Ga naar inhoud

Sick

Lid
  • Items

    68
  • Registratiedatum

  • Laatst bezocht

Alles dat geplaatst werd door Sick

  1. Helaas lukt het niet om de iso te branden met freeisoburner. Ik kan ook mijn computer niet starten in veilige modus. Is er geen andere oplossing? Ik beschik even over een laptop maar enkel voor een paar uurtjes. Anders moet ik weer een week wachten. Ik zou het zeker en vast apprecieren als ik zo snel mogelijk een antwoord krijg.
  2. Het is eindelijk gelukt. Wat zou ik nu moeten doen? Ik heb hier 2 CDs. Product recovery DVD Windows XP Home edition SP2 en Product recovery DVD Microsoft Works 8.0. De CD Works 8.0 kan ik niet booten via de CD-ROM maar de XP home edition SP2 wel. Hier staat op dat als ik het besturingssysteem herstel worden alle gegevens op de harde schijf verwijderd. Alles wat in de harde schijf staat is belangrijk dus ik kan echt niets verwijderen. Foto's enzovoort horen toch niet bij de harde schijf maar toch bij RAM? Foto's enzovoort zitten ook niet op de harde schijf dus worden deze dan ook verwijderd?
  3. Het is redelijk een oude computer die ik in 2006 heb gekocht maar dat heeft er niets mee te maken. Ik begrijp niet waarom de computer niet vanaf cd-rom kan starten. Ik heb enkele maanden geleden mijn computer geformateerd en toen werkte alles. Dit komt door het programma Kies van de officiele Samsung website nadat ik een video wou zetten op mijn gsm werdt er gevraagt om iets te installeren zodat het mogelijk is om de video te kunnen bekijken. Ik druk ja maar nadien verwijderd het de video die in de C: schijf zat. Waarschijnelijk verwijderde dat ook enkele belangrijke bestanden zoals NTLDR en anderen. Ik heb geen zin om even 100 euro te betalen om deze computer te repareren. Dan koop ik nog liever een nieuwe. Toch nog zeer erg bedankt voor uw hulp.
  4. Ik kan niet starten op veilige modus. De melding blijft; NTLDR ontbreekt.
  5. Was dat niet F8 waarmee je start op veilige modus?
  6. Heb ik al meerdere malen geprobeerd maar dit lukt ook niet. Cd-rom staat als eerste boot device maar het blijft mislukken. Ik krijg ook niet de melding: Press any key to boot from cd. Ik krijg telkens de melding: NTLDR ontbreekt etc.
  7. Beste, Als ik mijn computer opstart krijg ik de melding: "NTLDR ontbreekt Druk CTRL+ALT+DEL om opnieuw te starten" Ik wou de restore functie gebruiken van de XP CD maar ik kan niet booten vanaf de CD-ROM. Het staat juist ingesteld om via CD-ROM als eerst te booten maar helaas lukt dit niet. Enig idee hoe ik dit probleem gemakkelijk kan oplossen? Ik heb maar ongeveer 2 uur de tijd om dit op te lossen anders beschik ik niet meer over een andere computer.
  8. Vandaag heb ik Windows 7 succesvol geinstalleerd. Mijn vorige OS was XP. Helaas heb ik enkele problemen ondervonden bij het installeren van de drivers. Om de drivers te installeren heb ik service pack 2 nodig. Zoals hieronder vermeld op de afbeelding http://img801.imageshack.us/img801/5885/systemt.png http://img205.imageshack.us/img205/8308/54813232.png http://img801.imageshack.us/img801/4283/networko.png http://img641.imageshack.us/img641/9949/driverinstallerror.png Heeft er iemand enig idee hoe ik mijn drivers kan installeren zonder service pack 2? Of is het mogelijk om drivers te downloaden via het internet dat ik dan op mijn computer kan installeren dat compatibel is met windows 7? Ook kan ik niet op het internet en maak ik momenteel gebruik van een vriends laptop. Ik heb geen sound, drivers en geen toegang tot het internet. Alle hulp is zeker gewaardeerd. Sick."
  9. Ik trek nog steeds de stekker uit om mijn computer af te sluiten. Ik heb combofix gestart en er stond duidelijk op dat het voor zwaar geïnfecteerde computers dubbel zo lang kan duren. En dat is dan ongeveer 20 minuten. Toen ik combofix heb gestart ben ik naar buiten gegaan en ik heb toen mijn pc zo aan laten staan. Pas na enkele uren ben ik terug gekomen en zie ik dat het bij deel 46 gestopt is. Enig idee hoe dit komt? Of zijn er ook andere programma's die dit probleem kunnen oplossen? Alvast bedankt.
  10. Ik heb net een nieuwe externe hardeschijf gekocht van 1.5 terabyte. Ook als ik naar de disc management ga word die ook niet herkent. 1.5TB (1500GB) eSATA & USB 2.0 Enig idee hoe ik dit probleem kan oplossen ?
  11. Als je combofix start sluit het automatisch alle browsers en krijg je geen verbinding meer met het internet.Als je de browsers terug start, bv. Apple safari en Firefox sluiten deze direct af.Ik heb de internet verbinding herstelt waardoor ik terug op het internet kan maar combofix blijft nog altijd runnen. Waarschijnlijk is het omdat ik nu gebruik maak van het internet.Heb je all eens combofix gebruikt ? Zoja, kon je dan nog gebruik maken van het internet ?
  12. Combofix is al 2 uurtjes bezig en blijft staan bij Voltooid Deel 49. Er stond op dat dit gewoonlijk niet langer dan 10 minuten duurt en voor zware besmette computers duurt het dubbel zo lang.Maar het is al 2 uur bezig. Enig idee wat het probleem kan zijn ?
  13. Hier heb je de HijackThis Log: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:14:13, on 18-6-2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Google\Update\1.2.183.29\GoogleCrashHandler.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Athan\Athan.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Telemeter 3.0\telemeter3.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\Vista Drive Icon\DrvIcon.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\DNA\btdna.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\WINDOWS\System32\svchost.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\xampp\mysql\bin\mysqld.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\WINDOWS\system32\svchost.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Program Files\Safari\Safari.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\photoshop cs4 special edition\PhotoshopCS4.exe C:\Program Files\photoshop cs4 special edition\App\Photoshop\Photoshop.exe C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\WINDOWS\system32\NOTEPAD.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=22028 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\IPSBHO.DLL O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll O4 - HKLM\..\Run: [snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAShCut.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [Telemeter 3.0] "C:\Program Files\Telemeter 3.0\telemeter3.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bitTorrent DNA] "C:\Program Files\DNA\btdna.exe" O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [TrueTransparency] "C:\Documents and Settings\Eigenaar\Bureaublad\Programma's\TrueTransparency\TrueTransparency.exe" O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab O16 - DPF: {C212D449-8B3C-41F2-BD9A-047BD770550F} (Perparer Class) - http://www.fiaa.eu/OPLauncher.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate1ca37cace1a18fe) (gupdate1ca37cace1a18fe) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe O23 - Service: Norton AntiVirus (NAV) - Symantec Corporation - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe -- End of file - 10551 bytes Hier heb je de Malwarebytes Log: Malwarebytes' Anti-Malware 1.46 Malwarebytes Databaseversie: 4211 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 18-6-2010 16:13:36 mbam-log-2010-06-18 (16-13-36).txt Scantype: Snelle scan Objecten gescand: 150610 Verstreken tijd: 12 minuut/minuten, 26 seconde(n) Geheugenprocessen geïnfecteerd: 0 Geheugenmodulen geïnfecteerd: 0 Registersleutels geïnfecteerd: 0 Registerwaarden geïnfecteerd: 0 Registerdata geïnfecteerd: 0 Mappen geïnfecteerd: 0 Bestanden geïnfecteerd: 0 Geheugenprocessen geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Registersleutels geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Registerwaarden geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Registerdata geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Mappen geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd) Bestanden geïnfecteerd: (Geen kwaadaardige objecten gedetecteerd)
  14. Zeer erg bedankt voor je hulp! Het browsen gaat al een stuk sneller ! (: Hier heb je de HijackThis log: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 15:19:34, on 18-6-2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Google\Update\1.2.183.29\GoogleCrashHandler.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Athan\Athan.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Telemeter 3.0\telemeter3.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\Vista Drive Icon\DrvIcon.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\DNA\btdna.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\WINDOWS\System32\svchost.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\xampp\mysql\bin\mysqld.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\WINDOWS\system32\svchost.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Program Files\Safari\Safari.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\photoshop cs4 special edition\PhotoshopCS4.exe C:\Program Files\photoshop cs4 special edition\App\Photoshop\Photoshop.exe C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = Windows XP: Consumer security software providers R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (file missing) O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\IPSBHO.DLL O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll O4 - HKLM\..\Run: [snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAShCut.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [Telemeter 3.0] "C:\Program Files\Telemeter 3.0\telemeter3.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe O4 - HKLM\..\Run: [b2C_AGENT] C:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe" O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bitTorrent DNA] "C:\Program Files\DNA\btdna.exe" O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [TrueTransparency] "C:\Documents and Settings\Eigenaar\Bureaublad\Programma's\TrueTransparency\TrueTransparency.exe" O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab O16 - DPF: {C212D449-8B3C-41F2-BD9A-047BD770550F} (Perparer Class) - http://www.fiaa.eu/OPLauncher.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: 1250942564 (.1250942564) - Unknown owner - C:\Program Files\1250942564\amina1250942564L.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate1ca37cace1a18fe) (gupdate1ca37cace1a18fe) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe O23 - Service: Norton AntiVirus (NAV) - Symantec Corporation - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe -- End of file - 10793 bytes
  15. Er zijn in totaal 323 objecten geinfecteerd.Ik sta versteld Bij Hijackthis moet ik het dan telkens selecteren.Het is nogal irritant en het vergt veel tijd of moet ik alle bestanden die een rare naam hebben verwijderen ? Zoals: O4 - HKCU\..\Run: [uqqbm1] C:\WINDOWS\system32\kpa3mhn2.exe Bij het lezen van hoe je combofix moet gebruiken zie ik dat het een zeer krachtige tool is. Je bent zeer ervaren maar toch zou ik willen weten of deze scan wel voldoende is. Hier heb je de log van MBAM Malwarebytes' Anti-Malware 1.46 Malwarebytes Databaseversie: 4211 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 18-6-2010 12:38:33 mbam-log-2010-06-18 (12-38-33).txt Scantype: Snelle scan Objecten gescand: 152359 Verstreken tijd: 1 uur/uren, 7 minuut/minuten, 20 seconde(n) Geheugenprocessen geïnfecteerd: 2 Geheugenmodulen geïnfecteerd: 1 Registersleutels geïnfecteerd: 7 Registerwaarden geïnfecteerd: 86 Registerdata geïnfecteerd: 1 Mappen geïnfecteerd: 7 Bestanden geïnfecteerd: 219 Geheugenprocessen geïnfecteerd: C:\Documents and Settings\All Users\Application Data\Zwunzi\zwunzi165.exe (Adware.Zwunzi) -> Unloaded process successfully. C:\Program Files\Zwunzi\zwunzi.exe (Adware.Zwunzi) -> Unloaded process successfully. Geheugenmodulen geïnfecteerd: C:\Program Files\Zwunzi\zwunzi.dll (Adware.Zwunzi) -> Delete on reboot. Registersleutels geïnfecteerd: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{k8okq32g-5i80-r5i6-0qo6-d27spi6p615f} (Generic.Bot.H) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.ShopperReports) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe (Adware.Hotbar) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zwunzi (Adware.Zwunzi) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Zwunzi (Adware.Zwunzi) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\zwunzi service (Adware.Zwunzi) -> Quarantined and deleted successfully. Registerwaarden geïnfecteerd: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qlhhsno (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vqq0x (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kfgbcx0 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\evlwwm (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vwrhid (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xdyuu3q (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\oozvllh (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xyooe (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kaqmrh (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qmrhn6 (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\iyytup (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hidtupf (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xxitupv (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\topuq1g (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bwnddt (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vggwxc8 (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\uklq8 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qrxhdy (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rmns81 (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rcxyo1e (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rndo6 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ojkfg (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ukq3w (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ghsxnj (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dotepq (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\upql0 (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pklq8 (Backdoor.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\jok6a (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wndooef (Backdoor.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lqmrcn (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\awmmd (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\notefv7 (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nojzavl (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\eafqbcx (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hxytup (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tjka1q (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\yoo3k (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mrcno (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rsnoe1u (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\diojzav (Backdoor.Bot) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ntdzu (Backdoor.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ytjkf (Backdoor.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sdezpql (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tto6k (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\itupfg (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kfvmm (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\grc1y (VirTool.CeeInject) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\csitt (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\jkfvwrs (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msdy0 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lbcsxit (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\uzpv6 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rsndu (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qvrr2 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ufgbh6 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qhhsnoj (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qgb03 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\gwrhxs1 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bbmxytz (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xcydzu (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\njj2a (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\agrbxst (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wxndeuu (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mntdzuv (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hnxtopu (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hddojkf (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\iiyze8 (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pkawbxn (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\yjkv0 (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nyyopu (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\dokav (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\klmh03 (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hcxyj (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qmrcn (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vwrhide (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\qhxxnt6 (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rsnt6 (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rmnso6e (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nojk81 (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\aghnxt (Trojan.DDox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lwhy1 (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vmhcs1j (Trojan.Ddox) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\xozkvqb (VirTool.CeeInject) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msn (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\taskman (Trojan.Agent) -> Delete on reboot. Registerdata geïnfecteerd: HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully. Mappen geïnfecteerd: C:\Documents and Settings\All Users\Application Data\Zwunzi (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F} (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\chrome (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\defaults (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\defaults\preferences (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\Zwunzi_deleted_ (Adware.Zwunzi) -> Quarantined and deleted successfully. Bestanden geïnfecteerd: C:\WINDOWS\system32\vwrhidez.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\aqrmxxno.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\installse\msupdater.exe (Generic.Bot.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\oeu0vlr66i.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\j1ufgbh60j.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\h703o0pfl6.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\m2noj081qbc.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\81ozavl.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\o1f703m1d7.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\0hxd66u.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\81yjkfv.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mns86e870b.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hxytukfvwr.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\q81cnojza.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\v2bcx081.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\cdi86u81gr.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\kfvwrhidez.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\m0nyuzpv.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\e81qbcxnojz.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\81uflhm.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ytupfghxxt.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\aqwrx2dtk1.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\w2xnopp2vwr.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\jefk86mxxy.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\xd2jzavwhs.exe (Backdoor.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\3kv5lw8.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\w5ssijo86q.exe (Backdoor.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\zpv60xst.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\uva83m3i0j.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\snt60vqr.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\1efk3g1.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\e6ua2brsn.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\h081ozavb.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hdd66u86g81.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\oz1f70mm.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mccsi1z70v.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\vq0xinyjkf.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bmhn2e5zvq.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bmintjkfv.exe (Backdoor.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ytupql08.exe (Backdoor.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\di81ufgb.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\di86u81gr.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\i6y81kvwr.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\6brc1st.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\g6c8703k.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mhidj66a.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\dtupfgbcx0.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nnoj081q.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\lmhid081.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\xnt66k81hcs.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nndj2fqb.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\pkkbg81s8.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\3g0hxd6.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\l2c5xtop.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\fvb81s5t.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qghm8703.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\grrsn081u.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\70uuka0.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\60pvfbw.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\tjkfgb081i.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\k81whidtupf.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\w0ni0pvf.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\csty86k8.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hn66e86q.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\siy0zpv6.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ijo86a81mx.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ttpp66g8.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bwrniyo5u6q.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\c86o3avb6.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\nojzavb676d.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\v6hxi2yo0pk.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bcx03o0p.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\0xdnjef.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\6w81itu.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bwxc86o81a.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\m1cdi86u.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\1ozavb6.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\euva86m81y.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\abg8703o1k.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qbbrsnt66.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Mijn documenten\downloads\setup.exe (Adware.Hotbar) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-6857106645-2503570777-252272704-1065\yv8g67.exe (Worm.Autorun. -> Delete on reboot. C:\WINDOWS\system32\1cdi3e1.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\1zjufgb.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\3c1t703.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\fqvg3snt2zp.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\lhxi1yze86q.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mns81epqlb.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\n0te0kfgb0.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\wmc1ttp0ql.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\bg3c1yze87.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\dozavb60d.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\mrnn86upll.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\kfvwrhid.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hhxytup0.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hid081kvwr.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\WINDOWS\system32\csi1z703.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\brsndezvvr.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\WINDOWS\system32\e6a86m3i.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hsdezf66w.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hsdezpqlb.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\xsty81vqrw.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\y6o81almh.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yju5plghm.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ytz60bhrni.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\u3q1mnii0pk.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\u6kvbhx66.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\qrw86i81uf.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\jj66a86m81y.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\i3k1aq0rhn.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\6s81epq.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\WINDOWS\system32\6tjjzf6.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\703g0hx.exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\WINDOWS\system32\81al6ni.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\WINDOWS\system32\81epqlb.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\8703y1u.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\WINDOWS\system32\91epqlr.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\WINDOWS\system32\d86kkbg8.exe (Adware.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\k81hcdi81.exe (Trojan.Buzus) -> Quarantined and deleted successfully. C:\WINDOWS\system32\kpa3mhn2.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\WINDOWS\system32\l66c3y1u.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\076.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\169.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\251.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\288.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\333.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\750.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\768.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\797.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\865.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\273.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\274.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\276.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\282.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\581.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\010.exe (Trojan.Refroso) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\032.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\043.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\059.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\895.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\923.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\957.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\973.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\975.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\977.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\294.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\321.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\331.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\832.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\427.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\457.exe (Trojan.Refroso) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\462.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\496.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\506.exe (Trojan.Refroso) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\523.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\525.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\562.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\635.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\644.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\651.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\367.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\407.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\214.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\229.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\239.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\618.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\854.exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\880.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\978.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\603.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\138.exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\161.exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temp\163.exe (Trojan.DDox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\cfewm[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dewnj5[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dfwdwk[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dwdfwq[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dwefweq[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dwegfew[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dwew[1].exe (Adware.Agent) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\dwwmk[1].exe (Backdoor.Agent) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\cvem[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\sdwninm1[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\ddwqwq[1].exe (Adware.Agent) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\fcewwe5[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\fdwfgew[1].exe (Backdoor.Bot) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\08MY3WDB\emgrtl[1].exe (Adware.Agent) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\5D7M8EIP\cccceewd2[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\5D7M8EIP\cdsfed4[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\5D7M8EIP\cewmjlkn3[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\5D7M8EIP\dcenikn6[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\vdvds[1].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\wegfewqfwq[1].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\ewfw[1].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\fefefeede[1].exe (Trojan.Refroso) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\fefweww[1].exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\fegfemlo5[1].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\94ZH1ETO\fegrjkn[1].exe (Trojan.Lethic) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\JVZ9A22Z\fvefwq[1].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\JVZ9A22Z\fvefwq[2].exe (VirTool.CeeInject) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\PBW203PD\dcewwdq4[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\UPDMQ7GB\dcwnikn5[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\UPDMQ7GB\hixewbn1[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\UPDMQ7GB\bvhb1[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\UPDMQ7GB\wbnjdejm2[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Local Settings\Temporary Internet Files\Content.IE5\UPDMQ7GB\dcenlkn4[1].exe (Trojan.Ddox) -> Quarantined and deleted successfully. C:\Documents and Settings\All Users\Application Data\Zwunzi\zwunzi165.exe (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\chrome.manifest (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\install.rdf (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\chrome\zwunzi.jar (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{F270F1AF-34D6-41CB-A9F5-8200EF7DB41F}\defaults\preferences\prefs.js (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\uninstall.exe (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\zwunzi.dll (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\zwunzi.exe (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\Zwunzi_deleted_\zwunzi.dll (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Program Files\Zwunzi\Zwunzi_deleted_\zwunzi.exe (Adware.Zwunzi) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Application Data\logs.dat (Bifrose.Trace) -> Quarantined and deleted successfully. C:\Documents and Settings\Eigenaar\Application Data\ufxw.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\WINDOWS\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
  16. Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 11:14:13, on 17-6-2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Google\Update\1.2.183.29\GoogleCrashHandler.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Athan\Athan.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Telemeter 3.0\telemeter3.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\WINDOWS\System32\svchost.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\xampp\mysql\bin\mysqld.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\WINDOWS\system32\svchost.exe C:\Documents and Settings\All Users\Application Data\Zwunzi\zwunzi163.exe C:\WINDOWS\system32\wuauclt.exe C:\xampp\apache\bin\httpd.exe C:\Program Files\Vista Drive Icon\DrvIcon.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\DNA\btdna.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe C:\Program Files\Zwunzi\zwunzi.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Pando Networks\Media Booster\PMB.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\AquaSnap\AquaSnap.Daemon.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Common Files\Adobe\Updater6\Adobe_Updater.exe C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Styler\Styler.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE C:\WINDOWS\system32\msiexec.exe C:\Documents and Settings\Eigenaar\Local Settings\Temp\Adobe\Updater6\aftereffects9\AfterEffects-9.0.2-mul-AdobeUpdate\Setup.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE} R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Search R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = ${URL_SEARCHPAGE} R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, nieuws en entertainment vind je op MSN.nl R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = Windows XP: Consumer security software providers R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: PHPNukeDU Toolbar - {46735dee-f862-49d1-876d-6382794dc625} - C:\Program Files\PHPNukeDU\tbPHP1.dll R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: PHPNukeDU Toolbar - {46735dee-f862-49d1-876d-6382794dc625} - C:\Program Files\PHPNukeDU\tbPHP1.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\IPSBHO.DLL O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: PHPNukeDU Toolbar - {46735dee-f862-49d1-876d-6382794dc625} - C:\Program Files\PHPNukeDU\tbPHP1.dll O3 - Toolbar: DVDVideoSoftTB Toolbar - {e9911ec6-1bcc-40b0-9993-e0eea7f6953f} - C:\Program Files\DVDVideoSoft\tbDVD1.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll O4 - HKLM\..\Run: [snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAShCut.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [Telemeter 3.0] "C:\Program Files\Telemeter 3.0\telemeter3.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [soft soap corn funk] C:\Documents and Settings\All Users\Application Data\Meta Knob Soft Soap\For About.exe O4 - HKLM\..\Run: [6s3BJYZn] C:\WINDOWS\system32\installse\msupdater.exe O4 - HKLM\..\Run: [MSN] C:\Windows\svchost.exe O4 - HKLM\..\Run: [vStQWb2DH0CdHN6K4XA0jxVrkP] C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\j8Lh5.exe O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe O4 - HKLM\..\Run: [b2C_AGENT] C:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe" O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [igfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bitTorrent DNA] "C:\Program Files\DNA\btdna.exe" O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [c3C6dkyW] C:\WINDOWS\system32\installse\msupdater.exe O4 - HKCU\..\Run: [tufvl1] C:\WINDOWS\system32\1vqg0hs.exe O4 - HKCU\..\Run: [avqrw] C:\WINDOWS\system32\91grsd5.exe O4 - HKCU\..\Run: [qvlr66] C:\WINDOWS\system32\5ccsi0j.exe O4 - HKCU\..\Run: [oGGwmo3KefB20AW4ub] C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\j8Lh5.exe O4 - HKCU\..\Run: [ijokaa8] C:\WINDOWS\system32\i6y81vqrw.exe O4 - HKCU\..\Run: [awmmi1y] C:\WINDOWS\system32\ezpqlmh03y.exe O4 - HKCU\..\Run: [vvgbc] C:\WINDOWS\system32\mxytz60bhr.exe O4 - HKCU\..\Run: [qggchdy] C:\WINDOWS\system32\qghm81je.exe O4 - HKCU\..\Run: [ytopu86] C:\WINDOWS\system32\h1sdezf60h.exe O4 - HKCU\..\Run: [avlmhx] C:\WINDOWS\system32\upll2rsn0.exe O4 - HKCU\..\Run: [afvb66] C:\WINDOWS\system32\703m0nd.exe O4 - HKCU\..\Run: [hxi1y] C:\WINDOWS\system32\0brx60z.exe O4 - HKCU\..\Run: [wrmns] C:\WINDOWS\system32\3cxnojz.exe O4 - HKCU\..\Run: [zzav08] C:\WINDOWS\system32\dozavb60d.exe O4 - HKCU\..\Run: [zzkvw] C:\WINDOWS\system32\e6u81grsn.exe O4 - HKCU\..\Run: [agrmsdy] C:\WINDOWS\system32\uva86m81yj.exe O4 - HKCU\..\Run: [wxitdzk] C:\WINDOWS\system32\703o0pf.exe O4 - HKCU\..\Run: [hiydoz] C:\WINDOWS\system32\5ooefk8.exe O4 - HKCU\..\Run: [uuq6g] C:\WINDOWS\system32\tepqlbcxn.exe O4 - HKCU\..\Run: [vlmrc0] C:\WINDOWS\system32\efk86w81it.exe O4 - HKCU\..\Run: [vqrw86] C:\WINDOWS\system32\5bxsty8.exe O4 - HKCU\..\Run: [hcdie6u] C:\WINDOWS\system32\hh2noj081.exe O4 - HKCU\..\Run: [gxnndj] C:\WINDOWS\system32\bcx081ep.exe O4 - HKCU\..\Run: [mhcdi86] C:\WINDOWS\system32\w6m81jefk.exe O4 - HKCU\..\Run: [rrcno] C:\WINDOWS\system32\hm81yjkf.exe O4 - HKCU\..\Run: [rhidtu] C:\WINDOWS\system32\chsdezpq.exe O4 - HKCU\..\Run: [bbcsit] C:\WINDOWS\system32\qbmrcnojz.exe O4 - HKCU\..\Run: [cyyu6k] C:\WINDOWS\system32\mhdd2jkf0.exe O4 - HKCU\..\Run: [xijpzvq] C:\WINDOWS\system32\b081itupv.exe O4 - HKCU\..\Run: [gchsd] C:\WINDOWS\system32\mh081oza.exe O4 - HKCU\..\Run: [snoj08] C:\WINDOWS\system32\03y0zpv.exe O4 - HKCU\..\Run: [wbrx6] C:\WINDOWS\system32\pu86g81sde.exe O4 - HKCU\..\Run: [jkfvwr] C:\WINDOWS\system32\ojzavwr081.exe O4 - HKCU\..\Run: [qmcc81] C:\WINDOWS\system32\upfgbrsnoj.exe O4 - HKCU\..\Run: [ttezav] C:\WINDOWS\system32\xsiy0zpv66m.exe O4 - HKCU\..\Run: [ozuklq8] C:\WINDOWS\system32\tjp60rxh.exe O4 - HKCU\..\Run: [vfbwx] C:\WINDOWS\system32\avlmhxyt.exe O4 - HKCU\..\Run: [fbbwss8] C:\WINDOWS\system32\zkvwrx60z.exe O4 - HKCU\..\Run: [hminyjk] C:\WINDOWS\system32\rx66o86a.exe O4 - HKCU\..\Run: [iyzuf66] C:\WINDOWS\system32\5k1abg8.exe O4 - HKCU\..\Run: [avgb0] C:\WINDOWS\system32\jkva86m9.exe O4 - HKCU\..\Run: [lqmcxy] C:\WINDOWS\system32\tpp2vwr05o1.exe O4 - HKCU\..\Run: [mhiy1o] C:\WINDOWS\system32\b70iioj081.exe O4 - HKCU\..\Run: [cdiejfa] C:\WINDOWS\system32\gri1yze86q.exe O4 - HKCU\..\Run: [eukglb] C:\WINDOWS\system32\yze86q81cn.exe O4 - HKCU\..\Run: [pfglw0x] C:\WINDOWS\system32\u0vlr66i.exe O4 - HKCU\..\Run: [uqggc1s] C:\WINDOWS\system32\afqbcxno.exe O4 - HKCU\..\Run: [ndejzf2] C:\WINDOWS\system32\ny1faq0r.exe O4 - HKCU\..\Run: [sdjzf61] C:\WINDOWS\system32\60pufvb.exe O4 - HKCU\..\Run: [jkfgrw] C:\WINDOWS\system32\1p70lhm.exe O4 - HKCU\..\Run: [wmind] C:\WINDOWS\system32\rhn60pvf.exe O4 - HKCU\..\Run: [wxdnj] C:\WINDOWS\system32\b081itupv.exe O4 - HKCU\..\Run: [rsxnt60] C:\WINDOWS\system32\gwxc81zuva.exe O4 - HKCU\..\Run: [nytop] C:\WINDOWS\system32\3o0pfl6.exe O4 - HKCU\..\Run: [agrm6] C:\WINDOWS\system32\5ww3c2y.exe O4 - HKCU\..\Run: [gwbm3] C:\WINDOWS\system32\f70mmcs0tj.exe O4 - HKCU\..\Run: [lrbxst] C:\WINDOWS\system32\agb081it.exe O4 - HKCU\..\Run: [hhid08] C:\WINDOWS\system32\fqbcxd60f.exe O4 - HKCU\..\Run: [mcc81] C:\WINDOWS\system32\vg3mhn60pvf.exe O4 - HKCU\..\Run: [tpp66] C:\WINDOWS\system32\zkaaqg0hd.exe O4 - HKCU\..\Run: [rccsty] C:\WINDOWS\system32\70sxd60.exe O4 - HKCU\..\Run: [fgbc81] C:\WINDOWS\system32\kf081mxy.exe O4 - HKCU\..\Run: [arhsnij] C:\WINDOWS\system32\u86g81s2j0f.exe O4 - HKCU\..\Run: [bgcss8] C:\WINDOWS\system32\a0rm0dy0.exe O4 - HKCU\..\Run: [dttjp6] C:\WINDOWS\system32\mns3o5u0bw.exe O4 - HKCU\..\Run: [ezpqlb] C:\WINDOWS\system32\e5k0rxhd.exe O4 - HKCU\..\Run: [vlrcxyt] C:\WINDOWS\system32\fbrc1sty.exe O4 - HKCU\..\Run: [ppavw] C:\WINDOWS\system32\3qlr2xd.exe O4 - HKCU\..\Run: [cssotep] C:\WINDOWS\system32\ll66c3y0zpv.exe O4 - HKCU\..\Run: [abhrc2] C:\WINDOWS\system32\6a81m6i.exe O4 - HKCU\..\Run: [qwhm86] C:\WINDOWS\system32\66c86o8.exe O4 - HKCU\..\Run: [pllg6c] C:\WINDOWS\system32\6g86s81.exe O4 - HKCU\..\Run: [xnndj6] C:\WINDOWS\system32\gbcx081epq.exe O4 - HKCU\..\Run: [hstzjfa] C:\WINDOWS\system32\6m87081.exe O4 - HKCU\..\Run: [yyoe0] C:\WINDOWS\system32\2zalq2x.exe O4 - HKCU\..\Run: [kglbh6] C:\WINDOWS\system32\zaglmsxto.exe O4 - HKCU\..\Run: [nsoee81] C:\WINDOWS\system32\70uuka0.exe O4 - HKCU\..\Run: [dzpkqg9] C:\WINDOWS\system32\c1yzepal6m.exe O4 - HKCU\..\Run: [wrmnyd] C:\WINDOWS\system32\1cdi81u.exe O4 - HKCU\..\Run: [topu8] C:\WINDOWS\system32\i0pvfbwx.exe O4 - HKCU\..\Run: [stzjf] C:\WINDOWS\system32\nn66e83qr.exe O4 - HKCU\..\Run: [lghm8] C:\WINDOWS\system32\jzf66w86i81.exe O4 - HKCU\..\Run: [upflbc] C:\WINDOWS\system32\yoj0pv5lwh.exe O4 - HKCU\..\Run: [zpqgg] C:\WINDOWS\system32\itupfgbrsn.exe O4 - HKCU\..\Run: [glwhid] C:\WINDOWS\system32\fabg86s81e.exe O4 - HKCU\..\Run: [yze81] C:\WINDOWS\system32\0zpv66m.exe O4 - HKCU\..\Run: [euuka0b] C:\WINDOWS\system32\tjp66g3c.exe O4 - HKCU\..\Run: [jok6g] C:\WINDOWS\system32\dyze81bwxc.exe O4 - HKCU\..\Run: [vbrcdyo] C:\WINDOWS\system32\k5fqbcxnoj.exe O4 - HKCU\..\Run: [evv3m] C:\WINDOWS\system32\jkfvwrx6.exe O4 - HKCU\..\Run: [hiyopk] C:\WINDOWS\system32\fgbrsndezpq.exe O4 - HKCU\..\Run: [kplq3c] C:\WINDOWS\system32\njj2pfgbrsn.exe O4 - HKCU\..\Run: [ooff2] C:\WINDOWS\system32\3k0lbxi.exe O4 - HKCU\..\Run: [vlbcss] C:\WINDOWS\system32\o81almc3y.exe O4 - HKCU\..\Run: [snijo8] C:\WINDOWS\system32\b7081yjkfv.exe O4 - HKCU\..\Run: [klq86] C:\WINDOWS\system32\fvb66s86.exe O4 - HKCU\..\Run: [qmxsn] C:\WINDOWS\system32\7081yja.exe O4 - HKCU\..\Run: [sijo81] C:\WINDOWS\system32\1sdezf6.exe O4 - HKCU\..\Run: [touvb] C:\WINDOWS\system32\dd2u5plghm8.exe O4 - HKCU\..\Run: [nyyop] C:\WINDOWS\system32\gbh610jfvg.exe O4 - HKCU\..\Run: [ukkaq] C:\WINDOWS\system32\xytjkfvwrsn.exe O4 - HKCU\..\Run: [yeflvr] C:\WINDOWS\system32\n1yjkfl60n.exe O4 - HKCU\..\Run: [dje6a] C:\WINDOWS\system32\86e3a0b.exe O4 - HKCU\..\Run: [yoefv70] C:\WINDOWS\system32\s81pklq81.exe O4 - HKCU\..\Run: [epaaq] C:\WINDOWS\system32\tpp86g3c.exe O4 - HKCU\..\Run: [ozavb6] C:\WINDOWS\system32\ojff2lmh0.exe O4 - HKCU\..\Run: [vqmm8] C:\WINDOWS\system32\oj081qbcxd6.exe O4 - HKCU\..\Run: [zvvgbcx] C:\WINDOWS\system32\dezf60hnxt.exe O4 - HKCU\..\Run: [msdnje] C:\WINDOWS\system32\lbbrx60zfpl.exe O4 - HKCU\..\Run: [iyze86] C:\WINDOWS\system32\siy0zpv6.exe O4 - HKCU\..\Run: [ttezav0] C:\WINDOWS\system32\xnojkf08.exe O4 - HKCU\..\Run: [ijzp03] C:\WINDOWS\system32\d60flvrm.exe O4 - HKCU\..\Run: [touvbl] C:\WINDOWS\system32\i81ufgbrs.exe O4 - HKCU\..\Run: [idezf] C:\WINDOWS\system32\dj66a86m.exe O4 - HKCU\..\Run: [epqlbc] C:\WINDOWS\system32\tejufgbrsnd.exe O4 - HKCU\..\Run: [okpal] C:\WINDOWS\system32\y81kvwrhi.exe O4 - HKCU\..\Run: [jpkqrx] C:\WINDOWS\system32\ytjkfvwrsn.exe O4 - HKCU\..\Run: [pqlmc1s] C:\WINDOWS\system32\upqlmh08.exe O4 - HKCU\..\Run: [ffqlmh] C:\WINDOWS\system32\kabg81dy.exe O4 - HKCU\..\Run: [hrnijo] C:\WINDOWS\system32\brc1sty86.exe O4 - HKCU\..\Run: [qbg81] C:\WINDOWS\system32\lbbxx2o5j.exe O4 - HKCU\..\Run: [wxsty81] C:\WINDOWS\system32\wrx2jj66.exe O4 - HKCU\..\Run: [pzvqr] C:\WINDOWS\system32\s0tjp66g86.exe O4 - HKCU\..\Run: [ffqbcx] C:\WINDOWS\system32\d2jkf081.exe O4 - HKCU\..\Run: [fqw5r] C:\WINDOWS\system32\vllbh60jefk.exe O4 - HKCU\..\Run: [fagrm0t] C:\WINDOWS\system32\zu0lg0ntdz.exe O4 - HKCU\..\Run: [afqbcx] C:\WINDOWS\system32\66g86s8.exe O4 - HKCU\..\Run: [chsdu1] C:\WINDOWS\system32\870eeuq.exe O4 - HKCU\..\Run: [ctju1k] C:\WINDOWS\system32\x0topufq.exe O4 - HKCU\..\Run: [uva81] C:\WINDOWS\system32\0vgrmdt.exe O4 - HKCU\..\Run: [ghmi6y] C:\WINDOWS\system32\aqrw81i86u.exe O4 - HKCU\..\Run: [vbhxsno] C:\WINDOWS\system32\1llrcid.exe O4 - HKCU\..\Run: [xhdyz] C:\WINDOWS\system32\sn5y0pk0.exe O4 - HKCU\..\Run: [cnnoj08] C:\WINDOWS\system32\1ijo81a.exe O4 - HKCU\..\Run: [qlbcxno] C:\WINDOWS\system32\70iiyo0.exe O4 - HKCU\..\Run: [rrcnojz] C:\WINDOWS\system32\5hdyze8.exe O4 - HKCU\..\Run: [kabg3] C:\WINDOWS\system32\f1qg5mdie.exe O4 - HKCU\..\Run: [vlmns81] C:\WINDOWS\system32\ll2h0d1e.exe O4 - HKCU\..\Run: [dzuva8] C:\WINDOWS\system32\si0jzf66w8.exe O4 - HKCU\..\Run: [tjpkqrx] C:\WINDOWS\system32\xytz60bhrn.exe O4 - HKCU\..\Run: [vvwr0] C:\WINDOWS\system32\t1epqlr60t.exe O4 - HKCU\..\Run: [vwgxsy] C:\WINDOWS\system32\5w1mns3.exe O4 - HKCU\..\Run: [algmntd] C:\WINDOWS\system32\wwmc0dtz.exe O4 - HKCU\..\Run: [xsyzfp] C:\WINDOWS\system32\wr081yjkfl6.exe O4 - HKCU\..\Run: [wxn70] C:\WINDOWS\system32\pqlr60tzjfa.exe O4 - HKCU\..\Run: [tupql] C:\WINDOWS\system32\6k86w81.exe O4 - HKCU\..\Run: [ppalm] C:\WINDOWS\system32\ytz60bhrni.exe O4 - HKCU\..\Run: [nijok6a] C:\WINDOWS\system32\86y81kv.exe O4 - HKCU\..\Run: [ejfabg] C:\WINDOWS\system32\m86y81kvwrh.exe O4 - HKCU\..\Run: [tupfgb] C:\WINDOWS\system32\i1yjkfvwr.exe O4 - HKCU\..\Run: [bxsty81] C:\WINDOWS\system32\agb081itup.exe O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe O4 - HKCU\..\Run: [rhsnijo] C:\WINDOWS\system32\vlmhxytup0.exe O4 - HKCU\..\Run: [xnojzav] C:\WINDOWS\system32\rmns86e81q.exe O4 - HKCU\..\Run: [wbrxs0z] C:\WINDOWS\system32\brrhn66e8.exe O4 - HKCU\..\Run: [gbrsd0] C:\WINDOWS\system32\870d708.exe O4 - HKCU\..\Run: [qmrhiju] C:\WINDOWS\system32\g5s70tjp.exe O4 - HKCU\..\Run: [iejzf] C:\WINDOWS\system32\hidtupfg.exe O4 - HKCU\..\Run: [uufqwc] C:\WINDOWS\system32\ezk881ci.exe O4 - HKCU\..\Run: [vqrmns8] C:\WINDOWS\system32\upqlbcxd.exe O4 - HKCU\..\Run: [rmnso1e] C:\WINDOWS\system32\plq81c970kk.exe O4 - HKCU\..\Run: [jjzf66] C:\WINDOWS\system32\81ufgbr.exe O4 - HKCU\..\Run: [llwhid] C:\WINDOWS\system32\jzzpv60xdnj.exe O4 - HKCU\..\Run: [siyuzpv] C:\WINDOWS\system32\lmhxytup081.exe O4 - HKCU\..\Run: [mxojefk] C:\WINDOWS\system32\fgb081itup.exe O4 - HKCU\..\Run: [snnto1k] C:\WINDOWS\system32\03y0zpv.exe O4 - HKCU\..\Run: [nsdu1] C:\WINDOWS\system32\glw5xi3upv.exe O4 - HKCU\..\Run: [vrh81] C:\WINDOWS\system32\5ww6hdy.exe O4 - HKCU\..\Run: [uuqvgrs] C:\WINDOWS\system32\ju1l703s0.exe O4 - HKCU\..\Run: [almhn6] C:\WINDOWS\system32\vvlr60tz.exe O4 - HKCU\..\Run: [itejufg] C:\WINDOWS\system32\703a0br.exe O4 - HKCU\..\Run: [cydtz66] C:\WINDOWS\system32\3y0zpv6.exe O4 - HKCU\..\Run: [iyyukk3] C:\WINDOWS\system32\vwrx66o81a.exe O4 - HKCU\..\Run: [afqbc] C:\WINDOWS\system32\kabg81sd.exe O4 - HKCU\..\Run: [iyze8] C:\WINDOWS\system32\s6i86uvg5.exe O4 - HKCU\..\Run: [ciyjkfv] C:\WINDOWS\system32\mhidez0v.exe O4 - HKCU\..\Run: [tdzuv] C:\WINDOWS\system32\g81sdezf60h.exe O4 - HKCU\..\Run: [vrrcxyt] C:\WINDOWS\system32\zavlmhid081.exe O4 - HKCU\..\Run: [offqlm] C:\WINDOWS\system32\zpfgbrsn.exe O4 - HKCU\..\Run: [sxitup] C:\WINDOWS\system32\almhxytjkf.exe O4 - HKCU\..\Run: [hxidyz] C:\WINDOWS\system32\otjp66g86s.exe O4 - HKCU\..\Run: [wmminyj] C:\WINDOWS\system32\ioj081qb.exe O4 - HKCU\..\Run: [hmiyy81] C:\WINDOWS\system32\euuka1r703.exe O4 - HKCU\..\Run: [vqrws6i] C:\WINDOWS\system32\i5eeuva86m.exe O4 - HKCU\..\Run: [tjza3q] C:\WINDOWS\system32\0tjzavl.exe O4 - HKCU\..\Run: [brsnoj] C:\WINDOWS\system32\3m1d70k.exe O4 - HKCU\..\Run: [rrmii8] C:\WINDOWS\system32\qghm81jefk.exe O4 - HKCU\..\Run: [upvqwxd] C:\WINDOWS\system32\60vblhc.exe O4 - HKCU\..\Run: [kfgbcx0] C:\WINDOWS\system32\oeu0vlr66i.exe O4 - HKCU\..\Run: [ijz0v] C:\WINDOWS\system32\rnioj087087.exe O4 - HKCU\..\Run: [pkgbwm] C:\WINDOWS\system32\0pq75w0.exe O4 - HKCU\..\Run: [jokk1r] C:\WINDOWS\system32\nt60vblh.exe O4 - HKCU\..\Run: [grccsi0] C:\WINDOWS\system32\favwrsn0tjp.exe O4 - HKCU\..\Run: [jkpawbr] C:\WINDOWS\system32\e1v703c0.exe O4 - HKCU\..\Run: [hcdi8] C:\WINDOWS\system32\avwr081yjk.exe O4 - HKCU\..\Run: [jfabg86] C:\WINDOWS\system32\yo0pfl66c8.exe O4 - HKCU\..\Run: [minyjk] C:\WINDOWS\system32\w81itupfg.exe O4 - HKCU\..\Run: [tjkfvw] C:\WINDOWS\system32\c3ojp60rxh.exe O4 - HKCU\..\Run: [kbrrhn] C:\WINDOWS\system32\yjkfl60ntd.exe O4 - HKCU\..\Run: [lbcs1i] C:\WINDOWS\system32\q1ghm86y81.exe O4 - HKCU\..\Run: [ghnxtop] C:\WINDOWS\system32\66m86y8.exe O4 - HKCU\..\Run: [vwrhid] C:\WINDOWS\system32\j1ufgbh60j.exe O4 - HKCU\..\Run: [vwrhidt] C:\WINDOWS\system32\avb60djt.exe O4 - HKCU\..\Run: [kfgb08] C:\WINDOWS\system32\0lbh60j.exe O4 - HKCU\..\Run: [ozjfab] C:\WINDOWS\system32\hxi1yze86q8.exe O4 - HKCU\..\Run: [bwxc86] C:\WINDOWS\system32\gwwmc1t703.exe O4 - HKCU\..\Run: [wcxnoj] C:\WINDOWS\system32\rhn66e86.exe O4 - HKCU\..\Run: [xdyuu3q] C:\WINDOWS\system32\h703o0pfl6.exe O4 - HKCU\..\Run: [oozvllh] C:\WINDOWS\system32\m2noj081qbc.exe O4 - HKCU\..\Run: [chsdezp] C:\WINDOWS\system32\m6c86o870.exe O4 - HKCU\..\Run: [sotep] C:\WINDOWS\system32\bcxyt0870ww.exe O4 - HKCU\..\Run: [yuzvqr] C:\WINDOWS\system32\cxnojzavwr.exe O4 - HKCU\..\Run: [xyooe] C:\WINDOWS\system32\81ozavl.exe O4 - HKCU\..\Run: [sndez] C:\WINDOWS\system32\3y0zpv6.exe O4 - HKCU\..\Run: [wbrx66] C:\WINDOWS\system32\970ooeu.exe O4 - HKCU\..\Run: [ssiy0z] C:\WINDOWS\system32\w0xnt66k86.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [kaqmrh] C:\WINDOWS\system32\o1f703m1d7.exe O4 - HKCU\..\Run: [qmrhn6] C:\WINDOWS\system32\0hxd66u.exe O4 - HKCU\..\Run: [ydtz66] C:\WINDOWS\system32\cxyt081alm.exe O4 - HKCU\..\Run: [iyytup] C:\WINDOWS\system32\81yjkfv.exe O4 - HKCU\..\Run: [xxitupv] C:\WINDOWS\system32\mns86e870b.exe O4 - HKCU\..\Run: [noezav] C:\WINDOWS\system32\nddtz60bw.exe O4 - HKCU\..\Run: [topuq1g] C:\WINDOWS\system32\hxytukfvwr.exe O4 - HKCU\..\Run: [avlmx0] C:\WINDOWS\system32\0brx66o.exe O4 - HKCU\..\Run: [bwnddt] C:\WINDOWS\system32\q81cnojza.exe O4 - HKCU\..\Run: [AquaSnap] C:\Program Files\AquaSnap\AquaSnap.Daemon.exe O4 - HKCU\..\Run: [vggwxc8] C:\WINDOWS\system32\v2bcx081.exe O4 - HKCU\..\Run: [chdd6] C:\WINDOWS\system32\fbb66s86e81.exe O4 - HKCU\..\Run: [doe1u] C:\WINDOWS\system32\hddzz2fgb0.exe O4 - HKCU\..\Run: [palmhxy] C:\WINDOWS\system32\dotepqlr66i.exe O4 - HKCU\..\Run: [otepq] C:\WINDOWS\system32\5eeuva8.exe O4 - HKCU\..\Run: [uklq8] C:\WINDOWS\system32\cdi86u81gr.exe O4 - HKCU\..\Run: [vgbwx] C:\WINDOWS\system32\d7081almhx.exe O4 - HKCU\..\Run: [qrxhdy] C:\WINDOWS\system32\kfvwrhidez.exe O4 - HKCU\..\Run: [vwrsi1y] C:\WINDOWS\system32\aqg0hxd6.exe O4 - HKCU\..\Run: [wxnd0u] C:\WINDOWS\system32\vblhcdi81u.exe O4 - HKCU\..\Run: [rmns81] C:\WINDOWS\system32\m0nyuzpv.exe O4 - HKCU\..\Run: [rcxyo1e] C:\WINDOWS\system32\e81qbcxnojz.exe O4 - HKCU\..\Run: [ojkfg] C:\WINDOWS\system32\81uflhm.exe O4 - HKCU\..\Run: [ukq3w] C:\WINDOWS\system32\ytupfghxxt.exe O4 - HKCU\..\Run: [ghsxnj] C:\WINDOWS\system32\aqwrx2dtk1.exe O4 - HKCU\..\Run: [syzuv] C:\WINDOWS\system32\i1yo1flq.exe O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [yeflvg] C:\WINDOWS\system32\6s81epg.exe O4 - HKCU\..\Run: [dotepq] C:\WINDOWS\system32\w2xnopp2vwr.exe O4 - HKCU\..\Run: [upql0] C:\WINDOWS\system32\jefk86mxxy.exe O4 - HKCU\..\Run: [pklq8] C:\WINDOWS\system32\xd2jzavwhs.exe O4 - HKCU\..\Run: [jok6a] C:\WINDOWS\system32\3kv5lw8.exe O4 - HKCU\..\Run: [wndooef] C:\WINDOWS\system32\w5ssijo86q.exe O4 - HKCU\..\Run: [lqmrcn] C:\WINDOWS\system32\zpv60xst.exe O4 - HKCU\..\Run: [awmmd] C:\WINDOWS\system32\uva83m3i0j.exe O4 - HKCU\..\Run: [notefv7] C:\WINDOWS\system32\snt60vqr.exe O4 - HKCU\..\Run: [nojzavl] C:\WINDOWS\system32\1efk3g1.exe O4 - HKCU\..\Run: [eafqbcx] C:\WINDOWS\system32\e6ua2brsn.exe O4 - HKCU\..\Run: [hxytup] C:\WINDOWS\system32\h081ozavb.exe O4 - HKCU\..\Run: [tjka1q] C:\WINDOWS\system32\hdd66u86g81.exe O4 - HKCU\..\Run: [tjupkl] C:\WINDOWS\system32\xnndj66a8.exe O4 - HKCU\..\Run: [avw3m] C:\WINDOWS\system32\ituvv2brsn.exe O4 - HKCU\..\Run: [yoo3k] C:\WINDOWS\system32\oz1f70mm.exe O4 - HKCU\..\Run: [mrcno] C:\WINDOWS\system32\mccsi1z70v.exe O4 - HKCU\..\Run: [uaqbc] C:\WINDOWS\system32\e0lrbmdd.exe O4 - HKCU\..\Run: [rsnoe1u] C:\WINDOWS\system32\vq0xinyjkf.exe O4 - HKCU\..\Run: [diojzav] C:\WINDOWS\system32\bmhn2e5zvq.exe O4 - HKCU\..\Run: [ntdzu] C:\WINDOWS\system32\bmintjkfv.exe O4 - HKCU\..\Run: [ytjkf] C:\WINDOWS\system32\ytupql08.exe O4 - HKCU\..\Run: [sdezpql] C:\WINDOWS\system32\di81ufgb.exe O4 - HKCU\..\Run: [tto6k] C:\WINDOWS\system32\di86u81gr.exe O4 - HKCU\..\Run: [itupfg] C:\WINDOWS\system32\i6y81kvwr.exe O4 - HKCU\..\Run: [kfvmm] C:\WINDOWS\system32\6brc1st.exe O4 - HKCU\..\Run: [grc1y] C:\WINDOWS\system32\g6c8703k.exe O4 - HKCU\..\Run: [csitt] C:\WINDOWS\system32\mhidj66a.exe O4 - HKCU\..\Run: [jkfvwrs] C:\WINDOWS\system32\dtupfgbcx0.exe O4 - HKCU\..\Run: [msdy0] C:\WINDOWS\system32\nnoj081q.exe O4 - HKCU\..\Run: [cnojp6] C:\WINDOWS\system32\0ooeu0v.exe O4 - HKCU\..\Run: [qlhhsno] C:\WINDOWS\system32\vwrhidez.exe O4 - HKCU\..\Run: [lbcsxit] C:\WINDOWS\system32\lmhid081.exe O4 - HKCU\..\Run: [zkkab] C:\WINDOWS\system32\cx081epqlbc.exe O4 - HKCU\..\Run: [uzpv6] C:\WINDOWS\system32\xnt66k81hcs.exe O4 - HKCU\..\Run: [rsndu] C:\WINDOWS\system32\nndj2fqb.exe O4 - HKCU\..\Run: [qvrr2] C:\WINDOWS\system32\pkkbg81s8.exe O4 - HKCU\..\Run: [evlwwm] C:\WINDOWS\system32\oeu0vlr66i.exe O4 - HKCU\..\Run: [rndo6] C:\WINDOWS\system32\e81qbcxnojz.exe O4 - HKCU\..\Run: [ufgbh6] C:\WINDOWS\system32\3g0hxd6.exe O4 - HKCU\..\Run: [qhhsnoj] C:\WINDOWS\system32\l2c5xtop.exe O4 - HKCU\..\Run: [qgb03] C:\WINDOWS\system32\fvb81s5t.exe O4 - HKCU\..\Run: [gwrhxs1] C:\WINDOWS\system32\qghm8703.exe O4 - HKCU\..\Run: [vqq0x] C:\WINDOWS\system32\aqrmxxno.exe O4 - HKCU\..\Run: [bbmxytz] C:\WINDOWS\system32\grrsn081u.exe O4 - HKCU\..\Run: [xcydzu] C:\WINDOWS\system32\70uuka0.exe O4 - HKCU\..\Run: [njj2a] C:\WINDOWS\system32\60pvfbw.exe O4 - HKCU\..\Run: [agrbxst] C:\WINDOWS\system32\tjkfgb081i.exe O4 - HKCU\..\Run: [wxndeuu] C:\WINDOWS\system32\k81whidtupf.exe O4 - HKCU\..\Run: [mntdzuv] C:\WINDOWS\system32\w0ni0pvf.exe O4 - HKCU\..\Run: [hnxtopu] C:\WINDOWS\system32\csty86k8.exe O4 - HKCU\..\Run: [hddojkf] C:\WINDOWS\system32\hn66e86q.exe O4 - HKCU\..\Run: [hidtupf] C:\WINDOWS\system32\81yjkfv.exe O4 - HKCU\..\Run: [iiyze8] C:\WINDOWS\system32\siy0zpv6.exe O4 - HKCU\..\Run: [pkawbxn] C:\WINDOWS\system32\ijo86a81mx.exe O4 - HKCU\..\Run: [yjkv0] C:\WINDOWS\system32\ttpp66g8.exe O4 - HKCU\..\Run: [nyyopu] C:\WINDOWS\system32\bwrniyo5u6q.exe O4 - HKCU\..\Run: [dokav] C:\WINDOWS\system32\c86o3avb6.exe O4 - HKCU\..\Run: [klmh03] C:\WINDOWS\system32\nojzavb676d.exe O4 - HKCU\..\Run: [hcxyj] C:\WINDOWS\system32\v6hxi2yo0pk.exe O4 - HKCU\..\Run: [qmrcn] C:\WINDOWS\system32\bcx03o0p.exe O4 - HKCU\..\Run: [vwrhide] C:\WINDOWS\system32\0xdnjef.exe O4 - HKCU\..\Run: [qhxxnt6] C:\WINDOWS\system32\6w81itu.exe O4 - HKCU\..\Run: [rsnt6] C:\WINDOWS\system32\bwxc86o81a.exe O4 - HKCU\..\Run: [rmnso6e] C:\WINDOWS\system32\m1cdi86u.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [nojk81] C:\WINDOWS\system32\1ozavb6.exe O4 - HKCU\..\Run: [aghnxt] C:\WINDOWS\system32\euva86m81y.exe O4 - HKCU\..\Run: [lwhy1] C:\WINDOWS\system32\abg8703o1k.exe O4 - HKCU\..\Run: [vmhcs1j] C:\WINDOWS\system32\qbbrsnt66.exe O4 - HKCU\..\Run: [nnjzzvv] C:\WINDOWS\system32\bg3c1yze87.exe O4 - HKCU\..\Run: [csiejz] C:\WINDOWS\system32\qrw86i81uf.exe O4 - HKCU\..\Run: [zvqg0h] C:\WINDOWS\system32\e6a86m3i.exe O4 - HKCU\..\Run: [pqlwhrn] C:\WINDOWS\system32\81al6ni.exe O4 - HKCU\..\Run: [topu81] C:\WINDOWS\system32\n0te0kfgb0.exe O4 - HKCU\..\Run: [sotjp] C:\WINDOWS\system32\hsdezf66w.exe O4 - HKCU\..\Run: [yopu8] C:\WINDOWS\system32\hid081kvwr.exe O4 - HKCU\..\Run: [hddojk] C:\WINDOWS\system32\csi1z703.exe O4 - HKCU\..\Run: [uqqbm1] C:\WINDOWS\system32\kpa3mhn2.exe O4 - HKCU\..\Run: [rrcxn] C:\WINDOWS\system32\u3q1mnii0pk.exe O4 - HKCU\..\Run: [bchs1] C:\WINDOWS\system32\fqvg3snt2zp.exe O4 - HKCU\..\Run: [mcdtze] C:\WINDOWS\system32\l66c3y1u.exe O4 - HKCU\..\Run: [mxhdy] C:\WINDOWS\system32\8703y1u.exe O4 - HKCU\..\Run: [TrueTransparency] "C:\Documents and Settings\Eigenaar\Bureaublad\Programma's\TrueTransparency\TrueTransparency.exe" O4 - HKCU\..\Run: [AdobeUpdater6] "C:\Program Files\Common Files\Adobe\Updater6\Adobe_Updater.exe" O4 - HKCU\..\Run: [sookaql] C:\WINDOWS\system32\brsndezvvr.exe O4 - HKCU\..\Run: [fvl03] C:\WINDOWS\system32\u6kvbhx66.exe O4 - HKLM\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\installse\msupdater.exe O4 - HKCU\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\installse\msupdater.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe O4 - Startup: Styler.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file) O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab O16 - DPF: {C212D449-8B3C-41F2-BD9A-047BD770550F} (Perparer Class) - http://www.fiaa.eu/OPLauncher.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: 1250942564 (.1250942564) - Unknown owner - C:\Program Files\1250942564\amina1250942564L.exe O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Apache2.2 - Apache Software Foundation - C:\xampp\apache\bin\httpd.exe O23 - Service: Mobiel Apple apparaat (Apple Mobile Device) - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour-service (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Google Updateservice (gupdate1ca37cace1a18fe) (gupdate1ca37cace1a18fe) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: iPod-service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MySQL - MySQL AB - C:\xampp\mysql\bin\mysqld.exe O23 - Service: Norton AntiVirus (NAV) - Symantec Corporation - C:\Program Files\Norton AntiVirus\Engine\17.0.0.136\ccSvcHst.exe O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Zwunzi Service - Unknown owner - C:\Documents and Settings\All Users\Application Data\Zwunzi\zwunzi163.exe -- End of file - 33377 bytes
  17. Helaas lukte dit ook niet.Ook gaan alle browsers zeer traag. Firefox, IE, Apple Safari, Google Chrome en Opera. Download snelheid kan tot en met 3Mbps gaan en upload snelheid tot 1Mpbs. Dus mijn internet verbinding is zeer snel. Ik heb van alles geprobeerd. Schrijfopruiming,schijfdefragmentatie, computer opnieuw opstarten en systeem herstel etc.
  18. Hoi, Ik wil mijn computer opnieuw opstarten om een programma te installeren maar helaas lukt dit niet.Ik heb ook verschillende programma's geprobeerd die jouw computer zogezegd opnieuw opstarten of via commands. Commands waar je je pc volledig mee afsluit werken wel maar herstarten niet. Enig idee hoe ik dit probleem kan oplossen ? Groeten.
×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.