Mededeling

Collapse
No announcement yet.

virus?

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • virus?

    Beste Nucia,

    Heb gisteren virussen binnen gekregen die werden geblokt door Avast! elke keer als ik nu op google ga krijg ik een pop up genaamd istartsurf.
    Dit programma is niet verwijderbaar via configuratiescherm- programma's verwijderen.
    Kunnen jullie mij raad geven?

    Alvast bedankt

  • #2
    Schakel eerst de Antivirussoftware uit voordat je zoek.exe download of uitvoert.
    Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk de werking van Zoek.exe nadelig beïnvloeden.
    (hier en hier) kan je lezen hoe je dat doet.

    Download Zoek.exe naar het bureaublad (klik hier voor meer informatie over hoe zoek.exe te gebruiken)
    • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kan je dat negeren, het is namelijk een onterechte waarschuwing.
    • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
    • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
    • Kopieer nu onderstaande code en plak die in het grote invulvenster:
    • Note: Dit script is speciaal bedoeld voor deze Computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.
      Code:
       
      emptyfolderscheck;delete
      firefoxlook; 
      Chromelook; 
      CHRdefaults;
      autoclean; 
      iedefaults; 
      istartsurf;fs
    • Klik nu op de knop "Run script".
    • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
    • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
    • Post het geopende logje in het volgende bericht als bijlage.

    Windows 10 opstarten in Veilige Modus

    Comment


    • #3
      Beste,

      Ik heb de indruk dat het verwijderd is? mijn dank daarvoor!!

      hieronder het logje in bijlage

      Zoek.exe v5.0.0.0 Updated 04-May-2015
      Tool run by Luc on di 18/08/2015 at 8:01:32,82.
      Microsoft Windows 8.1 6.3.9600 x64
      Running in: Normal Mode Internet Access Detected
      Launched: C:\Users\Luc\Downloads\zoek.exe [Scan all users] [Script inserted]

      ==== System Restore Info ======================

      18/08/2015 8:03:11 Zoek.exe System Restore Point Created Successfully.

      ==== Empty Folders Check ======================

      C:\PROGRA~2\mbot_be_014010061 deleted successfully
      C:\Users\Luc\AppData\Local\EmieBrowserModeList deleted successfully
      C:\Users\Luc\AppData\Local\EmieSiteList deleted successfully
      C:\Users\Luc\AppData\Local\EmieUserList deleted successfully

      ==== Deleting CLSID Registry Keys ======================

      HKEY_USERS\S-1-5-21-3079565891-252728546-1481731338-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
      HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully

      ==== Deleting CLSID Registry Values ======================


      ==== Deleting Services ======================


      ==== Registry Fix Code ======================

      Windows Registry Editor Version 5.00

      [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command]
      @="C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
      @="C:\\Program Files\\Internet Explorer\\iexplore.exe"

      ==== Deleting Files \ Folders ======================

      C:\PROGRA~2\mbot_be_014010061 not found
      C:\Users\Luc\AppData\Roaming\istartsurf deleted
      C:\PROGRA~2\ParetoLogic deleted
      C:\PROGRA~2\COMMON~1\ParetoLogic deleted
      C:\Users\Luc\AppData\Roaming\ParetoLogic deleted
      C:\Users\Luc\AppData\Roaming\DriverCure deleted
      C:\PROGRA~3\ParetoLogic deleted
      C:\PROGRA~3\Package Cache deleted
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
      C:\Users\Luc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic deleted
      C:\Windows\tasks\ParetoLogic Registration3.job deleted
      C:\Windows\tasks\ParetoLogic Update Version3.job deleted
      C:\windows\SysNative\tasks\ParetoLogic Registration3 deleted
      C:\windows\SysNative\tasks\ParetoLogic Update Version3 deleted
      C:\Windows\tasks\PC Health Advisor Defrag.job deleted
      C:\Windows\tasks\PC Health Advisor.job deleted
      C:\windows\SysNative\tasks\PC Health Advisor deleted
      C:\windows\SysNative\tasks\PC Health Advisor Defrag deleted
      C:\Users\Luc\Desktop\ParetoLogic PC Health Advisor.lnk deleted

      ==== Firefox Extensions Registry ======================

      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
      "[email protected]"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [16/08/2015 07:48]

      ==== Chromium Look ======================

      Google Chrome Version: 44.0.2403.155

      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
      gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[16/08/2015 07:48]

      Google Slides - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
      Google Docs - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
      Google Drive - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
      YouTube - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
      Google Search - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
      Google Sheets - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
      Avast Online Security - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
      Chrome Web Store Payments - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      Gmail - Luc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

      ==== Chromium Startpages ======================

      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Preferences
      nch":{"container":"tab","web_url":"https://mail.google.com/mail/ca"},"urls":["*://mail.google.com/mail/ca"]},"current_locale":"nl","default_locale":"en","description":"Een snelle, doorzoekbare e-mailfunctie met minder spam.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7k XXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_0","preferenc es":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem ":false}}},"homepage":"http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB","homepage_changed":true,"homepage_is_newtabpage":false,"pinned_tabs":,"protection":{"macs":{"browser":{"show_home_button":"395773F6BDB59449E7CA0D618A11FE34A1CECA655B9FC0 5DCF587CB26FB36BDA"},"default_search_provider":{"keyword":"01D8D804ECF426FF46A9C58AF5A151809E37CD34F E6CC68E3B082CA87BB0E857","name":"908283C7DF3AFEA04C82E6DD5A820C9BEBF5516270B31FB49F657FB3D314C2E2"," search_url":"D00D451E76DE9A432CDD1E23F3FA700E718B39EE1DFCEDC15787B020E4A627E6"},"default_search_prov ider_data":{"template_url_data":"9DDE1872DBD1C77B4B01C5BE5624D586B4226FB3CA0666BE90D4BB23BF1672DD"}, "extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"65D6ADA59CDB71BEF4F03B4BA611FC196C8962 6810F684CBBC645BF015EE12B2","ahfgeienlihckogmohjhadlkjgocpleb":"061B8698425ECEC21990D3889433C420F612 4422C9639A51A6D3528E65FEE0BA","aohghmighlieiainnegkcijnfilokake":"5AF481B9FD7852DF47406ED53B9FD8FA08 4A02B067401B60C207D64647DED7D6","apdfllckaahabafndbhieahigkjlhalf":"91EB6AA2015CA322374CE81345820AD3 F76F7366BDFE87431BCEC3CD135DFEF4","bepbmhgboaologfdajaanbcjmnhjmhfn":"5C2623552FB0A3BC33814E35279DAC 7667C0EDBF49587D80420B7CCD509C50D1","blpcfgokakmgnkcojhhkbfbldkacnbeo":"8BA60345A294E89DDD104F3A6063 70D318641ADF5DCE71EA358B7D6D7C9332CC","coobgpohoikkiipiblmjeljniedjpjpf":"8FDE5F18CAC502334F07BA3283 F9EC885E71B1687E5EF07CCFD12AC1F6A14774","eemcgdkfndhakfknompkggombfjjjeno":"000AF01E9CE93788D73101AE C73889E9A6F3960F3081F9B69E9E2A9BA5D3E825","ennkphjdgehloodpbhlhldgbnhmacadg":"D1869C11A14720D57150BD D0A173701EE4652FBEB775868D98911882E20FE1EB","felcaaldnbdncclmgdcncolpebgiejap":"654FF265E8D689DCEDED EB6D495FE759B4BF9BC7B947F8017172203F446C9A2F","gfdkimpbcpahaombhbimeihdjnejgicl":"4F9EDDFB79BB7184DE 38D3804AEF2F7098C2CDAE3D97FB483963AA44C29CD1DE","gomekmidlodglbbmalcneegieacbdmki":"2E3001F90EECD7FE A4811E5654D2ADFA158A19D45D863F61EAC93783037C280B","kmendfapggjehodndflmmgagdbamhnfd":"7B9BF25145284D 52E8BA458D29C47DC9EF2A393A5AB457C8E1AA6A076E3F524E","mfehgcgbbipciphmccgaenjidiccnmng":"6FB68BFF76F1 0C7187CDA7A49583984D180A28D06FA585B8A685F144C7492ABD","mgndgikekgjfcpckkfioiadnlibdjbkf":"3494A9037D DC91592E22B2ACC5FD3BCA18C152D5A83F0379EA4C63D11D019FD4","mhjfbmdgcfjbbpaeojofohoefgiehjai":"14C9DF55 E968A2703560A24AB43310C5F50CDE75F6EE6D79E79864C0B78C6267","neajdppkdcdipfabeoofebfddakdcjhd":"50DBBD E1726CE8F6AC5D244B0E0FACD6D90C20811AE1C9B7651763CFCB43D761","nkeimhogjdpnpccoofpliimaahmaaome":"F568 EB673EEF6CC31883C749E6527975AD1D3529E049CBF57A9A56CD5866B711","nmmhkkegccagdldgiimedpiccmgmieda":"44 B3DAC265CF43308B7426DFFD6E07DC50E7ACB588A87CB8BC1837493FE534B8","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":" D7060D913835206200DB693AC0929B5FAC83A3818DF47150A8334439CCBF4C41","pjkljhegncpnkpknbcohdijeoejaedia" :"9D448AF24B36F7F1342FAE172A0E8ABB235C30EE74DE0DC56C26F1DF5072AB86"}},"google":{"services":{"account _id":"E60C5C7767185B44A09BA0F7A8A91E25EB4DF59F0B21B3D0815061C9FBD5C94F","last_username":"06440AE2EDA FB4AF87BE563D7FCCEAAD7756069F0F8D0E8E9A69887A2EA631BF","username":"400EA8BA92D6636D6218FD0B0336BB3C0 C836E1C7C34660CA9D53F702611484D"}},"homepage":"63FBA84F0790C0EB841925F48D888D10FF8CBD8FEC380629A7DAD 000AAFF871B","homepage_is_newtabpage":"E626F95793437A040C98EC7860C68C648D9016607221011EA7A488535DD13 D29","pinned_tabs":"47F0C72CFE2712571282F7C169C246B6FDBF3B2E12BFE9027B4637543CFE43A2","prefs":{"pref erence_reset_time":"E6A4A0493B92FA5B562CE24561CAE09827F0F54FBFCA012FA6AC7752FE694C6F"},"profile":{"r eset_prompt_memento":"11EBBC403075E63A7FD4803A01A126174911343F6D03CAD0F4F73B10F478F9BC"},"safebrowsi ng":{"incidents_sent":"FDFD9B911DEFAC01BA47588DA7F645EC28E4EDBB08C0768FA74BF173A3A0224A"},"search_pr ovider_overrides":"3F7A5B65A7C48734E00903BA1A96BD6973190576211EF77EBD66D8E8FCE95914","session":{"res tore_on_startup":"B9FCCFEC9FC702F3C006F88FECC2A15E316AF1D00E2D2FC17BCCA55A489F11F9","startup_urls":" 1541501D596F3017B89C327030A4FC4BABEDDCFD16274030A32A07BC8D06355F"},"software_reporter":{"prompt_reas on":"7640E48A388E5DE19CD59923DAD90C862458439BA346509684A7F845A65220CC","prompt_seed":"F76FD966586BDA 95A602A80270214ADDA64D4A7C473F9E9FD7392FCAB8A57ADB","prompt_version":"E0A5B23D5370A29DEAC0A1DB36217B 45D64901D782ABAAF0BB1F7E7DCF853258"},"sync":{"remaining_rollback_tries":"9CBA7DCBFAB075B3D69BDABA7FC 58AB9E6770545B95888EF9C97BE63A8D1D282"}},"super_mac":"A15B47460804C7DC50A8F2FDEF307E962DE52FEBB7040F 175ABE193E27EBE5BF"},"session":{"restore_on_startup":4,"startup_urls":["http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"]}}


      ==== Set IE to Default ======================

      Old Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Start Page"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      "Default_Page_URL"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
      "Default_Search_URL"="http://www.istartsurf.com/web/?type=ds&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB&q={searchTerms}"
      "Default_Page_URL"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      "Start Page"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      "Search Page"="http://www.istartsurf.com/web/?type=ds&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB&q={searchTerms}"
      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
      "Default_Search_URL"="http://www.istartsurf.com/web/?type=ds&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB&q={searchTerms}"
      "Default_Page_URL"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      "Start Page"="http://www.istartsurf.com/?type=hp&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB"
      "Search Page"="http://www.istartsurf.com/web/?type=ds&ts=1439726727&z=5652b3a9692500514a72e83g9z6c9t7m8o0qfqdc8w&from=pcs&uid=APPLEXHDDXST1000DM0 03_W4Y2NBJBXXXXW4Y2NBJB&q={searchTerms}"

      New Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
      "Start Page"="http://www.google.com"
      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
      "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
      "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
      "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
      "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

      ==== All HKCU SearchScopes ======================

      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
      "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
      {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
      {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
      {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={output Encoding}&sourceid=ie7&rlz=1I7RVEA_nlBE652"

      ==== Reset Google Chrome ======================

      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
      C:\Users\Luc\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
      C:\Users\Luc\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully
      C:\Users\Luc\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal was reset successfully

      ==== shortcuts on Users Desktops ======================

      C:\Users\Luc\Desktop\Dropbox.lnk - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home
      C:\Users\Luc\Desktop\MAC OSX.lnk -

      ==== shortcuts on All Users Desktop ======================

      C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe
      C:\Users\Public\Desktop\Acrobat Reader DC.lnk - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
      C:\Users\Public\Desktop\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\AvastUI.exe
      C:\Users\Public\Desktop\Free DWG Viewer.lnk - C:\Program Files (x86)\IGC\Free DWG Viewer\BravaFreeDWG.exe
      C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\Users\Public\Desktop\Winner Design.lnk - C:\Winner\BIN\WINNER.EXE
      C:\Users\Public\Desktop\Winner Export.LNK - C:\Winner\EXPORT
      C:\Users\Public\Desktop\Winner Info.lnk - C:\Winner\BIN\wininfo.exe

      ==== shortcuts in Users Start Menu ======================

      C:\Users\Luc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Luc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk - C:\Users\Luc\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe

      ==== shortcuts in All Users Start Menu ======================

      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1043-7B44-AC0F074E4100}\SC_Reader.ico
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk - C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk\Autodesk DWF Viewer.lnk - C:\Program Files (x86)\Autodesk\Autodesk DWF Viewer\DWFViewer.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software\Avast Free Antivirus.lnk - C:\Program Files\AVAST Software\Avast\AvastUI.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CompuSoft Winner\Winner Design.lnk - C:\Winner\BIN\WINNER.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CompuSoft Winner\Winner Export.LNK - C:\Winner\EXPORT
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CompuSoft Winner\Winner Info.lnk - C:\Winner\BIN\wininfo.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free DWG Viewer\Free DWG Viewer Help.lnk - C:\Program Files (x86)\IGC\Free DWG Viewer\BravaActiveX.DWG_ENU.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free DWG Viewer\Free DWG Viewer.lnk - C:\Program Files (x86)\IGC\Free DWG Viewer\BravaFreeDWG.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Verwijder Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSACCESS.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\EXCEL.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Designer 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\INFOPATH.EXE /design
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Filler 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\INFOPATH.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive voor Bedrijven 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\GROOVE.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\ONENOTE.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\OUTLOOK.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\POWERPNT.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSPUB.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Skype for Business 2015.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\lync.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Verzenden naar OneNote 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\ONENOTEM.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\WINWORD.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Database Compare 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\client\AppVLP.exe "C:\Program Files\Microsoft Office 15\Root\Office15\DCF\DATABASECOMPARE.EXE"
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Office 2013 Upload Center.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSOUC.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Skype voor Bedrijven opnamebeheer.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\OcPubMgr.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Spreadsheet Compare 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\client\AppVLP.exe "C:\Program Files\Microsoft Office 15\Root\Office15\DCF\SPREADSHEETCOMPARE.EXE"
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Taalvoorkeuren voor Office 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\SETLANG.EXE
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Telemetriedashboard voor Office 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\msotd.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Hulpprogramma's van Office 2013\Telemetrielogboek voor Office 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\msoev.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe /show

      ==== shortcuts in Quick Launch ======================

      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE /recycle
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Excel 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\EXCEL.EXE
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&t...JBXXXXW4Y2NBJB
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Outlook 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\OUTLOOK.EXE
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Winner Design.lnk - C:\Winner\BIN\WINNER.EXE
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Word 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\WINWORD.EXE
      C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

      ==== shortcuts After Repair ======================

      C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\Luc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      C:\Users\Luc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe

      ==== Deleting Registry Keys ======================

      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall deleted successfully
      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3CBF3EBB-235D-4c29-A68B-2BB1F428586E} deleted successfully

      ==== Empty IE Cache ======================

      C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Users\Luc\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Users\Luc\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
      C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
      C:\Users\Luc\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
      C:\Users\Luc\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
      C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
      C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

      ==== Empty FireFox Cache ======================

      No FireFox Profiles found

      ==== Empty Chrome Cache ======================

      C:\Users\Luc\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
      C:\Users\Luc\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

      ==== Empty All Flash Cache ======================

      Flash Cache Emptied Successfully

      ==== Empty All Java Cache ======================

      No Java Cache Found

      ==== C:\zoek_backup content ======================

      C:\zoek_backup (files=338 folders=46 22634615 bytes)

      ==== Empty Temp Folders ======================

      C:\Users\Default\AppData\Local\Temp emptied successfully
      C:\Users\Default User\AppData\Local\Temp emptied successfully
      C:\Users\Luc\AppData\Local\Temp will be emptied at reboot
      C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
      C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
      C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
      C:\Windows\Temp will be emptied at reboot

      ==== After Reboot ======================

      ==== Empty Temp Folders ======================

      C:\Windows\Temp successfully emptied
      C:\Users\Luc\AppData\Local\Temp successfully emptied

      ==== Empty Recycle Bin ======================

      C:\$RECYCLE.BIN successfully emptied

      ==== EOF on di 18/08/2015 at 8:13:15,43 ======================

      Comment


      • #4
        Kijk het even een paar dagen aan.

        Windows 10 opstarten in Veilige Modus

        Comment

        Sorry, you are not authorized to view this page
        Working...
        X