Ga naar inhoud

McMave

Lid
  • Items

    7
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door McMave

  1. Goedenavond allen,

    iets bijzonders en ik kan er niet uitkomen.

    Situatie:

    Ik heb Ziggo Extra pakket met +/- 120 MB internet.

    ik heb een desktop waar ik een Sitecom WLA-2000 adapter in heb zitten. Deze adapter is geinstalleerd en alle drivers zijn up to date.

    Ik heb een Sitecom WLR-4003 router, met alle nieuwste software en firmware erop.

    Ik heb een afstand van hemelsbreed 5 meter tussen de router en mijn PC zitten. Rara hoe kan het dan dat ik eigenlijk niet of nauwelijks internet op kan met de draadloze adapter? Met de laatste Speedtest (Speedtest.nl -) haal ik draadloos een snelheid van: 31.6 KByte/s down, 438.4 KByte/s up en 622.0 connecties per minuut.

    Ik heb de situatie aangelegd via de UTP kabel en haal ik de volgende snelheden:

    4035.5 KByte/s down, 666.7 KByte/s up en 1198 connecties per minuut.

    Nu weet ik dat ik nooit dezelfde snelheden kan halen als ik draadloos vergelijk met bedraad, maar dat de verschillen zo groot zijn, is voor mij een groot raadsel.

    Ik had hiervoor een Sitecom WL-341, maar deze had maar een klein bereik en aangezien de WLR-4003 wat groter bereik heeft, heb ik hier voor gekozen.

    Tussen de Router en het modem van Ziggo (UBEE3200) heb ik meerdere kabels geprobeerd (Cat5e en Cat6), maar de snelheid veranderd niet. De modem en router staan bijna naast elkaar.

    In hoeverre kan de meterkast van invloed zijn op de snelheid van de router. Zodra ik de router naast me neer zet (en tussen het modem en de router een CAT6 UTP kabel leg van 10 meter), haal ik bijna dezelfde resultaten als bedraad. Kan het bijvoorbeeld ook zijn dat het draadloze gedeelte stoort op het kastje van Ziggo?

    Ik heb gekeken naar de kanalen via WiFI-Analyzer en ik heb het sterkste kanaal gekozen. Ik heb alleen de 'N' functie aangezet, zodat hij niets uitzend in A, B of G. Sitecom heeft tegenwoordig de Cloud Security, maar dat is bij deze nog niet het geval (gelukkig, want deze slurpen bandbreedte).

    Wie o wie kan mij helpen. Ik heb de oude router teruggehangen en deze geeft hetzelfde probleem als de WLR-4003. Ik heb een nieuwe ontvanger geprobeerd (WLA-6000), maar ook deze werkt niet beter. Ik hoor het graag van u.

  2. # AdwCleaner v2.007 - Verslag gemaakt op 14/11/2012 om 19:27:51

    # Geactualiseerd op 06/11/2012 door Xplode

    # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (64 bits)

    # Gebruiker : Verlaat - VERLAAT-PC

    # Opstarten Modus : Normale modus

    # Gelanceerd vanaf : C:\Users\Verlaat\Desktop\adwcleaner.exe

    # Optie [Verwijderen]

    ***** [Diensten] *****

    ***** [Files / Mappen] *****

    ***** [Register] *****

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}

    Sleutel Verwijdert : HKLM\Software\Iminent

    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}

    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}

    Sleutel Verwijdert : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}

    Sleutel Verwijdert : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}

    ***** [browsers] *****

    -\\ Internet Explorer v9.0.8112.16421

    [OK] Het register bevat geen enkele ongeoorloofde invoer.

    -\\ Mozilla Firefox v17.0 (nl)

    Profielnaam : default

    File : C:\Users\Verlaat\AppData\Roaming\Mozilla\Firefox\Profiles\oq05vpw9.default\prefs.js

    [OK] De file bevat geen enkele ongeoorloofde invoer.

    -\\ Google Chrome v23.0.1271.64

    File : C:\Users\Verlaat\AppData\Local\Google\Chrome\User Data\Default\Preferences

    [OK] De file bevat geen enkele ongeoorloofde invoer.

    -\\ Opera v12.2.1578.0

    File : C:\Users\Verlaat\AppData\Roaming\Opera\Opera\operaprefs.ini

    [OK] De file bevat geen enkele ongeoorloofde invoer.

    *************************

    AdwCleaner[s1].txt - [2020 octets] - [14/11/2012 19:27:51]

    ########## EOF - C:\AdwCleaner[s1].txt - [2080 octets] ##########

  3. Goedenavond,

    na veelvuldig verschillende artikelen gelezen te hebben, toch maar eens besloten om een account aan te maken.

    Ik heb sinds kort een vervelend iets. Ik krijg steeds een link in beeld met daar een reclameboodschap achter. Op zowel IE9, Firefox als Chrome heb ik dit probleem. Dit is best irritant. Ik heb de verschillende scanprogramma's al na gelopen, zoals HijackThis, MBAM en Combofix, maar het probleem is niet opgelost helaas... Ik laat het nu over aan de echte experts. Hopelijk kunnen zij wel het gewenst resultaat opleveren. In Chrome en Firefox heb ik een Adblocker geinstalleerd; het plaatje is weg, de link is er nog wel (zie bijlage)

    post-39907-1417705180,4362_thumb.jpg

    Hierbij de logjes van de bovenstaande programma's:

    Hijack This

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 21:49:59, on 13-11-2012

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16450)

    Boot mode: Normal

    Running processes:

    C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe

    C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    C:\Users\Verlaat\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

    C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Roaming\Dropbox\bin\Dropbox.exe

    C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    C:\Program Files (x86)\Winamp\winampa.exe

    C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe

    C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe

    C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe

    C:\PROGRA~2\AD-AWA~1\AdAware.exe

    D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

    C:\Users\Verlaat\AppData\Roaming\Spotify\spotify.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe

    C:\Users\Verlaat\Downloads\HijackThis.exe

    C:\Windows\SysWOW64\DllHost.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

    O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

    O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O3 - Toolbar: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files (x86)\adawaretb\adawareDx.dll

    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

    O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide

    O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe"

    O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run

    O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    O4 - HKLM\..\Run: [switchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"

    O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

    O4 - HKCU\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s

    O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Verlaat\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

    O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun

    O4 - HKCU\..\Run: [8E65411BBC708BE663EA58E8ECEC8EA7B5C21AE8._service_run] "C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe" --type=service

    O4 - HKUS\S-1-5-21-1166578139-4082696870-3657603910-1004\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')

    O4 - HKUS\S-1-5-21-1166578139-4082696870-3657603910-1004\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')

    O4 - Startup: Dropbox.lnk = Verlaat\AppData\Roaming\Dropbox\bin\Dropbox.exe

    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105

    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll

    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

    O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll

    O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

    O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)

    O23 - Service: ArcGIS License Manager - Acresso Software Inc. - C:\PROGRA~2\ESRI\License\arcgis9x\lmgrd.exe

    O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe

    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

    O23 - Service: FileZilla Server FTP server (FileZilla Server) - FileZilla Project - D:\Website Laus Deo\xampp\filezillaftp\filezillaserver.exe

    O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

    O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe

    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe

    O23 - Service: Intel® Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

    O23 - Service: MBAMScheduler - Malwarebytes Corporation - D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

    O23 - Service: MBAMService - Malwarebytes Corporation - D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

    O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

    O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Realtek11nSU - Realtek - C:\Program Files (x86)\SITECOM\300N USB Wireless LAN Utility\RtlService.exe

    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: Ad-Aware (SBAMSvc) - GFI Software - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe

    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

    O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe

    O23 - Service: Intel® Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

    O23 - Service: wampapache - Apache Software Foundation - D:\Website Laus Deo\Wamp\bin\apache\apache2.2.21\bin\httpd.exe

    O23 - Service: wampmysqld - Unknown owner - D:\Website Laus Deo\Wamp\bin\mysql\mysql5.5.20\bin\mysqld.exe

    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --

    End of file - 14879 bytes

    MBAM:

    Malwarebytes Anti-Malware (-evaluatieversie-) 1.65.1.1000

    Malwarebytes : Free anti-malware download

    Databaseversie: v2012.11.13.07

    Windows 7 Service Pack 1 x64 NTFS

    Internet Explorer 9.0.8112.16421

    Verlaat :: VERLAAT-PC [administrator]

    Realtime bescherming: Ingeschakeld

    13-11-2012 21:09:33

    mbam-log-2012-11-13 (21-09-33).txt

    Scantype: Volledige scan (C:\|D:\|)

    Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM

    Uitgeschakelde scanopties: P2P

    Objecten gescand: 806995

    Verstreken tijd: 33 minuut/minuten, 59 seconde(n)

    Geheugenprocessen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerwaarden gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen gedetecteerd: 0

    (Geen kwaadaardige objecten gedetecteerd)

    Bestanden gedetecteerd: 1

    C:\Users\Verlaat\AppData\Local\Google\Chrome\Application\21.0.1180.83\chrome_frame_helper.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd.

    (einde)

    Combofix

    ComboFix 12-11-13.02 - Verlaat 13-11-2012 20:50:22.1.4 - x64

    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.16301.13971 [GMT 1:00]

    Gestart vanuit: c:\users\Verlaat\Desktop\ComboFix.exe

    AV: Lavasoft Ad-Aware *Disabled/Updated* {445B48C3-0FA4-6B16-8F07-6506F305D800}

    AV: Microsoft Security Essentials *Disabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}

    AV: Microsoft Security Essentials *Disabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}

    FW: Lavasoft Ad-Aware *Disabled* {7C60C9E6-45CB-6A4E-A458-CC330DD69F7B}

    SP: Lavasoft Ad-Aware *Disabled/Updated* {FF3AA927-299E-6498-B5B7-5E74888292BD}

    SP: Microsoft Security Essentials *Disabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}

    SP: Microsoft Security Essentials *Disabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}

    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    * Nieuw herstelpunt werd aangemaakt

    .

    .

    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    c:\users\Verlaat\AppData\Local\Temp\bd7c47bb-f5c0-417c-a180-ec348d87718a\CliSecureRT.dll

    c:\windows\SysWow64\drivers\npf.sys

    c:\windows\SysWow64\muzapp.exe

    c:\windows\SysWow64\Packet.dll

    c:\windows\SysWow64\pthreadVC.dll

    c:\windows\SysWow64\regobj.dll

    c:\windows\SysWow64\wpcap.dll

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    -------\Legacy_NPF

    -------\Service_NPF

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2012-10-13 to 2012-11-13 ))))))))))))))))))))))))))))))

    .

    .

    2012-11-13 06:21 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A6810100-18AF-46F9-838D-1D32DD41BAE0}\mpengine.dll

    2012-11-12 09:01 . 2012-11-12 09:01 -------- d-----w- c:\users\Verlaat\AppData\Roaming\Malwarebytes

    2012-11-12 09:01 . 2012-11-12 09:01 -------- d-----w- c:\programdata\Malwarebytes

    2012-11-12 09:01 . 2012-09-29 18:54 25928 ----a-w- c:\windows\system32\drivers\mbam.sys

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin7.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin6.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin5.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin4.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin3.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin2.dll

    2012-11-11 21:15 . 2012-11-11 21:15 159744 ----a-w- c:\program files (x86)\Internet Explorer\Plugins\npqtplugin.dll

    2012-11-11 21:15 . 2012-11-11 21:15 -------- d-----w- c:\program files (x86)\QuickTime

    2012-11-11 21:15 . 2012-11-11 21:15 -------- d-----w- c:\programdata\Apple Computer

    2012-11-11 20:55 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

    2012-10-30 20:22 . 2012-11-06 20:20 -------- d-----w- c:\users\Verlaat\AppData\Roaming\JOSM

    2012-10-25 02:12 . 2012-10-25 02:12 94208 ----a-w- c:\windows\SysWow64\QuickTimeVR.qtx

    2012-10-25 02:12 . 2012-10-25 02:12 69632 ----a-w- c:\windows\SysWow64\QuickTime.qts

    2012-10-24 10:24 . 2012-10-24 10:25 -------- d-----w- c:\program files\Common Files\Adobe

    2012-10-23 20:11 . 2012-10-23 20:25 -------- d-----w- c:\users\Verlaat\AppData\Roaming\Notepad++

    2012-10-23 18:58 . 2012-10-23 19:45 -------- d-----w- c:\users\Verlaat\.idlerc

    2012-10-23 18:57 . 2012-10-23 19:14 -------- d-----w- C:\Python33

    2012-10-22 21:35 . 2012-10-22 21:35 -------- d-s---w- c:\windows\SysWow64\Microsoft

    2012-10-22 21:04 . 2012-10-22 21:04 -------- d-----w- c:\users\Verlaat\AppData\Roaming\Geon bv

    2012-10-22 21:04 . 2012-10-22 21:04 -------- d-----w- c:\users\Verlaat\AppData\Local\Geon_bv

    2012-10-21 19:32 . 2012-10-21 19:32 -------- d-----w- c:\programdata\RELOADED

    2012-10-20 19:58 . 2012-10-09 19:49 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{12C47298-9B76-4A41-ABFF-4738BA204FDA}\gapaengine.dll

    2012-10-16 14:12 . 2012-10-16 14:12 -------- d-----w- c:\program files (x86)\Microsoft Games

    2012-10-16 14:12 . 2012-10-16 14:12 -------- d-----w- c:\windows\SysWow64\logfiles

    2012-10-16 09:55 . 2012-10-16 09:55 -------- d-----w- c:\users\Verlaat\AppData\Roaming\KerngisData Controletool

    2012-10-16 09:55 . 2012-10-16 09:55 -------- d-----w- c:\program files (x86)\KerngisData Controletool

    2012-10-16 09:34 . 2012-10-16 09:34 -------- d-----w- c:\users\Verlaat\AppData\Roaming\Kerngis2007.2.1

    2012-10-16 09:34 . 2012-10-16 09:34 -------- d-----w- c:\programdata\Kerngis2007.2.1

    2012-10-16 09:04 . 2012-10-16 09:04 -------- d-----w- c:\program files (x86)\Common Files\ArcGIS

    2012-10-16 09:01 . 2012-10-16 09:01 -------- d-----w- c:\program files (x86)\Business Objects

    2012-10-16 08:45 . 2007-04-18 06:51 2113536 ----a-w- c:\windows\SysWow64\python25.dll

    2012-10-16 08:38 . 2012-10-16 08:39 -------- d-----w- c:\program files (x86)\Common Files\AnswerWorks 4.0

    2012-10-16 08:38 . 2012-10-16 08:38 -------- d-----w- c:\program files (x86)\Leica Geosystems

    2012-10-16 08:37 . 2012-10-16 08:38 -------- d-----w- c:\program files (x86)\Common Files\ESRI

    2012-10-16 08:37 . 2012-10-16 08:37 -------- d-----w- c:\programdata\ESRI

    2012-10-16 08:29 . 2012-10-16 08:29 -------- d-----w- c:\program files\Common Files\SafeNet Sentinel

    2012-10-15 06:04 . 2012-10-15 06:08 -------- d-----w- c:\users\Verlaat\AppData\Local\adawarebp

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2012-10-13 09:59 . 2012-10-13 09:59 95208 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll

    2012-10-13 09:59 . 2012-06-04 05:38 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll

    2012-10-13 09:59 . 2012-02-05 20:58 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll

    2012-10-10 01:01 . 2012-02-06 10:21 65309168 ----a-w- c:\windows\system32\MRT.exe

    2012-10-09 21:12 . 2012-04-01 20:36 696760 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

    2012-10-09 21:12 . 2012-02-05 20:58 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

    2012-10-09 19:49 . 2012-02-11 19:30 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll

    2012-10-02 22:21 . 2012-10-13 10:08 7414632 ----a-w- c:\windows\system32\nvopencl.dll

    2012-10-02 22:21 . 2012-10-13 10:08 6127464 ----a-w- c:\windows\SysWow64\nvopencl.dll

    2012-10-02 22:21 . 2012-10-13 10:08 26331496 ----a-w- c:\windows\system32\nvoglv64.dll

    2012-10-02 22:21 . 2012-10-13 10:08 12501352 ----a-w- c:\windows\SysWow64\nvwgf2um.dll

    2012-10-02 22:21 . 2012-10-13 10:08 9146728 ----a-w- c:\windows\system32\nvcuda.dll

    2012-10-02 22:21 . 2012-10-13 10:08 831848 ----a-w- c:\windows\SysWow64\nvumdshim.dll

    2012-10-02 22:21 . 2012-10-13 10:08 7697768 ----a-w- c:\windows\SysWow64\nvcuda.dll

    2012-10-02 22:21 . 2012-10-13 10:08 2747240 ----a-w- c:\windows\system32\nvcuvid.dll

    2012-10-02 22:21 . 2012-10-13 10:08 2574696 ----a-w- c:\windows\SysWow64\nvcuvid.dll

    2012-10-02 22:21 . 2012-10-13 10:08 25256296 ----a-w- c:\windows\system32\nvcompiler.dll

    2012-10-02 22:21 . 2012-10-13 10:08 2218344 ----a-w- c:\windows\system32\nvcuvenc.dll

    2012-10-02 22:21 . 2012-10-13 10:08 1867112 ----a-w- c:\windows\SysWow64\nvcuvenc.dll

    2012-10-02 22:21 . 2012-10-13 10:08 18252136 ----a-w- c:\windows\system32\nvd3dumx.dll

    2012-10-02 22:21 . 2012-10-13 10:08 17559912 ----a-w- c:\windows\SysWow64\nvcompiler.dll

    2012-10-02 22:21 . 2012-10-13 10:08 1482600 ----a-w- c:\windows\system32\nvdispgenco64.dll

    2012-10-02 22:21 . 2012-10-13 10:08 13443944 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys

    2012-10-02 22:21 . 2012-05-22 20:10 19906920 ----a-w- c:\windows\SysWow64\nvoglv32.dll

    2012-10-02 22:21 . 2012-05-22 20:10 2428776 ----a-w- c:\windows\SysWow64\nvapi.dll

    2012-10-02 22:21 . 2012-02-09 20:43 973672 ----a-w- c:\windows\system32\nvumdshimx.dll

    2012-10-02 22:21 . 2012-02-09 20:43 247144 ----a-w- c:\windows\system32\nvinitx.dll

    2012-10-02 22:21 . 2012-02-09 20:43 202600 ----a-w- c:\windows\SysWow64\nvinit.dll

    2012-10-02 22:21 . 2012-02-05 20:54 2731880 ----a-w- c:\windows\system32\nvapi64.dll

    2012-10-02 22:21 . 2012-02-05 20:54 1760104 ----a-w- c:\windows\system32\nvdispco64.dll

    2012-10-02 22:21 . 2012-02-05 20:54 15309160 ----a-w- c:\windows\SysWow64\nvd3dum.dll

    2012-10-02 22:21 . 2012-02-05 20:54 14922600 ----a-w- c:\windows\system32\nvwgf2umx.dll

    2012-10-02 19:51 . 2012-05-08 10:44 3536817 ----a-w- c:\windows\system32\nvcoproc.bin

    2012-10-02 19:51 . 2012-02-05 20:53 3293544 ----a-w- c:\windows\system32\nvsvc64.dll

    2012-10-02 19:51 . 2012-02-05 20:53 6200680 ----a-w- c:\windows\system32\nvcpl.dll

    2012-10-02 19:50 . 2012-02-05 20:53 891240 ----a-w- c:\windows\system32\nvvsvc.exe

    2012-10-02 19:50 . 2012-02-05 20:53 63336 ----a-w- c:\windows\system32\nvshext.dll

    2012-10-02 19:50 . 2012-02-05 20:53 2557800 ----a-w- c:\windows\system32\nvsvcr.dll

    2012-10-02 19:50 . 2012-02-05 20:53 118120 ----a-w- c:\windows\system32\nvmctray.dll

    2012-10-02 11:15 . 2012-10-02 11:15 430952 ----a-w- c:\windows\SysWow64\nvStreaming.exe

    2012-09-29 08:57 . 2012-09-29 08:57 3903488 ----a-w- c:\windows\system32\python33.dll

    2012-09-29 08:56 . 2012-09-29 08:56 93696 ----a-w- c:\windows\py.exe

    2012-09-29 08:55 . 2012-09-29 08:55 94208 ----a-w- c:\windows\pyw.exe

    2012-09-26 20:11 . 2012-04-02 16:00 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr

    2012-09-26 20:11 . 2012-03-20 09:15 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.exe

    2012-09-26 20:08 . 2012-03-20 09:15 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0

    2012-09-14 19:19 . 2012-10-09 19:43 2048 ----a-w- c:\windows\system32\tzres.dll

    2012-09-14 18:28 . 2012-10-09 19:43 2048 ----a-w- c:\windows\SysWow64\tzres.dll

    2012-09-12 13:57 . 2012-09-12 13:57 322048 ----a-w- c:\windows\WLXPGSS.SCR

    2012-09-03 17:39 . 2012-09-03 17:39 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll

    2012-08-31 18:19 . 2012-10-09 19:43 1659760 ----a-w- c:\windows\system32\drivers\ntfs.sys

    2012-08-30 20:03 . 2012-08-30 20:03 228768 ----a-w- c:\windows\system32\drivers\MpFilter.sys

    2012-08-30 20:03 . 2012-03-20 18:44 128456 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys

    2012-08-30 18:03 . 2012-10-09 19:43 5559664 ----a-w- c:\windows\system32\ntoskrnl.exe

    2012-08-30 17:12 . 2012-10-09 19:43 3968880 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe

    2012-08-30 17:12 . 2012-10-09 19:43 3914096 ----a-w- c:\windows\SysWow64\ntoskrnl.exe

    2012-08-24 18:05 . 2012-10-09 19:43 220160 ----a-w- c:\windows\system32\wintrust.dll

    2012-08-24 16:57 . 2012-10-09 19:43 172544 ----a-w- c:\windows\SysWow64\wintrust.dll

    2012-08-24 11:15 . 2012-09-23 21:09 17810944 ----a-w- c:\windows\system32\mshtml.dll

    2012-08-24 10:39 . 2012-09-23 21:09 10925568 ----a-w- c:\windows\system32\ieframe.dll

    2012-08-24 10:31 . 2012-09-23 21:09 2312704 ----a-w- c:\windows\system32\jscript9.dll

    2012-08-24 10:22 . 2012-09-23 21:09 1346048 ----a-w- c:\windows\system32\urlmon.dll

    2012-08-24 10:21 . 2012-09-23 21:09 1392128 ----a-w- c:\windows\system32\wininet.dll

    2012-08-24 10:20 . 2012-09-23 21:09 1494528 ----a-w- c:\windows\system32\inetcpl.cpl

    2012-08-24 10:18 . 2012-09-23 21:09 237056 ----a-w- c:\windows\system32\url.dll

    2012-08-24 10:17 . 2012-09-23 21:09 85504 ----a-w- c:\windows\system32\jsproxy.dll

    2012-08-24 10:14 . 2012-09-23 21:09 173056 ----a-w- c:\windows\system32\ieUnatt.exe

    2012-08-24 10:14 . 2012-09-23 21:09 816640 ----a-w- c:\windows\system32\jscript.dll

    2012-08-24 10:13 . 2012-09-23 21:09 599040 ----a-w- c:\windows\system32\vbscript.dll

    2012-08-24 10:12 . 2012-09-23 21:09 2144768 ----a-w- c:\windows\system32\iertutil.dll

    2012-08-24 10:11 . 2012-09-23 21:09 729088 ----a-w- c:\windows\system32\msfeeds.dll

    2012-08-24 10:10 . 2012-09-23 21:09 96768 ----a-w- c:\windows\system32\mshtmled.dll

    2012-08-24 10:09 . 2012-09-23 21:09 2382848 ----a-w- c:\windows\system32\mshtml.tlb

    2012-08-24 10:04 . 2012-09-23 21:09 248320 ----a-w- c:\windows\system32\ieui.dll

    2012-08-24 06:59 . 2012-09-23 21:09 1800704 ----a-w- c:\windows\SysWow64\jscript9.dll

    2012-08-24 06:51 . 2012-09-23 21:09 1129472 ----a-w- c:\windows\SysWow64\wininet.dll

    2012-08-24 06:51 . 2012-09-23 21:09 1427968 ----a-w- c:\windows\SysWow64\inetcpl.cpl

    2012-08-24 06:47 . 2012-09-23 21:09 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe

    2012-08-24 06:47 . 2012-09-23 21:09 420864 ----a-w- c:\windows\SysWow64\vbscript.dll

    2012-08-24 06:43 . 2012-09-23 21:09 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb

    2012-08-22 18:12 . 2012-09-12 17:39 1913200 ----a-w- c:\windows\system32\drivers\tcpip.sys

    2012-08-22 18:12 . 2012-09-12 17:39 950128 ----a-w- c:\windows\system32\drivers\ndis.sys

    2012-08-22 18:12 . 2012-09-12 17:39 376688 ----a-w- c:\windows\system32\drivers\netio.sys

    2012-08-22 18:12 . 2012-09-12 17:39 288624 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS

    2012-08-21 21:01 . 2012-09-26 14:52 245760 ----a-w- c:\windows\system32\OxpsConverter.exe

    2012-08-20 18:48 . 2012-10-09 19:43 362496 ----a-w- c:\windows\system32\wow64win.dll

    2012-08-20 18:48 . 2012-10-09 19:43 243200 ----a-w- c:\windows\system32\wow64.dll

    2012-08-20 18:48 . 2012-10-09 19:43 13312 ----a-w- c:\windows\system32\wow64cpu.dll

    2012-08-20 18:48 . 2012-10-09 19:43 215040 ----a-w- c:\windows\system32\winsrv.dll

    2012-08-20 18:48 . 2012-10-09 19:43 16384 ----a-w- c:\windows\system32\ntvdm64.dll

    2012-08-20 18:48 . 2012-10-09 19:43 424448 ----a-w- c:\windows\system32\KernelBase.dll

    2012-08-20 18:48 . 2012-10-09 19:43 1162240 ----a-w- c:\windows\system32\kernel32.dll

    2012-08-20 18:46 . 2012-10-09 19:43 338432 ----a-w- c:\windows\system32\conhost.exe

    2012-08-20 18:38 . 2012-10-09 19:43 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 3584 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll

    2012-08-20 18:38 . 2012-10-09 19:43 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]

    2012-09-20 20:06 87448 ----a-w- c:\program files (x86)\adawaretb\adawareDx.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]

    "{6c97a91e-4524-4019-86af-2aa2d567bf5c}"= "c:\program files (x86)\adawaretb\adawareDx.dll" [2012-09-20 87448]

    .

    [HKEY_CLASSES_ROOT\clsid\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]

    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 94208 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]

    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 94208 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]

    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 94208 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]

    @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 94208 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "KiesHelper"="c:\program files (x86)\Samsung\Kies\KiesHelper.exe" [2012-03-31 954256]

    "KiesPDLR"="c:\program files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-03-31 21392]

    "Spotify Web Helper"="c:\users\Verlaat\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-10-29 1199576]

    "DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTAgent.exe" [2011-08-17 4527424]

    "8E65411BBC708BE663EA58E8ECEC8EA7B5C21AE8._service_run"="c:\users\Verlaat\AppData\Local\Google\Chrome\Application\chrome.exe" [2012-10-31 1242136]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

    "Ad-Aware Antivirus"="c:\program files (x86)\Ad-Aware Antivirus\AdAwareLauncher --windows-run" [X]

    "IAStorIcon"="c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" [2011-05-20 284440]

    "WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2011-12-09 74752]

    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]

    "KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2012-03-31 3521424]

    "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-10-11 59280]

    "LWS"="c:\program files (x86)\Logitech\LWS\Webcam Software\LWS.exe" [2011-11-11 205336]

    "Ad-Aware Browsing Protection"="c:\programdata\Ad-Aware Browsing Protection\adawarebp.exe" [2012-08-08 540056]

    "AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]

    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]

    "SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]

    "Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [2012-07-27 36800]

    "Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2012-07-27 823224]

    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-10-25 421888]

    .

    c:\users\Verlaat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\

    Dropbox.lnk - c:\users\Verlaat\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-5-24 27112840]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "ConsentPromptBehaviorAdmin"= 0 (0x0)

    "ConsentPromptBehaviorUser"= 3 (0x3)

    "EnableLUA"= 0 (0x0)

    "EnableUIADesktopToggle"= 0 (0x0)

    "PromptOnSecureDesktop"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]

    "LoadAppInit_DLLs"=1 (0x1)

    "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]

    @="Ad-Aware Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]

    @="Service"

    .

    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

    R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-05-20 13592]

    R2 KMService;KMService;c:\windows\system32\srvany.exe [x]

    R2 SBAMSvc;Ad-Aware;c:\program files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [2011-12-19 3289032]

    R2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-10-05 2655768]

    R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [2010-04-06 31272]

    R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-02-24 99384]

    R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [x]

    R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [2012-02-21 21712]

    R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-03-16 1431888]

    R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 40832]

    R3 netr28x;Ralink 802.11n stuurprogramma voor draadloze netwerken voor Windows Vista;c:\windows\system32\DRIVERS\netr28x.sys [x]

    R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456]

    R3 NisSrv;Microsoft Netwerkinspectie;c:\program files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896]

    R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]

    R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 31800]

    R3 SBFWIMCL;GFI Software Firewall NDIS IM Filter Service;c:\windows\system32\DRIVERS\sbfwim.sys [2011-09-29 119416]

    R3 sbhips;sbhips;c:\windows\system32\drivers\sbhips.sys [2011-12-19 60536]

    R3 sbwtis;sbwtis;c:\windows\system32\DRIVERS\sbwtis.sys [2011-12-19 84600]

    R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-02-24 203320]

    R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]

    R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

    R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-02-06 1255736]

    R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]

    S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]

    S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [2011-01-10 21104]

    S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-06-28 271424]

    S1 SbFw;SbFw;c:\windows\system32\drivers\SbFw.sys [2011-12-19 256632]

    S1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [2011-10-26 57976]

    S2 Ad-Aware Service;Ad-Aware Service;c:\program files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2012-09-20 1236368]

    S2 ArcGIS License Manager;ArcGIS License Manager;c:\progra~2\ESRI\License\arcgis9x\lmgrd.exe [2012-10-16 1431440]

    S2 MBAMScheduler;MBAMScheduler;d:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-29 399432]

    S2 MBAMService;MBAMService;d:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-29 676936]

    S2 Realtek11nSU;Realtek11nSU;c:\program files (x86)\SITECOM\300N USB Wireless LAN Utility\RtlService.exe [2010-04-16 36864]

    S2 sbapifs;sbapifs;c:\windows\system32\DRIVERS\sbapifs.sys [2011-11-29 74872]

    S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]

    S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-01-18 450848]

    S3 CompFilter64;UVCCompositeFilter;c:\windows\system32\DRIVERS\lvbflt64.sys [2012-01-18 25632]

    S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;c:\windows\system32\Drivers\EtronHub3.sys [2011-07-29 56960]

    S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;c:\windows\system32\Drivers\EtronXHCI.sys [2011-07-29 79104]

    S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]

    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\DRIVERS\LEqdUsb.Sys [2011-09-02 76056]

    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\DRIVERS\LHidEqd.Sys [2011-09-02 15128]

    S3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys [2012-01-18 351136]

    S3 LVUVC64;Logitech HD Webcam C510(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys [2012-01-18 4865568]

    S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-09-29 25928]

    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-01 535656]

    S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [2010-11-25 694888]

    S3 SBFWIMCLMP;GFI Software Firewall NDIS IM Filter Miniport;c:\windows\system32\DRIVERS\SBFWIM.sys [2011-09-29 119416]

    .

    .

    --- Andere Services/Drivers In Geheugen ---

    .

    *NewlyCreated* - WS2IFSL

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2012-11-13 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-01 21:12]

    .

    2012-11-12 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1166578139-4082696870-3657603910-1000Core.job

    - c:\users\Verlaat\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-05 06:15]

    .

    2012-11-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1166578139-4082696870-3657603910-1000UA.job

    - c:\users\Verlaat\AppData\Local\Google\Update\GoogleUpdate.exe [2012-02-05 06:15]

    .

    .

    --------- X64 Entries -----------

    .

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]

    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 97792 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]

    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 97792 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]

    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 97792 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]

    @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"

    [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]

    2012-01-18 18:49 97792 ----a-w- c:\users\Verlaat\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-07-21 12632168]

    "RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-07-13 2264168]

    "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]

    "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-03-19 170264]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-03-19 398616]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2012-03-19 439064]

    "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 1289704]

    "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLs"=c:\windows\System32\nvinitx.dll

    .

    ------- Bijkomende Scan -------

    .

    uLocal Page = c:\windows\system32\blank.htm

    mLocal Page = c:\windows\SysWOW64\blank.htm

    IE: &Verzenden naar OneNote - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105

    IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000

    TCP: DhcpNameServer = 192.168.0.1

    FF - ProfilePath - c:\users\Verlaat\AppData\Roaming\Mozilla\Firefox\Profiles\oq05vpw9.default\

    FF - prefs.js: network.proxy.type - 0

    FF - ExtSQL: 2012-09-24 15:38; testpilot@labs.mozilla.com; c:\users\Verlaat\AppData\Roaming\Mozilla\Firefox\Profiles\oq05vpw9.default\extensions\testpilot@labs.mozilla.com.xpi

    FF - ExtSQL: 2012-10-14 19:44; {87934c42-161d-45bc-8cef-ef18abe2a30c}; c:\users\Verlaat\AppData\Roaming\Mozilla\Firefox\Profiles\oq05vpw9.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c}

    FF - ExtSQL: 2012-10-14 19:44; jid1-yZwVFzbsyfMrqQ@jetpack; c:\users\Verlaat\AppData\Roaming\Mozilla\Firefox\Profiles\oq05vpw9.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack

    FF - ExtSQL: 2012-10-31 21:33; web2pdfextension@web2pdf.adobedotcom; c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Wow6432Node-HKCU-Run-AdobeBridge - (no file)

    Wow6432Node-HKLM-Run-<NO NAME> - (no file)

    AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe

    AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc.exe

    .

    .

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_USERS\S-1-5-21-1166578139-4082696870-3657603910-1000\Software\G*e*n*i*e*"!\FM Genie Scout 12]

    "GameDir"="c:\\Users\\Verlaat\\Documents\\Sports Interactive\\Football Manager 2012\\games"

    "ShortlistDir"="c:\\Users\\Verlaat\\Documents\\Sports Interactive\\Football Manager 2012\\shortlists"

    "FMPath"="d:\\steam\\steamapps\\common\\football manager 2012\\"

    "ScreenshotsDir"="c:\\Users\\Verlaat\\Documents\\Sports Interactive\\Football Manager 2012"

    "SaveDir"="c:\\Users\\Verlaat\\Documents\\Sports Interactive\\Football Manager 2012\\"

    "HistoryDir"="d:\\Games\\FM Genie Scout 12\\History Points"

    "LangDB"="d:\\steam\\steamapps\\common\\football manager 2012\\data\\db\\1200\\lang_db.dat"

    "LastSaveGame"=""

    "Language"="English"

    "LoadLangDB"=dword:00000001

    "CompressHistoryPoints"=dword:00000000

    "HighlightedAttributes"=dword:00000000

    "MinCondition"=dword:0000005a

    "GraphStep"=dword:00000000

    "SkinName"="Steklo Black"

    "LastUpdateCheck"=dword:0000a0bb

    "VersionOf201"=dword:0000007b

    "HighQualityGUI"=dword:00000001

    "AutomaticallyUpdateCheck"=dword:00000001

    "AdvancedGeneration"=dword:00000000

    "TranslateStaffSkills"=dword:00000001

    "TranslatePlayerSkills"=dword:00000001

    "TranslatePositions"=dword:00000001

    "ShowHistory"=dword:00000001

    "ShowGuidNotification"=dword:00000000

    "ShowDonateNotification"=dword:00000000

    "Version"=dword:000000ce

    "UniqueID"="E6-ADB0-E40F"

    "UseProxy"=dword:00000000

    "ProxyHost"=""

    "ProxyPort"=""

    "UseAuthentication"=dword:00000000

    "UserName"=""

    "UserPassword"=""

    "PlayerSearchFeatureNum"=dword:00000006

    "StaffSearchFeatureNum"=dword:00000001

    "ClubSearchFeatureNum"=dword:00000003

    "FilterByClubFeatureNum"=dword:00000000

    "CompareFeatureNum"=dword:00000000

    "ShortlistFeatureNum"=dword:00000002

    "ExportFeatureNum"=dword:00000000

    "HistoryFeatureNum"=dword:00000000

    "LanguageDBFeatureNum"=dword:00000008

    "HintsFeatureNum"=dword:00000000

    "GenieReportFeatureNum"=dword:00000002

    "TopFormationFeatureNum"=dword:00000003

    "ScreenshotFeatureNum"=dword:00000000

    "AdClicksNum"=dword:00000000

    "AdImpressionsNum"=dword:00000018

    "GameLoadedCounter"=dword:0000000c

    "Currency"=dword:0000001c

    .

    [HKEY_USERS\S-1-5-21-1166578139-4082696870-3657603910-1000\Software\SecuROM\License information*]

    "datasecu"=hex:9f,87,a7,eb,57,c2,72,c3,92,e6,73,fe,1f,e4,f0,4d,70,52,77,37,72,

    35,3a,46,a7,6e,ab,6d,0d,69,4e,d1,3f,ec,ab,04,18,f5,77,16,0a,46,56,1d,b7,64,\

    "rkeysecu"=hex:fa,86,4a,36,7f,6b,81,21,46,bb,e1,4c,22,4d,fa,d7

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

    @Denied: (A 2) (Everyone)

    @="FlashBroker"

    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe,-101"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

    "Enabled"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

    @Denied: (A 2) (Everyone)

    @="IFlashBroker5"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

    @="{00020424-0000-0000-C000-000000000046}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    "Version"="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

    @Denied: (A 2) (Everyone)

    @="FlashBroker"

    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

    "Enabled"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Shockwave Flash Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

    @="0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

    @="ShockwaveFlash.ShockwaveFlash.11"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="ShockwaveFlash.ShockwaveFlash"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

    @Denied: (A 2) (Everyone)

    @="Macromedia Flash Factory Object"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"

    "ThreadingModel"="Apartment"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

    @="FlashFactory.FlashFactory.1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

    @="1.0"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

    @="FlashFactory.FlashFactory"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

    @Denied: (A 2) (Everyone)

    @="IFlashBroker5"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

    @="{00020424-0000-0000-C000-000000000046}"

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    "Version"="1.0"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

    @Denied: (Full) (Everyone)

    .

    ------------------------ Andere Aktieve Processen ------------------------

    .

    c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

    c:\progra~2\ESRI\License\arcgis9x\ARCGIS.exe

    d:\website laus deo\xampp\filezillaftp\filezillaserver.exe

    c:\windows\SysWOW64\PnkBstrA.exe

    c:\program files (x86)\SITECOM\300N USB Wireless LAN Utility\RtWlan.exe

    d:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

    c:\program files (x86)\DAEMON Tools Pro\DTShellHlp.exe

    .

    **************************************************************************

    .

    Voltooingstijd: 2012-11-13 21:03:42 - machine werd herstart

    ComboFix-quarantined-files.txt 2012-11-13 20:03

    .

    Pre-Run: 12.418.957.312 bytes beschikbaar

    Post-Run: 11.680.661.504 bytes beschikbaar

    .

    - - End Of File - - 04CFF212D816793791FEFD0ED5426B01

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.