Ga naar inhoud

Na 1 uur kan ik niet meer internetten!!!


sinanco

Aanbevolen berichten

Hallo,

Mijn internet doet super raar, ik kan nadat ik mijn pc opgestart heb rond 1 uur gewoon internetten maar na 1 uur doet die het niet meer , ik zie dan alleen maar een wit pagina, ook al w8 ik kei lang....?? ik kan dan letterlijk nergens in , als ik dan bijv YouTube - Broadcast Yourself. intypte en dan op enter klik zie opeens gewoon een wit pagina met niks er op...?

btw ik gebruik google chrome , maar ik heb ook internet exploreer geprobeerd maar daar deed die het ook niet , ook gewoon wit na 1 uur.

Alvast bedankt !

En hier mijn hijack log file :

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 0:35:18, on 31-10-2009

Platform: Windows Vista SP2 (WinNT 6.00.1906)

MSIE: Internet Explorer v8.00 (8.00.6001.18828)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskeng.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\AVG\AVG8\avgtray.exe

C:\Program Files\Syncrosoft\POS\H2O\cledx.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Windows\system32\conime.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Windows\system32\NOTEPAD.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

O1 - Hosts: ::1 localhost

O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\program files\BitComet\tools\BitCometBHO_1.3.3.2.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4431.1036\swg.dll

O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [EPSON Stylus SX400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEGE.EXE /FU "C:\Windows\TEMP\E_S3EE9.tmp" /EF "HKCU"

O4 - HKCU\..\Run: [RGSC] D:\Games\GTA 4\Rockstar Games Social Club\RGSCLauncher.exe /silent

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\program files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\program files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\program files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html

O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)

O9 - Extra button: (no name) - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (no file)

O13 - Gopher Prefix:

O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUpldnl-nl.cab

O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab

O16 - DPF: {6D0E375A-7C00-4DB2-9D7E-D5B1ACDAF1F2} (FEWatch4 Control) - http://81.204.36.221/FEWatch.cab

O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/static/updater/BFHUpdater_4.0.21.0.cab

O16 - DPF: {99CAAA27-FA0C-4FA4-B88A-4AB1CC7A17FE} (MGLaunch_v1004 Class) - http://www.netgame.com/mplugin/mglaunch_USAv1004.cab

O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://www.binbirkanal.com/ampx/ampx2.6.1.11_en_dl.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Futuremark SystemInfo) - http://www.yougamers.com/systeminfo/FMSI.cab

O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldnl-nl.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll

O20 - AppInit_DLLs: avgrsstx.dll

O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe

O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Google Updateservice (gupdate1c9c915aa1535b9) (gupdate1c9c915aa1535b9) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: mental ray 3.7 Satellite for Autodesk 3ds Max 2010 32-bit 32-bit (mi-raysat_3dsmax2010_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe

O23 - Service: NMSAccessU - Unknown owner - D:\Program Files\CDBurnerXP\NMSAccessU.exe

O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - D:\Program Files\Spyware Doctor\pctsAuxs.exe

O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - D:\Program Files\Spyware Doctor\pctsSvc.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

--

End of file - 11014 bytes

Alvast bedankt!!

Link naar reactie
Delen op andere sites

Eerst even naar malware kijken :

Download Combofix naar je Bureaublad.

Lees hier meer over correct gebruik van Combofix.

OPMERKING: indien je, tijdens of na het downloaden van Combofix of tijdens het gebruik van Combofix een melding krijgt van je Antivirus- of een andere realtime scanner, schakel dan deze scanner uit en download Combofix opnieuw.

Sommige scanners zien bepaalde componenten die Combofix gebruikt als verdacht en gaan deze blokkeren of verwijderen!


  • Dubbelklik op Combofix.exe om het te starten.
    Indien je Combofix al eerder hebt gebruikt, kan je een waarschuwing krijgen dat een update beschikbaar is. Sta toe dat ComboFix wordt geupdate.
    Volg de instructies, aanvaard de disclaimer door op Ja te klikken.
    Indien de Recovery Console niet geïnstalleerd is, wordt je gevraagd om dit alsnog te doen door op JA te klikken in het "Query - Recovery Console" venster (enkel voor XP, niet voor VISTA).
    Klik op OK en Ja om automatisch de Recovery Console te laten installeren.
    Klik na afloop terug op Ja om het scannen op malware te starten.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.

Wanneer de fix voltooid is en na herstart, zal de log Combofix.txt openen.

Post dit logje in je volgende antwoord.

Link naar reactie
Delen op andere sites

Jo! thanks

Hier is het :

ComboFix 09-11-30.05 - Dhr.S-kaya 01-12-2009 16:22.1.3 - x86

Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.31.1043.18.3070.2073 [GMT 1:00]

Gestart vanuit: c:\users\Dhr.S-kaya\Documents\Downloads\ComboFix.exe

SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

(((((((((((((((((((( Bestanden Gemaakt van 2009-11-01 to 2009-12-01 ))))))))))))))))))))))))))))))

.

2009-12-01 15:32 . 2009-12-01 15:33 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Local\temp

2009-12-01 15:32 . 2009-12-01 15:32 -------- d-----w- c:\users\Gebruiker\AppData\Local\temp

2009-12-01 15:32 . 2009-12-01 15:32 -------- d-----w- c:\users\DHR~1~S-K\AppData\Local\temp

2009-12-01 15:32 . 2009-12-01 15:32 -------- d-----w- c:\users\Default\AppData\Local\temp

2009-12-01 15:32 . 2009-12-01 15:32 -------- d-----w- c:\users\Gast\AppData\Local\temp

2009-11-30 22:06 . 2009-11-30 22:06 484976 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtbCACF.tmp.exe

2009-11-30 22:06 . 2009-11-30 22:06 -------- d-----w- c:\users\Gast\AppData\Local\Opera

2009-11-30 22:05 . 2009-11-30 22:05 -------- d-----w- c:\users\Gast\AppData\Roaming\BitDefender

2009-11-28 23:00 . 2009-11-28 23:00 -------- d-----w- c:\program files\Musicrow

2009-11-28 22:50 . 2009-11-28 22:50 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\FXpansion

2009-11-28 22:49 . 2009-11-28 22:49 4096 d-----w- c:\program files\FXpansion

2009-11-28 21:50 . 2009-11-28 21:50 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\FlashGet

2009-11-25 20:38 . 2009-11-30 14:08 4096 d-----w- c:\program files\Microsoft Office Outlook Connector

2009-11-25 14:03 . 2009-10-29 09:17 2048 ----a-w- c:\windows\system32\tzres.dll

2009-11-24 22:25 . 2009-08-11 16:44 1401856 ----a-w- c:\windows\system32\msxml6.dll

2009-11-24 22:25 . 2009-08-11 16:44 1248768 ----a-w- c:\windows\system32\msxml3.dll

2009-11-24 19:09 . 2008-07-12 07:18 467984 ----a-w- c:\windows\system32\d3dx10_39.dll

2009-11-24 19:09 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\system32\D3DCompiler_39.dll

2009-11-24 19:09 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\system32\D3DX9_39.dll

2009-11-24 16:40 . 2009-11-24 16:40 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Local\Microsoft_Corporation

2009-11-24 15:10 . 2009-11-24 15:10 3972 ----a-w- c:\windows\mozver.dat

2009-11-23 14:02 . 2008-07-02 15:26 630784 ----a-w- c:\windows\system32\ilinet.dll

2009-11-23 14:02 . 2005-05-08 17:56 55808 ----a-w- c:\windows\system32\zlib1.dll

2009-11-23 14:02 . 2005-05-08 17:55 203264 ----a-w- c:\windows\system32\libpng13.dll

2009-11-23 14:02 . 2009-02-04 18:58 950272 ----a-w- c:\programdata\SONiVOX\DVI Guqin\Effects\MasteringReverb.dll

2009-11-23 14:02 . 2009-02-04 18:58 2990080 ----a-w- c:\programdata\SONiVOX\DVI Guqin\Effects\iZMasteringReverb.dll

2009-11-23 14:02 . 2008-12-09 14:12 377344 ----a-w- c:\programdata\SONiVOX\DVI Guqin\Effects\Equalizer.dll

2009-11-23 14:02 . 2008-10-17 10:12 376320 ----a-w- c:\programdata\SONiVOX\DVI Guqin\Effects\Delay.dll

2009-11-23 14:02 . 2008-07-18 08:22 359424 ----a-w- c:\programdata\SONiVOX\DVI Guqin\Effects\Chorus.dll

2009-11-23 14:02 . 2009-11-23 14:02 765722 ----a-w- c:\programdata\SONiVOX\DVI Guqin\unins000.exe

2009-11-23 13:57 . 2009-11-23 13:57 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{B7DAD844-34CD-456B-83CC-88065323DD69}\_4ae13d6c.exe

2009-11-23 13:57 . 2009-11-23 13:57 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{B7DAD844-34CD-456B-83CC-88065323DD69}\_2cd672ae.exe

2009-11-23 13:57 . 2009-11-23 13:57 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{B7DAD844-34CD-456B-83CC-88065323DD69}\_294823.exe

2009-11-23 13:57 . 2009-11-23 13:57 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{B7DAD844-34CD-456B-83CC-88065323DD69}\_18be6784.exe

2009-11-23 13:57 . 2009-11-23 13:57 -------- d-----w- c:\program files\Common Files\Steinberg

2009-11-23 13:52 . 2009-11-23 13:52 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{5DB59CA0-3F1F-4181-8D0B-A294A4EE0CAE}\_4ae13d6c.exe

2009-11-23 13:52 . 2009-11-23 13:52 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{5DB59CA0-3F1F-4181-8D0B-A294A4EE0CAE}\_2cd672ae.exe

2009-11-23 13:52 . 2009-11-23 13:52 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{5DB59CA0-3F1F-4181-8D0B-A294A4EE0CAE}\_294823.exe

2009-11-23 13:52 . 2009-11-23 13:52 15086 ----a-r- c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Installer\{5DB59CA0-3F1F-4181-8D0B-A294A4EE0CAE}\_18be6784.exe

2009-11-23 12:10 . 2009-11-23 12:10 -------- d-----w- c:\program files\NVIDIA nTune Performance Application

2009-11-21 23:23 . 2009-11-21 23:25 -------- d-----w- c:\programdata\Norton

2009-11-21 23:23 . 2009-11-21 23:25 -------- d-----w- c:\programdata\Symantec

2009-11-21 23:23 . 2009-11-21 23:23 -------- d-----w- c:\programdata\NortonInstaller

2009-11-21 02:01 . 2009-09-04 16:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll

2009-11-21 02:01 . 2009-09-04 16:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll

2009-11-17 00:10 . 2009-11-17 00:10 -------- d-----w- c:\program files\Windows Portable Devices

2009-11-17 00:08 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe

2009-11-17 00:07 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll

2009-11-17 00:07 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll

2009-11-17 00:07 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\wsbl.dat

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\ph_white.dat

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\ph_summ.dat

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\ph_black.dat

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\pcwords2.dat

2009-11-11 07:40 . 2009-11-11 07:40 0 ----a-w- c:\windows\system32\pcwords.dat

2009-11-11 07:18 . 2009-08-14 13:27 2036736 ----a-w- c:\windows\system32\win32k.sys

2009-11-11 07:18 . 2009-08-10 12:35 355328 ----a-w- c:\windows\system32\WSDApi.dll

2009-11-10 21:56 . 2009-12-01 15:16 132 ----a-w- c:\windows\system32\rezumatenoi.dat

2009-11-10 19:47 . 2009-11-10 19:47 4 ----a-w- c:\windows\system32\aspdict-en.dat

2009-11-10 19:47 . 2009-11-10 19:47 16 ----a-w- c:\windows\system32\asdict.dat

2009-11-10 16:42 . 2009-11-10 16:42 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\BitDefender

2009-11-10 16:37 . 2009-11-10 16:37 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\BitDefender

2009-11-10 16:37 . 2009-11-10 16:38 -------- d-----w- c:\programdata\BitDefender

2009-11-10 16:36 . 2009-11-10 16:37 4096 d-----w- c:\program files\Common Files\BitDefender

2009-11-09 20:50 . 2009-11-09 20:50 -------- d-----w- c:\programdata\Messenger Plus!

2009-11-09 18:39 . 2009-11-09 18:39 4096 d-----w- c:\program files\Messenger Plus! Live

2009-11-06 22:08 . 2008-04-13 16:26 36396 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer\AC3 Filter\uninstall.exe

2009-11-06 22:08 . 2007-08-18 08:54 20480 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer\AC3 Filter\ac3config.exe

2009-11-06 22:08 . 2007-08-18 08:53 16384 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer\AC3 Filter\dialog_patch.exe

2009-11-06 22:08 . 2007-07-05 02:33 892928 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer\AC3 Filter\iconv.dll

2009-11-06 22:06 . 2008-12-17 18:37 791742 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer\FFDShow\xvidcore.dll

2009-11-06 22:03 . 2009-11-06 22:26 4096 d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer

2009-11-06 22:03 . 2009-11-06 22:03 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\BSplayer Pro

2009-11-06 21:03 . 2009-11-06 21:04 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}

2009-11-06 21:00 . 2009-11-06 21:00 4096 d-----w- c:\program files\QuickTime

2009-11-06 20:37 . 2009-11-06 20:37 -------- d-----w- c:\users\Gebruiker\AppData\Local\Conduit

2009-11-06 16:17 . 2009-11-30 15:53 4096 d-----w- c:\program files\Windows Live

2009-11-06 16:17 . 2009-11-06 16:17 -------- d-----w- c:\program files\Windows Live SkyDrive

2009-11-06 09:59 . 2009-11-06 09:59 15406728 ----a-w- c:\windows\system32\xlive.dll

2009-11-06 09:59 . 2009-11-06 09:59 13642888 ----a-w- c:\windows\system32\xlivefnt.dll

2009-11-05 22:27 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll

2009-11-05 15:07 . 2009-11-05 15:07 -------- d-----w- c:\program files\Windows Live(28)

2009-11-05 15:05 . 2009-11-05 15:05 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\PACE Anti-Piracy

2009-11-05 15:05 . 2009-11-05 15:05 -------- d-----w- c:\programdata\PACE Anti-Piracy

2009-11-05 15:05 . 2009-11-05 15:05 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Local\PACE Anti-Piracy

2009-11-05 15:01 . 2009-11-05 15:01 4096 d-----w- C:\MSXML3msms

2009-11-04 15:43 . 2009-11-04 15:43 -------- d-----w- c:\program files\InterLok

2009-11-04 15:39 . 2009-11-23 14:02 -------- d-----w- c:\programdata\SONiVOX

2009-11-03 15:23 . 2009-11-03 15:24 -------- d-----w- c:\program files\MSECACHE

2009-11-02 21:41 . 2009-11-10 20:24 -------- d-----w- c:\programdata\Codemasters

2009-11-02 17:05 . 2009-11-02 17:05 167064 ----a-w- c:\windows\system32\xliveinstall.dll

2009-11-02 17:05 . 2009-11-02 17:05 71832 ----a-w- c:\windows\system32\xliveinstallhost.exe

2009-11-01 17:48 . 2009-11-01 17:48 -------- d-----w- c:\users\Gebruiker\AppData\Local\Opera

2009-11-01 15:47 . 2009-11-01 15:47 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Local\Opera

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-12-01 15:17 . 2009-04-08 15:20 4096 d-----w- c:\programdata\NVIDIA

2009-12-01 15:17 . 2009-10-04 09:09 531341 ----a-w- c:\programdata\nvModes.dat

2009-11-30 15:53 . 2009-05-02 12:36 4096 d-----w- c:\program files\Bonjour

2009-11-30 15:53 . 2009-04-24 20:56 4096 d-----w- c:\users\Gebruiker\AppData\Roaming\vlc

2009-11-30 15:53 . 2009-04-21 17:00 4096 d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\vlc

2009-11-30 15:53 . 2009-04-12 16:02 4096 d-----w- c:\programdata\FLEXnet

2009-11-30 15:53 . 2006-11-02 12:35 4096 d-----w- c:\program files\Windows Sidebar

2009-11-30 15:53 . 2006-11-02 12:35 4096 d-----w- c:\program files\Windows Defender

2009-11-29 13:45 . 2009-04-08 15:51 16384 d--h--w- c:\program files\InstallShield Installation Information

2009-11-25 14:03 . 2009-04-08 18:59 -------- d-----w- c:\program files\Common Files\Logitech

2009-11-24 16:00 . 2009-04-08 15:18 4096 d-----w- c:\program files\Common Files\Wise Installation Wizard

2009-11-21 20:56 . 2009-05-16 19:58 8192 d-----w- c:\program files\DivX

2009-11-19 17:04 . 2009-04-09 18:32 138184 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys

2009-11-19 17:04 . 2009-04-09 18:32 183112 ----a-w- c:\windows\system32\PnkBstrB.exe

2009-11-18 20:28 . 2009-04-20 19:27 -------- d-----w- c:\program files\IK Multimedia

2009-11-18 14:13 . 2008-01-21 05:45 6798212 ----a-w- c:\windows\system32\perfh013.dat

2009-11-18 14:13 . 2008-01-21 05:45 2149746 ----a-w- c:\windows\system32\perfc013.dat

2009-11-17 20:46 . 2009-04-28 22:47 8192 d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\LimeWire

2009-11-17 00:10 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat

2009-11-17 00:10 . 2009-11-17 00:10 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf

2009-11-17 00:10 . 2009-11-17 00:10 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf

2009-11-12 17:45 . 2006-11-02 11:18 4096 d-----w- c:\program files\Windows Mail

2009-11-12 17:44 . 2009-06-29 13:12 152456 ----a-w- c:\windows\system32\drivers\bdfm.sys

2009-11-12 17:44 . 2009-06-29 13:12 105736 ----a-w- c:\windows\system32\drivers\bdhv.sys

2009-11-12 17:23 . 2009-04-09 11:09 12288 d-----w- c:\programdata\Microsoft Help

2009-11-11 21:25 . 2009-04-09 18:31 66872 ----a-w- c:\windows\system32\PnkBstrA.exe

2009-11-11 07:44 . 2009-08-06 15:34 72200 ----a-w- c:\windows\system32\drivers\BdfNdisf6.sys

2009-11-06 21:40 . 2009-05-02 12:36 4096 d-----w- c:\programdata\Apple Computer

2009-11-06 21:40 . 2009-05-02 12:35 4096 d-----w- c:\program files\Common Files\Apple

2009-11-06 21:15 . 2009-05-04 19:39 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\Apple Computer

2009-11-06 01:24 . 2009-04-29 21:58 4096 d-----w- c:\program files\Common Files\DivX Shared

2009-11-06 01:15 . 2009-05-01 15:55 -------- d-----w- c:\users\Gebruiker\AppData\Roaming\DivX

2009-11-05 22:28 . 2009-11-05 22:28 444952 ----a-w- c:\windows\system32\wrap_oal.dll

2009-11-05 22:28 . 2009-11-05 22:28 109080 ----a-w- c:\windows\system32\OpenAL32.dll

2009-11-05 22:28 . 2009-11-05 22:28 -------- d-----w- c:\program files\OpenAL

2009-11-05 16:21 . 2009-04-11 16:36 1356 ----a-w- c:\users\Dhr.S-kaya\AppData\Local\d3d9caps.dat

2009-11-02 19:42 . 2009-10-03 09:46 195456 ------w- c:\windows\system32\MpSigStub.exe

2009-11-02 15:50 . 2006-11-02 12:35 4096 d-----w- c:\program files\Windows Photo Gallery

2009-10-31 23:37 . 2009-10-31 23:37 -------- d-----w- c:\program files\Microsoft Sync Framework

2009-10-31 15:47 . 2009-10-31 15:40 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\GlarySoft

2009-10-30 23:15 . 2009-10-30 23:15 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\Malwarebytes

2009-10-30 23:15 . 2009-10-30 23:15 4096 d-----w- c:\program files\Malwarebytes' Anti-Malware

2009-10-30 23:15 . 2009-10-30 23:15 -------- d-----w- c:\programdata\Malwarebytes

2009-10-30 23:12 . 2009-07-21 11:24 4096 d-----w- c:\program files\DigitalPowered

2009-10-30 15:38 . 2009-10-30 15:33 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\IObit

2009-10-30 15:31 . 2009-10-30 15:31 -------- d-----w- c:\program files\IObit

2009-10-30 15:19 . 2009-10-30 15:19 -------- d-----w- c:\program files\Trend Micro

2009-10-30 00:49 . 2009-05-27 18:42 4096 d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\DC++

2009-10-29 10:10 . 2009-10-29 10:10 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition

2009-10-29 08:38 . 2009-10-28 21:57 4096 d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\SystemRequirementsLab

2009-10-29 08:38 . 2009-10-27 17:51 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\EPSON

2009-10-29 08:38 . 2009-10-04 14:09 4096 d-----w- c:\program files\SystemRequirementsLab

2009-10-29 08:38 . 2009-04-08 19:35 4096 d-----w- c:\program files\Microsoft

2009-10-28 21:57 . 2009-10-28 21:57 138240 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_d.dll

2009-10-28 21:57 . 2009-10-28 21:57 138240 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_c.dll

2009-10-28 21:57 . 2009-10-28 21:57 138240 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_b.dll

2009-10-28 21:57 . 2009-10-28 21:57 138240 ----a-w- c:\users\Dhr.S-kaya\AppData\Roaming\SystemRequirementsLab\SRLProxy_srl_4_1_14_0_a.dll

2009-10-19 17:37 . 2009-10-19 17:37 -------- d-----w- c:\program files\BvT Grup

2009-10-18 13:30 . 2009-10-18 13:30 -------- d-----w- c:\programdata\PC Drivers HeadQuarters

2009-10-16 22:52 . 2009-10-16 22:52 -------- d-----w- c:\program files\AMD

2009-10-10 21:21 . 2009-10-10 21:20 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\DeepBurner

2009-10-10 12:45 . 2009-10-10 12:45 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\Waves Audio

2009-10-10 10:35 . 2009-10-10 10:35 4096 dc-h--w- c:\programdata\{C2686527-0D57-4F0B-ADAB-EE203CA30FC6}

2009-10-10 10:35 . 2009-08-29 15:20 -------- d-----w- c:\program files\Common Files\Native Instruments

2009-10-06 16:04 . 2009-10-06 16:04 -------- d-----w- c:\program files\rgcaudio software

2009-10-04 14:09 . 2009-10-04 14:09 4096 d-----w- c:\users\Gebruiker\AppData\Roaming\SystemRequirementsLab

2009-10-04 14:09 . 2009-10-04 14:09 290816 ----a-w- c:\users\Gebruiker\AppData\Roaming\SystemRequirementsLab\SRLProxy_test_4.dll

2009-10-04 14:09 . 2009-10-04 14:09 290816 ----a-w- c:\users\Gebruiker\AppData\Roaming\SystemRequirementsLab\SRLProxy_test_3.dll

2009-10-04 14:09 . 2009-10-04 14:09 290816 ----a-w- c:\users\Gebruiker\AppData\Roaming\SystemRequirementsLab\SRLProxy_test_2.dll

2009-10-04 14:09 . 2009-10-04 14:09 290816 ----a-w- c:\users\Gebruiker\AppData\Roaming\SystemRequirementsLab\SRLProxy_test_1.dll

2009-10-04 09:02 . 2009-05-06 19:28 -------- d-----w- c:\program files\NVIDIA Corporation

2009-10-04 08:57 . 2009-10-04 08:57 -------- d-----w- c:\program files\Microsoft Silverlight

2009-10-03 14:14 . 2009-06-02 19:04 -------- d-----w- c:\users\Dhr.S-kaya\AppData\Roaming\Celemony Software GmbH

2009-10-01 01:02 . 2009-11-17 00:08 2537472 ----a-w- c:\windows\system32\wpdshext.dll

2009-10-01 01:02 . 2009-11-17 00:08 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll

2009-10-01 01:02 . 2009-11-17 00:08 87552 ----a-w- c:\windows\system32\WPDShServiceObj.dll

2009-10-01 01:02 . 2009-11-17 00:08 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll

2009-10-01 01:01 . 2009-11-17 00:08 546816 ----a-w- c:\windows\system32\wpd_ci.dll

2009-10-01 01:01 . 2009-11-17 00:08 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll

2009-10-01 01:01 . 2009-11-17 00:08 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll

2009-10-01 01:01 . 2009-11-17 00:08 350208 ----a-w- c:\windows\system32\WPDSp.dll

2009-10-01 01:01 . 2009-11-17 00:08 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll

2009-10-01 01:01 . 2009-11-17 00:08 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll

2009-10-01 01:01 . 2009-11-17 00:08 81920 ----a-w- c:\windows\system32\wpdbusenum.dll

2009-10-01 01:01 . 2009-11-17 00:08 40448 ----a-w- c:\windows\system32\drivers\WpdUsb.sys

2009-10-01 01:01 . 2009-11-17 00:08 226816 ----a-w- c:\windows\system32\WpdMtp.dll

2009-10-01 01:01 . 2009-11-17 00:08 61952 ----a-w- c:\windows\system32\WpdMtpUS.dll

2009-10-01 01:01 . 2009-11-17 00:08 33280 ----a-w- c:\windows\system32\WpdConns.dll

2009-09-27 15:47 . 2009-09-27 15:47 2173544 ----a-w- c:\windows\system32\nvcplui.exe

2009-09-27 15:47 . 2009-09-27 15:47 92776 ----a-w- c:\windows\system32\nvmctray.dll

2009-09-27 15:47 . 2009-09-27 15:47 805480 ----a-w- c:\windows\system32\nvsvc.dll

2009-09-27 15:47 . 2009-09-27 15:47 4033128 ----a-w- c:\windows\system32\nvvitvs.dll

2009-09-27 15:47 . 2009-09-27 15:47 3553896 ----a-w- c:\windows\system32\nvgames.dll

2009-09-27 15:47 . 2009-09-27 15:47 3172968 ----a-w- c:\windows\system32\nvwss.dll

2009-09-27 15:47 . 2009-09-27 15:47 215656 ----a-w- c:\windows\system32\nvvsvc.exe

2009-09-27 15:47 . 2009-09-27 15:47 195176 ----a-w- c:\windows\system32\nvmccss.dll

2009-09-27 15:47 . 2009-09-27 15:47 1309288 ----a-w- c:\windows\system32\nvsvs.dll

2009-09-27 15:47 . 2009-09-27 15:47 1292904 ----a-w- c:\windows\system32\nvmobls.dll

2009-09-27 15:46 . 2009-09-27 15:46 4942440 ----a-w- c:\windows\system32\nvdisps.dll

2009-09-27 15:46 . 2009-09-27 15:46 13949544 ----a-w- c:\windows\system32\nvcpl.dll

2009-11-11 07:45 . 2009-11-10 16:42 47104 ----a-w- c:\program files\mozilla firefox\components\FFComm.dll

2009-09-25 16:41 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll

2009-09-25 16:41 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]

"RGSC"="d:\games\GTA 4\Rockstar Games Social Club\RGSCLauncher.exe" [2009-04-11 306088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"H2O"="c:\program files\SyncroSoft\Pos\H2O\cledx.exe" [2005-12-18 307200]

"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]

"Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]

"BDAgent"="d:\program files\BitDefender\BitDefender 2010\bdagent.exe" [2009-11-11 1118144]

"BitDefender Antiphishing Helper"="d:\program files\BitDefender\BitDefender 2010\IEShow.exe" [2009-11-11 71152]

"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-07-24 6265376]

c:\users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

OneNote 2007 Schermopname en Snel starten.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"aux"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]

@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]

@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

@="Service"

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk]

path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Logitech SetPoint.lnk

backup=c:\windows\pss\Logitech SetPoint.lnk.CommonStartup

backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NCProTray.lnk]

path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\NCProTray.lnk

backup=c:\windows\pss\NCProTray.lnk.CommonStartup

backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^Users^Dhr.S-kaya^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Xfire.lnk]

path=c:\users\Dhr.S-kaya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Xfire.lnk

backup=c:\windows\pss\Xfire.lnk.Startup

backupExtension=.Startup

[HKLM\~\startupfolder\C:^Users^Gebruiker^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk]

path=c:\users\Gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Schermopname en Snel starten.lnk

backup=c:\windows\pss\OneNote 2007 Schermopname en Snel starten.lnk.Startup

backupExtension=.Startup

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

"VistaSp2"=hex(B):46,e7,8b,22,23,03,ca,01

R0 PCTCore;PCTools KDS;c:\windows\System32\drivers\PCTCore.sys [26-5-2009 15:27 130936]

R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\windows\System32\drivers\BdfNdisf6.sys [6-8-2009 16:34 72200]

R2 BDVEDISK;BDVEDISK;d:\program files\BitDefender\BitDefender 2010\bdvedisk.sys [1-4-2009 11:25 83208]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [27-9-2009 15:48 240232]

R3 BDFM;BDFM;c:\windows\System32\drivers\bdfm.sys [29-6-2009 14:12 152456]

R3 CLEDX;Team H2O CLEDX service;c:\windows\System32\drivers\cledx.sys [30-5-2009 22:29 33792]

S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [9-4-2009 12:02 717296]

S2 gupdate1c9c915aa1535b9;Google Updateservice (gupdate1c9c915aa1535b9);c:\program files\Google\Update\GoogleUpdate.exe [29-4-2009 22:58 133104]

S2 mi-raysat_3dsmax2010_32;mental ray 3.7 Satellite for Autodesk 3ds Max 2010 32-bit 32-bit;c:\program files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe [12-3-2009 16:36 86016]

S3 Adobe Version Cue CS4;Adobe Version Cue CS4;c:\program files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [15-8-2008 4:46 284016]

S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe [25-6-2009 16:04 183880]

S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21-1-2008 3:33 21504]

S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [1-11-2009 0:37 54632]

S3 fsssvc;Windows Live Family Safety-Dienst;c:\program files\Windows Live\Family Safety\fsssvc.exe [5-8-2009 22:48 704864]

S3 PAC207;SoC PC-Camera;c:\windows\System32\drivers\PFC027.SYS [5-12-2006 10:34 507136]

S3 sdAuxService;PC Tools Auxiliary Service;d:\program files\Spyware Doctor\pctsAuxs.exe [26-5-2009 15:27 348752]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

bdx REG_MULTI_SZ scan

LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

.

Inhoud van de 'Gedeelde Taken' map

2009-12-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 21:58]

2009-12-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-29 21:58]

2009-12-01 c:\windows\Tasks\User_Feed_Synchronization-{4AFFDB83-64F1-4160-87D1-A99400277151}.job

- c:\windows\system32\msfeedssync.exe [2009-10-15 03:41]

2009-12-01 c:\windows\Tasks\User_Feed_Synchronization-{9091B9B8-B95B-487E-90F8-96C45CF7E95F}.job

- c:\windows\system32\msfeedssync.exe [2009-10-15 03:41]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.plusnetwork.com

uInternet Settings,ProxyOverride = *.local

IE: &D&ownload &with BitComet - d:\program files\BitComet\BitComet.exe/AddLink.htm

IE: &D&ownload all video with BitComet - d:\program files\BitComet\BitComet.exe/AddVideo.htm

IE: &D&ownload all with BitComet - d:\program files\BitComet\BitComet.exe/AddAllLink.htm

IE: Append Link Target to Existing PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

IE: Append to Existing PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html

IE: Convert Link Target to Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

IE: Convert to Adobe PDF - c:\program files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html

IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000

DPF: {6D0E375A-7C00-4DB2-9D7E-D5B1ACDAF1F2} - hxxp://81.204.36.221/FEWatch.cab

DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} - hxxps://www.battlefieldheroes.com/static/updater/BFHUpdater_4.0.21.0.cab

.

- - - - ORPHANS VERWIJDERD - - - -

WebBrowser-{B317125E-2F10-4388-BF1F-2C31C6CD89ED} - (no file)

AddRemove-Native Instruments Massive - c:\programdata\{C2686527-0D57-4F0B-ADAB-EE203CA30FC6}\Massive Setup.exe REMOVE=TRUE MODIFY=FALSE

AddRemove-NVIDIA Drivers - c:\windows\system32\nvuninst.exe UninstallGUI

AddRemove-Roger Nichols Digital Detailer_is1 - c:\program files\Roger Nichols Digital

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2009-12-01 16:33

Windows 6.0.6002 Service Pack 2 NTFS

scannen van verborgen processen ...

scannen van verborgen autostart items ...

scannen van verborgen bestanden ...

Scan succesvol afgerond

verborgen bestanden: 0

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

[HKEY_USERS\S-1-5-21-1513233641-2577281000-2799961656-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]

"??"=hex:f6,e8,a7,40,ad,48,db,dd,fb,1c,02,be,62,f3,9c,f0,88,83,de,a4,15,4e,f9,

1b,3a,73,dc,5c,00,1f,84,4f,18,fa,91,2e,fa,78,a2,d0,78,ff,17,ce,9b,b0,cd,7f,\

"??"=hex:ca,ca,13,0c,93,dd,d2,2a,68,07,94,62,84,ab,00,52

[HKEY_USERS\S-1-5-21-1513233641-2577281000-2799961656-1001\Software\SecuROM\License information*]

"datasecu"=hex:49,18,d9,cf,1b,7e,46,da,9b,19,4f,0f,bf,fc,bc,4e,e2,a1,9a,5c,8c,

58,e2,07,9c,14,ca,4e,1c,21,33,3b,c8,30,3a,c1,d3,35,01,48,50,a7,1e,ed,b1,ed,\

"rkeysecu"=hex:73,7c,46,aa,e7,e2,07,c7,a8,96,4e,10,bc,d0,7d,28

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

Voltooingstijd: 2009-12-01 16:36

ComboFix-quarantined-files.txt 2009-12-01 15:36

Pre-Run: 36.429.881.344 bytes beschikbaar

Post-Run: 37.143.285.760 bytes beschikbaar

Current=1 Default=1 Failed=0 LastKnownGood=48 Sets=1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48

- - End Of File - - E554C27F86E90127AF724F7F947CF470

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.