
gergroot
Lid-
Items
2 -
Registratiedatum
-
Laatst bezocht
Inhoudstype
Profielen
Forums
Store
Alles dat geplaatst werd door gergroot
-
trojans niet te verwijderen
gergroot reageerde op gergroot's topic in Archief Bestrijding malware & virussen
Het probleem is inderdaad opgelost. Ik krijg althans geen verontrustende meldingen meer. Heel veel dank! Het nieuwe hijackThis log: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:40:37, on 13/07/2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16447) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe C:\Program Files\Windows Defender\MSASCui.exe C:\hp\support\hpsysdrv.exe C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe C:\Windows\RtHDVCpl.exe C:\Windows\V0420Mon.exe C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe C:\Windows\System32\spool\drivers\w32x86\3\WrtMon.exe C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe C:\Program Files\AVG\AVG9\avgtray.exe C:\Program Files\real\realplayer\Update\realsched.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Windows\ehome\ehmsas.exe C:\Windows\System32\spool\drivers\w32x86\3\WrtProc.exe C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\hp\kbd\kbd.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\WerCon.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_be&c=81&bd=Pavilion&pf=desktop R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_be&c=81&bd=Pavilion&pf=desktop R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe O4 - HKLM\..\Run: [sunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [V0420Mon.exe] C:\Windows\V0420Mon.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe" O4 - HKLM\..\Run: [WrtMon.exe] C:\Windows\system32\spool\drivers\w32x86\3\WrtMon.exe O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [MediaFace Integration] C:\Program Files\Fellowes\MediaFACE 4.0\SetHook.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [RegistryBooster] "C:\Program Files\Uniblue\RegistryBooster\launcher.exe" delay 20000 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: Mediacontrole PMB.lnk = C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Servicio Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Servicio de Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe -- End of file - 10439 bytes MBAM gaf me twee logs. Het ene is: 2012/07/13 18:00:29 +0200 PC_GER Ger MESSAGE Starting protection 2012/07/13 18:00:32 +0200 PC_GER Ger MESSAGE Protection started successfully 2012/07/13 18:00:35 +0200 PC_GER Ger MESSAGE Starting IP protection 2012/07/13 18:00:42 +0200 PC_GER Ger MESSAGE IP Protection started successfully 2012/07/13 18:00:55 +0200 PC_GER Ger MESSAGE Starting database refresh 2012/07/13 18:00:55 +0200 PC_GER Ger MESSAGE Stopping IP protection 2012/07/13 18:00:56 +0200 PC_GER Ger MESSAGE IP Protection stopped 2012/07/13 18:00:59 +0200 PC_GER Ger MESSAGE Database refreshed successfully 2012/07/13 18:00:59 +0200 PC_GER Ger MESSAGE Starting IP protection 2012/07/13 18:01:05 +0200 PC_GER Ger MESSAGE IP Protection started successfully 2012/07/13 18:07:02 +0200 PC_GER Ger MESSAGE Executing scheduled update: Daily 2012/07/13 18:07:03 +0200 PC_GER Ger MESSAGE Database already up-to-date 2012/07/13 18:28:03 +0200 PC_GER Ger MESSAGE Starting protection 2012/07/13 18:28:06 +0200 PC_GER Ger MESSAGE Protection started successfully 2012/07/13 18:28:09 +0200 PC_GER Ger MESSAGE Starting IP protection 2012/07/13 18:28:13 +0200 PC_GER Ger MESSAGE IP Protection started successfully Het andere (dat je waarschijnlijk bedoelt): Malwarebytes Anti-Malware (-evaluatieversie-) 1.62.0.1300 www.malwarebytes.org Databaseversie: v2012.07.13.07 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Ger :: PC_GER [administrator] Realtime bescherming: Ingeschakeld 13/07/2012 18:01:19 mbam-log-2012-07-13 (18-01-19).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 240244 Verstreken tijd: 18 minuut/minuten, 50 seconde(n) Geheugenprocessen gedetecteerd: 1 C:\ProgramData\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> 2196 -> Zal worden verwijderd tijdens het herstarten. Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 11 HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.BundleInstaller.IB) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Updater Service (PUP.BundleInstaller.IB) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.BHO (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.BHO.1 (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.FBApi (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.FBApi.1 (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.Sandbox (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCR\CrossriderApp0005060.Sandbox.1 (PUP.CrossFire.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\SOFTWARE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.Zaccess) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\Cr_Installer\5060 (Adware.GamePlayLab) -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\215 APPS (PUP.CrossFire.SA) -> Succesvol in quarantaine geplaatst en verwijderd. Registerwaarden gedetecteerd: 2 HKCU\SOFTWARE\CLASSES\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32| (Trojan.Zaccess) -> Data: C:\Users\Ger\AppData\Local\{a14a1474-e883-f20c-5725-e2068ef39543}\n. -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\Software\InstalledBrowserExtensions\215 Apps|5060 (PUP.CrossFire.SA) -> Data: Savings Sidekick -> Succesvol in quarantaine geplaatst en verwijderd. Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 2 C:\ProgramData\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> Zal worden verwijderd tijdens het herstarten. C:\Users\Ger\Local Settings\Temporary Internet Files\Content.IE5\JCRKN47B\PandaPdfSetup.exe (PUP.BundleInstaller.IB) -> Succesvol in quarantaine geplaatst en verwijderd. (einde) Nogmaals heel veel dank! Fantastische hulp!! -
Hallo, Ik heb een of meerdere trojans (Savings Sidekick.dll: Downloader Generic 12.CKBG) in mijn explorer programma. antivirusprogramma kan ze niet verwijderen, althans er is gevaar van algemene crash. wat moet ik doen? Hijack log is als volgt: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:14:28, on 13/07/2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00(9.00.8112.16447) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\IObit\Smart Defrag2\SmartDefrag.exe C:\Program Files\Windows Defender\MSASCui.exe C:\hp\support\hpsysdrv.exe C:\Program Files\Hewlett-Packard\On-Screen OSDIndicator\OSD.exe C:\Windows\RtHDVCpl.exe C:\Windows\V0420Mon.exe C:\ProgramFiles\ScanSoft\OmniPageSE4\OpWareSE4.exe C:\Windows\System32\spool\drivers\w32x86\3\WrtMon.exe C:\Program Files\Adobe\Photoshop Elements5.0\apdproxy.exe C:\Program Files\AVG\AVG9\avgtray.exe C:\Program Files\ATITechnologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files\Common Files\Java\JavaUpdate\jusched.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Windows MediaPlayer\wmpnscfg.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\McAfee SecurityScan\2.0.181\SSScheduler.exe C:\Program Files\Sony\Sony PictureUtility\PMBCore\SPUVolumeWatcher.exe C:\Windows\ehome\ehmsas.exe C:\Windows\System32\spool\drivers\w32x86\3\WrtProc.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\hp\kbd\kbd.exe C:\Program Files\ATITechnologies\ATI.ACE\Core-Static\CCC.exe C:\Windows\system32\conime.exe C:\Program Files\MicrosoftOffice\Office12\OUTLOOK.EXE C:\Program Files\MicrosoftOffice\Office12\WINWORD.EXE C:\ProgramFiles\real\realplayer\update\realsched.exe C:\Program Files\InternetExplorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe C:\Program Files\InternetExplorer\iexplore.exe C:\Program Files\InternetExplorer\iexplore.exe C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchPage = Bing R0 - HKCU\Software\Microsoft\InternetExplorer\Main,Start Page = Google R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Default_Page_URL = HP | MSN R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\InternetExplorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\InternetExplorer\Main,Start Page =http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=nl_be&c=81&bd=Pavilion&pf=desktop R0 - HKLM\Software\Microsoft\InternetExplorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\InternetExplorer\Search,CustomizeSearch = R1 -HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride= *.local R0 - HKCU\Software\Microsoft\InternetExplorer\Toolbar,LinksFolderName = R3 - URLSearchHook: SearchSettings Class -{E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\SearchSettings\kb128\SearchSettings.dll O1 - Hosts: ::1 localhost O2 - BHO: Dealio Toolbar -{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\DealioToolbar\DealioToolbarIE.dll O2 - BHO: CrossriderApp0005060 -{11111111-1111-1111-1111-110011501160} - C:\Program Files\SavingsSidekick\Savings Sidekick.dll O2 - BHO: AcroIEHelperStub -{18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\CommonFiles\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and RecordPlugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} -C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: WormRadar.comIESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\ProgramFiles\AVG\AVG9\avgssie.dll O2 - BHO: NCO 2.0 IE BHO -{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file) O2 - BHO: Java Plug-In SSV Helper -{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: SkypeIEPluginBHO -{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\ProgramFiles\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java Plug-In 2 SSV Helper -{DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\ProgramFiles\Java\jre6\bin\jp2ssv.dll O2 - BHO: SearchSettings Class -{E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\SearchSettings\kb128\SearchSettings.dll O3 - Toolbar: (no name) -{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file) O3 - Toolbar: (no name) -{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) O3 - Toolbar: Dealio Toolbar -{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\DealioToolbar\DealioToolbarIE.dll O4 - HKLM\..\Run: [Windows Defender]%ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [hpsysdrv]c:\hp\support\hpsysdrv.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE O4 - HKLM\..\Run: [OsdMaestro] "C:\ProgramFiles\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [HP Health Check Scheduler][ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe O4 - HKLM\..\Run: [sunJavaUpdateReg]"C:\Windows\system32\jureg.exe" -delete O4 - HKLM\..\Run: [startCCC] "C:\ProgramFiles\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run:[C:\Windows\system32\V0420Cvw.dll] C:\Windows\system32\RegSvr32.exe /sC:\Windows\system32\V0420Cvw.dll O4 - HKLM\..\Run: [V0420Mon.exe]C:\Windows\V0420Mon.exe O4 - HKLM\..\Run: [HP Software Update]C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [CanonSolutionMenu]C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon O4 - HKLM\..\Run: [sSBkgdUpdate]"C:\Program Files\Common Files\ScansoftShared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [OpwareSE4] "C:\ProgramFiles\ScanSoft\OmniPageSE4\OpwareSE4.exe" O4 - HKLM\..\Run: [WrtMon.exe]C:\Windows\system32\spool\drivers\w32x86\3\WrtMon.exe O4 - HKLM\..\Run: [Adobe Photo Downloader]"C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe" O4 - HKLM\..\Run: [searchSettings] C:\ProgramFiles\Search Settings\SearchSettings.exe O4 - HKLM\..\Run: [AVG9_TRAY]C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [TkBellExe] "c:\programfiles\real\realplayer\Update\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe ARM] "C:\ProgramFiles\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [APSDaemon] "C:\ProgramFiles\Common Files\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [MediaFace Integration]C:\Program Files\Fellowes\MediaFACE 4.0\SetHook.exe O4 - HKLM\..\Run: [sunJavaUpdateSched]"C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task]"C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper]"C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKCU\..\Run: [sidebar] C:\ProgramFiles\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe]C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [swg] "C:\ProgramFiles\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" O4 - HKCU\..\Run: [RegistryBooster]"C:\Program Files\Uniblue\RegistryBooster\launcher.exe" delay 20000 O4 - HKCU\..\Run: [WMPNSCFG] C:\ProgramFiles\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [skype] "C:\ProgramFiles\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKUS\S-1-5-19\..\Run: [sidebar]%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run:[WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCALSERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar]%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: Mediacontrole PMB.lnk =C:\Program Files\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe O4 - Global Startup: Adobe Gamma Loader.lnk =? O4 - Global Startup: McAfee Security ScanPlus.lnk = ? O8 - Extra context menu item: E&xporterennaar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: GoogleSidewiki... - res://C:\Program Files\Google\GoogleToolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html O9 - Extra button: Skype Click to Call -{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\ProgramFiles\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click toCall - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\ProgramFiles\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263}- C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS]Accelerated graphics O16 - DPF:{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF:{E2883E8F-472F-4FB0-9522-AC9BF37916A7} -http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O18 - Protocol: linkscanner -{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O18 - Protocol: skype-ie-addon-data -{91774881-D725-4E58-B298-07617B9B86A8} - C:\ProgramFiles\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com -{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: ComponentCategories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} -C:\Windows\system32\browseui.dll O23 - Service: Adobe Active File Monitor V5(AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files\Adobe\PhotoshopElements 5.0\PhotoshopElementsFileAgent.exe O23 - Service: Adobe Acrobat Update Service(AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\CommonFiles\Adobe\ARM\1.0\armsvc.exe O23 - Service: Apple Mobile Device - AppleInc. - C:\Program Files\Common Files\Apple\Mobile DeviceSupport\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility -ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: AVG Free WatchDog (avg9wd) -AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: Bonjour-service (BonjourService) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Servicio Google Update(gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Servicio de Google Update(gupdatem) (gupdatem) - Google Inc. - C:\ProgramFiles\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc)- Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP Health Check Service -Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP HealthCheck\hphc_service.exe O23 - Service: Updater Service(IBUpdaterService) - Unknown owner - C:\ProgramData\IBUpdaterService\ibsvc.exe O23 - Service: iPod-service (iPod Service) -Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct DiscLabeling Service (LightScribeService) - Hewlett-Packard Company - c:\ProgramFiles\Common Files\LightScribe\LSSrvc.exe O23 - Service: McAfee Security Scan ComponentHost Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfeeSecurity Scan\2.0.181\McCHSvc.exe O23 - Service: Skype Updater (SkypeUpdate) -Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe -- End of file - 11698 bytes

OVER ONS
PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!