Ga naar inhoud

Aanbevolen berichten

hier is mijn logje

Logfile of random's system information tool 1.10 (written by random/random)

Run by gebruiker at 2014-07-08 19:54:34

Microsoft Windows 7 Professional Service Pack 1

System drive C: has 241 GB (80%) free of 300 GB

Total RAM: 2013 MB (23% free)

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 19:54:55, on 8-7-2014

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v11.0 (11.00.9600.17126)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\taskhost.exe

C:\Windows\system32\taskeng.exe

C:\Program Files\Advanced System Protector\AdvancedSystemProtector.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe

C:\Program Files\Microsoft Security Client\msseces.exe

C:\Program Files\Logitech\SetPointP\SetPoint.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE

C:\Program Files\AVAST Software\Avast\AvastUI.exe

C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\iFunbox 2014\iFunBox2014.exe

C:\PROGRA~1\SearchProtect\SearchProtect\bin\cltmng.exe

C:\PROGRA~1\SearchProtect\UI\bin\cltmngui.exe

C:\Program Files\Remote Mouse\RemoteMouse.exe

C:\Users\gebruiker\AppData\Local\Smartbar\Application\Smartbar.exe

C:\Program Files\MyPC Backup\MyPC Backup.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Program Files\NetCrawl\bin\NetCrawl.BrowserAdapter.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\focusbase\bin\focusbase.BrowserAdapter.exe

C:\Users\gebruiker\Desktop\Downloads\RSIT.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\trend micro\gebruiker.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = V9

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3ZQQWk2ONUlq8aIv7QtZL0342gPqMeT-ifh-w3yBOjeXEku0YawlE84xTh3Ihf-AVwDjnvqXhyZsIvwe1lJ114G9LTof5uYhvq_iMMAzF8OQWg6VcxJPcafDnuheMxvO_3NSuXsxbbf7LT1MgvV9e7YioEYjsjx4,&q={searchTerms}

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3ZQQWk2ONUlq8aIv7QtZL0342gPqMeT-ifh-w3yBOjeXEku0YawlE84xTh3Ihf-AVwDjnvqXhyZsIvwe1lJ114G9LTof5uYhvq_iMMAzF8OQWg6VcxJPcafDnuheMxvO_3NSuXsxbbf7LT1MgvV9e7YioEYjsjx4,&q={searchTerms}

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Zoeken

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = V9

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://mysearch.sweetpacks.com/?src=10&st=12&crg=3.5000006.10059&barid={ED759CB8-E312-11E2-A154-F4CE46F18F0F}

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3ZQQWk2ONUlq8aIv7QtZL0342gPqMeT-ifh-w3yBOjeXEku0YawlE84xTh3Ihf-AVwDjnvqXhyZsIvwe1lJ114G9LTof5uYhvq_iMMAzF8OQWg6VcxJPcafDnuheMxvO_3NSuXsxbbf7LT1MgvV9e7YioEYjsjx4,&q={searchTerms}

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3ZQQWk2ONUlq8aIv7QtZL0342gPqMeT-ifh-w3yBOjeXEku0YawlE84xTh3Ihf-AVwDjnvqXhyZsIvwe1lJ114G9LTof5uYhvq_iMMAzF8OQWg6VcxJPcafDnuheMxvO_3NSuXsxbbf7LT1MgvV9e7YioEYjsjx4,&q={searchTerms}

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:14406;https=127.0.0.1:14406

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O2 - BHO: Shopping Helper SmartbarEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - mscoree.dll (file missing)

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll

O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

O2 - BHO: BlockAndSurf - {EF8240F9-F7B6-10BC-CBB9-766E14606D4A} - C:\Program Files\v01BlockAndSurf\174.dll

O3 - Toolbar: Shopping Helper Smartbar - {ae07101b-46d4-4a98-af68-0333ea26e113} - mscoree.dll (file missing)

O4 - HKLM\..\Run: [PDF Complete] C:\Program Files\PDF Complete\pdfsty.exe

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s

O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe

O4 - HKLM\..\Run: [bCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices

O4 - HKLM\..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [AnyProtect Scanner] "C:\Program Files\AnyProtectEx\AnyProtect.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui

O4 - HKCU\..\Run: [HPADVISOR] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [iFunBox Price Watch] C:\Program Files\iFunbox 2014\iFunBox2014.exe /tray

O4 - HKCU\..\Run: [w1Synt] C:\Windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe

O4 - HKCU\..\Run: [Remote Mouse] C:\Program Files\Remote Mouse\RemoteMouse.exe

O4 - HKCU\..\Run: [browser Infrastructure Helper] C:\Users\gebruiker\AppData\Local\Smartbar\Application\Smartbar.exe startup

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\RunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')

O4 - Startup: MyPC Backup.lnk = C:\Program Files\MyPC Backup\MyPC Backup.exe

O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll

O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{4C146264-6CF7-4575-B862-82BFC1DE1F43}: NameServer = 8.8.8.8,8.8.4.4

O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

O20 - AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll c:\progra~2\browse~1\23796~1.11\{16cdf~1\browse~1.dll

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files\MyPC Backup\BackupStack.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Search Protect Service (CltMngSvc) - Client Connect LTD - C:\PROGRA~1\SearchProtect\Main\bin\CltMngSvc.exe

O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe

O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

O23 - Service: LPT System Updater Service (LPTSystemUpdater) - Unknown owner - C:\Program Files\LPT\srpts.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files\PDF Complete\pdfsvc.exe

O23 - Service: Update focusbase - Unknown owner - C:\Program Files\focusbase\updatefocusbase.exe

O23 - Service: Update NetCrawl - Unknown owner - C:\Program Files\NetCrawl\updateNetCrawl.exe

O23 - Service: Util focusbase - Unknown owner - C:\Program Files\focusbase\bin\utilfocusbase.exe

O23 - Service: Util NetCrawl - Unknown owner - C:\Program Files\NetCrawl\bin\utilNetCrawl.exe

O23 - Service: Service Component of VO (VOsrv) - Unknown owner - C:\Users\gebruiker\AppData\Roaming\VOPackage\VOsrv.exe

--

End of file - 11885 bytes

======Scheduled tasks folder======

C:\Windows\tasks\APSnotifierPP1.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier2 B

C:\Windows\tasks\APSnotifierPP2.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 4

C:\Windows\tasks\APSnotifierPP3.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 6

C:\Windows\tasks\BlockAndSurf Update.job - C:\Program Files\v01BlockAndSurf\v01BlockAndSurfm57.exe /update

C:\Windows\tasks\BlockAndSurf_wd.job - C:\Program Files\v01BlockAndSurf\wdBlockAndSurfR.exe

C:\Windows\tasks\DSite.job - C:\Users\GEBRUI~1\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE /Check

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c

C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

C:\Windows\tasks\RegClean Pro_DEFAULT.job - C:\Program Files\RegClean Pro\RegCleanPro.exe -default

C:\Windows\tasks\RegClean Pro_UPDATES.job - C:\Program Files\RegClean Pro\RegCleanPro.exe -updatecheck

=========Mozilla firefox=========

ProfilePath - C:\Users\gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\7nrxjhmp.default

prefs.js - "browser.search.suggest.enabled" - false

prefs.js - "browser.search.useDBForOrder" - true

prefs.js - "browser.startup.homepage" - "google.nl"

prefs.js - "keyword.URL" - "http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3ZQQWk2ONUlq8aIv7QtZL0342gPqMeT-ifh-w3yBOjeXEku0YawlE84xTh3Ihf-AVwDjnvqXhyZsIvwe1lJ114G9LTof5uYhvq_iMMAzF8OQWg6VcxJPcafDnuheMxvO_3NSuXsxbbf7LT1MgvV9e7YioEYjsjx4, &q="

"{336D0C35-8A85-403a-B9D2-65C292C39087}"=C:\Program Files\IB Updater\Firefox

"{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}"=C:\Program Files\IB Updater\Firefox

"{DEDAF650-12B8-48f5-A843-BBA100716106}"=C:\Program Files\Updater By Sweetpacks\Firefox

"{F003DA68-8256-4b37-A6C4-350FA04494DF}"=C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]

"Description"=Adobe® Flash® Player 11.9.900.152 Plugin

"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]

"Description"=iTunes Detector Plug-in

"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]

"Description"=

"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]

"Description"=Google Earth in your browser

"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.7.2]

"Description"=Java™ Deployment Toolkit

"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2]

"Description"=Oracle® Next Generation Java™ Plug-In

"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]

"Description"=

"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

"Description"=Ag Player Plugin

"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]

"Description"=Office Authorization plug-in for NPAPI browsers

"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]

"Description"=Microsoft SharePoint Plug-in for Firefox

"Path"=C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]

"Description"=Google Update

"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]

"Description"=Google Update

"Path"=C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

C:\Users\gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\7nrxjhmp.default\extensions\

nl-NL@dictionaries.addons.mozilla.org

sitematchersitesrc@sitematchersitesrc.com

{988dba22-f2c2-61d6-618a-b2deabf5e4b4}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}]

Shopping Helper SmartbarEngine - C:\Windows\system32\mscoree.dll [2010-11-05 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-25 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]

avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-07-07 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]

Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-25 155384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF8240F9-F7B6-10BC-CBB9-766E14606D4A}]

BlockAndSurf - C:\Program Files\v01BlockAndSurf\174.dll [2014-07-04 190976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{ae07101b-46d4-4a98-af68-0333ea26e113} - Shopping Helper Smartbar - C:\Windows\system32\mscoree.dll [2010-11-05 297808]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"PDF Complete"=C:\Program Files\PDF Complete\pdfsty.exe [2009-06-18 563736]

"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-08-25 136216]

"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-08-25 171032]

"Persistence"=C:\Windows\system32\igfxpers.exe [2010-08-25 170520]

"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-06-17 85160]

"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2014-03-11 951576]

"mobilegeni daemon"=C:\Program Files\Mobogenie\DaemonProcess.exe []

"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 2303256]

"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2014-05-26 152392]

"AnyProtect Scanner"=C:\Program Files\AnyProtectEx\AnyProtect.exe [2014-07-04 16957952]

"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-07 4086432]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"HPADVISOR"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2009-09-29 1685048]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]

"iFunBox Price Watch"=C:\Program Files\iFunbox 2014\iFunBox2014.exe [2013-11-26 7748096]

"w1Synt"=C:\Windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe [2010-11-05 32768]

"Remote Mouse"=C:\Program Files\Remote Mouse\RemoteMouse.exe [2014-04-28 1238528]

"Browser Infrastructure Helper"=C:\Users\gebruiker\AppData\Local\Smartbar\Application\Smartbar.exe [2014-06-16 29728]

C:\Users\gebruiker\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

MyPC Backup.lnk - C:\Program Files\MyPC Backup\MyPC Backup.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"="C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll c:\progra~2\browse~1\23796~1.11\{16cdf~1\browse~1.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

C:\Windows\system32\igfxdev.dll [2010-08-25 228864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]

c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25 64280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]

"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"ConsentPromptBehaviorAdmin"=5

"ConsentPromptBehaviorUser"=3

"EnableUIADesktopToggle"=0

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

"vidc.mrle"=msrle32.dll

"vidc.msvc"=msvidc32.dll

"msacm.imaadpcm"=imaadp32.acm

"msacm.msg711"=msg711.acm

"msacm.msgsm610"=msgsm32.acm

"msacm.msadpcm"=msadp32.acm

"midimapper"=midimap.dll

"wavemapper"=msacm32.drv

"vidc.uyvy"=msyuv.dll

"vidc.yuy2"=msyuv.dll

"vidc.yvyu"=msyuv.dll

"vidc.iyuv"=iyuv_32.dll

"vidc.i420"=iyuv_32.dll

"vidc.yvu9"=tsbyuv.dll

"msacm.l3acm"=C:\Windows\System32\l3codeca.acm

"vidc.cvid"=iccvid.dll

"wave"=wdmaud.drv

"midi"=wdmaud.drv

"mixer"=wdmaud.drv

"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-07-08 19:54:35 ----D---- C:\Program Files\trend micro

2014-07-08 19:54:34 ----D---- C:\rsit

2014-07-07 22:57:45 ----D---- C:\Users\gebruiker\AppData\Roaming\AVAST Software

2014-07-07 17:31:27 ----A---- C:\Windows\system32\drivers\aswVmm.sys

2014-07-07 17:31:27 ----A---- C:\Windows\system32\drivers\aswStm.sys

2014-07-07 17:31:27 ----A---- C:\Windows\system32\drivers\aswsp.sys

2014-07-07 17:31:27 ----A---- C:\Windows\system32\drivers\aswSnx.sys

2014-07-07 17:31:27 ----A---- C:\Windows\system32\drivers\aswRvrt.sys

2014-07-07 17:31:26 ----A---- C:\Windows\system32\drivers\aswRdr2.sys

2014-07-07 17:31:26 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys

2014-07-07 17:31:26 ----A---- C:\Windows\system32\drivers\aswHwid.sys

2014-07-07 17:31:25 ----A---- C:\Windows\system32\aswBoot.exe

2014-07-07 17:31:18 ----A---- C:\Windows\avastSS.scr

2014-07-07 17:28:21 ----D---- C:\Program Files\AVAST Software

2014-07-07 17:27:12 ----D---- C:\ProgramData\AVAST Software

2014-07-06 10:31:18 ----D---- C:\Program Files\QuickTime

2014-07-04 21:53:35 ----D---- C:\Program Files\v01BlockAndSurf

2014-07-04 17:11:47 ----A---- C:\Windows\system32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w.sys

2014-07-04 16:53:48 ----A---- C:\Windows\system32\drivers\{2b929fe1-284b-4766-afb9-19b0915b99b0}w.sys

2014-07-04 16:12:19 ----D---- C:\Users\gebruiker\AppData\Roaming\PC Speed Maximizer

2014-07-04 16:07:25 ----D---- C:\Program Files\NetCrawl

2014-07-04 16:07:02 ----D---- C:\Program Files\SiteLookup

2014-07-04 16:06:58 ----D---- C:\Users\gebruiker\AppData\Roaming\SimilarAddon

2014-07-04 16:06:58 ----D---- C:\Program Files\AnyProtectEx

2014-07-04 16:06:56 ----D---- C:\Program Files\PC Speed Maximizer

2014-07-04 15:53:45 ----D---- C:\ProgramData\Systweak

2014-07-04 15:53:35 ----D---- C:\Program Files\Advanced System Protector

2014-07-04 15:53:35 ----A---- C:\Windows\system32\sasnative32.exe

2014-07-04 15:53:32 ----D---- C:\Users\gebruiker\AppData\Roaming\VOPackage

2014-07-04 15:52:44 ----D---- C:\Program Files\RegClean Pro

2014-07-04 15:52:21 ----D---- C:\Program Files\focusbase

2014-07-04 15:51:16 ----D---- C:\Program Files\SearchProtect

2014-07-04 15:49:44 ----D---- C:\Program Files\LPT

2014-06-20 14:31:35 ----D---- C:\Program Files\Mozilla Firefox

2014-06-19 18:03:45 ----D---- C:\Program Files\iPod

2014-06-19 18:03:43 ----D---- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1

2014-06-19 18:03:43 ----D---- C:\Program Files\iTunes

2014-06-11 08:30:36 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll

2014-06-11 08:30:36 ----A---- C:\Windows\system32\ieetwproxystub.dll

2014-06-11 08:30:36 ----A---- C:\Windows\system32\ieetwcollector.exe

2014-06-11 08:30:35 ----A---- C:\Windows\system32\urlmon.dll

2014-06-11 08:30:35 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe

2014-06-11 08:30:35 ----A---- C:\Windows\system32\jsproxy.dll

2014-06-11 08:30:35 ----A---- C:\Windows\system32\ieUnatt.exe

2014-06-11 08:30:34 ----A---- C:\Windows\system32\msfeeds.dll

2014-06-11 08:30:34 ----A---- C:\Windows\system32\iernonce.dll

2014-06-11 08:30:34 ----A---- C:\Windows\system32\dxtmsft.dll

2014-06-11 08:30:33 ----A---- C:\Windows\system32\msrating.dll

2014-06-11 08:30:33 ----A---- C:\Windows\system32\ie4uinit.exe

2014-06-11 08:30:32 ----A---- C:\Windows\system32\wininet.dll

2014-06-11 08:30:32 ----A---- C:\Windows\system32\iesetup.dll

2014-06-11 08:30:32 ----A---- C:\Windows\system32\ieetwcollectorres.dll

2014-06-11 08:30:32 ----A---- C:\Windows\system32\ieapfltr.dll

2014-06-11 08:30:31 ----A---- C:\Windows\system32\dxtrans.dll

2014-06-11 08:30:30 ----A---- C:\Windows\system32\ieui.dll

2014-06-11 08:30:30 ----A---- C:\Windows\system32\ieframe.dll

2014-06-11 08:30:29 ----A---- C:\Windows\system32\mshtmlmedia.dll

2014-06-11 08:30:29 ----A---- C:\Windows\system32\mshtmled.dll

2014-06-11 08:30:29 ----A---- C:\Windows\system32\iertutil.dll

2014-06-11 08:30:27 ----A---- C:\Windows\system32\mshtml.dll

2014-06-11 08:30:27 ----A---- C:\Windows\system32\jscript9diag.dll

2014-06-11 08:30:26 ----A---- C:\Windows\system32\vbscript.dll

2014-06-11 08:30:25 ----A---- C:\Windows\system32\jscript9.dll

2014-06-11 08:30:08 ----A---- C:\Windows\system32\msxml6.dll

2014-06-11 08:30:07 ----A---- C:\Windows\system32\msxml6r.dll

2014-06-11 08:30:07 ----A---- C:\Windows\system32\msxml3r.dll

2014-06-11 08:30:07 ----A---- C:\Windows\system32\msxml3.dll

2014-06-11 08:30:07 ----A---- C:\Windows\system32\drivers\tcpip.sys

2014-06-11 08:30:06 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS

2014-06-11 08:30:06 ----A---- C:\Windows\system32\aepdu.dll

2014-06-11 08:30:05 ----A---- C:\Windows\system32\aeinv.dll

2014-06-11 08:30:04 ----A---- C:\Windows\system32\usp10.dll

======List of files/folders modified in the last 1 month======

2014-07-08 19:54:54 ----D---- C:\Windows\Temp

2014-07-08 19:54:48 ----D---- C:\Windows\Prefetch

2014-07-08 19:54:35 ----RD---- C:\Program Files

2014-07-08 19:49:49 ----D---- C:\Windows\system32\config

2014-07-08 19:42:40 ----A---- C:\Windows\win.ini

2014-07-08 19:40:17 ----D---- C:\Windows\system32\Tasks

2014-07-08 09:19:52 ----D---- C:\Windows\system32\drivers

2014-07-08 00:12:45 ----SHD---- C:\System Volume Information

2014-07-07 23:28:00 ----D---- C:\Users\gebruiker\AppData\Roaming\uX4ZeizY

2014-07-07 23:27:57 ----D---- C:\Users\gebruiker\AppData\Roaming\oRYU7ctT

2014-07-07 23:27:56 ----D---- C:\Users\gebruiker\AppData\Roaming\kNUP36pO

2014-07-07 23:09:43 ----D---- C:\Program Files\Mobogenie

2014-07-07 23:01:23 ----D---- C:\Users\gebruiker\AppData\Roaming\DataWork

2014-07-07 22:59:56 ----D---- C:\Users\gebruiker\AppData\Roaming\Sitely

2014-07-07 17:34:54 ----D---- C:\Users\gebruiker\AppData\Roaming\tor

2014-07-07 17:33:09 ----D---- C:\Program Files\Google

2014-07-07 17:31:25 ----D---- C:\Windows\winsxs

2014-07-07 17:31:25 ----D---- C:\Windows\System32

2014-07-07 17:31:24 ----D---- C:\Windows

2014-07-07 17:27:12 ----HD---- C:\ProgramData

2014-07-07 17:25:38 ----D---- C:\Users\gebruiker\AppData\Roaming\Java

2014-07-07 17:20:38 ----D---- C:\Windows\system32\wdi

2014-07-06 10:32:05 ----SHD---- C:\Windows\Installer

2014-07-06 10:31:57 ----D---- C:\Program Files\Internet Explorer

2014-07-06 10:29:24 ----D---- C:\Program Files\Common Files\Apple

2014-07-06 10:24:18 ----D---- C:\Program Files\Mozilla Maintenance Service

2014-07-04 21:53:36 ----D---- C:\Windows\Tasks

2014-07-04 21:53:30 ----HD---- C:\Windows\system32\GroupPolicy

2014-07-04 16:19:52 ----D---- C:\Users\gebruiker\AppData\Roaming\mPWR59rQ

2014-07-04 15:53:56 ----D---- C:\Users\gebruiker\AppData\Roaming\Systweak

2014-07-04 15:53:16 ----D---- C:\Program Files\MyPC Backup

2014-07-04 15:49:03 ----RSD---- C:\Windows\assembly

2014-06-20 14:33:08 ----D---- C:\Program Files\Mozilla Firefox.bak

2014-06-19 18:22:07 ----SD---- C:\Users\gebruiker\AppData\Roaming\Microsoft

2014-06-15 18:30:58 ----D---- C:\Windows\system32\DriverStore

2014-06-15 18:11:28 ----D---- C:\Windows\rescache

2014-06-14 12:35:24 ----D---- C:\Program Files\Common Files\Logishrd

2014-06-14 12:34:31 ----D---- C:\Windows\inf

2014-06-14 12:34:29 ----D---- C:\Windows\system32\catroot

2014-06-14 12:34:22 ----D---- C:\Windows\system32\catroot2

2014-06-14 12:33:45 ----D---- C:\ProgramData\Logishrd

2014-06-14 12:12:01 ----D---- C:\Windows\AutoKMS

2014-06-12 03:21:04 ----SD---- C:\Windows\system32\CompatTel

2014-06-12 03:21:04 ----D---- C:\Windows\system32\en-US

2014-06-12 03:04:48 ----D---- C:\ProgramData\Microsoft Help

2014-06-12 03:04:28 ----D---- C:\Windows\system32\MRT

2014-06-12 03:02:12 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-07-07 49944]

R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-07-07 192352]

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iastor.sys [2009-06-04 330264]

R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-01-25 231960]

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]

R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]

R1 {2b929fe1-284b-4766-afb9-19b0915b99b0}w;{2b929fe1-284b-4766-afb9-19b0915b99b0}w; C:\Windows\system32\drivers\{2b929fe1-284b-4766-afb9-19b0915b99b0}w.sys [2014-07-03 52928]

R1 {6fcd6092-9615-4f7f-8898-8df53980e5d2}w;{6fcd6092-9615-4f7f-8898-8df53980e5d2}w; C:\Windows\system32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w.sys [2014-07-03 52920]

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-07-07 81768]

R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-07-07 779536]

R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-07-08 414520]

R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]

R1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-12-18 26024]

R1 MpKsl92a070cf;MpKsl92a070cf; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{23CE7411-6505-4017-B983-5CBCFA2402F3}\MpKsl92a070cf.sys [2014-07-08 39464]

R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]

R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-07-07 24184]

R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-07-07 67824]

R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-07-07 71944]

R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-03-11 104264]

R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]

R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]

R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-08-25 9024512]

R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-25 2758240]

R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2014-03-19 43800]

R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2014-03-19 37528]

R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2014-03-19 28312]

R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-05-22 167936]

R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2009-08-09 29696]

S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]

S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]

S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]

S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]

S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]

S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]

S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]

S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]

S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]

S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2012-08-01 33512]

S3 taphss6;Anchorfree HSS VPN Adapter; C:\Windows\system32\DRIVERS\taphss6.sys [2012-11-15 35592]

S3 tapSF0901;Spotflux TAP Device Driver; C:\Windows\system32\DRIVERS\tapSF0901.sys [2013-03-07 33160]

S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]

S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2013-03-18 45056]

S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]

S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]

S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-07 50344]

R2 Bonjour Service;Bonjour-service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]

R2 CltMngSvc;Search Protect Service; C:\PROGRA~1\SearchProtect\Main\bin\CltMngSvc.exe [2014-06-26 2832704]

R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]

R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2009-09-24 125440]

R2 LPTSystemUpdater;LPT System Updater Service; C:\Program Files\LPT\srpts.exe [2014-06-16 34336]

R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2014-03-11 22216]

R2 pdfcDispatcher;PDF Document Manager; C:\Program Files\PDF Complete\pdfsvc.exe [2009-06-18 635416]

R2 Update focusbase;Update focusbase; C:\Program Files\focusbase\updatefocusbase.exe [2014-07-08 318752]

R2 Update NetCrawl;Update NetCrawl; C:\Program Files\NetCrawl\updateNetCrawl.exe [2014-07-08 318752]

R2 Util focusbase;Util focusbase; C:\Program Files\focusbase\bin\utilfocusbase.exe [2014-07-08 318752]

R2 Util NetCrawl;Util NetCrawl; C:\Program Files\NetCrawl\bin\utilNetCrawl.exe [2014-07-08 318752]

R2 VOsrv;Service Component of VO; C:\Users\gebruiker\AppData\Roaming\VOPackage\VOsrv.exe [2014-02-25 353792]

R3 iPod Service;iPod-service; C:\Program Files\iPod\bin\iPodService.exe [2014-05-26 553288]

R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2014-03-11 279776]

S2 BackupStack;Computer Backup (MyPC Backup); C:\Program Files\MyPC Backup\BackupStack.exe [2014-06-18 36424]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]

S2 gupdate;Google Update-service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-10-13 116648]

S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]

S3 aspnet_state;ASP.NET-statusservice; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]

S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-10-13 116648]

S3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]

S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-05-30 108032]

S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-25 293144]

S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]

S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-20 119408]

S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]

S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]

S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]

S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-13 1343400]

S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Link naar reactie
Delen op andere sites

Hoi Yeal09,

welkom op PC-Helpforum.be.

Ik heb je een eigen topic aangemaakt: je eigen problemen posten in een reeds bestaand topic is niet erg netjes, bovendien zorgt dergelijke aanpak voor verwarring en verlies van het overzicht.

Zodra één van de malware-experts online komt gebeurt de analyse van je logje en krijg je verdere persoonlijke begeleiding.

Link naar reactie
Delen op andere sites

Oeps ... je hebt wel een flinke bende rotzooi binnengehaald.

Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe (hier en hier) kan je lezen hoe je dat doet.

Download 51a612a8b27e2-Zoek.pngZoek.exe naar het bureaublad (niet de .zip- of .rar-versie)

  • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.
  • Dubbelklik op Zoek.exe om de tool te starten.
  • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
  • Kopieer nu onderstaande code en plak die in het grote invulvenster:
  • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

  {31ad400d-1b06-4e33-a59a-90c2c140cba0};c
 {EF8240F9-F7B6-10BC-CBB9-766E14606D4A};c
 C:\Program Files\v01BlockAndSurf;fs
 {ae07101b-46d4-4a98-af68-0333ea26e113};c
 mobilegeni daemon;s
 C:\Program Files\Mobogenie;fs
 C:\Program Files\MyPC Backup;fs
 MyPC Backup;s
 BackupStack;s
 CltMngSvc;s
 AnyProtect Scanner;s
 C:\Program Files\AnyProtectEx;fs
 C:\Windows\tasks\APSnotifierPP1.job;f 
C:\Windows\tasks\APSnotifierPP2.job;f 
C:\Windows\tasks\APSnotifierPP3.job;f 
C:\Windows\tasks\BlockAndSurf Update.job;f 
C:\Windows\tasks\BlockAndSurf_wd.job; 
C:\Windows\tasks\DSite.job;f
 C:\Windows\tasks\RegClean Pro_DEFAULT.job;f
C:\Windows\tasks\RegClean Pro_UPDATES.job;f
 C:\Program Files\IB Updater;fs
 {336D0C35-8A85-403a-B9D2-65C292C39087};c
 {FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052};c
 {DEDAF650-12B8-48f5-A843-BBA100716106};c
 C:\Program Files\Updater By Sweetpacks;fs
 C:\Users\gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\7nrxjhmp.default\extensions\{988dba22-f2c2-61d6-618a-b2deabf5e4b4};fs
 C:\Users\gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\7nrxjhmp.default\extensions\[email="sitematchersitesrc@sitematchersitesrc.com"]sitematchersitesrc@sitematchersitesrc.com[/email];fs
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}];r
 [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF8240F9-F7B6-10BC-CBB9-766E14606D4A}];r
 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run];r
 "mobilegeni daemon"=-;r
 "AnyProtect Scanner"=-;r
 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r
 "iFunBox Price Watch"=-;r
 "Browser Infrastructure Helper"=-;r
 C:\Program Files\iFunbox 2014;fs
 C:\Users\gebruiker\AppData\Local\Smartbar;fs
 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows];r
"AppInit_DLLs"=-;r
 C:\Users\gebruiker\AppData\Roaming\PC Speed Maximizer;fs
 C:\Program Files\NetCrawl;fd
C:\Program Files\SiteLookup;fs
C:\Users\gebruiker\AppData\Roaming\SimilarAddon;fs
C:\Program Files\PC Speed Maximizer;fs
 C:\ProgramData\Systweak;fs
C:\Program Files\Advanced System Protector;fs
C:\Users\gebruiker\AppData\Roaming\VOPackage;fq
C:\Program Files\RegClean Pro;fs
 C:\Program Files\focusbase;fs
C:\Program Files\SearchProtect;fs
 C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1;fs
 C:\Users\gebruiker\AppData\Roaming\uX4ZeizY;fs
C:\Users\gebruiker\AppData\Roaming\oRYU7ctT;fs
C:\Users\gebruiker\AppData\Roaming\kNUP36pO;fs
 C:\Users\gebruiker\AppData\Roaming\mPWR59rQ;fs
 emptyfolderscheck;delete 
startupall; 
filesrcm;

  • Klik op de knop "More options" en vink nu de onderstaande opties aan.
  • Do a Deep Scan

  • Auto Clean
  • De optie "Scan All Users" staat standaard aangevinkt.
  • Klik nu op de knop "Run script".
  • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
  • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
  • Post het geopende logje in het volgende bericht als bijlage.

Zoek.exe logbestand plaatsen

  • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\\Zoek-results.log.)
  • Hoe u een bijlage kunt toevoegen aan het bericht leest u hier.

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.