krijg searchweb er niet af
Hoi, probeer een kennis te helpen met zijn pc. heb zijn hijackthis logfile uitgeprint, op mijn pc ingescand en hier geplaatst want ik kan op zijn pc niet op jullie site komen. Heb zijn pc gescand met spybot search en destroy, ad-aware wil het niet doen op zijn pc en norton vermeld dat er geen virussen zijn. Sorry heb per ongeluk hijack this in temp geplaatst, hoe moet ik dit veranderen, gewoon opnieuw installeren of wat?
Logfile of HijackThis v1.97.7 Scan saved at 10
n 9-10-Platform: Windows ME (Win9x 4.90.3000) MSIE: Internet Explorer v5.50 (5.50.4134.0100)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\INETM\SERVICES.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\CTHELPER.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\PROGRAM FILES\NORTON ANTIVIRUS\NAVAPW32.EXE C:\PROGRAM FILES\INTERNET SECURITY\C:\PROGRAM FILES\HP CD-WRITER\DIRECTCD\DIRECTCD.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\HP CD-WRITER\MMENU\HPCDTRAY.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\NISUM.EXE
C:\WINDOWS\SYSTEM\SRV2.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\SYMPROXYSVC.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\NISSERV.EXE
C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\INTÈRNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\TEMP\TD 0003.DIR\HIJACKTHIS.EXE
~Rl -HKCU\Explorer\Bar = file://Page Rl -HKCU\Explorer\tant = file://C:\WINDOWS\TEMP\sp.html HKLM\Bar = file://Rl -Explorer\Page RO HKLM\tant = file://C:\WINDOWS\TEMP\sp.html Rl -HKCU\Explorer\= file:///C:/Program%20Files/Plus18Point/Portal/portal.htrol a bout:RO -HKCU\Explorer\rName = Koppelimgen
Pagina 1
hijackthis
Fl - win.ini; run~C:\WINDOWS\INETM\SERVICES.EXE
02 - BHO: (no name) - {O6849E9F-C8D7-4D59-B87D-784B7D6BEOB3} - C:
\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
02 -BHO: NAV Helper -{BDF3E430--C :\Program Files\Norton AntiVirus\NavShExt.dll
02 - BHO: (no name) - {5321E378-FFAD-4999-8C62-03CA8155FOB3} - (n
0 file)
02 - BHO: (no name) - {DOE97399-BA80-46B6-A281-F4BC9D94C626} - C:
\WINDOWS\SYSTEM\LCOAKAA.DLL 02 -BHO: (no name) -{53707962--C: \PROGRA~l\SPYBOT-l\SDHELPER.DLL
03 - TooIbar: Norton AntiVirus - {42CDDIBF-3FFB-4238-8ADl-7859DFO
OBID6} - C:\program Files\Norton AntiVirus\NavShExt.dll
03 - Toolbar: @msdxmLC.dll,-1@lO43,&Radio - {8E718888-423F-IID2-8
76E-OOAOC9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
04 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
04 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
04 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.
exe -s
04 - HKLM\..\Run: [SystemTray] SysTray.Exe
04 - HKLM\..\Run: [LoadPowerProfile] Rundl132.exe powrprof.dll,Lo
adCurrentPwrScheme
04 - HKLM\..\Run: [CTHelper] CTHELPER.EXE 04 -HKLM\..\[Jet Detection] "C:\Files\ve\PROGRAM\ADGJDet.exe"
04 - HKLM\..\Run: [NAV Agent] C:\PROGRA-l\NORTON-l\NAVAPW32.EXE
04 - HKLM\..\Run: [iamapp] C:\program Files\Norton Internet Secur
ity\IAMAPP.EXE
04 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA-l\SYMNET
-l\SNDMON.EXE
04 - HKLM\..\Run: [Adaptec DirectCD] C:\PROGRA-l\HPCD-W-l\DIRECTC
D\DIRECTCD.EXE .
04 - HKLM\..\Run: [HP CD-Writer] C:\Program Files\HP CD-Writer\Mm
enu\hpcdtray.exe f
04 - HKLM\..\Run: [LoadQM] loadqm.exe
04 -HKLM\..\[xp system] C:\04 - HKLM\..\Run: [Classes] C:\WINDOWS\SYSTEM\SRV2.EXE
04 - HKLM\..\RunServices: [LoadPowerProfile] Rundl132.exe powrpro
f.dll,LoadCurrentPwrScheme
04 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
04 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\S
tateMgr.exe
04 - HKLM\..\RunServices: [ScriptBlocking] "C:\program Files\Comm
on Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
04 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\S
TIMON.EXE
04 - HKCU\..\Run: [MsnMsgr] "C:\program Files\MSN Messenger\MsnMs
gr.Exe" /background
04 - HKCU\..\Run: [xp system] C:\WINDOWS\INETM\SERVICES.EXE
04 - HKCU\..\Run: [SpyKiller] C:\Program Files\SpyKiller\spykille
r. exe /startup 04 -Startup: Mdcrosoft Office.~C:\Files\0 Pagina 2
ffice\Office\OSA9.EXE09 -Extra button: Related (HKLM) 09 -'Tools' menuitem: Show &Related Links (HKLM) 016 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flas
h Object) - http://download.macromedia.com/pub/shockwave/cabs/fla
sh/swflash.cab
016 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave Acti veX Control) -http://director/sw.cab
016 - DPF: {841A9192-5690-11D4-A258-0040954AO1BE} (DialXSCtlObje
ct) - http://dialxs.nl/install/dialxs.ocx
016 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684EO7BB} - http://ak.img
farm.com/images/nocache/funwebproducts/ei/SmileyCentralInitialSet
up1.0.0.8.cab
016 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiV
irus scanner) - http://security.symantec.com/sscv6/SharedContent/
vc/bin/AvSniff.cab
016 - DPF: {644E432F-49D3-41A1-8DD5-EO99162EEEC5} (Symantec RuFSI
Utility Class) - http://security.symantec.com/sscv6/SharedConten
t/common/bin/cabsa.cab
016 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Clas
s) - http://messenger.zone.msn.com/binary/Zlntro.cab30149.cab
016 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStats
Client C1ass) - http://messenger.zone.msn.com/binary/MessengerSta
tsPAClient.cab30149.cab
016 - DPF: {10003000-1000-0000-1000-000000000000} - ms-its:mhtml:
file://c:\nosuch.mht!http://2awm.com/pop/chm/markavsp.chm::/on-li
ne.exe
016 - DPF: {8EOD4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStats
Client Class) - http://messenger.zone.msn.com/binary/MessengerSta
tsClient.cab30149.cab
016 - DPF: {9F1C11AA~197B-4942-BA54-47A8489BB47F} (Update Class)
- http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38
265.3115277778 '
Hoi, probeer een kennis te helpen met zijn pc. heb zijn hijackthis logfile uitgeprint, op mijn pc ingescand en hier geplaatst want ik kan op zijn pc niet op jullie site komen. Heb zijn pc gescand met spybot search en destroy, ad-aware wil het niet doen op zijn pc en norton vermeld dat er geen virussen zijn. Sorry heb per ongeluk hijack this in temp geplaatst, hoe moet ik dit veranderen, gewoon opnieuw installeren of wat?
Logfile of HijackThis v1.97.7 Scan saved at 10

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\INETM\SERVICES.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\CTHELPER.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\PROGRAM FILES\NORTON ANTIVIRUS\NAVAPW32.EXE C:\PROGRAM FILES\INTERNET SECURITY\C:\PROGRAM FILES\HP CD-WRITER\DIRECTCD\DIRECTCD.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\HP CD-WRITER\MMENU\HPCDTRAY.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\NISUM.EXE
C:\WINDOWS\SYSTEM\SRV2.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\SYMPROXYSVC.EXE
C:\PROGRAM FILES\NORTON INTERNET SECURITY\NISSERV.EXE
C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\INTÈRNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\TEMP\TD 0003.DIR\HIJACKTHIS.EXE
~Rl -HKCU\Explorer\Bar = file://Page Rl -HKCU\Explorer\tant = file://C:\WINDOWS\TEMP\sp.html HKLM\Bar = file://Rl -Explorer\Page RO HKLM\tant = file://C:\WINDOWS\TEMP\sp.html Rl -HKCU\Explorer\= file:///C:/Program%20Files/Plus18Point/Portal/portal.htrol a bout:RO -HKCU\Explorer\rName = Koppelimgen
Pagina 1
hijackthis
Fl - win.ini; run~C:\WINDOWS\INETM\SERVICES.EXE
02 - BHO: (no name) - {O6849E9F-C8D7-4D59-B87D-784B7D6BEOB3} - C:
\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
02 -BHO: NAV Helper -{BDF3E430--C :\Program Files\Norton AntiVirus\NavShExt.dll
02 - BHO: (no name) - {5321E378-FFAD-4999-8C62-03CA8155FOB3} - (n
0 file)
02 - BHO: (no name) - {DOE97399-BA80-46B6-A281-F4BC9D94C626} - C:
\WINDOWS\SYSTEM\LCOAKAA.DLL 02 -BHO: (no name) -{53707962--C: \PROGRA~l\SPYBOT-l\SDHELPER.DLL
03 - TooIbar: Norton AntiVirus - {42CDDIBF-3FFB-4238-8ADl-7859DFO
OBID6} - C:\program Files\Norton AntiVirus\NavShExt.dll
03 - Toolbar: @msdxmLC.dll,-1@lO43,&Radio - {8E718888-423F-IID2-8
76E-OOAOC9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
04 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
04 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
04 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.
exe -s
04 - HKLM\..\Run: [SystemTray] SysTray.Exe
04 - HKLM\..\Run: [LoadPowerProfile] Rundl132.exe powrprof.dll,Lo
adCurrentPwrScheme
04 - HKLM\..\Run: [CTHelper] CTHELPER.EXE 04 -HKLM\..\[Jet Detection] "C:\Files\ve\PROGRAM\ADGJDet.exe"
04 - HKLM\..\Run: [NAV Agent] C:\PROGRA-l\NORTON-l\NAVAPW32.EXE
04 - HKLM\..\Run: [iamapp] C:\program Files\Norton Internet Secur
ity\IAMAPP.EXE
04 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA-l\SYMNET
-l\SNDMON.EXE
04 - HKLM\..\Run: [Adaptec DirectCD] C:\PROGRA-l\HPCD-W-l\DIRECTC
D\DIRECTCD.EXE .
04 - HKLM\..\Run: [HP CD-Writer] C:\Program Files\HP CD-Writer\Mm
enu\hpcdtray.exe f
04 - HKLM\..\Run: [LoadQM] loadqm.exe
04 -HKLM\..\[xp system] C:\04 - HKLM\..\Run: [Classes] C:\WINDOWS\SYSTEM\SRV2.EXE
04 - HKLM\..\RunServices: [LoadPowerProfile] Rundl132.exe powrpro
f.dll,LoadCurrentPwrScheme
04 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
04 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\S
tateMgr.exe
04 - HKLM\..\RunServices: [ScriptBlocking] "C:\program Files\Comm
on Files\Symantec Shared\Script Blocking\SBServ.exe" -reg
04 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\S
TIMON.EXE
04 - HKCU\..\Run: [MsnMsgr] "C:\program Files\MSN Messenger\MsnMs
gr.Exe" /background
04 - HKCU\..\Run: [xp system] C:\WINDOWS\INETM\SERVICES.EXE
04 - HKCU\..\Run: [SpyKiller] C:\Program Files\SpyKiller\spykille
r. exe /startup 04 -Startup: Mdcrosoft Office.~C:\Files\0 Pagina 2
ffice\Office\OSA9.EXE09 -Extra button: Related (HKLM) 09 -'Tools' menuitem: Show &Related Links (HKLM) 016 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flas
h Object) - http://download.macromedia.com/pub/shockwave/cabs/fla
sh/swflash.cab
016 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave Acti veX Control) -http://director/sw.cab
016 - DPF: {841A9192-5690-11D4-A258-0040954AO1BE} (DialXSCtlObje
ct) - http://dialxs.nl/install/dialxs.ocx
016 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684EO7BB} - http://ak.img
farm.com/images/nocache/funwebproducts/ei/SmileyCentralInitialSet
up1.0.0.8.cab
016 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiV
irus scanner) - http://security.symantec.com/sscv6/SharedContent/
vc/bin/AvSniff.cab
016 - DPF: {644E432F-49D3-41A1-8DD5-EO99162EEEC5} (Symantec RuFSI
Utility Class) - http://security.symantec.com/sscv6/SharedConten
t/common/bin/cabsa.cab
016 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Clas
s) - http://messenger.zone.msn.com/binary/Zlntro.cab30149.cab
016 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStats
Client C1ass) - http://messenger.zone.msn.com/binary/MessengerSta
tsPAClient.cab30149.cab
016 - DPF: {10003000-1000-0000-1000-000000000000} - ms-its:mhtml:
file://c:\nosuch.mht!http://2awm.com/pop/chm/markavsp.chm::/on-li
ne.exe
016 - DPF: {8EOD4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStats
Client Class) - http://messenger.zone.msn.com/binary/MessengerSta
tsClient.cab30149.cab
016 - DPF: {9F1C11AA~197B-4942-BA54-47A8489BB47F} (Update Class)
- http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?38
265.3115277778 '
Laatst bewerkt: