Hej Malou,
AVG AntiSpyware hittade en del som den tog bort enl logga. Skickar med en HJT-logga som du bad om.
Vad är det för program som uppger => "Otillräcklig minneskvot för att utföra uppgiften"?
Det var när jag försökte navigera i Explorer, expandera mappar odyl. Samt öppna diverse filer med Anteckningar.
Följande var också igår: Innan jag skulle stänga datorn försökte jag skriva ut dina instruktioner (jag brukar markera==>Cntr+P==>Välja Markering) Då är dialogrutan transparent, fönstret under lyser igenom. Idag: gjorde likadant precis efter uppstart. Allt betedde sig normalt.
Än-så-länge.
Har haft AVG-Free några år och den har tickat på hela tiden. Under detta jagande på otyg har ett felmeddelande dykt upp. "Residant shield not loaded." När det dyker upp olika meddelanden brukar jag söka pånätet och jag hittade även en tråd denna gång i AVG:s forum.
http://forum.grisoft.cz/freeforum/read.php?2,22901,22918
(gjorde just en länk .) )
Har inte hunnit göra som det står än. Kan något ha satt AVG ur funktion?
Igår fick jag en massa felmeddelanden om avg. Öppnade en fil som hette avgcc.err, svåröppnad då jag fick meddelanden om minnesotillräcklighet. Gick till slut med en hexeditor.
MVH//Jaan
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 09:11:41 2007-06-29
+ Scan result:
C:\System Volume Information\_restore{D9D64A70-84C3-4289-8502-B7F208DFA60B}\RP290\A0011665.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
C:\Documents and Settings\Jaan\Skrivbord\Dwnld\freesco037\freesco-037.zip/FREESCO-037/date-w32.zip/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\Documents and Settings\Jaan\Skrivbord\Dwnld\freesco037\freesco-037\date-w32.zip/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\backup\carreras\20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\Skrivbord\FREESCO\Freesco-032\032\date-w32.zip.nco/20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\SKRIVB~1\FREESCO\FREESC~1\032\DATE-W32.ZIP/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\backup\carreras\20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\Skrivbord\FREESCO\Freesco-032\Freesco-032.zip.nco/20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\SKRIVB~1\FREESCO\FREESC~1\FREESC~1.ZIP/date-w32.zip/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\backup\carreras\20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\Skrivbord\FREESCO\Freesco-034\date-w32.zip.nco/20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\SKRIVB~1\FREESCO\FREESC~2\DATE-W32.ZIP/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\backup\carreras\20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\Skrivbord\Flashminne\freesco-034.zip.nco/20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\SKRIVB~1\FLASHM~1\FREESC~1.ZIP/FREESCO-034/date-w32.zip/netcat.exe -> Backdoor.Ncx.a : Cleaned with backup (quarantined).
C:\Documents and Settings\Jaan\Cookies\jaan@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@atdmt[1].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@ehg-pcsecurityshield.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@revsci[2].txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Jaan\Cookies\jaan@zedo[2].txt -> TrackingCookie.Zedo : Cleaned.
C:\System Volume Information\_restore{D9D64A70-84C3-4289-8502-B7F208DFA60B}\RP290\A0011663.exe -> Trojan.Agent.aoy : Cleaned with backup (quarantined).
C:\backup\carreras\20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\base64.tmp.nco/20061608_214243_Jaan\Grenier\CARRERAS\WINDOWS\BASE64.TMP -> Worm.NetSky.q : Cleaned with backup (quarantined).
::Report end
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 09:19:42, on 2007-06-29
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\sstray.exe
C:\Program\Ahead\InCD\InCD.exe
C:\Program\D-Tools\daemon.exe
C:\Program\SlySoft\CloneCD\CloneCDTray.exe
C:\Program\Grisoft\AVGFRE~1\avgcc.exe
C:\Program\Java\jre1.6.0_01\bin\jusched.exe
C:\Program\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program\Delade filer\Acronis\Schedule2\schedhlp.exe
C:\Program\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program\MSN Messenger\MsnMsgr.Exe
C:\Program\WinZip\WZQKPICK.EXE
C:\Program\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program\Delade filer\Acronis\Schedule2\schedul2.exe
C:\Program\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program\Grisoft\AVGFRE~1\avgemc.exe
C:\Program\Delade filer\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\TM HTJ\Rensare.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.leta.se/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program\google\googletoolbar3.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program\google\googletoolbar3.dll
O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [AVG7_CC] C:\Program\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program\Delade filer\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\Program\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xportera till Microsoft Excel -
res://C:\Program\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Referensinformation - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupda ... 5567925896
O17 - HKLM\System\CCS\Services\Tcpip\..\{50604245-FFED-4A1E-B6E2-0C9EAED8F80B}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{9FF0D5A2-C520-4BD8-A99B-7D0AA6F9F60E}: NameServer = 192.168.0.1
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program\Delade filer\Acronis\Schedule2\schedul2.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\Program\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program\Ahead\InCD\InCDsrv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program\Delade filer\LightScribe\LSSrvc.exe
--
End of file - 6191 bytes