Gå till innehåll

Mina dokument öppnas efter ominstallation


smari57

Recommended Posts

här kommer

loggfilen

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 20:24:28, on 2008-05-04

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16640)

Boot mode: Normal

Running processes:

C:WINDOWSSystem32smss.exe

C:WINDOWSsystem32winlogon.exe

C:WINDOWSsystem32services.exe

C:WINDOWSsystem32lsass.exe

C:WINDOWSsystem32Ati2evxx.exe

C:WINDOWSsystem32svchost.exe

C:WINDOWSSystem32svchost.exe

C:WINDOWSsystem32spoolsv.exe

C:WINDOWSsystem32Ati2evxx.exe

C:WINDOWSExplorer.EXE

C:ProgramAVGAVG8avgwdsvc.exe

C:WINDOWSSystem32svchost.exe

C:ProgramAVGAVG8avgtray.exe

C:ProgramATI TechnologiesATI.ACEcli.exe

C:ProgramDelade filerRealUpdate_OBrealsched.exe

C:ProgramAVGAVG8avgrsx.exe

C:ProgramSkypePhoneSkype.exe

C:WINDOWSsystem32ctfmon.exe

C:ProgramDelade filerAheadLibNMBgMonitor.exe

C:ProgramATI TechnologiesATI.ACECLI.exe

C:ProgramAVGAVG8avgemc.exe

C:ProgramDelade filerAheadLibNMIndexingService.exe

C:ProgramDelade filerAheadLibNMIndexStoreSvr.exe

C:ProgramSkypePlugin ManagerskypePM.exe

C:WINDOWSsystem32wuauclt.exe

C:ProgramMozilla Firefox 3 Beta 5firefox.exe

C:ProgramTrend MicroHijackThisHijackThis.exe

R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.se/

R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Länkar

F2 - REG:system.ini: UserInit=C:WINDOWSSYSTEM32USERINIT.EXE,C:WINDOWSSYSTEM32USERINIT.EXE,

O2 - BHO: Länkhjälp till Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:ProgramDelade filerAdobeAcrobatActiveXAcroIEHelper.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:leikhús islandrpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:ProgramAVGAVG8avgssie.dll

O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:ProgramAVGAVG8avgtoolbar.dll

O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:ProgramAVGAVG8avgtoolbar.dll

O4 - HKLM..Run: [AVG8_TRAY] C:ProgramAVGAVG8avgtray.exe

O4 - HKLM..Run: [ATICCC] "C:ProgramATI TechnologiesATI.ACEcli.exe" runtime

O4 - HKLM..Run: [TkBellExe] "C:ProgramDelade filerRealUpdate_OBrealsched.exe"  -osboot

O4 - HKLM..Run: [NeroFilterCheck] C:ProgramDelade filerAheadLibNeroCheck.exe

O4 - HKCU..Run: [skype] "C:ProgramSkypePhoneSkype.exe" /nosplash /minimized

O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe

O4 - HKCU..Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:ProgramDelade filerAheadLibNMBgMonitor.exe"

O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSSYSTEM32CTFMON.EXE (User 'LOKAL TJÄNST')

O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSSYSTEM32CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSSYSTEM32CTFMON.EXE (User 'SYSTEM')

O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSSYSTEM32CTFMON.EXE (User 'Default user')

O4 - Global Startup: Systemfältet för ATI CATALYST.lnk = C:ProgramATI TechnologiesATI.ACECLI.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgramMessengermsmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:ProgramMessengermsmsgs.exe

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1209201936072

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...b?1209203759089

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:ProgramAVGAVG8avgpp.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:ProgramDELADE~1SkypeSKYPE4~1.DLL

O20 - AppInit_DLLs: avgrsstx.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:WINDOWSsystem32Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:WINDOWSsystem32ati2sgag.exe

O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:ProgramAVGAVG8avgemc.exe

O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:ProgramAVGAVG8avgwdsvc.exe

O23 - Service: NetMeeting Remote Desktop Sharing (mnmsrvc) - Unknown owner - E:WINDOWSSystem32mnmsrvc.exe (file missing)

O23 - Service: NBService - Nero AG - C:ProgramNeroNero 7Nero BackItUpNBService.exe

O23 - Service: NMIndexingService - Nero AG - C:ProgramDelade filerAheadLibNMIndexingService.exe

O23 - Service: Remote Desktop Help Session Manager (RDSessMgr) - Unknown owner - E:WINDOWSsystem32sessmgr.exe (file missing)

O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:WINDOWSSystem32TuneUpDefragService.exe

--

End of file - 5514 bytes

smari57

Länk till kommentar
Dela på andra webbplatser

Delta i dialogen

Du kan skriva svaret nu och registrera dig senare, Om du har ett konto, logga in nu för att svara på inlägget.

Gäst
Svara i detta ämne...

×   Du har klistrat in innehåll med formatering.   Ta bort formatering

  Only 75 emoji are allowed.

×   Din länk har automatiskt bäddats in.   Visa som länk istället

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Skapa nytt...