hoi hoi
alles wat ik uitgeprint had heeft dus niet geholpen
dus nu heb ik een HJT gemaakt en ik zal die hier bij toevoegen alleen weet ik niet of het draadje hier dan goed staat???
Color Coder
Logfile of HijackThis v1.99.1
scan saved at 14:23:42, on 26-4-2007
platform: windows xp sp2 (winnt 5.01.2600)
msie: internet explorer v7.00 (7.00.6000.16414)
browser: Internet Explorer 7.0
ColorCoder Build: 4028
Running Processes:
d:\windows\system32\smss.exe
d:\windows\system32\winlogon.exe
d:\windows\system32\services.exe
d:\windows\system32\lsass.exe
d:\windows\system32\svchost.exe
d:\windows\system32\svchost.exe
d:\program files\common files\symantec shared\ccsvchst.exe
d:\windows\system32\spoolsv.exe
d:\windows\explorer.exe
d:\windows\system32\igfxtray.exe
d:\windows\system32\hkcmd.exe
d:\windows\soundman.exe
d:\program files\labtec\labtec mouse software\2.0\mouse32a.exe
d:\program files\common files\logitech\qcdriver3\lvcoms.exe
d:\program files\logitech\imagestudio\logitray.exe
d:\program files\java\jre1.6.0_01\bin\jusched.exe
d:\program files\messengerplus! 3\msgplus.exe
d:\program files\itunes\ituneshelper.exe
d:\program files\quicktime\qttask.exe
d:\program files\common files\symantec shared\ccapp.exe
d:\windows\system32\rlvknlg.exe
d:\windows\system32\ctfmon.exe
d:\program files\messenger\msmsgs.exe
d:\program files\logitech\imagestudio\lowlight.exe
d:\program files\intervideo\common\bin\wincinemamgr.exe
d:\program files\ulead systems\ulead photo express 4.0 se\calcheck.exe
d:\windows\system32\svchost.exe
d:\program files\ipod\bin\ipodservice.exe
d:\windows\system32\wuauclt.exe
d:\program files\internet explorer\iexplore.exe
d:\documents and settings\eigenaar\bureaublad\hjt\hijackthis.exe
(R1) - hklm\software\microsoft\internet explorer\main,default_page_url = h**p://go.microsoft.com/fwlink/?linkid=69157
(R1) - hklm\software\microsoft\internet explorer\main,default_search_url = h**p://go.microsoft.com/fwlink/?linkid=54896
(R1) - hklm\software\microsoft\internet explorer\main,search page = h**p://go.microsoft.com/fwlink/?linkid=54896
(R0) - hklm\software\microsoft\internet explorer\main,start page = h**p://go.microsoft.com/fwlink/?linkid=69157
(R0) - hkcu\software\microsoft\internet explorer\main,local page =
(R0) - hklm\software\microsoft\internet explorer\main,local page =
(R0) - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername = koppelingen
(O2) - bho: (no name) - {00000000-59d4-4008-9058-080011001200} - (no file)
(O2) - bho: (no name) - {00000000-c1ec-0345-6ec2-4d0300000000} - (no file)
(O2) - bho: (no name) - {00000000-f09c-02b4-6ec2-ad0300000000} - (no file)
(O2) - bho: (no name) - {1e8a6170-7264-4d0f-beae-d42a53123c75} - d:\program files\common files\symantec shared\coshared\browser\1.5\nppbho.dll
(O2) - bho: bitcomet clickcapture - {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - d:\program files\bitcomet\tools\bitcometbho_1.1.2.7.dll
(O2) - bho: (no name) - {3ceff6cd-6f08-4e4d-bccd-ff7415288c3b} - (no file)
(O2) - bho: adobepnl.adobe_panel - {5e8fa924-def0-4e71-8a82-a11ca0c1413b} - (no file)
(O2) - bho: ssvhelper class - {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - d:\program files\java\jre1.6.0_01\bin\ssv.dll
(O2) - bho: (no name) - {7b55bb05-0b4d-44fd-81a6-b136188f5deb} - (no file)
(O2) - bho: (no name) - {8333c319-0669-4893-a418-f56d9249fca6} - (no file)
(O2) - bho: (no name) - {9c691a33-7dda-4c2f-be4c-c176083f35cf} - (no file)
(O2) - bho: office_pnl.office_panel - {b53455db-5527-4041-ac41-f86e6947aa47} - d:\windows\system32\office_pnl.dll
(O2) - bho: (no name) - {e52dedbb-d168-4bdb-b229-c48160800e81} - (no file)
(O2) - bho: (no name) - {ffd2825e-0785-40c5-9a41-518f53a8261f} - (no file)
(O3) - toolbar: show norton toolbar - {90222687-f593-4738-b738-fbee9c7b26df} - d:\program files\common files\symantec shared\coshared\browser\1.5\uibho.dll
(O4) - HKLM\..\Run: [igfxtray] d:\windows\system32\igfxtray.exe
(O4) - HKLM\..\Run: [hotkeyscmds] d:\windows\system32\hkcmd.exe
(O4) - HKLM\..\Run: [soundman] soundman.exe
(O4) - HKLM\..\Run: [lwbmouse] d:\program files\labtec\labtec mouse software\2.0\mouse32a.exe
(O4) - HKLM\..\Run: [nerocheck] d:\windows\system32\nerocheck.exe
(O4) - HKLM\..\Run: [lvcoms] d:\program files\common files\logitech\qcdriver3\lvcoms.exe
(O4) - HKLM\..\Run: [logitechgalleryrepair] d:\program files\logitech\imagestudio\isstart.exe
(O4) - HKLM\..\Run: [logitechimagestudiotray] d:\program files\logitech\imagestudio\logitray.exe
(O4) - HKLM\..\Run: [sunjavaupdatesched] "d:\program files\java\jre1.6.0_01\bin\jusched.exe"
(O4) - HKLM\..\Run: [messengerplus3] "d:\program files\messengerplus! 3\msgplus.exe"
(O4) - HKLM\..\Run: [ituneshelper] "d:\program files\itunes\ituneshelper.exe"
(O4) - HKLM\..\Run: [quicktime task] "d:\program files\quicktime\qttask.exe" -atboottime
(O4) - HKLM\..\Run: [transponder] d:\windows\system32\susp.exe
(O4) - HKLM\..\Run: [ccapp] "d:\program files\common files\symantec shared\ccapp.exe"
(O4) - HKLM\..\Run: [relevantknowledge] d:\windows\system32\rlvknlg.exe -boot
(O4) - HKLM\..\Run: [adware.srv32] d:\windows\system32\runsrv32.exe
(O4) - HKCU\..\Run: [ctfmon.exe] d:\windows\system32\ctfmon.exe
(O4) - HKCU\..\Run: [msmsgs] "d:\program files\messenger\msmsgs.exe" /background
(O4) - Global Startup: intervideo wincinema manager.lnk = d:\program files\intervideo\common\bin\wincinemamgr.exe
(O4) - Global Startup: logitech desktop messenger.lnk = d:\program files\logitech\desktop messenger\8876480\program\ldmconf.exe
(O4) - Global Startup: microsoft office.lnk = d:\program files\microsoft office\office\osa9.exe
(O4) - Global Startup: ulead kalendar checker 4.0 se.lnk = d:\program files\ulead systems\ulead photo express 4.0 se\calcheck.exe
(O9) - extra button: (no name) - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - d:\program files\java\jre1.6.0_01\bin\ssv.dll
(O9) - extra 'tools' menuitem: sun java console - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - d:\program files\java\jre1.6.0_01\bin\ssv.dll
(O9) - extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\network diagnostic\xpnetdiag.exe (file missing)
(O9) - extra 'tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\network diagnostic\xpnetdiag.exe (file missing)
(O9) - extra button: messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - d:\program files\messenger\msmsgs.exe
(O9) - extra 'tools' menuitem: windows messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - d:\program files\messenger\msmsgs.exe
(O11) - options group: [international] international*
(O16) - dpf: {00b71cfb-6864-4346-a978-c0a14556272c} (checkers class) - h**p://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
(O16) - dpf: {2917297f-f02b-4b9d-81df-494b6333150b} (minesweeper flags class) - h**p://messenger.zone.msn.com/binary/minesweeper.cab31267.cab
(O16) - dpf: {4f1e5b1a-2a80-42ca-8532-2d05cb959537} (msn photo upload tool) - h**p://spaces.msn.com//photoupload/msnpupld.cab
(O16) - dpf: {5d6f45b3-9043-443d-a792-115447494d24} (unoctrl class) - h**p://messenger.zone.msn.com/nl-nl/a-uno1/game_uno1.cab
(O16) - dpf: {6414512b-b978-451d-a0d8-fcfdf33e833c} (wuwebcontrol class) - h**p://v5.windowsupdate.microsoft.com/v5consumer/v5controls/en/x86/client/wuweb_site.cab?1112622381577
(O16) - dpf: {8e0d4de5-3180-4024-a327-4dfad1796a8d} (messengerstatsclient class) - h**p://messenger.zone.msn.com/binary/messengerstatsclient.cab31267.cab
(O16) - dpf: {c3f79a2b-b9b4-4a66-b012-3ee46475b072} (messengerstatsclient class) - h**p://messenger.zone.msn.com/binary/messengerstatspaclient.cab56907.cab
(O16) - dpf: {f5a7706b-b9c0-4c89-a715-7a0c6b05dd48} (minesweeper flags class) - h**p://messenger.zone.msn.com/binary/minesweeper.cab56986.cab
(O16) - dpf: {f6bf0d00-0b2a-4a75-bf7b-f385591623af} (solitaire showdown class) - h**p://messenger.zone.msn.com/binary/solitaireshowdown.cab31267.cab
(O18) - protocol: msnim - {828030a1-22c1-4009-854f-8e305202313f} - "d:\progra~1\msnmes~1\msgrapp.dll" (file missing)
(O20) - appinit_dlls: msgplusloader.dll
(O20) - winlogon notify: igfxcui - d:\windows\system32\igfxsrvc.dll
(O20) - winlogon notify: wgalogon - d:\windows\system32\wgalogon.dll
(O20) - winlogon notify: wrnotifier - wrlogonntf.dll (file missing)
(O23) - Service: symantec event manager (ccevtmgr) - unknown owner - d:\program files\common files\symantec shared\ccsvchst.exe" /h cccommon (file missing)
(O23) - Service: symantec settings manager (ccsetmgr) - unknown owner - d:\program files\common files\symantec shared\ccsvchst.exe" /h cccommon (file missing)
(O23) - Service: symantec lic netconnect service (cltnetcnservice) - unknown owner - d:\program files\common files\symantec shared\ccsvchst.exe" /h cccommon (file missing)
(O23) - Service: installdriver table manager (idrivert) - macrovision corporation - d:\program files\common files\installshield\driver\11\intel 32\idrivert.exe
(O23) - Service: ipodservice - apple computer, inc. - d:\program files\ipod\bin\ipodservice.exe
(O23) - Service: liveupdate - symantec corporation - d:\progra~1\symantec\liveup~1\lucoms~1.exe
(O23) - Service: intel(r) nms (nmssvc) - intel corporation - d:\windows\system32\nmssvc.exe
(O23) - Service: symantec core lc - symantec corporation - d:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe
Hopelijk kan iemand mij helpen???
Alvast bedankt.
Groetjes Nickymickey