Ga naar inhoud

stanjespers

Lid
  • Items

    5
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door stanjespers

  1. Hallo nogmaals bedankt voor de tijd die je eraan besteed.

    Hier het log:

    ComboFix 13-11-12.01 - stan 14/11/2013 13:41:08.2.2 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.1013.408 [GMT 1:00]

    Gestart vanuit: c:\users\stan\Desktop\ComboFix.exe

    gebruikte Opdracht switches :: c:\users\stan\Desktop\CFScript.txt

    AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}

    SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}

    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2013-10-14 to 2013-11-14 ))))))))))))))))))))))))))))))

    .

    .

    2023-04-03 14:06 . 2023-04-03 14:06 135168 ----a-w- c:\windows\system32\vbSendMail.dll

    2013-11-14 12:59 . 2013-11-14 13:00 -------- d-----w- c:\users\stan\AppData\Local\temp

    2013-11-14 12:59 . 2013-11-14 12:59 -------- d-----w- c:\users\Default\AppData\Local\temp

    2013-11-12 22:39 . 2013-11-12 22:40 -------- d-----w- c:\program files\trend micro

    2013-11-12 22:39 . 2013-11-12 22:40 -------- d-----w- C:\rsit

    2013-11-03 20:56 . 2013-11-03 21:23 -------- d-----w- C:\Ford

    2013-11-03 20:23 . 2013-11-03 20:24 -------- d-----w- c:\program files\Paperless Converter

    2013-11-03 20:22 . 2011-02-16 23:09 18944 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\QWrite.dll

    2013-11-03 20:21 . 2012-01-11 01:20 30720 ----a-w- c:\windows\system32\plpv8x86.dll

    2013-11-03 20:21 . 2013-11-03 20:21 -------- d-----w- c:\program files\papierloos printenRarefind

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2013-10-21 23:13 . 2013-02-23 22:14 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe

    2013-10-21 23:13 . 2013-02-23 22:14 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2013-08-30 07:48 . 2013-03-18 23:26 177864 ----a-w- c:\windows\system32\drivers\aswVmm.sys

    2013-08-30 07:48 . 2010-08-13 12:48 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys

    2013-08-30 07:48 . 2010-08-13 12:48 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys

    2013-08-30 07:48 . 2013-03-18 23:26 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys

    2013-08-30 07:48 . 2011-06-19 21:23 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys

    2013-08-30 07:48 . 2010-08-13 12:48 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys

    2013-08-30 07:48 . 2010-08-13 12:48 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys

    2013-08-30 07:48 . 2010-08-13 12:47 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys

    2013-08-30 07:47 . 2010-08-13 12:46 41664 ----a-w- c:\windows\avastSS.scr

    2013-08-30 07:47 . 2010-08-13 12:45 229648 ----a-w- c:\windows\system32\aswBoot.exe

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]

    @="{472083B0-C522-11CF-8763-00608CC02F24}"

    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]

    2013-08-30 07:47 121968 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-08-14 1348904]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-11 133656]

    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-12-07 7766016]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-11 141848]

    "avast"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2013-08-30 4858968]

    "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]

    "Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]

    "RtHDVCpl"="RtHDVCpl.exe" [2006-11-07 3772416]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-11 166424]

    "BtTray"="c:\program files\Bleutooth\IVT Corporation\BlueSoleil\BtTray.exe" [2008-08-04 226816]

    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

    "DisableMonitoring"=dword:00000001

    .

    R3 ACSSCR;ACR38 Smart Card Reader;c:\windows\system32\DRIVERS\a38usb.sys [2013-02-21 35712]

    .

    .

    --- Andere Services/Drivers In Geheugen ---

    .

    *NewlyCreated* - WS2IFSL

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    rsmsvcs REG_MULTI_SZ ntmssvc

    WindowsMobile REG_MULTI_SZ wcescomm rapimgr

    LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr

    HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12

    hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]

    2013-10-17 11:48 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2013-11-12 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-23 23:13]

    .

    2013-10-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-14 09:54]

    .

    2013-10-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-14 09:54]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://www.google.be/

    mStart Page = hxxp://breedband.telenet.be

    mWindow Title = Telenet Internet

    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    IE: Verzenden via Bericht(&M)... - c:\program files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm

    IE: Verzenden via Bluetooth - c:\program files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm

    TCP: DhcpNameServer = 192.168.1.254

    FF - ProfilePath - c:\users\stan\AppData\Roaming\Mozilla\Firefox\Profiles\9dlez813.default\

    FF - prefs.js: browser.startup.homepage - Google

    FF - ExtSQL: !HIDDEN! 2010-04-20 22:36; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    SafeBoot-WudfPf

    SafeBoot-WudfRd

    .

    .

    .

    **************************************************************************

    .

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2013-11-14 13:59

    Windows 6.0.6002 Service Pack 2 NTFS

    .

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden: 0

    .

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    "MSCurrentCountry"=dword:000000b5

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    --------------------- DLLs Geladen Onder Lopende Processen ---------------------

    .

    - - - - - - - > 'Explorer.exe'(964)

    c:\windows\system32\BsMobileSDK.dll

    c:\windows\system32\BsLangInDepRes.dll

    c:\windows\system32\Bs2Res.dll

    .

    Voltooingstijd: 2013-11-14 14:05:35

    ComboFix-quarantined-files.txt 2013-11-14 13:05

    ComboFix2.txt 2013-11-13 20:02

    .

    Pre-Run: 23.575.764.992 bytes beschikbaar

    Post-Run: 23.433.666.560 bytes beschikbaar

    .

    - - End Of File - - 2A7EC815F381686EE52765C9AE249591

    5C616939100B85E558DA92B899A0FC36

    Ik hoop dat dit ons verder helpt

    Grtjes Stan.

  2. Hallo,

    zoals je mij hebt opgedragen heb ik eerst de volgende 2 onderdelen verwijderd:

    C:\Windows\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job

    C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job

    Het logfile waar je naar vraagt is denk ik het volgende:

    ComboFix 13-11-12.01 - stan 13/11/2013 20:29:56.1.2 - x86

    Gestart vanuit: c:\users\stan\Desktop\ComboFix.exe

    AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}

    SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}

    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    .

    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    c:\program files\proscan

    c:\program files\proscan\commlog.txt

    c:\program files\proscan\ProScan5-1.exe

    c:\program files\proscan\settings.dat

    c:\program files\proscan\vehicles.dat

    c:\program files\Uniblue\SpeedUpMyPC

    c:\program files\Uniblue\SpeedUpMyPC\intermediate_views.dat

    c:\program files\Uniblue\SpeedUpMyPC\latest_scan_results.xsl

    c:\program files\Uniblue\SpeedUpMyPC\library.dat

    c:\program files\Uniblue\SpeedUpMyPC\locale\br\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\de\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\dk\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\en\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\es\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\fi\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\fr\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\it\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\jp\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\nl\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\no\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\ru\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\locale\se\LC_MESSAGES\messages.mo

    c:\program files\Uniblue\SpeedUpMyPC\repair_transform.xsl

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\comtypes.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\cwebpage.dll.html

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\decorator.py.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\ordereddict.py.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\py2exe.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\python-changes.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\python.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\simplejson.txt

    c:\program files\Uniblue\SpeedUpMyPC\Third Party Terms\wmi.txt

    c:\program files\Uniblue\SpeedUpMyPC\unins000.dat

    c:\program files\Uniblue\SpeedUpMyPC\unins000.msg

    c:\program files\Uniblue\SpeedUpMyPC\views.dat

    c:\windows\IsUn0413.exe

    c:\windows\system32\encapi32.dll

    c:\windows\unin0407.exe

    E:\autorun.inf

    .

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2013-10-13 to 2013-11-13 ))))))))))))))))))))))))))))))

    .

    .

    2023-04-03 14:06 . 2023-04-03 14:06 135168 ----a-w- c:\windows\system32\vbSendMail.dll

    2013-11-13 19:56 . 2013-11-13 19:56 -------- d-----w- c:\users\stan\AppData\Local\temp

    2013-11-13 19:56 . 2013-11-13 19:56 -------- d-----w- c:\users\Default\AppData\Local\temp

    2013-11-12 22:39 . 2013-11-12 22:40 -------- d-----w- c:\program files\trend micro

    2013-11-12 22:39 . 2013-11-12 22:40 -------- d-----w- C:\rsit

    2013-11-03 20:56 . 2013-11-03 21:23 -------- d-----w- C:\Ford

    2013-11-03 20:23 . 2013-11-03 20:24 -------- d-----w- c:\program files\Paperless Converter

    2013-11-03 20:22 . 2011-02-16 23:09 18944 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\QWrite.dll

    2013-11-03 20:21 . 2012-01-11 01:20 30720 ----a-w- c:\windows\system32\plpv8x86.dll

    2013-11-03 20:21 . 2013-11-03 20:21 -------- d-----w- c:\program files\papierloos printenRarefind

    .

    .

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2013-10-21 23:13 . 2013-02-23 22:14 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe

    2013-10-21 23:13 . 2013-02-23 22:14 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2013-08-30 07:48 . 2013-03-18 23:26 177864 ----a-w- c:\windows\system32\drivers\aswVmm.sys

    2013-08-30 07:48 . 2010-08-13 12:48 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys

    2013-08-30 07:48 . 2010-08-13 12:48 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys

    2013-08-30 07:48 . 2013-03-18 23:26 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys

    2013-08-30 07:48 . 2011-06-19 21:23 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys

    2013-08-30 07:48 . 2010-08-13 12:48 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys

    2013-08-30 07:48 . 2010-08-13 12:48 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys

    2013-08-30 07:48 . 2010-08-13 12:47 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys

    2013-08-30 07:47 . 2010-08-13 12:46 41664 ----a-w- c:\windows\avastSS.scr

    2013-08-30 07:47 . 2010-08-13 12:45 229648 ----a-w- c:\windows\system32\aswBoot.exe

    .

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]

    @="{472083B0-C522-11CF-8763-00608CC02F24}"

    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]

    2013-08-30 07:47 121968 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll

    .

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

    .

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-08-14 1348904]

    "Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-11 133656]

    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-12-07 7766016]

    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-11 141848]

    "avast"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2013-08-30 4858968]

    "GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]

    "Monitor"="c:\windows\PixArt\PAC207\Monitor.exe" [2006-11-03 319488]

    "RtHDVCpl"="RtHDVCpl.exe" [2006-11-07 3772416]

    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-11 166424]

    "BtTray"="c:\program files\Bleutooth\IVT Corporation\BlueSoleil\BtTray.exe" [2008-08-04 226816]

    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

    @="Driver"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

    @="Driver"

    .

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

    @="Service"

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

    "DisableMonitoring"=dword:00000001

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

    "DisableMonitoring"=dword:00000001

    .

    R3 ACSSCR;ACR38 Smart Card Reader;c:\windows\system32\DRIVERS\a38usb.sys [2013-02-21 35712]

    .

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    rsmsvcs REG_MULTI_SZ ntmssvc

    WindowsMobile REG_MULTI_SZ wcescomm rapimgr

    LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr

    HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12

    hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    .

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]

    2013-10-17 11:48 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe

    .

    Inhoud van de 'Gedeelde Taken' map

    .

    2013-11-12 c:\windows\Tasks\Adobe Flash Player Updater.job

    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-23 23:13]

    .

    2013-10-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-14 09:54]

    .

    2013-10-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

    - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-14 09:54]

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://www.google.be/

    mStart Page = hxxp://breedband.telenet.be

    mWindow Title = Telenet Internet

    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    IE: Verzenden via Bericht(&M)... - c:\program files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm

    IE: Verzenden via Bluetooth - c:\program files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm

    TCP: DhcpNameServer = 192.168.1.254

    FF - ProfilePath - c:\users\stan\AppData\Roaming\Mozilla\Firefox\Profiles\9dlez813.default\

    FF - prefs.js: browser.search.selectedEngine - Ask.com

    FF - prefs.js: browser.startup.homepage - Google

    FF - ExtSQL: !HIDDEN! 2010-04-20 22:36; smartwebprinting@hp.com; c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

    .

    .

    ------- Bestandsassociaties -------

    .

    .scr=AutoCADScriptFile

    .

    - - - - ORPHANS VERWIJDERD - - - -

    .

    Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

    WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

    ShellIconOverlayIdentifiers-{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} - (no file)

    AddRemove-Adobe Acrobat 5.0 - c:\windows\ISUN0413.EXE

    .

    .

    .

    **************************************************************************

    .

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2013-11-13 20:56

    Windows 6.0.6002 Service Pack 2 NTFS

    .

    scannen van verborgen processen ...

    .

    scannen van verborgen autostart items ...

    .

    scannen van verborgen bestanden ...

    .

    Scan succesvol afgerond

    verborgen bestanden: 0

    .

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    "MSCurrentCountry"=dword:000000b5

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    Voltooingstijd: 2013-11-13 21:02:08

    ComboFix-quarantined-files.txt 2013-11-13 20:02

    .

    Pre-Run: 21.529.227.264 bytes beschikbaar

    Post-Run: 21.328.068.608 bytes beschikbaar

    .

    - - End Of File - - 3CFFC198094FFE0FE86329E00F801E68

    5C616939100B85E558DA92B899A0FC36

    Ik hoop dat je hier iets mee kan!

    Grt Stan.

    En alvast bedankt.

  3. Hallo, hier het door U gevraagde antwoord:

    Logfile of random's system information tool 1.09 (written by random/random)

    Run by stan at 2013-11-12 23:39:45

    Microsoft® Windows Vista™ Home Premium Service Pack 2

    System drive C: has 20 GB (27%) free of 76 GB

    Total RAM: 1013 MB (25% free)

    HijackThis download failed

    ======Scheduled tasks folder======

    C:\Windows\tasks\Adobe Flash Player Updater.job

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

    C:\Windows\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job

    C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job

    =========Mozilla firefox=========

    ProfilePath - C:\Users\stan\AppData\Roaming\Mozilla\Firefox\Profiles\9dlez813.default

    prefs.js - "browser.startup.homepage" - "www.google.be"

    "{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    "smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

    "wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF

    "belgiumeid@eid.belgium.be"=C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]

    "Description"=Adobe® Flash® Player 11.9.900.117 Plugin

    "Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]

    "Description"=Java™ Deployment Toolkit

    "Path"=C:\Windows\system32\npDeployJava1.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]

    "Description"=Oracle® Next Generation Java™ Plug-In

    "Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]

    "Description"=Ag Player Plugin

    "Path"=C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5]

    "Description"=Office Live Update v1.5

    "Path"=C:\Program Files\Microsoft\Office Live\npOLW.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]

    "Description"=WLPG Install MIME type

    "Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]

    "Description"=Windows Presentation Foundation plug-in for Mozilla browsers

    "Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]

    "Description"=Google Update

    "Path"=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]

    "Description"=Google Update

    "Path"=C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]

    "Description"=Handles PDFs in-place in Firefox

    "Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

    C:\Users\stan\AppData\Roaming\Mozilla\Firefox\Profiles\9dlez813.default\extensions\

    en-gb@flyingtophat.co.uk

    fr-dicollecte@dictionaries.addons.mozilla.org

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]

    HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]

    Adobe PDF Reader Help bij koppelingen - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2013-09-03 68480]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]

    Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

    Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

    Java Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-08-04 463272]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]

    avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-08-30 201784]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

    Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

    Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-08-04 171944]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]

    HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

    {CCC7A320-B3CA-4199-B1A6-9F516DD69829}

    {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-08-30 201784]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]

    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-08-14 1348904]

    "Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]

    "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2006-12-07 7766016]

    "IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]

    "avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2013-08-30 4858968]

    "GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

    "Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]

    "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2006-11-07 3772416]

    "HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]

    "BtTray"=C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BtTray.exe [2008-08-04 226816]

    "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

    "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]

    C:\Windows\system32\igfxdev.dll [2008-02-11 204800]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

    "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "dontdisplaylastusername"=0

    "legalnoticecaption"=

    "legalnoticetext"=

    "shutdownwithoutlogon"=1

    "undockwithoutlogon"=1

    "EnableUIADesktopToggle"=0

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

    "NoDriveTypeAutoRun"=145

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

    "BindDirectlyToPropertySetStorage"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    "vidc.mrle"=msrle32.dll

    "vidc.msvc"=msvidc32.dll

    "msacm.imaadpcm"=imaadp32.acm

    "msacm.msg711"=msg711.acm

    "msacm.msgsm610"=msgsm32.acm

    "msacm.msadpcm"=msadp32.acm

    "midimapper"=midimap.dll

    "wavemapper"=msacm32.drv

    "VIDC.UYVY"=msyuv.dll

    "VIDC.YUY2"=msyuv.dll

    "VIDC.YVYU"=msyuv.dll

    "VIDC.IYUV"=iyuv_32.dll

    "vidc.i420"=iyuv_32.dll

    "VIDC.YVU9"=tsbyuv.dll

    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm

    "vidc.cvid"=iccvid.dll

    "msacm.dvacm"=C:\PROGRA~1\COMMON~1\ULEADS~1\vio\dvacm.acm

    "msacm.siren"=sirenacm.dll

    "wave"=wdmaud.drv

    "midi"=wdmaud.drv

    "mixer"=wdmaud.drv

    "aux"=wdmaud.drv

    "MSVideo8"=VfWWDM32.dll

    "wave1"=wdmaud.drv

    "midi1"=wdmaud.drv

    "mixer1"=wdmaud.drv

    "aux1"=wdmaud.drv

    "wave2"=wdmaud.drv

    "midi2"=wdmaud.drv

    "mixer2"=wdmaud.drv

    "aux2"=wdmaud.drv

    "wave3"=wdmaud.drv

    "midi3"=wdmaud.drv

    "mixer3"=wdmaud.drv

    "aux3"=wdmaud.drv

    "wave4"=wdmaud.drv

    "midi4"=wdmaud.drv

    "mixer4"=wdmaud.drv

    "aux4"=wdmaud.drv

    "wave5"=wdmaud.drv

    "midi5"=wdmaud.drv

    "mixer5"=wdmaud.drv

    "aux5"=wdmaud.drv

    "wave6"=wdmaud.drv

    "midi6"=wdmaud.drv

    "mixer6"=wdmaud.drv

    "aux6"=wdmaud.drv

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1

    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    .scr - open - "C:\Windows\system32\notepad.exe" "%1"

    .scr - install -

    .scr - config -

    ======List of files/folders created in the last 3 months======

    2023-04-03 15:06:00 ----A---- C:\Windows\system32\vbSendMail.dll

    2013-11-12 23:39:47 ----D---- C:\Program Files\trend micro

    2013-11-12 23:39:45 ----D---- C:\rsit

    2013-11-03 21:56:06 ----D---- C:\Ford

    2013-11-03 21:23:29 ----D---- C:\Program Files\Paperless Converter

    2013-11-03 21:21:38 ----A---- C:\Windows\system32\plpv8x86.dll

    2013-11-03 21:21:05 ----D---- C:\Program Files\papierloos printenRarefind

    2013-10-31 15:13:09 ----D---- C:\Program Files\Mozilla Firefox

    ======List of files/folders modified in the last 3 months======

    2013-11-12 23:39:47 ----RD---- C:\Program Files

    2013-11-12 23:39:47 ----D---- C:\Windows\Prefetch

    2013-11-12 23:39:00 ----D---- C:\Windows\Temp

    2013-11-12 22:49:53 ----D---- C:\Windows\tracing

    2013-11-12 22:39:30 ----SHD---- C:\System Volume Information

    2013-11-12 22:20:43 ----D---- C:\Windows\Minidump

    2013-11-12 22:20:43 ----D---- C:\Windows\Debug

    2013-11-12 22:20:43 ----D---- C:\Windows

    2013-11-12 22:10:42 ----D---- C:\Users\stan\AppData\Roaming\Skype

    2013-11-12 21:51:38 ----SHD---- C:\Windows\Installer

    2013-11-12 21:41:33 ----D---- C:\Windows\System32

    2013-11-11 22:55:14 ----D---- C:\Windows\inf

    2013-11-11 22:55:14 ----A---- C:\Windows\system32\PerfStringBackup.INI

    2013-11-10 22:30:33 ----D---- C:\NOHAU

    2013-11-10 10:52:18 ----A---- C:\Windows\system32\LOCALSERVICE.INI

    2013-11-10 10:31:19 ----A---- C:\Windows\system32\REMOTEDEVICE.INI

    2013-11-10 10:31:17 ----A---- C:\Windows\system32\LOCALDEVICE.INI

    2013-11-10 10:31:17 ----A---- C:\Windows\system32\bscs.ini

    2013-11-05 18:51:20 ----D---- C:\Windows\system32\drivers

    2013-11-05 00:20:19 ----D---- C:\Program Files\Mozilla Maintenance Service

    2013-11-03 21:24:52 ----A---- C:\Windows\ricdb.ini

    2013-11-03 20:27:48 ----A---- C:\Windows\hpbafd.ini

    2013-10-27 14:31:43 ----D---- C:\ProgramData\pdf995

    2013-10-23 23:01:19 ----D---- C:\Windows\system32\catroot2

    2013-10-22 00:13:34 ----A---- C:\Windows\system32\FlashPlayerApp.exe

    2013-10-20 20:30:57 ----D---- C:\ProgramData\Skype

    2013-10-20 20:30:28 ----RD---- C:\Program Files\Skype

    2013-10-04 13:47:31 ----D---- C:\Program Files\Multiecuscan

    2013-09-17 22:16:43 ----D---- C:\Windows\system32\Tasks

    2013-08-30 08:47:32 ----A---- C:\Windows\system32\aswBoot.exe

    2013-08-16 18:14:17 ----D---- C:\Program Files\Toyota Diagnostics

    2013-08-16 18:12:49 ----D---- C:\Windows\system32\catroot

    2013-08-16 18:09:34 ----HD---- C:\Program Files\InstallShield Installation Information

    2013-08-16 18:07:29 ----D---- C:\Program Files\Common Files

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-08-30 49376]

    R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-08-30 177864]

    R0 BtHidBus;Bluetooth HID Bus Service; C:\Windows\System32\Drivers\BtHidBus.sys [2008-07-31 20616]

    R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2010-07-12 64288]

    R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-08-08 722416]

    R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2007-11-09 23640]

    R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2013-08-30 49760]

    R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-08-30 770344]

    R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-08-30 369584]

    R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-08-30 56080]

    R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-08-30 29816]

    R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-08-30 66336]

    R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2006-08-31 1161152]

    R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-07-29 919552]

    R3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2008-01-21 14600]

    R3 E100B;Intel® PRO-adapterstuurprogramma; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-19 159744]

    R3 FwLnk;FwLnk Driver; C:\Windows\system32\DRIVERS\FwLnk.sys [2006-11-19 7168]

    R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]

    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2006-11-17 1651752]

    R3 IvtBtBUs;IVT Bluetooth Bus Service; C:\Windows\System32\Drivers\IvtBtBus.sys [2008-07-02 26248]

    R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-19 8192]

    R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]

    R3 SNTNLUSB;SafeNet USB SuperPro/UltraPro/HardwareKey; C:\Windows\system32\DRIVERS\SNTNLUSB.SYS [2008-07-11 37088]

    R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-08-14 203312]

    R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2006-10-18 16128]

    R3 tifm21;tifm21; C:\Windows\system32\drivers\tifm21.sys [2006-07-06 168448]

    R3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2008-01-21 14856]

    R3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2008-07-02 29960]

    R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]

    S1 eusk2par;EUTRON SmartKey Parallel Driver; \??\C:\Windows\system32\Drivers\eusk2par.sys [2004-06-23 24786]

    S1 Tosrfcom;Tosrfcom; C:\Windows\system32\drivers\Tosrfcom.sys [2005-08-01 64896]

    S3 ACSSCR;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usb.sys [2013-02-21 35712]

    S3 BTCOM;Bluetooth Serial port driver; C:\Windows\system32\DRIVERS\btcomport.sys []

    S3 BTCOMBUS;Bluetooth Serial Port Bus Service; C:\Windows\System32\Drivers\btcombus.sys []

    S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2008-07-02 38920]

    S3 btnetBUs;Bluetooth PAN Bus Service; C:\Windows\System32\Drivers\btnetBus.sys [2010-04-06 25864]

    S3 cpuz132;cpuz132; \??\C:\Users\stan\AppData\Local\Temp\cpuz132\cpuz132_x32.sys []

    S3 Dot4;Microsoft IEEE-1284.4-stuurprogramma; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]

    S3 Dot4Print;Stuurprogramma voor printerklasse voor IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]

    S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]

    S3 drmkaud;Microsoft Kernel DRM-audiodecoder; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]

    S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2009-11-04 112640]

    S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-22 39272]

    S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2007-06-27 53184]

    S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2007-06-27 71488]

    S3 HdAudAddService;Microsoft 1.1 UAA Functiestuurprogramma voor High Definition Audio-service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]

    S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-11-04 102912]

    S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]

    S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys []

    S3 MOSUMAC;USB-Ethernet Driver; C:\Windows\system32\DRIVERS\MOSUMAC.SYS [2007-03-08 40448]

    S3 MSKSSRV;Microsoft Streaming Service-proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]

    S3 MSPCLOCK;Microsoft Streaming Clock-proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]

    S3 MSPQM;Microsoft Streaming Kwaliteitsbeheer Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]

    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]

    S3 NETw3v32;Stuurprogramma voor Intel® PRO/Wireless 3945ABG-adapter onder Windows Vista 32-bits; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-10-30 1786880]

    S3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2006-12-07 4456416]

    S3 PAC207;SoC PC-Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]

    S3 PAC7302;Telescope Driver; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-11-08 458752]

    S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]

    S3 RT-USB;Ross-Tech USB driver; C:\Windows\system32\drivers\RT-USB.sys [2010-06-16 59464]

    S3 Ser2pl;Prolific2 Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2005-11-04 48640]

    S3 STM32MS;HANTEK1008 Device; C:\Windows\system32\DRIVERS\HANTEK1008.sys [2008-08-20 29184]

    S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2006-11-21 113792]

    S3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2006-10-23 9216]

    S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2006-10-05 73600]

    S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2006-10-28 40960]

    S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]

    S3 USBCCID;USB Smart Card reader; C:\Windows\system32\DRIVERS\usbccid.sys [2013-02-21 29184]

    S3 usbscan;Stuurprogramma voor USB-scanner; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]

    S3 usbvideo;USB-videoapparaat (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]

    S3 WinDriver6;WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [2007-11-14 186592]

    S3 winusb;WinUsb-stuurprogramma; C:\Windows\system32\DRIVERS\winusb.sys [2009-07-14 34944]

    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]

    S4 KR10I;KR10I; C:\Windows\system32\drivers\kr10i.sys [2006-02-14 216320]

    S4 KR10N;KR10N; C:\Windows\system32\drivers\kr10n.sys [2006-02-14 208256]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]

    R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2013-08-30 46808]

    R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2006-11-14 40960]

    R2 COSIDS_TB;COSIDS_TB; C:\PROGRA~1\COSIDS\BIN\TbMux32.exe [2001-11-20 165376]

    R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    R2 RapiMgr;Windows Mobile-based device connectivity; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]

    R2 SentinelKeysServer;Sentinel Keys Server; C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [2008-07-11 328992]

    R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe [2009-08-14 9728]

    R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]

    R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2006-05-25 114688]

    R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2006-12-14 428152]

    R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-08-23 49152]

    R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    R2 WcesComm;Windows Mobile-2003-based device connectivity; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    R3 BlueSoleilCS;BlueSoleilCS; C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2011-11-06 775168]

    R3 BsHelpCS;BsHelpCS; C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BsHelpCS.exe [2008-08-01 69735]

    R3 BsMobileCS;BsMobileCS; C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467]

    R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

    S2 gupdate;Google Updateservice (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-14 136176]

    S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]

    S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]

    S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-09-05 171680]

    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-22 257416]

    S3 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2006-09-12 9216]

    S3 Autodata Limited License Service;Autodata Limited License Service; C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe [2011-02-27 72704]

    S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2008-02-01 77944]

    S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-22 1493352]

    S3 gupdatem;Google Update-service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-04-14 136176]

    S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    S3 hpqddsvc;HP CUE DeviceDiscovery-service; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]

    S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]

    S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-10-31 119408]

    S3 NtmsSvc;@%SystemRoot%\system32\ntmssvc.dll,-2; C:\Windows\system32\svchost.exe [2008-01-19 21504]

    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]

    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

    S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-09-08 575488]

    S3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2006-10-31 77824]

    S3 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]

    S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

    S4 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-02-18 129880]

    S4 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-02-18 129880]

    S4 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-02-18 129880]

    -----------------EOF-----------------

    Hopelijk kan je mij daar mee verder helpen.

    Alvast bedankt

    Grt Stan.

  4. Hallo,

    Ik heb bijna continu een hoog fysiek geheugen. Hiermee bedoel ik boven de 700MB.

    1G RAM, 1.60 GHz

    Ik ben zo vrij geweest om al een HiJackThis logje te maken. Wat kan ik doen om mijn laptop iets vlotter te laten draaien?

    Alvast bedankt!

    Logfile of Trend Micro HijackThis v2.0.5

    Scan saved at 22:36:59, on 12/11/2013

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v9.00 (9.00.8112.16464)

    FIREFOX: 25.0 (nl)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\taskeng.exe

    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    C:\Windows\System32\igfxpers.exe

    C:\Windows\System32\igfxtray.exe

    C:\Program Files\Alwil Software\Avast5\AvastUI.exe

    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

    C:\Windows\PixArt\Pac207\Monitor.exe

    C:\Windows\RtHDVCpl.exe

    C:\Windows\System32\hkcmd.exe

    C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BtTray.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Windows\ehome\ehtray.exe

    C:\Windows\system32\igfxsrvc.exe

    C:\Program Files\Synaptics\SynTP\SynToshiba.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Windows\System32\mobsync.exe

    C:\Windows\system32\wuauclt.exe

    C:\Program Files\MSWorks\msworks.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Users\stan\Downloads\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Zita

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Zita

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Zita

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Telenet Internet

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://pac.telenet.be:8080

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: ::1 localhost

    O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll

    O2 - BHO: Adobe PDF Reader Help bij koppelingen - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

    O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll

    O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll

    O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)

    O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll

    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

    O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

    O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui

    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

    O4 - HKLM\..\Run: [Monitor] C:\Windows\PixArt\PAC207\Monitor.exe

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

    O4 - HKLM\..\Run: [btTray] "C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BtTray.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

    O8 - Extra context menu item: Verzenden via Bericht(&M)... - C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm

    O8 - Extra context menu item: Verzenden via Bluetooth - C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm

    O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

    O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

    O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - Elektronica, Auto's, Mode, Verzamelobjecten, Coupons en Meer | eBay (file missing)

    O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe

    O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe

    O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe

    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

    O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BlueSoleilCS.exe

    O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BsHelpCS.exe

    O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\Bleutooth\IVT Corporation\BlueSoleil\BsMobileCS.exe

    O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe

    O23 - Service: COSIDS_TB - TransAction Software, D 81737 Munich - C:\PROGRA~1\COSIDS\BIN\TbMux32.exe

    O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

    O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

    O23 - Service: Sentinel Keys Server (SentinelKeysServer) - SafeNet, Inc. - C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe

    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

    O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

    O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe

    O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe

    O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

    O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

    --

    End of file - 10489 bytes

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.