Ga naar inhoud

Aanbevolen berichten

Geplaatst:

Download AdwCleaner by Xplode naar je bureaublad.

A3qkP9RCEAAOZhQ.jpg

Sluit alle openstaande vensters.

  • Vista en Windows 7 gebruikers: Rechtsklik op AdwCleaner en selecteer als Administrator uitvoeren...
  • Voor XP: Gewoon dubbelklikken op AdwCleaner.
  • Klik vervolgens op Verwijderen.
  • Klik bij AdwCleaner – Informatie op OK
  • Klik bij AdwCleaner – Herstarten Noodzakelijk op OK

Dat tijdens de actie de snelkoppelingen verdwijnen, is normaal. Nadat de PC opnieuw is opgestart, opent een logfile. Post de inhoud van dit log in je volgende bericht.

  • Reacties 39
  • Aangemaakt
  • Laatste reactie

Beste reacties in dit topic

Beste reacties in dit topic

Geplaatste afbeeldingen

Geplaatst:

# AdwCleaner v2.105 - Verslag gemaakt op 13/01/2013 om 19:06:20

# Geactualiseerd op 08/01/2013 door Xplode

# Besturingssysteem : Microsoft Windows XP Service Pack 3 (32 bits)

# Gebruiker : Verduyckt - WOONKAMER

# Opstarten Modus : Normale modus

# Gelanceerd vanaf : C:\Documents and Settings\Verduyckt\Local Settings\Temporary Internet Files\Content.IE5\1MVUB0OB\adwcleaner[1].exe

# Optie [Verwijderen]

***** [Diensten] *****

***** [Files / Mappen] *****

File Verwijdert : C:\Documents and Settings\Verduyckt\Bureaublad\Search The Web.url

File Verwijdert : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\hxxp_home.sweetim.com_0.localstorage

File Verwijdert : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\hxxp_home.sweetim.com_0.localstorage-journal

File Verwijdert : C:\END

Map Verwijdert : C:\Documents and Settings\All Users\Application Data\Ask

Map Verwijdert : C:\Documents and Settings\All Users\Application Data\SweetIM

Map Verwijdert : C:\Documents and Settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\CT3223346

Map Verwijdert : C:\Documents and Settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\extensions\{930e0b10-6818-4828-86b0-07d60af809b6}

Map Verwijdert : C:\Documents and Settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\Smartbar

Map Verwijdert : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\AskToolbar

Map Verwijdert : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\Conduit

Map Verwijdert : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\OPSWAT

Map Verwijdert : C:\Program Files\Conduit

Map Verwijdert : C:\Program Files\SweetIM

Map Verwijdert : C:\WINDOWS\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}

Verwijdert bij het opstarten : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\eneejdflhhhheffkbjbagjgkbhhkbadi

***** [Register] *****

Sleutel Verwijdert : HKCU\Software\AppDataLow\Software\Conduit

Sleutel Verwijdert : HKCU\Software\AskToolbar

Sleutel Verwijdert : HKCU\Software\Conduit

Sleutel Verwijdert : HKCU\Software\ConduitSearchScopes

Sleutel Verwijdert : HKCU\Software\Google\Chrome\Extensions\eneejdflhhhheffkbjbagjgkbhhkbadi

Sleutel Verwijdert : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}

Sleutel Verwijdert : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{930E0B10-6818-4828-86B0-07D60AF809B6}

Sleutel Verwijdert : HKCU\Software\OPSWAT

Sleutel Verwijdert : HKCU\Software\SmartBar

Sleutel Verwijdert : HKCU\Software\SweetIM

Sleutel Verwijdert : HKCU\Toolbar

Sleutel Verwijdert : HKLM\Software\AskToolbar

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1

Sleutel Verwijdert : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3

Sleutel Verwijdert : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\sim-packages

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Toolbar.CT3223346

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Toolbar3.sweetie

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}

Sleutel Verwijdert : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}

Sleutel Verwijdert : HKLM\Software\Conduit

Sleutel Verwijdert : HKLM\SOFTWARE\Google\Chrome\Extensions\eneejdflhhhheffkbjbagjgkbhhkbadi

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E68B20D-070A-4CC1-BCBB-B27AAB3C64A2}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E9EA755-BC68-4EC6-BF33-D092F2A8BD24}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{7683B745-6060-41FD-AA75-0BBB383FEAD4}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{01A0B0CE-EF82-4623-A52D-821C2013CAC3}

Sleutel Verwijdert : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7683B745-6060-41FD-AA75-0BBB383FEAD4}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}

Sleutel Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}

Sleutel Verwijdert : HKLM\Software\OPSWAT

Sleutel Verwijdert : HKLM\Software\SweetIM

Waarde Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]

Waarde Verwijdert : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]

***** [browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Het register bevat geen enkele ongeoorloofde invoer.

-\\ Mozilla Firefox v15.0.1 (nl)

File : C:\Documents and Settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\prefs.js

Verwijdert : user_pref("CT3223346.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");

Verwijdert : user_pref("CT3223346.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]

Verwijdert : user_pref("CT3223346.FirstTime", "true");

Verwijdert : user_pref("CT3223346.FirstTimeFF3", "true");

Verwijdert : user_pref("CT3223346.LoginRevertSettingsEnabled", true);

Verwijdert : user_pref("CT3223346.RevertSettingsEnabled", true);

Verwijdert : user_pref("CT3223346.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT322[...]

Verwijdert : user_pref("CT3223346.UserID", "UN34828049949516657");

Verwijdert : user_pref("CT3223346.addressBarTakeOverEnabledInHidden", "true");

Verwijdert : user_pref("CT3223346.autoDisableScopes", -1);

Verwijdert : user_pref("CT3223346.browser.search.defaultthis.engineName", true);

Verwijdert : user_pref("CT3223346.defaultSearch", "true");

Verwijdert : user_pref("CT3223346.embeddedsData", "[{\"appId\":\"10000002\",\"apiPermissions\":{\"crossDomainAjax[...]

Verwijdert : user_pref("CT3223346.enableAlerts", "always");

Verwijdert : user_pref("CT3223346.enableSearchFromAddressBar", "true");

Verwijdert : user_pref("CT3223346.firstTimeDialogOpened", "true");

Verwijdert : user_pref("CT3223346.fixPageNotFoundError", "true");

Verwijdert : user_pref("CT3223346.fixPageNotFoundErrorInHidden", "true");

Verwijdert : user_pref("CT3223346.fixUrls", true);

Verwijdert : user_pref("CT3223346.installId", "conduitinstaller.exe");

Verwijdert : user_pref("CT3223346.installType", "conduitnsisintegration");

Verwijdert : user_pref("CT3223346.isCheckedStartAsHidden", true);

Verwijdert : user_pref("CT3223346.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");

Verwijdert : user_pref("CT3223346.isFirstTimeToolbarLoading", "false");

Verwijdert : user_pref("CT3223346.isNewTabEnabled", true);

Verwijdert : user_pref("CT3223346.isPerformedSmartBarTransition", "true");

Verwijdert : user_pref("CT3223346.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");

Verwijdert : user_pref("CT3223346.keyword", true);

Verwijdert : user_pref("CT3223346.migrateAppsAndComponents", true);

Verwijdert : user_pref("CT3223346.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"hxxp%[...]

Verwijdert : user_pref("CT3223346.openThankYouPage", "false");

Verwijdert : user_pref("CT3223346.openUninstallPage", "true");

Verwijdert : user_pref("CT3223346.revertSettingsEnabled", "false");

Verwijdert : user_pref("CT3223346.search.searchAppId", "10000002");

Verwijdert : user_pref("CT3223346.search.searchCount", "0");

Verwijdert : user_pref("CT3223346.searchInNewTabEnabledInHidden", "true");

Verwijdert : user_pref("CT3223346.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");

Verwijdert : user_pref("CT3223346.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]

Verwijdert : user_pref("CT3223346.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\[...]

Verwijdert : user_pref("CT3223346.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]

Verwijdert : user_pref("CT3223346.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]

Verwijdert : user_pref("CT3223346.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]

Verwijdert : user_pref("CT3223346.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]

Verwijdert : user_pref("CT3223346.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1356883502339");

Verwijdert : user_pref("CT3223346.serviceLayer_services_appsMetadata_lastUpdate", "1356883499894");

Verwijdert : user_pref("CT3223346.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1356883501049");

Verwijdert : user_pref("CT3223346.serviceLayer_services_login_10.13.40.15_lastUpdate", "1356883501402");

Verwijdert : user_pref("CT3223346.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1356883501182");

Verwijdert : user_pref("CT3223346.serviceLayer_services_searchAPI_lastUpdate", "1356883498522");

Verwijdert : user_pref("CT3223346.serviceLayer_services_serviceMap_lastUpdate", "1357204804430");

Verwijdert : user_pref("CT3223346.serviceLayer_services_toolbarContextMenu_lastUpdate", "1356883501294");

Verwijdert : user_pref("CT3223346.serviceLayer_services_toolbarSettings_lastUpdate", "1356883498584");

Verwijdert : user_pref("CT3223346.serviceLayer_services_translation_lastUpdate", "1357204804676");

Verwijdert : user_pref("CT3223346.settingsINI", true);

Verwijdert : user_pref("CT3223346.shouldFirstTimeDialog", "false");

Verwijdert : user_pref("CT3223346.smartbar.CTID", "CT3223346");

Verwijdert : user_pref("CT3223346.smartbar.Uninstall", "0");

Verwijdert : user_pref("CT3223346.smartbar.homepage", true);

Verwijdert : user_pref("CT3223346.smartbar.toolbarName", "OPSWAT ");

Verwijdert : user_pref("CT3223346.toolbarBornServerTime", "30-12-2012");

Verwijdert : user_pref("CT3223346.toolbarCurrentServerTime", "30-12-2012");

Verwijdert : user_pref("CT3223346_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]

Verwijdert : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3223346&SearchSource=1[...]

Verwijdert : user_pref("Smartbar.ConduitSearchEngineList", "OPSWAT Customized Web Search");

Verwijdert : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3223346[...]

Verwijdert : user_pref("Smartbar.keywordURLSelectedCTID", "CT3223346");

Verwijdert : user_pref("browser.search.selectedEngine", "OPSWAT Customized Web Search");

Verwijdert : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3223346&SearchSource=13&CUI[...]

Verwijdert : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3223346&SearchSource=2&q=[...]

Verwijdert : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3223346&SearchSource=13[...]

Verwijdert : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]

Verwijdert : user_pref("smartbar.originalHomepage", "hxxp://breedband.telenet.be");

Verwijdert : user_pref("smartbar.originalSearchAddressUrl", "");

Verwijdert : user_pref("smartbar.originalSearchEngine", false);

-\\ Google Chrome v23.0.1271.97

File : C:\Documents and Settings\Verduyckt\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

Verwijdert [l.16] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?ctid=CT3223346&SearchSource=48"[...]

Verwijdert [l.47] : icon_url = "hxxp://search.conduit.com/fav.ico",

Verwijdert [l.50] : keyword = "search.conduit.com",

Verwijdert [l.53] : search_url = "hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&ctid=CT3[...]

Verwijdert [l.4079] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?ctid=CT3223346&SearchSource=48" ]

*************************

AdwCleaner[s1].txt - [14831 octets] - [13/01/2013 19:06:20]

########## EOF - C:\AdwCleaner[s1].txt - [14892 octets] ##########

Geplaatst:

Helaas werkt het nog steeds niet, echter gaf google chrome deze keer wel een waarschuwing wanneer ik het security pack opnieuw begon te downloaden. Volgende waarschuwing werd er meegedeeld : Telenet Network Install...exe lijkt schadelijk te zijn. Wanneer ik echter op behouden klikte dan kon ik het security pack downloaden en uitvoeren. Wanneer ik het security pack via internet explorer download krijg ik geen waarschuwing en wordt dit dus direkt uitgevoerd. Bij explorer krijg ik de keuze tussen uitvoeren en opslaan en met google chrome enkel uitvoeren, maar zoals gezegd werkt het nog steeds niet.

Geplaatst: (aangepast)

Dan gaan we alles van je antivusprogramma's (Telenet & McAfee) even van de PC halen.

Open een kladblokbestand.

Kopieer en plak daarin de onderstaande vetgedrukte tekst.

Folder::

C:\Program Files\McAfee Security Scan

C:\Program Files\Telenet Security Pack

c:\documents and settings\All Users\Application Data\McAfee Security Scan

c:\program files\McAfee Security Scan

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool

c:\documents and settings\All Users\Application Data\F-Secure

c:\program files\Conduit

c:\documents and settings\Verduyckt\Local Settings\Application Data\Conduit

c:\documents and settings\Verduyckt\Local Settings\Application Data\CRE

c:\documents and settings\All Users\Application Data\F-Secure uninstallationtool

Registry::

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"F-Secure Hoster (44163)"=-

Driver::

fshoster

McComponentHostService

Firefox::

FF - ProfilePath - c:\documents and settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\

FF - prefs.js: browser.search.selectedEngine -

FF - prefs.js: browser.startup.homepage -

FF - prefs.js: keyword.URL -

FF - ExtSQL: 2012-12-30 14:51; {930e0b10-6818-4828-86b0-07d60af809b6}; c:\documents and settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\extensions\{930e0b10-6818-4828-86b0-07d60af809b6}

Sla dit bestand op je bureaublad op als CFScript.

Sleep CFScript.txt in de rode snelkoppeling van ComboFix.exe

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.

Wil je dit uitgebreid in beeld bekijken, klik dan hier voor de handleiding.

Dan CCleaner laten scannen op volgende wijze :

Download CCleaner.

Klik op “Download Latest Version” en dan start de download van CCleaner automatisch en gratis op.

Installeer het en start CCleaner op. Klik in de linkse kolom op “Cleaner”. Klik achtereenvolgens op ‘Analyseren’ en 'Schoonmaken'. Soms is 1 analyse niet voldoende. Deze procedure mag je herhalen tot de analyse geen fouten meer aangeeft. Klik vervolgens in de linkse kolom op “Register” en klik op ‘Scan naar problemen”. Als er fouten gevonden worden klik je op ”Herstel geselecteerde problemen” en ”OK”. Dan krijg je de vraag om een back-up te maken. Klik op “JA”. Kies dan “Herstel alle geselecteerde fouten”. Sluit hierna CCleaner terug af.

Wil je dit uitgebreid in beeld bekijken, klik dan hier voor de handleiding.

Post na herstart de inhoud van de Combofix.txt in je volgende bericht.

aangepast door kape
Geplaatst:

ComboFix 13-01-14.01 - Verduyckt 14/01/2013 19:03:12.2.1 - x86Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.2047.1517 [GMT 1:00]

Gestart vanuit: c:\documents and settings\Verduyckt\Mijn documenten\Downloads\ComboFix.exe

gebruikte Opdracht switches :: c:\documents and settings\Verduyckt\Bureaublad\CFScript.txt

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool\instfsps_x64.dll

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool\instfsps_x64.exe

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool\UninstallationTool.cfg

c:\documents and settings\All Users\Application Data\F-Secure-UninstallationTool\UninstallationTool.exe

c:\documents and settings\All Users\Application Data\F-Secure uninstallationtool

c:\documents and settings\All Users\Application Data\F-Secure uninstallationtool\UninstallationTool.log

c:\documents and settings\All Users\Application Data\F-Secure

c:\documents and settings\All Users\Application Data\F-Secure\DAAS2\acl\fsc_revoke_hq.acl

c:\documents and settings\All Users\Application Data\F-Secure\DAAS2\acl\fsc_root.acl

c:\documents and settings\All Users\Application Data\F-Secure\DAAS2\cert\fsc (revoke hq).crl

c:\documents and settings\All Users\Application Data\F-Secure\FSDownloadProtected\TelenetNetworkInstaller_CDUB-V9DX-JAT7-YZFC-PU9F_ (4).exe.downloads.ini

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\help\launchpad.nl.qch

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\help\launchpad_help.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\about.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\about_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\actioncenter.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\actioncenter_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\actioncentermain.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\addproduct.manual.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\addproduct.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\agentauxiliary.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\agentmain.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\checkforupdates.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\commonsettings.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\commonsettings_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\diagnostics.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\flyerplugin.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\flyerplugin_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\formatters.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\help.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\help_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\interactiveupgrade.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\launchpad.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\launchpad_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\messageboxes.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\notificationshistory.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\notificationshistory_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\qt.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\selfupgrade.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\serviceenabler_localization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\serviceinstaller.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\serviceinstallerstrings.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\subscriptionreminder.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\subscriptions.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\localization\uninstallation.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\Settings\ccf_action_center.ccf_settings

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\Settings\ccf_upstream.ccf_settings

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\Settings\fsaua.ccf_settings

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\Settings\service_enabler.ccf_settings

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\bannerBackground.png

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\dialogBackground.png

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\footer.png

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\icon.ico

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\icon.png

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\mysa.ico

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\mysaicon.png

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\service_enabler_customization.cfg

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\service_enabler_customization.nl.xml

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\service_enabler_customization.qsc

c:\documents and settings\All Users\Application Data\F-Secure\latebound\100\44163\ui\service_enabler_customization.qss

c:\documents and settings\All Users\Application Data\F-Secure\Logs\AUA\AUA.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\AUA\AUADBG.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\AUA\AuaMigration.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\ActionCenter.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\CCFLaunch.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\CuifApi.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\fsdiag.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\fsdiag.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\fsdiag.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\fsdiag.zip.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\Hoster.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\Hoster.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\Hoster.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\Upstream.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCF\UpstreamPlugin.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCFSettings\fs_ccf_settings_server.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCFSettings\fs_settings_tool.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCFSettings\fs_settings_tool.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCFSettings\fs_settings_tool.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CCFSettings\fsadminsettings.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\ComputerSecurity\FSGUI\fsavaui.exe.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\CUIF\fscuif.exe.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\ilaunchr.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\fs_se_latebound.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\fs_se_operator_config.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\fs_se_operator_config.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\fs_se_operator_config.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\installer.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\mysa_install_msi.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\mysamsihlp.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\mysas.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\mysas.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\mysas.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\SELocalInfoAPI.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\SELocalInfoAPI.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\SELocalInfoAPI.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stub.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stub.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stub_2.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stub_2.2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stub_2.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\stubinstallerpostrunner.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\trigger.1.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\trigger.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\uninstall_serviceenabler.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\uninstaller.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\MySA\upgrhandler.log

c:\documents and settings\All Users\Application Data\F-Secure\Logs\SECL\SECL.log

c:\documents and settings\All Users\Application Data\F-Secure\MySA\latebound\1\customizations.zip

c:\documents and settings\All Users\Application Data\F-Secure\MySA\latebound\1\help.zip

c:\documents and settings\All Users\Application Data\F-Secure\MySA\latebound\1\localizations.zip

c:\documents and settings\All Users\Application Data\F-Secure\MySA\latebound\1\settings.zip

c:\documents and settings\All Users\Application Data\F-Secure\MySA\latebound\latebound.xml

c:\documents and settings\Verduyckt\Local Settings\Application Data\CRE

c:\documents and settings\Verduyckt\Local Settings\Application Data\CRE\eneejdflhhhheffkbjbagjgkbhhkbadi.crx

c:\program files\Telenet Security Pack

c:\program files\Telenet Security Pack\about

c:\program files\Telenet Security Pack\About.cfg

c:\program files\Telenet Security Pack\ActionCenter.cfg

c:\program files\Telenet Security Pack\CCF_Licensing.dll

c:\program files\Telenet Security Pack\CCF_Licensing64.dll

c:\program files\Telenet Security Pack\ccf_settings.xml

c:\program files\Telenet Security Pack\CCFDLLHosterAPI.dll

c:\program files\Telenet Security Pack\CCFHosterShutdownPlugin.dll

c:\program files\Telenet Security Pack\CCFIPC.dll

c:\program files\Telenet Security Pack\CCFIPC64.dll

c:\program files\Telenet Security Pack\CommonSettings.cfg

c:\program files\Telenet Security Pack\ControlLayer.dll

c:\program files\Telenet Security Pack\cuif.cfg

c:\program files\Telenet Security Pack\CuifApi.dll

c:\program files\Telenet Security Pack\CuifTypes.dll

c:\program files\Telenet Security Pack\daas2.dll

c:\program files\Telenet Security Pack\daas2_cdsa.cr

c:\program files\Telenet Security Pack\daemon.dll

c:\program files\Telenet Security Pack\DataLayer.dll

c:\program files\Telenet Security Pack\DeclarationHandler.dll

c:\program files\Telenet Security Pack\diagnostics\ccfauadiag.ini

c:\program files\Telenet Security Pack\diagnostics\fsav.ini

c:\program files\Telenet Security Pack\diagnostics\fsdiag.exe

c:\program files\Telenet Security Pack\diagnostics\fsdiag_ccf.ini

c:\program files\Telenet Security Pack\diagnostics\fsdiag_fsgui.ini

c:\program files\Telenet Security Pack\diagnostics\fsdiag_help.ini

c:\program files\Telenet Security Pack\diagnostics\fsdiag_mysa.ini

c:\program files\Telenet Security Pack\diagnostics\fsfc.ini

c:\program files\Telenet Security Pack\diagnostics\fsms.ini

c:\program files\Telenet Security Pack\diagnostics\fspc.ini

c:\program files\Telenet Security Pack\diagnostics\fssc.ini

c:\program files\Telenet Security Pack\diagnostics\legacyauadiag.ini

c:\program files\Telenet Security Pack\diagnostics\support.ini

c:\program files\Telenet Security Pack\ExpressionEngine.dll

c:\program files\Telenet Security Pack\FlyerPlugin.cfg

c:\program files\Telenet Security Pack\fm4av.dll

c:\program files\Telenet Security Pack\fs_aua_command.exe

c:\program files\Telenet Security Pack\fs_ccf_action_center_api_32.dll

c:\program files\Telenet Security Pack\fs_ccf_action_center_api_64.dll

c:\program files\Telenet Security Pack\fs_ccf_flyer_api.dll

c:\program files\Telenet Security Pack\fs_ccf_id_converter32.dll

c:\program files\Telenet Security Pack\fs_ccf_id_converter64.dll

c:\program files\Telenet Security Pack\fs_ccf_settings_server.dll

c:\program files\Telenet Security Pack\fs_ccf_settings32.dll

c:\program files\Telenet Security Pack\fs_ccf_settings64.dll

c:\program files\Telenet Security Pack\fs_ccf_ticketingapi32.dll

c:\program files\Telenet Security Pack\fs_ccf_upstream_32.dll

c:\program files\Telenet Security Pack\fs_ccf_upstream_plugin_32.dll

c:\program files\Telenet Security Pack\fs_hotfix_handler.exe

c:\program files\Telenet Security Pack\fs_installer_runner.exe

c:\program files\Telenet Security Pack\fs_preinstall_handler.exe

c:\program files\Telenet Security Pack\fs_reload_latebound_settings.exe

c:\program files\Telenet Security Pack\fs_se_latebound.dll

c:\program files\Telenet Security Pack\fs_se_operator_config32.dll

c:\program files\Telenet Security Pack\fs_secl_32.dll

c:\program files\Telenet Security Pack\fs_settings_tool.exe

c:\program files\Telenet Security Pack\fs_upgrade_handler.exe

c:\program files\Telenet Security Pack\fsadminsettings.exe

c:\program files\Telenet Security Pack\fsaua.cfg

c:\program files\Telenet Security Pack\fsaua.dll

c:\program files\Telenet Security Pack\fsaua_api_dll.dll

c:\program files\Telenet Security Pack\fsaua_api_dll64.dll

c:\program files\Telenet Security Pack\fsclm.dll

c:\program files\Telenet Security Pack\fshoster32.exe

c:\program files\Telenet Security Pack\fsinstall.exe

c:\program files\Telenet Security Pack\fslauncher.exe

c:\program files\Telenet Security Pack\fsuninstall.exe

c:\program files\Telenet Security Pack\Help.cfg

c:\program files\Telenet Security Pack\imageformats\qgif4.dll

c:\program files\Telenet Security Pack\imageformats\qico4.dll

c:\program files\Telenet Security Pack\imageformats\qjpeg4.dll

c:\program files\Telenet Security Pack\imageformats\qmng4.dll

c:\program files\Telenet Security Pack\JsonParser.dll

c:\program files\Telenet Security Pack\LaunchPad.cfg

c:\program files\Telenet Security Pack\libeay32.dll

c:\program files\Telenet Security Pack\libjson.cr

c:\program files\Telenet Security Pack\license-libjson.txt

c:\program files\Telenet Security Pack\licenses-CDSA.txt

c:\program files\Telenet Security Pack\ms_pl.cr

c:\program files\Telenet Security Pack\ms_pl_license.txt

c:\program files\Telenet Security Pack\MsiWrap.exe

c:\program files\Telenet Security Pack\mysagent.cfg

c:\program files\Telenet Security Pack\mysainsthelper_.exe

c:\program files\Telenet Security Pack\NotificationsHistory.cfg

c:\program files\Telenet Security Pack\ParserFramework.dll

c:\program files\Telenet Security Pack\plugins\AboutPlugin.dll

c:\program files\Telenet Security Pack\plugins\ActionCenterPlugin.dll

c:\program files\Telenet Security Pack\plugins\addproductplugin.dll

c:\program files\Telenet Security Pack\plugins\agent.dll

c:\program files\Telenet Security Pack\plugins\checkforupdatesui.dll

c:\program files\Telenet Security Pack\plugins\CommonSettingsPlugin.dll

c:\program files\Telenet Security Pack\plugins\CuifSimpleAction.dll

c:\program files\Telenet Security Pack\plugins\FlyerPlugin.dll

c:\program files\Telenet Security Pack\plugins\fs_subscription_reminder.dll

c:\program files\Telenet Security Pack\plugins\HelpPlugin.dll

c:\program files\Telenet Security Pack\plugins\LaunchPadPlugin.dll

c:\program files\Telenet Security Pack\plugins\Localization.dll

c:\program files\Telenet Security Pack\plugins\NotificationsHistoryPlugin.dll

c:\program files\Telenet Security Pack\plugins\serviceinstallerui.dll

c:\program files\Telenet Security Pack\qt.cr

c:\program files\Telenet Security Pack\qt_license.txt

c:\program files\Telenet Security Pack\RemoteWindowsApi.dll

c:\program files\Telenet Security Pack\SELocalInfoAPI.dll

c:\program files\Telenet Security Pack\ssleay32.dll

c:\program files\Telenet Security Pack\trigger.exe

c:\program files\Telenet Security Pack\ui\About.ui

c:\program files\Telenet Security Pack\ui\ActionCenter.qss

c:\program files\Telenet Security Pack\ui\ActionCenterMain.ui

c:\program files\Telenet Security Pack\ui\actionlinkflyer.ui

c:\program files\Telenet Security Pack\ui\ActiveMessagesList.ui

c:\program files\Telenet Security Pack\ui\addproduct.ui

c:\program files\Telenet Security Pack\ui\addproduct_stylesheet.qss

c:\program files\Telenet Security Pack\ui\agentauxiliary.ui

c:\program files\Telenet Security Pack\ui\agentauxiliary_stylesheet.qss

c:\program files\Telenet Security Pack\ui\checkforupdates.ui

c:\program files\Telenet Security Pack\ui\CommonSettings.ui

c:\program files\Telenet Security Pack\ui\CommonSettings_Stylesheet.qss

c:\program files\Telenet Security Pack\ui\ConnectionPage.ui

c:\program files\Telenet Security Pack\ui\cuif.qss

c:\program files\Telenet Security Pack\ui\doublebyte.qss

c:\program files\Telenet Security Pack\ui\DownloadsPage.ui

c:\program files\Telenet Security Pack\ui\ElevationFailed_messageBox.ui

c:\program files\Telenet Security Pack\ui\FlyerPlugin.qss

c:\program files\Telenet Security Pack\ui\FlyerPlugin_messageBox.ui

c:\program files\Telenet Security Pack\ui\Help.qss

c:\program files\Telenet Security Pack\ui\Help.ui

c:\program files\Telenet Security Pack\ui\Help_StyleConstants.qsc

c:\program files\Telenet Security Pack\ui\installationstatus.ui

c:\program files\Telenet Security Pack\ui\ja.qss

c:\program files\Telenet Security Pack\ui\ja_xp.qss

c:\program files\Telenet Security Pack\ui\LaunchPad.qss

c:\program files\Telenet Security Pack\ui\LaunchPadMain.ui

c:\program files\Telenet Security Pack\ui\LaunchPadTrayIcon.ui

c:\program files\Telenet Security Pack\ui\messageboxes.ui

c:\program files\Telenet Security Pack\ui\mysa.qss

c:\program files\Telenet Security Pack\ui\NotificationsHistory.rcc

c:\program files\Telenet Security Pack\ui\NotificationsHistory.ui

c:\program files\Telenet Security Pack\ui\NotificationsHistory_Stylesheet.qss

c:\program files\Telenet Security Pack\ui\NotificationsPage.ui

c:\program files\Telenet Security Pack\ui\PrivacyPage.ui

c:\program files\Telenet Security Pack\ui\productdatamanagerui.ui

c:\program files\Telenet Security Pack\ui\ProxyDialog.ui

c:\program files\Telenet Security Pack\ui\resources.rcc

c:\program files\Telenet Security Pack\ui\serialkey.ui

c:\program files\Telenet Security Pack\ui\serviceinstaller.ui

c:\program files\Telenet Security Pack\ui\singlebyte.qss

c:\program files\Telenet Security Pack\ui\StandardMessageDetails.ui

c:\program files\Telenet Security Pack\ui\subscriptionreminder.ui

c:\program files\Telenet Security Pack\ui\subscriptions.ui

c:\program files\Telenet Security Pack\ui\subscriptions_stylesheet.qss

c:\program files\Telenet Security Pack\ui\subscriptionstatus.ui

c:\program files\Telenet Security Pack\ui\TriggerActionWorkaround.ui

c:\program files\Telenet Security Pack\ui\uninstallation.ui

c:\program files\Telenet Security Pack\ui\vi.qss

c:\program files\Telenet Security Pack\ui\vista.qss

c:\program files\Telenet Security Pack\ui\WelcomeScreen.qss

c:\program files\Telenet Security Pack\ui\xp.qss

c:\program files\Telenet Security Pack\ui\zh-hk.qss

c:\program files\Telenet Security Pack\ui\zh-tw.qss

c:\program files\Telenet Security Pack\ui\zh.qss

c:\program files\Telenet Security Pack\utils\fscuif.exe

c:\program files\Telenet Security Pack\widgets\ActionCenterWidgets.dll

c:\program files\Telenet Security Pack\widgets\CommonSettingsWidgets.dll

c:\program files\Telenet Security Pack\widgets\CuifWidgets.dll

c:\program files\Telenet Security Pack\widgets\HelpWidgets.dll

c:\program files\Telenet Security Pack\widgets\LaunchPadWidgets.dll

c:\program files\Telenet Security Pack\widgets\servicewidgets.dll

.

.

((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

-------\Legacy_FSHOSTER

-------\Service_fshoster

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2012-12-14 to 2013-01-14 ))))))))))))))))))))))))))))))

.

.

2013-01-11 17:30 . 2013-01-11 17:30 -------- d-----w- c:\documents and settings\Verduyckt\Application Data\Malwarebytes

2013-01-11 17:29 . 2013-01-11 17:29 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes

2013-01-11 17:29 . 2013-01-11 17:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2013-01-11 17:29 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys

2013-01-11 15:49 . 2013-01-11 15:49 -------- d-----w- c:\documents and settings\Verduyckt\Local Settings\Application Data\PCHealth

2013-01-09 18:17 . 2001-08-17 20:28 871388 -c--a-w- c:\windows\system32\dllcache\bcmdm.sys

2013-01-09 18:16 . 2001-08-17 20:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys

2013-01-09 18:16 . 2004-08-03 21:31 36224 -c--a-w- c:\windows\system32\dllcache\an983.sys

2013-01-09 18:16 . 2001-08-17 20:52 12032 -c--a-w- c:\windows\system32\dllcache\amsint.sys

2013-01-09 18:16 . 2001-08-17 20:51 5248 -c--a-w- c:\windows\system32\dllcache\aliide.sys

2013-01-09 18:16 . 2001-08-17 20:49 26624 -c--a-w- c:\windows\system32\dllcache\alifir.sys

2013-01-09 18:16 . 2001-08-17 19:11 16969 -c--a-w- c:\windows\system32\dllcache\amb8002.sys

2013-01-09 18:16 . 2001-08-17 21:07 56960 -c--a-w- c:\windows\system32\dllcache\aic78xx.sys

2013-01-09 18:16 . 2001-08-17 19:11 27678 -c--a-w- c:\windows\system32\dllcache\ali5261.sys

2013-01-09 18:16 . 2001-08-17 21:07 55168 -c--a-w- c:\windows\system32\dllcache\aic78u2.sys

2013-01-09 18:16 . 2001-08-17 20:52 12800 -c--a-w- c:\windows\system32\dllcache\aha154x.sys

2013-01-09 18:08 . 2001-09-06 20:26 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll

2013-01-09 17:51 . 2013-01-09 17:51 16369160 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe

2013-01-03 09:47 . 2013-01-14 17:58 -------- d--h--r- c:\documents and settings\Verduyckt\Onlangs geopend

2013-01-02 08:43 . 2008-04-14 18:02 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll

2013-01-02 08:43 . 2008-04-14 18:02 21504 ----a-w- c:\windows\system32\hidserv.dll

2013-01-02 08:43 . 2008-04-14 17:39 14720 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys

2013-01-02 08:43 . 2008-04-14 17:39 14720 ----a-w- c:\windows\system32\drivers\kbdhid.sys

2012-12-30 15:34 . 2012-12-30 15:49 -------- d-----w- c:\documents and settings\Verduyckt\Local Settings\Application Data\LogMeIn Rescue Applet

2012-12-30 13:18 . 2012-12-30 13:19 -------- d-----w- c:\documents and settings\Administrator

2012-12-18 19:08 . 2012-12-18 19:08 209112 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll

2012-12-18 19:08 . 2012-12-18 19:08 209112 ----a-w- c:\program files\Internet Explorer\PLUGINS\nppdf32.dll

2012-12-16 23:30 . 2012-12-16 23:30 -------- d-----w- c:\windows\system32\wbem\Repository

2012-12-16 23:29 . 2012-12-16 23:29 -------- d-----w- c:\program files\Common Files\Java

2012-12-16 23:23 . 2012-12-16 23:23 -------- d-----w- c:\windows\system32\drivers\NSS

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2013-01-09 17:51 . 2012-04-03 13:36 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2013-01-09 17:51 . 2011-05-16 16:32 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2012-12-16 12:23 . 2004-08-04 12:00 290560 ----a-w- c:\windows\system32\atmfd.dll

2012-11-13 11:55 . 2004-08-04 12:00 1866496 ----a-w- c:\windows\system32\win32k.sys

2012-11-06 02:00 . 2008-04-14 17:02 1371648 ------w- c:\windows\system32\msxml6.dll

2012-11-02 02:03 . 2004-08-04 12:00 375296 ----a-w- c:\windows\system32\dpnet.dll

2012-11-01 12:12 . 2004-08-04 12:00 916992 ----a-w- c:\windows\system32\wininet.dll

2012-11-01 12:12 . 2004-08-04 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll

2012-11-01 12:12 . 2004-08-04 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl

2012-11-01 00:35 . 2004-08-04 12:00 385024 ----a-w- c:\windows\system32\html.iec

2009-03-16 13:36 . 2009-03-16 13:36 1691464 ----a-w- c:\program files\dsetup32.dll

2009-03-16 13:35 . 2009-03-16 13:35 525128 ----a-w- c:\program files\DXSETUP.exe

2009-03-16 13:35 . 2009-03-16 13:35 94024 ----a-w- c:\program files\DSETUP.dll

2008-11-14 17:50 . 2008-11-14 17:50 8137408 ----a-w- c:\program files\Firefox Setup 3.0.4.exe

2008-04-12 16:29 . 2008-04-12 16:29 7535437 ----a-w- c:\program files\klcodec380s.exe

2008-04-12 15:56 . 2008-04-12 15:56 25827912 ----a-w- c:\program files\wmp11-windowsxp-x86-nl-nl.exe

2012-09-08 17:07 . 2012-09-08 17:06 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-11-14 68856]

"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 204288]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

"InCD"="c:\program files\Ahead\InCD\InCD.exe" [2006-03-23 1398272]

"SoundMan"="SOUNDMAN.EXE" [2004-07-27 68096]

"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]

"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]

"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]

"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2004-10-27 61952]

"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2005-05-18 925696]

"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]

"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2010-07-07 1753192]

"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-07-09 110696]

"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-07-09 13923432]

"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]

.

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

.

c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\

Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2011-2-5 813584]

Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [1999-2-17 65588]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]

2009-07-20 11:28 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]

@=""

.

[HKEY_LOCAL_MACHINE\software\microsoft\security center]

"AntiVirusOverride"=dword:00000001

.

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"c:\\WINDOWS\\system32\\mmc.exe"=

"c:\\Program Files\\ASUS\\AsusUpdate\\Update.exe"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"c:\\WINDOWS\\system32\\PnkBstrA.exe"=

"c:\\WINDOWS\\system32\\PnkBstrB.exe"=

"e:\\Spelletjes\\Electronic Arts\\Battlefield Bad Company 2\\BFBC2Updater.exe"=

"c:\\WINDOWS\\system32\\msiexec.exe"=

.

R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [5/02/2011 16:08 10384]

R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [11/01/2013 18:29 398184]

R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [11/01/2013 18:29 682344]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [11/01/2013 18:29 21104]

S3 wdm_opl3sax;YAMAHA OPL3-SAx Audio-stuurprogramma (WDM);c:\windows\system32\drivers\opl3sax.sys [22/09/2007 10:58 54528]

.

Inhoud van de 'Gedeelde Taken' map

.

2013-01-14 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-03 17:51]

.

2013-01-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-21 18:31]

.

2013-01-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-21 18:31]

.

2013-01-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-73586283-299502267-725345543-1004Core.job

- c:\documents and settings\Verduyckt\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2012-09-19 07:21]

.

2013-01-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-73586283-299502267-725345543-1004UA.job

- c:\documents and settings\Verduyckt\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2012-09-19 07:21]

.

2013-01-14 c:\windows\Tasks\User_Feed_Synchronization-{3ABC3224-D51D-4486-8507-83955627B8E7}.job

- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]

.

.

------- Bijkomende Scan -------

.

uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8

mWindow Title = Telenet Internet

uSearchAssistant = hxxp://www.google.com/ie

uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

TCP: DhcpNameServer = 195.130.130.132 195.130.131.132

DPF: {AE2B937E-EA7D-4A8D-888C-B68D7F72A3C4} - hxxp://as.photoprintit.de/ips-opdata/74914091/activex/IPSUploader4.cab

FF - ProfilePath - c:\documents and settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\

FF - ExtSQL: 2012-12-30 14:51; {930e0b10-6818-4828-86b0-07d60af809b6}; c:\documents and settings\Verduyckt\Application Data\Mozilla\Firefox\Profiles\v385024\extensions\{930e0b10-6818-4828-86b0-07d60af809b6}

FF - ExtSQL: !HIDDEN! 2009-08-11 16:16; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension

.

- - - - ORPHANS VERWIJDERD - - - -

.

AddRemove-F-Secure ServiceEnabler 44163 - c:\program files\Telenet Security Pack\\fsuninstall.exe

.

.

.

**************************************************************************

.

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2013-01-14 19:16

Windows 5.1.2600 Service Pack 3 NTFS

.

scannen van verborgen processen ...

.

scannen van verborgen autostart items ...

.

scannen van verborgen bestanden ...

.

Scan succesvol afgerond

verborgen bestanden: 0

.

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_USERS\S-1-5-21-73586283-299502267-725345543-1004\Software\SecuROM\License information*]

"datasecu"=hex:73,f6,19,37,7c,7d,02,62,72,15,e2,3e,b7,27,e3,fd,df,4e,da,0f,36,

63,24,a8,ba,1a,e9,bc,e8,d1,ea,bd,94,17,0f,7c,4c,06,11,e3,99,24,ad,36,4e,88,\

"rkeysecu"=hex:31,49,d7,e2,10,45,57,43,89,4a,3c,f3,9d,df,44,c6

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_146_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_146_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="IFlashBroker5"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\software\F-Secure\My Services Agent\Protected]

@Denied: ) (Everyone)

"AgentIdentifier"=""

"AuthorizationCode"=""

.

--------------------- DLLs Geladen Onder Lopende Processen ---------------------

.

- - - - - - - > 'winlogon.exe'(636)

c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll

c:\program files\common files\logishrd\bluetooth\LBTServ.dll

.

- - - - - - - > 'explorer.exe'(3140)

c:\program files\Logitech\SetPoint\GameHook.dll

c:\program files\Logitech\SetPoint\lgscroll.dll

c:\windows\system32\webcheck.dll

c:\windows\system32\WPDShServiceObj.dll

c:\windows\system32\PortableDeviceTypes.dll

c:\windows\system32\PortableDeviceApi.dll

.

------------------------ Andere Aktieve Processen ------------------------

.

c:\windows\system32\nvsvc32.exe

c:\program files\Ahead\InCD\InCDsrv.exe

c:\windows\ATKKBService.exe

c:\program files\Java\jre6\bin\jqs.exe

c:\windows\system32\PnkBstrA.exe

c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe

c:\program files\Windows Media Player\WMPNetwk.exe

c:\program files\Canon\CAL\CALMAIN.exe

c:\windows\SOUNDMAN.EXE

c:\windows\system32\RUNDLL32.EXE

c:\program files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

.

**************************************************************************

.

Voltooingstijd: 2013-01-14 19:19:56 - machine werd herstart

ComboFix-quarantined-files.txt 2013-01-14 18:19

ComboFix2.txt 2013-01-12 18:18

.

Pre-Run: 88.156.446.720 bytes beschikbaar

Post-Run: 88.256.151.552 bytes beschikbaar

.

- - End Of File - - 70EB3B09EB4F87A016772B2A9841D659

Geplaatst:

Helaas lukt het nog steeds niet, ook krijg ik nog altijd dezelfde waarschuwing bij google chrome:Telenet Network Install...exe lijkt schadelijk te zijn. Enkele dagen geleden nog een nieuwe adobe reader gedownload en dit lukte prima zonder enig probleem het lijkt wel alsof het echt enkel met telenet niet lukt.

Geplaatst:

Dat is wel heel erg vreemd. Verwijder alvast Combofix: Start -> Uitvoeren/Zoekopdracht/Programma’s en bestanden zoeken en typ daar: ComboFix /Uninstall (met spatie voor de /).

Dit zal Combofix verwijderen + gerelateerde mappen en bestanden, herstelt de klokinstellingen opnieuw, verbergt de bestandsextensies, gaat verborgen bestanden en systeembestanden terug verbergen en maakt een nieuw herstelpunt.

Indien aanwezig mag je de map C:\Qoobox manueel verwijderen.

Gast
Dit topic is nu gesloten voor nieuwe reacties.

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.