Hej!
Jag har fått någon skit på min laptop som börjar spela en musikslinga trots att inga musikprogram är öppna. Om jag skulle spela musik på itunes går den här musikslingan igång över mp3n och fortsätter till och md efter att jag stängt av alla program som är igång. Mkt märkligt och irriterande... tänkte att det kan vara nån trojan kanske? Postar en hijackthislogg och om någon kunde ta en titt på den vore jag mycket tacksam!
Tack för hjälpen.
Logfile of Trend Micro HijackThis v2.0.2Scan saved at 14:57:35, on 2010-02-22Platform: Windows Vista SP2 (WinNT 6.00.1906)MSIE: Internet Explorer v8.00 (8.00.6001.18882)Boot mode: Normal
Running processes:C
windows\system32\Dwm.exeC
windows\syste
m32\taskeng.exeC
windows\Explorer.EXEC
Program Files\Windows Defender\MSASCui.exeC
Program Files\Synaptics\SynTP\SynTPEnh.exeC
Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeC
Program Files\SiteAdvisor\6173\SiteAdv.exeC
Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exeC
Program Files\iTunes\iTunesHelper.exeC
Program Files\IDT\WDM\sttray.exeC
Program Files\Java\jre6\bin\jusched.exeC
Program Files\Voddler\service\VNetManager.exeC
Program Files\Windows Sidebar\sidebar.exeC
Program Files\Emotum\Mobile Broadband\Mobile.exeC
Program Files\Windows Media Player\wmpnscfg.exeC
Windows\System32
undll32.exeC
Program Files\Personal\bin\Personal.exeC
Program Files\WIDCOMM\Bluetooth Software\BTTray.exeC
Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exeC
Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exeC
Program Files\McAfee\Managed VirusScan\Agent\myAgtTry.exeC
Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exeC
Program Files\Hewlett-Packard\Shared\hpqToaster.exeC
Progr
am Files\Synaptics\SynTP\SynTPHelper.exeC
Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exeC
Program Files\Lavasoft\Ad-Aware\AAWTray.exeC
Program Files\Internet Explorer\iexplore.exeC
Program Files\Internet Explorer\iexplore.exeC
Windows\system32\Macromed\F
lash\FlashUtil10e.exeC
Program Files\Internet Explorer\iexplore.exeC
Program Files\Windows Live\Messenger\msnmsgr.exeC
Program Files\Windows Live\Contacts\wlcomm.exeC
windows\system32\conime.
exeC
windows\system32\ctfmon.exeC
Program Files\Internet Explorer\iexplore.exeC
Users\Andreas\AppData\Local
\Temp\Lbh.exeC
Users\Andreas\Desktop\HiJackThis!\H
ijackThis.exeC
windows\system32\SearchFilterHost.e
xe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&
locale=sv_se&c=92&bd=all&pf=cmnbR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.se/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&
locale=sv_se&c=92&bd=all&pf=cmnbR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&
locale=sv_se&c=92&bd=all&pf=cmnbR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C
Program Files\SiteAdvisor\6173\SiteAdv.dllO2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C
Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllO2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C
Program Files\Java\jre6\bin\jp2ssv.dllO3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C
Program Files\SiteAdvisor\6173\SiteAdv.dllO4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hideO4 - HKLM\..\Run: [PDF Complete] C
Program Files\PDF Complete\pdfsty.exeO4 - HKLM\..\Run: [SynTPEnh] C
Program Files\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [WirelessAssistant] C
Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeO4 - HKLM\..\Run: [MVS Splash] C
Program Files\McAfee\Managed VirusScan\Agent\Splash.exeO4 - HKLM\..\Run: [McAfee Managed Services Tray] "C
Program Files\McAfee\Managed VirusScan\Agent\StartMyagtTry.exe"O4 - HKLM\..\Run: [SiteAdvisor] C
Program Files\SiteAdvisor\6173\SiteAdv.exeO4 - HKLM\..\Run: [QlbCtrl.exe] C
Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /StartO4 - HKLM\..\Run: [StartCCC] "C
Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunO4 - HKLM\..\Run: [HPCam_Menu] "c
Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c
Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"O4 - HKLM\..\Run: [QuickTime Task] "C
Program Files\QuickTime\QTTask.exe" -atboottimeO4 - HKLM\..\Run: [iTunesHelper] "C
Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exeO4 - HKLM\..\Run: [SunJavaUpdateSched] "C
Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\Run: [VoddlerNet Manager] C
Program Files\Voddler\service\VNetManager.exeO4 - HKCU\..\Run: [Sidebar] C
Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [Emotum Mobile Broadband] C
Program Files\Emotum\Mobile Broadband\Mobile.exeO4 - HKCU\..\Run: [WMPNSCFG] C
Program Files\Windows Media Player\WMPNSCFG.exeO4 - HKCU\..\Run: [LosAlamos] rundll32.exe C
windows\system32\sshnas21.dll,AttachConsoleAO4 - HKCU\..\Run: [TOY5KNQ8OC] C
Users\Andreas\AppData\Local\Temp\Lbh.exeO4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST'
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST'
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST'
O4 - HKUS\S-1-5-18\..\Run: [cbssreg] C
windows\TEMP\pecx.tmp\svchost.exe (User 'SYSTEM'
O4 - HKUS\.DEFAULT\..\Run: [cbssreg] C
windows\TEMP\pecx.tmp\svchost.exe (User 'Default user'
O4 - Global Startup: BankID säkerhetsprogram.lnk = C
Program Files\Personal\bin\Personal.exeO4 - Global Startup: Bluetooth.lnk = ?O8 - Extra context menu item: E&xport to Microsoft Excel - res://c
PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000O8 - Extra context menu item: Skicka bild till &Bluetooth-enhet... - C
Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htmO8 - Extra context menu item: Skicka sida till &Bluetooth-enhet... - C
Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C
PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: @C
Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C
Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO9 - Extra 'Tools' menuitem: @C
Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C
Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmO13 - Gopher Prefix: O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin
.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/g
p.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{58C0307E-A365-
4D50-B92E-0DF87458AB46}: NameServer = 195.54.122.221 195.54.122.211O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C
windows\System32\DriverStore\FileRepository\stwr
t.inf_2159adbc\aestsrv.exeO23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C
Program Files\LSI SoftModem\agrsmsvc.exeO23 - Service: AMD External Events Utility - AMD - C
windows\system32\atiesrxx.exeO23 - Service: Apple Mobile Device - Apple Inc. - C
Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeO23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C
Program Files\Bonjour\mDNSResponder.exeO23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C
Program Files\WIDCOMM\Bluetooth Software\btwdins.exeO23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C
Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exeO23 - Service: EngineServer - McAfee, Inc. - C
Program Files\McAfee\Managed VirusScan\VScan\EngineServer.exeO23 - Service: HP Health Check Service - Hewlett-Packard - C
Program Files\Hewlett-Packard\HP Health Check\hphc_service.exeO23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C
Program Files\Hewlett-Packard\Shared\hpqwmiex.exeO23 - Service: iPod Service - Apple Inc. - C
Program Files\iPod\bin\iPodService.exeO23 - Service: IviRegMgr - InterVideo - C
Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exeO23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C
Program Files\Lavasoft\Ad-Aware\AAWService.exeO23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C
Program Files\Common Files\LightScribe\LSSrvc.exeO23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C
Program Files\Common Files\McAfee\HackerWatch\HWAPI.exeO23 - Service: McShield - McAfee, Inc. - C
PROGRA~1\McAfee\MANAGE~1\VScan\McShield.exeO23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C
Program Files\McAfee\MPF\MPFSrv.exeO23 - Service: McAfee Virus and Spyware Protection Service (myAgtSvc) - McAfee, Inc. - C
Program Files\McAfee\Managed VirusScan\Agent\myAgtSvc.ExeO23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C
Program Files\PDF Complete\pdfsvc.exeO23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C
Program Files\Common Files\Protexis\License Service\PsiService_2.exeO23 - Service: RoxMediaDB10 - Sonic Solutions - c
Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exeO23 - Service: SiteAdvisor-tjänst (SiteAdvisor Service) - Unknown owner - C
Program Files\SiteAdvisor\6173\SAService.exeO23 - Service: Audio Service (STacSV) - IDT, Inc. - C
windows\System32\DriverStore\FileRepository\stwr
t.inf_2159adbc\STacSV.exeO23 - Service: stllssvr - MicroVision Development, Inc. - c
Program Files\Common Files\SureThing Shared\stllssvr.exeO23 - Service: VoddlerNet - Voddler - C
Program Files\Voddler\service\voddler.exe
--End of file - 10626 bytes