![]() |
|
#1
| |||
| |||
| Please help !!!!! Min computer vil ikke tillade mig at gå i tilføje eller slette programmer, der står adgang denier som jeg ikke har myndighed og til at kontakte systemadministratoren, det er min PC (laptop) og kun mig selv og min mand har konti, der er nedsat på computer, jeg har prøvet på hans konto og siger det samme. Hvordan kan jeg hente dette sorteret? Vi bliver ved med at få denne besked vises en Windows-sikkerhedsadvarsel, Advarsel Potentiel spyware operation. Hvordan kan jeg stoppe denne vises?? Tak Hannah |
|
#2
| ||||||||||||
| ||||||||||||
| Du kan blive bedre stillet udstationering dette i Virus, Spyware & Sikkerhed forum
__________________
Mit system: Hjem Build
|
|
#3
| |||
| |||
| Gevind fusionerede. |
|
#4
| |||
| |||
| Flyttet til Virus, Spyware & Sikkerhed forum. Lad os se en log fra HijackThis tak. Downloade HijackThis til skrivebordet. Dobbeltklik på den fil, du lige har downloadet. Klik på "Installer"-Knappen for at installere. Den vil som standard installere til biblioteket -- C: \ Programmer \ Trend Micro \ HijackThis Undlad venligst at ændre standardtidsintervallerne installere placering. Efter installere, HijackThis bør åbne for dig. Næste klikke på "Må en systemscanning og gemme en logfil " knappen. HijackThis scanner og derefter en log åbnes i Notesblok. I øverste venstre for notepad vindue klik "File" > "Gem som" navn den hijackthis og gem den til Desktop. Gem log som en tekst (. txt-Fil) eller. Log Gøre IKKE tillægger MS-Word . DOC filer, de ikke vil blive set på! I dit indlæg, skal du tilføje log som en Attachment. * Ikke har Hijackthis fastsætte noget endnu. Det meste af det, det finder er ufarlige eller ligefrem nødvendig. ** Brug ikke Analyse Denne knap. It's resultater er farlige, hvis misforstået. Vejledning for knyttet logfilerne til en post |
|
#5
| |||
| |||
| Logfile af Trend Micro HijackThis v2.0.2 Scan gemt på 7:42:43 PM, den 11/25/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Kørende processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ bgsvcgen.exe C: \ Programmer \ Common Files \ LightScribe \ LSSrvc.exe C: \ Programmer \ Norton AntiVirus \ navapsvc.exe C: \ Programmer \ Norton AntiVirus \ iwp \ NPFMntor.exe C: \ Programmer \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ Explorer.exe C: \ WINDOWS \ system32 \ wscntfy.exe C: \ WINDOWS \ system32 \ printer.exe C: \ Programmer \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Programmer \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Programmer \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Programmer \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe C: \ Programmer \ Cyberlink \ PowerDVD \ PDVDServ.exe C: \ Programmer \ Samsung \ Samsung Battery Manager \ BatteryManager.exe C: \ Programmer \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Programmer \ Samsung \ DisplayManager \ DisplayManager.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Programmer \ Samsung \ DisplayManager \ dmhkcore.exe C: \ Programmer \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Programmer \ Common Files \ PCPrivacyTool \ mc.exe C: \ Programmer \ Messenger \ msmsgs.exe C: \ Programmer \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Programmer \ Sagem \ Sagem F @ st 800-840 \ dslmon.exe C: \ Programmer \ FinePixViewer \ QuickDCF2.exe C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Programmer \ Microsoft Office \ Office \ OSA.EXE C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Programmer \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Programmer \ Common Files \ AVSystemCare \ bm.exe C: \ WINDOWS \ system32 \ HPZipm12.exe C: \ Programmer \ Internet Explorer \ iexplore.exe C: \ Programmer \ Easy SpyRemover \ EasySpyRemover.exe C: \ Programmer \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html F2 - REG: system.ini: Shell = Explorer.exe C: \ WINDOWS \ system32 \ printer.exe O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Programmer \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ program files \ google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Programmer \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Delay O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Programmer \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Programmer \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3.75] C: \ Programmer \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Programmer \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Programmer \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Programmer \ Cyberlink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Programmer \ Samsung \ Samsung Battery Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Programmer \ Samsung \ DisplayManager \ DMLoader.exe O4 - HKLM \ .. \ Run: [DisplayManager] C: \ Programmer \ Samsung \ DisplayManager \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Programmer \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ WINDOWS \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ PROGRA ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumer O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Programmer \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Programmer \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com; ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Programmer \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com; ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Programmer \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Programmer \ Messenger \ msmsgs.exe" / baggrund O4 - HKCU \ .. \ Run: [SWG] C: \ Programmer \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Find Fast.lnk = C: \ Programmer \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Programmer \ Microsoft Office \ Office \ OSA.EXE O4 - Startup: system.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Programmer \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: autorun.exe O4 - Global Startup: DSLMON.lnk = C: \ Programmer \ Sagem \ Sagem F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqtra08.exe O7 - HKLM \ Software \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 O8 - Extra sammenhæng menupunktet: & D & ownload & med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra forbindelse menupunktet: & D & ownload all video med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra sammenhæng menupunktet: & D & ownload alle med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddAllLink.htm O9 - Ekstra knap: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): NameServer = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O23 - Service: Ati Genvejstast Poller - ATI Technologies Inc. - C: \ WINDOWS \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ WINDOWS \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Programmer \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ iwp \ NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C: \ WINDOWS \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - Ukendt ejer - C: \ Programmer \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ PROGRA ~ 1 \ FÆLLES ~ 1 \ SYMANT ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Ukendt ejer - C: \ Programmer \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- End of file - 9608 bytes Hope this helps?? |
|
#6
| |||
| |||
| Du helt sikkert have nogle meget ubehagelige infektioner. 1. Downloade Malwarebytes' RogueRemover Gratis 2. Dobbeltklik på ikonet for at installere RogueRemover og derefter starte programmet. 3. Tryk Kontroller for opdateringer. 4. Det vil vise dig, hvis der er en nyere version af databasen. Tryk på Download. 5. Gå tilbage til hovedskærmbilledet, og tryk Scan. 6. Hvis og når der findes en infektion, fjerne alle genstande fundet. ===== Downloade, installere og opdatere Superantispyware (SAS) Undlad at køre dette endnu. SUPERAntispyware Free Edition ===== Du kan udskrive eller kopiere og indsætte resten af instruktionerne og gemme dem i et tekstdokument til skrivebordet. Du vil ikke kunne se dem fra fejlsikret tilstand. Genstart i fejlsikret tilstand * Genstart computeren. * Når du ser det sort-hvide Starter Windows bar i bunden af skærmen begynder at trykke på F8 nøgle. * Når du kommer til boot-menu, skal du bruge piletasterne til at vælge Fejlsikret tilstand * Tryk derefter på Indtast. * Den computeren genstarter i fejlsikret tilstand. ===== Åbn HijackThis og vælg "Gør en systemscan only" Anbringe en markering ved siden af: (hvis det findes) F2 - REG: system.ini: Shell = Explorer.exe C: \ WINDOWS \ system32 \ printer.exe O4 - HKLM \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Programmer \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com; ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Programmer \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com; ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Programmer \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - Startup: system.exe O4 - Global Startup: autorun.exe O7 - HKLM \ Software \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 Nu skal du klikke på "Fix checked" Afslut HijackThis ===== Nu konfigurere og køre SUPERAntiSpyware i fejlsikret tilstand. * Under Konfiguration og indstillingerKlik på Præferencer knappen. * Klik på Scanning Control fane. * Under Scanner Valg Sørg for, at følgende er kontrolleret: + Luk browsere før scanning + Scan for tracking cookies + Terminate hukommelse trusler før karantæne. + Indtal de andre markeret. + Klik på Luk knappen for at forlade Kontrol Center skærmen. * På hovedskærmbilledet, under Scan for skadelig software Klik Scan computeren. * På venstre check C: \ Fast Drive. * Til højre, under Complete Scan, Vælge Udfør Complete Scan. * Klik på Næste for at starte scanningen. Vær tålmodig, mens den scanner din computer. * Når scanningen er fuldført en oversigt vises. Klik på OK. * Sørg for alt i den hvide boks har en markeringen ud for det, og klik derefter på Næste. * Det vil karantæne, hvad det findes, og hvis den spørger om du vil genstarte, skal du klikke på Ja. * Hvis du vil hente fjernelse oplysninger du gøre følgende: + Efter genstart, skal du dobbeltklikke på SUPERAntiSpyware ikon på skrivebordet. + Klik Præferencer. Klik på Statistics / Logs fane. + Under Scanner log, skal du dobbeltklikke på SUPERAntiSpyware Scan Log. + Den vil åbne i din standard teksteditor (såsom Notepad / Wordpad). + Gem notesblokken filen på skrivebordet ved at klikke (i Notesblok) "Fil""Gem som" * Gem logfilen et sted, du nemt kan finde det. (normalt på skrivebordet) * Klik på Luk, og luk igen for at forlade programmet. * Tilføj loggen som en vedhæftet fil sammen med en ny HijackThis log i den næste post. ===== Næste Post Tilføj som vedhæftede filer SUPERAntiSpyware log Ny HijackThis log |
|
#7
| |||
| |||
| Dette er den SuperAntiSpyware Resultater: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 11/26/2007 at 08:56 Application Version: 3.9.1008 Core Rules Database Version: 3259 Trace Rules Database Version: 1270 Scan type: Quick Scan Total Scan Time: 00:09:24 Memory poster scannet: 564 Memory trusler opdaget: 0 Topdomæneadministratoren poster scannet: 720 Topdomæneadministratoren trusler opdaget: 0 File poster scannet: 8656 File trusler opdaget: 84 Adware.Tracking Cookie C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstbeacon [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@archant.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfmigoajiko.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4widpifo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ overture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wflokpczkbq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.errclean [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ads.associatedconte nt [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070878818 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ DoubleClick [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ads.pointroll [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ burstnet [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmywjdjokp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ atdmt [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ roiservice [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@122.2o7 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ apmebf [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyehcjkdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wblogncpagp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ mediaplex [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ indextools [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgmyagajsdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@phillyburbscom.112. 2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1069870899 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ servering-sys [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ questionmarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4cpcjshq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1057062368 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adserver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@rotator.adjuggler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ Haymarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyalcpcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [3]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ehg-autotrader.hitbox [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ revsci [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ a [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wckigncpmfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ whatcar [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjkoejdjmgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.webdiversi ty.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wglyuiazacp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ TradeDoubler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ pistonheads [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tribalfusion [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgl4qic5mlp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@anat.tacoda [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ næste [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6whkiaodzcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ hitbox [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@haynet.adbureau [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@paypal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliujajshp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066670941 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgliglc5aco.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@h.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@edge.ru4 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgkiohcpmgo.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfkysjazkgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@amazonms.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@msnportal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ bluestreak [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliemdzahq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1071238990 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070144314 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlycmajsfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ reklame [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066767647 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@media.adrevolver [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adtech [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyqgd5ido.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tacoda [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.summitmedi a.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmikjczihq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstnet [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ statcounter [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@try.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@statse.webtrendsliv e [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ clickbank [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wbliskcjibo.stats.esomniture [2]. Txt Og her er HiJackThis Log: Logfile af Trend Micro HijackThis v2.0.2 Scan gemt på 9:02:38 AM, den 11/26/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Kørende processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ bgsvcgen.exe C: \ Programmer \ Common Files \ LightScribe \ LSSrvc.exe C: \ Programmer \ Norton AntiVirus \ navapsvc.exe C: \ Programmer \ Norton AntiVirus \ iwp \ NPFMntor.exe C: \ WINDOWS \ system32 \ HPZipm12.exe C: \ Programmer \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ wscntfy.exe C: \ WINDOWS \ Explorer.EXE C: \ Programmer \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Programmer \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Programmer \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Programmer \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe C: \ Programmer \ Cyberlink \ PowerDVD \ PDVDServ.exe C: \ Programmer \ Samsung \ Samsung Battery Manager \ BatteryManager.exe C: \ Programmer \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Programmer \ Samsung \ DisplayManager \ DisplayManager.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Programmer \ Samsung \ DisplayManager \ dmhkcore.exe C: \ Programmer \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Programmer \ Messenger \ msmsgs.exe C: \ Programmer \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Programmer \ Sagem \ Sagem F @ st 800-840 \ dslmon.exe C: \ Programmer \ FinePixViewer \ QuickDCF2.exe C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Programmer \ Microsoft Office \ Office \ OSA.EXE C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Programmer \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Programmer \ Internet Explorer \ iexplore.exe C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Programmer \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Programmer \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ program files \ google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Programmer \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Programmer \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Delay O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Programmer \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Programmer \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3.75] C: \ Programmer \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Programmer \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Programmer \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Programmer \ Cyberlink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Programmer \ Samsung \ Samsung Battery Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Programmer \ Samsung \ DisplayManager \ DMLoader.exe O4 - HKLM \ .. \ Run: [DisplayManager] C: \ Programmer \ Samsung \ DisplayManager \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Programmer \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ WINDOWS \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ PROGRA ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumer O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Programmer \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [Easy SpyRemover] C: \ Programmer \ Easy SpyRemover \ EasySpyRemover.exe / smart O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Programmer \ Messenger \ msmsgs.exe" / baggrund O4 - HKCU \ .. \ Run: [SWG] C: \ Programmer \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Find Fast.lnk = C: \ Programmer \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Programmer \ Microsoft Office \ Office \ OSA.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Programmer \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: DSLMON.lnk = C: \ Programmer \ Sagem \ Sagem F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Programmer \ HP \ Digital Imaging \ bin \ hpqtra08.exe O8 - Extra sammenhæng menupunktet: & D & ownload & med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra forbindelse menupunktet: & D & ownload all video med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra sammenhæng menupunktet: & D & ownload alle med BitComet - res: / / C: \ Programmer \ BitComet \ BitComet.exe / AddAllLink.htm O9 - Ekstra knap: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): NameServer = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O20 - Winlogon Notify:! SASWinLogon - C: \ Programmer \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ati Genvejstast Poller - ATI Technologies Inc. - C: \ WINDOWS \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ WINDOWS \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programmer \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Programmer \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ iwp \ NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C: \ WINDOWS \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - Ukendt ejer - C: \ Programmer \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Programmer \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ PROGRA ~ 1 \ FÆLLES ~ 1 \ SYMANT ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Ukendt ejer - C: \ Programmer \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- End of file - 9092 bytes Store skridt til at følge, selv jeg forvaltes på det. Thanks, hvad næste?? |
|
#8
| |||
| |||
| Kan du komme til Tilføj / fjern programmer nu? Hvis ja gå der og se efter og fjerne Østen Spy Remover. |
|
#9
| |||
| |||
| Nej, jeg stadig få den advarsel vises som lyder: "Denne operation er blevet aflyst på grund af restriktioner i kraft på denne computer, kan du kontakte dit system administator«. |
|
#10
| ||||||||||||
| ||||||||||||
| Starte op i fejlsikret tilstand.
__________________
Genstart computeren og holde trykke F8. Du burde få en menu. Vælg den yderste (fejlsikret tilstand). Når du vælger regnskaber skal du sørge for at vælge den admin konto. Gå ind i Tilføj / fjern programmer. Det bør arbejde. Ellers prøv at dræbe processen (som måske eller måske ikke blive kaldt "EasySpyRemover.exe" eller lignende). Prøv at åbne Tilføj / fjern igen. Mit system: Toshiba Satellite A200-28p
|
![]() |
|
| Bogmærker |
Lignende Tråde | ||||
| Tråd | Thread Starter | Forum | Svar | Last Post |
| G: \ er ikke tilgængelig, Adgang nægtet. | jimmyc | Drives & flytbare medier | 3 | 24th May 2009 02:43 |
| Adgang nægtet! | prawleprovi | General Software Chat | 3 | 30 oktober 2008 04:50 |
| Adgang nægtet | rbscooby | Windows-operativsystemer | 7 | 9. maj 2008 16:40 |
| Access denied | hewybo | Windows-operativsystemer | 6 | 16 januar 2008 02:40 |
| Adgang nægtet ... pludselig | Quityourjibbajabba | Windows-operativsystemer | 3 | 14 november 2007 06:10 |
| Thread Tools | |
| |