Vraag & Antwoord

Beveiliging & privacy

HijackThis log

Anoniem
M@rc
1 antwoord
  • Logfile of HijackThis v1.98.2
    Scan saved at 8:08:27, on 6/10/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\System32\svchost.exe
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Reflection\rnnfserv.exe
    c:\winnt\system32\srvany.exe
    C:\PROGRA~1\DeskView\DNAgent\DNAgent.Exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\program files\Trend Micro\OfficeScan NT\ntrtscan.exe
    C:\WINNT\System32\snmp.exe
    C:\program files\Trend Micro\OfficeScan NT\tmlisten.exe
    C:\program files\Trend Micro\OfficeScan NT\ofcdog.exe
    C:\WINNT\Explorer.EXE
    C:\Program Files\ComputerInfo\computerinfo.exe
    C:\program files\Trend Micro\OfficeScan NT\pccntmon.exe
    C:\WINNT\System32\00THotkey.exe
    C:\WINNT\System32\ctfmon.exe
    C:\Program Files\Trend Micro\OfficeScan NT\ClnScUpd.exe
    C:\Program Files\Microsoft Office\Office10\msoffice.exe
    C:\WINNT\system32\netstat.exe
    C:\Program Files\Netscape\Communicator\Program\netscape.exe
    C:\Program Files\Netscape\Communicator\Calendar\nscal32.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://intra.vlaanderen.be/zoeken/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://intra.vlaanderen.be
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://intra.vlaanderen.be
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {397D7D63-816E-4ECF-8761-775C932C5CF1} - C:\WINNT\iDonate.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
    O4 - HKLM\..\Run: [ComputerInfo] C:\Program Files\ComputerInfo\computerinfo.exe
    O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\program files\Trend Micro\OfficeScan NT\pccntmon.exe" -HideWindow
    O4 - HKLM\..\Run: [00THotkey] C:\WINNT\System32\00THotkey.exe
    O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\System32\spool\drivers\w32x86\3\hpztsb01.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINNT\System32\ctfmon.exe
    O4 - Startup: ClnScUpd.lnk = C:\Program Files\Trend Micro\OfficeScan NT\ClnScUpd.exe
    O4 - Startup: Microsoft Office Shortcut Bar.lnk = ?
    O4 - Startup: PowerReg Scheduler.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O14 - IERESET.INF: START_PAGE_URL=http://intra.vlaanderen.be
    O17 - HKLM\System\CCS\Services\Tcpip\..\{1BFB71F1-693E-4035-992A-5405F3C8F233}: NameServer = 10.138.248.14 10.138.4.7

Beantwoord deze vraag

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.