![]() |
|
#1
| |||
| |||
| Snälla, hjälp !!!!! Min dator kommer inte att tillåta mig att gå in lägga till eller ta bort program, det står åt denier eftersom jag inte har auktoritet och kontakta systemadministratören, det här är min PC (laptop) och endast mig själv och min man har redovisning som upprättats på dator, jag har försökt under hans konto och säger samma sak. Hur kan jag få detta sorteras? Vi fortsätter att få detta meddelande visas ett fönster skyddslarmsystem, Varning Potentiella spionprogram drift. Hur kan jag förhindra detta förekommer? Tack Hannah |
|
#2
| ||||||||||||
| ||||||||||||
| Du kan bli bättre meddelanden detta i Virus, spionprogram och säkerhet forum
__________________
Mitt System: Hem Bygg
|
|
#3
| |||
| |||
| Trådar sammanslagna. |
|
#4
| |||
| |||
| Flyttade till virus, spionprogram och säkerhet forum. Låt oss se en logg från HijackThis tack. Hämta HijackThis på skrivbordet. Dubbelklicka på den fil du just laddat ned. Klicka på "Installera"Knappen för att installera. Den kommer som standard installeras till katalogen -- C: \ Program Files \ Trend Micro \ HijackThis Jag ber er att inte ändra standardinställningarna installera plats. Efter installation, HijackThis bör öppna för dig. Nästa klicka på "Har en av datorn och spara en loggfil " knappen. HijackThis kommer att skanna och sedan en logg kommer att öppna i Anteckningar. I det övre vänstra av notepad fönstret klicka på "File" > "Spara som" namn det HijackThis och sedan spara den till Desktop. Spara log som ett textmeddelande (. txt-Fil) eller. Logga Göra INTE bifoga MS-Word . DOC filer kommer de inte att titta på! I ditt inlägg lägger log som en Anslutningskrav. * Har du inte HijackThis fastställa något ännu. Det mesta av vad man anser kommer att vara ofarliga eller till och med nödvändig. ** Använd inte analysera denna knapp. Det slutsatser är farliga om misstolkas. Guide för att fästa loggarna till en tjänst |
|
#5
| |||
| |||
| Loggfil av Trend Micro HijackThis v2.0.2 Scan sparas på 7:42:43 PM om 11/25/2007 Plattform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Kör processer: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ bgsvcgen.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program \ Norton AntiVirus \ navapsvc.exe C: \ Program \ Norton AntiVirus \ iwp \ NPFMntor.exe C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ Explorer.exe C: \ WINDOWS \ system32 \ wscntfy.exe C: \ WINDOWS \ system32 \ printer.exe C: \ Program \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Program Files \ Samsung \ AVStation Premium 3,75 \ AVSAgent.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ Samsung \ Samsung Batteri Manager \ BatteryManager.exe C: \ Program \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Program Files \ Samsung \ DisplayManager \ DisplayManager.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Program Files \ Samsung \ DisplayManager \ dmhkcore.exe C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe C: \ Program Files \ Messenger \ msmsgs.exe C: \ Program \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe C: \ Program Files \ FinePixViewer \ QuickDCF2.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Program \ Microsoft Office \ Office \ OSA.EXE C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe C: \ WINDOWS \ system32 \ HPZipm12.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ Program Files \ Easy SpyRemover \ EasySpyRemover.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html F2 - REG: system.ini: Shell = Explorer.exe C: \ WINDOWS \ system32 \ printer.exe O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Program \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ program \ google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Delay O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3,75] C: \ Program Files \ Samsung \ AVStation Premium 3,75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Program \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Program \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Program Files \ Samsung \ Samsung Batteri Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Program Files \ Samsung \ DisplayManager \ DMLoader.exe O4 - HKLM \ .. \ Run: [DisplayManager] C: \ Program Files \ Samsung \ DisplayManager \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ WINDOWS \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ progra ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumer O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Program Files \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com, ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com, ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Program Files \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Program Files \ Messenger \ msmsgs.exe" / bakgrund O4 - HKCU \ .. \ Run: [SWG] C: \ Program \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User "SYSTEM") O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Hitta Fast.lnk = C: \ Program \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Program \ Microsoft Office \ Office \ OSA.EXE O4 - Startup: system.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: Autorun.exe O4 - Global Startup: DSLMON.lnk = C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe O7 - HKLM \ Software \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 O8 - Extra sammanhang menyobjektet: & D & ownload & med BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra sammanhang menyobjektet: & D & ownload all video med BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra sammanhang menyobjektet: & D & ownload all with BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddAllLink.htm Ø9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe Ø9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): NameServer = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O23 - Service: Ati snabbtangent Poller - ATI Technologies Inc. - C: \ WINDOWS \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ WINDOWS \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ progra ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Program \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Program \ Norton AntiVirus \ iwp \ NPFMntor.exe O23 - Service: PML Driver HPZ12 - HP - C: \ WINDOWS \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - okänd ägare - C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Program \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ progra ~ 1 \ GEMENSAMMA ~ 1 \ SYMANT ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Unknown ägaren - C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- End of file - 9608 bytes Hope this helps? |
|
#6
| |||
| |||
| Du har definitivt en del mycket otrevliga infektioner. 1. Hämta Malwarebytes' RogueRemover Gratis 2. Dubbelklicka på ikonen för att installera RogueRemover och sedan starta programmet. 3. Press Sök efter uppdateringar. 4. Detta kommer att visa om det finns en nyare version av databasen. Tryck på Hämta. 5. Gå tillbaka till huvudskärmen och tryck Scan. 6. Om och när en infektion har hittats ta bort alla objekt hittades. ===== Ladda ner, installera och uppdatera SUPERAntiSpyware (SAS) Försök inte köra det här ännu. SUPERAntiSpyware Free Edition ===== Du kanske vill skriva ut eller kopiera och klistra in resten av anvisningarna och spara dem i ett textdokument på skrivbordet. Du kommer inte att kunna se dem från felsäkert läge. Starta datorn i felsäkert läge * Starta om datorn. * När du ser svart-vita Starta Windows längst ned på skärmen, börja trycka på F8 nyckel. * När du kommer till boot-menyn med piltangenterna för att välja Felsäkert läge * Tryck Ange. * Datorn startar om i felsäkert läge. ===== Öppna HijackThis och välj "Ta ett system scan only" Placera en bock bredvid: (om den hittas) F2 - REG: system.ini: Shell = Explorer.exe C: \ WINDOWS \ system32 \ printer.exe O4 - HKLM \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com, ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com, ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Program Files \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ WINDOWS \ system32 \ WinAvXX.exe O4 - Startup: system.exe O4 - Global Startup: Autorun.exe O7 - HKLM \ Software \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 Klicka nu på "Fix checked" Avsluta HijackThis ===== Nu konfigurera och köra SUPERAntiSpyware i felsäkert läge. * Enligt Konfiguration och inställningarKlicka på Inställningar knappen. * Klicka på Scanning Control tab. * Enligt Scanner Val Kontrollera att följande kontrolleras: + Stäng webbläsare innan scanning + Scan för tracking cookies + Terminate minne hot innan karantän. + Lämna de andra unchecked. + Klicka på Nära knappen för att lämna kontrollcenter skärmen. * På huvudskärmen under Sök efter skadlig programvara klicka Skanna din dator. * På vänster kontrollera C: \ Fixed Drive. * Till höger, under Complete Scan, Välj Utför Complete Scan. * Klicka Nästa för att starta skanningen. Ha tålamod medan den skannar din dator. * Efter den är färdig, en sammanfattning visas. Klicka OK. * Se till att allt i den vita rutan har kontroll bredvid den, klicka på Nästa. * Det kommer karantän vad man hittat och om man frågar om du vill starta, klicka på Ja. * Att hämta avlägsnande information gör du följande: + Efter omstarten, dubbelklicka på SUPERAntiSpyware ikon på skrivbordet. + Klicka Inställningar. Klicka på Statistik / Logs tab. + Under Scanner Logs Dubbelklicka på SUPERAntiSpyware Scan Logg. + Det kommer att öppna i din standard textredigerare (exempelvis Notepad / WordPad). + Spara notepad filen på skrivbordet genom att klicka på (i notepad)Fil""Spara som" * Spara loggen någonstans att du enkelt kan hitta den. (normalt skrivbordet) * Klicka på Stäng och stäng igen för att avsluta programmet. * Lägg till log som en anslutningskrav tillsammans med en ny HijackThis-logg i nästa post. ===== Nästa Post lägg till som bilagor SUPERAntiSpyware log Ny HijackThis log |
|
#7
| |||
| |||
| Detta är SUPERAntiSpyware Resultat: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 11/26/2007 vid 08:56 Application Version: 3.9.1008 Core Rules Database Version: 3259 Trace Rules Database Version: 1270 Scan type: Quick Scan Total Scan Time: 00:09:24 Memory ex skannade: 564 Memory hot upptäcks: 0 Registreringsenheten ex skannade: 720 Registreringsenheten hot upptäcks: 0 Arkiv ex skannade: 8656 Arkiv hot upptäcktes: 84 Adware.Tracking Cookie C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstbeacon [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@archant.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfmigoajiko.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4widpifo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ overture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wflokpczkbq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.errclean [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ads.associatedconte nt [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070878818 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ DoubleClick [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ads.pointroll [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ burstnet [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmywjdjokp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ atdmt [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ roiservice [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@122.2o7 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ apmebf [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyehcjkdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wblogncpagp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ mediaplex [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ indextools [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgmyagajsdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@phillyburbscom.112. 2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1069870899 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tjänstgör-sys [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ questionmarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4cpcjshq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1057062368 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adserver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@rotator.adjuggler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ Haymarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyalcpcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [3]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ehg-autotrader.hitbox [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ revsci [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ a [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wckigncpmfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ whatcar [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjkoejdjmgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.webdiversi ty.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wglyuiazacp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ TradeDoubler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ pistonheads [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tribalfusion [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgl4qic5mlp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@anat.tacoda [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ nästa [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6whkiaodzcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ hitbox [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@haynet.adbureau [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@paypal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliujajshp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066670941 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgliglc5aco.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@h.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@edge.ru4 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgkiohcpmgo.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfkysjazkgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@amazonms.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@msnportal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ bluestreak [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliemdzahq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1071238990 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070144314 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlycmajsfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ reklam [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066767647 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@media.adrevolver [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adtech [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyqgd5ido.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tacoda [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.summitmedi a.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmikjczihq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstnet [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ statcounter [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@try.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@statse.webtrendsliv e [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ clickbank [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wbliskcjibo.stats.esomniture [2]. Txt Och här är HijackThis-logg: Loggfil av Trend Micro HijackThis v2.0.2 Scan sparas på 9:02:38 AM, den 11/26/2007 Plattform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Kör processer: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ bgsvcgen.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program \ Norton AntiVirus \ navapsvc.exe C: \ Program \ Norton AntiVirus \ iwp \ NPFMntor.exe C: \ WINDOWS \ system32 \ HPZipm12.exe C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ system32 \ Ati2evxx.exe C: \ WINDOWS \ system32 \ wscntfy.exe C: \ WINDOWS \ Explorer.EXE C: \ Program \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Program Files \ Samsung \ AVStation Premium 3,75 \ AVSAgent.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ Samsung \ Samsung Batteri Manager \ BatteryManager.exe C: \ Program \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Program Files \ Samsung \ DisplayManager \ DisplayManager.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Program Files \ Samsung \ DisplayManager \ dmhkcore.exe C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Program Files \ Messenger \ msmsgs.exe C: \ Program \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe C: \ Program Files \ FinePixViewer \ QuickDCF2.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Program \ Microsoft Office \ Office \ OSA.EXE C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ WINDOWS \ system32 \ wuauclt.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Program \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ program \ google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Delay O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3,75] C: \ Program Files \ Samsung \ AVStation Premium 3,75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Program \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Program \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Program Files \ Samsung \ Samsung Batteri Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Program Files \ Samsung \ DisplayManager \ DMLoader.exe O4 - HKLM \ .. \ Run: [DisplayManager] C: \ Program Files \ Samsung \ DisplayManager \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ WINDOWS \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ progra ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumer O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Program Files \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [Easy SpyRemover] C: \ Program Files \ Easy SpyRemover \ EasySpyRemover.exe / smart O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Program Files \ Messenger \ msmsgs.exe" / bakgrund O4 - HKCU \ .. \ Run: [SWG] C: \ Program \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User "SYSTEM") O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Hitta Fast.lnk = C: \ Program \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Program \ Microsoft Office \ Office \ OSA.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: DSLMON.lnk = C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe O8 - Extra sammanhang menyobjektet: & D & ownload & med BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra sammanhang menyobjektet: & D & ownload all video med BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra sammanhang menyobjektet: & D & ownload all with BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddAllLink.htm Ø9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe Ø9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): NameServer = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ati snabbtangent Poller - ATI Technologies Inc. - C: \ WINDOWS \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ WINDOWS \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ progra ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Program \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Program \ Norton AntiVirus \ iwp \ NPFMntor.exe O23 - Service: PML Driver HPZ12 - HP - C: \ WINDOWS \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - okänd ägare - C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Program \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ progra ~ 1 \ GEMENSAMMA ~ 1 \ SYMANT ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Unknown ägaren - C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- End of file - 9092 bytes Stort steg att följa, även jag lyckades det. Tack, vad blir nästa steg?? |
|
#8
| |||
| |||
| Kan du lägga till / ta bort program nu? Om så gå dit och leta efter och avinstallera East Spy Remover. |
|
#9
| |||
| |||
| Nej, jag fortfarande få varningen visas som lyder: "Åtgärden har avbrutits på grund av begränsningar i datorn, kontakta din system administator". |
|
#10
| ||||||||||||
| ||||||||||||
| Starta upp i felsäkert läge.
__________________
Starta om datorn och hålla hitting F8. Du bör få en meny. Välj yttersta (felsäkert läge). Vid val av konton ska du välja admin-konto. Gå in i Lägg till / ta bort program. Det bör fungera. Annars försöker döda processen (som kan eller inte kan kallas "EasySpyRemover.exe eller liknande). Försök att få tillgång till Lägg till / ta bort igen. Mitt System: Toshiba Satellite A200-28p
|
![]() |
|
| Komihåglista |
Liknande Trådar | ||||
| Tråd | Thread Starter | Forum | Svar | Senaste Inlägg |
| G: \ är inte tillgänglig, Åtkomst nekad. | jimmyc | Drives & Removable Media | 3 | 24 juni 2009 02:43 |
| Åtkomst nekad! | prawleprovi | General Software Chat | 3 | 30 oktober 2008 04:50 |
| Access Denied | rbscooby | Windows-operativsystem | 7 | 9 maj 2008 16:40 |
| Åtkomst nekad | hewybo | Windows-operativsystem | 6 | 16 januari 2008 02:40 |
| Åtkomst nekad ... plötsligt | Quityourjibbajabba | Windows-operativsystem | 3 | 14 november 2007 06:10 |
| Thread Tools | |
| |