Ga naar inhoud

Aanbevolen berichten





---------- Post toegevoegd om 06:47 ---------- Vorige post was om 06:44 ----------

heb ook een windows update log voor als je daar iets aan hebt?


Verwijdering van aangeduide items is niet helemaal goed gegaan. Deze mag je opnieuw fixen met HijackThis :

R0 HKLM Search Assistant=

R0 HKLM Customize Search=

02 (no name) (no file)

02 BHO Sweetie (no file)

03 Toolbar Sweetim (no file)

04 HKUS YVIBBHA8C (user system)

04 HKUS YVIBBHA6C (user "Default User")

06 HKCU Restriction Present

09 Extra Button (no name) (no file)

09 Extra Button (no name) (no file)

09 Extra Button Party Poker (no file)

09 Extra Tools Party Poker (no file)

09 Extra Buttons RVNIMVU (no file)

016 DPC armhelper.ocx

020 Winlogon Notify (file missing)

023 Service Google Desktop (no file)

En wil je dan eens op de normale manier (zoals beschreven in het eerste bericht, dus zonder printscreen) een logje van HijackThis maken en in je volgende bericht hangen.

Ook het logje van Malwarebytes hadden we nog graag te zien gekregen (zoals eerder ook al gevraagd).


dat logje met HiJackThis lukt gewoon steeds niet, dat doet ie niet om welke reden dan ook..

ik kan maar 1 ding tegelijk selecteren in hijackthis en dan niets kopieren of plakken..

hier het logje van Malware Bites:

Malwarebytes' Anti-Malware 1.46


Databaseversie: 4167

Windows 6.0.6002 Service Pack 2

Internet Explorer 8.0.6001.18904

3-6-2010 18:31:43

mbam-log-2010-06-03 (18-31-43).txt

Scantype: Snelle scan

Objecten gescand: 123764

Verstreken tijd: 48 minuut/minuten, 6 seconde(n)

Geheugenprocessen geïnfecteerd: 0

Geheugenmodulen geïnfecteerd: 0

Registersleutels geïnfecteerd: 53

Registerwaarden geïnfecteerd: 3

Registerdata geïnfecteerd: 2

Mappen geïnfecteerd: 2

Bestanden geïnfecteerd: 12

Geheugenprocessen geïnfecteerd:

(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen geïnfecteerd:

(Geen kwaadaardige objecten gedetecteerd)

Registersleutels geïnfecteerd:

HKEY_CLASSES_ROOT\coresrv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.lfgax (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.lfgax.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\experthelper.****pro_bho (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\experthelper.****pro_bho.1 (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\srv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\srv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\toolbar.htmlmenuui (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\toolbar.htmlmenuui.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\toolbar.toolbarctl (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\toolbar.toolbarctl.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{eb6ec5d7-7d19-a8c7-d607-f0993bf94a9f} (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{eb6ec5d7-7d19-a8c7-d607-f0993bf94a9f} (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1f158a1e-a687-4a11-9679-b3ac64b86a1c} (Adware.Seekmo) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{eb6ec5d7-7d19-a8c7-d607-f0993bf94a9f} (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{eb6ec5d7-7d19-a8c7-d607-f0993bf94a9f} (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\experthelper (Trojan.BHO) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\idid (Trojan.Sasfix) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.ShopperReports) -> Quarantined and deleted successfully.

Registerwaarden geïnfecteerd:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\canaveral (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Registerdata geïnfecteerd:

HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (explorer.exe rundll32.exe ftoe.rho linqrp) Good: (Explorer.exe) -> Quarantined and deleted successfully.

Mappen geïnfecteerd:

C:\Program Files\ExpertHelper (Trojan.BHO) -> Quarantined and deleted successfully.

C:\Program Files\Seekeen (Trojan.Agent) -> Quarantined and deleted successfully.

Bestanden geïnfecteerd:

C:\Windows\System32\ftoe.rho (Backdoor.Bot) -> Quarantined and deleted successfully.

C:\Windows\Temp\864E.tmp (Backdoor.Bot) -> Quarantined and deleted successfully.

C:\Windows\Temp\997.tmp (Backdoor.Bot) -> Quarantined and deleted successfully.

C:\Windows\Temp\TMP0000000180AD7A276AC5DC54 (Trojan.Dropper) -> Quarantined and deleted successfully.

C:\Windows\Temp\TMP0000000355A28E02BD8EAFDF (Trojan.Dropper) -> Quarantined and deleted successfully.

C:\Windows\Temp\SEEF6DD.tmp\upgrade.exe (Adware.Zwangi) -> Quarantined and deleted successfully.

C:\Program Files\ExpertHelper\pcre3.dll (Trojan.BHO) -> Quarantined and deleted successfully.

C:\Program Files\ExpertHelper\uninstall.exe (Trojan.BHO) -> Quarantined and deleted successfully.

C:\Program Files\Seekeen\seekeen.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\Windows\System32\sshnas21.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.

C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> Quarantined and deleted successfully.

C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> Quarantined and deleted successfully.


windows update log:

2010-06-10 18:24:15:538 1396 2150 AU AU received handle event

2010-06-10 18:24:16:330 1396 2150 AU AU setting pending client directive to 'Unable To Detect'

2010-06-10 18:24:32:595 1396 2150 AU Launched new AU client for directive 'Unable To Detect', session id = 0x1

2010-06-10 18:24:36:578 1396 2150 AU AU received handle event

2010-06-10 18:24:36:578 1396 2150 AU AU setting pending client directive to 'Unable To Detect'

2010-06-10 18:24:51:580 1396 2150 AU WARNING: AU found no suitable session to launch client in

2010-06-10 18:25:07:846 1396 2150 Shutdwn user declined update at shutdown

2010-06-10 18:25:08:038 1396 2150 AU AU initiates service shutdown

2010-06-10 18:25:08:203 1396 2150 AU ########### AU: Uninitializing Automatic Updates ###########

2010-06-10 18:25:29:140 1396 2150 Report CWERReporter finishing event handling. (00000000)

2010-06-10 18:25:29:839 1396 2150 Service *********

2010-06-10 18:25:29:839 1396 2150 Service ** END ** Service: Service exit [Exit code = 0x240001]

2010-06-10 18:25:29:839 1396 2150 Service *************

2010-06-10 18:34:22:431 1432 18f4 Misc =========== Logging initialized (build: 7.4.7600.226, tz: +0200) ===========

2010-06-10 18:34:23:942 1432 18f4 Misc = Process: C:\Windows\system32\svchost.exe

2010-06-10 18:34:24:364 1432 18f4 Misc = Module: c:\windows\system32\wuaueng.dll

2010-06-10 18:34:22:431 1432 18f4 Service *************

2010-06-10 18:34:25:388 1432 18f4 Service ** START ** Service: Service startup

2010-06-10 18:34:25:474 1432 18f4 Service *********

2010-06-10 18:34:34:001 1432 18f4 Agent * WU client version 7.4.7600.226

2010-06-10 18:34:37:161 1432 18f4 Agent * Base directory: C:\Windows\SoftwareDistribution

2010-06-10 18:34:38:739 1432 18f4 Agent * Access type: No proxy

2010-06-10 18:34:39:145 1432 18f4 Agent * Network state: Connected

2010-06-10 18:35:51:137 1432 18f4 Report CWERReporter::Init succeeded

2010-06-10 18:35:51:137 1432 18f4 Agent *********** Agent: Initializing Windows Update Agent ***********

2010-06-10 18:35:51:137 1432 18f4 Agent *********** Agent: Initializing global settings cache ***********

2010-06-10 18:35:51:137 1432 18f4 Agent * WSUS server: <NULL>

2010-06-10 18:35:51:137 1432 18f4 Agent * WSUS status server: <NULL>

2010-06-10 18:35:51:137 1432 18f4 Agent * Target group: (Unassigned Computers)

2010-06-10 18:35:51:137 1432 18f4 Agent * Windows Update access disabled: No

2010-06-10 18:35:51:179 1432 18f4 DnldMgr Download manager restoring 0 downloads

2010-06-10 18:35:51:207 1432 18f4 DnldMgr Retrieved 18 persisted download jobs

2010-06-10 18:35:51:207 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 0] ***********

2010-06-10 18:35:51:207 1432 18f4 DnldMgr * BITS JobId = {689DFF06-8C39-4F51-BD2C-1ACE31178643}

2010-06-10 18:35:51:207 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:51:250 1432 18f4 DnldMgr * UpdateId = {4F5D8232-6043-4796-B093-8ABD14017A34}.100

2010-06-10 18:35:51:558 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:51:566 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 1] ***********

2010-06-10 18:35:51:566 1432 18f4 DnldMgr * BITS JobId = {8A6E770A-2E40-41DD-8BCD-53073D9AF30D}

2010-06-10 18:35:51:566 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:51:605 1432 18f4 DnldMgr * UpdateId = {477F8C91-218D-403E-A4A2-D63402504D75}.101

2010-06-10 18:35:51:746 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:51:746 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 2] ***********

2010-06-10 18:35:51:746 1432 18f4 DnldMgr * BITS JobId = {4940091D-A167-4A5E-9BA3-95E9DD58E7E1}

2010-06-10 18:35:51:746 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:51:777 1432 18f4 DnldMgr * UpdateId = {CD5CF387-51E5-4CB8-ACAE-398D10ED966C}.101

2010-06-10 18:35:51:957 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:51:957 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 3] ***********

2010-06-10 18:35:51:957 1432 18f4 DnldMgr * BITS JobId = {A2DC8D22-00E1-4AAB-B495-B93EF5667A78}

2010-06-10 18:35:51:957 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:51:980 1432 18f4 DnldMgr * UpdateId = {E21FB04E-716E-45A3-BC0A-47D83182010D}.101

2010-06-10 18:35:52:066 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:066 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 4] ***********

2010-06-10 18:35:52:066 1432 18f4 DnldMgr * BITS JobId = {47D8F830-7D6D-4DEA-8F98-7A6C5E3FA967}

2010-06-10 18:35:52:066 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:082 1432 18f4 DnldMgr * UpdateId = {F9501614-A81B-4641-8AFC-D4FFCCED7F5F}.102

2010-06-10 18:35:52:152 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:152 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 5] ***********

2010-06-10 18:35:52:152 1432 18f4 DnldMgr * BITS JobId = {804EA533-A474-4531-8727-6F4409CC6340}

2010-06-10 18:35:52:152 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:183 1432 18f4 DnldMgr * UpdateId = {0C128189-FF1E-4781-8FDD-08DD27F284B6}.102

2010-06-10 18:35:52:242 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:242 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 6] ***********

2010-06-10 18:35:52:242 1432 18f4 DnldMgr * BITS JobId = {EFEDA733-924B-42CE-9EEE-2229A3CC969C}

2010-06-10 18:35:52:242 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:254 1432 18f4 DnldMgr * UpdateId = {85BF2FA3-C8E2-4093-9A6E-212D83C5351F}.101

2010-06-10 18:35:52:340 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:340 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 7] ***********

2010-06-10 18:35:52:340 1432 18f4 DnldMgr * BITS JobId = {D3F0B238-18F2-4275-9AA6-51F9EEA7D1BC}

2010-06-10 18:35:52:340 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:355 1432 18f4 DnldMgr * UpdateId = {DF487C62-0854-4CCB-8960-EFA394E79976}.100

2010-06-10 18:35:52:449 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:449 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 8] ***********

2010-06-10 18:35:52:449 1432 18f4 DnldMgr * BITS JobId = {092E1B3F-34F4-4755-B902-56232B1EF12B}

2010-06-10 18:35:52:449 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:453 1432 18f4 DnldMgr * UpdateId = {E1CA5D48-2217-4736-992C-E34836E4C075}.100

2010-06-10 18:35:52:496 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:500 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 9] ***********

2010-06-10 18:35:52:500 1432 18f4 DnldMgr * BITS JobId = {D11B9A44-344D-453B-8C8A-7AD5729C5166}

2010-06-10 18:35:52:500 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:504 1432 18f4 DnldMgr * UpdateId = {6275596C-6E83-4558-81D4-20457A6340D5}.101

2010-06-10 18:35:52:633 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:633 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 10] ***********

2010-06-10 18:35:52:633 1432 18f4 DnldMgr * BITS JobId = {6050FF73-F29A-4E86-A9B0-3345A5A7A4E4}

2010-06-10 18:35:52:633 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:636 1432 18f4 DnldMgr * UpdateId = {B2CD6820-9B82-4108-824D-2E0BF92BF90F}.101

2010-06-10 18:35:52:808 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:808 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 11] ***********

2010-06-10 18:35:52:808 1432 18f4 DnldMgr * BITS JobId = {22E74278-7B09-4EF8-83ED-C78AFF09D5DD}

2010-06-10 18:35:52:808 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:52:898 1432 18f4 DnldMgr * UpdateId = {97A3BA78-6130-4808-A7C0-4A6AC89D20D8}.102

2010-06-10 18:35:52:996 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:52:996 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 12] ***********

2010-06-10 18:35:52:996 1432 18f4 DnldMgr * BITS JobId = {E8B350AA-4A7E-4347-8033-2C9671671C11}

2010-06-10 18:35:52:996 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:031 1432 18f4 DnldMgr * UpdateId = {D6D12E09-8564-4D61-AA68-20AACD637B3C}.103

2010-06-10 18:35:53:121 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:121 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 13] ***********

2010-06-10 18:35:53:121 1432 18f4 DnldMgr * BITS JobId = {F457F3B0-A440-41BB-BF79-C47E75E5505C}

2010-06-10 18:35:53:121 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:144 1432 18f4 DnldMgr * UpdateId = {2F7F1542-2B38-4F04-A728-75539971CCF3}.105

2010-06-10 18:35:53:238 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:238 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 14] ***********

2010-06-10 18:35:53:238 1432 18f4 DnldMgr * BITS JobId = {AA972CCD-09F7-4D15-8959-37471627E6A9}

2010-06-10 18:35:53:238 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:238 1432 18f4 DnldMgr * UpdateId = {41D2AC66-E91D-41BA-B7B8-57EB9385CD9D}.101

2010-06-10 18:35:53:375 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:375 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 15] ***********

2010-06-10 18:35:53:375 1432 18f4 DnldMgr * BITS JobId = {D91D9CD6-36A8-4F25-98EE-304716A7B3DE}

2010-06-10 18:35:53:375 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:379 1432 18f4 DnldMgr * UpdateId = {4A978EEB-9758-46C4-872D-E978811DC8A2}.101

2010-06-10 18:35:53:441 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:441 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 16] ***********

2010-06-10 18:35:53:441 1432 18f4 DnldMgr * BITS JobId = {FA5B2AE7-15F2-4BAF-B281-D9939F662967}

2010-06-10 18:35:53:441 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:441 1432 18f4 DnldMgr * UpdateId = {72A0ABD5-DACF-42E2-96D0-9404E9E849FF}.102

2010-06-10 18:35:53:636 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:636 1432 18f4 DnldMgr *********** DnldMgr: Restoring download [no. 17] ***********

2010-06-10 18:35:53:636 1432 18f4 DnldMgr * BITS JobId = {AB7AF4EF-A758-4755-AE6B-8EA0C2EA77D6}

2010-06-10 18:35:53:636 1432 18f4 DnldMgr * ServiceId = {7971F918-A847-4430-9279-4A52D1EFE18D}

2010-06-10 18:35:53:636 1432 18f4 DnldMgr * UpdateId = {722958DA-82B1-42C5-BD49-CAD349C6EE78}.101

2010-06-10 18:35:53:687 1432 18f4 DnldMgr * Restored download job.

2010-06-10 18:35:53:765 1432 18f4 AU ########### AU: Initializing Automatic Updates ###########

2010-06-10 18:35:53:785 1432 18f4 AU # Approval type: Scheduled (User preference)

2010-06-10 18:35:53:785 1432 18f4 AU # Scheduled install day/time: Every day at 3:00

2010-06-10 18:35:53:785 1432 18f4 AU # Auto-install minor updates: Yes (User preference)

2010-06-10 18:35:54:558 1432 18f4 AU Setting AU scheduled install time to 2010-06-11 01:00:00

2010-06-10 18:35:54:558 1432 18f4 AU Initializing featured updates

2010-06-10 18:35:54:558 1432 18f4 AU Found 0 cached featured updates

2010-06-10 18:35:54:558 1432 18f4 AU AU setting pending client directive to 'Unable To Detect'

2010-06-10 18:35:54:566 1432 18f4 AU AU finished delayed initialization

2010-06-10 18:35:56:011 1432 18f4 Report *********** Report: Initializing static reporting data ***********

2010-06-10 18:35:56:011 1432 18f4 Report * OS Version = 6.0.6002.2.0.66304

2010-06-10 18:35:56:011 1432 18f4 Report * OS Product Type = 0x00000002

2010-06-10 18:35:56:144 1432 18f4 Report * Computer Brand = Dell Inc.

2010-06-10 18:35:56:144 1432 18f4 Report * Computer Model = Vostro 1000

2010-06-10 18:35:56:226 1432 18f4 Report * Bios Revision = 2.4.1

2010-06-10 18:35:56:226 1432 18f4 Report * Bios Name = BIOS Version 2.4.1

2010-06-10 18:35:56:226 1432 18f4 Report * Bios Release Date = 2006-05-31T00:00:00

2010-06-10 18:35:56:226 1432 18f4 Report * Locale ID = 1043

2010-06-10 18:36:03:343 1432 3728 Report CWERReporter finishing event handling. (00000000)

2010-06-10 18:36:09:636 1432 18f4 AU Launched new AU client for directive 'Unable To Detect', session id = 0x1

2010-06-10 22:02:14:500 1432 18f4 AU #############

2010-06-10 22:02:14:533 1432 18f4 AU ## START ## AU: Search for updates

2010-06-10 22:02:14:533 1432 18f4 AU #########

2010-06-10 22:02:14:970 1432 18f4 AU <<## SUBMITTED ## AU: Search for updates [CallId = {8DF766BD-4F76-452B-9D29-2B7F6E02F583}]

2010-06-10 22:02:15:029 1432 16a9c Agent *************

2010-06-10 22:02:15:029 1432 16a9c Agent ** START ** Agent: Finding updates [CallerId = AutomaticUpdates]

2010-06-10 22:02:15:029 1432 16a9c Agent *********

2010-06-10 22:02:15:030 1432&


Malwarebytes heeft een hele berg rotzooi van de PC gehaald :-)

Bij HijackThis is het de bedoeling dat je de aangeduide items - één na één - een vinkje geeft en zo verwijderd uit het log. Het is pas nadat je alle individuele lijntjes hebt gefixt, dat je een nieuw log moet aanmaken en via kopiëren en plakken moet overbrengen naar een bericht hier op het forum.


oke dan ga ik dat proberen.

kun jij iets met die windows update log?

want daardoor werkt mn laptop op dit moment niet goed, omdat ie zo ver achter loopt met updaten.

  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.