Explorer har börjat dumma sig.
Allt går segare än vanligt och när jag väljar "öppna i ny flik" så händer ibland ingenting, ibland öppnas ett nytt fönster istället men oftast så blir de bara generalknas i form av att "res://ieframe.dll/acr_depnx_error.htm#facebook.co
m,http://www.facebook.com/home.php?ref=home#/home
.php?ref=logo" kommer upp i sökrutan.
När de händer så är de bara att börja om och skriva in adressen igen, de funkar inte att trycka "bakåt".
Såhär ser hijackthis loggen ut:
Logfile of Trend Micro HijackThis v2.0.2Scan saved at 21:45, on 2009-10-21Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: Normal
Running processes:C
WINDOWS\System32\smss.exeC
WINDOWS\syst
em32\winlogon.exeC
WINDOWS\system32\services.exeC
W
INDOWS\system32\lsass.exeC
WINDOWS\system32\svchos
t.exeC
WINDOWS\System32\svchost.exeC
WINDOWS\system
32\svchost.exeC
WINDOWS\system32\spoolsv.exeC
Progr
am\Creative\Shared Files\CTAudSvc.exeC
Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC
Program\
Bonjour\mDNSResponder.exeC
Program\F-Secure Internet Security\Anti-Virus\fsgk32st.exeC
Program\F-Secure Internet Security\Common\FSMA32.EXEC
Program\F-Secure Internet Security\Anti-Virus\FSGK32.EXEC
Program\Java\jre6\
bin\jqs.exeC
WINDOWS\system32\libusbd-nt.exeC
Progr
am\F-Secure Internet Security\Common\FSHDLL32.EXEC
Program\Delade filer\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}
\PIFSvc.exeC
Program\Maxtor\OneTouch\Utils\SyncSer
vices.exeC
WINDOWS\system32
vsvc32.exeC
WINDOWS\system32\PnkBstrA.exeC
WINDOWS\
system32\PnkBstrB.exeC
Program\RETROS~1\RETROS~1.1
etrorun.exeC
WINDOWS\system32\svchost.exeC
Program\
F-Secure Internet Security\FWES\Program\fsdfwd.exeC
Program\F-Secure Internet Security\Anti-Virus\fssm32.exeC
Program\F-Secure Internet Security\Anti-Virus\fsav32.exeC
WINDOWS\Explorer.E
XEC
WINDOWS\SOUNDMAN.EXEC
WINDOWS\CTHELPER.EXEC
Prog
ram\Creative\Shared Files\Module Loader\DLLML.exeC
WINDOWS\system32\iid.exeC
Program
\COMPAN~2\ONETOU~3.EXEC
Program\Delade filer\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}
\PIFSvc.exeC
WINDOWS\SYSTEM32\CTXFISPI.EXEC
Program
\F-Secure Internet Security\Common\FSM32.EXEC
WINDOWS\system32
undll32.exeC
Program\Logitech\GamePanel Software\LgDevAgt.exeC
Program\Logitech\GamePanel Software\LCD Manager\LCDMon.exeC
WINDOWS\system32\CTXFIHLP.EXEC
WINDOWS\system32\RUNDLL32.EXEC
Program\Java\jre6\b
in\jusched.exeC
WINDOWS\system32\ctfmon.exeC
Progra
m\Logitech\GamePanel Software\Applets\LCDCountdown.exeC
Program\Logitec
h\GamePanel Software\LCD Manager\Applets\LCDClock.exeC
Program\Windows Live\Messenger\msnmsgr.exeC
Program\Logitech\GameP
anel Software\Applets\LCDMedia.exeC
Program\BF2G15Mod\B
F2 LCD.exeC
Program\Logitech\GamePanel Software\Applets\LCDPop3.exeC
Program\Logitech\Gam
ePanel Software\Applets\LCDRSS.exeC
Program\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exeC
Program\Logitech\SetPoint\Set
Point.exeC
Program\Delade filer\Logishrd\KHAL2\KHALMNPR.EXEC
Program\Internet Explorer\iexplore.exeC
Program\Internet Explorer\iexplore.exeC
WINDOWS\Microsoft.NET\Frame
work\v3.0\Windows Communication Foundation\infocard.exeC
Program\Delade filer\Adobe\Updater5\AdobeUpdater.exeC
Program\Tre
nd Micro\HijackThis\This.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blankR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Tele2R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\In
ternet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = LänkarO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C
Program\Delade filer\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C
Program\Delade filer\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C
Program\AVG\AVG8\avgtoolbar.dll (file missing)O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C
Program\Google\GoogleToolbarNotifier\3.1.807.174
6\swg.dllO2 - BHO: LitmusBHO - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C
Program\F-Secure Internet Security\NRS\iescript\baselitmus.dllO2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C
Program\Java\jre6\bin\jp2ssv.dllO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C
Program\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.d
llO3 - Toolbar: (no name) - {639F4F03-A901-4AC7-8F5A-7200949621B6} - (no file)O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C
Program\AVG\AVG8\avgtoolbar.dll (file missing)O3 - Toolbar: Browsing Protection Toolbar - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C
Program\F-Secure Internet Security\NRS\iescript\baselitmus.dllO4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXEO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C
WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntryO4 - HKLM\..\Run: [CTHelper] CTHELPER.EXEO4 - HKLM\..\Run: [AudioDrvEmulator] "C
Program\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C
Program\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"O4 - HKLM\..\Run: [UpdReg] C
WINDOWS\UpdReg.EXEO4 - HKLM\..\Run: [Net iD] C
WINDOWS\system32\iid.exeO4 - HKLM\..\Run: [OneTouch Monitor] C
Program\COMPAN~2\ONETOU~3.EXEO4 - HKLM\..\Run: [Symantec PIF AlertEng] "C
Program\Delade filer\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}
\PIFSvc.exe" /a /m "C
Program\Delade filer\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}
\AlertEng.dll"O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -kO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [F-Secure Manager] "C
Program\F-Secure Internet Security\Common\FSM32.EXE" /splashO4 - HKLM\..\Run: [F-Secure TNB] "C
Program\F-Secure Internet Security\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSWO4 - HKLM\..\Run: [Launch LgDevAgt] "C
Program\Logitech\GamePanel Software\LgDevAgt.exe"O4 - HKLM\..\Run: [Launch LCDMon] "C
Program\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"O4 - HKLM\..\Run: [Launch LGDCore] "C
Program\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDEO4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXEO4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXEO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C
WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [BVRPLiveUpdate] C
Program\Avanquest update\Engine\Setup.exe -s /PATCH,/SRCUPDATEC
DOCUME~1\ALLUSE~1\APPLIC~1\SONY
ER~1\SONYER~1\LIVEUP~1\LISTOF~1.DATO4 - HKLM\..\Run: [SunJavaUpdateSched] "C
Program\Java\jre6\bin\jusched.exe"O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exeO4 - HKCU\..\Run: [ctfmon.exe] C
WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [msnmsgr] "C
Program\Windows Live\Messenger\msnmsgr.exe" /backgroundO4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C
Program\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologonO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C
WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJÄNST'
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C
WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE'
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C
WINDOWS\system32\CTFMON.EXE (User 'SYSTEM'
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C
WINDOWS\system32\CTFMON.EXE (User 'Default user'
O4 - Global Startup: Logitech SetPoint.lnk = C
Program\Logitech\SetPoint\SetPoint.exeO6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions presentO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C
Program\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C
Program\Messenger\msmsgs.exeO16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://www.creative.com/softwareupdate/su/ocx/151
01/CTSUEng.cabO16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5
.5.8.1/FacebookPhotoUploader55.cabO16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su/ocx/151
06/CTPID.cabO23 - Service: Apple Mobile Device - Apple, Inc. - C
Program\Delade filer\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C
Program\Bonjour\mDNSResponder.exeO23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C
Program\Delade filer\Symantec Shared\ccSvcHst.exe (file missing)O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C
Program\Delade filer\Creative Labs Shared\Service\CTAELicensing.exeO23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C
Program\Creative\Shared Files\CTAudSvc.exeO23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C
Program\F-Secure Internet Security\Anti-Virus\fsgk32st.exeO23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C
Program\F-Secure Internet Security\FWES\Program\fsdfwd.exeO23 - Service: FSMA - F-Secure Corporation - C
Program\F-Secure Internet Security\Common\FSMA32.EXEO23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C
Program\F-Secure Internet Security\ORSP Client\fsorsp.exeO23 - Service: Google Updater Service (gusvc) - Google - C
Program\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C
Program\Delade filer\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: iPod Service - Apple Inc. - C
Program\iPod\bin\iPodService.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C
Program\Java\jre6\bin\jqs.exeO23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C
Program\Delade filer\Logishrd\Bluetooth\LBTServ.exeO23 - Service: LibUsb-Win32 - Daemon, Version 0.1.10.1 (libusbd) - http://libusb-win32.sourceforge.net - C
WINDOWS\system32\libusbd-nt.exeO23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C
Program\Delade filer\Symantec Shared\ccSvcHst.exe (file missing)O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C
Program\Delade filer\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}
\PIFSvc.exeO23 - Service: MaxSyncService (NTService1) - - C
Program\Maxtor\OneTouch\Utils\SyncServices.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C
WINDOWS\system32
vsvc32.exeO23 - Service: PnkBstrA - Unknown owner - C
WINDOWS\system32\PnkBstrA.exeO23 - Service: PnkBstrB - Unknown owner - C
WINDOWS\system32\PnkBstrB.exeO23 - Service: Retrospect Express HD Helper (RetroExp Helper) - EMC Dantz - C
Program\RETROS~1\RETROS~1.1
thlpsvc.exeO23 - Service: Retrospect Express HD Launcher (RetroExpLauncher) - EMC Dantz - C
Program\RETROS~1\RETROS~1.1
etrorun.exeO23 - Service: sgbx_device - Sagem - C
WINDOWS\system32\sgbxcoms.exe
--End of file - 11594 bytes
Tack på förhand