ComboFix 10-08-06.03 - Niels 07/08/2010 12:41:02.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.32.1043.18.1023.365 [GMT 2:00] Gestart vanuit: C:\Users\Niels\Desktop\ComboFix.exe SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Users\florent\AppData\Local\Microsoft\Windows\Temporary Internet Files\TestBrowser.html C:\Users\florent\AppData\Roaming\0200000023446eb2720C.manifest C:\Users\florent\AppData\Roaming\0200000023446eb2720O.manifest C:\Users\florent\AppData\Roaming\0200000023446eb2720P.manifest C:\Users\florent\AppData\Roaming\0200000023446eb2720S.manifest C:\Windows\system32\8scMG3NBCG6OK3t.vbs . (((((((((((((((((((( Bestanden Gemaakt van 2010-07-07 to 2010-08-07 )))))))))))))))))))))))))))))) . 2010-08-07 10:55:38 . 2010-08-07 10:59:22 -------- d-----w- C:\Users\Niels\AppData\Local\temp 2010-08-07 10:55:38 . 2010-08-07 10:55:38 -------- d-----w- C:\Users\florent\AppData\Local\temp 2010-08-07 10:55:38 . 2010-08-07 10:55:38 -------- d-----w- C:\Users\Elise\AppData\Local\temp 2010-08-07 10:55:38 . 2010-08-07 10:55:38 -------- d-----w- C:\Users\Default\AppData\Local\temp 2010-08-07 10:29:21 . 2010-08-07 10:30:30 -------- d-----w- C:\32788R22FWJFW 2010-08-06 12:44:19 . 2010-08-06 12:44:25 -------- d-----w- C:\Users\Elise\AppData\Roaming\Ad Muncher 2010-08-06 12:44:19 . 2010-08-06 12:44:21 -------- d-----w- C:\Program Files\Ad Muncher 2010-08-06 12:44:19 . 2010-08-06 12:44:19 -------- d-----w- C:\ProgramData\Ad Muncher 2010-08-06 12:35:25 . 2010-08-06 12:35:25 -------- d-----w- C:\Users\Elise\AppData\Roaming\Malwarebytes 2010-08-04 18:16:11 . 1997-01-24 15:44:42 1334032 ----a-w- C:\Windows\system32\MSVBVM50.DLL 2010-08-04 18:14:21 . 2010-08-05 11:34:53 -------- d-----w- C:\Unreal 2010-08-04 18:14:17 . 1998-01-23 10:22:40 304128 ----a-w- C:\Windows\IsUninst.exe 2010-08-02 09:33:39 . 2010-08-02 10:07:05 -------- d-----w- C:\Users\Niels\AppData\Local\Google 2010-08-02 09:22:10 . 2010-08-02 09:22:17 -------- d-----w- C:\Program Files\CCleaner 2010-08-02 08:32:22 . 2010-08-02 08:32:22 -------- d-----w- C:\Downloads 2010-08-01 19:26:08 . 2010-08-01 19:26:08 -------- d-----w- C:\Users\Niels\AppData\Local\CometNetwork 2010-08-01 19:14:00 . 2010-08-01 20:09:12 655360 ----a-w- C:\alertlog.dat 2010-08-01 16:28:09 . 2010-08-07 10:26:10 -------- d-----w- C:\Users\Niels\AppData\Local\Adobe 2010-08-01 16:00:41 . 2010-08-01 16:00:41 105312 ----a-w- C:\Users\Niels\AppData\Local\GDIPFONTCACHEV1.DAT 2010-08-01 15:58:51 . 2010-08-03 13:06:32 -------- d-----w- C:\Users\Niels\temp burn 2010-08-01 13:36:24 . 2010-08-02 09:02:55 -------- d-----w- C:\Program Files\BitTorrent Turbo Accelerator 2010-07-31 18:00:38 . 2010-07-31 18:00:40 -------- d-----w- C:\Program Files\Astroburn Pro 2010-07-31 18:00:33 . 2010-07-31 18:00:35 -------- d-----w- C:\ProgramData\Astroburn Pro 2010-07-31 18:00:33 . 2010-07-31 18:00:33 -------- d-----w- C:\Users\Niels\AppData\Roaming\Astroburn Pro 2010-07-31 17:12:33 . 2010-07-31 17:12:35 -------- d-----w- C:\Program Files\Microsoft Windows 7 Upgrade Advisor 2010-07-31 17:06:04 . 2010-08-04 15:33:28 -------- d-----w- C:\Program Files\DAEMON Tools Lite 2010-07-31 14:27:47 . 2010-07-31 14:27:47 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe 2010-07-31 12:07:44 . 2010-07-31 12:07:21 38784 ----a-w- C:\Users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2010-07-31 12:07:41 . 2010-07-31 12:07:41 -------- d-----w- C:\Program Files\Common Files\Adobe AIR 2010-07-26 12:50:09 . 2010-08-01 13:52:41 -------- d-----w- C:\AdobeTemp 2010-07-26 12:28:24 . 2010-04-30 13:37:30 -------- d-----w- C:\Program Files\Adobe Photoshop CS5 Extended Edition 2010-07-26 09:55:36 . 2010-07-26 09:55:36 -------- d-----w- C:\Windows\system32\EventProviders 2010-07-26 09:41:05 . 2009-10-09 21:56:07 2048 ----a-w- C:\Windows\system32\winrsmgr.dll 2010-07-26 09:39:58 . 2009-10-09 21:56:17 12800 ----a-w- C:\Windows\system32\wsmprovhost.exe 2010-07-26 09:39:58 . 2009-10-09 21:56:13 20480 ----a-w- C:\Windows\system32\winrshost.exe 2010-07-26 09:39:58 . 2009-10-09 21:56:06 40448 ----a-w- C:\Windows\system32\winrs.exe 2010-07-26 09:39:53 . 2009-10-09 21:56:08 10240 ----a-w- C:\Windows\system32\wsmplpxy.dll 2010-07-26 09:39:53 . 2009-10-09 21:56:03 10240 ----a-w- C:\Windows\system32\winrssrv.dll 2010-07-26 09:39:38 . 2009-10-09 21:55:59 79872 ----a-w- C:\Windows\system32\wecutil.exe 2010-07-26 09:39:38 . 2009-10-09 21:55:53 54272 ----a-w- C:\Windows\system32\WsmRes.dll 2010-07-26 09:39:38 . 2009-10-09 21:55:52 146944 ----a-w- C:\Windows\system32\wecsvc.dll 2010-07-26 09:39:38 . 2009-10-09 21:55:50 81408 ----a-w- C:\Windows\system32\wevtfwd.dll 2010-07-26 09:39:38 . 2009-10-09 21:55:50 56320 ----a-w- C:\Windows\system32\wecapi.dll 2010-07-26 09:39:37 . 2009-10-09 21:56:27 41472 ----a-w- C:\Windows\system32\pwrshplugin.dll 2010-07-26 09:39:13 . 2009-08-01 06:27:37 201184 ----a-w- C:\Windows\system32\winrm.vbs 2010-07-26 09:38:57 . 2009-10-09 21:56:01 145408 ----a-w- C:\Windows\system32\WsmAuto.dll 2010-07-26 09:38:56 . 2009-10-09 21:56:17 214016 ----a-w- C:\Windows\system32\WsmWmiPl.dll 2010-07-26 09:38:55 . 2009-10-09 21:56:04 241152 ----a-w- C:\Windows\system32\winrscmd.dll 2010-07-26 09:38:54 . 2009-10-09 21:55:55 252416 ----a-w- C:\Windows\system32\WSManMigrationPlugin.dll 2010-07-26 09:38:53 . 2009-10-09 21:56:03 246272 ----a-w- C:\Windows\system32\WSManHTTPConfig.exe 2010-07-26 09:38:48 . 2009-10-09 21:56:18 1181696 ----a-w- C:\Windows\system32\WsmSvc.dll 2010-07-22 18:51:20 . 2007-10-30 07:55:14 34828 ----a-w- C:\Windows\system32\drivers\hid7906.sys 2010-07-22 18:51:11 . 2010-07-22 18:51:11 -------- d-----w- C:\Windows\USB Vibration 2010-07-22 18:49:11 . 2010-07-22 18:49:11 -------- d-----w- C:\Program Files\USB Vibration 2010-07-21 11:18:31 . 2010-07-21 11:18:31 -------- d-----w- C:\Windows\Sun 2010-07-18 20:35:01 . 2010-08-02 08:32:30 -------- d-----w- C:\Users\Niels\AppData\Roaming\BitComet 2010-07-17 20:05:13 . 2010-08-02 09:03:53 -------- d-----w- C:\Program Files\CometBird 2010-07-17 20:02:55 . 2010-07-18 00:23:35 -------- d-----w- C:\Users\Elise\AppData\Roaming\BitComet 2010-07-17 20:02:54 . 2010-08-02 09:01:11 -------- d-----w- C:\Program Files\BitComet 2010-07-16 18:42:55 . 2010-08-02 09:06:17 -------- d-----w- C:\Program Files\RAR Password Unlocker 2010-07-16 18:28:01 . 2010-07-16 18:28:01 -------- d-----w- C:\Program Files\Intelore 2010-07-14 20:37:47 . 2010-07-14 20:37:47 -------- d-----w- C:\Users\florent\AppData\Roaming\NCH Swift Sound . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-08-07 10:31:09 . 2010-04-07 13:58:54 2803 ----a-w- C:\Windows\bthservsdp.dat 2010-08-07 10:27:32 . 2010-05-12 19:17:14 -------- d-----w- C:\Program Files\Messenger_Plus_Live_Belgium 2010-08-06 12:18:21 . 2010-04-12 13:10:21 -------- d-----w- C:\Program Files\Orbitdownloader 2010-08-05 19:36:37 . 2009-12-02 12:48:18 -------- d-----w- C:\Users\Elise\AppData\Roaming\LimeWire 2010-08-05 12:06:15 . 2009-12-26 15:03:39 -------- d-----w- C:\Users\Niels\AppData\Roaming\BitTorrent 2010-08-04 15:33:24 . 2010-03-21 19:22:00 691696 ----a-w- C:\Windows\system32\drivers\sptd.sys 2010-08-03 04:18:32 . 2009-11-30 16:55:01 105312 ----a-w- C:\Users\florent\AppData\Local\GDIPFONTCACHEV1.DAT 2010-08-02 18:36:36 . 2009-12-01 20:50:49 -------- d-----w- C:\ProgramData\lx_cats 2010-08-02 17:19:44 . 2009-11-30 17:56:32 105312 ----a-w- C:\Users\Elise\AppData\Local\GDIPFONTCACHEV1.DAT 2010-08-02 10:29:27 . 2010-06-05 20:27:09 -------- d-----w- C:\Program Files\Malwarebytes' Anti-Malware 2010-08-02 10:29:27 . 2009-12-07 16:58:56 -------- d-----w- C:\Program Files\Google 2010-08-02 09:33:39 . 2009-12-07 16:59:33 -------- d-----w- C:\Program Files\Common Files\PX Storage Engine 2010-08-02 09:29:48 . 2010-05-11 18:01:51 -------- d-----w- C:\ProgramData\Skype 2010-08-02 09:25:26 . 2009-12-19 17:15:28 -------- d-----w- C:\Program Files\Uniblue 2010-08-02 09:02:40 . 2010-06-25 12:07:56 -------- d-----w- C:\Program Files\Cheat Engine 2010-08-01 16:13:33 . 2010-06-29 11:30:07 2516 --sha-w- C:\ProgramData\KGyGaAvL.sys 2010-08-01 16:13:33 . 2010-06-29 11:30:07 2516 --sha-w- C:\ProgramData\KGyGaAvL.sys 2010-08-01 13:19:30 . 2010-04-14 11:23:13 892896 ----a-w- C:\Windows\system32\drivers\tcpip.sys 2010-07-31 12:13:31 . 2009-12-07 17:01:26 -------- d-----w- C:\Program Files\Common Files\Adobe 2010-07-31 12:07:21 . 2010-07-01 09:23:32 38784 ----a-w- C:\Users\Niels\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2010-07-26 09:22:39 . 2010-01-13 12:57:06 -------- d-----w- C:\Program Files\Notepad++ 2010-07-26 01:59:15 . 2010-05-11 18:02:59 -------- d-----w- C:\Users\florent\AppData\Roaming\Skype 2010-07-26 01:01:47 . 2009-12-01 18:41:03 1 ----a-w- C:\Users\florent\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys 2010-07-22 18:50:47 . 2009-11-30 17:45:40 -------- d--h--w- C:\Program Files\InstallShield Installation Information 2010-07-15 19:15:39 . 2010-04-16 18:21:18 -------- d-----w- C:\ProgramData\FLEXnet 2010-07-14 19:19:31 . 2006-11-02 11:18:33 -------- d-----w- C:\Program Files\Windows Mail 2010-07-14 19:09:21 . 2010-01-13 15:05:24 -------- d-----w- C:\ProgramData\Microsoft Help 2010-07-13 13:25:12 . 2009-12-26 13:44:42 41256 ----a-w- C:\Windows\system32\drivers\fsbts.sys 2010-07-02 20:47:53 . 2010-07-02 20:47:53 107888 ----a-w- C:\Windows\system32\CmdLineExt.dll 2010-07-02 07:33:30 . 2009-12-03 17:36:30 -------- d-----w- C:\Users\florent\AppData\Roaming\Orbit 2010-06-30 18:37:40 . 2010-06-30 18:37:40 686167 ----a-w- C:\ProgramData\SPLCEE4.tmp 2010-06-29 13:10:05 . 2010-06-29 11:30:09 88 --sh--r- C:\ProgramData\C2C5BD61E4.sys 2010-06-29 13:10:05 . 2010-06-29 11:30:09 88 --sh--r- C:\ProgramData\C2C5BD61E4.sys 2010-06-29 13:09:35 . 2010-06-29 12:37:02 -------- d-----w- C:\ProgramData\Corel 2010-06-29 12:36:44 . 2010-06-29 12:36:43 441406 ----a-r- C:\Users\Niels\AppData\Roaming\Microsoft\Installer\{E3993D46-AE3F-402E-9F9D-EEBDFBEC3564}\ARPPRODUCTICON.exe 2010-06-29 12:36:22 . 2010-06-29 12:36:22 -------- d-----w- C:\Program Files\InterVideo 2010-06-29 12:36:20 . 2010-06-29 12:36:20 -------- d-----w- C:\Program Files\Common Files\Protexis 2010-06-29 12:36:20 . 2010-06-29 12:36:20 -------- d-----w- C:\Program Files\Common Files\InterVideo 2010-06-29 12:34:57 . 2010-06-29 11:26:24 -------- d-----w- C:\Program Files\Corel 2010-06-29 11:32:50 . 2010-06-18 12:56:09 -------- d-----w- C:\ProgramData\Apple Computer 2010-06-29 11:32:38 . 2010-06-29 11:30:11 -------- d-----w- C:\Users\Niels\AppData\Roaming\Corel 2010-06-29 11:31:37 . 2010-06-29 11:31:37 -------- d-----w- C:\Program Files\Common Files\xing shared 2010-06-29 11:31:30 . 2010-06-29 11:31:26 -------- d-----w- C:\Program Files\Common Files\Real 2010-06-29 11:30:49 . 2010-06-29 11:30:49 -------- d-----w- C:\Program Files\Real 2010-06-29 08:46:50 . 2010-06-29 08:46:50 -------- d-----w- C:\Users\Niels\AppData\Roaming\TuneUp Software 2010-06-29 08:46:43 . 2010-06-29 08:46:43 306432 ----a-w- C:\Windows\system32\TuneUpDefragService.exe 2010-06-29 08:46:35 . 2010-06-29 08:46:07 -------- d-----w- C:\Program Files\TuneUp Utilities 2008 2010-06-29 08:46:20 . 2010-06-29 08:46:20 -------- d-----w- C:\ProgramData\TuneUp Software 2010-06-29 08:43:49 . 2010-06-29 08:43:49 -------- d-----w- C:\Program Files\Common Files\Wise Installation Wizard 2010-06-28 15:34:29 . 2010-06-28 14:17:10 -------- d-----w- C:\Users\Niels\AppData\Roaming\DAEMON Tools Pro 2010-06-28 14:17:37 . 2010-06-28 14:17:10 -------- d-----w- C:\ProgramData\DAEMON Tools Pro 2010-06-26 22:10:43 . 2010-05-06 18:58:39 -------- d-----w- C:\Program Files\PCPitstop 2010-06-26 22:10:16 . 2010-05-06 18:59:38 -------- d-----w- C:\ProgramData\PCPitstop 2010-06-26 22:09:44 . 2009-11-30 17:45:07 -------- d-----w- C:\Program Files\Common Files\InstallShield 2010-06-26 22:05:56 . 2010-05-02 12:13:41 -------- d-----w- C:\Program Files\AVS4YOU 2010-06-24 13:36:00 . 2009-12-01 20:36:56 1 ----a-w- C:\Users\Elise\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys 2010-06-22 09:20:14 . 2010-06-22 09:20:13 -------- d-----w- C:\Program Files\SuperScan 2010-06-19 19:30:48 . 2009-12-27 23:50:03 -------- d-----w- C:\Users\Niels\AppData\Roaming\Orbit 2010-06-19 12:27:01 . 2010-06-19 12:23:46 -------- d-----w- C:\Program Files\Allok 3GP PSP MP4 iPod Video Converter 2010-06-19 09:44:39 . 2010-06-19 09:44:31 -------- d-----w- C:\Program Files\WinAVI MP4 Converter 2010-06-18 21:29:33 . 2009-12-04 13:25:53 -------- d-----w- C:\Program Files\Messenger Plus! Live 2010-06-18 12:57:05 . 2010-06-18 12:56:13 -------- d-----w- C:\Program Files\QuickTime 2010-06-16 19:30:55 . 2010-06-16 19:30:55 -------- d-----w- C:\Users\Elise\AppData\Roaming\NCH Software 2010-06-16 19:29:36 . 2010-06-16 19:29:36 -------- d-----w- C:\Users\Elise\AppData\Roaming\NCH Swift Sound 2010-06-08 17:43:42 . 2010-06-08 17:41:57 0 ----a-w- C:\Users\Niels\AppData\Roaming\Uniblue\DriverScanner\_temp\ub.exe 2010-06-02 02:55:30 . 2010-07-01 13:05:34 74072 ----a-w- C:\Windows\system32\XAPOFX1_5.dll 2010-06-02 02:55:30 . 2010-07-01 13:05:33 527192 ----a-w- C:\Windows\system32\XAudio2_7.dll 2010-06-02 02:55:30 . 2010-07-01 13:05:33 239960 ----a-w- C:\Windows\system32\xactengine3_7.dll 2010-05-26 16:16:50 . 2010-06-11 20:26:41 34304 ----a-w- C:\Windows\system32\atmlib.dll 2010-05-26 14:25:15 . 2010-06-11 20:26:43 289792 ----a-w- C:\Windows\system32\atmfd.dll 2010-05-26 09:41:02 . 2010-07-01 13:05:32 2106216 ----a-w- C:\Windows\system32\D3DCompiler_43.dll 2010-05-26 09:41:02 . 2010-07-01 13:05:32 1868128 ----a-w- C:\Windows\system32\d3dcsx_43.dll 2010-05-26 09:41:02 . 2010-07-01 13:05:31 470880 ----a-w- C:\Windows\system32\d3dx10_43.dll 2010-05-26 09:41:02 . 2010-07-01 13:05:31 248672 ----a-w- C:\Windows\system32\d3dx11_43.dll 2010-05-26 09:41:02 . 2010-07-01 13:05:30 1998168 ----a-w- C:\Windows\system32\D3DX9_43.dll 2010-05-21 12:14:28 . 2009-11-30 17:48:59 221568 ------w- C:\Windows\system32\MpSigStub.exe 2010-05-11 18:05:55 . 2010-05-11 18:05:55 48 ---ha-w- C:\ProgramData\ezsidmv.dat 2007-02-21 19:49:52 . 2007-02-21 19:49:52 8192 --sha-w- C:\Windows\Users\Default\NTUSER.DAT . ------- Sigcheck ------- [-] 2010-08-01 13:19:30 . F1E670E3564EEBFE6A3F786203647953 . 892896 . . [6.0.6001.18427 (vistasp1_gdr.100218-0019)] . . C:\Windows\System32\drivers\tcpip.sys . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP] @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}" [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}] 2008-01-03 00:00:48 39472 ----a-w- C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 09:16:20 357696] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2008-01-18 22:38:40 1008184] "RtHDVCpl"="RtHDVCpl.exe" [2006-12-01 12:37:00 4186112] "F-Secure Manager"="C:\Program Files\Telenet Security Pack\Common\FSM32.EXE" [2009-08-05 15:58:50 199264] "F-Secure TNB"="C:\Program Files\Telenet Security Pack\FSGUI\TNBUtil.exe" [2009-08-05 15:57:04 2349664] "Acer Empowering Technology Monitor"="C:\Acer\Empowering Technology\SysMonitor.exe" [2007-01-24 08:27:50 319488] "eDataSecurity Loader"="C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-01-02 23:55:48 521776] "AutoLockProcess"="C:\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe" [2007-04-09 08:52:12 143360] "Malwarebytes' Anti-Malware"="C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" [2010-04-29 13:39:32 437584] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Empowering Technology Launcher.lnk] path=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Empowering Technology Launcher.lnk backup=C:\Windows\pss\Empowering Technology Launcher.lnk.CommonStartup backupExtension=.CommonStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] 2010-04-01 09:16:20 357696 ----a-w- C:\Program Files\DAEMON Tools Lite\DTLite.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2010-08-02 10:03:03 136176 ----atw- C:\Users\Niels\AppData\Local\Google\Update\GoogleUpdate.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxdiamon] 2007-07-16 11:54:10 25264 ----a-w- C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxdimon.exe] 2007-07-16 11:54:08 434864 ----a-w- C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PAC7302_Monitor] 2007-05-18 15:25:16 323584 ----a-w- C:\Windows\PixArt\PAC7302\Monitor.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB Gamepad] 2007-05-23 15:25:40 704512 ----a-w- C:\Windows\USB Vibration\7906\USB Gamepad.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"="" "FirewallOverride"="" R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 11:16:28 130384] R3 ACSSCR;ACR38 Smart Card Reader;C:\Windows\system32\DRIVERS\a38usbxp.sys [2004-04-30 11:35:00 24832] R3 athrusb;Atheros Wireless LAN USB device driver;C:\Windows\system32\DRIVERS\athrusb.sys [2008-07-29 03:45:00 904192] R3 hid7906;MAP2A10K;C:\Windows\system32\drivers\hid7906.sys [2007-10-30 07:55:14 34828] R3 libusb0;LibUsb-Win32 - Kernel Driver 03/20/2007, 0.1.12.1;C:\Windows\system32\DRIVERS\libusb0.sys [2008-12-22 00:06:10 28672] R3 pspdisp;pspdisp;C:\Windows\system32\DRIVERS\pspdisp.sys [2008-12-25 14:24:58 3072] R3 SwitchBoard;SwitchBoard;C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 11:37:14 517096] R3 USBPNPA;USB PnP Sound Device Interface;C:\Windows\system32\drivers\CM108.sys [2007-06-28 06:18:10 1310720] R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 11:16:28 753504] R4 F-Secure Filter;F-Secure File System Filter;C:\Program Files\Telenet Security Pack\Anti-Virus\Win2K\FSfilter.sys [2009-08-05 15:56:14 39776] R4 F-Secure Recognizer;F-Secure File System Recognizer;C:\Program Files\Telenet Security Pack\Anti-Virus\Win2K\FSrec.sys [2009-08-05 15:56:14 25184] R4 sptd;sptd;C:\Windows\system32\Drivers\sptd.sys [2010-08-04 15:33:24 691696] S0 eLock2BurnerLockDriver;Disk Performance Monitor Filter Driver;C:\Windows\system32\DRIVERS\eLock2BurnerLockDriver.sys [2007-04-09 09:06:42 22824] S0 fsbts;fsbts;C:\Windows\system32\Drivers\fsbts.sys [2010-07-13 13:25:12 41256] S1 F-Secure HIPS;F-Secure HIPS Driver;C:\Program Files\Telenet Security Pack\HIPS\drivers\fshs.sys [2009-08-05 15:58:30 68064] S1 FSES;F-Secure Email Scanning Driver;C:\Windows\system32\drivers\fses.sys [2010-03-16 16:21:48 35792] S1 FSFW;F-Secure Firewall Driver;C:\Windows\system32\drivers\fsdfw.sys [2009-08-05 15:57:20 71040] S1 fsvista;F-Secure Vista Support Driver;C:\Program Files\Telenet Security Pack\Anti-Virus\minifilter\fsvista.sys [2009-08-05 15:56:12 12384] S2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe [2010-05-01 17:15:06 172032] S2 eLock2FSCTLDriver;eLock2FSCTLDriver;C:\Windows\system32\DRIVERS\eLock2FSCTLDriver.sys [2006-11-27 08:36:08 85800] S2 lxdi_device;lxdi_device;C:\Windows\system32\lxdicoms.exe [2007-06-11 09:14:52 517040] S2 lxdiCATSCustConnectService;lxdiCATSCustConnectService;C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdiserv.exe [2007-06-11 09:14:42 99248] S2 MBAMService;MBAMService;C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-04-29 13:39:34 304464] S2 regi;regi;C:\Windows\system32\drivers\regi.sys [2007-04-17 18:09:28 11032] S3 F-Secure Gatekeeper;F-Secure Gatekeeper;C:\Program Files\Telenet Security Pack\Anti-Virus\minifilter\fsgk.sys [2010-08-03 10:11:08 124072] S3 FSORSPClient;F-Secure ORSP Client;C:\Program Files\Telenet Security Pack\ORSP Client\fsorsp.exe [2010-07-16 15:10:07 57008] S3 MBAMProtector;MBAMProtector;C:\Windows\system32\drivers\mbam.sys [2010-04-29 13:39:26 20952] S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\system32\DRIVERS\SiSGB6.sys [2007-01-22 15:09:08 46592] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bthsvcs REG_MULTI_SZ BthServ HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . Inhoud van de 'Gedeelde Taken' map 2010-07-16 C:\Windows\Tasks\1-Click Maintenance.job - C:\Program Files\TuneUp Utilities 2008\OneClick.exe [2008-01-08 11:31:24 . 2008-01-08 11:31:24] 2010-08-03 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1000Core.job - C:\Users\florent\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-06 14:47:56 . 2009-12-06 14:47:55] 2010-08-07 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1000UA.job - C:\Users\florent\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-06 14:47:56 . 2009-12-06 14:47:55] 2010-08-05 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1001Core.job - C:\Users\Elise\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-02 12:31:02 . 2009-12-02 12:31:00] 2010-08-07 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1001UA.job - C:\Users\Elise\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-02 12:31:02 . 2009-12-02 12:31:00] 2010-08-07 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1002Core.job - C:\Users\Niels\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-02 10:03:33 . 2010-08-02 10:03:03] 2010-08-07 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2788455617-1628605916-1389243788-1002UA.job - C:\Users\Niels\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-02 10:03:33 . 2010-08-02 10:03:03] 2010-08-07 C:\Windows\Tasks\User_Feed_Synchronization-{2EDD2726-573D-4371-B181-EEF9C4331EB4}.job - C:\Windows\system32\msfeedssync.exe [2010-06-11 20:24:46 . 2010-05-04 04:30:19] 2010-08-07 C:\Windows\Tasks\User_Feed_Synchronization-{339D3DA2-ABA5-47E3-9345-6EFF72B924AD}.job - C:\Windows\system32\msfeedssync.exe [2010-06-11 20:24:46 . 2010-05-04 04:30:19] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://search.orbitdownloader.com IE: &Download by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll/201 IE: &Grab video by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll/204 IE: Do&wnload selected by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll/203 IE: Down&load all by Orbit - C:\Program Files\Orbitdownloader\orbitmxt.dll/202 IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 LSP: C:\Program Files\Telenet Security Pack\FSPS\program\FSLSP.DLL . - - - - ORPHANS VERWIJDERD - - - - WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{D1A1C8F1-E3D9-48DF-802F-20201061EF61} - (no file)