mindre egenkapital

Magazine
Go Back   Computer Juice > Computer Software > Virus, spionprogrammer og sikkerhet

Register


 Default 

Jeg tror jeg har et virus




Reply
 
Thread Tools
  #1  
Old 31 mars 2008, 10:52
Medlem Group
 
Default Jeg tror jeg har et virus

OK, så jeg synes å ha plukket opp noen form for malware som har deaktivert alternativet for å endre automatiske oppdateringer, noe som gir dem permanantly avslått.

Logg av HJT:

Logfile of Trend Micro HijackThis v2.0.2
Scan lagret 18:45:43, on 31/03/2008
Plattform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Kjører prosesser:
C: \ WINDOWS.NEW \ System32 \ smss.exe
C: \ WINDOWS.NEW \ system32 \ Winlogon.exe
C: \ WINDOWS.NEW \ system32 \ Services.exe
C: \ WINDOWS.NEW \ system32 \ Lsass.exe
C: \ WINDOWS.NEW \ system32 \ Svchost.exe
C: \ Programfiler \ Windows Defender \ MsMpEng.exe
C: \ WINDOWS.NEW \ System32 \ Svchost.exe
C: \ Programfiler \ foran \ inCD \ InCD \ InCDsrv.exe
C: \ WINDOWS.NEW \ system32 \ Svchost.exe
C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccProxy.exe
C: \ Programfiler \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe
C: \ WINDOWS.NEW \ system32 \ Spoolsv.exe
C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ Programfiler \ Bonjour \ mDNSResponder.exe
C: \ WINDOWS.NEW \ System32 \ Svchost.exe
C: \ Programfiler \ Fellesfiler \ Microsoft Shared \ VS7Debug \ mdm.exe
C: \ WINDOWS.NEW \ system32 \ nvsvc32.exe
C: \ WINDOWS.NEW \ System32 \ HPZipm12.exe
C: \ Programfiler \ Dantz \ Retrospect \ retrorun.exe
C: \ progra ~ 1 \ Dantz \ RETROS ~ 1 \ wdsvc.exe
C: \ WINDOWS.NEW \ System32 \ Svchost.exe
C: \ Program Files \ Microsoft \ UPHCS \ uphclean.exe
C: \ WINDOWS.NEW \ System32 \ Ltmoh.exe
C: \ WINDOWS.NEW \ system32 \ taskswitch.exe
C: \ Programfiler \ lg_fwupdate \ fwupdate.exe
C: \ Programfiler \ SiteAdvisor \ 6021 \ SiteAdv.exe
C: \ Programfiler \ Windows Defender \ MSASCui.exe
C: \ Programfiler \ foran \ inCD \ InCD \ InCD.exe
C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
C: \ Programfiler \ Java \ jre1.6.0_05 \ bin \ jusched.exe
C: \ Programfiler \ iTunes \ iTunesHelper.exe
C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe
C: \ WINDOWS.NEW \ system32 \ Ctfmon.exe
C: \ Programfiler \ Spybot - Search & Destroy \ TeaTimer.exe
C: \ Programfiler \ Windows Media Player \ WMPNSCFG.exe
C: \ Programfiler \ NETGEAR \ GA311 \ GA311.exe
C: \ Programfiler \ NETGEAR \ WPN111 \ wpn111.exe
C: \ Programfiler \ Nikon \ PictureProject \ NkbMonitor.exe
C: \ Programfiler \ iPod \ bin \ iPodService.exe
C: \ WINDOWS.NEW \ explorer.exe
C: \ Programfiler \ Fellesfiler \ Symantec Shared \ CCPD-LC \ symlcsvc.exe
C: \ WINDOWS.NEW \ system32 \ wuauclt.exe
C: \ Programfiler \ Fellesfiler \ Microsoft Shared \ Windows Live \ WLLoginProxy.exe
C: \ Programfiler \ Trend Micro \ HijackThis \ HijackThis.exe
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/ig?hl=en
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page =
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. local
O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programfiler \ Fellesfiler \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll
O2 - BHO: (no name) - (089FD14D-132B-48FC-8861-0048AE113215) - C: \ Programfiler \ SiteAdvisor \ 6066 \ SiteAdv.dll
O2 - BHO: RealPlayer Download og Record Plugin for Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Programfiler \ Real \ RealPlayer \ rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - C: \ progra ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ coShared \ Browser \ 2.0 \ coIEPlg.dll
O2 - BHO: Symantec inntrenging Prevention - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - c: \ progra ~ 1 \ FELLES ~ 1 \ SYMANT ~ 1 \ IDS \ IPSBHO.dll
O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programfiler \ Java \ jre1.6.0_05 \ bin \ ssv.dll
O2 - BHO: FoxyTunes Toolbar Helper - (784D8FBC-4165-4D88-90FB-62907ACDD045) - C: \ Programfiler \ FoxyTunes \ ForInternetExplorer \ komponenter \ IE \ FoxyTunesForIE.dll
O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Programfiler \ Fellesfiler \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - c: \ Programfiler \ Google \ googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - (BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Programfiler \ Windows Live Toolbar \ msntb.dll
O3 - Toolbar: McAfee SiteAdvisor - (0BF43445-2F28-4351-9252-17FE6E806AA0) - C: \ Programfiler \ SiteAdvisor \ 6066 \ SiteAdv.dll
O3 - Toolbar: Gotuit Toolbar - (3f59a812-9c30-4ecd-938d-dd73e7c6497d) - (no file)
O3 - Toolbar: FoxyTunes Toolbar - (1D1901C3-F72A-46f3-9DBB-0AAA0DEEF6DF) - C: \ Programfiler \ FoxyTunes \ ForInternetExplorer \ komponenter \ IE \ FoxyTunesForIE.dll
O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ Programfiler \ Google \ googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - (BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Programfiler \ Windows Live Toolbar \ msntb.dll
O3 - Toolbar: Show Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ coShared \ Browser \ 2.0 \ CoIEPlg.dll
O4 - HKLM \ .. \ Run: [LtMoh] C: \ WINDOWS.NEW \ System32 \ Ltmoh.exe
O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ WINDOWS.NEW \ system32 \ NeroCheck.exe
O4 - HKLM \ .. \ Run: [CoolSwitch] C: \ WINDOWS.NEW \ system32 \ taskswitch.exe
O4 - HKLM \ .. \ Run: [LGODDFU] "C: \ Programfiler \ lg_fwupdate \ fwupdate.exe" blrun
O4 - HKLM \ .. \ Run: [SiteAdvisor] "C: \ Programfiler \ SiteAdvisor \ 6021 \ SiteAdv.exe"
O4 - HKLM \ .. \ Run: [Windows Defender] "C: \ Programfiler \ Windows Defender \ MSASCui.exe"-hide
O4 - HKLM \ .. \ Run: [InCD] "C: \ Programfiler \ foran \ inCD \ InCD \ InCD.exe"
O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccApp.exe"
O4 - HKLM \ .. \ Run: [osCheck] "C: \ Programfiler \ Norton Internet Security \ osCheck.exe"
O4 - HKLM \ .. \ Run: [NvCplDaemon] rundll32.exe C: \ WINDOWS.NEW \ system32 \ NvCpl.dll, NvStartup
O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install
O4 - HKLM \ .. \ Run: [NvMediaCenter] rundll32.exe C: \ WINDOWS.NEW \ system32 \ NvMcTray.dll, NvTaskbarInit
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programfiler \ Java \ jre1.6.0_05 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Programfiler \ QuickTime \ QTTask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Programfiler \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Programfiler \ Unlocker \ UnlockerAssistant.exe"
O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS.NEW \ system32 \ Ctfmon.exe
O4 - HKCU \ .. \ Run: [SpybotSD TeaTimer] C: \ Programfiler \ Spybot - Search & Destroy \ TeaTimer.exe
O4 - HKCU \ .. \ Run: [WMPNSCFG] C: \ Programfiler \ Windows Media Player \ WMPNSCFG.exe
O4 - HKUS \ S-1-5-19 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS.NEW \ System32 \ Ctfmon.exe (User 'LOCAL SERVICE')
O4 - HKUS \ S-1-5-20 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS.NEW \ System32 \ Ctfmon.exe (User 'NETWORK SERVICE')
O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS.NEW \ System32 \ Ctfmon.exe (User 'SYSTEM')
O4 - HKUS \ S-1-5-18 \ .. \ RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS.NEW \ System32 \ Ctfmon.exe (User 'Default user')
O4 - HKUS \. DEFAULT \ .. \ RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Global Startup: GA311 Smart Wizard Utility.lnk = C: \ Programfiler \ NETGEAR \ GA311 \ GA311.exe
O4 - Global Startup: HP instant support.lnk = C: \ Programfiler \ Hewlett-Packard \ HP Instant Support DI \ bin \ matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C: \ Programfiler \ Microsoft Office \ Office10 \ Osa.exe
O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk =?
O4 - Global Startup: NkbMonitor.exe.lnk = C: \ Programfiler \ Nikon \ PictureProject \ NkbMonitor.exe
O8 - Extra sammenheng menyelement: & ieSpell Valg - res: / / C: \ Programfiler \ ieSpell \ iespell.dll / SPELLOPTION.HTM
O8 - Extra sammenheng menyelement: & Windows Live Search - res: / / C: \ Programfiler \ Windows Live Toolbar \ msntb.dll / search.htm
O8 - Extra sammenheng menyelement: Kontroller og stavemåte - res: / / C: \ Programfiler \ ieSpell \ iespell.dll / SPELLCHECK.HTM
O8 - Extra sammenheng menyelement: Download all with Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dlall.htm
O8 - Extra sammenheng menyelement: Download valgt med Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dlselected.htm
O8 - Extra sammenheng menyelement: Nedlasting med Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dllink.htm
O8 - Extra sammenheng menyelement: E & ksporter til Microsoft Excel - res: / / c: \ progra ~ 1 \ micros ~ 2 \ Office10 \ EXCEL.EXE/3000
O8 - Extra sammenheng menyelement: Søketabell på Merriam Webster -- file: / / C: \ Program Files \ ieSpell \ Merriam Webster.HTM
O8 - Extra sammenheng menyelement: Slå opp på Wikipedia -- file: / / C: \ Program Files \ ieSpell \ wikipedia.HTM
O9 - Extra knappen: Video Gjenkjenne - (0028E570-E86D-4ceb-a108-76158C18DEF3) - C: \ Programfiler \ videodetect \ videodetect.dll
O9 - Extra "Verktøy" MENUITEM: Video Gjenkjenne - (0028E570-E86D-4ceb-a108-76158C18DEF3) - C: \ Programfiler \ videodetect \ videodetect.dll
O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_05 \ bin \ ssv.dll
O9 - Extra "Verktøy" MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programfiler \ Java \ jre1.6.0_05 \ bin \ ssv.dll
O9 - Extra knappen: ieSpell - (0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8) - C: \ Programfiler \ ieSpell \ iespell.dll
O9 - Extra "Verktøy" MENUITEM: ieSpell - (0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8) - C: \ Programfiler \ ieSpell \ iespell.dll
O9 - Extra knappen: (no name) - (1606D6F9-9D3B-4aea-A025-ED5B2FD488E7) - C: \ Programfiler \ ieSpell \ iespell.dll
O9 - Extra "Verktøy" MENUITEM: ieSpell Valg - (1606D6F9-9D3B-4aea-A025-ED5B2FD488E7) - C: \ Programfiler \ ieSpell \ iespell.dll
O9 - Extra knappen: dvs. bilde Downloader - (8F05069A-4BC5-4175-8B19-76A413464C90) - c: \ progra ~ 1 \ IE_PIC ~ 1 \ \ iedownloader.exe
O9 - Extra knappen: BitComet - (D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A) - res: / / C: \ Programfiler \ BitComet \ tools \ BitCometBHO_1.2.1.2.dll/206 (fil mangler)
O9 - Extra knappen: (no name) - (DFB852A3-47F8-48C4-a200-58CAB36FD2A2) - C: \ progra ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O9 - Extra "Verktøy" MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-a200-58CAB36FD2A2) - C: \ progra ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS.NEW \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra "Verktøy" MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS.NEW \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra-knappen: @ C: \ Programfiler \ Messenger \ Msgslang.dll, -61144 - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe
O9 - Extra "Verktøy" MENUITEM: @ C: \ Programfiler \ Messenger \ Msgslang.dll, -61144 - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programfiler \ Messenger \ msmsgs.exe
O10 - Unknown fil i Winsock LSP: c: \ windows.new \ system32 \ nwprovau.dll
O16 - DPF: (01010E00-5E80-11D8-9E86-0007E96C65AE) (SupportSoft SmartIssue) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: (01012101-5E80-11D8-9E86-0007E96C65AE) (SupportSoft Script Runner klasse) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: (05D44720-58E3-49E6-BDF6-D00330E511D3) (StagingUI Object) -- http://zone.msn.com/binFrameWork/v10...I.cab46479.cab
O16 - DPF: (0742B9EF-8C83-41CA-BFBA-830A59E23533) (Microsoft Data Collection Control) -- https: / / support.microsoft.com / OAS / ActiveX / MSDcode.cab
O16 - DPF: (1F2F4C9E-6F09-47BC-970D-3C54734667FE) -- http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: (2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B) (DownloadManager Control) -- http://dlmanager.akamaitools.com.edg...ex-2.0.6.0.cab
O16 - DPF: (2BC66F54-93A8-11D3-BEB6-00105AA9B6AE) (Symantec AntiVirus scanner) -- http://security.symantec.com/sscv6/S...in/AvSniff.cab
O16 - DPF: (2ED9BC2B-4DF1-472E-9B5E-55477D2C97F5) (Microsoft Data Collection Control) -- https: / / support.microsoft.com / OAS / ActiveX / odc.cab
O16 - DPF: (3451DEDE-631F-421C-8127-FD793AFC6CC8) (ActiveDataInfo klasse) -- http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: (34F12AFD-E9B5-492A-85D2-40FA4535BE83) (AxProdInfoCtl klasse) -- http://www.symantec.com/techsupp/act...a/nprdtinf.cab
O16 - DPF: (3BB54395-5982-4788-8AF4-B5388FFDD0D8) -- http://zone.msn.com/BinFrameWork/v10...y.cab32846.cab
O16 - DPF: (44990200-3C9D-426D-81DF-AAB636FA4345) (Symantec SmartIssue) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: (44990301-3C9D-426D-81DF-AAB636FA4345) (Symantec Script Runner klasse) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: (5736C456-EA94-4AAC-BB08-917ABDD035B3) -- http://zone.msn.com/binframework/v10...t.cab32846.cab
O16 - DPF: (5ED80217-570B-4DA9-BF44-BE107C0EC166) (Windows Live Safety Center Base Module) -- http://cdn.scan.onecare.live.com/res...scbase8300.cab
O16 - DPF: (644E432F-49D3-41A1-8DD5-E099162EEEC5) (Symantec RuFSI Utility klasse) -- http://security.symantec.com/sscv6/S.../bin/cabsa.cab
O16 - DPF: (67A5F8DC-1A4B-4D66-9F24-A704AD929EEE) (System Requirements Lab) -- http://www.nvidia.com/content/Driver...sysreqlab2.cab
O16 - DPF: (6A344D34-5231-452A-8A57-D064AC9B7862) (Symantec Download Manager) -- https: / / webdl.symantec.com / activex / symdlmgr.cab
O16 - DPF: (6B75345B-AA36-438A-BBE6-4078B4C6984D) (HpProductDetection klasse) -- http://h20270.www2.hp.com/ediags/gmn...tDetection.cab
O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klasse) -- http://update.microsoft.com/microsof...?1125163370105
O16 - DPF: (AB86CE53-AC9F-449F-9399-D8ABCA09EC09) -- https: / / h17000.www1.hp.com/ewfrf-JAV...oadManager.ocx
O16 - DPF: (B3E22EA2-A579-11D2-847A-00C04F7605B6) -- file: / / E: \ 0000C5DD \ wpxfp01a \ Common \ e. .. code \ odweb.cab
O16 - DPF: (B8BE5E93-A60C-4D26-A2DC-220313175592) (ZoneIntro klasse) -- http://cdn2.zone.msn.com/binFramewor...o.cab34246.cab
O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient Klassifikasjon) -- http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: (CE28D5D2-60CF-4C7D-9FE8-0F47A3308078) (ActiveDataInfo klasse) -- http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: (D1E7CBDA-E60E-4970-A01C-37301EF7BF98) (Measurement Services Client v.3.11) -- http://advisor.futuremark.com/global/msc311.cab
O16 - DPF: (DA2AA6CF-5C7A-4B71-BC3B-C771BB369937) (StadiumProxy klasse) -- http://zone.msn.com/binframework/v10...y.cab41227.cab
O16 - DPF: (E7D2588A-7FB5-47DC-8830-832605661009) (Live Collaboration) -- http://livenj01.rightnowtech.com/556.../java/RntX.cab
O16 - DPF: (E8F628B5-259A-4734-97EE-BA914D7BE941) (Driver Agent ActiveX Control) -- http://plugin.driveragent.com/files/driveragent.cab
O16 - DPF: (EB387D2F-E27B-4D36-979E-847D1036C65D) (QDiagHUpdateObj klasse) -- http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326
O16 - DPF: (FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1) (DownloadManager Control) -- http://dlm.tools.akamai.com/dlmanage...ex-2.2.1.6.cab
O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9458-1830C7DD7F5D) - C: \ progra ~ 1 \ FELLES ~ 1 \ Skype \ SKYPE4 ~ 1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C: \ Programfiler \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programfiler \ Fellesfiler \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C: \ Programfiler \ Bonjour \ mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ VAScanner \ comHost.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Programfiler \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Programfiler \ Fellesfiler \ InstallShield \ Driver \ 1150 \ Intel 32 \ IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C: \ Programfiler \ foran \ inCD \ InCD \ InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C: \ Programfiler \ iPod \ bin \ iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C: \ Programfiler \ Symantec \ LiveUpdate \ LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ WINDOWS.NEW \ system32 \ nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C: \ WINDOWS.NEW \ System32 \ HPZipm12.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C: \ Programfiler \ Dantz \ Retrospect \ retrorun.exe
O23 - Service: Retrospect WD Service (RetroWDSvc) - Dantz Development Corporation - C: \ progra ~ 1 \ Dantz \ RETROS ~ 1 \ wdsvc.exe
O23 - Service: Symantec Core LC - Unknown owner - C: \ Programfiler \ Fellesfiler \ Symantec Shared \ CCPD-LC \ symlcsvc.exe
--
End of file - 17835 bytes
  #2  
Old 31 mars 2008, 10:54
Banned Group
 
Default Jeg tror jeg har et virus

WAW nå dvs en murstein av tekst
__________________

Min System: Mean maskinen!

Prosessor (er):
Intel Core 2 Quad Q6600 Pro "Energy
Hovedkort:
Asus Maksim Extreme Intel X38
RAM-minne:
OCZ 4GB (2x2GB) PC2-8000C5
Graphics Card (s):
EVGA GeForce 8800 Ultra SuperClocke
Lydkort:
CREATIVE SB0670 X-Fi PCI SOUND BLAS
Harddisk (er):
Seagate Barracuda ES.2 1TB SATA-II
Optisk stasjon (er):
Case / PSU:
Dell XPS
Cooling:
Arctic Cooling Freezer 64 Pro varmer
Nettverk / Internett:
AOL
Skjerm (er):
19 "LCD 1080/1920p
Operating System (s):
xp
  #3  
Old 31 mars 2008, 11:04
Moderator Group
 
Default Jeg tror jeg har et virus

Jeg ser ikke noe malware i loggen.

Har Hijackthis fikse disse oppføringene.
  • O3 - Toolbar: Gotuit Toolbar - (3f59a812-9c30-4ecd-938d-dd73e7c6497d) - (no file)
  • O9 - Extra knappen: BitComet - (D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A) - res: / / C: \ Programfiler \ BitComet \ tools \ BitCometBHO_1.2.1.2.dll/206 (fil mangler)
  • O16 - DPF: (FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1) (DownloadManager Control) -- http://dlm.tools.akamai.com/dlmanage...ex-2.2.1.6.cab
Prøv her Hjelp med Windows-oppdateringer

La meg vite hvordan du får på, kan vi alltid kjøre mer skanner for å være sikker.
__________________

  #4  
Old 31 mars 2008, 11:23
Medlem Group
 
Default Jeg tror jeg har et virus

Jeg kunne ikke finne noe der som hjelper ... takk for linken skjønt.

Jeg har lagt ved et skjermbilde som viser akkurat det jeg mener - håper dette er i bruk.
Attached Thumbnails
I think I Have a Virus-untitled.jpg  
  #5  
Old 31 mars 2008, 11:29
Moderator Group
 
Default Jeg tror jeg har et virus

Er du logget på som administrator?
__________________

  #6  
Old 31 mars 2008, 11:33
Medlem Group
 
Default Jeg tror jeg har et virus

Yup .. det var den første jeg sjekket, tenkte at det hadde fått endret. Det er det samme på den andre administratorkontoen også.
  #7  
Old 31 mars 2008, 11:43
Moderator Group
 
Default Jeg tror jeg har et virus

Har du noen sikkerhet programmer installert som kan ha den deaktivert. XP-Antispy?

Du kan gå til registernøkkel og endre standardverdien og aktivere dem manuelt.

Gå til Start> Kjør, skriv inn regedit og klikk OK
Finn nøkkelen:
HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ au
I den høyre ruten, se etter en nøkkel kalt noautoupdate
Endre verdien fra 1 til 0

Start på nytt og se om det har endret seg.
__________________

  #8  
Old 31 mars 2008, 11:44
Moderator Group
 
Default Jeg tror jeg har et virus

Beklager, bare kjørte over dette.

Gå til http://www.kellys-korner-xp.com/xp.htm gå til tweaks og få tweak kalt "Windows Update nedtonet - Gjenoppr."
__________________

  #9  
Old 31 mars 2008, 11:53
Medlem Group
 
Default Jeg tror jeg har et virus

Det er flott, takk en million evilfantasy! Det ser ut som den mindre infeksjon jeg hadde var ikke relatert til dette.

Igjen, jubelropet.
  #10  
Old 31 mars 2008, 12:01
Moderator Group
 
Default Jeg tror jeg har et virus

No problem.
__________________

Reply

Register

Hugseliste

Lignende Tråder
Tråd Tråd startet Forum Svar Siste innlegg
Virus Spørsmål - Kan noen fortelle meg om jeg har et virus billozz Virus, spionprogrammer og sikkerhet 1 2 april 2009 13:58
Mine venner MAC har et virus ... Umm ... yeah ... et virus ... cheesepuff Virus, spionprogrammer og sikkerhet 3 29 oktober 2008 12:58
Virus hjelp jam90 Virus, spionprogrammer og sikkerhet 1 28 juli 2008 07:26
Virus lolli_pop Virus, spionprogrammer og sikkerhet 13 17 nov 2007 09:42
Virus? carpious Virus, spionprogrammer og sikkerhet 12 6 mai 2007 09:49
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Computer Juice.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO by vBSEO © 2009, gjennomgå webområdet, Inc.