Ga naar inhoud

advanced system care


Aanbevolen berichten

Ik heb geen problemen met mijn pc, enkel wil ik wel dit pakket verwijderen, maar weet niet hoe.

Kom hier eerst om raad vragen want het blijkt niet simpel te zijn.

Heb advanced uninstaller maar deze herkent de software niet, dus vandaar uit kan ik al niet verwijderen.

Ook verwijderen via operation system is geen optie, ook daar staat hij niet vermeld.

Eveneens in start menu nergens terug te vinden.

In map "program files" staat hij wel onder SPD.

C:\Program Files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\Monitor

Ook in registry keys zijn mappen terug te vinden.

Hoor het graag welke stappen ik moet / kan uitvoeren binnen deze.

Link naar reactie
Delen op andere sites

Download ComboFix van één van deze locaties:

Link 1

Link 2

* BELANGRIJK !!! Sla ComboFix.exe op je Bureaublad op

1. Schakel alle antivirus- en antispywareprogramma's uit, want anders kunnen ze misschien conflicteren met ComboFix. Hier is een handleiding over hoe je ze kan uitschakelen:

Klik hier

2. Het kan voorkomen dat de computer meerdere malen opnieuw gestart moet worden, dit is normaal.

3. Dubbelklik op "Combofix.exe" om de tool te starten.

4. Klik niet in het scherm van Combofix als deze actief is, hierdoor kan de 'tool' vastlopen.

Noot !!! Als er een error wordt getoond met de melding "Illegal operation attempted on a registery key that has been marked for deletion", herstart dan de computer.

5. Wanneer ComboFix klaar is, zal het het een logbestand voor je maken. Post de inhoud van dit logbestand (te vinden als C:\ComboFix.txt) in je volgende bericht.

Link naar reactie
Delen op andere sites

ComboFix 13-02-03.03 - working account 06/02/2013 11:08:42.1.4 - x86

Microsoft Windows 7 Ultimate 6.1.7600.0.1252.32.1043.18.3468.1680 [GMT 1:00]

Gestart vanuit: c:\users\working account\Desktop\ComboFix.exe

AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}

SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

* Nieuw herstelpunt werd aangemaakt

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2013-01-06 to 2013-02-06 ))))))))))))))))))))))))))))))

.

.

2013-02-06 10:11 . 2013-02-06 10:11 -------- d-----w- c:\users\Default\AppData\Local\temp

2013-02-06 08:57 . 2013-02-06 08:57 29904 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\MpKsl3cdc7b24.sys

2013-02-06 08:56 . 2013-02-06 08:56 60872 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\offreg.dll

2013-02-05 20:52 . 2013-01-07 19:57 6991832 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\mpengine.dll

2013-02-05 11:33 . 2009-12-30 10:21 27192 ----a-w- c:\windows\system32\drivers\revoflt.sys

2013-02-05 11:33 . 2013-02-05 11:33 -------- d-----w- c:\program files\VS Revo Group

2013-02-03 18:01 . 2007-04-12 13:19 129024 ----a-w- c:\windows\system32\AVERM.dll

2013-02-03 18:01 . 2006-09-26 12:57 28672 ----a-w- c:\windows\system32\AVEQT.dll

2013-02-03 18:01 . 2013-02-03 18:02 -------- d-----w- c:\program files\Ultra Video Joiner

2013-02-03 17:15 . 2013-02-03 17:16 -------- d-----w- c:\programdata\Freemake

2013-02-03 17:15 . 2013-02-03 17:15 -------- d-----w- c:\programdata\DivX

2013-02-03 17:15 . 2013-02-03 17:15 -------- d-----w- c:\program files\Freemake

2013-02-02 15:27 . 2013-02-02 15:27 -------- d-----w- c:\program files\Boilsoft

2013-02-02 12:07 . 2013-02-02 12:07 -------- d-----w- c:\program files\Trend Micro

2013-02-02 11:52 . 2013-02-02 11:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2013-02-02 11:52 . 2013-02-02 11:52 -------- d-----w- c:\programdata\Malwarebytes

2013-02-02 11:52 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys

2013-02-02 09:13 . 2013-02-02 09:13 -------- d-----w- c:\program files\Common Files\Intel Corporation

2013-02-01 15:25 . 2012-11-19 11:10 526392 ----a-w- c:\windows\system32\drivers\iaStorA.sys

2013-02-01 15:25 . 2012-11-19 11:10 25656 ----a-w- c:\windows\system32\drivers\iaStorF.sys

2013-02-01 12:42 . 2013-02-01 12:42 -------- d-----w- c:\windows\system32\wbem\en-US

2013-02-01 09:54 . 2012-12-16 14:25 295424 ----a-w- c:\windows\system32\atmfd.dll

2013-02-01 09:54 . 2012-12-16 14:25 34304 ----a-w- c:\windows\system32\atmlib.dll

2013-02-01 09:51 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll

2013-02-01 09:47 . 2013-02-01 09:47 -------- d-----w- c:\program files\Microsoft Silverlight

2013-02-01 09:26 . 2012-07-26 03:39 526952 ----a-w- c:\windows\system32\drivers\Wdf01000.sys

2013-02-01 09:26 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys

2013-02-01 09:26 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll

2013-02-01 09:25 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll

2013-02-01 09:25 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll

2013-02-01 09:25 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys

2013-02-01 09:25 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys

2013-02-01 09:25 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe

2013-02-01 09:25 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll

2013-02-01 09:25 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll

2013-02-01 09:24 . 2012-03-01 05:53 19312 ----a-w- c:\windows\system32\drivers\fs_rec.sys

2013-02-01 09:24 . 2012-03-01 05:45 158720 ----a-w- c:\windows\system32\imagehlp.dll

2013-02-01 09:24 . 2012-03-01 05:40 5120 ----a-w- c:\windows\system32\wmi.dll

2013-02-01 09:22 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe

2013-02-01 09:17 . 2009-10-10 02:57 12800 ----a-w- c:\windows\system32\drivers\sffp_sd.sys

2013-02-01 09:17 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys

2013-02-01 09:16 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll

2013-02-01 09:16 . 2010-08-31 04:32 954752 ----a-w- c:\windows\system32\mfc40.dll

2013-02-01 09:16 . 2010-08-31 04:32 954288 ----a-w- c:\windows\system32\mfc40u.dll

2013-02-01 09:16 . 2011-04-25 02:35 338944 ----a-w- c:\windows\system32\drivers\afd.sys

2013-02-01 09:14 . 2012-02-15 05:44 826368 ----a-w- c:\windows\system32\rdpcore.dll

2013-02-01 09:13 . 2010-12-23 05:28 850432 ----a-w- c:\windows\system32\sbe.dll

2013-02-01 09:13 . 2010-12-23 05:28 642048 ----a-w- c:\windows\system32\CPFilters.dll

2013-02-01 09:13 . 2010-12-23 05:24 199680 ----a-w- c:\windows\system32\mpg2splt.ax

2013-02-01 09:13 . 2009-12-19 09:02 12288 ----a-w- c:\windows\system32\tsbyuv.dll

2013-02-01 09:13 . 2009-12-19 09:02 22016 ----a-w- c:\windows\system32\msyuv.dll

2013-02-01 09:13 . 2009-12-19 09:02 31744 ----a-w- c:\windows\system32\msvidc32.dll

2013-02-01 09:13 . 2009-12-19 09:02 13312 ----a-w- c:\windows\system32\msrle32.dll

2013-02-01 09:13 . 2009-12-19 09:02 84480 ----a-w- c:\windows\system32\mciavi32.dll

2013-02-01 09:13 . 2009-12-19 09:02 50176 ----a-w- c:\windows\system32\iyuv_32.dll

2013-02-01 09:13 . 2009-12-19 09:02 91648 ----a-w- c:\windows\system32\avifil32.dll

2013-02-01 09:13 . 2011-10-26 04:28 1328640 ----a-w- c:\windows\system32\quartz.dll

2013-02-01 09:13 . 2011-10-26 04:28 514560 ----a-w- c:\windows\system32\qdvd.dll

2013-02-01 09:12 . 2010-12-21 05:38 204288 ----a-w- c:\windows\system32\upnp.dll

2013-02-01 09:12 . 2010-12-21 05:38 73728 ----a-w- c:\windows\system32\wscsvc.dll

2013-02-01 09:12 . 2010-12-21 05:38 51200 ----a-w- c:\windows\system32\wscapi.dll

2013-02-01 09:12 . 2010-12-21 05:38 350720 ----a-w- c:\windows\system32\winhttp.dll

2013-02-01 09:12 . 2010-12-21 05:38 204800 ----a-w- c:\windows\system32\WebClnt.dll

2013-02-01 09:12 . 2010-12-21 05:38 14336 ----a-w- c:\windows\system32\slwga.dll

2013-02-01 09:12 . 2010-12-21 05:34 80384 ----a-w- c:\windows\system32\davclnt.dll

2013-02-01 09:12 . 2010-10-16 04:41 101760 ----a-w- c:\windows\system32\consent.exe

2013-02-01 09:10 . 2010-08-27 05:46 168448 ----a-w- c:\windows\system32\srvsvc.dll

2013-02-01 08:31 . 2012-10-23 22:03 1801592 ----a-w- c:\windows\system32\WavesGUILib.dll

2013-02-01 08:30 . 2013-02-01 08:30 -------- d-----w- c:\program files\Common Files\InstallShield

2013-01-31 20:46 . 2013-01-31 20:46 -------- d-----w- c:\programdata\IObit

2013-01-31 20:45 . 2013-01-31 20:45 -------- d-----w- c:\program files\S.P.D

2013-01-31 15:12 . 2012-10-22 13:22 15904 ----a-w- c:\windows\system32\drivers\IntelMEFWVer.dll

2013-01-31 15:12 . 2013-01-31 15:12 -------- d-----w- c:\program files\Common Files\postureAgent

2013-01-31 15:12 . 2012-07-12 18:56 55104 ----a-w- c:\windows\system32\drivers\HECI.sys

2013-01-31 15:11 . 2012-12-04 04:20 41984 ----a-w- c:\windows\system32\drivers\USB3Ver.dll

2013-01-31 15:09 . 2012-11-03 01:41 53248 ----a-w- c:\windows\system32\CSVer.dll

2013-01-31 15:08 . 2013-01-31 15:08 -------- d-----w- c:\program files\Microsoft Mouse and Keyboard Center

2013-01-31 14:53 . 2013-02-02 11:33 -------- d-----w- c:\programdata\DriverGenius

2013-01-31 14:51 . 2013-01-31 14:51 -------- d-----w- c:\program files\Driver-Soft

2013-01-27 13:29 . 2013-02-03 09:05 -------- d-----w- c:\program files\Mozilla Maintenance Service

2013-01-26 17:38 . 2013-01-07 19:57 6991832 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2013-01-26 15:41 . 2013-01-26 15:41 -------- d-----w- c:\program files\Speccy

2013-01-26 13:26 . 2013-01-26 13:26 -------- d-----w- c:\program files\Rapoo

2013-01-26 13:26 . 2013-01-26 13:26 1353585 ----a-w- c:\windows\unins000.exe

2013-01-26 13:26 . 2012-08-16 10:15 18048 ----a-w- c:\windows\system32\drivers\rpkmdrv.sys

2013-01-26 09:41 . 2013-01-26 09:41 -------- d-----w- c:\program files\Common Files\Adobe

2013-01-25 21:00 . 2013-01-25 21:00 -------- d-----w- C:\MSI

2013-01-25 20:48 . 2013-01-25 15:57 -------- d-----w- C:\Recovery

2013-01-25 20:28 . 2013-01-25 20:28 -------- d--h--w- c:\programdata\Common Files

2013-01-25 20:28 . 2012-11-29 15:31 31584 ----a-w- c:\windows\system32\TURegOpt.exe

2013-01-25 20:28 . 2012-11-29 15:31 21344 ----a-w- c:\windows\system32\authuitu.dll

2013-01-25 20:28 . 2013-01-25 20:28 -------- d-----w- c:\program files\TuneUp Utilities 2013

2013-01-25 20:28 . 2013-01-25 20:28 -------- d-----w- c:\programdata\TuneUp Software

2013-01-25 20:27 . 2013-01-25 20:27 -------- d-----w- c:\program files\DAMN NFO Viewer

2013-01-25 20:24 . 2013-02-01 09:20 -------- d-----w- c:\program files\Microsoft Works

2013-01-25 20:24 . 2013-01-25 20:24 -------- d-----w- c:\windows\PCHEALTH

2013-01-25 20:23 . 2013-01-25 20:23 -------- d-----w- c:\program files\Microsoft Visual Studio 8

2013-01-25 20:23 . 2013-02-01 09:52 -------- d-----w- c:\programdata\Microsoft Help

2013-01-25 20:23 . 2013-01-25 20:23 -------- d-----r- C:\MSOCache

2013-01-25 20:21 . 2012-06-09 18:21 178688 ----a-w- c:\windows\system32\unrar.dll

2013-01-25 20:21 . 2013-01-25 20:21 -------- d-----w- c:\program files\K-Lite Codec Pack

2013-01-25 20:19 . 2013-01-25 20:19 -------- d-----w- c:\program files\IrfanView

2013-01-25 18:43 . 2013-01-25 18:43 -------- d-----w- c:\program files\VideoLAN

2013-01-25 18:42 . 2013-01-25 18:42 -------- d-----w- c:\program files\Elaborate Bytes

2013-01-25 18:42 . 2013-01-25 18:42 -------- d-----w- c:\program files\GRETECH

2013-01-25 16:22 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe

2013-01-25 16:22 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll

2013-01-25 16:22 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll

2013-01-25 16:22 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll

2013-01-25 16:22 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll

2013-01-25 16:22 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll

2013-01-25 16:22 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll

2013-01-25 16:22 . 2012-06-02 14:19 171904 ----a-w- c:\windows\system32\wuwebv.dll

2013-01-25 16:22 . 2012-06-02 14:12 33792 ----a-w- c:\windows\system32\wuapp.exe

2013-01-25 16:21 . 2013-01-25 16:21 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll

2013-01-25 16:15 . 2013-01-25 16:15 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2013-01-25 16:15 . 2013-01-25 16:15 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2013-01-25 16:15 . 2013-01-25 16:15 -------- d-----w- c:\windows\system32\Macromed

2013-01-25 16:13 . 2013-01-31 20:47 -------- d-----w- c:\program files\Opera

2013-01-25 16:13 . 2013-01-25 16:13 740840 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{ED40DB2E-4701-4A2E-B2F8-9C7011BB7129}\gapaengine.dll

2013-01-25 16:13 . 2013-01-30 10:53 232336 ------w- c:\windows\system32\MpSigStub.exe

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-12-19 00:07 . 2012-12-14 00:23 277640 ----a-w- c:\windows\system32\IntelCpHeciSvc.exe

2012-12-19 00:07 . 2012-12-14 00:23 146056 ----a-w- c:\windows\system32\igfxtray.exe

2012-12-19 00:07 . 2012-12-14 00:23 272008 ----a-w- c:\windows\system32\igfxsrvc.exe

2012-12-19 00:07 . 2012-12-14 00:23 199304 ----a-w- c:\windows\system32\igfxext.exe

2012-12-19 00:07 . 2012-12-14 00:23 190088 ----a-w- c:\windows\system32\igfxpers.exe

2012-12-19 00:07 . 2012-12-14 00:23 181384 ----a-w- c:\windows\system32\hkcmd.exe

2012-12-19 00:07 . 2012-12-14 00:23 6232200 ----a-w- c:\windows\system32\GfxUI.exe

2012-12-14 00:22 . 2012-12-14 00:22 102400 ----a-w- c:\windows\system32\igfxCoIn_v2932.dll

2012-12-13 00:41 . 2012-12-13 00:41 11049472 ----a-w- c:\windows\system32\igdumd32.dll

2012-12-13 00:41 . 2012-12-13 00:41 3759616 ----a-w- c:\windows\system32\drivers\igdkmd32.sys

2012-12-13 00:41 . 2012-12-13 00:41 64512 ----a-w- c:\windows\system32\igdde32.dll

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrtrk.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrsve.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrslv.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435200 ----a-w- c:\windows\system32\igfxrtha.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437248 ----a-w- c:\windows\system32\igfxrrus.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437248 ----a-w- c:\windows\system32\igfxrrom.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrsky.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrptg.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrptb.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrplk.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrnld.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrnor.lrc

2012-12-13 00:41 . 2012-12-13 00:41 430080 ----a-w- c:\windows\system32\igfxrjpn.lrc

2012-12-13 00:41 . 2012-12-13 00:41 429056 ----a-w- c:\windows\system32\igfxrkor.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437760 ----a-w- c:\windows\system32\igfxrfra.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrita.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrhrv.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrhun.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrfin.lrc

2012-12-13 00:41 . 2012-12-13 00:41 433664 ----a-w- c:\windows\system32\igfxrheb.lrc

2012-12-13 00:41 . 2012-12-13 00:41 438272 ----a-w- c:\windows\system32\igfxrell.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437760 ----a-w- c:\windows\system32\igfxresn.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrdeu.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435200 ----a-w- c:\windows\system32\igfxrdan.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrcsy.lrc

2012-12-13 00:41 . 2012-12-13 00:41 433664 ----a-w- c:\windows\system32\igfxrara.lrc

2012-12-13 00:41 . 2012-12-13 00:41 427008 ----a-w- c:\windows\system32\igfxrcht.lrc

2012-12-13 00:41 . 2012-12-13 00:41 426496 ----a-w- c:\windows\system32\igfxrchs.lrc

2012-12-13 00:40 . 2012-12-13 00:40 286720 ----a-w- c:\windows\system32\igfxTMM.dll

2012-12-13 00:40 . 2012-12-13 00:40 25088 ----a-w- c:\windows\system32\igfxexps.dll

2012-12-13 00:40 . 2012-12-13 00:40 120320 ----a-w- c:\windows\system32\igfxcpl.cpl

2012-12-13 00:40 . 2012-12-13 00:40 130048 ----a-w- c:\windows\system32\igfxdo.dll

2012-12-13 00:40 . 2012-12-13 00:40 175616 ----a-w- c:\windows\system32\gfxSrvc.dll

2012-12-13 00:40 . 2012-12-13 00:40 9728 ----a-w- c:\windows\system32\IGFXDEVLib.dll

2012-12-13 00:39 . 2012-12-13 00:39 10812416 ----a-w- c:\windows\system32\ig4icd32.dll

2012-12-13 00:39 . 2012-12-13 00:39 284160 ----a-w- c:\windows\system32\igfxrenu.lrc

2012-12-13 00:38 . 2012-12-13 00:38 640512 ----a-w- c:\windows\system32\igfxcmrt32.dll

2012-12-13 00:38 . 2012-12-13 00:38 459264 ----a-w- c:\windows\system32\igfx11cmrt32.dll

2012-12-13 00:38 . 2012-12-13 00:38 3121152 ----a-w- c:\windows\system32\igfxcmjit32.dll

2013-02-02 09:26 . 2013-02-02 09:26 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 997408]

"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2009-05-26 85160]

"LedStatus"="c:\program files\Rapoo\RpWireless\LedStatus.exe" [2013-01-05 1709736]

"Launch"="c:\program files\Rapoo\RpWireless\Launch.exe" [2013-01-05 411816]

"IntelliType Pro"="c:\program files\Microsoft Mouse and Keyboard Center\itype.exe" [2012-11-02 1093232]

"IntelliPoint"="c:\program files\Microsoft Mouse and Keyboard Center\ipoint.exe" [2012-11-02 1668720]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-19 146056]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-12-19 181384]

"Persistence"="c:\windows\system32\igfxpers.exe" [2012-12-19 190088]

"USB3MON"="c:\program files\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-12-04 291648]

"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI.exe" [2012-12-26 6106336]

"IAStorIcon"="c:\program files\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe" [2012-11-30 56128]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2012-11-26 573024]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 0 (0x0)

"ConsentPromptBehaviorUser"= 0 (0x0)

"EnableLUA"= 0 (0x0)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"aux"=wdmaud.drv

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare Ultimate]

2012-11-07 14:50 512384 ----a-w- c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\ASCTray.exe

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]

"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

.

R2 Freemake Improver;Freemake Improver;c:\programdata\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [x]

R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]

R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]

R3 MSICDSetup;MSICDSetup;E:\CDriver.sys [x]

R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]

R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [x]

R3 NTIOLib_1_0_C;NTIOLib_1_0_C;E:\NTIOLib.sys [x]

R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x]

R3 rpkmdrv;Rapoo Wireless Device Driver;c:\windows\system32\drivers\rpkmdrv.sys [x]

S0 iaStorA;iaStorA;c:\windows\system32\DRIVERS\iaStorA.sys [x]

S0 iaStorF;iaStorF;c:\windows\system32\DRIVERS\iaStorF.sys [x]

S0 iusb3hcs;Intel® USB 3.0 hostcontrollerswitch-stuurprogramma;c:\windows\system32\DRIVERS\iusb3hcs.sys [x]

S1 MpKsl3cdc7b24;MpKsl3cdc7b24;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\MpKsl3cdc7b24.sys [x]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technologie;c:\program files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [x]

S2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe [x]

S2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;c:\program files\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [x]

S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\Secunia\PSI\PSIA.exe [x]

S2 Secunia Update Agent;Secunia Update Agent;c:\program files\Secunia\PSI\sua.exe [x]

S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [x]

S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]

S3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS;c:\program files\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [x]

S3 iusb3hub;Intel® USB 3.0 hub-stuurprogramma;c:\windows\system32\DRIVERS\iusb3hub.sys [x]

S3 iusb3xhc;Intel® USB 3.0 uitbreidbare hostcontroller-stuurprogramma;c:\windows\system32\DRIVERS\iusb3xhc.sys [x]

S3 MEI;Intel® Management Engine Interface ;c:\windows\system32\DRIVERS\HECI.sys [x]

S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]

S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [x]

S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]

S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [x]

.

.

--- Andere Services/Drivers In Geheugen ---

.

*NewlyCreated* - MPKSL3CDC7B24

.

Inhoud van de 'Gedeelde Taken' map

.

2013-02-06 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-25 16:15]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://bestsearchonweb.com

IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000

TCP: DhcpNameServer = 195.130.131.2 195.130.130.130

FF - ProfilePath - c:\users\working account\AppData\Roaming\Mozilla\Firefox\Profiles\q3tu29b5.default\

FF - prefs.js: browser.search.selectedEngine - Yahoo

FF - prefs.js: browser.startup.homepage - hxxp://klit.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=BE&install_date=20130125&user_guid=103376AFA5BB418CAB089506926DD34E&machine_id=4066e2ab4d527db1e4ac05c5bf6f407c&browser=FF&os=win&os_version=6.1-x86-SP0

FF - prefs.js: keyword.URL - hxxp://klit.startnow.com/s/?src=addrbar&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=BE&install_date=20130125&user_guid=103376AFA5BB418CAB089506926DD34E&machine_id=4066e2ab4d527db1e4ac05c5bf6f407c&browser=FF&os=win&os_version=6.1-x86-SP0&q=

FF - ExtSQL: 2013-01-21 10:42; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\working account\AppData\Roaming\Mozilla\Firefox\Profiles\q3tu29b5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

FF - user.js: network.http.max-persistent-connections-per-server - 4

FF - user.js: nglayout.initialpaint.delay - 600

FF - user.js: content.notify.interval - 600000

FF - user.js: content.max.tokenizing.time - 1800000

FF - user.js: content.switch.threshold - 600000

FF - user.js: yahoo.ytff.general.dontshowhpoffer - true

.

- - - - ORPHANS VERWIJDERD - - - -

.

AddRemove-WinLiveSuite_Wave3 - c:\program files\Windows Live\Installer\wlarp.exe

.

.

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]

@="?????????????????? v1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]

@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]

@="?????????????????? v2"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]

@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Voltooingstijd: 2013-02-06 11:13:26

ComboFix-quarantined-files.txt 2013-02-06 10:13

.

Pre-Run: 101.445.636.096 bytes beschikbaar

Post-Run: 101.308.305.408 bytes beschikbaar

.

- - End Of File - - C498CA6CD2EBE3CFE54DC0F46045CA1A

Link naar reactie
Delen op andere sites

Open een kladblokbestand.

Kopieer en plak daarin de onderstaande vetgedrukte tekst.

Folder::

c:\program files\S.P.D

c:\programdata\IObit

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare Ultimate]

Sla dit bestand op je bureaublad op als CFScript.

Sleep CFScript.txt in de rode snelkoppeling van ComboFix.exe

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.

Wil je dit uitgebreid in beeld bekijken, klik dan hier voor de handleiding.

Post na herstart de inhoud van de Combofix.txt in je volgende bericht.

Link naar reactie
Delen op andere sites

ComboFix 13-02-03.03 - working account 06/02/2013 11:50:32.2.4 - x86

Microsoft Windows 7 Ultimate 6.1.7600.0.1252.32.1043.18.3468.1414 [GMT 1:00]

Gestart vanuit: c:\users\working account\Desktop\ComboFix.exe

gebruikte Opdracht switches :: c:\users\working account\Desktop\CFScript.txt

AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}

SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\program files\S.P.D

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\ASCTray.exe

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\datastate.dll

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\madbasic_.bpl

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\maddisAsm_.bpl

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\madexcept_.bpl

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\Monitor.exe

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\rtl120.bpl

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\taskmgr.dll

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\vcl120.bpl

c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\webres.dll

c:\programdata\IObit

c:\programdata\IObit\Advanced SystemCare V6\AntivirusConfig.ini

c:\programdata\IObit\Advanced SystemCare V6\AppAV.bk

c:\programdata\IObit\Advanced SystemCare V6\License-AV.dat

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2013-01-06 to 2013-02-06 ))))))))))))))))))))))))))))))

.

.

2013-02-06 10:53 . 2013-02-06 10:53 -------- d-----w- c:\users\Default\AppData\Local\temp

2013-02-06 08:57 . 2013-02-06 08:57 29904 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\MpKsl3cdc7b24.sys

2013-02-06 08:56 . 2013-02-06 08:56 60872 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\offreg.dll

2013-02-05 20:52 . 2013-01-07 19:57 6991832 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\mpengine.dll

2013-02-05 11:33 . 2009-12-30 10:21 27192 ----a-w- c:\windows\system32\drivers\revoflt.sys

2013-02-05 11:33 . 2013-02-05 11:33 -------- d-----w- c:\program files\VS Revo Group

2013-02-03 18:01 . 2007-04-12 13:19 129024 ----a-w- c:\windows\system32\AVERM.dll

2013-02-03 18:01 . 2006-09-26 12:57 28672 ----a-w- c:\windows\system32\AVEQT.dll

2013-02-03 18:01 . 2013-02-03 18:02 -------- d-----w- c:\program files\Ultra Video Joiner

2013-02-03 17:15 . 2013-02-03 17:16 -------- d-----w- c:\programdata\Freemake

2013-02-03 17:15 . 2013-02-03 17:15 -------- d-----w- c:\programdata\DivX

2013-02-03 17:15 . 2013-02-03 17:15 -------- d-----w- c:\program files\Freemake

2013-02-02 15:27 . 2013-02-02 15:27 -------- d-----w- c:\program files\Boilsoft

2013-02-02 12:07 . 2013-02-02 12:07 -------- d-----w- c:\program files\Trend Micro

2013-02-02 11:52 . 2013-02-02 11:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2013-02-02 11:52 . 2013-02-02 11:52 -------- d-----w- c:\programdata\Malwarebytes

2013-02-02 11:52 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys

2013-02-02 09:13 . 2013-02-02 09:13 -------- d-----w- c:\program files\Common Files\Intel Corporation

2013-02-01 15:25 . 2012-11-19 11:10 526392 ----a-w- c:\windows\system32\drivers\iaStorA.sys

2013-02-01 15:25 . 2012-11-19 11:10 25656 ----a-w- c:\windows\system32\drivers\iaStorF.sys

2013-02-01 12:42 . 2013-02-01 12:42 -------- d-----w- c:\windows\system32\wbem\en-US

2013-02-01 09:54 . 2012-12-16 14:25 295424 ----a-w- c:\windows\system32\atmfd.dll

2013-02-01 09:54 . 2012-12-16 14:25 34304 ----a-w- c:\windows\system32\atmlib.dll

2013-02-01 09:51 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll

2013-02-01 09:47 . 2013-02-01 09:47 -------- d-----w- c:\program files\Microsoft Silverlight

2013-02-01 09:26 . 2012-07-26 03:39 526952 ----a-w- c:\windows\system32\drivers\Wdf01000.sys

2013-02-01 09:26 . 2012-07-26 03:39 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys

2013-02-01 09:26 . 2012-07-26 02:46 9728 ----a-w- c:\windows\system32\Wdfres.dll

2013-02-01 09:25 . 2012-07-26 03:20 73216 ----a-w- c:\windows\system32\WUDFSvc.dll

2013-02-01 09:25 . 2012-07-26 03:20 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll

2013-02-01 09:25 . 2012-07-26 02:33 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys

2013-02-01 09:25 . 2012-07-26 02:32 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys

2013-02-01 09:25 . 2012-07-26 03:21 196608 ----a-w- c:\windows\system32\WUDFHost.exe

2013-02-01 09:25 . 2012-07-26 03:20 613888 ----a-w- c:\windows\system32\WUDFx.dll

2013-02-01 09:25 . 2012-07-26 03:20 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll

2013-02-01 09:24 . 2012-03-01 05:53 19312 ----a-w- c:\windows\system32\drivers\fs_rec.sys

2013-02-01 09:24 . 2012-03-01 05:45 158720 ----a-w- c:\windows\system32\imagehlp.dll

2013-02-01 09:24 . 2012-03-01 05:40 5120 ----a-w- c:\windows\system32\wmi.dll

2013-02-01 09:22 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe

2013-02-01 09:17 . 2009-10-10 02:57 12800 ----a-w- c:\windows\system32\drivers\sffp_sd.sys

2013-02-01 09:17 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys

2013-02-01 09:16 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll

2013-02-01 09:16 . 2010-08-31 04:32 954752 ----a-w- c:\windows\system32\mfc40.dll

2013-02-01 09:16 . 2010-08-31 04:32 954288 ----a-w- c:\windows\system32\mfc40u.dll

2013-02-01 09:16 . 2011-04-25 02:35 338944 ----a-w- c:\windows\system32\drivers\afd.sys

2013-02-01 09:14 . 2012-02-15 05:44 826368 ----a-w- c:\windows\system32\rdpcore.dll

2013-02-01 09:13 . 2010-12-23 05:28 850432 ----a-w- c:\windows\system32\sbe.dll

2013-02-01 09:13 . 2010-12-23 05:28 642048 ----a-w- c:\windows\system32\CPFilters.dll

2013-02-01 09:13 . 2010-12-23 05:24 199680 ----a-w- c:\windows\system32\mpg2splt.ax

2013-02-01 09:13 . 2009-12-19 09:02 12288 ----a-w- c:\windows\system32\tsbyuv.dll

2013-02-01 09:13 . 2009-12-19 09:02 22016 ----a-w- c:\windows\system32\msyuv.dll

2013-02-01 09:13 . 2009-12-19 09:02 31744 ----a-w- c:\windows\system32\msvidc32.dll

2013-02-01 09:13 . 2009-12-19 09:02 13312 ----a-w- c:\windows\system32\msrle32.dll

2013-02-01 09:13 . 2009-12-19 09:02 84480 ----a-w- c:\windows\system32\mciavi32.dll

2013-02-01 09:13 . 2009-12-19 09:02 50176 ----a-w- c:\windows\system32\iyuv_32.dll

2013-02-01 09:13 . 2009-12-19 09:02 91648 ----a-w- c:\windows\system32\avifil32.dll

2013-02-01 09:13 . 2011-10-26 04:28 1328640 ----a-w- c:\windows\system32\quartz.dll

2013-02-01 09:13 . 2011-10-26 04:28 514560 ----a-w- c:\windows\system32\qdvd.dll

2013-02-01 09:12 . 2010-12-21 05:38 204288 ----a-w- c:\windows\system32\upnp.dll

2013-02-01 09:12 . 2010-12-21 05:38 73728 ----a-w- c:\windows\system32\wscsvc.dll

2013-02-01 09:12 . 2010-12-21 05:38 51200 ----a-w- c:\windows\system32\wscapi.dll

2013-02-01 09:12 . 2010-12-21 05:38 350720 ----a-w- c:\windows\system32\winhttp.dll

2013-02-01 09:12 . 2010-12-21 05:38 204800 ----a-w- c:\windows\system32\WebClnt.dll

2013-02-01 09:12 . 2010-12-21 05:38 14336 ----a-w- c:\windows\system32\slwga.dll

2013-02-01 09:12 . 2010-12-21 05:34 80384 ----a-w- c:\windows\system32\davclnt.dll

2013-02-01 09:12 . 2010-10-16 04:41 101760 ----a-w- c:\windows\system32\consent.exe

2013-02-01 09:10 . 2010-08-27 05:46 168448 ----a-w- c:\windows\system32\srvsvc.dll

2013-02-01 08:31 . 2012-10-23 22:03 1801592 ----a-w- c:\windows\system32\WavesGUILib.dll

2013-02-01 08:30 . 2013-02-01 08:30 -------- d-----w- c:\program files\Common Files\InstallShield

2013-01-31 15:12 . 2012-10-22 13:22 15904 ----a-w- c:\windows\system32\drivers\IntelMEFWVer.dll

2013-01-31 15:12 . 2013-01-31 15:12 -------- d-----w- c:\program files\Common Files\postureAgent

2013-01-31 15:12 . 2012-07-12 18:56 55104 ----a-w- c:\windows\system32\drivers\HECI.sys

2013-01-31 15:11 . 2012-12-04 04:20 41984 ----a-w- c:\windows\system32\drivers\USB3Ver.dll

2013-01-31 15:09 . 2012-11-03 01:41 53248 ----a-w- c:\windows\system32\CSVer.dll

2013-01-31 15:08 . 2013-01-31 15:08 -------- d-----w- c:\program files\Microsoft Mouse and Keyboard Center

2013-01-31 14:53 . 2013-02-02 11:33 -------- d-----w- c:\programdata\DriverGenius

2013-01-31 14:51 . 2013-01-31 14:51 -------- d-----w- c:\program files\Driver-Soft

2013-01-27 13:29 . 2013-02-03 09:05 -------- d-----w- c:\program files\Mozilla Maintenance Service

2013-01-26 17:38 . 2013-01-07 19:57 6991832 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2013-01-26 15:41 . 2013-01-26 15:41 -------- d-----w- c:\program files\Speccy

2013-01-26 13:26 . 2013-01-26 13:26 -------- d-----w- c:\program files\Rapoo

2013-01-26 13:26 . 2013-01-26 13:26 1353585 ----a-w- c:\windows\unins000.exe

2013-01-26 13:26 . 2012-08-16 10:15 18048 ----a-w- c:\windows\system32\drivers\rpkmdrv.sys

2013-01-26 09:41 . 2013-01-26 09:41 -------- d-----w- c:\program files\Common Files\Adobe

2013-01-25 21:00 . 2013-01-25 21:00 -------- d-----w- C:\MSI

2013-01-25 20:48 . 2013-01-25 15:57 -------- d-----w- C:\Recovery

2013-01-25 20:28 . 2013-01-25 20:28 -------- d--h--w- c:\programdata\Common Files

2013-01-25 20:28 . 2012-11-29 15:31 31584 ----a-w- c:\windows\system32\TURegOpt.exe

2013-01-25 20:28 . 2012-11-29 15:31 21344 ----a-w- c:\windows\system32\authuitu.dll

2013-01-25 20:28 . 2013-01-25 20:28 -------- d-----w- c:\program files\TuneUp Utilities 2013

2013-01-25 20:28 . 2013-01-25 20:28 -------- d-----w- c:\programdata\TuneUp Software

2013-01-25 20:27 . 2013-01-25 20:27 -------- d-----w- c:\program files\DAMN NFO Viewer

2013-01-25 20:24 . 2013-02-01 09:20 -------- d-----w- c:\program files\Microsoft Works

2013-01-25 20:24 . 2013-01-25 20:24 -------- d-----w- c:\windows\PCHEALTH

2013-01-25 20:23 . 2013-01-25 20:23 -------- d-----w- c:\program files\Microsoft Visual Studio 8

2013-01-25 20:23 . 2013-02-01 09:52 -------- d-----w- c:\programdata\Microsoft Help

2013-01-25 20:23 . 2013-01-25 20:23 -------- d-----r- C:\MSOCache

2013-01-25 20:21 . 2012-06-09 18:21 178688 ----a-w- c:\windows\system32\unrar.dll

2013-01-25 20:21 . 2013-01-25 20:21 -------- d-----w- c:\program files\K-Lite Codec Pack

2013-01-25 20:19 . 2013-01-25 20:19 -------- d-----w- c:\program files\IrfanView

2013-01-25 18:43 . 2013-01-25 18:43 -------- d-----w- c:\program files\VideoLAN

2013-01-25 18:42 . 2013-01-25 18:42 -------- d-----w- c:\program files\Elaborate Bytes

2013-01-25 18:42 . 2013-01-25 18:42 -------- d-----w- c:\program files\GRETECH

2013-01-25 16:22 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe

2013-01-25 16:22 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll

2013-01-25 16:22 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll

2013-01-25 16:22 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll

2013-01-25 16:22 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll

2013-01-25 16:22 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll

2013-01-25 16:22 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll

2013-01-25 16:22 . 2012-06-02 14:19 171904 ----a-w- c:\windows\system32\wuwebv.dll

2013-01-25 16:22 . 2012-06-02 14:12 33792 ----a-w- c:\windows\system32\wuapp.exe

2013-01-25 16:21 . 2013-01-25 16:21 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll

2013-01-25 16:15 . 2013-01-25 16:15 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2013-01-25 16:15 . 2013-01-25 16:15 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2013-01-25 16:15 . 2013-01-25 16:15 -------- d-----w- c:\windows\system32\Macromed

2013-01-25 16:13 . 2013-01-31 20:47 -------- d-----w- c:\program files\Opera

2013-01-25 16:13 . 2013-01-25 16:13 740840 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{ED40DB2E-4701-4A2E-B2F8-9C7011BB7129}\gapaengine.dll

2013-01-25 16:13 . 2013-01-30 10:53 232336 ------w- c:\windows\system32\MpSigStub.exe

2013-01-25 16:12 . 2013-01-25 16:12 -------- d-----w- c:\program files\Secunia

2013-01-25 16:12 . 2013-02-04 13:15 -------- d-sh--w- c:\windows\Installer

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-12-19 00:07 . 2012-12-14 00:23 277640 ----a-w- c:\windows\system32\IntelCpHeciSvc.exe

2012-12-19 00:07 . 2012-12-14 00:23 146056 ----a-w- c:\windows\system32\igfxtray.exe

2012-12-19 00:07 . 2012-12-14 00:23 272008 ----a-w- c:\windows\system32\igfxsrvc.exe

2012-12-19 00:07 . 2012-12-14 00:23 199304 ----a-w- c:\windows\system32\igfxext.exe

2012-12-19 00:07 . 2012-12-14 00:23 190088 ----a-w- c:\windows\system32\igfxpers.exe

2012-12-19 00:07 . 2012-12-14 00:23 181384 ----a-w- c:\windows\system32\hkcmd.exe

2012-12-19 00:07 . 2012-12-14 00:23 6232200 ----a-w- c:\windows\system32\GfxUI.exe

2012-12-14 00:22 . 2012-12-14 00:22 102400 ----a-w- c:\windows\system32\igfxCoIn_v2932.dll

2012-12-13 00:41 . 2012-12-13 00:41 11049472 ----a-w- c:\windows\system32\igdumd32.dll

2012-12-13 00:41 . 2012-12-13 00:41 3759616 ----a-w- c:\windows\system32\drivers\igdkmd32.sys

2012-12-13 00:41 . 2012-12-13 00:41 64512 ----a-w- c:\windows\system32\igdde32.dll

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrtrk.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrsve.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrslv.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435200 ----a-w- c:\windows\system32\igfxrtha.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437248 ----a-w- c:\windows\system32\igfxrrus.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437248 ----a-w- c:\windows\system32\igfxrrom.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrsky.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrptg.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrptb.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrplk.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrnld.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435712 ----a-w- c:\windows\system32\igfxrnor.lrc

2012-12-13 00:41 . 2012-12-13 00:41 430080 ----a-w- c:\windows\system32\igfxrjpn.lrc

2012-12-13 00:41 . 2012-12-13 00:41 429056 ----a-w- c:\windows\system32\igfxrkor.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437760 ----a-w- c:\windows\system32\igfxrfra.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrita.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrhrv.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrhun.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrfin.lrc

2012-12-13 00:41 . 2012-12-13 00:41 433664 ----a-w- c:\windows\system32\igfxrheb.lrc

2012-12-13 00:41 . 2012-12-13 00:41 438272 ----a-w- c:\windows\system32\igfxrell.lrc

2012-12-13 00:41 . 2012-12-13 00:41 437760 ----a-w- c:\windows\system32\igfxresn.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436736 ----a-w- c:\windows\system32\igfxrdeu.lrc

2012-12-13 00:41 . 2012-12-13 00:41 435200 ----a-w- c:\windows\system32\igfxrdan.lrc

2012-12-13 00:41 . 2012-12-13 00:41 436224 ----a-w- c:\windows\system32\igfxrcsy.lrc

2012-12-13 00:41 . 2012-12-13 00:41 433664 ----a-w- c:\windows\system32\igfxrara.lrc

2012-12-13 00:41 . 2012-12-13 00:41 427008 ----a-w- c:\windows\system32\igfxrcht.lrc

2012-12-13 00:41 . 2012-12-13 00:41 426496 ----a-w- c:\windows\system32\igfxrchs.lrc

2012-12-13 00:40 . 2012-12-13 00:40 286720 ----a-w- c:\windows\system32\igfxTMM.dll

2012-12-13 00:40 . 2012-12-13 00:40 25088 ----a-w- c:\windows\system32\igfxexps.dll

2012-12-13 00:40 . 2012-12-13 00:40 120320 ----a-w- c:\windows\system32\igfxcpl.cpl

2012-12-13 00:40 . 2012-12-13 00:40 130048 ----a-w- c:\windows\system32\igfxdo.dll

2012-12-13 00:40 . 2012-12-13 00:40 175616 ----a-w- c:\windows\system32\gfxSrvc.dll

2012-12-13 00:40 . 2012-12-13 00:40 9728 ----a-w- c:\windows\system32\IGFXDEVLib.dll

2012-12-13 00:39 . 2012-12-13 00:39 10812416 ----a-w- c:\windows\system32\ig4icd32.dll

2012-12-13 00:39 . 2012-12-13 00:39 284160 ----a-w- c:\windows\system32\igfxrenu.lrc

2012-12-13 00:38 . 2012-12-13 00:38 640512 ----a-w- c:\windows\system32\igfxcmrt32.dll

2012-12-13 00:38 . 2012-12-13 00:38 459264 ----a-w- c:\windows\system32\igfx11cmrt32.dll

2012-12-13 00:38 . 2012-12-13 00:38 3121152 ----a-w- c:\windows\system32\igfxcmjit32.dll

2013-02-02 09:26 . 2013-02-02 09:26 262552 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 997408]

"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2009-05-26 85160]

"LedStatus"="c:\program files\Rapoo\RpWireless\LedStatus.exe" [2013-01-05 1709736]

"Launch"="c:\program files\Rapoo\RpWireless\Launch.exe" [2013-01-05 411816]

"IntelliType Pro"="c:\program files\Microsoft Mouse and Keyboard Center\itype.exe" [2012-11-02 1093232]

"IntelliPoint"="c:\program files\Microsoft Mouse and Keyboard Center\ipoint.exe" [2012-11-02 1668720]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-19 146056]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-12-19 181384]

"Persistence"="c:\windows\system32\igfxpers.exe" [2012-12-19 190088]

"USB3MON"="c:\program files\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-12-04 291648]

"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI.exe" [2012-12-26 6106336]

"IAStorIcon"="c:\program files\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe" [2012-11-30 56128]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2012-11-26 573024]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 0 (0x0)

"ConsentPromptBehaviorUser"= 0 (0x0)

"EnableLUA"= 0 (0x0)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"aux"=wdmaud.drv

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]

"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

.

R2 Freemake Improver;Freemake Improver;c:\programdata\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [x]

R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]

R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]

R3 MSICDSetup;MSICDSetup;E:\CDriver.sys [x]

R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]

R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [x]

R3 NTIOLib_1_0_C;NTIOLib_1_0_C;E:\NTIOLib.sys [x]

R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x]

R3 rpkmdrv;Rapoo Wireless Device Driver;c:\windows\system32\drivers\rpkmdrv.sys [x]

S0 iaStorA;iaStorA;c:\windows\system32\DRIVERS\iaStorA.sys [x]

S0 iaStorF;iaStorF;c:\windows\system32\DRIVERS\iaStorF.sys [x]

S0 iusb3hcs;Intel® USB 3.0 hostcontrollerswitch-stuurprogramma;c:\windows\system32\DRIVERS\iusb3hcs.sys [x]

S1 MpKsl3cdc7b24;MpKsl3cdc7b24;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23EA90DA-9D13-47BF-93C5-07815F97930D}\MpKsl3cdc7b24.sys [x]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technologie;c:\program files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [x]

S2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe [x]

S2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;c:\program files\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [x]

S2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\Secunia\PSI\PSIA.exe [x]

S2 Secunia Update Agent;Secunia Update Agent;c:\program files\Secunia\PSI\sua.exe [x]

S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe [x]

S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]

S3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS;c:\program files\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [x]

S3 iusb3hub;Intel® USB 3.0 hub-stuurprogramma;c:\windows\system32\DRIVERS\iusb3hub.sys [x]

S3 iusb3xhc;Intel® USB 3.0 uitbreidbare hostcontroller-stuurprogramma;c:\windows\system32\DRIVERS\iusb3xhc.sys [x]

S3 MEI;Intel® Management Engine Interface ;c:\windows\system32\DRIVERS\HECI.sys [x]

S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]

S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [x]

S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]

S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys [x]

.

.

--- Andere Services/Drivers In Geheugen ---

.

*NewlyCreated* - MPKSL3CDC7B24

.

Inhoud van de 'Gedeelde Taken' map

.

2013-02-06 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-25 16:15]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://bestsearchonweb.com

IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000

TCP: DhcpNameServer = 195.130.131.2 195.130.130.130

FF - ProfilePath - c:\users\working account\AppData\Roaming\Mozilla\Firefox\Profiles\q3tu29b5.default\

FF - prefs.js: browser.search.selectedEngine - Yahoo

FF - prefs.js: browser.startup.homepage - hxxp://klit.startnow.com/?src=startpage&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=BE&install_date=20130125&user_guid=103376AFA5BB418CAB089506926DD34E&machine_id=4066e2ab4d527db1e4ac05c5bf6f407c&browser=FF&os=win&os_version=6.1-x86-SP0

FF - prefs.js: keyword.URL - hxxp://klit.startnow.com/s/?src=addrbar&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=BE&install_date=20130125&user_guid=103376AFA5BB418CAB089506926DD34E&machine_id=4066e2ab4d527db1e4ac05c5bf6f407c&browser=FF&os=win&os_version=6.1-x86-SP0&q=

FF - ExtSQL: 2013-01-21 10:42; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\working account\AppData\Roaming\Mozilla\Firefox\Profiles\q3tu29b5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

FF - user.js: network.http.max-persistent-connections-per-server - 4

FF - user.js: nglayout.initialpaint.delay - 600

FF - user.js: content.notify.interval - 600000

FF - user.js: content.max.tokenizing.time - 1800000

FF - user.js: content.switch.threshold - 600000

FF - user.js: yahoo.ytff.general.dontshowhpoffer - true

.

- - - - ORPHANS VERWIJDERD - - - -

.

MSConfigStartUp-Advanced SystemCare Ultimate - c:\program files\S.P.D\Advanced SystemCare Ultimate v6.0.8.289 Premium\ASCTray.exe

.

.

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]

@="?????????????????? v1"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]

@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]

@="?????????????????? v2"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]

@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Voltooingstijd: 2013-02-06 11:54:18

ComboFix-quarantined-files.txt 2013-02-06 10:54

ComboFix2.txt 2013-02-06 10:13

.

Pre-Run: 101.149.859.840 bytes beschikbaar

Post-Run: 101.169.016.832 bytes beschikbaar

.

- - End Of File - - C997F461AECA86EF648D305B437BE56B

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.