ComboFix 09-11-11.02 - Stef 12/11/2009 17:05.1.1 - NTFSx86 Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.32.1043.18.1023.389 [GMT 1:00] Gestart vanuit: c:\users\Stef\Downloads\ComboFix.exe SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\users\Stef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1 .lnk . (((((((((((((((((((( Bestanden Gemaakt van 2009-10-12 to 2009-11-12 )))))))))))))))))))))))))))))) . 2009-11-11 14:32 . 2009-08-14 13:53 2035712 ----a-w- c:\windows\system32\win32k.sys 2009-11-11 14:32 . 2009-08-10 13:05 351232 ----a-w- c:\windows\system32\WSDApi.dll 2009-11-09 22:06 . 2009-11-09 22:06 -------- d-----w- c:\program files\Common Files\Ahead 2009-11-09 22:06 . 2009-11-09 22:06 -------- d-----w- c:\program files\Ahead 2009-11-09 22:05 . 2007-09-04 16:56 164352 ----a-w- c:\windows\system32\unrar.dll 2009-11-09 22:05 . 2008-01-10 12:16 159839 ----a-w- c:\windows\system32\xvidvfw.dll 2009-11-09 22:05 . 2008-01-10 12:15 755027 ----a-w- c:\windows\system32\xvidcore.dll 2009-11-09 22:05 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll 2009-11-09 22:05 . 2008-07-25 08:34 81920 ----a-w- c:\windows\system32\dpl100.dll 2009-11-09 22:05 . 2008-07-25 08:34 683520 ----a-w- c:\windows\system32\divx.dll 2009-11-09 22:05 . 2008-07-23 16:50 3596288 ----a-w- c:\windows\system32\qt-dx331.dll 2009-11-09 22:05 . 2008-06-12 18:36 7680 ----a-w- c:\windows\system32\ff_vfw.dll 2009-11-09 22:05 . 2004-01-11 22:00 348160 ----a-w- c:\windows\system32\msvcr71.dll 2009-11-09 22:05 . 2009-11-09 22:05 4096 d-----w- c:\program files\K-Lite Codec Pack 2009-11-09 18:48 . 2009-11-09 18:48 4096 d-----w- c:\program files\Windows Live Safety Center 2009-11-09 18:09 . 2009-11-09 18:09 1 ----a-w- c:\users\Stef\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys 2009-11-09 18:08 . 2009-11-09 18:08 -------- d-----w- c:\users\Stef\AppData\Roaming\OpenOffice.org 2009-11-09 18:03 . 2009-11-09 18:04 4096 d-----w- c:\program files\OpenOffice.org 3 2009-11-06 17:22 . 2009-11-06 17:22 -------- d-----w- c:\program files\Trend Micro 2009-11-06 10:01 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll 2009-11-06 10:01 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe 2009-11-06 10:01 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll 2009-11-06 10:01 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll 2009-11-06 10:00 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll 2009-11-06 10:00 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll 2009-11-06 10:00 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll 2009-11-06 10:00 . 2009-08-06 18:23 171608 ----a-w- c:\windows\system32\wuwebv.dll 2009-11-06 10:00 . 2009-08-06 17:44 33792 ----a-w- c:\windows\system32\wuapp.exe 2009-11-05 18:32 . 2009-11-05 18:32 -------- d-----w- c:\users\Stef\AppData\Roaming\Blitware 2009-11-05 18:15 . 2008-10-10 03:52 452440 ----a-w- c:\windows\system32\d3dx10_40.dll 2009-11-05 18:15 . 2008-10-10 03:52 4379984 ----a-w- c:\windows\system32\D3DX9_40.dll 2009-11-05 18:15 . 2008-10-10 03:52 2036576 ----a-w- c:\windows\system32\D3DCompiler_40.dll 2009-11-05 18:15 . 2007-04-04 17:53 81768 ----a-w- c:\windows\system32\xinput1_3.dll 2009-11-05 18:13 . 2009-11-09 21:07 4096 d-----w- c:\program files\Heroes of Newerth 2009-11-05 18:06 . 2009-11-05 18:06 -------- d-----w- c:\windows\system32\Macromed 2009-11-05 18:03 . 2009-11-12 15:56 -------- d-----w- c:\users\Stef\Tracing 2009-11-05 18:02 . 2009-11-05 18:02 -------- d-----w- c:\program files\Microsoft 2009-11-05 18:02 . 2009-11-05 18:02 -------- d-----w- c:\program files\Windows Live SkyDrive 2009-11-05 18:01 . 2009-11-05 18:02 -------- d-----w- c:\program files\Windows Live 2009-11-05 18:01 . 2009-11-05 18:01 -------- d-----w- c:\windows\PCHEALTH 2009-11-05 17:59 . 2009-11-05 17:59 -------- d-----w- c:\program files\Common Files\Windows Live 2009-11-05 17:43 . 2009-06-22 10:22 2048 ----a-w- c:\windows\system32\tzres.dll 2009-11-05 17:13 . 2009-03-08 11:33 18944 ----a-w- c:\windows\system32\corpol.dll 2009-11-05 15:57 . 2009-11-02 19:42 195456 ------w- c:\windows\system32\MpSigStub.exe 2009-11-05 15:50 . 2009-11-09 22:06 8192 d-sh--w- c:\windows\Installer 2009-11-05 15:47 . 2008-06-20 01:14 105016 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2009-11-05 15:47 . 2008-06-20 01:14 97800 ----a-w- c:\windows\system32\infocardapi.dll 2009-11-05 15:47 . 2008-06-20 01:14 43544 ----a-w- c:\windows\system32\PresentationHostProxy.dll 2009-11-05 15:47 . 2008-06-20 01:14 11264 ----a-w- c:\windows\system32\icardres.dll 2009-11-05 15:47 . 2008-06-20 01:14 622080 ----a-w- c:\windows\system32\icardagt.exe 2009-11-05 15:46 . 2008-06-20 01:14 781344 ----a-w- c:\windows\system32\PresentationNative_v0300.dll 2009-11-05 15:46 . 2008-06-20 01:14 326160 ----a-w- c:\windows\system32\PresentationHost.exe 2009-11-05 15:42 . 2008-07-27 18:03 96760 ----a-w- c:\windows\system32\dfshim.dll 2009-11-05 15:42 . 2008-07-27 18:03 41984 ----a-w- c:\windows\system32\netfxperf.dll 2009-11-05 15:42 . 2008-07-27 18:03 282112 ----a-w- c:\windows\system32\mscoree.dll 2009-11-05 15:41 . 2008-07-27 18:03 158720 ----a-w- c:\windows\system32\mscorier.dll 2009-11-05 15:41 . 2008-07-27 18:03 83968 ----a-w- c:\windows\system32\mscories.dll 2009-11-05 15:38 . 2008-10-21 05:25 296960 ----a-w- c:\windows\system32\gdi32.dll 2009-11-05 15:38 . 2008-06-06 03:27 38912 ----a-w- c:\windows\system32\xolehlp.dll 2009-11-05 15:38 . 2008-06-06 03:27 562176 ----a-w- c:\windows\system32\msdtcprx.dll 2009-11-05 15:38 . 2008-06-26 01:45 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll 2009-11-05 15:37 . 2008-06-26 01:45 2644480 ----a-w- c:\windows\system32\NlsLexicons0009.dll 2009-11-05 15:37 . 2008-06-26 03:29 801280 ----a-w- c:\windows\system32\NaturalLanguage6.dll 2009-11-05 15:36 . 2009-06-15 18:20 439896 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2009-11-05 15:36 . 2009-06-15 15:24 175104 ----a-w- c:\windows\system32\wdigest.dll 2009-11-05 15:36 . 2009-06-15 15:24 72704 ----a-w- c:\windows\system32\secur32.dll 2009-11-05 15:36 . 2009-06-15 15:24 270848 ----a-w- c:\windows\system32\schannel.dll 2009-11-05 15:36 . 2009-06-15 15:23 1256448 ----a-w- c:\windows\system32\lsasrv.dll 2009-11-05 15:36 . 2009-06-15 15:21 499712 ----a-w- c:\windows\system32\kerberos.dll 2009-11-05 15:36 . 2009-06-15 12:57 9728 ----a-w- c:\windows\system32\lsass.exe 2009-11-05 15:34 . 2009-07-14 13:00 313344 ----a-w- c:\windows\system32\wmpdxm.dll 2009-11-05 15:34 . 2009-08-28 12:39 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2009-11-05 15:34 . 2009-08-28 10:15 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2009-11-05 15:34 . 2008-03-08 04:21 1695744 ----a-w- c:\windows\system32\gameux.dll 2009-11-05 15:29 . 2009-07-11 19:32 513024 ----a-w- c:\windows\system32\wlansvc.dll 2009-11-05 15:28 . 2008-06-26 03:29 303616 ----a-w- c:\windows\system32\wmpeffects.dll 2009-11-05 15:28 . 2009-06-10 12:12 160256 ----a-w- c:\windows\system32\wkssvc.dll 2009-11-05 15:28 . 2008-04-10 05:12 738304 ----a-w- c:\windows\system32\inetcomm.dll 2009-11-05 15:28 . 2009-09-04 12:24 61440 ----a-w- c:\windows\system32\msasn1.dll 2009-11-05 15:28 . 2008-10-21 05:25 1645568 ----a-w- c:\windows\system32\connect.dll 2009-11-05 15:06 . 2009-11-10 16:17 52776 ----a-w- c:\users\Stef\AppData\Local\GDIPFONTCACHEV1.DAT 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\users\Default\Sjablonen 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\users\Default\Netwerkprinteromgeving 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\users\Default\Mijn documenten 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\users\Default\Menu Start 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\users\Default\AppData\Local\Geschiedenis 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\programdata\Sjablonen 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\programdata\Menu Start 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\programdata\Favorieten 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\programdata\Documenten 2009-11-05 15:00 . 2009-11-05 15:00 -------- d-sh--we c:\programdata\Bureaublad 2009-11-05 15:00 . 2009-11-09 16:41 -------- d-----w- c:\windows\Debug 2009-11-05 13:26 . 2009-11-05 13:43 4096 d-----w- c:\windows\Panther 2009-11-05 13:18 . 2009-11-05 13:18 4096 d-----w- C:\Windows.old . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-11-12 16:02 . 2008-01-21 06:47 667114 ----a-w- c:\windows\system32\perfh013.dat 2009-11-12 16:02 . 2008-01-21 06:47 126648 ----a-w- c:\windows\system32\perfc013.dat 2009-11-12 15:55 . 2006-11-02 11:18 4096 d-----w- c:\program files\Windows Mail 2009-11-05 17:46 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat 2009-11-05 13:36 . 2009-11-05 13:36 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf 2009-09-14 09:44 . 2009-11-05 15:29 144896 ----a-w- c:\windows\system32\drivers\srv2.sys 2009-09-10 17:30 . 2009-11-05 15:30 213504 ----a-w- c:\windows\system32\msv1_0.dll 2009-09-10 15:21 . 2009-11-05 15:30 8147456 ----a-w- c:\windows\system32\wmploc.DLL 2009-09-10 15:21 . 2009-11-05 15:30 310784 ----a-w- c:\windows\system32\unregmp2.exe 2009-08-31 13:55 . 2009-11-05 15:31 293376 ----a-w- c:\windows\system32\psisdecd.dll 2009-08-31 13:55 . 2009-11-05 15:31 428544 ----a-w- c:\windows\system32\EncDec.dll 2009-08-27 05:22 . 2009-11-05 17:16 916480 ----a-w- c:\windows\system32\wininet.dll 2009-08-27 05:17 . 2009-11-05 17:16 71680 ----a-w- c:\windows\system32\iesetup.dll 2009-08-27 05:17 . 2009-11-05 17:16 109056 ----a-w- c:\windows\system32\iesysprep.dll 2009-08-27 03:42 . 2009-11-05 17:16 133632 ----a-w- c:\windows\system32\ieUnatt.exe 2009-08-14 17:07 . 2009-11-05 15:35 897608 ----a-w- c:\windows\system32\drivers\tcpip.sys 2009-08-14 16:29 . 2009-11-05 15:35 104960 ----a-w- c:\windows\system32\netiohlp.dll 2009-08-14 16:29 . 2009-11-05 15:35 17920 ----a-w- c:\windows\system32\netevent.dll . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920] "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856] "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184] "SoundMan"="SOUNDMAN.EXE" - c:\windows\SOUNDMAN.EXE [2009-04-14 604704] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "mixer1"=wdmaud.drv [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" R3 Ph3xIB32;Philips 713x Inbox PCI TV Card;c:\windows\System32\drivers\Ph3xIB32.sys [3/04/2007 10:43 1131136] --- Andere Services/Drivers In Geheugen --- *NewlyCreated* - PROCEXP113 *Deregistered* - PROCEXP113 . Inhoud van de 'Gedeelde Taken' map . . ------- Bijkomende Scan ------- . DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab . ************************************************************************** scannen van verborgen processen ... scannen van verborgen autostart items ... scannen van verborgen bestanden ... Scan succesvol afgerond verborgen bestanden: ************************************************************************** . Voltooingstijd: 2009-11-12 17:20 ComboFix-quarantined-files.txt 2009-11-12 16:20 ComboFix2.txt 2009-10-27 19:19 Pre-Run: 79.414.853.632 bytes beschikbaar Post-Run: 79.533.940.736 bytes beschikbaar - - End Of File - - B6543E736BD0C0D27F6B6B46105A7C34