Ga naar inhoud

Hensyr

Medewerker
  • Items

    2.773
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door Hensyr

  1. Tiens tiens, en ik dacht dat het "Windows Live Mail" programma niet beschikbaar was in Windows Vista maar wel "Windows Mail" dat toch wel een groot verschil uitmaakt. Normaal zou het zo kunnen dat je op de oude computer een applicatie zet waardoor je de oude mails en adressen via de cloud naar je nieuwe Outlook kan overzetten in Windows 8 zie deze link: https://col0-sec.mail.live.com/mail/MailMigrationSelectAccount.aspx?mms=client hopelijk kan dit je probleem oplossen
  2. inSSIDer screenshot op kanaal 11 toont -67 dBm: [ATTACH=CONFIG]25049[/ATTACH]
  3. resultaat kanaal 7 ben ik spijtig te vlug geweest om het te kopiëren, kwam eigenlijk door een stomme popup reklame die er compleet voor zat en ik kreeg die natuurlijk niet weg, had al geklikt op kopiëren terwijl het resultaat nog aan het laden was op Speedtest.net Maar dat resultaat was ook niet om naar huis te schrijven. Uiteindelijk kwam kanaal 11 als beste uit de testen en die staat nu zo geselecteerd op Telenet zie screenshot: [ATTACH=CONFIG]25048[/ATTACH] straks ga ik naar de winkel om dezelfde usb draadloze adapter als die van mijn echtgenote, die Belkin play N600 dual band dan ga ik terug naar beide frequenties overschakelen en zie wat er dan gebeurd. - - - Updated - - - Kanaal 7 speedtest:
  4. Ok hier gaan we eens het rijtje af gaan. Normaal zou ik tot kanaal 13 moeten kunnen gaan op de 2.4 GHz frequentie maar Telenet laat me maar tot kanaal 11 gaan. Laten we daar mee beginnen. Kanaal 11 speedtest: Kanaal 10 speedtest: Kanaal 9 speedtest: Kanaal 8 speedtest: Kanaal 7 speedtest: Kanaal 6 speedtest: Kanaal 5 speedtest: Kanaal 4 speedtest: Kanaal 3 speedtest: Kanaal 2 speedtest: Kanaal 1 speedtest:
  5. meer detail screenshot inSSIDer: [ATTACH=CONFIG]25019[/ATTACH] geen overlappingen [ATTACH=CONFIG]25020[/ATTACH]
  6. de instellingen op "mijn telenet" heb ik aangepast naar de 2.4 GHz band en het wifi protocol 802.11n als standaard ingesteld (zie screenshot) [ATTACH=CONFIG]25017[/ATTACH] tiens tiens, ik wist niet dat er een nieuwe inSSIDer beschikbaar was van Metageek, speciaal voor thuisgebruikers dan nog wel, waauw prachtig gewoon:top: ik had nog een oudere versie staan maar deze nieuwe toch gedownload. Er zijn geen andere netwerken zichtbaar die zouden kunnen storen tot nu toe, ik woon nogal afgelegen. Dit is een screenshot van de nieuwe inSSIDer for Home: [ATTACH=CONFIG]25018[/ATTACH] Heel merkwaardig is de terugval rond 23:39 u toen ik de browser opende om een nieuwe speedtest te doen. Dit is het resultaat van die speedtest: http://speedtest.net/result/2623389702.png Ik had zo zitten denken om dezelfde usb adapter aan te schaffen als die Belkin N600 van mijn echtgenote, aangezien deze beide frequenties ondersteund (2.4 GHz en 5 GHz), zou dit dan wat uitmaken voor de modem? Ik bedoel dat de ingebouwde router toch altijd de zwakste eruit kiest om de snelheid te verdelen over alle gebruikers en ik meen te denken dat mijn D-Link DWA-131 hierin toch de zwakke schakel is, of zie ik dit verkeerd.
  7. hoi kweezie wabbit, we zijn nu 24 u later en de homespot staat uit met als resultaat van de nieuwe speedtest:
  8. de laatste screenshot is wat klein uitgevallen en ik was buiten de drie minuten om dit te verbeteren. dit is een betere versie van mijn Telemeter: [ATTACH=CONFIG]25000[/ATTACH]
  9. Ik heb ook eens naar mijn telemeter gekeken en daar is mijn verbruik vrij. Ook ben ik niet afgeremd geweest tijdens mijn verbruiksperiode omdat ik niet als grootverbruiker ben opgemerkt. zie screenshot: [ATTACH=CONFIG]24998[/ATTACH]
  10. zie screenshot homespot uit gezet: [ATTACH=CONFIG]24992[/ATTACH] wat de frequentie betreft: de 2.4 GHz band ondersteund de drie protocols: 802.11bgn dus ook de 802.11n de 5 GHz band ondersteund het protocol 802.11n zie screenshot: [ATTACH=CONFIG]24993[/ATTACH] Maar de usb draadloze adapter die ik gebruik is geen dual band en ondersteund alleen de 2.4 GHz band en wel het 802.11 g/n protocol zie screenshot van mijn usb draadloze adapter: [ATTACH=CONFIG]24995[/ATTACH] De usb draadloze adapter van mijn echtgenote ondersteund beide frequentie's en is Dual band en ook de protocols 802.11 n/g/a zie screenshot: [ATTACH=CONFIG]24996[/ATTACH] Ik denk dat ik maar eens op zoek ga gaan naar dezelfde usb adapter zoals die van mijn echtgenote, dan kan ik ook profiteren van de 5 GHz band of juist niet en wisselen hihi. Nee zo ben ik niet, dat kan ik haar niet aandoen.
  11. Op webpagina "mijn telenet" heb ik zojuist de homespot uitgezet. Morgenavond 22:17 u moet die dus 24 u gepasseerd hebben en uit staan. Dan doe ik nog eens een speedtest en zet het resultaat hier neer.
  12. dit zijn de resultaten van de speedtesten met wifi: deze is getest op de computer van mijn echtgenote: en deze op mijn computer: - - - Updated - - - er is dus wel een merkbaar groot verschil
  13. maar natuurlijk is dit niet de bedoeling het zo te houden want dan zal mijn wederhelft niet zo tevreden zijn met het feit dat er nu een kabel door de kamers loopt. ze heeft ondertussen al gereageerd dat ik met nageltjes die kabel omhoog moet hangen hihi. Dus is het nu zaak uit te maken hoe ik dit draadloos internet kan verbeteren. Hier ziet u een grondplan van mijn huis met de plaats van de modem, de computer van mijn echtgenote en mijn bureel: [ATTACH=CONFIG]24896[/ATTACH] Het zit namelijk zo dat ik een D-Link DWA-131 N Nano usb stick gebruik en mijn echtgenote die toch wel dichter zit bij de modem gebruikt een Belkin N600 usb stick Dat is zowat onze configuratie.
  14. hey beste kweezie wabbit, het is me eindelijk gelukt om de RJ45 stekkers goed te assembleren aan de UTP cat6 kabel. met hulp van mijn echtgenote en een goede weerstand meter heb ik ontdekt dat er 3 aders geen contact maakten met de koperen lipjes in de stekkers. Dus beide stekkers afgeknipt en opnieuw geknepen met zo'n speciale tang. Uitgetest en voila! Nu in de pc en de modem inpluggen en klaar is kees. Dat dacht ik tenminste. Geen internet via de kabel? Ach ja natuurlijk:stupid: Eerst die draadloze wifi op de computer uitschakelen natuurlijk! En nu? Potvolkoffie! nog geen internet? Nee! Dan maar naar Apparaatbeheer en daar...ja natuurlijk de Ethernetkaart aanzetten en hopla......nee toch! Nog geen internet maar er wordt wel steeds opnieuw geprobeerd om contact met de modem te maken...dat is toch al iets he. OK, even een andere poort nemen dan en kijken wat er nu gebeurd. Potvolpotloden nog aan toe...het blijft maar aan, uit, aan, uit...en zo verder, hier klopt iets niet. Ach nu weet ik het! De knop indrukken om de modem te resetten... Neen het mag niet baten, wat kan ik nu nog doen? Hola, juist...even de stekker uit het stopcontact halen van die modem en 10 seconden wachten en de stekker terug in het stopcontact steken. Yeehaaaa...er is internet via de kabel! - - - Updated - - - Nu even een speedtest doen met de link die je hebt doorgegeven: http://www.speedtest.net/ Resultaat is verbluffend: Wat denk je daarvan kweezie wabbit? groetjes, hensyr
  15. ach ja natuurlijk, ik ga eens rondvragen om iemand op bezoek te krijgen met een laptop. Dat is een goed idee! Ondertussen ben ik wel al aan een UTP cat6 kabel geraakt die lang genoeg is om mijn computer aan de modem te verbinden maar blijkbaar heb ik toch iets verkeerd gedaan bij het patchen van de connectors omdat ik geen verbinding krijg. Nochtans RJ45 connectors als straight gepatched, ik ga ze afknippen en nog eens opnieuw proberen. Kleurencode die ik heb gebruikt is van links naar rechts met klipje naar onder gericht: oranje/wit - oranje - groen/wit - blauw - blauw/wit - groen - bruin/wit - bruin Andere kant van de kabel exact hetzelfde: zou toch straight moeten zijn he?
  16. Momenteel is dit de huidige configuratie die ik betaal bij Telenet. Telenet Fibernet XL (zie screenshots) [ATTACH=CONFIG]24829[/ATTACH] Maar ik moet er wel bij zeggen dat ik dit nooit kan halen volgens de installateur die hier thuis de configuratie aansluiting heeft gedaan. Omdat ik 50 meter van straat af woon is de kabel van de aftakking op straat (die bovengronds is) tot aan het huis nog een oude kabel die deze snelle transmissie niet ondersteund, volgens de installateur. Ik zou zelf een nieuwe kabel moeten kopen en hun dan vragen die te vervangen met de oude. Nogal een raar antwoord vond ikzelf, maar ik heb ondertussen toch internet. Ik hoop dat deze info jou verder helpt. - - - Updated - - - Dit is mijn modem momenteel (zie screenshot): [ATTACH=CONFIG]24830[/ATTACH]
  17. Beste kweezie wabbit, Het aansluiten via een UTP kabel moet ik spijtig achterwege laten, ik zou al 22 meter kabel moeten hebben. Maar ik ga dat wel in orde krijgen, alleen lukt dat nu nog niet. µTorrent is uitgeschakeld en wordt niet meer opgestart wanneer Windows wordt gestart. Was die vergeten natuurlijk...oeps! Het resultaat: 1) HiJackThis opgestart als admin. en de lijst die u doorgaf geselecteerd voor fix checked. 2) AdwCleaner gedownload via uw link en als admin. uitgevoerd zoals beschreven: hierna het logje # AdwCleaner v2.115 - Logfile created 03/26/2013 at 18:58:30 # Updated 17/03/2013 by Xplode # Operating system : Windows 7 Enterprise N Service Pack 1 (64 bits) # User : Hendrik - HENDRIK-PC1 # Boot Mode : Normal # Running from : D:\My Downloads\adwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** Folder Deleted : C:\Program Files (x86)\ConduitEngine Folder Deleted : C:\Program Files (x86)\Smartdl Folder Deleted : C:\Users\Hendrik\AppData\LocalLow\boost_interprocess Folder Deleted : C:\Users\Hendrik\AppData\LocalLow\Conduit Folder Deleted : C:\Users\Hendrik\AppData\LocalLow\ConduitEngine Folder Deleted : C:\Users\Hendrik\AppData\LocalLow\facemoods.com Folder Deleted : C:\Users\Hendrik\AppData\LocalLow\PriceGong Folder Deleted : C:\Users\Hendrik\AppData\Roaming\dvdvideosoftiehelpers Folder Deleted : C:\Users\Hendrik\AppData\Roaming\Mozilla\Firefox\Profiles\opp9rn57.default\extensions\crossriderapp14987@crossrider.com Folder Deleted : C:\Users\Hendrik\AppData\Roaming\Mozilla\Firefox\Profiles\opp9rn57.default\jetpack Folder Deleted : C:\Users\Hendrik\AppData\Roaming\OpenCandy ***** [Registry] ***** Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong Key Deleted : HKCU\Software\AppDataLow\Toolbar Key Deleted : HKCU\Software\Ask&Record Key Deleted : HKCU\Software\Conduit Key Deleted : HKCU\Software\Cr_Installer Key Deleted : HKCU\Software\InstalledBrowserExtensions Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CE82910E-60DE-46EC-81AA-280C0EE44F48} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Key Deleted : HKCU\Software\Softonic Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C} Key Deleted : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap Key Deleted : HKLM\Software\Conduit Key Deleted : HKLM\Software\conduitEngine Key Deleted : HKLM\Software\Iminent Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonTC_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoods_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoods_RASMANCS Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASAPI32 Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\facemoodssrv_RASMANCS Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine Key Deleted : HKU\S-1-5-21-1364749199-3237543244-4035560231-1005\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} ***** [internet Browsers] ***** -\\ Internet Explorer v10.0.9200.16521 [OK] Registry is clean. -\\ Mozilla Firefox v19.0.2 (nl) File : C:\Users\Hendrik\AppData\Roaming\Mozilla\Firefox\Profiles\opp9rn57.default\prefs.js Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationThankYouPage", false); Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationTime", 1356994033); Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationUserSettings.searchUserConifrmation", fal[...] Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationUserSettings.setHomepage", false); Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationUserSettings.setNewTab", false); Deleted : user_pref("extensions.crossriderapp14987.14987.InstallationUserSettings.setSearch", false); Deleted : user_pref("extensions.crossriderapp14987.14987.active", true); Deleted : user_pref("extensions.crossriderapp14987.14987.addressbar", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.addressbarenhanced", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.backgroundjs", "\n\n/********************************[...] Deleted : user_pref("extensions.crossriderapp14987.14987.backgroundver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.can_run_bg_code", true); Deleted : user_pref("extensions.crossriderapp14987.14987.certdomaininstaller", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.changeprevious", false); Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress0.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress0.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress1.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress1.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress10.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress10.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress100.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress100.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress101.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress101.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress102.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress102.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress103.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress103.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress104.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress104.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress105.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress105.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress106.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress106.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress107.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress107.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress108.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress108.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress109.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress109.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress11.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress11.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress110.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress110.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress111.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress111.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress112.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress112.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress113.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress113.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress114.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress114.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress115.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress115.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress116.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress116.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress117.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress117.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress118.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress118.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress119.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress119.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress12.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress12.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress120.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress120.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress121.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress121.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress122.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress122.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress123.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress123.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress124.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress124.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress125.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress125.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress126.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress126.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress127.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress127.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress128.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress128.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress129.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress129.value", "%5B%22hxxp%[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress13.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress13.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress14.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress14.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress15.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress15.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress16.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress17.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress17.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress18.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress18.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress19.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress19.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress2.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress2.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress20.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress20.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress21.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress21.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress22.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress22.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress23.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress23.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress24.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress24.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress25.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress25.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress26.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress26.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress27.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress27.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress28.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress28.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress29.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress29.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress3.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress3.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress30.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress30.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress31.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress31.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress32.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress32.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress33.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress33.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress34.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress34.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress35.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress35.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress36.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress36.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress37.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress37.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress38.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress38.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress39.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress39.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress4.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress4.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress40.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress40.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress41.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress41.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress42.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress42.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress43.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress43.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress44.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress44.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress45.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress45.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress46.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress46.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress47.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress47.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress48.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress48.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress49.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress49.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress5.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress5.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress50.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress50.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress51.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress51.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress52.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress53.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress53.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress54.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress54.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress55.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress55.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress56.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress56.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress57.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress57.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress58.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress58.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress59.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress59.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress6.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress6.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress60.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress60.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress61.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress61.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress62.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress62.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress63.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress63.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress64.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress64.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress65.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress65.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress66.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress66.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress67.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress67.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress68.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress68.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress69.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress69.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress7.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress7.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress70.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress70.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress71.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress71.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress72.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress72.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress73.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress73.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress74.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress74.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress75.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress75.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress76.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress76.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress77.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress77.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress78.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress78.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress79.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress79.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress8.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress8.value", "%5B%22hxxp%3A[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress80.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress80.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress81.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress81.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress82.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress82.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress83.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress83.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress84.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress84.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress85.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress85.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress86.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress86.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress87.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress87.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress88.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress88.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress89.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress89.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress9.expiration", "Fri Feb [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress90.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress90.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress91.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress91.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress92.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress92.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress93.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress93.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress94.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress94.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress95.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress95.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress96.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress96.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress97.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress97.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress98.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress98.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress99.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddress99.value", "%5B%22hxxp%3[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddressCount.expiration", "Fri [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.EnabledPhishingAddressCount.value", "130"); Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.InstallationTime.expiration", "Fri Feb 01 2030[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.InstallationTime.value", "1356994033"); Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.InstallerParams.expiration", "Fri Feb 01 2030 [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.PhishingDataLastUpdatedTime.expiration", "Fri [...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie.PhishingDataLastUpdatedTime.value", "135707760[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_aoi.expiration", "Fri Feb 01 2030 00:00:0[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_aoi.value", "%221356994423%22"); Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_parent_zoneid.expiration", "Fri Feb 01 20[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_parent_zoneid.value", "%22113354%22"); Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_zoneid.expiration", "Fri Feb 01 2030 00:0[...] Deleted : user_pref("extensions.crossriderapp14987.14987.cookie._GPL_zoneid.value", "%22126030%22"); Deleted : user_pref("extensions.crossriderapp14987.14987.description", "PC Speed Up Extension provides phishin[...] Deleted : user_pref("extensions.crossriderapp14987.14987.domain", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.enablesearch", false); Deleted : user_pref("extensions.crossriderapp14987.14987.fbremoteurl", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.group", 0); Deleted : user_pref("extensions.crossriderapp14987.14987.homepage", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.iframe", false); Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.InstallerIdentifiers.expiration", "Fri Feb[...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.InstallerIdentifiers.value", "%7B%22instal[...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_appVer.expiration", "Fri Feb 01 [...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_appVer.value", "28"); Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_lastVersion.expiration", "Fri Fe[...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_lastVersion.value", "4"); Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_meta.expiration", "Fri Feb 01 20[...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_meta.value", "%7B%7D"); Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_nextCheck.expiration", "Sat Jan [...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_nextCheck.value", "true"); Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_queue.expiration", "Fri Feb 01 2[...] Deleted : user_pref("extensions.crossriderapp14987.14987.internaldb.Resources_queue.value", "%7B%7D"); Deleted : user_pref("extensions.crossriderapp14987.14987.js", "\n\n/******************************************[...] Deleted : user_pref("extensions.crossriderapp14987.14987.manifesturl", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.name", "PC Speed Up Extension"); Deleted : user_pref("extensions.crossriderapp14987.14987.newtab", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.opensearch", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_1.code", "appAPI._cr_config={appID:fun[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_1.name", "base"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_1.ver", 3); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_13.code", "(function(a){a.selectedText[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_13.name", "CrossriderAppUtils"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_13.ver", 2); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_14.code", "if(typeof(appAPI)===\"undef[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_14.name", "CrossriderUtils"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_14.ver", 2); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_15.code", "(function(f){var u={};var e[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_15.name", "FacebookFFIE"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_15.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_16.code", "if((typeof isBackground===\[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_16.name", "FFAppAPIWrapper"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_16.ver", 4); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_17.code", "if(typeof window!==\"undefi[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_17.name", "jQuery"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_17.ver", 3); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_21.code", "var CrossriderDebugManager=[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_21.name", "debug"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_21.ver", 3); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_22.code", "(function(a){appAPI.queueMa[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_22.name", "resources"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_22.ver", 2); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_28.code", "var CrossriderInitializerPl[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_28.name", "initializer"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_28.ver", 2); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_31.code", "if (!appAPI.monetize || app[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_31.name", "dealply"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_31.ver", 3); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_4.code", "/*! jQuery v1.7.1 jquery.com[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_4.name", "jquery_1_7_1"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_4.ver", 3); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_47.code", "(function(){appAPI.ready=fu[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_47.name", "resources_background"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_47.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_60.code", "var MonitizationPluginsBase[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_60.name", "base_monetization"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_60.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_64.code", "(function(){var h=\"__CR_EM[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_64.name", "appApiMessage"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_64.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_72.code", "if(appAPI.__should_activate[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_72.name", "appApiValidation"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_72.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_75.code", "if (!appAPI.monetize || app[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_75.name", "50onred_coupons_intext_ads"[...] Deleted : user_pref("extensions.crossriderapp14987.14987.plugins.plugin_75.ver", 1); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins_lists.plugins_0", "17,14,16,64,72,47"); Deleted : user_pref("extensions.crossriderapp14987.14987.plugins_lists.plugins_1", "17,14,13,16,15,64,72,4,1,2[...] Deleted : user_pref("extensions.crossriderapp14987.14987.pluginsurl", "hxxp://app-static.crossrider.com/plugin[...] Deleted : user_pref("extensions.crossriderapp14987.14987.pluginsversion", 14); Deleted : user_pref("extensions.crossriderapp14987.14987.publisher", "Speedchecker"); Deleted : user_pref("extensions.crossriderapp14987.14987.searchstatus", 0); Deleted : user_pref("extensions.crossriderapp14987.14987.setnewtab", false); Deleted : user_pref("extensions.crossriderapp14987.14987.settingsurl", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.thankyou", ""); Deleted : user_pref("extensions.crossriderapp14987.14987.updateinterval", 360); Deleted : user_pref("extensions.crossriderapp14987.14987.ver", 28); Deleted : user_pref("extensions.crossriderapp14987.apps", "14987"); Deleted : user_pref("extensions.crossriderapp14987.bic", "13bf326192e78725655344ac3baff2db"); Deleted : user_pref("extensions.crossriderapp14987.cid", 14987); Deleted : user_pref("extensions.crossriderapp14987.firstrun", false); Deleted : user_pref("extensions.crossriderapp14987.hadappinstalled", true); Deleted : user_pref("extensions.crossriderapp14987.installationdate", 1356994059); Deleted : user_pref("extensions.crossriderapp14987.lastcheck", 22622381); Deleted : user_pref("extensions.crossriderapp14987.lastcheckitem", 22622500); Deleted : user_pref("extensions.crossriderapp14987.modetype", "production"); Deleted : user_pref("extensions.crossriderapp14987.reportInstall", true); ************************* AdwCleaner[s1].txt - [45888 octets] - [26/03/2013 18:58:30] ########## EOF - C:\AdwCleaner[s1].txt - [45949 octets] ########## Amaai, is me dat een lijst zeg, en dat op mijne pc! Potvolkoffie nog aan toe, ik vraag mij af wat diene "crossrider" eigenlijk is, en ik zie ook dat die "ConduitEngine" is uitgeschakeld, deze staat al zeer lang op deze pc. 3) een nieuw HiJackThis logje gemaakt: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:11:19, on 26/03/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16521) Boot mode: Normal Running processes: C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN België: Hotmail, Skype, nieuws, entertainment, lifestyle en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: EspressoBHO - {FD6C6509-FE36-44B0-A917-6C2A0DDBDF88} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\Espresso.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [CTZDetec.exe] "C:\Program Files (x86)\Creative\Creative Media Lite\CTZDetec.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [softAuto.exe] "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O4 - Startup: Curse Client.lnk = C:\Users\Hendrik\AppData\Local\Apps\2.0\QNGTC4Y9.75E\YWZ2QVZG.EQN\curs..tion_eee711038731a406_0004.0000_2bd39706d04e72c8\CurseClient.exe O4 - Startup: CurseClientStartup.ccip O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra 'Tools' menuitem: HP Smart Print 2.0 - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.dexia.be O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect119b.cab O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CareMon - Unknown owner - C:\Program Files (x86)\Spotmau\PowerSuite Golden Edition\PowerSuite 2012\PcCheck\CareMon.exe O23 - Service: Cobian Backup 11 Volume Shadow Copy Requester (cbVSCService11) - CobianSoft, Luis Cobian - C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing) O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Macrium Reflect Image Mounting Service (ReflectService) - Unknown owner - C:\Program Files\Macrium\Reflect\ReflectService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe O23 - Service: Secunia Update Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\sua.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - D:\VMWare Workstation\vmware-ufad.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - D:\VMWare Workstation\vmware-authd.exe O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 14210 bytes 4) en nog een nieuwe speedtest dat er al stukken beter uitziet dan de vorige: Zoals ik u vertelde moet ik u de speedtest met UTP kabel nog even schuldig blijven. Het moet gezegd zijn dat ik de pc nu twee meter heb verplaatst dichter naar de router toe, het is toch iets. Maar het resultaat dankzij uw interventie is nu reeds sterk merkbaar, wanneer ik mijn Internet Explorer open zet wordt die direct geladen op mijn start pagina. Ook het laden van deze webpagina gaat heel vlotjes en ik kan onmiddellijk in het forum inloggen en schrijven. Het openen van filmpjes op het internet via links op mijn mail programma, laden ook direct. Wat een verschil met gisteren, nog geen enkele keer op F5 moeten drukken...yeehaa Van zodra ik een netwerk kabel "UTP straight" kan aanleggen, laat ik het nog weten. Alvast heel erg bedankt. Groetjes, Hendrik
  18. verontschuldig me omdat het er nu twee keer op staat, ik kreeg hier een extra venster na geklikt te hebben op "snel reageren" of ik deze pagina echt wou verlaten. Ik klikte op neen natuurlijk. Ik wilde op deze pagina blijven en er gebeurde niks. Dus klikte ik nogmaals op de knop "snel reageren" en ik kreeg prompt terug het venster met de vraag of ik de pagina wou verlaten. Dan maar op ja geklikt en nu zie ik dat het hele verslag er tweemaal op staat. Mijn verontschuldiging a.u.b.. Groetjes, Hensyr
  19. Beste kweezie wabbit, hierna volgt uw opdracht in dezelfde volgorde: 1) Speccy verslag: http://speccy.piriform.com/results/tUfccZhkYn0wEtdnSr1HSZE 2) Speedtest verslag: of http://www.speedtest.net/result/2599887987.png ik hoop dat deze goed ging, ben het niet zeker. 3) Logfile HiJackThis: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 0:23:44, on 26/03/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16521) Boot mode: Normal Running processes: C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN België: Hotmail, Skype, nieuws, entertainment, lifestyle en meer! R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {87775fdb-6972-41f9-ae51-8326e38cb206} - (no file) R3 - URLSearchHook: (no name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - (no file) F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: EspressoBHO - {FD6C6509-FE36-44B0-A917-6C2A0DDBDF88} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\Espresso.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - (no file) O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing) O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [CTZDetec.exe] "C:\Program Files (x86)\Creative\Creative Media Lite\CTZDetec.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [softAuto.exe] "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O4 - Startup: Curse Client.lnk = C:\Users\Hendrik\AppData\Local\Apps\2.0\QNGTC4Y9.75E\YWZ2QVZG.EQN\curs..tion_eee711038731a406_0004.0000_2bd39706d04e72c8\CurseClient.exe O4 - Startup: CurseClientStartup.ccip O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra 'Tools' menuitem: HP Smart Print 2.0 - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.dexia.be O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect119b.cab O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CareMon - Unknown owner - C:\Program Files (x86)\Spotmau\PowerSuite Golden Edition\PowerSuite 2012\PcCheck\CareMon.exe O23 - Service: Cobian Backup 11 Volume Shadow Copy Requester (cbVSCService11) - CobianSoft, Luis Cobian - C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing) O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Macrium Reflect Image Mounting Service (ReflectService) - Unknown owner - C:\Program Files\Macrium\Reflect\ReflectService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe O23 - Service: Secunia Update Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\sua.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - D:\VMWare Workstation\vmware-ufad.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - D:\VMWare Workstation\vmware-authd.exe O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 14942 bytes Verschiet nou niet van wat je allemaal tegen komt he, het zou wel eens een zootje kunnen zijn. Groetjes, Hensyr - - - Updated - - - Beste kweezie wabbit, hierna volgt uw opdracht in dezelfde volgorde: 1) Speccy verslag: http://speccy.piriform.com/results/tUfccZhkYn0wEtdnSr1HSZE 2) Speedtest verslag: of http://www.speedtest.net/result/2599887987.png ik hoop dat deze goed ging, ben het niet zeker. 3) Logfile HiJackThis: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 0:23:44, on 26/03/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16521) Boot mode: Normal Running processes: C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://be.msn.com/default.aspx?lang=nl-be&ocid=OIE9HP R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {87775fdb-6972-41f9-ae51-8326e38cb206} - (no file) R3 - URLSearchHook: (no name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - (no file) F2 - REG:system.ini: UserInit=userinit.exe, O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll O2 - BHO: EspressoBHO - {FD6C6509-FE36-44B0-A917-6C2A0DDBDF88} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\Espresso.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O3 - Toolbar: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - (no file) O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing) O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [CTZDetec.exe] "C:\Program Files (x86)\Creative\Creative Media Lite\CTZDetec.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\Run: [softAuto.exe] "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" (User 'UpdatusUser') O4 - HKUS\S-1-5-21-1364749199-3237543244-4035560231-1005\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser') O4 - Startup: Curse Client.lnk = C:\Users\Hendrik\AppData\Local\Apps\2.0\QNGTC4Y9.75E\YWZ2QVZG.EQN\curs..tion_eee711038731a406_0004.0000_2bd39706d04e72c8\CurseClient.exe O4 - Startup: CurseClientStartup.ccip O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra 'Tools' menuitem: HP Smart Print 2.0 - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\LaunchEspresso.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O10 - Unknown file in Winsock LSP: d:\vmware workstation\vsocklib.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.dexia.be O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect119b.cab O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CareMon - Unknown owner - C:\Program Files (x86)\Spotmau\PowerSuite Golden Edition\PowerSuite 2012\PcCheck\CareMon.exe O23 - Service: Cobian Backup 11 Volume Shadow Copy Requester (cbVSCService11) - CobianSoft, Luis Cobian - C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing) O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTDevSrv.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NitroPDFReaderDriverCreatorReadSpool2 (NitroReaderDriverReadSpool2) - Nitro PDF Software - C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe O23 - Service: Macrium Reflect Image Mounting Service (ReflectService) - Unknown owner - C:\Program Files\Macrium\Reflect\ReflectService.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe O23 - Service: Secunia Update Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\sua.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - D:\VMWare Workstation\vmware-ufad.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - D:\VMWare Workstation\vmware-authd.exe O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 14942 bytes Verschiet nou niet van wat je allemaal tegen komt he, het zou wel eens een zootje kunnen zijn. Groetjes, Hensyr
  20. Beste forum vrienden, Het is niet de eerste keer dat ik beroep moet doen op jullie prachtige oplossingen. Ik ben er weer en deze keer gaat het over mijn eigen computer. Graag wil ik van zero beginnen en het uitpluizen omdat ik zelf nogal diep in mijn systeem scharrel uit leergierigheid. Maar niet meer zonder jullie hulp. Ik heb het vermoeden dat er iets scheelt aan mijn browser pagina laad tijden. Het kan van alles zijn, internet verbinding, browser, netwerkstick en zo voord. graag jullie hulp... Groetjes, Hensyr
  21. Beste Kape, Het verheugd me u te kunnen melden dat het probleem volledig is opgelost Het nieuwe toetsenbord is toegekomen (dat was heel snel), gisteren avond besteld en nu al aangekomen. Ik heb dan ook dankbaar gebruik gemaakt van Asus zijn link op #10 voor het openmaken van de laptop: Complete disassembly instructions for HP Pavilion dv7 laptop. Guide 2. >> Inside my laptop Perfect uitgelegd. Het toetsenbord werkt terug naar behoren en ik kan morgen mijn buur terug blij maken, en ik? Ik heb weer heel veel geleerd! Het is een succes! Dank u allen en in het bijzonder Kape en Asus. Topic mag als opgelost gemarkeerd worden.
  22. Aan alle bezoekers die dit topic volledig hebben gevolgd met aandrang volgende vraag: indien u in dezelfde omstandigheden problemen zou hebben met uw toetsenbord wil dit nog niet zeggen dat het dezelfde oorzaken heeft! De programma's die hier zijn gebruikt zijn zeer gevaarlijk voor uw systeem als je dit zelf doet zonder supervisie van de experts hier op dit forum. Het zelf uitvoeren van dergelijke programma's, zoals Combofix er een is, kan uw systeem onbruikbaar maken. De experts daarentegen dragen hier geen verantwoordelijkheid voor als je dit op eigen houtje uitvoert! Een verwittigd computertechnieker is er twee waard en als beginner zelfs meer! Heb je een hardware probleem? Schrijf je in, wordt lid en maak een topic, het is gratis en je bent zeker dat je in goede handen verkeerd bij het uitvoeren van de tests met onze experts. Groetjes, Hensyr
  23. Beste Kape en Asus, Alvast van harte bedankt voor jullie uitgebreide hulp! Graag had ik nog even dit willen vragen als gevolg van dit topic: Op de site die Asus aangaf voor de bestelling van het nieuwe keyboard (die reeds netjes door Asus was gesorteerd tot op het juiste onderdeel), was er een klein verschil in het partnummer. Het partnummer dat op de site werd aangegeven was: 608555-A41 voor de laptop HP Pavilion dv7 4050eb zie screenshot site: [ATTACH=CONFIG]24729[/ATTACH] Het partnummer op het keyboard hier is echter: 608556-A41 en dat partnummer vindt ik niet terug, ook niet bij de specificaties. Zou dit echter veel uitmaken? Langs de andere kant heb ik wel een tweede klein zwart klevertje gevonden op de achterkant van het keyboard waarop staat, en ik citeer "replace with HP spare 605344-A41" en dat partnummer komt wel overeen met het partnummer dat ik besteld heb nl.: 608555-A41 zie screenshot: [ATTACH=CONFIG]24730[/ATTACH] Mag ik er dan vanuit gaan dat het wel degelijk het juiste keyboard zal zijn? En dan heb ik het niet kunnen laten om wat reclame te maken op de aankoop site toen die me om mijn mening vroegen, zie screenshot: [ATTACH=CONFIG]24731[/ATTACH] Ik hoop dat het niet in strijd is met jullie voorwaarden van het forum. Normaal zou het keyboard morgen aankomen en dan zal ik het meteen na mijn werk assembleren. Ik laat jullie zeker nog iets weten of het gelukt is.
  24. Beste Wezzelwie, In de afbeelding die je meestuurde in een word doc. is wel wat foutief te zien. Uw scherm staat als standaard ingesteld voor het afspelen van geluiden. zie groene bolletje op de afbeelding:[ATTACH=CONFIG]24717[/ATTACH] Ga terug naar configuratiescherm / geluid klik op je luidsprekertje om dit te selecteren klik vervolgens op de knop als standaard instellen: [ATTACH=CONFIG]24718[/ATTACH] kijk nu of je luidspreker als standaard is ingesteld: [ATTACH=CONFIG]24719[/ATTACH] test nu eens je geluid? :-)In sommige gevallen gebeurd het wel eens dat door een update uw standaard instellingen voor geluid verzet worden naar uw scherm. Meestal door een update van de computer fabrikant, minder door een Windows update.
  25. Beste Kape, 1) Het verwijderen van ComboFix ging niet zoals ik het gewild had. In de zoekopdrachten vond ik ComboFix niet meer, met uitzondering van het log. Reden hiervan is waarschijnlijk omdat ik het ComboFix icoon op het bureaublad had verzet naar de herstelmap die ik had aangemaakt op het bureaublad. Dus domweg het icoon terug op het bureaublad gezet en uitgevoerd: ja ComboFix werdt voor de tweedemaal uitgevoerd en ik hield mijn hart vast Man ik had schrik dat het deze keer fataal zou zijn om dat nog een tweede keer te laten draaien, zeker als je weet dat dit programma te vergelijken is met op een operatietafel te gaan liggen en een open hart operatie op jezelf uitvoeren is (bron Bleepincomputer)! Uiteindelijk was het blijkbaar toch meegevallen, oef... Voor de zekerheid geef ik je toch nog even dat tweede log mee: Het uitzetten van het antivirus heb ik wel gedaan toen ik de melding kreeg dat het mijn verantwoordelijkheid was door te gaan voor ik op OK klikte! ComboFix 13-03-20.02 - Marissa 20/03/2013 21:28:50.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.32.1043.18.3894.1928 [GMT 1:00] Gestart vanuit: c:\users\Marissa\Desktop\Herstelmap\ComboFix.exe AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((( Bestanden Gemaakt van 2013-02-20 to 2013-03-20 )))))))))))))))))))))))))))))) . . 2013-03-20 20:38 . 2013-03-20 20:38 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-03-20 19:50 . 2013-03-20 19:50 -------- d-----w- c:\programdata\ATI 2013-03-20 18:25 . 2013-03-20 18:25 -------- d-----w- c:\programdata\AMD 2013-03-20 18:25 . 2013-03-20 18:25 -------- d-----w- c:\program files (x86)\AMD AVT 2013-03-20 18:25 . 2013-03-20 18:25 -------- d-----w- c:\program files (x86)\AMD APP 2013-03-20 18:25 . 2013-03-20 18:25 -------- d-----w- c:\program files\Common Files\ATI Technologies 2013-03-20 18:25 . 2013-03-20 18:25 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies 2013-03-20 18:22 . 2013-03-20 18:25 -------- d-----w- c:\program files\ATI Technologies 2013-03-20 18:21 . 2013-03-20 18:21 -------- d-----w- C:\AMD 2013-03-20 18:13 . 2013-03-20 20:32 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C32C311E-A41B-4F3F-BC6E-7E21A15E68CF}\offreg.dll 2013-03-20 00:07 . 2013-03-20 00:07 -------- d-----w- c:\program files (x86)\Driver-Soft 2013-03-19 23:36 . 2013-03-19 23:36 -------- d-----w- c:\users\Marissa\AppData\Local\Secunia PSI 2013-03-19 23:35 . 2013-03-19 23:35 -------- d-----w- c:\program files (x86)\Secunia 2013-03-19 22:58 . 2013-03-19 22:58 -------- d-----w- c:\program files\7-Zip 2013-03-19 22:48 . 2013-03-19 22:48 -------- d-----w- c:\users\Marissa\AppData\Roaming\IrfanView 2013-03-19 22:30 . 2013-03-06 23:33 377920 ----a-w- c:\windows\system32\drivers\aswSP.sys 2013-03-19 22:30 . 2013-03-06 23:33 33400 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-03-19 22:30 . 2013-03-06 23:33 70992 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-03-19 22:30 . 2013-03-06 23:33 68920 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-03-19 22:30 . 2013-03-06 23:33 1025808 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-03-19 22:30 . 2013-03-06 23:33 178624 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-03-19 22:30 . 2013-03-06 23:33 65336 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-03-19 22:29 . 2013-03-06 23:33 80816 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-03-19 22:29 . 2013-03-06 23:32 287840 ----a-w- c:\windows\system32\aswBoot.exe 2013-03-19 22:29 . 2013-03-06 23:32 41664 ----a-w- c:\windows\avastSS.scr 2013-03-19 22:29 . 2013-03-19 22:29 -------- d-----w- c:\program files\AVAST Software 2013-03-19 22:26 . 2013-03-19 22:29 -------- d-----w- c:\programdata\AVAST Software 2013-03-19 21:40 . 2013-03-19 21:40 -------- d-----w- c:\program files (x86)\WildTangent Games 2013-03-19 21:04 . 2013-03-19 21:04 -------- d-----w- c:\program files\CCleaner 2013-03-19 20:25 . 2013-02-19 03:57 9162192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{C32C311E-A41B-4F3F-BC6E-7E21A15E68CF}\mpengine.dll 2013-03-19 17:59 . 2009-07-22 23:13 306 ----a-w- c:\windows\myClean.bat 2013-03-19 17:57 . 2013-03-19 17:57 -------- d-----w- c:\program files (x86)\VS Revo Group 2013-03-19 11:17 . 2013-03-19 11:16 310688 ----a-w- c:\windows\system32\javaws.exe 2013-03-19 11:17 . 2013-03-19 11:16 963488 ----a-w- c:\windows\system32\deployJava1.dll 2013-03-19 11:17 . 2013-03-19 11:16 1085344 ----a-w- c:\windows\system32\npDeployJava1.dll 2013-03-19 11:17 . 2013-03-19 11:16 188832 ----a-w- c:\windows\system32\javaw.exe 2013-03-19 11:17 . 2013-03-19 11:16 108448 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2013-03-19 11:17 . 2013-03-19 11:16 188320 ----a-w- c:\windows\system32\java.exe 2013-03-19 11:16 . 2013-03-19 11:16 -------- d-----w- c:\program files\Java 2013-03-19 01:31 . 2013-03-19 01:31 388096 ----a-r- c:\users\Marissa\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2013-03-19 01:30 . 2013-03-19 01:30 -------- d-----w- c:\program files (x86)\Trend Micro 2013-03-18 01:17 . 2013-03-18 01:17 -------- d-----w- c:\programdata\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} 2013-03-18 00:33 . 2013-03-18 00:33 -------- d-----w- c:\users\Marissa\AppData\Local\IsolatedStorage 2013-03-17 21:38 . 2013-01-13 19:53 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll 2013-03-17 21:37 . 2012-08-24 18:09 458712 ----a-w- c:\windows\system32\drivers\cng.sys 2013-03-17 21:37 . 2012-08-24 18:05 340992 ----a-w- c:\windows\system32\schannel.dll 2013-03-17 21:37 . 2012-08-24 16:57 247808 ----a-w- c:\windows\SysWow64\schannel.dll 2013-03-17 21:37 . 2012-08-24 18:13 154480 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2013-03-17 21:37 . 2012-08-24 18:03 1448448 ----a-w- c:\windows\system32\lsasrv.dll 2013-03-17 21:37 . 2012-08-24 16:57 22016 ----a-w- c:\windows\SysWow64\secur32.dll 2013-03-17 21:37 . 2012-08-24 16:53 96768 ----a-w- c:\windows\SysWow64\sspicli.dll 2013-03-17 21:37 . 2012-05-04 11:00 366592 ----a-w- c:\windows\system32\qdvd.dll 2013-03-17 21:37 . 2012-05-04 09:59 514560 ----a-w- c:\windows\SysWow64\qdvd.dll 2013-03-17 21:12 . 2012-08-21 21:01 245760 ----a-w- c:\windows\system32\OxpsConverter.exe 2013-03-17 21:10 . 2012-11-23 03:13 68608 ----a-w- c:\windows\system32\taskhost.exe 2013-03-17 20:53 . 2013-02-12 04:12 19968 ----a-w- c:\windows\system32\drivers\usb8023.sys 2013-03-17 17:53 . 2013-03-17 17:53 -------- d-----w- c:\users\Marissa\AppData\Roaming\Malwarebytes 2013-03-17 17:53 . 2013-03-17 17:53 -------- d-----w- c:\programdata\Malwarebytes 2013-03-17 17:53 . 2013-03-17 17:53 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2013-03-17 17:53 . 2012-12-14 15:49 24176 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-03-17 17:53 . 2013-03-17 17:53 -------- d-----w- c:\users\Marissa\AppData\Local\Programs 2013-03-17 13:23 . 2013-03-17 13:23 -------- d-----w- c:\windows\system32\SPReview 2013-03-17 12:50 . 2013-03-17 12:50 -------- d-----w- c:\windows\system32\EventProviders 2013-03-14 17:18 . 2013-03-14 17:18 -------- d-----w- c:\program files\Microsoft Silverlight 2013-03-14 17:18 . 2013-03-14 17:18 -------- d-----w- c:\program files (x86)\Microsoft Silverlight . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-03-19 18:13 . 2012-02-20 20:14 188356 ----a-w- c:\users\Marissa\AppData\Roaming\mdbu.bin 2013-03-17 13:34 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll 2013-03-17 13:34 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll 2013-03-14 17:23 . 2011-01-10 17:00 72013344 ----a-w- c:\windows\system32\MRT.exe 2013-03-13 16:53 . 2013-02-09 18:38 693976 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-03-13 16:53 . 2013-02-09 18:38 73432 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-02-12 05:45 . 2013-03-17 21:11 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll 2013-02-12 05:45 . 2013-03-17 21:11 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll 2013-02-12 05:45 . 2013-03-17 21:11 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll 2013-02-12 05:45 . 2013-03-17 21:11 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll 2013-02-12 04:48 . 2013-03-17 21:11 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll 2013-02-12 04:48 . 2013-03-17 21:11 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll 2013-02-07 12:15 . 2013-02-07 12:15 18456 ----a-w- c:\windows\system32\drivers\psi_mf_amd64.sys 2013-01-17 00:28 . 2010-08-31 15:10 273840 ------w- c:\windows\system32\MpSigStub.exe 2013-01-05 05:53 . 2013-02-14 17:14 5553512 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-01-05 05:00 . 2013-02-14 17:14 3967848 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-01-05 05:00 . 2013-02-14 17:14 3913064 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-01-04 05:46 . 2013-02-14 17:14 215040 ----a-w- c:\windows\system32\winsrv.dll 2013-01-04 04:51 . 2013-02-14 17:13 5120 ----a-w- c:\windows\SysWow64\wow32.dll 2013-01-04 04:43 . 2013-02-14 17:14 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2013-01-04 03:26 . 2013-02-14 17:14 3153408 ----a-w- c:\windows\system32\win32k.sys 2013-01-04 02:47 . 2013-02-14 17:14 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2013-01-04 02:47 . 2013-02-14 17:13 7680 ----a-w- c:\windows\SysWow64\instnm.exe 2013-01-04 02:47 . 2013-02-14 17:13 2048 ----a-w- c:\windows\SysWow64\user.exe 2013-01-04 02:47 . 2013-02-14 17:14 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2013-01-03 06:00 . 2013-02-14 17:13 1913192 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-01-03 06:00 . 2013-02-14 17:13 288088 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2010-01-22 2363392] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "NortonOnlineBackupReminder"="c:\program files (x86)\Symantec\Norton Online Backup\Activation\NOBuActivation.exe" [2009-12-03 3331944] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-12-19 41208] "Easybits Recovery"="c:\program files (x86)\EasyBits For Kids\ezRecover.exe" [2010-01-25 61112] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-03-06 4767304] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-12-19 642808] . c:\users\Marissa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OneNote 2010 Schermopname en Snel starten.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2013-1-8 228448] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ HP Digital Imaging Monitor.lnk - c:\program files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe [2009-9-23 270336] Secunia PSI Tray.lnk - c:\program files (x86)\Secunia\PSI\psi_tray.exe [2013-2-7 575000] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) "HideFastUserSwitching"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] "EnableShellExecuteHooks"= 1 (0x1) . [hkey_local_machine\software\Wow6432Node\microsoft\windows\currentversion\explorer\ShellExecuteHooks] . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Notification Packages REG_MULTI_SZ DPPassFilter scecli . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe [2013-02-07 660504] R3 aswVmm;aswVmm; [x] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-02-28 183560] R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2010-01-11 232992] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-11-28 295424] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856] R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-01 1255736] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S0 aswRvrt;aswRvrt; [x] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 DVMIO;DeviceVM IO Service;c:\windows\system32\DRIVERS\dvmio.sys [2010-01-29 20056] S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2012-02-22 75936] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_1c0e2d1db9f5b08e\AESTSr64.exe [2009-03-03 89600] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-12-19 240640] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-03-06 80816] S2 DvmMDES;DeviceVM Meta Data Export Service;c:\swsetup\QuickWeb\QW.SYS\config\DVMExportService.exe [2010-02-08 338168] S2 ezSharedSvc;Easybits Services for Windows;c:\windows\System32\ezSharedSvcHost.exe [x] S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528] S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2009-12-16 102968] S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2012-04-25 31000] S2 HPWMISVC;HPWMISVC;c:\program files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-01-18 20480] S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe [2013-02-07 1223704] S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-03-18 2320920] S2 vcsFPService;Validity VCS Fingerprint Service;c:\windows\system32\vcsFPService.exe [2010-01-05 2184496] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [2012-11-06 96256] S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2009-10-26 151936] S3 intelkmd;intelkmd;c:\windows\system32\DRIVERS\igdpmd64.sys [2010-01-22 8034368] S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys [2013-02-07 18456] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2010-01-22 09:06 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2013-03-15 18:53 1629648 ----a-w- c:\program files (x86)\Google\Chrome\Application\25.0.1364.172\Installer\chrmstp.exe . Inhoud van de 'Gedeelde Taken' map . 2013-03-20 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-09 16:53] . 2013-03-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-02-09 18:38] . 2013-03-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-02-09 18:38] . 2013-03-19 c:\windows\Tasks\HPCeeScheduleForMarissa.job - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 02:53] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-03-06 23:32 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-01-22 166424] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-01-22 390680] "Persistence"="c:\windows\system32\igfxpers.exe" [2010-01-22 410136] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [bU] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-01-14 487424] "HP Quick Launch"="c:\program files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" [2010-01-18 451072] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2010-01-20 611896] "HPToneControl"="c:\program files\Hewlett-Packard\HPToneControl\HPTonectl.exe" [2009-08-19 107832] "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2009-12-16 8192] . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalService FontCache . ------- Bijkomende Scan ------- . uStart Page = hxxp://www.google.be/ uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: &Verzenden naar OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 Trusted Zone: plantyn.com\interactief Trusted Zone: //about.htm/ Trusted Zone: //Exclude.htm/ Trusted Zone: //LanguageSelection.htm/ Trusted Zone: //Message.htm/ Trusted Zone: //MyAgttryCmd.htm/ Trusted Zone: //MyAgttryNag.htm/ Trusted Zone: //MyNotification.htm/ Trusted Zone: //NOCLessUpdate.htm/ Trusted Zone: //quarantine.htm/ Trusted Zone: //ScanNow.htm/ Trusted Zone: //strings.vbs/ Trusted Zone: //Template.htm/ Trusted Zone: //Update.htm/ Trusted Zone: //VirFound.htm/ Trusted Zone: mcafee.com\* Trusted Zone: mcafeeasap.com\betavscan Trusted Zone: mcafeeasap.com\vs Trusted Zone: mcafeeasap.com\www TCP: DhcpNameServer = 195.130.130.133 195.130.131.133 . - - - - ORPHANS VERWIJDERD - - - - . Wow6432Node-HKLM-Run-<NO NAME> - (no file) Wow6432Node-HKLM-Run-TaskTray - (no file) AddRemove-EasyBits Magic Desktop - c:\windows\system32\ezMDUninstall.exe AddRemove-{EE202411-2C26-49E8-9784-1BC1DBF7DE96} - c:\program files (x86)\InstallShield Installation Information\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\setup.exe . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Voltooingstijd: 2013-03-20 21:56:05 ComboFix-quarantined-files.txt 2013-03-20 20:56 ComboFix2.txt 2013-03-19 12:20 . Pre-Run: 395.459.739.648 bytes beschikbaar Post-Run: 395.109.175.296 bytes beschikbaar . - - End Of File - - A7B08D7DC6C46234D04F330263912969 2) Via run combofix uninstall gedaan met succes. 3) In C: heb ik geen map Qoobox gevonden. 4) Ccleaner had ik gisteren reeds op de machine gezet maar niet uitgevoerd om dat de lijst immens groot was en al zeker bij het register was dat ongelooflijk lang, dus ik wachte eigenlijk tot jij zou zeggen dat ik het nu mocht gebruiken. Ccleaner met succes uitgevoerd! 5) Delfix by Xplode uitgevoerd met succes:top: Hierna het logje van Delfix: # DelFix v10.1 - Logfile created 20/03/2013 at 22:17:29 # Updated 23/02/2013 by Xplode # Username : Marissa - LMARISSAS ~ Removing disinfection tools ... Deleted : C:\Program Files (x86)\Trend Micro\Hijackthis Deleted : C:\Users\Marissa\Downloads\HiJackThis.msi Deleted : HKLM\SOFTWARE\Swearware Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis ~ Cleaning system restore ... Deleted : RP #200 [ComboFix created restore point | 03/20/2013 20:59:14] New restore point created ! ~ Resetting system settings ... OK ########## - EOF - ########## 6) alle herstelpunten verwijderd en laptop opnieuw opgestart met succes! 7) echter toetsenbord is ongewijzigd en toets inslagen geven de verkeerde karakters zoals voorheen. Groetjes, Hensyr
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.