Ga naar inhoud

devil1570

Lid
  • Items

    19
  • Registratiedatum

  • Laatst bezocht

Berichten die geplaatst zijn door devil1570

  1. geachte,

    Ik heb namelijk een probleem dat m'n pc elke keer opnieuw crasht bij het opstarten van Windows.

    Ik heb met m'n installatie cd al geprobeerd om Windows te herstellen maar herlaas hij vind alleen maar m'n partitie D ipv C.

    Als ik van daaruit naar m'n stuurprogramma's wil zoeken , zie ik dat m'n C schijf nogaltijd leesbaar is.

    Nu geef ik deze pc op en wil graag al m'n gegevens overzetten, alleen weet ik niet hoe dat mogelijk is aangezien ik geen besturingssysteem kan gebruiken ( om dat hij nooit verder geraakt dan de boot en bij windows opstart crasht.)

    mvgr,

    Alexandre

  2. hallo ,

    Ik zou graag wat info vragen betreffende het upgraden van m'n laptop.

    Het gaat dus over een packard bell easynote LM82-RB-003BE.

    nu zou ik dus graag m'n RAM-geheugen upgraden, hier zit nu 2GB ram in ( DIMM1 , DDR3 , PC3-8500 )

    ergens heb ik gelezen dat de easynotes tot max 8GB aankunnen , klopt dit ?

    En wat voor SODIMM heb ik nodig ? Heb deze gevonden , maar weet niet of ze correct zijn.

    CD-ROM-LAND, De grootste computerspeciaalzaak van West-Brabant - Kingston SODIMM 4GB DDR3 1333 KVR1333D3S9/4G

    Nu is het toch gewoon de huidge "2GB RAM-stick" eruit halen en dan 2x de 4GB insteken toch ?

    Mvgr,

    Alex

  3. ComboFix 11-02-28.05 - Alex 01/03/2011 11:44:42.2.4 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.2047.1020 [GMT 1:00]

    Gestart vanuit: c:\users\Alex\Desktop\ComboFix.exe

    gebruikte Opdracht switches :: c:\users\Alex\Desktop\CFScript.txt

    AV: BitDefender Antivirus *Disabled/Updated* {982ADE23-275B-0766-37C5-DE01A484098E}

    FW: BitDefender Firewall *Disabled* {A0115F06-6D34-063E-1C9A-77345A574EF5}

    SP: BitDefender Antispyware *Disabled/Updated* {234B3FC7-0161-08E8-0D75-E573DF034333}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2011-02-01 to 2011-03-01 ))))))))))))))))))))))))))))))

    .

    2011-03-01 10:52 . 2011-03-01 10:52 -------- d-----w- c:\users\Alex\AppData\Local\temp

    2011-03-01 10:52 . 2011-03-01 10:52 -------- d-----w- c:\users\Default\AppData\Local\temp

    2011-02-28 18:43 . 2011-02-28 18:43 -------- d-----w- c:\programdata\InstallMate

    2011-02-27 18:01 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

    2011-02-27 18:01 . 2011-02-27 18:01 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

    2011-02-27 18:01 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-02-27 15:48 . 2011-02-27 15:48 388096 ----a-r- c:\users\Alex\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

    2011-02-27 15:48 . 2011-02-27 15:48 -------- d-----w- c:\program files\Trend Micro

    2011-02-27 15:34 . 2011-02-27 15:34 -------- d-----w- c:\program files\CCleaner

    2011-02-27 15:29 . 2011-02-27 15:29 -------- d-----w- c:\users\Alex\AppData\Roaming\Malwarebytes

    2011-02-27 15:28 . 2011-02-27 15:28 -------- d-----w- c:\programdata\Malwarebytes

    2011-02-25 17:14 . 2011-02-26 17:57 12872 ----a-w- c:\windows\system32\bootdelete.exe

    2011-02-25 16:57 . 2011-02-27 15:19 16968 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys

    2011-02-25 16:57 . 2011-02-25 16:57 -------- d-----w- c:\program files\Hitman Pro 3.5

    2011-02-25 16:56 . 2011-02-26 09:59 -------- d-----w- c:\programdata\Hitman Pro

    2011-02-23 13:04 . 2011-02-23 13:20 -------- d-----w- c:\users\Alex\AppData\Roaming\U3

    2011-02-20 19:25 . 2011-02-26 09:49 -------- d-----w- c:\program files\Steam

    2011-02-20 19:09 . 2011-02-20 19:09 -------- d-----w- c:\program files\TI Education

    2011-02-20 19:08 . 2009-03-24 11:52 218432 ----a-w- c:\windows\system32\RICHTX32.OCX

    2011-02-20 19:08 . 2007-08-15 11:09 40960 ----a-w- c:\windows\system32\ssubtmr6.dll

    2011-02-20 19:08 . 2007-08-15 11:09 167683 ----a-w- c:\windows\system32\COMCT232.OCX

    2011-02-20 19:08 . 2011-02-20 19:23 -------- d-----w- c:\program files\Smarty Uninstaller Pro

    2011-02-19 16:31 . 2011-02-20 14:03 -------- d-----w- c:\users\Alex\AppData\Local\PokerStars

    2011-02-19 00:47 . 2011-02-19 00:47 -------- d-----w- c:\users\Alex\AppData\Local\Microsoft Games

    2011-02-19 00:23 . 2011-02-19 00:23 -------- d-----w- c:\program files\HyCam2

    2011-02-17 18:38 . 2011-02-17 18:39 -------- d-----w- c:\program files\Game_Maker8

    2011-02-14 19:26 . 2011-02-14 20:25 -------- d-----w- c:\program files\Convar

    2011-02-14 19:04 . 2011-03-01 09:54 -------- d-----w- C:\Restoration

    2011-02-09 22:19 . 2011-01-06 10:51 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat

    2011-02-09 22:19 . 2010-12-31 13:57 2039808 ----a-w- c:\windows\system32\win32k.sys

    2011-02-09 22:19 . 2010-10-15 14:08 3602320 ----a-w- c:\windows\system32\ntkrnlpa.exe

    2011-02-09 22:19 . 2010-10-15 13:48 1205080 ----a-w- c:\windows\system32\ntdll.dll

    2011-02-09 22:19 . 2010-10-15 14:08 3550096 ----a-w- c:\windows\system32\ntoskrnl.exe

    2011-01-30 22:30 . 2011-01-30 22:30 -------- d-----w- c:\program files\Guild Wars

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2010-12-29 11:48 . 2010-11-08 18:06 53632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\LMIproc.dll

    2010-12-29 11:48 . 2010-11-08 18:06 83360 ----a-w- c:\windows\system32\LMIRfsClientNP.dll

    2010-12-29 11:48 . 2010-11-08 18:06 29568 ----a-w- c:\windows\system32\LMIport.dll

    2010-12-29 11:48 . 2010-11-08 18:06 87424 ----a-w- c:\windows\system32\LMIinit.dll

    2010-12-28 15:55 . 2011-01-12 12:36 413696 ----a-w- c:\windows\system32\odbc32.dll

    2010-12-21 23:29 . 2010-12-21 23:29 658696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll

    2010-12-14 14:49 . 2011-01-12 12:35 1169408 ----a-w- c:\windows\system32\sdclt.exe

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-18 125952]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440]

    "Skytel"="Skytel.exe" [2007-06-15 1826816]

    "RCSystem"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2006-11-22 57344]

    "AudioDrvEmulator"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2006-11-22 57344]

    "VolPanel"="c:\program files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" [2006-12-06 180224]

    "AsioReg"="CTASIO.DLL" [2006-12-12 79872]

    "CTHelper"="CTHELPER.EXE" [2006-12-12 19456]

    "CTxfiHlp"="CTXFIHLP.EXE" [2006-12-12 20480]

    "CTXFIREG"="CTxfiReg.exe" [2006-12-12 44032]

    "UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]

    "BDAgent"="c:\program files\BitDefender\BitDefender 2010\bdagent.exe" [2010-03-18 1123360]

    "BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2010\IEShow.exe" [2009-10-19 71152]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]

    "CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-10 689488]

    "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2008-03-03 1848648]

    "AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]

    "SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]

    "AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]

    "LifeCam"="c:\program files\Microsoft LifeCam\LifeExp.exe" [2010-05-20 119152]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-12-13 421160]

    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]

    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]

    "Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976]

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    WiFi Station N.lnk - c:\program files\Hercules\WiFi Station N\WiFiN.exe [2010-9-20 124200]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    [HKLM\~\startupfolder\C:^Users^Alex^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^winlogin.exe]

    path=c:\users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winlogin.exe

    backup=c:\windows\pss\winlogin.exe.Startup

    backupExtension=.Startup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

    2010-09-20 22:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

    2010-09-23 03:47 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]

    2010-04-16 20:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

    2007-02-26 18:46 153136 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe

    R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\RaInfo.sys [x]

    R3 3xHybrid;Pinnacle PCTV 100i-110i-300i-310i-MCE;c:\windows\system32\DRIVERS\3xHybrid.sys [2006-11-22 1121536]

    R3 Arrakis3;BitDefender Arrakis-server;c:\program files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe [2009-10-19 183880]

    R3 qcusbser;ACER Android USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\qcusbser.sys [2009-08-14 105984]

    R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

    R3 XDva375;XDva375;c:\windows\system32\XDva375.sys [x]

    R4 amBX Engine;amBX Engine;d:\installs\System\amBX_Engine.exe [x]

    R4 amBX Service;amBX Service;d:\installs\System\amBX_Service.exe [x]

    R4 Philips amBX USB HAL;Philips amBX USB HAL;d:\installs\System\Device Drivers\Philips USB\Philips_amBX_USB_HAL.exe [x]

    S1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\windows\system32\DRIVERS\BdfNdisf6.sys [2010-09-19 72784]

    S2 AcerSyncServiceWinService;AcerSyncServiceWinService;c:\program files\Acer\AcerSync\AcerSyncService.exe [2010-04-14 172576]

    S2 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2010\bdvedisk.sys [2010-01-19 85128]

    S2 HerculesWiFi;HerculesWiFi;c:\windows\system32\HerculesWiFiService.exe [2008-08-13 48128]

    S2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [2010-12-07 2228008]

    S3 BDFM;BDFM;c:\windows\system32\DRIVERS\bdfm.sys [2010-02-03 153448]

    S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys [2010-05-20 30576]

    S3 netr28u;Hercules Wireless N USB Driver for Vista;c:\windows\system32\DRIVERS\netr28u.sys [2008-01-30 599040]

    S3 Ph3xIB32;Philips 713x Inbox PCI TV Card;c:\windows\system32\DRIVERS\Ph3xIB32.sys [2007-04-03 1131136]

    S3 radpms;Driver for RADPMS Device;c:\windows\system32\DRIVERS\radpms.sys [2010-05-31 13408]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    bdx REG_MULTI_SZ scan

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://start.facemoods.com/?a=bfus

    uInternet Settings,ProxyOverride = *.local

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000

    FF - ProfilePath - c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\ooe0xz0d.default\

    FF - prefs.js: browser.startup.homepage - HLN home

    FF - prefs.js: network.proxy.type - 0

    FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}

    FF - Ext: Firebug: firebug@software.joehewitt.com - %profile%\extensions\firebug@software.joehewitt.com

    FF - Ext: LogMeIn, Inc. Remote Access Plugin: LogMeInClient@logmein.com - %profile%\extensions\LogMeInClient@logmein.com

    FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

    FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension

    FF - Ext: BitDefender Antiphishing Toolbar: FFToolbar@bitdefender.com - c:\program files\BitDefender\BitDefender 2010\bdaphffext

    .

    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2011-03-01 11:52

    Windows 6.0.6002 Service Pack 2 NTFS

    scannen van verborgen processen ...

    scannen van verborgen autostart items ...

    scannen van verborgen bestanden ...

    Scan succesvol afgerond

    verborgen bestanden: 0

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    Voltooingstijd: 2011-03-01 11:53:26

    ComboFix-quarantined-files.txt 2011-03-01 10:53

    ComboFix2.txt 2011-03-01 09:57

    Pre-Run: 415.857.254.400 bytes beschikbaar

    Post-Run: 415.820.361.728 bytes beschikbaar

    Current=1 Default=1 Failed=0 LastKnownGood=3 Sets=1,2,3,7

    - - End Of File - - 3D7F1D4FD0925575B925FBAA49BA4D24

    De snelheid is opzich wel oke , maar hangt nog dikwijls vast :s

  4. ComboFix 11-02-28.03 - Alex 01/03/2011 10:47:30.1.4 - x86

    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.2047.1093 [GMT 1:00]

    Gestart vanuit: c:\users\Alex\Desktop\ComboFix.exe

    AV: BitDefender Antivirus *Disabled/Updated* {982ADE23-275B-0766-37C5-DE01A484098E}

    FW: BitDefender Firewall *Enabled* {A0115F06-6D34-063E-1C9A-77345A574EF5}

    SP: BitDefender Antispyware *Disabled/Updated* {234B3FC7-0161-08E8-0D75-E573DF034333}

    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    .

    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

    .

    c:\program files\facemoods.com

    c:\program files\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoods.crx

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoods.png

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodsApp.dll

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodsEng.dll

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe

    c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll

    c:\program files\facemoods.com\facemoods\1.4.17.5\uninstall.exe

    c:\restoration\Restoration.exe

    .

    (((((((((((((((((((( Bestanden Gemaakt van 2011-02-01 to 2011-03-01 ))))))))))))))))))))))))))))))

    .

    2011-03-01 09:55 . 2011-03-01 09:55 -------- d-----w- c:\users\Alex\AppData\Local\temp

    2011-03-01 09:55 . 2011-03-01 09:55 -------- d-----w- c:\users\Default\AppData\Local\temp

    2011-02-28 18:43 . 2011-02-28 18:43 -------- d-----w- c:\programdata\InstallMate

    2011-02-27 18:01 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

    2011-02-27 18:01 . 2011-02-27 18:01 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

    2011-02-27 18:01 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-02-27 15:48 . 2011-02-27 15:48 388096 ----a-r- c:\users\Alex\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

    2011-02-27 15:48 . 2011-02-27 15:48 -------- d-----w- c:\program files\Trend Micro

    2011-02-27 15:34 . 2011-02-27 15:34 -------- d-----w- c:\program files\CCleaner

    2011-02-27 15:29 . 2011-02-27 15:29 -------- d-----w- c:\users\Alex\AppData\Roaming\Malwarebytes

    2011-02-27 15:28 . 2011-02-27 15:28 -------- d-----w- c:\programdata\Malwarebytes

    2011-02-26 10:05 . 2011-02-26 10:05 -------- d-----w- c:\program files\Tunatic

    2011-02-25 17:14 . 2011-02-26 17:57 12872 ----a-w- c:\windows\system32\bootdelete.exe

    2011-02-25 16:57 . 2011-02-27 15:19 16968 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys

    2011-02-25 16:57 . 2011-02-25 16:57 -------- d-----w- c:\program files\Hitman Pro 3.5

    2011-02-25 16:56 . 2011-02-26 09:59 -------- d-----w- c:\programdata\Hitman Pro

    2011-02-23 13:04 . 2011-02-23 13:20 -------- d-----w- c:\users\Alex\AppData\Roaming\U3

    2011-02-20 19:25 . 2011-02-26 09:49 -------- d-----w- c:\program files\Steam

    2011-02-20 19:09 . 2011-02-20 19:09 -------- d-----w- c:\program files\TI Education

    2011-02-20 19:08 . 2009-03-24 11:52 218432 ----a-w- c:\windows\system32\RICHTX32.OCX

    2011-02-20 19:08 . 2007-08-15 11:09 40960 ----a-w- c:\windows\system32\ssubtmr6.dll

    2011-02-20 19:08 . 2007-08-15 11:09 167683 ----a-w- c:\windows\system32\COMCT232.OCX

    2011-02-20 19:08 . 2011-02-20 19:23 -------- d-----w- c:\program files\Smarty Uninstaller Pro

    2011-02-19 16:31 . 2011-02-20 14:03 -------- d-----w- c:\users\Alex\AppData\Local\PokerStars

    2011-02-19 00:47 . 2011-02-19 00:47 -------- d-----w- c:\users\Alex\AppData\Local\Microsoft Games

    2011-02-19 00:23 . 2011-02-19 00:23 -------- d-----w- c:\program files\HyCam2

    2011-02-17 18:38 . 2011-02-17 18:39 -------- d-----w- c:\program files\Game_Maker8

    2011-02-14 19:26 . 2011-02-14 20:25 -------- d-----w- c:\program files\Convar

    2011-02-14 19:04 . 2011-03-01 09:54 -------- d-----w- C:\Restoration

    2011-02-09 22:19 . 2011-01-06 10:51 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat

    2011-02-09 22:19 . 2010-12-31 13:57 2039808 ----a-w- c:\windows\system32\win32k.sys

    2011-02-09 22:19 . 2010-10-15 14:08 3602320 ----a-w- c:\windows\system32\ntkrnlpa.exe

    2011-02-09 22:19 . 2010-10-15 13:48 1205080 ----a-w- c:\windows\system32\ntdll.dll

    2011-02-09 22:19 . 2010-10-15 14:08 3550096 ----a-w- c:\windows\system32\ntoskrnl.exe

    2011-01-30 22:30 . 2011-01-30 22:30 -------- d-----w- c:\program files\Guild Wars

    .

    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    2010-12-29 11:48 . 2010-11-08 18:06 53632 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\LMIproc.dll

    2010-12-29 11:48 . 2010-11-08 18:06 83360 ----a-w- c:\windows\system32\LMIRfsClientNP.dll

    2010-12-29 11:48 . 2010-11-08 18:06 29568 ----a-w- c:\windows\system32\LMIport.dll

    2010-12-29 11:48 . 2010-11-08 18:06 87424 ----a-w- c:\windows\system32\LMIinit.dll

    2010-12-28 15:55 . 2011-01-12 12:36 413696 ----a-w- c:\windows\system32\odbc32.dll

    2010-12-21 23:29 . 2010-12-21 23:29 658696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll

    2010-12-14 14:49 . 2011-01-12 12:35 1169408 ----a-w- c:\windows\system32\sdclt.exe

    .

    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

    .

    .

    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-18 125952]

    "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    "RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440]

    "Skytel"="Skytel.exe" [2007-06-15 1826816]

    "RCSystem"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2006-11-22 57344]

    "AudioDrvEmulator"="c:\program files\Creative\Shared Files\Module Loader\DLLML.exe" [2006-11-22 57344]

    "VolPanel"="c:\program files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" [2006-12-06 180224]

    "AsioReg"="CTASIO.DLL" [2006-12-12 79872]

    "CTHelper"="CTHELPER.EXE" [2006-12-12 19456]

    "CTxfiHlp"="CTXFIHLP.EXE" [2006-12-12 20480]

    "CTXFIREG"="CTxfiReg.exe" [2006-12-12 44032]

    "UpdReg"="c:\windows\UpdReg.EXE" [2000-05-10 90112]

    "BDAgent"="c:\program files\BitDefender\BitDefender 2010\bdagent.exe" [2010-03-18 1123360]

    "BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2010\IEShow.exe" [2009-10-19 71152]

    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]

    "CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-10 689488]

    "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2008-03-03 1848648]

    "AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]

    "SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]

    "AdobeCS5ServiceManager"="c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" [2010-02-22 406992]

    "LifeCam"="c:\program files\Microsoft LifeCam\LifeExp.exe" [2010-05-20 119152]

    "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]

    "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-12-13 421160]

    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]

    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]

    "Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976]

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

    WiFi Station N.lnk - c:\program files\Hercules\WiFi Station N\WiFiN.exe [2010-9-20 124200]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

    "EnableUIADesktopToggle"= 0 (0x0)

    [HKLM\~\startupfolder\C:^Users^Alex^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^winlogin.exe]

    path=c:\users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winlogin.exe

    backup=c:\windows\pss\winlogin.exe.Startup

    backupExtension=.Startup

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

    2010-09-20 22:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

    2010-09-23 03:47 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]

    2010-04-16 20:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

    2007-02-26 18:46 153136 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe

    R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\RaInfo.sys [x]

    R3 3xHybrid;Pinnacle PCTV 100i-110i-300i-310i-MCE;c:\windows\system32\DRIVERS\3xHybrid.sys [2006-11-22 1121536]

    R3 Arrakis3;BitDefender Arrakis-server;c:\program files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe [2009-10-19 183880]

    R3 qcusbser;ACER Android USB Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\qcusbser.sys [2009-08-14 105984]

    R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

    R3 XDva375;XDva375;c:\windows\system32\XDva375.sys [x]

    R4 amBX Engine;amBX Engine;d:\installs\System\amBX_Engine.exe [x]

    R4 amBX Service;amBX Service;d:\installs\System\amBX_Service.exe [x]

    R4 Philips amBX USB HAL;Philips amBX USB HAL;d:\installs\System\Device Drivers\Philips USB\Philips_amBX_USB_HAL.exe [x]

    S1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\windows\system32\DRIVERS\BdfNdisf6.sys [2010-09-19 72784]

    S2 AcerSyncServiceWinService;AcerSyncServiceWinService;c:\program files\Acer\AcerSync\AcerSyncService.exe [2010-04-14 172576]

    S2 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2010\bdvedisk.sys [2010-01-19 85128]

    S2 HerculesWiFi;HerculesWiFi;c:\windows\system32\HerculesWiFiService.exe [2008-08-13 48128]

    S2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [2010-12-07 2228008]

    S3 BDFM;BDFM;c:\windows\system32\DRIVERS\bdfm.sys [2010-02-03 153448]

    S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys [2010-05-20 30576]

    S3 netr28u;Hercules Wireless N USB Driver for Vista;c:\windows\system32\DRIVERS\netr28u.sys [2008-01-30 599040]

    S3 Ph3xIB32;Philips 713x Inbox PCI TV Card;c:\windows\system32\DRIVERS\Ph3xIB32.sys [2007-04-03 1131136]

    S3 radpms;Driver for RADPMS Device;c:\windows\system32\DRIVERS\radpms.sys [2010-05-31 13408]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

    LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

    bdx REG_MULTI_SZ scan

    .

    .

    ------- Bijkomende Scan -------

    .

    uStart Page = hxxp://start.facemoods.com/?a=bfus

    uInternet Settings,ProxyOverride = *.local

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\MI1933~1\Office12\EXCEL.EXE/3000

    FF - ProfilePath - c:\users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\ooe0xz0d.default\

    FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2849859&SearchSource=3&q={searchTerms}

    FF - prefs.js: browser.search.selectedEngine - BittorrentBar_NL Customized Web Search

    FF - prefs.js: browser.startup.homepage - HLN home

    FF - prefs.js: network.proxy.type - 0

    .

    - - - - ORPHANS VERWIJDERD - - - -

    BHO-{64182481-4F71-486b-A045-B233BD0DA8FC} - c:\program files\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll

    Toolbar-{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll

    HKLM-Run-facemoods - c:\program files\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe

    MSConfigStartUp-amBX System Tray Application - d:\installs\System\ApplicationManager\amBXAppMgr.exe

    MSConfigStartUp-Google Update - c:\users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe

    MSConfigStartUp-LogMeIn GUI - c:\program files\LogMeIn\x86\LogMeInSystray.exe

    HKLM_ActiveSetup-{346019B4-D6E2-4CB6-99E9-DD8A26CF0C77} - msiexec

    AddRemove-facemoods - c:\program files\facemoods.com\facemoods\1.4.17.5\uninstall.exe

    AddRemove-Vector Magic - l:\nieuwe map\Vector Magic\Uninstall.exe

    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

    Rootkit scan 2011-03-01 10:55

    Windows 6.0.6002 Service Pack 2 NTFS

    scannen van verborgen processen ...

    scannen van verborgen autostart items ...

    scannen van verborgen bestanden ...

    c:\users\Alex\AppData\Local\Temp\catchme.dll 53248 bytes executable

    Scan succesvol afgerond

    verborgen bestanden: 1

    **************************************************************************

    .

    --------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    @Denied: (A) (Users)

    @Denied: (A) (Everyone)

    @Allowed: (B 1 2 3 4 5) (S-1-5-20)

    "BlindDial"=dword:00000000

    .

    Voltooingstijd: 2011-03-01 10:57:00

    ComboFix-quarantined-files.txt 2011-03-01 09:56

    Pre-Run: 415.844.921.344 bytes beschikbaar

    Post-Run: 415.771.045.888 bytes beschikbaar

    Current=1 Default=1 Failed=0 LastKnownGood=3 Sets=1,2,3,7

    - - End Of File - - 542EDD3D3885EF79A17C49FF7F850B3A

  5. Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 20:05:04, on 27/02/2011

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v8.00 (8.00.6001.19019)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe

    C:\Windows\Explorer.EXE

    C:\Windows\RtHDVCpl.exe

    C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe

    C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe

    C:\Windows\System32\CtHelper.exe

    C:\Windows\System32\CTXFIHLP.EXE

    C:\Windows\System32\CTXFISPI.EXE

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Hercules\WiFi Station N\WiFiN.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Windows\System32\mobsync.exe

    C:\Program Files\BitDefender\BitDefender 2010\seccenter.exe

    C:\Windows\system32\wuauclt.exe

    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\cs5\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\IEToolbar.dll

    O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\cs5\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [skytel] Skytel.exe

    O4 - HKLM\..\Run: [RCSystem] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" RCSystem * -Startup

    O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"

    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r

    O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL

    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

    O4 - HKLM\..\Run: [CTXFIREG] CTxfiReg.exe

    O4 - HKLM\..\Run: [updReg] C:\Windows\UpdReg.EXE

    O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe"

    O4 - HKLM\..\Run: [bitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon

    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

    O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    O4 - HKLM\..\Run: [switchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

    O4 - Global Startup: WiFi Station N.lnk = C:\Program Files\Hercules\WiFi Station N\WiFiN.exe

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\Office12\REFIEBAR.DLL

    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: AcerSyncServiceWinService - Unknown owner - C:\Program Files\Acer\AcerSync\AcerSyncService.exe

    O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: BitDefender Arrakis-server (Arrakis3) - BitDefender S.R.L. Antivirus software - BitDefender - The future of security now! - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe

    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe

    O23 - Service: HerculesWiFi - Guillemot Corporation - C:\Windows\system32\HerculesWiFiService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

    O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: BitDefender Desktop-updateservice (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe

    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

    O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe

    --

    End of file - 8070 bytes

  6. Malwarebytes' Anti-Malware 1.50.1.1100

    Malwarebytes

    Databaseversie: 5895

    Windows 6.0.6002 Service Pack 2

    Internet Explorer 8.0.6001.19019

    27/02/2011 19:13:14

    mbam-log-2011-02-27 (19-13-14).txt

    Scantype: Snelle scan

    Objecten gescand: 147442

    Verstreken tijd: 7 minuut/minuten, 47 seconde(n)

    Geheugenprocessen geïnfecteerd: 0

    Geheugenmodulen geïnfecteerd: 0

    Registersleutels geïnfecteerd: 2

    Registerwaarden geïnfecteerd: 0

    Registerdata geïnfecteerd: 0

    Mappen geïnfecteerd: 4

    Bestanden geïnfecteerd: 10

    Geheugenprocessen geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Geheugenmodulen geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Registersleutels geïnfecteerd:

    HKEY_CURRENT_USER\Software\ErrorRepairPro (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Error Repair Professional_is1 (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    Registerwaarden geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Registerdata geïnfecteerd:

    (Geen kwaadaardige objecten gedetecteerd)

    Mappen geïnfecteerd:

    c:\program files\error repair professional (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\Backups (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\startbug (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\programdata\microsoft\Windows\start menu\Programs\error repair professional (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    Bestanden geïnfecteerd:

    c:\Users\Alex\downloads\rsbots.net auth generator.exe (Trojan.Agent) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\autostart.exe (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\errorrepairprofessional.exe (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\unins000.dat (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\unins000.exe (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\Backups\backup_1-48-7_10-1-2011.reg (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\Backups\backup_11-53-33_6-2-2011.reg (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\program files\error repair professional\Backups\backup_21-54-39_19-9-2010.reg (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\programdata\microsoft\Windows\start menu\Programs\error repair professional\error repair professional.lnk (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

    c:\programdata\microsoft\Windows\start menu\Programs\error repair professional\uninstall error repair professional.lnk (Rogue.ErrorRepairProfessional) -> Quarantined and deleted successfully.

  7. Alvast bedankt voor de snelle reactie, hier is het HJT-logje:

    Logfile of Trend Micro HijackThis v2.0.4

    Scan saved at 16:54:21, on 27/02/2011

    Platform: Windows Vista SP2 (WinNT 6.00.1906)

    MSIE: Internet Explorer v8.00 (8.00.6001.19019)

    Boot mode: Normal

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe

    C:\Windows\Explorer.EXE

    C:\Windows\RtHDVCpl.exe

    C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe

    C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe

    C:\Windows\System32\CtHelper.exe

    C:\Windows\System32\CTXFIHLP.EXE

    C:\Windows\System32\CTXFISPI.EXE

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Creative\Sound Blaster X-Fi\Entertainment Center\EAXLoadr.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\Hercules\WiFi Station N\WiFiN.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Program Files\BitDefender\BitDefender 2010\seccenter.exe

    C:\Windows\system32\wuauclt.exe

    C:\Windows\system32\conime.exe

    C:\Program Files\Microsoft Office\Office12\WINWORD.EXE

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    R3 - URLSearchHook: (no name) - {2d8d9acc-f6d7-4362-8876-a275ca929591} - (no file)

    R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)

    O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\cs5\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll

    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

    O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\IEToolbar.dll

    O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\cs5\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [skytel] Skytel.exe

    O4 - HKLM\..\Run: [RCSystem] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" RCSystem * -Startup

    O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"

    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r

    O4 - HKLM\..\Run: [AsioReg] REGSVR32.EXE /S CTASIO.DLL

    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE

    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE

    O4 - HKLM\..\Run: [CTXFIREG] CTxfiReg.exe

    O4 - HKLM\..\Run: [updReg] C:\Windows\UpdReg.EXE

    O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe"

    O4 - HKLM\..\Run: [bitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe"

    O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon

    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon

    O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

    O4 - HKLM\..\Run: [switchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin

    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')

    O4 - Global Startup: WiFi Station N.lnk = C:\Program Files\Hercules\WiFi Station N\WiFiN.exe

    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office12\EXCEL.EXE/3000

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\Office12\REFIEBAR.DLL

    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab

    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll

    O23 - Service: AcerSyncServiceWinService - Unknown owner - C:\Program Files\Acer\AcerSync\AcerSyncService.exe

    O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    O23 - Service: BitDefender Arrakis-server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe

    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe

    O23 - Service: HerculesWiFi - Guillemot Corporation - C:\Windows\system32\HerculesWiFiService.exe

    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

    O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE

    O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: BitDefender Desktop-updateservice (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe

    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

    O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

    O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

    O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe

    --

    End of file - 8636 bytes

  8. Hey,

    nou , ik heb namelijk een probleempje ..

    m'n pc zegt zoals de titel luid, is heel traag en hapert bij het minste van muziek en dergelijke..

    Opzich vind ik dit niet storend, maar het 2e ding is , dat alles echt traag geworden is.

    als ik nu photoshop op illustrator wil openen duurt het echt een half uur ofzo en m'n firefox Blijft altijd vastlopen.

    Kan iemand me hierbij helpen om dit op te lossen ?

    Mvgr,

    Devil

  9. dat is hem het juist :s

    Ik heb het systeem gewonne gehad samen met m'n pc ..

    Dus ik heb geen aankoop datum of dergelijke ...

    Ik heb namelijk met zo'n spul voor wespensteken uit te zuigen gebruikt om de deuk een beetje te verminderen.

    Maar de klanken zijn nogaltijd niet zo zuiver meer.

    Grtz

  10. Hey,

    Ik heb de vraag waar ik zo'n boxje kan kopen.

    Ik heb namelijk zo'n paket van Ambx gekocht , maar nu zit er een deukje in m'n boxje. ( Heb hem helemaal uiteen gehaald , aangezien er 2 boxjes in zitten in 1 grote box. en achteraan op dat beschadigde deel staat er ASP-SZ , 8ohm 10 W , 2499 297 20204 0720)

    Groetjes ,

    alex

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.