Ga naar inhoud

usb stick wordt niet herkent


jappe

Aanbevolen berichten

hey

sinds gisteren geeft mijn vista pc een fout melding als ik mijn usb-stick insteek. 'het usb-apparaat wordt niet herkent'.

heeft iemand een idee wat ik daar aan kan doen

de usb is mijn probleem niet maar de documenten er op wel

als iemand weet hoe ik die kan terug krijgen?

alvast bedankt

jappe

Link naar reactie
Delen op andere sites

Wil je met de USB-stick in de PC het volgende eens uitvoeren :

Download Combofix naar je Bureaublad.

Lees hier meer over correct gebruik van Combofix.

OPMERKING: indien je, tijdens of na het downloaden van Combofix of tijdens het gebruik van Combofix een melding krijgt van je Antivirus- of een andere realtime scanner, schakel dan deze scanner uit en download Combofix opnieuw.

Sommige scanners zien bepaalde componenten die Combofix gebruikt als verdacht en gaan deze blokkeren of verwijderen!

  • Dubbelklik op Combofix.exe om het te starten.
    Indien je Combofix al eerder hebt gebruikt, kan je een waarschuwing krijgen dat een update beschikbaar is. Sta toe dat ComboFix wordt geupdate.
    Volg de instructies, aanvaard de disclaimer door op Ja te klikken.
    Indien de Recovery Console niet geïnstalleerd is, wordt je gevraagd om dit alsnog te doen door op JA te klikken in het "Query - Recovery Console" venster (enkel voor XP, niet voor VISTA).
    Klik op OK en Ja om automatisch de Recovery Console te laten installeren.
    Klik na afloop terug op Ja om het scannen op malware te starten.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.

Wanneer de fix voltooid is en na herstart, zal de log Combofix.txt openen.

Post dit logje in je volgende antwoord.

Link naar reactie
Delen op andere sites

  • 2 weken later...
Gast Hessel76

ComboFix 09-05-28.07 - Hessel 29-05-2009 17:17.1 - NTFSx86

Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.31.1043.18.1789.969 [GMT 2:00]

Gestart vanuit: c:\users\Hessel\Desktop\ComboFix.exe

AV: AVG 7.5.524 *On-access scanning enabled* (Updated) {41564737-3200-1071-989B-0000E87B4FB1}

AV: Symantec AntiVirus *On-access scanning disabled* (Updated) {FB06448E-52B8-493A-90F3-E43226D3305C}

SP: Symantec AntiVirus *disabled* (Updated) {6C85A515-B91D-4D2B-AF18-40984A4A8493}

SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\users\Hessel\AppData\Roaming\.#

.

(((((((((((((((((((( Bestanden Gemaakt van 2009-04-28 to 2009-05-29 ))))))))))))))))))))))))))))))

.

2009-05-29 15:22 . 2009-05-29 15:23 -------- d-----w c:\users\Hessel\AppData\Local\temp

2009-05-29 06:13 . 2009-05-06 18:06 4784464 ----a-w c:\programdata\Microsoft\Windows Defender\Definition Updates\{A6FAF54E-23A5-49EB-ACB5-7061956752E9}\mpengine.dll

2009-05-27 10:05 . 2009-05-27 11:52 -------- d-----w c:\users\Hessel\AppData\Local\Microsoft Games

2009-05-27 07:51 . 2009-05-27 07:51 -------- d-----w c:\program files\Yosumin

2009-05-25 10:36 . 2009-05-25 10:36 -------- d-----w c:\programdata\Fashion Finder

2009-05-22 18:00 . 2009-03-16 08:00 89104 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\NAVENG.SYS

2009-05-22 18:00 . 2009-03-16 08:00 876144 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\NAVEX15.SYS

2009-05-22 18:00 . 2009-03-16 08:00 371248 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\EECTRL.SYS

2009-05-22 18:00 . 2009-03-16 08:00 177520 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\NAVENG32.DLL

2009-05-22 18:00 . 2009-03-16 08:00 1181040 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\NAVEX32A.DLL

2009-05-22 18:00 . 2009-03-16 08:00 101936 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\ERASER.SYS

2009-05-22 18:00 . 2009-02-17 07:59 259368 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\ECMSVR32.DLL

2009-05-22 18:00 . 2009-03-16 08:00 2414128 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090522.002\CCERASER.DLL

2009-05-22 10:26 . 2009-03-16 08:00 89104 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\NAVENG.SYS

2009-05-22 10:26 . 2009-03-16 08:00 876144 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\NAVEX15.SYS

2009-05-22 10:26 . 2009-03-16 08:00 177520 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\NAVENG32.DLL

2009-05-22 10:26 . 2009-03-16 08:00 1181040 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\NAVEX32A.DLL

2009-05-22 10:26 . 2009-03-16 08:00 371248 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\EECTRL.SYS

2009-05-22 10:26 . 2009-03-16 08:00 2414128 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\CCERASER.DLL

2009-05-22 10:26 . 2009-03-16 08:00 101936 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\ERASER.SYS

2009-05-22 10:26 . 2009-02-17 07:59 259368 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\20090521.003\ECMSVR32.DLL

2009-05-19 09:11 . 2009-05-19 09:11 -------- d-----w c:\users\Hessel\AppData\Local\GestaltGames

2009-05-14 13:47 . 2009-05-14 13:47 -------- d-----w c:\users\Hessel\AppData\Roaming\Bitbliss Studios

2009-05-13 12:26 . 2009-05-13 12:26 -------- d-----w c:\programdata\Fugazo

2009-05-11 15:24 . 2008-06-20 01:14 105016 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll

2009-05-11 15:24 . 2008-06-20 01:14 97800 ----a-w c:\windows\system32\infocardapi.dll

2009-05-11 15:24 . 2008-06-20 01:14 43544 ----a-w c:\windows\system32\PresentationHostProxy.dll

2009-05-11 15:24 . 2008-06-20 01:14 11264 ----a-w c:\windows\system32\icardres.dll

2009-05-11 15:24 . 2008-06-20 01:14 622080 ----a-w c:\windows\system32\icardagt.exe

2009-05-11 15:24 . 2008-06-20 01:14 781344 ----a-w c:\windows\system32\PresentationNative_v0300.dll

2009-05-11 15:24 . 2008-06-20 01:14 326160 ----a-w c:\windows\system32\PresentationHost.exe

2009-05-11 15:19 . 2008-07-27 18:03 96760 ----a-w c:\windows\system32\dfshim.dll

2009-05-11 15:19 . 2008-07-27 18:03 282112 ----a-w c:\windows\system32\mscoree.dll

2009-05-11 15:19 . 2008-07-27 18:03 41984 ----a-w c:\windows\system32\netfxperf.dll

2009-05-11 15:18 . 2008-07-27 18:03 158720 ----a-w c:\windows\system32\mscorier.dll

2009-05-11 15:18 . 2008-07-27 18:03 83968 ----a-w c:\windows\system32\mscories.dll

2009-05-11 08:58 . 2009-05-11 08:59 -------- d-----w c:\users\Hessel\AppData\Roaming\Bigfish 3 Days Zoo Mystery

2009-05-08 08:16 . 2009-05-08 08:16 -------- d-----w c:\users\Hessel\AppData\Local\Astar Games

2009-05-06 11:31 . 2009-05-06 12:34 -------- d-----w c:\users\Hessel\AppData\Roaming\JewelMatch2

2009-05-03 10:57 . 2009-05-03 10:57 603904 ----a-w c:\windows\system32\TUProgSt.exe

2009-05-03 10:57 . 2008-11-24 11:19 27904 ----a-w c:\windows\system32\uxtuneup.dll

2009-05-03 10:57 . 2008-11-24 11:19 17152 ----a-w c:\windows\system32\authuitu.dll

2009-05-03 10:57 . 2009-05-03 10:57 362240 ----a-w c:\windows\system32\TuneUpDefragService.exe

2009-05-02 10:46 . 2009-05-02 10:46 -------- d-----w c:\users\Hessel\AppData\Roaming\Twintale Entertainment

.

((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-05-29 13:31 . 2009-04-02 19:23 -------- d-----w c:\programdata\Google Updater

2009-05-29 06:13 . 2006-11-02 16:11 714060 ----a-w c:\windows\system32\perfh013.dat

2009-05-29 06:13 . 2006-11-02 16:11 144676 ----a-w c:\windows\system32\perfc013.dat

2009-05-27 07:49 . 2008-12-29 13:28 -------- d-----w c:\program files\bfgclient

2009-05-25 13:05 . 2009-01-01 13:30 -------- d-----w c:\users\Hessel\AppData\Roaming\PlayFirst

2009-05-25 13:05 . 2009-01-01 13:30 -------- d-----w c:\programdata\PlayFirst

2009-05-22 11:31 . 2008-08-23 13:22 -------- d-----w c:\users\Hessel\AppData\Roaming\uTorrent

2009-05-19 17:24 . 2009-04-02 19:23 -------- d-----w c:\program files\Google

2009-05-16 08:48 . 2008-12-31 08:43 -------- d-----w c:\programdata\Slapdash Games

2009-05-15 10:36 . 2009-04-09 13:12 -------- d-----w c:\programdata\MythPeople

2009-05-14 07:22 . 2006-11-02 11:18 -------- d-----w c:\program files\Windows Mail

2009-05-11 15:49 . 2009-03-31 18:18 -------- d-----w c:\program files\Common Files\AVSMedia

2009-05-03 14:46 . 2008-12-29 14:08 -------- d-----w c:\programdata\MumboJumbo

2009-05-03 10:57 . 2009-04-13 10:49 -------- d-----w c:\program files\TuneUp Utilities 2009

2009-04-27 12:37 . 2009-04-27 12:37 -------- d-----w c:\users\Hessel\AppData\Roaming\Orneon

2009-04-24 11:22 . 2009-02-11 13:33 -------- d-----w c:\users\Hessel\AppData\Roaming\Playrix Entertainment

2009-04-22 14:13 . 2009-04-22 14:13 -------- d-----w c:\programdata\BigFishGames

2009-04-22 10:50 . 2009-04-22 10:50 -------- d-----w c:\users\Hessel\AppData\Roaming\Azuaz Games

2009-04-21 15:43 . 2009-03-05 14:24 -------- d-----w c:\programdata\SugarGames

2009-04-21 08:53 . 2009-04-21 08:53 -------- d-----w c:\users\Hessel\AppData\Roaming\HiT-MM

2009-04-17 12:14 . 2009-04-17 08:53 -------- d-----w c:\program files\Cindy's Travels - Flooded Kingdom

2009-04-17 10:27 . 2009-04-17 10:27 -------- d-----w c:\users\Hessel\AppData\Roaming\Vogat Interactive

2009-04-16 09:36 . 2009-04-16 09:36 -------- d-----w c:\users\Hessel\AppData\Roaming\BigFishv1002

2009-04-15 14:55 . 2009-03-25 12:11 -------- d-----w c:\programdata\Intenium

2009-04-15 11:29 . 2009-04-15 11:29 -------- d-----w c:\programdata\Sandlot Games

2009-04-13 10:49 . 2009-04-13 10:49 -------- d-----w c:\programdata\TuneUp Software

2009-04-13 10:48 . 2009-04-13 10:48 -------- d-sh--w c:\programdata\{55A29068-F2CE-456C-9148-C869879E2357}

2009-04-12 15:12 . 2009-03-10 12:24 -------- d-----w c:\users\Hessel\AppData\Roaming\Skunk Studios

2009-04-08 13:31 . 2009-03-27 09:30 -------- d-----w c:\users\Hessel\AppData\Roaming\Belastingdienst

2009-04-07 12:48 . 2009-04-07 12:48 -------- d-----w c:\users\Hessel\AppData\Roaming\Dream Farm Games

2009-04-05 13:02 . 2009-04-05 13:02 -------- d-----w c:\programdata\QuickClick

2009-04-03 13:57 . 2009-04-03 13:57 -------- d-----w c:\programdata\cerasus.media

2009-04-03 13:57 . 2008-12-31 11:18 -------- d-----w c:\users\Hessel\AppData\Roaming\cerasus.media

2009-04-03 03:57 . 2007-10-02 16:48 -------- d-----w c:\program files\Java

2009-03-31 19:14 . 2009-03-31 18:19 -------- d-----w c:\users\Hessel\AppData\Roaming\AVS4YOU

2009-03-31 18:19 . 2009-03-31 18:19 -------- d-----w c:\programdata\AVS4YOU

2009-03-31 14:12 . 2009-01-08 14:36 -------- d-----w c:\programdata\JollyBear

2009-03-30 18:01 . 2009-03-30 18:01 -------- d-----w c:\users\Hessel\AppData\Roaming\VeniceMysteryData

2009-03-17 03:38 . 2009-04-16 08:01 13824 ----a-w c:\windows\system32\apilogen.dll

2009-03-17 03:38 . 2009-04-16 08:01 24064 ----a-w c:\windows\system32\amxread.dll

2009-03-16 08:00 . 2009-03-16 08:00 89104 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\naveng.sys

2009-03-16 08:00 . 2009-03-16 08:00 876144 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\navex15.sys

2009-03-16 08:00 . 2009-03-16 08:00 371248 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\eeCtrl.sys

2009-03-16 08:00 . 2009-03-16 08:00 2414128 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\cceraser.dll

2009-03-16 08:00 . 2009-03-16 08:00 177520 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\naveng32.dll

2009-03-16 08:00 . 2009-03-16 08:00 1181040 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\navex32a.dll

2009-03-16 08:00 . 2009-03-16 08:00 101936 ----a-w c:\programdata\Symantec\Definitions\VirusDefs\BinHub\ERASER.sys

2009-03-11 17:18 . 2009-03-11 17:18 921928 ----a-w c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll

2009-03-09 03:19 . 2008-12-06 14:49 410984 ----a-w c:\windows\system32\deploytk.dll

2009-03-08 11:34 . 2009-05-11 15:34 914944 ----a-w c:\windows\system32\wininet.dll

2009-03-08 11:34 . 2009-05-11 15:34 43008 ----a-w c:\windows\system32\licmgr10.dll

2009-03-08 11:33 . 2009-05-11 15:34 18944 ----a-w c:\windows\system32\corpol.dll

2009-03-08 11:33 . 2009-05-11 15:34 109056 ----a-w c:\windows\system32\iesysprep.dll

2009-03-08 11:33 . 2009-05-11 15:34 109568 ----a-w c:\windows\system32\PDMSetup.exe

2009-03-08 11:33 . 2009-05-11 15:34 132608 ----a-w c:\windows\system32\ieUnatt.exe

2009-03-08 11:33 . 2009-05-11 15:34 107520 ----a-w c:\windows\system32\RegisterIEPKEYs.exe

2009-03-08 11:33 . 2009-05-11 15:34 107008 ----a-w c:\windows\system32\SetIEInstalledDate.exe

2009-03-08 11:33 . 2009-05-11 15:34 103936 ----a-w c:\windows\system32\SetDepNx.exe

2009-03-08 11:33 . 2009-05-11 15:34 420352 ----a-w c:\windows\system32\vbscript.dll

2009-03-08 11:32 . 2009-05-11 15:34 72704 ----a-w c:\windows\system32\admparse.dll

2009-03-08 11:32 . 2009-05-11 15:34 71680 ----a-w c:\windows\system32\iesetup.dll

2009-03-08 11:32 . 2009-05-11 15:34 66560 ----a-w c:\windows\system32\wextract.exe

2009-03-08 11:32 . 2009-05-11 15:34 169472 ----a-w c:\windows\system32\iexpress.exe

2009-03-08 11:31 . 2009-05-11 15:34 34816 ----a-w c:\windows\system32\imgutil.dll

2009-03-08 11:31 . 2009-05-11 15:34 48128 ----a-w c:\windows\system32\mshtmler.dll

2009-03-08 11:31 . 2009-05-11 15:34 45568 ----a-w c:\windows\system32\mshta.exe

2009-03-08 11:22 . 2009-05-11 15:34 156160 ----a-w c:\windows\system32\msls31.dll

2009-03-03 04:46 . 2009-04-16 08:01 3599328 ----a-w c:\windows\system32\ntkrnlpa.exe

2009-03-03 04:46 . 2009-04-16 08:01 3547632 ----a-w c:\windows\system32\ntoskrnl.exe

2009-03-03 04:39 . 2009-04-16 08:01 183296 ----a-w c:\windows\system32\sdohlp.dll

2009-03-03 04:39 . 2009-04-16 08:01 551424 ----a-w c:\windows\system32\rpcss.dll

2009-03-03 04:39 . 2009-04-16 08:01 26112 ----a-w c:\windows\system32\printfilterpipelineprxy.dll

2009-03-03 04:37 . 2009-04-16 08:01 98304 ----a-w c:\windows\system32\iasrecst.dll

2009-03-03 04:37 . 2009-04-16 08:01 54784 ----a-w c:\windows\system32\iasads.dll

2009-03-03 04:37 . 2009-04-16 08:01 44032 ----a-w c:\windows\system32\iasdatastore.dll

2009-03-03 03:04 . 2009-04-16 08:01 666624 ----a-w c:\windows\system32\printfilterpipelinesvc.exe

2009-03-03 02:38 . 2009-04-16 08:01 17408 ----a-w c:\windows\system32\iashost.exe

.

((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Acer Tour Reminder"="c:\acer\AcerTour\Reminder.exe" [2007-01-17 151552]

"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

"ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2005-08-11 249856]

"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-23 815104]

"eDataSecurity Loader"="c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe" [2007-02-06 464168]

"BisonInst0402"="c:\windows\BR040286.exe" [2007-05-08 69632]

"eDSMSNfix"="c:\acer\Empowering Technology\eDSMSNfix.exe" [2007-02-09 13312]

"LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2006-12-08 614400]

"WarReg_PopUp"="c:\acer\WR_PopUp\WarReg_PopUp.exe" [2006-11-05 57344]

"Acer Tour Reminder"="c:\acer\AcerTour\Reminder.exe" [2007-01-17 151552]

"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]

"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2006-11-22 107112]

"vptray"="c:\progra~1\SYMANT~1\VPTray.exe" [2006-11-28 134808]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]

"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]

"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2006-12-01 4186112]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Empowering Technology Launcher.lnk - c:\acer\Empowering Technology\eAPLauncher.exe [2007-3-28 528384]

Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2007-8-3 394856]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]

"AppInit_DLLs"=c:\windows\System32\eNetHook.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]

"InternetSettingsDisableNotify"=dword:00000001

"AutoUpdateDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]

"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]

"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]

"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]

"FirewallOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]

"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]

"{46DA2922-9FBD-40F7-9B73-A6269F7D348C}"= UDP:c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\MCE Deluxe Suite.exe:CyberLink MCE Deluxe Suite

"{4DB5D587-A5D4-4C93-922B-FFD1A17CFD88}"= TCP:c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\MCE Deluxe Suite.exe:CyberLink MCE Deluxe Suite

"{966C9B12-871D-4254-B2B2-9C393190F623}"= Disabled:UDP:c:\program files\Symantec AntiVirus\Rtvscan.exe:Symantec Antivirus

"{A9D73F4F-5EFA-48C0-BA55-BCEDC28897B9}"= Disabled:TCP:c:\program files\Symantec AntiVirus\Rtvscan.exe:Symantec Antivirus

"{5EEA3D3D-F172-4586-85D5-AC9BB128A2BA}"= Disabled:UDP:c:\program files\Common Files\Symantec Shared\ccApp.exe:Symantec Email

"{3EFF9420-1619-4992-8D1D-043DF01E7EC1}"= Disabled:TCP:c:\program files\Common Files\Symantec Shared\ccApp.exe:Symantec Email

"{4F85A5CF-0A34-4EF1-95C4-E0B04D4A7760}"= UDP:c:\program files\Symantec AntiVirus\Rtvscan.exe:Symantec Antivirus

"{BA325C2C-3404-4E74-8721-38E59D818777}"= TCP:c:\program files\Symantec AntiVirus\Rtvscan.exe:Symantec Antivirus

"{84E5DBFE-24CD-4545-A689-FB2F958298FF}"= UDP:c:\program files\Common Files\Symantec Shared\ccApp.exe:Symantec Email

"{8EF28AF0-4A53-4BD8-964D-48F969777D3C}"= TCP:c:\program files\Common Files\Symantec Shared\ccApp.exe:Symantec Email

"{84DFA06C-E461-494A-8A20-8EE99DEFF8BE}"= c:\program files\Windows Live\Sync\WindowsLiveSync.exe:Windows Live Sync

"{A6436641-C282-44D9-BD6F-2D8F503646E3}"= UDP:c:\program files\uTorrent\uTorrent.exe:µTorrent (TCP-In)

"{DA0518FF-98F5-42AC-A34D-7039193A46D1}"= TCP:c:\program files\uTorrent\uTorrent.exe:µTorrent (UDP-In)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]

"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]

"EnableFirewall"= 0 (0x0)

R0 SI3112r;ATI-4379 Serial ATA Controller;c:\windows\System32\drivers\SI3112r.sys [29-8-2007 4:04 116264]

R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\System32\TUProgSt.exe [3-5-2009 12:57 603904]

R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [27-2-2009 21:01 101936]

S2 gupdate1c9b3c8a74f0fbb;Google Updateservice (gupdate1c9b3c8a74f0fbb);c:\program files\Google\Update\GoogleUpdate.exe [2-4-2009 21:24 133104]

S3 SavRoam;SAVRoam;c:\program files\Symantec AntiVirus\SavRoam.exe [28-11-2006 6:34 122008]

S3 SMSCIRDA;SMSC Infrared Device Driver;c:\windows\System32\drivers\smscirda.sys [28-3-2007 17:59 31232]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs

UxTuneUp

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]

"c:\windows\System32\rundll32.exe" "c:\windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP

.

Inhoud van de 'Gedeelde Taken' map

2009-05-29 c:\windows\Tasks\1-Click Maintenance.job

- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-04 14:46]

2009-05-29 c:\windows\Tasks\Google Software Updater.job

- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-02 19:23]

2009-05-29 c:\windows\Tasks\GoogleUpdateTaskMachine.job

- c:\program files\Google\Update\GoogleUpdate.exe [2009-04-02 19:24]

.

- - - - ORPHANS VERWIJDERD - - - -

SafeBoot-procexp90.Sys

.

------- Bijkomende Scan -------

.

uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7

uStart Page = hxxp://www.google.nl/

mStart Page = hxxp://nl.intl.acer.yahoo.com

.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover

Rootkit scan 2009-05-29 17:23

Windows 6.0.6001 Service Pack 1 NTFS

scannen van verborgen processen ...

scannen van verborgen autostart items ...

scannen van verborgen bestanden ...

Scan succesvol afgerond

verborgen bestanden: 0

**************************************************************************

.

--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

--------------------- DLLs Geladen Onder Lopende Processen ---------------------

- - - - - - - > 'winlogon.exe'(656)

c:\windows\system32\eNetHook.dll

- - - - - - - > 'lsass.exe'(712)

c:\windows\system32\eNetHook.dll

- - - - - - - > 'Explorer.exe'(5172)

c:\windows\system32\MsnChatHook.dll

c:\windows\system32\ShowErrMsg.dll

c:\windows\system32\sysenv.dll

c:\windows\system32\BatchCrypto.dll

c:\windows\system32\CryptoAPI.dll

c:\windows\system32\keyManager.dll

c:\acer\Empowering Technology\EPOWER\SysHook.dll

.

Voltooingstijd: 2009-05-29 17:25

ComboFix-quarantined-files.txt 2009-05-29 15:25

Pre-Run: 32.786.014.208 bytes beschikbaar

Post-Run: 32.713.105.408 bytes beschikbaar

290 --- E O F --- 2009-05-29 06:13

En hoe nu verder?

Groeten Hessel

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.