ComboFix 11-06-27.04 - pc dari botak 28-06-2011 13:59:26.2.2 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.2924.1525 [GMT 2:00] Gestart vanuit: d:\evert\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\esupport\eDriver\Software\ASUS\MultiFrame\XP32_Vista32_Vista64_Win7_32_Win7_64_1.0.0021\Desktop_.ini . . (((((((((((((((((((( Bestanden Gemaakt van 2011-05-28 to 2011-06-28 )))))))))))))))))))))))))))))) . . 2011-06-28 12:07 . 2011-06-28 12:07 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-06-22 14:59 . 2011-06-22 14:59 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-06-22 04:26 . 2011-06-22 04:26 -------- d-----w- c:\program files (x86)\Common Files\Adobe 2011-06-20 22:44 . 2011-06-20 22:44 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help 2011-06-19 16:24 . 2011-06-19 16:24 -------- d-----w- c:\program files (x86)\PhotoRazor 2011-06-19 15:48 . 2008-09-16 19:23 168448 ----a-w- c:\windows\SysWow64\unrar.dll 2011-06-19 15:48 . 2008-09-24 18:41 839680 ----a-w- c:\windows\SysWow64\lameACM.acm 2011-06-19 15:48 . 2007-09-21 00:52 118784 ----a-w- c:\windows\SysWow64\ac3acm.acm 2011-06-19 15:48 . 2008-12-11 00:33 86016 ----a-w- c:\windows\SysWow64\dpl100.dll 2011-06-19 15:48 . 2008-12-07 18:08 795648 ----a-w- c:\windows\SysWow64\xvidcore.dll 2011-06-19 15:48 . 2008-12-07 18:08 130048 ----a-w- c:\windows\SysWow64\xvidvfw.dll 2011-06-19 15:48 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\SysWow64\qt-dx331.dll 2011-06-19 15:48 . 2004-01-25 16:18 217088 ----a-w- c:\windows\SysWow64\yv12vfw.dll 2011-06-19 15:48 . 2008-11-06 16:33 684032 ----a-w- c:\windows\SysWow64\divx.dll 2011-06-19 15:48 . 2008-12-08 11:53 57344 ----a-w- c:\windows\SysWow64\ff_vfw.dll 2011-06-19 15:48 . 2011-06-19 15:48 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack 2011-06-19 12:49 . 2011-06-19 12:49 -------- d--h--w- c:\programdata\.syncID 2011-06-19 12:49 . 2011-06-19 12:49 -------- d--h--w- c:\programdata\.Syncables 2011-06-19 12:33 . 2011-06-19 12:33 -------- d-----w- c:\program files (x86)\PhotoFiltre 2011-06-19 11:18 . 2011-02-19 12:05 1139200 ----a-w- c:\windows\system32\FntCache.dll 2011-06-19 11:18 . 2011-02-19 12:04 1544192 ----a-w- c:\windows\system32\DWrite.dll 2011-06-19 11:18 . 2011-02-19 12:04 902656 ----a-w- c:\windows\system32\d2d1.dll 2011-06-19 11:18 . 2011-02-19 06:30 1076736 ----a-w- c:\windows\SysWow64\DWrite.dll 2011-06-19 11:18 . 2011-02-19 06:30 739840 ----a-w- c:\windows\SysWow64\d2d1.dll 2011-06-19 10:21 . 2011-06-19 10:21 -------- d-----w- c:\windows\system32\SPReview 2011-06-19 10:01 . 2011-06-19 10:01 -------- d-----w- c:\windows\system32\EventProviders 2011-06-19 09:55 . 2010-11-05 01:57 48976 ----a-w- c:\windows\system32\netfxperf.dll 2011-06-19 09:55 . 2010-11-05 01:57 1942856 ----a-w- c:\windows\system32\dfshim.dll 2011-06-19 09:55 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll 2011-06-19 09:55 . 2010-11-20 13:27 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2011-06-19 09:55 . 2010-11-20 11:07 59392 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys 2011-06-19 09:55 . 2010-11-20 13:27 14967808 ----a-w- c:\program files\DVD Maker\OmdBase.dll 2011-06-19 09:55 . 2010-11-20 13:27 3715584 ----a-w- c:\windows\system32\mstscax.dll 2011-06-19 09:55 . 2010-11-20 13:26 1838080 ----a-w- c:\windows\system32\d3d10warp.dll 2011-06-19 09:53 . 2010-11-20 13:27 1096704 ----a-w- c:\program files\Windows Photo Viewer\PhotoAcq.dll 2011-06-19 09:52 . 2010-11-20 13:27 666112 ----a-w- c:\windows\system32\WMVSDECD.DLL 2011-06-19 09:51 . 2010-11-20 13:33 3584 ----a-w- c:\windows\system32\drivers\nl-NL\tsusbflt.sys.mui 2011-06-19 09:51 . 2010-11-20 13:34 2560 ----a-w- c:\windows\system32\drivers\nl-NL\rdpwd.sys.mui 2011-06-19 09:51 . 2010-11-20 13:27 3072 ----a-w- c:\windows\system32\drivers\nl-NL\Dot4usb.sys.mui 2011-06-19 09:51 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll 2011-06-19 09:51 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll 2011-06-19 09:50 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll 2011-06-19 09:50 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll 2011-06-19 09:49 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll 2011-06-19 05:23 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe 2011-06-19 05:23 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe 2011-06-19 05:23 . 2011-04-22 22:15 27520 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2011-06-19 05:23 . 2011-02-24 06:15 476160 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2011-06-19 05:23 . 2011-02-24 05:38 288256 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2011-06-19 05:22 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe 2011-06-19 05:22 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe 2011-06-19 05:22 . 2011-03-12 12:08 1465344 ----a-w- c:\windows\system32\XpsPrint.dll 2011-06-19 05:22 . 2011-03-12 11:23 870912 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2011-06-19 05:22 . 2011-01-17 11:09 197120 ----a-w- c:\windows\system32\d3d10_1.dll 2011-06-19 05:22 . 2011-01-17 05:47 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll 2011-06-19 05:22 . 2010-11-20 13:26 321024 ----a-w- c:\windows\system32\d3d10_1core.dll 2011-06-19 05:22 . 2010-11-20 12:18 219136 ----a-w- c:\windows\SysWow64\d3d10_1core.dll 2011-06-19 05:22 . 2010-12-17 11:42 214016 ----a-w- c:\windows\system32\winsrv.dll 2011-06-19 05:05 . 2011-06-19 05:05 -------- d-----w- c:\windows\SysWow64\Wat 2011-06-19 05:05 . 2011-06-19 05:05 -------- d-----w- c:\windows\system32\Wat 2011-06-19 05:04 . 2011-04-09 06:58 142336 ----a-w- c:\windows\system32\poqexec.exe 2011-06-19 05:04 . 2011-04-09 05:56 123904 ----a-w- c:\windows\SysWow64\poqexec.exe 2011-06-18 22:22 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe 2011-06-18 22:19 . 2010-12-23 10:42 961024 ----a-w- c:\windows\system32\CPFilters.dll 2011-06-18 22:19 . 2010-12-23 10:42 723968 ----a-w- c:\windows\system32\EncDec.dll 2011-06-18 22:19 . 2010-12-23 05:54 642048 ----a-w- c:\windows\SysWow64\CPFilters.dll 2011-06-18 22:19 . 2010-12-23 10:42 1118720 ----a-w- c:\windows\system32\sbe.dll 2011-06-18 22:19 . 2010-12-23 10:36 259072 ----a-w- c:\windows\system32\mpg2splt.ax 2011-06-18 22:19 . 2010-12-23 05:54 850944 ----a-w- c:\windows\SysWow64\sbe.dll 2011-06-18 22:19 . 2010-12-23 05:54 534528 ----a-w- c:\windows\SysWow64\EncDec.dll 2011-06-18 22:19 . 2010-12-23 05:50 199680 ----a-w- c:\windows\SysWow64\mpg2splt.ax 2011-06-18 22:17 . 2011-04-27 02:39 289280 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys 2011-06-18 22:17 . 2011-05-03 05:29 976896 ----a-w- c:\windows\system32\inetcomm.dll 2011-06-18 22:17 . 2011-05-03 04:30 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll 2011-06-18 22:17 . 2011-04-27 02:40 158208 ----a-w- c:\windows\system32\drivers\mrxsmb.sys 2011-06-18 22:17 . 2011-04-27 02:39 128000 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys 2011-06-18 22:17 . 2011-04-29 05:55 1110528 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll 2011-06-18 22:17 . 2011-04-29 04:57 759296 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2011-06-18 22:17 . 2011-02-12 11:34 267776 ----a-w- c:\windows\system32\FXSCOVER.exe 2011-06-18 22:17 . 2010-11-20 13:25 974336 ----a-w- c:\windows\system32\WFS.exe 2011-06-18 22:17 . 2011-02-23 04:55 90624 ----a-w- c:\windows\system32\drivers\bowser.sys 2011-06-18 21:03 . 2011-06-18 21:03 -------- d-----w- c:\program files (x86)\Microsoft Works 2011-06-18 20:59 . 2011-06-20 22:45 -------- d-----w- c:\programdata\Microsoft Help 2011-06-18 20:58 . 2011-06-18 20:58 -------- d-----r- C:\MSOCache 2011-06-18 20:48 . 2011-06-18 20:48 -------- d-----w- c:\programdata\ASUS 2011-06-18 20:41 . 2011-06-28 11:54 -------- d-----w- c:\users\TEMP 2011-06-18 14:57 . 2011-06-18 14:57 -------- d-----w- c:\program files (x86)\Dnote Software 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin7.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin6.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin5.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin4.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin3.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin2.dll 2011-06-18 14:56 . 2011-06-18 14:56 143360 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin.dll 2011-06-18 14:56 . 2011-06-18 14:56 -------- d-----w- c:\program files (x86)\Common Files\Apple 2011-06-18 14:56 . 2011-06-18 14:56 -------- d-----w- c:\program files (x86)\QuickTime 2011-06-18 14:56 . 2011-06-18 14:56 -------- d-----w- c:\programdata\Apple Computer 2011-06-18 14:56 . 2011-06-18 14:56 -------- d-----w- c:\program files (x86)\Apple Software Update 2011-06-18 14:56 . 2011-06-18 14:56 -------- d-----w- c:\programdata\Apple 2011-06-18 14:55 . 2011-06-18 14:55 -------- d-----w- c:\program files (x86)\TomTom HOME 2 2011-06-18 14:54 . 2011-06-18 14:54 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2011-06-18 14:54 . 2011-06-18 14:54 -------- d-----w- c:\program files (x86)\DVDVideoSoft 2011-06-18 14:53 . 2011-06-18 14:53 -------- d-----w- c:\program files (x86)\Trend Micro 2011-06-18 14:51 . 2011-05-29 07:11 39984 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys 2011-06-18 14:51 . 2011-06-18 14:51 -------- d-----w- c:\programdata\Malwarebytes 2011-06-18 14:51 . 2011-06-28 09:42 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-06-18 14:51 . 2011-05-29 07:11 25912 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-06-18 14:51 . 2011-06-18 14:51 -------- d-----w- c:\program files\CCleaner 2011-06-18 14:47 . 2011-06-18 14:47 -------- d-----w- c:\program files (x86)\MozBackup 2011-06-18 14:46 . 2011-06-24 17:27 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird 2011-06-18 14:40 . 2011-06-18 14:40 -------- d-----w- c:\program files (x86)\Streamripper 2011-06-18 14:39 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\SysWow64\D3DX9_42.dll 2011-06-18 14:39 . 2006-09-28 14:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll 2011-06-18 14:38 . 2011-06-18 14:38 -------- d-----w- c:\program files (x86)\Winamp Detect 2011-06-18 14:38 . 2011-06-18 14:38 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine 2011-06-18 14:38 . 2011-06-18 14:39 -------- d-----w- c:\program files (x86)\Winamp 2011-06-18 10:48 . 2011-05-10 11:59 22360 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2011-06-18 10:48 . 2011-05-10 12:04 287576 ----a-w- c:\windows\system32\drivers\aswSP.sys 2011-06-18 10:48 . 2011-05-10 12:02 53592 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2011-06-18 10:48 . 2011-05-10 11:59 31064 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2011-06-18 10:48 . 2011-05-10 12:10 253888 ----a-w- c:\windows\system32\aswBoot.exe 2011-06-18 10:48 . 2011-05-10 12:04 600920 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2011-06-18 10:48 . 2011-05-10 11:59 64344 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2011-06-18 10:48 . 2011-05-10 12:10 40112 ----a-w- c:\windows\avastSS.scr 2011-06-18 10:48 . 2011-05-10 12:10 199304 ----a-w- c:\windows\SysWow64\aswBoot.exe . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-06-19 10:42 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll 2011-06-19 10:42 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll 2009-04-08 18:31 . 2009-04-08 18:31 106496 ----a-w- c:\program files (x86)\Common Files\CPInstallAction.dll 2008-08-12 05:45 . 2008-08-12 05:45 155648 ----a-w- c:\program files (x86)\Common Files\MSIactionall.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}] 2010-11-17 03:13 433648 ----a-w- c:\programdata\Partner\Partner.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1] @="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" [HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}] 2007-06-02 01:08 143360 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TomTomHOME.exe"="c:\program files (x86)\TomTom HOME 2\HOMERunner.exe" [2008-12-09 234856] "Syncables"="c:\program files (x86)\syncables\syncables desktop\Syncables.exe" [2010-04-05 370480] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "RemoteControl9"="c:\program files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe" [2009-07-06 87336] "UpdatePSTShortCut"="c:\program files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" [2010-06-24 210216] "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "Boingo Wi-Fi"="c:\program files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk" [2010-11-17 2429] "ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-05-03 170624] "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-08-12 1597440] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712] "WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2011-03-22 74752] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2008-09-06 413696] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-17 135664] R3 Partner Service;Partner Service;c:\programdata\Partner\Partner.exe [2010-11-17 332272] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x] S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240] S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x] S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x] S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x] S3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x] S3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits);c:\windows\system32\DRIVERS\JME.sys [x] . . Inhoud van de 'Gedeelde Taken' map . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-17 03:13] . 2011-06-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-17 03:13] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}] 2010-11-17 03:13 750064 ----a-w- c:\programdata\Partner\Partner64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2011-05-10 12:10 134384 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1] @="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" [HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}] 2007-06-02 00:52 159744 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B] @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}" [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O] @="{64174815-8D98-4CE6-8646-4C039977D808}" [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}] 2009-11-26 05:49 70656 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ASUS WebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe" [2010-03-16 1754448] "SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2009-11-19 307768] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-11 162328] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-11 386584] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-11 417304] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.telegraaf.nl/ uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\pc dari botak\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\users\pc dari botak\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 192.168.1.254 195.241.77.55 195.241.77.58 . - - - - ORPHANS VERWIJDERD - - - - . Toolbar-Locked - (no file) Toolbar-Locked - (no file) HKLM-Run-ETDWare - c:\program files (x86)\Elantech\ETDCtrl.exe AddRemove-K_Series_ScreenSaver_EN - c:\windows\system32\K_Series_ScreenSaver_EN.scr . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe c:\program files\AVAST Software\Avast\AvastSvc.exe c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe c:\windows\AsScrPro.exe c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe c:\windows\SysWOW64\ACEngSvr.exe c:\program files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe c:\program files (x86)\CyberLink\Shared files\RichVideo.exe c:\program files (x86)\ASUS\ControlDeck\ControlDeck.exe . ************************************************************************** . Voltooingstijd: 2011-06-28 14:16:32 - machine werd herstart ComboFix-quarantined-files.txt 2011-06-28 12:16 . Pre-Run: 50.997.030.912 bytes beschikbaar Post-Run: 50.697.564.160 bytes beschikbaar . - - End Of File - - 24845DAD57DAA301AF14191A78A4575C