alpatje
-
Items
47 -
Registratiedatum
-
Laatst bezocht
Inhoudstype
Profielen
Forums
Store
Berichten die geplaatst zijn door alpatje
-
-
Mensen ik kan mijn laptop niet afsluiten dus moetk handmatig doen en we weten allemaal dat da niet goed is voor een pc , dus aub help ( energiebeheer geprobeerd helpt geen F*Ck
Groetjes Alpa
-
ik heb het nu op hoge prstaties gezet ik zal jullie laten weten als het is gelukt
-
sedert heb ik een heel vervelend probleem , men laptop sluit niet af :S
help aub
Groetjes Alpa
-
ik vindt dit regeltje niet in mijn logje
O4 - HKLM\..\Run: [nonep] C:\Windows\TEMP\380D.tmp
-
bedankt voor de aandacht
-
hier vindt u mijn log file
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:45:00, on 17/03/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Safe mode
Running processes:
C:\Windows\system32\sdra64.exe
C:\Windows\explorer.exe
C:\Windows\System32\WerFault.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
F2 - REG:system.ini: Shell=Explorer.exe rundll32.exe nynw.wmo mynleeq
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,C:\Windows\system32\sdra64.exe,
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [nonep] C:\Windows\TEMP\380D.tmp
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [userinit] C:\Users\Toshiba Satellite\AppData\Roaming\sdra64.exe
O4 - Startup: GmoteServer.lnk = C:\Program Files\GmoteServer\GmoteServer.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldnl-be.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\System32\avgrsstx.dll,avgrsstx.dll
O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NMSAccess - Unknown owner - C:\Program Files\Blaze Media Pro\NMSAccess32.exe
--
End of file - 6645 bytes
-
Download HiJackThis
Dubbelklik op HJTInstall.exe
Hijackthis wordt nu op je PC geïnstalleerd, een snelkoppeling wordt op je bureaublad geplaatst.
HijackThis zal openen na het installeren.
Klik op "Do a systemscan and save a logfile".
Er opent een kladblokvenster, hou gelijktijdig de CTRL en A-toets ingedrukt, nu is alles geselecteerd. Hou gelijktijdig de CTRL en C-toets ingedrukt, nu is alles gekopieerd. Plak nu het HJT logje in je bericht door CTRL en V-toets.
N.B. : gebruikers van Windows Vista en Windows 7 zullen eerst moeten rechtsklikken op HijackThis.exe en dan kiezen voor "Run as Administrator".
ik krijg een foutmelding : de status van de pipe is ongeldig :S
Groetjes Alpatje
-
Hallo , ik heb sedert al een bericht gestuurd over mijn probleem en heb het kunne helpe door ctrl + alt delete en dan voor explorer.exe zoeken maar het probleem was niet voor een keer , ik krijg hetzelfde probleem elke keer alsk men laptop opstart
Probleem : bij opstarten van men laptop zie ik mijn documenten alleen ipv beraublad en startbalk .
Pls Help !!!
Groetjes Alpatje
-
Hartelijk bedankt !!!
-
Hallo ,
Ik heb een groot probleem namelijk ik moest men laptop restarten en na dat ik het opnieuw opstarte al wat er tevoorschijnt is mijn documenten , ik kan geen beraublad of niks zien en men start balk ook niet :s:s
AUB HELP
Groetjes Alpa
-
ik heb mijn probleem opgelost , het grote probleem was dat mijn anti-virus tegen mijn anti-spyware werkte en daardoor ik een heel trage laptop had .
Groetjes Alpa
-
Hello ,
Ik heb een heel vervelend probleem , telkens ik mijn laptop opstart is het zeer traag en reageert niet . Ik moet telkens mijn laptop handmatig uitaschakelen en dat is natuurlijk niet goed voor me laptop .
Help aub !!!
Groetjes Alpa
-
ik heb alle snelkoppelingen en ComboFix van mijn bereaublad verwijderd maar heb geen enkel bestand gevonden in mijn C partitie . Denkt u dat het normaal is ?
Groetjes Alpa
-
jah ik heb de exacte schrijfwijze ingebracht maar helaas het werkt nog steeds niet .
Groetjes Alpa
-
ik gebruik vista en heb het in opdrachtenpomp geschreven wat u vroeg maar doet het niet.
Groetjes Alpa
-
Hello
jah nu laat ik mijn laptop op stand-by staan en heb ik geen enkel probleem , maar ik vrees dat mijn laptop noch altijd traag zal zijn als ik hem opstart .
Moet ik nu combifix unistallen of mot ik hb laten op mijn beraublad ?
Groetjes Alpa
-
Hello
Ik heb geprobeerd te doen wat u vroeg , dus het zou heel handig zijn of u mij zou informeren of dat ik het goed of niet goed heb gedaan .
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:57:34, on 19/01/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\AVG\AVG9\avgam.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Registry Mechanic\RegMech.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Windows\explorer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Bing
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [sSDMonitor] C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [iSTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RMTray.exe /S
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldnl-be.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\System32\avgrsstx.dll
O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Browser Defender Update Service - Threat Expert Ltd. - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - PC Tools - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
--
End of file - 9480 bytes
ComboFix 10-01-18.03 - Toshiba Satellite 19/01/2010 18:18:21.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.32.1043.18.893.143 [GMT 1:00]
Gestart vanuit: c:\users\Toshiba Satellite\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\recycler\S-1-5-21-1645522239-1060284298-725345543-1003
c:\users\Toshiba Satellite\AppData\Roaming\.#
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@1524@2831F50.###
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@1524@2831F60.###
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@1524@2831F70.###
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@9E8@25F1F50.###
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@9E8@25F1F60.###
c:\users\Toshiba Satellite\AppData\Roaming\.#\MBX@9E8@25F1F70.###
.
(((((((((((((((((((( Bestanden Gemaakt van 2009-12-19 to 2010-01-19 ))))))))))))))))))))))))))))))
.
2010-01-19 17:36 . 2010-01-19 17:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-19 16:21 . 2010-01-19 16:21 -------- d-----w- c:\program files\Trend Micro
2010-01-17 20:34 . 2010-01-17 20:34 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\Auslogics
2010-01-17 20:34 . 2010-01-17 20:34 -------- d-----w- c:\program files\Auslogics
2010-01-17 20:15 . 2010-01-17 20:15 -------- d-----w- c:\program files\CCleaner
2010-01-17 09:58 . 2010-01-17 09:58 -------- d-----w- c:\users\Toshiba Satellite\AppData\Local\AVG Security Toolbar
2010-01-16 19:42 . 2010-01-16 19:42 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\Registry Mechanic
2010-01-16 17:20 . 2010-01-16 17:20 -------- d-----w- C:\$AVG
2010-01-16 17:20 . 2010-01-16 17:20 161800 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2010-01-16 17:20 . 2010-01-16 17:20 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-01-16 17:20 . 2010-01-16 17:20 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-01-16 17:20 . 2010-01-16 17:20 333192 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-01-16 17:20 . 2010-01-19 14:37 -------- d-----w- c:\windows\system32\drivers\Avg
2010-01-16 17:20 . 2010-01-16 17:20 28424 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-01-16 17:20 . 2010-01-16 17:22 -------- d-----w- c:\programdata\AVG Security Toolbar
2010-01-16 17:19 . 2010-01-16 17:19 -------- d-----w- c:\program files\AVG
2010-01-16 17:18 . 2010-01-16 17:19 -------- d-----w- c:\programdata\avg9
2010-01-16 14:01 . 2009-11-10 09:28 149456 ----a-w- c:\windows\SGDetectionTool.dll
2010-01-16 14:01 . 2009-11-10 09:26 767952 ----a-w- c:\windows\BDTSupport.dll
2010-01-16 14:01 . 2009-10-28 00:36 1152444 ----a-w- c:\windows\UDB.zip
2010-01-16 14:01 . 2008-11-26 11:08 131 ----a-w- c:\windows\IDB.zip
2010-01-13 15:12 . 2009-10-19 13:38 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-01-13 15:12 . 2009-10-19 13:35 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-01-10 17:39 . 2010-01-10 17:39 -------- d-----w- c:\users\Toshiba Satellite\AppData\Local\Mozilla
2010-01-09 14:42 . 2010-01-09 21:31 69 ----a-w- c:\users\Toshiba Satellite\jagex_runescape_preferences2.dat
2010-01-09 14:34 . 2010-01-09 21:30 39 ----a-w- c:\users\Toshiba Satellite\jagex_runescape_preferences.dat
2010-01-09 14:33 . 2010-01-09 14:33 -------- d-----w- C:\.jagex_cache_32
2010-01-06 13:47 . 2010-01-17 18:28 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\vlc
2010-01-06 13:45 . 2010-01-06 13:45 -------- d-----w- c:\program files\VideoLAN
2010-01-05 20:29 . 2010-01-16 23:50 -------- d-----w- c:\program files\Xvid
2010-01-05 20:29 . 2009-06-07 15:24 180224 ----a-w- c:\windows\system32\xvidvfw.dll
2010-01-05 20:29 . 2009-06-07 15:16 819200 ----a-w- c:\windows\system32\xvidcore.dll
2010-01-02 22:15 . 2010-01-02 22:15 0 --sha-w- c:\windows\system32\sys_drv_2.dat
2010-01-02 22:15 . 2010-01-02 22:15 0 --sha-w- c:\windows\system32\sys_drv.dat
2010-01-02 21:51 . 2010-01-02 21:51 180224 ----a-w- c:\windows\system32\WinVd32.sys
2010-01-02 21:51 . 2010-01-02 21:51 7680 ----a-w- c:\windows\system32\WinFLsrv.exe
2010-01-02 21:51 . 2010-01-02 21:51 17984 ----a-w- c:\windows\system32\WinFLdrv.sys
2010-01-02 21:51 . 2010-01-02 21:51 -------- d-----w- c:\program files\Folder Lock 6
2010-01-02 18:24 . 2010-01-02 18:24 -------- d-----w- c:\program files\Crypto Systems
2010-01-02 16:58 . 2010-01-02 17:05 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\Dev-Cpp
2010-01-02 16:58 . 2010-01-02 16:58 -------- d-----w- C:\Dev-Cpp
2009-12-29 23:04 . 2009-12-29 23:04 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\ImTOO Software Studio
2009-12-29 23:03 . 2009-12-29 23:03 -------- d-----w- c:\program files\ImTOO
2009-12-29 22:57 . 2009-12-29 22:57 -------- d-----w- c:\program files\Alpa
2009-12-29 21:53 . 2009-12-29 23:08 -------- d-----w- c:\users\Toshiba Satellite\AppData\Local\Apple Computer
2009-12-29 21:53 . 2009-12-29 21:54 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\Apple Computer
2009-12-29 21:51 . 2009-12-29 21:52 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-29 21:50 . 2009-12-29 21:50 -------- d-----w- c:\program files\Bonjour
2009-12-29 21:49 . 2009-12-29 21:50 -------- d-----w- c:\program files\QuickTime
2009-12-29 21:49 . 2010-01-16 19:53 -------- d-----w- c:\programdata\Apple Computer
2009-12-29 21:48 . 2009-12-29 21:48 -------- d-----w- c:\users\Toshiba Satellite\AppData\Local\Apple
2009-12-29 21:48 . 2009-12-29 21:48 -------- d-----w- c:\program files\Apple Software Update
2009-12-29 21:45 . 2010-01-16 19:53 -------- d-----w- c:\program files\Common Files\Apple
2009-12-29 21:45 . 2009-12-29 21:45 -------- d-----w- c:\programdata\Apple
2009-12-23 03:17 . 2009-12-23 03:17 499712 ----a-w- c:\windows\system32\msvcp71.dll
2009-12-23 03:17 . 2009-12-23 03:17 348160 ----a-w- c:\windows\system32\msvcr71.dll
2009-12-23 03:17 . 2009-12-23 03:17 1060864 ----a-w- c:\windows\system32\MFC71.dll
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-19 17:27 . 2009-11-19 18:35 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\Skype
2010-01-19 17:20 . 2010-01-16 13:42 -------- d-----w- c:\program files\Spyware Doctor
2010-01-19 15:05 . 2009-11-19 18:38 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\skypePM
2010-01-16 14:01 . 2010-01-16 13:35 -------- d-----w- c:\program files\Common Files\PC Tools
2010-01-16 13:42 . 2010-01-16 13:42 -------- d-----w- c:\users\Toshiba Satellite\AppData\Roaming\PC Tools
2010-01-16 13:42 . 2010-01-16 13:42 -------- d-----w- c:\programdata\PC Tools
2010-01-14 16:42 . 2009-11-15 13:26 -------- d-----w- c:\programdata\Microsoft Help
2010-01-14 16:41 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-04 17:13 . 2009-11-15 22:17 -------- d-----w- c:\program files\Google
2010-01-02 22:42 . 2009-11-15 12:57 667352 ----a-w- c:\windows\system32\perfh013.dat
2010-01-02 22:42 . 2009-11-15 12:57 126854 ----a-w- c:\windows\system32\perfc013.dat
2009-12-12 12:25 . 2009-11-15 13:18 99864 ----a-w- c:\users\Toshiba Satellite\AppData\Local\GDIPFONTCACHEV1.DAT
2009-12-11 22:35 . 2009-11-15 13:54 -------- d-----w- c:\program files\Microsoft Works
2009-11-27 19:34 . 2009-11-27 19:34 -------- d-----w- c:\programdata\McAfee
2009-11-27 18:06 . 2009-11-27 18:06 484976 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtbF0E9.tmp.exe
2009-11-27 03:27 . 2009-11-27 03:27 -------- d-----w- c:\program files\Windows Portable Devices
2009-11-27 03:26 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-27 03:26 . 2009-11-27 03:26 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2009-11-25 19:38 . 2009-11-25 19:37 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-25 19:34 . 2009-11-25 19:34 -------- d-----w- c:\programdata\McAfee Security Scan
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2009-11-25 17:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2009-11-24 22:17 . 2009-11-24 22:18 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-24 22:17 . 2009-11-24 22:17 -------- d-----w- c:\program files\Java
2009-11-24 16:32 . 2009-11-24 16:32 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-11-22 08:17 . 2006-11-02 10:32 101888 ----a-w- c:\windows\system32\ifxcardm.dll
2009-11-22 08:17 . 2006-11-02 10:32 82432 ----a-w- c:\windows\system32\axaltocm.dll
2009-11-21 06:40 . 2009-12-09 11:58 916480 ----a-w- c:\windows\system32\wininet.dll
2009-11-21 06:34 . 2009-12-09 11:58 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-11-21 06:34 . 2009-12-09 11:58 109056 ----a-w- c:\windows\system32\iesysprep.dll
2009-11-21 04:59 . 2009-12-09 11:58 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-11-19 18:38 . 2009-11-19 18:38 56 ---ha-w- c:\programdata\ezsidmv.dat
2009-11-16 18:09 . 2009-11-16 18:09 61440 ----a-w- c:\windows\system32\winipsec.dll
2009-11-16 18:09 . 2009-11-16 18:09 272896 ----a-w- c:\windows\system32\polstore.dll
2009-11-16 18:01 . 2009-11-16 18:01 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2009-11-16 18:01 . 2009-11-16 18:01 17920 ----a-w- c:\windows\system32\netevent.dll
2009-11-16 18:01 . 2009-11-16 18:01 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2009-11-16 18:01 . 2009-11-16 18:01 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2009-11-16 18:01 . 2009-11-16 18:01 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2009-11-16 18:01 . 2009-11-16 18:01 19968 ----a-w- c:\windows\system32\ARP.EXE
2009-11-16 18:01 . 2009-11-16 18:01 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2009-11-16 18:01 . 2009-11-16 18:01 105984 ----a-w- c:\windows\system32\netiohlp.dll
2009-11-16 18:01 . 2009-11-16 18:01 10240 ----a-w- c:\windows\system32\finger.exe
2009-11-16 18:01 . 2009-11-16 18:01 904776 ----a-w- c:\windows\system32\drivers\tcpip.sys
2009-11-16 18:01 . 2009-11-16 18:01 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2009-11-16 17:55 . 2009-11-16 17:55 127488 ----a-w- c:\windows\system32\L2SecHC.dll
2009-11-16 17:55 . 2009-11-16 17:55 68096 ----a-w- c:\windows\system32\wlanhlp.dll
2009-11-16 17:55 . 2009-11-16 17:55 65024 ----a-w- c:\windows\system32\wlanapi.dll
2009-11-16 17:55 . 2009-11-16 17:55 513536 ----a-w- c:\windows\system32\wlansvc.dll
2009-11-16 17:55 . 2009-11-16 17:55 302592 ----a-w- c:\windows\system32\wlansec.dll
2009-11-16 17:55 . 2009-11-16 17:55 293376 ----a-w- c:\windows\system32\wlanmsm.dll
2009-11-16 17:55 . 2009-11-16 17:55 15181 ----a-w- c:\windows\system32\gatherWirelessInfo.vbs
2009-11-16 17:53 . 2009-11-16 17:53 34304 ----a-w- c:\windows\system32\atmlib.dll
2009-11-16 17:53 . 2009-11-16 17:53 289792 ----a-w- c:\windows\system32\atmfd.dll
2009-11-16 17:53 . 2009-11-16 17:53 23552 ----a-w- c:\windows\system32\lpk.dll
2009-11-16 17:53 . 2009-11-16 17:53 10240 ----a-w- c:\windows\system32\dciman32.dll
2009-11-16 17:50 . 2009-11-16 17:50 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2009-11-16 17:50 . 2009-11-16 17:50 218624 ----a-w- c:\windows\system32\msv1_0.dll
2009-11-16 17:50 . 2009-11-16 17:50 175104 ----a-w- c:\windows\system32\wdigest.dll
2009-11-16 17:50 . 2009-11-16 17:50 9728 ----a-w- c:\windows\system32\lsass.exe
2009-11-16 17:50 . 2009-11-16 17:50 72704 ----a-w- c:\windows\system32\secur32.dll
2009-11-16 17:50 . 2009-11-16 17:50 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2009-11-16 17:46 . 2009-11-16 17:46 98816 ----a-w- c:\windows\system32\mfps.dll
2009-11-16 17:46 . 2009-11-16 17:46 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2009-11-16 17:46 . 2009-11-16 17:46 2868224 ----a-w- c:\windows\system32\mf.dll
2009-11-16 17:46 . 2009-11-16 17:46 24576 ----a-w- c:\windows\system32\mfpmp.exe
2009-11-16 17:46 . 2009-11-16 17:46 2048 ----a-w- c:\windows\system32\mferror.dll
2009-11-16 17:36 . 2009-11-16 17:36 71680 ----a-w- c:\windows\system32\atl.dll
2009-11-16 17:29 . 2009-11-16 17:29 3600456 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-11-16 17:29 . 2009-11-16 17:29 3548216 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-11-16 17:23 . 2009-11-16 17:23 160256 ----a-w- c:\windows\system32\wkssvc.dll
2009-11-16 17:21 . 2009-11-16 17:21 53248 ----a-w- c:\windows\system32\tsgqec.dll
2009-11-16 17:21 . 2009-11-16 17:21 2066432 ----a-w- c:\windows\system32\mstscax.dll
2009-11-16 17:21 . 2009-11-16 17:21 136192 ----a-w- c:\windows\system32\aaclient.dll
2009-11-16 17:19 . 2009-11-16 17:19 2048 ----a-w- c:\windows\system32\msxml3r.dll
2009-11-16 17:04 . 2009-11-16 17:04 623616 ----a-w- c:\windows\system32\localspl.dll
2009-11-16 17:03 . 2009-11-16 17:03 91136 ----a-w- c:\windows\system32\avifil32.dll
2009-11-16 17:03 . 2009-11-16 17:03 82944 ----a-w- c:\windows\system32\mciavi32.dll
2009-11-16 17:03 . 2009-11-16 17:03 65024 ----a-w- c:\windows\system32\avicap32.dll
2009-11-16 17:03 . 2009-11-16 17:03 31232 ----a-w- c:\windows\system32\msvidc32.dll
2009-11-16 17:03 . 2009-11-16 17:03 12800 ----a-w- c:\windows\system32\msrle32.dll
2009-11-16 17:03 . 2009-11-16 17:03 123904 ----a-w- c:\windows\system32\msvfw32.dll
2009-11-16 16:51 . 2009-11-16 16:51 1965056 ----a-w- c:\windows\system32\NlsData001b.dll
2009-11-16 16:46 . 2009-11-16 16:46 6656 ----a-w- c:\windows\system32\kbd106n.dll
2009-11-16 16:30 . 2009-11-16 16:30 37888 ----a-w- c:\windows\system32\printcom.dll
2009-11-16 16:29 . 2009-11-16 16:29 2036736 ----a-w- c:\windows\system32\win32k.sys
2009-11-16 16:28 . 2009-11-16 16:28 14848 ----a-w- c:\windows\system32\wshrm.dll
2009-11-16 16:27 . 2009-11-16 16:27 313344 ----a-w- c:\windows\system32\wmpdxm.dll
2009-11-16 15:42 . 2009-11-16 15:42 41984 ----a-w- c:\windows\system32\netfxperf.dll
2009-11-16 15:19 . 2009-11-16 15:19 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2009-11-16 15:19 . 2009-11-16 15:19 2560 ----a-w- c:\windows\AppPatch\AcRes.dll
2009-11-16 15:19 . 2009-11-16 15:19 542720 ----a-w- c:\windows\AppPatch\AcLayers.dll
2009-11-16 15:19 . 2009-11-16 15:19 458752 ----a-w- c:\windows\AppPatch\AcSpecfc.dll
2009-11-16 15:19 . 2009-11-16 15:19 2159616 ----a-w- c:\windows\AppPatch\AcGenral.dll
2009-11-16 15:19 . 2009-11-16 15:19 173056 ----a-w- c:\windows\AppPatch\AcXtrnal.dll
2009-11-16 15:19 . 2009-11-16 15:19 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-11-25 12:02 1230080 ----a-w- c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"MsnMsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"RegistryMechanic"="c:\program files\Registry Mechanic\RMTray.exe" [2009-11-25 292824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"snp2std"="c:\windows\vsnp2std.exe" [2005-10-20 339968]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-24 149280]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
"SSDMonitor"="c:\program files\Common Files\PC Tools\sMonitor\SSDMonitor.exe" [2009-11-25 104408]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-01-16 2033432]
"ISTray"="c:\program files\Spyware Doctor\pctsTray.exe" [2009-11-18 1243088]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(:e5,8b,d5,aa,f7,6d,ca,01
R0 AvgRkx86;avgrkx86.sys;c:\windows\System32\drivers\avgrkx86.sys [16/01/2010 18:20 161800]
R0 PCTCore;PCTools KDS;c:\windows\System32\drivers\PCTCore.sys [16/01/2010 14:42 207792]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [16/01/2010 18:20 333192]
R1 AvgTdiX;AVG Network Redirector;c:\windows\System32\drivers\avgtdix.sys [16/01/2010 18:20 360584]
R2 avg9wd;AVG WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [16/01/2010 18:19 285392]
R2 Browser Defender Update Service;Browser Defender Update Service;c:\program files\Spyware Doctor\BDT\BDTUpdateService.exe [16/01/2010 15:01 112592]
R2 WinFLdrv;WinFLdrv;c:\windows\System32\WinFLdrv.sys [2/01/2010 22:51 17984]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [18/11/2009 22:21 21504]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [15/11/2009 23:10 54632]
S3 fsssvc;De service Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [5/08/2009 22:48 704864]
--- Andere Services/Drivers In Geheugen ---
*Deregistered* - PCTSDInjDriver32
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Inhoud van de 'Gedeelde Taken' map
2010-01-19 c:\windows\Tasks\User_Feed_Synchronization-{065C60B7-E560-457C-8F21-CF3E086B8675}.job
- c:\windows\system32\msfeedssync.exe [2009-12-09 04:59]
.
.
------- Bijkomende Scan -------
.
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://g.msn.be/0SENLBE/SAOS01?FORM=TOOLBR
IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
FF - ProfilePath - c:\users\Toshiba Satellite\AppData\Roaming\Mozilla\Firefox\Profiles\2efqq2kv.default\
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils2.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils3.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils35.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\xpavgtbapi.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - ORPHANS VERWIJDERD - - - -
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover
Rootkit scan 2010-01-19 18:36
Windows 6.0.6002 Service Pack 2 NTFS
scannen van verborgen processen ...
scannen van verborgen autostart items ...
scannen van verborgen bestanden ...
Scan succesvol afgerond
verborgen bestanden: 0
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Voltooingstijd: 2010-01-19 18:48:47
ComboFix-quarantined-files.txt 2010-01-19 17:48
Pre-Run: 3.681.087.488 bytes beschikbaar
Post-Run: 3.513.634.816 bytes beschikbaar
- - End Of File - - E9042D642E339E60B62221FF28C1657B
Hartelijk dan voor de moeite !!!!
-
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:22:31, on 19/01/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\AVG\AVG9\avgam.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Registry Mechanic\regmech.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Bing
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Bing
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [sSDMonitor] C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [iSTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RMTray.exe /S
O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: In weblog opnemen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &In weblog opnemen met Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldnl-be.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Browser Defender Update Service - Threat Expert Ltd. - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - PC Tools - C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
--
End of file - 10422 bytes
Alvast bedankt voor de moeite !!!
-
Hey , ik wou jullie hulp vragen over mijn probleem.
Mijn computer is zeer traag wanneer ik het opstart en blijft meestal hangen .
Ik heb Cccleaner , spywarde doctor , registry mechanic , avg antivirus 9.0 en mijn laptop is nog altijd traag .
Help Aub
Groetjes Alpa
-
Zeeer Handig
Dank je wel
Groetjes Alpa
-
Hartelijk bedankt , ik was al aan het twijfelen of dat hij wel degelijk werkte
dankzij dit weet ik nu zeker dat het werkt
Groetjeess Alpa
kan zijn laptop niet afsluiten
in Archief Windows Algemeen
Geplaatst: