Ga naar inhoud

superavo

Lid
  • Items

    22
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door superavo

  1. Download HD Tune en sla het bestand op.

    Installeer HD Tune en start deze na de installatie op.

    HDTune-error-scan.png

    Vervolgens ga je naar het tabblad Error Scan, selecteer de harde schijf die je wil controleren en druk op Start.

    De controle kan een hele tijd in beslag nemen afhankelijk van de grootte van de te controleren harde schijf.

    Wat is het resultaat van deze test?

    En voer ook even het volgende uit.

    We gaan het geheugen in je pc eens aan de tand voelen met Memtest86+.

    Hoe je dit uitvoert samen met een downloadlocatie vind je terug in deze handleiding.

    Wat is het resultaat van deze test?

    De scan van HD tune is OK. Geen errors.

    De Memtest moet ik nog doen. Ik kom (nog) niet in de BIOS. Wat bedoel je met POST scherm en hoe kom ik daar?

  2. Download en installeer Speccy.

    Speccy is er ook in Nederlandstalige versie, bij de installatie (of update) kan je de taal wijzigen van Engels naar Nederlands ... als je op het driehoekje klikt, krijg je een uitrolmenu waarin je Nederlands kan selecteren.

    Wanneer, tijdens het installeren van Speccy, de optie aangeboden wordt om Google Chrome of Google Toolbar "gratis" mee te installeren dien je de vinkjes weg te halen, tenzij dit een bewuste keuze is.

    525a111b37ea3-Speccy.PNG

    Start nu het programma en er zal een overzicht gemaakt worden van je hardware.

    Als dit gereed is selecteer je bovenaan "Bestand - Publiceer Snapshot" en vervolgens bevestig je die keuze met " Ja ".

    In het venster dat nu opent krijg je een link te zien, kopieer nu die link en plak die in je volgende bericht. Zo krijgen we een gedetailleerd overzicht van je hardware.

    Meer info over deze procedure lees je HIER.

    En voer even het volgende uit.

    Download Blue Screen View.

    Start het programma op.

    Je zal nu een overzicht krijgen van de laatste foutmeldingen en Minidumps (.dmp-bestand).

    Selecteer het eerste bestand uit de lijst onder Dump File en druk op Ctrl+A

    Klik vervolgens op File (Bestand) en daarna op Save Selected Items (geselecteerde items opslaan) (Ctrl+S)

    Sla het bestand op je bureaublad op.

    Voeg nu het bestand toe aan je volgend bericht.

    Hoe je een bijlage toevoegt aan een bericht, kan je lezen in deze handleiding.

    Speccy:

    http://speccy.piriform.com/results/xsDRYB5XCFD1TLTWBrhfs1B

    Blue screen view.txt

  3. Sinds een week krijg ik een paar keer per dag ineens een blauw scherm met o.a. de tekst "collecting data for crash dump"

    Middels de powerknop zet ik mijn laptop uit en weer aan en de boel start dan wel weer gewoon op.

    Kan iemand mij hier mee helpen?

  4. Deze regels mag je ook nog fixen met HijackThis:

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    Download 51a612a8b27e2-Zoek.pngzoek.exe naar het bureaublad.

    Schakel je antivirus- en antispywareprogramma's uit, mogelijk kunnen ze conflicteren met zoek.exe

    (hier of hier) kan je lezen hoe je dat doet.

    • Dubbelklik op Zoek.exe om de tool te starten.
    • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
    • Kopieer nu onderstaande code en plak die in het grote invulvenster:
    • Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkaardig probleem.

     
    startupall; 
    filesrcm; 
    resethosts;
    autoclean;
    

    • Klik nu op de knop "Run script".
    • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
    • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
    • Post het geopende logje in het volgende bericht.

    Hier de log van zoek.exe

    Zoek.exe Version 4.0.0.4 Updated 30-07-2013

    Tool run by Andre on di 30-07-2013 at 20:39:42,44.

    Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86

    Running in: Normal Mode Internet Access Detected

    Launched: C:\Users\Andre\Desktop\zoek.exe [script inserted]

    ==== System Restore Info ======================

    30-7-2013 20:42:14 Zoek.exe System Restore Point Created Succesfully.

    ==== Reset Hosts File ======================

    # Copyright © 1993-2006 Microsoft Corp.

    #

    # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.

    #

    # This file contains the mappings of IP addresses to host names. Each

    # entry should be kept on an individual line. The IP address should

    # be placed in the first column followed by the corresponding host name.

    # The IP address and the host name should be separated by at least one

    # space.

    #

    # Additionally, comments (such as these) may be inserted on individual

    # lines or following the machine name denoted by a '#' symbol.

    #

    # For example:

    #

    # 102.54.94.97 rhino.acme.com # source server

    # 38.25.63.10 x.acme.com # x client host

    # localhost name resolution is handle within DNS itself.

    127.0.0.1 localhost

    ::1 localhost

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-3514454443-3935416652-3608368878-1001\Software\Microsoft\Internet Explorer\SearchScopes\{47713696-1366-4331-A560-16470BA1BF9D} deleted successfully

    HKEY_USERS\S-1-5-21-3514454443-3935416652-3608368878-1001\Software\Microsoft\Internet Explorer\SearchScopes\{6D690B28-4810-41D9-9CE6-9B49D1BD3D1E} deleted successfully

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== FireFox Fix ======================

    ProfilePath: C:\Users\Andre\AppData\Roaming\Mozilla\Firefox\Profiles\0

    user.js not found

    ---- Lines Torntv removed from prefs.js ----

    ---- Lines Torntv modified from prefs.js ----

    ---- FireFox user.js and prefs.js backups ----

    prefs_30-07-2013_2045_.backup

    ==== Deleting Files \ Folders ======================

    "C:\Users\Andre\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions\torntv@torntv.com.xpi" deleted

    "C:\Users\Andre\Downloads\SweetImSetup.exe.c0cu2zb.partial" deleted

    "C:\Users\Andre\Downloads\SoftonicDownloader_voor_keepass-password-safe.exe.hucdnj4.partial" deleted

    "C:\Users\Andre\Downloads\SoftonicDownloader_voor_keepass-password-safe.exe.r09xs2k.partial" deleted

    "C:\Users\Andre\Downloads\SoftonicDownloader_voor_mp3directcut (1).exe" deleted

    "C:\Users\Andre\Downloads\SoftonicDownloader_voor_mp3directcut.exe.z8ajklj.partial" deleted

    "C:\Users\Andre\Downloads\SoftonicDownloader_voor_undercoverxp.exe" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====

    ====== C:\Users\Andre\AppData\Local\Temp ====

    2013-07-29 19:36:27 C50133123D591703A35C7949C699F510 3906656 ----a-w- C:\Users\Andre\AppData\Local\Temp\ConduitEngine.dll

    2013-07-28 18:59:01 5A8222C703B4A34F2227A652A49A2827 227984 ------r- C:\Users\Andre\AppData\Local\Temp\webcake_5202013-1058.exe

    ====== C:\Windows\system32 =====

    ====== C:\Windows\system32\drivers =====

    ====== C:\Windows\Tasks ======

    2013-07-14 10:52:49 BD159B20D72EFB69A11639A6A47A4F6F 3154 ----a-w- C:\Windows\system32\Tasks\SmartDefrag_Startup

    2013-07-14 10:52:48 BFE7E50BB04ABEDD965DA22CE7083901 3152 ----a-w- C:\Windows\system32\Tasks\SmartDefragUpdate

    ====== C:\Windows\Temp ======

    ======= C:\Program Files =====

    2013-07-29 17:48:25 -------- d-----w- C:\Program Files\Trend Micro

    2013-07-28 19:16:49 -------- d-----w- C:\Program Files\The Sea App (Internet Explorer)

    2013-07-28 19:15:49 -------- d-----w- C:\Program Files\ConverterLite

    2013-07-28 17:59:45 -------- d-----w- C:\Program Files\MyTomTom 3

    2013-07-20 08:51:42 -------- d-----w- C:\Program Files\iPod

    2013-07-20 08:51:41 -------- d-----w- C:\Program Files\iTunes

    2013-07-20 08:47:41 -------- d-----w- C:\Program Files\QuickTime

    ======= C: =====

    2013-07-29 20:28:49 B8C1A00F58761D2254D2BEF05CE60462 7129 ----a-w- C:\AdwCleaner[s1].txt

    ====== C:\Users\Andre\AppData\Roaming ======

    2013-07-28 19:15:51 -------- d-----w- C:\users\Andre\AppData\Roaming\ConverterLite

    ====== C:\Users\Andre ======

    2013-07-29 20:27:17 4C47469F47FD9F8437B62A86F6E0874F 666633 ----a-w- C:\Users\Andre\Desktop\adwcleaner.exe

    2013-07-28 19:15:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ConverterLite

    2013-07-28 19:12:29 8A4CBB9F4F34CEB542B6617A153DBF13 1900624 ----a-w- C:\Users\Andre\Downloads\converterlite_d3759437.exe

    2013-07-28 18:59:32 02C1EE40968BAA67C3A785CDA9807125 262 --sha-r- C:\Users\Andre\ntuser.pol

    2013-07-28 18:59:24 C767756F19F61EB7C1592E9B77FCF3E9 1060892 ----a-w- C:\Users\Andre\Downloads\FreeFLACToMP3Converter.exe

    2013-07-28 18:57:30 D39160AB60A14E420EBDA3C478FDF381 584600 ----a-w- C:\Users\Andre\Downloads\cbsidlm-tr1_13-Free_FLAC_to_MP3_Converter-ORG-75206134.exe

    2013-07-28 17:59:49 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom

    2013-07-28 17:58:58 8421BED7BD80E72DA2512BADA7F965AB 6684888 ----a-w- C:\Users\Andre\Downloads\InstallMyTomTomSA (1).exe

    2013-07-20 08:53:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes

    2013-07-20 08:51:41 -------- d-----w- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1

    2013-07-20 08:48:03 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime

    ====== C: exe-files ==

    2013-07-29 20:27:17 4C47469F47FD9F8437B62A86F6E0874F 666633 ----a-w- C:\Users\Andre\Desktop\adwcleaner.exe

    2013-07-28 19:15:51 030AD0F4687706BB47EA59FCCA40E123 315788 ----a-w- C:\Program Files\ConverterLite\uninstall-converterlite.exe

    2013-07-28 19:15:40 761F21E3A3CF5A0CC5B6D4755E604883 6656 ----atw- C:\Users\Andre\AppData\Local\Temp\CD417441\x86\regsvr32.exe

    2013-07-28 19:15:40 53A5941C1A5C73BE224288C5549AF5F8 7168 ----atw- C:\Users\Andre\AppData\Local\Temp\CD417441\x64\regsvr32.exe

    2013-07-28 19:15:22 F0F3706910D84499E7845934117022BA 55363 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\wajam_download.exe

    2013-07-28 19:15:14 05B45801FDE2A3F3B18C3D1A025E40F0 733558 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\the_sea_app-2.7 2.exe

    2013-07-28 19:14:57 2E1875503126630DC9D2810340ADE8B8 2226504 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\PCOptimizerProSetup_3.exe

    2013-07-28 19:13:42 363A4A68A86441777924DF8219AEB72C 489392 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\AskTB\APNSetup.V7.exe

    2013-07-28 19:12:29 8A4CBB9F4F34CEB542B6617A153DBF13 1900624 ----a-w- C:\Users\Andre\Downloads\converterlite_d3759437.exe

    2013-07-28 19:03:56 493AB07DA107C27E137305AA69A37055 1803 ----a-w- C:\Users\Andre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\089JFG0G\FFSetup3.1.1.0[1].exe

    2013-07-28 18:59:24 C767756F19F61EB7C1592E9B77FCF3E9 1060892 ----a-w- C:\Users\Andre\Downloads\FreeFLACToMP3Converter.exe

    2013-07-28 18:59:01 5A8222C703B4A34F2227A652A49A2827 227984 ------r- C:\Users\Andre\AppData\Local\Temp\webcake_5202013-1058.exe

    2013-07-28 18:57:30 D39160AB60A14E420EBDA3C478FDF381 584600 ----a-w- C:\Users\Andre\Downloads\cbsidlm-tr1_13-Free_FLAC_to_MP3_Converter-ORG-75206134.exe

    2013-07-28 17:59:36 27AE9A3382913C28BC0D6D0F7201D2AE 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$I2YS8NK.exe

    2013-07-28 17:59:30 89B965A5BAC3864C979D5F7AB345023E 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$IS8OA17.exe

    2013-07-28 17:59:28 579BCBEABD6E01B66733A267F6B25B50 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$IS9549S.exe

    2013-07-28 17:58:58 8421BED7BD80E72DA2512BADA7F965AB 6684888 ----a-w- C:\Users\Andre\Downloads\InstallMyTomTomSA (1).exe

    2013-07-28 17:58:51 8421BED7BD80E72DA2512BADA7F965AB 6684888 ----a-w- C:\Users\Andre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\L6VVRIY9\InstallMyTomTomSA[1].exe

    2013-07-28 17:58:43 855DEEB68FE01030B4442846AA4A9438 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$I9LOPZ3.exe

    2013-07-28 17:58:12 CF9AA729BB2BF63CED054ABA4E0AC7BA 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$IMZWVLA.exe

    2013-07-28 17:54:18 229F992A70708FAB32180B338418C312 30914760 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$R9LOPZ3.exe

    2013-07-27 11:43:46 8421BED7BD80E72DA2512BADA7F965AB 6684888 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-3514454443-3935416652-3608368878-1001\$R2YS8NK.exe

    === C: other files ==

    2013-07-28 19:13:42 BAEAA026E3334E5C12500C5C8F22A5AB 134082 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\SymCCIS.zip

    2013-07-28 19:13:42 75C1058F16C22D7B935AA84F0ABCAAC7 222583 ----a-w- C:\Users\Andre\AppData\Local\Temp\pkg_13dc1300\AskTB\asktbdet.zip

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

    [HKEY_USERS\S-1-5-21-3514454443-3935416652-3608368878-1001\Software\Microsoft\Windows\CurrentVersion\Run]

    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background"

    "KiesPreload"="C:\Program Files\Samsung\Kies\Kies.exe /preload"

    "KiesPDLR"="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

    "Spotify Web Helper"="C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

    "MyTomTomSA.exe"="C:\Program Files\MyTomTom 3\MyTomTomSA.exe"

    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "mctadmin"="C:\Windows\System32\mctadmin.exe"

    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "mctadmin"="C:\Windows\System32\mctadmin.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "IAStorIcon"="C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe"

    "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"

    "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s"

    "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    "WinampAgent"="C:\Program Files\Winamp\winampa.exe"

    "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    "APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

    "tsnpstd3"="C:\Windows\tsnpstd3.exe"

    "CameraFixer"="C:\WINDOWS\CameraFixer.exe"

    "AdobeAAMUpdater-1.0"="C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    "SwitchBoard"="C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"

    "AdobeCS5.5ServiceManager"="C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe -launchedbylogin"

    "Adobe Acrobat Speed Launcher"="C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"

    "Acrobat Assistant 8.0"="C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"

    "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"

    "ZoneAlarm"="C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"

    "MSC"="c:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey"

    "KiesTrayAgent"="C:\Program Files\Samsung\Kies\KiesTrayAgent.exe"

    "ISW"="C:\Program Files\CheckPoint\ZAForceField\ForceField.exe /icon=hidden"

    "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    "KeePass 2 PreLoad"="C:\Program Files\KeePass Password Safe 2\KeePass.exe --preload"

    "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe -atboottime"

    "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background"

    "KiesPreload"="C:\Program Files\Samsung\Kies\Kies.exe /preload"

    "KiesPDLR"="C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"

    "Spotify Web Helper"="C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

    "MyTomTomSA.exe"="C:\Program Files\MyTomTom 3\MyTomTomSA.exe"

    ==== Startup Registry Disabled ======================

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-]

    "Yadis"="c:\\program files\\codessentials\\yadis\\yadis.exe"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]

    "HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"

    "QuickTime Task"="\"C:\\Program Files\\QuickTime\\QTTask.exe\" -atboottime"

    "Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""

    "Adobe ARM"="\"C:\\Program Files\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

    "SunJavaUpdateSched"="\"C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe\""

    "AVG_TRAY"="C:\\Program Files\\AVG\\AVG10\\avgtray.exe"

    "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""

    ==== Startup Folders ======================

    2010-07-28 21:30:49 2073 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk

    ==== Task Scheduler Jobs ======================

    C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [27-07-2013 11:21]

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [05-04-2011 20:48]

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [05-04-2011 20:48]

    C:\Windows\tasks\WebReg HP Photosmart Wireless B109n-z.job --a------ C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exe [21-05-2009 20:40]

    ==== Firefox Extensions ======================

    ==== Firefox Plugins ======================

    ==== Chrome Look ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions

    hbcennhacfaagdopikcegfcobcadeocj - C:\Program Files\Common Files\Spigot\GC\saebay_1.0.crx[]

    icdlfehblmklkikfigmjhbmmpmkmpooj - C:\Program Files\Common Files\Spigot\GC\errorassistant_1.1.crx[]

    mhkaekfpcppmmioggniknbnbdbcigpkk - C:\Program Files\Common Files\Spigot\GC\coupons_2.4.crx[]

    pfndaklgolladniicklehhancnlgocpp - C:\Program Files\Common Files\Spigot\GC\saamazon_1.0.crx[]

    ==== Set IE to Default ======================

    Old Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Start Page"="Google"

    "Default_Page_URL"="http://www.medion.com"

    New Values:

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

    "Default_Page_URL"="MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!"

    "Start Page"="Google"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes

    "DefaultScope"="{272D6C85-6FF6-4476-A3FC-D1FC9D15AA6B}"

    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="{searchTerms} - Bing"

    {22CD1586-7B39-464A-8921-1F53BC9747F8} Yahoo//nl.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=902615&p={searchTerms}"

    {272D6C85-6FF6-4476-A3FC-D1FC9D15AA6B} Bing Url="{searchTerms} - Bing"

    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="{searchTerms} - Google Search}"

    ==== Deleting Registry Keys ======================

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk deleted successfully

    HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp deleted successfully

    ==== Empty IE Cache ======================

    C:\Users\Andre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully

    C:\Users\Andre\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\LocalService\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

    C:\Users\Andre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    ==== Empty FireFox Cache ======================

    No FireFox Cache found

    ==== Empty Chrome Cache ======================

    No Chrome User Data found

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== After Reboot ======================

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied

    C:\Users\Andre\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== Deleting Files / Folders ======================

    "C:\Users\Andre\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

    "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

    ==== EOF on di 30-07-2013 at 20:59:49,22 ======================

  5. Ga naar Start-Configuratiescherm-Programma's verwijderen en verwijder daar:

    IObit Apps Toolbar

    uTorrentBar

    ConduitEngine

    OApps

    PC Optimizer Pro

    Herstart de computer.

    Ga naar Start - Alle Programma's - Bureau-accessoires - Opdrachtprompt

    Windows Vista/7 gebruikers dienen de opdrachtprompt Als Administrator uit te voeren via het rechtsklik menu.

    Tik in: sc stop "Application Updater" gevolgd door Enter.

    Tik in: sc delete "Application Updater" gevolgd door Enter.

    Tik in: sc stop "DefaultTabUpdate" gevolgd door Enter.

    Tik in: sc delete "DefaultTabUpdate" gevolgd door Enter.

    Tik in: Exit om het venster te sluiten.

    Als je op een van deze instructies een foutmelding krijgt, ga dan gewoon door met de volgende instructie en laat ons weten welke foutmelding je kreeg.

    Start Hijackthis op. Selecteer “Scan”. Selecteer alleen de items die hieronder zijn genoemd (indien nog aanwezig):

    R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    R3 - URLSearchHook: (no name) - {91da5e8a-3318-4f8c-b67e-5964de3ab546} - (no file)

    O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O2 - BHO: HelloWorldBHO - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - C:\Program Files\OApps\SelectionLinks.dll

    O2 - BHO: DefaultTabBHO - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Andre\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll

    O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    O4 - HKLM\..\Run: [searchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"

    O4 - HKLM\..\Run: [PC Optimizer Pro] "C:\Program Files\PC Optimizer Pro\StartApps.exe" "C:\Program Files\PC Optimizer Pro\PCOptimizerPro.exe -w32"

    Klik op 'Fix checked' om de items te verwijderen.

    Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\Program Files\Trend Micro\HiJackThis of C:\Program Files (x86)\Trend Micro\HiJackThis.

    Download adwcleaner.pngAdwCleaner by Xplode naar het bureaublad.

    • Sluit alle openstaande vensters.
    • Dubbelklik op AdwCleaner om hem te starten.
    • Klik vervolgens op Verwijderen.
    • Klik bij AdwCleaner – Informatie op OK
    • Klik bij AdwCleaner – Herstarten Noodzakelijk op OK

    Dat tijdens de actie de snelkoppelingen verdwijnen, is normaal.

    Nadat de PC opnieuw is opgestart, opent een logfile.

    Post aansluitend de inhoud van dit log in je volgende bericht, samen met een nieuw HijackThis log.

    Alles gedaan. Bij de opdrachtprompt kreeg ik de volgende meldingen:

    Tik in: sc stop "Application Updater" gevolgd door Enter. Open service mislukt 1060. de opgegeven service is geen geinstalleerde service

    Tik in: sc delete "Application Updater" gevolgd door Enter. Open service mislukt 1060. de opgegeven service is geen geinstalleerde service

    Tik in: sc stop "DefaultTabUpdate" gevolgd door Enter. Open service mislukt 5

    Tik in: sc delete "DefaultTabUpdate" gevolgd door Enter.Open service mislukt 5

    Log van AdwCleaner:

    # AdwCleaner v2.306 - Verslag gemaakt op 29/07/2013 om 22:28:49

    # Geactualiseerd op 19/07/2013 door Xplode

    # Besturingssysteem : Windows 7 Home Premium Service Pack 1 (32 bits)

    # Gebruiker : Andre - ANDRE-PC

    # Opstarten Modus : Normale modus

    # Gelanceerd vanaf : C:\Users\Andre\Desktop\adwcleaner.exe

    # Optie [Verwijderen]

    ***** [Diensten] *****

    Gestopt & Verwijdert : DefaultTabUpdate

    ***** [Files / Mappen] *****

    File Verwijderd : C:\Users\Andre\AppData\Local\Temp\Uninstall.exe

    Map Verwijderd : C:\Program Files\Common Files\spigot

    Map Verwijderd : C:\Program Files\OApps

    Map Verwijderd : C:\Program Files\TornTV.com

    Map Verwijderd : C:\Program Files\uTorrentBar

    Map Verwijderd : C:\ProgramData\APN

    Map Verwijderd : C:\ProgramData\Tarma Installer

    Map Verwijderd : C:\Users\Andre\AppData\Local\Conduit

    Map Verwijderd : C:\Users\Andre\AppData\Local\Temp\Wajam

    Map Verwijderd : C:\Users\Andre\AppData\LocalLow\Conduit

    Map Verwijderd : C:\Users\Andre\AppData\LocalLow\uTorrentBar

    Map Verwijderd : C:\Users\Andre\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar

    Map Verwijderd : C:\Users\Andre\AppData\Roaming\DefaultTab

    Map Verwijderd : C:\Users\Andre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com

    ***** [Register] *****

    Sleutel Verwijderd : HKCU\Software\1ClickDownload

    Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\ConduitSearchScopes

    Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\DefaultTab

    Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\Search Settings

    Sleutel Verwijderd : HKCU\Software\AppDataLow\Software\uTorrentBar

    Sleutel Verwijderd : HKCU\Software\AppDataLow\Toolbar

    Sleutel Verwijderd : HKCU\Software\Default Tab

    Sleutel Verwijderd : HKCU\Software\DefaultTab

    Sleutel Verwijderd : HKCU\Software\jZip

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{365C2D81-F0EC-4685-A7C1-7955AC9631F3}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

    Sleutel Verwijderd : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}

    Sleutel Verwijderd : HKCU\Software\Softonic

    Sleutel Verwijderd : HKCU\Software\YahooPartnerToolbar

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\AppID\secman.DLL

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{365C2D81-F0EC-4685-A7C1-7955AC9631F3}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Conduit.Engine

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser.1

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX.1

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Toolbar.CT2645238

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\Toolbar.CT2786678

    Sleutel Verwijderd : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}

    Sleutel Verwijderd : HKLM\Software\Conduit

    Sleutel Verwijderd : HKLM\Software\Default Tab

    Sleutel Verwijderd : HKLM\SOFTWARE\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf

    Sleutel Verwijderd : HKLM\Software\Iminent

    Sleutel Verwijderd : HKLM\Software\InstallIQ

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DB2A87F-3D92-4A29-B050-1E340E5648DA}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{365C2D81-F0EC-4685-A7C1-7955AC9631F3}

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}

    Sleutel Verwijderd : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab

    Sleutel Verwijderd : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar

    Sleutel Verwijderd : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi

    Sleutel Verwijderd : HKLM\SOFTWARE\Software

    Sleutel Verwijderd : HKLM\Software\Tarma Installer

    Sleutel Verwijderd : HKLM\Software\uTorrentBar

    Waarde Verwijderd : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]

    Waarde Verwijderd : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]

    Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]

    Waarde Verwijderd : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]

    ***** [browsers] *****

    -\\ Internet Explorer v9.0.8112.16496

    [OK] Het register bevat geen enkele ongeoorloofde invoer.

    *************************

    AdwCleaner[s1].txt - [7000 octets] - [29/07/2013 22:28:49]

    ########## EOF - C:\AdwCleaner[s1].txt - [7060 octets] ##########

    Nieuwe Hijack:

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 22:41:45, on 29-7-2013

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16496)

    Boot mode: Normal

    Running processes:

    C:\Program Files\CheckPoint\ZAForceField\ForceField.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\taskhost.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe

    C:\Windows\Explorer.EXE

    C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

    C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Program Files\Winamp\winampa.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

    C:\Windows\tsnpstd3.exe

    C:\Windows\CameraFixer.exe

    C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe

    C:\Program Files\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe

    C:\Program Files\Microsoft Security Client\msseces.exe

    C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Windows Live\Messenger\msnmsgr.exe

    C:\Program Files\Samsung\Kies\Kies.exe

    C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

    C:\Program Files\MyTomTom 3\MyTomTomSA.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    C:\Windows\system32\NOTEPAD.EXE

    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe

    C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.medion.com

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: 213.203.216.114 marketsamurai.com

    O1 - Hosts: 204.9.178.11 typepad.com

    O1 - Hosts: 74.113.152.32 istockphoto.com

    O1 - Hosts: 208.94.0.38 yfrog.com

    O1 - Hosts: 123.125.50.22 126.com

    O1 - Hosts: 24.29.138.10 telegraph.co.uk

    O1 - Hosts: 174.36.28.11 SlideShare.com

    O1 - Hosts: 213.238.60.190 xing.com

    O1 - Hosts: 59.106.98.139 seesaa.net

    O1 - Hosts: 184.72.253.170 hootsuite.com

    O1 - Hosts: 211.151.146.16 soku.com

    O1 - Hosts: 74.208.73.101 qvc.com

    O1 - Hosts: 67.221.174.30 tagged.com

    O1 - Hosts: 72.32.120.222 metacafe.com

    O1 - Hosts: 204.11.109.133 tribalfusion.com

    O1 - Hosts: 207.154.14.31 tripadvisor.com

    O1 - Hosts: 216.52.240.133 ustream.tv

    O1 - Hosts: 174.36.244.132 linkwithin.com

    O1 - Hosts: 80.82.137.230 thefreedictionary.com

    O1 - Hosts: 121.67.203.61 scan.novirusthanks.org

    O1 - Hosts: 209.172.34.139 imagevenue.com

    O1 - Hosts: 91.206.232.220 booking.com

    O1 - Hosts: 118.69.251.6 vnexpress.net

    O1 - Hosts: 64.34.110.174 plentyoffish.com

    O1 - Hosts: 140.211.166.21 drupal.org

    O1 - Hosts: 208.85.40.80 pandora.com

    O1 - Hosts: 194.116.241.57 softonic.com

    O1 - Hosts: 208.83.243.15 match.com

    O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll

    O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll

    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

    O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll

    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

    O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

    O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe

    O4 - HKLM\..\Run: [CameraFixer] C:\WINDOWS\CameraFixer.exe

    O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    O4 - HKLM\..\Run: [switchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"

    O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"

    O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

    O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: [iSW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [KeePass 2 PreLoad] "C:\Program Files\KeePass Password Safe 2\KeePass.exe" --preload

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload

    O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

    O4 - HKCU\..\Run: [MyTomTomSA.exe] "C:\Program Files\MyTomTom 3\MyTomTomSA.exe"

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

    O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe

    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe

    --

    End of file - 14422 bytes

  6. Dag superavo,

    welkom op PCH!

    1. Download HijackThis. (klik er op)

    De download start automatisch na 5 seconden.

    Bestand HijackThis.msi opslaan. Daarna kiezen voor "uitvoeren".

    Hijackthis wordt nu op je PC geïnstalleerd, een snelkoppeling wordt op je bureaublad geplaatst.

    Als je geen netwerkverbinding meer hebt, kan je de download doen met een andere PC en het bestand met een USB-stick overbrengen

    Als je enkel nog in veilige modus kan werken, moet je de executable (HijackThis.exe) downloaden. Dit kan je HIER doen.

    Sla deze op in een nieuwe map op de C schijf (bvb C:\\hijackthis) en start hijackthis dan vanaf deze map. De logjes kan je dan ook in die map terugvinden.


    2. Klik op de snelkoppeling om HijackThis te starten. (lees eerst de rode tekst hieronder!)

    Klik ofwel op "Do a systemscan and save a logfile", ofwel eerst op "Scan" en dan op "Savelog".

    Er opent een kladblokvenster, hou gelijktijdig de CTRL en A-toets ingedrukt, nu is alles geselecteerd. Hou gelijktijdig de CTRL en C-toets ingedrukt, nu is alles gekopieerd. Plak nu het HJT logje in je bericht door CTRL en V-toets.

    Krijg je een melding ""For some reason your system denied writing to the Host file ....", klik dan gewoon door op de OK-toets.

    Let op : Windows Vista & 7 gebruikers dienen HijackThis als “administrator” uit te voeren via rechtermuisknop “als administrator uitvoeren". Indien dit via de snelkoppeling niet lukt voer je HijackThis als administrator uit in de volgende map : C:\\Program Files\\Trend Micro\\HiJackThis of C:\\Program Files (x86)\\Trend Micro\\HiJackThis. (Bekijk hier de afbeelding ---> Klik hier)


    3. Na het plaatsen van je logje wordt dit door een expert nagekeken en hij begeleidt jou verder door het ganse proces.

    Tip!

    Wil je in woord en beeld weten hoe je een logje met HijackThis maakt en plaatst op het forum, klik dan HIER.

    Hi Jion,

    Hierbij mijn logfile.

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 20:36:11, on 29-7-2013

    Platform: Windows 7 SP1 (WinNT 6.00.3505)

    MSIE: Internet Explorer v9.00 (9.00.8112.16496)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\taskhost.exe

    C:\Program Files\CheckPoint\ZAForceField\ForceField.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\taskeng.exe

    C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe

    C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Program Files\Winamp\winampa.exe

    C:\Windows\tsnpstd3.exe

    C:\Windows\CameraFixer.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

    C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe

    C:\Program Files\HP\HP Software Update\hpwuschd2.exe

    C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe

    C:\Program Files\Microsoft Security Client\msseces.exe

    C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Samsung\Kies\Kies.exe

    C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

    C:\Program Files\MyTomTom 3\MyTomTomSA.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe

    C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe

    C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe

    C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.medion.com

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN NL: Hotmail, Outlook, Skype, Messenger, het laatste nieuws, entertainment en meer!

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    R3 - URLSearchHook: (no name) - {91da5e8a-3318-4f8c-b67e-5964de3ab546} - (no file)

    O1 - Hosts: 213.203.216.114 marketsamurai.com

    O1 - Hosts: 204.9.178.11 typepad.com

    O1 - Hosts: 74.113.152.32 istockphoto.com

    O1 - Hosts: 208.94.0.38 yfrog.com

    O1 - Hosts: 123.125.50.22 126.com

    O1 - Hosts: 24.29.138.10 telegraph.co.uk

    O1 - Hosts: 174.36.28.11 SlideShare.com

    O1 - Hosts: 213.238.60.190 xing.com

    O1 - Hosts: 59.106.98.139 seesaa.net

    O1 - Hosts: 184.72.253.170 hootsuite.com

    O1 - Hosts: 211.151.146.16 soku.com

    O1 - Hosts: 74.208.73.101 qvc.com

    O1 - Hosts: 67.221.174.30 tagged.com

    O1 - Hosts: 72.32.120.222 metacafe.com

    O1 - Hosts: 204.11.109.133 tribalfusion.com

    O1 - Hosts: 207.154.14.31 tripadvisor.com

    O1 - Hosts: 216.52.240.133 ustream.tv

    O1 - Hosts: 174.36.244.132 linkwithin.com

    O1 - Hosts: 80.82.137.230 thefreedictionary.com

    O1 - Hosts: 121.67.203.61 scan.novirusthanks.org

    O1 - Hosts: 209.172.34.139 imagevenue.com

    O1 - Hosts: 91.206.232.220 booking.com

    O1 - Hosts: 118.69.251.6 vnexpress.net

    O1 - Hosts: 64.34.110.174 plentyoffish.com

    O1 - Hosts: 140.211.166.21 drupal.org

    O1 - Hosts: 208.85.40.80 pandora.com

    O1 - Hosts: 194.116.241.57 softonic.com

    O1 - Hosts: 208.83.243.15 match.com

    O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll

    O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll

    O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll

    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

    O2 - BHO: HelloWorldBHO - {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - C:\Program Files\OApps\SelectionLinks.dll

    O2 - BHO: DefaultTabBHO - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Andre\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll

    O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll

    O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll

    O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll

    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll

    O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll

    O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Program Files\IObit Apps Toolbar\IE\7.1\iobitappsToolbarIE.dll

    O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

    O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe

    O4 - HKLM\..\Run: [CameraFixer] C:\WINDOWS\CameraFixer.exe

    O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    O4 - HKLM\..\Run: [switchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"

    O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"

    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

    O4 - HKLM\..\Run: [ZoneAlarm] "C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"

    O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

    O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe

    O4 - HKLM\..\Run: [iSW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [KeePass 2 PreLoad] "C:\Program Files\KeePass Password Safe 2\KeePass.exe" --preload

    O4 - HKLM\..\Run: [searchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [PC Optimizer Pro] "C:\Program Files\PC Optimizer Pro\StartApps.exe" "C:\Program Files\PC Optimizer Pro\PCOptimizerPro.exe -w32"

    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe /preload

    O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe

    O4 - HKCU\..\Run: [spotify Web Helper] "C:\Users\Andre\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"

    O4 - HKCU\..\Run: [MyTomTomSA.exe] "C:\Program Files\MyTomTom 3\MyTomTomSA.exe"

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file)

    O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

    O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O9 - Extra button: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    O9 - Extra 'Tools' menuitem: eBay.nl - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - (no file) (HKCU)

    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

    O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll

    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe

    O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

    O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe

    O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: DefaultTabUpdate - Unknown owner - C:\Users\Andre\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: ZoneAlarm LTD Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe

    O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe

    --

    End of file - 16820 bytes

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.