ComboFix 13-10-08.01 - Voor Kamer Pc 09-10-2013 0:16.3.2 - x86 Microsoft Windows 7 Professional 6.1.7601.1.1252.31.1043.18.1791.778 [GMT 2:00] Gestart vanuit: c:\users\Voor Kamer Pc\Desktop\ComboFix.exe AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF} FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Nieuw herstelpunt werd aangemaakt . . (((((((((((((((((((( Bestanden Gemaakt van 2013-09-08 to 2013-10-08 )))))))))))))))))))))))))))))) . . 2013-10-08 22:22 . 2013-10-08 22:22 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-10-08 22:22 . 2013-10-08 22:22 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-10-06 17:24 . 2013-10-06 17:27 -------- d-----w- c:\program files\trend micro 2013-10-06 17:23 . 2013-10-06 17:27 -------- d-----w- C:\rsit 2013-10-05 12:17 . 2013-10-05 12:17 -------- d-----w- c:\programdata\McAfee 2013-10-02 20:53 . 2013-10-02 20:53 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\OpenOffice 2013-09-21 16:52 . 2013-09-21 16:52 -------- d-----w- c:\windows\ERUNT 2013-09-21 16:47 . 2013-10-08 22:23 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\temp 2013-09-16 22:41 . 2009-07-14 10:29 4223008 ----a-w- c:\windows\system32\NVStWiz.exe 2013-09-15 20:17 . 2013-09-16 20:49 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2013-09-15 20:16 . 2013-09-16 20:54 -------- d-----w- c:\program files\Spybot - Search & Destroy 2 2013-09-15 18:58 . 2013-09-15 18:58 -------- d-----w- c:\users\Voor Kamer Pc\Doctor Web 2013-09-14 02:17 . 2013-09-14 02:17 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\addpcs 2013-09-14 02:12 . 2013-09-21 17:00 -------- d-----w- C:\AdwCleaner 2013-09-14 00:53 . 2013-09-14 00:53 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\Skype 2013-09-14 00:53 . 2013-09-14 00:53 -------- d-----w- c:\program files\Common Files\Skype 2013-09-14 00:27 . 2013-09-14 00:27 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\Malwarebytes 2013-09-14 00:27 . 2013-09-14 00:27 -------- d-----w- c:\programdata\Malwarebytes 2013-09-14 00:27 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-09-12 00:25 . 2013-09-12 00:25 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\Western Digital 2013-09-12 00:25 . 2013-09-12 00:25 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\Western_Digital_Technolog 2013-09-12 00:23 . 2013-09-12 01:42 -------- d-----w- c:\program files\Common Files\Western Digital 2013-09-12 00:23 . 2013-09-12 00:55 -------- d-----w- c:\program files\Western Digital 2013-09-12 00:23 . 2013-09-12 00:23 -------- d-----w- c:\programdata\Western Digital 2013-09-12 00:22 . 2013-09-12 00:55 -------- d-----w- c:\programdata\Package Cache 2013-09-11 23:50 . 2013-09-12 00:41 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\ElevatedDiagnostics 2013-09-11 23:30 . 2013-08-20 13:33 33568 ----a-w- c:\windows\system32\drivers\nvvad32v.sys 2013-09-11 23:30 . 2013-08-20 13:32 28448 ----a-w- c:\windows\system32\nvaudcap32v.dll 2013-09-11 23:22 . 2013-09-02 11:51 51144 ----a-w- c:\windows\system32\drivers\Soluto.sys 2013-09-11 23:22 . 2013-09-12 01:42 -------- d-----w- c:\windows\system32\DRVSTORE 2013-09-11 23:22 . 2013-09-12 01:43 -------- d-----w- c:\program files\Soluto 2013-09-11 23:20 . 2013-09-14 00:53 -------- d-----w- c:\programdata\Skype 2013-09-11 23:17 . 2013-09-11 23:17 571168 ----a-w- c:\windows\system32\nvStreaming.exe 2013-09-11 23:17 . 2013-09-12 01:42 -------- d-----w- c:\programdata\Soluto 2013-09-11 23:15 . 2013-09-12 01:42 -------- d-----w- c:\program files\Macrium 2013-09-11 23:10 . 2013-09-11 23:10 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\Logitech® Webcam Software 2013-09-11 23:09 . 2013-09-11 23:12 -------- d-----w- c:\programdata\Macrium 2013-09-11 23:07 . 2013-09-11 23:07 -------- d-----w- c:\programdata\LogiShrd 2013-09-11 23:07 . 2013-09-11 23:07 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\Leadertech 2013-09-11 23:07 . 2013-09-11 23:07 53248 ----a-r- c:\users\Voor Kamer Pc\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe 2013-09-11 22:47 . 2013-09-28 20:53 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\vlc 2013-09-11 22:45 . 2013-09-11 22:48 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\WinBar 2013-09-11 22:45 . 2013-09-11 22:45 -------- d-----w- c:\programdata\WinBar 2013-09-11 22:41 . 2013-09-11 22:41 -------- d-----w- c:\programdata\Oracle 2013-09-11 22:40 . 2013-09-11 22:40 -------- d-----w- c:\program files\Common Files\Java 2013-09-11 22:40 . 2013-09-11 22:40 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2013-09-11 22:40 . 2013-09-11 22:40 -------- d-----w- c:\program files\Java 2013-09-11 22:38 . 2013-09-11 22:38 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\Evernote 2013-09-11 22:34 . 2013-09-11 22:34 -------- d-----w- c:\program files\GPLGS 2013-09-11 22:33 . 2013-09-11 22:33 -------- d-----w- c:\program files\Acro Software 2013-09-11 22:33 . 2012-10-04 17:50 88688 ----a-w- c:\windows\system32\cpwmon2k.dll 2013-09-11 22:31 . 2013-09-11 22:31 -------- d-----w- c:\windows\system32\Adobe 2013-09-11 22:30 . 2013-10-05 12:17 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-09-11 22:30 . 2013-10-05 12:17 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-09-11 22:30 . 2013-09-11 22:30 -------- d-----w- c:\windows\system32\Macromed 2013-09-11 22:15 . 2013-09-11 22:15 -------- d-----w- c:\program files\Common Files\Adobe AIR 2013-09-11 22:11 . 2013-09-11 22:11 -------- d-----w- c:\program files\Common Files\Adobe 2013-09-11 22:11 . 2013-10-05 12:17 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\Adobe 2013-09-11 22:08 . 2013-09-14 02:17 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Local\CrashDumps 2013-09-11 21:52 . 2013-10-02 19:41 -------- d-----w- c:\users\Voor Kamer Pc\AppData\Roaming\Media Player Classic 2013-09-11 21:46 . 2012-06-09 17:21 178688 ----a-w- c:\windows\system32\unrar.dll 2013-09-11 21:46 . 2013-09-11 21:46 -------- d-----w- c:\program files\K-Lite Codec Pack . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-09-17 20:23 . 2013-09-03 23:16 53024 ----a-w- c:\windows\system32\OpenCL.dll 2013-09-17 20:23 . 2009-07-13 22:09 13628208 ----a-w- c:\windows\system32\nvwgf2um.dll 2013-09-17 20:23 . 2009-07-14 09:54 12947360 ----a-w- c:\windows\system32\nvd3dum.dll 2013-09-17 20:23 . 2013-02-25 22:22 2630304 ----a-w- c:\windows\system32\nvapi.dll 2013-09-12 06:28 . 2009-07-14 11:29 4265760 ----a-w- c:\windows\system32\nvcpl.dll 2013-09-12 06:28 . 2009-07-14 11:29 3006240 ----a-w- c:\windows\system32\nvsvc.dll 2013-09-12 06:28 . 2013-09-03 23:17 62752 ----a-w- c:\windows\system32\nvshext.dll 2013-09-12 06:28 . 2009-07-14 11:29 662816 ----a-w- c:\windows\system32\nvvsvc.exe 2013-09-12 06:28 . 2009-07-14 11:29 2555168 ----a-w- c:\windows\system32\nvsvcr.dll 2013-09-12 06:28 . 2009-07-14 11:29 209184 ----a-w- c:\windows\system32\nvmctray.dll 2013-09-11 22:40 . 2013-09-06 20:26 868264 ----a-w- c:\windows\system32\npDeployJava1.dll 2013-09-11 22:40 . 2013-09-06 20:26 790440 ----a-w- c:\windows\system32\deployJava1.dll 2013-09-04 15:09 . 2013-09-04 15:09 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-09-04 15:09 . 2013-09-04 15:09 185344 ----a-w- c:\windows\system32\elshyph.dll 2013-09-04 15:09 . 2013-09-04 15:09 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-09-04 15:09 . 2013-09-04 15:09 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-09-04 15:09 . 2013-09-04 15:09 61952 ----a-w- c:\windows\system32\tdc.ocx 2013-09-04 15:09 . 2013-09-04 15:09 523264 ----a-w- c:\windows\system32\vbscript.dll 2013-09-04 15:09 . 2013-09-04 15:09 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-09-04 15:09 . 2013-09-04 15:09 38400 ----a-w- c:\windows\system32\imgutil.dll 2013-09-04 15:09 . 2013-09-04 15:09 361984 ----a-w- c:\windows\system32\html.iec 2013-09-04 15:09 . 2013-09-04 15:09 23040 ----a-w- c:\windows\system32\licmgr10.dll 2013-09-04 15:09 . 2013-09-04 15:09 158720 ----a-w- c:\windows\system32\msls31.dll 2013-09-04 15:09 . 2013-09-04 15:09 150528 ----a-w- c:\windows\system32\iexpress.exe 2013-09-04 15:09 . 2013-09-04 15:09 1441280 ----a-w- c:\windows\system32\inetcpl.cpl 2013-09-04 15:09 . 2013-09-04 15:09 138752 ----a-w- c:\windows\system32\wextract.exe 2013-09-04 15:09 . 2013-09-04 15:09 137216 ----a-w- c:\windows\system32\ieUnatt.exe 2013-09-04 15:09 . 2013-09-04 15:09 12800 ----a-w- c:\windows\system32\mshta.exe 2013-09-04 15:09 . 2013-09-04 15:09 110592 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-09-04 15:09 . 2013-09-04 15:09 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 906240 ----a-w- c:\windows\system32\FntCache.dll 2013-09-04 15:09 . 2013-09-04 15:09 604160 ----a-w- c:\windows\system32\d3d10level9.dll 2013-09-04 15:09 . 2013-09-04 15:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 417792 ----a-w- c:\windows\system32\WMPhoto.dll 2013-09-04 15:09 . 2013-09-04 15:09 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 364544 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2013-09-04 15:09 . 2013-09-04 15:09 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 3419136 ----a-w- c:\windows\system32\d2d1.dll 2013-09-04 15:09 . 2013-09-04 15:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 249856 ----a-w- c:\windows\system32\d3d10_1core.dll 2013-09-04 15:09 . 2013-09-04 15:09 2284544 ----a-w- c:\windows\system32\msmpeg2vdec.dll 2013-09-04 15:09 . 2013-09-04 15:09 220160 ----a-w- c:\windows\system32\d3d10core.dll 2013-09-04 15:09 . 2013-09-04 15:09 207872 ----a-w- c:\windows\system32\WindowsCodecsExt.dll 2013-09-04 15:09 . 2013-09-04 15:09 1988096 ----a-w- c:\windows\system32\d3d10warp.dll 2013-09-04 15:09 . 2013-09-04 15:09 161792 ----a-w- c:\windows\system32\d3d10_1.dll 2013-09-04 15:09 . 2013-09-04 15:09 1158144 ----a-w- c:\windows\system32\XpsPrint.dll 2013-09-04 15:09 . 2013-09-04 15:09 1080832 ----a-w- c:\windows\system32\d3d10.dll 2013-09-04 15:09 . 2013-09-04 15:09 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-09-04 15:09 . 2013-09-04 15:09 293376 ----a-w- c:\windows\system32\dxgi.dll 2013-09-04 15:09 . 2013-09-04 15:09 187392 ----a-w- c:\windows\system32\UIAnimation.dll 2013-09-03 23:28 . 2013-09-03 23:28 142496 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS 2013-08-19 22:47 . 2013-09-03 23:18 7166848 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{34A7F267-59F9-4AED-A598-2BFFD8939743}\mpengine.dll 2013-08-07 02:22 . 2013-09-03 23:18 238872 ------w- c:\windows\system32\MpSigStub.exe 2013-08-01 13:47 . 2013-08-01 13:47 65144 ----a-w- c:\windows\system32\drivers\psmounterex.sys 2013-07-25 08:57 . 2013-09-04 14:12 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-19 01:41 . 2013-09-04 14:12 2048 ----a-w- c:\windows\system32\tzres.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016] "WinBar"="p:\winbar\WinBar.exe" [2009-09-29 271360] "CCleaner"="p:\ccleaner\CCleaner.exe" [2013-09-19 3905304] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"="c:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896] "LWS"="p:\logitech webcam\LWS\Webcam Software\LWS.exe" [2012-09-12 204136] "Soluto"="c:\program files\soluto\soluto.exe" [2013-09-02 1231424] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ NETGEAR WNA1100 Genie.lnk - c:\program files\NETGEAR\WNA1100\WNA1100.exe [2013-9-6 8247264] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler] "{1984DD45-52CF-49cd-AB77-18F378FEA264}"= "p:\fences\Stardock\Fences\FencesMenu.dll" [2010-06-22 202088] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe . [HKLM\~\startupfolder\C:^Users^Voor Kamer Pc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Productregistratie.lnk] path=c:\users\Voor Kamer Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Productregistratie.lnk backup=c:\windows\pss\Logitech . Productregistratie.lnk.Startup backupExtension=.Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2013-09-05 14:03 958576 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_1D831ACA36D5778E42B1897637429C17] 2013-10-03 06:03 844752 ----a-w- c:\program files\Google\Chrome\Application\chrome.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] 2013-07-25 06:58 20684656 ----a-r- p:\skype\Phone\Skype.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2013-07-02 07:16 254336 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . R2 SkypeUpdate;Skype Updater;p:\skype\Updater\Updater.exe [2013-07-25 162672] R3 cleanhlp;cleanhlp;p:\emsisoft\Run\cleanhlp32.sys [2013-09-13 50200] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464] R3 jswpsapi;JumpStart Wi-Fi Protected Setup;c:\program files\NETGEAR\WNA1100\jswpsapi.exe [2010-03-22 960992] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 27136] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2013-09-04 1343400] S0 pssnap;Paramount Software Snapshot Filter;c:\windows\system32\DRIVERS\pssnap.sys [2013-06-28 16504] S0 Soluto;Soluto;c:\windows\system32\DRIVERS\Soluto.sys [2013-09-02 51144] S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NIS\1404000.028\SYMDS.SYS [2013-05-20 367704] S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NIS\1404000.028\SYMEFA.SYS [2013-05-22 934488] S1 BHDrvx86;BHDrvx86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\BASHDefs\20130924.001\BHDrvx86.sys [2013-09-24 1097304] S1 ccSet_NIS;Norton Internet Security Settings Manager;c:\windows\system32\drivers\NIS\1404000.028\ccSetx86.sys [2013-04-15 134744] S1 IDSVix86;IDSVix86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.0.19\Definitions\IPSDefs\20131004.001\IDSvix86.sys [2013-09-03 392792] S1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2008-05-15 20384] S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NIS\1404000.028\Ironx86.SYS [2012-09-06 175264] S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\system32\drivers\NIS\1404000.028\SYMNETS.SYS [2013-04-24 339544] S2 NIS;Norton Internet Security;c:\program files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [2013-05-20 144368] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-08-27 14573856] S2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe [2013-09-25 368760] S2 SolutoLauncherService;Soluto Launcher Service;c:\program files\Soluto\SolutoLauncherService.exe [2013-09-02 166976] S2 SolutoService;Soluto PCGenome Core Service;c:\program files\Soluto\SolutoService.exe [2013-09-02 819776] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-09-11 414496] S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2013-09-12 5071712] S2 WSWNA1100;WSWNA1100;c:\program files\NETGEAR\WNA1100\WifiSvc.exe [2011-07-28 297440] S3 athur;Atheros AR9271 Wireless Network Adapter Service;c:\windows\system32\DRIVERS\athur.sys [2010-10-10 1564160] S3 cpuz136;cpuz136;c:\windows\TEMP\cpuz136\cpuz136_x32.sys [x] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-03 108120] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2013-08-20 33568] S3 SolutoRemoteService;Soluto Remote Service;c:\program files\Soluto\SolutoRemoteService.exe [2013-09-02 1667584] S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2011-02-16 11520] . . --- Andere Services/Drivers In Geheugen --- . *NewlyCreated* - 96896733 *Deregistered* - 96896733 . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-10-06 17:18 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.69\Installer\chrmstp.exe . Inhoud van de 'Gedeelde Taken' map . 2013-09-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2013-09-04 15:06] . 2013-10-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2013-09-04 15:06] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.nl/ IE: Afbeelding knippen - p:\evernote\\EvernoteIERes\Clip.html?clipAction=4 IE: Free YouTube to MP3 Converter - c:\program files\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm IE: Kopieer selectie - p:\evernote\\EvernoteIERes\Clip.html?clipAction=3 IE: Kopieer URL - p:\evernote\\EvernoteIERes\Clip.html?clipAction=0 IE: Nieuwe notitie - p:\evernote\\EvernoteIERes\NewNote.html IE: Pagina opemen - p:\evernote\\EvernoteIERes\Clip.html?clipAction=1 LSP: c:\program files\NVIDIA Corporation\NetworkAccessManager\bin32\nvLsp.dll TCP: DhcpNameServer = 212.54.40.25 212.54.35.25 . - - - - ORPHANS VERWIJDERD - - - - . SafeBoot-CleanHlp SafeBoot-CleanHlp.sys . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS] "ImagePath"="\"c:\program files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe\" /s \"NIS\" /m \"c:\program files\Norton Internet Security\Engine\20.4.0.40\diMaster.dll\" /prefetch:1" . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_175_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_175_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Environment*] "v5Licence0"="15-9M9H-VD3D-X6HB-G2PA-2Z61-9DGMQ6N" "Activated"="Y" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . --------------------- DLLs Geladen Onder Lopende Processen --------------------- . - - - - - - - > 'Explorer.exe'(5804) p:\fences\Stardock\Fences\FencesMenu.dll p:\fences\stardock\fences\DesktopDock.dll c:\windows\System32\ieframe.dll . Voltooingstijd: 2013-10-09 00:25:14 ComboFix-quarantined-files.txt 2013-10-08 22:25 . Pre-Run: 99.025.367.040 bytes beschikbaar Post-Run: 98.689.028.096 bytes beschikbaar . - - End Of File - - 774B57D2302C4DFAAD111AC5184ACFA4 A36C5E4F47E84449FF07ED3517B43A31