Mededeling

Collapse
No announcement yet.

Trage PC + Popups

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Trage PC + Popups

    Hallo,

    Heb sinds een paar weken last van een zeer trage PC en popups van CiD..
    Nu heb ik gister een nieuwe Windows geïnstalleerd en hij loopt nu weer wat
    sneller, maar heb nog steeds last van die vervelende popups..

    Heeft iemand hier een antwoord op??

    Bvd.

    Logfile of HijackThis v1.99.1
    Scan saved at 14:18:44, on 15-4-2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.20696)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\UPHClean\uphclean.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\VistaDrive\VistaDrive.exe
    C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\RocketDock\RocketDock.exe
    C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Java\jre1.6.0_03\bin\jucheck.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
    C:\WINDOWS\stsystra.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\WinRAR\WinRAR.exe
    C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.454\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office12\GRA8E1~1.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [VistaDrive] C:\WINDOWS\VistaDrive\VistaDrive.exe
    O4 - HKLM\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [Army browse cdrom vga] C:\Documents and Settings\All Users\Application Data\Mfcd upload army browse\Platform Poke.exe
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\stsystra.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
    O4 - HKCU\..\Run: [BEEPTICK] C:\DOCUME~1\ADMINI~1\APPLIC~1\DRIVEREF\4 logo.exe
    O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
    O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
    O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe" /background
    O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra button: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
    O9 - Extra 'Tools' menuitem: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},CLSID,0,{1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - (no file)
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},Exec,0,C: - (no file)
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},MenuText,0,@xpsp3res.dll - (no file)
    O11 - Options group: [INTERNATIONAL] International*
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~1\Office12\GR99D3~1.DLL
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
    O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
    O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll

  • #2
    Probeer dit programma eens: LOP-uninstall.exe
    Voer bij “Uninstall verification“ de zevencijferige code in en klik “Uninstall“
    Klik bij “Legal notice” OK
    Sluit alle vensters en klik OK
    Wacht .......en klik bij “Uninstall complete for all users“ OK.

    Doe daarna dit:
    Download dit bestand: Deljob.exe (mirror)
    Dubbelklik Deljob.exe.
    Een logje(logit.txt) zal openen.
    Post de inhoud van logit.txt in je volgende bericht.

    Post ook een nieuw logje van Hijackthis

    Comment


    • #3
      Hallo smeenk,

      Allereerst bedankt voor je snelle reactie.. Helaas had ik niet eerder tijd!
      De inhoud van login.txt:
      --------------------------------------------------------
      No LOP job-files found
      --------------------------------------------------------
      Files in Windows Tasks folder

      --------------------------------------------------------
      Export App Data folders
      --------------------------------------------------------
      Het volume in station C heeft geen naam.
      Het volumenummer is 780D-5692

      Map van C:\Documents and Settings\Administrator\Application Data

      15-04-2008 23:33 <DIR> .
      15-04-2008 23:33 <DIR> ..
      14-04-2008 16:27 <DIR> Adobe
      14-04-2008 16:20 <DIR> IDENTI~1 Identities
      14-04-2008 16:28 <DIR> MACROM~1 Macromedia
      15-04-2008 14:59 <DIR> MICROS~1 Microsoft
      14-04-2008 16:19 <DIR> Mozilla
      14-04-2008 16:19 <DIR> Talkback
      0 bestand(en) 0 bytes
      8 map(pen) 74.091.110.400 bytes beschikbaar
      Het volume in station C heeft geen naam.
      Het volumenummer is 780D-5692

      Map van C:\Documents and Settings\All Users\Application Data

      15-04-2008 23:33 <DIR> .
      15-04-2008 23:33 <DIR> ..
      15-04-2008 11:12 <DIR> MICROS~1 Microsoft
      15-04-2008 11:18 <DIR> MICROS~2 Microsoft Help
      14-04-2008 16:18 <DIR> WINDOW~1 Windows Genuine Advantage
      14-04-2008 16:29 <DIR> WLINST~1 WLInstaller
      0 bestand(en) 0 bytes
      6 map(pen) 74.091.110.400 bytes beschikbaar
      --------------------------------------------------------
      All User Accounts
      --------------------------------------------------------
      Administrator
      All Users
      --------------------------------------------------------



      Nogmaals van Hijackthis:

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 23:38:46, on 15-4-2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.20696)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\system32\igfxtray.exe
      C:\WINDOWS\system32\hkcmd.exe
      C:\WINDOWS\system32\igfxpers.exe
      C:\WINDOWS\VistaDrive\VistaDrive.exe
      C:\WINDOWS\system32\igfxsrvc.exe
      C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
      C:\Program Files\MessengerPlus! 3\MsgPlus.exe
      C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
      C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\RocketDock\RocketDock.exe
      C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe
      C:\Program Files\UPHClean\uphclean.exe
      C:\WINDOWS\system32\wuauclt.exe
      C:\Program Files\Windows Live\Messenger\usnsvc.exe
      C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Program Files\Java\jre1.6.0_03\bin\jucheck.exe
      C:\WINDOWS\explorer.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\WinRAR\WinRAR.exe
      C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.984\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
      O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office12\GRA8E1~1.DLL
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
      O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
      O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
      O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
      O4 - HKLM\..\Run: [VistaDrive] C:\WINDOWS\VistaDrive\VistaDrive.exe
      O4 - HKLM\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
      O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
      O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
      O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\stsystra.exe
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
      O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
      O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
      O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe" /background
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
      O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Netwerkservice')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
      O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
      O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
      O9 - Extra button: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
      O9 - Extra 'Tools' menuitem: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
      O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},CLSID,0,{1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - (no file)
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},Exec,0,C: - (no file)
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},MenuText,0,@xpsp3res.dll - (no file)
      O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~1\Office12\GR99D3~1.DLL

      --
      End of file - 5583 bytes



      Hoop dat dit voldoende is!?

      Bvd!!!

      Gr.

      Comment


      • #4
        Infectie is verdwenen

        Ondervind je nog problemen?

        Comment


        • #5
          Yes helemaal weg!!

          Hartstikke bedankt!!


          gr.

          Comment


          • #6
            Doe dit nog:

            Je Java software is verouderd.
            Oudere versies hebben lekken die malware de kans geeft om zich te installeren op je systeem.
            Doe eerst deze stappen om Java te de-installeren en de nieuwere versie te installeren:
            • Download Java Runtime Environment (JRE) 6u5 en bewaar het naar je Bureaublad.
            • Sluit alle programma's die eventueel open zijn - Zeker je web browser!
            • Ga dan naar Start > Configuratiescherm > Software en verwijder alle oudere versies van Java uit de Softwarelijst.
            • Vink alles aan met Java Runtime Environment (JRE of J2SE) in de naam.
            • Klik dan op Verwijderen of op de Wijzig/Verwijder knop.
            • Herhaal dit tot alle oudere versies verdwenen zijn.
            • Na het verwijderen van alle oudere versies, herstart je pc.
            • Dubbelklik vervolgens op jre-6u5-windows-i586-p-s.exe op je Bureaublad om de nieuwste versie van Java te installeren.


            Download ATF cleaner (mirror)(gemaakt door Atribune)

            Belangrijk: Sluit al je browservensters(IE en/of Firefox en/of Opera) om de tool goed te kunnen laten werken.

            Dubbelklik op ATF cleaner om het programma te starten.
            Op het tabblad "Main", plaats je een vinkje bij Select All.
            Klik op de knop Empty Selected.

            Het volgende doen als je ook FireFox als browser hebt:
            Klik op tabblad "Firefox", plaats een vinkje bij Select All.
            Wil je de door Firefox opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
            (dit haalt het vinkje weer weg bij "Firefox saved passwords")
            Klik op de knop Empty Selected.

            Het volgende doen als je ook Opera als browser hebt:
            Klik op tabblad "Opera", plaats een vinkje bij Select All.
            Wil je de door Opera opgeslagen wachtwoorden behouden, dan klik je in het venster dat verschijnt op "No".
            Klik op de knop Empty Selected.
            Ga naar het tabblad "Main" en klik op de knop Exit om het programma af te sluiten.

            Schakel Systeemherstel uit. Herstart de computer. Schakel Systeemherstel weer in.
            Kijk hier hoe je je systeemherstel moet uitschakelen.
            Hiermee verwijder je eventuele restanten van de infecties uit je systeemherstel.

            Post als laatste nog een nieuw logje van Hijackthis ter controle

            Comment


            • #7
              Ok,

              Ik heb ff alles gedaan wat je me hebt verteld..
              Iig hartstikke bedankt, heb nog steeds geen enkele pop up gehad!!!!


              Hierbij nogmaals een logje van Hijackthis:


              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 12:38:29, on 16-4-2008
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v7.00 (7.00.6000.20696)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\igfxtray.exe
              C:\WINDOWS\system32\hkcmd.exe
              C:\WINDOWS\system32\igfxpers.exe
              C:\WINDOWS\VistaDrive\VistaDrive.exe
              C:\WINDOWS\system32\igfxsrvc.exe
              C:\Program Files\Desktop Tray Clock\DTClock.exe
              C:\Program Files\MessengerPlus! 3\MsgPlus.exe
              C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
              C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe
              C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\RocketDock\RocketDock.exe
              C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe
              C:\Program Files\UPHClean\uphclean.exe
              C:\WINDOWS\system32\wuauclt.exe
              C:\Program Files\Windows Live\Mail\wlmail.exe
              C:\Program Files\Internet Explorer\IEXPLORE.EXE
              C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
              C:\Program Files\WinRAR\WinRAR.exe
              C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.218\HijackThis.exe

              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
              O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office12\GRA8E1~1.DLL
              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
              O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
              O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
              O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
              O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
              O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
              O4 - HKLM\..\Run: [VistaDrive] C:\WINDOWS\VistaDrive\VistaDrive.exe
              O4 - HKLM\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
              O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
              O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
              O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\stsystra.exe
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
              O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
              O4 - HKCU\..\Run: [SkinClock] C:\Program Files\Desktop Tray Clock\DTClock.exe
              O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
              O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
              O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRA~1\WI1F86~1\MESSEN~1\msnmsgr.exe" /background
              O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
              O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Netwerkservice')
              O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
              O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
              O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
              O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
              O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
              O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
              O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
              O9 - Extra 'Tools' menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
              O9 - Extra button: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
              O9 - Extra 'Tools' menuitem: MS-KB - {8b2d996f-b7d1-4961-a929-414d9cf5ba7b} - http://support.microsoft.com/default.aspx?scid=FH;EN-US;KBHOWTO (file missing)
              O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},CLSID,0,{1FBA04EE-3024-11d2-8F1F-0000F87ABD16} - (no file)
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},Exec,0,C: - (no file)
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583},MenuText,0,@xpsp3res.dll - (no file)
              O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~1\Office12\GR99D3~1.DLL

              --
              End of file - 5576 bytes



              Nogmaal bedankt!!!


              Mvg!

              Comment


              • #8
                En nu snel weer een antivirus installeren

                Weet je trouwens wat dit is:
                C:\WINDOWS\VistaDrive\VistaDrive.exe

                Zo nee, laat dan het bestand VistaDrive.exe eens scannen met VirusTotal:


                Post het resultaat in je volgende bericht

                Comment


                • #9
                  Ehmm,

                  Ja ik heb Pliek Windows XP er nu op staan, is een Windows die ook veel dingen van Vista heeft, denk dat dat t is..

                  Een vb van de programma's die er op staan, nadeel is wel dat ie 8 a 9 gb groot is..

                  3D Screensavers
                  Absolute MP3 Splitter + Converter v2.5.2
                  Absolute Video Converter v2.8.2
                  Absolute Video Splitter + Joiner v1.7.3
                  ACDsee Pro v8.0.67
                  ACDSee v3.1
                  Acoustica Label Maker v3.03
                  Acoustica Label Maker v3.03 Extra packs
                  Acrobat Reader v7.08 NL
                  Acronis DiskDirector v10.0.0.2117
                  Acronis TrueImage Server v9.1.3718
                  Acronis TrueImage v10.0 Build 4871
                  Active Undelete v5.0.015
                  Adobe Audition v2.0
                  Adobe Photoshop CS2 v9.0

                  Adobe Photoshop Elements v4.0 NL
                  Advanced StartUp Supervisor v1.1
                  Advanced Uninstaller PRO 2006 v7.5.4 NL
                  Advanced Windows Optimizer v5.1
                  Alcohol120% v1.9.5 (3105) NL
                  All My Movies 3.95.1214 NL
                  Ant Movie Catalog v3.5.0.2
                  Ashampoo Burning Studio v6.40NL
                  Ashampoo MP3AudioCenter v1.5 NL
                  Asterisk Password Recovery XP v2.14
                  Atomix MP3 v2.3 FULL
                  Audiograbber v1.83 NL
                  AutoIt v3 script maker
                  AutoPatcher XP Dec 2006 NLD FULL
                  AutoRun Pro Enterprise v7.0.3.63

                  AutoUnpack v4.4.4
                  AVG Anti-Spyware v7.5.0.50
                  AVG Anti-Virus Pro v7.1.392.743
                  AVI DivX MPEG to DVD Pro v3.2.0
                  BAVARIA Dvd Rebuilder v1.95 NL
                  Beyond Compare v2.4.3.243 NL
                  BitLord v1.01
                  BlindWrite 6.0.0.19 NL
                  BPM Studio Pro 4.9.1.0
                  BPS Spyware Remover v9.3.0.10
                  BSplayer Pro v2.12.941NL
                  BulletProof FTP Server v2.3.1.26
                  Ccleaner v1.35.424 NL
                  CD to MP3 Ripper v5.2.0 NL

                  Cleanup v4.0
                  ClocX 1.5 beta 1 Full
                  Clone DVD v3.9.1.0 NL
                  Clone DVD2 v2.9.0.1 Elaborate Bytes FULL
                  Club Dj Professional v1.3
                  Collectorz.com Game Collector Pro v2.3.2
                  Cool Beans NFO Creator v2.0.1.3
                  CopytoDVD v4.0.0.38 NL
                  Corel Paint Shop Pro v10.0 NL
                  Corel Painter Essentials v3.0.0
                  CoverXP Pro v1.65
                  CureROM PRO v1.3.1
                  Daemon Tools v4.08
                  DAMN NFO Viewer v2.10.0032.RC3
                  Desktop Sidebar v1.05 Beta Build 116

                  Directory Opus v8.2.2.4 NL
                  Diskeeper Pro v10.0.608
                  DivX Create Bundle v6.2.0
                  djDecks v0.7.00
                  Driver Canon scanner N640P v3.8.2
                  Driver Logitech MouseWare v9.79.1
                  Driver Magician v3.0
                  DriverMAGIC Pro Edition v1.1.3 XPR
                  Droppix Label Maker Deluxe v2.7.0.113
                  DSS DJ v5.5
                  DUMeter v3.50 build R2822
                  DVD Audio Ripper 1.1.1 FULL
                  DVD Cover Gold V2.0.2
                  DVD Lab Pro v2.22 FULL
                  DVD Profiler v2.4.0 Build 868

                  DVD Shrink v3.2.0.15 NL
                  DVD2one2 v2.0.6 NL
                  DVD-Cloner III v3.10.890 NL
                  DVDDecrypter v3.5.4.0
                  DVDDecrypter v3.5.4.0
                  DVDFab Platinum v3.0.3.5 NL
                  DvdReMake Pro v3.4.1
                  DvdReMake Pro v3.5.3
                  DVDX Player Pro v4.0
                  Easy CD and DVD Cover Creator 4.05
                  EMule v0.47c
                  File Recovery v3.0
                  FireTrust MailWasher Pro v5.3
                  FlashFXP v3.4.0 Build 1140 NL
                  Floppy Repair v2.0

                  FTD v3.7.3
                  FTD v3.7.3 + 1-ClickDownload v1.0 NL
                  FTD v3.7.3 + FTD Watchdog v1.7 NL
                  Game XP v1.6.1.20
                  Gene6 FTP Server v3.8.0 Build 34 NL
                  Genie Backup Manager Pro v7.0.106.275
                  GetDataBack 3.02.002 for FAT
                  GetDataBack 3.02.002 for NTFS
                  Good Sync Pro v4.6.8
                  Grabit v1.6.1b
                  Grabit v1.6.2b
                  Graphics Converter Pro v6.52.60622
                  Handy Recovery v1.0
                  Hard Drive Inspector v1.6.915 NL
                  HDD life Pro v2.9.109 NL

                  Hide IP Platinum v3.3
                  Hitman Pro v2.3.3 NL
                  iCD CoolBeLa v1.1.3 NL
                  ICQ v5.1
                  ICQ v5.1 Boyz skin
                  ICQ v5.1 Girlz skin
                  Img Burn v2.1.0.0
                  Incredimail XE + spamfilter build 2206 NL
                  Installer Design Studio v3.1.2190.20324
                  InternetSoft FTP Commander Deluxe v8.22
                  Isobuster v1.9.1 NL
                  Jv16 PowerTools 2006 v1.5.2.344
                  Kerio Personal Firewall v4.3.268
                  K-Lite Codec Pack 2.75 Full
                  Koala FTD Search v1.5.1

                  LavaSoft Ad-Aware v1.06 SE Pro
                  LimeWire Pro v4.12.6 NL
                  Macromedia Dreamweaver v8.0
                  Macromedia Fireworks v8.0
                  Macromedia Flash Pro v8.0.0.777
                  MagicISO Maker v5.3.221
                  McAfee 8.0i NL
                  Media Player v10 of v11 15 Visualisaties
                  Media Player v10 of v11 78 skins
                  MediaMonkey Gold v2.5.5.980 NL FULL
                  Microsoft Expression Web v12.0.4518.1014
                  Microsoft Windows XP Support Tools
                  Mirc Power Pack 8.00 RC9X3 Build 7.113
                  Mirc v6.2
                  Movie Collector Pro v4.10.6 NL

                  Mozilla FireFox TuneUp v1.0
                  Mozilla FireFox v2.0.0.1 NL + FlashPlayer 9
                  MP3 splitter v3.0
                  MSConfig Cleanup v1.2
                  MSN 8.0 (Live) Patcher
                  MSN GigaPack 600 winks en moods
                  MSN Live Messenger v8.0.0.8812.00 NL
                  Music Collector Pro v7.0.3 FULL
                  Music Label 2006 v12.0.3
                  My Drivers Pro v3.00.2195
                  MyPhoneExplorer v1.5.4
                  Nero 7 lite v7.5.9.0 NL
                  Nero v6.6.0.16 NL + plugins
                  NETFramework 1.1 NL
                  NETFramework 2.0 NL

                  NewsBin Pro v5.30.7347
                  Newsleecher v2.3 Final
                  Newsleecher v3.5 Final
                  Newsleecher v3.7 Final
                  NewsSearcher v0.7.2
                  NFO Creator v 3.5.2
                  NOD32 v2.70.17 Virus Scanner
                  Norton Ghost 2003
                  Norton Partition Magic v8.0.5
                  Notepad++ v 3.9
                  O&O Defrag Pro Edition v8.5.1788
                  Office 2003
                  Office 2003 Frontpage NL
                  Office 2003 Powerpointviewer
                  Office 2003 Resource Kit Tools v11.0.5614.0

                  Office 2007
                  Office 2007 Compatibel pakket v12.0.4518
                  Office 2007 Powerpointviewer
                  Ontrack EasyRecovery Pro v6.04 FULL
                  Ontrack EasyRecovery Pro v6.10.07
                  Open Video Joiner v3.0.61
                  Opera v9.02.8573 Flash 9 + Shockwave 10
                  Orca .MSI Table Editor v3.1.4000.1830
                  Paragon Disk Wiper Pro v7.0
                  PcBugDoctor v1.0.0.5
                  PCDJ FX VRM v7.2.1014
                  PCDJ Silver v5.3 build 1010
                  PDF to Word v1.4.0.0
                  PerfectDisk v8.0.45
                  Plato Video Converter v5.18

                  PolderbitS Sound Recorder v5.0
                  PowerArchiver 2006 v9.63.02 NL
                  PowerDVD Deluxe v6.22.100.1441
                  PowerDVD Deluxe v7.0.2211 Multilingual
                  PowerQuest Drive Image v7.03
                  Prefetch Clean and Control v1.2.0
                  Prisma woordenboek v1.0 NL
                  Program Protector v2.2
                  Proshow Producer v2.51.1723
                  QuickPar v0.9.1 NL
                  Radio Online v4.8 NL
                  RealPlayer v10.5 Gold Final premium
                  Recover My Files v2.29
                  Recover My Photos v3.61
                  RegDoctor v1.69

                  Register tweaks installeren
                  Register tweaks op Bureaublad.
                  Registry First Aid v5.0.0.1092 NL
                  Registry Mechanic v5.2.0.310 NL
                  Registry Repair 2006 v4.0.1
                  Registry Workshop v2.7
                  RegShot v1.7.2 NL Modified
                  RegSupreme Pro v1.4.0.48
                  RemotelyAnywhere v7.10.552
                  Serv-U FTP Server v6.3.0.0
                  Setup Factory v7.0.4.0
                  Sisoftware Sandra 2007
                  Skype v2.5.0.141 NL
                  SlySoft AnyDVD v6.0.8.8
                  SlySoft CloneCD v5.2.91

                  Smartdraw 7 Suite Edition v7.31
                  SmartFTP Client v2.0.996.29
                  SnagIt v8.0.0
                  Spy Cleaner Gold v9.5
                  Spy Sweeper v5.2.3 Build 2120
                  Spyware Doctor v3.8.0.2575
                  Spyware Nuker XT v4.8.68.1815
                  Startup Manager Platinum 2004
                  Steinberg MyMP3 Pro v5.0 NL
                  Sun Java v1.5.0.9
                  Super Screen Recorder v3.0
                  Super Video Joiner v3.1
                  Super Video Splitter v3.1
                  SuperCleaner v2.89 FULL
                  Surething CD Labeller Deluxe v4.3.0196

                  Sygate Firewall PRO v5.5.2525
                  Symantec Antivirus v10.1.4.4000
                  Symantec PCAnywhere v11.5.0.124 NL
                  Syncback SE 4.0.2 NL
                  Tag and Rename v3.2 NL
                  TheaterTek DVD v2.11.18.0
                  Thunderbird Email van FireFox v1.5.0.5
                  Total Commander v6.54+PwrPack v1.6 NL
                  Trojan remover v6.5.5
                  TuneUp Utilities 2006 v5.0.2336 NL
                  TuneUp Utilities 2007 Engels
                  TweakNow PowerPack 2006 Pro v1.1.8
                  TweakNow RegCleaner Pro v2.9.8
                  TweakUI v2.10.0.0
                  Ulead COOL 3D Production Studio v1.0

                  Ulead DVD MovieFactory v5 Plus
                  Ulead MediaStudio Pro v8.0 + Update 8.1
                  Ulead Photo Express v6.0
                  Ulead PhotoImpact v12 (apart installeren)
                  Ulead VideoStudio v10 Plus
                  Ultra Tag Editor v2.4.3 NL
                  UltraConverter v1.9.34
                  UltraIso Media Editie v7.6.6.1308 NL
                  UltraISO Premium Edition v8.5.1.1860 NL
                  UltraVNC v1.0.2
                  Universal Extractor v1.4.2
                  Unlocker v1.8.5 NL
                  uTorrent v1.6
                  Van Dale - Pocketwoordenboeken
                  ViceVersa Pro v2.0.0.6

                  VirtualDJ v4.0 Edition 2006
                  VLC media player v0.8.5
                  VMWare Workstation 5.5.2.29772
                  Web Page Maker v2.3
                  Webroot Window Washer 6.0.2.466
                  Weer Online v4.1 NL
                  Winamp Pro v5.3 NL AUDIO
                  Winamp Pro v5.3 NL FULL
                  WindowBlinds v5.0 Enhanced + 60 skins
                  Windows MediaPlayer v11.0.5721.5145 NL
                  Windows Vista Wallpaper Pack
                  WinDVD Platinum 7.0 (27.071)
                  WinRAR v3.62 Corp. NL
                  WinSnap v1.1.6

                  Winzip Pro v10.0
                  Xara Xtreme Pro v3.0.0.612
                  Xilisoft DVD Audio Ripper v4.0.47.0425
                  Xilisoft DVD Ripper Platinum
                  XP-AntiSpy v3.93 NL
                  XstreamRadio v3.0.2 NL Internet Radio
                  Yamicsoft WinXP Manager v5.0.5
                  Yenc Power Post A&A 11b
                  Your Uninstaller 2006 PRO v5.0.0.235
                  Zone Alarm Pro v6.1.737.000

                  Comment


                  • #10
                    Ik neem aan dat het dan OK is?

                    Comment


                    • #11
                      Ja, werkt nog steeds perfect!


                      Nogmaals bedankt!!

                      gr.

                      Comment


                      • #12
                        Graag gedaan hoor

                        Comment

                        Sorry, you are not authorized to view this page
                        Working...
                        X