SSL-certificaat van Xolphin Powered by Cloud VPS - High Availability Cloud Servers Steun Nucia, doneer!
+ Plaats een Reactie
Resultaten 1 tot 6 van de 6
  1. #1

    Technische vaardigheid
    1. Starter
    Besturingssysteem
    Windows 7 Professional 64
    Antivirus
    Avast
    Firewall
    Windows Firewall
    Berichten
    32

    federale politie virus

    Dinsdagavond kreeg ik plots de melding

    Federale politie, met mijn foto + betalen, scherm stond vast, kon niks doen,
    sedertdien hapert mijn pc dikwijls, internet blokkeert, programma's lopen soms vast.
    hoe krijg ik dit virus weg aub?

    kan iemand mij helpen?

  2. #2
    Schermafbeelding van Juisterr
    Technische vaardigheid
    5. Expert
    Besturingssysteem
    Windows 7 Home Premium 64
    Antivirus
    Malwarebytes
    Firewall
    router
    Berichten
    12.683
    Blog Berichten
    8
    Hallo, we gaan de volgende tool inzetten. zoek.exe by smeenk




    De scan kan een tijdje duren omdat je hele schijf afgezocht wordt naar recent geplaatste bestanden.

    "zoek.exe" gebruiken:
    • Schakel je antivirus- en antispywareprogramma's uit, zoek.exe wordt tijdens het downloaden of tijdens het gebruik soms als trojan aangezien.
      (hier of hier) kan je lezen hoe je dat doet.
    • Download daarna zoek.exe naar het bureaublad.
    • Start de tool middels dubbelklik op "zoek.exe".
    • Vervolgens zal er na een tijdje een venster geopend worden.
    • Met je muis selecteer je nu de volgende keuze "Combined fix"(rechts onderaan)
    • Kopieer nu onderstaande code en plak die in het grote invulvenster:

      Note: Dit script is speciaal bedoeld voor deze PC, gebruik dit dan ook niet op andere PC's met een gelijkwaardig probleem.

      Code:
      autoclean;
      filesrcm;
      firefoxlook;
      chromelook;
      hijackthis;
    • Sluit nu eerst alle overige nog openstaande programmavensters!
    • Klik daarna op de knop "Run script".
    • Wacht nu geduldig af tot er een logje opent(dit kan na een herstart zijn)
    • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
    • Post nu de inhoud van het geopende logje in het volgende bericht.

  3. #3

    Technische vaardigheid
    1. Starter
    Besturingssysteem
    Windows 7 Professional 64
    Antivirus
    Avast
    Firewall
    Windows Firewall
    Berichten
    32
    Zoek.exe Version 3.0.0.4 Updated 21-12-2012
    Tool run by Gebruiker on vr 21/12/2012 at 22:51:38,50.
    Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64
    Running in: Normal Mode Internet Access Detected

    ==== Deleting Files \ Folders ======================

    "C:\Program Files (x86)\Yontoo" deleted
    "C:\Users\Gebruiker\AppData\Roaming\OpenCandy" deleted
    "C:\ProgramData\Tarma Installer" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\Windows ====
    2012-12-21 17:21:38 74D55DED81C61871F0DB7F3A63A4D312 41224 ----a-w- C:\Windows\avastSS.scr
    2012-11-26 21:35:47 58177776756F9696B0F200A01612DC11 472576 ----a-w- C:\Windows\AutoKMS.exe
    ====== C:\Users\GEBRUI~1\AppData\Local\Temp ====
    ====== C:\Windows\SysWOW64 =====
    2012-12-21 21:27:16 CE2622091CCDFC05C37B8E39C0038CE2 42 ----a-w- C:\Windows\SysWOW64\AK083E209605E394C.lie
    2012-12-21 17:22:15 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\SysWOW64\config.nt
    2012-12-21 17:21:37 A4B4FE50CCA23B38688003EA85A30EF6 227648 ----a-w- C:\Windows\SysWOW64\aswBoot.exe
    2012-12-20 21:55:40 E32230F4135D507E79509C998F4D8C92 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll
    2012-12-20 21:55:37 5DAF8A6B7F127C4E70A5C1F707347859 295424 ----a-w- C:\Windows\SysWOW64\atmfd.dll
    2012-12-14 12:24:40 9D8D5E1F881DB5CD0E9C59166E7AC422 2382848 ----a-w- C:\Windows\SysWOW64\mshtml.tlb
    2012-12-14 12:24:39 543BBE783E2CA0D58E1981BD75483BAD 73216 ----a-w- C:\Windows\SysWOW64\mshtmled.dll
    2012-12-14 12:24:38 4071D132E66ACDA3776F1FEAD19E6E01 420864 ----a-w- C:\Windows\SysWOW64\vbscript.dll
    2012-12-14 12:24:37 F9D038A8C2BDC3AE2548150A7AED0F8A 176640 ----a-w- C:\Windows\SysWOW64\ieui.dll
    2012-12-14 12:24:36 DCFA393FA7F8FFAAE4A4A1F5E3E7CD64 142848 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe
    2012-12-14 12:24:36 31B0448CC0694378106582F46D0D07E4 231936 ----a-w- C:\Windows\SysWOW64\url.dll
    2012-12-14 12:24:35 4266A3230981DD4434C55957F6DD497D 1103872 ----a-w- C:\Windows\SysWOW64\urlmon.dll
    2012-12-14 12:24:34 DE6652B4B4E9795B53142959FD02A4EB 1427968 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl
    2012-12-14 12:24:33 E290E3FDF645DF29D00D6368B9127E30 607744 ----a-w- C:\Windows\SysWOW64\msfeeds.dll
    2012-12-14 12:24:33 7FA3A810F383588D46220967DE8B64FF 1129472 ----a-w- C:\Windows\SysWOW64\wininet.dll
    2012-12-14 12:24:31 A3FA99A16F10D44EDB7A8C340FA2EE1B 1800704 ----a-w- C:\Windows\SysWOW64\jscript9.dll
    2012-12-14 12:24:31 0A866897039E42DF8080BE5DD83BC8E0 717824 ----a-w- C:\Windows\SysWOW64\jscript.dll
    2012-12-14 12:24:29 8E38CE628D4817D949DD31D77A7F21CD 65024 ----a-w- C:\Windows\SysWOW64\jsproxy.dll
    2012-12-14 12:24:29 780E80E5502015EDAEC91DC0A0C96A79 1793024 ----a-w- C:\Windows\SysWOW64\iertutil.dll
    2012-12-14 12:24:26 07F649CD36F266BBE33B814FA678AA43 12320256 ----a-w- C:\Windows\SysWOW64\mshtml.dll
    2012-12-14 12:24:22 5466DCAEF5A648E04D1B6580F2C901B5 9738240 ----a-w- C:\Windows\SysWOW64\ieframe.dll
    2012-12-13 19:26:14 B39B8CC163C41B12FE83E777199F3378 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll
    2012-12-13 19:25:55 D4F3176082566CEFA633B4945802D4C4 1114112 ----a-w- C:\Windows\SysWOW64\kernel32.dll
    2012-12-13 19:25:55 0978C2B33BDD0A7E6C563AA337DC8BA0 274944 ----a-w- C:\Windows\SysWOW64\KernelBase.dll
    2012-12-13 19:25:54 DA15883524770E44CA94D38E9FD54E3D 5120 ----a-w- C:\Windows\SysWOW64\wow32.dll
    2012-12-13 19:25:54 D433E08B64837534AFB786E454BAB61E 5120 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
    2012-12-13 19:25:54 BC24199038F4BE63A1825CF168408120 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
    2012-12-13 19:25:54 746D54D4505D7DD64A7204E9356662D3 14336 ----a-w- C:\Windows\SysWOW64\ntvdm64.dll
    2012-12-13 19:25:54 6F08CABF92AF8FAB3509DD9F313B83F9 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
    2012-12-13 19:25:54 63416D211D4B15FD841A21E508081F4C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
    2012-12-13 19:25:54 4A8CFB2638B946154FC74CD4BECBDCEC 7680 ----a-w- C:\Windows\SysWOW64\instnm.exe
    2012-12-13 19:25:54 2A1A2C962BB789EF8EE8CF8CB8F100C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
    2012-12-13 19:25:54 2299E1067A7027E25281177830E0F5A7 25600 ----a-w- C:\Windows\SysWOW64\setup16.exe
    2012-12-13 19:25:54 0E3CEB4FCE14AF72FBAAAE754A7C136A 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
    2012-12-13 19:25:53 EC0A0E7B3537BB2912221D4933216727 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
    2012-12-13 19:25:53 D7573A8D927B68F962BD0B5DA6603EEF 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
    2012-12-13 19:25:53 CAF11064A276247FE9F30AB06C4F2F2C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
    2012-12-13 19:25:53 C1FA7D1A6548037873C90D4EEE34DF2B 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
    2012-12-13 19:25:53 B4FCCE5BA0990AE78809379CB0C3873C 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
    2012-12-13 19:25:53 A2C23B02DC32AA8D3801B84FB54137A6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
    2012-12-13 19:25:53 73AF314C216F08A1C97BC03ECAD3A423 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
    2012-12-13 19:25:53 72D37545BC03B38537C3ACC7FA8FCA3A 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
    2012-12-13 19:25:53 6B28D57A511929227FF1C8F412C1A3F9 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
    2012-12-13 19:25:53 50A078C76D94014B61238F1118B6E02C 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
    2012-12-13 19:25:53 4A01572D2030D49CEB0A319DE0BFF53C 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
    2012-12-13 19:25:53 3B319CC2334AC0D15BE25A5994065F13 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
    2012-12-13 19:25:53 1818CCEE5CFC3FCC876F42643109F2C0 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
    2012-12-13 19:25:53 1697959965BC58308D046048A69E6C1E 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
    2012-12-13 19:25:52 E00F3E011103F0D788EC727374BFB50A 2048 ----a-w- C:\Windows\SysWOW64\user.exe
    2012-12-13 19:25:52 CBE6C675D3B10E48EF7B25A5FF07B46D 4096 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
    2012-12-13 19:25:52 97188F405255248AC8316001411D9CC5 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
    2012-12-13 19:25:52 7978B487E3FBBC666A494EBECBFB26A9 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
    2012-12-13 19:25:52 3C3685C29EEF909266F124A184F849E6 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
    2012-12-13 19:25:52 2B9B097C293696DBC473CEF9F623C980 3584 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
    2012-12-13 19:25:52 1A208F0CEB6DE90A7EE3D4469B3A88BA 4608 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
    2012-12-13 19:25:52 139590E1C420A439F23F261979A59BC4 3072 ---ha-w- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
    2012-12-13 19:25:36 310F6F492A3B4B1020ED9BF9CCBBE6B6 376832 ----a-w- C:\Windows\SysWOW64\dpnet.dll
    ====== C:\Windows\SysWOW64\drivers =====
    ====== C:\Windows\Sysnative =====
    2012-12-21 17:22:15 B764F0F8B0D7FF2FFC3FB4C063F5F52A 285328 ----a-w- C:\Windows\Sysnative\aswBoot.exe
    2012-12-20 21:55:39 2ED72B3F76C9368ABC01464DA64DB7AE 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll
    2012-12-20 21:55:38 CB2ABB2DA1E9C977302A78D86D4AE3B0 367616 ----a-w- C:\Windows\Sysnative\atmfd.dll
    2012-12-14 12:24:40 79F3FC1CF5AAC69BC6FB14521D6A3880 2382848 ----a-w- C:\Windows\Sysnative\mshtml.tlb
    2012-12-14 12:24:39 D869ACB7C3DA1B823765DB3CBE2E3DD4 96768 ----a-w- C:\Windows\Sysnative\mshtmled.dll
    2012-12-14 12:24:37 673A1369C77B7A405B97A619848F6757 173056 ----a-w- C:\Windows\Sysnative\ieUnatt.exe
    2012-12-14 12:24:37 08D0F87AA3F6DF47658E9ACD4D082027 248320 ----a-w- C:\Windows\Sysnative\ieui.dll
    2012-12-14 12:24:36 478FDA5AB59331259538FB7B02026836 237056 ----a-w- C:\Windows\Sysnative\url.dll
    2012-12-14 12:24:35 1DBA462CF92D890D8F8E6472E7E8B4B4 1346048 ----a-w- C:\Windows\Sysnative\urlmon.dll
    2012-12-14 12:24:34 FD126186C7434D5214093A4A87A0D63F 1494528 ----a-w- C:\Windows\Sysnative\inetcpl.cpl
    2012-12-14 12:24:34 9568BB33BBAD356EDD6CDE988E570523 2312704 ----a-w- C:\Windows\Sysnative\jscript9.dll
    2012-12-14 12:24:34 56336BB69172A2CEE15B2491DB4C70C1 729088 ----a-w- C:\Windows\Sysnative\msfeeds.dll
    2012-12-14 12:24:32 5121DB613E10A46A3C5085B479026AA7 1392128 ----a-w- C:\Windows\Sysnative\wininet.dll
    2012-12-14 12:24:32 31525BC38F219E3E17D8AF11DA0FAE3E 85504 ----a-w- C:\Windows\Sysnative\jsproxy.dll
    2012-12-14 12:24:30 6E6602DE23AB3776007702FC9540E8E9 599040 ----a-w- C:\Windows\Sysnative\vbscript.dll
    2012-12-14 12:24:30 046AD878F246D3801B719700B543A6EE 816640 ----a-w- C:\Windows\Sysnative\jscript.dll
    2012-12-14 12:24:29 A0F52880DDD164F968BE903C1FECD27E 2144768 ----a-w- C:\Windows\Sysnative\iertutil.dll
    2012-12-14 12:24:24 CFF3C4ABDCC5356B0674743BDF0FB674 17811968 ----a-w- C:\Windows\Sysnative\mshtml.dll
    2012-12-14 12:24:23 C71E7ABB1A34E56CE73AE117C8DD566F 10925568 ----a-w- C:\Windows\Sysnative\ieframe.dll
    2012-12-13 19:26:14 3D2D108E14AD21889A2621B94C80A3DD 2048 ----a-w- C:\Windows\Sysnative\tzres.dll
    2012-12-13 19:26:06 C58923115CDE6071C3BF2FF063546E9F 3149824 ----a-w- C:\Windows\Sysnative\win32k.sys
    2012-12-13 19:25:56 6F2E324703E6D22B9934C33DA48F1F01 424960 ----a-w- C:\Windows\Sysnative\KernelBase.dll
    2012-12-13 19:25:56 1DC3504CA4C57900F1557E9A3F01D272 1161216 ----a-w- C:\Windows\Sysnative\kernel32.dll
    2012-12-13 19:25:55 72CC564BBC70DE268784BCE91EB8A28F 215040 ----a-w- C:\Windows\Sysnative\winsrv.dll
    2012-12-13 19:25:55 3326166011C9BC13D6A8EFD856E9921C 338432 ----a-w- C:\Windows\Sysnative\conhost.exe
    2012-12-13 19:25:54 DF38FFD9127965E857E6E8BF41E3AD66 4096 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-sysinfo-l1-1-0.dll
    2012-12-13 19:25:54 DE4B59CD672B016B0827D7FBBBB13B74 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-rtlsupport-l1-1-0.dll
    2012-12-13 19:25:54 A05FA0E17EA9ADE6DC9B5C2BEC224030 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-heap-l1-1-0.dll
    2012-12-13 19:25:54 98168B9B0656A01A321FF1BECB2C03E1 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll
    2012-12-13 19:25:54 91EF240DDB541D9FD62EBDC719EAE93A 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-xstate-l1-1-0.dll
    2012-12-13 19:25:54 7B02A73700CC99A0B9E4D4C0AA2028BA 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-string-l1-1-0.dll
    2012-12-13 19:25:54 545466F436F875D0FFC171C12CAC3244 4608 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-threadpool-l1-1-0.dll
    2012-12-13 19:25:54 2970785A72054740E1A5DCEB32485486 362496 ----a-w- C:\Windows\Sysnative\wow64win.dll
    2012-12-13 19:25:54 28DC7159AC48CF4622D3D222590897C8 5120 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-file-l1-1-0.dll
    2012-12-13 19:25:54 23A6A58BE46A1D6538B33D0F5535EEBE 16384 ----a-w- C:\Windows\Sysnative\ntvdm64.dll
    2012-12-13 19:25:54 15B30F15BD13640B337A0FC37BD48CDE 243200 ----a-w- C:\Windows\Sysnative\wow64.dll
    2012-12-13 19:25:54 07D74D633327AFF7E2360F32F83D8200 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-util-l1-1-0.dll
    2012-12-13 19:25:54 028685592EF723982C5D6B98D6C4893D 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-profile-l1-1-0.dll
    2012-12-13 19:25:53 ED6346350B051FA98F755518E1DBC9C4 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-namedpipe-l1-1-0.dll
    2012-12-13 19:25:53 EAAA1E6695B3D5F834E91F41EB1BD9B2 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-fibers-l1-1-0.dll
    2012-12-13 19:25:53 E06E5AA16B3F7C72CDE3593CE87411BB 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-interlocked-l1-1-0.dll
    2012-12-13 19:25:53 CD2FCB8F13EABE7702A8AE7DE49E90E5 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-processenvironment-l1-1-0.dll
    2012-12-13 19:25:53 C1D840725CBC18F1232B832083EAE51D 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-libraryloader-l1-1-0.dll
    2012-12-13 19:25:53 B45124A0A5E60906AB72B48C25348835 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-memory-l1-1-0.dll
    2012-12-13 19:25:53 B1A6900FE182F839DA1B58CDC9E0B3AE 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-io-l1-1-0.dll
    2012-12-13 19:25:53 9335B95493FA6CBDF553E36820983A29 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-debug-l1-1-0.dll
    2012-12-13 19:25:53 818C4DEC5316EA1147D059E4CAE75453 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-delayload-l1-1-0.dll
    2012-12-13 19:25:53 695612AA7E235938E1683CD00D61D157 4608 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-processthreads-l1-1-0.dll
    2012-12-13 19:25:53 580BE75B6D90FF6D0C08E5AAD2213C55 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-handle-l1-1-0.dll
    2012-12-13 19:25:53 42B7B6D5D9AE16C5793CE28029174D5E 4096 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-localregistry-l1-1-0.dll
    2012-12-13 19:25:53 20DC238620F694575DDEE8EC95265774 3584 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-misc-l1-1-0.dll
    2012-12-13 19:25:53 18B5290C01924D87DDD0480BC8FAB8D6 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-errorhandling-l1-1-0.dll
    2012-12-13 19:25:52 D98882549D5D1246039BCF421202EB2E 4096 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-synch-l1-1-0.dll
    2012-12-13 19:25:52 BA959333F88D1FAF934CC1318AC3B69E 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-console-l1-1-0.dll
    2012-12-13 19:25:52 244483EF6648ABE51A12C7EB01EB0A60 4096 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-localization-l1-1-0.dll
    2012-12-13 19:25:52 03164C3DD1DCE155A2528DE6CC878975 3072 ---ha-w- C:\Windows\Sysnative\api-ms-win-core-datetime-l1-1-0.dll
    2012-12-13 19:25:36 374CE9DAB2F0CB173B8FCF3AB8DB5D1B 478208 ----a-w- C:\Windows\Sysnative\dpnet.dll
    ====== C:\Windows\Sysnative\drivers =====
    2012-12-21 17:22:25 4FCAEF0C5BE7629AEB878998E0FE959B 25232 ----a-w- C:\Windows\Sysnative\drivers\aswFsBlk.sys
    2012-12-21 17:22:24 538A32E2C99BF073D4CA76C30BEDAA60 370288 ----a-w- C:\Windows\Sysnative\drivers\aswSP.sys
    2012-12-21 17:22:22 57768C7DB4681F2510F247F82EF31D4F 54072 ----a-w- C:\Windows\Sysnative\drivers\aswRdr2.sys
    2012-12-21 17:22:21 6EDC79D73745FD44C41B55B2D13D0B70 59728 ----a-w- C:\Windows\Sysnative\drivers\aswTdi.sys
    2012-12-21 17:22:20 E71D826A1F3CE9C9DE3E77F2D02AFFBF 984144 ----a-w- C:\Windows\Sysnative\drivers\aswSnx.sys
    2012-12-21 17:22:16 B50CDD87772D6A11CB90924AAD399DF8 71600 ----a-w- C:\Windows\Sysnative\drivers\aswMonFlt.sys
    ====== C:\Windows\Tasks ======
    ====== C:\Windows\Temp ======
    ======= C:\Program Files =====
    2012-12-21 21:27:00 -------- d-----w- C:\Program Files\Perfect Uninstaller
    ======= C:\Program Files (x86) =====
    2012-12-19 14:14:41 -------- d-----w- C:\Program Files (x86)\AVG
    2012-12-17 21:01:07 -------- d-----w- C:\Program Files (x86)\CdCoverCreator
    2012-12-16 10:01:53 -------- d-----w- C:\Program Files (x86)\Common Files\Nero
    2012-12-16 10:01:43 -------- d-----w- C:\Program Files (x86)\Nero
    2012-11-28 15:04:30 -------- d-----w- C:\Program Files (x86)\TuneUp Utilities 2013
    2012-11-26 19:36:33 -------- d-----w- C:\Program Files (x86)\Total Video Converter
    ======= C: =====
    ====== C:\Users\Gebruiker\AppData\Roaming ======
    2012-12-21 17:06:04 -------- d-----w- C:\users\Gebruiker\AppData\Local\ElevatedDiagnostics
    2012-12-19 14:16:23 -------- d-----w- C:\users\Gebruiker\AppData\Roaming\AVG
    2012-12-18 21:44:36 -------- d-----w- C:\users\Gebruiker\AppData\Local\PutLockerDownloader
    2012-12-18 21:44:31 -------- d-----w- C:\users\Gebruiker\AppData\Roaming\Mozilla
    2012-12-16 10:05:42 -------- d-----w- C:\users\Gebruiker\AppData\Roaming\Nero
    2012-12-10 20:22:49 -------- d-----w- C:\users\Gebruiker\AppData\Local\Albelli.be Fotoboeken
    2012-12-03 19:42:39 -------- d-----w- C:\users\Gebruiker\AppData\Local\CutePDF Writer
    2012-11-28 15:04:43 -------- d-----w- C:\users\Gebruiker\AppData\Roaming\TuneUp Software
    2012-11-28 15:03:58 -------- d-----w- C:\users\Gebruiker\AppData\Roaming\DVDVideoSoft
    ====== C:\Users\Gebruiker ======
    2012-12-19 13:59:47 -------- d---a-w- C:\ProgramData\TEMP
    2012-12-16 10:01:31 -------- d-----w- C:\ProgramData\Nero
    2012-11-28 15:04:27 -------- d-----w- C:\ProgramData\TuneUp Software
    2012-11-28 15:04:09 -------- d-sh--w- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
    2012-11-28 15:04:09 -------- d--h--w- C:\ProgramData\Common Files
    2012-11-28 15:02:20 836095EEAB4D9E3D30A9579F4732C94C 25116832 ----a-w- C:\Users\Gebruiker\FreeVideoToMP3Converter.exe

    ====== C: exe-files ==
    2012-12-21 21:27:05 FCB9A31121B77FAD75C14E597E0CFA65 752448 ----a-w- C:\Program Files\Perfect Uninstaller\puUpdate.exe
    2012-12-21 21:27:00 E12AE8AC633B1EE986FA87B34498E6FD 716058 ----a-w- C:\Program Files\Perfect Uninstaller\unins000.exe
    2012-12-21 21:27:00 0F20ACA0AFD7D7A4FEC1793E6D4A55F3 3824448 ----a-w- C:\Program Files\Perfect Uninstaller\PU.exe
    2012-12-21 21:26:19 67D24A76AE0F972B969CFEBC029F0E4A 3493888 ----a-w- C:\Users\Gebruiker\Downloads\PerfectUninstaller_Setup.exe
    2012-12-21 21:24:51 B7D4020819DC6B923E5FE9D88231DD08 632952 ----a-w- C:\Users\Gebruiker\Downloads\cbsidlm-tr1_9-Perfect_Uninstaller-ORG2-10803305.exe
    2012-12-21 17:22:15 B764F0F8B0D7FF2FFC3FB4C063F5F52A 285328 ----a-w- C:\Windows\System32\aswBoot.exe
    2012-12-21 17:21:37 A4B4FE50CCA23B38688003EA85A30EF6 227648 ----a-w- C:\Windows\SysWOW64\aswBoot.exe
    2012-12-21 17:20:09 71BA5983A665FB4CCE507093B1FA143B 74761776 ----a-w- C:\Users\Gebruiker\Downloads\avast\Avast 7 by www.picy.in.exe
    2012-12-19 14:14:50 F58B6757B8F768782D96773535AF33FD 246088 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TrackEraser.exe
    2012-12-19 14:14:50 A68942B3D6C9F64E74C9572449CBD846 53576 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\version.exe
    2012-12-19 14:14:50 8E4EB77916C588EE9B0D17E47580AE3F 881992 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TweakManager.exe
    2012-12-19 14:14:49 D53FEE05E0859093681D6D325CD8F5CA 650056 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\SystemInformation.exe
    2012-12-19 14:14:49 94834096640B3BACBB125584C633EAA4 576328 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\ServiceManager.exe
    2012-12-19 14:14:49 64C0AABBECE26725A33294E7A490A030 273736 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\StartupManager.exe
    2012-12-19 14:14:49 5662979A0B52D5E14BE877AF2374935D 314184 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TaskManager.exe
    2012-12-19 14:14:48 9C126C4CA90217975B8FC70CBD1AC4CA 83784 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\rdboot64.exe
    2012-12-19 14:14:48 8ABD9AD12B26F586CBA5A8F63F59C5F1 376648 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\InternetOptimizer.exe
    2012-12-19 14:14:48 88812B3C1E0F1475B459F14D3210D169 248648 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RescueCenter.exe
    2012-12-19 14:14:48 54E393DA3ADDDA12086F18BFDCDC22EB 72008 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\rdboot32.exe
    2012-12-19 14:14:48 3AD5EC11A183B8893CE81EFD0058F4E5 444744 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RegCleaner.exe
    2012-12-19 14:14:48 2C8C0631AE99C66F8C34292BC44D5F65 200008 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\ProgramManager.exe
    2012-12-19 14:14:48 14CDE353257BE1BBF736FE2EF8D3915A 238920 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RegistryDefrag.exe
    2012-12-19 14:14:47 EA2E47835B2FF26D79F3034644F01DA3 381768 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskDefrag.exe
    2012-12-19 14:14:47 D60F5F29B15275283409308DED75A49E 200008 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskWiper.exe
    2012-12-19 14:14:47 D598348437EF61D569599BE3628586E1 452424 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskExplorer.exe
    2012-12-19 14:14:47 7D86ADA0A53BFF99DB51D10D32EFEA0D 238920 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskDoctor.exe
    2012-12-19 14:14:47 77709F7189D358391FDE3F72D581A0BC 194888 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\FileShredder.exe
    2012-12-19 14:14:47 4C63230628E5082E49BCB6D5E0A4D9B3 207688 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DuplicateFileFinder.exe
    2012-12-19 14:14:47 38C9D6A750061A8C97FF9B1A92CDDEB6 398152 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\FileRecovery.exe
    2012-12-19 14:14:47 03F5100A43EABC8CB4232549B9555589 488264 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskCleaner.exe
    2012-12-19 14:14:44 F3C0172BB4558225392C719EEB2EAB30 92488 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\cdefrag.exe
    2012-12-19 14:14:42 C9688E9FC78FFE864298411061B9235C 751432 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\BoostSpeed.exe
    2012-12-19 14:14:41 1CE3ECF96F1774EB55E3DE59D65C2371 773960 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\unins000.exe
    2012-12-19 13:55:08 DAD618B38B688D8F809D764924082C7F 7458728 ----a-w- C:\Users\Gebruiker\Downloads\avg\boostspeed.exe
    2012-12-19 13:55:08 C9688E9FC78FFE864298411061B9235C 751432 ----a-w- C:\Users\Gebruiker\Downloads\avg\avg_pct_stf_all_2011.exe
    2012-12-19 13:55:08 8E4EB77916C588EE9B0D17E47580AE3F 881992 ----a-w- C:\Users\Gebruiker\Downloads\avg\TweakManager.exe
    2012-12-17 21:01:10 63AB265C00E3880D7E608B9A2E72F639 57111 ----a-w- C:\Program Files (x86)\CdCoverCreator\uninst.exe
    2012-12-17 20:58:52 6F27A144EF0420F66DF4A4891F900398 2831657 ----a-w- C:\Users\Gebruiker\Downloads\CdCoverCreator-Setup-2.5.3.exe
    === C: other files ==
    2012-12-21 21:27:09 5BD3123668A3F480461A1052ED46F601 621888 ----a-w- C:\Program Files\Perfect Uninstaller\RegBrowser.dll
    2012-12-21 21:27:08 840920EFC3D680B75DDA10A1E4AD99DD 410432 ----a-w- C:\Program Files\Perfect Uninstaller\Contextmenu.dll
    2012-12-21 21:27:07 FF9331E5A37581352B2FE12C95933FAA 38208 ----a-w- C:\Program Files\Perfect Uninstaller\Win32API.dll
    2012-12-21 21:27:07 C1B932F646C6A00A25B857CEA11EAAA5 13760 ----a-w- C:\Program Files\Perfect Uninstaller\FKFAP.sys
    2012-12-21 17:22:25 4FCAEF0C5BE7629AEB878998E0FE959B 25232 ----a-w- C:\Windows\System32\drivers\aswFsBlk.sys
    2012-12-21 17:22:24 538A32E2C99BF073D4CA76C30BEDAA60 370288 ----a-w- C:\Windows\System32\drivers\aswSP.sys
    2012-12-21 17:22:22 57768C7DB4681F2510F247F82EF31D4F 54072 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
    2012-12-21 17:22:21 6EDC79D73745FD44C41B55B2D13D0B70 59728 ----a-w- C:\Windows\System32\drivers\aswTdi.sys
    2012-12-21 17:22:20 E71D826A1F3CE9C9DE3E77F2D02AFFBF 984144 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
    2012-12-21 17:22:16 B50CDD87772D6A11CB90924AAD399DF8 71600 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
    2012-12-20 21:55:40 E32230F4135D507E79509C998F4D8C92 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll
    2012-12-20 21:55:39 2ED72B3F76C9368ABC01464DA64DB7AE 46080 ----a-w- C:\Windows\System32\atmlib.dll
    2012-12-20 21:55:38 CB2ABB2DA1E9C977302A78D86D4AE3B0 367616 ----a-w- C:\Windows\System32\atmfd.dll
    2012-12-20 21:55:37 5DAF8A6B7F127C4E70A5C1F707347859 295424 ----a-w- C:\Windows\SysWOW64\atmfd.dll
    2012-12-19 14:14:50 D5ABFB141450A81342FDFE71CE3BFDD7 255304 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\ausshellext.dll
    2012-12-19 14:14:50 93A55CA34C629EC416D5C3D9B826F498 586568 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TweakManagerHelper.dll
    2012-12-19 14:14:50 2DB1ACE38F8B6F80C08A8CF64B8BED38 249160 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TrackEraserHelper.dll
    2012-12-19 14:14:50 040B56D4AC00D1C2069F038EC520C596 224072 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TaskSchedulerHelper.dll
    2012-12-19 14:14:49 F79562F686D564D595312CEC8885177F 303944 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\SpywareCheckerHelper.dll
    2012-12-19 14:14:49 9CF91B2680F679D67084DE6525B7BE82 561992 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\SystemInformationHelper.dll
    2012-12-19 14:14:49 59EBCA2501B0668FC40C86D2E4D702BB 473960 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\sqlite3.dll
    2012-12-19 14:14:49 3B30C49C1F1262B843EFA84DDB0E3323 273736 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\StartupManagerHelper.dll
    2012-12-19 14:14:49 2837A8B817A976F05D584CA3BE8BB0F7 121160 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\Settings.dll
    2012-12-19 14:14:49 14F34B07C708D5915402DE619A4A2674 157000 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\ServiceManagerHelper.dll
    2012-12-19 14:14:49 0F2680A8562122419E814929A4F31254 360264 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\TaskManagerHelper.dll
    2012-12-19 14:14:48 F9F9CCD1FBE68A9BE72122462A9EC6D6 340296 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\ProgramManagerHelper.dll
    2012-12-19 14:14:48 F2569D7AACC6782B6BCB993E8B4678C5 416584 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RegistryCleanerHelper.dll
    2012-12-19 14:14:48 D06492FC3708E173DF4F65E821A0950D 406856 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RescueCenterHelper.dll
    2012-12-19 14:14:48 C6383FBA1BD7474BE07DB10C0A33EE4B 172872 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\localizer.dll
    2012-12-19 14:14:48 827266C15A328F989473DFBECD74A59B 311112 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\InternetOptimizerHelper.dll
    2012-12-19 14:14:48 6E1F0D19D0BBA277B75DEB91A03FB514 53576 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RepLibrary.dll
    2012-12-19 14:14:48 6BAAA9CD21F7149CB981FD1A18926064 294216 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\RegistryDefragHelper.dll
    2012-12-19 14:14:48 034EB99E108A2894B28C52BBCC5BC3AF 48456 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\InstantOptimizerHelper.dll
    2012-12-19 14:14:47 FD2EC310197463293795D847A8934A00 488264 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\FileRecoveryHelper.dll
    2012-12-19 14:14:47 E9E620651847EF6BACE23FBBF3BCFA0F 222536 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskDefragHelper.dll
    2012-12-19 14:14:47 6C1A4ADA8537F00C3EF9735900267608 57160 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DebugMode.dll
    2012-12-19 14:14:47 5C1132AD989D6815217FC586CE8E4BA6 200008 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskExplorerHelper.dll
    2012-12-19 14:14:47 3080A5538DBAB7900EA48D1AE370E1E7 381768 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskCleanerHelper.dll
    2012-12-19 14:14:47 261DC571113D1D2335AB7612848FFAE2 260424 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\DiskDoctorHelper.dll
    2012-12-19 14:14:47 1D11926FE094CD1D9C92CE1C7AFF116A 101192 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\helper.dll
    2012-12-19 14:14:44 4BE1BCA84ABB3F8F5FC63016FDEC9847 486728 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\AxBrowsers.dll
    2012-12-19 14:14:44 1059F90AE64B00787DCF3BB2FC9E522A 1549640 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\commonforms.dll
    2012-12-19 14:14:42 73A90F75E0BA6B2C9EAA8B76EA90EDF5 62792 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\armaccess.dll
    2012-12-19 14:14:42 4D3659D1EF660FCF17FD251C4112B501 1545544 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\aushelper.dll
    2012-12-19 14:14:42 21ECEA40B7F8F0937F3A6FCEC51A77B4 229704 ----a-w- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\AdvisorHelper.dll
    2012-12-19 13:55:06 1059F90AE64B00787DCF3BB2FC9E522A 1549640 ----a-w- C:\Users\Gebruiker\Downloads\avg\commonforms.dll
    2012-12-19 13:55:05 8BF387E76831C6CBB898D293ECB71C86 152064 ----a-w- C:\Users\Gebruiker\Downloads\avg\aushelper.dll

    ==== Firefox Extensions ======================

    ==== Firefox Plugins ======================


    ==== Set IE to Default ======================

    Old Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

    New Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

    ==== All HKCU SearchScopes ======================

    HKCU\*\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
    HKCU\*\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
    HKCU\*\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startInde x={startIndex?}&startPage={startPage}"

    ==== Deleting CLSID Registry Keys ======================

    HKEY_USERS\S-1-5-21-4041107924-148492014-2331635683-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
    HKEY_USERS\S-1-5-21-4041107924-148492014-2331635683-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
    HKEY_CLASSES_ROOT\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} deleted successfully

    ==== Deleting CLSID Registry Values ======================


    ==== HijackThis Entries ======================

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe,
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
    O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
    O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
    O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
    O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
    O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O8 - Extra context menu item: &Verzenden naar OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
    O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    O9 - Extra button: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: &Gekoppelde notities van OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
    O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    ==== Empty IE Cache ======================

    C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
    C:\Users\Gebruiker\AppData\Local\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Gebruiker\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Gebruiker\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Windows\serviceprofiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
    C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    ==== Empty FireFox Cache ======================

    No FireFox Cache found

    ==== Empty Chrome Cache ======================

    No Chrome User Data found

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    After Reboot

    ==== Empty Temp Folders ======================

    C:\Windows\Temp successfully emptied
    C:\Users\GEBRUI~1\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== Deleting Files / Folders ======================

    "C:\Users\Gebruiker\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
    "C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

  4. #4
    Schermafbeelding van Juisterr
    Technische vaardigheid
    5. Expert
    Besturingssysteem
    Windows 7 Home Premium 64
    Antivirus
    Malwarebytes
    Firewall
    router
    Berichten
    12.683
    Blog Berichten
    8
    Hoe gaat het nu?

  5. #5

    Technische vaardigheid
    1. Starter
    Besturingssysteem
    Windows 7 Professional 64
    Antivirus
    Avast
    Firewall
    Windows Firewall
    Berichten
    32
    Hallo,

    kunt u me even kort uitleggen wat dit progje gedaan heeft aub? voorlopig lijkt alles normaal? maar zou die trojan effectief weg zijn?

  6. #6
    Schermafbeelding van Juisterr
    Technische vaardigheid
    5. Expert
    Besturingssysteem
    Windows 7 Home Premium 64
    Antivirus
    Malwarebytes
    Firewall
    router
    Berichten
    12.683
    Blog Berichten
    8
    Volgens mij is het weg nu, wat het progje precies doet uitleggen gaat me wat te ver. Het ruimt verdachte bestanden op zoals Babylon en bv. deze.
    "C:\Program Files (x86)\Yontoo" deleted
    "C:\Users\Gebruiker\AppData\Roaming\OpenCandy" deleted
    "C:\ProgramData\Tarma Installer" deleted

+ Plaats een Reactie

Forum Rechten

  • Je mag geen nieuwe onderwerpen plaatsen
  • Je mag geen reacties plaatsen
  • Je mag geen bijlagen toevoegen
  • Je mag jouw berichten niet wijzigen