Vraag & Antwoord

Beveiliging & privacy

www.sexplorer.it/T.html S.V.P. hijackthis-log beoordelen

Anoniem
sjouwer
6 antwoorden
  • We worden er echt niet goed van steeds deze "startpagina" wie kan ons helpen om hier van af te komen? Ik heb een logfile erbij gedaan.
    Hopelijk heeft iemand een oplossing…..alvast mijn dank!!

    Logfile of HijackThis v1.98.0
    Scan saved at 17:59:30, on 23-1-2005
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\WINDOWS\System32\DSentry.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\WINDOWS\System32\winmplayer.exe
    C:\TBC.exe
    C:\Program Files\DeskAd Service\DeskAdServ.exe
    C:\Program Files\Admanager Controller\AdManCtl.exe
    C:\WINDOWS\System32\LVComS.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\DeskAd Service\DeskAdKeep.exe
    C:\Program Files\Admanager Controller\AdManKeep.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Documents and Settings\daan vd goorbergh\Bureaublad\Willem\HijackThis.exe
    C:\Program Files\Messenger\msmsgs.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.12move.nl
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer aangeboden door 12Move
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz.exe /GUID NAV /CMDLINE "REBOOT"
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [C63BBB40] C:\WINDOWS\System32\vsxhyaaeq.exe
    O4 - HKLM\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\Run: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKLM\..\Run: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\yczzmp.exe
    O4 - HKLM\..\Run: [mswkork Service] msework.exe
    O4 - HKLM\..\Run: [Windows Monitor] winmon.exe
    O4 - HKLM\..\Run: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\Run: [Microsoft media services] winmplayer.exe
    O4 - HKLM\..\Run: [Windows logging] winlogd.exe
    O4 - HKLM\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
    O4 - HKLM\..\Run: [DeskAd Service] C:\Program Files\DeskAd Service\DeskAdServ.exe
    O4 - HKLM\..\Run: [Admanager Controller] C:\Program Files\Admanager Controller\AdManCtl.exe
    O4 - HKLM\..\RunServices: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\RunServices: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\RunServices: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKLM\..\RunServices: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\RunServices: [mswkork Service] msework.exe
    O4 - HKLM\..\RunServices: [Windows Monitor] winmon.exe
    O4 - HKLM\..\RunServices: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\RunServices: [Microsoft media services] winmplayer.exe
    O4 - HKLM\..\RunServices: [Windows logging] winlogd.exe
    O4 - HKLM\..\RunServices: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKCU\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKCU\..\Run: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKCU\..\Run: [mswkork Service] msework.exe
    O4 - HKCU\..\Run: [Windows Monitor] winmon.exe
    O4 - HKCU\..\Run: [Windows logging] winlogd.exe
    O4 - HKCU\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\RunServices: [Windows Monitor] winmon.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O14 - IERESET.INF: START_PAGE_URL=http://www.12move.nl
    O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/CDTInc/ie/bridge-c18.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{28B1D0E6-0FCE-4C05-B10D-88DE28E86A87}: NameServer = 195.240.240.254 195.240.240.222
    O17 - HKLM\System\CS1\Services\Tcpip\..\{28B1D0E6-0FCE-4C05-B10D-88DE28E86A87}: NameServer = 195.240.240.254 195.240.240.222

    Willem
  • Zet in iedergeval je Hijackthis in een andere map. Bijv, in c:. Hijackthis maakt een back-up aan namelijk.
  • Je gebruikt nog V1.98 van Hijackthis. Download eerst de laatst versie 1.99.0 en plaats deze in een directory bijv C:\Program Files\Hijackthis\

    Fix de volgende items:

    [b:e0da280353]O4 - HKLM\..\Run: [C63BBB40] C:\WINDOWS\System32\vsxhyaaeq.exe
    O4 - HKLM\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\Run: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\Run: [mswkork Service] msework.exe
    O4 - HKLM\..\Run: [Windows Monitor] winmon.exe
    O4 - HKLM\..\Run: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\Run: [Microsoft media services] winmplayer.exe
    O4 - HKLM\..\Run: [Windows logging] winlogd.exe
    O4 - HKLM\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKLM\..\Run: [DeskAd Service] C:\Program Files\DeskAd Service\DeskAdServ.exe
    O4 - HKLM\..\Run: [Admanager Controller] C:\Program Files\Admanager Controller\AdManCtl.exe
    O4 - HKLM\..\RunServices: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\RunServices: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\RunServices: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\RunServices: [mswkork Service] msework.exe
    O4 - HKLM\..\RunServices: [Windows Monitor] winmon.exe
    O4 - HKLM\..\RunServices: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\RunServices: [Microsoft media services] winmplayer.exe
    O4 - HKLM\..\RunServices: [Windows logging] winlogd.exe
    O4 - HKLM\..\RunServices: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\RunServices: [Windows Monitor] winmon.exe
    O4 - HKCU\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKCU\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKCU\..\Run: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKCU\..\Run: [mswkork Service] msework.exe
    O4 - HKCU\..\Run: [Windows Monitor] winmon.exe
    O4 - HKCU\..\Run: [Windows logging] winlogd.exe
    O4 - HKCU\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\RunServices: [Windows Monitor] winmon.exe
    O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/CDTInc/ie/bridge-c18.cab[/b:e0da280353]

    Herstart de computer in veilige mode

    Verwijder de volgende bestanden:
    C:\WINDOWS\System32\vsxhyaaeq.exe

    Volgende waarschijnlijk ook in C:\WINDOWS\System32
    winxpinit.exe
    svxhost.exe
    msework.exe
    winmon.exe
    winmplayer.exe
    winlogd.exe
    winlogg.exe

    Verwijder de directories:
    C:\Program Files\DeskAd Service\
    C:\Program Files\Admanager Controller\

    Maak je temp directory leeg. Start - Uitvoeren - %temp%
    Selecteer alle bestanden en verwijder deze.

    Herstart de computer en scan online (liefst beide scanners):
    http://housecall.trendmicro.com/housecall/start_corp.asp
    http://www.pandasoftware.com/activescan/com/activescan_principal.htm

    Mijn advies is om ook nog een firewall te installeren.

    Maak dan nog een nieuwe log en post deze ter controle. Er stond zoveel in dat ik mogelijk nog een item over het hoofd heb gezien. (dacht dat ik ze wel had hoor)

    Sjaak
  • Hallo Sjaak,

    Ik heb eerst versie 1.99 gedownload…een nieuwe versie van McAfee geinstalleerd en ook nog windows SP2 er op gezet…..resultaat 28 trojaanse paarden en virussen verwijderd!!

    Ik log nu eerst maar de file die daarna gemaakt is, dat geeft wellicht nu een heel ander beeld. Ik ben m.i. de secplorer al kwijt.

    Alvast mijn dank…als je er nog opnieuw naar kan kijken heel graag.

    Logfile of HijackThis v1.99.0
    Scan saved at 21:11:19, on 23-1-2005
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\System32\svchost.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\hkcmd.exe
    C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\WINDOWS\System32\DSentry.exe
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\DeskAd Service\DeskAdServ.exe
    C:\Program Files\Admanager Controller\AdManCtl.exe
    C:\Program Files\DeskAd Service\DeskAdKeep.exe
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\PROGRA~1\mcafee.com\agent\mcagent.exe
    C:\Program Files\Admanager Controller\AdManKeep.exe
    c:\progra~1\mcafee.com\vso\mcvsescn.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\WINDOWS\System32\LVComS.exe
    C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe
    c:\program files\mcafee.com\shared\mghtml.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startpagina.nl/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.12move.nl
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer aangeboden door 12Move
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [C63BBB40] C:\WINDOWS\System32\vsxhyaaeq.exe
    O4 - HKLM\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\Run: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKLM\..\Run: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\yczzmp.exe
    O4 - HKLM\..\Run: [mswkork Service] msework.exe
    O4 - HKLM\..\Run: [Windows Monitor] winmon.exe
    O4 - HKLM\..\Run: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\Run: [Windows logging] winlogd.exe
    O4 - HKLM\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKLM\..\Run: [DeskAd Service] C:\Program Files\DeskAd Service\DeskAdServ.exe
    O4 - HKLM\..\Run: [Admanager Controller] C:\Program Files\Admanager Controller\AdManCtl.exe
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
    O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
    O4 - HKLM\..\RunServices: [Microsoft Updates] wkssvr.exe
    O4 - HKLM\..\RunServices: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKLM\..\RunServices: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKLM\..\RunServices: [Microsoft-Updates] svxhost.exe
    O4 - HKLM\..\RunServices: [mswkork Service] msework.exe
    O4 - HKLM\..\RunServices: [Windows Monitor] winmon.exe
    O4 - HKLM\..\RunServices: [Quicktime Mediaplayr] wnmplyr.exe
    O4 - HKLM\..\RunServices: [Windows logging] winlogd.exe
    O4 - HKLM\..\RunServices: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [Microsoft Updates] wkssvr.exe
    O4 - HKCU\..\Run: [Win32 USB2 Driver] winxpinit.exe
    O4 - HKCU\..\Run: [NVIDIA Video drivers] video_32sD.exe
    O4 - HKCU\..\Run: [mswkork Service] msework.exe
    O4 - HKCU\..\Run: [Windows Monitor] winmon.exe
    O4 - HKCU\..\Run: [Windows logging] winlogd.exe
    O4 - HKCU\..\Run: [Windows debug logging] winlogg.exe
    O4 - HKCU\..\RunServices: [Windows Monitor] winmon.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
    O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.12move.nl
    O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/CDTInc/ie/bridge-c18.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{28B1D0E6-0FCE-4C05-B10D-88DE28E86A87}: NameServer = 195.240.240.254 195.240.240.222
    O17 - HKLM\System\CS1\Services\Tcpip\..\{28B1D0E6-0FCE-4C05-B10D-88DE28E86A87}: NameServer = 195.240.240.254 195.240.240.222
    O23 - Service: McAfee.com McShield - Unknown - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee SecurityCenter Update Manager - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
    O23 - Service: McAfee.com VirusScan Online Realtime Engine - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe


    Groet,
    Willem
  • Willem,

    Fix de items die ik al eerder had genoemd.
    Daarna rebooten en de bestanden/directories verwijderen.

    Sjaak
  • Sjaak,

    Jouw advies zal ik straks nog eventjes uitvoeren.

    Nogmaals mijn dank.


    Groet,
    Willem

Beantwoord deze vraag

Dit is een gearchiveerde pagina. Antwoorden is niet meer mogelijk.