Het is nu do mei 23, 2013 9:06 pm

Alle tijden zijn GMT + 1 uur [ Zomertijd ]




Dit onderwerp is gesloten, je kunt geen berichten wijzigen of nieuwe antwoorden plaatsen  [ 21 berichten ]  Ga naar pagina 1, 2  Volgende
Auteur Bericht
BerichtGeplaatst: wo apr 11, 2012 10:01 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
Sinds een week werkt facebook niet meer in combinatie met ie8. Krijg onderaan de pagina berichtje met fouten op pagina.
Facebook werkt wel met alle andere browsers.
Heb een week geleden iets met TOR gedaan (weet niet of dit er iets mee te maken heeft) maar heb idee dat ie8 niet meer helemaal goed werkt.
Wil graag weten of er malware ofzo inzit.

Alvast bedankt.

Gerwin

Hieronder het hijackthis logje.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:58:10, on 11-4-2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\ASUS\AASP\1.00.23\aaCenter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Java\jre6\bin\jqs.exe
D:\program files\logitech\SetPointP\SetPoint.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\IoctlSvc.exe
D:\program files\TomTom HOME 2\TomTomHOMERunner.exe
D:\program files\Ziggo\Backup\ziggobackup.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
D:\program files\spamihilator\spamihilator.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
D:\program files\TomTom HOME 2\TomTomHOMEService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
D:\program files\Ziggo\Backup\AGMailAgent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\caroger\Local Settings\Temporary Internet Files\Content.IE5\2Q5NBV41\HijackThis[2].exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files\Google\Chrome Frame\Application\18.0.1025.151\npchrome_frame.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - (no file)
O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file)
O4 - HKLM\..\Run: [AsusServiceProvider] C:\Program Files\ASUS\AASP\1.00.23\aaCenter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [EvtMgr6] D:\program files\logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "D:\program files\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - HKCU\..\Run: [Online Backup] "D:\program files\Ziggo\Backup\ziggobackup.exe" /delayed
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Spamihilator.lnk = D:\program files\spamihilator\spamihilator.exe
O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Apparaatdetectie) - http://www.logitech.com/devicedetector/ ... tion32.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} - http://downloadcenter.samsung.com/conte ... ite_EN.cab
O16 - DPF: {1C3DE665-D259-4C72-9D7D-C51FCB4CCFB9} (Panasonic Network Camera) - http://kulturhus.viewnetcam.com/SysCamInst.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://foto.hema.nl/ips-opdata/layout/h ... jordan.cab
O16 - DPF: {3E90FFF5-1347-45B9-91F6-DA47926E9697} (PlaNet SysInfo Agent) - http://www.ziggo.nl/f-secure/systemchec ... ysInfo.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.nl/SnapfishActivia.cab
O16 - DPF: {426784E5-24B2-4708-820D-117342FAD009} (Cimporter Object) - http://www.hyves.nl/cab/outlookaddressbook.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.0.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resourc ... oscan8.cab
O16 - DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} (Web Viewer Class) - http://www.aircraftdocking.com/webviewe ... kitlib.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 9854786001
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} (ContactExtractor Class) - http://www.facebook.com/controls/contactx.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 9267966437
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://cache.hyvz.com/statics/Aurigma/I ... oader4.cab
O16 - DPF: {6E718D87-6909-4FCE-92D4-EDCB2F725727} - http://www.navigram.com/engine/v911/Navigram.cab
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/s ... DEXAXO.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://activex.microsoft.com/activex/co ... SurVid.cab
O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - http://h20264.www2.hp.com/ediags/dd/ins ... csxp2k.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://www.ziggo.nl/f-secure/ols/fscax.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} - http://service.futuremark.com/openapi/r ... s/FMSI.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E6BB2089-163F-466B-812A-748096614DFD} (CAScanner Control) - http://cainternetsecurity.net/scanner/cascanner.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.hema.nl/site/xupload/XUpload.ocx
O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://cache.hyves-static.net/statics/A ... oader4.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-l ... cfscan.cab
O18 - Protocol: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files\Google\Chrome Frame\Application\18.0.1025.151\npchrome_frame.dll
O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Update Service (gupdate1c995cd7142e114) (gupdate1c995cd7142e114) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: TomTomHOMEService - TomTom - D:\program files\TomTom HOME 2\TomTomHOMEService.exe

--
End of file - 14839 bytes


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 5:10 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
Halo gerwil, we moeten afwachten wat er zoal verder gevonden wordt.

Ik wil graag dat jij je tijdens de fix aan onderstaande regels houdt:
  • Lees telkens elke instruktie eerst goed door.
  • De gegeven instrukties gelden alleen jouw Windows.
  • Maak je fouten bij de uitvoering van tools tijdens de fix, kan dat mogelijk serieuze problemen in Windows veroorzaken.
  • Installeer geen nieuwe programma's, updates of nieuwe hardware terwijl we met de fix bezig zijn.
  • Gebruik ook geen andere programma's of tools dan diegenen waartoe ik opdracht geef.
  • Emoticons (smileys) a.u.b. uitzetten, wanneer je een log post.
  • Gebruik altijd één scanner per keer, nooit meerdere tegelijk gebruiken.
  • Hou mij op de hoogte hoe jou computer op de fix reageert - goed of slecht.
  • Ook indien je iets niet begrijpt, meldt dat dan.
  • De fix, eenmaal gestart, dient afgewerkt te worden. Zelfs indien jij denkt dat alles in orde is, zijn er mogelijk nog steeds infecties.

Stap •1•
Deaktiveer SDHelper van Spybot tijdens de fix want deze onderdelen kunnen veranderingen ongedaan maken.
  • Start Spybot S&D
  • Ga naar het Mode menu en selecteer "Advanced Mode"
  • In de linker kolom kies "Tools" (of gereedschap ) en klik op > Resident
  • Uitvinken "Resident SDHelper" en sluit Spybot S&D.
  • Start de computer hierna opnieuw op.

Stap •2•
Sluit alle openstaande webvensters - behalve dit venster, dat je sluit voor het moment, dat je op de knop Fix checked klikt!

Start nu HijackThis en klik op de knop Do a Scan only,

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://cloud-search.linkury.com/results ... ORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - (no file)
O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file)

  • zet een vinkje voor die regel(s) welke met de bovenstaande regels corresponderen
  • Sluit nu de webbrowser en vervolgens klik je daarna op de knop Fix checked

Stap •3•
Welk programma: Malwarebytes MBAM
Waarvoor/waarom: specialistische scanner om Windows snel te onderzoeken op- en te ontdoen van spy- & malware.
Moeilijkheidsgraad: geen.

Download Malwarebytes MBAM via één van deze locaties:
Allereerst:
  • Al meteen na de installatie wil 'MBAM' zijn database opwaarderen – toestaan dus.
  • Ook bij herhaald gebruik: eerst 'MBAM' updaten via de tab 'Update'!
Malwarebytes MBAM opstarten:
  • Sluit nu eerst alle nog openstaande programmavensters!
    • Windows 2000 en Windows XP: start MBAM middels dubbelklik op de snelkoppeling.
    • Windows Vista en Windows 7: start MBAM middels rechtsklik op de snelkoppeling en dan kiezen voor Als Administrator uitvoeren.
  • Let op:
    • Malwarebytes verstrekt nu de volledige versie van MBAM.
    • Bij de eerstse start kijg je de mogelijkheid de volledige versie te gebruiken of de gratis versie.
    • Onafhankelijk van welke antivirusprogramma in jouw Windows adviseer ik dan de optie "Weigeren" te gebruiken.
    • Zodoende zal MBAM als gratis versie verder te gebruiken zijn
    Afbeelding
  • Doe ook nog het volgende:
    • Zodra het programma gestart is, ga dan naar het tabblad "Instellingen".
    • Vink hier aan: "Sluit Internet Explorer tijdens verwijdering van malware".

Scannen:
  • Bij het starten van 'MBAM' kies je voor 'Snelle Scan'.
  • Het scannen kan een tijdje duren, dus wees geduldig. Indien de scan voltooid is, klik dan op de knop 'OK'.
  • Klik daarna op de knop 'Bekijk Resultaten' om de resultaten te zien.
Infecties gevonden:
  • Klik nu eerst op OK om de melding weg te klikken
  • Klik vervolgens rechtsonder op de knop Bekijk resultaten.
  • Zorg er nu voor dat alle gevonden infecties aangevinkt zijn, en klik linksonder op Verwijder geselecteerde.
  • Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten.
  • Indien 'MBAM' moeilijkheden heeft met het verwijderen van bepaalde bestanden zal het enkele meldingen geven – dan telkens op 'OK' klikken!
  • Daarna zal 'MBAM' vragen om de Computer opnieuw op te starten - dus sta toe dat de computer opnieuw opgestart wordt.
MBAM-Log:
  • Het log wordt automatisch bewaard door 'MBAM en dat kan je terugvinden door in het hoofdmenu van MBAM op de tab 'Logbestanden' te klikken'.
Post aansluitend in je volgende bericht de inhoud van het MBAM-log.

Stap •4•
Samenvattend: hierna post je in jouw volgende bericht de inhoud van de volgende logs:
  • een Hijackthis-log
  • MBAM scanlog
[/list]

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 6:46 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
hieronder eerst het logje van hijackthis en daarna mbam.

Hijackthis logje:


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:47:23, on 12-4-2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\ASUS\AASP\1.00.23\aaCenter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\IoctlSvc.exe
D:\program files\logitech\SetPointP\SetPoint.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
D:\program files\TomTom HOME 2\TomTomHOMERunner.exe
D:\program files\Ziggo\Backup\ziggobackup.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\snmp.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\WINDOWS\system32\svchost.exe
D:\program files\TomTom HOME 2\TomTomHOMEService.exe
D:\program files\spamihilator\spamihilator.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
D:\program files\Ziggo\Backup\AGMailAgent.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
D:\program files\Malwarebytes' Anti-Malware\mbam.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
D:\program files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files\Google\Chrome Frame\Application\18.0.1025.151\npchrome_frame.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AsusServiceProvider] C:\Program Files\ASUS\AASP\1.00.23\aaCenter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [EvtMgr6] D:\program files\logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] D:\program files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "D:\program files\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - HKCU\..\Run: [Online Backup] "D:\program files\Ziggo\Backup\ziggobackup.exe" /delayed
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Spamihilator.lnk = D:\program files\spamihilator\spamihilator.exe
O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Apparaatdetectie) - http://www.logitech.com/devicedetector/ ... tion32.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} - http://downloadcenter.samsung.com/conte ... ite_EN.cab
O16 - DPF: {1C3DE665-D259-4C72-9D7D-C51FCB4CCFB9} (Panasonic Network Camera) - http://kulturhus.viewnetcam.com/SysCamInst.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} (JordanUploader Class) - http://foto.hema.nl/ips-opdata/layout/h ... jordan.cab
O16 - DPF: {3E90FFF5-1347-45B9-91F6-DA47926E9697} (PlaNet SysInfo Agent) - http://www.ziggo.nl/f-secure/systemchec ... ysInfo.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.nl/SnapfishActivia.cab
O16 - DPF: {426784E5-24B2-4708-820D-117342FAD009} (Cimporter Object) - http://www.hyves.nl/cab/outlookaddressbook.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.0.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resourc ... oscan8.cab
O16 - DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} (Web Viewer Class) - http://www.aircraftdocking.com/webviewe ... kitlib.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 9854786001
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {6D2EF4B4-CB62-4C0B-85F3-B79C236D702C} (ContactExtractor Class) - http://www.facebook.com/controls/contactx.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 9267966437
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://cache.hyvz.com/statics/Aurigma/I ... oader4.cab
O16 - DPF: {6E718D87-6909-4FCE-92D4-EDCB2F725727} - http://www.navigram.com/engine/v911/Navigram.cab
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/s ... DEXAXO.cab
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://activex.microsoft.com/activex/co ... SurVid.cab
O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - http://h20264.www2.hp.com/ediags/dd/ins ... csxp2k.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://www.ziggo.nl/f-secure/ols/fscax.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} - http://service.futuremark.com/openapi/r ... s/FMSI.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E6BB2089-163F-466B-812A-748096614DFD} (CAScanner Control) - http://cainternetsecurity.net/scanner/cascanner.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.hema.nl/site/xupload/XUpload.ocx
O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://cache.hyves-static.net/statics/A ... oader4.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-l ... cfscan.cab
O18 - Protocol: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files\Google\Chrome Frame\Application\18.0.1025.151\npchrome_frame.dll
O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Update Service (gupdate1c995cd7142e114) (gupdate1c995cd7142e114) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: TomTomHOMEService - TomTom - D:\program files\TomTom HOME 2\TomTomHOMEService.exe

--
End of file - 13504 bytes

MBAM logje:


Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Databaseversie: v2012.04.12.05

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
caroger :: CC281162-B [administrator]

12-4-2012 18:32:16
mbam-log-2012-04-12 (18-32-16).txt

Scantype: Snelle scan
Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
Uitgeschakelde scanopties: P2P
Objecten gescand: 208626
Verstreken tijd: 12 minuut/minuten, 49 seconde(n)

Geheugenprocessen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Geheugenmodulen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registersleutels gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registerwaarden gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Registerdata gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Mappen gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

Bestanden gedetecteerd: 0
(Geen kwaadaardige objecten gedetecteerd)

(einde)


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 6:48 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
Wil Facebook nu wel of nog steeds niet met IE?

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 6:58 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
nee, nog steeds niet. onderaan pagina geeft ie8 ' pagina gereed, maar met fouten'.

De details van de fouten zijn:


Foutdetails webpagina

Gebruikersagent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; chromeframe/18.0.1025.151; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; OfficeLiveConnector.1.3; OfficeLivePatch.0.0)
Tijdstempel: Thu, 12 Apr 2012 16:59:35 UTC


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 20
Teken: 78
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 37
Teken: 1
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Requiring unknown module "ServerJS"
Regel: 16
Teken: 350
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 24
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'Bootloader' is niet gedefinieerd
Regel: 24
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'Bootloader' is niet gedefinieerd
Regel: 26
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'BigPipe' is niet gedefinieerd
Regel: 46
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 48
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 51
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 54
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 57
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 60
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 63
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 68
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 71
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 74
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 77
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 80
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 83
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 86
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 89
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 92
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 94
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 96
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 99
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 102
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 105
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 108
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 110
Teken: 1
Code: 0
URI: https://www.facebook.com/


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 7:14 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
Doe het volgende: download MiniToolBox en plaats dit tool op jouw bureaublad.

"Farbar MiniToolBox" gebruiken:
  • Sluit nu eerst alle nog openstaande programmavensters!
    • Windows 2000 en Windows XP: start het tool middels dubbelklik op "MiniToolBox.exe".
    • Windows Vista en Windows 7: start het tool middels rechtsklik op "MiniToolBox.exe" en dan kiezen voor Als Administrator uitvoeren.
Vink de volgende onderdelen aan:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
    • Klik nu op de knop "Go".
    • Aansluitend wordt een log aangemaakt (Result.txt) in de zelfde map waar "MiniToolBox.exe" in zit.
    • Kopieer en plak de inhoud van het log in jouw volgende bericht.
Notabene: indien "Reset FF Proxy Settings" gekozen is, dient Firefox afgesloten te zijn!

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 7:39 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
Hieronder logje Minitoolbox en ook weer nieuw logje fouten ie8

MiniToolBox by Farbar Version: 18-01-2012
Ran by caroger (administrator) on 12-04-2012 at 19:31:55
Microsoft Windows XP Home Edition Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP-configuratie



De DNS-omzettingscache is leeggemaakt.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.no_proxies_on", "localhost"
"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.10sek.com
127.0.0.1 10sek.com
127.0.0.1 www.123topsearch.com
127.0.0.1 123topsearch.com

There are 15222 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Marvell Yukon 88E8053 PCI-E Gigabit Ethernet Controller = LAN-verbinding 3 (Connected)


# ----------------------------------
# IP-configuratie van interface
# ----------------------------------
pushd interface ip


# IP-configuratie van interface voor "LAN-verbinding 3"

set address name="LAN-verbinding 3" source=dhcp
set dns name="LAN-verbinding 3" source=dhcp register=PRIMARY
set wins name="LAN-verbinding 3" source=dhcp


popd
# Einde van IP-configuratie van interface




Windows IP-configuratie



Host-naam . . . . . . . . . . . .: cc281162-b

Primair DNS-achtervoegsel. . . . .:

Knooppunttype . . . . . . . . . . : broadcast

IP-routering ingeschakeld. . . . .: nee

WINS-proxy ingeschakeld . . . . . : nee

DNS-achtervoegselzoeklijst. . . . : private



Ethernet-adapter LAN-verbinding 3:



Verbindingsspec. DNS-achtervoegsel: private

Beschrijving . . . . . . . . . . .:

Marvell Yukon 88E8053 PCI-E Gigabit Ethernet Controller

Fysiek adres. . . . . . . . . . . : 00-11-D8-4F-78-84

DHCP ingeshakeld. . . . . . . . . : ja

Autom. configuratie ingeschakeld. : ja

IP-adres. . . . . . . . . . . . . : 192.168.0.199

Subnetmasker. . . . . . . . . . . : 255.255.255.0

Standaardgateway. . . . . . . . . : 192.168.0.1

DHCP-server . . . . . . . . . . . : 192.168.0.1

DNS-servers . . . . . . . . . . . : 212.54.35.25

212.54.40.25

192.168.0.1

Lease verkregen . . . . . . . . . : donderdag 12 april 2012 18:08:46

Lease verlopen . . . . . . . . . : vrijdag 13 april 2012 18:08:46

Server: dns.zl.iss.as9143.net
Address: 212.54.35.25

Name: google.com
Addresses: 74.125.79.101, 74.125.79.138, 74.125.79.102, 74.125.79.139
74.125.79.100, 74.125.79.113



Pingen naar google.com [74.125.79.113] met 32 byte gegevens:



Antwoord van 74.125.79.113: bytes=32 tijd=17 ms TTL=56

Antwoord van 74.125.79.113: bytes=32 tijd=17 ms TTL=56



Ping-statistieken voor 74.125.79.113:

Pakketten: verzonden = 2, ontvangen = 2, verloren = 0

(0% verlies).De gemiddelde tijd voor het uitvoeren van ‚‚n bewerking in milliseconden:

Minimum = 17ms, Maximum = 17ms, Gemiddelde = 17ms

Server: dns.zl.iss.as9143.net
Address: 212.54.35.25

Name: yahoo.com
Addresses: 72.30.38.140, 98.139.183.24, 209.191.122.70



Pingen naar yahoo.com [72.30.38.140] met 32 byte gegevens:



Antwoord van 72.30.38.140: bytes=32 tijd=277 ms TTL=55

Antwoord van 72.30.38.140: bytes=32 tijd=263 ms TTL=55



Ping-statistieken voor 72.30.38.140:

Pakketten: verzonden = 2, ontvangen = 2, verloren = 0

(0% verlies).De gemiddelde tijd voor het uitvoeren van ‚‚n bewerking in milliseconden:

Minimum = 263ms, Maximum = 277ms, Gemiddelde = 270ms

Server: dns.zl.iss.as9143.net
Address: 212.54.35.25

Name: bleepingcomputer.com
Address: 208.43.87.2



Pingen naar bleepingcomputer.com [208.43.87.2] met 32 byte gegevens:



Time-out bij opdracht.

Time-out bij opdracht.



Ping-statistieken voor 208.43.87.2:

Pakketten: verzonden = 2, ontvangen = 0, verloren = 2

(100% verlies).

Pingen naar 127.0.0.1 met 32 byte gegevens:



Antwoord van 127.0.0.1: bytes=32 tijd<1 ms TTL=64

Antwoord van 127.0.0.1: bytes=32 tijd<1 ms TTL=64



Ping-statistieken voor 127.0.0.1:

Pakketten: verzonden = 2, ontvangen = 2, verloren = 0

(0% verlies).De gemiddelde tijd voor het uitvoeren van ‚‚n bewerking in milliseconden:

Minimum = 0ms, Maximum = 0ms, Gemiddelde = 0ms

===========================================================================
Interfacelijst
0x1 ........................... MS TCP Loopback interface
0x2 ...00 11 d8 4f 78 84 ...... Marvell Yukon 88E8053 PCI-E Gigabit Ethernet Controller - Pakketplanner-minipoort
===========================================================================
===========================================================================
Actieve routes:
Netwerkadres Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.199 10
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.0.0 255.255.255.0 192.168.0.199 192.168.0.199 10
192.168.0.199 255.255.255.255 127.0.0.1 127.0.0.1 10
192.168.0.255 255.255.255.255 192.168.0.199 192.168.0.199 10
224.0.0.0 240.0.0.0 192.168.0.199 192.168.0.199 10
255.255.255.255 255.255.255.255 192.168.0.199 192.168.0.199 1
Standaard-gateway: 192.168.0.1
===========================================================================
Permanente routes:
Geen
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [247296] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [247296] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (04/12/2012 07:08:39 PM) (Source: MsiInstaller) (User: caroger)caroger
Description: Product: Microsoft Fix it 50019 -- Deze Microsoft Fix it is niet van toepassing op de versie van uw besturingssysteem of toepassing.

Error: (04/05/2012 08:14:02 PM) (Source: Google Update) (User: SYSTEM)SYSTEM
Description: Google Update has encountered a fatal error.
ver=1.3.21.111;lang=nl;id=;is_machine=1;upload=0;minidump=C:\Program Files\Google\CrashReports\a96bea64-69e5-4589-a658-fb976bf8171b.dmp

Error: (02/11/2012 03:56:05 PM) (Source: TomTomHOMEService) (User: )
Description: TomTomHOMEServiceOpenService failed with 0

Error: (01/13/2012 01:35:16 AM) (Source: LoadPerf) (User: )
Description: De tekenreekswaarde van de naam van het prestatiemeteritem is onjuist
ingedeeld. De verkeerde tekenreeks is 12546. De verkeerde indexwaarde
is de eerste DWORD in de sectie Gegevens. De laatste geldige indexwaarden zijn
de tweede en derde DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf) (User: )
Description: Het verwijderen van de tekenreeksen van prestatiemeteritems voor de aspnet_state-service
(ASP.NET State Service) is mislukt. De foutcode is de eerste DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf) (User: )
Description: De tekenreekswaarde van de naam van het prestatiemeteritem is onjuist
ingedeeld. De verkeerde tekenreeks is 12546. De verkeerde indexwaarde
is de eerste DWORD in de sectie Gegevens. De laatste geldige indexwaarden zijn
de tweede en derde DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf) (User: )
Description: De tekenreekswaarde van de naam van het prestatiemeteritem is onjuist
ingedeeld. De verkeerde tekenreeks is 12546. De verkeerde indexwaarde
is de eerste DWORD in de sectie Gegevens. De laatste geldige indexwaarden zijn
de tweede en derde DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf) (User: )
Description: Het verwijderen van de tekenreeksen van prestatiemeteritems voor de ASP.NET_2.0.50727-service
(ASP.NET_2.0.50727) is mislukt. De foutcode is de eerste DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf) (User: )
Description: De tekenreekswaarde van de naam van het prestatiemeteritem is onjuist
ingedeeld. De verkeerde tekenreeks is 12546. De verkeerde indexwaarde
is de eerste DWORD in de sectie Gegevens. De laatste geldige indexwaarden zijn
de tweede en derde DWORD in de sectie Gegevens.

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf) (User: )
Description: De tekenreekswaarde van de naam van het prestatiemeteritem is onjuist
ingedeeld. De verkeerde tekenreeks is 12546. De verkeerde indexwaarde
is de eerste DWORD in de sectie Gegevens. De laatste geldige indexwaarden zijn
de tweede en derde DWORD in de sectie Gegevens.


System errors:
=============
Error: (04/12/2012 07:36:29 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:29 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:28 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:28 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:27 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:27 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:26 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:25 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:25 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058

Error: (04/12/2012 07:36:24 PM) (Source: Service Control Manager) (User: )
Description: De Verbindingsbeheer voor RAS-service is afhankelijk van de Telephony-service, die vanwege de volgende fout niet kan worden gestart:
%%1058


Microsoft Office Sessions:
=========================
Error: (04/12/2012 07:08:39 PM) (Source: MsiInstaller)(User: caroger)caroger
Description: Product: Microsoft Fix it 50019 -- Deze Microsoft Fix it is niet van toepassing op de versie van uw besturingssysteem of toepassing.(NULL)(NULL)(NULL)

Error: (04/05/2012 08:14:02 PM) (Source: Google Update)(User: SYSTEM)SYSTEM
Description: Google Update has encountered a fatal error.
ver=1.3.21.111;lang=nl;id=;is_machine=1;upload=0;minidump=C:\Program Files\Google\CrashReports\a96bea64-69e5-4589-a658-fb976bf8171b.dmp

Error: (02/11/2012 03:56:05 PM) (Source: TomTomHOMEService)(User: )
Description: TomTomHOMEServiceOpenService failed with 0

Error: (01/13/2012 01:35:16 AM) (Source: LoadPerf)(User: )
Description: 12546

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf)(User: )
Description: aspnet_stateASP.NET State Service

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf)(User: )
Description: 12546

Error: (01/13/2012 01:35:14 AM) (Source: LoadPerf)(User: )
Description: 12546

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf)(User: )
Description: ASP.NET_2.0.50727ASP.NET_2.0.50727

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf)(User: )
Description: 12546

Error: (01/13/2012 01:35:02 AM) (Source: LoadPerf)(User: )
Description: 12546


**** End of log ****

ie8 logje na gebruik minitoolbox:

Foutdetails webpagina

Gebruikersagent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; chromeframe/18.0.1025.151; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; OfficeLiveConnector.1.3; OfficeLivePatch.0.0)
Tijdstempel: Thu, 12 Apr 2012 17:40:15 UTC


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 20
Teken: 78
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 37
Teken: 1
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Requiring unknown module "ServerJS"
Regel: 16
Teken: 350
Code: 0
URI: https://s-static.ak.fbcdn.net/rsrc.php/ ... 5CshtoV.js


Bericht: Deze eigenschap of methode wordt niet ondersteund door dit object
Regel: 24
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'Bootloader' is niet gedefinieerd
Regel: 24
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'Bootloader' is niet gedefinieerd
Regel: 26
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'BigPipe' is niet gedefinieerd
Regel: 46
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 48
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 51
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 54
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 57
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 60
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 63
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 68
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 71
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 74
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 77
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 80
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 83
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 86
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 89
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 92
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 94
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 96
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 99
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 102
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 105
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 108
Teken: 1
Code: 0
URI: https://www.facebook.com/


Bericht: 'big_pipe' is leeg of geen object
Regel: 110
Teken: 1
Code: 0
URI: https://www.facebook.com/


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 8:10 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
We gaan nu dieper in jouw Windows kijken.

Stap •1•
Welk programma: TDSSStarter.exe
Waarvoor/waarom: Rootkitscanner
Moeilijkheidsgraad: geen
Download TDSSStarter naar het bureaublad.

"TDSSSStarter.exe" gebruiken:
  • Sluit nu eerst alle nog openstaande programmavensters!
    • Windows 2000 en Windows XP: start het tool middels dubbelklik op " TDSSStarter .exe".
    • Windows Vista en Windows 7: start het tool middels rechtsklik op "TDSSStarter.exe" en dan kiezen voor Als Administrator uitvoeren.
  • Vervolgens zal een CMD-venster gestart worden en wanneer de scan gereed is weer automatisch sluiten.
  • Post nu de inhoud van het geopende kladblokbestand in het volgende bericht.

Stap •2•
Welk programma: ComboFix
Waarvoor/waarom: Zeer specialistische scanner om Windows diepgaand te onderzoeken
en zo mogelijk op te schonen.
Moeilijkheidsgraad: Min of meer lastige voorbereidingsfase, dus lees alles eerst goed.
Downloadlokatie: Dit programma absoluut naar het bureaublad downloaden!
Download ComboFix via één van deze locaties:
Hier zie je hoe je ComboFix moet gebruiken.

Antivirusprogramma en actieve malwarescanners dienen al voor de ComboFix start gedeaktiveert zijn!
Hier en hier vindt je gegevens hoe antivirusprogramma's en spywarescanners te deaktiveren.

Voor alle duidelijkheid nogmaals: ComboFix dient vanaf het bureaublad gestart te worden.

Opmerkingen:
  • Bij gebruik van Windows XP zal er mogelijk gevraagd worden, om de "Recovery Console" te installeren!
    Sta dit dan toe (hiervoor is een actieve internet verbinding vereist).
ComboFix opstarten:
  • Sluit nu eerst alle nog openstaande programmavensters!
    • Windows 2000 en Windows XP: start ComboFix.exe middels dubbelklik op ComboFix.exe.
    • Windows Vista en Windows 7: start ComboFix.exe via rechtsklik op ComboFix.exe en kies dan voor Als Administrator uitvoeren.
ComboFix is opgestart:
  • Niet in het zwarte venster klikken, hierdoor kan ComboFix of zelfs Windows geheel "bevriezen"!
  • Combofix sluit tijdens de scan de internet verbinding; probeer deze tussentijds niet te herstellen!
  • Het kan voorkomen dat de computer meerdere malen opnieuw opgestart moet worden, dit is normaal.
  • Wanneer ComboFix gereed is, zal het het een logbestand voor je maken.
  • Post de inhoud van dit logbestand in je volgende bericht.
  • Indien het log niet opstart, is dit terug tevinden in C:\ComboFix.txt
Belangrijke opmerking:
  • Indien na de scan bij het opstarten van programma's er een error wordt getoond met de melding:
  • Illegal operation attempted on a registery key that has been marked for deletion.
  • Start dan de computer opnieuw op.

Stap •3•
Samenvattend: hierna post je in jouw volgende bericht de inhoud van de volgende logs:
  • TDSSKStarter-log
  • ComboFix.txt-log

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 9:26 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
ie8 kan facebook weer normaal laten zien. Ik ben erg benieuwd wat nou het probleem was. Kun je dat in begrijpelijke taal uitleggen?

hieronder de logjes:


20:47:54.0484 0304 TDSS rootkit removing tool 2.7.28.0 Apr 10 2012 16:54:05
20:47:54.0484 0304 ============================================================
20:47:54.0484 0304 Current date / time: 2012/04/12 20:47:54.0484
20:47:54.0484 0304 SystemInfo:
20:47:54.0484 0304
20:47:54.0484 0304 OS Version: 5.1.2600 ServicePack: 3.0
20:47:54.0484 0304 Product type: Workstation
20:47:54.0484 0304 ComputerName: CC281162-B
20:47:54.0484 0304 UserName: caroger
20:47:54.0484 0304 Windows directory: C:\WINDOWS
20:47:54.0484 0304 System windows directory: C:\WINDOWS
20:47:54.0484 0304 Processor architecture: Intel x86
20:47:54.0484 0304 Number of processors: 2
20:47:54.0484 0304 Page size: 0x1000
20:47:54.0484 0304 Boot type: Normal boot
20:47:54.0484 0304 ============================================================
20:48:18.0750 0304 Drive \Device\Harddisk0\DR0 - Size: 0x132C570000 (76.69 Gb), SectorSize: 0x200, Cylinders: 0x271B, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:48:18.0765 0304 Drive \Device\Harddisk1\DR1 - Size: 0x1C9FEF0000 (114.50 Gb), SectorSize: 0x200, Cylinders: 0x3A62, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:48:18.0781 0304 \Device\Harddisk0\DR0:
20:48:18.0781 0304 MBR used
20:48:18.0781 0304 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4C2CC2D
20:48:18.0796 0304 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4C2CCAB, BlocksNum 0x4D2F9EF
20:48:18.0796 0304 \Device\Harddisk1\DR1:
20:48:18.0796 0304 MBR used
20:48:18.0796 0304 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xE4F80E2
20:48:19.0109 0304 Initialize success
20:48:19.0109 0304 ============================================================
20:48:19.0703 3648 ============================================================
20:48:19.0703 3648 Scan started
20:48:19.0703 3648 Mode: Auto (DCExact ); SigCheck; TDLFS; Silent;
20:48:19.0703 3648 ============================================================
20:48:21.0625 3648 61883 (914a9709fc3bf419ad2f85547f2a4832) C:\WINDOWS\system32\DRIVERS\61883.sys
20:48:26.0687 3648 Aavmker4 (fdba5bb4c8171cda00b2233d5389ee5f) C:\WINDOWS\system32\drivers\Aavmker4.sys
20:48:27.0187 3648 ACPI (02273a448ba21a7d447daeb47810d40c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:48:27.0750 3648 ACPIEC (63f517b1a87dabf3f5acb8a7952fc1d1) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:48:28.0281 3648 AdobeActiveFileMonitor9.0 (1474f121c3df1232d3e7239c03691ee6) C:\Program Files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
20:48:29.0093 3648 AdobeFlashPlayerUpdateSvc (0d4c486a24a711a45fd83acdf4d18506) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:48:29.0531 3648 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:48:29.0984 3648 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\WINDOWS\system32\drivers\Afc.sys
20:48:30.0125 3648 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
20:48:30.0671 3648 Alerter (8bed67d13dcb55b3e9ff6dac4c6d3b49) C:\WINDOWS\system32\alrsvc.dll
20:48:30.0921 3648 ALG (dab2a89fde5cf791161200d90c1bcb12) C:\WINDOWS\System32\alg.exe
20:48:31.0343 3648 AnyDVD (133b7b6d6a3ec9e46fbe742ee1516c37) C:\WINDOWS\system32\Drivers\AnyDVD.sys
20:48:31.0609 3648 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
20:48:31.0984 3648 AsIO (663f2fb92608073824ee3106886120f3) C:\WINDOWS\system32\drivers\AsIO.sys
20:48:32.0093 3648 aslm75 (71356a1370739e25375a1d17b6ae318f) C:\WINDOWS\system32\drivers\aslm75.sys
20:48:32.0140 3648 aslm75 ( UnsignedFile.Multi.Generic ) - warning
20:48:32.0140 3648 aslm75 - detected UnsignedFile.Multi.Generic (1)
20:48:32.0421 3648 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:48:32.0781 3648 aswFsBlk (581b82df5dbcc1dda6b775fac0d92472) C:\WINDOWS\system32\drivers\aswFsBlk.sys
20:48:32.0937 3648 aswMon2 (4310e0977b48ec9bc5cca6931f806e6d) C:\WINDOWS\system32\drivers\aswMon2.sys
20:48:33.0046 3648 aswRdr (0b44ee90b3db93582b260a80b28b7ffd) C:\WINDOWS\system32\drivers\aswRdr.sys
20:48:33.0203 3648 aswSnx (ca9601cd277a1e510b80422a40240a95) C:\WINDOWS\system32\drivers\aswSnx.sys
20:48:33.0609 3648 aswSP (05ea22dde5ca7ee3a865046aff2f0229) C:\WINDOWS\system32\drivers\aswSP.sys
20:48:33.0875 3648 aswTdi (3ac73a9e7378848d1bde174b4bb39212) C:\WINDOWS\system32\drivers\aswTdi.sys
20:48:33.0937 3648 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:48:34.0234 3648 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:48:34.0828 3648 Ati HotKey Poller (471087b5e1e01cc82604e81ea14781d8) C:\WINDOWS\system32\Ati2evxx.exe
20:48:34.0890 3648 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - warning
20:48:34.0890 3648 Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1)
20:48:35.0265 3648 ATI Smart (b979ba0120b6db757196a8e2e873fe3c) C:\WINDOWS\system32\ati2sgag.exe
20:48:35.0484 3648 ATI Smart ( UnsignedFile.Multi.Generic ) - warning
20:48:35.0484 3648 ATI Smart - detected UnsignedFile.Multi.Generic (1)
20:48:36.0109 3648 ati2mtag (c0b86ecb324e50f6bbd529f9d5c6b24b) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
20:48:37.0515 3648 ati2mtag ( UnsignedFile.Multi.Generic ) - warning
20:48:37.0515 3648 ati2mtag - detected UnsignedFile.Multi.Generic (1)
20:48:37.0609 3648 atitray (39f3215c9606d709ad8046a32ef946b2) C:\PROGRA~1\NGOATI~1\ATT\atitray.sys
20:48:37.0625 3648 atitray ( UnsignedFile.Multi.Generic ) - warning
20:48:37.0625 3648 atitray - detected UnsignedFile.Multi.Generic (1)
20:48:37.0828 3648 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:48:38.0171 3648 AudioSrv (f10745ed3195360e69aa4a6e7768c0e0) C:\WINDOWS\System32\audiosrv.dll
20:48:38.0468 3648 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:48:38.0765 3648 avast\Program Files\AVAST Software\Avast\AvastSvc.exe
20:48:38.0875 3648 Avc (f8e6956a614f15a0860474c5e2a7de6b) C:\WINDOWS\system32\DRIVERS\avc.sys
20:48:39.0062 3648 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:48:39.0359 3648 BITS (5c0073a51c4873430fa8b262e92183ff) C:\WINDOWS\system32\qmgr.dll
20:48:40.0328 3648 Browser (69eaa7501f53a40e8c04c69f2391224f) C:\WINDOWS\System32\browser.dll
20:48:40.0703 3648 BrScnUsb (92a964547b96d697e5e9ed43b4297f5a) C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys
20:48:40.0734 3648 BrScnUsb ( UnsignedFile.Multi.Generic ) - warning
20:48:40.0734 3648 BrScnUsb - detected UnsignedFile.Multi.Generic (1)
20:48:40.0812 3648 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:48:41.0062 3648 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
20:48:41.0312 3648 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:48:41.0562 3648 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:48:41.0750 3648 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:48:42.0046 3648 CiSvc (bd85400700b80fbe3d4a3412bce74861) C:\WINDOWS\system32\cisvc.exe
20:48:42.0281 3648 ClipSrv (4fb6108130829666c8fe96b442fead94) C:\WINDOWS\system32\clipsrv.exe
20:48:42.0531 3648 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:48:44.0687 3648 CryptSvc (0a9cf5d3cf63a8699f28c814ef821c7e) C:\WINDOWS\System32\cryptsvc.dll
20:48:45.0015 3648 DcomLaunch (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll
20:48:45.0171 3648 Dhcp (146ab038f5dbb366122d28444999ab2c) C:\WINDOWS\System32\dhcpcsvc.dll
20:48:45.0453 3648 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:48:45.0734 3648 dmboot (dec123e0c75971d0cc7a6c6a75e28429) C:\WINDOWS\system32\drivers\dmboot.sys
20:48:46.0015 3648 dmio (7268e66259722f6228c730685b201092) C:\WINDOWS\system32\drivers\dmio.sys
20:48:46.0234 3648 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:48:46.0609 3648 dmserver (127db74184e2d3d31655da525a5efde1) C:\WINDOWS\System32\dmserver.dll
20:48:46.0921 3648 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:48:47.0125 3648 Dnscache (de6cdb6cbc5c27b9085cfa6dfe8e5025) C:\WINDOWS\System32\dnsrslvr.dll
20:48:47.0296 3648 Dot3svc (90ee765e1a598b578852901f74f914f1) C:\WINDOWS\System32\dot3svc.dll
20:48:47.0625 3648 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:48:47.0906 3648 EapHost (e6bbdebf7081899d161c773e8d84d015) C:\WINDOWS\System32\eapsvc.dll
20:48:48.0125 3648 ElbyCDIO (d71233d7ccc2e64f8715a20428d5a33b) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
20:48:48.0187 3648 ENTECH (fd9fc82f134b1c91004ffc76a5ae494b) C:\WINDOWS\system32\DRIVERS\ENTECH.sys
20:48:48.0203 3648 ENTECH ( UnsignedFile.Multi.Generic ) - warning
20:48:48.0203 3648 ENTECH - detected UnsignedFile.Multi.Generic (1)
20:48:48.0296 3648 ERSvc (2f5c7f650b7af178988946ee4b0d9c01) C:\WINDOWS\System32\ersvc.dll
20:48:48.0500 3648 Eventlog (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe
20:48:48.0578 3648 EventSystem (97912dc0679d2da60cce589bbc196d72) C:\WINDOWS\system32\es.dll
20:48:48.0734 3648 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:48:48.0937 3648 FastUserSwitchingCompatibility (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:48:49.0109 3648 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:48:49.0296 3648 Fips (8bfffb5ac954e19dfdb96d56512aa518) C:\WINDOWS\system32\drivers\Fips.sys
20:48:49.0546 3648 FLEXnet Licensing Service (abedfd48ac042c6aaad32452e77217a1) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
20:48:49.0687 3648 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:48:49.0921 3648 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:48:50.0234 3648 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:48:50.0312 3648 fssfltr (e0087225b137e57239ff40f8ae82059b) C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys
20:48:50.0453 3648 fsssvc (45b52394f9624237f33a8a3d73c0b221) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
20:48:50.0593 3648 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:48:50.0796 3648 Ftdisk (fa8ca22e70245c81ff29c36af56292fc) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:48:51.0031 3648 getPlus(R) Helper (78494ae0f93358179b97571b9e76997c) C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
20:48:51.0140 3648 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:48:51.0437 3648 gupdate1c995cd7142e114 (626a24ed1228580b9518c01930936df9) C:\Program Files\Google\Update\GoogleUpdate.exe
20:48:51.0484 3648 gupdatem (626a24ed1228580b9518c01930936df9) C:\Program Files\Google\Update\GoogleUpdate.exe
20:48:51.0640 3648 HdAudAddService (160b24fd894e79e71c983ea403a6e6e7) C:\WINDOWS\system32\drivers\HdAudio.sys
20:48:51.0765 3648 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
20:48:52.0015 3648 helpsvc (5327bad9b35c33d2a64b64e4cf282ecd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:48:52.0296 3648 HidServ (10003105aab8d5a7db51a9cb3d9f55a3) C:\WINDOWS\System32\hidserv.dll
20:48:52.0546 3648 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:48:52.0828 3648 hkmsvc (1ff903ffa2da1704e5a5443d37d8e49e) C:\WINDOWS\System32\kmsvc.dll
20:48:53.0187 3648 hpqcxs08 (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
20:48:53.0203 3648 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
20:48:53.0203 3648 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
20:48:53.0281 3648 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
20:48:53.0578 3648 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
20:48:53.0640 3648 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
20:48:53.0734 3648 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:48:53.0890 3648 HTTPFilter (2529c7ba05242beed0027f554d0513bb) C:\WINDOWS\System32\w3ssl.dll
20:48:54.0187 3648 i8042prt (c43372d0682f8e32e4ec21117e089ec0) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:48:54.0484 3648 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:48:54.0593 3648 imagedrv (c0f65389c1544e917b3c4b9441130691) C:\WINDOWS\system32\Drivers\imagedrv.sys
20:48:54.0671 3648 imagesrv (96de706d0cf3d163d3d2c375d6622783) C:\WINDOWS\system32\DRIVERS\imagesrv.sys
20:48:54.0765 3648 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:48:54.0953 3648 ImapiService (a117772f94c854de5d1bbc1f1962b192) C:\WINDOWS\system32\imapi.exe
20:48:55.0375 3648 IntcAzAudAddService (0be7f157d695e1d10ee102c96de4ac18) C:\WINDOWS\system32\drivers\RtkHDAud.sys
20:48:55.0875 3648 IntelIde (72c63ad984d427d34bd5b9db838d88eb) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:48:56.0078 3648 intelppm (2d2254fac267e6b1c7865e8ebef60c6d) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:48:56.0265 3648 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:48:56.0515 3648 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:48:56.0703 3648 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:48:56.0890 3648 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:48:57.0156 3648 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:48:57.0343 3648 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:48:57.0453 3648 isapnp (0b78e1a31340e1fb1e389d5633f7c3a0) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:48:57.0750 3648 JavaQuickStarterService (0a5709543986843d37a92290b7838340) C:\Program Files\Java\jre6\bin\jqs.exe
20:48:57.0875 3648 JL2005C (03ca5f0eb17c33d79ef90c4cc21e80db) C:\WINDOWS\system32\Drivers\jl2005c.sys
20:48:57.0906 3648 JL2005C ( UnsignedFile.Multi.Generic ) - warning
20:48:57.0906 3648 JL2005C - detected UnsignedFile.Multi.Generic (1)
20:48:57.0937 3648 Kbdclass (380397621e94b32c744e7b2cc1330390) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:48:58.0125 3648 kbdhid (b833b70fe639f01fb36cedabe57ef031) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
20:48:58.0375 3648 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:48:58.0578 3648 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:48:58.0765 3648 lanmanserver (c7955e7edaea462d04f1c4be1d340372) C:\WINDOWS\System32\srvsvc.dll
20:48:58.0906 3648 lanmanworkstation (a936a575eaf6dce8dc08bc0c53972add) C:\WINDOWS\System32\wkssvc.dll
20:48:59.0078 3648 Lbd (b7c19ec8b0dd7efa58ad41ffeb8b8cda) C:\WINDOWS\system32\DRIVERS\Lbd.sys
20:48:59.0171 3648 LBeepKE (be2dc24d403643a2d1d98f33c7087b38) C:\WINDOWS\system32\Drivers\LBeepKE.sys
20:48:59.0343 3648 LBTServ (910344e2a984010435ae84783b25e5eb) C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
20:48:59.0484 3648 LHidFilt (01cc7fb6e790ef044b411377f3a1ff41) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
20:48:59.0531 3648 LHidFlt2 (27bbea62dfafc495e956d3911ebc3045) C:\WINDOWS\system32\DRIVERS\LHidFlt2.sys
20:48:59.0656 3648 LHidKE (5fbb5a009889c7374e4b6b3aecabce35) C:\WINDOWS\system32\DRIVERS\LHidKE.Sys
20:48:59.0671 3648 LHidKE ( UnsignedFile.Multi.Generic ) - warning
20:48:59.0671 3648 LHidKE - detected UnsignedFile.Multi.Generic (1)
20:48:59.0718 3648 LKbdFlt2 (bbc297ea4fc97fc7b85f70915345c80a) C:\WINDOWS\system32\DRIVERS\LKbdFlt2.sys
20:48:59.0812 3648 LmHosts (91ae20c5c2776c511994aa1308c05283) C:\WINDOWS\System32\lmhsvc.dll
20:49:00.0046 3648 LMouFilt (a2e7eae8898d7b4b8c302b8f4e836bb5) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
20:49:00.0125 3648 LMouFlt2 (45df10f44f6a140a4f3dd377676603f2) C:\WINDOWS\system32\DRIVERS\LMouFlt2.sys
20:49:00.0218 3648 LMouKE (98e6dc123f52780a6b03cf9747cb1fc7) C:\WINDOWS\system32\DRIVERS\LMouKE.Sys
20:49:00.0234 3648 LMouKE ( UnsignedFile.Multi.Generic ) - warning
20:49:00.0234 3648 LMouKE - detected UnsignedFile.Multi.Generic (1)
20:49:00.0265 3648 LUsbFilt (ddfa88e36d5f8db5fbdbdddc4969db0a) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys
20:49:00.0359 3648 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\WINDOWS\system32\drivers\mbam.sys
20:49:00.0515 3648 MBAMService (ba400ed640bca1eae5c727ae17c10207) D:\program files\Malwarebytes' Anti-Malware\mbamservice.exe
20:49:00.0625 3648 Messenger (c56a45a03dca11712de9fdf98224230b) C:\WINDOWS\System32\msgsvc.dll
20:49:00.0875 3648 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:49:01.0078 3648 mnmsrvc (5b1d994dcf1895afa27600e46a2f0fea) C:\WINDOWS\system32\mnmsrvc.exe
20:49:01.0312 3648 Modem (8114eeac353f549331ab73e9af4219ed) C:\WINDOWS\system32\drivers\Modem.sys
20:49:01.0562 3648 Mouclass (1a4e2214dd63e4a876463d3427ee8261) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:49:01.0750 3648 mouhid (18017899254e01371e1a39754d6bf98c) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:49:01.0953 3648 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:49:02.0250 3648 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:49:02.0468 3648 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:49:02.0640 3648 MSDTC (21ea21984d7d1ad50db2e627020ab14c) C:\WINDOWS\system32\msdtc.exe
20:49:02.0875 3648 MSDV (1477849772712bac69c144dcf2c9ce81) C:\WINDOWS\system32\DRIVERS\msdv.sys
20:49:03.0093 3648 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:49:03.0281 3648 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:49:03.0468 3648 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:49:03.0687 3648 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:49:03.0890 3648 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:49:04.0078 3648 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
20:49:04.0296 3648 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
20:49:04.0375 3648 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:49:04.0468 3648 MxlW2k (a1520761f42dbb06db7929d6fa9753ea) C:\WINDOWS\system32\drivers\MxlW2k.sys
20:49:04.0500 3648 MxlW2k ( UnsignedFile.Multi.Generic ) - warning
20:49:04.0500 3648 MxlW2k - detected UnsignedFile.Multi.Generic (1)
20:49:04.0546 3648 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
20:49:04.0781 3648 napagent (87e394c810794d3c70cf22e8316cb23e) C:\WINDOWS\System32\qagentrt.dll
20:49:05.0109 3648 NBService (3bae2bfcb6d69e19c8373f635dd544dc) C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
20:49:05.0312 3648 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:49:05.0500 3648 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
20:49:05.0703 3648 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:49:05.0875 3648 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:49:06.0062 3648 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:49:06.0234 3648 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:49:06.0390 3648 Net Driver HPZ12 (2969d26eee289be7422aa46fc55f4e38) C:\WINDOWS\system32\HPZinw12.dll
20:49:06.0406 3648 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:49:06.0406 3648 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:49:06.0468 3648 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:49:06.0640 3648 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:49:06.0890 3648 NetDDE (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe
20:49:07.0062 3648 NetDDEdsdm (dc6bae085e9b3c2f3a963ed46791feab) C:\WINDOWS\system32\netdde.exe
20:49:07.0265 3648 Netlogon (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:07.0453 3648 Netman (5431fb616ecae0d587c5b97d0b86cbd8) C:\WINDOWS\System32\netman.dll
20:49:07.0734 3648 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:49:07.0859 3648 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
20:49:08.0125 3648 Nla (4522cbe00a9e9eee36aa82ed4b319148) C:\WINDOWS\System32\mswsock.dll
20:49:08.0296 3648 NMIndexingService (193fa51dddd0bffded1c340f0434999a) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
20:49:08.0375 3648 nosGetPlusHelper (25d6b2eb0a1fc4ab413afe7ec4793ec1) C:\Program Files\NOS\bin\getPlus_Helper_3004.dll
20:49:08.0500 3648 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:49:08.0703 3648 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:49:08.0968 3648 NtLmSsp (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:09.0171 3648 NtmsSvc (ac1a78237b53044735693633f8235468) C:\WINDOWS\system32\ntmssvc.dll
20:49:09.0406 3648 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:49:09.0625 3648 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:49:09.0812 3648 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:49:10.0031 3648 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
20:49:10.0296 3648 OmniUsb (e6622491f114b8c9cb179011d300c009) C:\WINDOWS\system32\DRIVERS\OmniUsb.sys
20:49:10.0375 3648 OmniUsbl (a20310e06fb9a26753979220fd50382c) C:\WINDOWS\system32\DRIVERS\OmniUsbl.sys
20:49:10.0468 3648 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:49:10.0578 3648 Parport (e3934ccc20a4d24f1924e13d36d2a5bd) C:\WINDOWS\system32\DRIVERS\parport.sys
20:49:10.0750 3648 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:49:10.0953 3648 ParVdm (1eade28746a64c21e0a808bb12a63326) C:\WINDOWS\system32\drivers\ParVdm.sys
20:49:11.0125 3648 PCI (3b166f9f753c21aedaa9a6bd76b49655) C:\WINDOWS\system32\DRIVERS\pci.sys
20:49:11.0343 3648 PCIIde (b31edeba4da28283f6b8dc4756fb9585) C:\WINDOWS\system32\DRIVERS\pciide.sys
20:49:11.0546 3648 Pcmcia (2137ffd65f8e609a3a5acd487c56cce0) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:49:11.0812 3648 PLFlash DeviceIoControl Service (875e4e0661f3a5994df9e5e3a0a4f96b) C:\WINDOWS\system32\IoctlSvc.exe
20:49:11.0828 3648 PLFlash DeviceIoControl Service ( UnsignedFile.Multi.Generic ) - warning
20:49:11.0828 3648 PLFlash DeviceIoControl Service - detected UnsignedFile.Multi.Generic (1)
20:49:11.0875 3648 PlugPlay (657b69389b893f440b07590c9e963f23) C:\WINDOWS\system32\services.exe
20:49:12.0015 3648 Pml Driver HPZ12 (bafc9706bdf425a02b66468ab2605c59) C:\WINDOWS\system32\HPZipm12.dll
20:49:12.0046 3648 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:49:12.0046 3648 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:49:12.0125 3648 PolicyAgent (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:12.0312 3648 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:49:12.0500 3648 ProtectedStorage (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:12.0671 3648 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:49:12.0875 3648 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:49:13.0093 3648 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:49:13.0187 3648 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:49:13.0390 3648 RasAuto (0575d034b1292ca3a9bb9f67a8ee289c) C:\WINDOWS\System32\rasauto.dll
20:49:13.0609 3648 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:49:13.0828 3648 RasMan (9e7e2df6971a5f00102be3f901cc3bdc) C:\WINDOWS\System32\rasmans.dll
20:49:14.0078 3648 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:49:14.0281 3648 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:49:14.0468 3648 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:49:14.0687 3648 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:49:14.0921 3648 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
20:49:15.0046 3648 RDSessMgr (ea9fdf71d696b532bdc44c8bff03a737) C:\WINDOWS\system32\sessmgr.exe
20:49:15.0296 3648 redbook (4173bc66e485fd77a03c4819f60bd0da) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:49:15.0484 3648 RemoteAccess (4007abf5d9bf0e55451d775443d1f985) C:\WINDOWS\System32\mprdim.dll
20:49:15.0734 3648 RpcLocator (be078f8f7ec2491efdd79a53353a060f) C:\WINDOWS\system32\locator.exe
20:49:15.0984 3648 RpcSs (d9883335cc1c17afc3a09c8ac3e4dbe4) C:\WINDOWS\system32\rpcss.dll
20:49:16.0125 3648 RSVP (ad1b5f1b99fff08c99f443d784711a81) C:\WINDOWS\system32\rsvp.exe
20:49:16.0343 3648 SamSs (8754210a3399d19610ce2d71e0c3e5d9) C:\WINDOWS\system32\lsass.exe
20:49:16.0531 3648 SCardSvr (1b4cd62174e907c7ef8ec5d4d0a2a616) C:\WINDOWS\System32\SCardSvr.exe
20:49:16.0781 3648 Schedule (7c288ae0f75cb18cff1df6179a67ad8f) C:\WINDOWS\system32\schedsvc.dll
20:49:17.0031 3648 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:49:17.0218 3648 seclogon (6983665bea867125b1da5757cd8b2f9d) C:\WINDOWS\System32\seclogon.dll
20:49:17.0406 3648 SENS (f6ec8f1e50e40237bddee1cb7fe20b42) C:\WINDOWS\system32\sens.dll
20:49:17.0609 3648 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:49:17.0812 3648 Serial (92c21762653bb2ce51147eb8a9aa654f) C:\WINDOWS\system32\DRIVERS\serial.sys
20:49:18.0015 3648 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\DRIVERS\sfloppy.sys
20:49:18.0250 3648 SharedAccess (7579c4be909d47f10f3d8d801cb13ed9) C:\WINDOWS\System32\ipnathlp.dll
20:49:18.0500 3648 ShellHWDetection (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:49:18.0578 3648 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
20:49:18.0765 3648 SNMP (395baf8ea14e8c14a2a9eedd13fc8ba0) C:\WINDOWS\System32\snmp.exe
20:49:19.0031 3648 SNMPTRAP (f2927de8adc20282835347c22ac31d8a) C:\WINDOWS\System32\snmptrap.exe
20:49:19.0265 3648 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:49:19.0515 3648 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
20:49:19.0656 3648 sptd (cdddec541bc3c96f91ecb48759673505) C:\WINDOWS\system32\Drivers\sptd.sys
20:49:19.0656 3648 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
20:49:19.0671 3648 sptd ( LockedFile.Multi.Generic ) - warning
20:49:19.0671 3648 sptd - detected LockedFile.Multi.Generic (1)
20:49:19.0718 3648 sr (64d2a7640e0767ecd3bcb38d3200e7ce) C:\WINDOWS\system32\DRIVERS\sr.sys
20:49:19.0890 3648 srservice (81cbf363c414620caa61bd6843d8fdb9) C:\WINDOWS\system32\srsvc.dll
20:49:20.0062 3648 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:49:20.0203 3648 SSDPSRV (5b9d0de64be96a806819516440fd211c) C:\WINDOWS\System32\ssdpsrv.dll
20:49:20.0390 3648 stisvc (5ae996186d2dc694fef88f14a3fc9242) C:\WINDOWS\system32\wiaservc.dll
20:49:20.0609 3648 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
20:49:20.0828 3648 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:49:21.0031 3648 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:49:21.0281 3648 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:49:21.0484 3648 SysmonLog (251eae7c56c6ab9490311a3c9757e18d) C:\WINDOWS\system32\smlogsvc.exe
20:49:21.0765 3648 TapiSrv (2bc9fb448f0c2394ff53c83a7bb04731) C:\WINDOWS\System32\tapisrv.dll
20:49:22.0000 3648 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:49:22.0125 3648 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:49:22.0375 3648 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:49:22.0578 3648 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:49:22.0828 3648 TermService (e0aef86a594c9990d6321c5ca239c5b7) C:\WINDOWS\System32\termsrv.dll
20:49:23.0125 3648 Themes (2d5d4156292150fe571872c1b88e9299) C:\WINDOWS\System32\shsvcs.dll
20:49:23.0218 3648 TomTomHOMEService (3199a477f0f06eede41bd55179f8eb05) D:\program files\TomTom HOME 2\TomTomHOMEService.exe
20:49:23.0296 3648 TrkWks (20655e8ca1c78bc7088b18e93806d21b) C:\WINDOWS\system32\trkwks.dll
20:49:23.0484 3648 ubohci (9dd333fa5746c222bbb58ab704c78ba5) C:\WINDOWS\system32\DRIVERS\ubohci.sys
20:49:23.0515 3648 ubohci ( UnsignedFile.Multi.Generic ) - warning
20:49:23.0515 3648 ubohci - detected UnsignedFile.Multi.Generic (1)
20:49:23.0578 3648 ubsbm (1bd61b9ac6756c58fd88fc74dcf1bd85) C:\WINDOWS\system32\DRIVERS\ubsbm.sys
20:49:23.0578 3648 ubsbm ( UnsignedFile.Multi.Generic ) - warning
20:49:23.0578 3648 ubsbm - detected UnsignedFile.Multi.Generic (1)
20:49:23.0609 3648 ubumapi (64461004a7e6a59f222b45d74a164556) C:\WINDOWS\system32\DRIVERS\ubumapi.sys
20:49:23.0625 3648 ubumapi ( UnsignedFile.Multi.Generic ) - warning
20:49:23.0625 3648 ubumapi - detected UnsignedFile.Multi.Generic (1)
20:49:23.0687 3648 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:49:23.0968 3648 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:49:24.0187 3648 upnphost (01653d6c9604f1fb31a76ec94e08954f) C:\WINDOWS\System32\upnphost.dll
20:49:24.0359 3648 UPS (a89796dd0de24cf03b3a39407e1f46a3) C:\WINDOWS\System32\ups.exe
20:49:24.0578 3648 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:49:24.0781 3648 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:49:24.0984 3648 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:49:25.0171 3648 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:49:25.0359 3648 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:49:25.0593 3648 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:49:25.0781 3648 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:49:25.0984 3648 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:49:26.0171 3648 VolSnap (8ab662b3c4691e6ddf61c96bb5b7d103) C:\WINDOWS\system32\drivers\VolSnap.sys
20:49:26.0421 3648 VSS (a585edd6965b301de8a45c6768c7c215) C:\WINDOWS\System32\vssvc.exe
20:49:26.0546 3648 W32Time (390d8e65f362327ad510b08971478301) C:\WINDOWS\system32\w32time.dll
20:49:26.0765 3648 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:49:27.0015 3648 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
20:49:27.0109 3648 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:49:27.0296 3648 WebClient (33d8e2812054d97a0aec9b8f04277927) C:\WINDOWS\System32\webclnt.dll
20:49:27.0546 3648 winmgmt (f9e105f369c18e4001e0c05aaf600d73) C:\WINDOWS\system32\wbem\WMIsvc.dll
20:49:27.0765 3648 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
20:49:27.0953 3648 WmiApSrv (87f11d161207c7063edabac0aadc33c3) C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:49:28.0234 3648 WMPNetworkSvc (79a01acd485687ee602411a06b63a9a5) C:\Program Files\Windows Media Player\WMPNetwk.exe
20:49:28.0437 3648 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
20:49:28.0500 3648 wscsvc (843f7fa8ea38e6a4262976dcc994c81a) C:\WINDOWS\system32\wscsvc.dll
20:49:28.0703 3648 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
20:49:28.0921 3648 wuauserv (1e8fdddef3fe260badab06dae10d753a) C:\WINDOWS\system32\wuauserv.dll
20:49:29.0156 3648 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:49:29.0265 3648 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
20:49:29.0328 3648 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
20:49:29.0468 3648 WZCSVC (e99782dbb8ffa2aee72b31dac8d8d887) C:\WINDOWS\System32\wzcsvc.dll
20:49:29.0765 3648 xmlprov (fd3c38635808920f8235bf2fed642f54) C:\WINDOWS\System32\xmlprov.dll
20:49:30.0000 3648 yukonwxp (d590231272d61b470c3c24a08ace03b0) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
20:49:30.0046 3648 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk0\DR0
20:49:30.0265 3648 MBR (0x1B8) (3051207086651214e435112e51817dc5) \Device\Harddisk1\DR1
20:49:30.0328 3648 Boot (0x1200) (3f48ec6f5abd8aaf3f46f6aeb0a75129) \Device\Harddisk0\DR0\Partition0
20:49:30.0343 3648 Boot (0x1200) (fe934d456584a4058e73ee75e707785f) \Device\Harddisk0\DR0\Partition1
20:49:30.0343 3648 Boot (0x1200) (937af0b2c0044886e85243435ee3e097) \Device\Harddisk1\DR1\Partition0
20:49:30.0359 3648 ============================================================
20:49:30.0359 3648 Scan finished
20:49:30.0359 3648 ============================================================
20:49:31.0234 3192 Deinitialize success
.
==============================================
System Restore Point Check:
.
TDSSKiller Starter Restore Point Created Succesfully
==============================================
Registry Export
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile\GloballyOpenPorts\List]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
==============================================
EOF





logje combofix:

ComboFix 12-04-12.03 - caroger 12-04-2012 21:00:50.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.1023.476 [GMT 2:00]
Gestart vanuit: c:\documents and settings\caroger\Bureaublad\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
ADS - WINDOWS: deleted 24 bytes in 1 streams.
.
(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\caroger\Application Data\PriceGong
c:\documents and settings\caroger\Application Data\PriceGong\Data\1.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\2258.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\a.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\b.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\c.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\d.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\e.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\f.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\g.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\h.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\i.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\j.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\k.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\l.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\m.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\mru.xml
c:\documents and settings\caroger\Application Data\PriceGong\Data\n.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\o.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\p.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\q.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\r.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\s.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\t.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\u.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\v.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\w.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\wlu.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\x.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\y.txt
c:\documents and settings\caroger\Application Data\PriceGong\Data\z.txt
c:\documents and settings\caroger\WINDOWS
c:\program files\GooglePlusVideos
c:\program files\GooglePlusVideos\DeploymentHelper.exe
c:\program files\GooglePlusVideos\FFExt\chrome.manifest
c:\program files\GooglePlusVideos\FFExt\chrome\content\googleplusvideos.xul
c:\program files\GooglePlusVideos\FFExt\chrome\content\script-injector.js
c:\program files\GooglePlusVideos\FFExt\install.rdf
c:\program files\GooglePlusVideos\GooglePlusVideosLicense.txt
c:\program files\GooglePlusVideos\GooglePlusVideosXPCOM.dll
c:\program files\GooglePlusVideos\GVConfig.ini
c:\program files\GooglePlusVideos\IGooglePlusVideosXPCOM.xpt
c:\program files\GooglePlusVideos\MFC42U.DLL
c:\program files\GooglePlusVideos\Uninstall.bat
c:\program files\Internet Explorer\SET344.tmp
c:\program files\Internet Explorer\SET345.tmp
c:\program files\Internet Explorer\SET346.tmp
c:\program files\Internet Explorer\SET3AA.tmp
c:\program files\Internet Explorer\SET3AB.tmp
c:\program files\Internet Explorer\SET3AC.tmp
c:\windows\system\BCBSMP35.BPL
c:\windows\system32\ati2cqag.dll.tmp
c:\windows\system32\ati2dvag.dll.tmp
c:\windows\system32\ati3duag.dll.tmp
c:\windows\system32\ativvaxx.dll.tmp
c:\windows\system32\OLD397.tmp
c:\windows\system32\OLD645.tmp
c:\windows\system32\PowerToyReadme.htm
c:\windows\system32\SET349.tmp
c:\windows\system32\SET34A.tmp
c:\windows\system32\SET34B.tmp
c:\windows\system32\SET34C.tmp
c:\windows\system32\SET34D.tmp
c:\windows\system32\SET34E.tmp
c:\windows\system32\SET34F.tmp
c:\windows\system32\SET350.tmp
c:\windows\system32\SET351.tmp
c:\windows\system32\SET352.tmp
c:\windows\system32\SET353.tmp
c:\windows\system32\SET354.tmp
c:\windows\system32\SET355.tmp
c:\windows\system32\SET356.tmp
c:\windows\system32\SET357.tmp
c:\windows\system32\SET358.tmp
c:\windows\system32\SET359.tmp
c:\windows\system32\SET35B.tmp
c:\windows\system32\SET35C.tmp
c:\windows\system32\SET35D.tmp
c:\windows\system32\SET35E.tmp
c:\windows\system32\SET35F.tmp
c:\windows\system32\SET360.tmp
c:\windows\system32\SET361.tmp
c:\windows\system32\SET362.tmp
c:\windows\system32\SET363.tmp
c:\windows\system32\SET364.tmp
c:\windows\system32\SET365.tmp
c:\windows\system32\SET366.tmp
c:\windows\system32\SET367.tmp
c:\windows\system32\SET368.tmp
c:\windows\system32\SET369.tmp
c:\windows\system32\SET36A.tmp
c:\windows\system32\SET36B.tmp
c:\windows\system32\SET36C.tmp
c:\windows\system32\SET36D.tmp
c:\windows\system32\SET36E.tmp
c:\windows\system32\SET36F.tmp
c:\windows\system32\SET370.tmp
c:\windows\system32\SET371.tmp
c:\windows\system32\SET372.tmp
c:\windows\system32\SET373.tmp
c:\windows\system32\SET374.tmp
c:\windows\system32\SET38.tmp
c:\windows\system32\SET3AF.tmp
c:\windows\system32\SET3B0.tmp
c:\windows\system32\SET3B1.tmp
c:\windows\system32\SET3B2.tmp
c:\windows\system32\SET3B3.tmp
c:\windows\system32\SET3B4.tmp
c:\windows\system32\SET3B5.tmp
c:\windows\system32\SET3B6.tmp
c:\windows\system32\SET3B7.tmp
c:\windows\system32\SET3B8.tmp
c:\windows\system32\SET3B9.tmp
c:\windows\system32\SET3BA.tmp
c:\windows\system32\SET3BB.tmp
c:\windows\system32\SET3BC.tmp
c:\windows\system32\SET3BD.tmp
c:\windows\system32\SET3BE.tmp
c:\windows\system32\SET3BF.tmp
c:\windows\system32\SET3C1.tmp
c:\windows\system32\SET3C2.tmp
c:\windows\system32\SET3C3.tmp
c:\windows\system32\SET3C4.tmp
c:\windows\system32\SET3C5.tmp
c:\windows\system32\SET3C6.tmp
c:\windows\system32\SET3C7.tmp
c:\windows\system32\SET3C8.tmp
c:\windows\system32\SET3C9.tmp
c:\windows\system32\SET3CA.tmp
c:\windows\system32\SET3CB.tmp
c:\windows\system32\SET3CC.tmp
c:\windows\system32\SET3CD.tmp
c:\windows\system32\SET3CE.tmp
c:\windows\system32\SET3CF.tmp
c:\windows\system32\SET3D0.tmp
c:\windows\system32\SET3D1.tmp
c:\windows\system32\SET3D2.tmp
c:\windows\system32\SET3D3.tmp
c:\windows\system32\SET3D4.tmp
c:\windows\system32\SET3D5.tmp
c:\windows\system32\SET3D6.tmp
c:\windows\system32\SET3D7.tmp
c:\windows\system32\SET3D8.tmp
c:\windows\system32\SET3D9.tmp
c:\windows\system32\SET3DA.tmp
c:\windows\system32\SET8A.tmp
c:\windows\system32\SETC5.tmp
c:\windows\system32\SETC7.tmp
c:\windows\system32\SETD3.tmp
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2012-03-12 to 2012-04-12 ))))))))))))))))))))))))))))))
.
.
2012-04-12 18:43 . 2012-04-12 18:43 -------- d-----w- c:\windows\LastGood
2012-04-12 18:35 . 2012-04-12 18:35 -------- dc----w- C:\TDSSKiller_Quarantine
2012-04-12 18:34 . 2012-04-12 18:49 -------- dc----w- C:\TDSSStarter
2012-04-12 16:14 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-12 16:12 . 2012-04-12 16:12 388096 -c--a-r- c:\documents and settings\caroger\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-04-05 22:00 . 2001-09-06 19:27 50176 -c--a-w- c:\windows\system32\dllcache\umaxp60.dll
2012-04-05 22:00 . 2001-09-06 19:27 47616 -c--a-w- c:\windows\system32\dllcache\umaxcam.dll
2012-04-05 21:58 . 2001-08-17 20:02 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys
2012-04-05 21:58 . 2001-08-17 20:01 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys
2012-04-05 21:58 . 2001-08-17 18:10 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys
2012-04-05 21:58 . 2001-08-17 18:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2012-04-05 21:58 . 2001-08-17 18:51 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys
2012-04-05 21:58 . 2001-09-06 19:26 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll
2012-04-05 21:58 . 2008-04-13 18:40 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys
2012-04-05 21:58 . 2001-08-17 18:13 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys
2012-04-05 21:58 . 2001-08-17 18:13 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys
2012-04-05 21:58 . 2001-08-17 19:49 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys
2012-04-05 21:58 . 2001-08-17 19:52 7040 -c--a-w- c:\windows\system32\dllcache\tandqic.sys
2012-04-05 21:58 . 2001-08-17 18:50 36640 -c--a-w- c:\windows\system32\dllcache\t2r4mini.sys
2012-04-05 21:58 . 2001-09-06 19:26 172768 -c--a-w- c:\windows\system32\dllcache\t2r4disp.dll
2012-04-05 21:56 . 2001-09-06 16:20 286432 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2012-04-05 21:56 . 2001-09-06 16:19 16896 -c--a-w- c:\windows\system32\dllcache\stcusb.sys
2012-04-05 21:56 . 2001-08-17 18:11 48736 -c--a-w- c:\windows\system32\dllcache\srwlnd5.sys
2012-04-05 21:56 . 2001-09-06 19:27 99840 -c--a-w- c:\windows\system32\dllcache\srusd.dll
2012-04-05 21:56 . 2001-09-06 19:27 24660 -c--a-w- c:\windows\system32\dllcache\spxupchk.dll
2012-04-05 21:56 . 2001-08-17 19:51 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys
2012-04-05 21:56 . 2001-09-06 19:27 106584 -c--a-w- c:\windows\system32\dllcache\spdports.dll
2012-04-05 21:56 . 2001-08-17 20:07 19072 -c--a-w- c:\windows\system32\dllcache\sparrow.sys
2012-04-05 21:56 . 2001-08-17 19:56 7552 -c--a-w- c:\windows\system32\dllcache\sonypvu1.sys
2012-04-05 21:55 . 2001-08-17 18:51 37040 -c--a-w- c:\windows\system32\dllcache\sonypi.sys
2012-04-05 21:55 . 2001-09-06 19:27 114688 -c--a-w- c:\windows\system32\dllcache\sonypi.dll
2012-04-05 21:55 . 2001-08-17 18:51 20752 -c--a-w- c:\windows\system32\dllcache\sonync.sys
2012-04-05 21:55 . 2001-08-17 19:53 9600 -c--a-w- c:\windows\system32\dllcache\sonymc.sys
2012-04-05 21:55 . 2008-04-13 18:40 7552 -c--a-w- c:\windows\system32\dllcache\sonyait.sys
2012-04-05 21:55 . 2001-08-17 19:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys
2012-04-05 21:55 . 2001-08-17 18:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys
2012-04-05 21:55 . 2001-09-06 19:26 147200 -c--a-w- c:\windows\system32\dllcache\smidispb.dll
2012-04-05 21:55 . 2001-08-17 18:12 25034 -c--a-w- c:\windows\system32\dllcache\smcpwr2n.sys
2012-04-05 21:53 . 2001-09-06 19:27 238592 -c--a-w- c:\windows\system32\dllcache\sisgrv.dll
2012-04-05 21:53 . 2001-08-17 18:50 104064 -c--a-w- c:\windows\system32\dllcache\sisgrp.sys
2012-04-05 21:53 . 2001-09-06 19:26 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll
2012-04-05 21:53 . 2001-08-17 18:50 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys
2012-04-05 21:53 . 2001-09-06 19:26 252032 -c--a-w- c:\windows\system32\dllcache\sis300iv.dll
2012-04-05 21:53 . 2001-08-17 18:50 101760 -c--a-w- c:\windows\system32\dllcache\sis300ip.sys
2012-04-05 21:53 . 2001-09-06 18:49 161760 -c--a-w- c:\windows\system32\dllcache\sgsmusb.sys
2012-04-05 21:53 . 2001-07-21 20:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys
2012-04-05 21:53 . 2001-08-17 18:51 98080 -c--a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2012-04-05 21:53 . 2001-09-06 19:26 386560 -c--a-w- c:\windows\system32\dllcache\sgiul50.dll
2012-04-05 21:53 . 2001-08-17 18:19 36480 -c--a-w- c:\windows\system32\dllcache\sfmanm.sys
2012-04-05 21:53 . 2001-09-06 18:47 6912 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2012-04-05 21:52 . 2001-09-06 18:47 18176 -c--a-w- c:\windows\system32\dllcache\sermouse.sys
2012-04-05 21:52 . 2001-08-17 19:53 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys
2012-04-05 21:52 . 2008-04-13 18:45 11520 -c--a-w- c:\windows\system32\dllcache\scsiscan.sys
2012-04-05 21:52 . 2001-08-17 19:52 11648 -c--a-w- c:\windows\system32\dllcache\scsiprnt.sys
2012-04-05 21:52 . 2001-09-06 18:44 17536 -c--a-w- c:\windows\system32\dllcache\scr111.sys
2012-04-05 21:52 . 2001-09-06 18:44 16768 -c--a-w- c:\windows\system32\dllcache\scmstcs.sys
2012-04-05 21:52 . 2001-08-17 19:51 23936 -c--a-w- c:\windows\system32\dllcache\sccmusbm.sys
2012-04-05 21:52 . 2001-09-06 18:42 23936 -c--a-w- c:\windows\system32\dllcache\sccmn50m.sys
2012-04-05 21:52 . 2008-04-13 18:40 43904 -c--a-w- c:\windows\system32\dllcache\sbp2port.sys
2012-04-05 21:52 . 2001-09-06 19:27 495616 -c--a-w- c:\windows\system32\dllcache\sblfx.dll
2012-04-05 21:50 . 2004-08-03 20:31 20992 -c--a-w- c:\windows\system32\dllcache\rtl8139.sys
2012-04-05 21:50 . 2001-08-17 18:12 19017 -c--a-w- c:\windows\system32\dllcache\rtl8029.sys
2012-04-05 21:50 . 2001-08-17 18:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2012-04-05 21:50 . 2001-09-06 19:27 10240 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2012-04-05 21:50 . 2001-08-17 18:19 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys
2012-04-05 21:50 . 2008-04-14 16:34 79360 -c--a-w- c:\windows\system32\dllcache\rocket.sys
2012-04-05 21:50 . 2001-08-17 18:12 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys
2012-04-05 21:50 . 2001-09-06 19:27 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll
2012-04-05 21:50 . 2001-08-17 19:51 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys
2012-04-05 21:48 . 2008-04-13 18:41 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2012-04-05 21:47 . 2001-08-17 18:11 29769 -c--a-w- c:\windows\system32\dllcache\pcntn5m.sys
2012-04-05 21:46 . 2001-09-06 18:09 54666 -c--a-w- c:\windows\system32\dllcache\otcsercb.sys
2012-04-05 21:46 . 2001-09-06 18:09 43785 -c--a-w- c:\windows\system32\dllcache\otceth5.sys
2012-04-05 21:46 . 2001-08-17 18:12 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys
2012-04-05 21:46 . 2001-08-17 18:20 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys
2012-04-05 21:46 . 2001-08-17 18:50 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys
2012-04-05 21:46 . 2001-09-06 19:26 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll
2012-04-05 21:46 . 2001-08-17 18:49 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys
2012-04-05 21:46 . 2001-09-06 17:49 9472 -c--a-w- c:\windows\system32\dllcache\ntapm.sys
2012-04-05 21:46 . 2001-08-17 19:53 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys
2012-04-05 21:44 . 2001-09-06 19:26 35392 -c--a-w- c:\windows\system32\dllcache\n9i128.dll
2012-04-05 21:44 . 2001-09-06 17:31 131072 -c--a-w- c:\windows\system32\dllcache\n100325.sys
2012-04-05 21:44 . 2001-09-06 17:31 53279 -c--a-w- c:\windows\system32\dllcache\n1000nt5.sys
2012-04-05 21:44 . 2001-09-06 17:31 76416 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2012-04-05 21:44 . 2001-09-06 19:27 7168 -c--a-w- c:\windows\system32\dllcache\mxport.dll
2012-04-05 21:44 . 2001-08-17 19:49 19968 -c--a-w- c:\windows\system32\dllcache\mxnic.sys
2012-04-05 21:44 . 2001-09-06 19:27 19968 -c--a-w- c:\windows\system32\dllcache\mxicfg.dll
2012-04-05 21:44 . 2001-09-06 17:31 22016 -c--a-w- c:\windows\system32\dllcache\mxcard.sys
2012-04-05 21:44 . 2001-08-17 18:50 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys
2012-04-05 21:44 . 2008-04-13 18:46 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys
2012-04-05 21:44 . 2001-08-17 19:48 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys
2012-04-05 21:44 . 2001-08-17 20:00 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys
2012-04-05 21:44 . 2008-04-13 18:54 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys
2012-04-05 21:43 . 2001-08-17 20:02 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys
2012-04-05 21:43 . 2001-08-17 19:48 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys
2012-04-05 21:43 . 2001-08-17 19:52 17280 -c--a-w- c:\windows\system32\dllcache\mraid35x.sys
2012-04-05 21:43 . 2001-08-17 19:57 16128 -c--a-w- c:\windows\system32\dllcache\modemcsa.sys
2012-04-05 21:43 . 2001-08-17 19:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2012-04-05 21:43 . 2001-09-06 16:59 320384 -c--a-w- c:\windows\system32\dllcache\mgaum.sys
2012-04-05 21:41 . 2001-08-17 19:53 4992 -c--a-w- c:\windows\system32\dllcache\loop.sys
2012-04-05 21:41 . 2001-08-17 18:12 70730 -c--a-w- c:\windows\system32\dllcache\lne100tx.sys
2012-04-05 21:41 . 2001-08-17 18:12 20573 -c--a-w- c:\windows\system32\dllcache\lne100.sys
2012-04-05 21:41 . 2001-08-17 18:11 25065 -c--a-w- c:\windows\system32\dllcache\lmndis3.sys
2012-04-05 21:41 . 2001-09-06 16:35 15872 -c--a-w- c:\windows\system32\dllcache\lit220p.sys
2012-04-05 21:41 . 2008-04-13 18:40 34688 -c--a-w- c:\windows\system32\dllcache\lbrtfdc.sys
2012-04-05 21:41 . 2001-09-06 16:32 26922 -c--a-w- c:\windows\system32\dllcache\lanepic5.sys
2012-04-05 21:41 . 2001-08-17 18:12 19016 -c--a-w- c:\windows\system32\dllcache\ktc111.sys
2012-04-05 21:41 . 2001-09-06 19:26 37888 -c--a-w- c:\windows\system32\dllcache\kousd.dll
2012-04-05 21:41 . 2008-04-14 17:02 48640 -c--a-w- c:\windows\system32\dllcache\kdsui.dll
2012-04-05 21:41 . 2008-04-14 17:02 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2012-04-05 21:40 . 2001-08-17 19:49 26624 -c--a-w- c:\windows\system32\dllcache\irstusb.sys
2012-04-05 21:40 . 2001-08-17 19:51 18688 -c--a-w- c:\windows\system32\dllcache\irsir.sys
2012-04-05 21:40 . 2008-04-14 17:02 29184 -c--a-w- c:\windows\system32\dllcache\irmon.dll
2012-04-05 21:40 . 2001-08-17 19:49 23552 -c--a-w- c:\windows\system32\dllcache\irmk7.sys
2012-04-05 21:40 . 2008-04-14 17:03 153088 -c--a-w- c:\windows\system32\dllcache\irftp.exe
2012-04-05 21:40 . 2008-04-13 18:54 88192 -c--a-w- c:\windows\system32\dllcache\irda.sys
2012-04-05 21:40 . 2001-08-17 18:12 45632 -c--a-w- c:\windows\system32\dllcache\ip5515.sys
2012-04-05 21:40 . 2001-09-06 19:26 90200 -c--a-w- c:\windows\system32\dllcache\io8ports.dll
2012-04-05 21:40 . 2001-08-17 19:50 38784 -c--a-w- c:\windows\system32\dllcache\io8.sys
2012-04-05 21:40 . 2001-09-06 16:16 13568 -c--a-w- c:\windows\system32\dllcache\inport.sys
2012-04-05 21:40 . 2001-08-17 19:52 16000 -c--a-w- c:\windows\system32\dllcache\ini910u.sys
2012-04-05 21:38 . 2001-08-17 19:28 488383 -c--a-w- c:\windows\system32\dllcache\hsf_v124.sys
2012-04-05 21:37 . 2001-09-06 19:26 324608 -c--a-w- c:\windows\system32\dllcache\hpojwia.dll
2012-04-05 21:36 . 2001-09-06 18:27 320512 -c--a-w- c:\windows\system32\dllcache\g200m.sys
2012-04-05 21:35 . 2001-09-06 19:26 46080 -c--a-w- c:\windows\system32\dllcache\esunib.dll
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-05 19:54 . 2010-05-12 20:11 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-03-31 13:47 . 2011-01-23 20:21 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2012-03-31 11:48 . 2011-05-27 21:10 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-01 11:00 . 2004-08-04 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:00 . 2004-08-04 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-03-01 11:00 . 2004-08-04 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10 . 2004-08-04 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10 . 2004-08-04 12:00 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17 . 2004-08-04 12:00 385024 ------w- c:\windows\system32\html.iec
2012-02-23 16:23 . 2011-02-28 18:21 41184 ----a-w- c:\windows\avastSS.scr
2012-02-23 16:23 . 2010-12-21 21:43 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-02-23 16:12 . 2011-02-28 18:22 610648 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-02-23 16:12 . 2011-02-28 18:09 337112 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-02-23 16:10 . 2010-12-21 21:43 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-02-23 16:10 . 2010-12-21 21:43 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-02-23 16:10 . 2010-12-21 21:43 95704 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2012-02-23 16:10 . 2010-12-21 21:43 89048 ----a-w- c:\windows\system32\drivers\aswmon.sys
2012-02-23 16:10 . 2011-02-28 18:09 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 16:07 . 2010-12-21 21:43 24920 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2012-02-07 18:00 . 2008-12-02 19:22 79360 ----a-w- c:\windows\system32\ff_vfw.dll
2012-02-03 09:57 . 2004-08-04 12:00 1860224 ----a-w- c:\windows\system32\win32k.sys
2012-02-01 19:42 . 2012-02-01 19:42 768848 ----a-w- c:\windows\system32\msvcr100.dll
2012-02-01 19:42 . 2012-02-01 19:42 421200 ----a-w- c:\windows\system32\msvcp100.dll
2012-01-29 10:59 . 2012-01-29 10:58 28352 ----a-w- c:\windows\system32\drivers\MxlW2k.sys
2011-12-21 08:03 . 2012-01-13 19:48 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-02-23 16:23 123536 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
"TomTomHOME.exe"="d:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2012-01-23 247728]
"Online Backup"="d:\program files\Ziggo\Backup\ziggobackup.exe" [2010-02-10 7607688]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AsusServiceProvider"="c:\program files\ASUS\AASP\1.00.23\aaCenter.exe" [2007-01-05 597504]
"SoundMan"="SOUNDMAN.EXE" [2008-06-18 77824]
"AlcWzrd"="ALCWZRD.EXE" [2004-05-03 2533888]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-02-23 4031368]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"EvtMgr6"="d:\program files\logitech\SetPointP\SetPoint.exe" [2011-10-07 1387288]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
"Malwarebytes' Anti-Malware"="d:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\caroger\Menu Start\Programma's\Opstarten\
Spamihilator.lnk - d:\program files\spamihilator\spamihilator.exe [2012-2-1 1993728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2011-09-27 19:03 66328 ----a-w- c:\program files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0smrgdf c:\program files\iolo\System Mechanic Professional 6\\0lsdelete
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^BDARemote.lnk]
backup=c:\windows\pss\BDARemote.lnkCommon Startup
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\BDARemote.lnk
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Logitech Desktop Messenger.lnk]
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Logitech Desktop Messenger.lnk
backup=c:\windows\pss\Logitech Desktop Messenger.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^caroger^Menu Start^Programma's^Opstarten^ATI Tray Tools.lnk]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
2010-07-29 00:25 497648 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Probe]
2002-12-06 15:07 617984 -c--a-w- c:\program files\ASUS\Asus Probe\AsusProb.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrowserChoice]
2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
2001-11-15 17:14 196608 -c--a-w- c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
2008-04-08 08:56 1647912 -c--a-w- c:\program files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Snelkoppeling naar eigenschappenvenster voor High Definition Audio]
2004-03-17 14:10 61952 ----a-w- c:\windows\system32\Hdaudpropshortcut.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"avast! Web Scanner"=3 (0x3)
"avast! Mail Scanner"=3 (0x3)
"aswUpdSv"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"d:\\program files\\spamihilator\\dccproc.exe"=
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5-6-2009 20:45 64288]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [20-7-2007 0:30 691696]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [28-2-2011 20:22 610648]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [28-2-2011 20:09 337112]
R1 atitray;atitray;c:\progra~1\NGOATI~1\ATT\atitray.sys [8-3-2007 12:59 14592]
R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [30-9-2010 4:06 169408]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [28-2-2011 20:09 20696]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [23-1-2011 22:20 12184]
R2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [12-4-2012 18:14 654408]
R2 TomTomHOMEService;TomTomHOMEService;d:\program files\TomTom HOME 2\TomTomHOMEService.exe [23-1-2012 6:43 92592]
R2 ubsbm;Unibrain 1394 SBM Driver;c:\windows\system32\drivers\UBSBM.sys [1-10-2010 22:37 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver;c:\windows\system32\drivers\UBUMAPI.sys [1-10-2010 22:37 36352]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [12-4-2012 18:14 22344]
R3 ubohci;Unibrain 1394 OHCI Driver;c:\windows\system32\drivers\ubohci.sys [1-10-2010 22:37 77056]
S2 gupdate1c995cd7142e114;Google Update Service (gupdate1c995cd7142e114);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [31-3-2012 13:21 253600]
S3 cpuz130;cpuz130;\??\c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys --> c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys [?]
S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 hitmanpro3;Hitman Pro 3 Support Driver;\??\c:\windows\system32\drivers\hitmanpro3.sys --> c:\windows\system32\drivers\hitmanpro3.sys [?]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; [x]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [4-8-2004 14:00 14336]
S3 vaxscsi;vaxscsi;c:\windows\system32\Drivers\vaxscsi.sys --> c:\windows\system32\Drivers\vaxscsi.sys [?]
.
--- Andere Services/Drivers In Geheugen ---
.
*NewlyCreated* - 18045219
*Deregistered* - 18045219
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Inhoud van de 'Gedeelde Taken' map
.
2012-04-12 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-31 11:48]
.
2012-02-05 c:\windows\Tasks\AdobeAAMUpdater-1.0-CC281162-B-caroger.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2010-07-29 00:25]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\User_Feed_Synchronization-{C1FC7C23-D808-461C-A46B-C1886D5D47FB}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Bijkomende Scan -------
.
uStart Page = hxxp://www.google.nl/
uInternet Settings,ProxyOverride = localhost
Trusted Zone: facebook.com\www
Trusted Zone: google.nl\www
TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 192.168.0.1
DPF: {1C3DE665-D259-4C72-9D7D-C51FCB4CCFB9} - hxxp://kulturhus.viewnetcam.com/SysCamInst.cab
DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} - hxxp://foto.hema.nl/ips-opdata/layout/h ... jordan.cab
DPF: {3E90FFF5-1347-45B9-91F6-DA47926E9697} - hxxp://www.ziggo.nl/f-secure/systemchec ... ysInfo.cab
DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} - hxxp://www.aircraftdocking.com/webviewe ... kitlib.dll
DPF: {E6BB2089-163F-466B-812A-748096614DFD} - hxxp://cainternetsecurity.net/scanner/cascanner.cab
FF - ProfilePath - c:\documents and settings\caroger\Application Data\Mozilla\Firefox\Profiles\9ieoqir4.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.nl/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=
.
- - - - ORPHANS VERWIJDERD - - - -
.
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
MSConfigStartUp-Adobe Photo Downloader - d:\program files\photoshop 4.0\apdproxy.exe
MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe
MSConfigStartUp-EvtMgr6 - c:\program files\Logitech\SetPointP\SetPoint.exe
MSConfigStartUp-Kernel and Hardware Abstraction Layer - KHALMNPR.EXE
MSConfigStartUp-LDM - c:\program files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
MSConfigStartUp-Logitech Hardware Abstraction Layer - KHALMNPR.EXE
MSConfigStartUp-NvCplDaemon - c:\windows\system32\NvCpl.dll
MSConfigStartUp-NvMediaCenter - c:\windows\system32\NvMcTray.dll
MSConfigStartUp-nwiz - nwiz.exe
MSConfigStartUp-Spotify - c:\documents and settings\caroger\Application Data\Spotify\Spotify.exe
MSConfigStartUp-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-04-12 21:13
Windows 5.1.2600 Service Pack 3 NTFS
.
scannen van verborgen processen ...
.
scannen van verborgen autostart items ...
.
scannen van verborgen bestanden ...
.
Scan succesvol afgerond
verborgen bestanden: 0
.
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_LOCAL_MACHINE\software\ASUS\ASUS Probe\2.23.01]
@DACL=(02 0000)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"3140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
.
- - - - - - - > 'winlogon.exe'(788)
c:\windows\system32\Ati2evxx.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
.
Voltooingstijd: 2012-04-12 21:18:29
ComboFix-quarantined-files.txt 2012-04-12 19:18
.
Pre-Run: 5.873.840.128 bytes beschikbaar
Post-Run: 6.100.013.056 bytes beschikbaar
.
WindowsXP-KB310994-SP2-Home-BootDisk-NLD.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn
[spybotsd]
timeout.old=30
.
- - End Of File - - 7C10EEA55E9621B343C7C09E8292227A


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 9:41 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
ComboFix heeft een vieze toolbar uit IE met alle daarbijbehorende settings verwijderd.
Die toolbar is via een software installatie in IE terchtgekomen.
In het vervolg niet meer klikkerdeklik software installeren maar altijd geavanceerd/custom kiezen.
Dan zie je wat er meelift en kan je dat uitvinken!
En ook belangrijk: vermijd downloads via Softonic en CNET.
Want die leveren software verpakt in een wrapper.
Dan heb je al helemaal geen keuze meer wat betreft er allemaal in jouw Windows erbij wordt geïnstalleerd!

We gebruiken nu wederom Combofix, nu met een script.

Open een nieuw kladblok (of anders: notepad) bestand, via "Start\Alle programma’s\Bureau-accessoires\Kladblok (of Notepad)".

Kopieer en plak de volgende (vetgedrukte, blauwe tekst) in het lege kladblokvenster:


ClearJavaCache::

Firefox::
FF - ProfilePath - c:\documents and settings\caroger\Application Data\Mozilla\Firefox\Profiles\9ieoqir4.default\
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=



Sla dit kladblokbestand op je bureaublad op als CFScript.txt.

Nu eerst de antivirus en eventuele spywarescanners deaktiveren!
Zorg ook ervoor dat alle andere openstaande vensters gesloten zijn, ook de webbrowser.


Sleep CFScript.txt in ComboFix.exe


Afbeelding

Dit zal ComboFix doen herstarten. Start opnieuw op als dat gevraagd wordt.


Post het Combofix-log dat na het opnieuw starten wordt getoond.
Ingeval Combofix je computer opnieuw heeft opgestart (of jij dat hebt gedaan), vindt je het log ook in C:\Combofix.txt

Belangrijke opmerking:
  • Indien na de scan bij het opstarten van programma's er een error wordt getoond met de melding:
  • Illegal operation attempted on a registery key that has been marked for deletion.
  • Start dan de computer opnieuw op.

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 10:14 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
ie8 geeft nu weer foutmelding nadat ik beveiliging van internet op standaard niveau had gezet (of had ik dat niet moeten doen?) Verder wordt alles goed weergegeven.

gaat om volgende melding:

Foutdetails webpagina

Gebruikersagent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0)
Tijdstempel: Thu, 12 Apr 2012 20:15:21 UTC


Bericht: Toegang geweigerd
Regel: 7
Teken: 1
Code: 0
URI: https://0-278.channel.facebook.com/iframe/12


Hieronder logje combofix:


ComboFix 12-04-12.03 - caroger 12-04-2012 21:54:25.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.1023.456 [GMT 2:00]
Gestart vanuit: c:\documents and settings\caroger\Bureaublad\ComboFix.exe
gebruikte Opdracht switches :: c:\documents and settings\caroger\Bureaublad\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2012-03-12 to 2012-04-12 ))))))))))))))))))))))))))))))
.
.
2012-04-12 18:43 . 2012-04-12 18:43 -------- d-----w- c:\windows\LastGood
2012-04-12 18:35 . 2012-04-12 18:35 -------- dc----w- C:\TDSSKiller_Quarantine
2012-04-12 18:34 . 2012-04-12 18:49 -------- dc----w- C:\TDSSStarter
2012-04-12 16:14 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-12 16:12 . 2012-04-12 16:12 388096 -c--a-r- c:\documents and settings\caroger\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-04-05 22:04 . 2008-04-14 17:02 116736 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2012-04-05 22:04 . 2001-09-06 19:27 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2012-04-05 22:04 . 2008-04-14 17:02 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll
2012-04-05 22:04 . 2001-09-06 19:27 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe
2012-04-05 22:04 . 2001-09-06 19:27 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe
2012-04-05 22:04 . 2001-09-06 19:27 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe
2012-04-05 22:04 . 2001-08-17 18:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys
2012-04-05 22:03 . 2004-08-03 20:29 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys
2012-04-05 22:03 . 2004-08-03 20:29 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys
2012-04-05 22:03 . 2008-04-14 17:02 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll
2012-04-05 22:03 . 2008-04-13 18:36 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys
2012-04-05 22:03 . 2004-08-03 20:31 154624 -c--a-w- c:\windows\system32\dllcache\wlluc48.sys
2012-04-05 22:03 . 2001-09-06 17:08 34890 -c--a-w- c:\windows\system32\dllcache\wlandrv2.sys
2012-04-05 22:01 . 2001-08-17 18:13 19016 -c--a-w- c:\windows\system32\dllcache\w926nd.sys
2012-04-05 22:01 . 2001-08-17 18:13 19528 -c--a-w- c:\windows\system32\dllcache\w840nd.sys
2012-04-05 22:01 . 2001-08-17 19:28 64605 -c--a-w- c:\windows\system32\dllcache\vvoice.sys
2012-04-05 22:01 . 2001-08-17 19:28 397502 -c--a-w- c:\windows\system32\dllcache\vpctcom.sys
2012-04-05 22:01 . 2001-08-17 19:28 604253 -c--a-w- c:\windows\system32\dllcache\vmodem.sys
2012-04-05 22:01 . 2001-08-17 18:14 249402 -c--a-w- c:\windows\system32\dllcache\vinwm.sys
2012-04-05 22:01 . 2001-08-17 19:49 24576 -c--a-w- c:\windows\system32\dllcache\viairda.sys
2012-04-05 22:01 . 2008-04-13 18:40 5376 -c--a-w- c:\windows\system32\dllcache\viaide.sys
2012-04-05 22:01 . 2001-08-17 19:28 687999 -c--a-w- c:\windows\system32\dllcache\usrwdxjs.sys
2012-04-05 22:01 . 2001-08-17 19:28 765884 -c--a-w- c:\windows\system32\dllcache\usrti.sys
2012-04-05 22:01 . 2001-08-17 19:28 113762 -c--a-w- c:\windows\system32\dllcache\usrpda.sys
2012-04-05 22:01 . 2001-08-17 19:28 7556 -c--a-w- c:\windows\system32\dllcache\usroslba.sys
2012-04-05 22:01 . 2001-08-17 19:28 224802 -c--a-w- c:\windows\system32\dllcache\usr1807a.sys
2012-04-05 21:59 . 2001-09-06 19:27 212480 -c--a-w- c:\windows\system32\dllcache\um54scan.dll
2012-04-05 21:58 . 2001-08-17 20:02 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys
2012-04-05 21:58 . 2001-08-17 20:01 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys
2012-04-05 21:58 . 2001-08-17 18:10 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys
2012-04-05 21:58 . 2001-08-17 18:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2012-04-05 21:58 . 2001-08-17 18:51 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys
2012-04-05 21:58 . 2001-09-06 19:26 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll
2012-04-05 21:58 . 2008-04-13 18:40 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys
2012-04-05 21:58 . 2001-08-17 18:13 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys
2012-04-05 21:58 . 2001-08-17 18:13 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys
2012-04-05 21:58 . 2001-08-17 19:49 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys
2012-04-05 21:58 . 2001-08-17 19:52 7040 -c--a-w- c:\windows\system32\dllcache\tandqic.sys
2012-04-05 21:58 . 2001-08-17 18:50 36640 -c--a-w- c:\windows\system32\dllcache\t2r4mini.sys
2012-04-05 21:58 . 2001-09-06 19:26 172768 -c--a-w- c:\windows\system32\dllcache\t2r4disp.dll
2012-04-05 21:56 . 2001-09-06 16:20 286432 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2012-04-05 21:56 . 2001-09-06 16:19 16896 -c--a-w- c:\windows\system32\dllcache\stcusb.sys
2012-04-05 21:56 . 2001-08-17 18:11 48736 -c--a-w- c:\windows\system32\dllcache\srwlnd5.sys
2012-04-05 21:56 . 2001-09-06 19:27 99840 -c--a-w- c:\windows\system32\dllcache\srusd.dll
2012-04-05 21:56 . 2001-09-06 19:27 24660 -c--a-w- c:\windows\system32\dllcache\spxupchk.dll
2012-04-05 21:56 . 2001-08-17 19:51 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys
2012-04-05 21:56 . 2001-09-06 19:27 106584 -c--a-w- c:\windows\system32\dllcache\spdports.dll
2012-04-05 21:56 . 2001-08-17 20:07 19072 -c--a-w- c:\windows\system32\dllcache\sparrow.sys
2012-04-05 21:56 . 2001-08-17 19:56 7552 -c--a-w- c:\windows\system32\dllcache\sonypvu1.sys
2012-04-05 21:55 . 2001-08-17 18:51 37040 -c--a-w- c:\windows\system32\dllcache\sonypi.sys
2012-04-05 21:55 . 2001-09-06 19:27 114688 -c--a-w- c:\windows\system32\dllcache\sonypi.dll
2012-04-05 21:55 . 2001-08-17 18:51 20752 -c--a-w- c:\windows\system32\dllcache\sonync.sys
2012-04-05 21:55 . 2001-08-17 19:53 9600 -c--a-w- c:\windows\system32\dllcache\sonymc.sys
2012-04-05 21:55 . 2008-04-13 18:40 7552 -c--a-w- c:\windows\system32\dllcache\sonyait.sys
2012-04-05 21:55 . 2001-08-17 19:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys
2012-04-05 21:55 . 2001-08-17 18:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys
2012-04-05 21:55 . 2001-09-06 19:26 147200 -c--a-w- c:\windows\system32\dllcache\smidispb.dll
2012-04-05 21:55 . 2001-08-17 18:12 25034 -c--a-w- c:\windows\system32\dllcache\smcpwr2n.sys
2012-04-05 21:53 . 2001-09-06 19:27 238592 -c--a-w- c:\windows\system32\dllcache\sisgrv.dll
2012-04-05 21:53 . 2001-08-17 18:50 104064 -c--a-w- c:\windows\system32\dllcache\sisgrp.sys
2012-04-05 21:53 . 2001-09-06 19:26 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll
2012-04-05 21:53 . 2001-08-17 18:50 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys
2012-04-05 21:53 . 2001-09-06 19:26 252032 -c--a-w- c:\windows\system32\dllcache\sis300iv.dll
2012-04-05 21:53 . 2001-08-17 18:50 101760 -c--a-w- c:\windows\system32\dllcache\sis300ip.sys
2012-04-05 21:53 . 2001-09-06 18:49 161760 -c--a-w- c:\windows\system32\dllcache\sgsmusb.sys
2012-04-05 21:53 . 2001-07-21 20:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys
2012-04-05 21:53 . 2001-08-17 18:51 98080 -c--a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2012-04-05 21:53 . 2001-09-06 19:26 386560 -c--a-w- c:\windows\system32\dllcache\sgiul50.dll
2012-04-05 21:53 . 2001-08-17 18:19 36480 -c--a-w- c:\windows\system32\dllcache\sfmanm.sys
2012-04-05 21:53 . 2001-09-06 18:47 6912 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2012-04-05 21:52 . 2001-09-06 18:47 18176 -c--a-w- c:\windows\system32\dllcache\sermouse.sys
2012-04-05 21:52 . 2001-08-17 19:53 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys
2012-04-05 21:52 . 2008-04-13 18:45 11520 -c--a-w- c:\windows\system32\dllcache\scsiscan.sys
2012-04-05 21:52 . 2001-08-17 19:52 11648 -c--a-w- c:\windows\system32\dllcache\scsiprnt.sys
2012-04-05 21:52 . 2001-09-06 18:44 17536 -c--a-w- c:\windows\system32\dllcache\scr111.sys
2012-04-05 21:52 . 2001-09-06 18:44 16768 -c--a-w- c:\windows\system32\dllcache\scmstcs.sys
2012-04-05 21:52 . 2001-08-17 19:51 23936 -c--a-w- c:\windows\system32\dllcache\sccmusbm.sys
2012-04-05 21:52 . 2001-09-06 18:42 23936 -c--a-w- c:\windows\system32\dllcache\sccmn50m.sys
2012-04-05 21:52 . 2008-04-13 18:40 43904 -c--a-w- c:\windows\system32\dllcache\sbp2port.sys
2012-04-05 21:52 . 2001-09-06 19:27 495616 -c--a-w- c:\windows\system32\dllcache\sblfx.dll
2012-04-05 21:50 . 2004-08-03 20:31 20992 -c--a-w- c:\windows\system32\dllcache\rtl8139.sys
2012-04-05 21:50 . 2001-08-17 18:12 19017 -c--a-w- c:\windows\system32\dllcache\rtl8029.sys
2012-04-05 21:50 . 2001-08-17 18:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2012-04-05 21:50 . 2001-09-06 19:27 10240 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2012-04-05 21:50 . 2001-08-17 18:19 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys
2012-04-05 21:50 . 2008-04-14 16:34 79360 -c--a-w- c:\windows\system32\dllcache\rocket.sys
2012-04-05 21:50 . 2001-08-17 18:12 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys
2012-04-05 21:50 . 2001-09-06 19:27 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll
2012-04-05 21:50 . 2001-08-17 19:51 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys
2012-04-05 21:48 . 2008-04-13 18:41 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2012-04-05 21:47 . 2001-08-17 18:11 29769 -c--a-w- c:\windows\system32\dllcache\pcntn5m.sys
2012-04-05 21:46 . 2001-09-06 18:09 54666 -c--a-w- c:\windows\system32\dllcache\otcsercb.sys
2012-04-05 21:46 . 2001-09-06 18:09 43785 -c--a-w- c:\windows\system32\dllcache\otceth5.sys
2012-04-05 21:46 . 2001-08-17 18:12 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys
2012-04-05 21:46 . 2001-08-17 18:20 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys
2012-04-05 21:46 . 2001-08-17 18:50 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys
2012-04-05 21:46 . 2001-09-06 19:26 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll
2012-04-05 21:46 . 2001-08-17 18:49 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys
2012-04-05 21:46 . 2001-09-06 17:49 9472 -c--a-w- c:\windows\system32\dllcache\ntapm.sys
2012-04-05 21:46 . 2001-08-17 19:53 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys
2012-04-05 21:44 . 2001-09-06 19:26 35392 -c--a-w- c:\windows\system32\dllcache\n9i128.dll
2012-04-05 21:44 . 2001-09-06 17:31 131072 -c--a-w- c:\windows\system32\dllcache\n100325.sys
2012-04-05 21:44 . 2001-09-06 17:31 53279 -c--a-w- c:\windows\system32\dllcache\n1000nt5.sys
2012-04-05 21:44 . 2001-09-06 17:31 76416 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2012-04-05 21:44 . 2001-09-06 19:27 7168 -c--a-w- c:\windows\system32\dllcache\mxport.dll
2012-04-05 21:44 . 2001-08-17 19:49 19968 -c--a-w- c:\windows\system32\dllcache\mxnic.sys
2012-04-05 21:44 . 2001-09-06 19:27 19968 -c--a-w- c:\windows\system32\dllcache\mxicfg.dll
2012-04-05 21:44 . 2001-09-06 17:31 22016 -c--a-w- c:\windows\system32\dllcache\mxcard.sys
2012-04-05 21:44 . 2001-08-17 18:50 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys
2012-04-05 21:44 . 2008-04-13 18:46 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys
2012-04-05 21:44 . 2001-08-17 19:48 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys
2012-04-05 21:44 . 2001-08-17 20:00 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys
2012-04-05 21:44 . 2008-04-13 18:54 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys
2012-04-05 21:43 . 2001-08-17 20:02 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys
2012-04-05 21:43 . 2001-08-17 19:48 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys
2012-04-05 21:43 . 2001-08-17 19:52 17280 -c--a-w- c:\windows\system32\dllcache\mraid35x.sys
2012-04-05 21:43 . 2001-08-17 19:57 16128 -c--a-w- c:\windows\system32\dllcache\modemcsa.sys
2012-04-05 21:43 . 2001-08-17 19:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2012-04-05 21:43 . 2001-09-06 16:59 320384 -c--a-w- c:\windows\system32\dllcache\mgaum.sys
2012-04-05 21:41 . 2001-08-17 19:53 4992 -c--a-w- c:\windows\system32\dllcache\loop.sys
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-05 19:54 . 2010-05-12 20:11 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-03-31 13:47 . 2011-01-23 20:21 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2012-03-31 11:48 . 2011-05-27 21:10 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-01 11:00 . 2004-08-04 12:00 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:00 . 2004-08-04 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-03-01 11:00 . 2004-08-04 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10 . 2004-08-04 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10 . 2004-08-04 12:00 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17 . 2004-08-04 12:00 385024 ------w- c:\windows\system32\html.iec
2012-02-23 16:23 . 2011-02-28 18:21 41184 ----a-w- c:\windows\avastSS.scr
2012-02-23 16:23 . 2010-12-21 21:43 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-02-23 16:12 . 2011-02-28 18:22 610648 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-02-23 16:12 . 2011-02-28 18:09 337112 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-02-23 16:10 . 2010-12-21 21:43 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-02-23 16:10 . 2010-12-21 21:43 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-02-23 16:10 . 2010-12-21 21:43 95704 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2012-02-23 16:10 . 2010-12-21 21:43 89048 ----a-w- c:\windows\system32\drivers\aswmon.sys
2012-02-23 16:10 . 2011-02-28 18:09 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 16:07 . 2010-12-21 21:43 24920 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2012-02-07 18:00 . 2008-12-02 19:22 79360 ----a-w- c:\windows\system32\ff_vfw.dll
2012-02-03 09:57 . 2004-08-04 12:00 1860224 ----a-w- c:\windows\system32\win32k.sys
2012-02-01 19:42 . 2012-02-01 19:42 768848 ----a-w- c:\windows\system32\msvcr100.dll
2012-02-01 19:42 . 2012-02-01 19:42 421200 ----a-w- c:\windows\system32\msvcp100.dll
2012-01-29 10:59 . 2012-01-29 10:58 28352 ----a-w- c:\windows\system32\drivers\MxlW2k.sys
2011-12-21 08:03 . 2012-01-13 19:48 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-02-23 16:23 123536 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2008-01-22 152872]
"TomTomHOME.exe"="d:\program files\TomTom HOME 2\TomTomHOMERunner.exe" [2012-01-23 247728]
"Online Backup"="d:\program files\Ziggo\Backup\ziggobackup.exe" [2010-02-10 7607688]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AsusServiceProvider"="c:\program files\ASUS\AASP\1.00.23\aaCenter.exe" [2007-01-05 597504]
"SoundMan"="SOUNDMAN.EXE" [2008-06-18 77824]
"AlcWzrd"="ALCWZRD.EXE" [2004-05-03 2533888]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-02-23 4031368]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"EvtMgr6"="d:\program files\logitech\SetPointP\SetPoint.exe" [2011-10-07 1387288]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
"Malwarebytes' Anti-Malware"="d:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\caroger\Menu Start\Programma's\Opstarten\
Spamihilator.lnk - d:\program files\spamihilator\spamihilator.exe [2012-2-1 1993728]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2011-09-27 19:03 66328 ----a-w- c:\program files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0smrgdf c:\program files\iolo\System Mechanic Professional 6\\0lsdelete
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^BDARemote.lnk]
backup=c:\windows\pss\BDARemote.lnkCommon Startup
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\BDARemote.lnk
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Logitech Desktop Messenger.lnk]
path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Logitech Desktop Messenger.lnk
backup=c:\windows\pss\Logitech Desktop Messenger.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^caroger^Menu Start^Programma's^Opstarten^ATI Tray Tools.lnk]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
2010-07-29 00:25 497648 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Probe]
2002-12-06 15:07 617984 -c--a-w- c:\program files\ASUS\Asus Probe\AsusProb.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrowserChoice]
2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
2001-11-15 17:14 196608 -c--a-w- c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
2008-04-08 08:56 1647912 -c--a-w- c:\program files\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Snelkoppeling naar eigenschappenvenster voor High Definition Audio]
2004-03-17 14:10 61952 ----a-w- c:\windows\system32\Hdaudpropshortcut.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"avast! Web Scanner"=3 (0x3)
"avast! Mail Scanner"=3 (0x3)
"aswUpdSv"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"d:\\program files\\spamihilator\\dccproc.exe"=
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5-6-2009 20:45 64288]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [20-7-2007 0:30 691696]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [28-2-2011 20:22 610648]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [28-2-2011 20:09 337112]
R1 atitray;atitray;c:\progra~1\NGOATI~1\ATT\atitray.sys [8-3-2007 12:59 14592]
R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [30-9-2010 4:06 169408]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [28-2-2011 20:09 20696]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [23-1-2011 22:20 12184]
R2 MBAMService;MBAMService;d:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [12-4-2012 18:14 654408]
R2 TomTomHOMEService;TomTomHOMEService;d:\program files\TomTom HOME 2\TomTomHOMEService.exe [23-1-2012 6:43 92592]
R2 ubsbm;Unibrain 1394 SBM Driver;c:\windows\system32\drivers\UBSBM.sys [1-10-2010 22:37 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver;c:\windows\system32\drivers\UBUMAPI.sys [1-10-2010 22:37 36352]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [12-4-2012 18:14 22344]
R3 ubohci;Unibrain 1394 OHCI Driver;c:\windows\system32\drivers\ubohci.sys [1-10-2010 22:37 77056]
S2 gupdate1c995cd7142e114;Google Update Service (gupdate1c995cd7142e114);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [31-3-2012 13:21 253600]
S3 cpuz130;cpuz130;\??\c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys --> c:\docume~1\caroger\LOCALS~1\Temp\cpuz130\cpuz_x32.sys [?]
S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [23-2-2009 17:43 133104]
S3 hitmanpro3;Hitman Pro 3 Support Driver;\??\c:\windows\system32\drivers\hitmanpro3.sys --> c:\windows\system32\drivers\hitmanpro3.sys [?]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; [x]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [4-8-2004 14:00 14336]
S3 vaxscsi;vaxscsi;c:\windows\system32\Drivers\vaxscsi.sys --> c:\windows\system32\Drivers\vaxscsi.sys [?]
.
--- Andere Services/Drivers In Geheugen ---
.
*NewlyCreated* - 18045219
*Deregistered* - 18045219
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Inhoud van de 'Gedeelde Taken' map
.
2012-04-12 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-31 11:48]
.
2012-02-05 c:\windows\Tasks\AdobeAAMUpdater-1.0-CC281162-B-caroger.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2010-07-29 00:25]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-23 15:43]
.
2012-04-12 c:\windows\Tasks\User_Feed_Synchronization-{C1FC7C23-D808-461C-A46B-C1886D5D47FB}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Bijkomende Scan -------
.
uStart Page = hxxp://www.google.nl/
uInternet Settings,ProxyOverride = localhost
Trusted Zone: facebook.com\www
Trusted Zone: google.nl\www
TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 192.168.0.1
DPF: {1C3DE665-D259-4C72-9D7D-C51FCB4CCFB9} - hxxp://kulturhus.viewnetcam.com/SysCamInst.cab
DPF: {34DC6011-88B5-4EA9-BA7A-DC7B4F4437FE} - hxxp://foto.hema.nl/ips-opdata/layout/h ... jordan.cab
DPF: {3E90FFF5-1347-45B9-91F6-DA47926E9697} - hxxp://www.ziggo.nl/f-secure/systemchec ... ysInfo.cab
DPF: {640373B0-6978-4FA5-A9FC-420ECBBC61C7} - hxxp://www.aircraftdocking.com/webviewe ... kitlib.dll
DPF: {E6BB2089-163F-466B-812A-748096614DFD} - hxxp://cainternetsecurity.net/scanner/cascanner.cab
FF - ProfilePath - c:\documents and settings\caroger\Application Data\Mozilla\Firefox\Profiles\9ieoqir4.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.nl/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-04-12 22:06
Windows 5.1.2600 Service Pack 3 NTFS
.
scannen van verborgen processen ...
.
scannen van verborgen autostart items ...
.
scannen van verborgen bestanden ...
.
Scan succesvol afgerond
verborgen bestanden: 0
.
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_LOCAL_MACHINE\software\ASUS\ASUS Probe\2.23.01]
@DACL=(02 0000)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
"3140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
.
- - - - - - - > 'winlogon.exe'(788)
c:\windows\system32\Ati2evxx.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
.
- - - - - - - > 'explorer.exe'(2404)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\program files\Microsoft Office\OFFICE11\msohev.dll
c:\program files\Common Files\Ahead\Lib\NeroDigitalExt.dll
c:\program files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
c:\program files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.NLD
.
Voltooingstijd: 2012-04-12 22:10:43
ComboFix-quarantined-files.txt 2012-04-12 20:10
ComboFix2.txt 2012-04-12 19:18
.
Pre-Run: 6.064.353.280 bytes beschikbaar
Post-Run: 6.101.159.936 bytes beschikbaar
.
- - End Of File - - D9FFBBA3F74CD341FDA8317B12F7206F


Omhoog
 Profiel  
 
BerichtGeplaatst: do apr 12, 2012 10:32 pm 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
Waarop stond IE dan eerst ingesteld?

En een andere vraag: wetende dat IE8 in vergelijking met moderne browsers feitelijk antiek en een stuk langzamer is, waarom hang je daaraan vast?

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: vr apr 13, 2012 11:53 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
Op je eerste vraag waar ie8 op ingesteld stond kan ik geen antwoord geven omdat ik dat niet weet. Ik zag dat internet niet op standaard beveiling ingesteld stond in beveiligingsopties van ie8.

Op je tweede vraag kan ik makkelijker antwoord geven. ie8 wordt vooral nog gebruikt door medehuisgenoot omdat ze daarmee 'opgegroeid' is.
Zelf gebruik ik vooral firefox.

Wat mij betreft kan dit topic gesloten worden omdat het doel bereikt is. Facebook doet het weer op ie8 (met klein foutje) maar dat kan de pret niet drukken. En zoals ik het goed begrijp zit er verder geen virus, malware of zoiets dergelijks in de pc.

Bij deze nog bedankt voor je hulp.

Gr Gerwin


Omhoog
 Profiel  
 
BerichtGeplaatst: za apr 14, 2012 10:43 am 
Offline
Helper
Avatar gebruiker

Geregistreerd: ma feb 15, 2010 10:00 pm
Berichten: 4566
Woonplaats: Grootste stad vanTwente
Besturingssysteem: Windows 7 x64 Professional
Bescherming: Avast 8 & OnlineArmor
Welnu, zoveel verschilt Firefox niet van IE......

Maar we gaan wat proberen.

Deïnstalleer nu eerst InternetExplorer 8.

Vervolgens wil ik graag, dat jij ServicePack 3 voor Windows XP opnieuw installeert.
Oorspronkelijk werden door SP3 meer dan 900 fouten in XP gerepareerd, nu gebruiken we dezelfde update als reparatie.
Zet wel je anivirusprogramma uit, indien je met de herinstallatie begint.

Windows XP Service Pack: http://www.microsoft.com/downloads/nl-n ... layLang=nl

Is SP3 opnieuw gïnstalleerd, dan installeer jij vervolgens IE8 opnieuw.

Windows Internet Explorer 8 voor Windows XP: http://www.microsoft.com/downloads/nl-n ... laylang=nl

Succes ermee.

_________________
Blijf jezelf; er zijn genoeg anderen.

Afbeelding


Omhoog
 Profiel  
 
BerichtGeplaatst: ma apr 16, 2012 6:51 pm 
Offline
Lid

Geregistreerd: wo apr 11, 2012 9:52 pm
Berichten: 10
Besturingssysteem: xp sp3
Bescherming: avast
Ik krijg ie8 er niet vanaf. Op gegeven moment bij het verwijderen gaat pc bestanden kopieren en kan krijg ik foutmeldingen waaronder de volgende zoals in bijlage. (printscreen)

Heb al geprobeerd om ie8 opnieuw te installeren en dan te verwijderen maar dat helpt niet.


Omhoog
 Profiel  
 
Geef de vorige berichten weer:  Sorteer op  
Dit onderwerp is gesloten, je kunt geen berichten wijzigen of nieuwe antwoorden plaatsen  [ 21 berichten ]  Ga naar pagina 1, 2  Volgende

Alle tijden zijn GMT + 1 uur [ Zomertijd ]


Wie is er online

Gebruikers op dit forum: Geen geregistreerde gebruikers. en 3 gasten


Je mag geen nieuwe onderwerpen in dit forum plaatsen
Je mag niet antwoorden op een onderwerp in dit forum
Je mag je berichten in dit forum niet wijzigen
Je mag je berichten niet uit dit forum verwijderen
Je mag geen bijlagen toevoegen in dit forum

Ga naar:  
Powered by phpBB® Forum Software © phpBB Group
phpBB.nl Vertaling