Vraag & Antwoord

Beveiliging & privacy

Irritante popup IE7

8 antwoorden
  • Hallo, ik krijg steeds bij het opstarten van IE een irritante pop-up. Wat kan ik doen? Wie heeft een oplossing? Hijack this: [code] Logfile of HijackThis v1.99.1 Scan saved at 22:28:06, on 19-1-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\acs.exe C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe C:\Program Files\MessengerPlus! 3\MsgPlus.exe C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\Windows Desktop Search\WindowsSearch.exe C:\Program Files\Windows Desktop Search\WindowsSearchIndexer.exe C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Documents and Settings\Fam. H. Beens\Bureaublad\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.nl/0SENLNL/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang NL O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe" O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [Soap City] C:\DOCUME~1\FAMH~1.BEE\APPLIC~1\SECTBA~1\TwoEnc.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1082\nl-nl\msntb.dll/search.htm O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Openen in een nieuwe achtergrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/229?5033072e7d2741a5b9ea4cf2c2c8840 O8 - Extra context menu item: Openen in een nieuwe voorgrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/230?5033072e7d2741a5b9ea4cf2c2c8840 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Atheros-clienthulpprogramma (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe [/code] Combofix: [code] ((((((((((((((((((((((((((((((( Files Created from 2006-12-18 to 2007-01-18 )))))))))))))))))))))))))))))))))) 2007-01-16 17:23 7,680 --a------ C:\WINDOWS\system32\CNMVS6f.DLL 2007-01-16 17:23 31,616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys 2007-01-16 17:23 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys 2007-01-16 17:23 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys 2007-01-16 17:23 116,736 --a------ C:\WINDOWS\system32\CNMLM6f.DLL 2007-01-16 17:23 <DIR> d--h----- C:\BJPrinter 2007-01-16 16:42 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\ScanSoft 2007-01-16 16:42 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\SSScanWizard 2007-01-16 16:42 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\SSScanAppDataDir 2007-01-16 16:41 <DIR> d-------- C:\Program Files\ScanSoft 2007-01-16 16:41 <DIR> d-------- C:\Program Files\Common Files\ScanSoft Shared 2007-01-16 16:18 94,208 --a------ C:\WINDOWS\system32\CNCL110.DLL 2007-01-16 16:18 90,112 --a------ C:\WINDOWS\system32\CNCI110.DLL 2007-01-16 16:18 557,056 --a------ C:\WINDOWS\system32\CNCC110.DLL 2007-01-16 16:18 49,152 --a------ C:\WINDOWS\system32\cncisco.dll 2007-01-16 16:18 389,180 --a------ C:\WINDOWS\system32\UCS32P.DLL 2007-01-16 16:18 <DIR> d--h----- C:\CanonMP 2007-01-16 16:17 <DIR> d-------- C:\Program Files\Canon 2007-01-16 08:49 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Messenger Plus! 2007-01-16 08:42 <DIR> d-------- C:\WINDOWS\pss 2007-01-15 21:37 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\InterVideo 2007-01-15 20:49 <DIR> d-------- C:\Program Files\Capella 2002 2007-01-15 17:48 178,408 --a------ C:\WINDOWS\system32\muweb.dll 2007-01-15 17:48 128,232 --a------ C:\WINDOWS\system32\mucltui.dll 2007-01-15 16:58 <DIR> d-------- C:\WINDOWS\Sun 2007-01-15 16:58 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Sun 2007-01-15 14:41 <DIR> d-------- C:\Program Files\Windows Desktop Search 2007-01-15 14:41 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Windows Desktop Search 2007-01-15 14:39 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Windows Live Toolbar 2007-01-15 14:35 <DIR> d-------- C:\Program Files\Windows Live Toolbar 2007-01-15 11:34 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Lavasoft 2007-01-15 11:30 51,072 --a------ C:\WINDOWS\system32\drivers\ikhlayer.sys 2007-01-15 11:30 30,592 --a------ C:\WINDOWS\system32\drivers\ikhfile.sys 2007-01-15 11:30 <DIR> d-a------ C:\DOCUME~1\ALLUSE~1\Application Data\TEMP 2007-01-15 11:30 <DIR> d-------- C:\Program Files\Spyware Doctor 2007-01-15 11:30 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\PC Tools 2007-01-15 11:29 78,336 --a------ C:\WINDOWS\system32\drivers\ssi.sys 2007-01-15 11:29 102,912 --a------ C:\WINDOWS\system32\islzma.dll 2007-01-15 11:29 <DIR> d-------- C:\Program Files\Webroot 2007-01-15 11:29 <DIR> d-------- C:\DOCUME~1\LOCALS~1\Application Data\Webroot 2007-01-15 11:29 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Webroot 2007-01-15 11:28 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Spybot - Search & Destroy 2007-01-15 11:27 <DIR> d-------- C:\Program Files\SpywareBlaster 2007-01-15 11:27 <DIR> d-------- C:\Program Files\Lavasoft 2007-01-15 11:12 <DIR> d-------- C:\WINDOWS\system32\GroupPolicy 2007-01-15 11:12 <DIR> d-------- C:\Program Files\Hitman Pro 2007-01-15 10:51 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Google 2007-01-15 10:50 <DIR> d-------- C:\Program Files\Google 2007-01-15 10:50 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Google 2007-01-13 23:36 <DIR> d-------- C:\Program Files\MessengerPlus! 3 2007-01-13 23:33 <DIR> d-------- C:\Program Files\MSN Messenger 2007-01-13 17:21 90,112 --a------ C:\WINDOWS\unvise32.exe 2007-01-13 17:21 <DIR> d-------- C:\Psfonts 2007-01-13 17:21 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard 2007-01-13 17:20 <DIR> d-------- C:\Program Files\Finale 2006 2007-01-13 16:15 <DIR> d-------- C:\Program Files\MSXML 4.0 2007-01-13 16:15 <DIR> d-------- C:\e8411f25aa56ca699b 2007-01-13 14:35 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Opera 2007-01-13 09:34 <DIR> d-------- C:\Program Files\Torrent101 2007-01-13 09:34 <DIR> d-------- C:\Program Files\sect bash window 2007-01-13 09:34 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Torrent101 2007-01-13 09:34 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\sect bash window 2007-01-13 09:34 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\bind noun multi upload 2007-01-13 09:15 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\espionServerData 2007-01-13 09:02 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\AdobeUM 2007-01-12 23:36 109,568 --------- C:\WINDOWS\system32\pxinsi64.exe 2007-01-12 23:36 108,544 --------- C:\WINDOWS\system32\pxcpyi64.exe 2007-01-12 23:20 82,432 --a------ C:\WINDOWS\system32\msxml4r.dll 2007-01-12 22:54 <DIR> d-------- C:\Program Files\Windows Media Connect 2 2007-01-12 22:53 <DIR> d-------- C:\WINDOWS\system32\LogFiles 2007-01-12 22:53 <DIR> d-------- C:\WINDOWS\system32\drivers\UMDF 2007-01-12 21:37 <DIR> d-------- C:\Bdienst 2007-01-12 20:32 24,816 --a------ C:\WINDOWS\system32\mdimon.dll 2007-01-12 20:30 <DIR> d-------- C:\WINDOWS\SHELLNEW 2007-01-12 20:30 <DIR> d-------- C:\Program Files\Microsoft.NET 2007-01-12 20:30 <DIR> d-------- C:\Program Files\Microsoft Works 2007-01-12 20:24 <DIR> d-------- C:\WINDOWS\WBEM 2007-01-12 20:24 <DIR> d-------- C:\WINDOWS\system32\nl-nl 2007-01-12 20:23 <DIR> dr-h----- C:\MSOCache 2007-01-12 20:22 <DIR> d--h-c--- C:\WINDOWS\ie7 2007-01-12 20:21 121,856 --------- C:\WINDOWS\system32\xmllite.dll 2007-01-12 20:21 <DIR> d-------- C:\WINDOWS\network diagnostic 2007-01-12 20:08 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Windows Genuine Advantage 2007-01-12 19:58 <DIR> d--hs---- C:\DOCUME~1\FAMH~1.BEE\UserData 2007-01-12 18:59 23,856 --a------ C:\WINDOWS\system32\spupdsvc.exe 2007-01-12 18:59 <DIR> d-------- C:\WINDOWS\system32\PreInstall 2007-01-12 18:54 <DIR> d-------- C:\WINDOWS\system32\SoftwareDistribution 2007-01-12 17:52 221,184 --a------ C:\WINDOWS\system32\wmpns.dll 2007-01-12 17:52 <DIR> dr-h----- C:\DOCUME~1\FAMH~1.BEE\Onlangs geopend 2007-01-12 17:52 <DIR> dr------- C:\DOCUME~1\FAMH~1.BEE\Mijn documenten 2007-01-12 17:52 <DIR> dr------- C:\DOCUME~1\FAMH~1.BEE\Menu Start 2007-01-12 17:52 <DIR> dr------- C:\DOCUME~1\FAMH~1.BEE\Favorieten 2007-01-12 17:52 <DIR> d--h----- C:\DOCUME~1\FAMH~1.BEE\Sjablonen 2007-01-12 17:52 <DIR> d--h----- C:\DOCUME~1\FAMH~1.BEE\Netwerkprinteromgeving 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Bureaublad 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\toshiba 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Symantec 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Sonic 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\MSN Search Toolbar 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Help 2007-01-12 17:52 <DIR> d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\Adobe 2007-01-12 17:51 77,824 --a------ C:\WINDOWS\system32\athcfg11ResLoc.dll 2007-01-12 17:51 77,824 --a------ C:\WINDOWS\system32\athcfg11res.dll 2007-01-12 17:51 57,344 --a------ C:\WINDOWS\system32\wgapiloc.dll 2007-01-12 17:51 36,864 --a------ C:\WINDOWS\system32\acs.exe 2007-01-12 17:51 352,256 --a------ C:\WINDOWS\system32\athcfg11.dll 2007-01-12 17:51 28,672 --a------ C:\WINDOWS\system32\DelRunOnceReg.exe 2007-01-12 17:51 266,240 --a------ C:\WINDOWS\system32\ControlWZCS.exe 2007-01-12 17:51 237,568 --a------ C:\WINDOWS\system32\wgapi.dll 2007-01-12 17:51 233,472 --a------ C:\WINDOWS\system32\wcapi.dll 2007-01-12 17:51 192,512 --a------ C:\WINDOWS\system32\AegisI5.exe 2007-01-12 17:51 17,801 --a------ C:\WINDOWS\system32\drivers\AegisP.sys 2007-01-12 17:51 1,396,835 --a------ C:\WINDOWS\system32\AegisE5.dll 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\toshiba 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\Symantec 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\Sonic 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\MSN Search Toolbar 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\Help 2007-01-12 17:50 <DIR> d-------- C:\DOCUME~1\DEFAUL~1\Application Data\Adobe 2007-01-12 17:47 9,600 --a------ C:\WINDOWS\system32\drivers\hidusb.sys 2007-01-12 17:47 12,288 --a------ C:\WINDOWS\system32\drivers\mouhid.sys (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-01-17 13:50 -------- d---s---- C:\DOCUME~1\FAMH~1.BEE\Application Data\microsoft 2007-01-16 19:54 -------- d--h----- C:\Program Files\installshield installation information 2007-01-15 14:40 -------- d-------- C:\Program Files\windows live favorites 2007-01-15 14:35 -------- d-------- C:\Program Files\msn toolbar suite 2007-01-13 17:31 -------- d-------- C:\DOCUME~1\FAMH~1.BEE\Application Data\macromedia 2007-01-13 12:08 -------- d-------- C:\Program Files\macromedia 2007-01-13 12:05 -------- d-------- C:\Program Files\Common Files\macromedia 2007-01-12 23:34 20640 --------- C:\WINDOWS\system32\drivers\pxhelp20.sys 2007-01-12 23:26 -------- d-------- C:\Program Files\Common Files\adobe 2007-01-12 19:40 -------- d-------- C:\Program Files\symantec 2007-01-12 19:40 -------- d-------- C:\Program Files\Common Files\symantec shared 2007-01-12 17:51 -------- d-------- C:\Program Files\atheros 2006-11-27 09:45 60416 --------- C:\WINDOWS\system32\tzchange.exe 2006-11-08 06:07 679424 --a------ C:\WINDOWS\system32\inetcomm.dll 2006-11-07 21:03 6049280 --------- C:\WINDOWS\system32\ieframe.dll 2006-11-07 21:03 50688 --------- C:\WINDOWS\system32\msfeedsbs.dll 2006-11-07 21:03 458752 --------- C:\WINDOWS\system32\msfeeds.dll 2006-11-07 21:03 413696 --a------ C:\WINDOWS\system32\vbscript.dll 2006-11-07 21:03 231424 --a------ C:\WINDOWS\system32\webcheck.dll 2006-11-07 21:03 180736 --------- C:\WINDOWS\system32\ieui.dll 2006-11-07 21:03 156160 --a------ C:\WINDOWS\system32\msls31.dll 2006-11-07 03:27 382976 --a------ C:\WINDOWS\system32\iedkcs32.dll 2006-11-07 03:27 229376 --a------ C:\WINDOWS\system32\ieaksie.dll 2006-11-07 03:26 71680 --a------ C:\WINDOWS\system32\admparse.dll 2006-11-07 03:26 55296 --a------ C:\WINDOWS\system32\iesetup.dll 2006-11-07 03:26 54784 --a------ C:\WINDOWS\system32\ie4uinit.exe 2006-11-07 03:26 43008 --a------ C:\WINDOWS\system32\iernonce.dll 2006-11-07 03:26 152064 --a------ C:\WINDOWS\system32\ieakeng.dll 2006-11-07 03:26 13312 --a------ C:\WINDOWS\system32\ieudinit.exe 2006-11-07 03:26 123904 --a------ C:\WINDOWS\system32\advpack.dll 2006-11-07 03:25 161792 --a------ C:\WINDOWS\system32\ieakui.dll 2006-11-04 14:14 1245696 --a------ C:\WINDOWS\system32\msxml4.dll 2006-11-02 23:35 8271872 --a------ C:\WINDOWS\system32\wmploc.dll 2006-11-02 22:53 99840 --a------ C:\WINDOWS\system32\wmpshell.dll 2006-11-02 22:52 257536 --a------ C:\WINDOWS\system32\wmerror.dll 2006-11-02 22:50 7680 --a------ C:\WINDOWS\system32\asferror.dll 2006-11-02 11:52 42496 --------- C:\WINDOWS\system32\wpdshextres.dll 2006-10-20 02:39 714752 --a------ C:\WINDOWS\system32\sxs.dll 2006-10-18 21:58 8704 --a------ C:\WINDOWS\system32\wdfmgr.exe 2006-10-18 21:58 8704 --a------ C:\WINDOWS\system32\uwdf.exe 2006-10-18 21:47 991744 --a------ C:\WINDOWS\system32\drmv2clt.dll 2006-10-18 21:47 937984 --a------ C:\WINDOWS\system32\wmnetmgr.dll 2006-10-18 21:47 767488 --------- C:\WINDOWS\system32\wmvsencd.dll 2006-10-18 21:47 757248 --a------ C:\WINDOWS\system32\wmadmod.dll 2006-10-18 21:47 656896 --------- C:\WINDOWS\system32\wmvxencd.dll 2006-10-18 21:47 63488 --a------ C:\WINDOWS\system32\wpdmtpus.dll 2006-10-18 21:47 629760 --a------ C:\WINDOWS\system32\wpd_ci.dll 2006-10-18 21:47 613376 --------- C:\WINDOWS\system32\wmpmde.dll 2006-10-18 21:47 603648 --a------ C:\WINDOWS\system32\wmspdmod.dll 2006-10-18 21:47 542720 --a------ C:\WINDOWS\system32\blackbox.dll 2006-10-18 21:47 535040 --------- C:\WINDOWS\system32\wmdrmsdk.dll 2006-10-18 21:47 429056 --a------ C:\WINDOWS\system32\wmdrmdev.dll 2006-10-18 21:47 414208 --a------ C:\WINDOWS\system32\msscp.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvdmoe2.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvdmod.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvadve.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmvadvd.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmsdmoe2.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wmsdmod.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\wdfapi.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\mpg4dmod.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\mp4sdmod.dll 2006-10-18 21:47 4096 --a------ C:\WINDOWS\system32\mp43dmod.dll 2006-10-18 21:47 37376 --a------ C:\WINDOWS\system32\wmdmps.dll 2006-10-18 21:47 35840 --a------ C:\WINDOWS\system32\wpdconns.dll 2006-10-18 21:47 356352 --a------ C:\WINDOWS\system32\wpdsp.dll 2006-10-18 21:47 348672 --a------ C:\WINDOWS\system32\wmdrmnet.dll 2006-10-18 21:47 33792 --a------ C:\WINDOWS\system32\wmdmlog.dll 2006-10-18 21:47 321536 --a------ C:\WINDOWS\system32\mswmdm.dll 2006-10-18 21:47 317440 --------- C:\WINDOWS\system32\mp4sdecd.dll 2006-10-18 21:47 314880 --a------ C:\WINDOWS\system32\wmpdxm.dll 2006-10-18 21:47 295936 --------- C:\WINDOWS\system32\wmpeffects.dll 2006-10-18 21:47 284160 --------- C:\WINDOWS\system32\portabledeviceapi.dll 2006-10-18 21:47 276992 --a------ C:\WINDOWS\system32\audiodev.dll 2006-10-18 21:47 27136 --a------ C:\WINDOWS\system32\mspmsnsv.dll 2006-10-18 21:47 2603008 --------- C:\WINDOWS\system32\wpdshext.dll 2006-10-18 21:47 259072 --------- C:\WINDOWS\system32\mpg4decd.dll 2006-10-18 21:47 259072 --------- C:\WINDOWS\system32\mp43decd.dll 2006-10-18 21:47 2450944 --a------ C:\WINDOWS\system32\wmvcore.dll 2006-10-18 21:47 242688 --a------ C:\WINDOWS\system32\wmpasf.dll 2006-10-18 21:47 229376 --a------ C:\WINDOWS\system32\cewmdm.dll 2006-10-18 21:47 222208 --a------ C:\WINDOWS\system32\wmasf.dll 2006-10-18 21:47 212992 --------- C:\WINDOWS\system32\mfplat.dll 2006-10-18 21:47 211456 --a------ C:\WINDOWS\system32\qasf.dll 2006-10-18 21:47 204288 --a------ C:\WINDOWS\system32\wmpsrcwp.dll 2006-10-18 21:47 199168 --------- C:\WINDOWS\system32\portabledevicewmdrm.dll 2006-10-18 21:47 179712 --a------ C:\WINDOWS\system32\msnetobj.dll 2006-10-18 21:47 175616 --a------ C:\WINDOWS\system32\mspmsp.dll 2006-10-18 21:47 166912 --------- C:\WINDOWS\system32\portabledevicetypes.dll 2006-10-18 21:47 1661440 --a------ C:\WINDOWS\system32\wmpencen.dll 2006-10-18 21:47 1574912 --------- C:\WINDOWS\system32\wmvencod.dll 2006-10-18 21:47 157184 --a------ C:\WINDOWS\system32\wmidx.dll 2006-10-18 21:47 154624 --a------ C:\WINDOWS\system32\wpdmtp.dll 2006-10-18 21:47 1543680 --------- C:\WINDOWS\system32\wmvdecod.dll 2006-10-18 21:47 1382912 --------- C:\WINDOWS\system32\wmvsdecd.dll 2006-10-18 21:47 133632 --------- C:\WINDOWS\system32\wpdshserviceobj.dll 2006-10-18 21:47 1329152 --a------ C:\WINDOWS\system32\wmspdmoe.dll 2006-10-18 21:47 132096 --------- C:\WINDOWS\system32\portabledevicewiacompat.dll 2006-10-18 21:47 130048 --------- C:\WINDOWS\system32\wmpps.dll 2006-10-18 21:47 11264 --a------ C:\WINDOWS\system32\laprxy.dll 2006-10-18 21:47 1117696 --a------ C:\WINDOWS\system32\wmadmoe.dll 2006-10-18 21:47 101888 --------- C:\WINDOWS\system32\portabledeviceclassextension.dll 2006-10-18 20:03 100864 --a------ C:\WINDOWS\system32\logagent.exe 2006-10-18 20:00 249856 --------- C:\WINDOWS\system32\drmupgds.exe 2006-10-18 20:00 17408 --------- C:\WINDOWS\system32\wpdshextautoplay.exe (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe" "TOSCDSPD"="C:\\Program Files\\TOSHIBA\\TOSCDSPD\\toscdspd.exe" "MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background" "updateMgr"="C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AdobeUpdateManager.exe AcRdB7_0_9" "MessengerPlus3"="\"C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\" /WinStart" "swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.908.5008\\GoogleToolbarNotifier.exe" "Soap City"="C:\\DOCUME~1\\FAMH~1.BEE\\APPLIC~1\\SECTBA~1\\TwoEnc.exe" "msnmsgr"="\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "ATIPTA"="\"C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe\"" "SynTPLpr"="C:\\Program Files\\Synaptics\\SynTP\\SynTPLpr.exe" "SynTPEnh"="C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe" "Toshiba Hotkey Utility"="\"C:\\Program Files\\Toshiba\\Windows Utilities\\Hotkey.exe\" /lang NL" "NDSTray.exe"="NDSTray.exe" "SmoothView"="C:\\Program Files\\TOSHIBA\\TOSHIBA-zoomutility\\SmoothView.exe" "PadTouch"="C:\\Program Files\\TOSHIBA\\Touch and Launch\\PadExe.exe" "dla"="C:\\WINDOWS\\system32\\dla\\tfswctrl.exe" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Elements 4.0\\apdproxy.exe\"" "MessengerPlus3"="\"C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\"" "OpwareSE2"="\"C:\\Program Files\\ScanSoft\\OmniPageSE2.0\\OpwareSE2.exe\"" "OPSE reminder"="\"C:\\Program Files\\ScanSoft\\OmniPageSE2.0\\EregEng\\Ereg.exe\" -r \"C:\\Program Files\\ScanSoft\\OmniPageSE2.0\\EregEng\\ereg.ini\"" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\multiuploadtoolstyle] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Gpl real" "hkey"="HKLM" "command"="C:\\Documents and Settings\\All Users\\Application Data\\bind noun multi upload\\Gpl real.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Soap City] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="TwoEnc" "hkey"="HKCU" "command"="C:\\DOCUME~1\\FAMH~1.BEE\\APPLIC~1\\SECTBA~1\\TwoEnc.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{56F9679E-7826-4C84-81F3-532071A8BCC5}"="" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] "WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}" [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "Spyware Doctor"="" [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run] "Spyware Doctor"="" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0 Contents of the 'Scheduled Tasks' folder C:\WINDOWS\tasks\AAEED242918D4E82.job C:\WINDOWS\tasks\Controleren op updates voor Windows Live Toolbar.job C:\WINDOWS\tasks\Herinnering voor registratie 1.job C:\WINDOWS\tasks\Herinnering voor registratie 2.job C:\WINDOWS\tasks\Herinnering voor registratie 3.job C:\WINDOWS\tasks\Symantec NetDetect.job Completion time: 07-01-18 19:23:01 [/code] m vr. gr. HarmB
  • momentje je hebt een lop infectie.
  • Download en installeer [url=http://www.ccleaner.com/ccdownload.asp]CCleaner[/url] (De CCLeaner Yahoo Toolbar is niet nodig) Nog niet gebruiken. Installeer hijackthis.exe bijv. in C:\Program Files\[b:958afba091]Hijackthis[/b:958afba091] Dit in verband met de backups die dit programma maakt. [b:958afba091]belangrijk[/b:958afba091] Klik op Start -> (Settings) -> Configuratiescherm -> Software en verwijder het volgende programma: [b:958afba091]Messenger Plus[/b:958afba091] Deze mag later weer zonder sponsors worden geïnstalleerd Start Hijackthis op en kies voor 'Do a system scan only' Selecteer alleen de items die hieronder zijn genoemd: [b:958afba091] O4 - HKCU\..\Run: [Soap City] C:\DOCUME~1\FAMH~1.BEE\APPLIC~1\SECTBA~1\TwoEnc.exe [/b:958afba091] Klik op 'Fix checked' om de items te verwijderen. Open de verkenner ("Mijn Computer") en kies [b:958afba091]Extra[/b:958afba091] -> [b:958afba091]Mapopties...[/b:958afba091] Controleer onder [b:958afba091]Weergave[/b:958afba091] de volgende instellingen: Uitzetten: Beveiligde besturingssysteembestanden verbergen (aanbevolen) Uitzetten: Extensies voor bekende bestandstypen verbergen Selecteer: De inhoud van systeemmappen weergeven (alleen bij XP) Selecteer: Verborgen bestanden en mappen weergeven Verwijder de volgende directories: C:\DOCUME~1\FAMH~1.BEE\APPLIC~1\[b:958afba091]SECTBA~1[/b:958afba091]\ [b:958afba091][color=blue:958afba091]Je Java software is verouderd.[/color:958afba091][/b:958afba091] oudere versies hebben lekken die malware de kans geeft om zich te installeren op je systeem. [b:958afba091]Doe eerst deze stappen om Java te de-installeren en de nieuwere versie te installeren:[/b:958afba091][list:958afba091] [*:958afba091]Download de nieuwste versie hier: [b:958afba091][url=http://java.sun.com/javase/downloads/index.jsp]Java Runtime Environment (JRE) 6 [/url][/b:958afba091]. [*:958afba091]Scroll naar beneden tot waar er staat: "[i:958afba091]Java Runtime Environment (JRE) 6 The J2SE Runtime Environment (JRE) allows end-users to run Java applications.[/i:958afba091]". [*:958afba091]Klik dan rechts op de "[b:958afba091]>>Download[/b:958afba091]" knop. [*:958afba091]Vink het volgende aan waar er staat: "[b:958afba091][i:958afba091]Accept[/b:958afba091] License Agreement[/i:958afba091]". [*:958afba091]De pagina zal herladen. [*:958afba091]Klik op de link: [b:958afba091]Windows Offline Installation, Multi-language[/b:958afba091]. De download zal starten, sla deze op je bureaublad op. [*:958afba091]Sluit alle programma's die eventueel open zijn - Zeker je web browser! [*:958afba091]Ga dan naar [b:958afba091]Start[/b:958afba091] > [b:958afba091]Configuratiescherm[/b:958afba091] en dubbelklik op [b:958afba091]software[/b:958afba091] en verwijder alle oudere versies van Java. [*:958afba091]Vink alles aan met Java Runtime Environment (JRE of J2SE) in de naam. [*:958afba091]Klik dan op [b:958afba091]Verwijderen[/b:958afba091] of [b:958afba091]Wijzig/Verwijder[/b:958afba091] knop. [*:958afba091]Herhaal dit tot alle oudere versies verdwenen zijn. [*:958afba091]Na het verwijderen van alle oudere versies, herstart dan je pc. [*:958afba091]Dubbelklik dan op [b:958afba091]jre-6-windows-i586.exe[/b:958afba091] op je bureaublad om de nieuwste versie van Java te installeren. [/list:u:958afba091] Download [url=http://home.hetnet.nl/~stefsmeenk/deljob.bat]deljob.bat[/url]. Sla het bestandje op je bureaublad op en dubbelklik deljob.bat Post nu een nieuw logje van HijackThis. Post ook de inhoud van logit.txt dat nu ook op je bureaublad zal staan. Start Ccleaner. Ccleaner biedt je de mogelijkheid om in te stellen wat er opgeschoond moet worden. Selecteer nu alleen de volgende items: Internet Explorer: - Tijdelijke Internet bestanden Systeem: - Prullenbak leegmaken - Tijdelijke bestanden klik nu in Ccleaner op [b:958afba091]opschonen[/b:958afba091] (rechts onderaan). plaats ook een nieuw HJT logje aub. J :wink:
  • juisterr schreef: [quote]Download [url=http://home.hetnet.nl/~stefsmeenk/deljob.bat]deljob.bat[/url].[/quote] Bedankt! Ik heb alleen wel even moeten zoeken naar dt bestandje. De link moet zijn [url=http://home.hetnet.nl/~stefsmeenk/tools/deljob.exe] HarmB
  • Nieuw HJT-logje na draaien deljob: Logfile of HijackThis v1.99.1 Scan saved at 9:38:31, on 20-1-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\acs.exe C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\Windows Desktop Search\WindowsSearch.exe C:\Program Files\Windows Desktop Search\WindowsSearchIndexer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Windows Desktop Search\WindowsSearchFilter.exe C:\Program Files\Windows Desktop Search\WindowsSearchFilter.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Hijackthis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.nl/0SENLNL/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang NL O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe" O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1082\nl-nl\msntb.dll/search.htm O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Openen in een nieuwe achtergrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/229?5033072e7d2741a5b9ea4cf2c2c8840 O8 - Extra context menu item: Openen in een nieuwe voorgrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/230?5033072e7d2741a5b9ea4cf2c2c8840 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Atheros-clienthulpprogramma (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe Logit.txt: -------------------------------------------------------- BACKUPS CREATED in C:\DELJOB AAEED242918D4E82.job -------------------------------------------------------- FILES IN TASKS FOLDER Controleren op updates voor Windows Live Toolbar.job Symantec NetDetect.job -------------------------------------------------------- EXPORT APP DATA FOLDERS -------------------------------------------------------- Het volume in station C heeft geen naam. Het volumenummer is A8E4-BD10 Map van C:\Documents and Settings\Fam. H. Beens\Application Data 13-01-2007 16:01 <DIR> Adobe 13-01-2007 09:18 <DIR> AdobeUM 15-01-2007 18:27 <DIR> Google 09-08-2005 15:12 <DIR> Help 09-08-2005 15:05 <DIR> IDENTI~1 Identities 15-01-2007 21:37 <DIR> INTERV~1 InterVideo 15-01-2007 11:34 <DIR> Lavasoft 19-01-2007 22:00 <DIR> MACROM~1 Macromedia 15-01-2007 14:41 <DIR> MSNSEA~1 MSN Search Toolbar 13-01-2007 14:35 <DIR> Opera 15-01-2007 11:30 <DIR> PCTOOL~1 PC Tools 16-01-2007 16:42 <DIR> ScanSoft 10-08-2005 07:51 <DIR> Sonic 15-01-2007 16:58 <DIR> Sun 10-08-2005 08:02 <DIR> Symantec 13-01-2007 09:34 <DIR> TORREN~1 Torrent101 09-08-2005 15:24 <DIR> toshiba 15-01-2007 11:29 <DIR> Webroot 15-01-2007 14:41 <DIR> WINDOW~1 Windows Desktop Search 0 bestand(en) 0 bytes 19 map(pen) 38.189.137.920 bytes beschikbaar Het volume in station C heeft geen naam. Het volumenummer is A8E4-BD10 Map van C:\Documents and Settings\All Users\Application Data 12-01-2007 23:39 <DIR> Adobe 13-01-2007 09:34 <DIR> BINDNO~1 bind noun multi upload 13-01-2007 09:15 <DIR> ESPION~1 espionServerData 15-01-2007 10:50 <DIR> Google 13-01-2007 12:02 <DIR> MACROM~1 Macromedia 10-08-2005 08:10 <DIR> MSNSEA~1 MSN Search Toolbar 09-08-2005 14:45 <DIR> SBSI 15-01-2007 11:57 <DIR> SPYBOT~1 Spybot - Search & Destroy 16-01-2007 16:42 <DIR> SSSCAN~1 SSScanAppDataDir 16-01-2007 16:42 <DIR> SSSCAN~2 SSScanWizard 12-01-2007 19:40 <DIR> Symantec 15-01-2007 12:23 <DIR> TEMP 12-01-2007 20:08 <DIR> WINDOW~1 Windows Genuine Advantage 15-01-2007 14:39 <DIR> WINDOW~2 Windows Live Toolbar 0 bestand(en) 0 bytes 14 map(pen) 38.189.137.920 bytes beschikbaar --------------------------------------------------------
  • En nu de HJT-log na het draaien van ccleaner: Logfile of HijackThis v1.99.1 Scan saved at 9:45:48, on 20-1-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\acs.exe C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\Windows Desktop Search\WindowsSearch.exe C:\Program Files\Windows Desktop Search\WindowsSearchIndexer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Windows Desktop Search\WindowsSearchFilter.exe C:\Program Files\Windows Desktop Search\WindowsSearchFilter.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.nl/0SENLNL/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: dsWebAllowBHO Class - {2F85D76C-0569-466F-A488-493E6BD0E955} - C:\Program Files\Windows Desktop Search\dsWebAllow.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang NL O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA-zoomutility\SmoothView.exe O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe" O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregEng\ereg.ini" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1082\nl-nl\msntb.dll/search.htm O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Openen in een nieuwe achtergrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/229?5033072e7d2741a5b9ea4cf2c2c8840 O8 - Extra context menu item: Openen in een nieuwe voorgrondtab - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\nl-nl\msntabres.dll/230?5033072e7d2741a5b9ea4cf2c2c8840 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O11 - Options group: [INTERNATIONAL] International* O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Atheros-clienthulpprogramma (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
  • [quote:51ef510700="harmb"]juisterr schreef: [quote:51ef510700]Download [url=http://home.hetnet.nl/~stefsmeenk/deljob.bat]deljob.bat[/url].[/quote:51ef510700] Bedankt! Ik heb alleen wel even moeten zoeken naar dt bestandje. De link moet zijn [url=http://home.hetnet.nl/~stefsmeenk/tools/deljob.exe] HarmB[/quote:51ef510700] [url=http://members.lycos.nl/deljob/][b:51ef510700]Deljob.exe[/b:51ef510700][/url] << deze heb ik van smeenk zelf :wink:
  • En het probleem is v.v.t!!! Bedankt voor de hulp HarmB

Beantwoord deze vraag

Weet jij het antwoord op deze vraag? Registreer of meld je aan met je account

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.