2007-10-17, 19:03
  #1
Medlem
High Lifes avatar
Behöver verkligen hjälp med denna log. Vill inte bli tvungen att formatera om datorn.
Har testat bl.a Nod32 (beta version som jag har lite problem med att få bort), Ad Aware, Spyware doctor och AVG.
Får upp en massa popups med "säkerhets varningar". Vad jag än väljer så kommer jag till någon hemsida.
Vore väldigt tacksam

Kod:
Logfile of HijackThis v1.99.1
Scan saved at 18:50:12, on 2007-10-17
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
D:\WINNT\System32\smss.exe
D:\WINNT\system32\winlogon.exe
D:\WINNT\system32\services.exe
D:\WINNT\system32\lsass.exe
D:\WINNT\system32\svchost.exe
D:\Program\Intel\Wireless\Bin\EvtEng.exe
D:\Program\Intel\Wireless\Bin\S24EvMon.exe
D:\Program\Intel\Wireless\Bin\WLKeeper.exe
D:\WINNT\System32\svchost.exe
D:\WINNT\system32\spoolsv.exe
D:\Program\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe
D:\Program\Eset\ESET NOD32 Antivirus\ekrn.exe
D:\Program\Eset\nod32krn.exe
D:\Program\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe
D:\Program\Intel\Wireless\Bin\RegSrvc.exe
D:\WINNT\system32\regsvc.exe
D:\WINNT\system32\MSTask.exe
D:\WINNT\System32\WBEM\WinMgmt.exe
D:\WINNT\system32\svchost.exe
D:\WINNT\system32\svchost.exe
D:\WINNT\System32\SCardSvr.exe
D:\WINNT\Explorer.EXE
D:\Program\Synaptics\SynTP\SynTPLpr.exe
D:\Program\Synaptics\SynTP\SynTPEnh.exe
D:\WINNT\system32\hkcmd.exe
D:\Program\Launch Manager\LaunchAp.exe
D:\Program\Launch Manager\HotkeyApp.exe
D:\Program\Launch Manager\Wbutton.exe
D:\WINNT\system32\dpmw32.exe
D:\WINNT\system32\NWTRAY.EXE
D:\Program\Intel\Wireless\bin\ZCfgSvc.exe
D:\Program\Intel\Wireless\Bin\ifrmewrk.exe
D:\Program\Eset\ESET NOD32 Antivirus\egui.exe
D:\Program\Eset\nod32kui.exe
D:\WINNT\system32\internat.exe
D:\Program\uTorrent\uTorrent.exe
D:\Program\DAEMON Tools\daemon.exe
D:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\WINNT\system32\wuauclt.exe
D:\Program\MSN Messenger\msnmsgr.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
D:\Program\Launch Manager\WLBTTray.exe
D:\Program\Intel\Wireless\Bin\Dot1XCfg.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
D:\Program\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
D:\Program\Steam\Steam.exe
D:\Program\Mozilla Firefox\firefox.exe
D:\Program\Internet Explorer\iexplore.exe
D:\Program\WinRAR\WinRAR.exe
D:\Documents and Settings\Administratör\Skrivbord\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = google.se
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = google.se
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = google.se
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = google.se
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = google.se
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.utb.boras.net:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar
F3 - REG:win.ini: load= 
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: MSVPS System - {15272B08-F6FE-4E71-B2BD-A59AD23EBE3C} - D:\WINNT\bndsrmnf.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - D:\Program\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:\Program\MSN Apps\MSN Toolbar\01.02.5000.1021\sv\msntb.dll
O2 - BHO: MSVPS System - {C4F4DBBD-4A4C-4B40-97DA-2FE06DBB2901} - D:\WINNT\bndsrsqo.dll (file missing)
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - D:\WINNT\system32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program\google\googletoolbar1.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:\Program\MSN Apps\MSN Toolbar\01.02.5000.1021\sv\msntb.dll
O3 - Toolbar: The netadv - {D1413F77-5B69-4562-84E1-78F997794E9D} - D:\Temp\ac8zt2\netadv.dll (file missing)
O3 - Toolbar: The netadv - {F17B1418-2C0C-4295-BD55-BCDD3C730FBE} - D:\Temp\ac8zt2\netadv.dll (file missing)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SynTPLpr] D:\Program\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] D:\Program\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [igfxhkcmd] D:\WINNT\system32\hkcmd.exe
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [LaunchAp] "D:\Program\Launch Manager\LaunchAp.exe"
O4 - HKLM\..\Run: [HotkeyApp] "D:\Program\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [Wbutton] "D:\Program\Launch Manager\Wbutton.exe"
O4 - HKLM\..\Run: [NDPS] D:\WINNT\system32\dpmw32.exe
O4 - HKLM\..\Run: [NWTRAY] NWTRAY.EXE
O4 - HKLM\..\Run: [IntelZeroConfig] "D:\Program\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "D:\Program\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [egui] "D:\Program\Eset\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Ad-Watch] D:\Program\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [Microsoft] svchost32.exe
O4 - HKLM\..\Run: [CtrlVol] D:\Program\Launch Manager\CtrlVol.exe
O4 - HKLM\..\Run: [nod32kui] "D:\Program\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [uTorrent] "D:\Program\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "D:\Program\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [swg] D:\Program\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Program\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Bluetooth Manager.lnk = D:\Program\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program\Java\jre1.5.0_04\bin\npjpi150_04.dll
O16 - DPF: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class) - 
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1133437382734
O16 - DPF: {9394EDE7-C8B5-483E-8773-474BF36AF6E4} (ST) - 
O16 - DPF: {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper) - 
O16 - DPF: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO) - 
O16 - DPF: {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (MSNToolBandBHO) - 
O20 - Winlogon Notify: igfxcui - D:\WINNT\SYSTEM32\igfxdev.dll
O21 - SSODL: msvb - {AF19AD79-E453-4B24-8CF6-38935AD972EB} - D:\WINNT\msvb.dll
O21 - SSODL: sysdx - {64C9712D-FB79-4591-88CE-6325B3394C89} - D:\WINNT\sysdx.dll
O23 - Service: Adobe LM Service - Adobe Systems - D:\Program\Delade filer\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Active File Monitor (AdobeActiveFileMonitor) - Unknown owner - D:\Program\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe
O23 - Service: Client Update Service for Novell (cusrvc) - Novell, Inc. - D:\WINNT\system32\cusrvc.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - D:\WINNT\System32\dmadmin.exe
O23 - Service: Eset HTTP server (EhttpSrv) - Unknown owner - D:\Program\Eset\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - Eset - D:\Program\Eset\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - D:\Program\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program\Delade filer\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset  - D:\Program\Eset\nod32krn.exe
O23 - Service: Photoshop Elements Device Connect (PhotoshopElementsDeviceConnect) - Unknown owner - D:\Program\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - D:\Program\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation  - D:\Program\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - D:\Program\Intel\Wireless\Bin\WLKeeper.exe
Citera
2007-10-18, 14:51
  #2
Medlem
High Lifes avatar
Citera
2007-10-18, 17:31
  #3
Medlem
927s avatar
http://downloads.andymanchesta.com/R...ools/SDFix.exe
spara SDFix.exe på skrivbordet >klicka på SDFix.exe >sdfixen packas upp här: C:\SDFix.
starta om i felsäkert läge (F8) >gå hit: C:\SDFix >klicka på runthis.bat >välj y.
när scanningen är klar så tryck på valfri tangent för att starta om.
när det står finished så tryck på valfri tangent. en logg kommer automatiskt att visas (C:\SDFix\report.txt), kopiera in loggen här.

hämta smitfraudfix.exe >spara den på skrivbordet.
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
dubbelklicka på SmitfraudFix.exe >välj tillåt om brandväggen frågar >klicka på valfri tangent >skriv 1 >enter.
posta loggen som visas automatiskt
Citera

Skapa ett konto eller logga in för att kommentera

Du måste vara medlem för att kunna kommentera

Skapa ett konto

Det är enkelt att registrera ett nytt konto

Bli medlem

Logga in

Har du redan ett konto? Logga in här

Logga in