Beste....,
Ik heb sinds 2 dagen een probleem met mijn computer want denk ik wordt veroorzaakt door een virusje.
Wanneer mijn computer gestart wordt start het proces explored.exe wel maar deze crasht ook weer na enkele seconde. Handmatig opstarte van dit proces geeft geen oplossing want explorer.exe crasht dan weer.
zie hieronder voor mijn hijack this logje
bedankt alvast
HijackThis Log
Created with: Hijack This kleurcodering
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:49:35, on 28-12-2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
c:\windows\system32\smss.exe
c:\windows\system32\winlogon.exe
c:\windows\system32\services.exe
c:\windows\system32\lsass.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\spoolsv.exe
c:\progra~1\grisoft\avg7\avgamsvr.exe
c:\progra~1\grisoft\avg7\avgupsvc.exe
c:\progra~1\grisoft\avg7\avgemc.exe
c:\program files\internet explorer\iexplore.exe
c:\documents and settings\zjillbeare.com\bureaublad\vundofix.exe
c:\windows\system32\taskmgr.exe
c:\program files\trend micro\hijackthis\hijackthis.exe
r0 - hkcu\software\microsoft\internet explorer\main,start page = http://planet.nl/
r0 - hklm\software\microsoft\internet explorer\main,start page = about:blank
r0 - hkcu\software\microsoft\internet explorer\main,local page =
r0 - hklm\software\microsoft\internet explorer\main,local page =
r0 - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername = koppelingen
r3 - urlsearchhook: yahoo! toolbar - {ef99bd32-c1fb-11d2-892f-0090271d4f88} - (no file)
o3 - toolbar: &radio - {8e718888-423f-11d2-876e-00a0c9082467} - c:\windows\system32\msdxm.ocx
o3 - toolbar: &google - {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar2.dll
o4 - hklm\..\run: [avg7_cc] c:\progra~1\grisoft\avg7\avgcc.exe /startup
o4 - hklm\..\run: [explorer.exe] c:\windows\explorer.exe
o4 - hklm\..\run: [msconfig] c:\windows\pchealth\helpctr\binaries\msconfig.exe /auto
o4 - hkus\s-1-5-19\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'lokale service')
o4 - hkus\s-1-5-19\..\run: [avg7_run] c:\progra~1\grisoft\avg7\avgw.exe /runonce (user 'lokale service')
o4 - hkus\s-1-5-20\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'netwerkservice')
o4 - hkus\s-1-5-18\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'system')
o4 - hkus\.default\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'default user')
o9 - extra button: (no name) - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre1.5.0_10\bin\ssv.dll
o9 - extra 'tools' menuitem: sun java console - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre1.5.0_10\bin\ssv.dll
o16 - dpf: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
o16 - dpf: {56336bcb-3d8a-11d6-a00b-0050da18de71} (rdxie class) - http://software-dl.real.com/18d7282cf2641257ef05/netzip/rdxie601.cab
o16 - dpf: {8e0d4de5-3180-4024-a327-4dfad1796a8d} (messengerstatsclient class) - http://messenger.zone.msn.com/binary/messengerstatsclient.cab31267.cab
o16 - dpf: {b8be5e93-a60c-4d26-a2dc-220313175592} (msn games - installer) - http://messenger.zone.msn.com/binary/zintro.cab56649.cab
o16 - dpf: {c3f79a2b-b9b4-4a66-b012-3ee46475b072} (messengerstatsclient class) - http://messenger.zone.msn.com/binary/messengerstatspaclient.cab56907.cab
o17 - hklm\system\ccs\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o17 - hklm\system\cs1\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o17 - hklm\system\cs2\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o23 - service: avg e-mail scanner (avgems) - grisoft, s.r.o. - c:\progra~1\grisoft\avg7\avgemc.exe
--
end of file - 3516 bytes
Ik heb sinds 2 dagen een probleem met mijn computer want denk ik wordt veroorzaakt door een virusje.
Wanneer mijn computer gestart wordt start het proces explored.exe wel maar deze crasht ook weer na enkele seconde. Handmatig opstarte van dit proces geeft geen oplossing want explorer.exe crasht dan weer.
zie hieronder voor mijn hijack this logje
bedankt alvast
HijackThis Log
Created with: Hijack This kleurcodering
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:49:35, on 28-12-2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
c:\windows\system32\smss.exe
c:\windows\system32\winlogon.exe
c:\windows\system32\services.exe
c:\windows\system32\lsass.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\spoolsv.exe
c:\progra~1\grisoft\avg7\avgamsvr.exe
c:\progra~1\grisoft\avg7\avgupsvc.exe
c:\progra~1\grisoft\avg7\avgemc.exe
c:\program files\internet explorer\iexplore.exe
c:\documents and settings\zjillbeare.com\bureaublad\vundofix.exe
c:\windows\system32\taskmgr.exe
c:\program files\trend micro\hijackthis\hijackthis.exe
r0 - hkcu\software\microsoft\internet explorer\main,start page = http://planet.nl/
r0 - hklm\software\microsoft\internet explorer\main,start page = about:blank
r0 - hkcu\software\microsoft\internet explorer\main,local page =
r0 - hklm\software\microsoft\internet explorer\main,local page =
r0 - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername = koppelingen
r3 - urlsearchhook: yahoo! toolbar - {ef99bd32-c1fb-11d2-892f-0090271d4f88} - (no file)
o3 - toolbar: &radio - {8e718888-423f-11d2-876e-00a0c9082467} - c:\windows\system32\msdxm.ocx
o3 - toolbar: &google - {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar2.dll
o4 - hklm\..\run: [avg7_cc] c:\progra~1\grisoft\avg7\avgcc.exe /startup
o4 - hklm\..\run: [explorer.exe] c:\windows\explorer.exe
o4 - hklm\..\run: [msconfig] c:\windows\pchealth\helpctr\binaries\msconfig.exe /auto
o4 - hkus\s-1-5-19\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'lokale service')
o4 - hkus\s-1-5-19\..\run: [avg7_run] c:\progra~1\grisoft\avg7\avgw.exe /runonce (user 'lokale service')
o4 - hkus\s-1-5-20\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'netwerkservice')
o4 - hkus\s-1-5-18\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'system')
o4 - hkus\.default\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'default user')
o9 - extra button: (no name) - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre1.5.0_10\bin\ssv.dll
o9 - extra 'tools' menuitem: sun java console - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre1.5.0_10\bin\ssv.dll
o16 - dpf: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -
o16 - dpf: {56336bcb-3d8a-11d6-a00b-0050da18de71} (rdxie class) - http://software-dl.real.com/18d7282cf2641257ef05/netzip/rdxie601.cab
o16 - dpf: {8e0d4de5-3180-4024-a327-4dfad1796a8d} (messengerstatsclient class) - http://messenger.zone.msn.com/binary/messengerstatsclient.cab31267.cab
o16 - dpf: {b8be5e93-a60c-4d26-a2dc-220313175592} (msn games - installer) - http://messenger.zone.msn.com/binary/zintro.cab56649.cab
o16 - dpf: {c3f79a2b-b9b4-4a66-b012-3ee46475b072} (messengerstatsclient class) - http://messenger.zone.msn.com/binary/messengerstatspaclient.cab56907.cab
o17 - hklm\system\ccs\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o17 - hklm\system\cs1\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o17 - hklm\system\cs2\services\tcpip\..\{01056f7b-400b-44f2-9277-9a4e8eb603da}: nameserver = 192.168.1.254,192.169.1.254
o23 - service: avg e-mail scanner (avgems) - grisoft, s.r.o. - c:\progra~1\grisoft\avg7\avgemc.exe
--
end of file - 3516 bytes
Comment