Ga naar inhoud

avoutersterp

Lid
  • Items

    11
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door avoutersterp

  1. ComboFix 12-07-25.04 - QuoVadis GEWA 24-07-2012 16:15:05.1.2 - x86

    Microsoft® Windows Vista™ Business 6.0.6002.2.1252.31.1043.18.3327.1988 [GMT 2:00]

    Gestart vanuit: c:\users\QuoVadis GEWA\Desktop\ComboFix.exe

    AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}

    SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}

    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    c:\windows\ST6UNST.000

    c:\windows\system32\ijl11.dll

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2012-06-24 to 2012-07-24 ))))))))))))))))))))))))))))))

    .

    .

    2012-07-24 14:21 . 2012-07-24 14:21 -------- d-----w- c:\users\Default\AppData\Local\temp

    2012-07-23 14:11 . 2012-07-23 14:11 -------- d-----w- c:\users\QuoVadis GEWA\AppData\Roaming\Malwarebytes

    2012-07-23 14:10 . 2012-07-23 14:10 -------- d-----w- c:\programdata\Malwarebytes

    2012-07-23 14:10 . 2012-07-23 14:10 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

    2012-07-23 14:10 . 2012-07-03 11:46 22344 ----a-w- c:\windows\system32\drivers\mbam.sys

    2012-07-23 14:06 . 2012-07-23 14:06 10652120 ----a-w- C:\mbam-setup-1.62.0.1300.exe

    2012-07-23 13:52 . 2012-07-23 13:52 388096 ----a-r- c:\users\QuoVadis GEWA\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

    2012-07-23 13:52 . 2012-07-23 13:52 -------- d-----w- c:\program files\Trend Micro

    2012-07-23 13:51 . 2012-07-23 13:51 1402880 ----a-w- C:\HiJackThis.msi

    2012-07-22 14:43 . 2012-06-13 13:40 2047488 ----a-w- c:\windows\system32\win32k.sys

    2012-07-22 14:38 . 2012-02-29 15:11 5120 ----a-w- c:\windows\system32\wmi.dll

    2012-07-22 14:38 . 2012-02-29 15:11 172032 ----a-w- c:\windows\system32\wintrust.dll

    2012-07-22 14:38 . 2012-02-29 15:09 157696 ----a-w- c:\windows\system32\imagehlp.dll

    2012-07-22 14:38 . 2012-02-29 13:32 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys

    2012-07-22 14:29 . 2012-07-16 00:41 6891424 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{06452329-61DB-4D11-B13F-65DC68049928}\mpengine.dll

    2012-07-22 14:26 . 2010-02-18 11:28 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys

    2012-07-22 14:26 . 2010-02-18 13:30 200704 ----a-w- c:\windows\system32\iphlpsvc.dll

    2012-07-22 14:26 . 2012-03-30 12:39 905600 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2012-07-22 14:26 . 2012-04-23 16:00 984064 ----a-w- c:\windows\system32\crypt32.dll

    2012-07-22 14:26 . 2012-04-23 16:00 98304 ----a-w- c:\windows\system32\cryptnet.dll

    2012-07-22 14:26 . 2012-04-23 16:00 133120 ----a-w- c:\windows\system32\cryptsvc.dll

    2012-07-22 14:25 . 2012-04-03 08:16 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe

    2012-07-22 14:25 . 2012-04-03 08:16 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe

    2012-07-22 14:23 . 2012-06-04 15:26 440704 ----a-w- c:\windows\system32\drivers\ksecdd.sys

    2012-07-22 14:23 . 2012-06-02 00:04 278528 ----a-w- c:\windows\system32\schannel.dll

    2012-07-22 14:23 . 2012-06-02 00:03 204288 ----a-w- c:\windows\system32\ncrypt.dll

    2012-07-22 14:07 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe

    2012-07-22 14:07 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll

    2012-07-22 14:07 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll

    2012-07-22 14:07 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll

    2012-07-22 14:06 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll

    2012-07-22 14:06 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll

    2012-07-22 14:06 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll

    2012-07-22 14:06 . 2012-06-02 13:19 171904 ----a-w- c:\windows\system32\wuwebv.dll

    2012-07-22 14:06 . 2012-06-02 13:12 33792 ----a-w- c:\windows\system32\wuapp.exe

    2012-07-14 16:34 . 2012-07-14 16:34 -------- d-----w- c:\users\QuoVadis GEWA\AppData\Local\AVG Secure Search

    2012-07-10 09:19 . 2012-07-13 16:42 -------- d-----w- c:\programdata\AVG Secure Search

    2012-07-10 09:19 . 2012-07-13 16:42 -------- d-----w- c:\program files\Common Files\AVG Secure Search

    2012-07-10 09:19 . 2012-07-18 16:29 -------- d-----w- c:\program files\AVG Secure Search

    2012-07-10 09:19 . 2012-07-10 09:19 -------- d--h--w- c:\programdata\Common Files

    2012-07-10 09:14 . 2012-07-10 09:14 -------- d-----w- c:\program files\alea technologies

    2012-07-10 08:55 . 2012-07-10 08:55 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys

    2012-07-10 08:55 . 2012-07-10 09:10 -------- d-----w- c:\users\QuoVadis GEWA\AppData\Roaming\DAEMON Tools Pro

    2012-07-10 08:55 . 2012-07-10 08:55 -------- d-----w- c:\program files\DAEMON Tools Pro

    2012-07-10 08:55 . 2012-07-10 08:55 -------- d-----w- c:\users\QuoVadis GEWA\AppData\Roaming\OpenCandy

    2012-07-10 08:54 . 2012-07-10 09:12 -------- d-----w- c:\programdata\DAEMON Tools Pro

    2012-07-10 08:42 . 2012-07-10 08:42 61440 ----a-w- c:\windows\system32\SensoryAcapela8.exe

    2012-07-10 08:42 . 2012-07-10 08:42 274432 ----a-w- c:\windows\system32\SensoryBrowser.ocx

    2012-07-10 08:42 . 2012-07-10 08:42 550912 ----a-w- c:\windows\system32\HspellDLL.dll

    2012-07-10 08:42 . 2012-07-10 08:42 928256 ----a-w- c:\windows\system32\TouchTypeDll.dll

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2012-07-22 16:34 . 2012-07-22 16:33 54229334 ----a-w- C:\Leukste foto's Kos (1).zip

    2012-07-12 17:14 . 2012-03-31 16:36 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe

    2012-07-12 17:14 . 2011-05-23 16:36 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2012-07-10 16:43 . 2012-07-10 16:42 14606032 ----a-w- C:\folder.zip

    2012-07-10 16:30 . 2012-07-10 16:29 15304291 ----a-w- C:\Leukste foto's Kos.zip

    2012-07-10 08:42 . 2009-07-17 09:17 110592 ----a-w- c:\windows\system32\SensoryEyeTech.dll

    2012-07-10 08:42 . 2009-07-17 08:51 110592 ----a-w- c:\windows\system32\SensoryAlea.dll

    2012-07-10 08:42 . 2009-07-17 08:51 65536 ----a-w- c:\windows\system32\SensorySeeTech.dll

    2012-07-10 08:42 . 2008-08-05 09:38 36864 ----a-w- c:\windows\system32\SensoryZWave.dll

    2012-07-10 08:42 . 2007-06-07 12:57 2168480 ----a-w- c:\windows\system32\skype4com.dll

    2012-07-10 08:41 . 2009-07-17 08:51 180224 ----a-w- c:\windows\system32\SensoryPhoneManager.dll

    2012-07-10 08:41 . 2009-02-16 09:06 141312 ----a-w- c:\windows\system32\zlibwapi.dll

    2012-07-10 08:41 . 2009-03-27 15:10 94208 ----a-w- c:\windows\system32\sensoryscanner3.dll

    2012-07-10 08:41 . 2008-09-15 13:36 217254 ----a-w- c:\windows\system32\sensorydictionary.dll

    2012-07-10 08:41 . 2008-07-24 16:59 188416 ----a-w- c:\windows\system32\sensorypictures.dll

    2012-07-10 08:41 . 2009-06-01 11:08 110592 ----a-w- c:\windows\system32\sensoryarchive3.dll

    2012-07-10 08:41 . 2009-07-17 08:51 446464 ----a-w- c:\windows\system32\SensorySpeech.exe

    2012-07-10 08:41 . 2009-03-27 15:10 61440 ----a-w- c:\windows\system32\sensorytira.dll

    2012-07-10 08:35 . 2009-06-26 14:03 479232 ----a-w- c:\windows\system32\ssLicenceManager.dll

    2012-07-09 17:16 . 2012-07-09 17:14 39266488 ----a-w- C:\en nog meer D.zip

    2012-07-09 17:13 . 2012-07-09 17:10 111046051 ----a-w- C:\foto's vakantie.zip

    2012-07-09 17:07 . 2012-07-09 17:06 22561589 ----a-w- C:\nog meer fototjes.zip

    2012-07-03 16:21 . 2009-12-29 19:42 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys

    2012-07-03 16:21 . 2011-08-27 14:25 721000 ----a-w- c:\windows\system32\drivers\aswSnx.sys

    2012-07-03 16:21 . 2009-12-29 19:42 35928 ----a-w- c:\windows\system32\drivers\aswRdr.sys

    2012-07-03 16:21 . 2009-12-29 19:42 353688 ----a-w- c:\windows\system32\drivers\aswSP.sys

    2012-07-03 16:21 . 2009-12-29 19:42 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys

    2012-07-03 16:21 . 2009-12-29 19:42 57656 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys

    2012-07-03 16:21 . 2011-02-13 14:42 41224 ----a-w- c:\windows\avastSS.scr

    2012-07-03 16:21 . 2009-12-29 19:42 227648 ----a-w- c:\windows\system32\aswBoot.exe

    2012-05-31 10:25 . 2009-12-30 13:20 237072 ------w- c:\windows\system32\MpSigStub.exe

    2010-10-30 09:18 . 2010-10-31 20:29 7168 ----a-w- c:\program files\StartRemoteAssistance.exe

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{64309a88-4d2e-466e-a469-f681d9895758}]

    2011-05-18 14:51 1952256 ----a-w- c:\program files\Apture Highlights\Apture.dll

    .

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]

    2012-07-13 16:42 2074208 ----a-w- c:\program files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

    "{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-07-13 2074208]

    .

    [HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]

    [HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]

    @="{472083B0-C522-11CF-8763-00608CC02F24}"

    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]

    2012-07-03 16:21 121528 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]

    @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"

    [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]

    2008-03-04 21:38 121392 ----a-w- c:\acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "DAEMON Tools Pro Agent"="c:\program files\DAEMON Tools Pro\DTAgent.exe" [2012-04-26 3111744]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "RtHDVCpl"="RtHDVCpl.exe" [2007-06-20 4493312]

    "eDataSecurity Loader"="c:\acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-03-04 526896]

    "RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2007-01-08 68640]

    "LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2007-01-08 52256]

    "AutoLockProcess"="c:\acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe" [2008-01-23 561152]

    "AdminWorks Tray"="c:\acer\LANScope Agent\awtray.exe" [2007-05-22 1459992]

    "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]

    "Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2010-08-21 30192]

    "WarReg_PopUp"="c:\acer\WR_PopUp\WarReg_PopUp.exe" [2006-11-05 57344]

    "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]

    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]

    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]

    "vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-07-13 1107552]

    "HF_G_Jul"="c:\program files\AVG Secure Search\HF_G_Jul.exe" [2012-07-18 36960]

    .

    c:\users\QuoVadis GEWA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    IntelliGaze.bat [2009-12-30 108]

    mousemove.exe [2010-6-4 8192]

    .

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    GlobeTrotter Connect.lnk - c:\program files\Option\GlobeTrotter Connect\GlobeTrotter Connect.exe [2008-1-16 872448]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableLUA"= 0 (0x0)

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

    "AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

    "aux2"=wdmaud.drv

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

    2012-01-02 09:07 843712 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

    2012-03-27 12:41 37296 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMS]

    2002-12-10 16:54 127022 ----a-w- c:\program files\Common Files\Logitech\QCDriver3\LVComS.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCDriverInstaller]

    2002-12-10 17:34 638976 ----a-w- c:\progra~1\COMMON~1\Logitech\QCDRIV~2\Lqdsw.exe

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]

    "DisableMonitoring"=dword:00000001

    .

    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]

    .

    .

    --- Andere Services/Drivers In Geheugen ---

    .

    *NewlyCreated* - WS2IFSL

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2012-07-24 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-31 17:14]

    .

    2012-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-15 14:11]

    .

    2012-07-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-15 14:11]

    .

    2012-07-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3781196233-477423053-395155071-1003Core.job

    - c:\users\QuoVadis GEWA\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-17 16:46]

    .

    2012-07-24 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3781196233-477423053-395155071-1003UA.job

    - c:\users\QuoVadis GEWA\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-17 16:46]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = about:Tabs

    mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0413&s=1&o=vz32&d=1209&m=veriton_m460

    uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s

    TCP: DhcpNameServer = 192.168.1.254

    Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Toolbar-Locked - (no file)

    WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)

    HKLM-Run-eRecoveryService - (no file)

    .

    .

    .

    **************************************************************************

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden:

    .

    **************************************************************************

    .

    --------------------- DLLs Geladen Onder Lopende Processen ---------------------

    .

    - - - - - - - > 'Explorer.exe'(1112)

    c:\acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll

    c:\acer\Empowering Technology\eDataSecurity\x86\sysenv.dll

    .

    ------------------------ Andere Aktieve Processen ------------------------

    .

    c:\windows\system32\Ati2evxx.exe

    c:\windows\system32\Ati2evxx.exe

    c:\program files\Alwil Software\Avast5\AvastSvc.exe

    c:\acer\Empowering Technology\ePerformance\MemCheck.exe

    c:\program files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe

    c:\acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    c:\acer\Empowering Technology\eLock\Service\eLockServ.exe

    c:\windows\system32\conime.exe

    c:\program files\Acer\eProtection\Service\eProtectionServ.exe

    c:\program files\Option\GlobeTrotter Connect\GtDetectSc.exe

    c:\program files\Common Files\LightScribe\LSSrvc.exe

    c:\program files\CyberLink\Shared Files\RichVideo.exe

    c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    c:\program files\TeamViewer\Version5\TeamViewer_Service.exe

    c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    c:\windows\RtHDVCpl.exe

    c:\acer\Empowering Technology\eRecovery\eRecoveryService.exe

    c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

    c:\acer\Empowering Technology\eSettings\Service\capuserv.exe

    c:\program files\Windows Media Player\wmpnscfg.exe

    c:\program files\Windows Media Player\wmpnetwk.exe

    c:\acer\LANScope Agent\awServ.exe

    c:\program files\alea technologies\IntelliGaze\bin\IntelliGaze.exe

    c:\windows\system32\UI0Detect.exe

    c:\acer\LANScope Agent\LockKM.exe

    c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    c:\program files\alea technologies\IntelliGaze\bin\MagnifierEngine.exe

    c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe

    c:\program files\Sensory Software\The Grid 2\The Grid 2.exe

    c:\windows\system32\sensoryswitchinput.exe

    c:\windows\system32\SensorySpeech.exe

    c:\program files\Windows Live\Mail\wlmail.exe

    c:\program files\Windows Live\Contacts\wlcomm.exe

    .

    **************************************************************************

    .

    Voltooingstijd: 2012-07-24 16:30:00 - machine werd herstart

    ComboFix-quarantined-files.txt 2012-07-24 14:29

    .

    Pre-Run: 205.651.243.008 bytes beschikbaar

    Post-Run: 205.856.903.168 bytes beschikbaar

    .

    - - End Of File - - 8998211284855D9FF960EAEF227B15AF

  2. ik lig volledig verlamd in een verpleeghuis

    ik gebruik mijn ogen om de computer te bedienen

    maar als ik avast wil uitschakelen stopt de eye gazing technology en kan ik niet met yes bevestigen en de default is no na een aantal seconden

  3. Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 16:25:17, on 23-7-2012

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16447)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Windows Defender\MSASCui.exe

    C:\Windows\RtHDVCpl.exe

    C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe

    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe

    C:\Acer\Empowering Technology\eLock\autolockprocess\AutoLockProcess.exe

    C:\Acer\LANScope Agent\awtray.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Program Files\Alwil Software\Avast5\AvastUI.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\AVG Secure Search\vprot.exe

    C:\Program Files\Option\GlobeTrotter Connect\GlobeTrotter Connect.exe

    C:\Program Files\alea technologies\IntelliGaze\bin\IntelliGaze.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

    C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE

    C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE

    C:\Program Files\alea technologies\IntelliGaze\bin\MagnifierEngine.exe

    C:\Windows\system32\conime.exe

    C:\Program Files\Sensory Software\The Grid 2\The Grid 2.exe

    C:\Windows\system32\sensoryswitchinput.exe

    C:\Windows\system32\SensorySpeech.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    C:\Windows\system32\SearchFilterHost.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = iGoogle Redirect

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing

    O1 - Hosts: ::1 localhost

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Apture Highlights - {64309a88-4d2e-466e-a469-f681d9895758} - C:\Program Files\Apture Highlights\Apture.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

    O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll

    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll

    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe

    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

    O4 - HKLM\..\Run: [AutoLockProcess] C:\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe

    O4 - HKLM\..\Run: [AdminWorks Tray] "C:\Acer\LANScope Agent\awtray.exe"

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup

    O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [HF_G_Jul] "C:\Program Files\AVG Secure Search\HF_G_Jul.exe" /DoAction

    O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

    O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun

    O4 - HKCU\..\Run: [Google Update] "C:\Users\QuoVadis GEWA\AppData\Local\Google\Update\GoogleUpdate.exe" /c

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

    O4 - Startup: IntelliGaze.bat

    O4 - Startup: mousemove.exe

    O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Option\GlobeTrotter Connect\GlobeTrotter Connect.exe

    O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Apparaatdetectie) - http://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\system32\skype4com.dll

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

    O23 - Service: AdminWorks Agent X6 (AWService) - OSA Technologies Inc., An Avocent Company - C:\Acer\LANScope Agent\awServ.exe

    O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

    O23 - Service: eProtection Service (eProtection) - Unknown owner - C:\Program Files\Acer\eProtection\Service\eProtectionServ.exe

    O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

    O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

    O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

    O23 - Service: GtDetectSc - OptionNV - C:\Program Files\Option\GlobeTrotter Connect\GtDetectSc.exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

    O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

    O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    --

    End of file - 11054 bytes

  4. Malwarebytes Anti-Malware 1.62.0.1300

    www.malwarebytes.org

    Databaseversie: v2012.07.23.08

    Windows Vista Service Pack 2 x86 NTFS

    Internet Explorer 9.0.8112.16421

    QuoVadis GEWA :: PC_VAN_QUOVADIS [administrator]

    23-7-2012 16:13:15

    mbam-log-2012-07-23 (16-13-15).txt

    Scantype: Snelle scan

    Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 191260

    Verstreken tijd: 8 minuut/minuten, 5 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    (einde)

  5. Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 18:52:59, on 22-7-2012

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16447)

    Boot mode: Normal

    Running processes:

    C:\Windows\System32\smss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\winlogon.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\Ati2evxx.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\SLsvc.exe

    C:\Windows\system32\Ati2evxx.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

    C:\Windows\System32\spoolsv.exe

    C:\Windows\system32\svchost.exe

    C:\Acer\Empowering Technology\ePerformance\MemCheck.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe

    C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

    C:\Program Files\Acer\eProtection\Service\eProtectionServ.exe

    C:\Program Files\Option\GlobeTrotter Connect\GtDetectSc.exe

    C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\CyberLink\Shared Files\RichVideo.exe

    C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

    C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

    C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    C:\Windows\System32\svchost.exe

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

    C:\Windows\system32\SearchIndexer.exe

    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

    C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

    C:\Windows\system32\WUDFHost.exe

    C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Program Files\Windows Defender\MSASCui.exe

    C:\Windows\RtHDVCpl.exe

    C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe

    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe

    C:\Acer\Empowering Technology\eLock\autolockprocess\AutoLockProcess.exe

    C:\Acer\LANScope Agent\awtray.exe

    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Program Files\Alwil Software\Avast5\AvastUI.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\AVG Secure Search\vprot.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

    C:\Program Files\Option\GlobeTrotter Connect\GlobeTrotter Connect.exe

    C:\Program Files\alea technologies\IntelliGaze\bin\IntelliGaze.exe

    C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

    C:\Acer\LANScope Agent\awServ.exe

    C:\Windows\system32\UI0Detect.exe

    C:\Acer\LANScope Agent\LockKM.exe

    C:\Windows\system32\SearchProtocolHost.exe

    C:\Program Files\alea technologies\IntelliGaze\bin\MagnifierEngine.exe

    C:\Windows\system32\conime.exe

    C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe

    C:\Program Files\Sensory Software\The Grid 2\The Grid 2.exe

    C:\Windows\system32\sensoryswitchinput.exe

    C:\Windows\system32\SensorySpeech.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Windows Media Player\wmpnetwk.exe

    C:\Program Files\Windows Live\Mail\wlmail.exe

    C:\Program Files\Windows Live\Contacts\wlcomm.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Windows\system32\SearchProtocolHost.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Users\QuoVadis GEWA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R0P1GVRO\HijackThis.exe

    C:\Windows\system32\SearchFilterHost.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = iGoogle Redirect

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = Internet Explorer 9 - Microsoft Windows

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: ::1 localhost

    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Apture Highlights - {64309a88-4d2e-466e-a469-f681d9895758} - C:\Program Files\Apture Highlights\Apture.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll

    O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll

    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll

    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll

    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe

    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

    O4 - HKLM\..\Run: [AutoLockProcess] C:\Acer\Empowering Technology\eLock\autolockprocess\autolockprocess.exe

    O4 - HKLM\..\Run: [AdminWorks Tray] "C:\Acer\LANScope Agent\awtray.exe"

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup

    O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"

    O4 - HKLM\..\Run: [HF_G_Jul] "C:\Program Files\AVG Secure Search\HF_G_Jul.exe" /DoAction

    O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun

    O4 - HKCU\..\Run: [Google Update] "C:\Users\QuoVadis GEWA\AppData\Local\Google\Update\GoogleUpdate.exe" /c

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

    O4 - Startup: IntelliGaze.bat

    O4 - Startup: mousemove.exe

    O4 - Global Startup: ASETRES.EXE

    O4 - Global Startup: Empowering Technology Launcher.lnk = ?

    O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Option\GlobeTrotter Connect\GlobeTrotter Connect.exe

    O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {0067DBFC-A752-458C-AE6E-B9C7E63D4824} (Apparaatdetectie) - http://www.logitech.com/devicedetector/plugins/LogitechDeviceDetection32.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\system32\skype4com.dll

    O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll

    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

    O23 - Service: AdminWorks Agent X6 (AWService) - OSA Technologies Inc., An Avocent Company - C:\Acer\LANScope Agent\awServ.exe

    O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

    O23 - Service: eProtection Service (eProtection) - Unknown owner - C:\Program Files\Acer\eProtection\Service\eProtectionServ.exe

    O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

    O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

    O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

    O23 - Service: GtDetectSc - OptionNV - C:\Program Files\Option\GlobeTrotter Connect\GtDetectSc.exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

    O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

    O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

    --

    End of file - 14012 bytes

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.