Op deze website gebruiken we cookies om content en advertenties te personaliseren, om functies voor social media te bieden en om ons websiteverkeer te analyseren. Ook delen we informatie over uw gebruik van onze site met onze partners voor social media, adverteren en analyse. Deze partners kunnen deze gegevens combineren met andere informatie die u aan ze heeft verstrekt of die ze hebben verzameld op basis van uw gebruik van hun services. Meer informatie.

Akkoord

Vraag & Antwoord

Beveiliging & privacy

PC start sloom na welkom scherm

Hallo, Na het zien van het welkoms scherm is mijn PC erg sloom voordat hij klaar is met de rest laden. Dit zijn maar 2 dingen. Norton 2007 en het ATI logotje. Voorheen ging dit nooit zo langzaam. Het opstarten zelf gaat wel gewoon snel. Ik heb ook al gescand op virussen etc. maar hij vind niks. Zouden jullie misschien mijn Hjtlogje en combofix logje na willen kijken? Alvast bedankt! [b:9888ea5ae8]Hijackthis[/b:9888ea5ae8] Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:15:36, on 26-5-2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Symantec Shared\ccProxy.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\system32\bgsvcgen.exe C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\Maxtor\MaxBlast\MaxBlastMonitor.exe C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Windows Live\Messenger\usnsvc.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file) O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file) O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file) O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe" O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [MaxBlastMonitor.exe] C:\Program Files\Maxtor\MaxBlast\MaxBlastMonitor.exe O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201 O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204 O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203 O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202 O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1210517102843 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1210520703468 O17 - HKLM\System\CCS\Services\Tcpip\..\{DE742E66-7EEF-4A93-8ED3-8D9460BD2162}: NameServer = 192.168.1.254 O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:\WINDOWS\system32\bgsvcgen.exe O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe O23 - Service: Acronis Try And Decide Service (TryAndDecideService) - Unknown owner - C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- End of file - 10973 bytes [b:9888ea5ae8]Combofix[/b:9888ea5ae8] ComboFix 08-05-24.1 - Victor 2008-05-25 12:26:52.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1043.18.1483 [GMT 2:00] Gestart vanuit: C:\Documents and Settings\Victor\Bureaublad\ComboFix.exe * Nieuw herstelpunt werd aangemaakt . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\Victor\Application Data\inst.exe . (((((((((((((((((((( Bestanden Gemaakt van 2008-04-25 to 2008-05-25 )))))))))))))))))))))))))))))) . 2008-05-25 11:57 . 2008-05-25 11:57 <DIR> d-------- C:\Program Files\Trend Micro 2008-05-25 01:07 . 2008-05-25 01:07 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Systweak 2008-05-25 01:06 . 2008-05-25 01:09 <DIR> d-------- C:\Program Files\Advanced System Optimizer 2008-05-25 01:02 . 2008-05-25 12:22 <DIR> dr-h----- C:\Documents and Settings\Victor\Onlangs geopend 2008-05-23 16:40 . 2008-05-23 16:40 1,882,904 --a------ C:\WINDOWS\system32\AutoPartNt.exe 2008-05-23 16:40 . 2008-05-23 16:41 1,024 --a------ C:\WINDOWS\system32\AutoPartNt.let 2008-05-23 15:00 . 2008-05-23 15:00 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Acronis 2008-05-23 14:57 . 2008-05-23 14:57 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\Acronis 2008-05-23 14:54 . 2008-05-23 14:54 <DIR> d-------- C:\Program Files\Common Files\Acronis 2008-05-23 14:54 . 2008-05-23 14:54 <DIR> d-------- C:\Program Files\Acronis 2008-05-23 14:54 . 2008-05-23 14:54 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Acronis 2008-05-23 14:54 . 2008-05-23 14:54 368,544 --a------ C:\WINDOWS\system32\drivers\tdrpman.sys 2008-05-22 18:31 . 2007-04-24 11:33 108,680 -ra------ C:\WINDOWS\system32\drivers\s125mdm.sys 2008-05-22 18:31 . 2007-04-24 11:33 15,112 -ra------ C:\WINDOWS\system32\drivers\s125mdfl.sys 2008-05-22 18:31 . 2007-04-24 11:33 12,424 -ra------ C:\WINDOWS\system32\drivers\s125cmnt.sys 2008-05-22 18:31 . 2007-04-24 11:33 12,424 -ra------ C:\WINDOWS\system32\drivers\s125cm.sys 2008-05-22 18:30 . 2007-04-24 11:33 83,336 -ra------ C:\WINDOWS\system32\drivers\s125bus.sys 2008-05-22 18:30 . 2007-04-24 11:33 12,424 -ra------ C:\WINDOWS\system32\drivers\s125whnt.sys 2008-05-22 18:30 . 2007-04-24 11:33 12,424 -ra------ C:\WINDOWS\system32\drivers\s125wh.sys 2008-05-22 10:11 . 2008-05-22 10:11 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Teleca 2008-05-21 12:33 . 2008-05-21 12:33 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Sony Ericsson 2008-05-21 12:32 . 2008-05-21 12:32 <DIR> d-------- C:\WINDOWS\Downloaded Installations 2008-05-21 12:32 . 2008-05-21 12:32 <DIR> d-------- C:\Program Files\Sony Ericsson 2008-05-21 12:32 . 2008-05-21 12:33 <DIR> d-------- C:\Program Files\Common Files\Teleca Shared 2008-05-21 12:32 . 2008-05-21 12:32 <DIR> d-------- C:\Program Files\Common Files\Sony Ericsson Shared 2008-05-21 12:31 . 2008-05-21 12:33 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Teleca 2008-05-21 12:31 . 2008-05-21 12:33 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Sony Ericsson 2008-05-20 15:36 . 2008-05-20 15:36 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy 2008-05-20 15:36 . 2008-05-20 15:53 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-05-20 13:41 . 2008-05-13 03:53 129,784 --------- C:\WINDOWS\system32\pxafs.dll 2008-05-20 13:39 . 2008-05-20 13:39 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Ulead Systems 2008-05-20 13:38 . 2008-05-20 13:40 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\DivX 2008-05-20 13:37 . 2008-05-20 13:52 <DIR> d-------- C:\Program Files\DivX 2008-05-20 13:37 . 2008-05-20 13:47 <DIR> d-------- C:\Program Files\Common Files\LightScribe 2008-05-20 13:37 . 2008-05-20 13:37 <DIR> d-------- C:\Program Files\Common Files\InterVideo 2008-05-20 13:37 . 2008-05-20 13:37 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\InterVideo 2008-05-20 13:33 . 2008-05-20 13:33 <DIR> d-------- C:\Program Files\Ulead Systems 2008-05-20 13:33 . 2008-05-20 13:34 <DIR> d-------- C:\Program Files\Common Files\Ulead Systems 2008-05-20 13:33 . 2008-05-20 13:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Ulead Systems 2008-05-20 13:15 . 2008-05-20 13:15 <DIR> d-------- C:\Program Files\DAEMON Tools Lite 2008-05-20 13:07 . 2008-05-20 13:07 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\DAEMON Tools 2008-05-20 13:07 . 2008-05-20 13:07 717,296 --a------ C:\WINDOWS\system32\drivers\sptd.sys 2008-05-20 11:05 . 2008-05-20 11:05 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Maxtor 2008-05-20 10:56 . 2008-05-20 10:56 <DIR> d-------- C:\Program Files\NT Registry Optimizer 2008-05-20 10:54 . 2008-05-20 10:54 <DIR> d-------- C:\Program Files\Maxtor 2008-05-20 10:54 . 2008-05-20 10:54 <DIR> d-------- C:\Program Files\Common Files\Maxtor 2008-05-20 10:54 . 2008-05-23 14:54 441,760 --a------ C:\WINDOWS\system32\drivers\timntr.sys 2008-05-20 10:54 . 2008-05-23 14:54 129,248 --a------ C:\WINDOWS\system32\drivers\snapman.sys 2008-05-20 10:54 . 2008-05-23 14:54 44,384 --a------ C:\WINDOWS\system32\drivers\tifsfilt.sys 2008-05-19 21:47 . 2008-05-19 22:29 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Vso 2008-05-19 21:47 . 2008-05-19 21:47 47,360 --a------ C:\WINDOWS\system32\drivers\pcouffin.sys 2008-05-19 21:47 . 2008-05-19 21:47 47,360 --a------ C:\Documents and Settings\Victor\Application Data\pcouffin.sys 2008-05-19 21:46 . 2008-05-19 21:46 <DIR> d-------- C:\Program Files\VSO 2008-05-19 21:46 . 2004-05-04 12:53 1,645,320 --a------ C:\WINDOWS\gdiplus.dll 2008-05-19 21:46 . 2006-05-20 17:16 1,184,984 --a------ C:\WINDOWS\system32\wvc1dmod.dll 2008-05-19 21:46 . 2006-05-11 20:21 626,688 --a------ C:\WINDOWS\system32\vp7vfw.dll 2008-05-19 21:46 . 2006-09-29 13:24 217,127 --a------ C:\WINDOWS\system32\drv43260.dll 2008-05-19 21:46 . 2006-09-29 13:25 208,935 --a------ C:\WINDOWS\system32\drv33260.dll 2008-05-19 21:46 . 2006-09-29 13:26 176,165 --a------ C:\WINDOWS\system32\drv23260.dll 2008-05-19 21:46 . 2007-03-18 21:37 65,602 --a------ C:\WINDOWS\system32\cook3260.dll 2008-05-19 20:03 . 2008-05-19 20:03 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\LEAPS 2008-05-19 19:12 . 2008-05-19 19:12 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Pegasys Inc 2008-05-19 19:10 . 2008-05-19 19:09 145,504 --a------ C:\WINDOWS\system32\bgsvcgen.exe 2008-05-19 19:10 . 2008-05-19 19:09 59,488 --a------ C:\WINDOWS\system32\GenSvcInst.exe 2008-05-19 19:10 . 2008-05-19 19:09 33,408 --a------ C:\WINDOWS\system32\drivers\CDRBSDRV.SYS 2008-05-19 19:06 . 2008-05-19 20:02 <DIR> d-------- C:\Program Files\Pegasys Inc 2008-05-19 18:21 . 2008-05-19 22:42 <DIR> d-------- C:\VideoOutput 2008-05-19 18:12 . 2008-05-19 18:12 <DIR> d-------- C:\Documents and Settings\DZH~1.OLY\LOCALS~1 2008-05-19 18:12 . 2008-05-19 18:12 <DIR> d-------- C:\Documents and Settings\DZH~1.OLY 2008-05-19 18:02 . 2008-05-19 18:02 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\AviDvdBurner 2008-05-19 18:01 . 2008-05-19 18:01 <DIR> d-------- C:\Program Files\AviSynth 2.5 2008-05-19 17:59 . 2008-05-19 17:59 <DIR> d-------- C:\Program Files\Gabest 2008-05-19 17:26 . 2008-05-19 17:26 <DIR> d-------- C:\Program Files\AC3Filter 2008-05-19 17:26 . 2007-08-18 09:54 380,928 --a------ C:\WINDOWS\system32\ac3filter.acm 2008-05-19 17:23 . 2008-05-19 18:02 <DIR> d-------- C:\Program Files\Xvid 2008-05-19 17:23 . 2007-06-28 18:52 765,952 --a------ C:\WINDOWS\system32\xvidcore.dll 2008-05-19 17:23 . 2007-06-28 18:54 180,224 --a------ C:\WINDOWS\system32\xvidvfw.dll 2008-05-19 17:23 . 2007-06-28 18:55 77,824 --a------ C:\WINDOWS\system32\xvid.ax 2008-05-19 11:59 . 2008-05-19 11:59 <DIR> d-------- C:\Program Files\Orbitdownloader 2008-05-19 11:59 . 2008-05-19 17:26 <DIR> d-------- C:\Downloads 2008-05-19 11:59 . 2008-05-25 12:26 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Orbit 2008-05-19 11:47 . 2008-05-19 11:47 <DIR> d-------- C:\Documents and Settings\Victor\Application Data\Nexon 2008-05-19 11:46 . 2008-05-19 11:46 <DIR> d-------- C:\Program Files\Common Files\INCA Shared 2008-05-19 11:46 . 2003-07-20 20:17 5,174 --a------ C:\WINDOWS\system32\nppt9x.vxd 2008-05-19 11:46 . 2005-01-04 11:43 4,682 --a------ C:\WINDOWS\system32\npptNT2.sys 2008-05-18 14:22 . 2008-05-23 12:55 <DIR> d-------- C:\Nexon 2008-05-17 23:58 . 2008-03-06 21:32 23,904 --a------ C:\WINDOWS\system32\drivers\COH_Mon.sys 2008-05-17 23:58 . 2008-03-06 21:32 10,537 --a------ C:\WINDOWS\system32\drivers\COH_Mon.cat 2008-05-17 23:58 . 2008-03-06 21:32 706 --a------ C:\WINDOWS\system32\drivers\COH_Mon.inf 2008-05-17 23:55 . 2008-05-17 23:55 16 --a------ C:\WINDOWS\system32\coh.cache 2008-05-17 23:35 . 2008-05-17 23:59 <DIR> d-------- C:\Program Files\Norton Internet Security 2008-05-17 23:35 . 2008-05-17 23:52 123,952 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.SYS 2008-05-17 23:35 . 2008-05-17 23:52 60,800 --a------ C:\WINDOWS\system32\S32EVNT1.DLL 2008-05-17 23:34 . 2008-05-17 23:52 <DIR> d-------- C:\Program Files\Symantec 2008-05-17 20:56 . 2008-05-17 20:56 <DIR> d-------- C:\Program Files\Windows Sidebar 2008-05-17 20:25 . 2008-05-17 20:25 <DIR> d-------- C:\Program Files\7-Zip 2008-05-17 20:19 . 2008-05-17 20:19 4,236 --a------ C:\WINDOWS\SETUP.LST 2008-05-17 20:19 . 2008-05-17 20:19 303 --a------ C:\WINDOWS\ST6UNST.001 2008-05-17 20:19 . 2008-05-17 20:19 303 --a------ C:\WINDOWS\ST6UNST.000 2008-05-17 20:17 . 2008-05-19 13:21 <DIR> d-------- C:\Program Files\MagicISO 2008-05-16 13:49 . 2008-04-13 20:45 32,128 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys 2008-05-16 13:49 . 2008-04-13 20:45 32,128 --a--c--- C:\WINDOWS\system32\dllcache\usbccgp.sys 2008-05-16 12:02 . 2001-12-10 17:32 4,455 --a------ C:\WINDOWS\system\winaspi.dll 2008-05-16 11:47 . 2008-05-16 12:10 <DIR> d-------- C:\Program Files\CD_DVD-ROM Generator 1.20 2008-05-16 11:46 . 2008-05-16 11:53 <DIR> d-------- C:\WINDOWS\Desktop 2008-05-16 11:30 . 1998-11-12 13:06 48,128 --a------ C:\WINDOWS\system32\WNASPI32.DLL 2008-05-16 11:17 . 1998-11-12 13:06 48,128 --a------ C:\WINDOWS\system\WNASPI32.DLL 2008-05-16 10:43 . 2008-05-16 10:43 <DIR> d-------- C:\Program Files\Smart Projects 2008-05-15 23:15 . 2008-05-15 23:15 <DIR> d-------- C:\Documents and Settings\Victor\WINDOWS 2008-05-15 23:15 . 1997-01-22 16:34 312,320 --a------ C:\WINDOWS\IsUninst.exe 2008-05-15 22:56 . 2008-05-15 22:56 647,872 --a------ C:\WINDOWS\system32\MSCOMCT2.OCX 2008-05-15 22:40 . 2000-10-24 08:12 352,256 --a------ C:\WINDOWS\system32\ACTIVESKIN.OCX 2008-05-15 21:06 . 2008-05-15 21:08 <DIR> d-------- C:\WINDOWS\ServicePackFiles 2008-05-13 10:45 . 2008-05-19 22:28 69 --a------ C:\WINDOWS\NeroDigital.ini 2008-05-13 03:53 . 2008-05-13 03:53 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll 2008-05-13 03:53 . 2008-05-13 03:53 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe 2008-05-13 03:49 . 2008-05-13 03:49 161,096 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe 2008-05-12 21:56 . 2008-05-12 21:56 <DIR> d-------- C:\Program Files\MSXML 4.0 2008-05-12 21:56 . 2008-05-12 21:56 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2 2008-05-12 12:06 . 2008-05-12 12:06 <DIR> d--h----- C:\BJPrinter 2008-05-12 12:01 . 2006-10-26 19:56 32,592 --a------ C:\WINDOWS\system32\msonpmon.dll 2008-05-12 12:00 . 2008-05-12 12:00 <DIR> d-------- C:\Program Files\Microsoft Works 2008-05-12 11:59 . 2008-05-12 11:59 <DIR> d-------- C:\Program Files\Microsoft.NET 2008-05-12 11:57 . 2008-05-12 11:59 <DIR> d-------- C:\WINDOWS\SHELLNEW 2008-05-12 11:57 . 2008-05-12 11:57 <DIR> d-------- C:\Program Files\Microsoft Visual Studio 8 . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-05-20 11:37 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-05-19 17:05 --------- d-----w C:\Program Files\Common Files\InstallShield 2008-05-11 21:17 101,504 ----a-w C:\WINDOWS\system32\drivers\Rtenicxp.sys 2008-05-11 21:14 9,715,200 ----a-w C:\WINDOWS\RTLCPL.exe 2008-05-11 21:14 86,016 ----a-w C:\WINDOWS\SoundMan.exe 2008-05-11 21:14 69,632 ----a-w C:\WINDOWS\Alcmtr.exe 2008-05-11 21:14 4,707,328 ----a-w C:\WINDOWS\system32\drivers\RtkHDAud.sys 2008-05-11 21:14 2,808,832 ----a-w C:\WINDOWS\alcwzrd.exe 2008-05-11 21:14 2,165,760 ----a-w C:\WINDOWS\MicCal.exe 2008-05-11 21:14 16,861,184 ----a-w C:\WINDOWS\RTHDCPL.exe 2008-05-11 21:14 1,826,816 ----a-w C:\WINDOWS\SkyTel.exe 2008-05-11 21:14 1,196,032 ----a-w C:\WINDOWS\RtlUpd.exe 2008-05-11 20:36 --------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller 2008-05-11 20:36 --------- d-----w C:\Program Files\Windows Live 2008-05-11 20:36 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller 2008-05-11 15:58 --------- d-----w C:\Program Files\CCleaner 2008-05-11 15:49 --------- d-----w C:\Documents and Settings\Victor\Application Data\InstallShield 2008-05-11 15:44 --------- d-----w C:\Program Files\Java 2008-05-11 15:43 --------- d-----w C:\Program Files\Common Files\Java 2008-05-11 15:14 520,192 ----a-w C:\WINDOWS\RtlExUpd.dll 2008-05-11 15:14 315,392 ----a-w C:\WINDOWS\HideWin.exe 2008-05-11 15:14 --------- d-----w C:\Program Files\Realtek 2008-05-11 15:08 --------- d-----w C:\Documents and Settings\Victor\Application Data\ATI 2008-05-11 15:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\ATI 2008-05-11 15:07 --------- d-----w C:\Program Files\ATI Technologies 2008-05-11 14:32 --------- d-----w C:\Program Files\microsoft frontpage 2008-04-14 17:03 70,144 ----a-w C:\WINDOWS\notepad.exe 2008-04-14 17:03 40,840 ----a-w C:\WINDOWS\system32\drivers\termdd.sys 2008-04-14 17:03 32,866 ------w C:\WINDOWS\slrundll.exe 2008-04-14 17:03 287,232 ----a-w C:\WINDOWS\winhlp32.exe 2008-04-14 17:03 21,896 ----a-w C:\WINDOWS\system32\drivers\tdtcp.sys 2008-04-14 17:03 153,088 ----a-w C:\WINDOWS\regedit.exe 2008-04-14 17:03 139,656 ----a-w C:\WINDOWS\system32\drivers\rdpwd.sys 2008-04-14 17:03 12,040 ----a-w C:\WINDOWS\system32\drivers\tdpipe.sys 2008-04-14 17:03 10,752 ----a-w C:\WINDOWS\hh.exe 2008-04-14 16:43 80,256 ----a-w C:\WINDOWS\system32\drivers\parport.sys 2008-04-14 16:43 73,472 ----a-w C:\WINDOWS\system32\drivers\sr.sys 2008-04-14 16:43 68,224 ----a-w C:\WINDOWS\system32\drivers\pci.sys 2008-04-14 16:43 46,848 ----a-w C:\WINDOWS\system32\drivers\p3.sys 2008-04-14 16:43 120,448 ----a-w C:\WINDOWS\system32\drivers\pcmcia.sys 2008-04-14 16:40 800,000 ----a-w C:\WINDOWS\system32\drivers\dmboot.sys 2008-04-14 16:40 153,856 ----a-w C:\WINDOWS\system32\drivers\dmio.sys 2008-04-14 16:39 25,088 ----a-w C:\WINDOWS\system32\drivers\kbdclass.sys 2008-04-14 16:38 40,832 ----a-w C:\WINDOWS\system32\drivers\crusoe.sys 2008-04-14 16:38 37,760 ----a-w C:\WINDOWS\system32\drivers\isapnp.sys 2008-04-14 16:37 40,448 ----a-w C:\WINDOWS\system32\drivers\intelppm.sys 2008-04-14 16:36 65,536 ----a-w C:\WINDOWS\system32\drivers\serial.sys 2008-04-14 16:35 53,504 ----a-w C:\WINDOWS\system32\drivers\i8042prt.sys 2008-04-14 16:34 58,112 ----a-w C:\WINDOWS\system32\drivers\redbook.sys 2008-04-14 16:34 273,536 ------w C:\WINDOWS\system32\drivers\bthport.sys 2008-04-14 16:34 25,728 ------w C:\WINDOWS\system32\drivers\hidbth.sys 2008-04-14 16:33 53,504 ----a-w C:\WINDOWS\system32\drivers\volsnap.sys 2008-04-14 16:32 44,672 ----a-w C:\WINDOWS\system32\drivers\fips.sys 2008-04-14 16:32 39,936 ----a-w C:\WINDOWS\system32\drivers\processr.sys 2008-04-14 16:31 41,856 ----a-w C:\WINDOWS\system32\drivers\amdk7.sys 2008-04-14 16:31 41,472 ----a-w C:\WINDOWS\system32\drivers\amdk6.sys 2008-04-14 16:30 30,336 ----a-w C:\WINDOWS\system32\drivers\modem.sys 2008-04-14 16:30 23,552 ----a-w C:\WINDOWS\system32\drivers\mouclass.sys 2008-04-14 16:30 188,544 ----a-w C:\WINDOWS\system32\drivers\acpi.sys 2008-04-13 19:28 175,744 ----a-w C:\WINDOWS\system32\drivers\rdbss.sys 2008-04-13 19:21 162,816 ----a-w C:\WINDOWS\system32\drivers\netbt.sys 2008-04-13 19:20 91,520 ----a-w C:\WINDOWS\system32\drivers\ndiswan.sys 2008-04-13 19:20 361,344 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys 2008-04-13 19:20 182,656 ----a-w C:\WINDOWS\system32\drivers\ndis.sys 2008-04-13 19:19 75,264 ----a-w C:\WINDOWS\system32\drivers\ipsec.sys 2008-04-13 19:19 51,328 ----a-w C:\WINDOWS\system32\drivers\rasl2tp.sys 2008-04-13 19:19 48,384 ----a-w C:\WINDOWS\system32\drivers\raspptp.sys 2008-04-13 19:19 146,048 ----a-w C:\WINDOWS\system32\drivers\portcls.sys 2008-04-13 19:19 138,112 ----a-w C:\WINDOWS\system32\drivers\afd.sys 2008-04-13 19:17 83,072 ----a-w C:\WINDOWS\system32\drivers\wdmaud.sys 2008-04-13 19:17 456,576 ----a-w C:\WINDOWS\system32\drivers\mrxsmb.sys 2008-04-13 19:17 105,344 ----a-w C:\WINDOWS\system32\drivers\mup.sys 2008-04-13 19:16 49,536 ----a-w C:\WINDOWS\system32\drivers\classpnp.sys 2008-04-13 19:16 141,056 ----a-w C:\WINDOWS\system32\drivers\ks.sys 2008-04-13 19:15 60,800 ----a-w C:\WINDOWS\system32\drivers\sysaudio.sys 2008-04-13 19:15 574,976 ----a-w C:\WINDOWS\system32\drivers\ntfs.sys 2008-04-13 19:15 334,848 ----a-w C:\WINDOWS\system32\drivers\srv.sys 2008-04-13 19:14 63,744 ----a-w C:\WINDOWS\system32\drivers\cdfs.sys 2008-04-13 19:14 143,744 ----a-w C:\WINDOWS\system32\drivers\fastfat.sys 2008-04-13 19:00 225,664 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys 2008-04-13 19:00 19,072 ----a-w C:\WINDOWS\system32\drivers\tdi.sys 2008-04-13 18:57 41,472 ----a-w C:\WINDOWS\system32\drivers\raspppoe.sys 2008-04-13 18:57 40,576 ----a-w C:\WINDOWS\system32\drivers\ndproxy.sys 2008-04-13 18:57 34,560 ----a-w C:\WINDOWS\system32\drivers\wanarp.sys 2008-04-13 18:57 20,864 ----a-w C:\WINDOWS\system32\drivers\ipinip.sys 2008-04-13 18:57 152,832 ----a-w C:\WINDOWS\system32\drivers\ipnat.sys 2008-04-13 18:57 14,336 ----a-w C:\WINDOWS\system32\drivers\asyncmac.sys 2008-04-13 18:57 10,112 ----a-w C:\WINDOWS\system32\drivers\ndistapi.sys 2008-04-13 18:56 88,320 ----a-w C:\WINDOWS\system32\drivers\nwlnkipx.sys 2008-04-13 18:56 69,120 ----a-w C:\WINDOWS\system32\drivers\psched.sys 2008-04-13 18:56 35,072 ----a-w C:\WINDOWS\system32\drivers\msgpc.sys 2008-04-13 18:56 34,688 ----a-w C:\WINDOWS\system32\drivers\netbios.sys 2008-04-13 18:56 30,592 ----a-w C:\WINDOWS\system32\drivers\rndismp.sys 2008-04-13 18:56 30,592 ------w C:\WINDOWS\system32\drivers\rndismpx.sys 2008-04-13 18:56 12,800 ----a-w C:\WINDOWS\system32\drivers\usb8023.sys 2008-04-13 18:56 12,800 ------w C:\WINDOWS\system32\drivers\usb8023x.sys 2008-04-13 18:56 12,288 ----a-w C:\WINDOWS\system32\drivers\tunmp.sys 2008-04-13 18:55 202,624 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys 2008-04-13 18:55 14,592 ----a-w C:\WINDOWS\system32\drivers\ndisuio.sys 2008-04-13 18:54 11,264 ----a-w C:\WINDOWS\system32\drivers\irenum.sys . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 19:02 15360] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-02-28 17:07 1828136] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 12:17 61440] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 04:28 144784] "amd_dc_opt"="C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2007-07-23 11:06 77824] "RTHDCPL"="RTHDCPL.EXE" [2008-05-11 23:14 16861184 C:\WINDOWS\RTHDCPL.exe] "NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2008-02-28 09:59 570664] "NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-02-18 16:29 2221352] "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 07:00 33648] "ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2007-03-15 05:10 116328] "osCheck"="C:\Program Files\Norton Internet Security\osCheck.exe" [2007-01-14 02:11 771704] "Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 17:38 583048] "MaxBlastMonitor.exe"="C:\Program Files\Maxtor\MaxBlast\MaxBlastMonitor.exe" [2007-09-03 14:01 1191752] "AcronisTimounterMonitor"="C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe" [2007-10-30 20:11 909208] "Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2007-06-13 08:16 528384] "TrueImageMonitor.exe"="C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe" [2007-10-30 20:06 2595616] "Acronis Scheduler2 Service"="C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe" [2007-10-30 20:07 140568] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "msacm.ac3filter"= ac3filter.acm "msacm.mpegacm"= mpegacm.acm "msacm.ulmp3acm"= ulmp3acm.acm "msacm.dvacm"= C:\PROGRA~1\COMMON~1\ULEADS~1\vio\dvacm.acm [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Authentication Packages REG_MULTI_SZ msv1_0 relog_ap Notification Packages REG_MULTI_SZ scecli scecli [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"= "C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "C:\\Program Files\\Orbitdownloader\\orbitdm.exe"= "C:\\Program Files\\Orbitdownloader\\orbitnet.exe"= R0 tdrpman;Acronis Try&Decide and Restore Points filter;C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2008-05-23 14:54] R2 TryAndDecideService;Acronis Try And Decide Service;"C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe" [2007-10-30 20:51] S3 s125bus;Sony Ericsson Device 125 driver (WDM);C:\WINDOWS\system32\DRIVERS\s125bus.sys [2007-04-24 11:33] S3 s125mdfl;Sony Ericsson Device 125 USB WMC Modem Filter;C:\WINDOWS\system32\DRIVERS\s125mdfl.sys [2007-04-24 11:33] S3 s125mdm;Sony Ericsson Device 125 USB WMC Modem Driver;C:\WINDOWS\system32\DRIVERS\s125mdm.sys [2007-04-24 11:33] *Newly Created Service* - COMHOST . Inhoud van de 'Gedeelde Taken' map "2008-05-23 18:01:10 C:\WINDOWS\Tasks\Norton Internet Security - Run Full System Scan - Victor.job" - C:\PROGRA~1\NORTON~1\NORTON~1\Navw32.exe . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-05-25 12:30:26 Windows 5.1.2600 Service Pack 3 NTFS scannen van verborgen processen ... scannen van verborgen autostart items ... scannen van verborgen bestanden ... Scan succesvol afgerond verborgen bestanden: 0 ************************************************************************** . ------------------------ Other Running Processes ------------------------ . C:\WINDOWS\system32\ati2evxx.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\WINDOWS\system32\ati2evxx.exe C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe C:\Program Files\Common Files\Symantec Shared\CCPROXY.EXE C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe C:\WINDOWS\system32\bgsvcgen.exe C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe . ************************************************************************** . Voltooingstijd: 2008-05-25 12:33:32 - machine was rebooted ComboFix-quarantined-files.txt 2008-05-25 10:33:28 Pre-Run: 273,780,801,536 bytes beschikbaar Post-Run: 273,739,710,464 bytes beschikbaar 342 --- E O F --- 2008-05-20 08:43:35

victoryo