Mededeling

Collapse
No announcement yet.

MT50... en andere ongewenste pop ups

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • MT50... en andere ongewenste pop ups

    Hey! Ik heb sinds kort erge last van pop ups.. Heb Adaware en Spybot en AVG geinstalleerd en gedraaid maar geen resultaat. Zouden jullie mij AUB willen helpen.. wordt er tureluurs van (Tevens is mijn laptop erg sloom, heeft dit ermee te maken wellicht?)

    Mijn HJ log:

    Logfile of HijackThis v1.99.1
    Scan saved at 10:11:27, on 12-2-2008
    Platform: Unknown Windows (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16575)

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\Launch Manager\HotkeyApp.exe
    C:\Program Files\Grisoft\AVG7\avgcc.exe
    C:\Program Files\uTorrent\uTorrent.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Launch Manager\LaunchAp.exe
    C:\Program Files\Launch Manager\WButton.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\Grisoft\AVG7\avgw.exe
    C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\HJT\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aldi.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: Adobe PDF Reader Help bij koppelingen - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - Startup: OneNote-inhoudsopgave.onetoc2
    O8 - Extra context menu item: Download Video - http://www.viloader.net/addon.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
    O11 - Options group: [INTERNATIONAL] International*
    O13 - Gopher Prefix:
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
    O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll
    O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
    O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
    O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
    O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

    Bedankt! Lukas

  • #2
    Download Combofix (mirror) naar je Bureaublad.
    Dubbelklik op Combofix.exe
    Kies voor "Continue" door 1 te typen gevolgd door ENTER.
    Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.
    Wanneer de fix voltooid is en na herstart, zal de log combofix.txt openen.
    Plaats deze log in je volgende post.

    NOTA: Indien je virusscanner reageert met een melding van een scriptuitvoering, mag je dit negeren.

    Comment


    • #3
      Als ik het bestand Combofix.exe open begint deze direct te scannen, hoef dus niet 1 enter te doen. Als ik vervolgens de FixLog open krijg ik de volgende melding: You do not have Administrator rights to run the tool.
      Please contact your Network Administrator for more information.
      Terwijl ik gewoon alle rechten heb..

      Bedankt weer

      Comment


      • #4
        Ga naar Start - Uitvoeren en geef hier het volgende in:
        Combofix /U
        Druk daarna op OK.
        Let op: Er moet een spatie tussen Combofix en /U zitten.

        Dit zal Combofix deïnstalleren.


        Download Deckard's System Scanner naar je Bureaublad.
        • Sluit alle toepassingen en vensters.
        • Dubbelklik op dss.exe om het te activeren, en volg de aanwijzingen.
        • Wanneer de scan volledig is, zal een tekstbestand - main.txt - openen.
        • Kopiëer (Ctrl+A gevolgd door Ctrl+C) en plak (Ctrl+V) de inhoud van main.txt in je volgende antwoord.

        Opmerking: Sommige firewalls kunnen waarschuwen dat sigcheck.exe probeert verbinding te maken met het internet
        - zorg dat sigcheck.exe toestemming krijgt om dit te doen !
        Tevens kan het gebeuren dat je Antivirus DSS als verdacht aangeeft, of zelfs probeert te verwijderen.
        Laat je Antivirus dit niet verwijderen ! (In dit geval is het misschien beter om tijdens de scan van DSS je Antivirus even uit te schakelen)

        Comment


        • #5
          Deckard's System Scanner v20071014.68
          Run by Lukas on 2008-02-14 09:56:03
          Computer is in Normal Mode.
          --------------------------------------------------------------------------------

          -- Last 5 Restore Point(s) --
          8: 2008-02-13 18:47:51 UTC - RP257 - Installatie van apparaatstuurprogramma: Nokia Draagbare apparaten
          7: 2008-02-13 18:45:58 UTC - RP256 - Installatie van apparaatstuurprogramma: Nokia Poorten (COM & LPT)
          6: 2008-02-13 18:44:34 UTC - RP255 - Installatie van apparaatstuurprogramma: Nokia Modems
          5: 2008-02-13 18:43:04 UTC - RP254 - Installatie van apparaatstuurprogramma: Nokia
          4: 2008-02-13 18:40:50 UTC - RP253 - Installatie van apparaatstuurprogramma: Nokia


          -- First Restore Point --
          1: 2008-02-07 20:07:11 UTC - RP250 - Installed Java(TM) 6 Update 3


          Backed up registry hives.
          Performed disk cleanup.



          -- HijackThis (run as Lukas.exe) -----------------------------------------------

          Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 10:01, on 2008-02-14
          Platform: Windows Vista (WinNT 6.00.1904)
          MSIE: Internet Explorer v7.00 (7.00.6000.16575)
          Boot mode: Normal

          Running processes:
          C:\Windows\system32\taskeng.exe
          C:\Windows\system32\Dwm.exe
          C:\Windows\Explorer.EXE
          C:\Windows\RtHDVCpl.exe
          C:\Program Files\Launch Manager\HotkeyApp.exe
          C:\Program Files\Launch Manager\LaunchAp.exe
          C:\Program Files\Launch Manager\WButton.exe
          C:\Windows\System32\mobsync.exe
          C:\Program Files\Windows Media Player\WMPNSCFG.exe
          C:\Users\Lukas\Desktop\dss.exe
          C:\Windows\system32\conime.exe
          C:\Windows\system32\SearchFilterHost.exe
          C:\PROGRA~1\TRENDM~1\HIJACK~1\Lukas.exe

          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aldi.com/
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
          O1 - Hosts: ::1 localhost
          O2 - BHO: Adobe PDF Reader Help bij koppelingen - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
          O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
          O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
          O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
          O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"
          O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
          O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
          O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
          O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
          O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
          O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
          O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
          O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
          O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
          O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEEM')
          O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
          O4 - Startup: OneNote-inhoudsopgave.onetoc2
          O8 - Extra context menu item: Download Video - http://www.viloader.net/addon.htm
          O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
          O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
          O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
          O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
          O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
          O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
          O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
          O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
          O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O13 - Gopher Prefix:
          O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
          O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
          O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll
          O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
          O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
          O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
          O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
          O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
          O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

          --
          End of file - 5847 bytes

          -- File Associations -----------------------------------------------------------

          .cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*


          -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

          R1 Hotkey - c:\windows\system32\drivers\hotkey.sys
          R3 Ad-Watch Connect Filter (Ad-Watch Connect Kernel Filter) - \??\c:\windows\system32\drivers\nsdriver.sys
          R3 dvd43llh - c:\windows\system32\drivers\dvd43llh.sys <Not Verified; RIF; DVD For Free>
          R3 mcdbus (Driver for MagicISO SCSI Host Controller) - c:\windows\system32\drivers\mcdbus.sys <Not Verified; MagicISO, Inc.; MagicISO SCSI Host Controller>


          -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

          R3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>

          S4 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe
          S4 NMIndexingService - "c:\program files\common files\ahead\lib\nmindexingservice.exe" <Not Verified; Nero AG; Nero Home>
          S4 PCLEPCI - c:\windows\system32\drivers\pclepci.sys <Not Verified; Pinnacle Systems GmbH; PCLEPCI>
          S4 WisLMSvc - "c:\program files\launch manager\wislmsvc.exe" <Not Verified; Wistron Corp.; >


          -- Device Manager: Disabled ----------------------------------------------------

          Class GUID: {eec5ad98-8080-425f-922a-dabf3de3f69a}
          Description: Nokia N81
          Device ID: ROOT\WPD\0000
          Manufacturer: Nokia
          Name: Nokia N81
          PNP Device ID: ROOT\WPD\0000
          Service: WUDFRd


          -- Scheduled Tasks -------------------------------------------------------------

          2008-02-13 19:02:00 422 --a------ C:\Windows\Tasks\At1.job


          -- Files created between 2008-01-14 and 2008-02-14 -----------------------------

          2008-02-14 10:01:30 0 d-------- C:\Program Files\Trend Micro
          2008-02-13 22:56:27 719872 --a------ C:\Windows\system32\devil.dll <Not Verified; Abysmal Software; Developer's Image Library (DevIL)>
          2008-02-13 22:56:26 314368 --a------ C:\Windows\system32\avisynth.dll <Not Verified; The Public; Avisynth 2.5>
          2008-02-13 22:56:23 0 d-------- C:\Program Files\Magic Video Converter
          2008-02-13 21:49:27 0 d-------- C:\Users\Lukas\Incomplete
          2008-02-13 19:54:05 0 d-------- C:\Users\All Users\Nokia
          2008-02-13 19:53:56 0 d-------- C:\Program Files\Common Files\Nokia
          2008-02-13 19:51:41 0 d-------- C:\Users\All Users\PC Suite
          2008-02-13 19:50:34 0 d-------- C:\Windows\Downloaded Installations
          2008-02-13 19:48:46 0 d-------- C:\Program Files\Common Files\PCSuite
          2008-02-13 19:47:19 0 d-------- C:\Program Files\PC Connectivity Solution
          2008-02-13 19:40:25 0 d-------- C:\Program Files\Nokia
          2008-02-13 19:02:19 60416 --a------ C:\Windows\system32\drivers\ComboFix.sys
          2008-02-12 10:09:15 0 d-------- C:\HJT
          2008-02-08 11:13:35 0 d-------- C:\Users\All Users\Spybot - Search & Destroy
          2008-02-07 21:07:57 0 d-------- C:\Program Files\Common Files\Java
          2008-02-06 21:56:09 0 d-------- C:\Program Files\SubSync
          2008-02-06 21:55:59 73216 --a------ C:\Windows\ST6UNST.EXE <Not Verified; Microsoft Corporation; Microsoft® Visual Basic for Windows>
          2008-02-02 10:02:21 0 d-------- C:\Users\All Users\Lavasoft
          2008-02-02 10:02:21 0 d-------- C:\Program Files\Lavasoft
          2008-01-29 21:26:11 0 d-------- C:\Users\All Users\Grisoft
          2008-01-28 20:19:25 0 d-------- C:\Users\All Users\avg7
          2008-01-28 20:18:06 86144 --a------ C:\Windows\system32\drivers\sermousee.sys
          2008-01-27 18:52:48 0 d-------- C:\Program Files\Microsoft
          2008-01-27 17:05:33 262144 --a------ C:\ntuser.dat
          2008-01-25 21:43:52 306688 --a------ C:\Windows\IsUninst.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
          2008-01-25 21:43:27 0 -rahs---- C:\MSDOS.SYS
          2008-01-25 21:43:27 0 -rahs---- C:\IO.SYS
          2008-01-20 13:52:41 0 d-------- C:\Program Files\Common Files\ABBYY
          2008-01-20 13:51:05 0 d-------- C:\Users\All Users\ABBYY
          2008-01-20 13:51:05 0 d-------- C:\Program Files\ABBYY FineReader 9.0
          2008-01-14 20:46:49 0 d-------- C:\Program Files\Belastingdienst


          -- Find3M Report ---------------------------------------------------------------

          2008-02-14 09:53:50 0 d-------- C:\Users\Lukas\AppData\Roaming\uTorrent
          2008-02-14 09:21:45 0 d-------- C:\Users\Lukas\AppData\Roaming\AVG7
          2008-02-13 23:31:08 12 --a------ C:\Windows\bthservsdp.dat
          2008-02-13 21:50:05 0 d-------- C:\Users\Lukas\AppData\Roaming\LimeWire
          2008-02-13 20:50:46 689618 --a------ C:\Windows\system32\perfh013.dat
          2008-02-13 20:50:46 122796 --a------ C:\Windows\system32\perfc013.dat
          2008-02-13 20:06:24 0 d-------- C:\Users\Lukas\AppData\Roaming\NSeries
          2008-02-13 19:55:07 0 d-------- C:\Users\Lukas\AppData\Roaming\Nokia
          2008-02-13 19:53:56 0 d-------- C:\Program Files\Common Files
          2008-02-13 19:51:44 0 d-------- C:\Users\Lukas\AppData\Roaming\PC Suite
          2008-02-10 18:36:46 0 d-------- C:\Users\Lukas\AppData\Roaming\dvdcss
          2008-02-07 21:10:17 0 d-------- C:\Program Files\Java
          2008-02-06 19:43:05 0 d-------- C:\Users\Lukas\AppData\Roaming\Image Zone Express
          2008-02-02 10:30:35 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
          2008-01-28 19:43:44 0 d-------- C:\Program Files\Ulead Systems
          2008-01-27 18:26:24 0 d--h----- C:\Program Files\InstallShield Installation Information
          2008-01-27 17:12:51 0 d-------- C:\Program Files\Common Files\InterVideo
          2008-01-27 17:00:02 0 d-------- C:\Program Files\HP
          2008-01-20 14:02:39 0 d-------- C:\Users\Lukas\AppData\Roaming\ABBYY
          2008-01-10 10:47:50 0 d-------- C:\Program Files\Windows Sidebar
          2008-01-10 10:47:50 0 d-------- C:\Program Files\Windows Mail
          2008-01-06 20:12:44 0 d-------- C:\Users\Lukas\AppData\Roaming\Adobe
          2008-01-01 17:53:47 0 d-------- C:\Program Files\MagicDVDRipper
          2007-12-29 18:26:05 0 d-------- C:\Program Files\TradeTouch
          2007-12-29 18:11:52 272896 --a------ C:\Windows\system32\advddr32.exe
          2007-12-26 15:55:48 0 d-------- C:\Users\Lukas\AppData\Roaming\Ulead Systems
          2007-12-01 18:23:22 158381 --a------ C:\Windows\hpoins19.dat


          -- Registry Dump ---------------------------------------------------------------

          *Note* empty entries & legit default entries are not shown


          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
          "RtHDVCpl"="RtHDVCpl.exe" [2007-02-15 16:07 C:\Windows\RtHDVCpl.exe]
          "HotkeyApp"="C:\Program Files\Launch Manager\HotkeyApp.exe" [2006-12-14 15:53]
          "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-01-29 21:26]
          "Ad-Watch"="C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe" [2008-01-11 10:57]
          "NSLauncher"="C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe" [2007-09-07 14:44]

          [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
          "uTorrent"="C:\Program Files\uTorrent\uTorrent.exe" [2007-10-05 07:19]
          "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43]

          C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
          OneNote-inhoudsopgave.onetoc2 [2007-10-22 08:33:55]

          [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
          "ConsentPromptBehaviorAdmin"=2 (0x2)

          [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf]
          avgwlntf.dll 2008-01-29 21:26 9216 C:\Windows\System32\avgwlntf.dll

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
          @="Service"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
          @="Driver"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
          @="Driver"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
          @="Volume shadow copy"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
          @="IEEE 1394 Bus host controllers"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
          @="SBP2 IEEE 1394 Devices"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
          @="SecurityDevices"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Program Neighborhood Agent.lnk]
          path=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Program Neighborhood Agent.lnk
          backup=C:\Windows\pss\Program Neighborhood Agent.lnk.CommonStartup
          backupExtension=.CommonStartup

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lukas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Schermopname en Snel starten.lnk]
          path=C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Schermopname en Snel starten.lnk
          backup=C:\Windows\pss\OneNote 2007 Schermopname en Snel starten.lnk.Startup
          backupExtension=.Startup

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
          "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CtrlVol]
          "C:\Program Files\Launch Manager\CtrlVol.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools]
          "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
          C:\Windows\ehome\ehTray.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
          "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
          "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
          C:\Windows\system32\hkcmd.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
          C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
          "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
          C:\Windows\system32\igfxtray.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
          "C:\Program Files\iTunes\iTunesHelper.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchAp]
          "C:\Program Files\Launch Manager\LaunchAp.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
          C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LMgrOSD]
          "C:\Program Files\Launch Manager\OSD.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
          "C:\Program Files\MSN Messenger\msnmsgr.exe" /background

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
          C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
          C:\Windows\system32\igfxpers.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
          "C:\Program Files\QuickTime\QTTask.exe" -atboottime

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
          C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
          "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
          C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\toolbar_eula_launcher]
          C:\Program Files\GoogleEULA\EULALauncher.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
          "C:\Program Files\uTorrent\uTorrent.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVS10 Preload]
          C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wbutton]
          "C:\Program Files\Launch Manager\Wbutton.exe"

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile-based device management]
          %windir%\WindowsMobile\wmdc.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG]
          C:\Program Files\Windows Media Player\WMPNSCFG.exe

          [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
          LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum
          WindowsMobile wcescomm rapimgr
          LocalServiceRestricted WcesComm RapiMgr
          bthsvcs BthServ
          HPZ12 Pml Driver HPZ12 Net Driver HPZ12
          hpdevmgmt hpqcxs08 hpqddsvc


          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\I]
          AutoRun\command- I:\LaunchU3.exe -a

          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{67fea990-8c97-11dc-b3d2-0007ca071a00}]
          AutoRun\command- I:\LaunchU3.exe -a

          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9d7a3df1-7f2f-11dc-9505-0016d383b69e}]
          AutoRun\command- G:\setup.exe /autorun

          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ec4de193-6f18-11dc-9e22-806e6f6e6963}]
          AutoRun\command- E:\NokiaInstaller.exe

          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ef5bc467-6f86-11dc-9055-8000600fe800}]
          AutoRun\command- F:\setup.exe /autorun


          [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
          C:\Windows\system32\unregmp2.exe /ShowWMP

          [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
          %SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI



          -- Hosts -----------------------------------------------------------------------

          127.0.0.1 www.007guard.com
          127.0.0.1 007guard.com
          127.0.0.1 008i.com
          127.0.0.1 www.008k.com
          127.0.0.1 008k.com
          127.0.0.1 www.00hq.com
          127.0.0.1 00hq.com
          127.0.0.1 010402.com
          127.0.0.1 www.032439.com
          127.0.0.1 032439.com

          7902 more entries in hosts file.


          -- End of Deckard's System Scanner: finished at 2008-02-14 10:04:59 ------------

          Deckard's System Scanner v20071014.68
          Extra logfile - please post this as an attachment with your post.
          --------------------------------------------------------------------------------

          -- System Information ----------------------------------------------------------

          Microsoft® Windows Vista™ Home Premium (build 6000)
          Architecture: X86; Language: Dutch

          CPU 0: Genuine Intel(R) CPU T2130 @ 1.86GHz
          Percentage of Memory in Use: 35%
          Physical Memory (total/avail): 2037.56 MiB / 1309.09 MiB
          Pagefile Memory (total/avail): 4308.34 MiB / 3447.65 MiB
          Virtual Memory (total/avail): 2047.88 MiB / 1903.54 MiB

          C: is Fixed (NTFS) - 119.01 GiB total, 35.05 GiB free.
          D: is Fixed (FAT32) - 30.02 GiB total, 21.51 GiB free.
          E: is CDROM (CDFS)
          F: is CDROM (No Media)
          G: is CDROM (CDFS)

          \\.\PHYSICALDRIVE0 - WDC WD1600BEVS-22RST0 - 149.05 GiB - 2 partitions
          \PARTITION0 - Extended w/Extended Int 13 - 30.04 GiB - D:
          \PARTITION1 (bootable) - Installable File System - 119.01 GiB - C:



          -- Security Center -------------------------------------------------------------

          AUOptions is scheduled to auto-install.
          Windows Internal Firewall is enabled.

          AV: AVG 7.5.516 v7.5.516 (Grisoft)
          AS: Spybot - Search and Destroy v1.0.0.5 (Safer Networking Ltd.) Disabled
          AS: Windows Defender v1.1.1505.0 (Microsoft Corporation)

          [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Authoriz edApplications\List]

          [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Author izedApplications\List]


          -- Environment Variables -------------------------------------------------------

          ALLUSERSPROFILE=C:\ProgramData
          APPDATA=C:\Users\Lukas\AppData\Roaming
          CLASSPATH=.;C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
          CommonProgramFiles=C:\Program Files\Common Files
          COMPUTERNAME=LUKAS_ANNELOES
          ComSpec=C:\Windows\system32\cmd.exe
          FP_NO_HOST_CHECK=NO
          HOMEDRIVE=C:
          HOMEPATH=\Users\Lukas
          LOCALAPPDATA=C:\Users\Lukas\AppData\Local
          LOGONSERVER=\\LUKAS_ANNELOES
          NUMBER_OF_PROCESSORS=2
          OS=Windows_NT
          Path=C:\Program Files\PC Connectivity Solution\;C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Pinnacle\Shared Files;C:\Program Files\Pinnacle\Shared Files\Filter
          PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
          PROCESSOR_ARCHITECTURE=x86
          PROCESSOR_IDENTIFIER=x86 Family 6 Model 14 Stepping 12, GenuineIntel
          PROCESSOR_LEVEL=6
          PROCESSOR_REVISION=0e0c
          ProgramData=C:\ProgramData
          ProgramFiles=C:\Program Files
          PROMPT=$P$G
          PUBLIC=C:\Users\Public
          QTJAVA=C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
          SystemDrive=C:
          SystemRoot=C:\Windows
          TEMP=C:\Users\Lukas\AppData\Local\Temp
          TMP=C:\Users\Lukas\AppData\Local\Temp
          USERDOMAIN=Lukas_Anneloes
          USERNAME=Lukas
          USERPROFILE=C:\Users\Lukas
          windir=C:\Windows


          -- User Profiles ---------------------------------------------------------------

          Lukas
          Anneloes


          -- Add/Remove Programs ---------------------------------------------------------

          --> C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
          --> C:\Windows\UNNeroBackItUp.exe /UNINSTALL
          --> C:\Windows\UNNeroMediaHome.exe /UNINSTALL
          --> C:\Windows\UNNeroShowTime.exe /UNINSTALL
          --> C:\Windows\UNNeroVision.exe /UNINSTALL
          --> C:\Windows\UNRecode.exe /UNINSTALL
          --> MsiExec /X{65F1CF63-31E0-450B-96F3-4A88BE7361A6}
          32 Bit HP CIO Components Installer --> MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
          ABBYY FineReader 9.0 Professional Edition --> MsiExec.exe /I{F9000000-0001-0000-0000-074957833700}
          Activation Assistant for the 2007 Microsoft Office suites --> "C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
          Ad-Aware 2007 --> MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
          Adobe Flash Player 9 ActiveX --> C:\Windows\system32\Macromed\Flash\FlashUtil9c.exe -uninstallUnlock
          Adobe Flash Player ActiveX --> C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
          Adobe Reader 8.1.0 - Nederlands --> MsiExec.exe /I{AC76BA86-7AD7-1043-7B44-A81000000003}
          AGEIA PhysX v7.07.09 --> MsiExec.exe /X{65F1CF63-31E0-450B-96F3-4A88BE7361A6}
          µTorrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
          AVG 7.5 --> C:\Program Files\Grisoft\AVG7\setup.exe /UNINSTALL
          Citrix Presentation Server Client - Web Only --> MsiExec.exe /X{23E8D2D6-F7C8-4A35-816C-6C914EE0A601}
          DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
          HP Customer Participation Program 8.0 --> C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
          HP Imaging Device Functions 8.0 --> C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
          HP OCR Software 8.0 --> C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
          HP Photosmart Essential --> MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
          HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B --> C:\Program Files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe -datfile hposcr19.dat -onestop -showdisconnect -forcereboot
          HP Solution Center 8.0 --> C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
          HP Update --> MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}
          Huur- en zorgtoeslag 2008 --> C:\Program Files\Belastingdienst\Huur- en zorgtoeslag\2008\hz2008u.exe
          Intel(R) Graphics Media Accelerator Driver --> C:\Windows\system32\igxpun.exe -uninstall
          Intel(R) Matrix Storage Manager --> C:\Windows\System32\Imsmudlg.exe
          iTunes --> MsiExec.exe /I{B045B608-4A47-4C77-9EAD-06C394503306}
          Java(TM) 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
          Launch Manager V1.3.9 --> C:\Program Files\InstallShield Installation Information\{D0846526-66DD-4DC9-A02C-98F9A2806812}\setup.exe -runfromtemp -l0x0013 -removeonly
          LimeWire 4.14.8 --> "C:\Program Files\LimeWire\uninstall.exe"
          Magic DVD Ripper V5.2 --> "C:\Program Files\MagicDVDRipper\unins000.exe"
          Magic ISO Maker v5.4 (build 0251) --> C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG
          Magic Video Converter Trial Version (English) 8.0.2.18 --> "C:\Program Files\Magic Video Converter\unins000.exe"
          MagicDisc 2.5.79 --> C:\PROGRA~1\MAGICD~1\UNWISE.EXE C:\PROGRA~1\MAGICD~1\INSTALL.LOG
          Microsoft Office Access MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0015-0413-0000-0000000FF1CE}
          Microsoft Office Access MUI (English) 2007 --> MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
          Microsoft Office Access Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
          Microsoft Office Enterprise 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
          Microsoft Office Enterprise 2007 --> MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
          Microsoft Office Excel MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0016-0413-0000-0000000FF1CE}
          Microsoft Office Excel MUI (English) 2007 --> MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
          Microsoft Office Groove MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-00BA-0413-0000-0000000FF1CE}
          Microsoft Office Groove MUI (English) 2007 --> MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
          Microsoft Office Groove Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
          Microsoft Office Home and Student 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
          Microsoft Office Home and Student 2007 --> MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
          Microsoft Office InfoPath MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0044-0413-0000-0000000FF1CE}
          Microsoft Office InfoPath MUI (English) 2007 --> MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
          Microsoft Office Language Pack 2007 - Dutch/Nederlands --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall OMUI.NL-NL /dll OSETUP.DLL
          Microsoft Office O MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0100-0413-0000-0000000FF1CE}
          Microsoft Office OneNote MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-00A1-0413-0000-0000000FF1CE}
          Microsoft Office OneNote MUI (English) 2007 --> MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
          Microsoft Office Outlook MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-001A-0413-0000-0000000FF1CE}
          Microsoft Office Outlook MUI (English) 2007 --> MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
          Microsoft Office PowerPoint MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0018-0413-0000-0000000FF1CE}
          Microsoft Office PowerPoint MUI (English) 2007 --> MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
          Microsoft Office Proof (Dutch) 2007 --> MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
          Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
          Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
          Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
          Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
          Microsoft Office Proofing (Dutch) 2007 --> MsiExec.exe /X{90120000-002C-0413-0000-0000000FF1CE}
          Microsoft Office Proofing (English) 2007 --> MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
          Microsoft Office Publisher MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0019-0413-0000-0000000FF1CE}
          Microsoft Office Publisher MUI (English) 2007 --> MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
          Microsoft Office Shared MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-006E-0413-0000-0000000FF1CE}
          Microsoft Office Shared MUI (English) 2007 --> MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
          Microsoft Office Shared Setup Metadata MUI (English) 2007 --> MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
          Microsoft Office SharePoint Designer MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0017-0413-0000-0000000FF1CE}
          Microsoft Office Word MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-001B-0413-0000-0000000FF1CE}
          Microsoft Office Word MUI (English) 2007 --> MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
          Microsoft Office X MUI (Dutch) 2007 --> MsiExec.exe /X{90120000-0101-0413-0000-0000000FF1CE}
          Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
          Microsoft Works --> MsiExec.exe /I{A2A0A82F-025F-458D-A0CD-9BB2320804B5}
          Motorola SM56 Data Fax Modem --> rundll32.exe sm56co6a.dll,SM56UnInstaller
          Mozilla Firefox (2.0.0.12) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
          MSXML 4.0 SP2 (KB925672) --> MsiExec.exe /I{A9CF9052-F4A0-475D-A00F-A8388C62DD63}
          MSXML 4.0 SP2 (KB927978) --> MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
          MSXML 4.0 SP2 (KB936181) --> MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
          MSXML 4.0 SP2 (KB941833) --> MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
          Nero 7 Essentials --> MsiExec.exe /X{63B75E16-F290-4FCD-AF67-A9134CD01043}
          Nokia Connectivity Cable Driver --> MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}
          Nokia Lifeblog 2.5 --> MsiExec.exe /I{E94603CA-2996-4154-8EE2-A5FCD4BFB500}
          Nokia NSeries Application Installer --> MsiExec.exe /I{FD349381-D79C-4E5C-8980-015DFFB962D5}
          Nokia NSeries Content Copier --> MsiExec.exe /X{F779EC8D-6703-4C4A-817C-37B07898E647}
          Nokia NSeries Multimedia Player --> MsiExec.exe /I{FA25FAF6-3097-43C9-BBB2-A77CE8AF1881}
          Nokia NSeries Music Manager --> MsiExec.exe /I{F89E5AD8-AE47-49B5-B9F9-C498791E6255}
          Nokia NSeries One Touch Access --> MsiExec.exe /I{F4EE8763-EAA8-4BC1-8594-8501F5F00414}
          Nokia NSeries System Utilities --> MsiExec.exe /X{96E94E18-54D6-42C1-8FC4-24DACEDC3395}
          Nokia Software Launcher --> MsiExec.exe /I{A8C856AD-63CD-4613-AA29-E6C85607EA06}
          Nokia Software Updater --> MsiExec.exe /X{3186AEAE-E104-424D-9152-1BF6A4404758}
          PC Connectivity Solution --> MsiExec.exe /I{6094AB91-4CC8-498E-9DFF-134CC0B159DE}
          Pinnacle Instant DVD Recorder --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EF781A5C-58F5-4BFD-87F9-E4F14D382F25}\setup.exe" -l0x13 UNINSTALL
          QuickTime --> MsiExec.exe /I{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
          Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista --> C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0013 -removeonly
          Realtek High Definition Audio Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x13 -removeonly
          REALTEK RTL8187B Wireless LAN Driver --> C:\Program Files\InstallShield Installation Information\{895722FE-25FE-4854-95AC-B0C42F9DBEDA}\setup.exe -uninst -l0x13
          Security Update for Excel 2007 (KB936509) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A00724F5-82C4-4924-B707-0E5A84B52471}
          Security Update for Excel 2007 (KB936509) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {A00724F5-82C4-4924-B707-0E5A84B52471}
          Security Update for Office 2007 (KB934062) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {305D509B-F194-4638-9F0F-D9E4C05F9D33}
          Security Update for Office 2007 (KB934062) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {305D509B-F194-4638-9F0F-D9E4C05F9D33}
          Security Update for Office 2007 (KB936514) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C7A78F7F-EF32-4477-BAD7-3439EA7571BF}
          Security Update for Office 2007 (KB936514) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C7A78F7F-EF32-4477-BAD7-3439EA7571BF}
          Security Update for Publisher 2007 (KB936646) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A32E4BAF-6477-45FA-B8AB-E743FA8D63FF}
          Security Update for the 2007 Microsoft Office System (KB936960) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
          Security Update for the 2007 Microsoft Office System (KB936960) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
          SPSS 15 Vista Hotfix --> MsiExec.exe /X{F5E44A35-B8D2-49BD-9608-E00798903151}
          Spybot - Search & Destroy --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
          Studio 11 --> C:\Program Files\InstallShield Installation Information\{110B1ADF-2EAE-4E8F-B501-D2A1E6D8ED9D}\Setup2.exe -runfromtemp -l0x0013 UNINSTALL -removeonly
          SubSync --> C:\WINDOWS\st6unst.exe -n "C:\Program Files\SubSync\ST6UNST.LOG"
          Suyin Live Camera --> C:\Program Files\InstallShield Installation Information\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}\setup.exe -runfromtemp -l0x0013 -removeonly -u
          SUYIN webcam --> C:\Program Files\InstallShield Installation Information\{AA047D7C-5E7C-4878-B75C-77589151B563}\setup.exe -runfromtemp -l0x0009 -removeonly
          Synaptics Pointing Device Driver --> rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
          Transcriber CE Uninstall --> C:\Windows\IsUninst.exe -f"C:\Program Files\Microsoft\Microsoft Transcriber\Uninst.isu"
          Update for Office 2007 (KB932080) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
          Update for Office 2007 (KB932080) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
          Update for Office 2007 (KB934391) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
          Update for Office 2007 (KB934391) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
          Update for Office 2007 (KB934393) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {92FBAD46-E7F6-49FA-89B5-C39FC5BFAD15}
          Update for Office 2007 (KB934393) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {92FBAD46-E7F6-49FA-89B5-C39FC5BFAD15}
          Update for Office System 2007 Setup (KB929722) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {D8E9BEBD-655F-467D-8176-CA9959C140A3}
          Update for Outlook 2007 (KB937608) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CBB2454D-193F-4523-8A31-FEB343B7C30E}
          Update for Outlook 2007 Junk Email Filter (kb943597) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A751F0DB-8476-4207-956E-20AEBBA4B1DA}
          Update for Word 2007 (KB934173) --> msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C6A89125-5473-45E3-B413-ED8186437475}
          Update for Word 2007 (KB934173) --> msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C6A89125-5473-45E3-B413-ED8186437475}
          Update voor het stuurprogramma voor Windows Mobile Device Center --> MsiExec.exe /X{CB8CA439-DA83-419C-A4CF-5A0A50025144}
          VideoLAN VLC media player 0.8.6c --> C:\Program Files\VideoLAN\VLC\uninstall.exe
          Windows Live Messenger --> MsiExec.exe /I{9816B8B8-4B53-4D3D-9235-AD931252001D}
          Windows Mobile Device Center --> MsiExec.exe /I{1F2A5DF9-40E1-4644-ADBD-D80F347BA6C8}
          WinRAR archiver --> C:\Program Files\WinRAR\uninstall.exe
          XviD 1.1 final uninstall --> "C:\Program Files\XviD\unins000.exe"
          XviD MPEG-4 Video Codec --> C:\Windows\system32\rundll32.exe setupapi,InstallHinfSection Remove_XviD 132 C:\Windows\INF\xvid.inf
          Yahoo! Desktop Login --> MsiExec.exe /I{F9AEEC34-CF00-4CBD-9E36-DF9DC4002685}


          -- Application Event Log -------------------------------------------------------

          Event Record #/Type12672 / Error
          Event Submitted/Written: 02/14/2008 09:54:16 AM
          Event ID/Source: 1 / Nokia Software Launcher
          Event Description:
          Nokia Software Launcher 1.6.80 (NLib 0.6.213)

          Niet nader omschreven fout
          errorcode: -2147467259
          Path: C:\Users\Lukas\AppData\Roaming\Nokia\NSLauncher\Slot_6.lnk

          Stack trace:
          .\NSLShortcutHelpers.cpp(539) : CNSLShortcutHelpers::LoadShortcut
          .\NSLShortcutHelpers.cpp(442) : CNSLShortcutHelpers::GetShortcutInfo
          .\NSLShortcutHelpers.cpp(419) : CNSLShortcutHelpers::GetShortcutInfo

          Event Record #/Type12671 / Error
          Event Submitted/Written: 02/14/2008 09:54:16 AM
          Event ID/Source: 1 / Nokia Software Launcher
          Event Description:
          Nokia Software Launcher 1.6.80 (NLib 0.6.213)

          Niet nader omschreven fout
          errorcode: -2147467259
          Path: C:\Users\Lukas\AppData\Roaming\Nokia\NSLauncher\Slot_6.lnk

          Stack trace:
          .\NSLShortcutHelpers.cpp(539) : CNSLShortcutHelpers::LoadShortcut
          .\NSLShortcutHelpers.cpp(442) : CNSLShortcutHelpers::GetShortcutInfo
          .\NSLShortcutHelpers.cpp(419) : CNSLShortcutHelpers::GetShortcutInfo

          Event Record #/Type12660 / Success
          Event Submitted/Written: 02/14/2008 09:53:41 AM
          Event ID/Source: 5617 / WinMgmt
          Event Description:


          Event Record #/Type12658 / Success
          Event Submitted/Written: 02/14/2008 09:53:39 AM
          Event ID/Source: 5615 / WinMgmt
          Event Description:


          Event Record #/Type12656 / Error
          Event Submitted/Written: 02/14/2008 09:53:32 AM
          Event ID/Source: 1 / Nokia Software Launcher
          Event Description:
          Nokia Software Launcher 1.6.80 (NLib 0.6.213)

          Niet nader omschreven fout
          errorcode: -2147467259
          Path: C:\Users\Lukas\AppData\Roaming\Nokia\NSLauncher\Slot_6.lnk

          Stack trace:
          .\NSLShortcutHelpers.cpp(539) : CNSLShortcutHelpers::LoadShortcut
          .\NSLShortcutHelpers.cpp(442) : CNSLShortcutHelpers::GetShortcutInfo
          .\NSLShortcutHelpers.cpp(419) : CNSLShortcutHelpers::GetShortcutInfo



          -- Security Event Log ----------------------------------------------------------

          No Errors/Warnings found.


          -- System Event Log ------------------------------------------------------------

          Event Record #/Type44731 / Warning
          Event Submitted/Written: 02/14/2008 10:02:11 AM
          Event ID/Source: 4 / Client Side Rendering Spooler
          Event Description:
          Kan een bestaande printerverbinding niet opnieuw openen omdat de configuratiegegevens niet uit registersleutel S-1-5-18\Printers\Connections kunnen worden gelezen. Kan de registersleutel niet openen. Dit kan optreden als de registersleutel beschadigd is of ontbreekt, of als het register niet meer toegankelijk is.

          Event Record #/Type44730 / Warning
          Event Submitted/Written: 02/14/2008 10:02:11 AM
          Event ID/Source: 4 / Client Side Rendering Spooler
          Event Description:
          Kan een bestaande printerverbinding niet opnieuw openen omdat de configuratiegegevens niet uit registersleutel S-1-5-18\Printers\Connections kunnen worden gelezen. Kan de registersleutel niet openen. Dit kan optreden als de registersleutel beschadigd is of ontbreekt, of als het register niet meer toegankelijk is.

          Event Record #/Type44701 / Error
          Event Submitted/Written: 02/14/2008 09:53:46 AM
          Event ID/Source: 7026 / Service Control Manager
          Event Description:
          mailKmd

          Event Record #/Type44623 / Success
          Event Submitted/Written: 02/14/2008 09:52:32 AM
          Event ID/Source: 41 / Microsoft-Windows-Kernel-Power
          Event Description:


          Event Record #/Type44619 / Error
          Event Submitted/Written: 02/14/2008 09:52:43 AM
          Event ID/Source: 6008 / EventLog
          Event Description:
          De vorige afsluiting van het systeem om 9:51:07 op 14-2-2008 is onverwacht gebeurd.



          -- End of Deckard's System Scanner: finished at 2008-02-14 10:04:59 ------------



          Kan jij hier misschien ook uit opmaken waarom mijn systeem vaak traag is, bijvoorbeeld als ik outlook run naast firefox krijgt ie het al zwaar..

          Bedankt weer!

          Comment


          • #6
            Download The Avenger naar je Bureaublad.
            • Klik op Avenger.zip om het uit te pakken naar je bureaublad
            Start The Avenger door op het icoontje met het zwaard te dubbelklikken.
            • Onder "Script file to execute" kies "Input Script Manually".
            • Klik op het vergrootglas icoontje; een nieuw venster zal openen met de naam "View/edit script"
            • Kopieer en plak het volgende blauw vetgedrukte erin:


              Drivers to unload:
              sermousee

              Files to delete:
              C:\Windows\system32\drivers\sermousee.sys
              C:\WINDOWS\system32\drivers\core.cache.dsk



            • Klik Done
            • Daarna klik op het Groen verkeerslicht om het script uit te voeren
            • Antwoord "Yes/Ja" wanneer daarnaar gevraagd wordt.
            The Avenger zal daarna het volgende doen:
            • Uw computer herstarten.
            • Na herstart, zal het vlug een zwart command window openen. Dit is normaal.
            • Na herstart, zal het een log maken die zal openen met de resultaten van The Avenger. Dit log zal te vinden zijn op C:\avenger.txt
            • The Avenger maakt ook backups aan met alle bestanden, etc., die eerder werden verwijderd door The Avenger, deze backups bevinden zich op volgende plaats: C:\avenger\backup.zip.
            Kopieer en plak de inhoud van avenger.txt in je volgende bericht.
            Post ook een nieuw logje van Hijackthis

            Groeten smeenk

            Comment


            • #7
              Heb je ook een versie voor Vista ?

              Comment


              • #8
                Vista gaat dus niet

                Download Combofix opnieuw.

                Open Kladblok, kopiëer en plak het volgende (vetgedrukte tekst) in een leeg venster:



                File::
                C:\Windows\system32\drivers\sermousee.sys
                C:\WINDOWS\system32\drivers\core.cache.dsk

                Driver::
                sermousee




                Sla dit op op je Bureaublad als CFScript.txt

                Sleep CFScript.txt in ComboFix.exe zoals getoond in onderstaand voorbeeld :



                Dit zal ComboFix doen herstarten.
                Start opnieuw op als daarom gevraagd wordt,
                en post de inhoud van de Combofix.txt in je volgende antwoord samen met een nieuw HijackThislogje

                Comment

                Sorry, you are not authorized to view this page
                Working...
                X