Op deze website gebruiken we cookies om content en advertenties te personaliseren, om functies voor social media te bieden en om ons websiteverkeer te analyseren. Ook delen we informatie over uw gebruik van onze site met onze partners voor social media, adverteren en analyse. Deze partners kunnen deze gegevens combineren met andere informatie die u aan ze heeft verstrekt of die ze hebben verzameld op basis van uw gebruik van hun services. Meer informatie.

Akkoord

Vraag & Antwoord

Beveiliging & privacy

ter controle

None
11 antwoorden
  • Geachte specialisten, dit logje is ter controle, svp comments

    Logfile of HijackThis v1.99.1
    Scan saved at 12:05:51, on 26-6-2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\HP\KBD\KBD.EXE
    C:\WINDOWS\ALCXMNTR.EXE
    C:\windows\system\hpsysdrv.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    c:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    C:\Program Files\Eset
    od32krn.exe
    C:\WINDOWS\system32
    vsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Documents and Settings\HP_Eigenaar\Bureaublad\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\pchealth\helpctr\System\panels\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
    O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [ps2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [RECGUARD] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
    O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
    O9 - Extra button: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148067987375
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset
    od32krn.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32
    vsvc32.exe
    O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
    O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
  • Hai, gebruik je Hitmanpro toevallig, wil je die dan uninstallen met alle componenten aub.
    Na het verwijderen even opnieuw opstarten en dan een vers HJT logje plaatsen aub.

    Juisterr
  • Heb net voordat ik t logje plaatste idd Hitman laten draaien, ga het er subiet afgooien en plaats een nieuw log.
  • komt ie

    Logfile of HijackThis v1.99.1
    Scan saved at 15:19:03, on 26-6-2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\HP\KBD\KBD.EXE
    C:\WINDOWS\ALCXMNTR.EXE
    C:\windows\system\hpsysdrv.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    C:\WINDOWS\system32
    vsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\HP_Eigenaar\Bureaublad\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\pchealth\helpctr\System\panels\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [ps2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [RECGUARD] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
    O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Snelstart HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148067987375
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32
    vsvc32.exe
  • Zo dat zal vast al schelen in de snelheid.

    Wil je deze scanner eens laten scannen aub. Goed de instructies lezen.



    Download en installeer [b:d1814ccdee]Ewido Anti-Spyware 4.0[/b:d1814ccdee][/color:d1814ccdee].
    Start Ewido.
    [list:d1814ccdee][*:d1814ccdee]klik achter "Resident Shield" op "change state", zodat "active" verandert in "inactive".
    [*:d1814ccdee]klik achter "Automatic updates" op "change state", zodat "active" verandert in "inactive".
    (Negeer de "Your computer is at risk" melding die Ewido nu geeft.)
    [*:d1814ccdee]Klik in het menu bovenaan op [b:d1814ccdee]Update[/b:d1814ccdee] en klik op de [b:d1814ccdee]Start Update[/b:d1814ccdee] knop. Wacht tot de updates zijn binnengehaald.
    [*:d1814ccdee]Klik in het menu bovenaan op [b:d1814ccdee]Scanner[/b:d1814ccdee] en kies [b:d1814ccdee]Settings[/b:d1814ccdee].
    - Klik onder "How to act?" op [b:d1814ccdee]Recommended Actions[/b:d1814ccdee] en selecteer [b:d1814ccdee]Quarantine[/b:d1814ccdee] (belangrijk!).
    - Zorg ervoor dat onder [b:d1814ccdee]Reports[/b:d1814ccdee] is aangevinkt: [b:d1814ccdee]Automatically generate report after every scan[/b:d1814ccdee].
    - Zorg ervoor dat onder [b:d1814ccdee]Reports[/b:d1814ccdee] géén vinkje staat voor: [b:d1814ccdee]Only if threats were found[/b:d1814ccdee].
    [*:d1814ccdee]Klik op [b:d1814ccdee]Scan[/b:d1814ccdee] en kies [b:d1814ccdee]Complete System Scan[/b:d1814ccdee].[*:d1814ccdee]Nadat de scan is voltooid, klik je in het menu bovenaan op [b:d1814ccdee]Reports[/b:d1814ccdee]. Kopieer het rapport van de scan en plaats dat hier in je volgende bericht.[/list:u:d1814ccdee]

    aub ook weer een verst HJT logje ter controle.
  • C:\Downloads\dvdscrink.zip/dvdscrink/EasyDVDShrink.exe/EASYDV~1.EXE/update.exe -> Backdoor.Rbot.nw : No action taken.
    C:\Downloads\dvdscrink.zip/dvdscrink/EasyDVDShrink.exe/update.exe -> Backdoor.Rbot.nz : No action taken.
    :mozilla.100:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.101:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.102:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.103:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.199:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.96:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.97:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.99:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@detelegraaf.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@msnportal.112.2o7[2].txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.134:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
    :mozilla.135:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
    :mozilla.39:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
    :mozilla.38:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
    :mozilla.167:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
    :mozilla.32:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : No action taken.
    :mozilla.22:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.23:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.24:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.25:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.33:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.34:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.35:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.36:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.37:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.105:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    :mozilla.106:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken.
    C:\Documents and Settings\HP_Eigenaar\Cookies\hp_eigenaar@ivwbox[2].txt -> TrackingCookie.Ivwbox : No action taken.
    :mozilla.10:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.7:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.8:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.9:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.225:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.26:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.27:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.28:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.29:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.30:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.213:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.214:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.118:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.169:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.177:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.178:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.183:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.184:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.194:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.204:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.74:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.85:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.86:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
    :mozilla.148:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.149:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.150:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.69:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.70:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.212:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
    :mozilla.222:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
    :mozilla.223:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
    :mozilla.208:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.209:C:\Documents and Settings\HP_Eigenaar\Application Data\Mozilla\Firefox\Profiles\4ogwv88p.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.


    ::Report end
    HJT komt subiet
  • ogfile of HijackThis v1.99.1
    Scan saved at 21:45:00, on 27-6-2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\HP\KBD\KBD.EXE
    C:\WINDOWS\ALCXMNTR.EXE
    C:\windows\system\hpsysdrv.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    C:\WINDOWS\system32
    vsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\Documents and Settings\HP_Eigenaar\Bureaublad\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\pchealth\helpctr\System\panels\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [ps2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [RECGUARD] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
    O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Snelstart HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148067987375
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32
    vsvc32.exe
  • Print onderstaande even af dat werkt eenvoudiger.

    start weer op in [b:67fa5e4070]veilige modus[/b:67fa5e4070] en doe onderstaande

    * [u:67fa5e4070]Clean de Cache and Cookies in IE[/color:67fa5e4070][/u:67fa5e4070]:[list:67fa5e4070][*:67fa5e4070][b:67fa5e4070]Sluit[/b:67fa5e4070] Internet Explorer.
    [*:67fa5e4070]Ga naar Configuratiescherm > Internet Opties > tab Algemeen
    [*:67fa5e4070]Klik de [b:67fa5e4070]Cookies verwijderen[/b:67fa5e4070] knop
    [*:67fa5e4070]Klik op de [b:67fa5e4070]Bestanden verwijderen[/b:67fa5e4070] knop ernaast
    [*:67fa5e4070][b:67fa5e4070]Vink aan[/b:67fa5e4070]: Ook alle off line items verwijderen, klik OK[/list:u:67fa5e4070]* [u:67fa5e4070]Clean de Cache and Cookies in Firefox[/color:67fa5e4070][/u:67fa5e4070] (In geval Firefox geïnstalleerd is):[list:67fa5e4070][*:67fa5e4070]Go to Extra > Opties.
    [*:67fa5e4070]Klik [b:67fa5e4070]Privacy[/b:67fa5e4070] in het menu.
    [*:67fa5e4070]Klik op de knop [b:67fa5e4070]Wissen[/b:67fa5e4070] (Geschiedenis, Cookies, Cache).
    [*:67fa5e4070]Klik OK om het venster opnieuw te sluiten.[/list:u:67fa5e4070] * [u:67fa5e4070]Clean andere Temporary files + Prullenbak[/color:67fa5e4070][/u:67fa5e4070][list:67fa5e4070][*:67fa5e4070]Ga naar Start > Uitvoeren en typ: [b:67fa5e4070]cleanmgr[/b:67fa5e4070] en klik ok.
    [*:67fa5e4070]Laat het je systeem scannen op bestanden die moeten verwijderd worden
    [*:67fa5e4070]Zorg er wel voor dat je daar [b:67fa5e4070]enkel[/b:67fa5e4070] maar 'tijdelijke bestanden', 'tijdelijke internetbestanden' en 'prullenbak' staan aangevinkt.
    [*:67fa5e4070]Klik daarna op OK.[/list:u:67fa5e4070]

    start Ewido nogmaals en laat nu verwijderen wat het vind.

    Start opnieuw op in normale modus.

    Plaats nog een vers HJT logje en vertel of je problemen nu over zijn.
  • Sorry had een paar dagen andere dingen te doen. Acties uitgevoerd hierbij HJTlog

    Logfile of HijackThis v1.99.1
    Scan saved at 13:04:21, on 1-7-2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\HP\KBD\KBD.EXE
    C:\WINDOWS\ALCXMNTR.EXE
    C:\windows\system\hpsysdrv.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    C:\WINDOWS\system32
    vsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\HP_Eigenaar\Bureaublad\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\WINDOWS\pchealth\helpctr\System\panels\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [ps2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [RECGUARD] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
    O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Snelstart HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Verbindingshelp - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1148067987375
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32
    vsvc32.exe
  • ziet er goed uit, hoe is het nu met de klachten?
  • :oops:
    Had dacht ik geen klachten ( heb notabene op een ander item ergens op lopen scheppen dat mijn PC's goed werkten ondanks een NIET geinstaleerde Firewall :D ) deze logs komen vande PC van mijn vriendin af en die is pas 3 mnd oud.Hier blijkt dus weer eens dat je zelf wel kunt denken dat t veilig is maar dat er god zij dank nog profies zijn die goedwillende amateurs kunnen helpen. Sys is sneller ,enkel nog af en toe troubles met inet, maar dat ligt hier aan de huisverbinding.
    Er draait hier BTW wel Mcaffee Pro en ik zit op een ADSLlijn van Het Net met een door hen geleverd modem, waarbij ik ervan uitga dat daar een hardwarematige firewall in zit

    THANKS A Lot Anjo

Beantwoord deze vraag

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.