Ga naar inhoud

deTuinman

Lid
  • Items

    6
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door deTuinman

  1. ComboFix 12-10-30.03 - Bor 30-10-2012  20:03:05.1.2 - x64
    Microsoft Windows 7 Ultimate   6.1.7601.1.1252.31.1043.18.6143.4331 [GMT 1:00]
    Gestart vanuit: c:\users\Bor\Downloads\ComboFix.exe
    AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
    SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    * Nieuw herstelpunt werd aangemaakt
    .
    .
    ((((((((((((((((((((((((((((((((((   Andere Verwijderingen   )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\program files (x86)\WinPCap
    c:\program files (x86)\WinPCap\daemon_mgm.exe
    c:\program files (x86)\WinPCap\INSTALL.LOG
    c:\program files (x86)\WinPCap\npf_mgm.exe
    c:\program files (x86)\WinPCap\rpcapd.exe
    c:\program files (x86)\WinPCap\Uninstall.exe
    c:\users\Public\mseinstall.exe
    c:\windows\SysWow64\drivers\npf.sys
    c:\windows\SysWow64\lp3codec32win.dll
    c:\windows\SysWow64\muzapp.exe
    c:\windows\SysWow64\Packet.dll
    c:\windows\SysWow64\pthreadVC.dll
    c:\windows\SysWow64\wpcap.dll
    .
    .
    (((((((((((((((((((((((((((((((((((((((   Drivers/Services   )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    -------\Service_NPF
    .
    .
    ((((((((((((((((((((   Bestanden Gemaakt van 2012-09-28 to 2012-10-30  ))))))))))))))))))))))))))))))
    .
    .
    2012-10-30 19:00 . 2012-10-12 07:19    9291768    ----a-w-    c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{806CB13F-B27B-4393-8154-D1A93BC7D789}\mpengine.dll
    2012-10-29 21:23 . 2012-10-29 21:23    --------    d-----w-    c:\users\Bor\AppData\Local\MediaShow
    2012-10-27 15:15 . 2012-08-24 10:10    96768    ----a-w-    c:\windows\system32\mshtmled.dll
    2012-10-27 15:14 . 2012-08-24 18:05    220160    ----a-w-    c:\windows\system32\wintrust.dll
    2012-10-27 15:13 . 2012-08-31 17:57    1687408    ----a-w-    c:\windows\system32\drivers\ntfs.sys
    2012-10-27 15:13 . 2012-08-30 18:02    5562736    ----a-w-    c:\windows\system32\ntoskrnl.exe
    2012-10-27 15:13 . 2012-08-30 17:06    3917168    ----a-w-    c:\windows\SysWow64\ntoskrnl.exe
    2012-10-27 15:13 . 2012-08-30 17:06    3972464    ----a-w-    c:\windows\SysWow64\ntkrnlpa.exe
    2012-10-27 15:12 . 2012-06-04 07:52    186880    ----a-w-    c:\windows\system32\cryptsvc.dll
    2012-10-27 15:12 . 2012-06-04 07:52    1465344    ----a-w-    c:\windows\system32\crypt32.dll
    2012-10-27 15:12 . 2012-06-04 07:52    140288    ----a-w-    c:\windows\system32\cryptnet.dll
    2012-10-27 15:12 . 2012-06-02 04:52    142336    ----a-w-    c:\windows\SysWow64\cryptsvc.dll
    2012-10-27 15:12 . 2012-06-02 04:52    103936    ----a-w-    c:\windows\SysWow64\cryptnet.dll
    2012-10-27 15:12 . 2012-06-02 04:52    1160192    ----a-w-    c:\windows\SysWow64\crypt32.dll
    2012-10-27 11:38 . 2012-10-27 11:38    --------    d-----r-    C:\ESD
    2012-10-26 16:58 . 2012-10-26 17:05    --------    d-----w-    c:\users\Bor\AppData\Roaming\ImgBurn
    2012-10-26 16:57 . 2012-10-26 16:57    --------    d-----w-    c:\program files (x86)\ImgBurn
    2012-10-25 17:27 . 2012-10-25 17:27    --------    d-----w-    c:\users\Bor\AppData\Roaming\Malwarebytes
    2012-10-25 17:26 . 2012-10-25 17:26    --------    d-----w-    c:\programdata\Malwarebytes
    2012-10-25 17:26 . 2012-10-25 17:26    --------    d-----w-    c:\program files (x86)\Malwarebytes' Anti-Malware
    2012-10-25 17:26 . 2012-09-29 17:54    25928    ----a-w-    c:\windows\system32\drivers\mbam.sys
    2012-10-24 18:11 . 2012-10-24 18:11    --------    d-----w-    c:\program files\Speccy
    2012-10-19 21:48 . 2012-09-24 21:16    95208    ----a-w-    c:\windows\SysWow64\WindowsAccessBridge-32.dll
    2012-10-15 21:55 . 2012-10-15 21:55    --------    d-----w-    c:\program files (x86)\Mp3GainPRO
    2012-10-15 20:41 . 2012-10-15 20:41    --------    d-----w-    c:\program files (x86)\File Renamer Turbo
    2012-10-15 20:41 . 2012-10-15 20:41    --------    d-----w-    c:\users\Bor\AppData\Roaming\Kristanix Software
    2012-10-15 19:42 . 2012-10-30 18:57    --------    d-----r-    c:\users\Bor\Dropbox
    2012-10-15 19:36 . 2012-10-30 19:08    --------    d-----w-    c:\users\Bor\AppData\Roaming\Dropbox
    2012-10-13 19:39 . 2012-10-13 19:41    --------    d-----w-    c:\users\Bor\AppData\Roaming\mIRC
    2012-10-12 18:11 . 2012-10-12 18:13    --------    d-----w-    c:\windows\SysWow64\Samsung_USB_Drivers
    2012-10-12 18:11 . 2012-10-12 18:11    --------    d-----w-    c:\users\Bor\ss
    2012-10-12 17:44 . 2012-10-12 17:44    --------    d-----w-    c:\program files\SAMSUNG
    2012-10-12 17:31 . 2010-07-04 17:11    25960    ----a-w-    c:\windows\SysWow64\FsExService64.Exe
    2012-10-12 17:31 . 2010-06-14 07:32    16448    ----a-w-    c:\windows\SysWow64\drivers\TFsExDisk.Sys
    2012-10-12 17:31 . 2010-06-14 07:32    16448    ----a-w-    c:\windows\system32\drivers\TFsExDisk.sys
    2012-10-12 17:31 . 2010-07-04 17:11    25960    ----a-w-    c:\windows\system32\FsExService64.exe
    2012-10-12 17:10 . 2012-10-12 17:10    --------    d-----w-    c:\users\Bor\AppData\Local\Samsung
    2012-10-12 17:10 . 2012-10-15 22:40    --------    d-----w-    c:\users\Bor\AppData\Roaming\Samsung
    2012-10-12 17:07 . 2012-09-26 18:57    4659712    ----a-w-    c:\windows\SysWow64\Redemption.dll
    2012-10-12 17:06 . 2012-10-15 22:40    --------    d-----w-    c:\program files (x86)\Samsung
    2012-10-12 17:06 . 2012-10-15 22:40    --------    d-----w-    c:\programdata\Samsung
    2012-10-10 21:14 . 2012-10-10 21:14    --------    d-----w-    c:\users\Bor\AppData\Local\Microsoft Help
    2012-10-10 19:23 . 2012-10-10 19:23    1867112    ----a-w-    c:\windows\SysWow64\nvcuvenc.dll
    2012-10-10 19:23 . 2012-10-10 19:23    18252136    ----a-w-    c:\windows\system32\nvd3dumx.dll
    2012-10-10 19:23 . 2012-10-10 19:23    6127464    ----a-w-    c:\windows\SysWow64\nvopencl.dll
    2012-10-10 19:23 . 2012-10-10 19:23    2574696    ----a-w-    c:\windows\SysWow64\nvcuvid.dll
    2012-10-10 19:23 . 2012-10-10 19:23    25256296    ----a-w-    c:\windows\system32\nvcompiler.dll
    2012-10-10 19:23 . 2012-10-10 19:23    7414632    ----a-w-    c:\windows\system32\nvopencl.dll
    2012-10-10 19:23 . 2012-10-10 19:23    9146728    ----a-w-    c:\windows\system32\nvcuda.dll
    2012-10-10 19:23 . 2012-10-10 19:23    7697768    ----a-w-    c:\windows\SysWow64\nvcuda.dll
    2012-10-10 19:23 . 2012-10-10 19:23    2218344    ----a-w-    c:\windows\system32\nvcuvenc.dll
    2012-10-10 19:22 . 2012-10-10 19:22    15309160    ----a-w-    c:\windows\SysWow64\nvd3dum.dll
    2012-10-10 19:22 . 2012-10-10 19:22    2747240    ----a-w-    c:\windows\system32\nvcuvid.dll
    2012-10-10 19:22 . 2012-10-10 19:22    19906920    ----a-w-    c:\windows\SysWow64\nvoglv32.dll
    2012-10-10 19:22 . 2012-10-10 19:22    13443944    ----a-w-    c:\windows\system32\drivers\nvlddmkm.sys
    2012-10-10 19:22 . 2012-10-10 19:22    17559912    ----a-w-    c:\windows\SysWow64\nvcompiler.dll
    2012-10-05 23:23 . 2012-10-05 23:23    --------    d-----w-    c:\program files (x86)\Ashampoo
    2012-10-05 20:46 . 2012-10-05 20:46    --------    d-----w-    c:\users\Bor\AppData\Local\ElevatedDiagnostics
    2012-10-05 18:27 . 2012-10-05 18:27    --------    d-----w-    c:\programdata\KONAMI
    2012-10-05 18:27 . 2012-10-05 18:27    --------    d-----w-    c:\program files (x86)\KONAMI
    2012-10-02 11:56 . 2012-10-02 12:16    --------    d-----w-    c:\users\Bor\AppData\Roaming\TeamViewer
    2012-10-02 11:56 . 2012-10-02 11:56    --------    d-----w-    c:\program files (x86)\TeamViewer
    2012-10-02 11:49 . 2012-10-02 11:49    --------    d-----w-    c:\users\Bor\AppData\Local\MediaServer
    2012-10-02 11:49 . 2012-10-02 11:51    --------    d-----w-    c:\programdata\PDVD
    2012-10-02 11:49 . 2012-10-02 11:50    --------    d-----w-    c:\users\Bor\AppData\Roaming\CyberLink
    2012-10-02 11:49 . 2012-10-02 11:51    --------    d-----w-    c:\programdata\CyberLink
    2012-10-02 11:49 . 2012-10-02 11:49    --------    d-----w-    c:\users\Public\CyberLink
    2012-10-02 11:49 . 2012-10-02 11:49    --------    d-----w-    c:\users\Bor\AppData\Local\CyberLink
    2012-10-02 11:47 . 2012-10-02 11:47    --------    d-----w-    c:\program files (x86)\CyberLink
    2012-10-02 11:47 . 2012-10-02 11:47    --------    d-----w-    c:\programdata\install_clap
    2012-10-02 11:15 . 2012-10-02 11:15    430952    ----a-w-    c:\windows\SysWow64\nvStreaming.exe
    2012-10-01 21:12 . 2012-10-01 21:12    --------    d-----w-    c:\program files\HitmanPro
    2012-10-01 21:12 . 2012-10-01 21:13    --------    d-----w-    c:\programdata\HitmanPro
    2012-10-01 09:22 . 2012-10-01 09:22    --------    d-----w-    c:\windows\Hewlett-Packard
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((   Find3M Rapport   ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-10-27 15:20 . 2012-03-12 20:18    65309168    ----a-w-    c:\windows\system32\MRT.exe
    2012-10-12 07:19 . 2012-03-12 20:25    9291768    ----a-w-    c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
    2012-10-10 19:23 . 2012-09-17 23:29    1482600    ----a-w-    c:\windows\system32\nvdispgenco64.dll
    2012-10-10 19:23 . 2012-09-17 23:18    2731880    ----a-w-    c:\windows\system32\nvapi64.dll
    2012-10-10 19:23 . 2009-07-13 21:59    14922600    ----a-w-    c:\windows\system32\nvwgf2umx.dll
    2012-10-10 19:23 . 2012-09-17 23:29    12501352    ----a-w-    c:\windows\SysWow64\nvwgf2um.dll
    2012-10-10 19:22 . 2012-09-17 23:29    2428776    ----a-w-    c:\windows\SysWow64\nvapi.dll
    2012-10-10 19:22 . 2012-09-17 23:29    26331496    ----a-w-    c:\windows\system32\nvoglv64.dll
    2012-10-10 19:22 . 2012-09-17 23:18    1760104    ----a-w-    c:\windows\system32\nvdispco64.dll
    2012-10-02 19:51 . 2012-09-17 23:18    3293544    ----a-w-    c:\windows\system32\nvsvc64.dll
    2012-10-02 19:51 . 2012-09-17 23:18    6200680    ----a-w-    c:\windows\system32\nvcpl.dll
    2012-10-02 19:50 . 2012-09-17 23:18    891240    ----a-w-    c:\windows\system32\nvvsvc.exe
    2012-10-02 19:50 . 2012-09-17 23:18    63336    ----a-w-    c:\windows\system32\nvshext.dll
    2012-10-02 19:50 . 2012-09-17 23:18    2557800    ----a-w-    c:\windows\system32\nvsvcr.dll
    2012-10-02 19:50 . 2012-09-17 23:18    118120    ----a-w-    c:\windows\system32\nvmctray.dll
    2012-09-26 18:57 . 2012-09-26 18:57    974848    ----a-w-    c:\windows\SysWow64\cis-2.4.dll
    2012-09-26 18:57 . 2012-09-26 18:57    81920    ----a-w-    c:\windows\SysWow64\issacapi_bs-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57    65536    ----a-w-    c:\windows\SysWow64\issacapi_pe-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57    57344    ----a-w-    c:\windows\SysWow64\MTXSYNCICON.dll
    2012-09-26 18:57 . 2012-09-26 18:57    57344    ----a-w-    c:\windows\SysWow64\MK_Lyric.dll
    2012-09-26 18:57 . 2012-09-26 18:57    57344    ----a-w-    c:\windows\SysWow64\issacapi_se-2.3.dll
    2012-09-26 18:57 . 2012-09-26 18:57    569344    ----a-w-    c:\windows\SysWow64\muzdecode.ax
    2012-09-26 18:57 . 2012-09-26 18:57    491520    ----a-w-    c:\windows\SysWow64\muzapp.dll
    2012-09-26 18:57 . 2012-09-26 18:57    49152    ----a-w-    c:\windows\SysWow64\MaJGUILib.dll
    2012-09-26 18:57 . 2012-09-26 18:57    45320    ----a-w-    c:\windows\SysWow64\MAMACExtract.dll
    2012-09-26 18:57 . 2012-09-26 18:57    45056    ----a-w-    c:\windows\SysWow64\MaXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57    45056    ----a-w-    c:\windows\SysWow64\MACXMLProto.dll
    2012-09-26 18:57 . 2012-09-26 18:57    40960    ----a-w-    c:\windows\SysWow64\MTTELECHIP.dll
    2012-09-26 18:57 . 2012-09-26 18:57    352256    ----a-w-    c:\windows\SysWow64\MSLUR71.dll
    2012-09-26 18:57 . 2012-09-26 18:57    258048    ----a-w-    c:\windows\SysWow64\muzoggsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57    245760    ----a-w-    c:\windows\SysWow64\MSCLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57    24576    ----a-w-    c:\windows\SysWow64\MASetupCleaner.exe
    2012-09-26 18:57 . 2012-09-26 18:57    200704    ----a-w-    c:\windows\SysWow64\muzwmts.dll
    2012-09-26 18:57 . 2012-09-26 18:57    155648    ----a-w-    c:\windows\SysWow64\MSFLib.dll
    2012-09-26 18:57 . 2012-09-26 18:57    143360    ----a-w-    c:\windows\SysWow64\3DAudio.ax
    2012-09-26 18:57 . 2012-09-26 18:57    135168    ----a-w-    c:\windows\SysWow64\muzaf1.dll
    2012-09-26 18:57 . 2012-09-26 18:57    131072    ----a-w-    c:\windows\SysWow64\muzmpgsp.ax
    2012-09-26 18:57 . 2012-09-26 18:57    122880    ----a-w-    c:\windows\SysWow64\muzeffect.ax
    2012-09-26 18:57 . 2012-09-26 18:57    118784    ----a-w-    c:\windows\SysWow64\MaDRM.dll
    2012-09-26 18:57 . 2012-09-26 18:57    110592    ----a-w-    c:\windows\SysWow64\muzmp4sp.ax
    2012-09-25 15:09 . 2012-09-17 22:45    821736    ----a-w-    c:\windows\SysWow64\npdeployJava1.dll
    2012-09-25 15:09 . 2012-03-13 07:06    746984    ----a-w-    c:\windows\SysWow64\deployJava1.dll
    2012-09-18 11:52 . 2012-09-18 11:52    696240    ----a-w-    c:\windows\SysWow64\FlashPlayerApp.exe
    2012-09-18 11:52 . 2012-03-13 06:55    73136    ----a-w-    c:\windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-09-18 11:11 . 2012-09-18 11:11    283200    ----a-w-    c:\windows\system32\drivers\dtsoftbus01.sys
    2012-09-17 22:08 . 2012-09-17 22:08    18503760    ----a-w-    c:\windows\SysWow64\mpas-fe.exe
    2012-08-22 18:12 . 2012-09-18 03:17    950128    ----a-w-    c:\windows\system32\drivers\ndis.sys
    2012-08-22 18:06 . 2012-09-18 03:17    1901936    ----a-w-    c:\windows\system32\drivers\tcpip.sys
    2012-08-22 18:06 . 2012-09-18 03:17    376688    ----a-w-    c:\windows\system32\drivers\netio.sys
    2012-08-22 18:05 . 2012-09-18 03:17    288624    ----a-w-    c:\windows\system32\drivers\FWPKCLNT.SYS
    2012-08-21 11:01 . 2012-09-24 14:35    33240    ----a-w-    c:\windows\system32\drivers\GEARAspiWDM.sys
    2012-08-21 11:01 . 2012-08-21 11:01    125872    ----a-w-    c:\windows\system32\GEARAspi64.dll
    2012-08-21 11:01 . 2012-08-21 11:01    106928    ----a-w-    c:\windows\SysWow64\GEARAspi.dll
    2012-08-20 17:33 . 2012-10-27 15:14    44032    ----a-w-    c:\windows\apppatch\acwow64.dll
    2012-08-02 17:58 . 2012-09-18 03:17    574464    ----a-w-    c:\windows\system32\d3d10level9.dll
    2012-08-02 16:57 . 2012-09-18 03:17    490496    ----a-w-    c:\windows\SysWow64\d3d10level9.dll
    .
    .
    (((((((((((((((((((((((((((((((((((((   Reg Opstartpunten   )))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond 
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    94208    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    94208    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    94208    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
    @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    94208    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "RocketDock"="c:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616]
    "HP Photosmart 6510 series (NET)"="c:\program files\HP\HP Photosmart 6510 series\Bin\ScanToPCActivationApp.exe" [2011-09-16 2676584]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2010-02-10 2770432]
    "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-11-10 336384]
    "SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
    "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]
    .
    c:\users\Bor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
    Dropbox.lnk - c:\users\Bor\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-8-27 26924984]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableLUA"= 0 (0x0)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
    "LoadAppInit_DLLs"=0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
    "aux"=wdmaud.drv
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro36]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro36.sys]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @="Service"
    .
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-08-30 1258856]
    R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
    R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [2011-06-12 51740536]
    R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-06 114144]
    R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]
    R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 84864]
    R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272]
    R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
    R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
    R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
    R3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:\windows\system32\drivers\Synth3dVsc.sys [2012-03-12 88960]
    R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2012-08-23 29696]
    R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys [2010-06-14 16448]
    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
    R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
    R3 tsusbhub;Remote Deskotop USB Hub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-07-09 52736]
    R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
    R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-03-12 1255736]
    R3 WO_LiveService;Ashampoo LiveTuner Service;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 9\LiveTunerService.exe [2012-04-23 884608]
    R3 WSDPrintDevice;WSD-ondersteuning voor afdrukken via UMB;c:\windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
    S0 NBVol;Nero Backup Volume Filter Driver;c:\windows\system32\DRIVERS\NBVol.sys [2011-12-01 72240]
    S0 NBVolUp;Nero Backup Volume Upper Filter Driver;c:\windows\system32\DRIVERS\NBVolUp.sys [2011-12-01 15920]
    S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys [x]
    S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-09-18 283200]
    S2 {73526619-C24F-470B-9BED-53D455FBB5C6};Power Control [2012/10/02 13:49];c:\program files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [2012-08-10 08:04 147704]
    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960]
    S2 CLHNServiceForPowerDVD12;CLHNServiceForPowerDVD12;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [2012-07-25 90640]
    S2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2012-07-25 78352]
    S2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2012-07-25 295440]
    S2 LiveTunerPM;Ashampoo LiveTuner ProcessMonitor Driver;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 9\LiveTunerProcessMonitor64.sys [2011-03-08 12824]
    S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-29 399432]
    S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-29 676936]
    S2 ntk_PowerDVD12;ntk_PowerDVD12;c:\program files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [2012-06-20 83704]
    S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
    S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-08-31 2754984]
    S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-09-29 25928]
    S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
    S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2010-04-29 38528]
    S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2010-01-11 1290752]
    .
    .
    --- Andere Services/Drivers In Geheugen ---
    .
    *NewlyCreated* - WS2IFSL
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
    2011-03-04 10:29    451872    ----a-w-    c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
    .
    Inhoud van de 'Gedeelde Taken' map
    .
    2012-10-30 c:\windows\Tasks\AutoKMS.job
    - c:\windows\AutoKMS\AutoKMS.exe [2012-03-13 07:15]
    .
    2012-10-28 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2524896608-117160334-3152321975-1000Core.job
    - c:\users\Bor\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-18 11:21]
    .
    2012-10-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2524896608-117160334-3152321975-1000UA.job
    - c:\users\Bor\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-18 11:21]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    97792    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    97792    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    97792    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
    @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
    2012-06-30 04:19    97792    ----a-w-    c:\users\Bor\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 1436736]
    "Rocketdock"="c:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616]
    .
    ------- Bijkomende Scan -------
    .
    uStart Page = hxxp://www.google.nl
    uInternet Settings,ProxyOverride = *.local
    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000
    TCP: DhcpNameServer = 212.54.40.25 212.54.35.25
    FF - ProfilePath - c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.nl
    FF - ExtSQL: 2012-09-18 13:47; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
    FF - ExtSQL: 2012-09-18 13:48; firebug@software.joehewitt.com; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\firebug@software.joehewitt.com.xpi
    FF - ExtSQL: 2012-09-18 14:03; {317B5128-0B0B-49b2-B2DB-1E7560E16C74}; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74}
    FF - ExtSQL: 2012-09-18 14:03; {6AC85730-7D0F-4de0-B3FA-21142DD85326}; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}
    FF - ExtSQL: 2012-09-20 16:22; en-GB@dictionaries.addons.mozilla.org; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\en-GB@dictionaries.addons.mozilla.org
    FF - ExtSQL: 2012-09-20 23:35; {DDC359D1-844A-42a7-9AA1-88A850A938A8}; c:\users\Bor\AppData\Roaming\Mozilla\Firefox\Profiles\qgjn94z2.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
    FF - ExtSQL: 2012-10-04 13:56; web2pdfextension@web2pdf.adobedotcom; c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
    .
    - - - - ORPHANS VERWIJDERD - - - -
    .
    Wow6432Node-HKCU-Run-AdobeBridge - (no file)
    Wow6432Node-HKLM-Run-<NO NAME> - (no file)
    Wow6432Node-HKLM-Run-NPSStartup - (no file)
    AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
    AddRemove-WinPcapInst - c:\program files (x86)\WinPcap\Uninstall.exe
    .
    .
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{73526619-C24F-470B-9BED-53D455FBB5C6}]
    "ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl"
    .
    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11g_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.10"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11g.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\NetworkList\Nla\Cache\Intranet\$%&*]
    "Successes"=dword:e0000000
    "Failures"=dword:e0000001
    "{62411F0A-EB95-4DAD-8E01-04F30641C0E0}"=hex:00,1c,10,8f,4b,56
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    ------------------------ Andere Aktieve Processen ------------------------
    .
    c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
    c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
    .
    **************************************************************************
    .
    Voltooingstijd: 2012-10-30  20:11:38 - machine werd herstart
    ComboFix-quarantined-files.txt  2012-10-30 19:11
    .
    Pre-Run: 70.611.111.936 bytes beschikbaar
    Post-Run: 69.862.809.600 bytes beschikbaar
    .
    - - End Of File - - A619C9A4E044FD56B9066E3B6C4B643B
    
    

  2. Hallo ik heb een probleem waar ik al best mee zit. Vele schone installaties in het verleden gehad en toch blijft het nog wel eens regelmatig voorkomen.

    Het komt vaak voor bij film kijken (avi, maar ook youtube) en gamen.

    Maar soms na 10 minuten, maar ook wel naar een aantal uren en soms gewoon nooit. Het is echt willekeurig.

    Temperaturen heb ik al lang gecontroleerd en die zijn perfect.

    Mijn Pc specs zijn:

    Fractal Design Define 2 Geen Voeding, Zwart

    WD Caviar Black WD2002FAEX - Vaste schijf - 2 TB - intern - 3.5" SATA-600 - 7200 tpm

    OCZ ModXstream Pro 500 Watt, 20+24 Pins

    Zalman CPU Koeler CNPS9700NT

    Asus GeForce GTS 250 DK Top 512 MB

    AMD Phenom II X2 545 3.00 GHz, Boxed, Excl. Videochip, Dual Core

    Asus M4A785-M - Socket AM3, 785G + SB710, DDR2, SATA, RAID, Radeon HD 4200, Audio, UATX

    Team Elite 800 ddr2 sdram pc2-6400 (2x 1 gig)

    Crucial Technology ddr2 sdram pc2-6400 (2x 2 gig)

    Windows 7 ultimate 64 sp1

    hetzelfde probleem is op ander forum al bekeken, maar dat hielp niet: Loopt soms vast bij games - Windows Clients - GoT

    Ik heb alvast een hijackthis bestandje erbij gedaan als die nodig is:

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 19:25:51, on 24-10-2012
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v9.00 (9.00.8112.16448)
    Boot mode: Normal
    
    Running processes:
    C:\Program Files (x86)\RocketDock\RocketDock.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
    C:\Users\Bor\AppData\Roaming\Dropbox\bin\Dropbox.exe
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_278.exe
    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_278.exe
    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
    C:\Users\Bor\Downloads\HijackThis.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.nl
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.nl
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
    O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
    O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\Run: [switchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
    O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
    O4 - HKCU\..\Run: [HP Photosmart 6510 series (NET)] "C:\Program Files\HP\HP Photosmart 6510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN1C2410YV05QB:NW" -scfn "HP Photosmart 6510 series (NET)" -AutoStart 1
    O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-21-2524896608-117160334-3152321975-1001\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
    O4 - HKUS\S-1-5-21-2524896608-117160334-3152321975-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
    O4 - Startup: Dropbox.lnk = Bor\AppData\Roaming\Dropbox\bin\Dropbox.exe
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: CLHNServiceForPowerDVD12 - CyberLink Corp. - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
    O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
    O23 - Service: CyberLink PowerDVD 12 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files (x86)\WinPcap\rpcapd.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) - Unknown owner - C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 9\LiveTunerService.exe
    O23 - Service: @C:\Windows\Microsoft.NET\Framework64\v4.0.21006\WPF\WPFFontCache_v0400.exe,-100 (WPFFontCache_v0400) - Unknown owner - C:\Windows\Microsoft.NET\Framework64\v4.0.21006\WPF\WPFFontCache_v0400.exe (file missing)
    
    --
    End of file - 10607 bytes
    
    

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.