ComboFix 14-07-31.02 - Gebruiker 01/08/2014 19:49:32.1.4 - x64 Microsoft Windows 8 6.2.9200.0.1252.32.1043.18.6030.4532 [GMT 2:00] Gestart vanuit: c:\users\Gebruiker\Desktop\ComboFix.exe AV: Kaspersky Anti-Virus *Disabled/Updated* {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Kaspersky Anti-Virus *Disabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((( Bestanden Gemaakt van 2014-07-01 to 2014-08-01 )))))))))))))))))))))))))))))) . . 2014-08-01 08:21 . 2014-08-01 17:34 122584 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2014-08-01 08:20 . 2014-08-01 08:23 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware 2014-08-01 08:20 . 2014-05-12 05:26 64216 ----a-w- c:\windows\system32\drivers\mwac.sys 2014-08-01 08:20 . 2014-05-12 05:26 91352 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2014-08-01 08:20 . 2014-05-12 05:25 25816 ----a-w- c:\windows\system32\drivers\mbam.sys 2014-08-01 07:51 . 2014-08-01 07:51 -------- d-----w- c:\program files (x86)\Sony 2014-07-31 13:03 . 2014-07-31 13:03 -------- d-----w- c:\program files (x86)\ESET 2014-07-30 16:46 . 2014-07-30 16:46 249856 ------w- c:\windows\Setup1.exe 2014-07-30 16:46 . 2014-07-30 16:46 73216 ----a-w- c:\windows\ST6UNST.EXE 2014-07-30 16:15 . 2014-07-30 16:15 122584 ----a-w- c:\windows\system32\drivers\6F504ABB.sys 2014-07-30 13:21 . 2014-07-30 13:21 -------- d-----w- C:\rsit 2014-07-29 15:37 . 2014-07-29 15:37 -------- d-----w- c:\windows\SysWow64\NV 2014-07-29 15:37 . 2014-07-29 15:37 -------- d-----w- c:\windows\system32\NV 2014-07-29 15:31 . 2014-07-29 15:31 -------- d-----w- c:\users\Gebruiker\AppData\Local\NVIDIA 2014-07-29 15:31 . 2014-07-29 15:31 -------- d-----w- c:\users\Gebruiker\AppData\Local\NVIDIA Corporation 2014-07-29 15:31 . 2014-07-25 14:01 1291280 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2014-07-29 15:31 . 2014-07-25 14:01 1126480 ----a-w- c:\windows\SysWow64\nvspcap.dll 2014-07-29 15:31 . 2014-07-25 14:01 1715224 ----a-w- c:\windows\system32\nvspbridge64.dll 2014-07-29 15:31 . 2014-07-25 14:01 1283136 ----a-w- c:\windows\system32\nvspcap64.dll 2014-07-29 15:31 . 2014-07-29 15:31 -------- d-----w- c:\program files (x86)\AGEIA Technologies 2014-07-29 15:29 . 2014-07-29 15:29 -------- d-----w- c:\windows\LastGood.Tmp 2014-07-29 15:21 . 2014-07-29 15:21 -------- d-----w- C:\NVIDIA 2014-07-29 15:08 . 2014-07-29 15:08 -------- d-----w- c:\users\Gebruiker\AppData\Local\Adobe 2014-07-21 18:55 . 2014-07-30 16:46 -------- d-----w- c:\program files (x86)\SubSync 2014-07-11 17:08 . 2014-06-26 20:53 703968 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-07-11 17:08 . 2014-06-26 20:53 105440 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-07-10 17:09 . 2014-05-29 23:02 1281536 ----a-w- c:\windows\system32\lsasrv.dll 2014-07-10 17:09 . 2014-05-29 23:03 588288 ----a-w- c:\windows\system32\SHCore.dll 2014-07-10 17:09 . 2014-05-29 23:31 452608 ----a-w- c:\windows\SysWow64\SHCore.dll 2014-07-10 17:09 . 2014-05-29 23:02 439808 ----a-w- c:\windows\system32\lsm.dll 2014-07-10 17:05 . 2014-06-19 02:11 19277312 ----a-w- c:\windows\system32\mshtml.dll 2014-07-10 17:05 . 2014-06-19 02:10 15369728 ----a-w- c:\windows\system32\ieframe.dll 2014-07-10 17:05 . 2014-06-19 02:10 3959296 ----a-w- c:\windows\system32\jscript9.dll 2014-07-05 04:55 . 2014-07-05 04:55 122584 ----a-w- c:\windows\system32\drivers\066320CA.sys 2014-07-04 18:07 . 2014-07-04 18:07 122584 ----a-w- c:\windows\system32\drivers\3EA536F1.sys . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-07-10 18:05 . 2014-01-20 18:29 96441528 ----a-w- c:\windows\system32\MRT.exe 2014-07-04 17:59 . 2014-05-15 19:15 122584 ----a-w- c:\windows\system32\drivers\48230029.sys 2014-07-02 20:48 . 2014-01-19 02:12 965312 ----a-w- c:\windows\system32\nvumdshimx.dll 2014-07-02 20:48 . 2014-01-19 02:12 846832 ----a-w- c:\windows\SysWow64\nvumdshim.dll 2014-07-02 20:48 . 2014-01-19 02:12 166568 ----a-w- c:\windows\system32\nvinitx.dll 2014-07-02 20:48 . 2014-01-19 02:12 146480 ----a-w- c:\windows\SysWow64\nvinit.dll 2014-07-02 20:48 . 2014-01-19 02:12 3196816 ----a-w- c:\windows\system32\nvapi64.dll 2014-07-02 18:55 . 2014-01-18 16:26 6783776 ----a-w- c:\windows\system32\nvcpl.dll 2014-07-02 18:55 . 2014-01-18 16:26 3522392 ----a-w- c:\windows\system32\nvsvc64.dll 2014-07-02 18:55 . 2014-01-18 16:26 935368 ----a-w- c:\windows\system32\nvvsvc.exe 2014-07-02 18:55 . 2014-01-18 16:26 67072 ----a-w- c:\windows\system32\nv3dappshextr.dll 2014-07-02 18:55 . 2014-01-18 16:26 62808 ----a-w- c:\windows\system32\nvshext.dll 2014-07-02 18:55 . 2014-01-18 16:26 386520 ----a-w- c:\windows\system32\nvmctray.dll 2014-07-02 18:55 . 2014-01-18 16:26 2559960 ----a-w- c:\windows\system32\nvsvcr.dll 2014-07-02 18:55 . 2014-01-18 16:26 1084704 ----a-w- c:\windows\system32\nv3dappshext.dll 2014-07-02 10:14 . 2014-01-18 16:26 3826628 ----a-w- c:\windows\system32\nvcoproc.bin 2014-06-26 17:55 . 2014-06-26 17:55 122584 ----a-w- c:\windows\system32\drivers\2BCA1898.sys 2014-06-25 17:25 . 2014-06-25 17:25 122584 ----a-w- c:\windows\system32\drivers\66BC7407.sys 2014-06-25 17:11 . 2014-06-25 17:11 122584 ----a-w- c:\windows\system32\drivers\429A310D.sys 2014-06-21 17:37 . 2014-06-21 17:37 122584 ----a-w- c:\windows\system32\drivers\47EE1B82.sys 2014-06-20 20:23 . 2014-06-20 20:23 122584 ----a-w- c:\windows\system32\drivers\6DB63C0C.sys 2014-06-14 16:11 . 2014-06-14 16:37 24064 ----a-w- c:\windows\zoek-delete.exe 2014-06-04 16:36 . 2014-06-04 16:36 119512 ----a-w- c:\windows\system32\drivers\0A725388.sys 2014-05-29 11:01 . 2014-05-29 11:01 119512 ----a-w- c:\windows\system32\drivers\608D6975.sys 2014-05-26 15:53 . 2014-05-26 15:53 119512 ----a-w- c:\windows\system32\drivers\47645842.sys 2014-05-23 13:46 . 2014-05-23 13:46 119512 ----a-w- c:\windows\system32\drivers\4AF67DA3.sys 2014-05-22 17:20 . 2014-05-22 17:20 119512 ----a-w- c:\windows\system32\drivers\5BB1161B.sys 2014-05-18 08:03 . 2014-05-18 08:03 119512 ----a-w- c:\windows\system32\drivers\366F2259.sys 2014-05-17 17:45 . 2014-05-17 17:45 119512 ----a-w- c:\windows\system32\drivers\41CC459B.sys 2014-05-17 09:56 . 2014-05-17 09:56 119512 ----a-w- c:\windows\system32\drivers\1CA97378.sys 2014-05-16 18:58 . 2014-05-16 18:58 119512 ----a-w- c:\windows\system32\drivers\0A9255ED.sys 2014-04-30 02:03 . 2014-04-30 02:03 2174976 ----a-w- c:\program files (x86)\Common Files\atimpenc.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2014-05-07 17:26 223432 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2014-05-07 17:26 223432 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2014-05-07 17:26 223432 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-02-28 18642024] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-12-21 959904] "ControlCenter4"="c:\program files (x86)\ControlCenter4\BrCcBoot.exe" [2013-04-05 139264] "BrStsMon00"="c:\program files (x86)\Browny02\Brother\BrStMonW.exe" [2012-12-27 4522496] "BrHelp"="c:\program files (x86)\Brother\Brother Help\BrotherHelp.exe" [2013-01-18 2009088] . c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\ McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.150\SSScheduler.exe [2014-4-9 332016] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "EnableUIADesktopToggle"= 0 (0x0) "EnableCursorSuppression"= 1 (0x1) "ConsentPromptBehaviorUser"= 3 (0x3) "FilterAdministratorToken"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R0 klelam;klelam;c:\windows\system32\DRIVERS\klelam.sys;c:\windows\SYSNATIVE\DRIVERS\klelam.sys [x] R2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.exe [x] R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x] R3 BthLEEnum;Bluetooth Low Energy-stuurprogramma;c:\windows\system32\DRIVERS\BthLEEnum.sys;c:\windows\SYSNATIVE\DRIVERS\BthLEEnum.sys [x] R3 k57nd60a;Broadcom NetLink Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\3.8.150\McCHSvc.exe;c:\program files\McAfee Security Scan\3.8.150\McCHSvc.exe [x] R3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;c:\windows\System32\drivers\nvstusb.sys;c:\windows\SYSNATIVE\drivers\nvstusb.sys [x] R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\system32\DRIVERS\WUDFRd.sys;c:\windows\SYSNATIVE\DRIVERS\WUDFRd.sys [x] R4 klflt;klflt;c:\windows\system32\DRIVERS\klflt.sys;c:\windows\SYSNATIVE\DRIVERS\klflt.sys [x] S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x] S1 klpd;klpd;c:\windows\system32\DRIVERS\klpd.sys;c:\windows\SYSNATIVE\DRIVERS\klpd.sys [x] S1 klwfp;klwfp;c:\windows\system32\DRIVERS\klwfp.sys;c:\windows\SYSNATIVE\DRIVERS\klwfp.sys [x] S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x] S2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service;c:\program files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe;c:\program files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S3 ATP;ASUS Input Device;c:\windows\System32\drivers\AsusTP.sys;c:\windows\SYSNATIVE\drivers\AsusTP.sys [x] S3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.exe [x] S3 BrYNSvc;BrYNSvc;c:\program files (x86)\Browny02\BrYNSvc.exe;c:\program files (x86)\Browny02\BrYNSvc.exe [x] S3 HIDSwitch;ASUS Wireless Radio Control;c:\windows\System32\drivers\AsHIDSwitch64.sys;c:\windows\SYSNATIVE\drivers\AsHIDSwitch64.sys [x] S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 RSBASTOR;Realtek PCIE CardReader Driver - BA;c:\windows\system32\DRIVERS\RtsBaStor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsBaStor.sys [x] S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-07-29 07:18 1104200 ----a-w- c:\program files (x86)\Google\Chrome\Application\36.0.1985.125\Installer\chrmstp.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{A6EADE66-0000-0000-484E-7E8A45000000}] 2013-12-21 06:04 215416 ----a-w- c:\program files (x86)\Adobe\Reader 11.0\Esl\AiodLite.dll . Inhoud van de 'Gedeelde Taken' map . 2014-08-01 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-12 18:49] . 2014-08-01 c:\windows\Tasks\GlaryInitialize.job - c:\program files (x86)\Glary Utilities\initialize.exe [2013-04-12 19:09] . 2014-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-01-18 10:38] . 2014-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-01-18 10:38] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1] @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}] 2014-05-07 17:26 262344 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2] @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}] 2014-05-07 17:26 262344 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3] @="{BBACC218-34EA-4666-9D7A-C78F2274A524}" [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}] 2014-05-07 17:26 262344 ----a-w- c:\users\Gebruiker\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2013-07-09 13632216] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2013-07-04 1321688] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2013-06-04 171992] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2013-06-04 399832] "Persistence"="c:\windows\system32\igfxpers.exe" [2013-06-04 442328] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-07-25 2403104] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-07-25 1283136] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . ------- Bijkomende Scan ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = https://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xporteren naar Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.0.1 FF - ProfilePath - c:\users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\yssl1ykn.default\ . - - - - ORPHANS VERWIJDERD - - - - . Toolbar-Locked - (no file) Wow6432Node-HKLM-Run-NWEReboot - (no file) Toolbar-Locked - (no file) AddRemove-Revo Uninstaller - c:\program files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe AddRemove-genesis_06141002 - c:\users\gebruiker\appdata\local\genesis_06141002\genesis_06141002.exe . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) @SACL=(02 0000) . Voltooingstijd: 2014-08-01 21:00:32 ComboFix-quarantined-files.txt 2014-08-01 19:00 . Pre-Run: 869 600 120 832 bytes free Post-Run: 869 530 451 968 bytes free . - - End Of File - - C1A159207C419F1AA3EBC1CE876B2B51