ie8 kan facebook weer normaal laten zien. Ik ben erg benieuwd wat nou het probleem was. Kun je dat in begrijpelijke taal uitleggen?
hieronder de logjes:
20:47:54.0484 0304 TDSS rootkit removing tool 2.7.28.0 Apr 10 2012 16:54:05
20:47:54.0484 0304 ============================================================
20:47:54.0484 0304 Current date / time: 2012/04/12 20:47:54.0484
20:47:54.0484 0304 SystemInfo:
20:47:54.0484 0304
20:47:54.0484 0304 OS Version: 5.1.2600 ServicePack: 3.0
20:47:54.0484 0304 Product type: Workstation
20:47:54.0484 0304 ComputerName: CC281162-B
20:47:54.0484 0304 UserName: caroger
20:47:54.0484 0304 Windows directory: C:\WINDOWS
20:47:54.0484 0304 System windows directory: C:\WINDOWS
20:47:54.0484 0304 Processor architecture: Intel x86
20:47:54.0484 0304 Number of processors: 2
20:47:54.0484 0304 Page size: 0x1000
20:47:54.0484 0304 Boot type: Normal boot
20:47:54.0484 0304 ============================================================
20:48:18.0750 0304 Drive \Device\Harddisk0\DR0 - Size: 0x132C570000 (76.69 Gb), SectorSize: 0x200, Cylinders: 0x271B, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:48:18.0765 0304 Drive \Device\Harddisk1\DR1 - Size: 0x1C9FEF0000 (114.50 Gb), SectorSize: 0x200, Cylinders: 0x3A62, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:48:18.0781 0304 \Device\Harddisk0\DR0:
20:48:18.0781 0304 MBR used
20:48:18.0781 0304 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4C2CC2D
20:48:18.0796 0304 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4C2CCAB, BlocksNum 0x4D2F9EF
20:48:18.0796 0304 \Device\Harddisk1\DR1:
20:48:18.0796 0304 MBR used
20:48:18.0796 0304 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xE4F80E2
20:48:19.0109 0304 Initialize success
20:48:19.0109 0304 ============================================================
20:48:19.0703 3648 ============================================================
20:48:19.0703 3648 Scan started
20:48:19.0703 3648 Mode: Auto (DCExact ); SigCheck; TDLFS; Silent;
20:48:19.0703 3648 ============================================================
20:48:21.0625 3648 61883 (914a9709fc3bf419ad2f85547f2a4832) C:\WINDOWS\system32\DRIVERS\61883.sys
20:48:26.0687 3648 Aavmker4 (fdba5bb4c8171cda00b2233d5389ee5f) C:\WINDOWS\system32\drivers\Aavmker4.sys
20:48:27.0187 3648 ACPI (02273a448ba21a7d447daeb47810d40c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:48:27.0750 3648 ACPIEC (63f517b1a87dabf3f5acb8a7952fc1d1) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:48:28.0281 3648 AdobeActiveFileMonitor9.0 (1474f121c3df1232d3e7239c03691ee6) C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
20:48:29.0093 3648 AdobeFlashPlayerUpdateSvc (0d4c486a24a711a45fd83acdf4d18506) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:48:29.0531 3648 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:48:29.0984 3648 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\WINDOWS\system32\drivers\Afc.sys
20:48:30.0125 3648 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
20:48:30.0671 3648 Alerter (8bed67d13dcb55b3e9ff6dac4c6d3b49) C:\WINDOWS\system32\alrsvc.dll
20:48:30.0921 3648 ALG (dab2a89fde5cf791161200d90c1bcb12) C:\WINDOWS\System32\alg.exe
20:48:31.0343 3648 AnyDVD (133b7b6d6a3ec9e46fbe742ee1516c37) C:\WINDOWS\system32\Drivers\AnyDVD.sys
20:48:31.0609 3648 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
20:48:31.0984 3648 AsIO (663f2fb92608073824ee3106886120f3) C:\WINDOWS\system32\drivers\AsIO.sys
20:48:32.0093 3648 aslm75 (71356a1370739e25375a1d17b6ae318f) C:\WINDOWS\system32\drivers\aslm75.sys
20:48:32.0140 3648 aslm75 ( UnsignedFile.Multi.Generic ) -
warning20:48:32.0140 3648 aslm75 - detected UnsignedFile.Multi.Generic (1)
20:48:32.0421 3648 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:48:32.0781 3648 aswFsBlk (581b82df5dbcc1dda6b775fac0d92472) C:\WINDOWS\system32\drivers\aswFsBlk.sys
20:48:32.0937 3648 aswMon2 (4310e0977b48ec9bc5cca6931f806e6d) C:\WINDOWS\system32\drivers\aswMon2.sys
20:48:33.0046 3648 aswRdr (0b44ee90b3db93582b260a80b28b7ffd) C:\WINDOWS\system32\drivers\aswRdr.sys
20:48:33.0203 3648 aswSnx (ca9601cd277a1e510b80422a40240a95) C:\WINDOWS\system32\drivers\aswSnx.sys
20:48:33.0609 3648 aswSP (05ea22dde5ca7ee3a865046aff2f0229) C:\WINDOWS\system32\drivers\aswSP.sys
20:48:33.0875 3648 aswTdi (3ac73a9e7378848d1bde174b4bb39212) C:\WINDOWS\system32\drivers\aswTdi.sys
20:48:33.0937 3648 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:48:34.0234 3648 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:48:34.0828 3648 Ati HotKey Poller (471087b5e1e01cc82604e81ea14781d8) C:\WINDOWS\system32\Ati2evxx.exe
20:48:34.0890 3648 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) -
warning20:48:34.0890 3648 Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1)
20:48:35.0265 3648 ATI Smart (b979ba0120b6db757196a8e2e873fe3c) C:\WINDOWS\system32\ati2sgag.exe
20:48:35.0484 3648 ATI Smart ( UnsignedFile.Multi.Generic ) -
warning20:48:35.0484 3648 ATI Smart - detected UnsignedFile.Multi.Generic (1)
20:48:36.0109 3648 ati2mtag (c0b86ecb324e50f6bbd529f9d5c6b24b) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
20:48:37.0515 3648 ati2mtag ( UnsignedFile.Multi.Generic ) -
warning20:48:37.0515 3648 ati2mtag - detected UnsignedFile.Multi.Generic (1)
20:48:37.0609 3648 atitray (39f3215c9606d709ad8046a32ef946b2) C:\PROGRA~1\NGOATI~1\ATT\atitray.sys
20:48:37.0625 3648 atitray ( UnsignedFile.Multi.Generic ) -
warning20:48:37.0625 3648 atitray - detected UnsignedFile.Multi.Generic (1)
20:48:37.0828 3648 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:48:38.0171 3648 AudioSrv (f10745ed3195360e69aa4a6e7768c0e0) C:\WINDOWS\System32\audiosrv.dll
20:48:38.0468 3648 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:48:38.0765 3648 avast\Program Files\AVAST Software\Avast\AvastSvc.exe
20:48:38.0875 3648 Avc (f8e6956a614f15a0860474c5e2a7de6b) C:\WINDOWS\system32\DRIVERS\avc.sys
20:48:39.0062 3648 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:48:39.0359 3648 BITS (5c0073a51c4873430fa8b262e92183ff) C:\WINDOWS\system32\qmgr.dll
20:48:40.0328 3648 Browser (69eaa7501f53a40e8c04c69f2391224f) C:\WINDOWS\System32\browser.dll
20:48:40.0703 3648 BrScnUsb (92a964547b96d697e5e9ed43b4297f5a) C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys
20:48:40.0734 3648 BrScnUsb ( UnsignedFile.Multi.Generic ) -
warning20:48:40.0734 3648 BrScnUsb - detected UnsignedFile.Multi.Generic (1)
20:48:40.0812 3648 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:48:41.0062 3648 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
20:48:41.0312 3648 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:48:41.0562 3648 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:48:41.0750 3648 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:48:42.0046 3648 CiSvc (bd85400700b80fbe3d4a3412bce74861) C:\WINDOWS\system32\cisvc.exe
20:48:42.0281 3648 ClipSrv (4fb6108130829666c8fe96b442fead94) C:\WINDOWS\system32\clipsrv.exe
20:48:42.0531 3648 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:48:44.0687 3648 CryptSvc (0a9cf5d3cf63a8699f28c814ef821c7e) C:\WINDOWS\System32\cryptsvc.dll
20:48:45.0015 3648 DcomLaunch (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll
20:48:45.0171 3648 Dhcp (146ab038f5dbb366122d28444999ab2c) C:\WINDOWS\System32\dhcpcsvc.dll
20:48:45.0453 3648 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:48:45.0734 3648 dmboot (dec123e0c75971d0cc7a6c6a75e28429) C:\WINDOWS\system32\drivers\dmboot.sys
20:48:46.0015 3648 dmio (7268e66259722f6228c730685b201092) C:\WINDOWS\system32\drivers\dmio.sys
20:48:46.0234 3648 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:48:46.0609 3648 dmserver (127db74184e2d3d31655da525a5efde1) C:\WINDOWS\System32\dmserver.dll
20:48:46.0921 3648 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:48:47.0125 3648 Dnscache (de6cdb6cbc5c27b9085cfa6dfe8e5025) C:\WINDOWS\System32\dnsrslvr.dll
20:48:47.0296 3648 Dot3svc (90ee765e1a598b578852901f74f914f1) C:\WINDOWS\System32\dot3svc.dll
20:48:47.0625 3648 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:48:47.0906 3648 EapHost (e6bbdebf7081899d161c773e8d84d015) C:\WINDOWS\System32\eapsvc.dll
20:48:48.0125 3648 ElbyCDIO (d71233d7ccc2e64f8715a20428d5a33b) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
20:48:48.0187 3648 ENTECH (fd9fc82f134b1c91004ffc76a5ae494b) C:\WINDOWS\system32\DRIVERS\ENTECH.sys
20:48:48.0203 3648 ENTECH ( UnsignedFile.Multi.Generic ) -
warning20:48:48.0203 3648 ENTECH - detected UnsignedFile.Multi.Generic (1)
20:48:48.0296 3648 ERSvc (2f5c7f650b7af178988946ee4b0d9c01) C:\WINDOWS\System32\ersvc.dll
20:48:48.0500 3648 Eventlog (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe
20:48:48.0578 3648 EventSystem (97912dc0679d2da60cce589bbc196d72) C:\WINDOWS\system32\es.dll
20:48:48.0734 3648 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:48:48.0937 3648 FastUserSwitchingCompatibility (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:48:49.0109 3648 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:48:49.0296 3648 Fips (8bfffb5ac954e19dfdb96d56512aa518) C:\WINDOWS\system32\drivers\Fips.sys
20:48:49.0546 3648 FLEXnet Licensing Service (abedfd48ac042c6aaad32452e77217a1) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
20:48:49.0687 3648 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:48:49.0921 3648 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:48:50.0234 3648 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:48:50.0312 3648 fssfltr (e0087225b137e57239ff40f8ae82059b) C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
20:48:50.0453 3648 fsssvc (45b52394f9624237f33a8a3d73c0b221) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
20:48:50.0593 3648 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:48:50.0796 3648 Ftdisk (fa8ca22e70245c81ff29c36af56292fc) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:48:51.0031 3648 getPlus(R) Helper (78494ae0f93358179b97571b9e76997c) C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
20:48:51.0140 3648 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:48:51.0437 3648 gupdate1c995cd7142e114 (626a24ed1228580b9518c01930936df9) C:\Program Files\Google\Update\GoogleUpdate.exe
20:48:51.0484 3648 gupdatem (626a24ed1228580b9518c01930936df9) C:\Program Files\Google\Update\GoogleUpdate.exe
20:48:51.0640 3648 HdAudAddService (160b24fd894e79e71c983ea403a6e6e7) C:\WINDOWS\system32\drivers\HdAudio.sys
20:48:51.0765 3648 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
20:48:52.0015 3648 helpsvc (5327bad9b35c33d2a64b64e4cf282ecd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:48:52.0296 3648 HidServ (10003105aab8d5a7db51a9cb3d9f55a3) C:\WINDOWS\System32\hidserv.dll
20:48:52.0546 3648 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:48:52.0828 3648 hkmsvc (1ff903ffa2da1704e5a5443d37d8e49e) C:\WINDOWS\System32\kmsvc.dll
20:48:53.0187 3648 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
20:48:53.0203 3648 hpqcxs08 ( UnsignedFile.Multi.Generic ) -
warning20:48:53.0203 3648 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
20:48:53.0281 3648 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
20:48:53.0578 3648 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
20:48:53.0640 3648 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
20:48:53.0734 3648 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:48:53.0890 3648 HTTPFilter (2529c7ba05242beed0027f554d0513bb) C:\WINDOWS\System32\w3ssl.dll
20:48:54.0187 3648 i8042prt (c43372d0682f8e32e4ec21117e089ec0) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:48:54.0484 3648 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:48:54.0593 3648 imagedrv (c0f65389c1544e917b3c4b9441130691) C:\WINDOWS\system32\Drivers\imagedrv.sys
20:48:54.0671 3648 imagesrv (96de706d0cf3d163d3d2c375d6622783) C:\WINDOWS\system32\DRIVERS\imagesrv.sys
20:48:54.0765 3648 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:48:54.0953 3648 ImapiService (a117772f94c854de5d1bbc1f1962b192) C:\WINDOWS\system32\imapi.exe
20:48:55.0375 3648 IntcAzAudAddService (0be7f157d695e1d10ee102c96de4ac18) C:\WINDOWS\system32\drivers\RtkHDAud.sys
20:48:55.0875 3648 IntelIde (72c63ad984d427d34bd5b9db838d88eb) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:48:56.0078 3648 intelppm (2d2254fac267e6b1c7865e8ebef60c6d) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:48:56.0265 3648 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:48:56.0515 3648 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:48:56.0703 3648 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:48:56.0890 3648 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:48:57.0156 3648 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:48:57.0343 3648 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:48:57.0453 3648 isapnp (0b78e1a31340e1fb1e389d5633f7c3a0) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:48:57.0750 3648 JavaQuickStarterService (0a5709543986843d37a92290b7838340) C:\Program Files\Java\jre6\bin\jqs.exe
20:48:57.0875 3648 JL2005C (03ca5f0eb17c33d79ef90c4cc21e80db) C:\WINDOWS\system32\Drivers\jl2005c.sys
20:48:57.0906 3648 JL2005C ( UnsignedFile.Multi.Generic ) -
warning20:48:57.0906 3648 JL2005C - detected UnsignedFile.Multi.Generic (1)
20:48:57.0937 3648 Kbdclass (380397621e94b32c744e7b2cc1330390) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:48:58.0125 3648 kbdhid (b833b70fe639f01fb36cedabe57ef031) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
20:48:58.0375 3648 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:48:58.0578 3648 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:48:58.0765 3648 lanmanserver (c7955e7edaea462d04f1c4be1d340372) C:\WINDOWS\System32\srvsvc.dll
20:48:58.0906 3648 lanmanworkstation (a936a575eaf6dce8dc08bc0c53972add) C:\WINDOWS\System32\wkssvc.dll
20:48:59.0078 3648 Lbd (b7c19ec8b0dd7efa58ad41ffeb8b8cda) C:\WINDOWS\system32\DRIVERS\Lbd.sys
20:48:59.0171 3648 LBeepKE (be2dc24d403643a2d1d98f33c7087b38) C:\WINDOWS\system32\Drivers\LBeepKE.sys
20:48:59.0343 3648 LBTServ (910344e2a984010435ae84783b25e5eb) C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
20:48:59.0484 3648 LHidFilt (01cc7fb6e790ef044b411377f3a1ff41) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
20:48:59.0531 3648 LHidFlt2 (27bbea62dfafc495e956d3911ebc3045) C:\WINDOWS\system32\DRIVERS\LHidFlt2.sys
20:48:59.0656 3648 LHidKE (5fbb5a009889c7374e4b6b3aecabce35) C:\WINDOWS\system32\DRIVERS\LHidKE.Sys
20:48:59.0671 3648 LHidKE ( UnsignedFile.Multi.Generic ) -
warning20:48:59.0671 3648 LHidKE - detected UnsignedFile.Multi.Generic (1)
20:48:59.0718 3648 LKbdFlt2 (bbc297ea4fc97fc7b85f70915345c80a) C:\WINDOWS\system32\DRIVERS\LKbdFlt2.sys
20:48:59.0812 3648 LmHosts (91ae20c5c2776c511994aa1308c05283) C:\WINDOWS\System32\lmhsvc.dll
20:49:00.0046 3648 LMouFilt (a2e7eae8898d7b4b8c302b8f4e836bb5) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
20:49:00.0125 3648 LMouFlt2 (45df10f44f6a140a4f3dd377676603f2) C:\WINDOWS\system32\DRIVERS\LMouFlt2.sys
20:49:00.0218 3648 LMouKE (98e6dc123f52780a6b03cf9747cb1fc7) C:\WINDOWS\system32\DRIVERS\LMouKE.Sys
20:49:00.0234 3648 LMouKE ( UnsignedFile.Multi.Generic ) -
warning20:49:00.0234 3648 LMouKE - detected UnsignedFile.Multi.Generic (1)
20:49:00.0265 3648 LUsbFilt (ddfa88e36d5f8db5fbdbdddc4969db0a) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys
20:49:00.0359 3648 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\WINDOWS\system32\drivers\mbam.sys
20:49:00.0515 3648 MBAMService (ba400ed640bca1eae5c727ae17c10207) D:\program files\Malwarebytes' Anti-Malware\mbamservice.exe
20:49:00.0625 3648 Messenger (c56a45a03dca11712de9fdf98224230b) C:\WINDOWS\System32\msgsvc.dll
20:49:00.0875 3648 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:49:01.0078 3648 mnmsrvc (5b1d994dcf1895afa27600e46a2f0fea) C:\WINDOWS\system32\mnmsrvc.exe
20:49:01.0312 3648 Modem (8114eeac353f549331ab73e9af4219ed) C:\WINDOWS\system32\drivers\Modem.sys
20:49:01.0562 3648 Mouclass (1a4e2214dd63e4a876463d3427ee8261) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:49:01.0750 3648 mouhid (18017899254e01371e1a39754d6bf98c) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:49:01.0953 3648 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:49:02.0250 3648 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:49:02.0468 3648 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:49:02.0640 3648 MSDTC (21ea21984d7d1ad50db2e627020ab14c) C:\WINDOWS\system32\msdtc.exe
20:49:02.0875 3648 MSDV (1477849772712bac69c144dcf2c9ce81) C:\WINDOWS\system32\DRIVERS\msdv.sys
20:49:03.0093 3648 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:49:03.0281 3648 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:49:03.0468 3648 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:49:03.0687 3648 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:49:03.0890 3648 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:49:04.0078 3648 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
20:49:04.0296 3648 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
20:49:04.0375 3648 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:49:04.0468 3648 MxlW2k (a1520761f42dbb06db7929d6fa9753ea) C:\WINDOWS\system32\drivers\MxlW2k.sys
20:49:04.0500 3648 MxlW2k ( UnsignedFile.Multi.Generic ) -
warning20:49:04.0500 3648 MxlW2k - detected UnsignedFile.Multi.Generic (1)
20:49:04.0546 3648 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
20:49:04.0781 3648 napagent (87e394c810794d3c70cf22e8316cb23e) C:\WINDOWS\System32\qagentrt.dll
20:49:05.0109 3648 NBService (3bae2bfcb6d69e19c8373f635dd544dc) C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
20:49:05.0312 3648 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:49:05.0500 3648 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
20:49:05.0703 3648 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:49:05.0875 3648 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:49:06.0062 3648 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:49:06.0234 3648 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:49:06.0390 3648 Net Driver HPZ12 (2969d26eee289be7422aa46fc55f4e38) C:\WINDOWS\system32\HPZinw12.dll
20:49:06.0406 3648 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) -
warning20:49:06.0406 3648 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:49:06.0468 3648 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:49:06.0640 3648 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:49:06.0890 3648 NetDDE (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe
20:49:07.0062 3648 NetDDEdsdm (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe
20:49:07.0265 3648 Netlogon (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:07.0453 3648 Netman (5431fb616ecae0d587c5b97d0b86cbd8) C:\WINDOWS\System32\netman.dll
20:49:07.0734 3648 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:49:07.0859 3648 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
20:49:08.0125 3648 Nla (4522cbe00a9e9eee36aa82ed4b319148) C:\WINDOWS\System32\mswsock.dll
20:49:08.0296 3648 NMIndexingService (193fa51dddd0bffded1c340f0434999a) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
20:49:08.0375 3648 nosGetPlusHelper (25d6b2eb0a1fc4ab413afe7ec4793ec1) C:\Program Files\NOS\bin\getPlus_Helper_3004.dll
20:49:08.0500 3648 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:49:08.0703 3648 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:49:08.0968 3648 NtLmSsp (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:09.0171 3648 NtmsSvc (ac1a78237b53044735693633f8235468) C:\WINDOWS\system32\ntmssvc.dll
20:49:09.0406 3648 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:49:09.0625 3648 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:49:09.0812 3648 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:49:10.0031 3648 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
20:49:10.0296 3648 OmniUsb (e6622491f114b8c9cb179011d300c009) C:\WINDOWS\system32\DRIVERS\OmniUsb.sys
20:49:10.0375 3648 OmniUsbl (a20310e06fb9a26753979220fd50382c) C:\WINDOWS\system32\DRIVERS\OmniUsbl.sys
20:49:10.0468 3648 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:49:10.0578 3648 Parport (e3934ccc20a4d24f1924e13d36d2a5bd) C:\WINDOWS\system32\DRIVERS\parport.sys
20:49:10.0750 3648 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:49:10.0953 3648 ParVdm (1eade28746a64c21e0a808bb12a63326) C:\WINDOWS\system32\drivers\ParVdm.sys
20:49:11.0125 3648 PCI (3b166f9f753c21aedaa9a6bd76b49655) C:\WINDOWS\system32\DRIVERS\pci.sys
20:49:11.0343 3648 PCIIde (b31edeba4da28283f6b8dc4756fb9585) C:\WINDOWS\system32\DRIVERS\pciide.sys
20:49:11.0546 3648 Pcmcia (2137ffd65f8e609a3a5acd487c56cce0) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:49:11.0812 3648 PLFlash DeviceIoControl Service (875e4e0661f3a5994df9e5e3a0a4f96b) C:\WINDOWS\system32\IoctlSvc.exe
20:49:11.0828 3648 PLFlash DeviceIoControl Service ( UnsignedFile.Multi.Generic ) -
warning20:49:11.0828 3648 PLFlash DeviceIoControl Service - detected UnsignedFile.Multi.Generic (1)
20:49:11.0875 3648 PlugPlay (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe
20:49:12.0015 3648 Pml Driver HPZ12 (bafc9706bdf425a02b66468ab2605c59) C:\WINDOWS\system32\HPZipm12.dll
20:49:12.0046 3648 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) -
warning20:49:12.0046 3648 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:49:12.0125 3648 PolicyAgent (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:12.0312 3648 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:49:12.0500 3648 ProtectedStorage (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:12.0671 3648 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:49:12.0875 3648 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:49:13.0093 3648 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:49:13.0187 3648 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:49:13.0390 3648 RasAuto (0575d034b1292ca3a9bb9f67a8ee289c) C:\WINDOWS\System32\rasauto.dll
20:49:13.0609 3648 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:49:13.0828 3648 RasMan (9e7e2df6971a5f00102be3f901cc3bdc) C:\WINDOWS\System32\rasmans.dll
20:49:14.0078 3648 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:49:14.0281 3648 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:49:14.0468 3648 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:49:14.0687 3648 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:49:14.0921 3648 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
20:49:15.0046 3648 RDSessMgr (ea9fdf71d696b532bdc44c8bff03a737) C:\WINDOWS\system32\sessmgr.exe
20:49:15.0296 3648 redbook (4173bc66e485fd77a03c4819f60bd0da) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:49:15.0484 3648 RemoteAccess (4007abf5d9bf0e55451d775443d1f985) C:\WINDOWS\System32\mprdim.dll
20:49:15.0734 3648 RpcLocator (be078f8f7ec2491efdd79a53353a060f) C:\WINDOWS\system32\locator.exe
20:49:15.0984 3648 RpcSs (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll
20:49:16.0125 3648 RSVP (ad1b5f1b99fff08c99f443d784711a81) C:\WINDOWS\system32\rsvp.exe
20:49:16.0343 3648 SamSs (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:16.0531 3648 SCardSvr (1b4cd62174e907c7ef8ec5d4d0a2a616) C:\WINDOWS\System32\SCardSvr.exe
20:49:16.0781 3648 Schedule (7c288ae0f75cb18cff1df6179a67ad8f) C:\WINDOWS\system32\schedsvc.dll
20:49:17.0031 3648 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:49:17.0218 3648 seclogon (6983665bea867125b1da5757cd8b2f9d) C:\WINDOWS\System32\seclogon.dll
20:49:17.0406 3648 SENS (f6ec8f1e50e40237bddee1cb7fe20b42) C:\WINDOWS\system32\sens.dll
20:49:17.0609 3648 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:49:17.0812 3648 Serial (92c21762653bb2ce51147eb8a9aa654f) C:\WINDOWS\system32\DRIVERS\serial.sys
20:49:18.0015 3648 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\DRIVERS\sfloppy.sys
20:49:18.0250 3648 SharedAccess (7579c4be909d47f10f3d8d801cb13ed9) C:\WINDOWS\System32\ipnathlp.dll
20:49:18.0500 3648 ShellHWDetection (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:49:18.0578 3648 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
20:49:18.0765 3648 SNMP (395baf8ea14e8c14a2a9eedd13fc8ba0) C:\WINDOWS\System32\snmp.exe
20:49:19.0031 3648 SNMPTRAP (f2927de8adc20282835347c22ac31d8a) C:\WINDOWS\System32\snmptrap.exe
20:49:19.0265 3648 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:49:19.0515 3648 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
20:49:19.0656 3648 sptd (cdddec541bc3c96f91ecb48759673505) C:\WINDOWS\system32\Drivers\sptd.sys
20:49:19.0656 3648 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
20:49:19.0671 3648 sptd ( LockedFile.Multi.Generic ) -
warning20:49:19.0671 3648 sptd - detected LockedFile.Multi.Generic (1)
20:49:19.0718 3648 sr (64d2a7640e0767ecd3bcb38d3200e7ce) C:\WINDOWS\system32\DRIVERS\sr.sys
20:49:19.0890 3648 srservice (81cbf363c414620caa61bd6843d8fdb9) C:\WINDOWS\system32\srsvc.dll
20:49:20.0062 3648 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:49:20.0203 3648 SSDPSRV (5b9d0de64be96a806819516440fd211c) C:\WINDOWS\System32\ssdpsrv.dll
20:49:20.0390 3648 stisvc (5ae996186d2dc694fef88f14a3fc9242) C:\WINDOWS\system32\wiaservc.dll
20:49:20.0609 3648 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
20:49:20.0828 3648 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:49:21.0031 3648 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:49:21.0281 3648 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:49:21.0484 3648 SysmonLog (251eae7c56c6ab9490311a3c9757e18d) C:\WINDOWS\system32\smlogsvc.exe
20:49:21.0765 3648 TapiSrv (2bc9fb448f0c2394ff53c83a7bb04731) C:\WINDOWS\System32\tapisrv.dll
20:49:22.0000 3648 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:49:22.0125 3648 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:49:22.0375 3648 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:49:22.0578 3648 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:49:22.0828 3648 TermService (e0aef86a594c9990d6321c5ca239c5b7) C:\WINDOWS\System32\termsrv.dll
20:49:23.0125 3648 Themes (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:49:23.0218 3648 TomTomHOMEService (3199a477f0f06eede41bd55179f8eb05) D:\program files\TomTom HOME 2\TomTomHOMEService.exe
20:49:23.0296 3648 TrkWks (20655e8ca1c78bc7088b18e93806d21b) C:\WINDOWS\system32\trkwks.dll
20:49:23.0484 3648 ubohci (9dd333fa5746c222bbb58ab704c78ba5) C:\WINDOWS\system32\DRIVERS\ubohci.sys
20:49:23.0515 3648 ubohci ( UnsignedFile.Multi.Generic ) -
warning20:49:23.0515 3648 ubohci - detected UnsignedFile.Multi.Generic (1)
20:49:23.0578 3648 ubsbm (1bd61b9ac6756c58fd88fc74dcf1bd85) C:\WINDOWS\system32\DRIVERS\ubsbm.sys
20:49:23.0578 3648 ubsbm ( UnsignedFile.Multi.Generic ) -
warning20:49:23.0578 3648 ubsbm - detected UnsignedFile.Multi.Generic (1)
20:49:23.0609 3648 ubumapi (64461004a7e6a59f222b45d74a164556) C:\WINDOWS\system32\DRIVERS\ubumapi.sys
20:49:23.0625 3648 ubumapi ( UnsignedFile.Multi.Generic ) -
warning20:49:23.0625 3648 ubumapi - detected UnsignedFile.Multi.Generic (1)
20:49:23.0687 3648 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:49:23.0968 3648 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:49:24.0187 3648 upnphost (01653d6c9604f1fb31a76ec94e08954f) C:\WINDOWS\System32\upnphost.dll
20:49:24.0359 3648 UPS (a89796dd0de24cf03b3a39407e1f46a3) C:\WINDOWS\System32\ups.exe
20:49:24.0578 3648 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:49:24.0781 3648 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:49:24.0984 3648 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:49:25.0171 3648 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:49:25.0359 3648 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:49:25.0593 3648 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:49:25.0781 3648 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:49:25.0984 3648 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:49:26.0171 3648 VolSnap (8ab662b3c4691e6ddf61c96bb5b7d103) C:\WINDOWS\system32\drivers\VolSnap.sys
20:49:26.0421 3648 VSS (a585edd6965b301de8a45c6768c7c215) C:\WINDOWS\System32\vssvc.exe
20:49:26.0546 3648 W32Time (390d8e65f362327ad510b08971478301) C:\WINDOWS\system32\w32time.dll
20:49:26.0765 3648 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:49:27.0015 3648 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
20:49:27.0109 3648 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:49:27.0296 3648 WebClient (33d8e2812054d97a0aec9b8f04277927) C:\WINDOWS\System32\webclnt.dll
20:49:27.0546 3648 winmgmt (f9e105f369c18e4001e0c05aaf600d73) C:\WINDOWS\system32\wbem\WMIsvc.dll
20:49:27.0765 3648 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
20:49:27.0953 3648 WmiApSrv (87f11d161207c7063edabac0aadc33c3) C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:49:28.0234 3648 WMPNetworkSvc (79a01acd485687ee602411a06b63a9a5) C:\Program Files\Windows Media Player\WMPNetwk.exe
20:49:28.0437 3648 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
20:49:28.0500 3648 wscsvc (843f7fa8ea38e6a4262976dcc994c81a) C:\WINDOWS\system32\wscsvc.dll
20:49:28.0703 3648 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
20:49:28.0921 3648 wuauserv (1e8fdddef3fe260badab06dae10d753a) C:\WINDOWS\system32\wuauserv.dll
20:49:29.0156 3648 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:49:29.0265 3648 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
20:49:29.0328 3648 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
20:49:29.0468 3648 WZCSVC (e99782dbb8ffa2aee72b31dac8d8d887) C:\WINDOWS\System32\wzcsvc.dll
20:49:29.0765 3648 xmlprov (fd3c38635808920f8235bf2fed642f54) C:\WINDOWS\System32\xmlprov.dll
20:49:30.0000 3648 yukonwxp (d590231272d61b470c3c24a08ace03b0) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
20:49:30.0046 3648 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk0\DR0
20:49:30.0265 3648 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk1\DR1
20:49:30.0328 3648 Boot (0x1200) (3f48ec6f5abd8aaf3f46f6aeb0a75129) \Device\Harddisk0\DR0\Partition0
20:49:30.0343 3648 Boot (0x1200) (fe934d456584a4058e73ee75e707785f) \Device\Harddisk0\DR0\Partition1
20:49:30.0343 3648 Boot (0x1200) (937af0b2c0044886e85243435ee3e097) \Device\Harddisk1\DR1\Partition0
20:49:30.0359 3648 ============================================================
20:49:30.0359 3648 Scan finished
20:49:30.0359 3648 ============================================================
20:49:31.0234 3192 Deinitialize success
.
==============================================
System Restore Point Check:
.
TDSSKiller Starter Restore Point Created Succesfully
==============================================
Registry Export
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile\GloballyOpenPorts\List]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
==============================================
EOF
logje combofix:
ComboFix 12-04-12.03 - caroger 12-04-2012 21:00:50.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.1023.476 [GMT 2:00]
Gestart vanuit: c:\documents and settings\caroger\Bureaublad\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
ADS - WINDOWS: deleted 24 bytes in 1 streams. .
(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\caroger\Application Data\PriceGong
c:\documents and settings\caroger\Application Data\PriceGong\Data\1.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\2258.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\a.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\b.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\c.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\d.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\e.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\f.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\g.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\h.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\i.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\j.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\k.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\l.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\m.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\mru.xml
c:\documents and settings\caroger\Application Data\PriceGong\Data\n.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\o.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\p.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\q.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\r.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\s.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\t.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\u.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\v.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\w.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\wlu.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\x.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\y.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\z.txt
c:\documents and settings\caroger\WINDOWS
c:\program files\GooglePlusVideos
c:\program files\GooglePlusVideos\DeploymentHelper.exe
c:\program files\GooglePlusVideos\FFExt\chrome.manifest
c:\program files\GooglePlusVideos\FFExt\chrome\content\googleplusvideos.xul
c:\program files\GooglePlusVideos\FFExt\chrome\content\script-injector.js
c:\program files\GooglePlusVideos\FFExt\install.rdf
c:\program files\GooglePlusVideos\GooglePlusVideosLicense.txt
c:\program files\GooglePlusVideos\GooglePlusVideosXPCOM.dll
c:\program files\GooglePlusVideos\GVConfig.ini
c:\program files\GooglePlusVideos\IGooglePlusVideosXPCOM.xpt
c:\program files\GooglePlusVideos\MFC42U.DLL
c:\program files\GooglePlusVideos\Uninstall.bat
c:\program files\Internet Explorer\SET344.tmp
c:\program files\Internet Explorer\SET345.tmp
c:\program files\Internet Explorer\SET346.tmp
c:\program files\Internet Explorer\SET3AA.tmp
c:\program files\Internet Explorer\SET3AB.tmp
c:\program files\Internet Explorer\SET3AC.tmp
c:\windows\system\BCBSMP35.BPL
c:\windows\system32\ati2cqag.dll.tmp
c:\windows\system32\ati2dvag.dll.tmp
c:\windows\system32\ati3duag.dll.tmp
c:\windows\system32\ativvaxx.dll.tmp
c:\windows\system32\OLD397.tmp
c:\windows\system32\OLD645.tmp
c:\windows\system32\PowerToyReadme.htm
c:\windows\system32\SET349.tmp
c:\windows\system32\SET34A.tmp
c:\windows\system32\SET34B.tmp
c:\windows\system32\SET34C.tmp
c:\windows\system32\SET34D.tmp
c:\windows\system32\SET34E.tmp
c:\windows\system32\SET34F.tmp
c:\windows\system32\SET350.tmp
c:\windows\system32\SET351.tmp
c:\windows\system32\SET352.tmp
c:\windows\system32\SET353.tmp
c:\windows\system32\SET354.tmp
c:\windows\system32\SET355.tmp
c:\windows\system32\SET356.tmp
c:\windows\system32\SET357.tmp
c:\windows\system32\SET358.tmp
c:\windows\system32\SET359.tmp
c:\windows\system32\SET35B.tmp
c:\windows\system32\SET35C.tmp
c:\windows\system32\SET35D.tmp
c:\windows\system32\SET35E.tmp
c:\windows\system32\SET35F.tmp
c:\windows\system32\SET360.tmp
c:\windows\system32\SET361.tmp
c:\windows\system32\SET362.tmp
c:\windows\system32\SET363.tmp
c:\windows\system32\SET364.tmp
c:\windows\system32\SET365.tmp
c:\windows\system32\SET366.tmp
c:\windows\system32\SET367.tmp
c:\windows\system32\SET368.tmp
c:\windows\system32\SET369.tmp
c:\windows\system32\SET36A.tmp
c:\windows\system32\SET36B.tmp
c:\windows\system32\SET36C.tmp
c:\windows\system32\SET36D.tmp
c:\windows\system32\SET36E.tmp
c:\windows\system32\SET36F.tmp
c:\windows\system32\SET370.tmp
c:\windows\system32\SET371.tmp
c:\windows\system32\SET372.tmp
c:\windows\system32\SET373.tmp
c:\windows\system32\SET374.tmp
c:\windows\system32\SET38.tmp
c:\windows\system32\SET3AF.tmp
c:\windows\system32\SET3B0.tmp
c:\windows\system32\SET3B1.tmp
c:\windows\system32\SET3B2.tmp
c:\windows\system32\SET3B3.tmp
c:\windows\system32\SET3B4.tmp
c:\windows\system32\SET3B5.tmp
c:\windows\system32\SET3B6.tmp
c:\windows\system32\SET3B7.tmp
c:\windows\system32\SET3B8.tmp
c:\windows\system32\SET3B9.tmp
c:\windows\system32\SET3BA.tmp
c:\windows\system32\SET3BB.tmp
c:\windows\system32\SET3BC.tmp
c:\windows\system32\SET3BD.tmp
c:\windows\system32\SET3BE.tmp
c:\windows\system32\SET3BF.tmp
c:\windows\system32\SET3C1.tmp
c:\windows\system32\SET3C2.tmp
c:\windows\system32\SET3C3.tmp
c:\windows\system32\SET3C4.tmp
c:\windows\system32\SET3C5.tmp
c:\windows\system32\SET3C6.tmp
c:\windows\system32\SET3C7.tmp
c:\windows\system32\SET3C8.tmp
c:\windows\system32\SET3C9.tmp
c:\windows\system32\SET3CA.tmp
c:\windows\system32\SET3CB.tmp
c:\windows\system32\SET3CC.tmp
c:\windows\system32\SET3CD.tmp
c:\windows\system32\SET3CE.tmp
c:\windows\system32\SET3CF.tmp
c:\windows\system32\SET3D0.tmp
c:\windows\system32\SET3D1.tmp
c:\windows\system32\SET3D2.tmp
c:\windows\system32\SET3D3.tmp
c:\windows\system32\SET3D4.tmp
c:\windows\system32\SET3D5.tmp
c:\windows\system32\SET3D6.tmp
c:\windows\system32\SET3D7.tmp
c:\windows\system32\SET3D8.tmp
c:\windows\system32\SET3D9.tmp
c:\windows\system32\SET3DA.tmp
c:\windows\system32\SET8A.tmp
c:\windows\system32\SETC5.tmp
c:\windows\system32\SETC7.tmp
c:\windows\system32\SETD3.tmp
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2012-03-12 to 2012-04-12 ))))))))))))))))))))))))))))))
.
.
2012-04-12 18:43 . 2012-04-12 18:43 -------- d-----w- c:\windows\LastGood
2012-04-12 18:35 . 2012-04-12 18:35 -------- dc----w- C:\TDSSKiller_Quarantine
2012-04-12 18:34 . 2012-04-12 18:49 -------- dc----w- C:\TDSSStarter
2012-04-12 16:14 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-12 16:12 . 2012-04-12 16:12 388096 -c--a-r- c:\documents and settings\caroger\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-04-05 22:00 . 2001-09-06 19:27 50176 -c--a-w- c:\windows\system32\dllcache\umaxp60.dll
2012-04-05 22:00 . 2001-09-06 19:27 47616 -c--a-w- c:\windows\system32\dllcache\umaxcam.dll
2012-04-05 21:58 . 2001-08-17 20:02 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys
2012-04-05 21:58 . 2001-08-17 20:01 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys
2012-04-05 21:58 . 2001-08-17 18:10 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys
2012-04-05 21:58 . 2001-08-17 18:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2012-04-05 21:58 . 2001-08-17 18:51 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys
2012-04-05 21:58 . 2001-09-06 19:26 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll
2012-04-05 21:58 . 2008-04-13 18:40 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys
2012-04-05 21:58 . 2001-08-17 18:13 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys
2012-04-05 21:58 . 2001-08-17 18:13 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys
2012-04-05 21:58 . 2001-08-17 19:49 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys
2012-04-05 21:58 . 2001-08-17 19:52 7040 -c--a-w- c:\windows\system32\dllcache\tandqic.sys
2012-04-05 21:58 . 2001-08-17 18:50 36640 -c--a-w- c:\windows\system32\dllcache\t2r4mini.sys
2012-04-05 21:58 . 2001-09-06 19:26 172768 -c--a-w- c:\windows\system32\dllcache\t2r4disp.dll
2012-04-05 21:56 . 2001-09-06 16:20 286432 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2012-04-05 21:56 . 2001-09-06 16:19 16896 -c--a-w- c:\windows\system32\dllcache\stcusb.sys
2012-04-05 21:56 . 2001-08-17 18:11 48736 -c--a-w- c:\windows\system32\dllcache\srwlnd5.sys
2012-04-05 21:56 . 2001-09-06 19:27 99840 -c--a-w- c:\windows\system32\dllcache\srusd.dll
2012-04-05 21:56 . 2001-09-06 19:27 24660 -c--a-w- c:\windows\system32\dllcache\spxupchk.dll
2012-04-05 21:56 . 2001-08-17 19:51 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys
2012-04-05 21:56 . 2001-09-06 19:27 106584 -c--a-w- c:\windows\system32\dllcache\spdports.dll
2012-04-05 21:56 . 2001-08-17 20:07 19072 -c--a-w- c:\windows\system32\dllcache\sparrow.sys
2012-04-05 21:56 . 2001-08-17 19:56 7552 -c--a-w- c:\windows\system32\dllcache\sonypvu1.sys
2012-04-05 21:55 . 2001-08-17 18:51 37040 -c--a-w- c:\windows\system32\dllcache\sonypi.sys
2012-04-05 21:55 . 2001-09-06 19:27 114688 -c--a-w- c:\windows\system32\dllcache\sonypi.dll
2012-04-05 21:55 . 2001-08-17 18:51 20752 -c--a-w- c:\windows\system32\dllcache\sonync.sys
2012-04-05 21:55 . 2001-08-17 19:53 9600 -c--a-w- c:\windows\system32\dllcache\sonymc.sys
2012-04-05 21:55 . 2008-04-13 18:40 7552 -c--a-w- c:\windows\system32\dllcache\sonyait.sys
2012-04-05 21:55 . 2001-08-17 19:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys
2012-04-05 21:55 . 2001-08-17 18:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys
2012-04-05 21:55 . 2001-09-06 19:26 147200 -c--a-w- c:\windows\system32\dllcache\smidispb.dll
2012-04-05 21:55 . 2001-08-17 18:12 25034 -c--a-w- c:\windows\system32\dllcache\smcpwr2n.sys
2012-04-05 21:53 . 2001-09-06 19:27 238592 -c--a-w- c:\windows\system32\dllcache\sisgrv.dll
2012-04-05 21:53 . 2001-08-17 18:50 104064 -c--a-w- c:\windows\system32\dllcache\sisgrp.sys
2012-04-05 21:53 . 2001-09-06 19:26 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll
2012-04-05 21:53 . 2001-08-17 18:50 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys
2012-04-05 21:53 . 2001-09-06 19:26 252032 -c--a-w- c:\windows\system32\dllcache\sis300iv.dll
2012-04-05 21:53 . 2001-08-17 18:50 101760 -c--a-w- c:\windows\system32\dllcache\sis300ip.sys
2012-04-05 21:53 . 2001-09-06 18:49 161760 -c--a-w- c:\windows\system32\dllcache\sgsmusb.sys
2012-04-05 21:53 . 2001-07-21 20:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys
2012-04-05 21:53 . 2001-08-17 18:51 98080 -c--a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2012-04-05 21:53 . 2001-09-06 19:26 386560 -c--a-w- c:\windows\system32\dllcache\sgiul50.dll
2012-04-05 21:53 . 2001-08-17 18:19 36480 -c--a-w- c:\windows\system32\dllcache\sfmanm.sys
2012-04-05 21:53 . 2001-09-06 18:47 6912 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2012-04-05 21:52 . 2001-09-06 18:47 18176 -c--a-w- c:\windows\system32\dllcache\sermouse.sys
2012-04-05 21:52 . 2001-08-17 19:53 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys
2012-04-05 21:52 . 2008-04-13 18:45 11520 -c--a-w- c:\windows\system32\dllcache\scsiscan.sys
2012-04-05 21:52 . 2001-08-17 19:52 11648 -c--a-w- c:\windows\system32\dllcache\scsiprnt.sys
2012-04-05 21:52 . 2001-09-06 18:44 17536 -c--a-w- c:\windows\system32\dllcache\scr111.sys
2012-04-05 21:52 . 2001-09-06 18:44 16768 -c--a-w- c:\windows\system32\dllcache\scmstcs.sys
2012-04-05 21:52 . 2001-08-17 19:51 23936 -c--a-w- c:\windows\system32\dllcache\sccmusbm.sys
2012-04-05 21:52 . 2001-09-06 18:42 23936 -c--a-w- c:\windows\system32\dllcache\sccmn50m.sys
2012-04-05 21:52 . 2008-04-13 18:40 43904 -c--a-w- c:\windows\system32\dllcache\sbp2port.sys
2012-04-05 21:52 . 2001-09-06 19:27 495616 -c--a-w- c:\windows\system32\dllcache\sblfx.dll
2012-04-05 21:50 . 2004-08-03 20:31 20992 -c--a-w- c:\windows\system32\dllcache\rtl8139.sys
2012-04-05 21:50 . 2001-08-17 18:12 19017 -c--a-w- c:\windows\system32\dllcache\rtl8029.sys
2012-04-05 21:50 . 2001-08-17 18:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2012-04-05 21:50 . 2001-09-06 19:27 10240 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2012-04-05 21:50 . 2001-08-17 18:19 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys
2012-04-05 21:50 . 2008-04-14 16:34 79360 -c--a-w- c:\windows\system32\dllcache\rocket.sys
2012-04-05 21:50 . 2001-08-17 18:12 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys
2012-04-05 21:50 . 2001-09-06 19:27 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll
2012-04-05 21:50 . 2001-08-17 19:51 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys
2012-04-05 21:48 . 2008-04-13 18:41 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2012-04-05 21:47 . 2001-08-17 18:11 29769 -c--a-w- c:\windows\system32\dllcache\pcntn5m.sys
2012-04-05 21:46 . 2001-09-06 18:09 54666 -c--a-w- c:\windows\system32\dllcache\otcsercb.sys
2012-04-05 21:46 . 2001-09-06 18:09 43785 -c--a-w- c:\windows\system32\dllcache\otceth5.sys
2012-04-05 21:46 . 2001-08-17 18:12 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys
2012-04-05 21:46 . 2001-08-17 18:20 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys
2012-04-05 21:46 . 2001-08-17 18:50 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys
2012-04-05 21:46 . 2001-09-06 19:26 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll
2012-04-05 21:46 . 2001-08-17 18:49 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys
2012-04-05 21:46 . 2001-09-06 17:49 9472 -c--a-w- c:\windows\system32\dllcache\ntapm.sys
2012-04-05 21:46 . 2001-08-17 19:53 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys
2012-04-05 21:44 . 2001-09-06 19:26 35392 -c--a-w- c:\windows\system32\dllcache\n9i128.dll
2012-04-05 21:44 . 2001-09-06 17:31 131072 -c--a-w- c:\windows\system32\dllcache\n100325.sys
2012-04-05 21:44 . 2001-09-06 17:31 53279 -c--a-w- c:\windows\system32\dllcache\n1000nt5.sys
2012-04-05 21:44 . 2001-09-06 17:31 76416 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2012-04-05 21:44 . 2001-09-06 19:27 7168 -c--a-w- c:\windows\system32\dllcache\mxport.dll
2012-04-05 21:44 . 2001-08-17 19:49 19968 -c--a-w- c:\windows\system32\dllcache\mxnic.sys
2012-04-05 21:44 . 2001-09-06 19:27 19968 -c--a-w- c:\windows\system32\dllcache\mxicfg.dll
2012-04-05 21:44 . 2001-09-06 17:31 22016 -c--a-w- c:\windows\system32\dllcache\mxcard.sys
2012-04-05 21:44 . 2001-08-17 18:50 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys
2012-04-05 21:44 . 2008-04-13 18:46 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys
2012-04-05 21:44 . 2001-08-17 19:48 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys
2012-04-05 21:44 . 2001-08-17 20:00 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys
2012-04-05 21:44 . 2008-04-13 18:54 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys
2012-04-05 21:43 . 2001-08-17 20:02 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys
2012-04-05 21:43 . 2001-08-17 19:48 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys
2012-04-05 21:43 . 2001-08-17 19:52 17280 -c--a-w- c:\windows\system32\dllcache\mraid35x.sys
2012-04-05 21:43 . 2001-08-17 19:57 16128 -c--a-w- c:\windows\system32\dllcache\modemcsa.sys
2012-04-05 21:43 . 2001-08-17 19:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2012-04-05 21:43 . 2001-09-06 16:59 320384 -c--a-w- c:\windows\system32\dllcache\mgaum.sys
2012-04-05 21:41 . 2001-08-17 19:53 4992 -c--a-w- c:\windows\system32\dllcache\loop.sys
2012-04-05 21:41 . 2001-08-17 18:12 70730 -c--a-w- c:\windows\system32\dllcache\lne100tx.sys
2012-04-05 21:41 . 2001-08-17 18:12 20573 -c--a-w- c:\windows\system32\dllcache\lne100.sys
2012-04-05 21:41 . 2001-08-17 18:11 25065 -c--a-w- c:\windows\system32\dllcache\lmndis3.sys
2012-04-05 21:41 . 2001-09-06 16:35 15872 -c--a-w- c:\windows\system32\dllcache\lit220p.sys
2012-04-05 21:41 . 2008-04-13 18:40 34688 -c--a-w- c:\windows\system32\dllcache\lbrtfdc.sys
2012-04-05 21:41 . 2001-09-06 16:32 26922 -c--a-w- c:\windows\system32\dllcache\lanepic5.sys
2012-04-05 21:41 . 2001-08-17 18:12 19016 -c--a-w- c:\windows\system32\dllcache\ktc111.sys
2012-04-05 21:41 . 2001-09-06 19:26 37888 -c--a-w- c:\windows\system32\dllcache\kousd.dll
2012-04-05 21:41 . 2008-04-14 17:02 48640 -c--a-w- c:\windows\system32\dllcache\kdsui.dll
2012-04-05 21:41 . 2008-04-14 17:02 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2012-04-05 21:40 . 2001-08-17 19:49 26624 -c--a-w- c:\windows\system32\dllcache\irstusb.sys
2012-04-05 21:40 . 2001-08-17 19:51 18688 -c--a-w- c:\windows\system32\dllcache\irsir.sys
2012-04-05 21:40 . 2008-04-14 17:02 29184 -c--a-w- c:\windows\system32\dllcache\irmon.dll
2012-04-05 21:40 . 2001-08-17 19:49 23552 -c--a-w- c:\windows\system32\dllcache\irmk7.sys
2012-04-05 21:40 . 2008-04-14 17:03 153088 -c--a-w- c:\windows\system32\dllcache\irftp.exe
2012-04-05 21:40 . 2008-04-13 18:54 88192 -c--a-w- c:\windows\system32\dllcache\irda.sys
2012-04-05 21:40 . 2001-08-17 18:12 45632 -c--a-w- c:\windows\system32\dllcache\ip5515.sys
2012-04-05 21:40 . 2001-09-06 19:26 90200 -c--a-w- c:\windows\system32\dllcache\io8ports.dll
2012-04-05 21:40 . 2001-08-17 19:50 38784 -c--a-w- c:\windows\system32\dllcache\io8.sys
2012-04-05 21:40 . 2001-09-06 16:16 13568 -c--a-w- c:\windows\system32\dllcache\inport.sys
2012-04-05 21:40 . 2001-08-17 19:52 16000 -c--a-w- c:\windows\system32\dllcache\ini910u.sys
2012-04-05 21:38 . 2001-08-17 19:28 488383 -c--a-w- c:\windows\system32\dllcache\hsf_v124.sys
2012-04-05 21:37 . 2001-09-06 19:26 324608 -c--a-w- c:\windows\system32\dllcache\hpojwia.dll
2012-04-05 21:36 . 2001-09-06 18:27 320512 -c--a-w- c:\windows\system32\dllcache\g200m.sys
2012-04-05 21:35 . 2001-09-06 19:26 46080 -c--a-w- c:\windows\system32\dllcache\esunib.dll
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-05 19:54 . 2010-05-12 20:11 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-03-31 13:47 . 2011-01-23 20:21 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2012-03-31 11:48 . 2011-05-27 21:10 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-01 11:00 . 2004-08-04 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:00 . 2004-08-04 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-03-01 11:00 . 2004-08-04 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10 . 2004-08-04 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10 . 2004-08-04 12:00 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17 . 2004-08-04 12:00 385024 ------w- c:\windows\system32\html.iec
2012-02-23 16:23 . 2011-02-28 18:21 41184 ----a-w- c:\windows\avastSS.scr
2012-02-23 16:23 . 2010-12-21 21:43 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-02-23 16:12 . 2011-02-28 18:22 610648 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-02-23 16:12 . 2011-02-28 18:09 337112 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-02-23 16:10 . 2010-12-21 21:43 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-02-23 16:10 . 2010-12-21 21:43 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-02-23 16:10 . 2010-12-21 21:43 95704 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2012-02-23 16:10 . 2010-12-21 21:43 89048 ----a-w- c:\windows\system32\drivers\aswmon.sys
2012-02-23 16:10 . 2011-02-28 18:09 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 16:07 . 2010-12-21 21:43 24920 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2012-02-07 18:00 . 2008-12-02 19:22 79360 ----a-w- c:\windows\system32\ff_vfw.dll
2012-02-03 09:57 . 2004-08-04 12:00 1860224 ----a-w- c:\windows\system32\win32k.sys
2012-02-01 19:42 . 2012-02-01 19:42 768848 ----a-w- c:\windows\system32\msvcr100.dll
2012-02-01 19:42 . 2012-02-01 19:42 421200 ----a-w- c:\windows\system32\msvcp100.dll
2012-01-29 10:59 . 2012-01-29 10:58 28352 ----a-w- c:\windows\system32\drivers\MxlW2k.sys
2011-12-21 08:03 . 2012-01-13 19:48 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-02-23 16:23 123536 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
"TomTomHOME.exe"="d:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2012-01-23 247728]
"Online Backup"="d:\program files\Ziggo\Backup\ziggobackup.exe" [2010-02-10 7607688]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AsusServiceProvider"="c:\program files\ASUS\AASP\1.00.23\aaCenter.exe" [2007-01-05 597504]
"SoundMan"="SOUNDMAN.EXE" [2008-06-18 77824]
"AlcWzrd"="ALCWZRD.EXE" [2004-05-03 2533888]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-02-23 4031368]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"EvtMgr6"="d:\program files\logitech\SetPointP\SetPoint.exe" [2011-10-07 1387288]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
"Malwarebytes' Anti-Malware"="d:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\caroger\Menu Start\Programma's\Opstarten\
Spamihilator.lnk - d:\program files\spamihilator\spamihilator.exe [2012-2-1 1993728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2011-09-27 19:03 66328 ----a-w- c:\program files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0smrgdf c:\program files\iolo\System Mechanic Professional 6\\0lsdelete
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^BDARemote.lnk]
backup=c:\windows\pss\BDARemote.lnkCommon Startup
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\BDARemote.lnk
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Logitech Desktop Messenger.lnk]
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Logitech Desktop Messenger.lnk
backup=c:\windows\pss\Logitech Desktop Messenger.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^caroger^Menu Start^Programma's^Opstarten^ATI Tray Tools.lnk]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
2010-07-29 00:25 497648 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Probe]
2002-12-06 15:07 617984 -c--a-w- c:\program files\ASUS\Asus Probe\AsusProb.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrowserChoice]
2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
2001-11-15 17:14 196608 -c--a-w- c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
2008-04-08 08:56 1647912 -c--a-w- c:\program files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Snelkoppeling naar eigenschappenvenster voor High Definition Audio]
2004-03-17 14:10 61952 ----a-w- c:\windows\system32\Hdaudpropshortcut.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"avast! Web Scanner"=3 (0x3)
"avast! Mail Scanner"=3 (0x3)
"aswUpdSv"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"d:\\program files\\spamihilator\\dccproc.exe"=
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5-6-2009 20:45 64288]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [20-7-2007 0:30 691696]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [28-2-2011 20:22 610648]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [28-2-2011 20:09 337112]
R1 atitray;atitray;c:\progra~1\NGOATI~1\ATT\atitray.sys [8-3-2007 12:59 14592]
R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [30-9-2010 4:06 169408]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [28-2-2011 20:09 20696]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [23-1-2011 22:20 12184]
R2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [12-4-2012 18:14 654408]
R2 TomTomHOMEService;TomTomHOMEService;d:\program files\TomTom HOME 2\TomTomHOMEService.exe [23-1-2012 6:43 92592]
R2 ubsbm;Unibrain 1394 SBM Driver;c:\windows\system32\drivers\UBSBM.sys [1-10-2010 22:37 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver;c:\windows\system32\drivers\UBUMAPI.sys [1-10-2010 22:37 36352]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [12-4-2012 18:14 22344]
R3 ubohci;Unibrain 1394 OHCI Driver;c:\windows\system32\drivers\ubohci.sys [1-10-2010 22:37 77056]
S2 gupdate1c995cd7142e114;Google Update Service (gupdate1c995cd7142e114);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [31-3-2012 13:21 253600]
S3 cpuz130;cpuz130;\??\c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys --> c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys [?]
S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 hitmanpro3;Hitman Pro 3 Support Driver;\??\c:\windows\system32\drivers\hitmanpro3.sys --> c:\windows\system32\drivers\hitmanpro3.sys [?]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; [x]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [4-8-2004 14:00 14336]
S3 vaxscsi;vaxscsi;c:\windows\system32\Drivers\vaxscsi.sys --> c:\windows\system32\Drivers\vaxscsi.sys [?]
.
--- Andere Services/Drivers In Geheugen ---
.
*NewlyCreated* - 18045219
*Deregistered* - 18045219
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Inhoud van de 'Gedeelde Taken' map
.
2012-04-12 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-31 11:48]
.
2012-02-05 c:\windows\Tasks\AdobeAAMUpdater-1.0-CC281162-B-caroger.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2010-07-29 00:25]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\User_Feed_Synchronization-{C1FC7C23-D808-461C-A46B-C1886D5D47FB}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Bijkomende Scan -------
.
uStart Page =
hxxp://www.google.nl/uInternet Settings,ProxyOverride = localhost
Trusted Zone: facebook.com\www
Trusted Zone: google.nl\www
TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 192.168.0.1
DPF: {1C3DE665-D259-4C72-9D7D-C51FCB4CCFB9} -
hxxp://kulturhus.viewnetcam.com/SysCamInst.cabDPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} -
hxxp://foto.hema.nl/ips-opdata/layout/h ... jordan.cabDPF: {3E90FFF5-1347-45B9-91F6-DA47926E9697} -
hxxp://www.ziggo.nl/f-secure/systemchec ... ysInfo.cabDPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} -
hxxp://www.aircraftdocking.com/webviewe ... kitlib.dllDPF: {E6BB2089-163F-466B-812A-748096614DFD} -
hxxp://cainternetsecurity.net/scanner/cascanner.cabFF - ProfilePath - c:\documents and settings\caroger\Application Data\Mozilla\Firefox\Profiles\9ieoqir4.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.google.nl/FF - prefs.js: keyword.URL -
hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=.
- - - - ORPHANS VERWIJDERD - - - -
.
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
MSConfigStartUp-Adobe Photo Downloader - d:\program files\photoshop 4.0\apdproxy.exe
MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe
MSConfigStartUp-EvtMgr6 - c:\program files\Logitech\SetPointP\SetPoint.exe
MSConfigStartUp-Kernel and Hardware Abstraction Layer - KHALMNPR.EXE
MSConfigStartUp-LDM - c:\program files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
MSConfigStartUp-Logitech Hardware Abstraction Layer - KHALMNPR.EXE
MSConfigStartUp-NvCplDaemon - c:\windows\system32\NvCpl.dll
MSConfigStartUp-NvMediaCenter - c:\windows\system32\NvMcTray.dll
MSConfigStartUp-nwiz - nwiz.exe
MSConfigStartUp-Spotify - c:\documents and settings\caroger\Application Data\Spotify\Spotify.exe
MSConfigStartUp-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2012-04-12 21:13
Windows 5.1.2600 Service Pack 3 NTFS
.
scannen van verborgen processen ...
.
scannen van verborgen autostart items ...
.
scannen van verborgen bestanden ...
.
Scan succesvol afgerond
verborgen bestanden: 0
.
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_LOCAL_MACHINE\software\ASUS\ASUS Probe\2.23.01]
@DACL=(02 0000)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"3140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
.
- - - - - - - > 'winlogon.exe'(788)
c:\windows\system32\Ati2evxx.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
.
Voltooingstijd: 2012-04-12 21:18:29
ComboFix-quarantined-files.txt 2012-04-12 19:18
.
Pre-Run: 5.873.840.128 bytes beschikbaar
Post-Run: 6.100.013.056 bytes beschikbaar
.
WindowsXP-KB310994-SP2-Home-BootDisk-NLD.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn
[spybotsd]
timeout.old=30
.
- - End Of File - - 7C10EEA55E9621B343C7C09E8292227A