![]() |
|
#1
| |||
| |||
| min computer er lastning langsommere end normalt. Jeg forsøgte at bruge nogle defragmenteres og spyware fjernelse scannere, men det hjalp ikke. så jeg tænkte gjorde min computer bliver inficeret med en virus? ![]() Pls hjælp mig finde en wayy til at fastsætte it.Thanks. HiJackThis log: Logfile af Trend Micro HijackThis v2.0.2 Scan gemt på 8:33:39 PM, den 7/1/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Kørende processer: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ Lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ WINDOWS \ system32 \ Svchost.exe c: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ WINDOWS \ Explorer.EXE C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe C: \ Programmer \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ VTTimer.exe C: \ WINDOWS \ system32 \ LVCOMSX.EXE C: \ Programmer \ Logitech \ Video \ LogiTray.exe C: \ Programmer \ Java \ jre1.6.0_05 \ bin \ jusched.exe C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Programmer \ HP \ hpcoretech \ hpcmpmgr.exe C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ hpztsb1 0.exe C: \ Programmer \ QuickTime \ QTTask.exe C: \ Programmer \ iTunes \ iTunesHelper.exe C: \ Programmer \ Common Files \ Real \ Update_OB \ realsched.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Programmer \ Bonjour \ mDNSResponder.exe C: \ Programmer \ MSN Messenger \ msnmsgr.exe C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Programmer \ AIM6 \ aim6.exe C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe C: \ Programmer \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe C: \ Programmer \ Logitech \ Desktop Messenger \ 8876480 \ Programmer \ LogitechDesktopMessenger. Exe C: \ Programmer \ Logitech \ Video \ FxSvr2.exe C: \ Programmer \ Yahoo! \ Messenger \ ymsgr_tray.exe C: \ Programmer \ iPod \ bin \ iPodService.exe C: \ Programmer \ AIM6 \ aolsoftware.exe C: \ Programmer \ Mozilla Firefox \ firefox.exe C: \ Programmer \ Mozilla Firefox \ firefox.exe C: \ Programmer \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = ca: blank R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, SearchAssistant = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, CustomizeSearch = R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, First Home Page = http://go.microsoft.com/fwlink/?LinkId=54843 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = localhost; *. lokale O2 - BHO: (no name) - (02478D38-C3F9-4efb-9B51-7695ECA05670) - (no file) O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Programmer \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: RealPlayer Download og Record Plugin for Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Programmer \ Real \ RealPlayer \ rpbrowserrecordplugin.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Programmer \ Java \ jre1.6.0_05 \ bin \ ssv.dll O4 - HKLM \ .. \ Run: [ccApp] "C: \ Programmer \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / SYNC O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ WINDOWS \ system32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ PROGRA ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Enterprise O4 - HKLM \ .. \ Run: [VTTimer] VTTimer.exe O4 - HKLM \ .. \ Run: [LVCOMSX] C: \ WINDOWS \ system32 \ LVCOMSX.EXE O4 - HKLM \ .. \ Run: [LogitechVideoRepair] C: \ Programmer \ Logitech \ Video \ ISStart.exe O4 - HKLM \ .. \ Run: [LogitechVideoTray] C: \ Programmer \ Logitech \ Video \ LogiTray.exe O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Programmer \ Java \ jre1.6.0_05 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [MP10_EnsureFileVer] C: \ Windows \ Inf \ unregmp2.exe / EnsureFileVersions O4 - HKLM \ .. \ Run: [HP Component Manager] "C: \ Programmer \ HP \ hpcoretech \ hpcmpmgr.exe" O4 - HKLM \ .. \ Run: [HPDJ Proceslinje Utility] C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ hpztsb1 0.exe O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Programmer \ QuickTime \ QTTask.exe"-atboottime O4 - HKLM \ .. \ Run: [Adobe Reader Speed Launcher] "C: \ Programmer \ Adobe \ Reader 8.0 \ Reader \ Reader_sl.exe" O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Programmer \ iTunes \ iTunesHelper.exe" O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Programmer \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Programmer \ MSN Messenger \ msnmsgr.exe" / baggrund O4 - HKCU \ .. \ Run: [LogitechSoftwareUpdate] "C: \ Programmer \ Logitech \ Video \ ManifestEngine.exe" boot O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Programmer \ Yahoo! \ Messenger \ YahooMessenger.exe"-quiet O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Programmer \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Programmer \ AIM6 \ aim6.exe" / d locale = en-US ee: / / AOL / imApp O4 - Global Startup: Logitech Desktop Messenger.lnk = C: \ Programmer \ Logitech \ Desktop Messenger \ 8876480 \ Programmer \ LogitechDesktopMessenger. Exe O4 - Global Startup: Microsoft Office.lnk = C: \ Programmer \ Microsoft Office \ Office10 \ OSA.EXE O9 - Extra knappen: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_05 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Programmer \ Java \ jre1.6.0_05 \ bin \ ssv.dll O9 - Extra knappen: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Ekstra knap: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Programmer \ Messenger \ msmsgs.exe O16 - DPF: (0742B9EF-8C83-41CA-BFBA-830A59E23533) (Microsoft Data Collection Control) -- https: / / support.microsoft.com / OAS / ActiveX / MSDcode.cab O16 - DPF: (0B79F48A-E8D6-11DB-9283-E25056D89593) (F-Secure Online Scanner 3.1) -- http://support.f-secure.com/ols/fscax.cab O16 - DPF: (1EF9F042-C2EB-4293-8213-474CAEEF531D) (TmHcmsX Control) -- http://www.trendsecure.com/framework...ex/TmHcmsX.CAB O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Programmer \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (5D6F45B3-9043-443D-A792-115447494D24) (UnoCtrl klasse) -- http://messenger.zone.msn.com/EN-US/.../GAME_UNO1.cab O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient Class) -- http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: (F5A7706B-B9C0-4C89-A715-7A0C6B05DD48) (Minesweeper Flags Class) -- http://messenger.zone.msn.com/binary...r.cab56986.cab O18 - Protocol: bwfile-8876480 - (9462A756-7B47-47BC-8C80-C34B9B80B32B) - C: \ Programmer \ Logitech \ Desktop Messenger \ 8876480 \ Program \ GAPlugProtocol-8876480.dll O20 - Winlogon Notify:! SASWinLogon - C: \ Programmer \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C: \ Programmer \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Programmer \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Programmer \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: Bonjour Service - Apple Inc. - C: \ Programmer \ Bonjour \ mDNSResponder.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c: \ Programmer \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ DefWatch.exe O23 - Service: iPod Service - Apple Inc. - C: \ Programmer \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Programmer \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Symantec Core LC - Symantec Corporation - C: \ Programmer \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c: \ Programmer \ Common Files \ Symantec Shared \ Security Center \ SymWSC.exe O24 - Desktop Component 0: (no name) - file: / / / C: / Documents% 20and% 20Settings/HP_Owner/Local% 20Settings/Application% 20Data/Microsoft/Wallpaper1.bmp -- End of file - 9532 bytes |
|
#2
| |||
| |||
| Ikke en virus. Der er noget at rense selv. Åbn Hijackthis og vælg Må en systemscanning kun. Anbringe en markering ved siden af følgende poster: (hvis der) O2 - BHO: (no name) - (02478D38-C3F9-4efb-9B51-7695ECA05670) - (no file) Vigtigt: Luk alle vinduer undtagen Hijackthis og klik derefter på Fix kontrolleres. Afslut Hijackthis. |
|
#3
| |||
| |||
| Okayy jeg gjorde det. Det var det rigtige? |
|
#4
| |||
| |||
| |
|
#5
| |||
| |||
| Okayy. Tak. |
![]() |
|
| Bogmærker |
Lignende Tråde | ||||
| Tråd | Thread Starter | Forum | Svar | Last Post |
| Virus Spørgsmål - Kan nogen fortælle mig, hvis jeg må have en virus | billozz | Virus, Spyware & Sikkerhed | 1 | 2 april 2009 13:58 |
| Mine venner MAC er en virus ... Umm ... yeah ... en virus ... | cheesepuff | Virus, Spyware & Sikkerhed | 3 | 29 oktober 2008 12:58 |
| Virus hjælp | jam90 | Virus, Spyware & Sikkerhed | 1 | 28 juli 2008 07:26 |
| Virus | lolli_pop | Virus, Spyware & Sikkerhed | 13 | 17 november 2007 09:42 |
| Virus? | carpious | Virus, Spyware & Sikkerhed | 12 | 6. maj 2007 09:49 |
| Thread Tools | |
| |