Lop.com

Status
Niet open voor verdere reacties.

Wizzkid Mulder

Gebruiker
Lid geworden
23 jan 2002
Berichten
220
Hallo,

In mijn Internet Explorer heb ik dus een een balk van Lop.com die ik maar niet weg krijg ook niet met adaware hij delete hem maar komt elke X weer terug :S.
en als hij bijv. een pagina niet kan laden dan komt ie ook weer op lop.com terecht of ?????.quick.find.com (op de plaats van de ??? staan dan allemaal cijfers elke keer verschillend)

Weet iemand misschien een oplossing.

Vr Gr

Wizzkid Mulder.

Win XP
 
Download HijackThis. Uitleg en link vind je hier: <http://www.tomcoyote.org/hjt/>
Unzip en run het. Klik op Scan > Save log en sla het log op als een .txt bestand.
Kopieer en plak de inhoud in je volgende post.

Groetjes,
Bennie
 
Je kunt ook spybot downloaden, updaten en uitvoeren.
Spybot delete hem ook.
 
Logfile of HijackThis v1.94.0
Scan saved at 18:53:30, on 17-6-2003
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=203
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page=203
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://www.startpagina.nl/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant=203
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar=203
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page=203
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant=203
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride=localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page=%SystemRoot%\system32\blank.htm
O2 - BHO: (no name) - {0000CC75-ACF3-4cac-A0A9-DD3868E06852} - F:\Program Files\DAP\DAPBHO.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {619df73f-f387-409e-8fcd-13dedd491aa2} - C:\DOCUME~1\Will\APPLIC~1\bbrtgldrzss.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O3 - Toolbar: (no name) - {b7205aa3-233b-49fa-9611-f8beb05712ec} - (no file)
O3 - Toolbar: cklgrglqufe - {4ee70d72-f8e2-4f96-8cb2-1b9c305452a5} - C:\DOCUME~1\Will\APPLIC~1\bbrtgldrzss.dll
O3 - Toolbar: DAP Bar - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - F:\Program Files\DAP\DAPIEBar.dll
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\Program Files\Panicware\Pop-Up Stopper Free Edition\PSFree.exe"
O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
O8 - Extra context menu item: &Download with &DAP - F:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - F:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 - Extra button: Run DAP (HKLM)
O9 - Extra button: Real.com (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: {003FADA5-8FEE-11D6-AFB7-0004768F6183} (CryptoRSA Control) - https://www.p3.postbank.nl/sesam/CAX.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
O16 - DPF: {665585FD-2068-4C5E-A6D3-53AC3270ECD4} (FileSharingCtrl Class) - http://appdirectory.messenger.msn-int.com/AppDirectory/P4Apps/FileSharing/en/filesharingctrl.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcam.cargodatasystems.com:9000/activex/AxisCamControl.cab
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37699.3713194444
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DE591B16-A452-11D6-AED1-0001030A4E46} (PBGNX Control) - https://www.p3.postbank.nl/GTO/PBGNX.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = +s
O17 - HKLM\Software\..\Telephony: DomainName = +s
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = +s
 
Laat Hijackthis de volgende zaken fixen. Sluit browser.

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar=203
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page=203
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant=203
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar=203
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page=203
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant=203
O2 - BHO: (no name) - {619df73f-f387-409e-8fcd-13dedd491aa2} - C:\DOCUME~1\Will\APPLIC~1\bbrtgldrzss.dll
O3 - Toolbar: (no name) - {b7205aa3-233b-49fa-9611-f8beb05712ec} - (no file)
O3 - Toolbar: cklgrglqufe - {4ee70d72-f8e2-4f96-8cb2-1b9c305452a5} - C:\DOCUME~1\Will\APPLIC~1\bbrtgldrzss.dll

Start de PC daarna opnieuw op.

Groetjes,
Bennie
 
Deze ook nog:

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = +s
O17 - HKLM\Software\..\Telephony: DomainName = +s
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = +s

Groetjes,

Pieter
 
Status
Niet open voor verdere reacties.
Terug
Bovenaan Onderaan