dimitris1983
Lid-
Items
15 -
Registratiedatum
-
Laatst bezocht
Over dimitris1983
- Verjaardag 25-10-1983
PC Specificaties
-
Besturingssysteem
Windows 7 Ultimate Sp1
dimitris1983's prestaties
-
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Het probleem is verholpen, na het deleten van een aantal bestanden in mijn program files directory, heel hartelijk dank voor de hulp kape! groeten, Dimitris. -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Helaas geeft Google chrome nog steeds de melding. -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Bij deze de combofix log ComboFix 12-07-10.01 - Gebruiker 10-07-2012 22:00:07.2.2 - x86 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.31.1043.18.3037.2005 [GMT 2:00] Gestart vanuit: c:\users\Gebruiker\Desktop\ComboFix.exe AV: AVG Internet Security 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0} FW: AVG Internet Security 2012 *Disabled* {621CC794-9486-F902-D092-0484E8EA828B} SP: AVG Internet Security 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Nieuw herstelpunt werd aangemaakt . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . Besmet exemplaar van c:\windows\system32\userinit.exe werd aangetroffen en gedesinfecteerd Hersteld exemplaar van - c:\windows\erdnt\cache\userinit.exe . . (((((((((((((((((((( Bestanden Gemaakt van 2012-06-10 to 2012-07-10 )))))))))))))))))))))))))))))) . . 2012-07-10 20:08 . 2012-07-10 20:08 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-07-10 19:13 . 2012-07-10 19:13 -------- d-----w- c:\programdata\AVG Secure Search 2012-07-10 10:36 . 2012-07-10 10:36 -------- d-----w- c:\programdata\GFI Software 2012-07-09 20:50 . 2012-07-09 20:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-07-09 20:50 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-07-09 10:20 . 2012-07-09 10:20 -------- d-----w- c:\program files\Microsoft Silverlight 2012-07-08 01:00 . 2012-07-08 01:00 -------- d-----w- c:\program files\MSXML 4.0 2012-07-08 00:19 . 2012-07-10 20:10 -------- d-----w- c:\users\Gebruiker\AppData\Local\temp 2012-07-07 00:51 . 2012-07-07 00:51 -------- d-----w- c:\users\Gebruiker\AppData\Local\Macromedia 2012-07-07 00:51 . 2012-07-07 00:51 -------- d-----w- c:\users\Gebruiker\AppData\Local\Mozilla 2012-07-07 00:50 . 2012-07-07 00:50 -------- d-----w- c:\program files\Mozilla Maintenance Service 2012-07-07 00:29 . 2012-07-07 00:29 -------- d-----w- C:\STOPzilla! 2012-07-07 00:25 . 2012-07-07 00:28 -------- d-----w- c:\users\TEMP 2012-07-07 00:13 . 2012-07-07 00:13 -------- d-----w- c:\program files\Safer Networking 2012-07-06 23:45 . 2012-07-06 23:45 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\SpeedyPC Software 2012-07-06 23:45 . 2012-07-06 23:45 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\DriverCure 2012-07-06 23:45 . 2012-07-06 23:45 -------- d-----w- c:\program files\SpeedyPC Software 2012-07-06 23:45 . 2012-07-06 23:45 -------- d-----w- c:\program files\Common Files\SpeedyPC Software 2012-07-06 23:45 . 2012-07-06 23:45 -------- d-----w- c:\programdata\SpeedyPC Software 2012-07-06 22:53 . 2012-07-06 22:53 -------- d-----w- c:\users\Gebruiker\AppData\Local\VS Revo Group 2012-07-06 22:53 . 2009-12-30 09:21 27192 ----a-w- c:\windows\system32\drivers\revoflt.sys 2012-07-06 22:53 . 2012-07-06 22:53 -------- d-----w- c:\program files\VS Revo Group 2012-07-06 19:09 . 2012-07-10 10:37 -------- d-----w- c:\program files\Ad-Aware Antivirus 2012-07-06 19:06 . 2012-07-06 19:06 -------- d-----w- c:\users\Gebruiker\AppData\Local\adawarebp 2012-07-06 18:56 . 2012-07-06 18:56 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Malwarebytes 2012-07-06 18:56 . 2012-07-06 18:56 -------- d-----w- c:\programdata\Malwarebytes 2012-07-06 16:43 . 2012-07-06 17:13 -------- d-----w- c:\programdata\clp 2012-07-06 16:22 . 2012-07-06 22:08 -------- d-----w- c:\program files\PC Tools Security 2012-07-06 16:18 . 2012-07-06 16:22 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\GetRightToGo 2012-07-05 14:05 . 2012-07-05 14:05 -------- d-----w- c:\program files\Perion 2012-07-04 18:57 . 2012-07-04 18:57 -------- d-----w- c:\users\Gebruiker\AppData\Local\Facebook 2012-07-04 00:53 . 2007-10-01 12:59 1769984 ----a-w- c:\windows\system32\drivers\snp2uvc.sys 2012-07-04 00:53 . 2007-09-15 07:22 371 ----a-w- c:\windows\Uninstvga.bat 2012-07-04 00:53 . 2007-09-15 07:22 372 ----a-w- c:\windows\Uninstsxga.bat 2012-07-04 00:53 . 2007-09-15 07:01 386 ----a-w- c:\windows\Uninstsxga.reg 2012-07-04 00:53 . 2007-09-15 07:01 384 ----a-w- c:\windows\Uninstvga.reg 2012-07-04 00:53 . 2007-05-09 13:16 28160 ----a-w- c:\windows\system32\drivers\sncduvc.sys 2012-07-04 00:53 . 2006-11-23 20:20 11776 ----a-w- c:\windows\DrvInst.exe 2012-07-04 00:16 . 2012-07-04 00:16 -------- d-----w- c:\windows\system32\RTCOM 2012-07-04 00:16 . 2012-07-04 00:16 -------- d-----w- c:\program files\Realtek 2012-07-04 00:16 . 2011-05-02 12:27 3296600 ----a-w- c:\windows\system32\R4EEP32A.dll 2012-07-04 00:16 . 2011-05-02 12:27 103256 ----a-w- c:\windows\system32\R4EEL32A.dll 2012-07-04 00:16 . 2011-05-02 12:27 88408 ----a-w- c:\windows\system32\R4EEA32A.dll 2012-07-04 00:16 . 2011-05-02 12:27 61272 ----a-w- c:\windows\system32\R4EEG32A.dll 2012-07-04 00:16 . 2011-05-02 12:27 345944 ----a-w- c:\windows\system32\R4EED32A.dll 2012-07-04 00:15 . 2012-07-04 00:15 -------- d-----w- c:\program files\Intel 2012-07-03 20:43 . 2012-07-03 20:43 -------- d-----w- c:\program files\FLV Toolbar 2012-07-02 23:50 . 2012-07-02 23:50 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\cookies 2012-07-02 20:49 . 2012-07-02 20:49 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Reviversoft 2012-07-02 20:49 . 2012-07-02 20:49 -------- d-----w- c:\program files\Reviversoft 2012-07-02 18:43 . 2012-06-18 01:14 6762896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{66236F71-99BB-46D5-8066-67061D8B091B}\mpengine.dll 2012-07-02 14:40 . 2012-07-04 15:37 -------- d-----w- c:\programdata\Norton 2012-07-02 11:05 . 2012-07-02 11:08 -------- d-----w- c:\program files\YourFileDownloader 2012-07-02 11:05 . 2012-07-02 11:05 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\YourFileDownloader 2012-07-02 09:34 . 2012-07-04 15:43 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Systweak 2012-07-02 09:21 . 2012-07-04 00:47 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\RadarSync 2012-07-02 09:21 . 2012-07-02 23:57 -------- d-----w- c:\program files\RadarSync 2012-07-02 09:13 . 2012-07-02 09:13 80488 ----a-w- c:\windows\system32\RtNicProp32.dll 2012-07-02 09:13 . 2012-07-02 09:13 514152 ----a-w- c:\windows\system32\drivers\Rt86win7.sys 2012-07-02 09:13 . 2012-07-02 09:13 100968 ----a-w- c:\windows\system32\RTNUninst32.dll 2012-07-02 09:06 . 2012-07-02 09:06 14344 ----a-w- c:\windows\system32\drivers\PuAcpi32.sys 2012-07-02 09:05 . 2012-07-02 09:06 -------- d-----w- c:\windows\system32\sda 2012-07-02 09:05 . 2012-07-02 09:05 9888360 ----a-w- c:\windows\system32\RtsUStoricon.dll 2012-07-02 09:05 . 2012-07-02 09:05 313960 ----a-w- c:\windows\system32\RtsUStor.dll 2012-07-02 09:05 . 2012-07-02 09:05 197224 ----a-w- c:\windows\system32\drivers\RtsUStor.sys 2012-07-02 08:52 . 2012-07-02 08:52 -------- d-----w- c:\programdata\Uniblue 2012-07-02 08:44 . 2012-07-03 23:25 -------- d-----w- c:\program files\DownloadManager 2012-07-02 06:42 . 2012-07-02 06:42 -------- d-----w- c:\users\Gebruiker\AppData\Local\Messenger_Plus_Live 2012-07-02 06:34 . 2012-07-10 18:22 -------- d-----w- c:\programdata\Messenger Plus! for Skype 2012-07-02 04:58 . 2012-07-04 01:29 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Audacity 2012-07-02 04:58 . 2012-07-02 04:58 -------- d-----w- c:\program files\Audacity 2012-07-01 23:22 . 2012-07-01 23:22 -------- d-----w- c:\program files\iPod 2012-07-01 23:22 . 2012-07-01 23:23 -------- d-----w- c:\program files\iTunes 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin7.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin6.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll 2012-07-01 23:15 . 2012-07-01 23:15 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll 2012-07-01 23:15 . 2012-07-01 23:15 -------- d-----w- c:\program files\QuickTime 2012-07-01 23:09 . 2012-07-01 23:14 -------- d-----w- c:\users\Gebruiker\AppData\Local\Apple Computer 2012-07-01 23:07 . 2012-07-01 23:07 -------- d-----w- c:\users\Gebruiker\AppData\Local\Apple 2012-07-01 23:07 . 2012-07-01 23:07 -------- d-----w- c:\program files\Apple Software Update 2012-06-28 22:28 . 2012-07-05 14:14 -------- d-----w- c:\program files\1ClickDownload 2012-06-28 01:06 . 2012-07-02 11:11 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\ApplicationData 2012-06-28 00:07 . 2012-06-28 16:16 -------- d-----w- c:\windows\system32\C2MP 2012-06-27 22:24 . 2012-06-27 22:24 -------- d-----w- c:\program files\FireArc Arcade 2012-06-26 07:08 . 2012-07-02 12:31 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\vlc 2012-06-26 07:05 . 2012-06-26 07:05 -------- d-----w- c:\program files\VideoLAN 2012-06-26 01:50 . 2012-07-06 18:19 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Windows Live Writer 2012-06-26 01:50 . 2012-06-26 01:51 -------- d-----w- c:\users\Gebruiker\AppData\Local\Windows Live Writer 2012-06-25 20:33 . 2012-06-25 20:33 -------- d-----w- c:\program files\Common Files\SNP2UVC 2012-06-25 20:33 . 2008-08-21 11:46 184320 ----a-w- c:\windows\system32\rsnp2uvc.dll 2012-06-25 20:33 . 2008-08-21 11:19 188928 ----a-w- c:\windows\FixCamera.exe 2012-06-25 20:33 . 2008-08-20 16:04 291328 ----a-w- c:\windows\system32\vsnp2uvc.dll 2012-06-25 20:33 . 2008-08-01 14:10 675840 ----a-w- c:\windows\vsnp2uvc.exe 2012-06-25 20:33 . 2007-07-04 15:28 176128 ----a-w- c:\windows\system32\csnp2uvc.dll 2012-06-25 20:33 . 2012-07-02 11:34 -------- d--h--w- c:\program files\InstallShield Installation Information 2012-06-25 20:32 . 2012-06-25 20:32 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\InstallShield 2012-06-25 17:17 . 2012-06-25 17:17 -------- d-----w- c:\users\Gebruiker\AppData\Local\Diagnostics 2012-06-24 18:49 . 2012-06-24 18:49 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Helios 2012-06-22 21:27 . 2012-06-22 21:27 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\driveridentifier 2012-06-22 21:23 . 2012-07-05 15:24 8253 ----a-w- C:\user.js 2012-06-22 07:03 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe 2012-06-22 07:03 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll 2012-06-22 07:03 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll 2012-06-22 07:03 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll 2012-06-22 07:03 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll 2012-06-22 07:03 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll 2012-06-22 07:03 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll 2012-06-22 07:03 . 2012-06-02 13:19 171904 ----a-w- c:\windows\system32\wuwebv.dll 2012-06-22 07:03 . 2012-06-02 13:12 33792 ----a-w- c:\windows\system32\wuapp.exe 2012-06-22 01:03 . 2012-06-22 01:03 -------- d-----w- c:\users\Gebruiker\AppData\Local\Application Data 2012-06-22 01:02 . 2012-06-22 01:03 -------- d-----w- c:\users\Gebruiker\AppData\Local\Mixxx 2012-06-22 00:46 . 2012-07-02 00:57 -------- d-----w- c:\programdata\FLV.com FLV Downloader 2012-06-22 00:45 . 2012-06-22 00:46 -------- d-----w- c:\program files\GreenTree Applications 2012-06-22 00:36 . 2012-06-22 00:36 -------- d-----w- c:\program files\TextPad 6 2012-06-21 16:56 . 2012-06-21 19:55 -------- d-----w- c:\programdata\FLEXnet 2012-06-21 16:52 . 2012-06-21 16:52 -------- d-----w- c:\program files\Adobe Media Player 2012-06-21 16:50 . 2012-06-21 16:50 -------- d-----w- c:\program files\Common Files\Adobe AIR 2012-06-21 16:49 . 2012-06-26 01:59 -------- d-----w- c:\users\Gebruiker\AppData\Local\Adobe 2012-06-21 16:46 . 2012-06-21 16:46 -------- d-----w- c:\program files\Common Files\Macrovision Shared 2012-06-21 03:36 . 2012-07-02 05:32 -------- d-----w- c:\program files\uTorrent 2012-06-21 03:35 . 2012-07-06 23:35 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\uTorrent . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-06-23 16:27 . 2012-05-15 20:05 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-06-23 16:27 . 2011-09-04 10:14 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-06-21 02:56 . 2011-11-04 04:12 856712 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll 2012-06-19 22:52 . 2011-03-28 16:36 19736 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2012-04-22 20:14 . 2012-04-22 20:14 3515392 ----a-w- c:\windows\system32\ffdshow.ax 2012-04-22 20:12 . 2012-04-22 20:12 4424704 ----a-w- c:\windows\system32\ffmpeg.dll 2012-04-19 02:50 . 2012-04-19 02:50 24896 ----a-w- c:\windows\system32\drivers\avgidshx.sys 2012-04-18 18:56 . 2012-04-18 18:56 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx 2012-04-18 18:56 . 2012-04-18 18:56 69632 ----a-w- c:\windows\system32\QuickTime.qts 2012-06-14 22:19 . 2012-07-07 00:50 85472 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoResolveTrack"= 1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . R1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [x] R2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x] R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2012\AVGIDSAgent.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x] R2 UMVPFSrv;UMVPFSrv;c:\program files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x] R3 AVFSFilter;AVFSFilter;c:\windows\system32\DRIVERS\avfsfilter.sys [x] R3 e.dentifier2;SmartCard Reader ABN AMRO e.dentifier2;c:\windows\system32\DRIVERS\aabed2.sys [x] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x] R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S0 AVGIDSHX;AVGIDSHX;c:\windows\system32\DRIVERS\avgidshx.sys [x] S0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx86.sys [x] S1 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwd6x.sys [x] S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx86.sys [x] S1 Avgtdix;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdix.sys [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 avgfws;AVG Firewall;c:\program files\AVG\AVG2012\avgfws.exe [x] S2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [x] S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x] S2 MsgPlusService;Messenger Plus! Service;c:\program files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe [x] S2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [x] S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdriverx.sys [x] S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\DRIVERS\avgidsfilterx.sys [x] S3 AVGIDSShim;AVGIDSShim;c:\windows\system32\DRIVERS\avgidsshimx.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x] S3 MTsensor32;PU ACPI UTILITY;c:\windows\system32\DRIVERS\PuAcpi32.sys [x] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x] . . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] WindowsMobile REG_MULTI_SZ wcescomm rapimgr LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr . Inhoud van de 'Gedeelde Taken' map . 2012-07-10 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-15 16:27] . 2012-07-10 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1806121398-1714762283-3524785201-1000Core.job - c:\users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-04 18:57] . 2012-07-10 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1806121398-1714762283-3524785201-1000UA.job - c:\users\Gebruiker\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-04 18:57] . 2012-07-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1806121398-1714762283-3524785201-1000Core.job - c:\users\Gebruiker\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-10 10:44] . 2012-07-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1806121398-1714762283-3524785201-1000UA.job - c:\users\Gebruiker\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-10 10:44] . 2012-07-07 c:\windows\Tasks\SpeedyPC Pro.job - c:\program files\SpeedyPC Software\SpeedyPC\SpeedyPC.exe [2012-01-30 22:17] . 2012-07-10 c:\windows\Tasks\SpeedyPC Registration3.job - c:\program files\Common Files\SpeedyPC Software\UUS3\UUS3.dll [2012-01-30 22:17] . 2012-07-07 c:\windows\Tasks\SpeedyPC Update Version3.job - c:\program files\Common Files\SpeedyPC Software\UUS3\SpeedyPC_Update3.exe [2012-01-30 22:17] . . ------- Bijkomende Scan ------- . uDefault_Search_URL = hxxp://www.google.com/ie uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s TCP: DhcpNameServer = 192.168.1.254 FF - ProfilePath - c:\users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\b9wuec43.default\ FF - prefs.js: keyword.URL - hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q= . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . --------------------- DLLs Geladen Onder Lopende Processen --------------------- . - - - - - - - > 'Explorer.exe'(2392) c:\program files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll . ------------------------ Andere Aktieve Processen ------------------------ . c:\progra~1\AVG\AVG2012\avgrsx.exe c:\program files\AVG\AVG2012\avgcsrvx.exe c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe c:\program files\AVG\AVG2012\avgnsx.exe c:\program files\AVG\AVG2012\avgemcx.exe c:\windows\system32\taskhost.exe c:\windows\system32\conhost.exe c:\windows\system32\DllHost.exe c:\windows\system32\sppsvc.exe c:\program files\Windows Media Player\wmpnetwk.exe . ************************************************************************** . Voltooingstijd: 2012-07-10 22:14:29 - machine werd herstart ComboFix-quarantined-files.txt 2012-07-10 20:14 ComboFix2.txt 2012-07-08 00:28 . Pre-Run: 117.301.940.224 bytes beschikbaar Post-Run: 117.413.806.080 bytes beschikbaar . - - End Of File - - 9D2269529EF8977F937C8B986D1D1D1E -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Heb ook nog maar een hijackthis log erbijgeplaatst, misschien is hier nog iets te vinden:( ben echt ten einde raad.. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:31:19, on 10-7-2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\AVG\AVG PC Tuneup\BoostSpeed.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Windows\system32\NOTEPAD.EXE C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\rundll32.exe C:\Users\Gebruiker\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Gebruiker\Desktop\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKCU\..\Run: [Google Update] "C:\Users\Gebruiker\AppData\Local\Google\Update\GoogleUpdate.exe" /c O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Unknown owner - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (file missing) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Messenger Plus! Service (MsgPlusService) - Yuna Software - C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: UMVPFSrv - Unknown owner - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (file missing) O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- End of file - 5639 bytes -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Heb diverse sleutels van incredimail gevonden in het register en gedelete..., daarna Chrome opnieuw geinstalleerd... opgestart... en nog steeds verschijnt als startpagina MyStart by IncrediBar.com Het is ongelofelijk! alle zoekresultaten.. zowel mystart als Incredibar... mystart.incredibar mystart.incredibar.com, als zovel de volledige string MyStart by IncrediBar.com is niet te vinden in het register.. wat zou het toch kunnen zijn., heb ook de coockies allemaal weggegooid. Heb na installeren van Chrome een nieuwe ADW Log gemaakt, misschien is hier nog wat aan te zien.. wat zou het toch kunnen zijn Gr Dimitris. # AdwCleaner v1.701 - Logfile created 07/10/2012 at 21:19:01 # Updated 02/07/2012 by Xplode # Operating system : Windows 7 Ultimate Service Pack 1 (32 bits) # User : Gebruiker - DWAYNE_LAP # Running from : C:\Users\Gebruiker\Desktop\adwcleaner.exe # Option [search] ***** [services] ***** ***** [Files / Folders] ***** Folder Found : C:\ProgramData\AVG Secure Search Folder Found : C:\Program Files\Common Files\AVG Secure Search ***** [Registry] ***** ***** [Registre - GUID] ***** ***** [internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Mozilla Firefox v13.0.1 (nl) Profile name : default File : C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\b9wuec43.default\prefs.js [OK] File is clean. -\\ Google Chrome v20.0.1132.47 File : C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[R1].txt - [6789 octets] - [07/07/2012 01:06:12] AdwCleaner[R2].txt - [6849 octets] - [07/07/2012 01:06:20] AdwCleaner[R3].txt - [6909 octets] - [07/07/2012 01:06:49] AdwCleaner[s1].txt - [7147 octets] - [07/07/2012 01:07:32] AdwCleaner[R4].txt - [5183 octets] - [10/07/2012 12:16:11] AdwCleaner[R5].txt - [5243 octets] - [10/07/2012 12:18:38] AdwCleaner[s2].txt - [5410 octets] - [10/07/2012 12:18:49] AdwCleaner[R6].txt - [1521 octets] - [10/07/2012 12:21:33] AdwCleaner[s3].txt - [1591 octets] - [10/07/2012 12:21:53] AdwCleaner[R7].txt - [1496 octets] - [10/07/2012 12:39:51] AdwCleaner[s4].txt - [1563 octets] - [10/07/2012 12:40:03] AdwCleaner[R8].txt - [1616 octets] - [10/07/2012 12:40:48] AdwCleaner[R9].txt - [1692 octets] - [10/07/2012 21:19:01] ########## EOF - C:\AdwCleaner[R9].txt - [1820 octets] ########## -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Helaas wel -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
en na herstart de volgende log.. # AdwCleaner v1.701 - Logfile created 07/10/2012 at 12:21:53 # Updated 02/07/2012 by Xplode # Operating system : Windows 7 Ultimate Service Pack 1 (32 bits) # User : Gebruiker - DWAYNE_LAP # Running from : C:\Users\Gebruiker\Desktop\adwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** Deleted on reboot : C:\ProgramData\AVG Secure Search Deleted on reboot : C:\Program Files\Common Files\AVG Secure Search ***** [Registry] ***** ***** [Registre - GUID] ***** ***** [internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Mozilla Firefox v13.0.1 (nl) Profile name : default File : C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\b9wuec43.default\prefs.js [OK] File is clean. -\\ Google Chrome v20.0.1132.47 File : C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[R1].txt - [6789 octets] - [07/07/2012 01:06:12] AdwCleaner[R2].txt - [6849 octets] - [07/07/2012 01:06:20] AdwCleaner[R3].txt - [6909 octets] - [07/07/2012 01:06:49] AdwCleaner[s1].txt - [7147 octets] - [07/07/2012 01:07:32] AdwCleaner[R4].txt - [5183 octets] - [10/07/2012 12:16:11] AdwCleaner[R5].txt - [5243 octets] - [10/07/2012 12:18:38] AdwCleaner[s2].txt - [5410 octets] - [10/07/2012 12:18:49] AdwCleaner[R6].txt - [1521 octets] - [10/07/2012 12:21:33] AdwCleaner[s3].txt - [1462 octets] - [10/07/2012 12:21:53] ########## EOF - C:\AdwCleaner[s3].txt - [1590 octets] ########## -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Bij deze de adw log! # AdwCleaner v1.701 - Logfile created 07/10/2012 at 12:16:11 # Updated 02/07/2012 by Xplode # Operating system : Windows 7 Ultimate Service Pack 1 (32 bits) # User : Gebruiker - DWAYNE_LAP # Running from : C:\Users\Gebruiker\Desktop\adwcleaner.exe # Option [search] ***** [services] ***** ***** [Files / Folders] ***** Folder Found : C:\Users\Gebruiker\AppData\Local\AVG Secure Search Folder Found : C:\Users\Gebruiker\AppData\LocalLow\AVG Secure Search Folder Found : C:\ProgramData\AVG Secure Search Folder Found : C:\Program Files\AVG Secure Search Folder Found : C:\Program Files\Common Files\AVG Secure Search File Found : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml ***** [Registry] ***** Key Found : HKCU\Software\AVG Secure Search Key Found : HKCU\Software\IGearSettings Key Found : HKCU\Software\IM Key Found : HKCU\Software\ImInstaller Key Found : HKLM\SOFTWARE\AVG Secure Search Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1 Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1 Key Found : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol Key Found : HKLM\SOFTWARE\Classes\S Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1 Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Key Found : HKLM\SOFTWARE\Web Assistant Value Found : HKLM\SOFTWARE\Mozilla\Firefox\extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}] Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar] ***** [Registre - GUID] ***** Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Key Found : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826} Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9} Key Found : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3} Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706} ***** [internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Mozilla Firefox v13.0.1 (nl) Profile name : default File : C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\b9wuec43.default\prefs.js [OK] File is clean. -\\ Google Chrome v20.0.1132.47 File : C:\Users\Gebruiker\AppData\Local\Google\Chrome\User Data\Default\Preferences Found : "path": "C:\\Program Files\\Common Files\\AVG Secure Search\\SiteSafetyInstaller\\11.2.0\\\[...] ************************* AdwCleaner[R1].txt - [6789 octets] - [07/07/2012 01:06:12] AdwCleaner[R2].txt - [6849 octets] - [07/07/2012 01:06:20] AdwCleaner[R3].txt - [6909 octets] - [07/07/2012 01:06:49] AdwCleaner[s1].txt - [7147 octets] - [07/07/2012 01:07:32] AdwCleaner[R4].txt - [5054 octets] - [10/07/2012 12:16:11] ########## EOF - C:\AdwCleaner[R4].txt - [5182 octets] ########## -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
echter bij zoeken krijg ik de volgende urls: Google google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q=%s Yahoo! Nederland http://nl.search.yahoo.com/search?ei={inputEncoding}&fr=crmas&p=%s de rest heb ik verwijderd, al zet ik deze om naar yahoo. blijft na nieuwe tab incredibar komen. -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Hoi Ik heb gekeken, er staat geen informatie/spoor in chrome van incredibar.. Als ik een nieuwe tab open krijg ik een lege pagina (zoals ingesteld) en na klik op nieuwe tab direct weer MyStart by IncrediBar.com -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
ja helaas wel wat kan ik t beste doen? heb op vorige forms gelezen dat je t dan opnieuw zou moeten installeren, maar dit lijkt mij niet de manier echt een hardnekkig iets dit. Gr dimitris. -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Mijn excuses. heb 2x de hijack geplakt hier alsnog de mbam log: Malwarebytes Anti-Malware (-evaluatieversie-) 1.61.0.1400 Malwarebytes : Free anti-malware, anti-virus and spyware removal download Databaseversie: v2012.07.09.12 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 9.0.8112.16421 Gebruiker :: DWAYNE_LAP [administrator] Realtime bescherming: Uitgeschakeld 9-7-2012 22:51:51 mbam-log-2012-07-09 (22-51-51).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 222342 Verstreken tijd: 10 minuut/minuten, 20 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 1 HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011341191} (PUP.GamePlayLab) -> Succesvol in quarantaine geplaatst en verwijderd. Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 2 C:\Users\Gebruiker\Downloads\SoftonicDownloader_for_disc-image.exe (PUP.ToolbarDownloader) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Gebruiker\Downloads\SoftonicDownloader_for_messenger-plus.exe (PUP.ToolbarDownloader) -> Succesvol in quarantaine geplaatst en verwijderd. (einde) -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Hoi thanks voor de input Bij deze het logje van Mbam (na de fix in hijackthis) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 23:12:20, on 9-7-2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\rundll32.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\NOTEPAD.EXE C:\Users\Gebruiker\Downloads\HijackThis.exe C:\Windows\system32\SearchFilterHost.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Unknown owner - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (file missing) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Messenger Plus! Service (MsgPlusService) - Yuna Software - C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: UMVPFSrv - Unknown owner - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (file missing) O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- End of file - 4915 bytes En de scan van Hijackthis Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 23:12:20, on 9-7-2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\rundll32.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\NOTEPAD.EXE C:\Users\Gebruiker\Downloads\HijackThis.exe C:\Windows\system32\SearchFilterHost.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Unknown owner - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (file missing) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Messenger Plus! Service (MsgPlusService) - Yuna Software - C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: UMVPFSrv - Unknown owner - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (file missing) O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- End of file - 4915 bytes -
Incredibar (45)
dimitris1983 reageerde op dimitris1983's topic in Archief Bestrijding malware & virussen
Ging geloof ik iets mis Bij deze mijn logje Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:20:32, on 9-7-2012 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\AVG\AVG PC Tuneup\BoostSpeed.exe C:\Program Files\AVG\AVG2012\avgtray.exe C:\Windows\WindowsMobile\wmdc.exe C:\Program Files\AVG Secure Search\vprot.exe C:\Windows\FixCamera.exe C:\Windows\vsnp2uvc.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe C:\PROGRA~1\AD-AWA~1\AdAware.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Gebruiker\Downloads\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = ChatZum Search O2 - BHO: FLV Toolbar - {06197747-A47F-41FB-83D1-A00E9E00E276} - C:\Program Files\FLV Toolbar\IE\6.0\flvToolbarIE.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: AVG Do Not Track - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll O2 - BHO: Ad-Aware Security Toolbar - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\adawaretb\adawareDx.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing) O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll O3 - Toolbar: FLV Toolbar - {06197747-A47F-41FB-83D1-A00E9E00E276} - C:\Program Files\FLV Toolbar\IE\6.0\flvToolbarIE.dll O3 - Toolbar: Ad-Aware Security Toolbar - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\adawaretb\adawareDx.dll O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe" O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe" O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [FixCamera] C:\Windows\FixCamera.exe O4 - HKLM\..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [PlusService] C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe O4 - HKLM\..\Run: [MessengerPlusForSkypeService] "C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe" O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe" O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files\Ad-Aware Antivirus\AdAwareLauncher" --windows-run O4 - HKCU\..\Run: [Google Update] "C:\Users\Gebruiker\AppData\Local\Google\Update\GoogleUpdate.exe" /c O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - (no file) O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - (no file) O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - (no file) O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - (no file) O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - (no file) O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - (no file) O9 - Extra button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - (no file) O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - (no file) O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing) O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files\Ad-Aware Antivirus\AdAwareService.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Unknown owner - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (file missing) O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgfws.exe O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2012\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing) O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Messenger Plus! Service (MsgPlusService) - Yuna Software - C:\Program Files\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: UMVPFSrv - Unknown owner - C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (file missing) O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- End of file - 9857 bytes -
Hoi, ik heb precies hetzelfde probleem. Ik heb incredibar ook binnengekregen, heb het programma verwijderd.., en al diverse tools geprobeerd, maar tevergeefs. Het probleem doet zich alleen nog voor in Google chrome. Heb chrome al diverse malen opnieuw geinstalleerd, maar telkens bij het openen van een nieuwe tab krijg ik de starpagina van mystart incredibar. wat te doen> kan iemand mij misschien helpen? Ik gebruik windows 7 Gr dimitris.
OVER ONS
PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!