Ga naar inhoud

computer ontzettend traag/iexplore.exe/msmpeng.exe


Aanbevolen berichten

HELP! Mijn computer loopt nu steeds helemaal vast. Zo erg, dat ik hem zelfs alleen kan uitzetten door de startknop ingedrukt te houden. Dat heb ik nu 2x gedaan. Wat heb ik fout gedaan? Ik denk dat met combofix deinstalleren het niet goed is gegaan. Wat nu? Weer combofix draaien? Help! Was ik maar niet zo'n leek....

Of ligt het soms aan Soluto?

Link naar reactie
Delen op andere sites

  • Reacties 44
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Indien je de opdracht van Combofix correct hebt ingevoerd, gaat dit programma niet opnieuw opstarten. Bij Combofix /Uninstall moet je wel letten op de spatie vóór de slash bij Uninstall. Die wordt wel eens over het hoofd gezien en dan wordt het tooltje niet verwijderd. Probeer het eens op die manier, nadat je eerste de PC opnieuw opgestart hebt.

Link naar reactie
Delen op andere sites

Hoi Kape, ik heb AVG laten scannen. Er kwamen 12 potentieel gevaarlijke threats uit. 6 daarvan heeft hij verwijderd. 6 lukte niet.

"";"C:\WINDOWS\explorer.exe (1784):\memory_02f30000";"Trojaans paard PSW.Agent.ARMV";"Geïnfecteerd"

"";"C:\WINDOWS\system32\services.exe (880):\memory_01120000";"Trojaans paard Generic27.AKPW";"Geïnfecteerd"

"";"C:\WINDOWS\system32\svchost.exe (1052):\memory_00cb0000";"Trojaans paard PSW.Agent.ARMV";"Geïnfecteerd"

"";"C:\WINDOWS\system32\svchost.exe (1260):\memory_01cd0000";"Trojaans paard PSW.Agent.ARMV";"Geïnfecteerd"

"";"C:\WINDOWS\system32\svchost.exe (2392):\memory_00e50000";"Trojaans paard PSW.Agent.ARMV";"Geïnfecteerd"

"";"C:\WINDOWS\system32\winlogon.exe (836):\memory_013f0000";"Trojaans paard PSW.Agent.ARMV";"Geïnfecteerd"

Moet ik hier nog iets mee?? Verder bedankt voor alles!!

Link naar reactie
Delen op andere sites

Download ComboFix van één van deze locaties:

Link 1

Link 2

* BELANGRIJK !!! Sla ComboFix.exe op je Bureaublad op

1. Schakel alle antivirus- en antispywareprogramma's uit, want anders kunnen ze misschien conflicteren met ComboFix. Hier is een handleiding over hoe je ze kan uitschakelen:

Klik hier

Als het je niet lukt om ze uit te schakelen, ga dan gewoon door naar de volgende stap.

2. Dubbelklik op ComboFix.exe en volg de meldingen op het scherm.

3. ComboFix zal controleren of dat de Microsoft Windows Recovery Console reeds is geïnstalleerd.

**Let op: Als de Microsoft Windows Recovery Console al is geïnstalleerd, dan krijg je de volgende schermen niet te zien en zal ComboFix automatisch verder gaan met het scannen naar malware.

4. Volg de meldingen op het scherm om ComboFix de Microsoft Windows Recovery Console te laten downloaden en installeren.

cf-rc-auto.jpg

Je krijgt de volgende melding te zien wanneer ComboFix de Microsoft Windows Recovery Console succesvol heeft geïnstalleerd:

rc-auto-done.jpg

Klik op Ja om verder te gaan met het scannen naar malware.

5. Wanneer ComboFix klaar is, zal het een logbestand voor je maken. Post de inhoud van dit logbestand (te vinden als C:\ComboFix.txt) in je volgende bericht.

Link naar reactie
Delen op andere sites

ComboFix 12-07-12.02 - nellie 12-07-2012 17:44:38.2.1 - x86

Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.1023.530 [GMT 2:00]

Gestart vanuit: c:\documents and settings\nellie\Desktop\ComboFix.exe

AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}

AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\windows\system32\sqlite3.dll

.

.

((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

-------\Service_xcpip

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2012-06-12 to 2012-07-12 ))))))))))))))))))))))))))))))

.

.

2012-07-12 14:28 . 2012-07-12 14:28 -------- d-----w- c:\documents and settings\NetworkService\Application Data\Apple Computer

2012-07-12 14:19 . 2012-07-12 14:19 418464 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2012-07-12 14:14 . 2012-07-12 14:14 -------- d-----w- c:\program files\iPod

2012-07-12 14:13 . 2012-07-12 14:15 -------- d-----w- c:\program files\iTunes

2012-07-12 14:07 . 2012-07-12 14:07 -------- d-----w- c:\documents and settings\LocalService\Application Data\Apple Computer

2012-07-12 14:04 . 2012-07-12 14:04 -------- d-----w- c:\program files\Bonjour

2012-07-12 13:48 . 2012-07-12 13:48 -------- d--h--r- c:\documents and settings\nellie\Onlangs geopend

2012-07-12 11:44 . 2012-07-12 11:44 -------- d-----w- c:\program files\VS Revo Group

2012-07-11 17:49 . 2012-07-11 16:57 51144 ----a-w- c:\windows\system32\drivers\Soluto.sys

2012-07-11 17:49 . 2012-07-11 17:49 -------- d-----w- c:\program files\Soluto

2012-07-11 17:48 . 2012-07-11 18:39 -------- d-----w- c:\documents and settings\All Users\Application Data\Soluto

2012-07-11 17:42 . 2012-07-11 17:42 -------- d-----w- c:\program files\CCleaner

2012-07-11 17:36 . 2012-07-11 17:36 -------- d-----w- c:\documents and settings\nellie\Application Data\AVG2012

2012-07-11 17:31 . 2012-07-11 17:31 -------- d-----w- c:\documents and settings\nellie\Local Settings\Application Data\AVG Secure Search

2012-07-11 17:31 . 2012-07-11 17:31 -------- d-----w- c:\documents and settings\nellie\Application Data\AVG Secure Search

2012-07-11 17:31 . 2012-07-11 17:31 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG Secure Search

2012-07-11 17:31 . 2012-07-11 17:31 -------- d-----w- c:\program files\Common Files\AVG Secure Search

2012-07-11 17:31 . 2012-07-11 17:31 -------- d-----w- c:\program files\AVG Secure Search

2012-07-11 17:29 . 2012-07-12 07:22 -------- d-----w- c:\windows\system32\drivers\AVG

2012-07-11 17:29 . 2012-07-11 17:43 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG2012

2012-07-11 17:29 . 2012-07-11 17:29 -------- dc----w- C:\$AVG

2012-07-11 17:25 . 2012-07-12 07:22 -------- d-----w- c:\documents and settings\All Users\Application Data\MFAData

2012-07-11 17:25 . 2012-07-11 17:25 -------- d--h--w- c:\documents and settings\All Users\Application Data\Common Files

2012-07-11 10:18 . 2012-07-11 10:18 -------- d-----w- c:\documents and settings\nellie\Application Data\Malwarebytes

2012-07-11 10:16 . 2012-07-11 10:16 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes

2012-07-11 10:16 . 2012-07-11 10:16 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2012-07-11 10:16 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-07-08 14:51 . 2012-07-10 07:41 -------- d-----w- c:\program files\Spybot - Search & Destroy

2012-07-08 08:21 . 2012-07-08 08:21 -------- d-----w- c:\windows\system32\wbem\Repository

2012-07-08 08:21 . 2012-07-11 17:43 -------- d-----w- c:\documents and settings\nellie\Application Data\uTorrent

2012-07-08 08:21 . 2012-07-08 08:21 -------- d-----w- c:\program files\uTorrent

2012-06-13 13:19 . 2012-05-11 14:44 521728 ------w- c:\windows\system32\dllcache\jsdbgui.dll

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-07-12 14:19 . 2011-08-07 14:41 70304 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2012-06-13 13:55 . 2003-01-29 12:46 1866240 ----a-w- c:\windows\system32\win32k.sys

2012-06-05 15:49 . 2008-10-04 13:06 1372672 ----a-w- c:\windows\system32\msxml6.dll

2012-06-05 15:49 . 2003-01-29 12:45 1172480 ----a-w- c:\windows\system32\msxml3.dll

2012-06-04 04:32 . 2003-01-29 12:46 152576 ----a-w- c:\windows\system32\schannel.dll

2012-06-02 13:19 . 2007-06-27 06:59 18456 ----a-w- c:\windows\system32\wuaueng.dll.mui

2012-06-02 13:19 . 2004-08-13 07:52 329240 ----a-w- c:\windows\system32\wucltui.dll

2012-06-02 13:19 . 2004-08-13 07:52 219160 ----a-w- c:\windows\system32\wuaucpl.cpl

2012-06-02 13:19 . 2004-08-13 07:52 210968 ----a-w- c:\windows\system32\wuweb.dll

2012-06-02 13:19 . 2005-05-26 02:16 45080 -c--a-w- c:\windows\system32\wups2.dll

2012-06-02 13:19 . 2004-08-13 07:52 35864 -c--a-w- c:\windows\system32\wups.dll

2012-06-02 13:19 . 2003-01-29 13:01 53784 ----a-w- c:\windows\system32\wuauclt.exe

2012-06-02 13:19 . 2003-01-29 12:44 97304 ----a-w- c:\windows\system32\cdm.dll

2012-06-02 13:19 . 2007-06-27 06:59 15896 ----a-w- c:\windows\system32\wuapi.dll.mui

2012-06-02 13:19 . 2007-06-27 06:59 15896 ----a-w- c:\windows\system32\wuaucpl.cpl.mui

2012-06-02 13:19 . 2004-08-13 07:52 577048 ----a-w- c:\windows\system32\wuapi.dll

2012-06-02 13:19 . 2007-06-27 06:59 24088 ----a-w- c:\windows\system32\wucltui.dll.mui

2012-06-02 13:19 . 2003-01-29 13:01 1933848 ----a-w- c:\windows\system32\wuaueng.dll

2012-06-02 13:19 . 2009-06-22 07:09 18160 ----a-w- c:\windows\system32\mucltui.dll.mui

2012-06-02 13:18 . 2006-04-21 08:51 275696 ----a-w- c:\windows\system32\mucltui.dll

2012-06-02 13:18 . 2005-05-26 02:19 214256 ----a-w- c:\windows\system32\muweb.dll

2012-05-31 13:22 . 2004-04-20 10:04 602624 ----a-w- c:\windows\system32\crypt32.dll

2012-05-16 15:09 . 2004-02-06 16:09 916992 ----a-w- c:\windows\system32\wininet.dll

2012-05-11 14:44 . 2003-01-29 12:45 43520 ----a-w- c:\windows\system32\licmgr10.dll

2012-05-11 14:44 . 2003-01-29 12:45 1469440 ------w- c:\windows\system32\inetcpl.cpl

2012-05-11 11:39 . 2004-08-04 07:55 385024 ----a-w- c:\windows\system32\html.iec

2012-05-05 06:45 . 2002-09-09 11:17 2073472 -c--a-w- c:\windows\system32\ntkrnlpa.exe

2012-05-05 03:15 . 2003-01-29 12:45 2196992 ----a-w- c:\windows\system32\ntoskrnl.exe

2012-05-02 13:47 . 2003-01-29 13:01 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys

2012-04-19 02:50 . 2012-04-19 02:50 24896 ----a-w- c:\windows\system32\drivers\avgidshx.sys

2011-02-08 13:33 978944 --sha-w- c:\windows\system32\mfc42.dll

2008-04-14 17:02 57344 -csha-w- c:\windows\system32\msvcirt.dll

2008-04-14 17:02 413696 --sha-w- c:\windows\system32\msvcp60.dll

2010-12-20 17:32 551936 --sha-w- c:\windows\system32\oleaut32.dll

2008-04-14 17:03 12288 -csh--w- c:\windows\system32\regsvr32.exe

.

.

((((((((((((((((((((((((((((( SnapShot@2012-07-10_20.12.14 )))))))))))))))))))))))))))))))))))))))))

.

+ 2011-08-30 21:05 . 2011-08-30 21:05 50536 c:\windows\system32\jdns_sd.dll

+ 2012-07-12 14:06 . 2012-02-15 09:01 43520 c:\windows\system32\DRVSTORE\usbaapl_87F84F5DA3368BC69CA5BE7F6A79CAA709E36E13\usbaapl.sys

+ 2012-07-11 17:49 . 2012-07-11 16:57 51144 c:\windows\system32\DRVSTORE\Soluto_650756C288B7E3F1A1D5932110EF00AB1D585753\Soluto.sys

+ 2012-07-12 14:06 . 2011-08-02 14:38 18432 c:\windows\system32\DRVSTORE\netaapl_63AA05C4700EB9CAF2D048DAC1D06D764A0D4C41\netaapl.sys

+ 2012-01-31 02:46 . 2012-01-31 02:46 31952 c:\windows\system32\drivers\avgrkx86.sys

+ 2011-12-23 11:32 . 2011-12-23 11:32 41040 c:\windows\system32\drivers\avgmfx86.sys

+ 2011-12-23 11:32 . 2011-12-23 11:32 17232 c:\windows\system32\drivers\avgidsshimx.sys

+ 2011-12-23 11:32 . 2011-12-23 11:32 24144 c:\windows\system32\drivers\avgidsfilterx.sys

+ 2011-08-30 21:05 . 2011-08-30 21:05 73064 c:\windows\system32\dnssd.dll

+ 2011-08-30 21:05 . 2011-08-30 21:05 83816 c:\windows\system32\dns-sd.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 23040 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\unbndico.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 23040 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\unbndico.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 61440 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pubs.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 61440 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pubs.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 27136 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\oisicon.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 27136 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\oisicon.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 11264 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\mspicons.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 11264 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\mspicons.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 86016 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\inficon.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 86016 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\inficon.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 12288 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\cagicon.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 12288 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\cagicon.exe

+ 2012-07-12 14:05 . 2012-07-12 14:05 27136 c:\windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe

+ 2012-07-11 17:49 . 2012-07-11 17:49 14534 c:\windows\Installer\{39AF7A95-EFAF-4A1E-BABB-C0D05B800D22}\SystemFolder_msiexec.exe

+ 2012-07-11 17:49 . 2012-07-11 17:49 77399 c:\windows\Installer\{39AF7A95-EFAF-4A1E-BABB-C0D05B800D22}\Soluto_1.exe

+ 2012-07-11 17:49 . 2012-07-11 17:49 77399 c:\windows\Installer\{39AF7A95-EFAF-4A1E-BABB-C0D05B800D22}\Soluto.exe

+ 2012-07-11 17:55 . 2012-07-11 17:55 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\f121ccced1aa14badb316d8d9be5154d\UIAutomationProvider.ni.dll

+ 2012-07-11 17:55 . 2012-07-11 17:55 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\53931181e5a5e194da82605613cda6af\PresentationCFFRasterizer.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 67584 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGUsersCenter\18bbb62f1973b9b58a43e14ef6423c65\PCGUsersCenter.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 45568 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGRSPProbe\14f23ad061d9e997771e2affcf16deb8\PCGRSPProbe.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 61440 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGHIDProbe\5d95b996b4427f463c0a1576bda8b566\PCGHIDProbe.ni.dll

+ 2012-07-11 18:00 . 2012-07-11 18:00 49664 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGEntities\0ec5c2a5d98ab7ab4699fa6105b0d861\PCGEntities.ni.dll

+ 2012-07-11 17:57 . 2012-07-11 17:57 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGConfiguration\0ba79e102dfe97dc3ded97ebd5ce2b20\PCGConfiguration.ni.dll

+ 2012-07-11 17:56 . 2012-07-11 17:56 48640 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGAzureEntityFrame#\bdabde176e2f318f040bbf0f63897874\PCGAzureEntityFramework.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 50688 c:\windows\assembly\NativeImages_v2.0.50727_32\Interop.NetFwTypeLib\052488191aaf9521d39c6169633e93e9\Interop.NetFwTypeLib.ni.dll

+ 2009-08-26 14:31 . 2012-07-11 07:07 4096 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\opwicon.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 4096 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\opwicon.exe

+ 2012-07-12 14:19 . 2012-07-12 14:19 353440 c:\windows\system32\Macromed\Flash\FlashUtil32_11_2_202_233_Plugin.exe

+ 2012-07-12 14:19 . 2012-07-12 14:19 253088 c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

+ 2003-01-29 12:55 . 2012-07-11 18:03 467600 c:\windows\system32\FNTCACHE.DAT

- 2003-01-29 12:55 . 2012-06-14 14:48 467600 c:\windows\system32\FNTCACHE.DAT

+ 2012-03-19 03:17 . 2012-03-19 03:17 301248 c:\windows\system32\drivers\avgtdix.sys

+ 2012-02-22 03:25 . 2012-02-22 03:25 235216 c:\windows\system32\drivers\avgldx86.sys

+ 2011-12-23 11:32 . 2011-12-23 11:32 139856 c:\windows\system32\drivers\avgidsdriverx.sys

+ 2011-08-30 21:05 . 2011-08-30 21:05 178536 c:\windows\system32\dnssdX.dll

+ 2008-12-05 06:58 . 2012-06-04 04:32 152576 c:\windows\system32\dllcache\schannel.dll

+ 2003-01-29 13:03 . 2012-05-28 18:17 536576 c:\windows\system32\dllcache\msado15.dll

- 2003-01-29 13:03 . 2010-11-09 14:52 536576 c:\windows\system32\dllcache\msado15.dll

+ 2003-01-29 12:44 . 2008-04-14 17:02 640000 c:\windows\system32\dllcache\dbghelp.dll

- 2009-08-26 14:31 . 2012-05-11 12:10 409600 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 409600 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\xlicons.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 286720 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 286720 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\wordicon.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 249856 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 249856 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\pptico.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 794624 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 794624 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\outicon.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 135168 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\misc.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 135168 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\misc.exe

- 2009-08-26 14:31 . 2012-05-11 12:10 593920 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe

+ 2009-08-26 14:31 . 2012-07-11 07:07 593920 c:\windows\Installer\{90110413-6000-11D3-8CFE-0150048383C9}\accicons.exe

+ 2012-07-12 14:16 . 2012-07-12 14:16 380928 c:\windows\Installer\{23B8A91D-680B-462B-87AD-3D70F7341731}\iTunesIco.exe

+ 2012-07-11 17:55 . 2012-07-11 17:55 187904 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\be27ab5913cec2b292a019c2a13ec701\UIAutomationTypes.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\04e5e2be34a70ee7f4c87550238095a0\UIAutomationClient.ni.dll

+ 2012-07-11 17:57 . 2012-07-11 17:57 766976 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlServ#\9db75bb09e5d72de3ed624365cf9df47\System.Data.SqlServerCe.ni.dll

+ 2012-07-11 18:00 . 2012-07-11 18:00 129024 c:\windows\assembly\NativeImages_v2.0.50727_32\SolutoUpdateService\549f7fec90874f6a36cebf3ccf0af3c7\SolutoUpdateService.ni.dll

+ 2012-07-11 18:02 . 2012-07-11 18:02 755712 c:\windows\assembly\NativeImages_v2.0.50727_32\SolutoCleanup\126879bc8582bfd81052bc82dfaa5263\SolutoCleanup.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGWuInfo\95f6f2f79188d4d7c16319829ccc4072\PCGWuInfo.ni.dll

+ 2012-07-11 18:00 . 2012-07-11 18:00 151040 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGUpgrader\7a10841006c569f91aeb670664d9bfb5\PCGUpgrader.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 346112 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGSAProbe\72fe1557c2e2a18c8ab19b07c7568fb8\PCGSAProbe.ni.dll

+ 2012-07-11 17:55 . 2012-07-11 17:55 206848 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGPrestoSerializer\faa8fba72ec5f2964cccabdce0f53286\PCGPrestoSerializer.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 652800 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGPostBootResources\6ba6af833c33888857fb20b203b15a2f\PCGPostBootResources.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 259072 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGDriverProbe\b5db05f2f30a550e6b438ef4276a2f73\PCGDriverProbe.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 793088 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGDataAggregation\7fae3893d4b9eb8e55020e093778635e\PCGDataAggregation.ni.dll

+ 2012-07-11 18:00 . 2012-07-11 18:00 889344 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGClientCommunicat#\393bd50d0b18d7e10091b29e86c1d95b\PCGClientCommunication.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 358400 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGCatalogItemFootp#\ad4a2fd28a9ea5567490f572affca4b7\PCGCatalogItemFootprint.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 112128 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGCatalogItemCache\00490a2d7a77f31b352dd9470deae9f0\PCGCatalogItemCache.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 889856 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGBrowsersProbe\9ff2de2fbc4c3b85a97ac8edc0485ce2\PCGBrowsersProbe.ni.dll

+ 2012-07-11 18:01 . 2012-07-11 18:01 329728 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGBootVisualizingC#\f5b0782a26376a6e53986ddf5d96412e\PCGBootVisualizingCore.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 198144 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGBootVisualizingC#\20283b6c8c85e87b8147344559971b69\PCGBootVisualizingCommon.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 177152 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGAppControlPlugin#\713c0caf8f6127e8f4db3e8babb1c3e8\PCGAppControlPluginLoader.ni.dll

+ 2012-07-11 17:55 . 2012-07-11 17:55 168448 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.ServiceHo#\6c935ac1fc98ba433c02cd32e3557f11\Microsoft.ServiceHosting.ServiceRuntime.ni.dll

+ 2012-07-11 17:55 . 2012-07-11 17:55 596480 c:\windows\assembly\NativeImages_v2.0.50727_32\Ionic.Zip.Reduced\60c0c887591f37e0a1e84464b38a71e1\Ionic.Zip.Reduced.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 100864 c:\windows\assembly\NativeImages_v2.0.50727_32\Interop.IWshRuntime#\4d8b81d1add4fa798113e73013e0b90f\Interop.IWshRuntimeLibrary.ni.dll

+ 2004-07-15 12:53 . 2012-06-08 14:25 8509952 c:\windows\system32\shell32.dll

+ 2012-07-12 14:19 . 2012-07-12 14:19 8797344 c:\windows\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll

+ 2012-07-12 14:06 . 2012-02-15 09:01 4547944 c:\windows\system32\DRVSTORE\usbaapl_87F84F5DA3368BC69CA5BE7F6A79CAA709E36E13\usbaaplrc.dll

+ 2012-07-12 14:06 . 2011-08-02 14:38 1461992 c:\windows\system32\DRVSTORE\netaapl_63AA05C4700EB9CAF2D048DAC1D06D764A0D4C41\wdfcoinstaller01009.dll

+ 2009-04-19 19:51 . 2012-06-13 13:55 1866240 c:\windows\system32\dllcache\win32k.sys

+ 2008-06-17 19:03 . 2012-06-08 14:25 8509952 c:\windows\system32\dllcache\shell32.dll

+ 2008-10-04 13:06 . 2012-06-05 15:49 1372672 c:\windows\system32\dllcache\msxml6.dll

- 2008-10-04 13:06 . 2009-07-31 09:05 1372672 c:\windows\system32\dllcache\msxml6.dll

+ 2003-01-29 12:45 . 2012-06-05 15:49 1172480 c:\windows\system32\dllcache\msxml3.dll

- 2003-01-29 12:45 . 2010-06-14 07:43 1172480 c:\windows\system32\dllcache\msxml3.dll

+ 2012-06-29 12:33 . 2012-06-29 12:33 6063616 c:\windows\Installer\b09f0.msp

+ 2012-07-12 14:16 . 2012-07-12 14:16 4288000 c:\windows\Installer\4326439.msi

+ 2012-07-12 14:07 . 2012-07-12 14:07 1718784 c:\windows\Installer\4325a5b.msi

+ 2012-07-12 14:05 . 2012-07-12 14:05 1769984 c:\windows\Installer\4325a56.msi

+ 2012-07-12 14:04 . 2012-07-12 14:04 2002432 c:\windows\Installer\4325a29.msi

+ 2012-07-12 14:02 . 2012-07-12 14:02 1530368 c:\windows\Installer\43259df.msi

+ 2012-07-11 17:49 . 2012-07-11 17:49 1199104 c:\windows\Installer\23e650f.msi

+ 2012-07-11 17:31 . 2012-07-11 17:31 5163520 c:\windows\Installer\224b8c9.msi

+ 2012-07-11 17:28 . 2012-07-11 17:28 2208768 c:\windows\Installer\224b8c5.msi

+ 2012-07-11 17:55 . 2012-07-11 17:55 2516480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\44a5fc9e7c71b1fe1e2c79b03ecc3bc7\System.Data.Linq.ni.dll

+ 2012-07-11 18:00 . 2012-07-11 18:00 2096640 c:\windows\assembly\NativeImages_v2.0.50727_32\SolutoService\02afe2328302380e00edb4b84aa88790\SolutoService.ni.exe

+ 2012-07-11 17:59 . 2012-07-11 17:59 7587328 c:\windows\assembly\NativeImages_v2.0.50727_32\SolutoConsole\d4456e62aa60635d35238932b69c3760\SolutoConsole.ni.exe

+ 2012-07-11 17:53 . 2012-07-11 17:53 2159616 c:\windows\assembly\NativeImages_v2.0.50727_32\Soluto\702dfc2fd9a162d5217d92c1a1f3e803\Soluto.ni.exe

+ 2012-07-11 17:55 . 2012-07-11 17:55 1657856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\48ddcafff1a5603fb3289e90330275c0\PresentationUI.ni.dll

+ 2012-07-11 17:55 . 2012-07-11 17:55 2845696 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGPreCompiled\f9f98db773ad9c97332c974cc3416e3b\PCGPreCompiled.ni.dll

+ 2012-07-11 17:54 . 2012-07-11 17:54 2689536 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGFramework\db504507996bc5b4052b4d85d0c12cd1\PCGFramework.ni.dll

+ 2012-07-11 17:57 . 2012-07-11 17:57 3939840 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGDatabase\1ad86b5642736a0cc3b45ed5d8f90daf\PCGDatabase.ni.dll

+ 2012-07-11 17:56 . 2012-07-11 17:56 1294848 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGCommunication\024e4c03eb762c4fb662ccc49b5eadf9\PCGCommunication.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 4251136 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGClientCommon\4aedad724c93b25b63dd1e145dc1ec3b\PCGClientCommon.ni.dll

+ 2012-07-11 17:56 . 2012-07-11 17:56 1429504 c:\windows\assembly\NativeImages_v2.0.50727_32\PCGAzureShared\f210b83d09ca3e3fe7e7df3ba74edbf2\PCGAzureShared.ni.dll

+ 2012-07-11 17:54 . 2012-07-11 17:54 2128384 c:\windows\assembly\NativeImages_v2.0.50727_32\Newtonsoft.Json.Net#\4f7818b040f48e7554a81ecb0c0ec6b4\Newtonsoft.Json.Net35.ni.dll

+ 2012-07-11 17:58 . 2012-07-11 17:58 2327552 c:\windows\assembly\NativeImages_v2.0.50727_32\Community.CsharpSql#\cb26f18e44d452420f9913fc03408a2c\Community.CsharpSqlite.ni.dll

+ 2012-07-11 17:59 . 2012-07-11 17:59 1088000 c:\windows\assembly\NativeImages_v2.0.50727_32\AmCharts.Windows\6ff264d5d7aab9dff33ebfdbffb8064d\AmCharts.Windows.ni.dll

+ 2005-05-11 08:59 . 2012-07-11 07:09 57442464 c:\windows\system32\MRT.exe

.

-- Snapshot teruggezet naar huidige datum --

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

2012-07-11 17:31 2069088 ----a-w- c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\11.0.0.10\AVG Secure Search_toolbar.dll" [2012-07-11 2069088]

.

[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"H/PC Connection Agent"="c:\program files\Microsoft ActiveSync\WCESCOMM.EXE" [2004-02-03 401491]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-10-27 39408]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ATIModeChange"="Ati2mdxx.exe" [2001-09-04 28672]

"ATIPTA"="c:\ati technologies\ATI Control Panel\atiptaxx.exe" [2003-06-19 335872]

"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2003-08-29 151597]

"sfagent"="c:\program files\Fighters\SPAMfighter\sfagent.exe" [2011-06-01 1197192]

"AVG_TRAY"="c:\program files\AVG\AVG2012\avgtray.exe" [2012-04-05 2587008]

"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-07-11 1118304]

"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

"WIAWizardMenu"="c:\windows\system32\sti_ci.dll" [2008-04-14 137216]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-25 437160]

.

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]

BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

@="Driver"

.

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^officejet 6100.lnk]

path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\officejet 6100.lnk

backup=c:\windows\pss\officejet 6100.lnkCommon Startup

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACTIVBOARD]

2003-05-02 09:31 24576 -c--a-w- c:\apps\ABoard\ABOARD.EXE

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

2012-01-03 07:37 843712 -c--a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON BX300F Series]

2008-01-22 06:00 188928 -c--a-w- c:\windows\system32\spool\drivers\w32x86\3\E_FATIEJE.EXE

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

2012-03-27 03:09 421736 ----a-w- c:\program files\iTunes\iTunesHelper.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]

2009-03-17 12:24 157552 -c--a-w- c:\program files\Microsoft LifeCam\LifeExp.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]

2004-07-01 16:23 67584 -c--a-w- c:\windows\soundman.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]

2010-10-27 09:40 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]

2003-08-29 21:28 151597 -c--a-w- c:\program files\Common Files\Real\Update_OB\realsched.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]

2012-05-11 12:03 880496 -c--a-w- c:\program files\uTorrent\uTorrent.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VCSPlayer]

2002-06-07 10:34 299008 ----a-w- c:\program files\Virtual CD v4 SDK\System\vcsplay.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center]

"AntiVirusOverride"=dword:00000001

"FirewallOverride"=dword:00000001

.

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=

"c:\\Program Files\\Microsoft LifeCam\\LifeEnC2.exe"=

"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=

"c:\\Program Files\\Microsoft LifeCam\\LifeTray.exe"=

"c:\\Program Files\\Messenger\\msmsgs.exe"=

"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=

"c:\\Program Files\\uTorrent\\uTorrent.exe"=

"c:\\Program Files\\Microsoft ActiveSync\\WCESCOMM.EXE"=

"c:\\Program Files\\AVG\\AVG2012\\avgnsx.exe"=

"c:\\Program Files\\AVG\\AVG2012\\avgdiagex.exe"=

"c:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"=

"c:\\Program Files\\AVG\\AVG2012\\avgemcx.exe"=

"c:\\Documents and Settings\\nellie\\Desktop\\solutoinstaller-j0L3Bdr8R6.exe"=

"c:\\Program Files\\Soluto\\SolutoCleanup.exe"=

"c:\\Program Files\\Soluto\\Soluto.exe"=

"c:\\Program Files\\Soluto\\SolutoService.exe"=

"c:\\Program Files\\Soluto\\SolutoConsole.exe"=

"c:\\Program Files\\Soluto\\SolutoUpdateService.exe"=

"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=

"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"c:\\Program Files\\iTunes\\iTunes.exe"=

.

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"1723:TCP"= 1723:TCP:@xpsp2res.dll,-22015

"1701:UDP"= 1701:UDP:@xpsp2res.dll,-22016

"500:UDP"= 500:UDP:@xpsp2res.dll,-22017

"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management

"3389:TCP"= 3389:TCP:Remote Desktop

"65533:TCP"= 65533:TCP:Services

"52344:TCP"= 52344:TCP:Services

.

R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [19-4-2012 4:50 24896]

R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [31-1-2012 4:46 31952]

R0 Soluto;Soluto;c:\windows\system32\drivers\Soluto.sys [11-7-2012 19:49 51144]

R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [22-2-2012 5:25 235216]

R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [19-3-2012 5:17 301248]

R1 vcsmpdrv;vcsmpdrv;c:\windows\system32\drivers\vcsmpdrv.sys [29-8-2003 23:32 49232]

R2 AVGIDSAgent;AVGIDSAgent;c:\program files\AVG\AVG2012\avgidsagent.exe [4-7-2012 17:25 5160568]

R2 avgwd;AVG WatchDog;c:\program files\AVG\AVG2012\avgwdsvc.exe [14-2-2012 4:53 193288]

R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\Fighters\SPAMfighter\sfus.exe [1-6-2011 12:45 215688]

R2 Suite Service;Suite Service;c:\program files\Fighters\FighterSuiteService.exe [1-6-2011 12:45 1299080]

R2 VCSSecS;Virtual CD v4 Security service (SDK - Version);c:\program files\Virtual CD v4 SDK\System\vcssecs.exe [29-8-2003 23:32 139264]

R2 vToolbarUpdater11.0.2;vToolbarUpdater11.0.2;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.0.2\ToolbarUpdater.exe [11-7-2012 19:31 934496]

R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [23-12-2011 13:32 139856]

R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\avgidsfilterx.sys [23-12-2011 13:32 24144]

R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [23-12-2011 13:32 17232]

R3 MSHUSBVideo;NX6000/NX3000/VX5000/VX5500/VX2000/VX7000 Filter Driver;c:\windows\system32\drivers\nx6000.sys [28-7-2009 21:20 30560]

R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\drivers\seehcri.sys [20-4-2010 11:49 27632]

R3 xpsec;IPSEC-stuurprogramma;c:\windows\system32\drivers\xpsec.sys --> c:\windows\system32\drivers\xpsec.sys [?]

S2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [27-10-2010 11:41 136176]

S2 SolutoService;Soluto PCGenome Core Service;c:\program files\Soluto\SolutoService.exe [11-7-2012 19:14 590912]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [12-7-2012 16:19 253088]

S3 AVFSFilter;AVFSFilter;c:\windows\system32\DRIVERS\avfsfilter.sys --> c:\windows\system32\DRIVERS\avfsfilter.sys [?]

S3 cpuz135;cpuz135;\??\c:\windows\TEMP\cpuz135\cpuz135_x32.sys --> c:\windows\TEMP\cpuz135\cpuz135_x32.sys [?]

S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [20-4-2010 11:49 13224]

S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [27-10-2010 11:41 136176]

S3 MR97310_VGA_DUAL_CAMERA;MR97310 VGA Dual Mode Camera;c:\windows\system32\DRIVERS\mr97310v.sys --> c:\windows\system32\DRIVERS\mr97310v.sys [?]

S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [29-1-2003 14:46 14336]

S3 s0017bus;Sony Ericsson Device 0017 driver (WDM);c:\windows\system32\drivers\s0017bus.sys [20-4-2010 10:57 86824]

S3 s0017mdfl;Sony Ericsson Device 0017 USB WMC Modem Filter;c:\windows\system32\drivers\s0017mdfl.sys [20-4-2010 10:57 15016]

S3 s0017mdm;Sony Ericsson Device 0017 USB WMC Modem Driver;c:\windows\system32\drivers\s0017mdm.sys [20-4-2010 10:57 114600]

S3 s0017mgmt;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s0017mgmt.sys [20-4-2010 10:57 108328]

S3 s0017nd5;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS);c:\windows\system32\drivers\s0017nd5.sys [20-4-2010 10:57 26024]

S3 s0017obex;Sony Ericsson Device 0017 USB WMC OBEX Interface;c:\windows\system32\drivers\s0017obex.sys [20-4-2010 10:57 104616]

S3 s0017unic;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM);c:\windows\system32\drivers\s0017unic.sys [20-4-2010 10:57 109736]

S3 Usblink;Usblink Driver;c:\windows\system32\drivers\ulink.sys [7-1-2007 10:39 40060]

.

--- Andere Services/Drivers In Geheugen ---

.

*Deregistered* - xcpip

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper

.

Inhoud van de 'Gedeelde Taken' map

.

2012-07-12 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-12 14:19]

.

2012-07-06 c:\windows\Tasks\Afsluiten op koopavonden.job

- c:\windows\system32\shutdown.exe [2003-01-29 17:03]

.

2012-07-11 c:\windows\Tasks\Afsluiten op weekdagen.job

- c:\windows\system32\shutdown.exe [2003-01-29 17:03]

.

2012-06-23 c:\windows\Tasks\Afsluiten op zaterdag.job

- c:\windows\system32\shutdown.exe [2003-01-29 17:03]

.

2012-07-12 c:\windows\Tasks\AppleSoftwareUpdate.job

- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]

.

2012-07-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-10-27 09:40]

.

2012-07-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-10-27 09:40]

.

2012-07-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1629793551-386873261-2113353145-1007Core.job

- c:\documents and settings\nellie\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2012-07-11 20:29]

.

2004-04-20 c:\windows\Tasks\Herinnering voor registratie 1.job

- c:\windows\System32\OOBE\oobebaln.exe [2003-01-29 17:03]

.

2004-04-26 c:\windows\Tasks\Herinnering voor registratie 2.job

- c:\windows\System32\OOBE\oobebaln.exe [2003-01-29 17:03]

.

2004-04-19 c:\windows\Tasks\Herinnering voor registratie 3.job

- c:\windows\System32\OOBE\oobebaln.exe [2003-01-29 17:03]

.

2012-02-01 c:\windows\Tasks\Microsoft_Hardware_Launch_IcePick_exe.job

- c:\program files\Microsoft LifeCam\IcePick.exe [2009-03-17 12:24]

.

.

------- Bijkomende Scan -------

.

uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8

uStart Page = https://www.google.nl/

uInternet Settings,ProxyOverride = *.local

uSearchAssistant = hxxp://www.google.com/ie

uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200

TCP: DhcpNameServer = 192.168.1.1

Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\11.0.2\ViProtocol.dll

DPF: DirectAnimation Java Classes

DPF: Microsoft XML Parser for Java

.

.

**************************************************************************

.

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2012-07-12 18:01

Windows 5.1.2600 Service Pack 3 NTFS

.

scannen van verborgen processen ...

.

scannen van verborgen autostart items ...

.

scannen van verborgen bestanden ...

.

Scan succesvol afgerond

verborgen bestanden: 0

.

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\€–}|ÿÿÿÿÀ•}|ù•9~*]

"3140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"

.

--------------------- DLLs Geladen Onder Lopende Processen ---------------------

.

- - - - - - - > 'explorer.exe'(3068)

c:\program files\Fighters\SPAMfighter\LiveKit.dll

c:\progra~1\WINDOW~2\wmpband.dll

c:\windows\system32\msi.dll

c:\windows\system32\webcheck.dll

c:\windows\system32\WPDShServiceObj.dll

c:\windows\system32\PortableDeviceTypes.dll

c:\windows\system32\PortableDeviceApi.dll

.

------------------------ Andere Aktieve Processen ------------------------

.

c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe

c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

c:\program files\Bonjour\mDNSResponder.exe

c:\program files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

c:\program files\Microsoft LifeCam\MSCamS32.exe

c:\program files\AVG\AVG2012\avgnsx.exe

c:\program files\AVG\AVG2012\avgemcx.exe

c:\program files\AVG\AVG2012\avgrsx.exe

c:\program files\AVG\AVG2012\avgcsrvx.exe

c:\windows\system32\msiexec.exe

c:\program files\iPod\bin\iPodService.exe

c:\program files\Common Files\Real\Update_OB\rnathchk.exe

.

**************************************************************************

.

Voltooingstijd: 2012-07-12 18:04:42 - machine werd herstart

ComboFix-quarantined-files.txt 2012-07-12 16:04

ComboFix2.txt 2012-07-10 20:18

.

Pre-Run: 53.310.824.448 bytes beschikbaar

Post-Run: 53.323.751.424 bytes beschikbaar

.

- - End Of File - - E5049B8613A9183A9D80BBB1AB7A0A7F

Link naar reactie
Delen op andere sites

Download de Emsisoft Emergency Kit naar het bureaublad en pak het ZIP bestand uit.

  • Open de map "EmsisoftEmergencyKit" en dubbelklik op "Start.exe"
  • Klik nu op "Emergency Kit Scanner" u krijg nu een melding dat het is aanbevolen om eerst te updaten sta dit toe door te klikken op "Ja"
    4f8d1a3bd3fbd-EmsisoftEK11.jpg
  • Als de update gereed is en de melding "Update process is succesvol afgerond" verschijnt klikt u op "menu" en dan op "Scan PC"
  • Selecteer de optie "Diep" als deze niet standaard al zo is ingesteld.
  • Klik Nu op de knop "Scan" en doe verder niets op de computer tijdens het scannen, deze scan kan een geruime tijd in beslag nemen dus wacht dit geduldig af.
  • Het venster met de waarschuwing over een verhoogd risico kunt u sluiten als de scan gereed is.
  • Zorg ervoor dat alle gevonden items zijn aangevinkt en druk dan op de knop "verwijder geselecteerde" u zal nu de volgende melding krijgen maar klik hier op "Ja"
    4f8d1a4d61ffa-EmsisoftEK2.jpg
  • Als het verwijderen gereed is klikt u op de knop "View report" en selecteert u het tekstbestand van deze scan met de naam zoals: a2scan_110730-111615.txt
  • Plaats de inhoud van dit LOG bestand straks in uw volgende bericht.
  • Herstart nu de computer.

Link naar reactie
Delen op andere sites

Hoi Kape,

Ik geef t op... Hij slaat elke keer helemaal vast met proberen te scannen. Hij gaat gelijk op een blauw scherm als ik scan indruk. Daar staat dat ik opnieuw moet opstarten, als het 2x gebeurt moet ik hard en software controleren of het op de juiste manier geinstalleerd is. Hij komt met de volgende code: Stop:0x000000C5 (0x00000000, 0x00000002, 0x00000001, 0x8054 c087)

Wat nu? Er komt geen einde aan lijkt wel, de computer slaat sinds gister regelmatig helemaal vast.

Link naar reactie
Delen op andere sites

Download Blue Screen View.

Start het programma op.

Je zal nu een overzicht krijgen van de laatste foutmeldingen en Minidumps (.dmp-bestand).

Dubbelklik op het .dmp-bestand dat overeenstemt met het tijdstip waarop je het laatste blauwe scherm kreeg.

Je zal nu een overzicht krijgen.

Geef in je volgende bericht de waarde van volgende onderdelen:

  • bug check string
  • bug check code
  • caused by driver
  • de 4 parameters

Als je meerdere .dmp bestanden hebt, geef dan bovenstaande informatie voor de laatste 5. Zet er in dit geval ook de datum en tijd van de crash bij.

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.