Ga naar inhoud

Computer werkt zeer traag


NadiaG

Aanbevolen berichten

Mijn computer werkt al geruime tijd zeer traag, ook na het opkuisen van de cookies en na het laten draaien van spybot en ad-aware, ccleaner.

Ik heb al de programma's die ik niet meer gebruik al van mijn harde schijf gegooid met de gedachte dat deze dan sneller zou werken maar zonder resultaat. Heeft iemand hier een oplossing voor mij???

Alvast bedankt

Nadia

Link naar reactie
Delen op andere sites

Mijn Pc werkt zeer traag. Ik heb zopas gedaan wat Jurgen mij vroeg :

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 16:56:50, on 11/07/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\LEXPPS.EXE

C:\Program Files\Avira\AntiVir Desktop\sched.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

C:\windows\system\hpsysdrv.exe

C:\WINDOWS\AGRSMMSG.exe

C:\WINDOWS\system32\hphmon06.exe

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\WINDOWS\ALCWZRD.EXE

C:\WINDOWS\ALCMTR.EXE

C:\PROGRA~1\ACDSYS~1\DEVDET~1\DEVDET~1.EXE

C:\WINDOWS\system32\ps2.exe

C:\PROGRA~1\DATACA~1\FLashKsk.exe

C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe

C:\Program Files\Belgacom\bin\sprtcmd.exe

C:\Program Files\Avira\AntiVir Desktop\avguard.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\Program Files\QuickTime\QTTask.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\WINDOWS\system32\drivers\CDAC11BA.EXE

C:\Program Files\Messenger\msmsgs.exe

c:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

C:\Program Files\Microsoft Office\Office\1043\OLFSNT40.EXE

C:\Program Files\Windows Desktop Search\WindowsSearch.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\Program Files\Belgacom\bin\sprtsvc.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\SearchIndexer.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe

C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe

C:\WINDOWS\system32\Rundll32.exe

C:\Program Files\Outlook Express\msimn.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\WINDOWS\system32\SearchProtocolHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = Search

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Skynet.be - LE portail belge – DE Belgische portaalsite!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen

O2 - BHO: Adobe PDF Reader Help bij koppelingen - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL

O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe

O4 - HKLM\..\Run: [snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAudPropShortcut.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe

O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe

O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe

O4 - HKLM\..\Run: [Camera Detector] C:\PROGRA~1\ACDSYS~1\DEVDET~1\DEVDET~1.EXE

O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe

O4 - HKLM\..\Run: [DataCaching] C:\PROGRA~1\DATACA~1\FLashKsk.exe

O4 - HKLM\..\Run: [speedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon

O4 - HKLM\..\Run: [bearFlix] "C:\Program Files\BearFlix\BearFlix.exe" /pause

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [belgacom] "C:\Program Files\Belgacom\bin\sprtcmd.exe" /P Belgacom

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HELPAN~1\HPQ\XPXWWPP5\plugin\bin\PCHButton.exe

O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: Poort voor Symantec Fax Starter Edition.lnk = C:\Program Files\Microsoft Office\Office\1043\OLFSNT40.EXE

O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe

O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1245590727109

O17 - HKLM\System\CCS\Services\Tcpip\..\{1CE2846C-7B81-46FC-83A9-FBF3D526F85C}: NameServer = 195.238.2.21 195.238.2.22

O17 - HKLM\System\CS1\Services\Tcpip\..\{1CE2846C-7B81-46FC-83A9-FBF3D526F85C}: NameServer = 195.238.2.21 195.238.2.22

O17 - HKLM\System\CS2\Services\Tcpip\..\{1CE2846C-7B81-46FC-83A9-FBF3D526F85C}: NameServer = 195.238.2.21 195.238.2.22

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe

O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe

O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - c:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Planner voor Automatische LiveUpdate - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: SupportSoft Sprocket Service (belgacom) (sprtsvc_belgacom) - SupportSoft, Inc. - C:\Program Files\Belgacom\bin\sprtsvc.exe

O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\Supportsoft\bin\ssrc.exe

--

End of file - 11658 bytes

Link naar reactie
Delen op andere sites

Ga naar Start - Uitvoeren en tik in: sc stop “Boonty Games”

Druk op Enter.

Ga naar Start - Uitvoeren en tik in: sc delete “Boonty Games”

Druk op Enter.

Start Hijackthis op. Ben je gebruiker van Vista kies dan voor “Run as administrator" of "Uitvoeren als administrator". Selecteer “Do a system scan only”. Selecteer alleen de items die hieronder zijn genoemd:

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

Klik op 'Fix checked' om de items te verwijderen.

Download Combofix naar je Bureaublad.

Lees hier meer over correct gebruik van Combofix.

OPMERKING: indien je, tijdens of na het downloaden van Combofix of tijdens het gebruik van Combofix een melding krijgt van je Antivirus- of een andere realtime scanner, schakel dan deze scanner uit en download Combofix opnieuw.

Sommige scanners zien bepaalde componenten die Combofix gebruikt als verdacht en gaan deze blokkeren of verwijderen!

  • Dubbelklik op Combofix.exe om het te starten.
    Indien je Combofix al eerder hebt gebruikt, kan je een waarschuwing krijgen dat een update beschikbaar is. Sta toe dat ComboFix wordt geupdate.
    Volg de instructies, aanvaard de disclaimer door op Ja te klikken.
    Indien de Recovery Console niet geïnstalleerd is, wordt je gevraagd om dit alsnog te doen door op JA te klikken in het "Query - Recovery Console" venster (enkel voor XP, niet voor VISTA).
    Klik op OK en Ja om automatisch de Recovery Console te laten installeren.
    Klik na afloop terug op Ja om het scannen op malware te starten.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.

Wanneer de fix voltooid is en na herstart, zal de log Combofix.txt openen.

Post dit logje in je volgende antwoord, samen met een nieuw log van HiJackThis.

Link naar reactie
Delen op andere sites

De drie lijnen die ik moest vernietigen zijn gelukt. Helaas kan ik Combo.fix niet gebruiken. Heb de antivirus afgezet, heb het programma combo.fix op mijn desktop geplaatst en heb het laten draaien. Hij gaat alle delen controleren deel1 deel 2 enz ... maar hij gaat geen file maken dat ik kan doorsturen. Mijn neef was gisteren bij mij thuis ( hij kent iets meer van de pc dan ik) en met hem lukte het ook niet.

Met vriendelijke groeten

Nadia

Link naar reactie
Delen op andere sites

Dan moet je de huidige Combofix eens verwijderen via Start -> Uitvoeren -> typ combofix /u Dan doe je een nieuwe download van Combofix, maar bij het opslaan op het bureaublad wijzig je de naam van combofix.exe naar scan.exe ... en probeer dan eens of scannen nu wel lukt ?

Link naar reactie
Delen op andere sites

Het is gelukt: met combofix te downloaden lukte het niet , maar met scan wel. Ziehier de gegevens :

ComboFix 09-07-13.01 - HP_Eigenaar 14/07/2009 18:53:23.2.2 - NTFSx86

Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.1023.518 [GMT 2:00]

Gestart vanuit: C:\Documents and Settings\HP_Eigenaar\Bureaublad\scan.exe

AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}

.

(((((((((((((((((((( Bestanden Gemaakt van 2009-06-14 to 2009-07-14 ))))))))))))))))))))))))))))))

.

2009-07-14 16:23:17 . 2009-07-14 16:23:17 0 d--h--r- C:\Documents and Settings\HP_Eigenaar\Onlangs geopend

2009-07-11 14:56:18 . 2009-07-11 14:56:18 0 d-----w- C:\Program Files\Trend Micro

2009-07-09 16:33:50 . 2009-07-09 16:33:50 0 d-sh--w- C:\Documents and Settings\HP_Eigenaar\IECompatCache

2009-07-07 15:13:32 . 2009-07-07 15:13:32 0 d-sh--w- C:\Documents and Settings\HP_Eigenaar\PrivacIE

2009-07-07 15:12:22 . 2009-07-07 15:12:22 0 d-sh--w- C:\Documents and Settings\LocalService\IETldCache

2009-07-07 15:11:24 . 2009-07-07 15:11:24 0 d-sh--w- C:\Documents and Settings\HP_Eigenaar\IETldCache

2009-07-07 15:09:21 . 2009-07-07 15:09:21 0 d-----w- C:\WINDOWS\ie8updates

2009-07-07 15:07:32 . 2009-07-07 15:08:42 0 dc-h--w- C:\WINDOWS\ie8

2009-07-07 15:05:52 . 2009-06-02 10:12:46 102912 ------w- C:\WINDOWS\system32\dllcache\iecompat.dll

2009-07-07 15:05:49 . 2009-04-30 21:18:02 12800 ------w- C:\WINDOWS\system32\dllcache\xpshims.dll

2009-07-07 15:05:49 . 2009-04-30 21:17:49 246272 ------w- C:\WINDOWS\system32\dllcache\ieproxy.dll

2009-07-07 15:05:48 . 2009-04-30 21:17:56 1985024 ------w- C:\WINDOWS\system32\dllcache\iertutil.dll

2009-07-07 15:05:47 . 2009-04-30 21:17:55 11064832 ------w- C:\WINDOWS\system32\dllcache\ieframe.dll

2009-06-23 16:30:37 . 2009-06-21 13:03:34 15688 ----a-w- C:\WINDOWS\system32\lsdelete.exe

2009-06-21 15:20:44 . 2009-06-21 15:20:44 0 d-----w- C:\Program Files\MSXML 4.0

2009-06-21 14:09:48 . 2009-06-21 14:09:48 0 d-----w- C:\WINDOWS\l2schemas

2009-06-21 14:09:47 . 2009-06-21 14:09:47 0 d-----w- C:\WINDOWS\system32\nl

2009-06-21 14:09:47 . 2009-06-21 14:09:47 0 d-----w- C:\WINDOWS\system32\bits

2009-06-21 14:07:38 . 2009-06-21 14:10:05 0 d-----w- C:\WINDOWS\ServicePackFiles

2009-06-21 14:01:45 . 2009-06-21 14:01:45 0 d-----w- C:\WINDOWS\EHome

2009-06-21 13:57:32 . 2008-06-14 17:36:45 272640 ------w- C:\WINDOWS\system32\dllcache\bthport.sys

2009-06-21 13:56:52 . 2009-02-06 10:10:02 227840 ------w- C:\WINDOWS\system32\dllcache\wmiprvse.exe

2009-06-21 13:56:51 . 2009-03-06 14:23:43 285696 ------w- C:\WINDOWS\system32\dllcache\pdh.dll

2009-06-21 13:56:51 . 2009-02-09 11:27:53 2193408 ------w- C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2009-06-21 13:56:51 . 2009-02-09 11:27:40 111104 ------w- C:\WINDOWS\system32\dllcache\services.exe

2009-06-21 13:56:51 . 2009-02-09 10:56:07 401408 ------w- C:\WINDOWS\system32\dllcache\rpcss.dll

2009-06-21 13:56:50 . 2009-02-09 10:56:07 684544 ------w- C:\WINDOWS\system32\dllcache\advapi32.dll

2009-06-21 13:56:50 . 2009-02-09 10:56:06 473600 ------w- C:\WINDOWS\system32\dllcache\fastprox.dll

2009-06-21 13:56:49 . 2009-02-09 10:56:07 734208 ------w- C:\WINDOWS\system32\dllcache\lsasrv.dll

2009-06-21 13:56:49 . 2009-02-09 10:56:06 735744 ------w- C:\WINDOWS\system32\dllcache\ntdll.dll

2009-06-21 13:56:49 . 2009-02-09 10:56:05 453120 ------w- C:\WINDOWS\system32\dllcache\wmiprvsd.dll

2009-06-21 13:56:48 . 2009-02-09 11:27:43 2149888 ------w- C:\WINDOWS\system32\dllcache\ntkrnlmp.exe

2009-06-21 13:56:47 . 2009-02-09 11:27:49 2028544 ------w- C:\WINDOWS\system32\dllcache\ntkrpamp.exe

2009-06-21 13:55:37 . 2008-05-08 14:02:52 203136 ------w- C:\WINDOWS\system32\dllcache\rmcast.sys

2009-06-21 13:55:36 . 2008-10-24 11:21:09 455296 ------w- C:\WINDOWS\system32\dllcache\mrxsmb.sys

2009-06-21 13:55:25 . 2008-12-11 10:57:09 333952 ------w- C:\WINDOWS\system32\dllcache\srv.sys

2009-06-21 13:55:24 . 2008-05-01 14:37:01 331776 ------w- C:\WINDOWS\system32\dllcache\msadce.dll

2009-06-21 13:52:59 . 2004-08-03 20:41:56 1041536 ------w- C:\WINDOWS\system32\drivers\hsfdpsp2.sys

2009-06-21 13:52:59 . 2004-08-03 20:41:50 685056 ------w- C:\WINDOWS\system32\drivers\hsfcxts2.sys

2009-06-21 13:52:59 . 2004-08-03 20:41:48 220032 ------w- C:\WINDOWS\system32\drivers\hsfbs2s2.sys

2009-06-21 13:50:14 . 2008-04-11 19:06:47 691712 ------w- C:\WINDOWS\system32\dllcache\inetcomm.dll

2009-06-21 13:43:51 . 2009-03-30 08:33:07 96104 ----a-w- C:\WINDOWS\system32\drivers\avipbb.sys

2009-06-21 13:43:51 . 2009-03-24 14:08:22 55640 ----a-w- C:\WINDOWS\system32\drivers\avgntflt.sys

2009-06-21 13:43:51 . 2009-02-13 10:29:11 22360 ----a-w- C:\WINDOWS\system32\drivers\avgntmgr.sys

2009-06-21 13:43:51 . 2009-02-13 10:17:49 45416 ----a-w- C:\WINDOWS\system32\drivers\avgntdd.sys

2009-06-21 13:43:33 . 2009-06-21 13:43:33 0 d-----w- C:\Program Files\Avira

2009-06-21 13:43:33 . 2009-06-21 13:43:33 0 d-----w- C:\Documents and Settings\All Users\Application Data\Avira

2009-06-21 13:38:51 . 2008-10-15 16:37:40 337408 ------w- C:\WINDOWS\system32\dllcache\netapi32.dll

2009-06-21 13:38:39 . 2008-09-04 17:17:14 1106944 ------w- C:\WINDOWS\system32\dllcache\msxml3.dll

2009-06-21 13:37:47 . 2008-04-21 21:16:17 218624 ------w- C:\WINDOWS\system32\dllcache\wordpad.exe

2009-06-21 13:16:15 . 2009-06-21 13:19:43 0 d-----w- C:\Program Files\Spybot - Search & Destroy

2009-06-21 13:01:19 . 2009-06-21 13:01:20 0 dc-h--w- C:\Documents and Settings\All Users\Application Data\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}

2009-06-21 13:01:19 . 2009-03-12 08:17:34 2902048 -c--a-w- C:\Documents and Settings\All Users\Application Data\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}\Ad-AwareAE.exe

2009-06-21 13:01:07 . 2009-06-21 13:01:07 0 d-----w- C:\Program Files\Lavasoft

2009-06-21 13:01:07 . 2009-06-21 13:01:07 0 d-----w- C:\Documents and Settings\All Users\Application Data\Lavasoft

2009-06-21 12:53:55 . 2009-06-21 12:53:58 0 d-----w- C:\Program Files\CCleaner

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-07-14 16:29:10 . 2004-12-03 17:15:46 81066 ----a-w- C:\WINDOWS\system32\perfc013.dat

2009-07-14 16:29:10 . 2004-12-03 17:15:46 471810 ----a-w- C:\WINDOWS\system32\perfh013.dat

2009-07-14 16:23:19 . 2005-06-23 16:24:54 0 d-----w- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy

2009-06-21 15:24:50 . 2009-03-12 18:37:52 0 d-----w- C:\Program Files\Windows Desktop Search

2009-06-21 14:11:40 . 2004-12-03 17:08:32 82439 ----a-w- C:\WINDOWS\pchealth\helpctr\OfflineCache\index.dat

2009-06-21 13:20:12 . 2009-03-12 19:51:42 0 d-----w- C:\Documents and Settings\All Users\Application Data\avg8

2009-06-21 13:06:56 . 2005-07-12 18:18:11 0 d-----w- C:\Program Files\Google

2009-06-21 13:03:34 . 2009-06-21 13:03:34 15688 ----a-w- C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lsdelete.exe

2009-06-21 13:03:24 . 2009-06-21 13:03:39 64160 ----a-w- C:\WINDOWS\system32\drivers\Lbd.sys

2009-06-21 13:03:24 . 2009-06-21 13:03:24 64160 ----a-w- C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys

2009-06-21 12:49:37 . 2009-06-07 12:24:29 0 d-----w- C:\Program Files\Common Files\Symantec Shared

2009-06-21 07:20:46 . 2009-03-14 17:56:00 0 d---a-w- C:\Documents and Settings\All Users\Application Data\TEMP

2009-06-08 16:08:43 . 2009-06-08 16:08:43 1878984 ----a-w- C:\Documents and Settings\HP_Eigenaar\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdatepl\fpupdatepl.exe

2009-06-07 12:24:50 . 2009-06-07 12:24:50 0 d-----w- C:\Program Files\BFG

2009-06-07 12:24:50 . 2009-06-07 12:24:42 0 d-----w- C:\Program Files\Norton 360

2009-05-28 16:55:30 . 2006-01-13 11:08:04 0 d-----w- C:\Documents and Settings\HP_Eigenaar\Application Data\Apple Computer

2009-05-28 16:45:45 . 2008-12-26 16:39:24 0 d-----w- C:\Program Files\Bonjour

2009-05-24 22:24:06 . 2008-05-26 21:18:26 350208 ------w- C:\WINDOWS\system32\mssph.dll

2009-05-19 16:28:53 . 2009-03-11 17:38:16 0 d-----w- C:\Documents and Settings\All Users\Application Data\Microsoft Help

2009-05-13 05:06:52 . 2005-06-20 17:34:29 915456 ----a-w- C:\WINDOWS\system32\wininet.dll

2009-05-07 15:34:08 . 2005-06-20 17:34:05 347136 ----a-w- C:\WINDOWS\system32\localspl.dll

2009-04-19 19:51:42 . 2005-06-20 17:34:29 1847296 ----a-w- C:\WINDOWS\system32\win32k.sys

2005-12-02 18:23:15 . 2005-12-02 18:23:18 774144 -c--a-w- C:\Program Files\RngInterstitial.dll

1999-05-03 14:01:18 . 1999-05-03 14:01:18 99840 ----a-w- C:\Program Files\Common Files\IRAABOUT.DLL

1998-12-08 23:53:54 . 1998-12-08 23:53:54 70144 -c--a-w- C:\Program Files\Common Files\IRAMDMTR.DLL

1998-12-08 23:53:54 . 1998-12-08 23:53:54 48640 -c--a-w- C:\Program Files\Common Files\IRALPTTR.DLL

1998-12-08 23:53:54 . 1998-12-08 23:53:54 31744 ----a-w- C:\Program Files\Common Files\IRAWEBTR.DLL

1998-12-08 23:53:54 . 1998-12-08 23:53:54 186368 ----a-w- C:\Program Files\Common Files\IRAREG.DLL

1998-12-08 23:53:54 . 1998-12-08 23:53:54 17920 -c--a-w- C:\Program Files\Common Files\IRASRIAL.DLL

2008-08-30 15:27:04 . 2006-07-23 19:38:19 122880 -c--a-w- C:\Program Files\mozilla firefox\components\GoogleDesktopMozilla.dll

2005-07-15 22:05:28 . 2005-07-15 13:05:28 22 -csha-w- C:\WINDOWS\SMINST\HPCD.sys

.

((((((((((((((((((((((((((((( SnapShot@2009-07-14_12.25.32 )))))))))))))))))))))))))))))))))))))))))

.

- 2004-12-03 17:15:46 . 2009-07-14 12:11:42 54416 C:\WINDOWS\system32\perfc009.dat

+ 2004-12-03 17:15:46 . 2009-07-14 16:29:10 54416 C:\WINDOWS\system32\perfc009.dat

+ 2004-12-03 17:15:46 . 2009-07-14 16:29:10 384732 C:\WINDOWS\system32\perfh009.dat

- 2004-12-03 17:15:46 . 2009-07-14 12:11:42 384732 C:\WINDOWS\system32\perfh009.dat

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-14 17:03:07 1695232]

"Acme.PCHButton"="C:\PROGRA~1\HELPAN~1\HPQ\XPXWWPP5\plugin\bin\PCHButton.exe" [2005-03-30 07:48:17 159744]

"NBJ"="C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" [2005-06-02 14:03:08 1957888]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 17:02:53 15360]

"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 14:07:20 2260480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SunJavaUpdateSched"="C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" [2005-03-30 07:21:28 32881]

"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 16:04:38 52736]

"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2004-09-29 20:23:00 4603904]

"HPHUPD06"="c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe" [2004-06-07 18:53:26 49152]

"HPHmon06"="C:\WINDOWS\system32\hphmon06.exe" [2004-06-07 18:47:30 659456]

"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 11:03:26 221184]

"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 11:03:04 81920]

"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2004-04-14 20:43:46 233472]

"LSBWatcher"="c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe" [2004-10-14 21:54:32 253952]

"PS2"="C:\WINDOWS\system32\ps2.exe" [2004-10-25 21:17:56 90112]

"DataCaching"="C:\PROGRA~1\DATACA~1\FLashKsk.exe" [2002-10-09 01:00:16 278528]

"SpeedTouch USB Diagnostics"="C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" [2004-01-26 09:38:38 866816]

"BearFlix"="C:\Program Files\BearFlix\BearFlix.exe" [bU]

"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 09:50:42 155648]

"Belgacom"="C:\Program Files\Belgacom\bin\sprtcmd.exe" [2008-05-29 10:18:04 202016]

"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 00:04:34 39792]

"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-11-04 09:30:50 413696]

"AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-11-07 13:16:58 111936]

"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-11-20 12:20:54 290088]

"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 23:47:42 31016]

"Ad-Watch"="C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-07-13 13:04:44 520024]

"avgnt"="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 11:08:47 209153]

"Snelkoppeling naar eigenschappenvenster voor High Definition Audio"="HDAudPropShortcut.exe" - C:\WINDOWS\system32\Hdaudpropshortcut.exe [2004-03-17 21:10:40 61952]

"nwiz"="nwiz.exe" - C:\WINDOWS\system32\nwiz.exe [2004-09-29 20:23:00 921600]

"AGRSMMSG"="AGRSMMSG.exe" - C:\WINDOWS\AGRSMMSG.exe [2004-06-29 17:06:38 88363]

"SoundMan"="SOUNDMAN.EXE" - C:\WINDOWS\SOUNDMAN.EXE [2005-02-21 20:49:32 90112]

"AlcWzrd"="ALCWZRD.EXE" - C:\WINDOWS\ALCWZRD.EXE [2005-02-18 20:32:36 2754560]

C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\

HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]

Poort voor Symantec Fax Starter Edition.lnk - C:\Program Files\Microsoft Office\Office\1043\OLFSNT40.EXE [1999-5-3 46077]

Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe [2008-5-26 123904]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 20:41:34 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=

"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=

"C:\\Program Files\\iTunes\\iTunes.exe"=

"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=

"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=

"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"C:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"=

R0 Lbd;Lbd;C:\WINDOWS\system32\drivers\Lbd.sys [21/06/2009 15:03:39 64160]

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files\Avira\AntiVir Desktop\sched.exe [21/06/2009 15:43:50 108289]

R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [9/03/2009 21:06:55 1029456]

R2 sprtsvc_belgacom;SupportSoft Sprocket Service (belgacom);C:\Program Files\Belgacom\bin\sprtsvc.exe [29/05/2008 12:18:32 202016]

R3 PhTVTune;ASUS WDM TV Tuner;C:\WINDOWS\system32\drivers\PhTVTune.sys [30/03/2005 9:26:53 24544]

R3 PRISM_A00;Wireless PCI 802.11b/g adapter WN4201B Driver;C:\WINDOWS\system32\drivers\PCTELSAP.SYS [30/03/2005 9:26:40 306560]

S3 gUSBSTOi;gUSBSTOi;\??\C:\DOCUME~1\HP_EIG~1\LOCALS~1\Temp\gUSBSTOi.sys --> C:\DOCUME~1\HP_EIG~1\LOCALS~1\Temp\gUSBSTOi.sys [?]

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]

"C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP

.

Inhoud van de 'Gedeelde Taken' map

2009-07-13 C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

- C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-09 19:06:56 . 2009-07-13 13:04:47]

2009-06-02 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job

- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-04-11 15:57:18 . 2008-07-30 11:34:12]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.skynet.be/

uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

IE: E&xporteren naar Microsoft Excel - C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

TCP: {1CE2846C-7B81-46FC-83A9-FBF3D526F85C} = 195.238.2.21 195.238.2.22

.

Nog een bijkomende info : Mijn pc gaat ook regelmatig vastlopen, en dan op een ander programma klikken om deze te openen , lukt dan ook niet. Er komt onderaan op mijn scherm soms een zwarte balk waardoor ik niet op start kan klikken. Ik moet dan mijn pc afzetten door op de knop te klikken op mijn harde schijf.

Met vriendelijke groeten

Nadia

Link naar reactie
Delen op andere sites

Dit lijkt me geen probleem van malware meer te zijn ... maar zal je eerder moeten gaan zoeken in problemen met software en/of hardware ? Alleen zou ik je niet meteen op het goede spoor kunnen zetten. Misschien kan je met deze gegevens in het achterhoofd - geen malware - eens een nieuw topic openen in het onderdeel "hardware" hier op het forum. Daar kunnen de échte specialisten op dit vlak je misschien helpen.

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.