Ga naar inhoud

Rob+65

Lid
  • Items

    73
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door Rob+65

  1. Heb veel last van popups op google crome, mozilla Firefox, ie11. Hoe moet ik daar van af komen. het word nu toch wel gekker. Heb er jaren geleden ook last van gehad toen zelf weg gekregen maar nu lukt het mijn niet. hoe nu verder. Als ik die op nieuw in stalleer ben ik er dan van af. Groeten Rob. Heb spyware er over heen gedaan en virus scenners maar het helpt niet. Heb ook last van internet en dan met dubbele strpen dat er popups komen .weer op nieuw. Zal nog even kijken in oude discussies.
  2. Beste mensen het gaat goed de laatste dagen geen las hoe wel hij niet zo lang heeft aan gestaan maar we zien wel weer verder Hartelijke dank voor de uitstekende hulpdie ik heb mogen ervaren. Groetjes Rob.
  3. In dat scherm staat niet-actieve systeemprocessen / Cystem / CPU 99 . En wlancfg5.exe / Adminestrator / 00 Dat is het geen het meest boven aan staan. Groetjes Rob.
  4. Ik heb op de pc wordfeut staan die speel ik nu met een tablet. Dus kijken hoe het nu gaat. Maar er staat altijd teratec aan tv kijken. Post kijken incredimail. Wordfeut. En dan tegelijk een kaart spelletje. Eerst ging dat gewoon door maar je nu niet meer misschien. Groeten Rob.
  5. Combofix wil niet weg hij start op nieuw op en haald de nieuwe versie binnen en maakt zefs een nieuwe log bestand. De Qoobox wil ook niet weg hij blijft hangen op een BeckEnv die kan ik ook niet vrij geven van schrijven. Kan er ook geen andere naam geven. Gisteren avond nog een vast loper. Ccleaner heb iik aljaren in gebruik. Prima programma. Groetjes Rob.
  6. Gisteren avond geen last van en van daag ook nog niet. Dus verder maar eens afwachten wat er het weekend gebeurd dacht ik zo. Groetjes en een goed weeekend gewenst. Rob.
  7. onder sfc /scannow krijg ik dus 8 maal te zien dat ik de CD windows er in moet doen. en kan ik op opnieuw drukken en gaat hij gewoon verder. en er staat het system kan het gegeven pad niet vinden bestanden naar DLL.chache kopieren. Ik kan ook de Cd er uit laten komen en er weer in laten gaan dan gaat hij ook gewoon verder. Maar het is wel de cd waar hij mee is geinstaleerd. Dus op nieuw gedaan, maar ik ben als adminestrator aan gemeld. C:\Documents and Settings\Administrator>findstr /c:"[sR]" %windir%\logs\CBS\CBS. log> "%userprofile%\Desktop\sfcdetails.txt" Het systeem kan het opgegeven pad niet vinden. C:\Documents and Settings\Administrator> Krijg dit dus op nieuw te zien. Groetjes Rob. gisteren avond geen vast lopers. Van morgen nog even de video kaart er uit gehaal en schoon geblazen maar wat er op zat viel ook wel mee.
  8. Het is toch wel gelukt. Ziet niets staan over CBS logbestand. Hij heeft wel om de Wondows CD gevraagd en gescand. En onder het scannen vroeg hij een paar maal dat hij iets naar een DDL file moest zetten en dan moets ik op doorgaan duwen. Hij ging dus door En heb het volgende wat er stond dus in getypt. Krijg dus het volgede te zien het het nog eens overgetypt om dat er wel fouten in zitten. Microsoft Windows XP [versie 5.1.2600] © Copyright 1985-2001 Microsoft Corp. C:\Documents and Settings\Administrator>sfc /scannow C:\Documents and Settings\Administrator>findstr /c:"[sR] %windir%\logs\CBS\CBS.l og> "%userprofile%\Desktop\sfcdetails.txt" FINDSTR: kan and niet openen FINDSTR: kan Settings\Administrator\Desktop\sfcdetails.txt niet openen C:\Documents and Settings\Administrator>findstr /c:"[sR]" %windir%\logs\CBS\CBS. log> "%userprofile%\Desktop\sfcdetails.txt" Het systeem kan het opgegeven pad niet vinden. C:\Documents and Settings\Administrator>findstr /c:"[sR]" %windir%\logs\CBS\CBS. log> "%userprofile%\Desktop\sfcdetails.txt" Het systeem kan het opgegeven pad niet vinden. C:\Documents and Settings\Administrator> Dit krijg ik das te zien er na.
  9. Dat lukt niet mijn computer heeft geen wachtwoord. Dus kan niet als adminestrator volgens hun werken. Maar ik ben toch al adminestrator Computer naam gezin/Adminestrator maar dat neemt hij niet. Groetjes Rob. Zal nog wel enkelen malen proberen maar ??????
  10. [TABLE=width: 100%] [TR] [TD] [/TD] [/TR] [/TABLE] [TABLE] [TR] [TD]Dit is de uitkomst van HD 2 Test Option: [/TD] [TD]EXTENDED TEST [/TD] [/TR] [TR] [TD]Model Number:[/TD] [TD]Hitachi HDP725050GLA360[/TD] [/TR] [TR] [TD]Unit Serial Number:[/TD] [TD]GEB531RE3G6YEF[/TD] [/TR] [TR] [TD]Firmware Number:[/TD] [TD]GM4OA52A[/TD] [/TR] [TR] [TD]Capacity:[/TD] [TD]500.11 GB[/TD] [/TR] [TR] [TD]SMART Status:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Result:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Time:[/TD] [TD]14:33:18, May 23, 2012[/TD] [/TR] [/TABLE] [TABLE] [TR] [TD]Test Option:[/TD] [TD]EXTENDED TEST[/TD] [/TR] [TR] [TD]Model Number:[/TD] [TD]Hitachi HDT721010SLA360[/TD] [/TR] [TR] [TD]Unit Serial Number:[/TD] [TD]STF607MH32U8BK[/TD] [/TR] [TR] [TD]Firmware Number:[/TD] [TD]ST6OA31B[/TD] [/TR] [TR] [TD]Capacity:[/TD] [TD]1000.20 GB[/TD] [/TR] [TR] [TD]SMART Status:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Result:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Time:[/TD] [TD]17:51:01, May 23, 2012 Groetjes Rob. [/TD] [/TR] [/TABLE] ---------- Post toegevoegd om 17:56 ---------- Vorige post was om 17:55 ---------- Dit is HD 1. [TABLE] [TR] [TD]Test Option:[/TD] [TD]EXTENDED TEST[/TD] [/TR] [TR] [TD]Model Number:[/TD] [TD]Hitachi HDP725050GLA360[/TD] [/TR] [TR] [TD]Unit Serial Number:[/TD] [TD]GEB531RE3G6YEF[/TD] [/TR] [TR] [TD]Firmware Number:[/TD] [TD]GM4OA52A[/TD] [/TR] [TR] [TD]Capacity:[/TD] [TD]500.11 GB[/TD] [/TR] [TR] [TD]SMART Status:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Result:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Time:[/TD] [TD]14:33:18, May 23, 2012[/TD] [/TR] [/TABLE] [TABLE] [TR] [TD]Test Option:[/TD] [TD]EXTENDED TEST[/TD] [/TR] [TR] [TD]Model Number:[/TD] [TD]Hitachi HDT721010SLA360[/TD] [/TR] [TR] [TD]Unit Serial Number:[/TD] [TD]STF607MH32U8BK[/TD] [/TR] [TR] [TD]Firmware Number:[/TD] [TD]ST6OA31B[/TD] [/TR] [TR] [TD]Capacity:[/TD] [TD]1000.20 GB[/TD] [/TR] [TR] [TD]SMART Status:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Result:[/TD] [TD]PASS[/TD] [/TR] [TR] [TD]Test Time:[/TD] [TD]17:51:01, May 23, 2012[/TD] [/TR] [/TABLE]
  11. Hier de Speccy bestand http://speccy.piriform.com/results/1iiKSrK3tJATfkMvPm053hF Groetjes Rob.
  12. Hier een nieuw logje. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:04:29, on 21-05-2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchService.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchUser.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\LGScsiCommandService.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\system32\PSIService.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Tablet\Pen\Pen_TabletUser.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Avira\AntiVir Desktop\avshadow.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Bamboo Dock\BambooCore.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Microsoft IntelliType Pro\itype.exe C:\Program Files\RocketDock\RocketDock.exe C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe C:\Program Files\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe C:\Program Files\IncrediMail\bin\IncMail.exe C:\WINDOWS\system32\WISPTIS.EXE C:\Program Files\IncrediMail\Bin\ImApp.exe C:\Program Files\Avant Browser\avant.exe C:\Program Files\Avant Browser\gecko\firefox.exe C:\Documents and Settings\Administrator\Bureaublad\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Doenormaal dan doe je gek genoeg. Rob, Paranormaal, Gezondheid, Muziek, Geldverdienen, Zoek, Startpagina's, Gedichten, Kinderen, Computer R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\VIDEOD~1\ARCURL~1.DLL O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: ToolbarBHO Class - {9519AF7E-638D-4933-BAD6-D33D23C79FE5} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll O3 - Toolbar: TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\PROGRA~1\TerraTec\TERRAT~1\THCDES~1.DLL O3 - Toolbar: RAW Thumbnail Viewer - {F301665A-12F8-4331-804A-5BCBD379668C} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [bambooCore] C:\Program Files\Bamboo Dock\BambooCore.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe" O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Remote Control Editor] "C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe" O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: NETGEAR WG311v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe O8 - Extra context menu item: &D&ownload &met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload alles met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201 O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204 O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203 O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202 O8 - Extra context menu item: Download Video on This Page - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/211 O8 - Extra context menu item: Download Video This Links To - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/212 O8 - Extra context menu item: Free YouTube Download - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://ponltbc.onl.motive.com O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LG SCSI command service (LGScsiCommandService) - Mobile Leader Co.,Ltd. - C:\WINDOWS\system32\LGScsiCommandService.exe O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_Tablet.exe O23 - Service: Wacom Consumer Touch Service (TouchServicePen) - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_TouchService.exe -- End of file - 14393 bytes
  13. Deze week maandag 2 x vast gelopen. Dinsdag 0 x vast. woensdag 2 x vast. donderdag 0 x. Vrijdag 0 x. Zat 0x Zondag 2 x vast gelopen. Van morgen malware niets Virus scanner loopt vast de gehele PC op C:\windows\sustem32\catroot2\cdb.log Hier liep hij van morgen daus weer helemaal op vast. Weet niet hoeveel maal hij dit soort dingen controleerd als je ergen mee bezig bent. Anders moet ik maar windows er op nieuw op gaan zetten maar weet niet of dat lukt naast windows 7 en dan ben ik natuurlijk van alles kwijt. dat ik dan helemaal op nieuw moet gaan maken en hoop dingen die niet eens meer gaan. Groetjes Rob.
  14. Ja die hou ik zeker in de gaten. En die laat ik uit staan omdat ik die toch niet gebruikt op de PC. Ik doe het altijd via de nummer toetsen van het toetsenboard. Op dit moment geen vast lopers van de TV op PC terwijl ik er mee bezig ben. Verder hoor jue nog van mijn als het helemaal over is. Alvast bedankt voor alles en de moeite. Verder een fijne zondag vandaag. Groetjes Rob.
  15. Zaterdag avond vier keer vast gelopen. Ik merkte op een gegeven moment wel dat de tv op de pc iedere keer hikte vast staan en weer verder gaan. Maar daar kon ik wel door gaan met de pc wel met ook wat hikken ( vertragingen ). Toen heb ik de teratec uit gezet dus geen tv kijken op de pc toen ging het goed. toen heb ik op de cotrol/Alt/Del gedrukt en gekeken welke program's er draaide. Toen heb ik de remoet control uit gezet van teratec dus de tv kijken die gebruik ik toch niet dacht ik. Iets later weer de tv aan gezet op de PC en tot mijn verbazing stotterde de TV niet meer op de PC. En verder geen vastlopers op de PC gehad. Verder maar weer bekijken vandaag en morgen wat er gebeurd. Groetjes Rob.
  16. Hier is de combofix.txt. ComboFix 12-05-11.02 - Administrator 11-05-2012 14:45:54.3.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.31.1043.18.2046.1347 [GMT 2:00] Gestart vanuit: c:\documents and settings\Administrator\Mijn documenten\Downloads\Comp repareren\ComboFix.exe gebruikte Opdracht switches :: c:\documents and settings\Administrator\Mijn documenten\Downloads\Comp repareren\CFScript.txt AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7} AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33} . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\docume~1\ADMINI~1\LOCALS~1\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll c:\documents and settings\Administrator\Local Settings\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll . . (((((((((((((((((((( Bestanden Gemaakt van 2012-04-11 to 2012-05-11 )))))))))))))))))))))))))))))) . . 2012-05-07 17:19 . 2012-05-11 12:42 -------- d--h--r- c:\documents and settings\Administrator\Onlangs geopend 2012-05-03 10:10 . 2000-12-26 13:35 49152 ----a-r- c:\windows\p1030cfg.exe 2012-05-03 10:10 . 2000-12-26 13:35 25169 ----a-r- c:\windows\system32\drivers\p1030cam.sys 2012-05-03 10:10 . 2000-12-26 13:35 167661 ----a-r- c:\windows\system32\drivers\p1030vid.sys 2012-05-03 10:10 . 2000-12-26 13:35 53248 ----a-r- c:\windows\system32\p1030hwx.dll 2012-05-03 10:10 . 2000-12-26 13:35 40960 ----a-r- c:\windows\system32\p1030ext.dll 2012-05-03 10:10 . 2000-12-26 13:35 28672 ----a-r- c:\windows\system32\p1030pin.dll 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030vfw.dll 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030pin.crl 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030cfg.crl 2012-05-03 10:10 . 2000-12-26 13:35 18964 ----a-r- c:\windows\system32\p1030ext.ax 2012-05-03 10:10 . 2000-12-26 13:35 16429 ----a-r- c:\windows\system32\p1030usd.dll 2012-05-03 10:10 . 2000-12-26 13:35 13312 ----a-r- c:\windows\system32\p1030vfw.drv 2012-04-30 12:42 . 2012-04-30 12:42 -------- d-----w- c:\program files\Common Files\Skype 2012-04-28 11:18 . 2012-04-28 11:18 -------- d-----w- c:\program files\Rovio 2012-04-24 13:24 . 2012-02-24 09:14 181432 ----a-w- c:\windows\system32\drivers\ssudmdm.sys 2012-04-24 13:24 . 2012-02-24 09:14 80824 ----a-w- c:\windows\system32\drivers\ssudbus.sys 2012-04-21 06:24 . 2012-04-21 06:24 -------- d-----w- c:\program files\Free PDF to Word Doc Converter 2012-04-13 13:29 . 2012-04-13 13:29 -------- d-----w- c:\documents and settings\Administrator\Application Data\Temp 2012-04-13 13:14 . 2012-04-13 13:14 -------- d-----w- c:\program files\MyFree Codec 2012-04-13 13:11 . 2012-05-08 11:53 -------- d-----w- C:\Temp 2012-04-13 13:07 . 2012-04-13 17:35 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Samsung 2012-04-13 13:07 . 2012-04-13 13:07 -------- d-----w- c:\documents and settings\Administrator\Application Data\Samsung 2012-04-13 13:06 . 2010-12-21 05:55 12544 ----a-w- c:\windows\system32\drivers\ssm_cm.sys 2012-04-13 13:06 . 2010-12-21 05:55 12416 ----a-w- c:\windows\system32\drivers\ssm_wh.sys 2012-04-13 13:05 . 2012-03-28 20:11 4659712 ----a-w- c:\windows\system32\Redemption.dll 2012-04-13 13:05 . 2012-04-13 13:05 -------- d-----w- c:\program files\MarkAny 2012-04-13 13:05 . 2012-03-28 20:11 821824 ----a-w- c:\windows\system32\dgderapi.dll 2012-04-13 13:05 . 2012-03-28 20:11 319456 ----a-w- c:\windows\system32\DIFxAPI.dll 2012-04-13 13:05 . 2012-03-28 20:11 20032 ----a-w- c:\windows\system32\drivers\dgderdrv.sys 2012-04-13 13:04 . 2012-04-13 13:06 -------- d-----w- c:\program files\Samsung 2012-04-13 13:04 . 2012-04-13 13:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Samsung 2012-04-13 13:03 . 2012-04-13 13:03 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Downloaded Installations . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-05-11 11:51 . 2012-03-29 08:36 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-05-11 11:51 . 2011-05-20 15:39 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-05-08 20:04 . 2012-01-27 14:52 137928 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-05-08 20:04 . 2012-01-27 14:52 83392 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2012-04-04 13:56 . 2012-01-27 10:57 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-03-28 20:11 . 2012-03-28 20:11 90112 ----a-w- c:\windows\MAMCityDownload.ocx 2012-03-28 20:11 . 2012-03-28 20:11 325552 ----a-w- c:\windows\MASetupCaller.dll 2012-03-28 20:11 . 2012-03-28 20:11 30568 ----a-w- c:\windows\MusiccityDownload.exe 2012-03-28 20:11 . 2012-03-28 20:11 974848 ----a-w- c:\windows\system32\cis-2.4.dll 2012-03-28 20:11 . 2012-03-28 20:11 81920 ----a-w- c:\windows\system32\issacapi_bs-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 65536 ----a-w- c:\windows\system32\issacapi_pe-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\MTXSYNCICON.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\MK_Lyric.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\issacapi_se-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 569344 ----a-w- c:\windows\system32\muzdecode.ax 2012-03-28 20:11 . 2012-03-28 20:11 491520 ----a-w- c:\windows\system32\muzapp.dll 2012-03-28 20:11 . 2012-03-28 20:11 49152 ----a-w- c:\windows\system32\MaJGUILib.dll 2012-03-28 20:11 . 2012-03-28 20:11 45320 ----a-w- c:\windows\system32\MAMACExtract.dll 2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\system32\MaXMLProto.dll 2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\system32\MACXMLProto.dll 2012-03-28 20:11 . 2012-03-28 20:11 40960 ----a-w- c:\windows\system32\MTTELECHIP.dll 2012-03-28 20:11 . 2012-03-28 20:11 352256 ----a-w- c:\windows\system32\MSLUR71.dll 2012-03-28 20:11 . 2012-03-28 20:11 258048 ----a-w- c:\windows\system32\muzoggsp.ax 2012-03-28 20:11 . 2012-03-28 20:11 245760 ----a-w- c:\windows\system32\MSCLib.dll 2012-03-28 20:11 . 2012-03-28 20:11 24576 ----a-w- c:\windows\system32\MASetupCleaner.exe 2012-03-28 20:11 . 2012-03-28 20:11 200704 ----a-w- c:\windows\system32\muzwmts.dll 2012-03-28 20:11 . 2012-03-28 20:11 155648 ----a-w- c:\windows\system32\MSFLib.dll 2012-03-28 20:11 . 2012-03-28 20:11 143360 ----a-w- c:\windows\system32\3DAudio.ax 2012-03-28 20:11 . 2012-03-28 20:11 14336 ----a-w- c:\windows\system32\avrt.dll 2012-03-28 20:11 . 2012-03-28 20:11 135168 ----a-w- c:\windows\system32\muzaf1.dll 2012-03-28 20:11 . 2012-03-28 20:11 131072 ----a-w- c:\windows\system32\muzmpgsp.ax 2012-03-28 20:11 . 2012-03-28 20:11 122880 ----a-w- c:\windows\system32\muzeffect.ax 2012-03-28 20:11 . 2012-03-28 20:11 118784 ----a-w- c:\windows\system32\MaDRM.dll 2012-03-28 20:11 . 2012-03-28 20:11 110592 ----a-w- c:\windows\system32\muzmp4sp.ax 2012-02-29 16:47 . 2001-09-07 12:00 26112 ----a-w- c:\windows\system32\userinit.exe 2012-05-03 16:07 . 2011-06-21 17:14 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll 2008-04-14 17:02 413696 --sh--w- c:\windows\system32\msvcp60.dll . . ((((((((((((((((((((((((((((( SnapShot@2012-05-10_11.55.31 ))))))))))))))))))))))))))))))))))))))))) . + 2012-05-11 12:57 . 2012-05-11 12:57 16384 c:\windows\Temp\Perflib_Perfdata_a28.dat - 2001-09-07 12:00 . 2012-05-09 17:21 658810 c:\windows\system32\perfh013.dat + 2001-09-07 12:00 . 2012-05-11 12:42 658810 c:\windows\system32\perfh013.dat + 2001-09-07 12:00 . 2012-05-11 12:42 576616 c:\windows\system32\perfh009.dat - 2001-09-07 12:00 . 2012-05-09 17:21 576616 c:\windows\system32\perfh009.dat - 2001-09-07 12:00 . 2012-05-09 17:21 143584 c:\windows\system32\perfc013.dat + 2001-09-07 12:00 . 2012-05-11 12:42 143584 c:\windows\system32\perfc013.dat + 2001-09-07 12:00 . 2012-05-11 12:42 115208 c:\windows\system32\perfc009.dat - 2001-09-07 12:00 . 2012-05-09 17:21 115208 c:\windows\system32\perfc009.dat + 2012-05-11 11:51 . 2012-05-11 11:51 351904 c:\windows\system32\Macromed\Flash\FlashUtil32_11_2_202_235_Plugin.exe + 2012-03-29 08:36 . 2012-05-11 11:51 257696 c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe + 2012-05-11 11:51 . 2012-05-11 11:51 8797856 c:\windows\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RocketDock"="c:\program files\RocketDock\RocketDock.exe" [2007-09-02 495616] "Remote Control Editor"="c:\program files\Common Files\TerraTec\Remote\TTTVRC.exe" [2010-06-09 1689088] "KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-03-31 21392] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"="RTHDCPL.EXE" [2007-12-20 16860672] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504] "PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016] "ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2005-02-17 221184] "ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-02-17 81920] "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040] "BambooCore"="c:\program files\Bamboo Dock\BambooCore.exe" [2011-09-28 646232] "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624] "itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2009-11-05 1505144] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] . c:\documents and settings\Robert\Menu Start\Programma's\Opstarten\ FSL Launcher.lnk - c:\program files\FSL\FSL_Launcher\FSL_Launcher.exe [2010-5-4 1287168] . c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\ NETGEAR WG311v3 Smart Wizard.lnk - c:\program files\NETGEAR\WG311v3\wlancfg5.exe [2006-1-26 1486848] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] @="Service" . [HKLM\~\startupfolder\C:^Documents and Settings^Administrator^Menu Start^Programma's^Opstarten^OneNote 2007 Schermopname en Snel starten.lnk] path=c:\documents and settings\Administrator\Menu Start\Programma's\Opstarten\OneNote 2007 Schermopname en Snel starten.lnk backup=c:\windows\pss\OneNote 2007 Schermopname en Snel starten.lnkStartup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Device Monitor.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Device Monitor.lnk backup=c:\windows\pss\Device Monitor.lnkCommon Startup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Remote Control.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Remote Control.lnk backup=c:\windows\pss\Remote Control.lnkCommon Startup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^TMMonitor.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\TMMonitor.lnk backup=c:\windows\pss\TMMonitor.lnkCommon Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST] m‘|\ü [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service] 2010-10-27 18:17 207424 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BambooScribe.exe] 2011-02-14 11:00 3002368 ----a-w- c:\program files\Vision Objects\Bamboo Scribe\BambooScribe.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BambooScribeAutoStart.vbe] 2011-02-14 10:54 1151 ----a-w- c:\program files\Vision Objects\Bamboo Scribe\BambooScribeAutoStart.vbe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] 2008-12-12 06:30 132392 ----a-w- c:\program files\Common Files\Nero\Lib\NMBgMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Creative WebCam Tray] 2002-02-25 00:30 53248 ----a-w- c:\program files\Creative\PC-CAM Center\CamTray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate] 2011-07-28 23:08 1259376 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager] 2008-12-04 11:24 665424 ------w- c:\progra~1\EPSONS~1\EVENTM~1\EEventManager.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor] 2009-02-26 17:36 30040 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] 2008-12-12 06:31 1840424 ----a-w- c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\itype] 2009-11-05 20:45 1505144 ----a-w- c:\program files\Microsoft IntelliType Pro\itype.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper] 2012-03-31 02:38 954256 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR] 2012-03-31 02:38 21392 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2012-03-31 02:38 3521424 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut] 2007-02-07 14:21 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS] 2008-04-14 17:03 1695232 ------w- c:\program files\Messenger\msmsgs.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] 2010-04-16 20:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan] 2008-12-02 13:29 2221352 ----a-w- c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] 2008-11-06 06:25 570664 ----a-w- c:\program files\Common Files\Nero\Lib\NeroCheck.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Remote Control Editor] 2010-06-09 10:47 1689088 ----a-w- c:\program files\Common Files\TerraTec\Remote\TTTvRc.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl] 2007-02-07 14:24 71216 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrayServer] 2008-09-10 08:37 90112 ----a-w- c:\progra~1\MAGIX\VIDEO_~1\Trayserver_nl.exe . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"= "c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"= "c:\\Program Files\\TerraTec\\TerraTec Home Cinema\\VersionCheck\\VersionCheck.exe"= "c:\\Program Files\\BitComet\\BitComet.exe"= "c:\\Program Files\\TerraTec\\TerraTec Home Cinema\\CinergyDvr.exe"= "c:\\Program Files\\Orbitdownloader\\orbitnet.exe"= "c:\\Program Files\\Epson Software\\Event Manager\\EEventManager.exe"= "c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"= "c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"= "c:\\Program Files\\iMesh Applications\\iMesh\\iMesh.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= "c:\\Program Files\\YouWave_Android\\vb\\VBoxSDL.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "20210:TCP"= 20210:TCP:BitComet 20210 TCP "20210:UDP"= 20210:UDP:BitComet 20210 UDP . R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [14-11-2011 12:11 64512] R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [27-01-2012 16:52 36000] R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;c:\program files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [09-10-2009 5:45 169312] R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [27-01-2012 16:52 86224] R2 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [21-10-2011 16:23 196176] R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\Common Files\MAGIX Services\Database\bin\FABS.exe [27-08-2009 17:09 1253376] R2 LGScsiCommandService;LG SCSI command service;c:\windows\system32\LGScsiCommandService.exe [07-12-2010 20:31 47616] R2 TabletServicePen;TabletServicePen;c:\program files\Tablet\Pen\Pen_Tablet.exe [14-08-2011 18:59 6076272] R2 TouchServicePen;Wacom Consumer Touch Service;c:\program files\Tablet\Pen\Pen_TouchService.exe [14-08-2011 18:59 616816] R2 VBoxDrv;VBox Support Driver;c:\program files\YouWave_Android\vb\VBoxDrv.sys [15-07-2011 20:13 135680] R3 PD1030VID;Creative WebCam Pro;c:\windows\system32\drivers\p1030vid.sys [03-05-2012 12:10 167661] R3 wacmoumonitor;Wacom Mode Helper;c:\windows\system32\drivers\wacmoumonitor.sys [14-08-2011 18:59 16240] R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18-03-2010 13:16 753504] S1 SASDIFSV;SASDIFSV;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SASDIFSV.SYS --> c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SASDIFSV.SYS [?] S1 SAS***IL;SAS***IL;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SAS***IL.SYS --> c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SAS***IL.SYS [?] S2 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\SeaPort.EXE [13-10-2011 18:21 249648] S2 Ca1528av;SPCA1528 Video Camera Service;c:\windows\system32\drivers\Ca1528av.sys [15-10-2010 19:06 516480] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18-03-2010 13:16 130384] S2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [07-05-2010 13:11 135664] S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [18-08-2011 16:25 2152152] S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [29-02-2012 8:50 158856] S3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [10-01-2011 17:37 945920] S3 Bulk1528;SPCA1528 Still Camera Service;c:\windows\system32\drivers\Bulk1528.sys [15-10-2010 19:06 11648] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [24-04-2012 15:24 80824] S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [13-04-2012 15:05 20032] S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [27-01-2012 12:49 13192] S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [27-01-2012 12:49 8456] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\Common Files\MAGIX Services\Database\bin\fbserver.exe [07-08-2008 11:10 3276800] S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [07-05-2010 13:11 135664] S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [07-09-2001 14:00 14336] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [24-04-2012 15:24 181432] S3 TESTCAP;Studio PCTV (Audio);c:\windows\system32\DRIVERS\PCTVAud.sys --> c:\windows\system32\DRIVERS\PCTVAud.sys [?] S3 UDXTTM6010;Cinergy Hybrid-Stick BDA service;c:\windows\system32\drivers\UDXTTM6010.sys [08-10-2010 15:06 762232] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper . Inhoud van de 'Gedeelde Taken' map . 2012-05-11 c:\windows\Tasks\Ad-Aware Update (Weekly).job - c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2011-08-18 10:13] . 2011-10-24 c:\windows\Tasks\expressburnShakeIcon.job - c:\program files\NCH Software\ExpressBurn\expressburn.exe [2011-10-21 17:45] . 2011-10-24 c:\windows\Tasks\expressripShakeIcon.job - c:\program files\NCH Swift Sound\ExpressRip\expressrip.exe [2011-10-21 17:45] . 2012-05-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-05-07 11:11] . 2012-05-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-05-07 11:11] . 2011-10-24 c:\windows\Tasks\mixpadShakeIcon.job - c:\program files\NCH Software\MixPad\mixpad.exe [2011-10-21 17:45] . 2011-10-24 c:\windows\Tasks\wavepadShakeIcon.job - c:\program files\NCH Software\WavePad\wavepad.exe [2011-10-21 17:44] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://doenormaal.eigenstart.nl/ IE: &D&ownload &met BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm IE: &D&ownload alles met BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm IE: &Download by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/201 IE: &Grab video by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/204 IE: Do&wnload selected by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/203 IE: Down&load all by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/202 IE: Download all links using BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm IE: Download link using &BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm IE: Download Video on This Page - c:\program files\Tomato\FLV Player\MDIEEx.dll/211 IE: Download Video This Links To - c:\program files\Tomato\FLV Player\MDIEEx.dll/212 IE: Free YouTube Download - c:\documents and settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\documents and settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm Trusted Zone: motive.com\ponltbc.onl Trusted Zone: OfflineRegistration TCP: DhcpNameServer = 192.168.1.1 192.168.1.1 DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\ FF - user.js: keyword.enabled - 1 . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2012-05-11 14:58 Windows 5.1.2600 Service Pack 3 NTFS . scannen van verborgen processen ... . scannen van verborgen autostart items ... . scannen van verborgen bestanden ... . Scan succesvol afgerond verborgen bestanden: 0 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{95808DC4-FA4A-4c74-92FE-5B863F82066B}] "ImagePath"="\??\c:\program files\CyberLink\PowerDVD\000.fcl" . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (LocalSystem) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a0,cc,32,f6,e7,2f,57,48,95,03,5b,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a0,cc,32,f6,e7,2f,57,48,95,03,5b,\ . [HKEY_USERS\S-1-5-21-1004336348-1123561945-839522115-500\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (Administrator) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,6e,a2,0b,63,68,d4,98,45,94,25,82,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,37,57,2b,bb,a0,b3,e9,43,aa,0a,89,\ . --------------------- DLLs Geladen Onder Lopende Processen --------------------- . - - - - - - - > 'explorer.exe'(1580) c:\program files\RocketDock\RocketDock.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll c:\program files\Microsoft Silverlight\xapauthenticodesip.dll c:\program files\Microsoft Office\Office12\1043\GrooveIntlResource.dll c:\program files\Epson Software\Easy Photo Print\EPTBL.dll c:\program files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll . ------------------------ Andere Aktieve Processen ------------------------ . c:\windows\system32\nvsvc32.exe c:\program files\Tablet\Pen\Pen_TouchUser.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe c:\program files\Avira\AntiVir Desktop\avguard.exe c:\documents and settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE c:\documents and settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE c:\program files\Java\jre6\bin\jqs.exe c:\program files\Common Files\Motive\McciCMService.exe c:\program files\Nero\Nero8\Nero BackItUp\NBService.exe c:\program files\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe c:\windows\system32\IoctlSvc.exe c:\windows\system32\PSIService.exe c:\program files\CyberLink\Shared Files\RichVideo.exe c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files\Tablet\Pen\Pen_TabletUser.exe c:\program files\Avira\AntiVir Desktop\avshadow.exe c:\windows\system32\wscntfy.exe c:\windows\System32\wbem\unsecapp.exe c:\windows\system32\WISPTIS.EXE . ************************************************************************** . Voltooingstijd: 2012-05-11 15:02:32 - machine werd herstart ComboFix-quarantined-files.txt 2012-05-11 13:02 ComboFix2.txt 2012-05-10 12:01 . Pre-Run: 23.558.340.608 bytes beschikbaar Post-Run: 23.570.784.256 bytes beschikbaar . - - End Of File - - 2DB968AF6A6D954CA6D1A81456D50A61
  17. Van morgen was ik bezig in win.office 2007 word. Toen stond hij weer vast. Dus af wachten wat hij verder doet van daag. Groetjes Rob.
  18. Voorlopig hartelijke dank. Het vast lopen is vanavond niet gebeurd. Nogmaals hartelijk dank voor deze goede hulp. Alvast een goed weekend gewenst. :date::date: Vanmorgen liep hij toch weer vast ik was toen bezig in Microsoft office word. Dus het is nog niet voor bij jammer genoeg. Groetjes Rob.
  19. Hier het log bestand van combifix. ComboFix 12-05-10.02 - Administrator 10-05-2012 13:43:17.1.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.31.1043.18.2046.918 [GMT 2:00] Gestart vanuit: c:\documents and settings\Administrator\Mijn documenten\Downloads\ComboFix.exe AV: Avira Desktop *Enabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7} AV: Lavasoft Ad-Watch Live! Anti-Virus *Enabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33} . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\docume~1\ADMINI~1\LOCALS~1\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll c:\documents and settings\Administrator\Application Data\.# c:\documents and settings\Administrator\Application Data\.#\MBX@14C@3D3F80.### c:\documents and settings\Administrator\Application Data\.#\MBX@14C@3D3FB0.### c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020} c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome.manifest c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\.#searchqutb.js.1.3 c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\data\search\engines.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\data\search\search.xsl c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\about.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\dtxpanelwin.xul c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\dtxprefwin.xul c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\dtxwin.xul c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\emailnotifierproviders.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\external.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\neterror.xhtml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\lib\wmpstreamer.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\modules\datastore.jsm c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\preferences.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\toolbar.htm c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\toolbar.xul c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\bg-scalable-mdl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\bg-scalable-tl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\bg-scalable-tr.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-dragresize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-close-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-close-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-close.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-maximize-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-maximize-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-maximize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-minimize-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-minimize-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btn-wide-minimize.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btnarrow-next-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btnarrow-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btnarrow-previous-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\btnarrow-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\navico-home.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\panel.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\powered-mystart.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\tb_icon.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\widget.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1227\widget.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\bg-scalable-mdl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\bg-scalable-tl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\bg-scalable-tr.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-dragresize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-close-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-close-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-close.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-maximize-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-maximize-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-maximize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-minimize-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-minimize-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btn-wide-minimize.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btnarrow-next-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btnarrow-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btnarrow-previous-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\btnarrow-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\navico-home.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\panel.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\powered-mystart.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\tb_icon.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\widget.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1255\widget.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\bg-scalable-mdl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\bg-scalable-tl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\bg-scalable-tr.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-dragresize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-close-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-close-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-close.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-maximize-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-maximize-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-maximize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-minimize-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-minimize-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btn-wide-minimize.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btnarrow-next-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btnarrow-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btnarrow-previous-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\btnarrow-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\navico-home.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\panel.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\powered-mystart.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\tb_icon.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\widget.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.Twitter.1257\widget.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217.zip c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\bg-scalable-mdl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\bg-scalable-tl.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\bg-scalable-tr.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-dragresize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-close-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-close-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-close.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-maximize-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-maximize-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-maximize.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-minimize-down.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-minimize-over.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btn-wide-minimize.PNG c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btnarrow-next-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btnarrow-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btnarrow-previous-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\btnarrow-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\navico-home.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\panel.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\powered-mystart.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\tb_icon.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\widget.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\content\widgets\net.vmn.www.3.YouTube.1217\widget.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\bluelite.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\bluesky.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-search-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-search.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-settings-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-settings.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-widgets-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn-widgets.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\btn_settings.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-down-back-ff.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-down-back.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-down-left.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-down-right.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-down-splitter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-drop-back.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-drop-left.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-drop-right.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-drop-splitter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-hover-back-ff.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-hover-back.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-hover-left.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-hover-right.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\button-hover-splitter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\ca.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\dictionary.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\divider.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\downloadcom.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\email.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\email_on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\games.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\graphred0.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\graphred0_5.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\grey.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\headsup.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\ico-shield.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\images.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\add.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\aol.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\arrow-dn.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\arrow-right.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\arrow-up.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btn-end.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btn-mdl.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btn-mdl_ff.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btn-start.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btnover-end.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btnover-mdl.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btnover-mdl_ff.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\bg-btnover-start.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\blank.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnback-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnback-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnleft-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnleft-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnright-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\btnright-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\button-splitter-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\button-splitter-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\checkmark.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\chevron.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\collapse.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\comcast.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\dtx.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\edit-back-hot.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\edit-back.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\expand.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\found.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\gmail.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight_blue.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight_cyan.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight_lime.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight_magenta.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\highlight_yellow.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\hotmail.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\imap.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\lastsearch-thumb-back.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\loadingMid.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\lock.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\mailcom.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menu_bg-basic.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menu_separator_bar.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitem-splitter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemback-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemback-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemleft-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemleft-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemright-down-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\menuitemright-vista.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\move.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\movetarget.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\css\popupAbout.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\css\popupGames.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\css\popupWidgets.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\footer.htm c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\gamecategory.xsl c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\gameData.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\gameList.xsl c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\gametype.xsl c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\arrow-sml-drop.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\arrow-sml.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\arrowr-bluew5.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\bg-aboutbox.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\bg-btnover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\bg-pnl520x390.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-close-grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-close-greyover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-drag.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-next-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-previous-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\btn-search-pnlbtm.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\gamethumb-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\gamethumb2-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\ico-calendar.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\ico-download.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\ico-joystick24.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\ico-play.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\ico-tags.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\icon-Add.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\icon-download.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\icon-Info.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\icon-play.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\icon-shop.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\menul-bgon.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\menul-bgover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\panel-botm-noscroll.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scroll-bg-206.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scroll-bg.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scroll-topwin.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollb-disable.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollb-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollb-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollb.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollt-disable.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollt-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollt-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\scrollt.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\searchbox-pnlbtm.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\star_x_grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\star_x_orange.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\TRUSTe_about.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\view-detailed-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\view-detailed-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\view-thumb-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\view-thumb-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\widgets-square-16px.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\images\widgets-square-24px.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\popupGames.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\panels\popupWidgets.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\pop.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\css\manager.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\css\slider.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\bg-pnl.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\btn-close-grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\btn-close-greyover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\collapsed_button.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\expanded_button.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\ico-playstation-down.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\ico-playstation-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\ico-playstation.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\ico-radio.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\music-note.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-btn-pause-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-btn-pause.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-btn-play-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-btn-play.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-eq-bg.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-eq-busy.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-eq-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-eq-on.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-eq-warning.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-options-design-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-options-design.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-options-on.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-options.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-volume-0.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-volume-1.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-volume-2.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-volume-3.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\radio-volume-mute.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\scrollbar-handle.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\scrollbar-track.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\slider.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\slideron.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\images\track.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\managerpanel.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\radio\volumeslider.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\remove.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\rename.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\resize-box.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\rss.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\rsschannelback.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\RSSLogo.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\rsstabdivider.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\scroll-left.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\scroll-right.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\search-go.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\search.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\text-ellipsis.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\throbber.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\toolbarsplitter.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\transparent_1px.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_02.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_03.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_04.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_06.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_07.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_08.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_09.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_10.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_11.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_12.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_13.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_14.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_15.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_16.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_18.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_19.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_20.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\border_21.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\btn-close-grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\btn-close-greyover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\close-hot.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\close-normal.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\loadingMid.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\proxy.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\template.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\template.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\templateFF.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\uwa\throbber.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\icons\cond999.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\icons\icons.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\icons\na-s.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\icons\na.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\icons\weather.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\add.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\box-check.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\ico-check.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\options-weather.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\over-blue.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\over-orange.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\popupWeather.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\weatherbutton\panels\popupWeather.html c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lib\yahoo.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\lichen.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\logo-about.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\logo.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\maps.bmp c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\menuseparatorback.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\modify-save.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\modify.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\modifyhot.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\music.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\news.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\options\options-main.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\options\options-search.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\options\options-weather.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\options\options-widgets.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\orange.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\pixsy.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\relatedlinks.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-collapse.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-delete.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-expand.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-feed.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-folder-remove.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-folder-rename.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-folder.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-found.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-reload.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss-subscribe.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rss.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rssback.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\rsstopback.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\search-over.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\search.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\searchbar\searchbar-background-left.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\searchbar\searchbar-background-middle.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\searchbar\searchbar-background-right.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\searchqutb.css c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\settings.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\shopping.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\siteinfo.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-bluelite.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-bluesky.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-grey.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-lichen.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-orange.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\skin-yellow.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\technorati.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\throbber.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\toolbarsplitter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\video.bmp c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\weather.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\web.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_allocine.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_bliptv.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_calcal.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_calculator.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_gservices.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_sudoku.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_todo.jpg c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_todo.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_trio.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widget_uconverter.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widgets-square-16px.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\widgets.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\wikipedia.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\yahoosearch.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\yellow.gif c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\youtube.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\chrome\skin\zoom.png c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\components\windowmediator.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\install.rdf c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020}\manifest.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\paffxtbr@FilmFanatic.com c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\paffxtbr@FilmFanatic.com\chrome.manifest c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\paffxtbr@FilmFanatic.com\chrome\paffxtbr.jar c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\paffxtbr@FilmFanatic.com\install.rdf c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\extensions\paffxtbr@FilmFanatic.com\installKeys.js c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchplugins\SearchquWebSearch.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\00d2dfc64c07a4f32824abac1d6f735b c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\3e4265e00cbc4a9cf22a105046a46d8a c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\44a5d79f5451d3036ba3986425e234c8 c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\GameCategories.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\GameTypes.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\games\latestPlayed.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\guid.dat c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\preferences.dat c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\stats.dat c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\uninstallFF.dat c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\version.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weather\085f31aa71fd275e669a09c9190d2965 c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weather\1d22e1213e391dcf27a23464805ca07a c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weather\ef963890c92005e18c28cbe3080c3e31 c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weather\forecasts_cache.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weather\observations_cache.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\weatherbutton_prefs.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\widgets_cache\84b70525cff6359fdeca553342c23e4c c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\widgets_cache\bf5b6317ae07da699882fc948f22eda4 c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\widgets_cache\category_cache.xml c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\searchqutb\widgets_cache\widget_cache.xml c:\documents and settings\Administrator\Application Data\PriceGong c:\documents and settings\Administrator\Application Data\PriceGong\Data\1.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\4489.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\7031.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\a.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\b.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\c.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\d.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\e.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\f.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\g.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\h.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\i.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\j.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\k.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\l.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\m.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\mru.xml c:\documents and settings\Administrator\Application Data\PriceGong\Data\n.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\o.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\p.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\q.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\r.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\s.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\t.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\u.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\v.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\w.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\wlu.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\x.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\y.txt c:\documents and settings\Administrator\Application Data\PriceGong\Data\z.txt c:\documents and settings\Administrator\Local Settings\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll c:\documents and settings\Administrator\WINDOWS c:\documents and settings\All Users\Application Data\7A863C304F.sys c:\documents and settings\All Users\Application Data\TEMP c:\documents and settings\All Users\Application Data\TEMP\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\PostBuild.exe c:\program files\Downloaded Installers c:\program files\Downloaded Installers\{22F59DA8-BE06-45DE-A79B-6D1903BF94A4}\setup.msi c:\program files\FilmFanatic c:\program files\FilmFanatic\bar\Cache\000CE6DB.bmp c:\program files\FilmFanatic\bar\Cache\001292D2 c:\program files\FilmFanatic\bar\Cache\0012A4F3 c:\program files\FilmFanatic\bar\Cache\0012A715.bmp c:\program files\FilmFanatic\bar\Cache\0012A8EA.bmp c:\program files\FilmFanatic\bar\Cache\0012AACF.bmp c:\program files\FilmFanatic\bar\Cache\0012AC17.bmp c:\program files\FilmFanatic\bar\Cache\0012AD4F.bmp c:\program files\FilmFanatic\bar\Cache\0012AEB7.bmp c:\program files\FilmFanatic\bar\Cache\0012AFA1.bmp c:\program files\FilmFanatic\bar\Cache\0012B0D9.bmp c:\program files\FilmFanatic\bar\Cache\0012B195.bmp c:\program files\FilmFanatic\bar\Cache\0012B1F3.bmp c:\program files\FilmFanatic\bar\Cache\0012B27F.bmp c:\program files\FilmFanatic\bar\Cache\0012BDF9.jhtml c:\program files\FilmFanatic\bar\Cache\0012E509 c:\program files\FilmFanatic\bar\Cache\0012F90E.bmp c:\program files\FilmFanatic\bar\Cache\files.ini c:\program files\FilmFanatic\bar\gen1\COMMON.T8S c:\program files\FilmFanatic\bar\History\search3 c:\program files\FilmFanatic\bar\IE9Mesg\COMMON.T8S c:\program files\FilmFanatic\bar\Message\COMMON.T8S c:\program files\FilmFanatic\bar\Settings\prevcfg2.htm c:\program files\FilmFanatic\bar\Settings\s_pid.dat c:\program files\FilmFanatic\bar\Settings\s_w1.dat c:\program files\FilmFanatic\bar\Settings\s_w1.dat.bak c:\program files\FilmFanatic\bar\Settings\s_w2.dat c:\program files\FilmFanatic\bar\Settings\s_w2.dat.bak c:\program files\FilmFanatic\bar\Settings\setting3.htm c:\program files\FilmFanatic\bar\Settings\setting3.htm.bak c:\program files\FilmFanatic\FilmFanatic\Cache\MovieNewsBtn.html c:\program files\FilmFanatic\FilmFanatic\Cache\MovieReviewsBtn.html c:\program files\FilmFanatic\FilmFanatic\Cache\PopupProperties100064938.html c:\program files\FilmFanatic\FilmFanatic\Cache\PopupProperties200821703.html c:\program files\FilmFanatic\FilmFanatic\Cache\PopupProperties204680082.html c:\program files\FilmFanatic\FilmFanatic\Cache\Radio.html c:\program files\FilmFanatic\FilmFanatic\Cache\VideosBtn.html c:\program files\Mozilla Firefox\searchplugins\SearchquWebSearch.xml C:\sysmon c:\windows\IsUn0413.exe c:\windows\pkunzip.pif c:\windows\pkzip.pif c:\windows\SwSys1.bmp c:\windows\SwSys2.bmp c:\windows\system32\dllcache\dlimport.exe c:\windows\system32\dllcache\wmpvis.dll c:\windows\system32\drivers\etc\hosts.ics c:\windows\system32\muzapp.exe c:\windows\system32\SET42.tmp c:\windows\system32\SET47.tmp c:\windows\system32\SET4E.tmp c:\windows\system32\SET53.tmp c:\windows\system32\SET58.tmp c:\windows\system32\SET70.tmp c:\windows\system32\SET72.tmp c:\windows\system32\SET81.tmp c:\windows\system32\SETE7.tmp c:\windows\system32\SETF3.tmp c:\windows\unin0413.exe . . (((((((((((((((((((( Bestanden Gemaakt van 2012-04-10 to 2012-05-10 )))))))))))))))))))))))))))))) . . 2012-05-07 17:19 . 2012-05-10 11:36 -------- d--h--r- c:\documents and settings\Administrator\Onlangs geopend 2012-05-03 10:10 . 2000-12-26 13:35 49152 ----a-r- c:\windows\p1030cfg.exe 2012-05-03 10:10 . 2000-12-26 13:35 25169 ----a-r- c:\windows\system32\drivers\p1030cam.sys 2012-05-03 10:10 . 2000-12-26 13:35 167661 ----a-r- c:\windows\system32\drivers\p1030vid.sys 2012-05-03 10:10 . 2000-12-26 13:35 53248 ----a-r- c:\windows\system32\p1030hwx.dll 2012-05-03 10:10 . 2000-12-26 13:35 40960 ----a-r- c:\windows\system32\p1030ext.dll 2012-05-03 10:10 . 2000-12-26 13:35 28672 ----a-r- c:\windows\system32\p1030pin.dll 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030vfw.dll 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030pin.crl 2012-05-03 10:10 . 2000-12-26 13:35 24576 ----a-r- c:\windows\system32\p1030cfg.crl 2012-05-03 10:10 . 2000-12-26 13:35 18964 ----a-r- c:\windows\system32\p1030ext.ax 2012-05-03 10:10 . 2000-12-26 13:35 16429 ----a-r- c:\windows\system32\p1030usd.dll 2012-05-03 10:10 . 2000-12-26 13:35 13312 ----a-r- c:\windows\system32\p1030vfw.drv 2012-04-30 12:42 . 2012-04-30 12:42 -------- d-----w- c:\program files\Common Files\Skype 2012-04-28 11:18 . 2012-04-28 11:18 -------- d-----w- c:\program files\Rovio 2012-04-24 13:24 . 2012-02-24 09:14 181432 ----a-w- c:\windows\system32\drivers\ssudmdm.sys 2012-04-24 13:24 . 2012-02-24 09:14 80824 ----a-w- c:\windows\system32\drivers\ssudbus.sys 2012-04-21 06:24 . 2012-04-21 06:24 -------- d-----w- c:\program files\Free PDF to Word Doc Converter 2012-04-13 13:29 . 2012-04-13 13:29 -------- d-----w- c:\documents and settings\Administrator\Application Data\Temp 2012-04-13 13:14 . 2012-04-13 13:14 -------- d-----w- c:\program files\MyFree Codec 2012-04-13 13:11 . 2012-05-08 11:53 -------- d-----w- C:\Temp 2012-04-13 13:11 . 2012-04-13 13:11 -------- d-----w- c:\documents and settings\All Users\Application Data\21D4 2012-04-13 13:07 . 2012-04-13 17:35 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Samsung 2012-04-13 13:07 . 2012-04-13 13:07 -------- d-----w- c:\documents and settings\Administrator\Application Data\Samsung 2012-04-13 13:06 . 2010-12-21 05:55 12544 ----a-w- c:\windows\system32\drivers\ssm_cm.sys 2012-04-13 13:06 . 2010-12-21 05:55 12416 ----a-w- c:\windows\system32\drivers\ssm_wh.sys 2012-04-13 13:05 . 2012-03-28 20:11 4659712 ----a-w- c:\windows\system32\Redemption.dll 2012-04-13 13:05 . 2012-04-13 13:05 -------- d-----w- c:\program files\MarkAny 2012-04-13 13:05 . 2012-03-28 20:11 821824 ----a-w- c:\windows\system32\dgderapi.dll 2012-04-13 13:05 . 2012-03-28 20:11 319456 ----a-w- c:\windows\system32\DIFxAPI.dll 2012-04-13 13:05 . 2012-03-28 20:11 20032 ----a-w- c:\windows\system32\drivers\dgderdrv.sys 2012-04-13 13:04 . 2012-04-13 13:06 -------- d-----w- c:\program files\Samsung 2012-04-13 13:04 . 2012-04-13 13:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Samsung 2012-04-13 13:03 . 2012-04-13 13:03 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Downloaded Installations . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-05-08 20:04 . 2012-01-27 14:52 137928 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-05-08 20:04 . 2012-01-27 14:52 83392 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2012-05-04 06:30 . 2012-03-29 08:36 418464 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-05-04 06:30 . 2011-05-20 15:39 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-04-04 13:56 . 2012-01-27 10:57 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-03-28 20:11 . 2012-03-28 20:11 90112 ----a-w- c:\windows\MAMCityDownload.ocx 2012-03-28 20:11 . 2012-03-28 20:11 325552 ----a-w- c:\windows\MASetupCaller.dll 2012-03-28 20:11 . 2012-03-28 20:11 30568 ----a-w- c:\windows\MusiccityDownload.exe 2012-03-28 20:11 . 2012-03-28 20:11 974848 ----a-w- c:\windows\system32\cis-2.4.dll 2012-03-28 20:11 . 2012-03-28 20:11 81920 ----a-w- c:\windows\system32\issacapi_bs-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 65536 ----a-w- c:\windows\system32\issacapi_pe-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\MTXSYNCICON.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\MK_Lyric.dll 2012-03-28 20:11 . 2012-03-28 20:11 57344 ----a-w- c:\windows\system32\issacapi_se-2.3.dll 2012-03-28 20:11 . 2012-03-28 20:11 569344 ----a-w- c:\windows\system32\muzdecode.ax 2012-03-28 20:11 . 2012-03-28 20:11 491520 ----a-w- c:\windows\system32\muzapp.dll 2012-03-28 20:11 . 2012-03-28 20:11 49152 ----a-w- c:\windows\system32\MaJGUILib.dll 2012-03-28 20:11 . 2012-03-28 20:11 45320 ----a-w- c:\windows\system32\MAMACExtract.dll 2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\system32\MaXMLProto.dll 2012-03-28 20:11 . 2012-03-28 20:11 45056 ----a-w- c:\windows\system32\MACXMLProto.dll 2012-03-28 20:11 . 2012-03-28 20:11 40960 ----a-w- c:\windows\system32\MTTELECHIP.dll 2012-03-28 20:11 . 2012-03-28 20:11 352256 ----a-w- c:\windows\system32\MSLUR71.dll 2012-03-28 20:11 . 2012-03-28 20:11 258048 ----a-w- c:\windows\system32\muzoggsp.ax 2012-03-28 20:11 . 2012-03-28 20:11 245760 ----a-w- c:\windows\system32\MSCLib.dll 2012-03-28 20:11 . 2012-03-28 20:11 24576 ----a-w- c:\windows\system32\MASetupCleaner.exe 2012-03-28 20:11 . 2012-03-28 20:11 200704 ----a-w- c:\windows\system32\muzwmts.dll 2012-03-28 20:11 . 2012-03-28 20:11 155648 ----a-w- c:\windows\system32\MSFLib.dll 2012-03-28 20:11 . 2012-03-28 20:11 143360 ----a-w- c:\windows\system32\3DAudio.ax 2012-03-28 20:11 . 2012-03-28 20:11 14336 ----a-w- c:\windows\system32\avrt.dll 2012-03-28 20:11 . 2012-03-28 20:11 135168 ----a-w- c:\windows\system32\muzaf1.dll 2012-03-28 20:11 . 2012-03-28 20:11 131072 ----a-w- c:\windows\system32\muzmpgsp.ax 2012-03-28 20:11 . 2012-03-28 20:11 122880 ----a-w- c:\windows\system32\muzeffect.ax 2012-03-28 20:11 . 2012-03-28 20:11 118784 ----a-w- c:\windows\system32\MaDRM.dll 2012-03-28 20:11 . 2012-03-28 20:11 110592 ----a-w- c:\windows\system32\muzmp4sp.ax 2012-02-29 16:47 . 2001-09-07 12:00 26112 ----a-w- c:\windows\system32\userinit.exe 2012-05-03 16:07 . 2011-06-21 17:14 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll 2008-04-14 17:02 413696 --sh--w- c:\windows\system32\msvcp60.dll . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RocketDock"="c:\program files\RocketDock\RocketDock.exe" [2007-09-02 495616] "Remote Control Editor"="c:\program files\Common Files\TerraTec\Remote\TTTVRC.exe" [2010-06-09 1689088] "KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-03-31 21392] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"="RTHDCPL.EXE" [2007-12-20 16860672] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504] "PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016] "ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2005-02-17 221184] "ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-02-17 81920] "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040] "BambooCore"="c:\program files\Bamboo Dock\BambooCore.exe" [2011-09-28 646232] "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624] "itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2009-11-05 1505144] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] . c:\documents and settings\Robert\Menu Start\Programma's\Opstarten\ FSL Launcher.lnk - c:\program files\FSL\FSL_Launcher\FSL_Launcher.exe [2010-5-4 1287168] . c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\ NETGEAR WG311v3 Smart Wizard.lnk - c:\program files\NETGEAR\WG311v3\wlancfg5.exe [2006-1-26 1486848] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] @="Service" . [HKLM\~\startupfolder\C:^Documents and Settings^Administrator^Menu Start^Programma's^Opstarten^OneNote 2007 Schermopname en Snel starten.lnk] path=c:\documents and settings\Administrator\Menu Start\Programma's\Opstarten\OneNote 2007 Schermopname en Snel starten.lnk backup=c:\windows\pss\OneNote 2007 Schermopname en Snel starten.lnkStartup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Device Monitor.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Device Monitor.lnk backup=c:\windows\pss\Device Monitor.lnkCommon Startup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Remote Control.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\Remote Control.lnk backup=c:\windows\pss\Remote Control.lnkCommon Startup . [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^TMMonitor.lnk] path=c:\documents and settings\All Users\Menu Start\Programma's\Opstarten\TMMonitor.lnk backup=c:\windows\pss\TMMonitor.lnkCommon Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GEST] m‘|\ü [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service] 2010-10-27 18:17 207424 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Babylon Client] 2009-12-23 12:55 3722128 ----a-w- c:\program files\Babylon\Babylon-Pro\Babylon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BambooScribe.exe] 2011-02-14 11:00 3002368 ----a-w- c:\program files\Vision Objects\Bamboo Scribe\BambooScribe.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BambooScribeAutoStart.vbe] 2011-02-14 10:54 1151 ----a-w- c:\program files\Vision Objects\Bamboo Scribe\BambooScribeAutoStart.vbe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] 2008-12-12 06:30 132392 ----a-w- c:\program files\Common Files\Nero\Lib\NMBgMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Creative WebCam Tray] 2002-02-25 00:30 53248 ----a-w- c:\program files\Creative\PC-CAM Center\CamTray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate] 2011-07-28 23:08 1259376 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager] 2008-12-04 11:24 665424 ------w- c:\progra~1\EPSONS~1\EVENTM~1\EEventManager.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor] 2009-02-26 17:36 30040 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] 2008-12-12 06:31 1840424 ----a-w- c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\itype] 2009-11-05 20:45 1505144 ----a-w- c:\program files\Microsoft IntelliType Pro\itype.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper] 2012-03-31 02:38 954256 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR] 2012-03-31 02:38 21392 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2012-03-31 02:38 3521424 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut] 2007-02-07 14:21 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS] 2008-04-14 17:03 1695232 ------w- c:\program files\Messenger\msmsgs.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] 2010-04-16 20:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan] 2008-12-02 13:29 2221352 ----a-w- c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] 2008-11-06 06:25 570664 ----a-w- c:\program files\Common Files\Nero\Lib\NeroCheck.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Remote Control Editor] 2010-06-09 10:47 1689088 ----a-w- c:\program files\Common Files\TerraTec\Remote\TTTvRc.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl] 2007-02-07 14:24 71216 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrayServer] 2008-09-10 08:37 90112 ----a-w- c:\progra~1\MAGIX\VIDEO_~1\Trayserver_nl.exe . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"= "c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"= "c:\\Program Files\\TerraTec\\TerraTec Home Cinema\\VersionCheck\\VersionCheck.exe"= "c:\\Program Files\\BitComet\\BitComet.exe"= "c:\\Program Files\\TerraTec\\TerraTec Home Cinema\\CinergyDvr.exe"= "c:\\Program Files\\Orbitdownloader\\orbitnet.exe"= "c:\\Program Files\\Epson Software\\Event Manager\\EEventManager.exe"= "c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"= "c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"= "c:\\Program Files\\iMesh Applications\\iMesh\\iMesh.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= "c:\\Program Files\\YouWave_Android\\vb\\VBoxSDL.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "20210:TCP"= 20210:TCP:BitComet 20210 TCP "20210:UDP"= 20210:UDP:BitComet 20210 UDP . R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [14-11-2011 12:11 64512] R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [27-01-2012 16:52 36000] R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;c:\program files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [09-10-2009 5:45 169312] R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [27-01-2012 16:52 86224] R2 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [21-10-2011 16:23 196176] R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\Common Files\MAGIX Services\Database\bin\FABS.exe [27-08-2009 17:09 1253376] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [18-08-2011 16:25 2152152] R2 LGScsiCommandService;LG SCSI command service;c:\windows\system32\LGScsiCommandService.exe [07-12-2010 20:31 47616] R2 TabletServicePen;TabletServicePen;c:\program files\Tablet\Pen\Pen_Tablet.exe [14-08-2011 18:59 6076272] R2 TouchServicePen;Wacom Consumer Touch Service;c:\program files\Tablet\Pen\Pen_TouchService.exe [14-08-2011 18:59 616816] R2 VBoxDrv;VBox Support Driver;c:\program files\YouWave_Android\vb\VBoxDrv.sys [15-07-2011 20:13 135680] R3 PD1030VID;Creative WebCam Pro;c:\windows\system32\drivers\p1030vid.sys [03-05-2012 12:10 167661] R3 wacmoumonitor;Wacom Mode Helper;c:\windows\system32\drivers\wacmoumonitor.sys [14-08-2011 18:59 16240] R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18-03-2010 13:16 753504] S1 SASDIFSV;SASDIFSV;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SASDIFSV.SYS --> c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SASDIFSV.SYS [?] S1 SAS***IL;SAS***IL;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SAS***IL.SYS --> c:\docume~1\ADMINI~1\LOCALS~1\Temp\SAS_SelfExtract\SAS***IL.SYS [?] S2 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\SeaPort.EXE [13-10-2011 18:21 249648] S2 Ca1528av;SPCA1528 Video Camera Service;c:\windows\system32\drivers\Ca1528av.sys [15-10-2010 19:06 516480] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18-03-2010 13:16 130384] S2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [07-05-2010 13:11 135664] S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [29-02-2012 8:50 158856] S3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [10-01-2011 17:37 945920] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [29-03-2012 10:36 253088] S3 Bulk1528;SPCA1528 Still Camera Service;c:\windows\system32\drivers\Bulk1528.sys [15-10-2010 19:06 11648] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [24-04-2012 15:24 80824] S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [13-04-2012 15:05 20032] S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [27-01-2012 12:49 13192] S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [27-01-2012 12:49 8456] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\Common Files\MAGIX Services\Database\bin\fbserver.exe [07-08-2008 11:10 3276800] S3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [07-05-2010 13:11 135664] S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\Lavasoft\Ad-Aware\kernexplorer.sys [18-08-2011 16:25 15232] S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [07-09-2001 14:00 14336] S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [24-04-2012 15:24 181432] S3 TESTCAP;Studio PCTV (Audio);c:\windows\system32\DRIVERS\PCTVAud.sys --> c:\windows\system32\DRIVERS\PCTVAud.sys [?] S3 UDXTTM6010;Cinergy Hybrid-Stick BDA service;c:\windows\system32\drivers\UDXTTM6010.sys [08-10-2010 15:06 762232] . --- Andere Services/Drivers In Geheugen --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper . Inhoud van de 'Gedeelde Taken' map . 2012-05-10 c:\windows\Tasks\Ad-Aware Update (Weekly).job - c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2011-08-18 10:13] . 2012-05-10 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-29 06:30] . 2011-10-24 c:\windows\Tasks\expressburnShakeIcon.job - c:\program files\NCH Software\ExpressBurn\expressburn.exe [2011-10-21 17:45] . 2011-10-24 c:\windows\Tasks\expressripShakeIcon.job - c:\program files\NCH Swift Sound\ExpressRip\expressrip.exe [2011-10-21 17:45] . 2012-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-05-07 11:11] . 2012-05-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-05-07 11:11] . 2011-10-24 c:\windows\Tasks\mixpadShakeIcon.job - c:\program files\NCH Software\MixPad\mixpad.exe [2011-10-21 17:45] . 2011-10-24 c:\windows\Tasks\wavepadShakeIcon.job - c:\program files\NCH Software\WavePad\wavepad.exe [2011-10-21 17:44] . . ------- Bijkomende Scan ------- . uStart Page = hxxp://doenormaal.eigenstart.nl/ IE: &D&ownload &met BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm IE: &D&ownload alles met BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm IE: &Download by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/201 IE: &Grab video by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/204 IE: Do&wnload selected by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/203 IE: Down&load all by Orbit - c:\program files\Orbitdownloader\orbitmxt.dll/202 IE: Download all links using BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm IE: Download link using &BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm IE: Download Video on This Page - c:\program files\Tomato\FLV Player\MDIEEx.dll/211 IE: Download Video This Links To - c:\program files\Tomato\FLV Player\MDIEEx.dll/212 IE: Free YouTube Download - c:\documents and settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to MP3 Converter - c:\documents and settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm IE: Translate this web page with Babylon - c:\program files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm IE: Translate with Babylon - c:\program files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm Trusted Zone: 0.0.0.0 Trusted Zone: motive.com\ponltbc.onl Trusted Zone: OfflineRegistration TCP: DhcpNameServer = 192.168.1.1 192.168.1.1 DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\lu5u4d9t.default\ FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon) FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://doenormaal.eigenstart.nl/ FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - prefs.js: browser.search.defaulturl - hxxp://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch FF - prefs.js: browser.search.selectedEngine - MyStart Search FF - prefs.js: browser.startup.homepage - hxxp://mystart.incredimail.com/mb111?a=1jSpmydGEK3 FF - prefs.js: keyword.URL - hxxp://mystart.incredimail.com/mb111/?loc=ff_address_bar&a=1jSpmydGEK3&search= FF - user.js: keyword.URL - hxxp://mp3rocketsearch.com/?prt=mp3rockettb02ff&Keywords= FF - user.js: keyword.enabled - 1 . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{C1436D14-2729-46AC-8270-80338E5E9978} - (no file) WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) WebBrowser-{872B5B88-9DB5-4310-BDD0-AC189557E5F5} - (no file) WebBrowser-{37483B40-C254-4A72-BDA4-22EE90182C1E} - (no file) WebBrowser-{95324E44-4B0A-47A9-8F77-9C6415E51C29} - (no file) HKCU-Run-360desktop - (no file) HKLM-Run-nwiz - nwiz.exe HKLM-Run-NWEReboot - (no file) MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe MSConfigStartUp-ApnUpdater - c:\program files\Ask.com\Updater\Updater.exe MSConfigStartUp-BabylonToolbar - c:\program files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe MSConfigStartUp-DataMngr - c:\progra~1\BEARSH~1\MediaBar\DataMngr\DataMngrUI.exe MSConfigStartUp-facemoods - c:\program files\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe MSConfigStartUp-HBLiteSA - c:\program files\HBLite\bin\11.0.258.0\HBLiteSA.exe MSConfigStartUp-OnlineAssistent_McciTrayApp - c:\program files\OnlineAssistent\OnlineAssistent.exe MSConfigStartUp-PCSpeedUp - c:\program files\PC Speed Up\PCSpeedUp.lnk MSConfigStartUp-zzzHPSETUP - I:\Setup.exe AddRemove-Creative PC-CAM Center - c:\windows\IsUn0413.exe AddRemove-Creative WebCam Monitor - c:\windows\IsUn0413.exe AddRemove-Creative WebCam Pro - c:\windows\ctdrvins.exe -uninstall usb\vid_05a9&pid_a511 -plugin p1030pin.dll AddRemove-Free Studio_is1 - c:\program files\Common Files\DVDVideoSoft\Uninstall.exe AddRemove-Free YouTube Uploader_is1 - c:\program files\Common Files\DVDVideoSoft\Uninstall.exe AddRemove-PrintMaster 8.0 - c:\windows\UNIN0413.EXE AddRemove-Serif DrawPlus 3.0 - c:\windows\IsUn0413.exe AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe AddRemove-_{53A908D4-99C6-469B-BC13-F4189F260742} - c:\program files\Corel\Corel Painter Essentials 4\MSILauncher {53A908D4-99C6-469B-BC13-F4189F260742} AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe AddRemove-Global Idle Amen - c:\docume~1\ADMINI~1\APPLIC~1\SHIMBL~1\Aboutlocks.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2012-05-10 13:56 Windows 5.1.2600 Service Pack 3 NTFS . scannen van verborgen processen ... . scannen van verborgen autostart items ... . scannen van verborgen bestanden ... . . c:\windows\TEMP\00000001-03FA6C5E.av$ 5177344 bytes executable . Scan succesvol afgerond verborgen bestanden: 1 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{95808DC4-FA4A-4c74-92FE-5B863F82066B}] "ImagePath"="\??\c:\program files\CyberLink\PowerDVD\000.fcl" . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (LocalSystem) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a0,cc,32,f6,e7,2f,57,48,95,03,5b,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,a0,cc,32,f6,e7,2f,57,48,95,03,5b,\ . [HKEY_USERS\S-1-5-21-1004336348-1123561945-839522115-500\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (Administrator) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,6e,a2,0b,63,68,d4,98,45,94,25,82,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,37,57,2b,bb,a0,b3,e9,43,aa,0a,89,\ . --------------------- DLLs Geladen Onder Lopende Processen --------------------- . - - - - - - - > 'winlogon.exe'(972) c:\windows\system32\MrvGINA.dll . - - - - - - - > 'Explorer.exe'(3536) c:\program files\RocketDock\RocketDock.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Andere Aktieve Processen ------------------------ . c:\windows\system32\nvsvc32.exe c:\program files\Tablet\Pen\Pen_TouchUser.exe c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe c:\windows\RTHDCPL.EXE c:\program files\Avira\AntiVir Desktop\avguard.exe c:\windows\system32\RUNDLL32.EXE c:\documents and settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE c:\documents and settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE c:\program files\Java\jre6\bin\jqs.exe c:\program files\Common Files\Motive\McciCMService.exe c:\program files\Nero\Nero8\Nero BackItUp\NBService.exe c:\program files\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe c:\windows\system32\IoctlSvc.exe c:\windows\system32\PSIService.exe c:\program files\CyberLink\Shared Files\RichVideo.exe c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files\Tablet\Pen\Pen_TabletUser.exe c:\program files\Avira\AntiVir Desktop\avshadow.exe c:\windows\System32\wbem\unsecapp.exe c:\windows\system32\wscntfy.exe c:\program files\Lavasoft\Ad-Aware\AAWTray.exe c:\windows\system32\WISPTIS.EXE . ************************************************************************** . Voltooingstijd: 2012-05-10 14:01:18 - machine werd herstart ComboFix-quarantined-files.txt 2012-05-10 12:01 . Pre-Run: 23.405.637.632 bytes beschikbaar Post-Run: 23.777.386.496 bytes beschikbaar . WindowsXP-KB310994-SP2-Pro-BootDisk-NLD.exe ; ;Warning: Boot.ini is used on Windows XP and earlier operating systems. ;Warning: Use BCDEDIT.exe to modify Windows Vista boot options. ; [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons UnsupportedDebug="do not select this" /debug multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /FASTDETECT /USEPMTIMER /NoExecute=OptIn . - - End Of File - - 0EEFD01B9934EA8716D390A46D475C44
  20. Zal ik doen maar ik krijg geen icoontje van de HijackThis op mijn scherm kan hem starten van af dowload en daar van daan het icoon op bureaublad zetten. Heb malwarebytes al op de pc staan en gisteren nog gebruikt. Maar zal het op nieuw doen zo als je schrijft. en malwarebytes zegt er zijn geen verkeerde opjecten. Zal toe voegen van de log bestanden. Hier het log bestand van malware. Malwarebytes Anti-Malware 1.61.0.1400 Malwarebytes : Free anti-malware, anti-virus and spyware removal download Databaseversie: v2012.05.10.01 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Administrator :: GEZIN [administrator] 10-05-2012 12:10:29 mbam-log-2012-05-10 (12-10-29).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 233751 Verstreken tijd: 8 minuut/minuten, 14 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) (einde) En hier die van HijackThis. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 12:26:46, on 10-05-2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchService.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchUser.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Bamboo Dock\BambooCore.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Microsoft IntelliType Pro\itype.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\RocketDock\RocketDock.exe C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe C:\Program Files\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe C:\WINDOWS\SYSTEM32\GEARSEC.EXE C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\LGScsiCommandService.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\system32\PSIService.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Tablet\Pen\Pen_TabletUser.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Avira\AntiVir Desktop\avshadow.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\WISPTIS.EXE C:\WINDOWS\System32\dllhost.exe C:\Program Files\Avant Browser\avant.exe C:\Program Files\Avant Browser\gecko\firefox.exe C:\Program Files\Avant Browser\gecko\plugin-container.exe C:\Program Files\Avant Browser\adownloader.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\Program Files\IncrediMail\bin\IncMail.exe C:\Program Files\IncrediMail\Bin\ImApp.exe C:\WINDOWS\notepad.exe C:\Documents and Settings\Administrator\Bureaublad\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Doenormaal dan doe je gek genoeg. Rob, Paranormaal, Gezondheid, Muziek, Geldverdienen, Zoek, Startpagina's, Gedichten, Kinderen, Computer R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\VIDEOD~1\ARCURL~1.DLL O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: ToolbarBHO Class - {9519AF7E-638D-4933-BAD6-D33D23C79FE5} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll O3 - Toolbar: TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\PROGRA~1\TerraTec\TERRAT~1\THCDES~1.DLL O3 - Toolbar: RAW Thumbnail Viewer - {F301665A-12F8-4331-804A-5BCBD379668C} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [bambooCore] C:\Program Files\Bamboo Dock\BambooCore.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" O4 - HKCU\..\Run: [Remote Control Editor] "C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe" O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Lokale service') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Netwerkservice') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: NETGEAR WG311v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe O8 - Extra context menu item: &D&ownload &met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload alles met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201 O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204 O8 - Extra context menu item: &Search - http://tbedits.mywebsearch.com/one-toolbaredits/menusearch.jhtml?s=100000428&p=Z1xdm040YYnl&si=CJDRhqvCpK4CFQaIDgodqXOoTA&a=B7FF408A-34BD-4000-B082-BC25790D694D&n=2012021702 O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203 O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202 O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Download Video on This Page - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/211 O8 - Extra context menu item: Download Video This Links To - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/212 O8 - Extra context menu item: Free YouTube Download - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing) O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://ponltbc.onl.motive.com O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: radiobarchrome - {F555AF97-E21F-4874-82CB-8D9FA2797A79} - C:\Program Files\RadioBar\radiobar_toolbar.dll (file missing) O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\SYSTEM32\GEARSEC.EXE O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LG SCSI command service (LGScsiCommandService) - Mobile Leader Co.,Ltd. - C:\WINDOWS\system32\LGScsiCommandService.exe O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_Tablet.exe O23 - Service: Wacom Consumer Touch Service (TouchServicePen) - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_TouchService.exe -- End of file - 16416 bytes ---------- Post toegevoegd om 12:28 ---------- Vorige post was om 12:27 ---------- Bedankt we zien alle tegemoed. Groetjes Rob.
  21. Hier zie ik in dat er diverse service in staan dat is iets daar hou ik niet zo van. Omdat ik van mening ben dat die iedere keer gegevens weg stuurd naar hier of daar. Verder zie ik ook wat bars staan maar die staan toch maar in explorer. En ik gebruikt avant brouwser. Het vast lopen had ik sinds 3 dagen dan zit ik tv tekijken met teratec zit wordfout te doen en zit te patience. En dat gaat al een maand of langer goed tot begin deze week. Nu maar kijken of het goed gaat.
  22. Bedankt voor de snelle reactie. Ik heb gisteren een andere virus scanner er op ge zet en die liep vast bij het controleren op. DVDvideosoft/freesoft/freewebmedia converter.exe. Die heb ik er van af gegooid na op nieuw op starten en verder laten scannen en hij is tot diep in de nacht bezich geweest met scannen. Zonder vast te slaan, maar die andere virus scanner ziet in eens crecs ook als vierussen en daar heb ik er wel een paar op de pc staan. dat vind ik toch maar niets dat hij dat zo ziet. Ik ga het ook zeker doen Hijackthiser op zetten en na laten kijken. Je hoort nog van mijn als het goed gaat daar hopen we maar op. En ik kan gewoon werken met de pc hoeft gelukkig niet in veilige mode. Groetjes Rob. ---------- Post toegevoegd om 10:09 ---------- Vorige post was om 10:00 ---------- Ik hebhier het log bestand van Hijackthiser. Het is nog al wat. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:04:57, on 10-05-2012 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchService.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Tablet\Pen\Pen_TouchUser.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Bamboo Dock\BambooCore.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Microsoft IntelliType Pro\itype.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\RocketDock\RocketDock.exe C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe C:\Program Files\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe C:\WINDOWS\SYSTEM32\GEARSEC.EXE C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\LGScsiCommandService.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\system32\PSIService.exe C:\Program Files\CyberLink\Shared Files\RichVideo.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Tablet\Pen\Pen_TabletUser.exe C:\Program Files\Tablet\Pen\Pen_Tablet.exe C:\Program Files\Avira\AntiVir Desktop\avshadow.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\WINDOWS\system32\WISPTIS.EXE C:\WINDOWS\System32\dllhost.exe C:\Program Files\Avant Browser\avant.exe C:\Program Files\Avant Browser\gecko\firefox.exe C:\Program Files\Avant Browser\gecko\plugin-container.exe C:\Program Files\Avant Browser\adownloader.exe C:\Documents and Settings\Administrator\Mijn documenten\Downloads\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Doenormaal dan doe je gek genoeg. Rob, Paranormaal, Gezondheid, Muziek, Geldverdienen, Zoek, Startpagina's, Gedichten, Kinderen, Computer R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll R3 - URLSearchHook: NCH EN Toolbar - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Program Files\NCH_EN\prxtbNCH_.dll R3 - URLSearchHook: IncrediMail MediaBar Nederlands 2 Toolbar - {95324e44-4b0a-47a9-8f77-9c6415e51c29} - C:\Program Files\IncrediMail_MediaBar_Nederlands_2\prxtbInc0.dll O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll O2 - BHO: (no name) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - (no file) O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\VIDEOD~1\ARCURL~1.DLL O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: NCH EN - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Program Files\NCH_EN\prxtbNCH_.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: (no name) - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - (no file) O2 - BHO: (no name) - {7FF99715-3016-4381-84CE-E4E4C9673020} - (no file) O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: ToolbarBHO Class - {9519AF7E-638D-4933-BAD6-D33D23C79FE5} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O2 - BHO: IncrediMail MediaBar Nederlands 2 - {95324e44-4b0a-47a9-8f77-9c6415e51c29} - C:\Program Files\IncrediMail_MediaBar_Nederlands_2\prxtbInc0.dll O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: RadioBar Toolbar - {C1436D14-2729-46AC-8270-80338E5E9978} - C:\Program Files\RadioBar\radiobar_toolbar.dll O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing) O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll O3 - Toolbar: RadioBar Toolbar - {C1436D14-2729-46AC-8270-80338E5E9978} - C:\Program Files\RadioBar\radiobar_toolbar.dll O3 - Toolbar: TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\PROGRA~1\TerraTec\TERRAT~1\THCDES~1.DLL O3 - Toolbar: (no name) - {7FF99715-3016-4381-84CE-E4E4C9673020} - (no file) O3 - Toolbar: (no name) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - (no file) O3 - Toolbar: RAW Thumbnail Viewer - {F301665A-12F8-4331-804A-5BCBD379668C} - C:\PROGRA~1\ArcSoft\RAWTHU~1\EXIFToolBar.dll O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll O3 - Toolbar: NCH EN Toolbar - {37483b40-c254-4a72-bda4-22ee90182c1e} - C:\Program Files\NCH_EN\prxtbNCH_.dll O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files\Microsoft\BingBar\BingExt.dll" (file missing) O3 - Toolbar: IncrediMail MediaBar Nederlands 2 Toolbar - {95324e44-4b0a-47a9-8f77-9c6415e51c29} - C:\Program Files\IncrediMail_MediaBar_Nederlands_2\prxtbInc0.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [bambooCore] C:\Program Files\Bamboo Dock\BambooCore.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe" O4 - HKCU\..\Run: [Remote Control Editor] "C:\Program Files\Common Files\TerraTec\Remote\TTTVRC.exe" O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Lokale service') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Netwerkservice') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: NETGEAR WG311v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG311v3\wlancfg5.exe O8 - Extra context menu item: &D&ownload &met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload alles met BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201 O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204 O8 - Extra context menu item: &Search - http://tbedits.mywebsearch.com/one-toolbaredits/menusearch.jhtml?s=100000428&p=Z1xdm040YYnl&si=CJDRhqvCpK4CFQaIDgodqXOoTA&a=B7FF408A-34BD-4000-B082-BC25790D694D&n=2012021702 O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203 O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202 O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Download Video on This Page - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/211 O8 - Extra context menu item: Download Video This Links To - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/212 O8 - Extra context menu item: Free YouTube Download - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm O9 - Extra button: Download Video - {11F19C45-9675-488A-A8E0-8E8234DC245D} - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/211 (file missing) O9 - Extra 'Tools' menuitem: Download Video on This Page - {11F19C45-9675-488A-A8E0-8E8234DC245D} - res://C:\Program Files\Tomato\FLV Player\MDIEEx.dll/211 (file missing) O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file) O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://ponltbc.onl.motive.com O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: radiobarchrome - {F555AF97-E21F-4874-82CB-8D9FA2797A79} - C:\Program Files\RadioBar\radiobar_toolbar.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing) O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40ST7.EXE O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\SYSTEM32\GEARSEC.EXE O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LG SCSI command service (LGScsiCommandService) - Mobile Leader Co.,Ltd. - C:\WINDOWS\system32\LGScsiCommandService.exe O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_Tablet.exe O23 - Service: Wacom Consumer Touch Service (TouchServicePen) - Wacom Technology, Corp. - C:\Program Files\Tablet\Pen\Pen_TouchService.exe -- End of file - 19495 bytes We hopen het beste er van. groeten Rob.
  23. Mijn PC slaat soms helemaal vast blijft scherm zien. Maar kan niets doen ook niet met cotr/alt/del. Dus moet hem uit zetten met de start knop van de pc vast houden en dan 20 sec wachten en weer aan zetten en dan doet hij het weer een hele tijd en slaat weer vast. Heb de PC open gemaakt maar die is niet vuil van binnen. Gebruikt windows XP 2Gb werkgeheugen. Bekeken op virussen en ook op malwarebytes die vinden niets.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.