Ga naar inhoud

Kan geen backup maken via configuratiescherm, Kan Ad Aware niet verwijderen


Aanbevolen berichten

Dit is ook niet helemaal goed gegaan. Het bestandje CFScript.txt moet in de rode snelkoppeling van Combofix gesleept worden, zodat dit opnieuw opgestart kan worden om de fouten te verbeteren. Dat is hier niet gebeurd. Wil je dat nog eens herhalen zoals eerder aangegeven.

Link naar reactie
Delen op andere sites

Beste mensen,

U moet wel geduld met mij hebben, maar ik hoop dat hetonderstaande logje het goede is.

Wacht de reactie weer af.

Met vriendelijke groet,

Piet Jansen

ComboFix 12-06-10.01 - Piet 11-06-2012 13:13:12.4.1 - x86

Microsoft Windows 7 Professional 6.1.7601.1.1252.31.1043.18.959.282 [GMT 2:00]

Gestart vanuit: c:\users\Piet\Desktop\ComboFix.exe

gebruikte Opdracht switches :: c:\users\Piet\Desktop\CFScript.txt

AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}

SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

(((((((((((((((((((( Bestanden Gemaakt van 2012-05-11 to 2012-06-11 ))))))))))))))))))))))))))))))

.

.

2012-06-11 11:31 . 2012-06-11 11:31 -------- d-----w- c:\users\Default\AppData\Local\temp

2012-06-11 09:48 . 2012-05-08 16:40 6737808 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C25EF93F-EEEB-4648-95A2-E6ACE43D84CC}\mpengine.dll

2012-06-10 13:24 . 2012-06-10 13:24 5322 ----a-w- c:\windows\system32\PerfStringBackup.TMP

2012-06-09 21:16 . 2012-05-08 16:40 6737808 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll

2012-06-08 20:40 . 2012-06-08 20:40 -------- d-----w- c:\program files\Common Files\Nokia

2012-06-08 20:39 . 2012-04-22 11:51 18816 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys

2012-06-08 20:38 . 2012-06-08 20:38 -------- d-----w- c:\program files\PC Connectivity Solution

2012-06-07 13:16 . 2012-06-07 13:16 -------- d-----w- c:\users\Piet\AppData\Roaming\Malwarebytes

2012-06-07 13:16 . 2012-06-07 13:16 -------- d-----w- c:\programdata\Malwarebytes

2012-06-07 13:16 . 2012-06-07 13:16 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2012-06-07 13:16 . 2012-04-04 13:56 22344 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-06-02 11:52 . 2012-06-02 11:52 388096 ----a-r- c:\users\Piet\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe

2012-06-02 11:52 . 2012-06-02 11:52 -------- d-----w- c:\program files\Trend Micro

2012-05-17 18:31 . 2012-05-17 18:31 -------- d-----w- c:\users\Piet\AppData\Local\NokiaAccount

2012-05-17 17:50 . 2012-06-08 22:32 -------- d-----w- c:\users\Piet\AppData\Roaming\Nokia Suite

2012-05-17 17:50 . 2012-06-08 22:32 -------- d-----w- c:\users\Piet\AppData\Roaming\Nokia

2012-05-16 13:07 . 2012-05-16 13:07 -------- d-----w- c:\programdata\PC Suite

2012-05-16 13:07 . 2012-05-17 17:43 -------- d-----w- c:\users\Piet\AppData\Roaming\PC Suite

2012-05-16 13:04 . 2012-06-08 20:42 -------- d-----w- c:\programdata\Nokia

2012-05-16 13:03 . 2012-05-16 13:03 -------- d-----w- c:\program files\DIFX

2012-05-16 13:02 . 2012-01-09 15:28 75264 ----a-w- c:\windows\system32\nmwcdcls.dll

2012-05-16 12:59 . 2012-06-08 20:40 -------- d-----w- c:\program files\Nokia

.

.

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2012-05-05 12:50 . 2012-04-18 10:15 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2012-05-05 12:50 . 2011-07-09 10:52 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2012-03-31 04:39 . 2012-05-12 10:28 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe

2012-03-31 04:39 . 2012-05-12 10:28 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe

2012-03-31 02:36 . 2012-05-12 10:28 2343424 ----a-w- c:\windows\system32\win32k.sys

2012-03-30 10:23 . 2012-05-12 10:29 1291632 ----a-w- c:\windows\system32\drivers\tcpip.sys

2012-03-20 18:44 . 2010-10-24 20:25 74112 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys

2012-03-20 18:44 . 2010-03-25 19:30 171064 ----a-w- c:\windows\system32\drivers\MpFilter.sys

2012-03-17 07:27 . 2012-05-12 10:28 56176 ----a-w- c:\windows\system32\drivers\partmgr.sys

2004-10-21 13:10 . 2010-11-04 14:01 952320 ----a-w- c:\program files\kip.exe

1997-03-25 04:02 . 2010-11-04 14:01 303104 ----a-w- c:\program files\cw3230.dll

1997-03-25 04:02 . 2010-11-04 14:01 92680 ----a-w- c:\program files\bds52.dll

1997-03-25 04:02 . 2010-11-04 14:01 82976 ----a-w- c:\program files\bds52f.dll

1997-03-25 04:02 . 2010-11-04 14:01 229888 ----a-w- c:\program files\bc520rtl.dll

1997-03-07 17:00 . 2010-11-04 14:01 36352 ----a-w- c:\program files\_ISREG32.DLL

1996-08-08 04:01 . 2010-11-04 14:01 829984 ----a-w- c:\program files\owl501f.dll

1996-08-08 04:01 . 2010-11-04 14:01 77856 ----a-w- c:\program files\bds501f.dll

1996-08-08 04:01 . 2010-11-04 14:01 229376 ----a-w- c:\program files\cw3220.dll

1996-08-08 04:01 . 2010-11-04 14:01 227840 ----a-w- c:\program files\bc500rtl.dll

1996-08-08 03:01 . 2010-11-04 14:01 1093136 ----a-w- c:\program files\owl501.dll

1996-08-08 03:01 . 2010-11-04 14:01 92132 ----a-w- c:\program files\bds501.dll

1995-08-29 02:52 . 2010-11-04 14:01 60758 ----a-w- c:\program files\BIDS45.DLL

1995-08-29 02:52 . 2010-11-04 14:01 49152 ----a-w- c:\program files\BIDS45F.DLL

1995-08-29 02:52 . 2010-11-04 14:01 176128 ----a-w- c:\program files\CW3215.DLL

1995-08-29 02:52 . 2010-11-04 14:01 220672 ----a-w- c:\program files\BC450RTL.DLL

1995-02-28 09:16 . 2010-11-04 14:01 211488 ----a-w- c:\program files\BWCC32.DLL

1995-02-28 09:14 . 2010-11-04 14:01 164928 ----a-w- c:\program files\BWCC.DLL

.

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Software Suite"="c:\program files\Packard Bell\Software Suite\PBSoftSuite.exe" [2009-10-01 3144736]

"Packard Bell Software Suite"="c:\program files\Packard Bell\Software Suite\PBSoftSuite.exe" [2009-10-01 3144736]

"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-09-19 39408]

"NokiaSuite.exe"="c:\program files\Nokia\Nokia Suite\NokiaSuite.exe" [2012-05-16 1084840]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-02-10 61440]

"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 56080]

"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]

"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Elements 4.0\apdproxy.exe" [2005-09-15 57344]

"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-10 689488]

"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2008-03-17 1848648]

"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2005-05-20 925696]

"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]

"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]

"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-06 421736]

"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 931200]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-9-7 692224]

Sitecom Wireless Utility.lnk - c:\program files\Sitecom\Common\RaUI.exe [2010-9-3 1773568]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

@="Service"

.

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]

R2 gupdate;Google Updateservice (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-09-19 136176]

R2 KMService;KMService;c:\windows\system32\srvany.exe [2010-09-06 8192]

R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-05 257696]

R3 gupdatem;Google Update-service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2010-09-19 136176]

R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 74112]

R3 NisSrv;Microsoft Netwerkinspectie;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 214952]

R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]

R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-03 1343400]

S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2010-09-23 64288]

S2 PowerSave;PowerSave Service;c:\program files\Packard Bell\Software Suite\PowerSave\PSPBSSS.exe [2009-04-06 1002016]

S3 AVerA706;AVerMedia A706 BDA Service;c:\windows\system32\DRIVERS\AVerA706.sys [2009-06-10 1169920]

S3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista;c:\windows\system32\DRIVERS\netr28u.sys [2009-04-28 724992]

S3 ULI526X;ULi M526X 10/100 Ethernet Controller Driver;c:\windows\system32\DRIVERS\ULILAN32.SYS [2006-06-30 30720]

.

.

Inhoud van de 'Gedeelde Taken' map

.

2012-06-11 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-18 12:50]

.

2012-06-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-09-19 14:24]

.

2012-06-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-09-19 14:24]

.

.

------- Bijkomende Scan -------

.

uStart Page = hxxp://www.google.nl/

uInternet Settings,ProxyOverride = *.local

IE: E&xporteren naar Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000

TCP: DhcpNameServer = 192.168.1.254

.

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

.

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

--------------------- DLLs Geladen Onder Lopende Processen ---------------------

.

- - - - - - - > 'Explorer.exe'(4760)

c:\program files\Logitech\SetPoint\lgscroll.dll

.

Voltooingstijd: 2012-06-11 13:40:49

ComboFix-quarantined-files.txt 2012-06-11 11:40

ComboFix2.txt 2012-06-11 09:39

ComboFix3.txt 2012-06-10 13:30

ComboFix4.txt 2012-06-09 20:32

.

Pre-Run: 102.558.711.808 bytes beschikbaar

Post-Run: 102.274.928.640 bytes beschikbaar

.

- - End Of File - - 7A199F696814D5812E20BAA7C6CCD0AE

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.