Vraag & Antwoord

Beveiliging & privacy

Misschien wil iemand dit logfile bekijken?

11 antwoorden
  • Mijn PC "bevriest" vaak bij diverse toepassingen, zelfs bij tekstintypen. Misschie blijkt iets uit deze logfile: Logfile of HijackThis v1.99.1 Scan saved at 21:27:37, on 18-2-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\Program Files\Windows Defender\MsMpEng.exe G:\WINDOWS\System32\svchost.exe G:\Program Files\Ahead\InCD\InCDsrv.exe G:\Program Files\Common Files\Symantec Shared\ccProxy.exe G:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe G:\Program Files\Norton Internet Security\ISSVC.exe G:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe G:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe G:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe G:\WINDOWS\system32\spoolsv.exe G:\WINDOWS\Explorer.EXE H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe G:\Program Files\Common Files\Symantec Shared\ccApp.exe G:\Program Files\hcchulp\ClientAgent\hcchulp.exe H:\Program Files\Wallpaper Master\Wallpaper.exe G:\Program Files\Executive Software\Diskeeper\DkService.exe G:\Program Files\Windows Defender\MSASCui.exe G:\WINDOWS\system32\RUNDLL32.EXE G:\WINDOWS\system32\ctfmon.exe G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe G:\Program Files\BOINC\boincmgr.exe G:\Program Files\Microsoft Office\Office\1043\msoffice.exe G:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe G:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe G:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe G:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe G:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE G:\WINDOWS\system32\nvsvc32.exe G:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe G:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE G:\WINDOWS\System32\svchost.exe G:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe G:\WINDOWS\System32\wbem\wmiapsrv.exe G:\Program Files\BOINC\boinc.exe G:\WINDOWS\system32\wuauclt.exe H:\Program Files\MailWasher Pro\MailWasher.exe G:\Program Files\MSN Messenger\msnmsgr.exe G:\WINDOWS\system32\svchost.exe G:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_5.15_windows_intelx86.exe G:\Program Files\DAP\DAP.EXE G:\Documents and Settings\Dick\Bureaublad\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.zoeken.nl/?query=%s R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:4001 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: (no name) - AutorunsDisabled - (no file) O2 - BHO: DAPHelper Class - {0000CC75-ACF3-4cac-A0A9-DD3868E06852} - G:\Program Files\DAP\DAPBHO.DLL O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - G:\Program Files\SiteAdvisor\saIE.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - G:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - G:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - g:\program files\google\googletoolbar2.dll O3 - Toolbar: &HCC Hulp - {0BFDDA12-9C1A-46B8-9681-AFF63C2A1EF0} - G:\PROGRA~1\hcchulp\HCCHulp.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - G:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - G:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll O3 - Toolbar: SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - G:\Program Files\SiteAdvisor\saIE.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [WinPatrol] "H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe" O4 - HKLM\..\Run: [DiskeeperSystray] "G:\Program Files\Executive Software\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [SpySweeper] "G:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray O4 - HKLM\..\Run: [ccApp] "G:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [Symantec NetDriver Monitor] "G:\PROGRA~1\SYMNET~1\SNDMon.exe" /Consumer O4 - HKLM\..\Run: [hcchulp] "G:\Program Files\hcchulp\ClientAgent\hcchulp.exe" O4 - HKLM\..\Run: [WallpaperChanger] "H:\Program Files\Wallpaper Master\Wallpaper.exe" O4 - HKLM\..\Run: [anvshell] anvshell.exe O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [Windows Defender] "G:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" G:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" G:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [ctfmon.exe] G:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gadwin PrintScreen 3.0] G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash O4 - HKCU\..\Run: [MagnifyingGlass] "G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe" /autorun O4 - Global Startup: BOINC Manager.lnk = G:\Program Files\BOINC\boincmgr.exe O4 - Global Startup: Microsoft Office.lnk = G:\Program Files\Microsoft Office\Office\OSA9.EXE O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Download with &DAP - G:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: &Google Search - res://g:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Yahoo! Search - file:///G:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Backward Links - res://g:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://g:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: Download &all with DAP - G:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: Save Flash - res://G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210 O8 - Extra context menu item: Similar Pages - res://g:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://g:\program files\google\GoogleToolbar2.dll/cmtrans.html O8 - Extra context menu item: Yahoo! &Dictionary - file:///G:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///G:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///G:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - AutorunsDisabled - (no file) O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.5.0_09\bin\ssv.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - G:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: FreeToGoSwitch - {A888F560-58E4-11d0-A68A-000000000000} - G:\WINDOWS\System32\shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll (HKCU) O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA240C4-D37F-47D6-BD51-ACBD72DE6A7F}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{73F5E384-A450-448B-969E-345E8A66F0B4}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{7F55A189-577F-4588-BF25-D7C2F3C37768}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{923975ED-DFC7-4655-8E26-F771BF87E1D3}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - AppInit_DLLs: G:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O20 - Winlogon Notify: AutorunsDisabled - G:\WINDOWS\ O20 - Winlogon Notify: WgaLogon - G:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - G:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Ati HotKey Poller - Unknown owner - G:\WINDOWS\system32\Ati2evxx.exe (file missing) O23 - Service: ATI Smart - Unknown owner - G:\WINDOWS\system32\ati2sgag.exe (file missing) O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Diskeeper - Executive Software International, Inc. - G:\Program Files\Executive Software\Diskeeper\DkService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - G:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - G:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - G:\Program Files\Norton Internet Security\ISSVC.exe O23 - Service: LiveUpdate - Symantec Corporation - G:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Norton AntiVirus Auto-Protect-service (navapsvc) - Symantec Corporation - G:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Ghost - Symantec Corporation - G:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - G:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - G:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\system32\nvsvc32.exe O23 - Service: Planner voor Automatische LiveUpdate - Symantec Corporation - G:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcSandraSrv.exe O23 - Service: SAVScan - Symantec Corporation - G:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - G:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - G:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - G:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  • Download en installeer [url=http://www.ccleaner.com/ccdownload.asp]CCleaner[/url] (De CCLeaner Yahoo Toolbar is niet nodig) Nog niet gebruiken. Er is een beperking in Internet Explorer waardoor je niet alle instellingen kunt wijzigen. Mogelijk dat dit door Spybot S&D is ingesteld. Indien jij deze instelling niet zelf hebt ingesteld, dan mag je de volgende regel fixen: O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present [i:b8752e26c4]Print de onderstaande instructies uit omdat je de computer tijdens het fixen moet herstarten. (kopieer de tekst naar bijv. Word en print dit uit)[/i:b8752e26c4] Download FixWareout van één van de volgende links: [url]http://www.bleepingcomputer.com/files/lonny/Fixwareout.exe[/url] [url]http://downloads.subratam.org/Fixwareout.exe[/url] Sla het op je bureaublad op en dubbelklik op [b:b8752e26c4]Fixwareout.exe[/b:b8752e26c4]. Klik op "Next", daarna op "Install". Zorg dat "Run Fixit" aangevinkt is en klik dan op "Finish". Volg de aanwijzingen op het scherm. Als je gevraagd wordt om de computer opnieuw te starten doe je dit. Het zal wat langer duren voor de computer opnieuw volledig opgestart is. Dit is normaal. Zodra je Bureaublad geladen is, zal een tekstbestand openen (report.txt). [i:b8752e26c4]Let op! Als je antivirus een scriptblokker heeft krijg je een waarschuwing zoals "malicious script warning" wanneer je dit tooltje gaat draaien. Je kunt deze waarschuwing negeren.[/i:b8752e26c4] Start Hijackthis op en kies voor 'Do a system scan only' Selecteer alleen de items die hieronder zijn genoemd: [b:b8752e26c4] O2 - BHO: (no name) - AutorunsDisabled - (no file) O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - Global Startup: Microsoft Office.lnk = G:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: (no name) - AutorunsDisabled - (no file) O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA240C4-D37F-47D6-BD51-ACBD72DE6A7F}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{73F5E384-A450-448B-969E-345E8A66F0B4}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{7F55A189-577F-4588-BF25-D7C2F3C37768}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{923975ED-DFC7-4655-8E26-F771BF87E1D3}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O20 - Winlogon Notify: AutorunsDisabled - G:\WINDOWS\ [/b:b8752e26c4] Sluit alle vensters behalve Hijackthis Klik op 'Fix checked' om de items te verwijderen. [b:b8752e26c4][color=blue:b8752e26c4]Je Java software is verouderd.[/color:b8752e26c4][/b:b8752e26c4] oudere versies hebben lekken die malware de kans geeft om zich te installeren op je systeem. [b:b8752e26c4]Doe eerst deze stappen om Java te de-installeren en de nieuwere versie te installeren:[/b:b8752e26c4][list:b8752e26c4] [*:b8752e26c4]Download de nieuwste versie hier: [b:b8752e26c4][url=http://java.sun.com/javase/downloads/index.jsp]Java Runtime Environment (JRE) 6 [/url][/b:b8752e26c4]. [*:b8752e26c4]Scroll naar beneden tot waar er staat: "[i:b8752e26c4]Java Runtime Environment (JRE) 6 The J2SE Runtime Environment (JRE) allows end-users to run Java applications.[/i:b8752e26c4]". [*:b8752e26c4]Klik dan rechts op de "[b:b8752e26c4]>>Download[/b:b8752e26c4]" knop. [*:b8752e26c4]Vink het volgende aan waar er staat: "[b:b8752e26c4][i:b8752e26c4]Accept[/b:b8752e26c4] License Agreement[/i:b8752e26c4]". [*:b8752e26c4]De pagina zal herladen. [*:b8752e26c4]Klik op de link: [b:b8752e26c4]Windows Offline Installation, Multi-language[/b:b8752e26c4]. De download zal starten, sla deze op je bureaublad op. [*:b8752e26c4]Sluit alle programma's die eventueel open zijn - Zeker je web browser! [*:b8752e26c4]Ga dan naar [b:b8752e26c4]Start[/b:b8752e26c4] > [b:b8752e26c4]Configuratiescherm[/b:b8752e26c4] en dubbelklik op [b:b8752e26c4]software[/b:b8752e26c4] en verwijder alle oudere versies van Java. [*:b8752e26c4]Vink alles aan met Java Runtime Environment (JRE of J2SE) in de naam. [*:b8752e26c4]Klik dan op [b:b8752e26c4]Verwijderen[/b:b8752e26c4] of [b:b8752e26c4]Wijzig/Verwijder[/b:b8752e26c4] knop. [*:b8752e26c4]Herhaal dit tot alle oudere versies verdwenen zijn. [*:b8752e26c4]Na het verwijderen van alle oudere versies, herstart dan je pc. [*:b8752e26c4]Dubbelklik dan op [b:b8752e26c4]jre-6-windows-i586.exe[/b:b8752e26c4] op je bureaublad om de nieuwste versie van Java te installeren. [/list:u:b8752e26c4] [b:b8752e26c4]Als je problemen hebt met de internet verbinding, voer dan het volgende uit[/b:b8752e26c4]: Ga naar het Configuratiescherm en klik op "Netwerkverbindingen". Rechtsklik op je standaard verbinding en kies "Eigenschappen". Klik op het tabblad "Algemeen" en dubbelklik op "Internet-Protocol (TCP/IP)". Selecteer "Automatisch een DNS-serveradres laten toewijzen". Plaats de inhoud van het log dat je hier kan vinden: C:\fixwareout\report.txt, post ook een nieuw HijackThis log. Start Ccleaner. Ccleaner biedt je de mogelijkheid om in te stellen wat er opgeschoond moet worden. Selecteer nu alleen de volgende items: Internet Explorer: - Tijdelijke Internet bestanden Systeem: - Prullenbak leegmaken - Tijdelijke bestanden klik nu in Ccleaner op [b:b8752e26c4]opschonen[/b:b8752e26c4] (rechts onderaan). plaats een nieuw HJT logje
  • Erg bedankt voor deze uitvoerige informatie!
  • Een vraag: Fixewareout.exe heb ik gedownloed, geïnstalleerd en laten draaien. Er verscheen geen verzoek tot herstart, dus ik deed het zelf. Na opstarten was er geen tekstbestand report.txt ...... hoe nu verder?
  • de rest van de fix volgen en dan een nieuw HJT logje plaatsen aub.
  • Hier is dan de laatste nieuwe logfile (overigens, ik gebruik géén Norton Antivirus meer): Logfile of HijackThis v1.99.1 Scan saved at 14:27:13, on 20-2-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\Program Files\Windows Defender\MsMpEng.exe G:\WINDOWS\System32\svchost.exe G:\Program Files\Ahead\InCD\InCDsrv.exe G:\WINDOWS\system32\spoolsv.exe G:\Program Files\Executive Software\Diskeeper\DkService.exe G:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe G:\WINDOWS\Explorer.EXE G:\WINDOWS\system32\nvsvc32.exe G:\WINDOWS\System32\svchost.exe G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe G:\Program Files\hcchulp\ClientAgent\hcchulp.exe G:\Program Files\Windows Defender\MSASCui.exe G:\WINDOWS\system32\RUNDLL32.EXE G:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe G:\Program Files\Java\jre1.6.0\bin\jusched.exe G:\WINDOWS\system32\ctfmon.exe G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe G:\WINDOWS\System32\wbem\wmiapsrv.exe G:\Program Files\BOINC\boincmgr.exe G:\Program Files\BOINC\boinc.exe G:\WINDOWS\system32\wuauclt.exe H:\Program Files\MailWasher Pro\MailWasher.exe G:\PROGRA~1\MOZILL~1\FIREFOX.EXE G:\Documents and Settings\Dick\Bureaublad\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.zoeken.nl/?query=%s R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:4001 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: DAPHelper Class - {0000CC75-ACF3-4cac-A0A9-DD3868E06852} - G:\Program Files\DAP\DAPBHO.DLL O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - G:\Program Files\SiteAdvisor\saIE.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - G:\Program Files\Java\jre1.6.0\bin\ssv.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - g:\program files\google\googletoolbar2.dll O3 - Toolbar: &HCC Hulp - {0BFDDA12-9C1A-46B8-9681-AFF63C2A1EF0} - G:\PROGRA~1\hcchulp\HCCHulp.dll O3 - Toolbar: SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - G:\Program Files\SiteAdvisor\saIE.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [WinPatrol] "H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe" O4 - HKLM\..\Run: [DiskeeperSystray] "G:\Program Files\Executive Software\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [SpySweeper] "G:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray O4 - HKLM\..\Run: [hcchulp] "G:\Program Files\hcchulp\ClientAgent\hcchulp.exe" O4 - HKLM\..\Run: [anvshell] anvshell.exe O4 - HKLM\..\Run: [Windows Defender] "G:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" G:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" G:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [AVG7_CC] G:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [SunJavaUpdateSched] "G:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKCU\..\Run: [ctfmon.exe] G:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gadwin PrintScreen 3.0] G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash O4 - HKCU\..\Run: [MagnifyingGlass] "G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe" /autorun O4 - Global Startup: BOINC Manager.lnk = G:\Program Files\BOINC\boincmgr.exe O8 - Extra context menu item: &Download with &DAP - G:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: &Google Search - res://g:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Yahoo! Search - file:///G:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Backward Links - res://g:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://g:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: Download &all with DAP - G:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: Save Flash - res://G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210 O8 - Extra context menu item: Similar Pages - res://g:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://g:\program files\google\GoogleToolbar2.dll/cmtrans.html O8 - Extra context menu item: Yahoo! &Dictionary - file:///G:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///G:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///G:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.6.0\bin\npjpi160.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.6.0\bin\npjpi160.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - G:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: FreeToGoSwitch - {A888F560-58E4-11d0-A68A-000000000000} - G:\WINDOWS\System32\shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll (HKCU) O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA240C4-D37F-47D6-BD51-ACBD72DE6A7F}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{73F5E384-A450-448B-969E-345E8A66F0B4}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{7F55A189-577F-4588-BF25-D7C2F3C37768}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{923975ED-DFC7-4655-8E26-F771BF87E1D3}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - AppInit_DLLs: G:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O20 - Winlogon Notify: WgaLogon - G:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - G:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Ati HotKey Poller - Unknown owner - G:\WINDOWS\system32\Ati2evxx.exe (file missing) O23 - Service: ATI Smart - Unknown owner - G:\WINDOWS\system32\ati2sgag.exe (file missing) O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (file missing) O23 - Service: Symantec Network Proxy (ccProxy) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccProxy.exe (file missing) O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe (file missing) O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (file missing) O23 - Service: Diskeeper - Executive Software International, Inc. - G:\Program Files\Executive Software\Diskeeper\DkService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - G:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - G:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: ISSvc (ISSVC) - Unknown owner - G:\Program Files\Norton Internet Security\ISSVC.exe (file missing) O23 - Service: LiveUpdate - Unknown owner - G:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing) O23 - Service: Norton AntiVirus Auto-Protect-service (navapsvc) - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe (file missing) O23 - Service: Norton Ghost - Unknown owner - G:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe (file missing) O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe (file missing) O23 - Service: Norton Unerase Protection (NProtectService) - Unknown owner - G:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE (file missing) O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\system32\nvsvc32.exe O23 - Service: Planner voor Automatische LiveUpdate - Unknown owner - G:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcSandraSrv.exe O23 - Service: SAVScan - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe (file missing) O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - G:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing) O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (file missing) O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing) O23 - Service: Speed Disk service - Unknown owner - G:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE (file missing) O23 - Service: Symantec Core LC - Unknown owner - G:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  • Je hebt toch wel die regels gefixt ??????? probeer het nog maar eens. [i:10ec379890]Print de onderstaande instructies uit omdat je de computer tijdens het fixen moet herstarten. (kopieer de tekst naar bijv. Word en print dit uit)[/i:10ec379890] Download FixWareout van één van de volgende links: [url]http://www.bleepingcomputer.com/files/lonny/Fixwareout.exe[/url] [url]http://downloads.subratam.org/Fixwareout.exe[/url] Sla het op je bureaublad op en dubbelklik op [b:10ec379890]Fixwareout.exe[/b:10ec379890]. Klik op "Next", daarna op "Install". Zorg dat "Run Fixit" aangevinkt is en klik dan op "Finish". Volg de aanwijzingen op het scherm. Als je gevraagd wordt om de computer opnieuw te starten doe je dit. Het zal wat langer duren voor de computer opnieuw volledig opgestart is. Dit is normaal. Zodra je Bureaublad geladen is, zal een tekstbestand openen (report.txt). [i:10ec379890]Let op! Als je antivirus een scriptblokker heeft krijg je een waarschuwing zoals "malicious script warning" wanneer je dit tooltje gaat draaien. Je kunt deze waarschuwing negeren.[/i:10ec379890] Start Hijackthis op en kies voor 'Do a system scan only' Selecteer alleen de items die hieronder zijn genoemd: [b:10ec379890] O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA240C4-D37F-47D6-BD51-ACBD72DE6A7F}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{73F5E384-A450-448B-969E-345E8A66F0B4}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{7F55A189-577F-4588-BF25-D7C2F3C37768}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\..\{923975ED-DFC7-4655-8E26-F771BF87E1D3}: NameServer = 85.255.116.168,85.255.112.183 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.168 85.255.112.183 [/b:10ec379890] Klik op 'Fix checked' om de items te verwijderen. [b:10ec379890]Als je problemen hebt met de internet verbinding, voer dan het volgende uit[/b:10ec379890]: Ga naar het Configuratiescherm en klik op "Netwerkverbindingen". Rechtsklik op je standaard verbinding en kies "Eigenschappen". Klik op het tabblad "Algemeen" en dubbelklik op "Internet-Protocol (TCP/IP)". Selecteer "Automatisch een DNS-serveradres laten toewijzen". Plaats de inhoud van het log dat je hier kan vinden: C:\fixwareout\report.txt, post ook een nieuw HijackThis log.
  • ziehier: Logfile of HijackThis v1.99.1 Scan saved at 16:03:39, on 21-2-2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: G:\WINDOWS\System32\smss.exe G:\WINDOWS\system32\winlogon.exe G:\WINDOWS\system32\services.exe G:\WINDOWS\system32\lsass.exe G:\WINDOWS\system32\svchost.exe G:\Program Files\Windows Defender\MsMpEng.exe G:\WINDOWS\System32\svchost.exe G:\Program Files\Ahead\InCD\InCDsrv.exe G:\WINDOWS\system32\spoolsv.exe G:\WINDOWS\Explorer.EXE H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe G:\Program Files\hcchulp\ClientAgent\hcchulp.exe G:\Program Files\Windows Defender\MSASCui.exe G:\WINDOWS\system32\RUNDLL32.EXE G:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe G:\Program Files\Java\jre1.6.0\bin\jusched.exe H:\Program Files\Wallpaper Master\Wallpaper.exe G:\WINDOWS\system32\ctfmon.exe G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe G:\Program Files\Executive Software\Diskeeper\DkService.exe G:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe G:\Program Files\BOINC\boincmgr.exe G:\WINDOWS\system32\nvsvc32.exe G:\WINDOWS\System32\svchost.exe G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe G:\WINDOWS\System32\wbem\wmiapsrv.exe G:\Program Files\BOINC\boinc.exe G:\WINDOWS\system32\wuauclt.exe H:\Program Files\MailWasher Pro\MailWasher.exe G:\Program Files\BOINC\projects\einstein.phys.uwm.edu\einstein_S5RI_4.24_windows_intelx86.exe G:\Documents and Settings\Dick\Bureaublad\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.zoeken.nl/?sttname=ie_rsearch R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hccmagazine.nl R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.zoeken.nl/?query=%s R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:4001 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: DAPHelper Class - {0000CC75-ACF3-4cac-A0A9-DD3868E06852} - G:\Program Files\DAP\DAPBHO.DLL O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - G:\Program Files\Java\jre1.6.0\bin\ssv.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - g:\program files\google\googletoolbar2.dll O3 - Toolbar: &HCC Hulp - {0BFDDA12-9C1A-46B8-9681-AFF63C2A1EF0} - G:\PROGRA~1\hcchulp\HCCHulp.dll O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - G:\Program Files\SiteAdvisor\6028\SiteAdv.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - G:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [WinPatrol] "H:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe" O4 - HKLM\..\Run: [DiskeeperSystray] "G:\Program Files\Executive Software\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [SpySweeper] "G:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray O4 - HKLM\..\Run: [hcchulp] "G:\Program Files\hcchulp\ClientAgent\hcchulp.exe" O4 - HKLM\..\Run: [anvshell] anvshell.exe O4 - HKLM\..\Run: [Windows Defender] "G:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" G:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" G:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [AVG7_CC] G:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [SunJavaUpdateSched] "G:\Program Files\Java\jre1.6.0\bin\jusched.exe" O4 - HKLM\..\Run: [WallpaperChanger] H:\Program Files\Wallpaper Master\Wallpaper.exe O4 - HKCU\..\Run: [ctfmon.exe] G:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gadwin PrintScreen 3.0] G:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash O4 - HKCU\..\Run: [MagnifyingGlass] "G:\Program Files\Virtual Magnifying Glass\Magnifying Glass.exe" /autorun O4 - Global Startup: BOINC Manager.lnk = G:\Program Files\BOINC\boincmgr.exe O8 - Extra context menu item: &Download with &DAP - G:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: &Google Search - res://g:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Yahoo! Search - file:///G:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Backward Links - res://g:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://g:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: Download &all with DAP - G:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: Save Flash - res://G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210 O8 - Extra context menu item: Similar Pages - res://g:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://g:\program files\google\GoogleToolbar2.dll/cmtrans.html O8 - Extra context menu item: Yahoo! &Dictionary - file:///G:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///G:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///G:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - G:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - G:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: FreeToGoSwitch - {A888F560-58E4-11d0-A68A-000000000000} - G:\WINDOWS\System32\shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - G:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll (HKCU) O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - G:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - G:\Program Files\SiteAdvisor\6028\SiteAdv.dll O20 - AppInit_DLLs: G:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O20 - Winlogon Notify: WgaLogon - G:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - G:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Ati HotKey Poller - Unknown owner - G:\WINDOWS\system32\Ati2evxx.exe (file missing) O23 - Service: ATI Smart - Unknown owner - G:\WINDOWS\system32\ati2sgag.exe (file missing) O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (file missing) O23 - Service: Symantec Network Proxy (ccProxy) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccProxy.exe (file missing) O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe (file missing) O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (file missing) O23 - Service: Diskeeper - Executive Software International, Inc. - G:\Program Files\Executive Software\Diskeeper\DkService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - G:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - G:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: ISSvc (ISSVC) - Unknown owner - G:\Program Files\Norton Internet Security\ISSVC.exe (file missing) O23 - Service: LiveUpdate - Unknown owner - G:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing) O23 - Service: Norton AntiVirus Auto-Protect-service (navapsvc) - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe (file missing) O23 - Service: Norton Ghost - Unknown owner - G:\Program Files\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe (file missing) O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\IWP\NPFMntor.exe (file missing) O23 - Service: Norton Unerase Protection (NProtectService) - Unknown owner - G:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE (file missing) O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - G:\WINDOWS\system32\nvsvc32.exe O23 - Service: Planner voor Automatische LiveUpdate - Unknown owner - G:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcDataSrv.exe O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - G:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR2a\RpcSandraSrv.exe O23 - Service: SAVScan - Unknown owner - G:\Program Files\Norton SystemWorks\Norton AntiVirus\SAVScan.exe (file missing) O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - G:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing) O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (file missing) O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - G:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing) O23 - Service: Speed Disk service - Unknown owner - G:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE (file missing) O23 - Service: Symantec Core LC - Unknown owner - G:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - G:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  • Nog klachten nu???
  • De enige klacht die ik nu nog heb, is, dat ik mijn dvd apparaten niet kan vinden, maar dat valt waarschijnlijk buiten dit topic.
  • Mogelijk moet je die opnieuw installeren.

Beantwoord deze vraag

Weet jij het antwoord op deze vraag? Registreer of meld je aan met je account

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.