trage pc

  • willem

    halo allemaal, zit met een probleempje, me pc wordt erg traag, heb hier een logfile erbij gedaan, zouden jullie kunnen bekijken wat ik er mis in deze logfile of wat er niet thuis hoort, had laats met hitmanpro 75 stuks spyware en anderen rotzooi

    erop zitten vandaar deze Logfile of HijackThis v1.99.1

    graag een reactie van jullie hierop

    Scan saved at 18:05:38, on 5-11-2005

    Platform: Windows XP SP1 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\SYSTEM32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\system32\spoolsv.exe

    C:\Program Files\Symantec AntiVirus\DefWatch.exe

    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

    C:\Program Files\Eset\nod32krn.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Symantec AntiVirus\Rtvscan.exe

    C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE

    C:\Program Files\Common Files\Symantec Shared\ccApp.exe

    C:\PROGRA~1\SYMANT~1\VPTray.exe

    C:\Program Files\Support.com\bin\tgcmd.exe

    C:\WINDOWS\System32\ctfmon.exe

    C:\Program Files\MSN Messenger\msnmsgr.exe

    C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    C:\WINDOWS\System32\wuauclt.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Documents and Settings\willem2\Local Settings\Temporary Internet Files\Content.IE5\QR6TUVWX\hijackthis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

    F2 - REG:system.ini: UserInit=userinit.exe

    O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

    O4 - HKLM\..\Run: C:\Program Files\Common Files\Logitech\QCDriver\LVCOMS.EXE

    O4 - HKLM\..\Run: “C:\Program Files\Common Files\Symantec Shared\ccApp.exe”

    O4 - HKLM\..\Run: C:\PROGRA~1\SYMANT~1\VPTray.exe

    O4 - HKLM\..\Run: C:\PROGRA~1\Zone Labs\ZoneAlarm\zapro.exe

    O4 - HKLM\..\Run: “C:\Program Files\Support.com\bin\tgcmd.exe” /server /startmonitor /deaf

    O4 - HKLM\..\Run: C:\Program Files\Spyware Stormer\SpywareStormer.Exe

    O4 - HKCU\..\Run: C:\WINDOWS\System32\ctfmon.exe

    O4 - HKCU\..\Run: “C:\Program Files\MSN Messenger\msnmsgr.exe” /background

    O4 - Startup: Snelkoppeling naar VPTray.exe.lnk = C:\Program Files\Symantec AntiVirus\VPTray.exe

    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab

    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1130077506811

    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab

    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - “C:\PROGRA~1\MSNMES~1\msgrapp.dll” (file missing)

    O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll

    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe

    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe

    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

    O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe

    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe

    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

  • lucas

    Hitmanpro staat niet in de standaardprocedure van dit prikbord ;)

    http://www.virushelp.nl/partners/hijackthis/hijackthislog.htm

    Doe het ontbrekende deel nog even.

    Lucas :)

  • Erik

    Spyware Stormer is een nepscanner die zou ik eraf gooien.

    Zet in Hitmanprul NOD32 uit want die maakt ruzie met je Norton

    Logje is schoon verder dus daar ligt het niet aan :-)