Mededeling

Collapse
No announcement yet.

Pop up

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Pop up

    Sinds vrijdag last van pop ups .. heb al http://www.nucia.eu/forum/showthread.php?t=32835
    deze thread gevolgd en het lijkt te zijn opgelost .. ik heb nu alleen nog combofix en een catchme.zip op mijn bureaublad met de bestanden core.cache.dsk en core.sys .. rvaxo heb ik geistalled en weer gedeinstalled en deljob niks mee gedaan .. ben ik aan het prutsen geweest of gaat het de goede kant op ?


    gfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 17:36, on 2007-12-30
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Norman\Npm\bin\ELOGSVC.EXE
    C:\Norman\Npm\Bin\Zanda.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
    c:\APPS\HIDSERVICE\HIDSERVICE.exe
    C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
    C:\WINDOWS\system32\UAService7.exe
    C:\Norman\Npm\bin\NJEEVES.EXE
    C:\Norman\Nvc\BIN\NVCSCHED.EXE
    C:\Norman\Nvc\bin\nvcoas.exe
    C:\WINDOWS\System32\alg.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\apps\ABoard\ABoard.exe
    C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
    C:\Norman\Npm\bin\ZLH.EXE
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\apps\ABoard\AOSD.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Norman\Nvc\BIN\NIP.EXE
    C:\Norman\Nvc\bin\cclaw.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Mijn documenten\Gregory\setups\HiJackThis_v2\HiJackThis_v2.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: (no name) - {10CA15EA-C0A5-7CAF-B9E9-B8B2A87EFE11} - (no file)
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
    O4 - HKLM\..\Run: [PHIME2002ASync] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /SYNC
    O4 - HKLM\..\Run: [PHIME2002A] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /IMEName
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
    O4 - HKLM\..\Run: [Norman ZANDA] C:\Norman\Npm\bin\ZLH.EXE /LOAD /SPLASH
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
    O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
    O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\nl.htm
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
    O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
    O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://qtinstall.info.apple.com/qtactivex/QTPlugin.cab
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
    O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - http://a516.g.akamai.net/f/516/25175/7d/runaware.download.akamai.com/25175/citrix/wficat-no-eula.cab
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
    O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
    O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
    O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by106fd.bay106.hotmail.msn.com/resources/MsnPUpld.cab
    O16 - DPF: {556EEC63-31E2-47C3-BF29-DFF799D2FE04} (Remote Access ActiveX Client) - https://secure.logmein.com/activex/RACtrl.cab
    O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab2.cab
    O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://exent.planet.nl/AoDSite/classes/ExentCtl.ocx
    O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://cache.hyves-static.net/statics/Aurigma/ImageUploader4.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {91F52A42-C10D-49A7-B941-882C657C604F} (Installation Helper Object) - http://kitcentral.wanadoo.nl/download/install/win32/nl/instwact/instwact.dll
    O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://cache.hyves.nl/statics/Aurigma/ImageUploader.cab
    O16 - DPF: {AED98630-0251-4E83-917D-43A23D66D507} (Download Helper Class) - http://activex.microgaming.com/dlhelper/version7/dlhelper.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
    O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab
    O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
    O17 - HKLM\System\CCS\Services\Tcpip\..\{4B270F9B-E23D-429E-AA8D-FFBB0BF5D613}: NameServer = 192.168.1.1
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Adobe Version Cue CS2 - Adobe Systems Incorporated - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
    O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
    O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
    O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
    O23 - Service: Norman eLogger service 6 (eLoggerSvc6) - Norman ASA - C:\Norman\Npm\bin\ELOGSVC.EXE
    O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: Norman NJeeves - Unknown owner - C:\Norman\Npm\bin\NJEEVES.EXE
    O23 - Service: Norman ZANDA - Norman ASA - C:\Norman\Npm\Bin\Zanda.exe
    O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
    O23 - Service: Norman Virus Control on-access component (nvcoas) - Norman ASA - C:\Norman\Nvc\bin\nvcoas.exe
    O23 - Service: Norman Virus Control Scheduler (NVCScheduler) - Norman ASA - C:\Norman\Nvc\BIN\NVCSCHED.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Routing Service (Routing) - Unknown owner - C:\WINDOWS\system32\routing.exe (file missing)
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
    O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
    O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
    O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe

    --
    End of file - 14539 bytes

  • #2
    Start HijackThis nog een keer, kies voor "Do a system scan only" en plaats alleen een vinkje voor de volgende regels:
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    O3 - Toolbar: (no name) - {10CA15EA-C0A5-7CAF-B9E9-B8B2A87EFE11} - (no file)
    O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)

    Sluit alle open vensters(behalve HijackThis), klik daarna op "Fix checked" en sluit HijackThis af.

    Je Java software is verouderd. oudere versies hebben lekken die malware de kans geeft om zich te installeren op je systeem.
    Doe eerst deze stappen om Java te de-installeren en de nieuwere versie te installeren:
    • Download Java Runtime Environment (JRE) 6.3 en bewaar het naar je Bureaublad.
    • Sluit alle programma's die eventueel open zijn - Zeker je web browser!
    • Ga dan naar Start > Configuratiescherm > Software en verwijder alle oudere versies van Java uit de Softwarelijst.
    • Vink alles aan met Java Runtime Environment (JRE of J2SE) in de naam.
    • Klik dan op Verwijderen of op de Wijzig/Verwijder knop.
    • Herhaal dit tot alle oudere versies verdwenen zijn.
    • Na het verwijderen van alle oudere versies, herstart je pc.
    • Dubbelklik vervolgens op jre-6u3-windows-i586-p.exe op je Bureaublad om de nieuwste versie van Java te installeren.


    Download Combofix naar je Bureaublad.
    Dubbelklik op Combofix.exe
    Kies voor "Continue" door 1 te typen gevolgd door ENTER.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.
    Wanneer de fix voltooid is en na herstart, zal de log combofix.txt openen.
    Plaats deze log in je volgende post.

    NOTA: Indien je virusscanner reageert met een melding van een scriptuitvoering, mag je dit negeren.

    Comment


    • #3
      combifix wel al uitgevoerd .. me pc liep vast ( heb niet in dat venster geklikt oid. ) .. maar heb nu wel een catchme.zip alleen geen log file of staat die log file niet op me bureaublad..??

      Comment


      • #4
        Normaal gesproken staat deze hier: C:\combofix.txt

        Comment


        • #5
          nee staat die niet. heb over me hele pc laten zoeken dmv start-> Zoeken en dan alle bestanden en mappen .. en op de naam combifix ook geen zoek resultaten behalve dat programma op me bureaublad..

          maar ik heb wel al een catchme.zip met de volgende bestanden er in core.cache.dsk en core.sys .. kan je daar wat mee ..?? of moet ik combifix opnieuw doen ..?/

          Comment


          • #6
            Verwijder dat core.cache, core.sys en Catchme maar en doe dan dit:

            Ga naar Start - Uitvoeren en geef hier het volgende in:
            Combofix /U
            Druk daarna op OK.
            Let op: Er moet een spatie tussen Combofix en /U zitten.

            Dit zal Combofix deïnstalleren.

            Download Combofix opnieuw en probeer opnieuw een logje te maken.

            Comment


            • #7
              2e keer is het gelukt hier me log




              ComboFix 07-12-30.3 - Jur Ray Greg 2007-12-30 19:26:35.2 - NTFSx86
              Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1043.18.484 [GMT 1:00]
              Gestart vanuit: D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Bureaublad\ComboFix.exe
              .

              (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
              .

              C:\WINDOWS\system32\drivers\core.cache.dsk

              .
              ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

              .
              -------\LEGACY_CORE
              -------\core


              (((((((((((((((((((( Bestanden Gemaakt van 2007-11-28 to 2007-12-30 ))))))))))))))))))))))))))))))
              .

              2007-12-30 19:17 . 2007-09-24 23:31 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
              2007-12-30 19:16 . 2007-12-30 19:16 <DIR> d-------- C:\Program Files\Common Files\Java
              2007-12-30 13:17 . 2007-12-30 13:17 <DIR> d-------- C:\Program Files\Windows Defender
              2007-12-29 00:01 . 2007-12-29 00:01 181 --a------ C:\WINDOWS\wininit.ini
              2007-12-28 13:59 . 2007-12-29 19:34 <DIR> d-------- C:\Program Files\SpywareBlaster
              2007-12-28 13:57 . 2007-12-28 13:57 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\Prevx
              2007-12-28 13:43 . 2007-12-30 16:56 <DIR> d-------- C:\Program Files\Hitman Pro
              2007-12-28 11:36 . 2007-12-28 11:36 <DIR> d-------- C:\Program Files\iSofter
              2007-12-28 11:36 . 2007-02-06 15:02 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
              2007-12-28 11:36 . 2007-02-06 15:02 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
              2007-12-28 11:36 . 2007-02-06 15:06 716,800 --a------ C:\WINDOWS\system32\lameACM.acm
              2007-12-28 11:36 . 2007-02-06 15:02 593,920 --a------ C:\WINDOWS\system32\dpuGUI11.dll
              2007-12-28 11:36 . 2007-02-06 15:02 294,912 --a------ C:\WINDOWS\system32\dpu11.dll
              2007-12-28 11:36 . 2007-02-06 15:02 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
              2007-12-28 11:36 . 2007-02-06 15:02 200,704 --a------ C:\WINDOWS\system32\dtu100.dll
              2007-12-28 11:36 . 2007-02-06 15:02 86,016 --a------ C:\WINDOWS\system32\dpl100.dll
              2007-12-28 11:36 . 2007-02-06 15:02 57,344 --a------ C:\WINDOWS\system32\dpv11.dll
              2007-12-28 11:36 . 2007-02-06 15:06 414 --a------ C:\WINDOWS\system32\lame_acm.xml
              2007-12-28 11:06 . 2005-04-18 11:21 2,564,096 --a------ C:\WINDOWS\system32\NCTAudioCompress3.dll
              2007-12-28 11:06 . 2005-04-14 19:07 2,260,992 --a------ C:\WINDOWS\system32\NCTVideoCompress.dll
              2007-12-28 11:06 . 2005-04-15 14:25 1,986,560 --a------ C:\WINDOWS\system32\NCTAudioFile2.dll
              2007-12-28 11:06 . 2005-04-13 11:32 1,810,432 --a------ C:\WINDOWS\system32\NCTAudioCompress2.dll
              2007-12-28 11:06 . 2005-04-21 18:23 1,245,184 --a------ C:\WINDOWS\system32\NCTRMFile.dll
              2007-12-28 11:06 . 2005-04-14 19:05 294,912 --a------ C:\WINDOWS\system32\NCTAVIFile.dll
              2007-12-28 11:06 . 2003-05-22 00:50 261,632 --a------ C:\WINDOWS\system32\mcdvd_32.dll
              2007-12-28 11:06 . 2003-08-07 14:01 126,464 --a------ C:\WINDOWS\system32\lame_enc.dll
              2007-12-28 11:06 . 2005-03-03 17:18 106,496 --a------ C:\WINDOWS\system32\NCTVideoCoreU.dll
              2007-12-27 19:33 . 2007-12-27 19:33 253,440 --a------ C:\WINDOWS\system32\ndt2.sys
              2007-12-27 19:33 . 2007-12-27 19:33 45,056 --a------ C:\WINDOWS\system32\Indt2.sys
              2007-12-21 22:29 . 2007-12-25 14:25 <DIR> d-------- C:\Program Files\TuneUp Utilities 2008
              2007-12-21 22:29 . 2007-12-21 22:29 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
              2007-12-21 22:29 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
              2007-12-20 08:33 . 2007-12-20 08:33 <DIR> d-------- D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\AdobeUM
              2007-12-12 16:43 . 2007-12-28 10:42 54,156 --ah----- C:\WINDOWS\QTFont.qfn
              2007-12-12 16:43 . 2007-12-12 16:43 1,409 --a------ C:\WINDOWS\QTFont.for
              2007-12-06 22:36 . 2007-12-06 22:36 244 --ah----- C:\sqmnoopt01.sqm
              2007-12-06 22:36 . 2007-12-06 22:36 232 --ah----- C:\sqmdata01.sqm
              2007-12-05 22:05 . 2007-12-06 15:01 <DIR> d-------- C:\Program Files\Minesweeper Clone
              2007-12-05 22:05 . 1998-06-24 00:00 244,024 --a------ C:\WINDOWS\system32\MSFLXGRD.OCX
              2007-12-05 22:05 . 1998-06-24 00:00 108,336 --a------ C:\WINDOWS\system32\MSWINSCK.OCX
              2007-12-05 22:05 . 1998-06-24 00:00 82,744 --a------ C:\WINDOWS\system32\picclp32.ocx
              2007-11-27 11:06 . 2007-11-27 11:06 <DIR> d-------- C:\WINDOWS\system32\3256
              2007-11-25 18:55 . 2007-12-28 10:45 <DIR> d-------- C:\Program Files\Acala Video mp3 Ripper
              2007-11-24 22:05 . 2007-11-24 22:05 <DIR> d-------- C:\Program Files\Manitools
              2007-11-24 21:15 . 2007-11-24 21:15 <DIR> d-------- C:\Program Files\MedianSoft
              2007-11-15 09:05 . 2006-03-12 01:09 <DIR> d--h----- D:\Documents and Settings\Administrator\Sjablonen
              2007-11-15 09:05 . 2006-03-12 01:09 <DIR> dr-h----- D:\Documents and Settings\Administrator\Onlangs geopend
              2007-11-15 09:05 . 2004-09-11 01:36 <DIR> d--h----- D:\Documents and Settings\Administrator\Netwerkprinteromgeving
              2007-11-15 09:05 . 2006-03-11 16:40 <DIR> dr------- D:\Documents and Settings\Administrator\Mijn documenten
              2007-11-15 09:05 . 2006-03-12 01:09 <DIR> dr------- D:\Documents and Settings\Administrator\Menu Start
              2007-11-15 09:05 . 2006-03-12 01:09 <DIR> dr------- D:\Documents and Settings\Administrator\Favorieten
              2007-11-15 09:05 . 2006-03-11 16:40 <DIR> dr------- D:\Documents and Settings\Administrator\Bureaublad
              2007-11-15 09:05 . 2006-03-11 16:31 <DIR> d-------- D:\Documents and Settings\Administrator\Application Data\Symantec
              2007-11-11 19:50 . 2007-11-11 20:24 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\WLInstaller
              2007-11-11 19:50 . 2007-11-11 19:51 <DIR> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller
              2007-11-10 14:56 . 2007-11-10 14:56 <DIR> d-------- C:\spoolerlogs
              2007-11-05 12:25 . 2007-11-05 12:25 <DIR> d-------- C:\Program Files\GIGABYTE
              2007-11-05 12:08 . 2007-11-05 12:08 <DIR> d-------- C:\Program Files\Lavalys
              2007-11-04 17:23 . 2007-11-04 17:23 23,600 --a------ C:\WINDOWS\system32\drivers\TVICHW32.SYS
              2007-11-02 13:39 . 2007-11-02 13:39 <DIR> d-------- D:\Documents and Settings\Frank en Irma.vanAdrichem\Application Data\Apple Computer

              .
              ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
              .
              2007-12-30 18:17 --------- d-----w C:\Program Files\Java
              2007-12-30 17:16 --------- d-----w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\LimeWire
              2007-12-30 15:55 --------- d-----w D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
              2007-12-28 11:45 --------- d-----w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\Vso
              2007-12-28 10:58 --------- d-----w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\Azureus
              2007-12-28 10:25 --------- d-----w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\dvdcss
              2007-12-23 19:18 --------- d-----w C:\Program Files\Azureus
              2007-12-22 19:58 --------- d-----w C:\Program Files\Messenger Plus! Live
              2007-12-21 21:29 --------- d-----w D:\Documents and Settings\All Users\Application Data\TuneUp Software
              2007-12-21 21:28 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
              2007-12-19 19:07 --------- d-----w C:\Program Files\nipo.n
              2007-12-18 21:22 --------- d-----w D:\Documents and Settings\Frank en Irma.vanAdrichem\Application Data\LimeWire
              2007-12-13 12:01 --------- d-----w D:\Documents and Settings\All Users\Application Data\Microsoft Help
              2007-12-04 11:05 --------- d-----w C:\Program Files\Omerta Script
              2007-11-25 14:18 --------- d-----w C:\Program Files\FlashFXP
              2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
              2007-11-13 09:38 --------- d-----w C:\Program Files\Acala DivX DVD Player Assist
              2007-11-13 09:36 --------- d-----w C:\Program Files\ElcomSoft
              2007-11-11 18:53 --------- d-----w C:\Program Files\Windows Live
              2007-11-11 11:45 --------- d-----w C:\Program Files\Lexmark X1100 Series
              2007-11-05 11:25 --------- d--h--w C:\Program Files\InstallShield Installation Information
              2007-10-30 11:42 --------- d-----w C:\Program Files\Pro Imaging Powertoys
              2007-10-30 11:42 --------- d-----w C:\Program Files\Common Files\Nikon
              2007-10-29 08:33 --------- d-----w C:\Program Files\Advanced System Optimizer
              2007-06-07 18:20 47,360 ----a-w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\pcouffin.sys
              2006-10-06 12:38 81,920 ----a-w D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Application Data\ezpinst.exe
              .

              ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
              .
              .
              REGEDIT4
              *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

              [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
              "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 14:00 15360]
              "NVIDIA nTune"="C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" [2007-07-03 11:32 81920]
              "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]

              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
              "AzMixerSel"="C:\Program Files\Realtek\InstallShield\AzMixerSel.exe" [2005-06-08 16:55 57344]
              "SoundMan"="SOUNDMAN.EXE" [2005-06-21 15:09 90112 C:\WINDOWS\SOUNDMAN.EXE]
              "ACTIVBOARD"="c:\apps\ABoard\ABoard.exe" [2003-05-02 10:31 24576]
              "PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-04 14:00 455168]
              "PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-04 14:00 455168]
              "Acrobat Assistant 7.0"="C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe" [2006-01-12 19:52 483328]
              "Norman ZANDA"="C:\Norman\Npm\bin\ZLH.exe" [2007-08-09 13:40 183352]
              "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 07:00 33648]
              "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
              "NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
              "TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-03-11 16:35 180269]
              "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-06-29 05:24 286720]
              "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2006-11-03 19:20 866584]
              "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]

              [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
              "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 14:00 15360]

              D:\Documents and Settings\Frank en Irma.vanAdrichem\Menu Start\Programma's\Opstarten\
              Microsoft Works Agenda-herinneringen.lnk - C:\Program Files\MSWorks\Agenda\WKCALREM.EXE [1998-08-27]

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Adobe Acrobat Speed Launcher.lnk]
              path=D:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\Adobe Acrobat Speed Launcher.lnk
              backup=C:\WINDOWS\pss\Adobe Acrobat Speed Launcher.lnkCommon Startup

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Adobe Gamma.lnk]
              path=D:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\Adobe Gamma.lnk
              backup=C:\WINDOWS\pss\Adobe Gamma.lnkCommon Startup

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Microsoft Office.lnk]
              path=D:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\Microsoft Office.lnk
              backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
              2006-01-12 19:52 483328 --a------ C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Version Cue CS2]
              2005-04-04 17:58 856064 --a------ C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcWzrd]
              ALCWZRD.EXE

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
              C:\Program Files\QuickTime\qttask.exe -atboottime

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
              C:\Program Files\Common Files\Real\Update_OB\realsched.exe -osboot

              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector v2]
              2004-11-26 11:43 90112 --a------ C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe

              [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
              "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe
              "Yodm3D"=D:\Documents and Settings\Jur Ray Greg.VANADRICHEM\Mijn documenten\Gregory\yodm3D\Yodm3D.exe
              "Startup Manager"="C:\Program Files\Advanced System Optimizer\startUp manager.exe"

              [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
              "Adobe Version Cue CS2"="C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
              "PCMService"="c:\Apps\Powercinema\PCMService.exe"
              "High Definition Audio Property Page Shortcut"=HDAShCut.exe
              "SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
              "Lexmark X1100 Series"="C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe"
              "NvMediaCenter"=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
              "PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE
              "TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
              "nwiz"=nwiz.exe /install

              R2 Ndiskio;Ndiskio;C:\Norman\Nse\bin\NDISKIO.SYS [2007-01-02 09:55]
              R2 UxTuneUp;TuneUp Thema-uitbreiding;C:\WINDOWS\System32\svchost.exe [2004-08-04 14:00]
              R3 NvcMFlt;NvcMFlt;C:\WINDOWS\system32\DRIVERS\nvcw32mf.sys [2007-07-09 09:50]
              R3 nvcoas;Norman Virus Control on-access component;C:\Norman\Nvc\bin\nvcoas.exe [2007-07-12 10:38]
              R3 NVCScheduler;Norman Virus Control Scheduler;C:\Norman\Nvc\BIN\NVCSCHED.EXE [2007-05-23 12:23]
              S2 Routing;Routing Service;C:\WINDOWS\system32\routing.exe
              S3 nvcfsr;nvcfsr;C:\Norman\Nvc\bin\nvcfsr.sys [2007-01-09 14:25]
              S3 nvcoafl51;nvcoafl51;C:\Norman\Nvc\bin\nvcoafl51.sys [2007-01-09 14:25]
              S3 nvcoaft51;nvcoaft51;C:\Norman\Nvc\bin\nvcoaft51.sys [2007-01-09 14:25]
              S3 nvcoarc51;nvcoarc51;C:\Norman\Nvc\bin\nvcoarc51.sys [2007-01-09 14:25]
              S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2007-12-21 22:29]

              HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
              UxTuneUp

              .
              Inhoud van de 'Gedeelde Taken' map
              "2007-12-21 21:29:44 C:\WINDOWS\Tasks\1-Click Maintenance.job"
              - C:\Program Files\TuneUp Utilities 2008\OneClick.exe
              "2007-12-30 18:33:35 C:\WINDOWS\Tasks\MP Scheduled Scan.job"
              - C:\Program Files\Windows Defender\MpCmdRun.exe
              .
              **************************************************************************

              catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
              Rootkit scan 2007-12-30 19:31:39
              Windows 5.1.2600 Service Pack 2 NTFS

              scannen van verborgen processen ...

              scannen van verborgen autostart items ...

              scannen van verborgen bestanden ...

              Scan succesvol afgerond
              verborgen bestanden: 0

              **************************************************************************
              .
              Voltooingstijd: 2007-12-30 19:34:28 - machine was rebooted
              C:\qoobox\ComboFix-quarantined-files.txt 2007-12-30 18:34:20
              .
              2007-12-29 19:16:37 --- E O F ---

              Comment


              • #8
                Ga naar Start - Uitvoeren en geef hier het volgende in:
                sc delete Routing
                Druk op OK.

                Verwijder de volgende map:
                C:\Qoobox

                Maak dan je prullenbak leeg.

                Download ATF cleaner (mirror)(gemaakt door Atribune)

                Belangrijk: Sluit al je browservensters(IE en/of Firefox en/of Opera) om de tool goed te kunnen laten werken.

                Dubbelklik op ATF cleaner om het programma te starten.
                Op het tabblad "Main", plaats je een vinkje bij Select All.
                Klik op de knop Empty Selected.

                Het volgende doen als je ook FireFox als browser hebt:
                Klik op tabblad "Firefox", plaats een vinkje bij Select All.
                Wil je de door Firefox opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                (dit haalt het vinkje weer weg bij "Firefox saved passwords")
                Klik op de knop Empty Selected.

                Het volgende doen als je ook Opera als browser hebt:
                Klik op tabblad "Opera", plaats een vinkje bij Select All.
                Wil je de door Opera opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
                Klik op de knop Empty Selected.
                Ga naar het tabblad "Main" en klik op de knop Exit om het programma af te sluiten.

                Ga naar Start - Uitvoeren en geef hier het volgende in:
                Combofix /U
                Druk daarna op OK.
                Let op: Er moet een spatie tussen Combofix en /U zitten.

                Dit zal Combofix deïnstalleren.

                Schakel Systeemherstel uit. Herstart de computer. Schakel Systeemherstel weer in.
                Kijk hier hoe je je systeemherstel moet uitschakelen.
                Hiermee verwijder je eventuele restanten van de infecties uit je systeemherstel.

                Post als laatste nog een nieuw logje van Hijackthis ter controle

                Comment


                • #9
                  idd nergens meer last van .. bedankt wat my op dit forum is opgevallen is dat myn hijack log ongeveer 2 × zo groot is als diegene die ik gezien heb * heb er ee nstuk of 5 willekeurig gekeken * .. is dat "slecht"

                  Comment


                  • #10
                    Graag gedaan hoor

                    De lengte zegt niet zo veel, heeft te maken met de software die geïnstalleerd is.
                    Bij jouw staan ook nogal wat O16-regels die met activeX te maken hebben, maar ook dit is geen probleem

                    Comment

                    Sorry, you are not authorized to view this page
                    Working...
                    X