ComboFix 10-07-08.02 - Brian 10-07-2010 2:37.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.31.1043.18.1790.915 [GMT 2:00] Gestart vanuit: c:\users\Brian\Desktop\ComboFix.exe SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\users\Brian\AppData\Roaming\Desktopicon c:\users\Brian\AppData\Roaming\Desktopicon\eBay.ico c:\users\Brian\AppData\Roaming\Desktopicon\uninst.exe . (((((((((((((((((((( Bestanden Gemaakt van 2010-06-10 to 2010-07-10 )))))))))))))))))))))))))))))) . 2010-07-10 00:43 . 2010-07-10 00:43 -------- d-----w- c:\users\Brian\AppData\Local\temp 2010-07-10 00:43 . 2010-07-10 00:43 -------- d-----w- c:\users\Default\AppData\Local\temp 2010-07-10 00:30 . 2010-07-10 00:30 388096 ----a-r- c:\users\Brian\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2010-07-10 00:16 . 2010-07-10 00:16 -------- d-----w- c:\windows\LastGood.Tmp 2010-07-10 00:03 . 2010-07-10 00:03 -------- d-----w- c:\users\Brian\AppData\Roaming\Logitech 2010-07-10 00:00 . 2010-07-10 00:00 53248 ----a-r- c:\users\Brian\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe 2010-07-10 00:00 . 2010-07-10 00:00 -------- d-----w- c:\users\Brian\AppData\Roaming\Leadertech 2010-07-09 23:58 . 2008-05-02 00:38 301656 ----a-w- c:\windows\system32\BtCoreIf.dll 2010-07-09 23:58 . 2008-05-02 00:40 84496 ----a-w- c:\windows\system32\KemXML.dll 2010-07-09 23:58 . 2008-05-02 00:40 117264 ----a-w- c:\windows\system32\KemWnd.dll 2010-07-09 23:58 . 2008-05-02 00:39 145936 ----a-w- c:\windows\system32\KemUtil.dll 2010-07-09 23:58 . 2008-05-02 00:39 170512 ----a-w- c:\windows\system32\kemutb.dll 2010-07-09 23:58 . 2010-07-10 00:00 -------- d-----w- c:\program files\Common Files\LogiShrd 2010-07-09 23:57 . 2010-07-09 23:57 -------- d-----w- c:\programdata\Logitech 2010-07-09 23:57 . 2010-07-09 23:57 -------- d-----w- c:\programdata\LogiShrd 2010-07-09 23:48 . 2010-07-09 23:48 -------- d-----w- c:\users\Brian\AppData\Roaming\aignes 2010-07-09 23:29 . 2007-03-30 15:43 61440 ----a-w- c:\windows\system32\vsnpstd3.dll 2010-07-09 23:29 . 2006-09-18 12:12 843776 ----a-w- c:\windows\vsnpstd3.exe 2010-07-09 23:29 . 2006-09-18 12:12 843776 ----a-w- c:\windows\system32\vsnpstd3.exe 2010-07-09 23:29 . 2010-07-09 23:29 -------- d-----w- c:\program files\VGA USB Camera 2010-07-09 23:29 . 2007-03-30 09:12 10199296 ----a-w- c:\windows\system32\drivers\snpstd3.sys 2010-07-09 23:29 . 2006-12-27 12:33 172032 ----a-w- c:\windows\system32\rsnpstd3.dll 2010-07-09 23:29 . 2006-12-27 12:33 172032 ----a-w- c:\windows\rsnpstd3.dll 2010-07-09 23:29 . 2005-11-23 11:55 53248 ----a-w- c:\windows\system32\csnpstd3.dll 2010-07-09 23:29 . 2004-11-29 17:43 458752 ----a-w- c:\windows\amcap.exe 2010-07-09 23:09 . 2010-07-09 23:09 -------- d-----w- c:\windows\system32\ca-ES 2010-07-09 23:09 . 2010-07-09 23:09 -------- d-----w- c:\windows\system32\eu-ES 2010-07-09 23:09 . 2010-07-09 23:09 -------- d-----w- c:\windows\system32\vi-VN 2010-07-09 23:07 . 2010-07-09 23:07 -------- d-----w- c:\windows\system32\SPReview 2010-07-09 22:55 . 2009-04-10 21:28 928768 ----a-w- c:\windows\system32\scavenge.dll 2010-07-09 22:55 . 2009-04-10 21:27 57856 ----a-w- c:\windows\system32\compcln.exe 2010-07-09 22:50 . 2009-04-10 21:32 265688 ----a-w- c:\windows\system32\drivers\acpi.sys 2010-07-09 22:49 . 2009-04-10 21:28 1580544 ----a-w- c:\windows\system32\wpccpl.dll 2010-07-09 22:33 . 2010-07-09 22:33 -------- d-----w- c:\windows\system32\EventProviders 2010-07-09 22:18 . 2010-07-09 22:18 -------- d-----w- c:\programdata\Messenger Plus! 2010-07-09 22:18 . 2010-07-09 22:18 -------- d-----w- c:\programdata\Office Genuine Advantage 2010-07-09 21:34 . 2010-07-09 21:34 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help 2010-07-09 20:32 . 2010-07-10 00:07 -------- d-----w- c:\users\Brian\Tracing 2010-07-09 20:32 . 2010-07-09 23:11 -------- d-----w- c:\program files\Microsoft Silverlight 2010-07-09 20:30 . 2010-07-09 20:30 -------- d-----w- c:\program files\Microsoft 2010-07-09 20:30 . 2010-07-09 20:30 -------- d-----w- c:\program files\Windows Live SkyDrive 2010-07-09 20:30 . 2010-07-09 20:31 -------- d-----w- c:\program files\Windows Live 2010-07-09 20:27 . 2010-07-09 20:27 -------- d-----w- c:\program files\Common Files\Windows Live 2010-07-09 20:04 . 2009-11-08 08:55 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll 2010-07-09 20:04 . 2009-11-08 08:55 49472 ----a-w- c:\windows\system32\netfxperf.dll 2010-07-09 20:04 . 2009-11-08 08:55 297808 ----a-w- c:\windows\system32\mscoree.dll 2010-07-09 20:04 . 2009-11-08 08:55 295264 ----a-w- c:\windows\system32\PresentationHost.exe 2010-07-09 20:04 . 2009-11-08 08:55 1130824 ----a-w- c:\windows\system32\dfshim.dll 2010-07-09 19:47 . 2010-03-05 14:01 420352 ----a-w- c:\windows\system32\vbscript.dll 2010-07-09 19:47 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll 2010-07-09 19:39 . 2010-07-09 19:39 -------- dc-h--w- c:\programdata\{A87EB928-0C6C-4071-AEF1-59E32BAEDF1B} 2010-07-09 19:39 . 2009-10-02 17:59 3254528 -c--a-w- c:\programdata\{A87EB928-0C6C-4071-AEF1-59E32BAEDF1B}\Fences.exe 2010-07-09 19:38 . 2010-07-09 19:38 -------- d-----w- c:\users\Brian\AppData\Local\PackageAware 2010-07-09 19:27 . 2008-05-27 04:59 18904 ----a-w- c:\windows\system32\StructuredQuerySchemaTrivial.bin 2010-07-09 19:18 . 2010-07-09 19:18 -------- d-----w- c:\users\Brian\AppData\Local\Google 2010-07-09 19:18 . 2010-07-09 19:18 -------- d-----w- c:\users\Brian\AppData\Local\Apps 2010-07-09 19:18 . 2010-07-09 19:18 -------- d-----w- c:\users\Brian\AppData\Local\Deployment 2010-07-09 18:59 . 2010-07-09 18:59 -------- d-----w- c:\users\Brian\AppData\Roaming\Canon 2010-07-09 18:52 . 2010-07-09 18:53 -------- d-----w- c:\programdata\ScanSoft 2010-07-09 18:50 . 2010-07-09 18:50 -------- d-----w- c:\program files\Common Files\CANON 2010-07-09 18:49 . 2010-07-09 18:49 -------- d--h--w- c:\programdata\CanonBJ 2010-07-09 18:49 . 2007-03-18 20:00 69632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPP8S.DLL 2010-07-09 18:49 . 2007-03-18 20:00 27136 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\CNMPD8S.DLL 2010-07-09 18:48 . 2010-07-09 18:48 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information 2010-07-09 18:48 . 2007-03-18 20:00 215040 ----a-w- c:\windows\system32\CNMLM8S.DLL 2010-07-09 18:48 . 2007-03-15 05:12 188416 ----a-w- c:\windows\system32\CNC210O.DLL 2010-07-09 18:48 . 2007-03-23 07:30 1400832 ----a-w- c:\windows\system32\CNC210C.DLL 2010-07-09 18:48 . 2007-03-23 07:29 98304 ----a-w- c:\windows\system32\CNC210I.DLL 2010-07-09 18:48 . 2007-03-19 01:16 200704 ----a-w- c:\windows\system32\CNC210L.DLL 2010-07-09 18:48 . 2010-07-09 18:48 -------- d--h--w- c:\program files\CanonBJ 2010-07-09 18:47 . 2010-07-09 18:56 -------- d-----w- c:\program files\Canon 2010-07-09 18:41 . 2010-02-12 10:48 293376 ----a-w- c:\windows\system32\browserchoice.exe 2010-07-09 18:24 . 2010-02-20 23:06 24064 ----a-w- c:\windows\system32\nshhttp.dll 2010-07-09 18:24 . 2010-02-20 20:53 411648 ----a-w- c:\windows\system32\drivers\http.sys 2010-07-09 18:24 . 2010-02-20 23:05 30720 ----a-w- c:\windows\system32\httpapi.dll 2010-07-09 18:23 . 2010-07-09 18:23 -------- d-----w- c:\program files\MSXML 4.0 2010-07-09 17:51 . 2009-06-15 14:54 175104 ----a-w- c:\windows\system32\wdigest.dll 2010-07-09 17:51 . 2009-06-15 14:52 1259008 ----a-w- c:\windows\system32\lsasrv.dll 2010-07-09 17:51 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll 2010-07-09 17:51 . 2009-06-15 23:15 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2010-07-09 17:51 . 2009-06-15 14:53 72704 ----a-w- c:\windows\system32\secur32.dll 2010-07-09 17:51 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll 2010-07-09 17:51 . 2009-06-15 12:48 9728 ----a-w- c:\windows\system32\lsass.exe 2010-07-09 17:32 . 2010-07-09 18:22 -------- d-----w- c:\program files\NVIDIA Corporation 2010-07-09 17:01 . 2010-07-09 17:01 -------- d-----w- c:\users\Brian\AppData\Roaming\Stardock 2010-07-09 17:01 . 2010-07-09 17:01 -------- d-----w- c:\programdata\DVD Shrink 2010-07-09 16:57 . 2010-07-09 23:52 -------- d-----w- c:\users\Brian\AppData\Roaming\uTorrent 2010-07-09 16:55 . 2010-07-09 16:55 -------- d-----w- c:\users\Brian\AppData\Roaming\vlc 2010-07-09 16:53 . 2008-03-28 08:07 20992 ----a-w- c:\users\Brian\AppData\Roaming\Convivea\Bit_Che\languages\compare.exe 2010-07-09 16:53 . 2010-07-09 16:53 -------- d-----w- c:\users\Brian\AppData\Roaming\Convivea 2010-07-09 16:53 . 2009-04-10 16:40 118784 ----a-w- c:\users\Brian\AppData\Roaming\Convivea\Bit_Che\scripts\x.exe 2010-07-09 16:53 . 2008-03-28 08:02 60928 ----a-w- c:\users\Brian\AppData\Roaming\Convivea\Bit_Che\scripts\update.exe 2010-07-09 16:53 . 2007-07-11 17:43 24557 ----a-w- c:\users\Brian\AppData\Roaming\Convivea\Bit_Che\scripts\special.exe 2010-07-09 16:53 . 2003-08-19 03:06 80896 ----a-w- c:\users\Brian\AppData\Roaming\Convivea\Bit_Che\scripts\x.dll 2010-07-09 16:38 . 2009-08-14 13:48 105984 ----a-w- c:\windows\system32\netiohlp.dll 2010-07-09 16:36 . 2010-04-16 14:39 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2010-07-09 16:35 . 2010-01-29 15:40 738816 ----a-w- c:\windows\system32\inetcomm.dll 2010-07-09 16:34 . 2010-02-18 14:07 3600776 ----a-w- c:\windows\system32\ntkrnlpa.exe 2010-07-09 16:34 . 2010-02-18 14:07 3548040 ----a-w- c:\windows\system32\ntoskrnl.exe 2010-07-09 16:34 . 2010-04-05 17:01 67072 ----a-w- c:\windows\system32\asycfilt.dll 2010-07-09 16:34 . 2009-04-23 12:15 784896 ----a-w- c:\windows\system32\rpcrt4.dll 2010-07-09 16:34 . 2009-07-15 12:39 313344 ----a-w- c:\windows\system32\wmpdxm.dll 2010-07-09 16:33 . 2010-02-18 14:07 904576 ----a-w- c:\windows\system32\drivers\tcpip.sys 2010-07-09 16:33 . 2010-02-18 13:30 200704 ----a-w- c:\windows\system32\iphlpsvc.dll 2010-07-09 16:33 . 2010-02-18 11:28 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys 2010-07-09 16:33 . 2009-12-08 17:26 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys 2010-07-09 16:32 . 2009-06-04 12:07 2066432 ----a-w- c:\windows\system32\mstscax.dll 2010-07-09 16:32 . 2009-04-11 06:28 53248 ----a-w- c:\windows\system32\tsgqec.dll 2010-07-09 16:32 . 2009-04-11 06:28 136192 ----a-w- c:\windows\system32\aaclient.dll 2010-07-09 16:32 . 2009-06-10 11:42 160256 ----a-w- c:\windows\system32\wkssvc.dll 2010-07-09 16:32 . 2009-04-23 12:14 623616 ----a-w- c:\windows\system32\localspl.dll 2010-07-09 16:32 . 2009-07-17 13:54 71680 ----a-w- c:\windows\system32\atl.dll 2010-07-09 16:32 . 2010-04-23 14:13 2048 ----a-w- c:\windows\system32\tzres.dll 2010-07-09 16:29 . 2010-05-26 14:47 289792 ----a-w- c:\windows\system32\atmfd.dll 2010-07-09 16:29 . 2010-05-26 17:06 34304 ----a-w- c:\windows\system32\atmlib.dll 2010-07-09 16:29 . 2009-10-19 13:35 72704 ----a-w- c:\windows\system32\fontsub.dll 2010-07-09 16:29 . 2009-06-15 14:52 23552 ----a-w- c:\windows\system32\lpk.dll 2010-07-09 16:29 . 2009-06-15 14:51 10240 ----a-w- c:\windows\system32\dciman32.dll 2010-07-09 16:20 . 2010-06-28 20:57 38848 ----a-w- c:\windows\avastSS.scr 2010-07-09 16:15 . 2009-12-23 11:33 172032 ----a-w- c:\windows\system32\wintrust.dll 2010-07-09 16:15 . 2010-01-13 17:34 98304 ----a-w- c:\windows\system32\cabview.dll 2010-07-09 16:11 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll 2010-07-09 16:11 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe 2010-07-09 16:11 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll 2010-07-09 16:11 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-07-10 00:24 . 2008-01-21 06:47 667114 ----a-w- c:\windows\system32\perfh013.dat 2010-07-10 00:24 . 2008-01-21 06:47 126648 ----a-w- c:\windows\system32\perfc013.dat 2010-07-10 00:16 . 2010-07-10 00:16 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf 2010-07-10 00:16 . 2010-07-10 00:16 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf 2010-07-09 23:59 . 2008-05-08 19:03 -------- d-----w- c:\programdata\Microsoft Help 2010-07-09 23:57 . 2008-05-08 18:14 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration 2010-07-09 23:09 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2010-07-09 23:09 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender 2010-07-09 23:09 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat 2010-07-09 23:07 . 2008-05-08 18:23 -------- d-----w- c:\programdata\NVIDIA 2010-07-09 22:18 . 2010-07-09 15:34 70672 ----a-w- c:\users\Brian\AppData\Local\GDIPFONTCACHEV1.DAT 2010-07-09 22:14 . 2008-05-08 19:05 -------- d-----w- c:\program files\Microsoft Works 2010-07-09 18:56 . 2010-07-09 18:56 -------- d-----w- c:\programdata\CanonIJPLM 2010-07-09 18:53 . 2008-05-08 18:20 -------- d-----w- c:\program files\Common Files\InstallShield 2010-07-09 18:16 . 2010-07-09 17:37 34901 ----a-w- c:\programdata\nvModes.dat 2010-07-09 15:56 . 2008-05-08 19:13 -------- d-----w- c:\program files\Yahoo! 2010-07-09 15:55 . 2008-05-08 18:36 -------- d-----w- c:\programdata\McAfee 2010-07-09 15:54 . 2008-05-08 18:38 -------- d-----w- c:\programdata\SiteAdvisor 2010-07-09 15:34 . 2008-05-08 18:33 -------- d-----w- c:\program files\Acer 2010-05-04 05:59 . 2010-07-09 18:21 916480 ----a-w- c:\windows\system32\wininet.dll 2010-05-04 05:55 . 2010-07-09 18:21 71680 ----a-w- c:\windows\system32\iesetup.dll 2010-05-04 05:55 . 2010-07-09 18:21 109056 ----a-w- c:\windows\system32\iesysprep.dll 2010-05-04 04:31 . 2010-07-09 18:21 133632 ----a-w- c:\windows\system32\ieUnatt.exe 2010-05-01 14:13 . 2010-07-09 16:28 2037248 ----a-w- c:\windows\system32\win32k.sys 2010-04-16 20:12 . 2010-04-16 20:12 48464 ----a-w- c:\windows\system32\sirenacm.dll 2010-04-16 16:43 . 2010-07-09 16:37 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2010-04-16 16:43 . 2010-07-09 16:37 173056 ----a-w- c:\windows\AppPatch\AcXtrnal.dll 2010-04-16 16:43 . 2010-07-09 16:37 458752 ----a-w- c:\windows\AppPatch\AcSpecfc.dll 2010-04-16 16:43 . 2010-07-09 16:37 542720 ----a-w- c:\windows\AppPatch\AcLayers.dll 2010-04-16 16:43 . 2010-07-09 16:37 2159616 ----a-w- c:\windows\AppPatch\AcGenral.dll . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP] @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}" [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}] 2008-03-04 21:38 121392 ----a-w- c:\program files\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Google Update"="c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-07-09 136176] "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184] "RtHDVCpl"="RtHDVCpl.exe" [2008-03-26 5369856] "Acer Empowering Technology Monitor"="c:\program files\Acer\Empowering Technology\SysMonitor.exe" [2008-04-25 319488] "EmpoweringTechnology"="c:\program files\Acer\Empowering Technology\Framework.Launcher.exe" [2008-04-25 319488] "eDataSecurity Loader"="c:\program files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-03-04 526896] "PCMMediaSharing"="c:\program files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe" [2008-01-25 204908] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 40048] "BkupTray"="c:\program files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe" [2008-04-06 34040] "WarReg_PopUp"="c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe" [2008-01-29 303104] "avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864] "CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152] "Skytel"="Skytel.exe" [2007-11-20 1826816] "snpstd3"="c:\windows\vsnpstd3.exe" [2006-09-18 843776] "UnlockerAssistant"="d:\program files\unlocker\UnlockerAssistant.exe" [2010-03-09 15872] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 76304] c:\users\Brian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech . Productregistratie.lnk - c:\program files\Common Files\LogiShrd\eReg\Common\eReg.exe [2009-4-8 517384] c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech SetPoint.lnk - d:\program files\SetPoint\SetPoint\SetPoint.exe [2010-7-10 805392] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) [hkey_local_machine\software\microsoft\windows\currentversion\explorer\SharedTaskScheduler] "{1984DD45-52CF-49cd-AB77-18F378FEA264}"= "d:\program files\Fences\Stardock\Fences\FencesMenu.dll" [2009-10-02 128360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux1"=wdmaud.drv [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "VistaSp2"=hex(b):4e,f2,1c,91,bc,1f,cb,01 R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-04-04 131072] R3 netr73;Linksys Compact Wireless-G USB Adapter Driver for Vista;c:\windows\system32\DRIVERS\WUSB54GCx86.sys [2007-03-12 256000] S1 aswSP;aswSP; [x] S2 Acer HomeMedia Connect Service;Acer HomeMedia Connect Service;c:\program files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe [2008-01-25 269448] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256] S2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [2008-03-03 16384] S2 ETService;Empowering Technology Service;c:\program files\Acer\Empowering Technology\Service\ETService.exe [2008-04-25 24576] S2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-04-06 50424] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2008-04-22 43552] . Inhoud van de 'Gedeelde Taken' map 2010-07-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-262068592-1290992578-934002659-1000Core.job - c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe [2010-07-09 19:18] 2010-07-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-262068592-1290992578-934002659-1000UA.job - c:\users\Brian\AppData\Local\Google\Update\GoogleUpdate.exe [2010-07-09 19:18] 2010-07-09 c:\windows\Tasks\User_Feed_Synchronization-{98F2EA63-86F5-4D14-BE95-F5544EDFCB2F}.job - c:\windows\system32\msfeedssync.exe [2010-07-09 04:30] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.nl/ mStart Page = hxxp://nl.intl.acer.yahoo.com LSP: %SYSTEMROOT%\system32\nvLsp.dll . - - - - ORPHANS VERWIJDERD - - - - HKLM-Run-eRecoveryService - (no file) AddRemove-eBay Icon - c:\users\Brian\AppData\Roaming\Desktopicon\uninst.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-07-10 02:43 Windows 6.0.6002 Service Pack 2 NTFS scannen van verborgen processen ... scannen van verborgen autostart items ... scannen van verborgen bestanden ... Scan succesvol afgerond verborgen bestanden: 0 ************************************************************************** . Voltooingstijd: 2010-07-10 02:46:43 ComboFix-quarantined-files.txt 2010-07-10 00:46 Pre-Run: 121.667.883.008 bytes beschikbaar Post-Run: 121.051.320.320 bytes beschikbaar Current=1 Default=1 Failed=0 LastKnownGood=10 Sets=1,2,3,4,5,6,7,8,9,10 - - End Of File - - 92C5BA89635B24B737F734FEDAD98EB2