Ga naar inhoud

werkbalk (toolbar) doet hey niet


bettina

Aanbevolen berichten

Heb google chrome erbij gedownload (iets snellere pc)

en daar bij pakte hij wel

ComboFix 11-07-08.03 - Bettina 09-07-2011 14:55:22.9.1 - x86

Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.223.118 [GMT 2:00]

Gestart vanuit: c:\documents and settings\Bettina\Mijn documenten\Downloads\ComboFix.exe

AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\documents and settings\Betina\WINDOWS

c:\documents and settings\Bettina\WINDOWS

c:\windows\vb.ini

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2011-06-09 to 2011-07-09 ))))))))))))))))))))))))))))))

.

.

2011-07-09 07:15 . 2011-07-09 10:31 -------- dc-h--r- c:\documents and settings\Bettina\Onlangs geopend

2011-07-08 22:57 . 2011-07-08 22:57 -------- dc----w- c:\windows\system32\Adobe

2011-07-02 08:12 . 2011-07-02 08:12 -------- dc----w- c:\documents and settings\Bettina\Local Settings\Application Data\Deployment

2011-06-28 17:42 . 2011-05-04 00:25 73728 -c--a-w- c:\windows\system32\javacpl.cpl

2011-06-17 09:20 . 2011-06-17 10:14 -------- dc----w- c:\windows\SxsCaPendDel

2011-06-17 08:47 . 2011-04-21 13:37 105472 -c----w- c:\windows\system32\dllcache\mup.sys

2011-06-14 13:29 . 2011-05-10 11:59 19544 -c--a-w- c:\windows\system32\drivers\aswFsBlk.sys

2011-06-14 13:29 . 2011-05-10 12:03 307928 -c--a-w- c:\windows\system32\drivers\aswSP.sys

2011-06-14 13:29 . 2011-05-10 12:02 49240 -c--a-w- c:\windows\system32\drivers\aswTdi.sys

2011-06-14 13:29 . 2011-05-10 11:59 25432 -c--a-w- c:\windows\system32\drivers\aswRdr.sys

2011-06-14 13:29 . 2011-05-10 12:03 441176 -c--a-w- c:\windows\system32\drivers\aswSnx.sys

2011-06-14 13:29 . 2011-05-10 12:02 102616 -c--a-w- c:\windows\system32\drivers\aswmon2.sys

2011-06-14 13:29 . 2011-05-10 12:02 96344 -c--a-w- c:\windows\system32\drivers\aswmon.sys

2011-06-14 13:29 . 2011-05-10 11:59 30808 -c--a-w- c:\windows\system32\drivers\aavmker4.sys

2011-06-14 13:28 . 2011-05-10 12:10 40112 -c--a-w- c:\windows\avastSS.scr

2011-06-14 13:28 . 2011-05-10 12:10 199304 -c--a-w- c:\windows\system32\aswBoot.exe

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2011-06-29 07:24 . 2011-05-18 07:28 404640 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2011-05-15 09:09 . 2011-05-15 09:09 0 -c--a-w- c:\windows\system32\ConduitEngine.tmp

2011-05-04 02:52 . 2010-04-22 09:14 472808 -c--a-w- c:\windows\system32\deployJava1.dll

2011-05-02 15:31 . 2007-10-09 12:55 692736 -c--a-w- c:\windows\system32\inetcomm.dll

2011-04-29 17:25 . 2002-09-11 12:00 151552 -c--a-w- c:\windows\system32\schannel.dll

2011-04-29 16:19 . 2002-09-11 12:00 456320 -c--a-w- c:\windows\system32\drivers\mrxsmb.sys

2011-04-25 16:05 . 2006-06-23 11:29 916480 -c--a-w- c:\windows\system32\wininet.dll

2011-04-25 16:05 . 2002-09-11 12:00 43520 -c----w- c:\windows\system32\licmgr10.dll

2011-04-25 16:05 . 2002-09-11 12:00 1469440 -c----w- c:\windows\system32\inetcpl.cpl

2011-04-25 12:01 . 2004-08-04 07:55 385024 -c--a-w- c:\windows\system32\html.iec

2011-04-21 13:37 . 2002-09-11 12:00 105472 -c--a-w- c:\windows\system32\drivers\mup.sys

2005-09-23 16:28 . 2005-09-23 16:26 948936 -c--a-w- c:\program files\install_flash_player.exe

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]

@="{472083B0-C522-11CF-8763-00608CC02F24}"

[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]

2011-05-10 12:10 122512 -c--a-w- c:\program files\AVAST Software\Avast\ashShell.dll

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-09-11 68856]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Lexmark X1100 Series"="c:\program files\Lexmark X1100 Series\lxbkbmgr.exe" [2003-08-19 57344]

"SoundMan"="SOUNDMAN.EXE" [2006-11-17 577536]

"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712]

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-16 3872080]

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

"DisableMonitoring"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

"DisableMonitoring"=dword:00000001

.

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"c:\\WINDOWS\\system32\\LEXPPS.EXE"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"c:\\Program Files\\Messenger\\msmsgs.exe"=

"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=

.

R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [14-6-2011 15:29 441176]

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [14-6-2011 15:29 307928]

R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [14-6-2011 15:29 19544]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

getPlusHelper REG_MULTI_SZ getPlusHelper

nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper

.

Inhoud van de 'Gedeelde Taken' map

.

2011-07-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1715567821-682003330-1004Core.job

- c:\documents and settings\Bettina\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-02 08:12]

.

2011-07-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1715567821-682003330-1004UA.job

- c:\documents and settings\Bettina\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-02 08:12]

.

2011-07-09 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job

- c:\program files\Ask.com\UpdateTask.exe [2010-09-28 20:44]

.

2011-07-08 c:\windows\Tasks\User_Feed_Synchronization-{C1B85C53-4697-4F06-9951-E5497A9274B8}.job

- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.google.nl/

uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8

TCP: DhcpNameServer = 213.46.228.196 62.179.104.196

DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab

DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab

DPF: {B0A2C7FC-8666-44D6-A990-2FCE3B933341} - hxxps://secure.ingbank.nl/download/DigiSign.cab

FF - ProfilePath - c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\

FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2795622&SearchSource=3&q={searchTerms}

FF - prefs.js: browser.search.selectedEngine - midicair Customized Web Search

FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT2795622&SearchSource=13

FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=

FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension

FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff

FF - Ext: avast! WebRep: wrc@avast.com - c:\program files\AVAST Software\Avast\WebRep\FF

FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

FF - Ext: Support.com Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com

FF - Ext: midicair Community Toolbar: {77f8c945-4b74-4bd6-a073-e0d1997edce8} - %profile%\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}

.

- - - - ORPHANS VERWIJDERD - - - -

.

Toolbar-Locked - (no file)

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)

WebBrowser-{77F8C945-4B74-4BD6-A073-E0D1997EDCE8} - (no file)

WebBrowser-{30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)

.

.

.

**************************************************************************

.

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2011-07-09 15:16

Windows 5.1.2600 Service Pack 3 NTFS

.

scannen van verborgen processen ...

.

scannen van verborgen autostart items ...

.

scannen van verborgen bestanden ...

.

Scan succesvol afgerond

verborgen bestanden: 0

.

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_USERS\S-1-5-21-746137067-1715567821-682003330-1004\Software\Microsoft\SystemCertificates\AddressBook*]

@Allowed: (Read) (RestrictedCode)

@Allowed: (Read) (RestrictedCode)

.

Voltooingstijd: 2011-07-09 15:24:09

ComboFix-quarantined-files.txt 2011-07-09 13:24

ComboFix2.txt 2011-03-18 20:37

ComboFix3.txt 2011-03-18 15:38

ComboFix4.txt 2011-03-18 12:14

ComboFix5.txt 2011-07-09 12:40

.

Pre-Run: 9.847.373.824 bytes beschikbaar

Post-Run: 9.854.857.216 bytes beschikbaar

.

- - End Of File - - 41B0608CBFD26282D42A822E37AC5A07

Link naar reactie
Delen op andere sites

  • Reacties 84
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Geplaatste afbeeldingen

Open een kladblokbestand.

Kopieer en plak daarin de onderstaande vetgedrukte tekst.

File::

c:\windows\system32\ConduitEngine.tmp

c:\windows\Tasks\Scheduled Update for Ask Toolbar.job

c:\program files\Ask.com\UpdateTask.exe

Folder::

c:\program files\Ask.com

firefox::

FF - ProfilePath - c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\

FF - prefs.js: browser.search.defaulturl -

FF - prefs.js: browser.search.selectedEngine -

FF - prefs.js: browser.startup.homepage -

FF - Ext: Support.com Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com

FF - Ext: midicair Community Toolbar: {77f8c945-4b74-4bd6-a073-e0d1997edce8} - %profile%\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}

Sla dit bestand op je bureaublad op als CFScript.txt.

Sleep CFScript.txt in ComboFix.exe

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.

Post na herstart de inhoud van de Combofix.txt in je volgende bericht samen met een nieuw logje van HijackThis.

Link naar reactie
Delen op andere sites

Open een kladblokbestand.

Kopieer en plak daarin de onderstaande vetgedrukte tekst.

File::

c:\windows\system32\ConduitEngine.tmp

c:\windows\Tasks\Scheduled Update for Ask Toolbar.job

c:\program files\Ask.com\UpdateTask.exe

Folder::

c:\program files\Ask.com

firefox::

FF - ProfilePath - c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\

FF - prefs.js: browser.search.defaulturl -

FF - prefs.js: browser.search.selectedEngine -

FF - prefs.js: browser.startup.homepage -

FF - Ext: Support.com Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com

FF - Ext: midicair Community Toolbar: {77f8c945-4b74-4bd6-a073-e0d1997edce8} - %profile%\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}

Sla dit bestand op je bureaublad op als CFScript.txt.

Sleep CFScript.txt in ComboFix.exe

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.

Post na herstart de inhoud van de Combofix.txt in je volgende bericht samen met een nieuw logje van HijackThis.

sorry snap het niet. het logje van #11 is van combo fix

bedankt alvast

Je moet het programma kladblok openen.

Ga via start naar "alle programma's".

Dan open je de map bureau- accessoires.

Daar zie je kladblok staan.

Klik erop, eenmaal geopend Kopieer je de vetgedrukte tekst uit bericht 12 en plak die in het lege venster van kladblok.

Sla dit bestand op je bureaublad op als CFScript.txt.

Sleep CFScript.txt in ComboFix.exe

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.

Post na herstart de inhoud van de Combofix.txt in je volgende bericht samen met een nieuw logje van HijackThis.

Link naar reactie
Delen op andere sites

  • 3 weken later...

:dong:nee het lukt niet.

Als ik combofix laat draaien krijg ik dat logje (zie boven)

Ik heb het deel opgeslagen staat opbureau blad

Maar dat: Sleep CFScript.txt in ComboFix.exe

Begijp niet hoe ik dat moet doen

Bij IE8 staan de favorieten nog steeeds niet geberuike. Staat wel achter een logo

wat het is maar hij pakt niet

'Dank je

Link naar reactie
Delen op andere sites

Je klikt met de linker muisknop op het bestandje CFScript.txt en hou de muisknop ingedrukt. Verplaats dan de muis en je zal zien dat het bestandje mee verplaatst; dit noemt men "slepen". Sleep de muis tot het bestandje over het icoon van combofix.exe staat en laat dan de muisknop los.

Combofix zal nu opstarten en de instructies uitvoeren die in het bestandje CFScript.txt staan en een nieuw logje aanmaken.

Plaats dit logje in een volgend bericht.

Link naar reactie
Delen op andere sites

bedankt voor uitleg

ComboFix 11-07-29.01 - Bettina 29-07-2011 19:09:59.10.1 - x86

Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.223.116 [GMT 2:00]

Gestart vanuit: c:\documents and settings\Bettina\Bureaublad\ComboFix.exe

gebruikte Opdracht switches :: c:\documents and settings\Bettina\Bureaublad\CFScript.txt..txt

AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}

.

FILE ::

"c:\program files\Ask.com\UpdateTask.exe"

"c:\windows\system32\ConduitEngine.tmp"

"c:\windows\Tasks\Scheduled Update for Ask Toolbar.job"

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\chrome.manifest

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\chrome\midicair.jar

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\components\ConduitAutoCompleteSearch.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\components\ConduitAutoCompleteSearch.xpt

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\components\RadioWMPCore.dll

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\components\RadioWMPCore.xpt

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\components\RadioWMPCoreGecko19.dll

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\alertSettingsComponent.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\appContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\engineContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\engineSettings.json

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\fbAlert.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\getAppsContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\postAppsContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\toolbarContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\defaults\unsharedAppsContextMenu.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\INSTALL.LOG

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\install.rdf

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\META-INF\manifest.mf

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\META-INF\zigbert.rsa

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\META-INF\zigbert.sf

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Chat.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\DataStructures.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\EBEncryption.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\ExternalLibraryLoader.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\HTTP.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\IO.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Log.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\MainSingleton.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\MD5.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Notifications.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\ObserversAndEvents.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Prefs.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\SearchProtector.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\SearchSuggestIO.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\String.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\TEAEncryption.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Timer.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Twitter.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\URL.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\Windows.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\modules\XML.jsm

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\searchplugin\conduit.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\setup.ini

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8}\version.txt

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome.manifest

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\about.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\about.xul

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\cache.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\constants.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\core.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\custom-command-listener.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\events.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\feeds.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\json.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\lifecycle.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\listeners.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\locale.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\logger.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\network.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\observer.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\options.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\options.xul

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\preferences.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\prefetch.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\ss-popup-bindings.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\suggestions.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\update.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\utilities.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\webframe-bindings.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\webframe-manager.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\widget-controller.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\widget-popup.xul

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\content\widgets.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\abc.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\amazon_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\as.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\ask_16x16.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\ask_32x32.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\ask_browser_ff_chrome.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\asklogo.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\bbc_news.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\beppe_grillo.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\bg.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\bild.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\blogs.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\BluePhoneLogo.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\business.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\celebrity.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\chevron.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\close.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\cnn_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\corriere_della_sera.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\cross_hairs.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\dictionary.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\el_mundo.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\email_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\expansion.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\facebook_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\folha.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\ft.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\ftd.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\g1.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\games_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\gazzetta_dello_sport.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\globe_18x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\gripper.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\help.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\highlight_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\highlighter_off.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\highlighter_on.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\hola.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_film1_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_history_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_news_ru_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_nu_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_radiodigital_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_sports_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_sportsru_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icon_vk_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\icons_business_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\images.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\kicker.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-de.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-en.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-es.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-fr.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-it.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-nl.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-pt.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\labels-ru.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\laposte.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\lemonde.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\lequipe.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\libero_it.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-BR.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-DE.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-ES.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-EU.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-FR.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-IT.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-NL.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-RU.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-UK.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\links-US.properties

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\logo_32x32.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\magnify_search.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\magnify_search_grey_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\maps.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\mtv.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\news.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\oglobo.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\or***.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\personas.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\preferences.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\SavePNG.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_de.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_en.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_es.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_fr.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_it.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_nl.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pl.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pt.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ask_ru.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_cobrand.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_current_site.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_de.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_es.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_fr.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_grey_73x24.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_it.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_nl.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_pl.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_pt.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\search_ru.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\searchbox.xml

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\Security.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\shopping.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\SoftonicPNG.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\sports.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\stocks.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\support.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\support_new.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\terra.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\titlebar_bg.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\toolbar.css

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\toolbar.xul

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\tv.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\tv_movie_de.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\uol.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\voici_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\weather.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\weather_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\web.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\web_de.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\WikiTalkPNG.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\wod.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\word_of_the_day.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\wordoftheday_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\youtube_16x.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\skin\zoomall.png

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-02-Jul-2011-12-28-14-GMT\ff-config.zip

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\datastore\cache.sqlite

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\defaults.js.bak

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\defaults\preferences\defaults.js

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\install.rdf

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\logs\asktb-log-1309609691467.html

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\logs\asktb-log-1309609693314.html

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\logs\asktb-log-1309609693832.html

c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\extensions\toolbar@ask.com\logs\asktb-log-1309609753500.html

c:\program files\Ask.com

c:\program files\Ask.com\cobrand.ico

c:\program files\Ask.com\config.xml

c:\program files\Ask.com\favicon.ico

c:\program files\Ask.com\fv_24.ico

c:\program files\Ask.com\mupcfg.xml

c:\program files\Ask.com\SaUpdate.exe

c:\program files\Ask.com\UpdateTask.exe

c:\windows\system32\ConduitEngine.tmp

c:\windows\Tasks\Scheduled Update for Ask Toolbar.job

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2011-06-28 to 2011-07-29 ))))))))))))))))))))))))))))))

.

.

2011-07-29 06:16 . 2011-07-29 12:45 -------- dc-h--r- c:\documents and settings\Bettina\Onlangs geopend

2011-07-19 18:31 . 2011-07-19 18:31 -------- dc----w- c:\windows\system32\Adobe

2011-07-13 18:18 . 2011-07-04 11:32 19544 -c--a-w- c:\windows\system32\drivers\aswFsBlk.sys

2011-07-13 18:18 . 2011-07-04 11:36 309848 -c--a-w- c:\windows\system32\drivers\aswSP.sys

2011-07-13 18:18 . 2011-07-04 11:32 25432 -c--a-w- c:\windows\system32\drivers\aswRdr.sys

2011-07-13 18:18 . 2011-07-04 11:35 43608 -c--a-w- c:\windows\system32\drivers\aswTdi.sys

2011-07-13 18:18 . 2011-07-04 11:36 441176 -c--a-w- c:\windows\system32\drivers\aswSnx.sys

2011-07-13 18:18 . 2011-07-04 11:35 102616 -c--a-w- c:\windows\system32\drivers\aswmon2.sys

2011-07-13 18:18 . 2011-07-04 11:35 96344 -c--a-w- c:\windows\system32\drivers\aswmon.sys

2011-07-13 18:18 . 2011-07-04 11:32 30808 -c--a-w- c:\windows\system32\drivers\aavmker4.sys

2011-07-13 18:17 . 2011-07-04 11:43 40112 -c--a-w- c:\windows\avastSS.scr

2011-07-13 18:16 . 2011-07-04 11:43 199304 -c--a-w- c:\windows\system32\aswBoot.exe

2011-07-02 08:12 . 2011-07-02 08:12 -------- dc----w- c:\documents and settings\Bettina\Local Settings\Application Data\Deployment

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2011-06-29 07:24 . 2011-05-18 07:28 404640 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2011-06-06 11:35 . 2002-09-11 12:00 1859072 -c--a-w- c:\windows\system32\win32k.sys

2011-05-04 02:52 . 2010-04-22 09:14 472808 -c--a-w- c:\windows\system32\deployJava1.dll

2011-05-04 00:25 . 2011-06-28 17:42 73728 -c--a-w- c:\windows\system32\javacpl.cpl

2011-05-02 15:31 . 2007-10-09 12:55 692736 -c--a-w- c:\windows\system32\inetcomm.dll

2005-09-23 16:28 . 2005-09-23 16:26 948936 -c--a-w- c:\program files\install_flash_player.exe

.

.

((((((((((((((((((((((((((((( SnapShot@2011-07-09_13.16.50 )))))))))))))))))))))))))))))))))))))))))

.

+ 2011-07-29 06:05 . 2011-07-29 06:05 16384 c:\windows\Temp\Perflib_Perfdata_418.dat

+ 2009-12-14 07:10 . 2011-04-26 11:07 33280 c:\windows\system32\dllcache\csrsrv.dll

- 2009-12-14 07:10 . 2010-12-09 14:30 33280 c:\windows\system32\dllcache\csrsrv.dll

- 2002-09-11 12:00 . 2010-12-09 14:30 33280 c:\windows\system32\csrsrv.dll

+ 2002-09-11 12:00 . 2011-04-26 11:07 33280 c:\windows\system32\csrsrv.dll

+ 2011-07-19 18:31 . 2011-07-23 20:28 87951 c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe

- 2011-07-08 22:58 . 2011-07-08 22:58 87951 c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe

+ 2002-09-11 12:00 . 2011-04-26 11:07 293888 c:\windows\system32\winsrv.dll

- 2002-09-11 12:00 . 2010-06-18 17:47 293888 c:\windows\system32\winsrv.dll

+ 2007-10-09 14:41 . 2011-07-14 07:14 100640 c:\windows\system32\FNTCACHE.DAT

- 2007-10-09 14:41 . 2011-06-28 17:48 100640 c:\windows\system32\FNTCACHE.DAT

+ 2010-06-18 17:47 . 2011-04-26 11:07 293888 c:\windows\system32\dllcache\winsrv.dll

- 2010-06-18 17:47 . 2010-06-18 17:47 293888 c:\windows\system32\dllcache\winsrv.dll

+ 2008-10-28 00:53 . 2011-06-06 11:35 1859072 c:\windows\system32\dllcache\win32k.sys

+ 2007-10-09 15:13 . 2011-07-14 06:29 49089992 c:\windows\system32\MRT.exe

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]

@="{472083B0-C522-11CF-8763-00608CC02F24}"

[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]

2011-07-04 11:43 122512 -c--a-w- c:\program files\AVAST Software\Avast\ashShell.dll

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-09-11 68856]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Lexmark X1100 Series"="c:\program files\Lexmark X1100 Series\lxbkbmgr.exe" [2003-08-19 57344]

"SoundMan"="SOUNDMAN.EXE" [2006-11-17 577536]

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]

"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-07-04 3493720]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2010-04-16 3872080]

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

"DisableMonitoring"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

"DisableMonitoring"=dword:00000001

.

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"c:\\WINDOWS\\system32\\LEXPPS.EXE"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"c:\\Program Files\\Messenger\\msmsgs.exe"=

"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=

.

R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [13-7-2011 20:18 441176]

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [13-7-2011 20:18 309848]

R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [13-7-2011 20:18 19544]

S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [11-9-2002 14:00 14336]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

getPlusHelper REG_MULTI_SZ getPlusHelper

nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper

.

Inhoud van de 'Gedeelde Taken' map

.

2011-07-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1715567821-682003330-1004Core.job

- c:\documents and settings\Bettina\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-02 08:12]

.

2011-07-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-746137067-1715567821-682003330-1004UA.job

- c:\documents and settings\Bettina\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-07-02 08:12]

.

2011-07-29 c:\windows\Tasks\User_Feed_Synchronization-{C1B85C53-4697-4F06-9951-E5497A9274B8}.job

- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.google.nl/

uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8

TCP: DhcpNameServer = 213.46.228.196 62.179.104.196

DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab

DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab

DPF: {B0A2C7FC-8666-44D6-A990-2FCE3B933341} - hxxps://secure.ingbank.nl/download/DigiSign.cab

FF - ProfilePath - c:\documents and settings\Bettina\Application Data\Mozilla\Firefox\Profiles\auzc2ipc.default\

FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?FORM=IEFM1&q=

FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}

FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension

FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff

FF - Ext: avast! WebRep: wrc@avast.com - c:\program files\AVAST Software\Avast\WebRep\FF

FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

.

.

**************************************************************************

.

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2011-07-29 19:31

Windows 5.1.2600 Service Pack 3 NTFS

.

scannen van verborgen processen ...

.

scannen van verborgen autostart items ...

.

scannen van verborgen bestanden ...

.

.

C:\## aswSnx private storage

.

Scan succesvol afgerond

verborgen bestanden: 1

.

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_USERS\S-1-5-21-746137067-1715567821-682003330-1004\Software\Microsoft\SystemCertificates\AddressBook*]

@Allowed: (Read) (RestrictedCode)

@Allowed: (Read) (RestrictedCode)

.

Voltooingstijd: 2011-07-29 19:39:32

ComboFix-quarantined-files.txt 2011-07-29 17:39

ComboFix2.txt 2011-07-09 13:24

ComboFix3.txt 2011-03-18 20:37

ComboFix4.txt 2011-03-18 15:38

ComboFix5.txt 2011-07-29 16:53

.

Pre-Run: 9.506.357.248 bytes beschikbaar

Post-Run: 9.518.587.904 bytes beschikbaar

.

- - End Of File - - 826E4BF3A11BF3CA6C8C6DB5E1C19B23

Link naar reactie
Delen op andere sites


×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.