Logfile of HijackThis v1.99.1 Scan saved at 09:48:24, on 2005-06-13 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\taskmgr.exe C:\WINDOWS\system32\rundll32.exe C:\Program\hjt\HijackThis.exe c:\xxxxx.exe C:\Program\Internet Explorer\iexplore.exe C:\Program\Internet Explorer\iexplore.exe C:\WINDOWS\inet20057\winlogon.exe C:\Program\Internet Explorer\IExplore.exe C:\WINDOWS\mm.exe C:\WINDOWS\System32\intronsad.exe C:\WINDOWS\winsocks5.exe C:\WINDOWS\system32\ntvdm.exe C:\WINDOWS\System32\sssdfgbsdfghbnj.exe C:\WINDOWS\System32\maxd.exe C:\WINDOWS\System32\maxd.exe C:\WINDOWS\weirdontheweb_topc.exe C:\WINDOWS\thin-114-1-x-x.exe C:\DOCUME~1\Roger\LOKALA~1\Temp\i8.tmp C:\Program\WeirdOnTheWeb\weirdontheweb.exe C:\WINDOWS\stubinstaller5975.exe C:\WINDOWS\optimize.exe C:\WINDOWS\shop1004.exe C:\WINDOWS\installer_SIAC.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = C:\WINDOWS\System32\msblank.html R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Länkar F3 - REG:win.ini: run=C:\WINDOWS\inet20057\winlogon.exe O2 - BHO: HBO Class - {5321E378-FFAD-4999-8C62-03CA8155F0B3} - C:\WINDOWS\inet20057\3.00.05.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20057\winlogon.exe O4 - HKLM\..\Run: [Microsoft standard protector] C:\WINDOWS\winsocks5.exe O4 - HKLM\..\Run: [ControlPanel] C:\WINDOWS\System32\popcorn64.exe rundll.dll,LoadMouseProfile O4 - HKCU\..\Run: [xp_system] C:\WINDOWS\inet20057\winlogon.exe O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O16 - DPF: {79849612-A98F-45B8-95E9-4D13C7B6B35C} (Loader2 Control) - http://static.topconverting.com/activex/website.ocx