Ga naar inhoud

Last van virus


Aanbevolen berichten

ComboFix 10-03-29.04 - Helsen Craig 01/04/2010 13:21:44.1.2 - x86

Microsoft® Windows Vista™ Business 6.0.6002.2.1252.32.1043.18.3325.2267 [GMT 2:00]

Gestart vanuit: c:\users\Helsen Craig\Desktop\ComboFix.exe

SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\$recycle.bin\S-1-5-21-478569710-1749875680-3946782367-500

c:\$recycle.bin\S-1-5-21-918056312-2952985149-2686913973-500

c:\users\Helsen Craig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Productregistratie.lnk

.

((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.

-------\Service_Logical Disk Manager (NDIS)

(((((((((((((((((((( Bestanden Gemaakt van 2010-03-01 to 2010-04-01 ))))))))))))))))))))))))))))))

.

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Gast\AppData\Local\temp

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Default\AppData\Local\temp

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Administrator\AppData\Local\temp

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Malwarebytes

2010-03-31 14:00 . 2010-03-29 13:24 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\programdata\Malwarebytes

2010-03-31 14:00 . 2010-03-29 13:24 20824 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-03-31 13:36 . 2010-03-31 13:41 -------- d-----w- c:\users\Helsen Craig\AppData\Local\Apple Computer

2010-03-31 13:06 . 2010-03-31 13:06 -------- d-----w- c:\program files\H

2010-03-31 12:58 . 2010-03-31 17:44 -------- d-----w- c:\users\Helsen Craig\AppData\Local\Adobe

2010-03-29 14:32 . 2010-03-29 14:32 -------- d-----w- c:\program files\Conduit

2010-03-29 14:32 . 2010-03-29 14:32 -------- d-----w- c:\program files\YoutubeDownloader

2010-03-28 16:28 . 2010-03-28 16:28 -------- d-----w- c:\program files\YouTube Downloader

2010-03-28 14:29 . 2010-02-12 10:32 293376 ----a-w- c:\windows\system32\browserchoice.exe

2010-03-12 06:48 . 2010-02-20 23:06 24064 ----a-w- c:\windows\system32\nshhttp.dll

2010-03-12 06:48 . 2010-02-20 23:05 30720 ----a-w- c:\windows\system32\httpapi.dll

2010-03-12 06:48 . 2010-02-20 20:53 411648 ----a-w- c:\windows\system32\drivers\http.sys

2010-03-06 15:38 . 2010-03-06 15:38 -------- d-----w- c:\program files\iDump (Freeware)

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-04-01 11:33 . 2008-09-01 08:04 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\DNA

2010-04-01 11:00 . 2006-11-02 16:06 714616 ----a-w- c:\windows\system32\perfh013.dat

2010-04-01 11:00 . 2006-11-02 16:06 148342 ----a-w- c:\windows\system32\perfc013.dat

2010-03-31 16:22 . 2010-02-15 10:02 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\vlc

2010-03-31 13:49 . 2010-03-31 13:49 388096 ----a-r- c:\users\Helsen Craig\AppData\Roaming\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe

2010-03-31 13:21 . 2008-08-18 16:02 -------- d-----w- c:\programdata\Google Updater

2010-03-31 11:17 . 2008-08-09 15:31 -------- d-----w- c:\program files\Common Files\Java

2010-03-31 11:13 . 2008-08-09 15:31 -------- d-----w- c:\program files\Java

2010-03-29 20:05 . 2008-08-18 16:11 -------- d-----w- c:\program files\Safari

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-28 14:41 . 2010-03-28 14:41 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_xusb21_01007.Wdf

2010-03-27 16:08 . 2008-09-01 08:21 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\BitTorrent

2010-03-13 09:25 . 2010-02-06 09:09 -------- d-----w- c:\programdata\DVD Shrink

2010-03-12 06:52 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail

2010-03-12 06:44 . 2008-08-17 19:04 8160 ----a-w- c:\users\Helsen Craig\AppData\Local\d3d9caps.dat

2010-03-09 02:28 . 2009-10-14 16:12 411368 ----a-w- c:\windows\system32\deploytk.dll

2010-02-28 11:04 . 2008-09-18 16:23 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\LimeWire

2010-02-28 10:11 . 2008-08-13 10:51 121808 ----a-w- c:\users\Helsen Craig\AppData\Local\GDIPFONTCACHEV1.DAT

2010-02-24 08:16 . 2009-10-03 07:52 181632 ------w- c:\windows\system32\MpSigStub.exe

2010-02-23 06:39 . 2010-03-31 11:34 916480 ----a-w- c:\windows\system32\wininet.dll

2010-02-23 06:33 . 2010-03-31 11:34 71680 ----a-w- c:\windows\system32\iesetup.dll

2010-02-23 06:33 . 2010-03-31 11:34 109056 ----a-w- c:\windows\system32\iesysprep.dll

2010-02-23 04:55 . 2010-03-31 11:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe

2010-02-22 16:59 . 2009-02-15 15:50 -------- d-----r- c:\program files\Program Files

2010-02-16 21:55 . 2010-02-16 21:55 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\DivX

2010-02-15 13:42 . 2010-02-15 13:39 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Orbit

2010-02-15 13:39 . 2010-02-15 13:39 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\GrabPro

2010-02-15 13:01 . 2010-02-15 13:00 -------- d-----w- c:\programdata\Norton

2010-02-15 13:00 . 2010-02-15 13:00 -------- d-----w- c:\programdata\Symantec

2010-02-15 13:00 . 2010-02-15 13:00 -------- d-----w- c:\programdata\NortonInstaller

2010-02-15 12:48 . 2010-02-15 08:56 -------- d-----w- c:\program files\DivX

2010-02-15 12:48 . 2008-08-09 15:34 -------- d-----w- c:\program files\Common Files\PX Storage Engine

2010-02-15 12:47 . 2010-02-15 12:47 -------- d-----w- c:\program files\Common Files\DivX Shared

2010-02-15 10:06 . 2010-02-06 11:39 -------- d-----w- c:\program files\Common Files\Nero

2010-02-15 10:06 . 2010-02-06 11:39 -------- d-----w- c:\programdata\Nero

2010-02-15 10:02 . 2010-02-15 10:02 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\MozillaControl

2010-02-15 10:01 . 2010-02-15 08:54 -------- d-----w- c:\program files\Graboid

2010-02-15 08:54 . 2010-02-15 08:54 -------- d-----w- c:\program files\Mozilla ActiveX Control v1.7.12

2010-02-15 08:54 . 2010-02-15 08:54 -------- d-----w- c:\program files\VideoLAN

2010-02-14 09:47 . 2010-01-25 16:51 -------- d-----w- c:\program files\Common Files\Adobe AIR

2010-02-14 09:47 . 2010-01-25 16:56 38784 ----a-w- c:\users\Helsen Craig\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe

2010-02-14 09:47 . 2010-01-25 16:51 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe

2010-02-10 10:58 . 2010-02-10 10:57 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Nero

2010-02-07 18:38 . 2008-08-09 15:38 -------- d-----w- c:\program files\Google

2010-02-06 09:09 . 2010-02-06 09:09 -------- d-----w- c:\program files\DVD Shrink

2010-02-02 16:49 . 2010-02-02 16:48 -------- d-----w- c:\program files\iTunes

2010-02-02 16:48 . 2010-02-02 16:48 -------- d-----w- c:\program files\iPod

2010-02-02 16:48 . 2008-08-13 11:34 -------- d-----w- c:\program files\Common Files\Apple

2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\QuickTime

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-01-25 12:00 . 2010-02-24 12:18 471552 ----a-w- c:\windows\system32\secproc_isv.dll

2010-01-25 12:00 . 2010-02-24 12:18 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll

2010-01-25 12:00 . 2010-02-24 12:18 152064 ----a-w- c:\windows\system32\secproc_ssp.dll

2010-01-25 12:00 . 2010-02-24 12:18 471552 ----a-w- c:\windows\system32\secproc.dll

2010-01-25 11:58 . 2010-02-24 12:18 332288 ----a-w- c:\windows\system32\msdrm.dll

2010-01-25 08:21 . 2010-02-24 12:18 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe

2010-01-25 08:21 . 2010-02-24 12:18 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe

2010-01-25 08:21 . 2010-02-24 12:18 518144 ----a-w- c:\windows\system32\RMActivate.exe

2010-01-25 08:21 . 2010-02-24 12:18 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe

2010-01-23 09:26 . 2010-02-24 12:18 2048 ----a-w- c:\windows\system32\tzres.dll

2010-01-06 15:39 . 2010-02-24 12:18 1696256 ----a-w- c:\windows\system32\gameux.dll

2010-01-06 15:38 . 2010-02-24 12:18 28672 ----a-w- c:\windows\system32\Apphlpdm.dll

2010-01-06 13:30 . 2010-02-24 12:18 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll

2008-08-09 23:09 . 2008-08-09 22:57 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT

.

ComboFix 10-03-29.04 - Helsen Craig 01/04/2010 13:21:44.1.2 - x86

Microsoft® Windows Vista™ Business 6.0.6002.2.1252.32.1043.18.3325.2267 [GMT 2:00]

Gestart vanuit: c:\users\Helsen Craig\Desktop\ComboFix.exe

SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\$recycle.bin\S-1-5-21-478569710-1749875680-3946782367-500

c:\$recycle.bin\S-1-5-21-918056312-2952985149-2686913973-500

c:\users\Helsen Craig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Productregistratie.lnk

.

((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.

-------\Service_Logical Disk Manager (NDIS)

(((((((((((((((((((( Bestanden Gemaakt van 2010-03-01 to 2010-04-01 ))))))))))))))))))))))))))))))

.

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Gast\AppData\Local\temp

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Default\AppData\Local\temp

2010-04-01 11:28 . 2010-04-01 11:28 -------- d-----w- c:\users\Administrator\AppData\Local\temp

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Malwarebytes

2010-03-31 14:00 . 2010-03-29 13:24 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-03-31 14:00 . 2010-03-31 14:00 -------- d-----w- c:\programdata\Malwarebytes

2010-03-31 14:00 . 2010-03-29 13:24 20824 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-03-31 13:36 . 2010-03-31 13:41 -------- d-----w- c:\users\Helsen Craig\AppData\Local\Apple Computer

2010-03-31 13:06 . 2010-03-31 13:06 -------- d-----w- c:\program files\H

2010-03-31 12:58 . 2010-03-31 17:44 -------- d-----w- c:\users\Helsen Craig\AppData\Local\Adobe

2010-03-29 14:32 . 2010-03-29 14:32 -------- d-----w- c:\program files\Conduit

2010-03-29 14:32 . 2010-03-29 14:32 -------- d-----w- c:\program files\YoutubeDownloader

2010-03-28 16:28 . 2010-03-28 16:28 -------- d-----w- c:\program files\YouTube Downloader

2010-03-28 14:29 . 2010-02-12 10:32 293376 ----a-w- c:\windows\system32\browserchoice.exe

2010-03-12 06:48 . 2010-02-20 23:06 24064 ----a-w- c:\windows\system32\nshhttp.dll

2010-03-12 06:48 . 2010-02-20 23:05 30720 ----a-w- c:\windows\system32\httpapi.dll

2010-03-12 06:48 . 2010-02-20 20:53 411648 ----a-w- c:\windows\system32\drivers\http.sys

2010-03-06 15:38 . 2010-03-06 15:38 -------- d-----w- c:\program files\iDump (Freeware)

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-04-01 11:33 . 2008-09-01 08:04 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\DNA

2010-04-01 11:00 . 2006-11-02 16:06 714616 ----a-w- c:\windows\system32\perfh013.dat

2010-04-01 11:00 . 2006-11-02 16:06 148342 ----a-w- c:\windows\system32\perfc013.dat

2010-03-31 16:22 . 2010-02-15 10:02 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\vlc

2010-03-31 13:49 . 2010-03-31 13:49 388096 ----a-r- c:\users\Helsen Craig\AppData\Roaming\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe

2010-03-31 13:21 . 2008-08-18 16:02 -------- d-----w- c:\programdata\Google Updater

2010-03-31 11:17 . 2008-08-09 15:31 -------- d-----w- c:\program files\Common Files\Java

2010-03-31 11:13 . 2008-08-09 15:31 -------- d-----w- c:\program files\Java

2010-03-29 20:05 . 2008-08-18 16:11 -------- d-----w- c:\program files\Safari

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-29 20:04 . 2010-03-29 20:04 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-03-28 14:41 . 2010-03-28 14:41 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_xusb21_01007.Wdf

2010-03-27 16:08 . 2008-09-01 08:21 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\BitTorrent

2010-03-13 09:25 . 2010-02-06 09:09 -------- d-----w- c:\programdata\DVD Shrink

2010-03-12 06:52 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail

2010-03-12 06:44 . 2008-08-17 19:04 8160 ----a-w- c:\users\Helsen Craig\AppData\Local\d3d9caps.dat

2010-03-09 02:28 . 2009-10-14 16:12 411368 ----a-w- c:\windows\system32\deploytk.dll

2010-02-28 11:04 . 2008-09-18 16:23 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\LimeWire

2010-02-28 10:11 . 2008-08-13 10:51 121808 ----a-w- c:\users\Helsen Craig\AppData\Local\GDIPFONTCACHEV1.DAT

2010-02-24 08:16 . 2009-10-03 07:52 181632 ------w- c:\windows\system32\MpSigStub.exe

2010-02-23 06:39 . 2010-03-31 11:34 916480 ----a-w- c:\windows\system32\wininet.dll

2010-02-23 06:33 . 2010-03-31 11:34 71680 ----a-w- c:\windows\system32\iesetup.dll

2010-02-23 06:33 . 2010-03-31 11:34 109056 ----a-w- c:\windows\system32\iesysprep.dll

2010-02-23 04:55 . 2010-03-31 11:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe

2010-02-22 16:59 . 2009-02-15 15:50 -------- d-----r- c:\program files\Program Files

2010-02-16 21:55 . 2010-02-16 21:55 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\DivX

2010-02-15 13:42 . 2010-02-15 13:39 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Orbit

2010-02-15 13:39 . 2010-02-15 13:39 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\GrabPro

2010-02-15 13:01 . 2010-02-15 13:00 -------- d-----w- c:\programdata\Norton

2010-02-15 13:00 . 2010-02-15 13:00 -------- d-----w- c:\programdata\Symantec

2010-02-15 13:00 . 2010-02-15 13:00 -------- d-----w- c:\programdata\NortonInstaller

2010-02-15 12:48 . 2010-02-15 08:56 -------- d-----w- c:\program files\DivX

2010-02-15 12:48 . 2008-08-09 15:34 -------- d-----w- c:\program files\Common Files\PX Storage Engine

2010-02-15 12:47 . 2010-02-15 12:47 -------- d-----w- c:\program files\Common Files\DivX Shared

2010-02-15 10:06 . 2010-02-06 11:39 -------- d-----w- c:\program files\Common Files\Nero

2010-02-15 10:06 . 2010-02-06 11:39 -------- d-----w- c:\programdata\Nero

2010-02-15 10:02 . 2010-02-15 10:02 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\MozillaControl

2010-02-15 10:01 . 2010-02-15 08:54 -------- d-----w- c:\program files\Graboid

2010-02-15 08:54 . 2010-02-15 08:54 -------- d-----w- c:\program files\Mozilla ActiveX Control v1.7.12

2010-02-15 08:54 . 2010-02-15 08:54 -------- d-----w- c:\program files\VideoLAN

2010-02-14 09:47 . 2010-01-25 16:51 -------- d-----w- c:\program files\Common Files\Adobe AIR

2010-02-14 09:47 . 2010-01-25 16:56 38784 ----a-w- c:\users\Helsen Craig\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe

2010-02-14 09:47 . 2010-01-25 16:51 38784 ----a-w- c:\users\Default\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe

2010-02-10 10:58 . 2010-02-10 10:57 -------- d-----w- c:\users\Helsen Craig\AppData\Roaming\Nero

2010-02-07 18:38 . 2008-08-09 15:38 -------- d-----w- c:\program files\Google

2010-02-06 09:09 . 2010-02-06 09:09 -------- d-----w- c:\program files\DVD Shrink

2010-02-02 16:49 . 2010-02-02 16:48 -------- d-----w- c:\program files\iTunes

2010-02-02 16:48 . 2010-02-02 16:48 -------- d-----w- c:\program files\iPod

2010-02-02 16:48 . 2008-08-13 11:34 -------- d-----w- c:\program files\Common Files\Apple

2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\QuickTime

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-02-02 16:40 . 2010-02-02 16:40 72488 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe

2010-01-25 12:00 . 2010-02-24 12:18 471552 ----a-w- c:\windows\system32\secproc_isv.dll

2010-01-25 12:00 . 2010-02-24 12:18 152576 ----a-w- c:\windows\system32\secproc_ssp_isv.dll

2010-01-25 12:00 . 2010-02-24 12:18 152064 ----a-w- c:\windows\system32\secproc_ssp.dll

2010-01-25 12:00 . 2010-02-24 12:18 471552 ----a-w- c:\windows\system32\secproc.dll

2010-01-25 11:58 . 2010-02-24 12:18 332288 ----a-w- c:\windows\system32\msdrm.dll

2010-01-25 08:21 . 2010-02-24 12:18 526336 ----a-w- c:\windows\system32\RMActivate_isv.exe

2010-01-25 08:21 . 2010-02-24 12:18 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe

2010-01-25 08:21 . 2010-02-24 12:18 518144 ----a-w- c:\windows\system32\RMActivate.exe

2010-01-25 08:21 . 2010-02-24 12:18 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe

2010-01-23 09:26 . 2010-02-24 12:18 2048 ----a-w- c:\windows\system32\tzres.dll

2010-01-06 15:39 . 2010-02-24 12:18 1696256 ----a-w- c:\windows\system32\gameux.dll

2010-01-06 15:38 . 2010-02-24 12:18 28672 ----a-w- c:\windows\system32\Apphlpdm.dll

2010-01-06 13:30 . 2010-02-24 12:18 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll

2008-08-09 23:09 . 2008-08-09 22:57 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]

"DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]

"BitTorrent DNA"="c:\users\Helsen Craig\Program Files\DNA\btdna.exe" [2009-10-07 323392]

"WindowsLivePhone"="c:\program files\Windows Live\Device Manager\msgrdvmn.exe" [2008-12-22 787816]

"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]

"ECenter"="c:\dell\E-Center\EULALauncher.exe" [2008-02-29 17920]

"RtHDVCpl"="RtHDVCpl.exe" [2007-05-14 4452352]

"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]

"RoxWatchTray"="c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [2006-11-05 221184]

"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-12-13 30192]

"dscactivate"="c:\program files\Dell Support Center\gs_agent\custom\dsca.exe" [2008-03-11 16384]

"PDVDDXSrv"="c:\program files\CyberLink\PowerDVD DX\PDVDDXSrv.exe" [2008-02-26 128296]

"DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]

"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-08-13 177440]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]

"XboxStat"="c:\program files\Microsoft Xbox 360 Accessories\XboxStat.exe" [2007-09-27 734264]

"WindowsLivePhone"="c:\program files\Windows Live\Device Manager\msgrdvmn.exe" [2008-12-22 787816]

"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]

"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-01-22 141608]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Exif Launcher S.lnk - c:\program files\FinePixViewerS\QuickDCF2.exe [2010-1-17 303104]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~2\GoogleDesktopNetwork3.dll c:\progra~1\Google\GOOGLE~2\GoogleDesktopNetwork3.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"aux2"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

"VistaSp2"=hex(B):00,39,ef,1b,85,3e,ca,01

R2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]

R2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-01-06 135664]

R2 Network List-service (netprofm) ;Network List-service (netprofm) ;c:\program files\webserv\webserv.exe [x]

R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [2009-03-31 36608]

R3 GoogleDesktopManager-110309-193829;Google Desktop Manager 5.9.911.3589;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2009-12-13 30192]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

.

Inhoud van de 'Gedeelde Taken' map

2010-04-01 c:\windows\Tasks\Google Software Updater.job

- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-08-09 12:37]

2010-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-06 19:27]

2010-03-31 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-06 19:27]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.google.be/

uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s

.

- - - - ORPHANS VERWIJDERD - - - -

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)

HKCU-Run-EA Core - c:\program files\Electronic Arts\EADM\Core.exe

HKCU-Run-ISUSPM - C:\ISUSPM.exe

AddRemove-Eset NOD32 v3.0.642 FiX1.2 by TemDono_is1 - c:\program files\ESET\ESET Smart Security\unins000.exe

AddRemove-Native Instruments Traktor 3 LE - c:\progra~1\NATIVE~1\TRAKTO~1\UNWISE.EXE

AddRemove-NI Service Center - c:\progra~1\NATIVE~1\NISERV~1\UNWISE.EXE

**************************************************************************

scannen van verborgen processen ...

scannen van verborgen autostart items ...

scannen van verborgen bestanden ...

Scan succesvol afgerond

verborgen bestanden:

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

[HKEY_USERS\S-1-5-21-2903741933-786871626-3413285085-1000\Software\SecuROM\License information*]

"datasecu"=hex:48,fb,70,a5,0b,04,b8,18,3b,4f,6a,16,8e,cb,95,c2,da,0c,0c,0a,0f,

71,8d,1b,c6,07,b9,ce,84,bf,07,90,11,40,13,be,4a,23,ab,f8,4d,4f,5e,f7,e6,bd,\

"rkeysecu"=hex:ee,4d,6f,37,82,2b,45,ad,7e,5d,81,bf,34,b6,3d,74

.

------------------------ Andere Aktieve Processen ------------------------

.

c:\windows\system32\Ati2evxx.exe

c:\windows\system32\Ati2evxx.exe

c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

c:\program files\Bonjour\mDNSResponder.exe

c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

c:\windows\system32\PnkBstrA.exe

c:\windows\system32\PnkBstrB.exe

c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe

c:\program files\Dell Support Center\bin\sprtsvc.exe

c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

c:\windows\system32\conime.exe

c:\windows\RtHDVCpl.exe

c:\windows\system32\wbem\unsecapp.exe

c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

c:\program files\iPod\bin\iPodService.exe

c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe

c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

.

**************************************************************************

.

Voltooingstijd: 2010-04-01 13:42:00 - machine werd herstart

ComboFix-quarantined-files.txt 2010-04-01 11:41

Pre-Run: 380.506.976.256 bytes beschikbaar

Post-Run: 380.564.267.008 bytes beschikbaar

- - End Of File - - D63F9B1A1FF4496D0A31C35D40C784DA

aangepast door kape
Link naar reactie
Delen op andere sites

  • Reacties 26
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

  • 2 weken later...
Ik heb geen virusscanner

ik heb er is een gedownload en die vind die virussen niet.

En die NOD32 dan, die op je PC draait ? Is dat geen virusscanner ? Of is die niet meer actief ?

Sowieso is on-line gaan zonder virusscanner natuurlijk niet erg slim. Dan hoeft het niet te verbazen dat je constant virussen binnenhaalt :sad

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.