mindre egenkapital

Magazine
Go Back   Computer Juice > Computer Software > General Software Chat

Register


 Default 

BGMonitor.exe ved start [Logs og Skærmaftryk]




Reply
 
Thread Tools
  #1  
Old 4 marts 2009, 15:35
SPL
Ny Medlem Gruppen
 
Hverken SuperAntiSpyware eller Malwarebites er pickinng dette op. Baseret på, hvad jeg har set fra Google dette program er temmelig dårlig. Er der nogen måde at tage sig af dette uden at skulle omformaterer system?

Logs:

Code:
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 03/04/2009 kl 01:37 Application Version: 4.25.1014 Core Rules Database Version: 3784 Trace Rules Database Version: 1741 Scan type: Quick Scan Total Scan Time: 00:20:20 Memory poster scanned: 388 Memory trusler detected: 0 Registry poster skannet: 397 Registry trusler detected: 0 File poster skannet: 14.817 File trusler detected: 4 Adware.Tracking Cookie C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ atdmt [2]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ tribalfusion [2]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator @ doubleclick [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator@ad.yieldmanager [2]. txt
-------------

Code:
Malwarebytes 'Anti-Malware 1,34 Database version: 1817 Windows 5.1.2600 Service Pack 3 3/4/2009 2:12:49 mbam-log-2009-03-04 (14-12-49). Txt Scan type: Quick Scan Objekter skannet: 58.816 Tidsforbrug: 5 minutter (s), 34 second (s) Inficerede Hukommelses Processer: 0 Inficerede Hukommelses Moduler: 0 Inficerede Registeringsdatabase Nøgler: 0 Inficerede Registeringsdatabase Værdier: 0 Registry Data Items Infected: 0 Inficerede Mapper: 0 Filer Inficerede: 0 Inficerede Hukommelses Processer: (Ingen mistænkelige filer fundet poster) Inficerede Hukommelses Moduler: (Ingen mistænkelige filer poster fundet) Inficerede Registeringsdatabase Nøgler: (Ingen mistænkelige filer poster fundet) Inficerede Registeringsdatabase Værdier: (Ingen mistænkelige filer poster fundet) Registry Data Items Infected: (No ondskabsfuld poster fundet) Inficerede Mapper: (Ingen mistænkelige filer fundet poster) Inficerede Filer: (Ingen mistænkelige filer fundet poster)
-----
Code:
Logfil af Trend Micro HijackThis v2.0.2 Scan gemt på 2:14:26, den 3/4/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16791) Boot mode: Normal Running processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ WINDOWS \ system32 \ spoolsv.exe C: \ WINDOWS \ Explorer.EXE C: \ Programmer \ Java \ jre6 \ bin \ jqs.exe C: \ Program Files \ Common Files \ Microsoft Shared \ VS7DEBUG \ MDM.EXE C: \ WINDOWS \ system32 \ NeroCheck.exe C: \ WINDOWS \ wt \ updater \ wcmdmgr.exe C: \ Program Files \ Java \ jre6 \ bin \ jusched. exe C: \ Programmer \ system32 \ CTFMON.EXE C: \ Programmer \ Google \ GoogleToolbarNotifier \ GoogleToolbarNotifier.exe C: \ Programmer \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware. exe C: \ Programmer \ Airlink101 \ AWLL3028 \ RtWLan.exe C: \ Programmer \ WinZip \ WZQKPICK.EXE C: \ Programmer \ Common Files \ Ahead \ Lib \ NMIndexStoreSvr.exe C: \ Programmer \ Common Files \ Ahead \ Lib \ NMIndexingService.exe C: \ Programmer \ Trend Micro \ HijackThis \ Run R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = www.google.com
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 http://www.update.microsoft.com/wind...?1186278166578
O20 - Winlogon Notify:! SASWinLogon - C: \ Programmer \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 -- Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C: \ Programmer \ Java \ jre6 \ bin \ jqs.exe O23 - Service: NMIndexingService - Nero AG - C: \ Programmer \ Common Files \ Ahead \ Lib \ NMIndexingService.exe - End of file - 5139 bytes
Jeg har slået BgMonitor bruger ccleaners Start Up-funktionen (ikke sikker på, om dette vil gøre det trick)
Skærmbillede:
  #2  
Old 4. marts 2009, 15:39
Administrator Gruppen
 
Det er ikke malware. Det er en del af Nero Scout, afinstallere den.
__________________

Mit system: Hybr! D

Processor (s):
AMD Turion 64 X2 TL-64 2.2GHz
Bundkort:
HP nForce 560
RAM Hukommelse:
2GB DDR2 PC2-5300
Grafikkort (r):
Nvidia 7150M Mobilanlæg Integreret
Lydkort:
5.1 Mobilanlæg Integreret
Harddisk (e):
250 GB 5400RPM SATA300
Optisk drev (r):
18x CD / DVDRW-DL ATA
Sag / PSU:
Stock HP
Køling:
Stock HP
Network / Internet:
10/100 Nic / 10 MB Virgin Kabel
Monitor (s):
17 "WXGA + HD BrightView Widescreen
Operating System (s):
Windows 7 Ultimate 32Bit
Reply

Register
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Computer Juice.

Annoncenetværk baseret på bytteøkonomi ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO ved vBSEO © 2009, websteds egnethed til webcrawling, Inc.