Ga naar inhoud

Startpagina ........... gedomineerd door http://www.jerecherche.org/ ! ! !


magy

Aanbevolen berichten

ComboFix 11-11-04.02 - Annette 04/11/2011 13:30:44.1.2 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.32.1043.18.3563.2096 [GMT 1:00]

Gestart vanuit: c:\users\Annette\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NOGQZOXP\ComboFix.exe

AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}

SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\programdata\FullRemove.exe

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2011-10-04 to 2011-11-04 ))))))))))))))))))))))))))))))

.

.

2011-11-04 12:36 . 2011-11-04 12:36 69000 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{699D87F6-5706-42AD-B343-BCF944CFA587}\offreg.dll

2011-11-04 12:35 . 2011-11-04 12:35 -------- d-----w- c:\users\Default\AppData\Local\temp

2011-11-04 12:29 . 2011-10-07 04:16 8570192 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{699D87F6-5706-42AD-B343-BCF944CFA587}\mpengine.dll

2011-11-04 12:22 . 2011-11-04 12:22 388096 ----a-r- c:\users\Annette\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

2011-11-04 12:22 . 2011-11-04 12:22 -------- d-----w- c:\program files (x86)\Trend Micro

2011-10-28 13:38 . 2011-10-28 13:57 -------- d-----w- C:\Rummy Royal

2011-10-23 14:15 . 2011-10-23 15:09 -------- d-----w- c:\programdata\Spybot - Search & Destroy

2011-10-23 14:13 . 2011-10-23 14:13 -------- d-----w- c:\programdata\Yahoo!

2011-10-23 14:13 . 2011-10-23 14:13 -------- d-----w- c:\programdata\Yahoo! Companion

2011-10-23 14:13 . 2011-10-23 14:13 -------- d-----w- c:\users\Annette\AppData\Roaming\Yahoo!

2011-10-23 14:13 . 2011-10-23 14:13 -------- d-----w- c:\program files (x86)\Yahoo!

2011-10-23 13:03 . 2011-10-23 13:20 -------- d-----w- c:\program files (x86)\GridinSoft Trojan Killer

2011-10-22 21:58 . 2011-10-22 21:58 -------- d-----w- c:\programdata\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}

2011-10-22 21:54 . 2011-10-23 03:14 -------- d-----w- c:\program files (x86)\ePrompter

2011-10-22 21:50 . 2011-10-22 21:50 -------- d-----w- c:\users\Annette\AppData\Local\PackageAware

2011-10-22 21:01 . 2011-10-22 21:15 -------- d-----w- c:\users\Annette\AppData\Roaming\DVDVideoSoft

2011-10-22 21:01 . 2011-10-22 21:26 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft

2011-10-18 00:55 . 2011-10-18 00:55 -------- dc----w- c:\users\Annette\AppData\Local\MigWiz

2011-10-18 00:39 . 2011-10-18 00:39 -------- d-----w- c:\users\Annette\AppData\Roaming\newsXpresso

2011-10-18 00:24 . 2011-10-18 00:24 -------- d-----w- c:\windows\PCHEALTH

2011-10-18 00:21 . 2011-10-18 00:21 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services

2011-10-18 00:21 . 2011-10-18 00:21 -------- d-----w- c:\users\Annette\AppData\Local\Microsoft Help

2011-10-18 00:20 . 2011-10-22 19:53 -------- d-----w- c:\programdata\Microsoft Help

2011-10-18 00:20 . 2011-10-18 00:20 -------- d-----r- C:\MSOCache

2011-10-14 21:38 . 2011-10-14 21:38 -------- d-----w- c:\windows\Sun

2011-10-14 08:48 . 2011-10-20 07:04 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll

2011-10-14 08:48 . 2011-10-20 07:04 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll

2011-10-13 00:56 . 2011-09-01 05:24 2309120 ----a-w- c:\windows\system32\jscript9.dll

2011-10-13 00:56 . 2011-09-01 02:35 1798144 ----a-w- c:\windows\SysWow64\jscript9.dll

2011-10-13 00:56 . 2011-09-01 05:19 887296 ----a-w- c:\program files\Internet Explorer\iedvtool.dll

2011-10-13 00:56 . 2011-09-01 02:30 678912 ----a-w- c:\program files (x86)\Internet Explorer\iedvtool.dll

2011-10-12 13:45 . 2011-09-06 03:03 3138048 ----a-w- c:\windows\system32\win32k.sys

2011-10-12 13:45 . 2011-08-17 05:26 613888 ----a-w- c:\windows\system32\psisdecd.dll

2011-10-12 13:45 . 2011-08-17 05:25 108032 ----a-w- c:\windows\system32\psisrndr.ax

2011-10-12 13:45 . 2011-08-17 04:24 465408 ----a-w- c:\windows\SysWow64\psisdecd.dll

2011-10-12 13:45 . 2011-08-17 04:19 75776 ----a-w- c:\windows\SysWow64\psisrndr.ax

2011-10-12 13:45 . 2011-08-27 05:37 861696 ----a-w- c:\windows\system32\oleaut32.dll

2011-10-12 13:45 . 2011-08-27 05:37 331776 ----a-w- c:\windows\system32\oleacc.dll

2011-10-12 13:45 . 2011-08-27 04:26 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll

2011-10-12 13:45 . 2011-08-27 04:26 233472 ----a-w- c:\windows\SysWow64\oleacc.dll

2011-10-11 16:20 . 2011-09-26 20:23 601424 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll

2011-10-11 16:20 . 2011-10-11 16:20 917840 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{5643E984-07D4-4421-A1E2-D68B298482A7}\gapaengine.dll

2011-10-11 11:25 . 2011-10-11 11:25 -------- d-----w- c:\users\Annette\AppData\Local\Software

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2011-11-01 09:25 . 2011-09-27 17:54 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll

2011-10-19 07:46 . 2011-09-28 23:48 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2011-10-16 08:11 . 2011-09-27 17:54 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll

2011-10-07 04:16 . 2011-09-28 08:59 8570192 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2011-09-28 23:48 . 2011-09-28 23:48 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll

2011-09-27 16:37 . 2011-09-27 16:37 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll

2011-09-27 04:34 . 2011-09-27 04:34 2560 ----a-w- c:\windows\SysWow64\drivers\nl-NL\qwavedrv.sys.mui

2011-09-27 04:33 . 2011-09-27 04:33 5632 ----a-w- c:\windows\SysWow64\drivers\nl-NL\ndiscap.sys.mui

2011-09-27 04:33 . 2011-09-27 04:33 50688 ----a-w- c:\windows\SysWow64\drivers\nl-NL\tcpip.sys.mui

2011-09-27 04:33 . 2011-09-27 04:33 26624 ----a-w- c:\windows\SysWow64\drivers\nl-NL\bfe.dll.mui

2011-09-27 04:33 . 2011-09-27 04:33 16896 ----a-w- c:\windows\SysWow64\drivers\nl-NL\pacer.sys.mui

2011-09-27 04:33 . 2011-09-27 04:33 2560 ----a-w- c:\windows\SysWow64\drivers\nl-NL\scfilter.sys.mui

2011-09-26 19:24 . 2011-09-26 19:24 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe

2011-09-26 19:24 . 2011-09-26 19:24 161792 ----a-w- c:\windows\SysWow64\msls31.dll

2011-09-26 19:24 . 2011-09-26 19:24 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe

2011-09-26 19:24 . 2011-09-26 19:24 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe

2011-09-26 19:24 . 2011-09-26 19:24 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll

2011-09-26 19:24 . 2011-09-26 19:24 85504 ----a-w- c:\windows\system32\iesetup.dll

2011-09-26 19:24 . 2011-09-26 19:24 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe

2011-09-26 19:24 . 2011-09-26 19:24 76800 ----a-w- c:\windows\system32\tdc.ocx

2011-09-26 19:24 . 2011-09-26 19:24 74752 ----a-w- c:\windows\SysWow64\iesetup.dll

2011-09-26 19:24 . 2011-09-26 19:24 63488 ----a-w- c:\windows\SysWow64\tdc.ocx

2011-09-26 19:24 . 2011-09-26 19:24 603648 ----a-w- c:\windows\system32\vbscript.dll

2011-09-26 19:24 . 2011-09-26 19:24 49664 ----a-w- c:\windows\system32\imgutil.dll

2011-09-26 19:24 . 2011-09-26 19:24 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll

2011-09-26 19:24 . 2011-09-26 19:24 48640 ----a-w- c:\windows\system32\mshtmler.dll

2011-09-26 19:24 . 2011-09-26 19:24 448512 ----a-w- c:\windows\system32\html.iec

2011-09-26 19:24 . 2011-09-26 19:24 420864 ----a-w- c:\windows\SysWow64\vbscript.dll

2011-09-26 19:24 . 2011-09-26 19:24 367104 ----a-w- c:\windows\SysWow64\html.iec

2011-09-26 19:24 . 2011-09-26 19:24 35840 ----a-w- c:\windows\SysWow64\imgutil.dll

2011-09-26 19:24 . 2011-09-26 19:24 30720 ----a-w- c:\windows\system32\licmgr10.dll

2011-09-26 19:24 . 2011-09-26 19:24 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll

2011-09-26 19:24 . 2011-09-26 19:24 222208 ----a-w- c:\windows\system32\msls31.dll

2011-09-26 19:24 . 2011-09-26 19:24 173056 ----a-w- c:\windows\system32\ieUnatt.exe

2011-09-26 19:24 . 2011-09-26 19:24 165888 ----a-w- c:\windows\system32\iexpress.exe

2011-09-26 19:24 . 2011-09-26 19:24 160256 ----a-w- c:\windows\system32\wextract.exe

2011-09-26 19:24 . 2011-09-26 19:24 152064 ----a-w- c:\windows\SysWow64\wextract.exe

2011-09-26 19:24 . 2011-09-26 19:24 150528 ----a-w- c:\windows\SysWow64\iexpress.exe

2011-09-26 19:24 . 2011-09-26 19:24 1492992 ----a-w- c:\windows\system32\inetcpl.cpl

2011-09-26 19:24 . 2011-09-26 19:24 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe

2011-09-26 19:24 . 2011-09-26 19:24 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl

2011-09-26 19:24 . 2011-09-26 19:24 135168 ----a-w- c:\windows\system32\IEAdvpack.dll

2011-09-26 19:24 . 2011-09-26 19:24 12288 ----a-w- c:\windows\system32\mshta.exe

2011-09-26 19:24 . 2011-09-26 19:24 11776 ----a-w- c:\windows\SysWow64\mshta.exe

2011-09-26 19:24 . 2011-09-26 19:24 114176 ----a-w- c:\windows\system32\admparse.dll

2011-09-26 19:24 . 2011-09-26 19:24 111616 ----a-w- c:\windows\system32\iesysprep.dll

2011-09-26 19:24 . 2011-09-26 19:24 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll

2011-09-26 19:24 . 2011-09-26 19:24 101888 ----a-w- c:\windows\SysWow64\admparse.dll

2011-08-31 16:00 . 2011-09-28 22:44 25416 ----a-w- c:\windows\system32\drivers\mbam.sys

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"msnmsgr"="c:\program files (x86)\Windows Live\Messenger\msnmsgr.exe" [2011-05-13 4283256]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"EgisTecPMMUpdate"="c:\program files (x86)\EgisTec IPS\PmmUpdate.exe" [2010-09-17 407920]

"EgisUpdate"="c:\program files (x86)\EgisTec IPS\EgisUpdate.exe" [2010-09-17 201584]

"OOTag"="c:\program files (x86)\Acer\OOBEOffer\OOTag.exe" [2010-02-23 13856]

"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2011-03-31 1092688]

"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-25 336384]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]

"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]

"aux1"=wdmaud.drv

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]

Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

@=""

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2010-09-28 172912]

R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [x]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]

R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x]

R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]

S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys [x]

S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys [x]

S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys [x]

S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]

S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]

S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2011-03-31 352848]

S2 ePowerSvc;Acer ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]

S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe [2011-01-18 39528]

S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]

S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]

S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]

S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]

S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]

S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [x]

S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]

S3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]

S3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272]

S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]

S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]

.

.

.

--------- x86-64 -----------

.

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-04-07 11788392]

"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-21 2207848]

"Power Management"="c:\program files\Acer\Acer ePower Management\ePowerTray.exe" [2011-05-10 1831528]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 1436736]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"LoadAppInit_DLLs"=0x0

.

------- Bijkomende Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page = hxxp://www.google.be/

mLocal Page = c:\windows\SysWOW64\blank.htm

IE: &Verzenden naar OneNote - c:\progra~2\MICROS~4\Office14\ONBttnIE.dll/105

IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~4\Office14\EXCEL.EXE/3000

IE: Free YouTube to MP3 Converter - c:\users\Annette\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

Trusted Zone: chat-land.com

Trusted Zone: chat-land.net

Trusted Zone: chat-land.org

Trusted Zone: jerecherche.org

TCP: DhcpNameServer = 192.168.1.1

.

- - - - ORPHANS VERWIJDERD - - - -

.

Toolbar-Locked - (no file)

Wow6432Node-HKCU-Run-lan - c:\users\Annette\chat-land\Chat-Landmessenger.jar

Toolbar-Locked - (no file)

WebBrowser-{BBAE7E2B-7313-470C-B56B-51EA622FF1A5} - (no file)

HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe

AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\programdata\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}\bm_installer.exe

.

.

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11c_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.10"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11c.ocx, 1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]

@Denied: (A 2) (Everyone)

@="IFlashBroker4"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]

"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,

00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]

@Denied: (A) (Everyone)

"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]

@Denied: (A) (Everyone)

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]

"Key"="ActionsPane3"

"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

------------------------ Andere Aktieve Processen ------------------------

.

c:\program files (x86)\Launch Manager\LMutilps32.exe

c:\program files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

c:\program files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe

c:\program files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe

.

**************************************************************************

.

Voltooingstijd: 2011-11-04 13:41:16 - machine werd herstart

ComboFix-quarantined-files.txt 2011-11-04 12:41

.

Pre-Run: 574.134.886.400 bytes beschikbaar

Post-Run: 573.920.731.136 bytes beschikbaar

.

- - End Of File - - 75574496D6FCCCEB5B669A22FA104A56

OEPS INTERNET EXPLORER START NIET OP + ER IS GEPROBEERD EEN ONGELDIGE BEWERKING UIT TE VOEREN DIE IS GEMARKEERD VOOR VERWIJDERING....... C:/prgramfiles/internet explorer/iexplorerexe = ??????

Dank voor alle hulp die ik al gekregen heb.... nu dit probleem aie aie , grtjes

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.