Gå til innhold
Trenger du hjelp med PCen? Still spørsmål her! ×

Internet fungerer ikke på en maskin


Anbefalte innlegg

Har en maskin her med xp home.

Problemet med denne er at internett ikke fungerer som det skal.

 

Å pinge vg fungerer, men bare direkte på ip.

Det fungerer ikke å sette ip-adressen istedenfor "vg.no" i adressefeltet ie.

 

Maskinen har tidligere hatt norman firewall.

Denne ble uinstallert, og så har en eller annen norton sikkerhetspakke blitt installert.

Jeg har uinstallert norton, men det har ikke hjulpet.

 

Hva kan jeg gjøre for å få fikset at internet fungerer?

Lenke til kommentar
Videoannonse
Annonse

Ok, her er loggen.

Ser at norman henger igjen i systemet, samtidig står det "file missing".

Skal jeg ved hjelp av hijackthis fjerne de "4 norman"?

 

Klikk for å se/fjerne innholdet nedenfor
Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 22:48:26, on 27.03.2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Programfiler\Ahead\InCD\InCDsrv.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Programfiler\Netropa\Multimedia Keyboard\nhksrv.exe

C:\WINDOWS\System32\CTsvcCDA.exe

C:\Programfiler\Fellesfiler\Microsoft Shared\VS7Debug\mdm.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\UAService7.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\WINDOWS\Explorer.EXE

C:\Programfiler\QuickTime\qttask.exe

C:\Programfiler\Netropa\Multimedia Keyboard\MMKeybd.exe

C:\Programfiler\FSC\Wireless Wheel Mouse\MOUSE32A.EXE

C:\Programfiler\Ahead\InCD\InCD.exe

C:\Programfiler\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\CTHELPER.EXE

C:\Programfiler\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE

C:\ATI-CPanel\atiptaxx.exe

C:\Programfiler\Logitech\Profiler\lwemon.exe

C:\Programfiler\Messenger\msmsgs.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Programfiler\Creative\MediaSource\Detector\CTDetect.exe

C:\Programfiler\Jensen\Common\JensenUI.exe

C:\Programfiler\Netropa\Multimedia Keyboard\TrayMon.exe

C:\Programfiler\Netropa\Onscreen Display\OSD.exe

C:\Programfiler\Netropa\InetKb\Inetkb.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Documents and Settings\Torbjørn\Skrivebord\Hijack\HiJackThis.exe

C:\WINDOWS\System32\svchost.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nettavisen.no/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [sBDrvDet] C:\Programfiler\Creative\SB Drive Det\SBDrvDet.exe /r

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\System32\PSDrvCheck.exe

O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Programfiler\Netropa\Multimedia Keyboard\MMKeybd.exe

O4 - HKLM\..\Run: [LWBMOUSE] C:\Programfiler\FSC\Wireless Wheel Mouse\MOUSE32A.EXE

O4 - HKLM\..\Run: [inCD] C:\Programfiler\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [CTSysVol] C:\Programfiler\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [CTDVDDet] C:\Programfiler\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE

O4 - HKLM\..\Run: [ATIPTA] C:\ATI-CPanel\atiptaxx.exe

O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe

O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL

O4 - HKCU\..\Run: [start WingMan Profiler] "C:\Programfiler\Logitech\Profiler\lwemon.exe" /noui

O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Creative Detector] C:\Programfiler\Creative\MediaSource\Detector\CTDetect.exe /R

O4 - HKCU\..\Run: [boostSpeed] C:\PROGRA~1\AUSLOG~1\boostspeed.exe /Q

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETTVERKSTJENESTE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Adobe Gamma Loader.lnk = ?

O4 - Global Startup: Jensen AirLink Utility.lnk = C:\Programfiler\Jensen\Common\JensenUI.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O12 - Plugin for .spop: C:\Programfiler\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1192914454937

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe

O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Programfiler\Netropa\Multimedia Keyboard\nhksrv.exe

O23 - Service: Norman NJeeves - Unknown owner - C:\NORMAN\Nvc\BIN\NJEEVES.EXE (file missing)

O23 - Service: Norman ZANDA - Unknown owner - C:\Norman\NVC\BIN\Zanda.exe (file missing)

O23 - Service: Norman Virus Control on-access component (nvcoas) - Unknown owner - C:\NORMAN\Nvc\BIN\nvcoas.exe (file missing)

O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Unknown owner - C:\NORMAN\Nvc\BIN\NVCSCHED.EXE (file missing)

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

 

--

End of file - 5869 bytes

Endret av Makky
Lenke til kommentar

Start->kjør->cmd

 

Stop sc Norman NJeeves

delete sc Norman NJeeves

 

Stop sc Norman ZANDA

delete sc Norman ZANDA

 

Stop sc nvcoas

delete sc nvcoas

 

Stop sc NVCScheduler

delete sc NVCScheduler

 

Last ned oppdatere og kjør full scan SAS free

Post loggen fra SAS (preferences->statistics/logs)

 

Restart og en ny HijackThis logg.

 

Du får se om dette hjeper,eller for vi kjør noe som scanner dypere og prøve fix for nettverkstilkoblingen din.

Endret av SNIPPSAT
Lenke til kommentar

Er det jeg som gjør det galt, får feil når jeg skriver

stop sc norman njeeves i cmd.

 

Feil: stop gjenkjennes ikke som en intern eller ekstern kommando, kjørbart program eller satsvis fil.

Endret av Makky
Lenke til kommentar

Det gikk bedre når kommandoen ble riktig :)

 

 

Loggen til SAS

Her var det bare noe cookies

 

Klikk for å se/fjerne innholdet nedenfor
SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 03/28/2008 at 00:27 AM

 

Application Version : 4.0.1154

 

Core Rules Database Version : 3412

Trace Rules Database Version: 1404

 

Scan type : Complete Scan

Total Scan Time : 00:22:05

 

Memory items scanned : 393

Memory threats detected : 0

Registry items scanned : 5183

Registry threats detected : 0

File items scanned : 22927

File threats detected : 33

 

Adware.Tracking Cookie

C:\Documents and Settings\Torbjørn\Cookies\torbjørn@hitbox[1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjørn@cgi-bin[2].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjørn@doubleclick[2].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjø[email protected][1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjø[email protected][1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjø[email protected][1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjørn@mediaplex[1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjø[email protected][2].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjø[email protected][1].txt

C:\Documents and Settings\Torbjørn\Cookies\torbjørn@adtech[1].txt

C:\Documents and Settings\Berit\Cookies\berit@doubleclick[1].txt

C:\Documents and Settings\Berit\Cookies\[email protected][1].txt

C:\Documents and Settings\Berit\Cookies\berit@serving-sys[1].txt

C:\Documents and Settings\Berit\Cookies\[email protected][1].txt

C:\Documents and Settings\Berit\Cookies\berit@adtech[1].txt

C:\Documents and Settings\Berit\Cookies\[email protected][2].txt

C:\Documents and Settings\Berit\Cookies\berit@tradedoubler[1].txt

C:\Documents and Settings\Berit\Cookies\[email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@casalemedia[1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][2].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@2o7[1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@serving-sys[1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][2].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@tradedoubler[2].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@advertising[2].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@doubleclick[1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor olav@hitbox[1].txt

C:\Documents and Settings\Tor Olav\Cookies\tor [email protected][1].txt

 

Ny logg fra Hijackthis

 

Klikk for å se/fjerne innholdet nedenfor
Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 00:34:18, on 28.03.2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Programfiler\Ahead\InCD\InCDsrv.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Programfiler\Netropa\Multimedia Keyboard\nhksrv.exe

C:\WINDOWS\System32\CTsvcCDA.exe

C:\Programfiler\Fellesfiler\Microsoft Shared\VS7Debug\mdm.exe

C:\Programfiler\QuickTime\qttask.exe

C:\Programfiler\Netropa\Multimedia Keyboard\MMKeybd.exe

C:\Programfiler\FSC\Wireless Wheel Mouse\MOUSE32A.EXE

C:\Programfiler\Ahead\InCD\InCD.exe

C:\Programfiler\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe

C:\WINDOWS\system32\CTHELPER.EXE

C:\Programfiler\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE

C:\ATI-CPanel\atiptaxx.exe

C:\Programfiler\Logitech\Profiler\lwemon.exe

C:\Programfiler\Messenger\msmsgs.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Programfiler\Creative\MediaSource\Detector\CTDetect.exe

C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe

C:\Programfiler\Jensen\Common\JensenUI.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\UAService7.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\Programfiler\Netropa\Multimedia Keyboard\TrayMon.exe

C:\Programfiler\Netropa\Onscreen Display\OSD.exe

C:\Programfiler\Netropa\InetKb\Inetkb.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Documents and Settings\Torbjørn\Skrivebord\Hijack\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nettavisen.no/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [sBDrvDet] C:\Programfiler\Creative\SB Drive Det\SBDrvDet.exe /r

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programfiler\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\System32\PSDrvCheck.exe

O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Programfiler\Netropa\Multimedia Keyboard\MMKeybd.exe

O4 - HKLM\..\Run: [LWBMOUSE] C:\Programfiler\FSC\Wireless Wheel Mouse\MOUSE32A.EXE

O4 - HKLM\..\Run: [inCD] C:\Programfiler\Ahead\InCD\InCD.exe

O4 - HKLM\..\Run: [CTSysVol] C:\Programfiler\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe

O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

O4 - HKLM\..\Run: [CTDVDDet] C:\Programfiler\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE

O4 - HKLM\..\Run: [ATIPTA] C:\ATI-CPanel\atiptaxx.exe

O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe

O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL

O4 - HKCU\..\Run: [start WingMan Profiler] "C:\Programfiler\Logitech\Profiler\lwemon.exe" /noui

O4 - HKCU\..\Run: [MSMSGS] "C:\Programfiler\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Creative Detector] C:\Programfiler\Creative\MediaSource\Detector\CTDetect.exe /R

O4 - HKCU\..\Run: [boostSpeed] C:\PROGRA~1\AUSLOG~1\boostspeed.exe /Q

O4 - HKCU\..\Run: [sUPERAntiSpyware] C:\Programfiler\SUPERAntiSpyware\SUPERAntiSpyware.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKAL TJENESTE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETTVERKSTJENESTE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Adobe Gamma Loader.lnk = ?

O4 - Global Startup: Jensen AirLink Utility.lnk = C:\Programfiler\Jensen\Common\JensenUI.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Programfiler\Microsoft Office\Office10\OSA.EXE

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programfiler\Messenger\msmsgs.exe

O12 - Plugin for .spop: C:\Programfiler\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1192914454937

O20 - Winlogon Notify: !SASWinLogon - C:\Programfiler\SUPERAntiSpyware\SASWINLO.dll

O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe

O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Programfiler\Netropa\Multimedia Keyboard\nhksrv.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

 

--

End of file - 5630 bytes

 

dessverre har jeg fortsatt problemer.

Takk for all hjelp hittil, håper du kan bidra litt til :)

Lenke til kommentar

Alt kjører på auto, og jeg får mottatt ip fra dhcp.

 

Som nevnt, så får jeg pinga f.eks. vg direkte via ip-adresse (samme med isp sin dns-adresse), men ikke vg.no.

 

 

Akkurat nå står maskina med kabel bak en router. (vanligvis bruker den trådløst)

Lenke til kommentar

Boot trykk f8 flere ganger,velg sikkerhetmodus med nettverk.

Virker der her?

 

Hvor lenge har du hatt problemet?

Tenker på og sette den tilbake til da internet fungerte.

 

Prøvd andre kilenter eksp:firefox.

Endret av SNIPPSAT
Lenke til kommentar

Nei, funker ikke i sikkerhetsmodus.

 

Problemet starta når norman-sikkerhetspakke ble avinstallert og norton lagt inn.

 

Skal sjekke med firefox.

 

"Sette den tilbake" går ikke da denne funksjonen av en eller annen grunn har vært deaktivert.

Lenke til kommentar

Opprett en konto eller logg inn for å kommentere

Du må være et medlem for å kunne skrive en kommentar

Opprett konto

Det er enkelt å melde seg inn for å starte en ny konto!

Start en konto

Logg inn

Har du allerede en konto? Logg inn her.

Logg inn nå
×
×
  • Opprett ny...