avengernl
Lid-
Items
15 -
Registratiedatum
-
Laatst bezocht
avengernl's prestaties
-
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
Na de installatie en in gebruik name van firefox waren de meeste problemen opgelost op het rebooten na. Ik heb online iemand gevonden met hetzelfde probleem en hem werd geadviseerd op zijn drivers te updaten. Ik heb toen een programma gevonden genaamd Live update 5. Ik ben nu van alle problemen af. Nu maar hopen dat het zo blijft. -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
http://speccy.piriform.com/results/86fohskVBLDefJ0XJdZaabF - - - Updated - - - Ik heb nu firefox geinstalleerd en dat heeft veel problemen opgelost.alleen gaat de pc nog vaak uit en krijg ik de melding weer van hersteld van ernstige fout. Ook als er niks draait en de tweede x (binnen 5 minuten) terwijl ik alleen microsoft security essentials had laten scannen.. Wil jou alvast bedanken voor alle hulp zo ver. - - - Updated - - - Ik zit op het netwerk van mijn buurman via zijn router. Ik heb hier een tplink met wireless zodat ik mijn signaal kan boosten in mijn woning maar ik kan hem op geen enkele manier vinden of benaderen. Als ik 192.168.1.1 in toets kom ik in de router van mijn buurman -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ja. gisteren weer een hersteld van ernstige fout gehad. - - - Updated - - - ik heb geen invoegtoepassingen pop up meer kan dus helemaal niks downloaden. Als ik in configuratie scherm op internetopties druk gebeurd er niks -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ik heb een topic gevonden wat ik ook ervaar op dit moment. http://www.pc-helpforum.be/f184/internet-heeft-geen-volledige-balk-en-27045/ helaas geen antwoorden erbij. ook heb ik via jullie forum een browsertest gedaan. zie bijlage - - - Updated - - - ik heb een topic gevonden wat ik ook ervaar op dit moment. http://www.pc-helpforum.be/f184/internet-heeft-geen-volledige-balk-en-27045/ helaas geen antwoorden erbij. ook heb ik via jullie forum een browsertest gedaan. zie bijlage - - - Updated - - - - - - Updated - - - -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ik krijg ook geen log of andere gekopieerd hier naar toe -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ik zit nu in de veilige modus maar hier opent de link een nieuwe pagina maar is gelijk weer weg. Ook via google doet geeneen koppeling het. -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ok. Ik ben net 2 uur bezig geweest om hier terecht te komen. Zodra ik mijn gebruikersnaam en ww invulde kreeg ik blanco scherm. Keer op keer. Ook kon ik jou reactie pas lezen na drie x refreshen. Toen ik inlogde kon ik zien dat jij de laatste reactie had gepost maar stond er niet. Ik kan niks downloaden omdat mijn invoegpassingenbalk het niet doet. Ik hoor wel het geluidje dat er een invoeg toepassing is maar ik zie niks -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
Daar ben ik weer. Was een paar dagen druk met werk. Ik had gereageerd met een log van jou laatste advies en daarin vertelde ik ook dat mijn pc zo goed als hersteld was maar na refreshen was mijn reaktie niet toe gevoegd. Daarna is het helemaal mis gegaan met de pc. Mijn hele i.e is anders en muis knoppen doen het niet meer. De balken met favorieten en extra etc. zijn er niet meer. Als ik een pagina open dan staat er beneden op de balk niks.Ze zijn leeg, er staat alleen een e logo verder blauw. Bijna niks reageerde en pc ging steeds uit. ook als ik op linken klik dan gebeurd er niks. Kortom ellende. Heb een pc herstel gedaan omdat ik niks meer kon. Alles wat ik wilde openen liep vast en ging mijn pc rebooten. Ik kan nu weer een paar kleine dingen doen maar gaat niet van harte. Krijg ook steeds melding van err0r at 217 en 216. Ik weet niet wat ik nu moet doen. Ben bang dat alles wat ik nu doe het alleen maar weer erger wordt. groetjes michel - - - Updated - - - Nu snap ik er helemaal niks meer van... Ik zie nu dat er wel reacties van mij op het forum staan maar net niet (zie vorige reactie) maar zie ook dat ik geen rectie heb gehad?? klopt dat? erg vaag allemaal -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
hierbij mijn log 18:17:35.0250 3604 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35 18:17:35.0296 3604 ============================================================ 18:17:35.0296 3604 Current date / time: 2012/12/01 18:17:35.0296 18:17:35.0296 3604 SystemInfo: 18:17:35.0296 3604 18:17:35.0296 3604 OS Version: 5.1.2600 ServicePack: 3.0 18:17:35.0296 3604 Product type: Workstation 18:17:35.0296 3604 ComputerName: AVENGER 18:17:35.0296 3604 UserName: michel 18:17:35.0296 3604 Windows directory: C:\WINDOWS 18:17:35.0296 3604 System windows directory: C:\WINDOWS 18:17:35.0296 3604 Processor architecture: Intel x86 18:17:35.0296 3604 Number of processors: 2 18:17:35.0296 3604 Page size: 0x1000 18:17:35.0296 3604 Boot type: Normal boot 18:17:35.0296 3604 ============================================================ 18:17:37.0265 3604 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 18:17:37.0281 3604 Drive \Device\Harddisk2\DR5 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x6D96D6E, SectorsPerTrack: 0x22, TracksPerCylinder: 0x1, Type 'W' 18:17:37.0281 3604 ============================================================ 18:17:37.0281 3604 \Device\Harddisk0\DR0: 18:17:37.0281 3604 MBR partitions: 18:17:37.0296 3604 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xE64D4F7, BlocksNum 0xDC6B834 18:17:37.0312 3604 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1C2B8D6A, BlocksNum 0xF0B817 18:17:37.0312 3604 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xE64D479 18:17:37.0312 3604 \Device\Harddisk2\DR5: 18:17:37.0312 3604 MBR partitions: 18:17:37.0312 3604 \Device\Harddisk2\DR5\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800 18:17:37.0312 3604 ============================================================ 18:17:37.0359 3604 C: <-> \Device\Harddisk0\DR0\Partition3 18:17:37.0375 3604 D: <-> \Device\Harddisk0\DR0\Partition1 18:17:37.0390 3604 E: <-> \Device\Harddisk0\DR0\Partition2 18:17:37.0406 3604 K: <-> \Device\Harddisk2\DR5\Partition1 18:17:37.0406 3604 ============================================================ 18:17:37.0406 3604 Initialize success 18:17:37.0406 3604 ============================================================ 18:17:38.0812 3268 ============================================================ 18:17:38.0812 3268 Scan started 18:17:38.0812 3268 Mode: Manual; 18:17:38.0812 3268 ============================================================ 18:17:39.0468 3268 ================ Scan system memory ======================== 18:17:39.0468 3268 System memory - ok 18:17:39.0468 3268 ================ Scan services ============================= 18:17:39.0609 3268 [ 56F93517BB4125A154E2A50B71BFF469 ] 3xHybrid C:\WINDOWS\system32\DRIVERS\3xHybrid.sys 18:17:39.0625 3268 3xHybrid - ok 18:17:39.0671 3268 [ 31637CF039DD52468238DE4A06630D90 ] 6to4 C:\WINDOWS\System32\6to4svc.dll 18:17:39.0671 3268 6to4 - ok 18:17:39.0687 3268 Abiosdsk - ok 18:17:39.0687 3268 abp480n5 - ok 18:17:39.0734 3268 [ 02273A448BA21A7D447DAEB47810D40C ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 18:17:39.0734 3268 ACPI - ok 18:17:39.0765 3268 [ 63F517B1A87DABF3F5ACB8A7952FC1D1 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 18:17:39.0765 3268 ACPIEC - ok 18:17:39.0828 3268 [ 705F09A2A283F906738F77C8722A276C ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 18:17:39.0828 3268 AdobeFlashPlayerUpdateSvc - ok 18:17:39.0843 3268 adpu160m - ok 18:17:39.0875 3268 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 18:17:39.0875 3268 aec - ok 18:17:39.0906 3268 [ 8D155386B3B032EA7513E19F8C8F80A7 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys 18:17:39.0906 3268 AegisP - ok 18:17:39.0968 3268 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 18:17:39.0968 3268 AFD - ok 18:17:40.0046 3268 [ 34F27C7D71F1C49C7D3857F28B42F544 ] AgereSoftModem C:\WINDOWS\system32\DRIVERS\AGRSM.sys 18:17:40.0078 3268 AgereSoftModem - ok 18:17:40.0078 3268 Aha154x - ok 18:17:40.0093 3268 aic78u2 - ok 18:17:40.0109 3268 aic78xx - ok 18:17:40.0140 3268 [ 8BED67D13DCB55B3E9FF6DAC4C6D3B49 ] Alerter C:\WINDOWS\system32\alrsvc.dll 18:17:40.0140 3268 Alerter - ok 18:17:40.0156 3268 [ DAB2A89FDE5CF791161200D90C1BCB12 ] ALG C:\WINDOWS\System32\alg.exe 18:17:40.0171 3268 ALG - ok 18:17:40.0171 3268 AliIde - ok 18:17:40.0187 3268 amsint - ok 18:17:40.0296 3268 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 18:17:40.0296 3268 Apple Mobile Device - ok 18:17:40.0312 3268 AppMgmt - ok 18:17:40.0343 3268 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys 18:17:40.0343 3268 Arp1394 - ok 18:17:40.0343 3268 asc - ok 18:17:40.0359 3268 asc3350p - ok 18:17:40.0375 3268 asc3550 - ok 18:17:40.0484 3268 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 18:17:40.0484 3268 aspnet_state - ok 18:17:40.0515 3268 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 18:17:40.0515 3268 AsyncMac - ok 18:17:40.0531 3268 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 18:17:40.0546 3268 atapi - ok 18:17:40.0562 3268 Atdisk - ok 18:17:40.0578 3268 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 18:17:40.0593 3268 Atmarpc - ok 18:17:40.0625 3268 [ F10745ED3195360E69AA4A6E7768C0E0 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 18:17:40.0625 3268 AudioSrv - ok 18:17:40.0656 3268 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 18:17:40.0656 3268 audstub - ok 18:17:40.0703 3268 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 18:17:40.0703 3268 Beep - ok 18:17:40.0765 3268 [ 5C0073A51C4873430FA8B262E92183FF ] BITS C:\WINDOWS\system32\qmgr.dll 18:17:40.0906 3268 BITS - ok 18:17:40.0968 3268 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 18:17:40.0984 3268 Bonjour Service - ok 18:17:41.0031 3268 [ 139102D1865D3C1F152A25ABD16242DB ] Browser C:\WINDOWS\System32\browser.dll 18:17:41.0031 3268 Browser - ok 18:17:41.0093 3268 [ 92A964547B96D697E5E9ED43B4297F5A ] BrScnUsb C:\WINDOWS\system32\Drivers\BrScnUsb.sys 18:17:41.0093 3268 BrScnUsb - ok 18:17:41.0109 3268 [ D48C13F4A409AEE8DAFADDAC81E34557 ] BrSerIf C:\WINDOWS\system32\Drivers\BrSerIf.sys 18:17:41.0125 3268 BrSerIf - ok 18:17:41.0125 3268 [ 8FA0AC830A8312912A3AA0C0431CBA0D ] BrUsbSer C:\WINDOWS\system32\Drivers\BrUsbSer.sys 18:17:41.0125 3268 BrUsbSer - ok 18:17:41.0140 3268 catchme - ok 18:17:41.0156 3268 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 18:17:41.0156 3268 cbidf2k - ok 18:17:41.0187 3268 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 18:17:41.0187 3268 CCDECODE - ok 18:17:41.0187 3268 cd20xrnt - ok 18:17:41.0218 3268 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 18:17:41.0218 3268 Cdaudio - ok 18:17:41.0234 3268 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 18:17:41.0234 3268 Cdfs - ok 18:17:41.0250 3268 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 18:17:41.0250 3268 Cdrom - ok 18:17:41.0250 3268 Changer - ok 18:17:41.0296 3268 [ BD85400700B80FBE3D4A3412BCE74861 ] CiSvc C:\WINDOWS\system32\cisvc.exe 18:17:41.0296 3268 CiSvc - ok 18:17:41.0312 3268 [ 4FB6108130829666C8FE96B442FEAD94 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 18:17:41.0312 3268 ClipSrv - ok 18:17:41.0359 3268 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:17:41.0359 3268 clr_optimization_v2.0.50727_32 - ok 18:17:41.0421 3268 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:17:41.0421 3268 clr_optimization_v4.0.30319_32 - ok 18:17:41.0437 3268 CmdIde - ok 18:17:41.0468 3268 [ BBDD16B65F669F8D62D12FBC47289897 ] CMISTOR C:\WINDOWS\system32\DRIVERS\cmiucr.SYS 18:17:41.0468 3268 CMISTOR - ok 18:17:41.0468 3268 COMSysApp - ok 18:17:41.0500 3268 Cpqarray - ok 18:17:41.0531 3268 [ 0A9CF5D3CF63A8699F28C814EF821C7E ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 18:17:41.0531 3268 CryptSvc - ok 18:17:41.0546 3268 dac2w2k - ok 18:17:41.0546 3268 dac960nt - ok 18:17:41.0593 3268 [ D9883335CC1C17AFC3A09C8AC3E4DBE4 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 18:17:41.0609 3268 DcomLaunch - ok 18:17:41.0625 3268 [ 146AB038F5DBB366122D28444999AB2C ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 18:17:41.0625 3268 Dhcp - ok 18:17:41.0625 3268 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 18:17:41.0640 3268 Disk - ok 18:17:41.0640 3268 dmadmin - ok 18:17:41.0687 3268 [ DEC123E0C75971D0CC7A6C6A75E28429 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 18:17:41.0703 3268 dmboot - ok 18:17:41.0718 3268 [ 7268E66259722F6228C730685B201092 ] dmio C:\WINDOWS\system32\drivers\dmio.sys 18:17:41.0718 3268 dmio - ok 18:17:41.0750 3268 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 18:17:41.0750 3268 dmload - ok 18:17:41.0781 3268 [ 127DB74184E2D3D31655DA525A5EFDE1 ] dmserver C:\WINDOWS\System32\dmserver.dll 18:17:41.0781 3268 dmserver - ok 18:17:41.0796 3268 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 18:17:41.0796 3268 DMusic - ok 18:17:41.0812 3268 [ DE6CDB6CBC5C27B9085CFA6DFE8E5025 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 18:17:41.0812 3268 Dnscache - ok 18:17:41.0843 3268 [ 90EE765E1A598B578852901F74F914F1 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 18:17:41.0843 3268 Dot3svc - ok 18:17:41.0859 3268 dpti2o - ok 18:17:41.0875 3268 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 18:17:41.0875 3268 drmkaud - ok 18:17:41.0890 3268 dwshd - ok 18:17:41.0921 3268 [ E6BBDEBF7081899D161C773E8D84D015 ] EapHost C:\WINDOWS\System32\eapsvc.dll 18:17:41.0921 3268 EapHost - ok 18:17:41.0937 3268 [ 2F5C7F650B7AF178988946EE4B0D9C01 ] ERSvc C:\WINDOWS\System32\ersvc.dll 18:17:41.0937 3268 ERSvc - ok 18:17:41.0984 3268 [ 657B69389B893F440B07590C9E963F23 ] Eventlog C:\WINDOWS\system32\services.exe 18:17:41.0984 3268 Eventlog - ok 18:17:42.0031 3268 [ 97912DC0679D2DA60CCE589BBC196D72 ] EventSystem C:\WINDOWS\system32\es.dll 18:17:42.0031 3268 EventSystem - ok 18:17:42.0093 3268 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 18:17:42.0093 3268 Fastfat - ok 18:17:42.0140 3268 [ 2D5D4156292150FE571872C1B88E9299 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 18:17:42.0171 3268 FastUserSwitchingCompatibility - ok 18:17:42.0187 3268 [ 4914736E61F561DAD588AF2AAA0DF0F0 ] Fax C:\WINDOWS\system32\fxssvc.exe 18:17:42.0203 3268 Fax - ok 18:17:42.0218 3268 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys 18:17:42.0218 3268 Fdc - ok 18:17:42.0218 3268 [ 8BFFFB5AC954E19DFDB96D56512AA518 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 18:17:42.0218 3268 Fips - ok 18:17:42.0234 3268 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 18:17:42.0234 3268 Flpydisk - ok 18:17:42.0281 3268 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 18:17:42.0296 3268 FltMgr - ok 18:17:42.0359 3268 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 18:17:42.0359 3268 FontCache3.0.0.0 - ok 18:17:42.0375 3268 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 18:17:42.0375 3268 Fs_Rec - ok 18:17:42.0406 3268 [ FA8CA22E70245C81FF29C36AF56292FC ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 18:17:42.0406 3268 Ftdisk - ok 18:17:42.0437 3268 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys 18:17:42.0453 3268 GEARAspiWDM - ok 18:17:42.0453 3268 GenericMount - ok 18:17:42.0515 3268 [ 360FC9E29EBCD7CB75320E2663EBA0F2 ] getPlusHelper C:\Program Files\NOS\bin\getPlus_Helper.dll 18:17:42.0515 3268 getPlusHelper - ok 18:17:42.0546 3268 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 18:17:42.0546 3268 Gpc - ok 18:17:42.0609 3268 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 18:17:42.0609 3268 gupdate - ok 18:17:42.0609 3268 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 18:17:42.0609 3268 gupdatem - ok 18:17:42.0640 3268 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 18:17:42.0640 3268 HDAudBus - ok 18:17:42.0703 3268 [ 5327BAD9B35C33D2A64B64E4CF282ECD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 18:17:42.0703 3268 helpsvc - ok 18:17:42.0734 3268 [ 10003105AAB8D5A7DB51A9CB3D9F55A3 ] HidServ C:\WINDOWS\System32\hidserv.dll 18:17:42.0734 3268 HidServ - ok 18:17:42.0734 3268 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 18:17:42.0750 3268 HidUsb - ok 18:17:42.0781 3268 [ 1FF903FFA2DA1704E5A5443D37D8E49E ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 18:17:42.0781 3268 hkmsvc - ok 18:17:42.0796 3268 hpn - ok 18:17:42.0843 3268 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 18:17:42.0843 3268 HTTP - ok 18:17:42.0875 3268 [ 2529C7BA05242BEED0027F554D0513BB ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 18:17:42.0875 3268 HTTPFilter - ok 18:17:42.0890 3268 i2omgmt - ok 18:17:42.0890 3268 i2omp - ok 18:17:42.0906 3268 [ C43372D0682F8E32E4EC21117E089EC0 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 18:17:42.0906 3268 i8042prt - ok 18:17:42.0984 3268 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 18:17:42.0984 3268 IDriverT - ok 18:17:43.0046 3268 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 18:17:43.0062 3268 idsvc - ok 18:17:43.0093 3268 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 18:17:43.0093 3268 Imapi - ok 18:17:43.0140 3268 [ A117772F94C854DE5D1BBC1F1962B192 ] ImapiService C:\WINDOWS\system32\imapi.exe 18:17:43.0140 3268 ImapiService - ok 18:17:43.0156 3268 ini910u - ok 18:17:43.0281 3268 [ 90E1B42E49D9E91E5ACCAAAAEFA10CE8 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 18:17:43.0390 3268 IntcAzAudAddService - ok 18:17:43.0390 3268 IntelIde - ok 18:17:43.0437 3268 [ 2D2254FAC267E6B1C7865E8EBEF60C6D ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 18:17:43.0437 3268 intelppm - ok 18:17:43.0453 3268 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys 18:17:43.0453 3268 Ip6Fw - ok 18:17:43.0468 3268 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 18:17:43.0468 3268 IpFilterDriver - ok 18:17:43.0484 3268 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 18:17:43.0484 3268 IpInIp - ok 18:17:43.0515 3268 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 18:17:43.0515 3268 IpNat - ok 18:17:43.0562 3268 [ EF1C51222117B37AFBFF8F4642EA8C62 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 18:17:43.0734 3268 iPod Service - ok 18:17:43.0765 3268 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 18:17:43.0765 3268 IPSec - ok 18:17:43.0796 3268 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 18:17:43.0796 3268 IRENUM - ok 18:17:43.0828 3268 [ 0B78E1A31340E1FB1E389D5633F7C3A0 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 18:17:43.0828 3268 isapnp - ok 18:17:43.0921 3268 [ B591E761161D1EF547D76EF236EAA6A5 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe 18:17:43.0921 3268 JavaQuickStarterService - ok 18:17:43.0937 3268 [ 380397621E94B32C744E7B2CC1330390 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 18:17:43.0937 3268 Kbdclass - ok 18:17:43.0953 3268 [ B833B70FE639F01FB36CEDABE57EF031 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 18:17:43.0953 3268 kbdhid - ok 18:17:43.0984 3268 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 18:17:43.0984 3268 kmixer - ok 18:17:44.0031 3268 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 18:17:44.0031 3268 KSecDD - ok 18:17:44.0078 3268 [ C7955E7EDAEA462D04F1C4BE1D340372 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 18:17:44.0078 3268 lanmanserver - ok 18:17:44.0125 3268 [ A936A575EAF6DCE8DC08BC0C53972ADD ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 18:17:44.0125 3268 lanmanworkstation - ok 18:17:44.0140 3268 lbrtfdc - ok 18:17:44.0171 3268 [ 2479974EEECD109218FA847BE6994624 ] LckFldService C:\WINDOWS\system32\LckFldService.exe 18:17:44.0375 3268 LckFldService - ok 18:17:44.0437 3268 [ 83D8BE94E1CBCBE2EA8372DB1A95A159 ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe 18:17:44.0453 3268 LightScribeService - ok 18:17:44.0468 3268 [ 91AE20C5C2776C511994AA1308C05283 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 18:17:44.0484 3268 LmHosts - ok 18:17:44.0531 3268 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe 18:17:44.0531 3268 MDM - ok 18:17:44.0562 3268 [ C56A45A03DCA11712DE9FDF98224230B ] Messenger C:\WINDOWS\System32\msgsvc.dll 18:17:44.0578 3268 Messenger - ok 18:17:44.0593 3268 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 18:17:44.0609 3268 mnmdd - ok 18:17:44.0640 3268 [ 5B1D994DCF1895AFA27600E46A2F0FEA ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 18:17:44.0640 3268 mnmsrvc - ok 18:17:44.0671 3268 [ 8114EEAC353F549331AB73E9AF4219ED ] Modem C:\WINDOWS\system32\drivers\Modem.sys 18:17:44.0671 3268 Modem - ok 18:17:44.0687 3268 [ 1A4E2214DD63E4A876463D3427EE8261 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 18:17:44.0687 3268 Mouclass - ok 18:17:44.0718 3268 [ 18017899254E01371E1A39754D6BF98C ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 18:17:44.0718 3268 mouhid - ok 18:17:44.0734 3268 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 18:17:44.0734 3268 MountMgr - ok 18:17:44.0734 3268 [ C0F8E0C2C3C0437CF37C6781896DC3EC ] MPE C:\WINDOWS\system32\DRIVERS\MPE.sys 18:17:44.0734 3268 MPE - ok 18:17:44.0781 3268 [ EE728AF83850DDAD9A3FCAC0AAB3AD97 ] MpFilter C:\WINDOWS\system32\DRIVERS\MpFilter.sys 18:17:44.0781 3268 MpFilter - ok 18:17:44.0875 3268 [ A69630D039C38018689190234F866D77 ] MpKsl9b5ac6b6 C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{4F3388C9-7F18-4409-B033-1FC2E9984603}\MpKsl9b5ac6b6.sys 18:17:44.0875 3268 MpKsl9b5ac6b6 - ok 18:17:44.0890 3268 mraid35x - ok 18:17:44.0906 3268 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 18:17:44.0906 3268 MRxDAV - ok 18:17:44.0937 3268 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 18:17:44.0953 3268 MRxSmb - ok 18:17:44.0984 3268 [ 21EA21984D7D1AD50DB2E627020AB14C ] MSDTC C:\WINDOWS\system32\msdtc.exe 18:17:44.0984 3268 MSDTC - ok 18:17:45.0031 3268 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 18:17:45.0031 3268 Msfs - ok 18:17:45.0031 3268 MSIServer - ok 18:17:45.0062 3268 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 18:17:45.0062 3268 MSKSSRV - ok 18:17:45.0125 3268 [ E077FCA2A7E79FB9BF67D3E30B5CE593 ] MsMpSvc C:\Program Files\Microsoft Security Client\MsMpEng.exe 18:17:45.0125 3268 MsMpSvc - ok 18:17:45.0140 3268 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 18:17:45.0140 3268 MSPCLOCK - ok 18:17:45.0156 3268 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 18:17:45.0156 3268 MSPQM - ok 18:17:45.0187 3268 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 18:17:45.0187 3268 mssmbios - ok 18:17:45.0218 3268 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 18:17:45.0218 3268 MSTEE - ok 18:17:45.0234 3268 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 18:17:45.0234 3268 Mup - ok 18:17:45.0250 3268 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 18:17:45.0265 3268 NABTSFEC - ok 18:17:45.0296 3268 [ 87E394C810794D3C70CF22E8316CB23E ] napagent C:\WINDOWS\System32\qagentrt.dll 18:17:45.0312 3268 napagent - ok 18:17:45.0328 3268 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 18:17:45.0343 3268 NDIS - ok 18:17:45.0359 3268 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys 18:17:45.0359 3268 NdisIP - ok 18:17:45.0390 3268 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 18:17:45.0390 3268 NdisTapi - ok 18:17:45.0406 3268 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 18:17:45.0406 3268 Ndisuio - ok 18:17:45.0421 3268 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 18:17:45.0421 3268 NdisWan - ok 18:17:45.0437 3268 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 18:17:45.0437 3268 NDProxy - ok 18:17:45.0468 3268 [ 1352E1648213551923A0A822E441553C ] Netaapl C:\WINDOWS\system32\DRIVERS\netaapl.sys 18:17:45.0468 3268 Netaapl - ok 18:17:45.0468 3268 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 18:17:45.0468 3268 NetBIOS - ok 18:17:45.0500 3268 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 18:17:45.0500 3268 NetBT - ok 18:17:45.0531 3268 [ DC6BAE085E9B3C2F3A963ED46791FEAB ] NetDDE C:\WINDOWS\system32\netdde.exe 18:17:45.0546 3268 NetDDE - ok 18:17:45.0546 3268 [ DC6BAE085E9B3C2F3A963ED46791FEAB ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 18:17:45.0562 3268 NetDDEdsdm - ok 18:17:45.0593 3268 [ 8754210A3399D19610CE2D71E0C3E5D9 ] Netlogon C:\WINDOWS\system32\lsass.exe 18:17:45.0593 3268 Netlogon - ok 18:17:45.0625 3268 [ 5431FB616ECAE0D587C5B97D0B86CBD8 ] Netman C:\WINDOWS\System32\netman.dll 18:17:45.0640 3268 Netman - ok 18:17:45.0671 3268 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 18:17:45.0671 3268 NetTcpPortSharing - ok 18:17:45.0687 3268 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys 18:17:45.0687 3268 NIC1394 - ok 18:17:45.0718 3268 [ 4522CBE00A9E9EEE36AA82ED4B319148 ] Nla C:\WINDOWS\System32\mswsock.dll 18:17:45.0734 3268 Nla - ok 18:17:45.0765 3268 [ CFE3462A9E94A57DCD9676F6B7FE7F67 ] nmwcd C:\WINDOWS\system32\drivers\ccdcmb.sys 18:17:45.0765 3268 nmwcd - ok 18:17:45.0796 3268 [ 8F2A94F991F8C73CEC26B4B5620D1EDC ] nmwcdc C:\WINDOWS\system32\drivers\ccdcmbo.sys 18:17:45.0796 3268 nmwcdc - ok 18:17:45.0828 3268 [ 99145C5D4B6C4D6F5CE83EE6ABFFE294 ] nmwcdnsu C:\WINDOWS\system32\drivers\nmwcdnsu.sys 18:17:45.0828 3268 nmwcdnsu - ok 18:17:45.0859 3268 [ FAEE7B61C6885B091CEC1FF06DA2E1AB ] nmwcdnsuc C:\WINDOWS\system32\drivers\nmwcdnsuc.sys 18:17:45.0859 3268 nmwcdnsuc - ok 18:17:45.0890 3268 [ F44ADDBF29905CB19F52FC9FE6A0EFA1 ] nosGetPlusHelper C:\Program Files\NOS\bin\getPlus_Helper_3004.dll 18:17:45.0890 3268 nosGetPlusHelper - ok 18:17:45.0921 3268 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 18:17:45.0921 3268 Npfs - ok 18:17:45.0968 3268 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 18:17:45.0984 3268 Ntfs - ok 18:17:45.0984 3268 [ 8754210A3399D19610CE2D71E0C3E5D9 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 18:17:45.0984 3268 NtLmSsp - ok 18:17:46.0031 3268 [ AC1A78237B53044735693633F8235468 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 18:17:46.0046 3268 NtmsSvc - ok 18:17:46.0125 3268 nTuneService - ok 18:17:46.0156 3268 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 18:17:46.0156 3268 Null - ok 18:17:46.0500 3268 [ 68B8C35782FFD20973524F748234B5A9 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 18:17:46.0796 3268 nv - ok 18:17:46.0843 3268 [ 96C5900331BD17344F338D006888BAE5 ] nvoclock C:\WINDOWS\system32\DRIVERS\nvoclock.sys 18:17:46.0843 3268 nvoclock - ok 18:17:46.0875 3268 [ FFD30DAAF62D605069F6EB42D2E807C3 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 18:17:46.0875 3268 NVSvc - ok 18:17:46.0921 3268 [ 210EE09CB9C2655E55BD48D851369DC1 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 18:17:46.0953 3268 nvUpdatusService - ok 18:17:46.0968 3268 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 18:17:46.0968 3268 NwlnkFlt - ok 18:17:47.0015 3268 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 18:17:47.0015 3268 NwlnkFwd - ok 18:17:47.0015 3268 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys 18:17:47.0015 3268 ohci1394 - ok 18:17:47.0046 3268 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:17:47.0062 3268 ose - ok 18:17:47.0093 3268 [ E3934CCC20A4D24F1924E13D36D2A5BD ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 18:17:47.0093 3268 Parport - ok 18:17:47.0109 3268 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 18:17:47.0109 3268 PartMgr - ok 18:17:47.0156 3268 [ 1EADE28746A64C21E0A808BB12A63326 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 18:17:47.0156 3268 ParVdm - ok 18:17:47.0156 3268 [ 3B166F9F753C21AEDAA9A6BD76B49655 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 18:17:47.0156 3268 PCI - ok 18:17:47.0171 3268 PCIDump - ok 18:17:47.0187 3268 [ B31EDEBA4DA28283F6B8DC4756FB9585 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 18:17:47.0203 3268 PCIIde - ok 18:17:47.0218 3268 [ 2137FFD65F8E609A3A5ACD487C56CCE0 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 18:17:47.0234 3268 Pcmcia - ok 18:17:47.0234 3268 PDCOMP - ok 18:17:47.0250 3268 PDFRAME - ok 18:17:47.0250 3268 PDRELI - ok 18:17:47.0265 3268 PDRFRAME - ok 18:17:47.0265 3268 perc2 - ok 18:17:47.0281 3268 perc2hib - ok 18:17:47.0328 3268 [ 657B69389B893F440B07590C9E963F23 ] PlugPlay C:\WINDOWS\system32\services.exe 18:17:47.0328 3268 PlugPlay - ok 18:17:47.0328 3268 [ 8754210A3399D19610CE2D71E0C3E5D9 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 18:17:47.0328 3268 PolicyAgent - ok 18:17:47.0343 3268 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 18:17:47.0343 3268 PptpMiniport - ok 18:17:47.0359 3268 [ 8754210A3399D19610CE2D71E0C3E5D9 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 18:17:47.0359 3268 ProtectedStorage - ok 18:17:47.0375 3268 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 18:17:47.0375 3268 Ptilink - ok 18:17:47.0406 3268 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 18:17:47.0406 3268 PxHelp20 - ok 18:17:47.0421 3268 ql1080 - ok 18:17:47.0421 3268 Ql10wnt - ok 18:17:47.0437 3268 ql12160 - ok 18:17:47.0437 3268 ql1240 - ok 18:17:47.0453 3268 ql1280 - ok 18:17:47.0468 3268 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 18:17:47.0468 3268 RasAcd - ok 18:17:47.0484 3268 [ 0575D034B1292CA3A9BB9F67A8EE289C ] RasAuto C:\WINDOWS\System32\rasauto.dll 18:17:47.0484 3268 RasAuto - ok 18:17:47.0515 3268 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 18:17:47.0515 3268 Rasl2tp - ok 18:17:47.0546 3268 [ 9E7E2DF6971A5F00102BE3F901CC3BDC ] RasMan C:\WINDOWS\System32\rasmans.dll 18:17:47.0546 3268 RasMan - ok 18:17:47.0578 3268 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 18:17:47.0578 3268 RasPppoe - ok 18:17:47.0593 3268 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 18:17:47.0593 3268 Raspti - ok 18:17:47.0625 3268 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 18:17:47.0625 3268 Rdbss - ok 18:17:47.0671 3268 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 18:17:47.0671 3268 RDPCDD - ok 18:17:47.0703 3268 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 18:17:47.0718 3268 RDPWD - ok 18:17:47.0750 3268 [ EA9FDF71D696B532BDC44C8BFF03A737 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 18:17:47.0750 3268 RDSessMgr - ok 18:17:47.0765 3268 [ 4173BC66E485FD77A03C4819F60BD0DA ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 18:17:47.0765 3268 redbook - ok 18:17:47.0796 3268 [ 4007ABF5D9BF0E55451D775443D1F985 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 18:17:47.0812 3268 RemoteAccess - ok 18:17:47.0890 3268 [ BD517C7FB119997EFFBE39D5E4B37B05 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe 18:17:47.0890 3268 RichVideo - ok 18:17:47.0906 3268 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys 18:17:47.0906 3268 ROOTMODEM - ok 18:17:47.0906 3268 [ BE078F8F7EC2491EFDD79A53353A060F ] RpcLocator C:\WINDOWS\system32\locator.exe 18:17:47.0906 3268 RpcLocator - ok 18:17:47.0937 3268 [ D9883335CC1C17AFC3A09C8AC3E4DBE4 ] RpcSs C:\WINDOWS\System32\rpcss.dll 18:17:47.0937 3268 RpcSs - ok 18:17:47.0953 3268 [ AD1B5F1B99FFF08C99F443D784711A81 ] RSVP C:\WINDOWS\system32\rsvp.exe 18:17:47.0953 3268 RSVP - ok 18:17:47.0984 3268 [ B2A5E9D580A61B57AD91FA64A4789ABA ] RT2500USB C:\WINDOWS\system32\DRIVERS\rt2500usb.sys 18:17:47.0984 3268 RT2500USB - ok 18:17:48.0031 3268 [ D507C1400284176573224903819FFDA3 ] rtl8139 C:\WINDOWS\system32\DRIVERS\RTL8139.SYS 18:17:48.0031 3268 rtl8139 - ok 18:17:48.0031 3268 [ 8754210A3399D19610CE2D71E0C3E5D9 ] SamSs C:\WINDOWS\system32\lsass.exe 18:17:48.0031 3268 SamSs - ok 18:17:48.0093 3268 [ 328100AF2EFD951EAB657384EC361B6F ] SamsungAllShareV2.0 C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe 18:17:48.0093 3268 SamsungAllShareV2.0 - ok 18:17:48.0125 3268 [ 1B4CD62174E907C7EF8EC5D4D0A2A616 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 18:17:48.0125 3268 SCardSvr - ok 18:17:48.0171 3268 [ 7C288AE0F75CB18CFF1DF6179A67AD8F ] Schedule C:\WINDOWS\system32\schedsvc.dll 18:17:48.0171 3268 Schedule - ok 18:17:48.0250 3268 [ 206387AB881E93A1A6EB89966C8651F1 ] SDScannerService C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe 18:17:48.0281 3268 SDScannerService - ok 18:17:48.0375 3268 [ A529CFE32565C0B145578FFB2B32C9A5 ] SDUpdateService C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe 18:17:48.0406 3268 SDUpdateService - ok 18:17:48.0437 3268 [ CB63BDB77BB86549FC3303C2F11EDC18 ] SDWSCService C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe 18:17:48.0437 3268 SDWSCService - ok 18:17:48.0500 3268 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 18:17:48.0500 3268 Secdrv - ok 18:17:48.0515 3268 [ 6983665BEA867125B1DA5757CD8B2F9D ] seclogon C:\WINDOWS\System32\seclogon.dll 18:17:48.0515 3268 seclogon - ok 18:17:48.0531 3268 [ F6EC8F1E50E40237BDDEE1CB7FE20B42 ] SENS C:\WINDOWS\system32\sens.dll 18:17:48.0531 3268 SENS - ok 18:17:48.0562 3268 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 18:17:48.0562 3268 serenum - ok 18:17:48.0578 3268 [ 92C21762653BB2CE51147EB8A9AA654F ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 18:17:48.0578 3268 Serial - ok 18:17:48.0640 3268 [ 8C1F87F5FDD92229D1754B98F073913F ] ServiceLayer C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 18:17:48.0843 3268 ServiceLayer - ok 18:17:48.0906 3268 [ 4C0D673281178CB496011A2E28571FC8 ] sfdrv01 C:\WINDOWS\system32\drivers\sfdrv01.sys 18:17:48.0906 3268 sfdrv01 - ok 18:17:48.0921 3268 [ 15BE2B5E4DC5B8623CF167720682ABC9 ] sfhlp02 C:\WINDOWS\system32\drivers\sfhlp02.sys 18:17:48.0921 3268 sfhlp02 - ok 18:17:48.0968 3268 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 18:17:48.0968 3268 Sfloppy - ok 18:17:48.0984 3268 [ EFEBBC1D13FDB77A6AF4EDDFC7232EDF ] sfsync02 C:\WINDOWS\system32\drivers\sfsync02.sys 18:17:48.0984 3268 sfsync02 - ok 18:17:49.0015 3268 [ 7579C4BE909D47F10F3D8D801CB13ED9 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 18:17:49.0031 3268 SharedAccess - ok 18:17:49.0046 3268 [ 2D5D4156292150FE571872C1B88E9299 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 18:17:49.0046 3268 ShellHWDetection - ok 18:17:49.0062 3268 Simbad - ok 18:17:49.0093 3268 [ 1980FE1F5A32067DAD1D8776B63C2669 ] SimpleSlideShowServer C:\Program Files\Samsung\AllShare\AllShareSlideShowService.exe 18:17:49.0109 3268 SimpleSlideShowServer - ok 18:17:49.0140 3268 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe 18:17:49.0140 3268 SkypeUpdate - ok 18:17:49.0156 3268 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys 18:17:49.0156 3268 SLIP - ok 18:17:49.0203 3268 [ A1ECEEAA5C5E74B2499EB51D38185B84 ] SONYPVU1 C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS 18:17:49.0203 3268 SONYPVU1 - ok 18:17:49.0203 3268 Sparrow - ok 18:17:49.0250 3268 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 18:17:49.0250 3268 splitter - ok 18:17:49.0296 3268 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 18:17:49.0312 3268 Spooler - ok 18:17:49.0359 3268 [ 4F576E516CC76EC50A244586BCFA1C78 ] sptd C:\WINDOWS\system32\Drivers\sptd.sys 18:17:49.0359 3268 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: 4F576E516CC76EC50A244586BCFA1C78 18:17:49.0359 3268 sptd ( LockedFile.Multi.Generic ) - warning 18:17:49.0359 3268 sptd - detected LockedFile.Multi.Generic (1) 18:17:49.0375 3268 [ 64D2A7640E0767ECD3BCB38D3200E7CE ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 18:17:49.0375 3268 sr - ok 18:17:49.0421 3268 [ 81CBF363C414620CAA61BD6843D8FDB9 ] srservice C:\WINDOWS\system32\srsvc.dll 18:17:49.0421 3268 srservice - ok 18:17:49.0453 3268 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 18:17:49.0453 3268 Srv - ok 18:17:49.0468 3268 [ 5B9D0DE64BE96A806819516440FD211C ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 18:17:49.0468 3268 SSDPSRV - ok 18:17:49.0515 3268 [ 5AE996186D2DC694FEF88F14A3FC9242 ] stisvc C:\WINDOWS\system32\wiaservc.dll 18:17:49.0515 3268 stisvc - ok 18:17:49.0546 3268 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys 18:17:49.0546 3268 streamip - ok 18:17:49.0578 3268 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 18:17:49.0656 3268 swenum - ok 18:17:49.0734 3268 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 18:17:49.0765 3268 swmidi - ok 18:17:49.0765 3268 SwPrv - ok 18:17:49.0781 3268 symc810 - ok 18:17:49.0796 3268 symc8xx - ok 18:17:49.0796 3268 SymIM - ok 18:17:49.0812 3268 SymIMMP - ok 18:17:49.0828 3268 sym_hi - ok 18:17:49.0828 3268 sym_u3 - ok 18:17:49.0843 3268 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 18:17:49.0843 3268 sysaudio - ok 18:17:49.0890 3268 [ 251EAE7C56C6AB9490311A3C9757E18D ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 18:17:49.0890 3268 SysmonLog - ok 18:17:49.0937 3268 [ FD90A16CEB10D4FDAA00AAF39B8FF58F ] taphss C:\WINDOWS\system32\DRIVERS\taphss.sys 18:17:49.0937 3268 taphss - ok 18:17:49.0984 3268 [ 2BC9FB448F0C2394FF53C83A7BB04731 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 18:17:49.0984 3268 TapiSrv - ok 18:17:50.0046 3268 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 18:17:50.0062 3268 Tcpip - ok 18:17:50.0109 3268 [ 4E53BBCC4BE37D7A4BD6EF1098C89FF7 ] Tcpip6 C:\WINDOWS\system32\DRIVERS\tcpip6.sys 18:17:50.0109 3268 Tcpip6 - ok 18:17:50.0156 3268 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 18:17:50.0156 3268 TDPIPE - ok 18:17:50.0171 3268 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 18:17:50.0171 3268 TDTCP - ok 18:17:50.0203 3268 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 18:17:50.0203 3268 TermDD - ok 18:17:50.0234 3268 [ E0AEF86A594C9990D6321C5CA239C5B7 ] TermService C:\WINDOWS\System32\termsrv.dll 18:17:50.0250 3268 TermService - ok 18:17:50.0250 3268 TfFsMon - ok 18:17:50.0265 3268 TfNetMon - ok 18:17:50.0265 3268 TfSysMon - ok 18:17:50.0296 3268 [ 2D5D4156292150FE571872C1B88E9299 ] Themes C:\WINDOWS\System32\shsvcs.dll 18:17:50.0296 3268 Themes - ok 18:17:50.0343 3268 [ 3199A477F0F06EEDE41BD55179F8EB05 ] TomTomHOMEService C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe 18:17:50.0343 3268 TomTomHOMEService - ok 18:17:50.0359 3268 TosIde - ok 18:17:50.0375 3268 [ 20655E8CA1C78BC7088B18E93806D21B ] TrkWks C:\WINDOWS\system32\trkwks.dll 18:17:50.0375 3268 TrkWks - ok 18:17:50.0484 3268 [ 67F888F5379CFFCA30878C8A57ADF156 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe 18:17:50.0515 3268 TuneUp.UtilitiesSvc - ok 18:17:50.0546 3268 [ F2107C9D85EC0DF116939CCCE06AE697 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys 18:17:50.0546 3268 TuneUpUtilitiesDrv - ok 18:17:50.0578 3268 [ 8F861EDA21C05857EB8197300A92501C ] tunmp C:\WINDOWS\system32\DRIVERS\tunmp.sys 18:17:50.0578 3268 tunmp - ok 18:17:50.0593 3268 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 18:17:50.0609 3268 Udfs - ok 18:17:50.0609 3268 ultra - ok 18:17:50.0640 3268 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 18:17:50.0671 3268 Update - ok 18:17:50.0703 3268 UpdateCenterService - ok 18:17:50.0718 3268 [ 01653D6C9604F1FB31A76EC94E08954F ] upnphost C:\WINDOWS\System32\upnphost.dll 18:17:50.0734 3268 upnphost - ok 18:17:50.0765 3268 [ EC01DA44B090D2651FC032C8B9257232 ] upperdev C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys 18:17:50.0781 3268 upperdev - ok 18:17:50.0812 3268 [ A89796DD0DE24CF03B3A39407E1F46A3 ] UPS C:\WINDOWS\System32\ups.exe 18:17:50.0812 3268 UPS - ok 18:17:50.0843 3268 [ 8BF5D980CDCE35FB26F05047144BB57E ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys 18:17:50.0859 3268 USBAAPL - ok 18:17:50.0890 3268 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 18:17:50.0890 3268 usbccgp - ok 18:17:50.0906 3268 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 18:17:50.0906 3268 usbehci - ok 18:17:50.0921 3268 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 18:17:50.0921 3268 usbhub - ok 18:17:50.0984 3268 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 18:17:51.0015 3268 usbprint - ok 18:17:51.0078 3268 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 18:17:51.0078 3268 usbscan - ok 18:17:51.0125 3268 [ 1C888B000C2F9492F4B15B5B6B84873E ] usbser C:\WINDOWS\system32\drivers\usbser.sys 18:17:51.0125 3268 usbser - ok 18:17:51.0156 3268 [ 4ABD37CFBD710E64F01F9DA8710C73F7 ] UsbserFilt C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys 18:17:51.0156 3268 UsbserFilt - ok 18:17:51.0187 3268 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 18:17:51.0187 3268 usbstor - ok 18:17:51.0218 3268 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 18:17:51.0218 3268 usbuhci - ok 18:17:51.0250 3268 [ 9D63197622B667E3C898B89ADFC8FBEC ] UxTuneUp C:\WINDOWS\System32\uxtuneup.dll 18:17:51.0250 3268 UxTuneUp - ok 18:17:51.0296 3268 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 18:17:51.0296 3268 VgaSave - ok 18:17:51.0312 3268 ViaIde - ok 18:17:51.0343 3268 [ 8AB662B3C4691E6DDF61C96BB5B7D103 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 18:17:51.0343 3268 VolSnap - ok 18:17:51.0390 3268 [ A585EDD6965B301DE8A45C6768C7C215 ] VSS C:\WINDOWS\System32\vssvc.exe 18:17:51.0390 3268 VSS - ok 18:17:51.0421 3268 [ 390D8E65F362327AD510B08971478301 ] W32Time C:\WINDOWS\system32\w32time.dll 18:17:51.0437 3268 W32Time - ok 18:17:51.0484 3268 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 18:17:51.0484 3268 Wanarp - ok 18:17:51.0515 3268 [ 30211ADD92098D4B5CFADBF3DA01E69B ] wandrv C:\WINDOWS\system32\DRIVERS\wandrv.sys 18:17:51.0515 3268 wandrv - ok 18:17:51.0546 3268 [ D918617B46457B9AC28027722E30F647 ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys 18:17:51.0562 3268 Wdf01000 - ok 18:17:51.0578 3268 WDICA - ok 18:17:51.0593 3268 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 18:17:51.0593 3268 wdmaud - ok 18:17:51.0625 3268 [ 33D8E2812054D97A0AEC9B8F04277927 ] WebClient C:\WINDOWS\System32\webclnt.dll 18:17:51.0640 3268 WebClient - ok 18:17:51.0703 3268 [ F9E105F369C18E4001E0C05AAF600D73 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 18:17:51.0703 3268 winmgmt - ok 18:17:51.0765 3268 [ 051B1BDECD6DEE18C771B5D5EC7F044D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 18:17:51.0765 3268 WmdmPmSN - ok 18:17:51.0796 3268 [ 87F11D161207C7063EDABAC0AADC33C3 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 18:17:51.0796 3268 WmiApSrv - ok 18:17:51.0859 3268 [ E3F091C0F8FCF97CCD86FB6C1BEEF185 ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 18:17:51.0890 3268 WMPNetworkSvc - ok 18:17:51.0921 3268 [ C60DC16D4E406810FAD54B98DC92D5EC ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys 18:17:51.0921 3268 WpdUsb - ok 18:17:52.0093 3268 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 18:17:52.0125 3268 WPFFontCache_v0400 - ok 18:17:52.0156 3268 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys 18:17:52.0156 3268 WS2IFSL - ok 18:17:52.0187 3268 [ 843F7FA8EA38E6A4262976DCC994C81A ] wscsvc C:\WINDOWS\system32\wscsvc.dll 18:17:52.0218 3268 wscsvc - ok 18:17:52.0234 3268 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 18:17:52.0234 3268 WSTCODEC - ok 18:17:52.0250 3268 [ 1E8FDDDEF3FE260BADAB06DAE10D753A ] wuauserv C:\WINDOWS\system32\wuauserv.dll 18:17:52.0296 3268 wuauserv - ok 18:17:52.0328 3268 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 18:17:52.0343 3268 WudfPf - ok 18:17:52.0359 3268 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 18:17:52.0359 3268 WudfRd - ok 18:17:52.0390 3268 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 18:17:52.0390 3268 WudfSvc - ok 18:17:52.0453 3268 [ E99782DBB8FFA2AEE72B31DAC8D8D887 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 18:17:52.0468 3268 WZCSVC - ok 18:17:52.0500 3268 [ 5A0C788C5BC5F2C993CB60940ADCF95E ] x10nets C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe 18:17:52.0531 3268 x10nets - ok 18:17:52.0593 3268 [ FD3C38635808920F8235BF2FED642F54 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 18:17:52.0656 3268 xmlprov - ok 18:17:52.0718 3268 [ 41CF36A3CC7786575247ED456918E112 ] XUIF C:\WINDOWS\system32\Drivers\x10ufx2.sys 18:17:52.0718 3268 XUIF - ok 18:17:52.0750 3268 ================ Scan global =============================== 18:17:52.0781 3268 [ 953AD498333B03F7CE547151F96EF241 ] C:\WINDOWS\system32\basesrv.dll 18:17:52.0828 3268 [ C7CC71181F7FD61C49EFF278003827A5 ] C:\WINDOWS\system32\winsrv.dll 18:17:52.0843 3268 [ C7CC71181F7FD61C49EFF278003827A5 ] C:\WINDOWS\system32\winsrv.dll 18:17:52.0859 3268 [ 657B69389B893F440B07590C9E963F23 ] C:\WINDOWS\system32\services.exe 18:17:52.0859 3268 [Global] - ok 18:17:52.0859 3268 ================ Scan MBR ================================== 18:17:52.0875 3268 [ F530C549C178A28EC2138E36783F29F0 ] \Device\Harddisk0\DR0 18:17:53.0078 3268 \Device\Harddisk0\DR0 - ok 18:17:53.0093 3268 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR5 18:17:53.0218 3268 \Device\Harddisk2\DR5 - ok 18:17:53.0218 3268 ================ Scan VBR ================================== 18:17:53.0234 3268 [ 8703AC74AC7B5816CCEA68AF648C5971 ] \Device\Harddisk0\DR0\Partition1 18:17:53.0250 3268 \Device\Harddisk0\DR0\Partition1 - ok 18:17:53.0265 3268 [ CDD38C55103853832344ED95A18557F3 ] \Device\Harddisk0\DR0\Partition2 18:17:53.0265 3268 \Device\Harddisk0\DR0\Partition2 - ok 18:17:53.0281 3268 [ EABCD9C5329787C862BD429CE0A624D7 ] \Device\Harddisk0\DR0\Partition3 18:17:53.0281 3268 \Device\Harddisk0\DR0\Partition3 - ok 18:17:53.0296 3268 [ 0ADF5681A24C5EA7A9FB48C4D88091B5 ] \Device\Harddisk2\DR5\Partition1 18:17:53.0296 3268 \Device\Harddisk2\DR5\Partition1 - ok 18:17:53.0312 3268 ============================================================ 18:17:53.0312 3268 Scan finished 18:17:53.0312 3268 ============================================================ 18:17:53.0343 2876 Detected object count: 1 18:17:53.0343 2876 Actual detected object count: 1 18:18:05.0265 2876 sptd ( LockedFile.Multi.Generic ) - skipped by user 18:18:05.0265 2876 sptd ( LockedFile.Multi.Generic ) - User select action: Skip -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
C:\DOCUME~1\michel\LOCALS~1\Temp\WER68c5.dir00\Mini120112-01.dmp C:\DOCUME~1\michel\LOCALS~1\Temp\WER68c5.dir00\sysdata.xml deze melding kreeg ik nadat mijn pc weer spontaan opnieuw opstarte. Mijn taakbalk is ook weer leeg . i.e doet ook weer vreemd C:\DOCUME~1\michel\LOCALS~1\Temp\WER5506.dir00\iexplore.exe.mdmp C:\DOCUME~1\michel\LOCALS~1\Temp\WER5506.dir00\appcompat.txt Microsoft_.NET_Framework_2.0_KB974417_20121201_075122140.html version.txt -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
Hij is nog traag maar verder ok. Ik krijg nu heel vaak "runtime error 216 at 5003a116" ook de error op 217 komt regelmatig voorbij. En mijn pc blijft maar updates binnenhalen. Als ik ze geinstalleerd heb begint de pc ze weer te downloaden. Als ik de vinkjes weg haal dan download de pc gewoon weer andere. en dat blijft maar doorgaan. Zie ook vaak in taakbeheer dat er meerdere wuadt.exe zijn. soms wel drie. fijn weekend -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ComboFix 12-11-30.02 - michel 2012-12-01 0:51.2.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1043.18.1022.548 [GMT 1:00] Gestart vanuit: c:\documents and settings\michel\Bureaublad\ComboFix.exe gebruikte Opdracht switches :: c:\documents and settings\michel\Bureaublad\CFScript..txt AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF} AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095} . FILE :: "c:\windows\system32\GameMon.des" . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\documents and settings\All Users\Application Data\TEMP c:\documents and settings\All Users\Application Data\TEMP\1CA73D29.TMP c:\documents and settings\All Users\Application Data\TEMP\DFC5A2B2.TMP c:\documents and settings\michel\Application Data\PriceGong c:\documents and settings\michel\Application Data\PriceGong\Data\1.txt c:\documents and settings\michel\Application Data\PriceGong\Data\17624.txt c:\documents and settings\michel\Application Data\PriceGong\Data\17781.txt c:\documents and settings\michel\Application Data\PriceGong\Data\2258.txt c:\documents and settings\michel\Application Data\PriceGong\Data\407.txt c:\documents and settings\michel\Application Data\PriceGong\Data\4489.txt c:\documents and settings\michel\Application Data\PriceGong\Data\a.txt c:\documents and settings\michel\Application Data\PriceGong\Data\b.txt c:\documents and settings\michel\Application Data\PriceGong\Data\c.txt c:\documents and settings\michel\Application Data\PriceGong\Data\d.txt c:\documents and settings\michel\Application Data\PriceGong\Data\e.txt c:\documents and settings\michel\Application Data\PriceGong\Data\f.txt c:\documents and settings\michel\Application Data\PriceGong\Data\g.txt c:\documents and settings\michel\Application Data\PriceGong\Data\h.txt c:\documents and settings\michel\Application Data\PriceGong\Data\i.txt c:\documents and settings\michel\Application Data\PriceGong\Data\j.txt c:\documents and settings\michel\Application Data\PriceGong\Data\k.txt c:\documents and settings\michel\Application Data\PriceGong\Data\l.txt c:\documents and settings\michel\Application Data\PriceGong\Data\m.txt c:\documents and settings\michel\Application Data\PriceGong\Data\mru.xml c:\documents and settings\michel\Application Data\PriceGong\Data\n.txt c:\documents and settings\michel\Application Data\PriceGong\Data\o.txt c:\documents and settings\michel\Application Data\PriceGong\Data\p.txt c:\documents and settings\michel\Application Data\PriceGong\Data\q.txt c:\documents and settings\michel\Application Data\PriceGong\Data\r.txt c:\documents and settings\michel\Application Data\PriceGong\Data\s.txt c:\documents and settings\michel\Application Data\PriceGong\Data\t.txt c:\documents and settings\michel\Application Data\PriceGong\Data\u.txt c:\documents and settings\michel\Application Data\PriceGong\Data\v.txt c:\documents and settings\michel\Application Data\PriceGong\Data\w.txt c:\documents and settings\michel\Application Data\PriceGong\Data\wlu.txt c:\documents and settings\michel\Application Data\PriceGong\Data\x.txt c:\documents and settings\michel\Application Data\PriceGong\Data\y.txt c:\documents and settings\michel\Application Data\PriceGong\Data\z.txt c:\windows\system32\3029 c:\windows\system32\3029\inf3029.dat c:\windows\system32\fldlckun.exe c:\windows\system32\Mlkf.dll c:\windows\system32\SET32.tmp c:\windows\system32\sqlite3.dll c:\windows\system32\URTTemp c:\windows\system32\URTTemp\fusion.dll c:\windows\system32\URTTemp\mscoree.dll c:\windows\system32\URTTemp\mscoree.dll.local c:\windows\system32\URTTemp\mscorsn.dll c:\windows\system32\URTTemp\mscorwks.dll c:\windows\system32\URTTemp\msvcr71.dll c:\windows\system32\URTTemp\regtlib.exe . . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_npggsvc -------\Service_rseb . . (((((((((((((((((((( Bestanden Gemaakt van 2012-11-01 to 2012-12-01 )))))))))))))))))))))))))))))) . . 2012-11-30 20:02 . 2012-11-08 18:00 6812136 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C0777B5E-9AB9-4131-A5DD-BC8E00583C4E}\mpengine.dll 2012-11-29 22:10 . 2012-11-30 23:40 -------- d--h--r- c:\documents and settings\michel\Onlangs geopend 2012-11-29 21:20 . 2003-06-25 15:05 266360 ----a-w- c:\windows\system32\TweakUI.exe 2012-11-29 18:42 . 2012-11-08 18:00 6812136 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2012-11-28 16:36 . 2012-11-28 16:51 -------- d-----w- c:\program files\uTorrent Acceleration Tool 2012-11-28 16:35 . 2012-11-29 21:03 -------- d-----w- c:\program files\Microsoft Silverlight 2012-11-27 13:33 . 2012-11-27 13:33 -------- d-----w- c:\documents and settings\michel\Application Data\DDMSettings 2012-11-27 13:26 . 2012-11-27 13:26 -------- d-----w- c:\program files\Common Files\Skype 2012-11-26 19:57 . 2012-11-26 19:57 -------- d-----w- c:\documents and settings\LocalService\Application Data\vlc 2012-11-26 17:53 . 2012-11-26 19:44 -------- d-----w- c:\program files\TVersity 2012-11-25 16:18 . 2012-11-25 16:18 -------- d-----w- c:\documents and settings\michel\Application Data\NVIDIA 2012-11-25 13:08 . 2012-11-25 13:29 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy 2012-11-25 13:06 . 2009-01-25 11:14 15224 ----a-w- c:\windows\system32\sdnclean.exe 2012-11-25 13:06 . 2012-11-25 13:07 -------- d-----w- c:\program files\Spybot - Search & Destroy 2 2012-11-25 12:40 . 2012-11-25 12:41 -------- d-----w- c:\documents and settings\UpdatusUser 2012-11-25 12:37 . 2012-11-25 12:37 1101436 ----a-w- c:\windows\system32\nvdrsdb0.bin 2012-11-25 12:37 . 2012-11-25 12:37 1 ----a-w- c:\windows\system32\nvdrssel.bin 2012-11-25 12:37 . 2012-11-25 12:37 1101436 ----a-w- c:\windows\system32\nvdrsdb1.bin 2012-11-25 12:36 . 2012-09-23 14:28 888168 ----a-w- c:\windows\system32\nvdispgenco32.dll 2012-11-25 12:36 . 2012-09-23 14:28 5947392 ----a-w- c:\windows\system32\nvopencl.dll 2012-11-25 12:36 . 2012-09-23 14:28 1009512 ----a-w- c:\windows\system32\nvdispco32.dll 2012-11-25 12:20 . 2012-11-25 12:20 -------- d-----w- c:\program files\Common Files\Adobe 2012-11-25 12:10 . 2012-11-25 12:10 388096 ----a-r- c:\documents and settings\michel\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2012-11-25 12:05 . 2012-11-25 12:05 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Lite 2012-11-25 12:01 . 2012-11-25 12:01 -------- d-----w- c:\program files\FileHippo.com 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin7.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin6.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin5.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin4.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin3.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin2.dll 2012-11-24 12:29 . 2012-11-24 12:29 159744 ----a-w- c:\program files\Internet Explorer\PLUGINS\npqtplugin.dll 2012-11-24 12:28 . 2012-11-24 12:29 -------- d-----w- c:\program files\QuickTime 2012-11-20 10:02 . 2012-11-20 10:02 -------- d-----w- c:\documents and settings\michel\Application Data\Nuclear Coffee 2012-11-20 10:01 . 2012-11-20 10:01 -------- d-----w- c:\program files\Nuclear Coffee 2012-11-20 09:24 . 2012-09-29 18:54 22856 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-11-20 09:06 . 2012-11-20 09:06 -------- d-----w- c:\program files\Perion 2012-11-20 09:05 . 2012-11-20 09:05 -------- d-----w- c:\program files\Gophoto.it 2012-11-20 09:05 . 2012-11-20 09:10 -------- d-----w- c:\program files\TornTV.com 2012-11-13 20:29 . 2012-11-13 20:29 354216 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl 2012-11-06 08:51 . 2012-11-06 08:53 -------- dc-h--w- c:\windows\ie8 2012-11-06 02:17 . 2012-11-06 02:17 -------- d-----w- c:\documents and settings\marjon . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-11-29 21:58 . 2012-04-05 19:16 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-11-29 21:58 . 2011-05-18 03:46 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-10-25 02:12 . 2012-10-25 02:12 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx 2012-10-25 02:12 . 2012-10-25 02:12 69632 ----a-w- c:\windows\system32\QuickTime.qts 2012-10-22 19:57 . 2005-10-27 06:15 1866496 ----a-w- c:\windows\system32\win32k.sys 2012-10-20 18:43 . 2012-10-20 18:44 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2012-10-20 18:43 . 2012-04-21 10:58 143872 ----a-w- c:\windows\system32\javacpl.cpl 2012-10-20 18:43 . 2012-10-20 18:44 821736 ----a-w- c:\windows\system32\npDeployJava1.dll 2012-10-02 18:04 . 2005-10-27 06:15 58368 ----a-w- c:\windows\system32\synceng.dll 2012-09-23 14:28 . 2010-01-05 14:58 2578792 ----a-w- c:\windows\system32\nvcuvid.dll 2012-09-23 14:28 . 2010-01-05 14:58 1866088 ----a-w- c:\windows\system32\nvcuvenc.dll 2012-09-23 14:28 . 2010-01-05 14:58 7446528 ----a-w- c:\windows\system32\nvcuda.dll 2012-09-23 14:28 . 2010-01-05 14:58 17551360 ----a-w- c:\windows\system32\nvcompiler.dll 2012-09-23 14:28 . 2006-02-16 08:51 2376704 ----a-w- c:\windows\system32\nvapi.dll 2012-09-23 14:28 . 2006-02-16 08:51 19103744 ----a-w- c:\windows\system32\nvoglnt.dll 2012-09-23 14:28 . 2005-09-22 22:21 4494208 ----a-w- c:\windows\system32\nv4_disp.dll 2012-09-23 14:28 . 2005-09-22 22:21 12557728 ----a-w- c:\windows\system32\drivers\nv4_mini.sys 2012-09-23 13:04 . 2009-11-20 19:32 54272 ----a-w- c:\windows\system32\nvwddi.dll 2012-09-23 13:04 . 2009-11-20 19:32 15512424 ----a-w- c:\windows\system32\nvcpl.dll 2012-09-23 13:04 . 2009-11-20 19:32 164200 ----a-w- c:\windows\system32\nvsvc32.exe 2012-09-23 13:04 . 2009-11-20 19:32 143720 ----a-w- c:\windows\system32\nvcolor.exe 2012-09-23 13:04 . 2009-11-20 19:32 108392 ----a-w- c:\windows\system32\nvmctray.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "FileHippo.com"="c:\program files\FileHippo.com\UpdateChecker.exe" [2012-03-26 306688] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 947176] "nwiz"="c:\program files\NVIDIA Corporation\nview\nwiz.exe" [2012-09-23 1634112] "SDTray"="c:\program files\Spybot - Search & Destroy 2\SDTray.exe" [2012-11-13 3825176] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-09-23 15512424] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] "DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-25 437160] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk /r \??\k:\0autocheck autochk *\0ROBoot \??\c:\windows\system32\ASOROSet.bin . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Microsoft Office.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Microsoft Office.lnk backup=c:\windows\pss\Microsoft Office.lnkCommon Startup . [HKLM\~\startupfolder\C:^Documents and Settings^michel^Menu Start^Programma's^Opstarten^fliptoast.lnk] path=c:\documents and settings\michel\Menu Start\Programma's\Opstarten\fliptoast.lnk backup=c:\windows\pss\fliptoast.lnkStartup . [HKLM\~\startupfolder\C:^Documents and Settings^michel^Menu Start^Programma's^Opstarten^ZooskMessenger.lnk] path=c:\documents and settings\michel\Menu Start\Programma's\Opstarten\ZooskMessenger.lnk backup=c:\windows\pss\ZooskMessenger.lnkStartup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck] c:\windows\system32\dumprep 0 -k [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer] c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2012-09-23 19:43 926896 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AllShareAgent] 2012-03-01 21:59 285072 ----a-w- c:\program files\Samsung\AllShare\AllShareAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier] 2011-11-02 06:51 59240 ----a-w- c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon] 2012-10-11 20:56 59280 ----a-w- c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CHotkey] 2004-12-08 16:57 550912 -c--a-w- c:\windows\mHotkey.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CmUCRRun] 2005-10-12 13:44 241664 ----a-w- c:\windows\system32\CmUCREye.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter2.0] 2005-01-07 16:30 864256 ------w- c:\program files\Brother\ControlCenter2\brctrcen.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe] 2008-04-14 17:02 15360 ----a-w- c:\windows\system32\ctfmon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools] 2007-04-03 22:29 165784 ----a-w- c:\program files\DAEMON Tools\daemon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DATAMNGR] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer] 2012-11-13 18:13 450560 ----a-w- c:\program files\DivX\DivX Media Server\DivXMediaServer.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate] 2012-11-01 17:56 1263512 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DXM6Patch_981116] 1998-11-30 16:04 497376 -c--a-w- c:\windows\p_981116.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1] 2004-08-04 12:00 208952 -c--a-w- c:\windows\ime\imjp8_1\imjpmig.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] 2012-09-09 21:30 421776 ----a-w- c:\program files\iTunes\iTunesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ledpointer] 2005-11-10 13:41 5585408 -c--a-w- c:\windows\CNYHKey.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel] 2009-06-17 11:13 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware] 2012-09-29 18:54 766536 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002] 2004-08-04 12:00 59392 ----a-w- c:\windows\system32\IME\PINTLGNT\IMSCINST.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] 2012-09-23 13:04 15512424 ----a-w- c:\windows\system32\nvcpl.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] 2012-09-23 13:04 108392 ----a-w- c:\windows\system32\nvmctray.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A] 2004-08-04 12:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync] 2004-08-04 12:00 455168 ----a-w- c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2012-10-25 02:12 421888 ----a-w- c:\program files\QuickTime\QTTask.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] 2006-01-11 16:23 15961088 -c--a-w- c:\windows\RTHDCPL.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetDefPrt] 2004-11-11 16:14 49152 ------w- c:\program files\Brother\Brmfl04g\BrStDvPt.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] 2012-11-09 10:27 17877168 ----a-r- c:\program files\Skype\Phone\Skype.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2012-07-03 07:04 252848 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe] 2012-01-23 04:43 247728 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent] 2012-11-22 08:45 968592 ----a-w- c:\program files\uTorrent\uTorrent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG] 2009-02-04 13:15 204288 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe . [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "ctfmon.exe"=c:\windows\system32\ctfmon.exe "DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" -lang 1033 "WMPNSCFG"=c:\program files\Windows Media Player\WMPNSCFG.exe "TomTomHOME.exe"="c:\program files\TomTom HOME 2\TomTomHOMERunner.exe" . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" -hide -runkey "KernelFaultCheck"=%systemroot%\system32\dumprep 0 -k "APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "c:\\WINDOWS\\system32\\sessmgr.exe"= "c:\\WINDOWS\\system32\\fxsclnt.exe"= "c:\\Program Files\\NetMeeting\\Conf.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"= "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= "c:\\Program Files\\uTorrent\\uTorrent.exe"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\\Program Files\\Samsung\\AllShare\\AllShareDMS\\AllShareDMS.exe"= "c:\\Program Files\\Samsung\\AllShare\\AllShare.exe"= "c:\\Program Files\\Samsung\\AllShare\\AllShareAgent.exe"= "c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"= "c:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"= "c:\\Program Files\\Spybot - Search & Destroy 2\\SDTray.exe"= "c:\\Program Files\\Spybot - Search & Destroy 2\\SDFSSvc.exe"= "c:\\Program Files\\Spybot - Search & Destroy 2\\SDUpdate.exe"= "c:\\Program Files\\Spybot - Search & Destroy 2\\SDUpdSvc.exe"= "c:\\Program Files\\Java\\jre7\\bin\\javaw.exe"= "c:\\WINDOWS\\system32\\msiexec.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings] "AllowInboundEchoRequest"= 1 (0x1) . R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2009-12-03 682232] R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2012-11-25 1369624] R2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [2012-01-23 92592] R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe [2012-05-29 1528672] R3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [2005-10-18 826752] R3 CMISTOR;CMIUCR.SYS CM220 Card Reader Driver;c:\windows\system32\drivers\cmiucr.SYS [2005-10-04 72320] R3 nvoclock;NVIDIA Enthusiasts Platform KDM;c:\windows\system32\drivers\nvoclock.sys [2009-09-15 38248] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys [2012-05-08 10064] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?] S1 MpKsl336aed30;MpKsl336aed30;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C0777B5E-9AB9-4131-A5DD-BC8E00583C4E}\MpKsl336aed30.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C0777B5E-9AB9-4131-A5DD-BC8E00583C4E}\MpKsl336aed30.sys [?] S2 SamsungAllShareV2.0;Samsung AllShare PC;c:\program files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe [2012-03-02 25504] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\Spybot - Search & Destroy 2\SDFSSvc.exe [2012-11-25 1103392] S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\Spybot - Search & Destroy 2\SDWSCSvc.exe [2012-11-25 168384] S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-11-09 160944] S3 GenericMount;Generic Mount Driver;c:\windows\system32\DRIVERS\GenericMount.sys --> c:\windows\system32\DRIVERS\GenericMount.sys [?] S3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\drivers\netaapl.sys [2011-12-21 18432] S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-09-30 137600] S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-09-30 8576] S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [2005-10-27 14336] S3 SimpleSlideShowServer;SimpleSlideShowServer;c:\program files\Samsung\AllShare\AllShareSlideShowService.exe [2012-03-02 27584] S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] getPlusHelper REG_MULTI_SZ getPlusHelper nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-06-17 11:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2012-11-30 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-05 21:58] . 2012-11-24 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57] . 2012-12-01 c:\windows\Tasks\Check for updates (Spybot - Search & Destroy).job - c:\program files\Spybot - Search & Destroy 2\SDUpdate.exe [2012-11-25 13:08] . 2012-12-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 10:28] . 2012-11-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 10:28] . 2012-11-30 c:\windows\Tasks\Microsoft Antimalware Scheduled Scan.job - c:\program files\Microsoft Security Client\MpCmdRun.exe [2012-09-12 15:25] . 2012-11-25 c:\windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job - c:\program files\Spybot - Search & Destroy 2\SDImmunize.exe [2012-11-25 13:07] . 2012-11-30 c:\windows\Tasks\Scan the system (Spybot - Search & Destroy).job - c:\program files\Spybot - Search & Destroy 2\SDScan.exe [2012-11-25 13:07] . 2012-11-30 c:\windows\Tasks\User_Feed_Synchronization-{660099D3-511C-47FB-B782-D9BE78D3ECEF}.job - c:\windows\system32\msfeedssync.exe [2007-08-13 03:31] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.telegraaf.nl/ uInternet Settings,ProxyOverride = *.local DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} - hxxp://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab DPF: {63D6DD13-C913-466D-9444-9357561E4D94} - hxxp://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} - hxxps://www.icloud.com/system/iCloud.cab . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file) MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe MSConfigStartUp-NokiaOviSuite2 - c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe MSConfigStartUp-SUPERAntiSpyware - c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe MSConfigStartUp-SweetIM - c:\program files\SweetIM\Messenger\SweetIM.exe MSConfigStartUp-Sweetpacks Communicator - c:\program files\SweetIM\Communicator\SweetPacksUpdateManager.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2012-12-01 01:06 Windows 5.1.2600 Service Pack 3 NTFS . scannen van verborgen processen ... . scannen van verborgen autostart items ... . scannen van verborgen bestanden ... . Scan succesvol afgerond verborgen bestanden: 0 . ************************************************************************** . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_131_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_131_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . --------------------- DLLs Geladen Onder Lopende Processen --------------------- . - - - - - - - > 'explorer.exe'(1756) c:\windows\system32\msi.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll c:\program files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files\Microsoft Security Client\MsMpEng.exe c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Java\jre7\bin\jqs.exe c:\windows\system32\LckFldService.exe c:\program files\Common Files\LightScribe\LSSrvc.exe c:\program files\Common Files\Microsoft Shared\VS7Debug\mdm.exe c:\program files\NVIDIA Corporation\nTune\nTuneService.exe c:\windows\system32\nvsvc32.exe c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe c:\program files\CyberLink\Shared Files\RichVideo.exe c:\program files\NVIDIA Corporation\System Update\UpdateCenterService.exe c:\progra~1\COMMON~1\X10\Common\x10nets.exe c:\program files\Windows Media Player\WMPNetwk.exe c:\windows\system32\wscntfy.exe c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe . ************************************************************************** . Voltooingstijd: 2012-12-01 01:12:10 - machine werd herstart ComboFix-quarantined-files.txt 2012-12-01 00:12 ComboFix2.txt 2011-10-16 15:14 ComboFix3.txt 2009-03-24 14:59 ComboFix4.txt 2009-03-22 15:19 . Pre-Run: 9,832,136,704 bytes beschikbaar Post-Run: 34,453,565,440 bytes beschikbaar . - - End Of File - - 63976439ABE037394182E1FCC8E0C84E - - - Updated - - - Het gaat de goede kant op.. pc is heel stil geworden.. gewoon eng -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
ik kon de eerste stappen niet doen want krijg in opdrachtprompt een foutmelding. Geen toegang. Maar er stond ook geen administrator bij de opties. Pc is al iets stabieler maar nog traag. Fijne avond ComboFix 11-10-15.04 - michel 2011-10-16 17:02:20.1.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1043.18.1022.478 [GMT 2:00] Gestart vanuit: c:\documents and settings\michel\Bureaublad\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF} AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095} . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\documents and settings\michel\Application Data\PriceGong c:\windows\IsUn0413.exe c:\windows\system32\CF23235.exe c:\windows\system32\d3d9caps.dat c:\windows\system32\Thumbs.db . . (((((((((((((((((((( Bestanden Gemaakt van 2011-09-16 to 2011-10-16 )))))))))))))))))))))))))))))) . . 2011-10-16 14:47 . 2011-10-16 14:47 28752 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54D8E55D-A0D9-4208-901D-1677F91619A5}\MpKsle5acfa5e.sys 2011-10-16 14:47 . 2011-10-16 14:47 56200 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54D8E55D-A0D9-4208-901D-1677F91619A5}\offreg.dll 2011-10-16 14:28 . 2011-10-16 14:31 -------- d--h--r- c:\documents and settings\michel\Onlangs geopend 2011-10-15 23:50 . 2011-09-12 23:14 7269712 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54D8E55D-A0D9-4208-901D-1677F91619A5}\mpengine.dll 2011-10-11 16:00 . 2011-10-11 16:00 -------- d-----w- c:\documents and settings\michel\Application Data\Alawar 2011-10-11 16:00 . 2011-10-11 16:00 -------- d-----w- c:\documents and settings\All Users\Application Data\Alawar 2011-10-11 15:36 . 2011-10-11 15:45 -------- d-----w- c:\documents and settings\michel\DoctorWeb 2011-10-11 14:36 . 2011-10-11 14:36 -------- d-----w- c:\program files\Alawar 2011-10-11 14:32 . 2011-10-11 14:32 -------- d-----w- c:\windows\system32\3029 2011-09-30 22:27 . 2011-09-30 22:27 -------- d-----w- c:\documents and settings\All Users\Application Data\Nokia 2011-09-30 21:40 . 2008-04-13 17:45 26112 -c--a-w- c:\windows\system32\dllcache\usbser.sys 2011-09-30 21:40 . 2008-04-13 17:45 26112 ----a-w- c:\windows\system32\drivers\usbser.sys 2011-09-30 21:40 . 2008-11-07 16:55 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll 2011-09-30 15:04 . 2011-09-30 15:04 -------- d-----w- c:\documents and settings\michel\Local Settings\Application Data\Nokia 2011-09-30 15:02 . 2011-09-30 15:02 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Suite 2011-09-30 15:02 . 2011-09-30 21:45 -------- d-----w- c:\documents and settings\michel\Application Data\PC Suite 2011-09-30 14:48 . 2011-09-30 14:49 -------- d-----w- c:\program files\Common Files\Nokia 2011-09-30 14:48 . 2011-09-30 14:48 -------- d-----w- c:\program files\DIFX 2011-09-30 14:47 . 2008-08-26 08:26 18816 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys 2011-09-30 14:47 . 2011-09-30 14:47 -------- d-----w- c:\program files\PC Connectivity Solution 2011-09-30 14:47 . 2011-05-18 08:09 8576 ----a-w- c:\windows\system32\drivers\nmwcdnsuc.sys 2011-09-30 14:47 . 2011-05-18 08:09 137600 ----a-w- c:\windows\system32\drivers\nmwcdnsu.sys 2011-09-30 14:47 . 2011-05-18 08:12 8192 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys 2011-09-30 14:47 . 2011-05-18 08:12 8192 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys 2011-09-30 14:47 . 2011-05-18 08:12 23168 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys 2011-09-30 14:47 . 2011-05-18 08:13 123904 ----a-w- c:\windows\system32\ccdcmbwu.dll 2011-09-30 14:47 . 2011-05-18 08:13 605696 ----a-w- c:\windows\system32\nmwcdcocls.dll 2011-09-30 14:47 . 2011-05-18 08:12 18176 ----a-w- c:\windows\system32\drivers\ccdcmb.sys 2011-09-30 14:47 . 2011-05-18 08:09 1461992 ----a-w- c:\windows\system32\wdfcoinstaller01009.dll 2011-09-30 14:46 . 2011-05-18 08:13 75264 ----a-w- c:\windows\system32\nmwcdcls.dll 2011-09-30 14:44 . 2011-09-30 14:48 -------- d-----w- c:\program files\Nokia . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-09-22 21:34 . 2011-05-18 03:46 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2011-09-12 23:14 . 2011-01-30 04:55 7269712 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-09-09 09:12 . 2005-10-27 06:15 602624 ----a-w- c:\windows\system32\crypt32.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5B807D5D-3643-193D-1630-31665D0671EC}] 2004-08-04 12:00 98304 ----a-w- c:\windows\system32\lzz32.dll . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2010-02-04 15:50 1197448 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TomTomHOME.exe"="c:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2011-04-22 247728] "DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2007-04-03 165784] "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2011-03-29 399736] "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-06-17 2363392] "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2009-02-04 204288] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-09-26 17353352] "NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2011-09-01 966712] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X] "RTHDCPL"="RTHDCPL.EXE" [2006-01-11 15961088] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168] "PCMService"="c:\program files\Home Cinema\PowerCinema\PCMService.exe" [2006-02-09 143360] "NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648] "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-04 59392] "ledpointer"="CNYHKey.exe" [2005-11-10 5585408] "InstantOn"="c:\program files\CyberLink\PowerCinema Linux\ion_install.exe" [2005-09-22 93640] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-04 208952] "CmUCRRun"="c:\windows\system32\CmUCReye.exe" [2005-10-12 241664] "CHotkey"="mHotkey.exe" [2004-12-08 550912] "SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648] "PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2004-03-09 57393] "IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2004-03-09 40960] "SetDefPrt"="c:\program files\Brother\Brmfl04g\BrStDvPt.exe" [2004-11-11 49152] "ControlCenter2.0"="c:\program files\Brother\ControlCenter2\brctrcen.exe" [2005-01-07 864256] "DXM6Patch_981116"="c:\windows\p_981116.exe" [1998-11-30 497376] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-11-20 12669544] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-11-20 110184] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-09-07 37296] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 997920] "NBAgent"="c:\program files\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2010-03-26 1234216] "EaseUs Watch"="c:\program files\EASEUS\Todo Backup\bin\EuWatch.exe" [2011-04-22 69000] "EaseUs Tray"="c:\program files\EASEUS\Todo Backup\bin\TrayNotify.exe" [2011-04-25 733576] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696] "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2011-07-05 421888] "AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2011-04-20 58656] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-08-18 421736] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] "DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-25 437160] . c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\ Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "c:\\WINDOWS\\system32\\sessmgr.exe"= "c:\\Program Files\\Messenger\\msmsgs.exe"= "c:\\WINDOWS\\system32\\fxsclnt.exe"= "c:\\Program Files\\NetMeeting\\Conf.exe"= "c:\\Program Files\\Ahead\\Nero MediaHome\\NeroMediaHome.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"= "d:\\World of Warcraft\\Launcher.exe"= "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"= "c:\\Program Files\\Azureus\\Azureus.exe"= "c:\\Program Files\\uTorrent\\uTorrent.exe"= "d:\\World of Warcraft\\WoW-x.x.x.x-4.0.0.12911-EU-Downloader.exe"= "c:\\Program Files\\FinalMediaPlayer\\FMPCheckForUpdates.exe"= "c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"= "c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "56685:TCP"= 56685:TCP:Pando Media Booster "56685:UDP"= 56685:UDP:Pando Media Booster . R0 EUBAKUP;EUBAKUP;c:\windows\system32\drivers\eubakup.sys [2011-05-22 30600] R0 EUBKMON;EUBKMON;c:\windows\system32\drivers\EUBKMON.sys [2011-05-22 35720] R0 EUFS;EUFS;c:\windows\system32\drivers\eufs.sys [2011-05-22 20744] R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2009-12-03 682232] R1 EUDSKACS;EUDSKACS;c:\windows\system32\drivers\eudskacs.sys [2011-05-22 14216] R1 MpKsle5acfa5e;MpKsle5acfa5e;c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54D8E55D-A0D9-4208-901D-1677F91619A5}\MpKsle5acfa5e.sys [2011-10-16 28752] R2 NAUpdate;@c:\program files\Nero\Update\NASvc.exe,-200;c:\program files\Nero\Update\NASvc.exe [2010-03-25 490280] R2 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [2011-04-22 92592] R3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [2005-10-18 826752] R3 CMISTOR;CMIUCR.SYS CM220 Card Reader Driver;c:\windows\system32\drivers\cmiucr.SYS [2005-10-04 72320] R3 EUDISK;EASEUS Disk Enumerator;c:\windows\system32\drivers\eudisk.sys [2011-05-22 187528] R3 nvoclock;NVIDIA Enthusiasts Platform KDM;c:\windows\system32\drivers\nvoclock.sys [2009-09-15 38248] S0 rseb;rseb; [x] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?] S1 MpKsl06290bde;MpKsl06290bde;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E084729C-C12E-4863-96DD-783C9B064068}\MpKsl06290bde.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E084729C-C12E-4863-96DD-783C9B064068}\MpKsl06290bde.sys [?] S1 MpKsl15a900b7;MpKsl15a900b7;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D05DB7B6-FD76-401F-BAC4-F8B5E240C62A}\MpKsl15a900b7.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D05DB7B6-FD76-401F-BAC4-F8B5E240C62A}\MpKsl15a900b7.sys [?] S1 MpKsl323740df;MpKsl323740df;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{87471090-2663-40DA-A169-A9C40DAC6177}\MpKsl323740df.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{87471090-2663-40DA-A169-A9C40DAC6177}\MpKsl323740df.sys [?] S1 MpKsl50ce9ded;MpKsl50ce9ded;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{CD612A01-A8D7-4854-9FA6-DB84232BFE4E}\MpKsl50ce9ded.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{CD612A01-A8D7-4854-9FA6-DB84232BFE4E}\MpKsl50ce9ded.sys [?] S1 MpKsl5e127f68;MpKsl5e127f68;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{95F3EBB6-7DB0-4272-BEF3-DF0289948AC0}\MpKsl5e127f68.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{95F3EBB6-7DB0-4272-BEF3-DF0289948AC0}\MpKsl5e127f68.sys [?] S1 MpKsl5ea75b65;MpKsl5ea75b65;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C87622D8-2059-4252-B92F-C5CA5F27FF25}\MpKsl5ea75b65.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C87622D8-2059-4252-B92F-C5CA5F27FF25}\MpKsl5ea75b65.sys [?] S1 MpKsl5ef0f8bd;MpKsl5ef0f8bd;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{4873960C-9654-47CB-9FEE-3C862A5AF939}\MpKsl5ef0f8bd.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{4873960C-9654-47CB-9FEE-3C862A5AF939}\MpKsl5ef0f8bd.sys [?] S1 MpKsl6688438a;MpKsl6688438a;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54C0D3A0-3E89-451E-BB7F-A47CD532910C}\MpKsl6688438a.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{54C0D3A0-3E89-451E-BB7F-A47CD532910C}\MpKsl6688438a.sys [?] S1 MpKsl7d9464c7;MpKsl7d9464c7;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{72CA8B5F-45B3-493D-9691-88B353F17B41}\MpKsl7d9464c7.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{72CA8B5F-45B3-493D-9691-88B353F17B41}\MpKsl7d9464c7.sys [?] S1 MpKsl83964b2f;MpKsl83964b2f;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3FE533A6-9FD3-445B-B3D2-BDF4FCA5BD86}\MpKsl83964b2f.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3FE533A6-9FD3-445B-B3D2-BDF4FCA5BD86}\MpKsl83964b2f.sys [?] S1 MpKsl94b61bd0;MpKsl94b61bd0;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F5366143-2E09-4106-99E0-E36AD68FDCA7}\MpKsl94b61bd0.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F5366143-2E09-4106-99E0-E36AD68FDCA7}\MpKsl94b61bd0.sys [?] S1 MpKsl96fc4d6c;MpKsl96fc4d6c;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FF3013F8-87BF-4457-B1F9-44ABF9870ABB}\MpKsl96fc4d6c.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FF3013F8-87BF-4457-B1F9-44ABF9870ABB}\MpKsl96fc4d6c.sys [?] S1 MpKsl9a5d4504;MpKsl9a5d4504;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{68DF77E8-60A3-49A7-AF08-3E2172EE3A9A}\MpKsl9a5d4504.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{68DF77E8-60A3-49A7-AF08-3E2172EE3A9A}\MpKsl9a5d4504.sys [?] S1 MpKsla8cf63ee;MpKsla8cf63ee;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{5D0B4695-DF53-488A-AB01-34F851440B57}\MpKsla8cf63ee.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{5D0B4695-DF53-488A-AB01-34F851440B57}\MpKsla8cf63ee.sys [?] S1 MpKslbed7ca7f;MpKslbed7ca7f;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FF3013F8-87BF-4457-B1F9-44ABF9870ABB}\MpKslbed7ca7f.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FF3013F8-87BF-4457-B1F9-44ABF9870ABB}\MpKslbed7ca7f.sys [?] S1 MpKslc0eabccb;MpKslc0eabccb;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{4BAECBCB-AD0C-42D6-9E94-92194FCF9F1F}\MpKslc0eabccb.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{4BAECBCB-AD0C-42D6-9E94-92194FCF9F1F}\MpKslc0eabccb.sys [?] S1 MpKslc10acfe9;MpKslc10acfe9;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F3B993AD-E475-47F8-BCFD-5755B454A94B}\MpKslc10acfe9.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F3B993AD-E475-47F8-BCFD-5755B454A94B}\MpKslc10acfe9.sys [?] S1 MpKslc32e3866;MpKslc32e3866;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F87EEF36-718D-4097-A766-0EDBF6D06A38}\MpKslc32e3866.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{F87EEF36-718D-4097-A766-0EDBF6D06A38}\MpKslc32e3866.sys [?] S1 MpKslc720bcbb;MpKslc720bcbb;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{CD612A01-A8D7-4854-9FA6-DB84232BFE4E}\MpKslc720bcbb.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{CD612A01-A8D7-4854-9FA6-DB84232BFE4E}\MpKslc720bcbb.sys [?] S1 MpKslf5d8ef6d;MpKslf5d8ef6d;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D0B40BF5-B232-4C64-81B5-E77924D89818}\MpKslf5d8ef6d.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D0B40BF5-B232-4C64-81B5-E77924D89818}\MpKslf5d8ef6d.sys [?] S2 EASEUS Agent;EASEUS Agent;c:\program files\EASEUS\Todo Backup\bin\Agent.exe [2011-05-22 56200] S2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 136176] S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2011-05-22 13192] S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2011-05-22 8456] S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 136176] S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-09-30 137600] S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-09-30 8576] S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [2005-10-27 14336] S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?] S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?] S4 pctplsg;pctplsg;\??\c:\windows\system32\drivers\pctplsg.sys --> c:\windows\system32\drivers\pctplsg.sys [?] . --- Andere Services/Drivers In Geheugen --- . *NewlyCreated* - MPKSLE5ACFA5E . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] getPlusHelper REG_MULTI_SZ getPlusHelper nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-06-17 11:11 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Inhoud van de 'Gedeelde Taken' map . 2011-10-08 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57] . 2011-10-16 c:\windows\Tasks\Final Media Player Update Checker.job - c:\program files\FinalMediaPlayer\FMPCheckForUpdates.exe [2011-07-30 13:24] . 2011-10-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 10:28] . 2011-10-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-10-08 10:28] . 2011-10-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2185377507-2953793375-1258475662-1007Core.job - c:\documents and settings\michel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-05-26 03:38] . 2011-10-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2185377507-2953793375-1258475662-1007UA.job - c:\documents and settings\michel\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-05-26 03:38] . 2011-10-16 c:\windows\Tasks\MP Scheduled Scan.job - c:\program files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27 13:39] . 2011-10-16 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job - c:\program files\Ask.com\UpdateTask.exe [2010-02-04 15:50] . 2011-10-15 c:\windows\Tasks\User_Feed_Synchronization-{660099D3-511C-47FB-B782-D9BE78D3ECEF}.job - c:\windows\system32\msfeedssync.exe [2007-08-13 02:31] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.telegraaf.nl/ uInternet Settings,ProxyOverride = *.local IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~4\Office10\EXCEL.EXE/3000 IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html TCP: DhcpNameServer = 217.149.196.6 217.149.192.6 DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} - hxxp://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab DPF: {63D6DD13-C913-466D-9444-9357561E4D94} - hxxp://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab . - - - - ORPHANS VERWIJDERD - - - - . AddRemove-Catan - c:\windows\IsUn0413.exe AddRemove-Microsoft Interactive Training - c:\windows\IsUn0413.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2011-10-16 17:11 Windows 5.1.2600 Service Pack 3 NTFS . scannen van verborgen processen ... . scannen van verborgen autostart items ... . HKLM\Software\Microsoft\Windows\CurrentVersion\Run EaseUs Tray = "c:\program files\EASEUS\Todo Backup\bin\TrayNotify.exe"????????????????????????????????????????????????????????? . scannen van verborgen bestanden ... . Scan succesvol afgerond verborgen bestanden: 0 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc] "ImagePath"="c:\windows\system32\GameMon.des -service" . Voltooingstijd: 2011-10-16 17:14:56 ComboFix-quarantined-files.txt 2011-10-16 15:14 ComboFix2.txt 2009-03-24 14:59 ComboFix3.txt 2009-03-22 15:19 . Pre-Run: 5,339,930,624 bytes beschikbaar Post-Run: 25,071,607,808 bytes beschikbaar . - - End Of File - - 39C3C88CE217A5B1907E515DF2346085 - - - Updated - - - Ik heb na de scan van spybot nog niet op fix selected gedrukt. Ik wist niet of dat kan. groetjes -
vaak melding pc is hersteld van een ernstige fout
avengernl reageerde op avengernl's topic in Archief Bestrijding malware & virussen
Bedankt voor je reactie. Helaas is mijn pc niet sneller geworden en i.e is nog traag met openen en soms doet hij niks. Computers zijn handig maar dan moeten ze wel goed werken. Hierbij mijn logs. alwarebytes Anti-Malware 1.65.1.1000 www.malwarebytes.org Databaseversie: v2012.11.26.03 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 michel :: AVENGER [administrator] 2012-11-28 16:13 mbam-log-2012-11-28 (16-13-29).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 284763 Verstreken tijd: 36 minuut/minuten, 31 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) (einde) hijack log Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:08, on 2012-11-28 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\WINDOWS\system32\LckFldService.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\Samsung\AllShare\AllShareAgent.exe C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe C:\Program Files\DivX\DivX Update\DivXUpdate.exe C:\Program Files\FileHippo.com\UpdateChecker.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\notepad.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\msiexec.exe C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hyves R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Nieuws | Altijd op de hoogte van het laatste nieuws met Telegraaf.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door Hyves R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet O4 - HKLM\..\Run: [sDTray] "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O14 - IERESET.INF: START_PAGE_URL=http://www.aldi.com/ O16 - DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} - http://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.8.110.cab O16 - DPF: {63D6DD13-C913-466D-9444-9357561E4D94} - http://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1353920875687 O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing) O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe -- End of file - 11523 bytes - - - Updated - - - Bedankt voor je reactie. Helaas is mijn pc niet sneller geworden en i.e is nog traag met openen en soms doet hij niks. Computers zijn handig maar dan moeten ze wel goed werken. Hierbij mijn logs. alwarebytes Anti-Malware 1.65.1.1000 www.malwarebytes.org Databaseversie: v2012.11.26.03 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 michel :: AVENGER [administrator] 2012-11-28 16:13 mbam-log-2012-11-28 (16-13-29).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 284763 Verstreken tijd: 36 minuut/minuten, 31 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) (einde) hijack log Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:08, on 2012-11-28 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\WINDOWS\system32\LckFldService.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\Samsung\AllShare\AllShareAgent.exe C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe C:\Program Files\DivX\DivX Update\DivXUpdate.exe C:\Program Files\FileHippo.com\UpdateChecker.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\notepad.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\msiexec.exe C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.hyves.nl R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.telegraaf.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door Hyves R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet O4 - HKLM\..\Run: [sDTray] "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O14 - IERESET.INF: START_PAGE_URL=http://www.aldi.com/ O16 - DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} - http://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.8.110.cab O16 - DPF: {63D6DD13-C913-466D-9444-9357561E4D94} - http://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1353920875687 O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing) O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe -- End of file - 11523 bytes -
vaak melding pc is hersteld van een ernstige fout
avengernl plaatste een topic in Archief Bestrijding malware & virussen
Een hele goede avond. Mijn pc gaat regelmatig in de reboot waarna de melding uw pc is hersteld van een ernstige fout. Ook opent i.e de eerste 5a 10 x niet. Krijg dan een half scherm en poef weer weg. Soms neemt i.e niet eens de moeite om hem te openen ;-(. Ook de updates blijft hij maar doen opnieuw en opnieuw. Soms wel drie of vier x per dag. Als ik ze uitzet en dan windows update draai zegt hij dat ze weer aanmoeten. Veel programma's lopen vast of traag. Om gek van te worden. Ik heb al vele dingen geprobeerd via jullie advies bij andere gebruikers. Ik heb malware en cc cleaner al gedraaid maar helpt niks. Hierbij mij hijack log.Hoop dat jullie er wijs uit worden. Met vriendelijke groet michel Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 21:26, on 2012-11-25 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\WINDOWS\system32\LckFldService.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files\Samsung\AllShare\AllShareAgent.exe C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Samsung\AllShare\AllShare.exe C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hyves R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Nieuws | Altijd op de hoogte van het laatste nieuws met Telegraaf.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door Hyves R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~1\SEARCH~1\Datamngr\BROWSE~1.DLL O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey O4 - HKLM\..\Run: [AllShareAgent] C:\Program Files\Samsung\AllShare\AllShareAgent.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet O4 - HKLM\..\Run: [sDTray] "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O14 - IERESET.INF: START_PAGE_URL=http://www.aldi.com/ O16 - DPF: {0DBF2423-33D3-4084-B83E-6A3661F2CD46} - http://www.mijnalbum.nl/v3/skinsrc/core/system/6.5.6/ImageUploader6.cab O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.8.110.cab O16 - DPF: {63D6DD13-C913-466D-9444-9357561E4D94} - http://www.mijnalbum.nl/v3/skinsrc/core/system/ma5.8.3/uploadtoepassing.cab O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\SEARCH~1\Datamngr\datamngr.dll C:\PROGRA~1\SEARCH~1\Datamngr\IEBHO.dll O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing) O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe O23 - Service: LckFldService - Unknown owner - C:\WINDOWS\system32\LckFldService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing) O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Samsung AllShare PC (SamsungAllShareV2.0) - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SimpleSlideShowServer - Samsung Electronics Co., Ltd. - C:\Program Files\Samsung\AllShare\AllShareSlideShowService.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe O23 - Service: Update Center Service (UpdateCenterService) - NVIDIA - C:\Program Files\NVIDIA Corporation\System Update\UpdateCenterService.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe -- End of file - 11450 bytes
OVER ONS
PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!