ComboFix 10-04-09.06 - Brian 10-04-2010 17:10:57.4.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.31.1043.18.1790.937 [GMT 2:00] Gestart vanuit: c:\users\Brian\Desktop\ComboFix.exe SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\users\Brian\AppData\Roaming\inst.exe . (((((((((((((((((((( Bestanden Gemaakt van 2010-03-10 to 2010-04-10 )))))))))))))))))))))))))))))) . 2010-04-10 15:16 . 2010-04-10 15:16 -------- d-----w- c:\users\Brian\AppData\Local\temp 2010-04-10 15:16 . 2010-04-10 15:16 -------- d-----w- c:\users\Public\AppData\Local\temp 2010-04-10 15:16 . 2010-04-10 15:16 -------- d-----w- c:\users\Default\AppData\Local\temp 2010-04-09 23:11 . 2010-03-29 22:46 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-04-09 23:11 . 2010-03-29 22:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-04-09 20:21 . 2010-04-09 20:21 -------- d-----w- c:\users\Brian\AppData\Roaming\Symantec 2010-04-09 20:21 . 2010-04-09 20:21 -------- d-----w- c:\users\Brian\AppData\Local\Symantec_Corporation 2010-04-09 20:13 . 2007-03-28 18:49 128104 ----a-w- c:\windows\system32\drivers\WimFltr.sys 2010-04-09 20:13 . 2007-03-28 18:23 14072 ----a-w- c:\windows\system32\drivers\vproeventmonitor.sys 2010-04-09 20:13 . 2007-03-28 18:29 37864 ----a-w- c:\windows\system32\drivers\v2imount.sys 2010-04-09 20:13 . 2010-04-09 20:41 -------- dc----w- c:\windows\system32\DRVSTORE 2010-04-09 20:13 . 2007-03-28 18:29 131944 ----a-w- c:\windows\system32\drivers\symsnap.sys 2010-04-09 20:11 . 2010-04-09 20:41 -------- d-----w- c:\programdata\Symantec 2010-04-09 20:11 . 2010-04-09 20:41 -------- d-----w- c:\program files\Common Files\Symantec Shared 2010-04-09 16:51 . 2010-04-09 16:51 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys 2010-04-09 16:51 . 2010-04-09 16:51 47360 ----a-w- c:\users\Brian\AppData\Roaming\pcouffin.sys 2010-04-09 16:51 . 2010-04-10 00:01 -------- d-----w- c:\users\Brian\AppData\Roaming\Vso 2010-04-09 16:51 . 2007-03-18 19:37 65602 ----a-w- c:\windows\system32\cook3260.dll 2010-04-09 16:51 . 2006-09-29 11:26 176165 ----a-w- c:\windows\system32\drv23260.dll 2010-04-09 16:51 . 2006-09-29 11:25 208935 ----a-w- c:\windows\system32\drv33260.dll 2010-04-09 16:51 . 2006-09-29 11:24 217127 ----a-w- c:\windows\system32\drv43260.dll 2010-04-09 16:51 . 2002-12-10 01:20 102439 ----a-w- c:\windows\system32\sipr3260.dll 2010-04-09 16:51 . 2006-05-20 15:16 1184984 ----a-w- c:\windows\system32\wvc1dmod.dll 2010-04-09 16:51 . 2006-05-11 18:21 626688 ----a-w- c:\windows\system32\vp7vfw.dll 2010-04-09 16:50 . 2010-04-09 16:51 -------- d-----w- c:\program files\VSO 2010-04-09 12:10 . 2010-04-09 12:10 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2 2010-04-09 12:01 . 2010-04-09 12:01 -------- d-----w- c:\users\Brian\AppData\Local\Scansoft 2010-04-08 12:32 . 2010-04-08 12:32 -------- d-----w- c:\programdata\CanonIJPLM 2010-04-08 12:30 . 2010-04-08 12:30 -------- d-----w- c:\programdata\InstallShield 2010-04-08 12:30 . 2010-04-08 12:30 -------- d-----w- c:\users\Brian\AppData\Roaming\ScanSoft 2010-04-08 12:29 . 2010-04-08 12:30 -------- d-----w- c:\programdata\ScanSoft 2010-04-08 12:29 . 2010-04-08 12:29 -------- d-----w- c:\program files\Common Files\ScanSoft Shared 2010-04-08 12:27 . 2010-04-08 12:27 -------- d-----w- c:\program files\Common Files\CANON 2010-04-08 12:25 . 2010-04-08 12:25 -------- d--h--w- c:\programdata\CanonBJ 2010-04-08 12:25 . 2007-03-18 20:00 69632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPP8S.DLL 2010-04-08 12:25 . 2007-03-18 20:00 27136 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPD8S.DLL 2010-04-08 12:25 . 2010-04-08 12:25 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information 2010-04-08 12:23 . 2007-03-18 20:00 215040 ----a-w- c:\windows\system32\CNMLM8S.DLL 2010-04-08 12:23 . 2007-03-15 05:12 188416 ----a-w- c:\windows\system32\CNC210O.DLL 2010-04-08 12:23 . 2007-03-23 07:30 1400832 ----a-w- c:\windows\system32\CNC210C.DLL 2010-04-08 12:23 . 2007-03-23 07:29 98304 ----a-w- c:\windows\system32\CNC210I.DLL 2010-04-08 12:23 . 2007-03-19 01:16 200704 ----a-w- c:\windows\system32\CNC210L.DLL 2010-04-08 12:23 . 2010-04-08 12:23 -------- d--h--w- c:\program files\CanonBJ 2010-04-08 12:20 . 2010-04-08 12:32 -------- d-----w- c:\program files\Canon 2010-04-05 17:54 . 2009-01-16 01:42 801312 ----a-w- c:\windows\system32\nvcplui.exe 2010-04-05 17:54 . 2009-01-16 01:42 1108512 ----a-w- c:\windows\system32\nvcpluir.dll 2010-04-05 17:52 . 2008-07-07 22:45 4984 ----a-w- c:\windows\system32\drivers\nvphy.bin 2010-04-05 17:44 . 2010-03-16 06:51 600680 ----a-w- c:\windows\system32\NVUNINST.EXE 2010-04-05 17:43 . 2010-04-05 18:05 -------- d-----w- c:\program files\NVIDIA Corporation 2010-04-05 17:43 . 2010-04-05 18:04 680 ----a-w- c:\users\Brian\AppData\Local\d3d9caps.dat 2010-04-05 17:35 . 2010-04-05 17:54 -------- d-----w- c:\windows\system32\chm 2010-04-05 16:45 . 2010-04-05 16:45 509552 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtb7C1.tmp.exe 2010-04-05 16:41 . 2010-04-05 17:42 -------- d-----w- c:\program files\Google 2010-04-05 15:42 . 2010-04-05 15:42 46080 ----a-w- c:\windows\system32\TSWbPrxy.exe 2010-04-05 15:42 . 2010-04-05 15:42 44544 ----a-w- c:\windows\system32\MsRdpWebAccess.dll 2010-04-05 15:42 . 2010-04-05 15:42 36864 ----a-w- c:\windows\system32\tsgqec.dll 2010-04-05 15:42 . 2010-04-05 15:42 223232 ----a-w- c:\windows\system32\wksprt.exe 2010-04-05 15:42 . 2010-04-05 15:42 130560 ----a-w- c:\windows\system32\aaclient.dll 2010-04-05 15:42 . 2010-04-05 15:42 12800 ----a-w- c:\windows\system32\wksprtPS.dll 2010-04-05 15:42 . 2010-04-05 15:42 1033728 ----a-w- c:\windows\system32\mstsc.exe 2010-04-05 15:42 . 2010-04-05 15:42 2689024 ----a-w- c:\windows\system32\mstscax.dll 2010-04-05 11:14 . 2010-04-10 15:00 12 ----a-w- c:\windows\bthservsdp.dat 2010-04-04 18:17 . 2010-04-04 18:17 -------- d-----w- c:\program files\Microsoft 2010-04-04 18:16 . 2010-04-04 18:16 -------- d-----w- c:\program files\Windows Live SkyDrive 2010-04-04 17:37 . 2010-04-04 17:37 -------- d-----w- c:\windows\PCHEALTH 2010-04-04 16:57 . 2010-04-10 15:06 -------- d-----w- c:\users\Brian\Tracing 2010-04-04 16:55 . 2010-04-04 16:55 -------- d-----w- c:\program files\Common Files\Windows Live 2010-04-04 14:35 . 2010-04-04 14:35 -------- d-----w- c:\users\Brian\AppData\Roaming\Motive 2010-04-04 14:34 . 2010-04-04 14:34 -------- d-----w- c:\programdata\Motive 2010-04-04 14:34 . 2010-04-04 14:34 -------- d-----w- c:\program files\Common Files\Motive 2010-04-04 14:34 . 2010-04-04 14:34 -------- d-----w- c:\program files\Thuishelp 2010-04-04 13:51 . 2010-03-16 06:51 56424 ----a-w- c:\windows\system32\OpenCL.dll 2010-04-04 13:51 . 2010-03-16 06:51 4503144 ----a-w- c:\windows\system32\nvwgf2um.dll 2010-04-04 13:51 . 2010-03-16 06:51 11573768 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2010-04-04 13:51 . 2010-03-16 06:51 9386088 ----a-w- c:\windows\system32\nvd3dum.dll 2010-04-04 13:51 . 2010-03-16 06:51 4029544 ----a-w- c:\windows\system32\nvcuda.dll 2010-04-04 13:51 . 2010-03-16 06:51 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll 2010-04-04 13:51 . 2010-03-16 06:51 2009704 ----a-w- c:\windows\system32\nvcuvid.dll 2010-04-04 13:51 . 2010-03-16 06:51 15227496 ----a-w- c:\windows\system32\nvoglv32.dll 2010-04-04 13:51 . 2010-03-16 06:51 215656 ----a-w- c:\windows\system32\nvcod1910.dll 2010-04-04 13:51 . 2010-03-16 06:51 215656 ----a-w- c:\windows\system32\nvcod.dll 2010-04-04 13:51 . 2010-03-16 06:51 1296488 ----a-w- c:\windows\system32\nvapi.dll 2010-04-04 13:51 . 2010-03-16 06:51 11647592 ----a-w- c:\windows\system32\nvcompiler.dll 2010-04-04 13:50 . 2010-04-05 14:27 -------- d-----w- C:\NVIDIA 2010-04-03 23:12 . 2010-04-03 23:16 -------- d-----w- c:\users\Brian\AppData\Roaming\ImgBurn 2010-04-03 21:56 . 2010-04-03 21:56 -------- d-----w- c:\users\Brian\Option 2010-04-03 17:24 . 2010-04-05 16:46 -------- d-----w- c:\users\Brian\AppData\Local\Google 2010-04-03 16:26 . 2010-04-03 16:26 -------- d-----w- c:\program files\Common Files\Java 2010-04-03 16:26 . 2010-04-03 16:25 411368 ----a-w- c:\windows\system32\deploytk.dll 2010-04-03 16:25 . 2010-04-03 16:25 -------- d-----w- c:\program files\Java 2010-04-03 16:09 . 2010-04-03 16:09 -------- d-----w- c:\program files\QS 2010-04-03 16:09 . 2010-04-10 00:49 -------- d-----w- c:\users\Brian\AppData\Roaming\TeamViewer 2010-04-03 16:09 . 2010-04-03 16:09 -------- d-----w- c:\users\Brian\temp 2010-04-03 14:44 . 2010-04-03 14:44 -------- d-----w- c:\users\Brian\AppData\Roaming\Malwarebytes 2010-04-03 14:44 . 2010-04-03 14:44 -------- d-----w- c:\programdata\Malwarebytes 2010-04-03 14:33 . 2010-04-03 14:33 -------- d-----w- c:\program files\Windows Portable Devices 2010-04-03 14:29 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll 2010-04-03 14:29 . 2009-10-01 01:02 2537472 ----a-w- c:\windows\system32\wpdshext.dll 2010-04-03 14:29 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll 2010-04-03 14:29 . 2009-10-01 01:02 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll 2010-04-03 14:29 . 2009-10-01 01:01 546816 ----a-w- c:\windows\system32\wpd_ci.dll 2010-04-03 14:29 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll 2010-04-03 14:29 . 2009-10-01 01:01 350208 ----a-w- c:\windows\system32\WPDSp.dll 2010-04-03 14:29 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll 2010-04-03 14:29 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll 2010-04-03 14:29 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll 2010-04-03 14:29 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll 2010-04-03 14:29 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll 2010-04-03 14:27 . 2010-01-06 15:39 1696256 ----a-w- c:\windows\system32\gameux.dll 2010-04-03 14:27 . 2010-01-06 15:38 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2010-04-03 14:27 . 2010-01-06 13:30 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2010-04-03 14:20 . 2010-04-03 14:20 -------- d-----w- c:\program files\Common Files\Logitech 2010-04-03 14:20 . 2010-04-03 14:20 -------- d-----w- c:\users\Brian\AppData\Local\Downloaded Installations 2010-04-03 14:19 . 2010-04-03 14:19 -------- d-----w- c:\users\Brian\AppData\Roaming\Logitech 2010-04-03 14:19 . 2010-04-03 14:19 53248 ----a-r- c:\users\Brian\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe 2010-04-03 14:19 . 2010-04-03 14:19 -------- d-----w- c:\users\Brian\AppData\Roaming\Leadertech 2010-04-03 14:17 . 2008-05-02 00:38 301656 ----a-w- c:\windows\system32\BtCoreIf.dll 2010-04-03 14:17 . 2008-05-02 00:40 84496 ----a-w- c:\windows\system32\KemXML.dll 2010-04-03 14:17 . 2008-05-02 00:40 117264 ----a-w- c:\windows\system32\KemWnd.dll 2010-04-03 14:17 . 2008-05-02 00:39 145936 ----a-w- c:\windows\system32\KemUtil.dll 2010-04-03 14:17 . 2008-05-02 00:39 170512 ----a-w- c:\windows\system32\kemutb.dll 2010-04-03 14:17 . 2010-04-03 14:19 -------- d-----w- c:\program files\Common Files\Logishrd 2010-04-03 14:17 . 2010-04-03 14:17 -------- d-----w- c:\programdata\Logitech 2010-04-03 14:17 . 2010-04-03 14:17 -------- d-----w- c:\users\Brian\AppData\Roaming\InstallShield 2010-04-03 14:17 . 2010-04-03 14:17 -------- d-----w- c:\programdata\LogiShrd . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-04-10 15:09 . 2008-01-21 06:47 667114 ----a-w- c:\windows\system32\perfh013.dat 2010-04-10 15:09 . 2008-01-21 06:47 126648 ----a-w- c:\windows\system32\perfc013.dat 2010-04-10 15:04 . 2008-05-08 18:23 -------- d-----w- c:\programdata\NVIDIA 2010-04-10 15:04 . 2010-04-05 18:07 107685 ----a-w- c:\programdata\nvModes.dat 2010-04-08 12:29 . 2008-05-08 18:20 -------- d-----w- c:\program files\Common Files\InstallShield 2010-04-05 16:43 . 2008-05-08 18:49 -------- d-----w- c:\program files\Common Files\Adobe 2010-04-04 22:48 . 2008-05-08 18:14 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-04-04 22:01 . 2008-05-08 18:14 -------- d-----w- c:\program files\profile 2010-04-03 14:33 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat 2010-04-03 14:33 . 2010-04-03 14:33 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf 2010-04-03 14:21 . 2010-04-03 14:21 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf 2010-04-03 14:21 . 2010-04-03 14:21 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf 2010-04-03 12:46 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar 2010-04-03 12:46 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery 2010-04-03 12:46 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal 2010-04-03 12:46 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration 2010-04-03 12:46 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar 2010-04-03 12:46 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2010-04-03 12:45 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender 2010-04-02 22:39 . 2008-05-08 19:05 -------- d-----w- c:\program files\Microsoft Works 2010-04-02 22:32 . 2010-04-02 20:21 69840 ----a-w- c:\users\Brian\AppData\Local\GDIPFONTCACHEV1.DAT 2010-04-02 20:56 . 2008-05-08 19:03 -------- d-----w- c:\programdata\Microsoft Help 2010-04-02 20:45 . 2008-05-08 18:36 -------- d-----w- c:\programdata\McAfee 2010-04-02 20:29 . 2008-05-08 18:38 -------- d-----w- c:\programdata\SiteAdvisor 2010-04-02 20:21 . 2008-05-08 18:33 -------- d-----w- c:\program files\Acer 2010-03-16 06:51 . 2010-04-04 13:51 10920 ----a-w- c:\windows\system32\drivers\nvBridge.kmd 2010-03-16 06:51 . 2009-01-16 01:42 600680 ----a-w- c:\windows\system32\nvudisp.exe 2010-02-23 06:39 . 2010-04-02 21:54 916480 ----a-w- c:\windows\system32\wininet.dll 2010-02-23 06:33 . 2010-04-02 21:54 71680 ----a-w- c:\windows\system32\iesetup.dll 2010-02-23 06:33 . 2010-04-02 21:54 109056 ----a-w- c:\windows\system32\iesysprep.dll 2010-02-23 04:55 . 2010-04-02 21:54 133632 ----a-w- c:\windows\system32\ieUnatt.exe 2010-01-12 10:03 . 2010-01-12 10:03 182888 ----a-w- c:\windows\system32\nvcod189.dll . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP] @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}" [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}] 2008-03-04 21:38 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Google Update"="c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-04-03 136176] "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184] "RtHDVCpl"="RtHDVCpl.exe" [2008-03-26 5369856] "Acer Empowering Technology Monitor"="c:\program files\Acer\Empowering Technology\SysMonitor.exe" [2008-04-25 319488] "EmpoweringTechnology"="c:\program files\Acer\Empowering Technology\Framework.Launcher.exe" [2008-04-25 319488] "eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-03-04 526896] "PCMMediaSharing"="c:\program files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe" [2008-01-25 204908] "BkupTray"="c:\program files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" [2008-04-06 34040] "WarReg_PopUp"="c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe" [2008-01-29 303104] "avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000] "Skytel"="Skytel.exe" [2007-11-20 1826816] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 76304] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040] "Zesko_McciTrayApp"="c:\program files\Thuishelp\Zesko\Thuishelp.exe" [2008-04-14 1455104] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672] "CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152] "SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472] "OpwareSE4"="d:\program files\canon\OpwareSE4.exe" [2007-02-04 79400] c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech SetPoint.lnk - d:\program files\SetPoint\SetPoint.exe [2010-4-3 805392] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) [hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler] "{1984DD45-52CF-49cd-AB77-18F378FEA264}"= "d:\program files\Fences\Stardock\Fences\FencesMenu.dll" [2009-10-02 128360] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "VistaSp2"=hex(b):d5,8f,cd,4e,2c,d3,ca,01 R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-04-04 131072] R3 netr73;Linksys Compact Wireless-G USB Adapter Driver for Vista;c:\windows\system32\DRIVERS\WUSB54GCx86.sys [x] R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [x] S1 aswSP;avast! Self Protection; [x] S2 Acer HomeMedia Connect Service;Acer HomeMedia Connect Service;c:\program files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe [2008-01-25 269448] S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2009-11-24 20560] S2 aswMonFlt;aswMonFlt;c:\windows\system32\DRIVERS\aswMonFlt.sys [2009-11-24 53328] S2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [2008-03-03 16384] S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-04-25 24576] S2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-04-06 50424] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-03-16 240232] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache bthsvcs REG_MULTI_SZ BthServ . Inhoud van de 'Gedeelde Taken' map 2010-04-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1896332980-1311347652-1581007178-1000Core.job - c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe [2010-04-03 17:24] 2010-04-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1896332980-1311347652-1581007178-1000UA.job - c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe [2010-04-03 17:24] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.nl/ mStart Page = hxxp://nl.intl.acer.yahoo.com IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html Trusted Zone: ziggo.nl\thuishelp . ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-04-10 17:16 Windows 6.0.6002 Service Pack 2 NTFS scannen van verborgen processen ... scannen van verborgen autostart items ... scannen van verborgen bestanden ... Scan succesvol afgerond verborgen bestanden: 0 ************************************************************************** . Voltooingstijd: 2010-04-10 17:19:32 ComboFix-quarantined-files.txt 2010-04-10 15:19 Pre-Run: 111.687.102.464 bytes beschikbaar Post-Run: 111.801.647.104 bytes beschikbaar - - End Of File - - 31B5FAF83015682FBC1C9A6AF4D64E3A