Mededeling

Collapse
No announcement yet.

Laptop start traag op

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Laptop start traag op

    Hallo,

    Ik heb d.m.v. dit forum allerlei progjes mijn computer later scannen maar toch blijft traag in het opstarten en lijkt het of hij tijdens het internetten af en toe bevriest.

    Zouden jullie ook eens kunnen kijken of dit op te lossen is?

  • #2
    http://www.nucia.eu/forum/threads/12...ericht-plaatst!

    Wil je dat eerst even uitvoeren aub.

    Windows 10 opstarten in Veilige Modus

    Comment


    • #3
      Sorry, had moeten zeggen dat ik dat inderdaad gedaan had:

      Malwarebytes Anti-Malware 1.75.0.1300
      www.malwarebytes.org

      Databaseversie: v2014.04.15.10

      Windows 7 x64 NTFS
      Internet Explorer 8.0.7600.16385
      Aniek :: ANIEK-THINK [administrator]

      15-4-2014 21:56:05
      mbam-log-2014-04-15 (21-56-05).txt

      Scan type: Snelle scan
      Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
      Uitgeschakelde scan opties: P2P
      Objecten gescand: 225325
      Verstreken tijd: 9 minuut/minuten, 14 seconde(n)

      Geheugenprocessen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Geheugenmodulen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registersleutels gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registerwaarden gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Registerdata gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Mappen gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      Bestanden gedetecteerd: 0
      (Geen kwaadaardige objecten gedetecteerd)

      (einde)

      Comment


      • #4
        DDS (Ver_2012-11-20.01) - NTFS_AMD64
        Internet Explorer: 8.0.7600.17267
        Run by Aniek at 22:09:10 on 2014-04-15
        Microsoft Windows 7 Home Premium 6.1.7600.0.1252.31.1043.18.1909.768 [GMT 2:00]
        .
        AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
        SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
        SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
        .
        ============== Running Processes ===============
        .
        C:\Windows\system32\lsm.exe
        C:\Windows\system32\svchost.exe -k DcomLaunch
        C:\Windows\system32\ibmpmsvc.exe
        C:\Windows\system32\svchost.exe -k RPCSS
        c:\Program Files\Microsoft Security Client\MsMpEng.exe
        C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
        C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
        C:\Windows\system32\svchost.exe -k netsvcs
        C:\Windows\system32\svchost.exe -k LocalService
        C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
        C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
        C:\Windows\system32\svchost.exe -k NetworkService
        C:\Windows\System32\spoolsv.exe
        C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
        C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
        C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe
        C:\Windows\system32\Dwm.exe
        C:\Windows\Explorer.EXE
        C:\Windows\system32\taskhost.exe
        C:\Windows\system32\taskeng.exe
        C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
        C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
        C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
        C:\Windows\System32\TpShocks.exe
        C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
        C:\Program Files\Microsoft Security Client\msseces.exe
        C:\Windows\System32\hkcmd.exe
        C:\Windows\System32\igfxpers.exe
        C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
        C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
        C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
        C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
        C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
        C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
        C:\Windows\vsnpstd3.exe
        C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe
        C:\Windows\tsnpstd3.exe
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
        C:\Windows\system32\svchost.exe -k imgsvc
        C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
        C:\Windows\system32\SearchIndexer.exe
        C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
        C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
        C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
        C:\Program Files\Windows Media Player\wmpnetwk.exe
        C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
        C:\Windows\System32\svchost.exe -k LocalServicePeerNet
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Windows\system32\taskeng.exe
        C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe
        C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
        C:\Windows\system32\SearchProtocolHost.exe
        C:\Windows\system32\SearchFilterHost.exe
        C:\Windows\system32\wbem\wmiprvse.exe
        C:\Windows\System32\cscript.exe
        .
        ============== Pseudo HJT Report ===============
        .
        uStart Page = hxxp://www.google.nl/
        uDefault_Page_URL = hxxp://lenovo.msn.com
        mWinlogon: Userinit = userinit.exe,
        BHO: MSS+ Identifier: {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll
        BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
        BHO: Aanmeldhulp voor Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
        BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
        BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
        mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
        mRun: [snpstd3] C:\Windows\vsnpstd3.exe
        mRun: [tsnpstd3] C:\Windows\tsnpstd3.exe
        mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
        mPolicies-Explorer: NoActiveDesktop = dword:1
        mPolicies-Explorer: NoActiveDesktopChanges = dword:1
        mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
        mPolicies-System: ConsentPromptBehaviorUser = dword:3
        mPolicies-System: EnableUIADesktopToggle = dword:0
        IE: &Verzenden naar OneNote - C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
        IE: E&xporteren naar Microsoft Excel - C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
        IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
        IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
        IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
        IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
        DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        TCP: NameServer = 192.168.2.254 195.241.77.55 195.241.77.58
        TCP: Interfaces\{3F22AC89-03C8-4CEC-86AB-C190856C2F57} : DHCPNameServer = 192.168.2.254 195.241.77.55 195.241.77.58
        TCP: Interfaces\{3F22AC89-03C8-4CEC-86AB-C190856C2F57}\269626C696F647865656B6F586F6473707F647 : DHCPNameServer = 192.168.2.253
        TCP: Interfaces\{3F22AC89-03C8-4CEC-86AB-C190856C2F57}\C696E6B6379737D276 : DHCPNameServer = 192.168.1.1
        Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
        Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
        Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
        SSODL: WebCheck - <orphaned>
        SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
        mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
        x64-BHO: ExplorerWnd Helper: {10921475-03CE-4E04-90CE-E2E7EF20C814} -
        x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
        x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
        x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
        x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
        x64-Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
        x64-Run: [TpShocks] TpShocks.exe
        x64-Run: [LENOVO.TPKNRRES] C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
        x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
        x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
        x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
        x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
        x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
        x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
        x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
        x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        x64-DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
        x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
        x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
        x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
        x64-Notify: igfxcui - igfxdev.dll
        x64-SSODL: WebCheck - <orphaned>
        x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
        .
        ================= FIREFOX ===================
        .
        FF - ProfilePath - C:\Users\Aniek\AppData\Roaming\Mozilla\Firefox\Profiles\6qpjiruu.default\
        FF - prefs.js: browser.startup.homepage - hxxp://zonedirector.com
        FF - prefs.js: keyword.URL -
        FF - prefs.js: network.proxy.type - 0
        FF - plugin: C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
        FF - plugin: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
        FF - plugin: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll
        FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrlui.dll
        FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
        FF - plugin: C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMSS.dll
        FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
        .
        ---- FIREFOX POLICIES ----
        user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);
        FF - user.js: network.http.pipelining.maxrequests - 8
        FF - user.js: network.http.request.max-start-delay - 0
        FF - user.js: network.http.max-connections - 48
        FF - user.js: network.http.max-connections-per-server - 16
        FF - user.js: network.http.max-persistent-connections-per-proxy - 16
        FF - user.js: network.http.max-persistent-connections-per-server - 8
        FF - user.js: browser.turbo.enabled - true
        FF - user.js: browser.display.show_image_placeholders - true
        FF - user.js: browser.chrome.favicons - false
        FF - user.js: browser.urlbar.autocomplete.enabled - true
        FF - user.js: browser.cache.memory.capacity - 65536
        FF - user.js: content.notify.ontimer - true
        FF - user.js: content.interrupt.parsing - true
        FF - user.js: content.max.tokenizing.time - 2250000
        FF - user.js: content.switch.threshold - 750000
        FF - user.js: plugin.expose_full_path - true
        FF - user.js: ui.submenuDelay - 0
        .
        ============= SERVICES / DRIVERS ===============
        .
        R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-1-25 268512]
        R0 TPDIGIMN;TPDIGIMN;C:\Windows\System32\drivers\ApsHM64.sys [2011-1-14 23664]
        R1 lenovo.smi;Lenovo System Interface Driver;C:\Windows\System32\drivers\smiifx64.sys [2010-5-27 15400]
        R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2011-3-10 56344]
        R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2011-3-10 158976]
        R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-3-10 271872]
        R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2014-4-15 25928]
        R3 MBAMWebAccessControl;MBAMWebAccessControl;C:\Windows\System32\drivers\mwac.sys [2014-4-15 63192]
        R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-6-10 539240]
        R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\Windows\System32\drivers\rtl8192se.sys [2011-3-10 1107488]
        S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
        S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
        S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:\Windows\System32\drivers\ssadadb.sys [2011-5-13 36328]
        S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-7-30 48488]
        S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
        S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
        S3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-9-27 133928]
        S3 PCDSRVC{127174DC-C366ED8B-06020101}_0;PCDSRVC{127174DC-C366ED8B-06020101}_0 - PCDR Kernel Mode Service Helper Driver;C:\Program Files\PC-Doctor\pcdsrvc_x64.pkms [2010-11-12 25072]
        S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2011-3-10 239136]
        S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-14 292864]
        S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-14 1485312]
        S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-14 740864]
        S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:\Windows\System32\drivers\ssadbus.sys [2011-5-13 157672]
        S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:\Windows\System32\drivers\ssadmdfl.sys [2011-5-13 16872]
        S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:\Windows\System32\drivers\ssadmdm.sys [2011-5-13 177640]
        S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);C:\Windows\System32\drivers\ssadserd.sys [2011-5-13 146920]
        .
        =============== Created Last 30 ================
        .
        2014-04-15 19:54:34 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
        2014-04-15 19:02:46 -------- d-sh--w- C:\$RECYCLE.BIN
        2014-04-15 18:55:21 24064 ----a-w- C:\Windows\zoek-delete.exe
        2014-04-15 18:55:20 -------- d-----w- C:\Users\Aniek\AppData\Local\Temp
        2014-04-15 18:11:49 -------- d-----w- C:\zoek_backup
        2014-04-15 17:15:40 10521840 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9270F602-9A49-4097-9632-75862425EC60}\mpengine.dll
        2014-04-15 17:12:04 -------- d-----w- C:\Windows\System32\MRT
        2014-04-15 17:06:13 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client
        2014-04-15 17:05:59 -------- d-----w- C:\Program Files\Microsoft Security Client
        2014-04-15 16:56:07 374664 ----a-w- C:\Windows\System32\drivers\netio.sys
        2014-04-15 16:50:00 -------- d-----w- C:\Users\Aniek\AppData\Roaming\IObit
        2014-04-15 16:50:00 -------- d-----w- C:\ProgramData\IObit
        2014-04-15 16:41:59 -------- d-----w- C:\Program Files (x86)\IObit
        2014-04-15 16:41:14 88280 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
        2014-04-15 16:41:14 63192 ----a-w- C:\Windows\System32\drivers\mwac.sys
        2014-04-15 16:41:14 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
        2014-04-15 16:41:14 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
        2014-04-15 16:41:09 -------- d-----w- C:\Users\Aniek\AppData\Local\Programs
        2014-04-15 16:40:41 -------- d-----w- C:\Users\Aniek\AppData\Local\TB
        2014-04-15 16:35:41 -------- d-----w- C:\jacco
        2014-04-15 16:22:14 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BC713F0F-D56C-4FC7-BEFB-B1811A66DF30}\mpengine.dll
        2014-03-20 12:44:28 36664 ----a-w- C:\Windows\SysWow64\TURegOpt.exe
        2014-03-20 12:44:20 25400 ----a-w- C:\Windows\SysWow64\authuitu.dll
        2014-03-18 15:34:20 -------- d-----w- C:\Program Files\McAfee Security Scan
        2014-03-17 15:36:05 -------- d-----w- C:\Users\Aniek\AppData\Local\Macromedia
        2014-03-17 15:33:54 -------- d-----w- C:\ProgramData\McAfee Security Scan
        2014-03-17 15:33:37 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
        .
        ==================== Find3M ====================
        .
        2014-03-31 07:35:08 270496 ------w- C:\Windows\System32\MpSigStub.exe
        2014-03-17 16:04:03 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
        2014-03-11 07:52:30 133928 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys
        2014-02-27 00:52:14 40280 ----a-w- C:\Windows\System32\tpinspm.dll
        2014-02-27 00:52:12 68440 ----a-w- C:\Windows\System32\ibmpmsvc.exe
        2014-02-27 00:52:12 60760 ----a-w- C:\Windows\System32\ibmpmctl.exe
        2014-02-27 00:52:12 57144 ----a-w- C:\Windows\System32\drivers\ibmpmdrv.sys
        2014-01-24 23:19:42 268512 ----a-w- C:\Windows\System32\drivers\MpFilter.sys
        2011-07-17 17:47:34 36276224 ----a-r- C:\Program Files (x86)\Office 2010 Toolkit.exe
        .
        ============= FINISH: 22:11:24,02 ===============

        Comment


        • #5
          GMER 2.1.19357 - http://www.gmer.net
          Rootkit scan 2014-04-15 22:29:31
          Windows 6.1.7600 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD32 rev.02.0 298,09GB
          Running: z48bcoie.exe; Driver: C:\Users\Aniek\AppData\Local\Temp\pglcipow.sys


          ---- User code sections - GMER 2.1 ----

          .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe[4008] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076871465 2 bytes [87, 76]
          .text C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe[4008] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000768714bb 2 bytes [87, 76]
          .text ... * 2
          .text C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe[3672] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076871465 2 bytes [87, 76]
          .text C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe[3672] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000768714bb 2 bytes [87, 76]
          .text ... * 2

          ---- Threads - GMER 2.1 ----

          Thread C:\Windows\System32\spoolsv.exe [1408:1776] 000007fef8a810c8
          Thread C:\Windows\System32\spoolsv.exe [1408:1780] 000007fef8a46144
          Thread C:\Windows\System32\spoolsv.exe [1408:1784] 000007fef8835fd0
          Thread C:\Windows\System32\spoolsv.exe [1408:1788] 000007fef8823438
          Thread C:\Windows\System32\spoolsv.exe [1408:1792] 000007fef88363ec
          Thread C:\Windows\System32\spoolsv.exe [1408:1800] 000007fef8b15e5c
          Thread C:\Windows\System32\spoolsv.exe [1408:1804] 000007fef8b4484c
          Thread C:\Program Files\Microsoft Security Client\msseces.exe [2100:2420] 000007fefb0e2a88

          ---- Registry - GMER 2.1 ----

          Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\001f3ad3f74a
          Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\001f3ad3f74a (not active ControlSet)

          ---- EOF - GMER 2.1 ----

          Comment


          • #6
            Download Zoek.zip naar het bureaublad.
            • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kun je negeren, dit is namelijk een onterechte waarschuwing.


            Antivirussoftware uitschakelen
            Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk conflicteren met Zoek.exe.

            Zoek.exe uitvoeren
            Wanneer u problemen ondervindt bij het uitvoeren van dit programma of bepaalde foutmeldingen te zien krijgt laat dit dan even weten in uw bericht.
            • Klik met de rechtermuisknop op Zoek.zip en klik op de optie "Alles uitpakken".
            • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
            • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
            • Klik nu op de knop "Run script".
            • Er verschijnt een popup met de melding dat er geen script aangetroffen is, druk gewoon op OK.
            • Zoek.exe gaat nu een scan + reparatie uitvoeren, bij sommige systemen kan deze langer dan een half uur duren.
            • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
            • Mocht na de herstart geen logje verschijnen, start zoek.exe dan opnieuw, de log verschijnt dan alsnog.
            • Post het geopende logje in het volgende bericht als bijlage.


            Zoek.exe logbestand plaatsen
            • Voeg het logbestand met de naam "Zoek-results.log" als bijlage toe aan het volgende bericht.
              (Dit logbestand kunt u tevens terug vinden op de systeemschijf als C:\Zoek-results.log.)

            Windows 10 opstarten in Veilige Modus

            Comment


            • #7
              Als bijlage het gevraagde overzicht
              Bijgevoegde Bestanden

              Comment


              • #8
                Gaat het beter nu, ik kan geen malware vinden in dit logje.

                Windows 10 opstarten in Veilige Modus

                Comment

                Sorry, you are not authorized to view this page
                Working...
                X