Strategery Skrevet 16. april 2005 Del Skrevet 16. april 2005 Når jeg spiller CS, så kommer det stadig opp popups fra Internett Explorer. Dette er veldig irriterende, den hopper ut av CS og jeg må hoppe inn i spillet igjen. Noen som vet hvordan jeg blir kvitt popups? Lenke til kommentar
Moltrez Skrevet 16. april 2005 Del Skrevet 16. april 2005 (endret) Les litt på denne siden, så kan det hende du blir kvitt problemet. Du har helt sikkert spyware på maskinen. Kan jo også laste ned forskjellige pop-up blockers.. Endret 16. april 2005 av Moltrez Lenke til kommentar
embark Skrevet 16. april 2005 Del Skrevet 16. april 2005 Enten så får jeg diverse sure kommentarer for denne, eller så forandrer jeg livet ditt : www.mozilla.org Lenke til kommentar
Moltrez Skrevet 16. april 2005 Del Skrevet 16. april 2005 Han blir jo ikke kvitt pop-ups kun ved å installere Mozilla. Spyware er han allerede infisert med, så Mozilla hjelper nok ikke i den saken. Men Mozilla og Opera f.eks er noe du bør bruke i fremtiden, slik at du slipper slik. Bedre sikkerhet i de to også, i forhold til IE. På tide at folk legger IE på hylla, og begynner å bruke noe annet Lenke til kommentar
Strategery Skrevet 16. april 2005 Forfatter Del Skrevet 16. april 2005 Jeg bruker opera, men det kommer popups fra exploreren forde. Lenke til kommentar
embark Skrevet 16. april 2005 Del Skrevet 16. april 2005 Jeg bruker opera, men det kommer popups fra exploreren forde. Har du scanna med en eller annen spyware sweeper? Adaware, SpySweeper, Spybot S&D eller noe? Lenke til kommentar
Strategery Skrevet 18. april 2005 Forfatter Del Skrevet 18. april 2005 Jeg bruker opera, men det kommer popups fra exploreren forde. Har du scanna med en eller annen spyware sweeper? Adaware, SpySweeper, Spybot S&D eller noe? Har scannet med spyware cleaners fra alle forskjellige plasser. Ikke nok med at det kommer popups, det legger seg linker på skrivebordet Lenke til kommentar
miCro Skrevet 18. april 2005 Del Skrevet 18. april 2005 Jeg bruker opera, men det kommer popups fra exploreren forde. Har du scanna med en eller annen spyware sweeper? Adaware, SpySweeper, Spybot S&D eller noe? Har scannet med spyware cleaners fra alle forskjellige plasser. Ikke nok med at det kommer popups, det legger seg linker på skrivebordet Følg Bli kvitt spyware/adaware guiden. Har du fortsatt problemer etter dette er vel formatering den eneste reelle løsningen. Lenke til kommentar
zjulik Skrevet 18. april 2005 Del Skrevet 18. april 2005 Last ned Hijackthis fra http://www.majorgeeks.com/download3155.html og post loggfilen din her etter en scan. Lenke til kommentar
perpyro Skrevet 18. april 2005 Del Skrevet 18. april 2005 Jeg har liggende Adaware remower gold til de virkelige problemene. Det er dåg ikke mye igjen etter en scan med både MS antyspyware og spybot. Programmet koster penger dersom man vil at det skal reparere problemene men man kan ta ut loggen og reparere manuelt ettersom den oppgir registerkeyer og eventuelle filer. Lenke til kommentar
Strategery Skrevet 19. april 2005 Forfatter Del Skrevet 19. april 2005 Last ned Hijackthis fra http://www.majorgeeks.com/download3155.html og post loggfilen din her etter en scan. Logfile of HijackThis v1.99.1 Scan saved at 14:57:02, on 19.04.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Programfiler\Java\j2re1.4.2_03\bin\jusched.exe C:\Programfiler\Logitech\iTouch\iTouch.exe C:\Programfiler\ISTsvc\istsvc.exe C:\WINDOWS\xiigj.exe C:\windows\system32\wnltjgku.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\Programfiler\Messenger\msmsgs.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\PROGRA~1\COMMON~1\zwfo\zwfom.exe C:\Programfiler\MSN Messenger\msnmsgr.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe c:\progra~1\intern~1\iexplore.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\windows\system32\packager.exe C:\PROGRA~1\COMMON~1\zwfo\zwfoa.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Programfiler\ccxgui\ccXservice.exe C:\Programfiler\ccxgui\ccxstream.exe C:\Programfiler\Norton AntiVirus\navapsvc.exe C:\Programfiler\Norton AntiVirus\IWP\NPFMntor.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\System32\ups.exe C:\WINDOWS\System32\HPZipm12.exe C:\Programfiler\Opera1\opera.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Programfiler\WinRAR\WinRAR.exe C:\DOCUME~1\MAGNUS~4\LOKALE~1\Temp\Rar$EX00.250\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.onjoolhnnwxkfugdwcbeatpji.uk/TD...AA5azoGxhzm.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.eobenebhhrocjyh.com/TDvpwxPS/3O...bkd4Qb_ffTQ.cgi R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.windowenhancer.com/nph-WESea...er=wesearch&kw= R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.linktones.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 - BHO: PynixObj Class - {00000000-DD60-0064-6EC2-6E0100000000} - C:\WINDOWS\Pynix.dll O2 - BHO: (no name) - {00041A26-7033-432C-94C7-6371DE343822} - (no file) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {2673A6B2-2FAD-0A0F-45BC-931429858C51} - C:\DOCUME~1\MAGNUS~4\PROGRA~1\ANTEBO~1\acid proxy.exe O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programfiler\Norton AntiVirus\NavShExt.dll O2 - BHO: (no name) - {DE614603-6320-4046-A7A7-6A69CEC26F14} - C:\WINDOWS\mslagent\4b_1,0,0,6_mslagent.dll (file missing) O2 - BHO: (no name) - {E4F1F2B4-9596-602D-E765-59B8331801E3} - C:\PROGRA~1\ANTEBO~1\Mealrect.exe (file missing) O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programfiler\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [PromulGate] "C:\Programfiler\DelFin\PromulGate\PgMonitr.exe" O4 - HKLM\..\Run: [WindowEnhancer] "C:\Programfiler\winex\v2\winex.EXE" /U O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Programfiler\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [GREATOKAYSOAPTITLE] C:\Documents and Settings\All Users\Programdata\itch junk great okay\TwoVga.exe O4 - HKLM\..\Run: [zBrowser Launcher] C:\Programfiler\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe O4 - HKLM\..\Run: [seekpokebonemapi] C:\Documents and Settings\All Users\Programdata\exitinternetseekpoke\Barb That.exe O4 - HKLM\..\Run: [ATIPTA] C:\Programfiler\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe O4 - HKLM\..\Run: [MessengerPlus3] "C:\Programfiler\Messenger Plus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [WinTools] C:\PROGRA~1\FELLES~1\WinTools\WToolsA.exe O4 - HKLM\..\Run: [webHancer Survey Companion] "C:\Program Files\webHancer\Programs\whSurvey.exe" O4 - HKLM\..\Run: [TBPS] C:\Programfiler\Toolbar\TBPS.exe O4 - HKLM\..\Run: [iST Service] C:\Programfiler\ISTsvc\istsvc.exe O4 - HKLM\..\Run: [WllEl] C:\WINDOWS\xiigj.exe O4 - HKLM\..\Run: [wnltjgku] c:\windows\system32\wnltjgku.exe O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [shim keep chin dart] C:\Documents and Settings\All Users\Programdata\gridwindowshimkeep\Transwindow.exe O4 - HKCU\..\Run: [rdr web] C:\DOCUME~1\MAGNUS~4\PROGRA~1\MIXCAM~1\DOES TRUST.exe O4 - HKCU\..\Run: [MessengerPlus3] "C:\Programfiler\Messenger Plus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [LDM] C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [zwfo] C:\PROGRA~1\COMMON~1\zwfo\zwfom.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Programfiler\Fellesfiler\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\j2re1.4.2_01\bin\npjpi142_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\j2re1.4.2_01\bin\npjpi142_01.dll O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - C:\Programfiler\SideFind\sidefind.dll (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O10 - Hijacked Internet access by WebHancer O10 - Hijacked Internet access by WebHancer O10 - Hijacked Internet access by WebHancer O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab O16 - DPF: {093F9CF8-0DE1-491C-95D5-5EC257BD4CA3} - http://akamai.downloadv3.com/binaries/IA/dtc32_EN_XP.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {197AB1D7-A7DD-4C86-A938-1FCC0DB21B85} - http://dm.cometsystems.com/dm/dm_286.cab O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540000} - http://www.spywarestormer.com/files2/Install.cab O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ubisoft.com/dev/packages/GSManager.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...StatsClient.cab O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.netvenda.com/sites/games-no/no/...s4.cab?fgiocv=1 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} (Virtools WebPlayer Class) - http://a532.g.akamai.net/7/532/6712/6c5b0a...5/Installer.exe O16 - DPF: {CEFB7B49-9652-464F-8AFD-A577C0500F39} (EGP2ECOM Class) - http://akamai.downloadv3.com/binaries/P2EC...034_pack_XP.cab O16 - DPF: {EEECA057-AD0F-44A7-8BE5-8634CEDBDBD1} - http://akamai.downloadv3.com/binaries/IA/netpe32_EN_XP.cab O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - http://www.gamespot.com/KDX/kdx.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab O18 - Filter: text/html - {F9DAD711-7A3D-405B-860B-C6145469DF9A} - C:\Documents and Settings\Magnus J\Lokale innstillinger\Programdata\microsoft\internet explorer\V0.26.dat O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: ccXgui - [XC]D-Ice - C:\Programfiler\ccxgui\ccXservice.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Programfiler\Norton AntiVirus\navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Programfiler\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Programfiler\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FELLES~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe Lenke til kommentar
zjulik Skrevet 19. april 2005 Del Skrevet 19. april 2005 Oisan. Her er det mye spyware du. Forslag: Last ned SpySweeper fra http://www.webroot.com og kjør den på 30dagers demo. Hvis du allerede har gjort det uten hell, gjør følgende. Begynn med å fjerne disse: C:\WINDOWS\xiigj.exe UKJENT, SLETTES C:\PROGRA~1\COMMON~1\zwfo UKJENT, SLETTES C:\windows\system32\wnltjgku.exe UKJENT, SLETTES C:\Programfiler\ISTsvc\istsvc.exe SPYWARE, SLETTES Så skal du forsøke å bli kvitt WebHancer, et spywareprogram som legger seg mange steder på pcn din. Prøv denne siden for info: http://www.cexx.org/webhancer.htm Hvis du får gjort alt det nevnt ovenfor, post en ny hijackthis-log etter en reboot. Det er nok mer enn dette også... Lenke til kommentar
Cilleron Skrevet 19. april 2005 Del Skrevet 19. april 2005 (endret) hvis dette er en "ren" oppstart, kan du fjerne ting som stort sett bare sinker pc'n, som f.eks: C:\WINDOWS\system32\Ati2evxx.exe - Ati HotKey Poller (litt usikker hva den gjør, men jeg klarer meg uten) http://www.liutilities.com/products/wintas...brary/ati2evxx/ O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe (husker ikke hva den gjør, men jeg klarer meg uten) C:\Programfiler\Messenger\msmsgs.exe - Windows Messenger (du bruker MSN messenger, og da trenger du sikkert ikke denne?) og disse har jeg ingen kjenskap til, hvis du ikke vet hva det er, slett dem... O4 - HKLM\..\Run: [shim keep chin dart] C:\Documents and Settings\All Users\Programdata\gridwindowshimkeep\Transwindow.exe O4 - HKLM\..\Run: [seekpokebonemapi] C:\Documents and Settings\All Users\Programdata\exitinternetseekpoke\Barb That.exe O4 - HKLM\..\Run: [GREATOKAYSOAPTITLE] C:\Documents and Settings\All Users\Programdata\itch junk great okay\TwoVga.exe FY-programmer: O4 - HKLM\..\Run: [PromulGate] "C:\Programfiler\DelFin\PromulGate\PgMonitr.exe" http://www.spyany.com/program/article_adw_rm_PromulGate.html O4 - HKLM\..\Run: [TBPS] C:\Programfiler\Toolbar\TBPS.exe http://www.processlibrary.com/directory/files/TBPS/ O4 - HKLM\..\Run: [WinTools] C:\PROGRA~1\FELLES~1\WinTools\WToolsA.exe http://www.pchell.com/support/wintools.shtml linkene jeg nevnte, er for info om programmet eller hjelp til fjerning. Endret 19. april 2005 av Cilleron Lenke til kommentar
Strategery Skrevet 19. april 2005 Forfatter Del Skrevet 19. april 2005 Logfile etter scan med spy sweeper. Jeg klarer ikke å slette denne filen: C:\Programfiler\ISTsvc. Hva gjør jeg? Logfile of HijackThis v1.99.1 Scan saved at 19:10:26, on 19.04.2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Programfiler\Java\j2re1.4.2_03\bin\jusched.exe C:\Programfiler\Logitech\iTouch\iTouch.exe C:\WINDOWS\xiigj.exe C:\windows\system32\wnltjgku.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\Programfiler\Messenger\msmsgs.exe C:\PROGRA~1\COMMON~1\zwfo\zwfom.exe C:\Programfiler\Webroot\Spy Sweeper\SpySweeper.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\windows\system32\calc.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Programfiler\ccxgui\ccXservice.exe C:\Programfiler\ccxgui\ccxstream.exe C:\Programfiler\Norton AntiVirus\navapsvc.exe C:\Programfiler\Norton AntiVirus\IWP\NPFMntor.exe C:\WINDOWS\System32\svchost.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\System32\wdfmgr.exe C:\WINDOWS\System32\ups.exe C:\WINDOWS\System32\wbem\wmiprvse.exe C:\Programfiler\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\WINDOWS\System32\alg.exe c:\progra~1\intern~1\iexplore.exe C:\Programfiler\Internet Explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\System32\wbem\wmiprvse.exe C:\DOCUME~1\MAGNUS~4\LOKALE~1\Temp\Rar$EX00.609\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.hzodehvcoutktcjlogklev.com/TDvp...A5azoGxhzm.html R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.linktones.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger R3 - Default URLSearchHook is missing O2 - BHO: PynixObj Class - {00000000-DD60-0064-6EC2-6E0100000000} - C:\WINDOWS\Pynix.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {2673A6B2-2FAD-0A0F-45BC-931429858C51} - C:\DOCUME~1\MAGNUS~4\PROGRA~1\ANTEBO~1\Mealrect.exe O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programfiler\Norton AntiVirus\NavShExt.dll O2 - BHO: (no name) - {DE614603-6320-4046-A7A7-6A69CEC26F14} - C:\WINDOWS\mslagent\4b_1,0,0,6_mslagent.dll (file missing) O2 - BHO: (no name) - {E4F1F2B4-9596-602D-E765-59B8331801E3} - C:\PROGRA~1\ANTEBO~1\Mealrect.exe (file missing) O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programfiler\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [WindowEnhancer] "C:\Programfiler\winex\v2\winex.EXE" /U O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Programfiler\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [GREATOKAYSOAPTITLE] C:\Documents and Settings\All Users\Programdata\itch junk great okay\TwoVga.exe O4 - HKLM\..\Run: [zBrowser Launcher] C:\Programfiler\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe O4 - HKLM\..\Run: [seekpokebonemapi] C:\Documents and Settings\All Users\Programdata\exitinternetseekpoke\Barb That.exe O4 - HKLM\..\Run: [ATIPTA] C:\Programfiler\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe O4 - HKLM\..\Run: [MessengerPlus3] "C:\Programfiler\Messenger Plus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [WllEl] C:\WINDOWS\xiigj.exe O4 - HKLM\..\Run: [wnltjgku] c:\windows\system32\wnltjgku.exe O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [shim keep chin dart] C:\Documents and Settings\All Users\Programdata\gridwindowshimkeep\SKIPFAST.exe O4 - HKLM\..\Run: [Á³# é"h'þ9ÓœU3rŲWC:\Programfiler\ISTsvc\istsvc.exe] C:\WINDOWS\xiigj.exe O4 - HKLM\..\Run: [iST Service] C:\Programfiler\ISTsvc\istsvc.exe O4 - HKCU\..\Run: [rdr web] C:\DOCUME~1\MAGNUS~4\PROGRA~1\MIXCAM~1\DOES TRUST.exe O4 - HKCU\..\Run: [MessengerPlus3] "C:\Programfiler\Messenger Plus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [LDM] C:\Programfiler\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe O4 - HKCU\..\Run: [zwfo] C:\PROGRA~1\COMMON~1\zwfo\zwfom.exe O4 - HKCU\..\Run: [spySweeper] "C:\Programfiler\Webroot\Spy Sweeper\SpySweeper.exe" /0 O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Programfiler\Fellesfiler\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: Hurtigstart for Adobe Reader.lnk = C:\Programfiler\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\j2re1.4.2_01\bin\npjpi142_01.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\j2re1.4.2_01\bin\npjpi142_01.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab O16 - DPF: {093F9CF8-0DE1-491C-95D5-5EC257BD4CA3} - http://akamai.downloadv3.com/binaries/IA/dtc32_EN_XP.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540000} - http://www.spywarestormer.com/files2/Install.cab O16 - DPF: {27527D31-447B-11D5-A46E-0001023B4289} (CoGSManager Class) - http://gamingzone.ubisoft.com/dev/packages/GSManager.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...StatsClient.cab O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.netvenda.com/sites/games-no/no/...s4.cab?fgiocv=1 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} (Virtools WebPlayer Class) - http://a532.g.akamai.net/7/532/6712/6c5b0a...5/Installer.exe O16 - DPF: {EEECA057-AD0F-44A7-8BE5-8634CEDBDBD1} - http://akamai.downloadv3.com/binaries/IA/netpe32_EN_XP.cab O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - http://www.gamespot.com/KDX/kdx.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: ccXgui - [XC]D-Ice - C:\Programfiler\ccxgui\ccXservice.exe O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Programfiler\Norton AntiVirus\navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Programfiler\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Programfiler\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FELLES~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Center\SymWSC.exe Lenke til kommentar
Strategery Skrevet 19. april 2005 Forfatter Del Skrevet 19. april 2005 Går det ann å slette hele internett eksplorer? Lenke til kommentar
Cilleron Skrevet 19. april 2005 Del Skrevet 19. april 2005 start->kjør->msconfig[enter]->Startup(Oppstart?) her kan du fjerne hakene ved de prg. du ikke vil ha, og restarte maskina. dette vil gjøre at du kan fjerne dem. Lenke til kommentar
Strategery Skrevet 19. april 2005 Forfatter Del Skrevet 19. april 2005 (endret) start->kjør->msconfig[enter]->Startup(Oppstart?) her kan du fjerne hakene ved de prg. du ikke vil ha, og restarte maskina. dette vil gjøre at du kan fjerne dem. Glem det. Endret 19. april 2005 av Mr. Freeman Lenke til kommentar
Strategery Skrevet 19. april 2005 Forfatter Del Skrevet 19. april 2005 Noen som vet hvordan man kan slette: - Internett Eksplorer - Windows Messenger Lenke til kommentar
Cilleron Skrevet 19. april 2005 Del Skrevet 19. april 2005 (endret) IE blir du ikke kvitt, UANSETT! ved et søk på forumet finner du 100vis av personer som har spurt "hvordan fjerne windows messenger " EDIT: har du UPS? EDIT2: denne forklarer de fleste programmer som kjører: http://www.answersthatwork.com/Tasklist_pages/tasklist.htm Endret 19. april 2005 av Cilleron Lenke til kommentar
zjulik Skrevet 19. april 2005 Del Skrevet 19. april 2005 http://www.litepc.com/xplite.html Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå