Vraag & Antwoord

Beveiliging & privacy

Hijackthis log HELP

Anoniem
None
3 antwoorden
  • Kan iemand deze log bekijken en mij zeggen wat er weg moet. Ik krijg steeds de ene melding na de andere en soms slaat de computer vast
    Logfile of HijackThis v1.97.7
    Scan saved at 21:13:41, on 2-12-2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\RunDll32.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\WINDOWS\System32\crsss.exe
    C:\WINDOWS\System32\32Rpc.exe
    C:\WINDOWS\System32\frmwrks32.exe
    C:\WINDOWS\System32\wvsvc.exe
    C:\WINDOWS\System32\rundll32.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\Washer\washer.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\w32tm.exe
    C:\WINDOWS\System32\rundll32.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    G:\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://searchmiracle.com/sp.php
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchmiracle.com/sp.php
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchmiracle.com/sp.php
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchmiracle.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchmiracle.com/sp.php
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.arnhem.chello.nl:8080
    O2 - BHO: (no name) - {28CAEFF3-0F18-4036-B504-51D73BD81ABC} - C:\WINDOWS\EliteToolBar\EliteToolBar version 58.dll
    O3 - Toolbar: &EliteBar - {825CF5BD-8862-4430-B771-0C15C5CA8DEF} - C:\WINDOWS\EliteToolBar\EliteToolBar version 58.dll
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [EPSON Stylus C42 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C42 Series" /O6 "USB001" /M "Stylus C42"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
    O4 - HKLM\..\Run: [Windows media service] crsss.exe
    O4 - HKLM\..\Run: [Microsoftkeysd] systemwin32s.exe
    O4 - HKLM\..\Run: [Windows TaskAd] C:\Program Files\Windows TaskAd\WinTaskAd.exe
    O4 - HKLM\..\Run: [Microsoft Office] svxhost.exe
    O4 - HKLM\..\Run: [kalvsys] C:\windows\system32\kalvaak32.exe
    O4 - HKLM\..\Run: [Remote Procedure Call For Windows 32bit Operative Systems.] 32Rpc.exe
    O4 - HKLM\..\Run: [Windows Frame Works] frmwrks32.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [Windows AdControl] C:\Program Files\Windows AdControl\WinAdCtl.exe
    O4 - HKLM\..\Run: [wvsvc] wvsvc.exe
    O4 - HKLM\..\Run: [WebSpecials] rundll32 "C:\Program Files\WebSpecials\webspec.dll",run
    O4 - HKLM\..\RunServices: [Windows media service] crsss.exe
    O4 - HKLM\..\RunServices: [Microsoftkeysd] systemwin32s.exe
    O4 - HKLM\..\RunServices: [Microsoft Office] svxhost.exe
    O4 - HKLM\..\RunServices: [wvsvc] wvsvc.exe
    O4 - HKLM\..\RunServices: [Windows Frame Works] frmwrks32.exe
    O4 - HKLM\..\RunServices: [Remote Procedure Call For Windows 32bit Operative Systems.] 32Rpc.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [Washer] C:\Program Files\Washer\washer.exe /0
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [JavaUpdate0.07] C:\WINDOWS\System32\uhfozc.exe
    O4 - HKCU\..\Run: [Microsoftkeysd] systemwin32s.exe
    O4 - HKCU\..\Run: [Clock] C:\WINDOWS\mstask.exe
    O4 - HKCU\..\Run: [Microsoft Office] svxhost.exe
    O4 - HKCU\..\Run: [Windows Frame Works] frmwrks32.exe
    O4 - HKCU\..\Run: [wvsvc] wvsvc.exe
    O4 - HKCU\..\Run: [WebSpecials] rundll32 "C:\Program Files\WebSpecials\webspec.dll",run

    Alvast Bedankt
  • Plaats even logfile met nieuwste versie Hijackthis.

    http://computercops.biz/zx/Merijn/hijackthis.zip
  • Laat je norton eens scannen in veilige mode en plaats daarna een nieuw logje.
    Eén feit is zeker.. tis feest op je systeem… :D

Beantwoord deze vraag

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.