld Eksperten skal du være logget ind.

Det er heldigvis nemt at oprette en bruger: Det tager to minutter og du kan vælge at bruge enten e-mail, Facebook eller Google som login.

Du kan også logge ind via nedenstående tjenester