Ga naar inhoud

[OPGELOST] Hijackthis Logje


Aanbevolen berichten

Goeiendag,

Toen ik vandaag mijn computer opstarte was hij ineens heel traag. Misschien zal een HJT-logje het wel oplossen.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 19:22:54, on 4/07/2009

Platform: Windows Vista (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16386)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\DellTPad\Apoint.exe

C:\Windows\OEM02Mon.exe

C:\Program Files\Dell Support Center\bin\sprtcmd.exe

C:\Program Files\Dell\MFP_DELL\deDvcStatus.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe

C:\Program Files\Dell\MediaDirect\PCMService.exe

C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe

C:\Program Files\Netlog Music Tool\NetlogMusicTool.exe

C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe

C:\Windows\system32\taskeng.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Windows\ehome\ehmsas.exe

c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conime.exe

C:\Program Files\VoipBuster.com\VoipBuster\VoipBuster.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Windows\system32\taskeng.exe

C:\Program Files\uTorrent\uTorrent.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Games Fusion - PC Cheats, Saved Games, Trailers, Demos and Patches

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

O1 - Hosts: 5.10.237.199 pes09pcgate-e.winning-eleven.net

O1 - Hosts: 5.10.237.199 pes2009web.winning-eleven.net

O1 - Hosts: localhost pes7stun-e.winning-eleven.net

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe

O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe

O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s

O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

O4 - HKLM\..\Run: [DeStatusMon] "C:\Program Files\Dell\MFP_DELL\deDvcStatus.exe" dvcStatusMinimize

O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"

O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe

O4 - HKLM\..\Run: [iAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"

O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"

O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [sigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"

O4 - HKCU\..\Run: [Netlog Music Tool] "C:\Program Files\Netlog Music Tool\NetlogMusicTool.exe"

O4 - HKCU\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKCU\..\Run: [VoipBuster] "C:\Program Files\VoipBuster.com\VoipBuster\VoipBuster.exe" -nosplash -minimized

O4 - Global Startup: BTTray.lnk = ?

O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Formulieren opslaan - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O8 - Extra context menu item: Invul Formulieren - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O8 - Extra context menu item: Menu aanpassen - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html

O8 - Extra context menu item: RoboForm Werkbalk - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: Formulier Invullen - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra 'Tools' menuitem: Invul Formulieren - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra button: Opslaan - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra 'Tools' menuitem: Formulieren opslaan - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra 'Tools' menuitem: RoboForm Werkbalk - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O13 - Gopher Prefix:

O15 - Trusted IP range: http://192.168.0.1

O15 - ESC Trusted IP range: http://192.168.0.1

O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab

O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/binary/MJSS.cab69309.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/NL-BE/a-UNO1/GAME_UNO1.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1209149147425

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1209149996026

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Futuremark SystemInfo) - http://gameadvisor.futuremark.com/global/msc3121.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab

O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe

O23 - Service: Dell AIO Center Service (deMntrService) - Dell - C:\Program Files\Dell\MFP_DELL\deMntrService.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\Windows\system32\sfrem01.exe

O23 - Service: SupportSoft Sprocket Service (belgacom) (sprtsvc_belgacom) - SupportSoft, Inc. - C:\Program Files\Belgacom\bin\sprtsvc.exe

O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe

O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--

End of file - 13469 bytes

Link naar reactie
Delen op andere sites

Ga naar Start - Uitvoeren en tik in: sc stop “Boonty Games”

Druk op Enter.

Ga naar Start - Uitvoeren en tik in: sc delete “Boonty Games”

Druk op Enter.

Start Hijackthis op. Ben je gebruiker van Vista kies dan voor “Run as administrator" of "Uitvoeren als administrator". Selecteer “Do a system scan only”. Selecteer alleen de items die hieronder zijn genoemd:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

Klik op 'Fix checked' om de items te verwijderen.

Download HostsXpert

Unzip het programma naar je Bureaublad.

Open de map en dubbelklik op Hoster.exe

Klik op "Restore Microsofts Original Hosts File"

Klik op "OK" en sluit het programma.

Download MBAM (Malwarebytes' Anti-Malware).

Dubbelklik op mbam-setup.exe om het programma te installeren.

Zorg ervoor dat er een vinkje geplaatst is voor Update Malwarebytes' Anti-Malware en Start Malwarebytes' Anti-Malware, Klik daarna op "Voltooien".

Indien een update gevonden werd, zal die gedownload en geïnstalleerd worden.

Wanneer het programma volledig up to date is, selecteer dan in het tabblad Scanner : "Snelle Scan", daarna klik op Scan.

Het scannen kan een tijdje duren, dus wees geduldig.

Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.

Zorg ervoor dat daar alles aangevinkt is, daarna klik op: Verwijder geselecteerde.

Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten. (Zie verder). De log wordt automatisch bewaard door MBAM en kan je terugvinden door op de "Logs" tab te klikken in MBAM.

Indien MBAM moeilijkheden heeft met het verwijderen van bepaalde bestanden zal het enkele meldingen geven waar je OK moet klikken. Daarna zal het vragen om de computeropnieuw op te starten... dus sta toe dat MBAM de computer opnieuw opstart.

Plak de inhoud van het logje in je volgende bericht, samen met een nieuw HijackThis log.

Link naar reactie
Delen op andere sites

Het MBAM logje

Malwarebytes' Anti-Malware 1.38

Database versie: 2375

Windows 6.0.6000

5/07/2009 14:37:49

mbam-log-2009-07-05 (14-37-48).txt

Scan type: Snelle Scan

Objecten gescand: 81227

Verstreken tijd: 5 minute(s), 30 second(s)

Geheugenprocessen geïnfecteerd: 0

Geheugenmodulen geïnfecteerd: 0

Registersleutels geïnfecteerd: 2

Registerwaarden geïnfecteerd: 0

Registerdata bestanden geïnfecteerd: 0

Mappen geïnfecteerd: 8

Bestanden geïnfecteerd: 175

Geheugenprocessen geïnfecteerd:

(Geen kwaadaardige items gevonden)

Geheugenmodulen geïnfecteerd:

(Geen kwaadaardige items gevonden)

Registersleutels geïnfecteerd:

HKEY_LOCAL_MACHINE\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.

Registerwaarden geïnfecteerd:

(Geen kwaadaardige items gevonden)

Registerdata bestanden geïnfecteerd:

(Geen kwaadaardige items gevonden)

Mappen geïnfecteerd:

c:\Users\Sofian\AppData\Roaming\RegTool (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400 (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300 (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\QuarantineW (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450 (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030 (Rogue.RegTool) -> Quarantined and deleted successfully.

Bestanden geïnfecteerd:

c:\Users\Sofian\AppData\Roaming\RegTool\resultsw.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\CURRENT_USER (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\DEFAULT (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\SAM (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\SECURITY (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\SOFTWARE (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-01-11 13-53-400\SYSTEM (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\CURRENT_USER (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\DEFAULT (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\SAM (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\SECURITY (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\SOFTWARE (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Backups\2009-04-07 11-15-300\SYSTEM (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-01-11 13-47-410.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-01-11 21-50-230.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-01-12 18-07-270.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-07 11-09-340.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-07 11-12-240.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-07 12-00-010.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-07 12-00-020.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-08 10-59-030.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-08 12-00-010.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\Logs\2009-04-08 12-00-020.log (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\filelist.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-0.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-1.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-10.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-11.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-12.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-13.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-14.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-15.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-16.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-17.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-18.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-19.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-2.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-20.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-21.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-22.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-23.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-24.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-25.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-26.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-27.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-28.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-29.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-3.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-30.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-31.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-32.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-33.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-34.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-35.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-36.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-37.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-38.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-39.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-4.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-40.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-41.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-42.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-43.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-44.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-45.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-46.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-47.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-48.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-49.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-5.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-50.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-51.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-52.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-53.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-54.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-55.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-56.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-57.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-58.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-59.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-6.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-60.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-61.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-62.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-63.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-64.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-65.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-66.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-67.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-68.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-69.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-7.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-70.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-71.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-72.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-73.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-74.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-8.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-01-11 13-54-450\regb-9.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\filelist.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-0.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-1.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-10.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-11.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-12.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-13.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-14.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-15.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-16.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-17.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-18.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-19.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-2.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-20.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-21.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-22.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-23.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-24.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-25.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-26.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-27.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-28.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-29.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-3.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-30.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-31.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-32.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-33.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-34.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-35.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-36.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-37.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-38.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-39.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-4.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-40.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-41.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-42.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-43.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-44.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-45.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-46.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-47.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-48.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-49.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-5.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-50.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-51.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-52.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-53.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-54.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-55.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-56.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-57.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-58.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-59.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-6.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-60.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-61.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-62.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-63.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-64.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-65.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-66.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-67.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-68.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-69.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-7.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-70.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-71.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-72.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-73.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-8.db (Rogue.RegTool) -> Quarantined and deleted successfully.

c:\Users\Sofian\AppData\Roaming\RegTool\quarantinew\2009-04-07 11-14-030\regb-9.db (Rogue.RegTool) -> Quarantined and deleted successfully.

C:\Windows\Tasks\RegTool Scan.job (Rogue.RegTool) -> Quarantined and deleted successfully.

Het HJT-Logje

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 14:39:21, on 5/07/2009

Platform: Windows Vista (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16386)

Boot mode: Normal

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\DellTPad\Apoint.exe

C:\Windows\OEM02Mon.exe

C:\Program Files\Dell Support Center\bin\sprtcmd.exe

C:\Program Files\Dell\MFP_DELL\deDvcStatus.exe

C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe

C:\Program Files\Dell\MediaDirect\PCMService.exe

C:\Program Files\Sigmatel\C-Major Audio\WDM\sttray.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe

C:\Program Files\Netlog Music Tool\NetlogMusicTool.exe

C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe

C:\Program Files\VoipBuster.com\VoipBuster\voipbuster.exe

C:\Windows\system32\taskeng.exe

C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

C:\Program Files\Digital Line Detect\DLG.exe

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Windows\system32\igfxsrvc.exe

C:\Windows\ehome\ehmsas.exe

c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conime.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Windows\system32\taskeng.exe

C:\Windows\System32\RAServer.exe

C:\Windows\System32\msra.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Games Fusion - PC Cheats, Saved Games, Trailers, Demos and Patches

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe

O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe

O4 - HKLM\..\Run: [DELL Webcam Manager] "C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s

O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

O4 - HKLM\..\Run: [DeStatusMon] "C:\Program Files\Dell\MFP_DELL\deDvcStatus.exe" dvcStatusMinimize

O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"

O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe

O4 - HKLM\..\Run: [iAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"

O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"

O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"

O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [sigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui

O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"

O4 - HKCU\..\Run: [Netlog Music Tool] "C:\Program Files\Netlog Music Tool\NetlogMusicTool.exe"

O4 - HKCU\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKCU\..\Run: [VoipBuster] "C:\Program Files\VoipBuster.com\VoipBuster\voipbuster.exe" -nosplash -minimized

O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"

O4 - Global Startup: BTTray.lnk = ?

O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Formulieren opslaan - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O8 - Extra context menu item: Invul Formulieren - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O8 - Extra context menu item: Menu aanpassen - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html

O8 - Extra context menu item: RoboForm Werkbalk - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: Formulier Invullen - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra 'Tools' menuitem: Invul Formulieren - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html

O9 - Extra button: Opslaan - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra 'Tools' menuitem: Formulieren opslaan - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html

O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra 'Tools' menuitem: RoboForm Werkbalk - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html

O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O13 - Gopher Prefix:

O15 - Trusted IP range: http://192.168.0.1

O15 - ESC Trusted IP range: http://192.168.0.1

O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab_srl.cab

O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab

O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/binary/MJSS.cab69309.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/NL-BE/a-UNO1/GAME_UNO1.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1209149147425

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1209149996026

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Futuremark SystemInfo) - http://gameadvisor.futuremark.com/global/msc3121.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab

O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe

O23 - Service: Dell AIO Center Service (deMntrService) - Dell - C:\Program Files\Dell\MFP_DELL\deMntrService.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\Windows\system32\sfrem01.exe

O23 - Service: SupportSoft Sprocket Service (belgacom) (sprtsvc_belgacom) - SupportSoft, Inc. - C:\Program Files\Belgacom\bin\sprtsvc.exe

O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe

O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--

End of file - 13414 bytes

Link naar reactie
Delen op andere sites

Pfff ... 175 besmette bestanden ... geen wonder dat het niet loopt zoals het hoort. En we zijn er nog niet :

Download Combofix naar je Bureaublad.

Lees hier meer over correct gebruik van Combofix.

OPMERKING: indien je, tijdens of na het downloaden van Combofix of tijdens het gebruik van Combofix een melding krijgt van je Antivirus- of een andere realtime scanner, schakel dan deze scanner uit en download Combofix opnieuw.

Sommige scanners zien bepaalde componenten die Combofix gebruikt als verdacht en gaan deze blokkeren of verwijderen!


  • Dubbelklik op Combofix.exe om het te starten.
    Indien je Combofix al eerder hebt gebruikt, kan je een waarschuwing krijgen dat een update beschikbaar is. Sta toe dat ComboFix wordt geupdate.
    Volg de instructies, aanvaard de disclaimer door op Ja te klikken.
    Indien de Recovery Console niet geïnstalleerd is, wordt je gevraagd om dit alsnog te doen door op JA te klikken in het "Query - Recovery Console" venster (enkel voor XP, niet voor VISTA).
    Klik op OK en Ja om automatisch de Recovery Console te laten installeren.
    Klik na afloop terug op Ja om het scannen op malware te starten.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.

Wanneer de fix voltooid is en na herstart, zal de log Combofix.txt openen.

Post dit logje in je volgende antwoord.

Link naar reactie
Delen op andere sites

Verwijder de huidige download van Combofix via Start -> Uitvoeren -> typ combofix /u (let op de spatie vóór de slash). Download dan Combofix opnieuw en wijzig de naam bij het downloaden naar het bureaublad van combofix.exe naar Combo-Fix.exe ... en probeer dan eens of scannen lukt ?

Link naar reactie
Delen op andere sites

Gast
Dit topic is nu gesloten voor nieuwe reacties.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.