Mededeling

Collapse
No announcement yet.

Mijn log

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Mijn log

    Heb de laatste tijd weer regelmatig problemen met mijn compie.
    Denk er steeds vaker aan om een complete reinstallatie te doen, maar dit is helaas nog niet mogelijk.
    Mijn probleem is dat ik de laatste tijd de indruk krijg dat ik .exe bestanden kwijt raak, daar ik pas een aantal verschillende antivirus proggies wilde installeren, maar dit niet lukte omdat er bestanden verdwenen waren.
    Het is inmiddels wel gelukt na het gebruik van hitmanpro en een tweetal register progs, nml regvac en registry mechanic en draai nu AVG.
    Maar het probleem is dat ik mijn compie nu niet echt vertrouw.
    Hieronder mijn hijack log, graag een kleine blik er op indien mogelijk.

    Alvast bedankt.
    Groeten Ron.

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 0:24:10, on 5-1-2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\CTHELPER.EXE
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    C:\Program Files\Grisoft\AVG7\avgcc.exe
    C:\Program Files\Nero\Nero 7\Core\nero.exe
    C:\Program Files\WinRAR\WinRAR.exe
    C:\Program Files\WinRAR\WinRAR.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.nl/0SENLNL/SAOS01?FORM=TOOLBR
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] "rundll32.exe" bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')
    O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Lokale service')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: NewsLeecher.lnk = D:\Program Files\NewsLeecher\newsleecher.exe
    O4 - Startup: RegVac.lnk = C:\Program Files\RegVac Registry Cleaner\regvac.exe
    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: Converteren naar Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Geselecteerde koppelingen converteren naar Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Selectie converteren naar Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - http://h30155.www3.hp.com/ediags/dd/install/HPInstallMgr_v01_5.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://mp3presidente.spaces.live.com//PhotoUpload/MsnPUpld.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1167663835074
    O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
    O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mijnalbum.nl/skin/v2/system/upload/ImageUploader4.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5198/mcfscan.cab
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AVG Anti-Spyware Guard - Unknown owner - (no file)
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

    --
    End of file - 7231 bytes
    Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

  • #2
    Ik krijg een mailtje binnen om te reageren.
    Maar zou iemand daar nog naar mijn log willen kijken en een oordeel geven aub?
    Dank je wel.
    Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

    Comment


    • #3
      Het hijackthis logje dat je gepost hebt is schoon

      Heb je op dit moment nog problemen?

      Comment


      • #4
        Alleen af en toe een melding van AVG, dat er een bedreiging is.
        En dat mijn configuratiescherm/software een mess is, maar daar heb ik een ander proggie voor om evt software te verwijderen.
        Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

        Comment


        • #5
          Welke bedreiging ziet AVG dan en waar wordt deze gevonden?

          Comment


          • #6
            Heb er een img van gemaakt, is wat duidelijker denk ik.



            Weet niet of ik die zomaar kan verwijderen.
            Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

            Comment


            • #7
              Klik op deze link: http://www.zonavirus.com/datos/desca...5/elibagla.asp
              Helemaal onderaan de pagina klik je op Descargar ELIBAGLA 10.84 om elibagla te downloaden. Sla het bestand op naar je bureaublad.
              Dubbelklik EliBaglA.exe om het progje te starten.
              Naast Unidad moet je het volgende zien staan: C:\ , mocht het een andere letter zijn dan verander je dit naar de C.
              Helemaal onderaan zorg je ervoor dat Eliminar Ficheros Automaticamente aangevinkt staat.
              Klik nu op de knop "Explorar" om de tool te laten scannen en indien nodig de entries te laten fixen.

              Comment


              • #8
                Is gedaan, kon het alleen niet volgen vanwege de spaanse taal.
                Hoop dat ik nu meer duidelijkheid heb.
                Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

                Comment


                • #9
                  Download Combofix (mirror) naar je Bureaublad.
                  Dubbelklik op Combofix.exe
                  Kies voor "Continue" door 1 te typen gevolgd door ENTER.
                  Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.
                  Wanneer de fix voltooid is en na herstart, zal de log combofix.txt openen.
                  Plaats deze log in je volgende post.

                  NOTA: Indien je virusscanner reageert met een melding van een scriptuitvoering, mag je dit negeren.

                  Comment


                  • #10
                    Hierbij de log van Combofix


                    ComboFix 08-01-16.4 - mp3president 2008-01-16 11:17:07.2 - NTFSx86
                    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1043.18.1182 [GMT 1:00]
                    Gestart vanuit: C:\Documents and Settings\mp3president\Bureaublad\ComboFix.exe
                    * Nieuw herstelpunt werd aangemaakt
                    .

                    (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
                    .

                    C:\WINDOWS\system32\vbsuct32.dll
                    C:\WINDOWS\system32\wnstssv.exe

                    .
                    (((((((((((((((((((( Bestanden Gemaakt van 2007-12-16 to 2008-01-16 ))))))))))))))))))))))))))))))
                    .

                    2008-01-16 11:16 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
                    2008-01-15 12:27 . 2008-01-15 12:27 <DIR> d-------- C:\WINDOWS\LastGood
                    2008-01-13 11:26 . 2008-01-13 11:26 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\AltrixSoft
                    2008-01-10 21:30 . 2008-01-16 11:13 <DIR> d-------- C:\Program Files\Chameleon Clock
                    2008-01-08 21:15 . 2008-01-08 21:15 54,156 --ah----- C:\WINDOWS\QTFont.qfn
                    2008-01-08 21:15 . 2008-01-08 21:15 1,409 --a------ C:\WINDOWS\QTFont.for
                    2008-01-07 16:57 . 2008-01-07 16:57 <DIR> d-------- C:\Program Files\NCH Software
                    2008-01-07 16:57 . 2008-01-07 16:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\NCH Software
                    2008-01-05 00:23 . 2008-01-05 00:23 <DIR> d-------- C:\Program Files\Trend Micro
                    2008-01-03 21:08 . 2008-01-16 08:00 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\AVG7
                    2008-01-03 21:08 . 2008-01-03 21:08 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\AVG7
                    2008-01-03 21:07 . 2008-01-03 22:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg7
                    2008-01-03 20:13 . 2008-01-03 20:13 <DIR> d-------- C:\Program Files\CCleaner
                    2008-01-03 15:21 . 2008-01-03 19:20 <DIR> d-------- C:\Documents and Settings\mp3president\DoctorWeb
                    2008-01-03 14:24 . 2008-01-03 14:24 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
                    2008-01-03 14:08 . 2008-01-03 14:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee
                    2008-01-03 13:43 . 2004-08-04 00:58 2,185,344 --a------ C:\WINDOWS\system32\ntoskrnl.exe
                    2008-01-03 13:43 . 2004-08-04 00:58 2,185,344 --a--c--- C:\WINDOWS\system32\dllcache\ntoskrnl.exe
                    2008-01-03 13:23 . 2008-01-03 13:23 2,550 --a------ C:\WINDOWS\system32\Uninstall.ico
                    2008-01-03 13:23 . 2008-01-03 13:23 1,406 --a------ C:\WINDOWS\system32\Help.ico
                    2008-01-03 13:15 . 2008-01-03 13:15 <DIR> d-------- C:\WINDOWS\McAfee.com
                    2008-01-03 11:47 . 2008-01-03 22:46 <DIR> d-------- C:\WINDOWS\system32\drivers\down
                    2008-01-02 15:44 . 1997-01-18 10:40 299,520 --a------ C:\WINDOWS\uninst.exe
                    2008-01-02 11:31 . 2008-01-03 21:07 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
                    2008-01-02 11:31 . 2007-05-30 13:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
                    2008-01-01 11:13 . 2008-01-01 11:30 <DIR> d-------- C:\Documents and Settings\mp3president\Downloads
                    2007-12-31 22:50 . 2008-01-16 08:22 69 --a------ C:\WINDOWS\NeroDigital.ini
                    2007-12-31 22:09 . 2007-12-31 22:09 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\LightScribe
                    2007-12-31 22:01 . 2008-01-01 16:20 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\Ahead
                    2007-12-31 21:59 . 2007-12-31 21:59 <DIR> d-------- C:\Program Files\Nero
                    2007-12-31 21:59 . 2007-12-31 22:04 <DIR> d-------- C:\Program Files\Common Files\Ahead
                    2007-12-31 19:12 . 2007-12-31 19:12 <DIR> d-------- C:\Program Files\Koolwaaij
                    2007-12-31 17:06 . 2007-12-31 17:06 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Prevx
                    2007-12-31 17:02 . 2007-12-31 17:02 <DIR> d-------- C:\Program Files\SurfRight
                    2007-12-31 17:02 . 2007-12-31 17:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SurfRight
                    2007-12-31 16:50 . 2008-01-01 11:07 <DIR> d-------- C:\Program Files\Common Files\LightScribe
                    2007-12-30 16:56 . 2007-03-08 00:51 129,784 --------- C:\WINDOWS\system32\pxafs.dll
                    2007-12-29 13:56 . 2007-12-29 13:56 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\Sony
                    2007-12-29 13:50 . 2007-12-29 13:50 <DIR> d-------- C:\Program Files\Sony
                    2007-12-29 13:48 . 2007-12-29 13:48 <DIR> d-------- C:\Program Files\Sony Setup
                    2007-12-23 13:25 . 2007-12-23 13:26 <DIR> d-------- C:\wkasteel
                    2007-12-16 20:37 . 2008-01-13 21:42 4,958,588 --a------ C:\WINDOWS\{00000000-00000000-00000008-00001102-00000004-10021102}.BAK
                    2007-12-16 18:24 . 2007-12-22 08:16 2,982 --a------ C:\halloween_log.html
                    2007-12-16 18:03 . 2007-12-16 18:03 <DIR> d-------- C:\Program Files\EleFun Desktops
                    2007-12-16 18:03 . 2007-12-16 18:03 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\elefundesktops
                    2007-12-16 18:03 . 2007-12-16 18:03 2,262,648 --a------ C:\WINDOWS\system32\Flash9b.ocx
                    2007-12-16 10:51 . 2007-12-16 10:52 82 --a------ C:\WINDOWS\SuperUtil.ini
                    2007-12-16 10:50 . 2007-06-20 05:52 269,824 --a------ C:\WINDOWS\system32\baksm.dll
                    2007-12-16 10:50 . 2007-12-16 10:50 0 --a------ C:\WINDOWS\system32\suupdate.dat
                    2007-12-16 10:50 . 2007-12-16 10:50 0 --a------ C:\WINDOWS\system32\mssurun.dat
                    2007-12-16 10:49 . 2007-12-16 10:49 <DIR> d-------- C:\WINDOWS\system32\IOSUBSYS

                    .
                    ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
                    .
                    2008-01-16 10:01 --------- d-----w C:\Program Files\Mozilla Thunderbird
                    2008-01-14 10:47 --------- d-----w C:\Program Files\RegVac Registry Cleaner
                    2008-01-06 12:43 --------- d-----w C:\Program Files\MSN Messenger
                    2008-01-06 12:43 --------- d-----w C:\Program Files\Messenger Plus! Live
                    2008-01-04 18:18 --------- d-----w C:\Documents and Settings\All Users\Application Data\DVD Shrink
                    2008-01-03 21:46 --------- d-----w C:\Program Files\DVDMenu
                    2008-01-03 18:20 --------- d-----w C:\Program Files\mIRC
                    2008-01-03 14:22 --------- d-----w C:\Program Files\LClock
                    2008-01-03 14:08 791,564 -csha-w C:\WINDOWS\system32\drivers\fidbox.idx
                    2008-01-03 14:08 58,401,312 -csha-w C:\WINDOWS\system32\drivers\fidbox.dat
                    2008-01-03 14:08 41,576 -csha-w C:\WINDOWS\system32\drivers\fidbox2.idx
                    2008-01-03 14:08 398,880 -csha-w C:\WINDOWS\system32\drivers\fidbox2.dat
                    2008-01-03 12:06 --------- d-----w C:\Program Files\Common Files\Symantec Shared
                    2008-01-03 11:43 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
                    2008-01-03 08:02 --------- d-----w C:\Program Files\FTDv3.8
                    2008-01-01 14:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
                    2008-01-01 11:56 --------- d-----w C:\Program Files\Google Video
                    2008-01-01 10:30 --------- d-----w C:\Documents and Settings\mp3president\Application Data\NewsLeecher
                    2008-01-01 10:08 2,666,590 -c--a-w C:\WINDOWS\system32\exec1.exe
                    2008-01-01 09:23 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Thunderbird
                    2007-12-31 23:55 --------- d-----w C:\Program Files\Hitman Pro
                    2007-12-31 23:53 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
                    2007-12-31 23:52 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Lavasoft
                    2007-12-24 19:16 --------- d-----w C:\Program Files\ID Security Suite
                    2007-12-22 16:52 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Screenshot Sender
                    2007-12-16 09:31 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Vso
                    2007-12-16 09:31 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Desktop Sidebar
                    2007-12-16 09:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\1Click DVD Copy Pro
                    2007-12-16 09:30 --------- d-----w C:\Program Files\Windows Live Toolbar
                    2007-12-16 09:30 --------- d-----w C:\Program Files\WinAVIVideoConverter
                    2007-12-16 09:30 --------- d-----w C:\Program Files\DVDlabPro2
                    2007-12-16 09:30 --------- d-----w C:\Program Files\Clean MemXP
                    2007-12-16 09:30 --------- d-----w C:\Program Files\AudioConvert
                    2007-12-10 04:37 --------- d-----w C:\Program Files\Picasa2
                    2007-12-10 04:37 --------- d-----w C:\Program Files\Google
                    2007-12-09 10:39 --------- d-----w C:\Program Files\Common Files\MAGIX Shared
                    2007-12-09 10:20 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Nokia
                    2007-12-09 10:08 --------- d-----w C:\Program Files\PC Connectivity Solution
                    2007-12-09 10:06 --------- d-----w C:\Documents and Settings\All Users\Application Data\Installations
                    2007-12-08 21:11 --------- d-----w C:\Documents and Settings\mp3president\Application Data\AccurateRip
                    2007-12-08 21:10 4,229,496 ----a-w C:\WINDOWS\system32\SpoonUninstall.exe
                    2007-12-08 20:57 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Ringtone
                    2007-12-08 20:04 --------- d-----w C:\Program Files\Common Files\Download Manager
                    2007-12-08 19:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\PC Suite
                    2007-12-02 13:19 --------- d-----w C:\Program Files\iTunes
                    2007-12-02 13:16 --------- d-----w C:\Documents and Settings\mp3president\Application Data\iLike
                    2007-12-01 12:51 --------- d-----w C:\Documents and Settings\Default User\Application Data\Apple Computer
                    2007-12-01 12:33 805 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.INF
                    2007-12-01 12:33 10,740 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.CAT
                    2007-12-01 11:48 --------- d-----w C:\Program Files\3M
                    2007-12-01 11:40 --------- d-----w C:\Program Files\Creative
                    2007-12-01 11:38 86,016 ----a-w C:\WINDOWS\system32\OpenAL32.dll
                    2007-12-01 11:38 409,600 ----a-w C:\WINDOWS\system32\wrap_oal.dll
                    2007-12-01 11:38 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Creative
                    2007-12-01 11:33 --------- d--h--w C:\Program Files\InstallShield Installation Information
                    2007-12-01 10:29 --------- d-----w C:\Documents and Settings\mp3president\Application Data\3M
                    2007-11-25 16:55 --------- d-----w C:\Program Files\PWT
                    2007-11-18 08:38 --------- d-----w C:\Program Files\Pegasys Inc
                    2007-11-18 08:30 --------- d---a-w C:\Documents and Settings\mp3president\Application Data\Pegasys Inc
                    2007-11-18 08:30 --------- d---a-w C:\Documents and Settings\mp3president\Application Data\LEAPS
                    2007-10-27 20:33 43,602 -c--a-w C:\WINDOWS\system32\xvid-uninstall.exe
                    2007-09-19 09:50 47,360 -c--a-w C:\Documents and Settings\mp3president\Application Data\pcouffin.sys
                    2007-04-05 06:11 61,158 -c--a-w C:\WINDOWS\Internet Logs\UpdClient_2nd_2007_04_04_09_00_07_small.dmp.zip
                    2007-04-05 06:11 60,032 -c--a-w C:\WINDOWS\Internet Logs\UpdClient_2nd_2007_04_04_09_00_06_small.dmp.zip
                    2007-04-05 06:11 18,352,128 -c--a-w C:\WINDOWS\Internet Logs\vsmon_on_demand_2007_04_04_15_05_14_full.dmp.zip
                    2007-04-01 11:06 18,285,398 -c--a-w C:\WINDOWS\Internet Logs\vsmon_on_demand_2007_04_01_07_04_48_full.dmp.zip
                    2006-12-23 18:07 81,920 -c--a-w C:\Documents and Settings\mp3president\Application Data\ezpinst.exe
                    2007-07-28 13:18 56 -csh--r C:\WINDOWS\system32\9E0E6FCF8E.sys
                    2007-05-13 08:37 8 -csh--r C:\WINDOWS\system32\D7638E6109.sys
                    2007-07-28 13:18 5,642 -csha-w C:\WINDOWS\system32\KGyGaAvL.sys
                    .

                    ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
                    .
                    .
                    REGEDIT4
                    *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

                    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                    "HomeAlarm"="C:\Program Files\Chameleon Clock\ChamClock.exe" [2007-12-11 00:56 709632]

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                    "BluetoothAuthenticationAgent"="rundll32.exe" [2004-08-04 00:03 33792 C:\WINDOWS\system32\rundll32.exe]
                    "LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2006-04-13 11:09 49152]
                    "CTHelper"="CTHELPER.EXE" [2006-08-11 14:56 17920 C:\WINDOWS\CTHELPER.EXE]
                    "CTxfiHlp"="CTXFIHLP.EXE" [2006-08-11 14:56 18944 C:\WINDOWS\system32\CTXFIHLP.EXE]
                    "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-10-30 09:36 256576]
                    "NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 16:40 155648]
                    "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-01-03 21:07 579072]

                    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 00:03 15360]
                    "AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-01-03 21:07 219136]

                    C:\Documents and Settings\mp3president\Menu Start\Programma's\Opstarten\
                    NewsLeecher.lnk - D:\Program Files\NewsLeecher\newsleecher.exe [2008-01-01 11:13:00]
                    RegVac.lnk - C:\Program Files\RegVac Registry Cleaner\regvac.exe [2007-09-29 09:17:11]

                    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
                    @="Driver"

                    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
                    @="Driver"

                    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Adobe Acrobat Snelle start.lnk]
                    backup=C:\WINDOWS\pss\Adobe Acrobat Snelle start.lnkCommon Startup

                    [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^HP Digital Imaging Monitor.lnk]
                    backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup

                    [HKLM\~\startupfolder\C:^Documents and Settings^mp3president^Menu Start^Programma's^Opstarten^SABnzbd.exe]
                    backup=C:\WINDOWS\pss\SABnzbd.exeStartup

                    [HKLM\~\startupfolder\C:^Documents and Settings^mp3president^Menu Start^Programma's^Opstarten^YouTube Uploader.lnk]
                    backup=C:\WINDOWS\pss\YouTube Uploader.lnkStartup

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
                    --a--c--- 2006-01-12 19:52 483328 C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
                    --a------ 2006-10-09 11:28 139264 C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
                    --a--c--- 2004-08-04 00:03 15360 C:\WINDOWS\system32\ctfmon.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHELPER]
                    --a------ 2006-08-11 14:56 17920 C:\WINDOWS\CTHELPER.EXE

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
                    --a------ 2006-08-11 14:56 18944 C:\WINDOWS\system32\CTXFIHLP.EXE

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DiskeeperSystray]
                    --a--c--- 2005-11-22 17:38 221184 C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Firefox]
                    --a------ 2007-12-01 20:20 7650416 C:\Program Files\Mozilla Firefox\firefox.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
                    --a--c-t- 2007-10-27 21:45 19952 C:\Documents and Settings\mp3president\Local Settings\Application Data\Google\Update\1.0.87.0\GoogleUpdate.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
                    --a--c--- 2006-02-19 01:41 49152 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
                    --a--c--- 2007-10-31 10:19 378784 C:\Program Files\TomTom HOME 2\HOMERunner.exe

                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                    "Adobe LM Service"=3 (0x3)
                    "wuauserv"=2 (0x2)
                    "wscsvc"=2 (0x2)
                    "usnsvc"=3 (0x3)
                    "TapiSrv"=3 (0x3)
                    "SharedAccess"=2 (0x2)
                    "RichVideo"=2 (0x2)
                    "ose"=3 (0x3)
                    "NBService"=3 (0x3)
                    "ERSvc"=2 (0x2)
                    "PinnacleSys.MediaServer"=2 (0x2)
                    "iPod Service"=3 (0x3)
                    "WebrootSpySweeperService"=2 (0x2)
                    "RemoteRegistry"=2 (0x2)
                    "RasAuto"=3 (0x3)
                    "Bonjour Service"=2 (0x2)
                    "NVSvc"=2 (0x2)
                    "NMIndexingService"=3 (0x3)

                    R0 hpt374;hpt374;C:\WINDOWS\system32\DRIVERS\hpt374.sys [2002-04-25 05:11]
                    R0 hptpro;hptpro;C:\WINDOWS\system32\DRIVERS\hptpro.sys [2002-03-11 10:49]
                    R3 ctgame;Game Port;C:\WINDOWS\system32\DRIVERS\ctgame.sys [2002-12-30 10:53]
                    S3 Camdrv30;Philips ToUcam XS;C:\WINDOWS\system32\Drivers\camdrv30.sys [2001-08-17 21:04]
                    S3 LCcfltr;Logitech USB Filter Driver;C:\WINDOWS\system32\Drivers\LCcFltr.Sys [2004-03-03 09:50]

                    .
                    Inhoud van de 'Gedeelde Taken' map
                    "2008-01-16 10:00:00 C:\WINDOWS\Tasks\AE89D7D9918A480D.job"
                    - c:\docume~1\mp3pre~1\applic~1\downlo~1\send iso move.exe
                    .
                    **************************************************************************

                    catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                    Rootkit scan 2008-01-16 11:20:44
                    Windows 5.1.2600 Service Pack 2 NTFS

                    scannen van verborgen processen ...

                    scannen van verborgen autostart items ...

                    scannen van verborgen bestanden ...

                    Scan succesvol afgerond
                    verborgen bestanden: 0

                    **************************************************************************
                    .
                    Voltooingstijd: 2008-01-16 11:21:26
                    ComboFix-quarantined-files.txt 2008-01-16 10:21:11
                    ComboFix2.txt 2008-01-03 15:56:49
                    Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

                    Comment


                    • #11
                      Vindt je virusscanner nog bedreigingen?

                      Download dit bestand: Deljob.exe (mirror)
                      Plaats het op je bureaublad.
                      Indien je virusscanner de download van deljob.exe blokkeert,
                      schakel dan tijdelijk je virusscanner uit of download de zip-versie
                      deljob.zip en pak deze uit naar je Bureaublad.
                      Dubbelklik Deljob.exe.
                      Een logje(logit.txt) zal openen, het bestandje kan je ook terugvinden op je bureaublad.
                      Post de inhoud van logit.txt in je volgende bericht.

                      Comment


                      • #12
                        Ik had de quarantine al leeg gemaakt en hij vindt alleen nog een aantal proggies die ik vertrouw (patchers ed.), maar verder zie ik nog maar weinig.
                        Heb wel nog een kleine crash gehad, maar dat was eigen schuld, omdat ik niet geduldig was met het opruimen van de harde schijven en is alweer verholpen, compie draait nog als voorheen.
                        Het is voor mij wel merkbaar dat er een hoop op zit wat ik niet meer gebruik, maar nog steeds erop staat.
                        Maar daar ben ik vanaf na een reinstall, maar moet nog ff 3 a 4 maandjes uithouden hier.

                        Hierbij de logit tekst.

                        --------------------------------------------------------
                        File(s) moved to C:\deljob

                        AE89D7D9918A480D.job
                        --------------------------------------------------------
                        Files remaining after cleaning

                        --------------------------------------------------------
                        App data folders

                        Het volume in station C heeft geen naam.
                        Het volumenummer is F48D-C02A

                        Map van C:\Documents and Settings\mp3president\Application Data

                        13-01-2008 11:26 <DIR> .
                        13-01-2008 11:26 <DIR> ..
                        01-12-2007 11:29 <DIR> 3M
                        08-12-2007 22:11 <DIR> ACCURA~1 AccurateRip
                        20-09-2007 19:24 <DIR> Adobe
                        27-06-2007 08:44 <DIR> AdobeUM
                        01-01-2008 16:20 <DIR> Ahead
                        13-01-2008 11:26 <DIR> ALTRIX~1 AltrixSoft
                        15-02-2007 21:08 <DIR> APPLEC~1 Apple Computer
                        16-06-2007 17:01 <DIR> ArcSoft
                        16-01-2008 08:00 <DIR> AVG7
                        31-12-2006 10:49 <DIR> BSPLAY~1 BSplayer Pro
                        01-12-2007 12:38 <DIR> Creative
                        18-03-2007 22:19 <DIR> CYBERL~1 CyberLink
                        28-01-2007 00:31 <DIR> DATALA~1 Datalayer
                        16-12-2007 10:31 <DIR> DESKTO~1 Desktop Sidebar
                        22-04-2007 08:44 <DIR> DivX
                        26-03-2007 02:03 <DIR> DOWNLO~1 downloadjoybike
                        16-12-2007 18:03 <DIR> ELEFUN~1 elefundesktops
                        03-11-2007 10:14 <DIR> ESET
                        11-08-2007 08:04 <DIR> GETRIG~1 GetRightToGo
                        11-02-2007 18:13 <DIR> Google
                        31-12-2006 10:20 <DIR> Help
                        09-06-2007 15:54 <DIR> HP
                        13-11-2006 22:38 <DIR> IDENTI~1 Identities
                        02-12-2007 14:16 <DIR> iLike
                        25-06-2007 08:53 <DIR> IMAGEZ~1 Image Zone Express
                        02-09-2007 12:14 <DIR> INSTAL~1 InstallShield
                        01-01-2007 12:13 <DIR> KOALAF~1 KoalaFTDSearch
                        01-01-2008 00:52 <DIR> Lavasoft
                        13-11-2006 23:20 <DIR> LEADER~1 Leadertech
                        18-11-2007 09:30 <DIR> LEAPS
                        31-12-2006 09:30 <DIR> MACROM~1 Macromedia
                        09-09-2007 15:55 <DIR> MAGIX
                        03-01-2008 21:06 <DIR> MICROS~1 Microsoft
                        13-11-2006 23:40 <DIR> Mozilla
                        07-07-2007 21:05 <DIR> Nero
                        01-01-2008 11:30 <DIR> NEWSLE~1 NewsLeecher
                        09-12-2007 11:20 <DIR> Nokia
                        28-01-2007 00:31 <DIR> PCSUIT~1 PC Suite
                        18-11-2007 09:30 <DIR> PEGASY~1 Pegasys Inc
                        23-07-2007 04:29 <DIR> proDAD
                        10-11-2007 17:11 <DIR> Real
                        11-06-2007 06:28 <DIR> REGIST~1 RegistrySmart
                        08-12-2007 21:57 <DIR> Ringtone
                        29-03-2007 21:12 <DIR> RIVERP~2 River Past G2
                        29-03-2007 20:27 <DIR> RIVERP~1 River Past G5
                        22-12-2007 17:52 <DIR> SCREEN~1 Screenshot Sender
                        11-02-2007 11:57 <DIR> SECOND~1 SecondLife
                        06-07-2007 09:35 <DIR> SIMPLE~1 Simple Star
                        29-12-2007 13:56 <DIR> Sony
                        12-08-2007 14:10 <DIR> SPORTS~1 Sports Interactive
                        16-11-2006 21:56 <DIR> Sun
                        13-11-2006 23:42 <DIR> Talkback
                        01-01-2008 10:23 <DIR> THUNDE~1 Thunderbird
                        12-08-2007 11:48 <DIR> TomTom
                        02-12-2006 16:42 <DIR> ULEADS~1 Ulead Systems
                        16-12-2007 10:31 <DIR> Vso
                        0 bestand(en) 0 bytes
                        58 map(pen) 27.761.610.752 bytes beschikbaar
                        Het volume in station C heeft geen naam.
                        Het volumenummer is F48D-C02A

                        Map van C:\Documents and Settings\All Users\Application Data

                        07-01-2008 16:57 <DIR> .
                        07-01-2008 16:57 <DIR> ..
                        16-12-2007 10:31 <DIR> 1CLICK~1 1Click DVD Copy Pro
                        27-06-2007 08:08 <DIR> Adobe
                        14-11-2006 17:59 <DIR> ADOBES~1 Adobe Systems
                        15-02-2007 21:08 <DIR> APPLEC~1 Apple Computer
                        03-01-2008 22:46 <DIR> avg7
                        08-01-2007 00:06 <DIR> CYBERL~1 CyberLink
                        04-01-2008 19:18 <DIR> DVDSHR~1 DVD Shrink
                        03-11-2007 10:12 <DIR> Eset
                        05-05-2007 20:57 <DIR> FLEXnet
                        03-01-2008 21:07 <DIR> Grisoft
                        26-05-2007 16:14 <DIR> HP
                        09-12-2007 11:06 <DIR> INSTAL~2 Installations
                        14-11-2006 18:23 <DIR> INSTAL~1 InstallShield
                        03-01-2008 14:24 <DIR> KASPER~1 Kaspersky Lab Setup Files
                        31-12-2007 22:09 <DIR> LIGHTS~1 LightScribe
                        09-09-2007 15:54 <DIR> MAGIX
                        29-07-2007 21:50 <DIR> MAILFR~1 MailFrontier
                        03-01-2008 14:08 <DIR> McAfee
                        10-02-2007 10:48 <DIR> MESSEN~1 Messenger Plus!
                        01-01-2008 00:52 <DIR> MICROS~1 Microsoft
                        01-01-2008 15:23 <DIR> MICROS~2 Microsoft Help
                        07-01-2008 16:57 <DIR> NCHSOF~1 NCH Software
                        14-11-2006 15:07 <DIR> NVIDIA
                        04-02-2007 14:32 <DIR> NVIEW_~1 nView_Profiles
                        08-12-2007 20:31 <DIR> PCSUIT~1 PC Suite
                        07-01-2007 18:11 <DIR> Pinnacle
                        02-12-2006 17:51 <DIR> PINNAC~1 Pinnacle Studio
                        31-12-2007 17:06 <DIR> Prevx
                        29-03-2007 21:12 <DIR> RIVERP~2 River Past G2
                        29-03-2007 20:54 <DIR> RIVERP~1 River Past G5
                        25-09-2007 18:03 <DIR> sentinel
                        01-01-2008 00:53 <DIR> SPYBOT~1 Spybot - Search & Destroy
                        31-12-2007 17:02 <DIR> SURFRI~1 SurfRight
                        03-01-2008 12:43 <DIR> Symantec
                        30-03-2007 06:57 <DIR> TEMP
                        12-08-2007 11:44 <DIR> TomTom
                        02-12-2006 16:53 <DIR> ULEADS~1 Ulead Systems
                        01-01-2007 16:08 <DIR> WINDOW~1 Windows Genuine Advantage
                        14-02-2007 15:18 <DIR> WINDOW~2 Windows Live Toolbar
                        0 bestand(en) 0 bytes
                        41 map(pen) 27.761.606.656 bytes beschikbaar
                        --------------------------------------------------------

                        Groeten Ron.
                        Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

                        Comment


                        • #13
                          Volgens mij is het allemaal weer goed.
                          Hartelijk bedankt.
                          Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

                          Comment


                          • #14
                            Volgens mij heb ik je vorige reactie gewoon over het hoofd gezien.

                            Doe dit nog:

                            Download de bijlage: CFScript.txt

                            Sleep CFScript.txt in ComboFix.exe zoals getoond in onderstaand voorbeeld :



                            Dit zal ComboFix doen herstarten.
                            Start opnieuw op als daarom gevraagd wordt,
                            en post de inhoud van de Combofix.txt in je volgende antwoord.

                            Post ook een nieuw logje van Hijackthis en vertel of je nog problemen ondervindt
                            Bijgevoegde Bestanden
                            Last edited by smeenk; 20-01-08, 21:03.

                            Comment


                            • #15
                              Mijn Combofix log:

                              ComboFix 08-01-16.4 - mp3president 2008-01-21 12:29:22.3 - NTFSx86
                              Microsoft Windows XP Professional 5.1.2600.2.1252.1.1043.18.1129 [GMT 1:00]
                              Gestart vanuit: C:\Documents and Settings\mp3president\Bureaublad\ComboFix.exe
                              Command switches used :: C:\Documents and Settings\mp3president\Bureaublad\cfscript.txt
                              * Nieuw herstelpunt werd aangemaakt

                              FILE
                              C:\WINDOWS\system32\exec1.exe
                              .

                              (((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
                              .

                              C:\deljob
                              C:\deljob\AE89D7D9918A480D.job
                              C:\Documents and Settings\All Users\Application Data\1Click DVD Copy Pro
                              C:\Documents and Settings\All Users\Application Data\1Click DVD Copy Pro\settings.ini
                              C:\Documents and Settings\mp3president\Application Data\downloadjoybike
                              C:\Documents and Settings\mp3president\Application Data\downloadjoybike\818664FB
                              C:\Documents and Settings\mp3president\Application Data\elefundesktops
                              C:\Documents and Settings\mp3president\Application Data\elefundesktops\alpinelake_wallpaper\Flash9b.ocx
                              C:\Documents and Settings\mp3president\Application Data\elefundesktops\alpinelake_wallpaper\swfplayer.exe
                              C:\Program Files\downloadjoybike
                              C:\WINDOWS\system32\drivers\down
                              C:\WINDOWS\system32\drivers\down\113132.exe
                              C:\WINDOWS\system32\drivers\down\114674.exe
                              C:\WINDOWS\system32\drivers\down\122416.exe
                              C:\WINDOWS\system32\drivers\down\125901.exe
                              C:\WINDOWS\system32\drivers\down\139821.exe
                              C:\WINDOWS\system32\drivers\down\143366.exe
                              C:\WINDOWS\system32\drivers\down\145028.exe
                              C:\WINDOWS\system32\drivers\down\146090.exe
                              C:\WINDOWS\system32\drivers\down\148854.exe
                              C:\WINDOWS\system32\drivers\down\148904.exe
                              C:\WINDOWS\system32\drivers\down\151167.exe
                              C:\WINDOWS\system32\drivers\down\152989.exe
                              C:\WINDOWS\system32\drivers\down\153180.exe
                              C:\WINDOWS\system32\drivers\down\155012.exe
                              C:\WINDOWS\system32\drivers\down\161762.exe
                              C:\WINDOWS\system32\drivers\down\163465.exe
                              C:\WINDOWS\system32\drivers\down\163805.exe
                              C:\WINDOWS\system32\drivers\down\164496.exe
                              C:\WINDOWS\system32\drivers\down\166849.exe
                              C:\WINDOWS\system32\drivers\down\167861.exe
                              C:\WINDOWS\system32\drivers\down\170875.exe
                              C:\WINDOWS\system32\drivers\down\171446.exe
                              C:\WINDOWS\system32\drivers\down\174210.exe
                              C:\WINDOWS\system32\drivers\down\175201.exe
                              C:\WINDOWS\system32\drivers\down\175902.exe
                              C:\WINDOWS\system32\drivers\down\176493.exe
                              C:\WINDOWS\system32\drivers\down\176914.exe
                              C:\WINDOWS\system32\drivers\down\177505.exe
                              C:\WINDOWS\system32\drivers\down\177795.exe
                              C:\WINDOWS\system32\drivers\down\177845.exe
                              C:\WINDOWS\system32\drivers\down\177975.exe
                              C:\WINDOWS\system32\drivers\down\178406.exe
                              C:\WINDOWS\system32\drivers\down\178526.exe
                              C:\WINDOWS\system32\drivers\down\178877.exe
                              C:\WINDOWS\system32\drivers\down\178977.exe
                              C:\WINDOWS\system32\drivers\down\180900.exe
                              C:\WINDOWS\system32\drivers\down\180980.exe
                              C:\WINDOWS\system32\drivers\down\183123.exe
                              C:\WINDOWS\system32\drivers\down\183624.exe
                              C:\WINDOWS\system32\drivers\down\184284.exe
                              C:\WINDOWS\system32\drivers\down\184405.exe
                              C:\WINDOWS\system32\drivers\down\188220.exe
                              C:\WINDOWS\system32\drivers\down\188360.exe
                              C:\WINDOWS\system32\drivers\down\210793.exe
                              C:\WINDOWS\system32\drivers\down\212475.exe
                              C:\WINDOWS\system32\drivers\down\216200.exe
                              C:\WINDOWS\system32\drivers\down\216681.exe
                              C:\WINDOWS\system32\drivers\down\220817.exe
                              C:\WINDOWS\system32\drivers\down\221468.exe
                              C:\WINDOWS\system32\drivers\down\238442.exe
                              C:\WINDOWS\system32\drivers\down\242548.exe
                              C:\WINDOWS\system32\drivers\down\90750502.exe
                              C:\WINDOWS\system32\exec1.exe

                              .
                              (((((((((((((((((((( Bestanden Gemaakt van 2007-12-21 to 2008-01-21 ))))))))))))))))))))))))))))))
                              .

                              2008-01-18 14:40 . 2008-01-18 14:40 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
                              2008-01-18 14:29 . 2008-01-19 12:19 <DIR> d-------- C:\MPS
                              2008-01-18 14:29 . 1996-09-30 18:46 24,576 --------- C:\WINDOWS\UniFISH.exe
                              2008-01-17 23:10 . 2008-01-17 23:10 3,932,214 --a------ C:\WINDOWS\BricoPack Wallpaper.bmp
                              2008-01-17 23:10 . 2008-01-17 23:10 61,298 --a------ C:\WINDOWS\BricoPackUninst.cmd
                              2008-01-17 23:08 . 2008-01-17 23:08 <DIR> d-------- C:\WINDOWS\BricoPacks
                              2008-01-17 23:08 . 2008-01-17 23:10 6,120 --a------ C:\WINDOWS\BricoPackFoldersDelete.cmd
                              2008-01-16 13:21 . 2008-01-16 13:21 <DIR> d-------- C:\Program Files\ftdv3.7.3
                              2008-01-16 13:21 . 2008-01-16 13:21 98,304 --a------ C:\WINDOWS\dump69a8.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 1,086,058 --a------ C:\WINDOWS\set4.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 1,014,139 --a------ C:\WINDOWS\set3.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 98,304 --a------ C:\WINDOWS\dump691c.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 98,304 --a------ C:\WINDOWS\dump5fb9.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 98,304 --a------ C:\WINDOWS\dump5619.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 14,043 --a------ C:\WINDOWS\set8.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 3,126 --a------ C:\WINDOWS\system32\tempimg.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 2,845 --a------ C:\WINDOWS\system32\config.tmp
                              2008-01-16 13:19 . 2008-01-16 13:19 828 --a------ C:\WINDOWS\system32\CONNAPI.DLL.lnk
                              2008-01-16 11:16 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
                              2008-01-13 11:26 . 2008-01-13 11:26 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\AltrixSoft
                              2008-01-10 21:30 . 2008-01-21 12:15 <DIR> d-------- C:\Program Files\Chameleon Clock
                              2008-01-08 21:15 . 2008-01-08 21:15 54,156 --ah----- C:\WINDOWS\QTFont.qfn
                              2008-01-08 21:15 . 2008-01-08 21:15 1,409 --a------ C:\WINDOWS\QTFont.for
                              2008-01-07 16:57 . 2008-01-07 16:57 <DIR> d-------- C:\Program Files\NCH Software
                              2008-01-07 16:57 . 2008-01-07 16:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\NCH Software
                              2008-01-05 00:23 . 2008-01-05 00:23 <DIR> d-------- C:\Program Files\Trend Micro
                              2008-01-03 21:08 . 2008-01-21 08:00 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\AVG7
                              2008-01-03 21:08 . 2008-01-03 21:08 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\AVG7
                              2008-01-03 21:07 . 2008-01-03 22:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg7
                              2008-01-03 20:13 . 2008-01-03 20:13 <DIR> d-------- C:\Program Files\CCleaner
                              2008-01-03 15:21 . 2008-01-03 19:20 <DIR> d-------- C:\Documents and Settings\mp3president\DoctorWeb
                              2008-01-03 14:24 . 2008-01-03 14:24 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
                              2008-01-03 14:08 . 2008-01-03 14:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee
                              2008-01-03 13:43 . 2004-08-04 00:58 2,185,344 --a------ C:\WINDOWS\system32\ntoskrnl.exe
                              2008-01-03 13:43 . 2004-08-04 00:58 2,185,344 --a--c--- C:\WINDOWS\system32\dllcache\ntoskrnl.exe
                              2008-01-03 13:23 . 2008-01-03 13:23 2,550 --a------ C:\WINDOWS\system32\Uninstall.ico
                              2008-01-03 13:23 . 2008-01-03 13:23 1,406 --a------ C:\WINDOWS\system32\Help.ico
                              2008-01-03 13:15 . 2008-01-03 13:15 <DIR> d-------- C:\WINDOWS\McAfee.com
                              2008-01-02 15:44 . 1997-01-18 10:40 299,520 --a------ C:\WINDOWS\uninst.exe
                              2008-01-02 11:31 . 2008-01-03 21:07 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
                              2008-01-02 11:31 . 2007-05-30 13:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
                              2008-01-01 11:13 . 2008-01-01 11:30 <DIR> d-------- C:\Documents and Settings\mp3president\Downloads
                              2007-12-31 22:50 . 2008-01-16 08:22 69 --a------ C:\WINDOWS\NeroDigital.ini
                              2007-12-31 22:09 . 2007-12-31 22:09 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\LightScribe
                              2007-12-31 22:01 . 2008-01-01 16:20 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\Ahead
                              2007-12-31 21:59 . 2007-12-31 21:59 <DIR> d-------- C:\Program Files\Nero
                              2007-12-31 21:59 . 2007-12-31 22:04 <DIR> d-------- C:\Program Files\Common Files\Ahead
                              2007-12-31 19:12 . 2007-12-31 19:12 <DIR> d-------- C:\Program Files\Koolwaaij
                              2007-12-31 17:06 . 2007-12-31 17:06 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Prevx
                              2007-12-31 17:02 . 2007-12-31 17:02 <DIR> d-------- C:\Program Files\SurfRight
                              2007-12-31 17:02 . 2007-12-31 17:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SurfRight
                              2007-12-31 16:50 . 2008-01-01 11:07 <DIR> d-------- C:\Program Files\Common Files\LightScribe
                              2007-12-30 16:56 . 2007-03-08 00:51 129,784 --------- C:\WINDOWS\system32\pxafs.dll
                              2007-12-29 13:56 . 2007-12-29 13:56 <DIR> d-------- C:\Documents and Settings\mp3president\Application Data\Sony
                              2007-12-29 13:50 . 2007-12-29 13:50 <DIR> d-------- C:\Program Files\Sony
                              2007-12-29 13:48 . 2007-12-29 13:48 <DIR> d-------- C:\Program Files\Sony Setup
                              2007-12-23 13:25 . 2007-12-23 13:26 <DIR> d-------- C:\wkasteel

                              .
                              ((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
                              .
                              2008-01-21 11:18 --------- d-----w C:\Program Files\Mozilla Thunderbird
                              2008-01-18 08:39 --------- d-----w C:\Program Files\RegVac Registry Cleaner
                              2008-01-17 14:37 --------- d-----w C:\Program Files\Common Files\Adobe
                              2008-01-06 12:43 --------- d-----w C:\Program Files\MSN Messenger
                              2008-01-06 12:43 --------- d-----w C:\Program Files\Messenger Plus! Live
                              2008-01-04 18:18 --------- d-----w C:\Documents and Settings\All Users\Application Data\DVD Shrink
                              2008-01-03 21:46 --------- d-----w C:\Program Files\DVDMenu
                              2008-01-03 18:20 --------- d-----w C:\Program Files\mIRC
                              2008-01-03 14:22 --------- d-----w C:\Program Files\LClock
                              2008-01-03 14:08 791,564 -csha-w C:\WINDOWS\system32\drivers\fidbox.idx
                              2008-01-03 14:08 58,401,312 -csha-w C:\WINDOWS\system32\drivers\fidbox.dat
                              2008-01-03 14:08 41,576 -csha-w C:\WINDOWS\system32\drivers\fidbox2.idx
                              2008-01-03 14:08 398,880 -csha-w C:\WINDOWS\system32\drivers\fidbox2.dat
                              2008-01-03 12:06 --------- d-----w C:\Program Files\Common Files\Symantec Shared
                              2008-01-03 11:43 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
                              2008-01-03 08:02 --------- d-----w C:\Program Files\FTDv3.8
                              2008-01-01 14:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
                              2008-01-01 11:56 --------- d-----w C:\Program Files\Google Video
                              2008-01-01 10:30 --------- d-----w C:\Documents and Settings\mp3president\Application Data\NewsLeecher
                              2008-01-01 09:23 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Thunderbird
                              2007-12-31 23:55 --------- d-----w C:\Program Files\Hitman Pro
                              2007-12-31 23:53 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
                              2007-12-31 23:52 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Lavasoft
                              2007-12-24 19:16 --------- d-----w C:\Program Files\ID Security Suite
                              2007-12-22 16:52 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Screenshot Sender
                              2007-12-16 17:03 --------- d-----w C:\Program Files\EleFun Desktops
                              2007-12-16 09:31 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Vso
                              2007-12-16 09:31 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Desktop Sidebar
                              2007-12-16 09:30 --------- d-----w C:\Program Files\Windows Live Toolbar
                              2007-12-16 09:30 --------- d-----w C:\Program Files\WinAVIVideoConverter
                              2007-12-16 09:30 --------- d-----w C:\Program Files\DVDlabPro2
                              2007-12-16 09:30 --------- d-----w C:\Program Files\Clean MemXP
                              2007-12-16 09:30 --------- d-----w C:\Program Files\AudioConvert
                              2007-12-10 04:37 --------- d-----w C:\Program Files\Picasa2
                              2007-12-10 04:37 --------- d-----w C:\Program Files\Google
                              2007-12-09 10:39 --------- d-----w C:\Program Files\Common Files\MAGIX Shared
                              2007-12-09 10:20 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Nokia
                              2007-12-09 10:08 --------- d-----w C:\Program Files\PC Connectivity Solution
                              2007-12-09 10:06 --------- d-----w C:\Documents and Settings\All Users\Application Data\Installations
                              2007-12-08 21:11 --------- d-----w C:\Documents and Settings\mp3president\Application Data\AccurateRip
                              2007-12-08 21:10 4,229,496 ----a-w C:\WINDOWS\system32\SpoonUninstall.exe
                              2007-12-08 20:57 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Ringtone
                              2007-12-08 20:04 --------- d-----w C:\Program Files\Common Files\Download Manager
                              2007-12-08 19:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\PC Suite
                              2007-12-02 13:19 --------- d-----w C:\Program Files\iTunes
                              2007-12-02 13:16 --------- d-----w C:\Documents and Settings\mp3president\Application Data\iLike
                              2007-12-01 12:51 --------- d-----w C:\Documents and Settings\Default User\Application Data\Apple Computer
                              2007-12-01 12:33 805 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.INF
                              2007-12-01 12:33 10,740 ----a-w C:\WINDOWS\system32\drivers\SYMEVENT.CAT
                              2007-12-01 11:48 --------- d-----w C:\Program Files\3M
                              2007-12-01 11:40 --------- d-----w C:\Program Files\Creative
                              2007-12-01 11:38 86,016 ----a-w C:\WINDOWS\system32\OpenAL32.dll
                              2007-12-01 11:38 409,600 ----a-w C:\WINDOWS\system32\wrap_oal.dll
                              2007-12-01 11:38 --------- d-----w C:\Documents and Settings\mp3president\Application Data\Creative
                              2007-12-01 11:33 --------- d--h--w C:\Program Files\InstallShield Installation Information
                              2007-12-01 10:29 --------- d-----w C:\Documents and Settings\mp3president\Application Data\3M
                              2007-11-25 16:55 --------- d-----w C:\Program Files\PWT
                              2007-10-27 20:33 43,602 -c--a-w C:\WINDOWS\system32\xvid-uninstall.exe
                              2007-09-19 09:50 47,360 -c--a-w C:\Documents and Settings\mp3president\Application Data\pcouffin.sys
                              2007-04-05 06:11 61,158 -c--a-w C:\WINDOWS\Internet Logs\UpdClient_2nd_2007_04_04_09_00_07_small.dmp.zip
                              2007-04-05 06:11 60,032 -c--a-w C:\WINDOWS\Internet Logs\UpdClient_2nd_2007_04_04_09_00_06_small.dmp.zip
                              2007-04-05 06:11 18,352,128 -c--a-w C:\WINDOWS\Internet Logs\vsmon_on_demand_2007_04_04_15_05_14_full.dmp.zip
                              2007-04-01 11:06 18,285,398 -c--a-w C:\WINDOWS\Internet Logs\vsmon_on_demand_2007_04_01_07_04_48_full.dmp.zip
                              2006-12-23 18:07 81,920 -c--a-w C:\Documents and Settings\mp3president\Application Data\ezpinst.exe
                              2004-08-03 23:03 175,616 --sha-w C:\WINDOWS\BricoPacks\SysFiles\79_iexplore.exe
                              2007-07-28 13:18 56 -csh--r C:\WINDOWS\system32\9E0E6FCF8E.sys
                              2007-05-13 08:37 8 -csh--r C:\WINDOWS\system32\D7638E6109.sys
                              2007-07-28 13:18 5,642 -csha-w C:\WINDOWS\system32\KGyGaAvL.sys
                              .

                              ((((((((((((((((((((((((((((( [email protected]_11.20.53,84 )))))))))))))))))))))))))))))))))))))))))
                              .
                              + 2004-08-03 23:03:08 349,184 ----a-w C:\WINDOWS\BricoPacks\SysFiles\10_cmdial32.dll
                              + 2001-09-07 12:00:00 67,072 ----a-w C:\WINDOWS\BricoPacks\SysFiles\11_console.dll
                              + 2004-08-03 23:03:08 164,864 ----a-w C:\WINDOWS\BricoPacks\SysFiles\12_credui.dll
                              + 2004-08-03 23:03:30 1,249,280 ----a-w C:\WINDOWS\BricoPacks\SysFiles\14_explorer.exe
                              + 2004-08-03 23:03:10 386,048 ----a-w C:\WINDOWS\BricoPacks\SysFiles\15_fontext.dll
                              + 2004-08-03 23:03:30 768,512 ----a-w C:\WINDOWS\BricoPacks\SysFiles\17_helpctr.exe
                              + 2004-08-03 23:03:12 146,944 ----a-w C:\WINDOWS\BricoPacks\SysFiles\18_hotplug.dll
                              + 2004-08-03 23:03:28 98,304 ----a-w C:\WINDOWS\BricoPacks\SysFiles\2_ahui.exe
                              + 2001-09-07 12:00:00 120,832 ----a-w C:\WINDOWS\BricoPacks\SysFiles\20_inetcplc.dll
                              + 2004-08-03 23:03:14 154,112 ----a-w C:\WINDOWS\BricoPacks\SysFiles\23_keymgr.dll
                              + 2004-08-03 23:03:38 220,672 ----a-w C:\WINDOWS\BricoPacks\SysFiles\24_logon.scr
                              + 2004-08-03 23:03:32 246,272 ----a-w C:\WINDOWS\BricoPacks\SysFiles\26_migwiz.exe
                              + 2004-08-03 23:02:12 216,064 ----a-w C:\WINDOWS\BricoPacks\SysFiles\28_moricons.dll
                              + 2004-08-03 23:03:16 1,562,112 ----a-w C:\WINDOWS\BricoPacks\SysFiles\29_msgina.dll
                              + 2006-03-23 11:32:14 3,074,560 ----a-w C:\WINDOWS\BricoPacks\SysFiles\30_mshtml.dll
                              + 2004-08-03 23:03:34 363,520 ----a-w C:\WINDOWS\BricoPacks\SysFiles\31_mspaint.exe
                              + 2004-08-03 23:03:18 278,528 ----a-w C:\WINDOWS\BricoPacks\SysFiles\32_mstask.dll
                              + 2004-08-03 20:59:44 655,360 ----a-w C:\WINDOWS\BricoPacks\SysFiles\33_mstscax.dll
                              + 2004-08-03 23:03:18 81,408 ----a-w C:\WINDOWS\BricoPacks\SysFiles\34_mydocs.dll
                              + 2004-08-03 23:03:34 54,784 ----a-w C:\WINDOWS\BricoPacks\SysFiles\35_narrator.exe
                              + 2004-08-03 23:03:18 142,848 ----a-w C:\WINDOWS\BricoPacks\SysFiles\37_netid.dll
                              + 2004-08-03 23:03:18 2,250,240 ----a-w C:\WINDOWS\BricoPacks\SysFiles\38_netshell.dll
                              + 2004-08-03 23:03:18 250,368 ----a-w C:\WINDOWS\BricoPacks\SysFiles\39_newdev.dll
                              + 2004-08-03 23:03:06 28,672 ----a-w C:\WINDOWS\BricoPacks\SysFiles\4_batmeter.dll
                              + 2004-08-03 23:03:34 70,144 ----a-w C:\WINDOWS\BricoPacks\SysFiles\40_notepad.exe
                              + 2004-08-03 23:03:34 70,144 ----a-w C:\WINDOWS\BricoPacks\SysFiles\41_notepad.exe
                              + 2004-08-03 23:03:20 145,408 ----a-w C:\WINDOWS\BricoPacks\SysFiles\42_ntshrui.dll
                              + 2004-08-03 23:03:20 97,280 ----a-w C:\WINDOWS\BricoPacks\SysFiles\44_occache.dll
                              + 2004-08-03 23:03:20 572,928 ----a-w C:\WINDOWS\BricoPacks\SysFiles\46_printui.dll
                              + 2004-08-03 23:03:20 676,864 ----a-w C:\WINDOWS\BricoPacks\SysFiles\47_rasdlg.dll
                              + 2004-08-03 23:03:36 153,088 ----a-w C:\WINDOWS\BricoPacks\SysFiles\48_regedit.exe
                              + 2004-08-03 23:02:36 566,784 ----a-w C:\WINDOWS\BricoPacks\SysFiles\49_shdoclc.dll
                              + 2006-03-04 03:35:52 1,022,976 ----a-w C:\WINDOWS\BricoPacks\SysFiles\5_browseui.dll
                              + 2006-03-30 09:27:01 1,492,480 ----a-w C:\WINDOWS\BricoPacks\SysFiles\50_shdocvw.dll
                              + 2004-08-03 23:03:22 10,137,088 ----a-w C:\WINDOWS\BricoPacks\SysFiles\51_shell32.dll
                              + 2004-08-03 23:03:22 440,320 ----a-w C:\WINDOWS\BricoPacks\SysFiles\52_shimgvw.dll
                              + 2006-03-04 03:35:57 474,624 ----a-w C:\WINDOWS\BricoPacks\SysFiles\53_shlwapi.dll
                              + 2004-08-03 23:03:36 132,608 ----a-w C:\WINDOWS\BricoPacks\SysFiles\54_sndrec32.exe
                              + 2001-09-07 12:00:00 139,264 ----a-w C:\WINDOWS\BricoPacks\SysFiles\55_sndvol32.exe
                              + 2004-08-03 23:03:22 113,664 ----a-w C:\WINDOWS\BricoPacks\SysFiles\56_stobject.dll
                              + 2004-08-03 23:03:36 107,520 ----a-w C:\WINDOWS\BricoPacks\SysFiles\58_sysocmgr.exe
                              + 2004-08-03 23:03:24 993,280 ----a-w C:\WINDOWS\BricoPacks\SysFiles\59_syssetup.dll
                              + 2004-08-03 23:03:06 85,504 ----a-w C:\WINDOWS\BricoPacks\SysFiles\6_cabview.dll
                              + 2004-08-03 23:03:36 140,800 ----a-w C:\WINDOWS\BricoPacks\SysFiles\60_taskmgr.exe
                              + 2004-08-03 23:03:24 390,144 ----a-w C:\WINDOWS\BricoPacks\SysFiles\62_themeui.dll
                              + 2004-08-03 23:03:24 37,888 ----a-w C:\WINDOWS\BricoPacks\SysFiles\64_url.dll
                              + 2006-03-18 11:11:45 614,912 ----a-w C:\WINDOWS\BricoPacks\SysFiles\65_urlmon.dll
                              + 2004-08-03 23:03:24 279,552 ----a-w C:\WINDOWS\BricoPacks\SysFiles\66_webcheck.dll
                              + 2004-08-03 23:03:38 436,736 ----a-w C:\WINDOWS\BricoPacks\SysFiles\67_wiaacmgr.exe
                              + 2004-08-03 23:03:24 593,408 ----a-w C:\WINDOWS\BricoPacks\SysFiles\68_wiashext.dll
                              + 2006-03-04 03:35:58 661,504 ----a-w C:\WINDOWS\BricoPacks\SysFiles\69_wininet.dll
                              + 2001-09-07 12:00:00 117,760 ----a-w C:\WINDOWS\BricoPacks\SysFiles\7_calc.exe
                              + 2004-08-03 23:02:56 772,608 ----a-w C:\WINDOWS\BricoPacks\SysFiles\70_WINNTBBU.DLL
                              + 2004-08-03 23:03:26 291,328 ----a-w C:\WINDOWS\BricoPacks\SysFiles\71_winsrv.dll
                              + 2005-05-26 03:16:34 125,208 ----a-w C:\WINDOWS\BricoPacks\SysFiles\73_wuauclt.exe
                              + 2005-05-26 03:16:34 174,360 ----a-w C:\WINDOWS\BricoPacks\SysFiles\74_wuauclt1.exe
                              + 2004-08-03 23:02:46 3,451,392 ----a-w C:\WINDOWS\BricoPacks\SysFiles\76_xpsp2res.dll
                              + 2004-08-03 23:03:26 340,480 ----a-w C:\WINDOWS\BricoPacks\SysFiles\77_zipfldr.dll
                              + 2004-08-03 23:03:32 515,072 ----a-w C:\WINDOWS\BricoPacks\SysFiles\78_logonui.exe
                              + 2004-08-03 23:03:28 65,024 ----a-w C:\WINDOWS\BricoPacks\SysFiles\8_cleanmgr.exe
                              + 2004-08-03 23:03:34 52,736 ----a-w C:\WINDOWS\BricoPacks\SysFiles\80_msimn.exe
                              + 2004-08-03 23:02:24 2,515,968 ----a-w C:\WINDOWS\BricoPacks\SysFiles\81_msoeres.dll
                              + 2004-08-03 23:03:34 3,555,328 ----a-w C:\WINDOWS\BricoPacks\SysFiles\82_moviemk.exe
                              + 2004-08-03 23:03:28 399,360 ----a-w C:\WINDOWS\BricoPacks\SysFiles\9_cmd.exe
                              + 2006-11-13 23:32:44 219,136 ----a-w C:\WINDOWS\BricoPacks\SysFiles\Ux_uxtheme.dll
                              + 2001-10-18 21:51:00 46,592 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\CMExt.dll
                              + 2005-06-09 22:08:00 283,294 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\iColorFolder.dll
                              + 2006-03-09 14:33:18 405,504 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\iColorFolder.exe
                              + 2005-06-09 22:08:00 283,294 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\skins\Vista Inspirat\iColorFolder.dll
                              + 2008-01-17 22:09:43 33,617 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\uninstall.exe
                              + 2007-04-22 08:18:34 98,304 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\pack-it.exe
                              + 2004-08-03 23:03:08 454,656 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\10_cmdial32.dll
                              + 2001-09-07 12:00:00 70,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\11_console.dll
                              + 2004-08-03 23:03:08 189,440 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\12_credui.dll
                              + 2004-08-03 23:03:30 978,432 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\14_explorer.exe
                              + 2004-08-03 23:03:10 395,776 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\15_fontext.dll
                              + 2004-08-03 23:03:30 764,928 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\17_helpctr.exe
                              + 2004-08-03 23:03:12 161,792 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\18_hotplug.dll
                              + 2004-08-03 23:03:28 101,376 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\2_ahui.exe
                              + 2001-09-07 12:00:00 291,328 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\20_inetcplc.dll
                              + 2004-08-03 23:03:14 406,528 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\23_keymgr.dll
                              + 2004-08-03 23:03:38 3,128,320 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\24_logon.scr
                              + 2004-08-03 23:03:32 544,256 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\26_migwiz.exe
                              + 2004-08-03 23:02:12 380,416 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\28_moricons.dll
                              + 2004-08-03 23:03:16 1,107,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\29_msgina.dll
                              + 2006-03-23 11:32:14 3,515,392 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\30_mshtml.dll
                              + 2004-08-03 23:03:34 442,880 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\31_mspaint.exe
                              + 2004-08-03 23:03:18 325,120 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\32_mstask.dll
                              + 2004-08-03 20:59:44 657,408 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\33_mstscax.dll
                              + 2004-08-03 23:03:18 86,528 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\34_mydocs.dll
                              + 2004-08-03 23:03:34 56,320 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\35_narrator.exe
                              + 2004-08-03 23:03:18 151,040 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\37_netid.dll
                              + 2004-08-03 23:03:18 2,137,088 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\38_netshell.dll
                              + 2004-08-03 23:03:18 415,744 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\39_newdev.dll
                              + 2004-08-03 23:03:06 28,672 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\4_batmeter.dll
                              + 2004-08-03 23:03:34 156,160 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\40_notepad.exe
                              + 2004-08-03 23:03:34 156,160 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\41_notepad.exe
                              + 2004-08-03 23:03:20 233,984 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\42_ntshrui.dll
                              + 2004-08-03 23:03:20 147,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\44_occache.dll
                              + 2004-08-03 23:03:20 753,152 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\46_printui.dll
                              + 2004-08-03 23:03:20 1,249,280 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\47_rasdlg.dll
                              + 2004-08-03 23:03:36 230,912 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\48_regedit.exe
                              + 2004-08-03 23:02:36 684,032 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\49_shdoclc.dll
                              + 2006-03-04 03:35:52 1,020,928 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\5_browseui.dll
                              + 2006-03-30 09:27:01 1,772,032 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\50_shdocvw.dll
                              + 2004-08-03 23:03:22 12,898,304 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\51_shell32.dll
                              + 2004-08-03 23:03:22 1,790,464 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\52_shimgvw.dll
                              + 2006-03-04 03:35:57 498,688 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\53_shlwapi.dll
                              + 2004-08-03 23:03:36 181,760 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\54_sndrec32.exe
                              + 2001-09-07 12:00:00 152,576 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\55_sndvol32.exe
                              + 2004-08-03 23:03:22 147,968 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\56_stobject.dll
                              + 2004-08-03 23:03:36 183,296 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\58_sysocmgr.exe
                              + 2004-08-03 23:03:24 1,249,280 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\59_syssetup.dll
                              + 2004-08-03 23:03:06 83,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\6_cabview.dll
                              + 2004-08-03 23:03:36 186,880 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\60_taskmgr.exe
                              + 2004-08-03 23:03:24 392,704 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\62_themeui.dll
                              + 2004-08-03 23:03:24 59,392 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\64_url.dll
                              + 2006-03-18 11:11:45 688,640 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\65_urlmon.dll
                              + 2004-08-03 23:03:24 440,832 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\66_webcheck.dll
                              + 2004-08-03 23:03:38 888,832 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\67_wiaacmgr.exe
                              + 2004-08-03 23:03:24 773,632 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\68_wiashext.dll
                              + 2006-03-04 03:35:58 695,808 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\69_wininet.dll
                              + 2001-09-07 12:00:00 117,760 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\7_calc.exe
                              + 2004-08-03 23:02:56 772,608 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\70_WINNTBBU.DLL
                              + 2004-08-03 23:03:26 292,352 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\71_winsrv.dll
                              + 2005-05-26 03:16:34 114,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\73_wuauclt.exe
                              + 2005-05-26 03:16:34 294,168 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\74_wuauclt1.exe
                              + 2004-08-03 23:02:46 3,353,600 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\76_xpsp2res.dll
                              + 2004-08-03 23:03:26 907,776 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\77_zipfldr.dll
                              + 2004-08-03 23:03:32 5,650,432 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\78_logonui.exe
                              + 2004-08-03 23:03:30 832,512 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\79_iexplore.exe
                              + 2004-08-03 23:03:28 109,056 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\8_cleanmgr.exe
                              + 2004-08-03 23:03:34 223,232 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\80_msimn.exe
                              + 2004-08-03 23:02:24 2,515,968 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\81_msoeres.dll
                              + 2004-08-03 23:03:34 3,676,160 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\82_moviemk.exe
                              + 2004-08-03 23:03:28 426,496 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\9_cmd.exe
                              + 2006-11-13 23:32:44 219,136 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\Ux_uxtheme.dll
                              + 2007-04-22 10:31:50 147,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Panel.exe
                              + 2008-01-17 22:10:47 153,834 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Remove.exe
                              + 2007-05-28 15:06:40 15,191 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\ResFiles\77_logonui.exe\UIFILE_1000.bin
                              + 2006-05-21 07:49:32 881,664 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\ResHacker\ResHacker.exe
                              + 2007-03-04 07:48:16 106,496 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Docklets\RocketClock\RocketClock.dll
                              + 2007-01-01 15:23:54 1,645,320 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\gdiplus.dll
                              + 2007-03-18 22:04:22 69,632 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll
                              + 2007-03-18 22:05:02 630,784 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
                              + 2007-03-18 22:04:18 69,632 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\Debug.exe
                              + 2007-01-01 15:24:48 6,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\LanguageID Finder.exe
                              + 2006-05-21 07:49:38 11,776 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\dialog.exe
                              + 2006-05-21 07:49:38 32,610 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\refresh.exe
                              + 2005-06-01 19:41:18 65,536 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
                              + 2006-05-21 07:43:06 1,645,320 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\gdiplus.dll
                              + 2006-05-21 07:43:06 6,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Languages\LanguageID Finder.exe
                              + 2006-05-21 07:43:06 53,248 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Plugins\iBounce\fx.dll
                              + 2006-05-21 07:43:06 57,344 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Plugins\iZoom\fx.dll
                              + 2006-05-21 07:43:08 180,224 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
                              + 2006-05-21 07:43:08 65,536 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon.dll
                              + 2006-05-21 07:43:08 35,328 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Uninst.exe
                              + 2007-05-28 15:06:48 155,417 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Update.exe
                              + 2006-05-21 07:43:14 53,248 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.dll
                              + 2006-05-21 07:43:14 155,648 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
                              - 2008-01-16 10:16:53 1,421,312 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000001\NTUSER.DAT
                              + 2008-01-21 11:29:06 1,421,312 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000001\NTUSER.DAT
                              - 2008-01-16 10:16:53 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000002\UsrClass.dat
                              + 2008-01-21 11:29:06 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000002\UsrClass.dat
                              - 2008-01-16 10:16:53 1,421,312 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000003\NTUSER.DAT
                              + 2008-01-21 11:29:06 13,496,320 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000003\NTUSER.DAT
                              + 2008-01-21 11:29:06 286,720 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000004\UsrClass.dat
                              + 2008-01-21 11:29:06 1,421,312 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000005\NTUSER.DAT
                              - 2008-01-16 10:16:54 286,720 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000006\UsrClass.dat
                              + 2008-01-21 11:29:06 8,192 ----a-w C:\WINDOWS\erdnt\Hiv-backup\Users\00000006\UsrClass.dat
                              - 2004-08-03 23:03:30 1,249,280 ----a-w C:\WINDOWS\explorer.exe
                              + 2004-08-03 23:03:30 978,432 ----a-w C:\WINDOWS\explorer.exe
                              - 2004-08-03 23:03:34 70,144 -c--a-w C:\WINDOWS\NOTEPAD.EXE
                              + 2004-08-03 23:03:34 156,160 ----a-w C:\WINDOWS\notepad.exe
                              - 2004-08-03 23:03:30 768,512 -c--a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe
                              + 2004-08-03 23:03:30 764,928 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe
                              - 2004-08-03 23:03:36 153,088 -c--a-w C:\WINDOWS\regedit.exe
                              + 2004-08-03 23:03:36 230,912 ----a-w C:\WINDOWS\regedit.exe
                              + 2007-04-20 17:16:00 1,117,184 ----a-w C:\WINDOWS\Resources\Themes\Inspirat2\Shell\AeroBlack\Shellstyle.dll
                              + 2007-04-20 17:16:00 1,117,184 ----a-w C:\WINDOWS\Resources\Themes\Inspirat2\Shell\AeroBlue\Shellstyle.dll
                              + 2007-04-21 09:07:00 894,464 ----a-w C:\WINDOWS\Resources\Themes\Inspirat2\Shell\ClassicXP\Shellstyle.dll
                              + 2007-04-20 17:16:00 1,117,184 ----a-w C:\WINDOWS\Resources\Themes\Inspirat2\Shell\NormalColor\Shellstyle.dll
                              + 2005-08-20 09:30:00 2,085,888 ----a-w C:\WINDOWS\Resources\Themes\Vista\Shell\NormalColor\shellstyle.dll
                              + 2005-08-20 11:48:00 1,201,664 ----a-w C:\WINDOWS\Resources\Themes\Vista\Shell\VISTA12\shellstyle.dll
                              + 2005-08-20 09:30:00 2,085,888 ----a-w C:\WINDOWS\Resources\Themes\Vista\Shell\VISTA2\shellstyle.dll
                              + 2005-08-20 11:48:00 1,201,664 ----a-w C:\WINDOWS\Resources\Themes\Vista\Shell\VISTA22\shellstyle.dll
                              - 2004-08-03 23:03:28 98,304 -c--a-w C:\WINDOWS\system32\ahui.exe
                              + 2004-08-03 23:03:28 101,376 ----a-w C:\WINDOWS\system32\ahui.exe
                              - 2006-03-04 03:35:52 1,022,976 ----a-w C:\WINDOWS\system32\browseui.dll
                              + 2006-03-04 03:35:52 1,020,928 ----a-w C:\WINDOWS\system32\browseui.dll
                              - 2004-08-03 23:03:06 85,504 -c--a-w C:\WINDOWS\system32\cabview.dll
                              + 2004-08-03 23:03:06 83,456 ----a-w C:\WINDOWS\system32\cabview.dll
                              - 2004-08-03 23:03:28 65,024 ----a-w C:\WINDOWS\system32\cleanmgr.exe
                              + 2004-08-03 23:03:28 109,056 ----a-w C:\WINDOWS\system32\cleanmgr.exe
                              - 2004-08-03 23:03:28 399,360 -c--a-w C:\WINDOWS\system32\cmd.exe
                              + 2004-08-03 23:03:28 426,496 ----a-w C:\WINDOWS\system32\cmd.exe
                              - 2004-08-03 23:03:08 349,184 -c--a-w C:\WINDOWS\system32\cmdial32.dll
                              + 2004-08-03 23:03:08 454,656 ----a-w C:\WINDOWS\system32\cmdial32.dll
                              - 2001-09-07 12:00:00 67,072 -c--a-w C:\WINDOWS\system32\console.dll
                              + 2001-09-07 12:00:00 70,144 ----a-w C:\WINDOWS\system32\console.dll
                              - 2004-08-03 23:03:08 164,864 ----a-w C:\WINDOWS\system32\credui.dll
                              + 2004-08-03 23:03:08 189,440 ----a-w C:\WINDOWS\system32\credui.dll
                              - 2004-08-03 23:03:28 98,304 -c--a-w C:\WINDOWS\system32\dllcache\ahui.exe
                              + 2004-08-03 23:03:28 101,376 -c--a-w C:\WINDOWS\system32\dllcache\ahui.exe
                              - 2004-08-03 23:03:06 85,504 -c--a-w C:\WINDOWS\system32\dllcache\cabview.dll
                              + 2004-08-03 23:03:06 83,456 -c--a-w C:\WINDOWS\system32\dllcache\cabview.dll
                              - 2004-08-03 23:03:28 399,360 -c--a-w C:\WINDOWS\system32\dllcache\cmd.exe
                              + 2004-08-03 23:03:28 426,496 -c--a-w C:\WINDOWS\system32\dllcache\cmd.exe
                              - 2004-08-03 23:03:08 349,184 -c--a-w C:\WINDOWS\system32\dllcache\cmdial32.dll
                              + 2004-08-03 23:03:08 454,656 -c--a-w C:\WINDOWS\system32\dllcache\cmdial32.dll
                              - 2001-09-07 12:00:00 67,072 -c--a-w C:\WINDOWS\system32\dllcache\console.dll
                              + 2001-09-07 12:00:00 70,144 -c--a-w C:\WINDOWS\system32\dllcache\console.dll
                              - 2004-08-03 23:03:10 386,048 -c--a-w C:\WINDOWS\system32\dllcache\fontext.dll
                              + 2004-08-03 23:03:10 395,776 -c--a-w C:\WINDOWS\system32\dllcache\fontext.dll
                              - 2004-08-03 23:03:30 768,512 -c--a-w C:\WINDOWS\system32\dllcache\helpctr.exe
                              + 2004-08-03 23:03:30 764,928 -c--a-w C:\WINDOWS\system32\dllcache\helpctr.exe
                              - 2004-08-03 23:03:12 146,944 -c--a-w C:\WINDOWS\system32\dllcache\hotplug.dll
                              + 2004-08-03 23:03:12 161,792 -c--a-w C:\WINDOWS\system32\dllcache\hotplug.dll
                              - 2001-09-07 12:00:00 120,832 -c--a-w C:\WINDOWS\system32\dllcache\inetcplc.dll
                              + 2001-09-07 12:00:00 291,328 -c--a-w C:\WINDOWS\system32\dllcache\inetcplc.dll
                              - 2004-08-03 23:03:14 154,112 -c--a-w C:\WINDOWS\system32\dllcache\keymgr.dll
                              + 2004-08-03 23:03:14 406,528 -c--a-w C:\WINDOWS\system32\dllcache\keymgr.dll
                              - 2004-08-03 23:03:38 220,672 -c--a-w C:\WINDOWS\system32\dllcache\logon.scr
                              + 2004-08-03 23:03:38 3,128,320 -c--a-w C:\WINDOWS\system32\dllcache\logon.scr
                              - 2004-08-03 23:03:32 515,072 -c--a-w C:\WINDOWS\system32\dllcache\logonui.exe
                              + 2004-08-03 23:03:32 5,650,432 -c--a-w C:\WINDOWS\system32\dllcache\logonui.exe
                              - 2004-08-03 23:03:32 246,272 -c--a-w C:\WINDOWS\system32\dllcache\migwiz.exe
                              + 2004-08-03 23:03:32 544,256 -c--a-w C:\WINDOWS\system32\dllcache\migwiz.exe
                              - 2004-08-03 23:02:12 216,064 -c--a-w C:\WINDOWS\system32\dllcache\moricons.dll
                              + 2004-08-03 23:02:12 380,416 -c--a-w C:\WINDOWS\system32\dllcache\moricons.dll
                              - 2004-08-03 23:03:34 3,555,328 -c--a-w C:\WINDOWS\system32\dllcache\moviemk.exe
                              + 2004-08-03 23:03:34 3,676,160 -c--a-w C:\WINDOWS\system32\dllcache\moviemk.exe
                              - 2004-08-03 23:03:18 278,528 -c--a-w C:\WINDOWS\system32\dllcache\mstask.dll
                              + 2004-08-03 23:03:18 325,120 -c--a-w C:\WINDOWS\system32\dllcache\mstask.dll
                              - 2004-08-03 20:59:44 655,360 -c--a-w C:\WINDOWS\system32\dllcache\mstscax.dll
                              + 2004-08-03 20:59:44 657,408 -c--a-w C:\WINDOWS\system32\dllcache\mstscax.dll
                              - 2004-08-03 23:03:34 54,784 -c--a-w C:\WINDOWS\system32\dllcache\narrator.exe
                              + 2004-08-03 23:03:34 56,320 -c--a-w C:\WINDOWS\system32\dllcache\narrator.exe
                              - 2004-08-03 23:03:18 142,848 -c--a-w C:\WINDOWS\system32\dllcache\netid.dll
                              + 2004-08-03 23:03:18 151,040 -c--a-w C:\WINDOWS\system32\dllcache\netid.dll
                              - 2004-08-03 23:03:18 250,368 -c--a-w C:\WINDOWS\system32\dllcache\newdev.dll
                              + 2004-08-03 23:03:18 415,744 -c--a-w C:\WINDOWS\system32\dllcache\newdev.dll
                              - 2004-08-03 23:03:34 70,144 -c--a-w C:\WINDOWS\system32\dllcache\notepad.exe
                              + 2004-08-03 23:03:34 156,160 -c--a-w C:\WINDOWS\system32\dllcache\notepad.exe
                              - 2004-08-03 23:03:36 153,088 -c--a-w C:\WINDOWS\system32\dllcache\regedit.exe
                              + 2004-08-03 23:03:36 230,912 -c--a-w C:\WINDOWS\system32\dllcache\regedit.exe
                              - 2004-08-03 23:03:36 132,608 -c--a-w C:\WINDOWS\system32\dllcache\sndrec32.exe
                              + 2004-08-03 23:03:36 181,760 -c--a-w C:\WINDOWS\system32\dllcache\sndrec32.exe
                              - 2001-09-07 12:00:00 139,264 -c--a-w C:\WINDOWS\system32\dllcache\sndvol32.exe
                              + 2001-09-07 12:00:00 152,576 -c--a-w C:\WINDOWS\system32\dllcache\sndvol32.exe
                              - 2004-08-03 23:03:36 107,520 -c--a-w C:\WINDOWS\system32\dllcache\sysocmgr.exe
                              + 2004-08-03 23:03:36 183,296 -c--a-w C:\WINDOWS\system32\dllcache\sysocmgr.exe
                              - 2004-08-03 23:03:24 993,280 -c--a-w C:\WINDOWS\system32\dllcache\syssetup.dll
                              + 2004-08-03 23:03:24 1,249,280 -c--a-w C:\WINDOWS\system32\dllcache\syssetup.dll
                              - 2004-08-03 23:03:36 140,800 -c--a-w C:\WINDOWS\system32\dllcache\taskmgr.exe
                              + 2004-08-03 23:03:36 186,880 -c--a-w C:\WINDOWS\system32\dllcache\taskmgr.exe
                              - 2004-08-03 23:03:38 436,736 -c--a-w C:\WINDOWS\system32\dllcache\wiaacmgr.exe
                              + 2004-08-03 23:03:38 888,832 -c--a-w C:\WINDOWS\system32\dllcache\wiaacmgr.exe
                              - 2005-05-26 03:16:34 125,208 -c--a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
                              + 2005-05-26 03:16:34 114,456 -c--a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
                              - 2005-05-26 03:16:34 174,360 -c--a-w C:\WINDOWS\system32\dllcache\wuauclt1.exe
                              + 2005-05-26 03:16:34 294,168 -c--a-w C:\WINDOWS\system32\dllcache\wuauclt1.exe
                              - 2004-08-03 23:03:10 386,048 -c--a-w C:\WINDOWS\system32\fontext.dll
                              + 2004-08-03 23:03:10 395,776 ----a-w C:\WINDOWS\system32\fontext.dll
                              - 2004-08-03 23:03:12 146,944 -c--a-w C:\WINDOWS\system32\hotplug.dll
                              + 2004-08-03 23:03:12 161,792 ----a-w C:\WINDOWS\system32\hotplug.dll
                              - 2001-09-07 12:00:00 120,832 -c--a-w C:\WINDOWS\system32\inetcplc.dll
                              + 2001-09-07 12:00:00 291,328 ----a-w C:\WINDOWS\system32\inetcplc.dll
                              - 2004-08-03 23:03:14 154,112 -c--a-w C:\WINDOWS\system32\keymgr.dll
                              + 2004-08-03 23:03:14 406,528 ----a-w C:\WINDOWS\system32\keymgr.dll
                              - 2004-08-03 23:03:38 220,672 -c--a-w C:\WINDOWS\system32\logon.scr
                              + 2004-08-03 23:03:38 3,128,320 ----a-w C:\WINDOWS\system32\logon.scr
                              - 2004-08-03 23:03:32 515,072 -c--a-w C:\WINDOWS\system32\logonui.exe
                              + 2004-08-03 23:03:32 5,650,432 ----a-w C:\WINDOWS\system32\logonui.exe
                              - 2004-08-03 23:02:12 216,064 -c--a-w C:\WINDOWS\system32\moricons.dll
                              + 2004-08-03 23:02:12 380,416 ----a-w C:\WINDOWS\system32\moricons.dll
                              - 2004-08-03 23:03:16 1,562,112 ----a-w C:\WINDOWS\system32\msgina.dll
                              + 2004-08-03 23:03:16 1,107,456 ----a-w C:\WINDOWS\system32\msgina.dll
                              - 2006-03-23 11:32:14 3,074,560 ----a-w C:\WINDOWS\system32\mshtml.dll
                              + 2006-03-23 11:32:14 3,515,392 ----a-w C:\WINDOWS\system32\mshtml.dll
                              - 2004-08-03 23:03:34 363,520 -c--a-w C:\WINDOWS\system32\mspaint.exe
                              + 2004-08-03 23:03:34 442,880 ----a-w C:\WINDOWS\system32\mspaint.exe
                              - 2004-08-03 23:03:18 278,528 -c--a-w C:\WINDOWS\system32\mstask.dll
                              + 2004-08-03 23:03:18 325,120 ----a-w C:\WINDOWS\system32\mstask.dll
                              - 2004-08-03 20:59:44 655,360 -c--a-w C:\WINDOWS\system32\mstscax.dll
                              + 2004-08-03 20:59:44 657,408 ----a-w C:\WINDOWS\system32\mstscax.dll
                              - 2004-08-03 23:03:18 81,408 ----a-w C:\WINDOWS\system32\mydocs.dll
                              + 2004-08-03 23:03:18 86,528 ----a-w C:\WINDOWS\system32\mydocs.dll
                              - 2004-08-03 23:03:34 54,784 -c--a-w C:\WINDOWS\system32\narrator.exe
                              + 2004-08-03 23:03:34 56,320 ----a-w C:\WINDOWS\system32\narrator.exe
                              - 2004-08-03 23:03:18 142,848 -c--a-w C:\WINDOWS\system32\netid.dll
                              + 2004-08-03 23:03:18 151,040 ----a-w C:\WINDOWS\system32\netid.dll
                              - 2004-08-03 23:03:18 2,250,240 ----a-w C:\WINDOWS\system32\netshell.dll
                              + 2004-08-03 23:03:18 2,137,088 ----a-w C:\WINDOWS\system32\netshell.dll
                              - 2004-08-03 23:03:18 250,368 -c--a-w C:\WINDOWS\system32\newdev.dll
                              + 2004-08-03 23:03:18 415,744 ----a-w C:\WINDOWS\system32\newdev.dll
                              - 2004-08-03 23:03:34 70,144 ----a-w C:\WINDOWS\system32\notepad.exe
                              + 2004-08-03 23:03:34 156,160 ----a-w C:\WINDOWS\system32\notepad.exe
                              - 2004-08-03 23:03:20 145,408 ----a-w C:\WINDOWS\system32\ntshrui.dll
                              + 2004-08-03 23:03:20 233,984 ----a-w C:\WINDOWS\system32\ntshrui.dll
                              - 2004-08-03 23:03:20 97,280 ----a-w C:\WINDOWS\system32\occache.dll
                              + 2004-08-03 23:03:20 147,456 ----a-w C:\WINDOWS\system32\occache.dll
                              - 2004-08-03 23:03:20 572,928 ----a-w C:\WINDOWS\system32\printui.dll
                              + 2004-08-03 23:03:20 753,152 ----a-w C:\WINDOWS\system32\printui.dll
                              - 2004-08-03 23:03:20 676,864 ----a-w C:\WINDOWS\system32\rasdlg.dll
                              + 2004-08-03 23:03:20 1,249,280 ----a-w C:\WINDOWS\system32\rasdlg.dll
                              - 2004-08-03 23:02:36 566,784 ----a-w C:\WINDOWS\system32\shdoclc.dll
                              + 2004-08-03 23:02:36 684,032 ----a-w C:\WINDOWS\system32\shdoclc.dll
                              - 2006-03-30 09:27:01 1,492,480 ----a-w C:\WINDOWS\system32\shdocvw.dll
                              + 2006-03-30 09:27:01 1,772,032 ----a-w C:\WINDOWS\system32\shdocvw.dll
                              - 2004-08-03 23:03:22 10,137,088 ----a-w C:\WINDOWS\system32\shell32.dll
                              + 2004-08-03 23:03:22 12,898,304 ----a-w C:\WINDOWS\system32\shell32.dll
                              - 2004-08-03 23:03:22 440,320 ----a-w C:\WINDOWS\system32\shimgvw.dll
                              + 2004-08-03 23:03:22 1,790,464 ----a-w C:\WINDOWS\system32\shimgvw.dll
                              - 2006-03-04 03:35:57 474,624 ----a-w C:\WINDOWS\system32\shlwapi.dll
                              + 2006-03-04 03:35:57 498,688 ----a-w C:\WINDOWS\system32\shlwapi.dll
                              - 2004-08-03 23:03:36 132,608 -c--a-w C:\WINDOWS\system32\sndrec32.exe
                              + 2004-08-03 23:03:36 181,760 ----a-w C:\WINDOWS\system32\sndrec32.exe
                              - 2001-09-07 12:00:00 139,264 -c--a-w C:\WINDOWS\system32\sndvol32.exe
                              + 2001-09-07 12:00:00 152,576 ----a-w C:\WINDOWS\system32\sndvol32.exe
                              - 2004-08-03 23:03:22 113,664 ----a-w C:\WINDOWS\system32\stobject.dll
                              + 2004-08-03 23:03:22 147,968 ----a-w C:\WINDOWS\system32\stobject.dll
                              - 2004-08-03 23:03:36 107,520 -c--a-w C:\WINDOWS\system32\sysocmgr.exe
                              + 2004-08-03 23:03:36 183,296 ----a-w C:\WINDOWS\system32\sysocmgr.exe
                              - 2004-08-03 23:03:24 993,280 -c--a-w C:\WINDOWS\system32\syssetup.dll
                              + 2004-08-03 23:03:24 1,249,280 ----a-w C:\WINDOWS\system32\syssetup.dll
                              - 2004-08-03 23:03:36 140,800 -c--a-w C:\WINDOWS\system32\taskmgr.exe
                              + 2004-08-03 23:03:36 186,880 ----a-w C:\WINDOWS\system32\taskmgr.exe
                              - 2004-08-03 23:03:24 390,144 ----a-w C:\WINDOWS\system32\themeui.dll
                              + 2004-08-03 23:03:24 392,704 ----a-w C:\WINDOWS\system32\themeui.dll
                              - 2007-03-21 18:54:16 77,312 -c--a-w C:\WINDOWS\system32\TWAIN_32.DLL
                              + 2007-03-21 19:54:16 77,312 ----a-w C:\WINDOWS\system32\TWAIN_32.DLL
                              - 2007-03-21 18:54:16 48,560 -c--a-w C:\WINDOWS\system32\TWUNK_16.EXE
                              + 2007-03-21 19:54:16 48,560 ----a-w C:\WINDOWS\system32\TWUNK_16.EXE
                              - 2007-03-21 18:54:16 69,632 -c--a-w C:\WINDOWS\system32\TWUNK_32.EXE
                              + 2007-03-21 19:54:16 69,632 ----a-w C:\WINDOWS\system32\TWUNK_32.EXE
                              - 2004-08-03 23:03:24 37,888 ----a-w C:\WINDOWS\system32\url.dll
                              + 2004-08-03 23:03:24 59,392 ----a-w C:\WINDOWS\system32\url.dll
                              - 2006-03-18 11:11:45 614,912 ----a-w C:\WINDOWS\system32\urlmon.dll
                              + 2006-03-18 11:11:45 688,640 ----a-w C:\WINDOWS\system32\urlmon.dll
                              - 2004-08-03 23:03:32 246,272 -c--a-w C:\WINDOWS\system32\usmt\migwiz.exe
                              + 2004-08-03 23:03:32 544,256 ----a-w C:\WINDOWS\system32\usmt\migwiz.exe
                              - 2004-08-03 23:03:24 279,552 ----a-w C:\WINDOWS\system32\webcheck.dll
                              + 2004-08-03 23:03:24 440,832 ----a-w C:\WINDOWS\system32\webcheck.dll
                              - 2004-08-03 23:03:38 436,736 -c--a-w C:\WINDOWS\system32\wiaacmgr.exe
                              + 2004-08-03 23:03:38 888,832 ----a-w C:\WINDOWS\system32\wiaacmgr.exe
                              - 2004-08-03 23:03:24 593,408 ----a-w C:\WINDOWS\system32\wiashext.dll
                              + 2004-08-03 23:03:24 773,632 ----a-w C:\WINDOWS\system32\wiashext.dll
                              - 2006-03-04 03:35:58 661,504 ----a-w C:\WINDOWS\system32\wininet.dll
                              + 2006-03-04 03:35:58 695,808 ----a-w C:\WINDOWS\system32\wininet.dll
                              - 2004-08-03 23:03:26 291,328 ----a-w C:\WINDOWS\system32\winsrv.dll
                              + 2004-08-03 23:03:26 292,352 ----a-w C:\WINDOWS\system32\winsrv.dll
                              - 2005-05-26 03:16:34 125,208 -c--a-w C:\WINDOWS\system32\wuauclt.exe
                              + 2005-05-26 03:16:34 114,456 ----a-w C:\WINDOWS\system32\wuauclt.exe
                              - 2005-05-26 03:16:34 174,360 -c--a-w C:\WINDOWS\system32\wuauclt1.exe
                              + 2005-05-26 03:16:34 294,168 ----a-w C:\WINDOWS\system32\wuauclt1.exe
                              - 2004-08-03 23:02:46 3,451,392 ----a-w C:\WINDOWS\system32\xpsp2res.dll
                              + 2004-08-03 23:02:46 3,353,600 ----a-w C:\WINDOWS\system32\xpsp2res.dll
                              - 2004-08-03 23:03:26 340,480 ----a-w C:\WINDOWS\system32\zipfldr.dll
                              + 2004-08-03 23:03:26 907,776 ----a-w C:\WINDOWS\system32\zipfldr.dll
                              + 2008-01-18 08:38:56 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_760.dat
                              .
                              -- Snapshot reset to current date --
                              .
                              ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
                              .
                              .
                              REGEDIT4
                              *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond

                              [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                              "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-10-09 11:28 139264]
                              "HomeAlarm"="C:\Program Files\Chameleon Clock\ChamClock.exe" [2007-09-18 01:32 699392]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                              "BluetoothAuthenticationAgent"="rundll32.exe" [2004-08-04 00:03 33792 C:\WINDOWS\system32\rundll32.exe]
                              "LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2006-04-13 11:09 49152]
                              "CTHelper"="CTHELPER.EXE" [2006-08-11 14:56 17920 C:\WINDOWS\CTHELPER.EXE]
                              "CTxfiHlp"="CTXFIHLP.EXE" [2006-08-11 14:56 18944 C:\WINDOWS\system32\CTXFIHLP.EXE]
                              "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-10-30 09:36 256576]
                              "NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 16:40 155648]
                              "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-01-03 21:07 579072]

                              [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                              "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 00:03 15360]
                              "AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-01-03 21:07 219136]

                              C:\Documents and Settings\mp3president\Menu Start\Programma's\Opstarten\
                              NewsLeecher.lnk - D:\Program Files\NewsLeecher\newsleecher.exe [2008-01-01 11:13:00]
                              RegVac.lnk - C:\Program Files\RegVac Registry Cleaner\regvac.exe [2007-09-29 09:17:11]

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
                              @="Driver"

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
                              @="Driver"

                              [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^Adobe Acrobat Snelle start.lnk]
                              backup=C:\WINDOWS\pss\Adobe Acrobat Snelle start.lnkCommon Startup

                              [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programma's^Opstarten^HP Digital Imaging Monitor.lnk]
                              backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup

                              [HKLM\~\startupfolder\C:^Documents and Settings^mp3president^Menu Start^Programma's^Opstarten^SABnzbd.exe]
                              backup=C:\WINDOWS\pss\SABnzbd.exeStartup

                              [HKLM\~\startupfolder\C:^Documents and Settings^mp3president^Menu Start^Programma's^Opstarten^YouTube Uploader.lnk]
                              backup=C:\WINDOWS\pss\YouTube Uploader.lnkStartup

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
                              --a--c--- 2006-01-12 19:52 483328 C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
                              --a------ 2006-10-09 11:28 139264 C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
                              --a--c--- 2004-08-04 00:03 15360 C:\WINDOWS\system32\ctfmon.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHELPER]
                              --a------ 2006-08-11 14:56 17920 C:\WINDOWS\CTHELPER.EXE

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
                              --a------ 2006-08-11 14:56 18944 C:\WINDOWS\system32\CTXFIHLP.EXE

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DiskeeperSystray]
                              --a--c--- 2005-11-22 17:38 221184 C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Firefox]
                              --a------ 2007-12-01 20:20 7650416 C:\Program Files\Mozilla Firefox\firefox.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
                              --a--c-t- 2007-10-27 21:45 19952 C:\Documents and Settings\mp3president\Local Settings\Application Data\Google\Update\1.0.87.0\GoogleUpdate.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
                              --a--c--- 2006-02-19 01:41 49152 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

                              [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
                              --a--c--- 2007-10-31 10:19 378784 C:\Program Files\TomTom HOME 2\HOMERunner.exe
                              Ik probeer alles eerst zelf uit te vogelen, maar het doet me pijn om alsnog anderen voor hulp te vragen.

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X