Nadat de problemen op mijn pc door goede hulp hier opgelost zijn hoop ik dat iemand kan helpen bij het probleem met mijn laptop:
mijn dss log:
Deckard's System Scanner v20071014.68
Run by Nanda Stam on 2008-04-30 19:30:27
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
System Restore is disabled; attempting to re-enable...success.
-- Last 1 Restore Point(s) --
1: 2008-04-30 17:30:35 UTC - RP1 - Controlepunt van systeem
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 222 MiB (512 MiB recommended).
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-30 19:36:19
Platform: Windows XP Service Pack 1 (5.01.2600)
MSIE: Internet Explorer (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\TmFuZGE\command.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\s?stem\ntvdm.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
c:\windows\system32\rwwnw64d.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
C:\Documents and Settings\Nanda Stam\Bureaublad\dss.exe
C:\WINDOWS\system32\lcntkkdn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: testCPV6 - {15421B84-3488-49A7-AD18-CBF84A3EFAF6} - C:\Program Files\CPV\CPV8.dll (file missing)
O2 - BHO: {04d391bc-5e78-327a-b414-b0132e4e5627} - {7265e4e2-310b-414b-a723-87e5cb193d40} - C:\WINDOWS\system32\xbqutqyw.dll
O2 - BHO: (no name) - {8A118E62-0078-4D8B-B45C-64DFB377B044} - C:\WINDOWS\system32\qoMccyvU.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [{5C-CC-CD-DF-DW}] c:\windows\system32\rwwnw64d.exe DWram
O4 - HKLM\..\Run: [dcb5cc70] rundll32.exe "C:\WINDOWS\System32\nyfrkvvt.dll",b
O4 - HKLM\..\Run: [BMdf86ffec] Rundll32.exe "C:\WINDOWS\System32\axsphkyr.dll",s
O4 - HKLM\..\Run: [ExploreUpdSched] C:\WINDOWS\System32\lcntkkdn.exe DWram
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Urrh] "C:\WINDOWS\SSTEM~1\ntvdm.exe" -vt yazb
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\lcntkkdn.exe
O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: hp psc 1000 series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
O4 - Global Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O16 - DPF: {0000000A-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/8/B/E/8BE028EC-F134-4AA0-84AB-64F76D6B9842/wmsp9dmo.cab
O16 - DPF: {3334504D-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/0/C/8/0C8EDFAB-30BC-4792-898E-2DABE27B2C4D/mp43dmo.CAB
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} () - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O18 - Protocol: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\TmFuZGE\command.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 6395 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 AFS2K - c:\windows\system32\drivers\afs2k.sys <Not Verified; Oak Technology Inc.; AFS>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 cmdService (Command Service) - c:\windows\tmfuzge\command.exe
R2 UserAccess7 (SecuROM User Access Service (V7)) - c:\windows\system32\uaservice7.exe
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Videocontroller (VGA-compatibel)
Device ID: PCI\VEN_1039&DEV_6325&SUBSYS_24301509&REV_00\4&3525EC23&0&0008
Manufacturer:
Name: Videocontroller (VGA-compatibel)
PNP Device ID: PCI\VEN_1039&DEV_6325&SUBSYS_24301509&REV_00\4&3525EC23&0&0008
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: PCI-modem
Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_24701509&REV_A0\3&61AAA01&0&16
Manufacturer:
Name: PCI-modem
PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_24701509&REV_A0\3&61AAA01&0&16
Service:
-- Scheduled Tasks -------------------------------------------------------------
2005-07-10 21:13:56 352 --a------ C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1113129163.job
-- Files created between 2008-03-30 and 2008-04-30 -----------------------------
2008-04-30 19:35:15 860 --a------ C:\WINDOWS\System32\winpfz33.sys
2008-04-30 19:35:05 200773 --a------ C:\WINDOWS\System32\lcntkkdn.exe
2008-04-30 19:27:09 198180 --ahs---- C:\WINDOWS\System32\UvyccMoq.ini2
2008-04-30 19:26:08 0 d-------- C:\RVAXO
2008-04-30 19:25:41 16384 --a------ C:\WINDOWS\System32\Restart.exe <Not Verified; WareSoft Software; restart>
2008-04-30 19:11:15 811298 --a------ C:\WINDOWS\System32\RVAXO.bat
2008-04-30 19:11:15 69632 --a------ C:\WINDOWS\System32\remove.exe
2008-04-30 19:08:51 0 d-------- C:\Documents and Settings\Nanda Stam\Application Data\AdobeUM
2008-04-30 13:02:43 41724 ---hs---- C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe
2008-04-30 13:02:39 0 d-------- C:\WINDOWS\s?stem
2008-04-30 12:27:40 96320 --a------ C:\WINDOWS\System32\nyfrkvvt.dll
2008-04-30 12:24:38 105536 --a------ C:\WINDOWS\System32\xbqutqyw.dll
2008-04-30 12:23:04 104512 --a------ C:\WINDOWS\System32\axsphkyr.dll
2008-04-28 16:57:12 108608 --a------ C:\WINDOWS\System32\iuownmad.dll
2008-04-28 16:52:43 104000 --a------ C:\WINDOWS\System32\bmisxuaq.dll
2008-04-28 16:51:30 49169 --a------ C:\WINDOWS\System32\jjwnw64o.exe <Not Verified; ; Browser Driver>
2008-04-27 20:03:21 281600 --a------ C:\WINDOWS\System32\qoMccyvU.dll
2008-04-27 19:58:35 0 d--hs---- C:\WINDOWS\TmFuZGE
2008-04-27 19:58:34 399604 --a------ C:\WINDOWS\System32\g15.exe
2008-04-27 19:58:24 0 d-------- C:\Temp
2008-04-14 20:08:18 46592 --a------ C:\WINDOWS\b157.exe
-- Find3M Report ---------------------------------------------------------------
2008-04-30 13:02:43 0 d-------- C:\Program Files\Common Files
2008-04-12 11:05:46 0 d-------- C:\Documents and Settings\Nanda Stam\Application Data\U3
2008-03-30 10:36:11 364882 --a------ C:\WINDOWS\System32\perfh013.dat
2008-03-30 10:36:11 53850 --a------ C:\WINDOWS\System32\perfc013.dat
2008-03-04 21:32:27 105984 --a------ C:\WINDOWS\b152.exe
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{15421B84-3488-49A7-AD18-CBF84A3EFAF6}]
C:\Program Files\CPV\CPV8.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7265e4e2-310b-414b-a723-87e5cb193d40}]
30-04-2008 12:24 105536 --a------ C:\WINDOWS\System32\xbqutqyw.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{8A118E62-0078-4D8B-B45C-64DFB377B044}]
27-04-2008 20:03 281600 --a------ C:\WINDOWS\System32\qoMccyvU.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [02-07-2003 14:45 C:\WINDOWS\SOUNDMAN.EXE]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [27-04-2007 09:41]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [16-02-2005 18:15]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [16-02-2005 18:15]
"{5C-CC-CD-DF-DW}"="c:\windows\system32\rwwnw64d.exe"
"dcb5cc70"="C:\WINDOWS\System32\nyfrkvvt.dll" [30-04-2008 12:27]
"BMdf86ffec"="C:\WINDOWS\System32\axsphkyr.dll" [30-04-2008 12:23]
"ExploreUpdSched"="C:\WINDOWS\System32\lcntkkdn.exe" [30-04-2008 19:35]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [11-09-2002 14:00]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe"
"Urrh"="C:\WINDOWS\SSTEM~1\ntvdm.exe" [30-04-2008 13:02]
C:\Documents and Settings\Nanda Stam\Menu Start\Programma's\Opstarten\
Deewoo.lnk - C:\WINDOWS\system32\lcntkkdn.exe [30-4-2008 19:35:05]
C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\
Adobe Reader Snelle start.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [14-12-2004 4:44:06]
hp psc 1000 series.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe [6-4-2003 1:17:18]
hpoddt01.exe.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe [6-4-2003 1:06:58]
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [13-2-2001 10:01:04]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\System32\qoMccyvU
-- End of Deckard's System Scanner: finished at 2008-04-30 19:39:40 ------------
mijn dss log:
Deckard's System Scanner v20071014.68
Run by Nanda Stam on 2008-04-30 19:30:27
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
System Restore is disabled; attempting to re-enable...success.
-- Last 1 Restore Point(s) --
1: 2008-04-30 17:30:35 UTC - RP1 - Controlepunt van systeem
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 222 MiB (512 MiB recommended).
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-04-30 19:36:19
Platform: Windows XP Service Pack 1 (5.01.2600)
MSIE: Internet Explorer (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\TmFuZGE\command.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\s?stem\ntvdm.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
c:\windows\system32\rwwnw64d.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
C:\Documents and Settings\Nanda Stam\Bureaublad\dss.exe
C:\WINDOWS\system32\lcntkkdn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: testCPV6 - {15421B84-3488-49A7-AD18-CBF84A3EFAF6} - C:\Program Files\CPV\CPV8.dll (file missing)
O2 - BHO: {04d391bc-5e78-327a-b414-b0132e4e5627} - {7265e4e2-310b-414b-a723-87e5cb193d40} - C:\WINDOWS\system32\xbqutqyw.dll
O2 - BHO: (no name) - {8A118E62-0078-4D8B-B45C-64DFB377B044} - C:\WINDOWS\system32\qoMccyvU.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [{5C-CC-CD-DF-DW}] c:\windows\system32\rwwnw64d.exe DWram
O4 - HKLM\..\Run: [dcb5cc70] rundll32.exe "C:\WINDOWS\System32\nyfrkvvt.dll",b
O4 - HKLM\..\Run: [BMdf86ffec] Rundll32.exe "C:\WINDOWS\System32\axsphkyr.dll",s
O4 - HKLM\..\Run: [ExploreUpdSched] C:\WINDOWS\System32\lcntkkdn.exe DWram
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Urrh] "C:\WINDOWS\SSTEM~1\ntvdm.exe" -vt yazb
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Deewoo.lnk = C:\WINDOWS\system32\lcntkkdn.exe
O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: hp psc 1000 series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
O4 - Global Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O16 - DPF: {0000000A-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/8/B/E/8BE028EC-F134-4AA0-84AB-64F76D6B9842/wmsp9dmo.cab
O16 - DPF: {3334504D-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/0/C/8/0C8EDFAB-30BC-4792-898E-2DABE27B2C4D/mp43dmo.CAB
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
O16 - DPF: {33564D57-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} () - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O18 - Protocol: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\TmFuZGE\command.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 6395 bytes
-- File Associations -----------------------------------------------------------
All associations okay.
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R1 AFS2K - c:\windows\system32\drivers\afs2k.sys <Not Verified; Oak Technology Inc.; AFS>
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
R2 cmdService (Command Service) - c:\windows\tmfuzge\command.exe
R2 UserAccess7 (SecuROM User Access Service (V7)) - c:\windows\system32\uaservice7.exe
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Videocontroller (VGA-compatibel)
Device ID: PCI\VEN_1039&DEV_6325&SUBSYS_24301509&REV_00\4&3525EC23&0&0008
Manufacturer:
Name: Videocontroller (VGA-compatibel)
PNP Device ID: PCI\VEN_1039&DEV_6325&SUBSYS_24301509&REV_00\4&3525EC23&0&0008
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: PCI-modem
Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_24701509&REV_A0\3&61AAA01&0&16
Manufacturer:
Name: PCI-modem
PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_24701509&REV_A0\3&61AAA01&0&16
Service:
-- Scheduled Tasks -------------------------------------------------------------
2005-07-10 21:13:56 352 --a------ C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1113129163.job
-- Files created between 2008-03-30 and 2008-04-30 -----------------------------
2008-04-30 19:35:15 860 --a------ C:\WINDOWS\System32\winpfz33.sys
2008-04-30 19:35:05 200773 --a------ C:\WINDOWS\System32\lcntkkdn.exe
2008-04-30 19:27:09 198180 --ahs---- C:\WINDOWS\System32\UvyccMoq.ini2
2008-04-30 19:26:08 0 d-------- C:\RVAXO
2008-04-30 19:25:41 16384 --a------ C:\WINDOWS\System32\Restart.exe <Not Verified; WareSoft Software; restart>
2008-04-30 19:11:15 811298 --a------ C:\WINDOWS\System32\RVAXO.bat
2008-04-30 19:11:15 69632 --a------ C:\WINDOWS\System32\remove.exe
2008-04-30 19:08:51 0 d-------- C:\Documents and Settings\Nanda Stam\Application Data\AdobeUM
2008-04-30 13:02:43 41724 ---hs---- C:\Program Files\Common Files\Yazzle1560OinUninstaller.exe
2008-04-30 13:02:39 0 d-------- C:\WINDOWS\s?stem
2008-04-30 12:27:40 96320 --a------ C:\WINDOWS\System32\nyfrkvvt.dll
2008-04-30 12:24:38 105536 --a------ C:\WINDOWS\System32\xbqutqyw.dll
2008-04-30 12:23:04 104512 --a------ C:\WINDOWS\System32\axsphkyr.dll
2008-04-28 16:57:12 108608 --a------ C:\WINDOWS\System32\iuownmad.dll
2008-04-28 16:52:43 104000 --a------ C:\WINDOWS\System32\bmisxuaq.dll
2008-04-28 16:51:30 49169 --a------ C:\WINDOWS\System32\jjwnw64o.exe <Not Verified; ; Browser Driver>
2008-04-27 20:03:21 281600 --a------ C:\WINDOWS\System32\qoMccyvU.dll
2008-04-27 19:58:35 0 d--hs---- C:\WINDOWS\TmFuZGE
2008-04-27 19:58:34 399604 --a------ C:\WINDOWS\System32\g15.exe
2008-04-27 19:58:24 0 d-------- C:\Temp
2008-04-14 20:08:18 46592 --a------ C:\WINDOWS\b157.exe
-- Find3M Report ---------------------------------------------------------------
2008-04-30 13:02:43 0 d-------- C:\Program Files\Common Files
2008-04-12 11:05:46 0 d-------- C:\Documents and Settings\Nanda Stam\Application Data\U3
2008-03-30 10:36:11 364882 --a------ C:\WINDOWS\System32\perfh013.dat
2008-03-30 10:36:11 53850 --a------ C:\WINDOWS\System32\perfc013.dat
2008-03-04 21:32:27 105984 --a------ C:\WINDOWS\b152.exe
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{15421B84-3488-49A7-AD18-CBF84A3EFAF6}]
C:\Program Files\CPV\CPV8.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7265e4e2-310b-414b-a723-87e5cb193d40}]
30-04-2008 12:24 105536 --a------ C:\WINDOWS\System32\xbqutqyw.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{8A118E62-0078-4D8B-B45C-64DFB377B044}]
27-04-2008 20:03 281600 --a------ C:\WINDOWS\System32\qoMccyvU.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [02-07-2003 14:45 C:\WINDOWS\SOUNDMAN.EXE]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [27-04-2007 09:41]
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [16-02-2005 18:15]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [16-02-2005 18:15]
"{5C-CC-CD-DF-DW}"="c:\windows\system32\rwwnw64d.exe"

"dcb5cc70"="C:\WINDOWS\System32\nyfrkvvt.dll" [30-04-2008 12:27]
"BMdf86ffec"="C:\WINDOWS\System32\axsphkyr.dll" [30-04-2008 12:23]
"ExploreUpdSched"="C:\WINDOWS\System32\lcntkkdn.exe" [30-04-2008 19:35]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [11-09-2002 14:00]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe"

"Urrh"="C:\WINDOWS\SSTEM~1\ntvdm.exe" [30-04-2008 13:02]
C:\Documents and Settings\Nanda Stam\Menu Start\Programma's\Opstarten\
Deewoo.lnk - C:\WINDOWS\system32\lcntkkdn.exe [30-4-2008 19:35:05]
C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten\
Adobe Reader Snelle start.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [14-12-2004 4:44:06]
hp psc 1000 series.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe [6-4-2003 1:17:18]
hpoddt01.exe.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe [6-4-2003 1:06:58]
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [13-2-2001 10:01:04]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\System32\qoMccyvU
-- End of Deckard's System Scanner: finished at 2008-04-30 19:39:40 ------------
Comment