Hallo Helper.
IK repareer een pc van vrienden waar ik ongeveer maar 1 keer per maand kom... (Ik ga hier morgenavond weer weg dus daarna duurt het weer een maand voordat ik kan reageren) Als je tijd hebt en kan reageren voor zondagmiddag zou dat heel fijn zijn, dan kan ik de aanwijzingen nog oplossen voordat ik weer een maand weg ben.
mijn vorige bericht is bij de opgeloste post geplaatst (zie de volgende link: http://www.nucia.eu/forum/showthread.php?t=36682)
Ik hoop dat iemand toch nog wat aandacht hieraan wil geven..
ik heb juisterr's aanwijzingen van hier http://www.nucia.eu/forum/showthread.php?t=36682 opgevolgd, hier zijn de log's:
Groeten, Tieme
Malwarebytes' Anti-Malware 1.12
Database versie: 782
Scan type: Snelle Scan
Objecten gescand: 36166
Verstreken tijd: 10 minute(s), 17 second(s)
Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 1
Registerwaarden geïnfecteerd: 0
Registerdata bestanden geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 0
Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Registersleutels geïnfecteerd:
HKEY_CURRENT_USER\Software\Microsoft\HID_Layer (Malware.Trace) -> Quarantined and deleted successfully.
Registerwaarden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Registerdata bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Mappen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Logfile of HijackThis v1.99.1
Scan saved at 22:33:17, on 23-5-2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fsgk32st.exe
C:\Program Files\UPC SmartGuard\Common\FSMA32.EXE
C:\Program Files\UPC SmartGuard\Anti-Virus\FSGK32.EXE
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\UPC SmartGuard\Common\FSMB32.EXE
C:\Program Files\UPC SmartGuard\Common\FCH32.EXE
C:\Program Files\UPC SmartGuard\Common\FAMEH32.EXE
C:\Program Files\UPC SmartGuard\Anti-Virus\fsqh.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\UPC SmartGuard\FSPC\fspc.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Intel\ASF Agent\ASFAgent.exe
C:\WINDOWS\System32\mqsvc.exe
C:\WINDOWS\System32\mqtgsvc.exe
C:\Program Files\UPC SmartGuard\FSAUA\program\fsaua.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fssm32.exe
C:\Program Files\UPC SmartGuard\FWES\Program\fsdfwd.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\UPC\bin\sprtcmd.exe
C:\Program Files\UPC SmartGuard\Common\FSM32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\UPC SmartGuard\FSGUI\fsguidll.exe
C:\Program Files\UPC SmartGuard\FSAUA\program\fsus.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fsav32.exe
C:\Carel\HijackThis(2).exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.arnhem.chello.nl:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O2 - BHO: CInterceptor Object - {38D3FE60-3D53-4F37-BB0E-C7A97A26A156} - C:\Program Files\Pando Networks\Pando\PandoIEPlugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\Bit Comet\BitComet\tools\BitCometBHO_1.1.11.30.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\Program Files\Copernic Agent\CopernicAgentExt.dll
O3 - Toolbar: Copernic Desktop Search 2 - {968631B6-4729-440D-9BF4-251F5593EC9A} - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand203000030.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [UPC] "C:\Program Files\UPC\bin\sprtcmd.exe" /P UPC
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\UPC SmartGuard\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\UPC SmartGuard\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Ouderlijk... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Ouderlijk... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\Bit Comet\BitComet\tools\BitCometBHO_1.1.11.30.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASF Agent (ASFAgent) - Intel Corporation - C:\Program Files\Intel\ASF Agent\ASFAgent.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\Common\FSMA32.EXE
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
IK repareer een pc van vrienden waar ik ongeveer maar 1 keer per maand kom... (Ik ga hier morgenavond weer weg dus daarna duurt het weer een maand voordat ik kan reageren) Als je tijd hebt en kan reageren voor zondagmiddag zou dat heel fijn zijn, dan kan ik de aanwijzingen nog oplossen voordat ik weer een maand weg ben.
mijn vorige bericht is bij de opgeloste post geplaatst (zie de volgende link: http://www.nucia.eu/forum/showthread.php?t=36682)
Ik hoop dat iemand toch nog wat aandacht hieraan wil geven..
ik heb juisterr's aanwijzingen van hier http://www.nucia.eu/forum/showthread.php?t=36682 opgevolgd, hier zijn de log's:
Groeten, Tieme
Malwarebytes' Anti-Malware 1.12
Database versie: 782
Scan type: Snelle Scan
Objecten gescand: 36166
Verstreken tijd: 10 minute(s), 17 second(s)
Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 1
Registerwaarden geïnfecteerd: 0
Registerdata bestanden geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 0
Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Registersleutels geïnfecteerd:
HKEY_CURRENT_USER\Software\Microsoft\HID_Layer (Malware.Trace) -> Quarantined and deleted successfully.
Registerwaarden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Registerdata bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Mappen geïnfecteerd:
(Geen kwaadaardige items gevonden)
Bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)
Logfile of HijackThis v1.99.1
Scan saved at 22:33:17, on 23-5-2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fsgk32st.exe
C:\Program Files\UPC SmartGuard\Common\FSMA32.EXE
C:\Program Files\UPC SmartGuard\Anti-Virus\FSGK32.EXE
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\UPC SmartGuard\Common\FSMB32.EXE
C:\Program Files\UPC SmartGuard\Common\FCH32.EXE
C:\Program Files\UPC SmartGuard\Common\FAMEH32.EXE
C:\Program Files\UPC SmartGuard\Anti-Virus\fsqh.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\UPC SmartGuard\FSPC\fspc.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Intel\ASF Agent\ASFAgent.exe
C:\WINDOWS\System32\mqsvc.exe
C:\WINDOWS\System32\mqtgsvc.exe
C:\Program Files\UPC SmartGuard\FSAUA\program\fsaua.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fssm32.exe
C:\Program Files\UPC SmartGuard\FWES\Program\fsdfwd.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\UPC\bin\sprtcmd.exe
C:\Program Files\UPC SmartGuard\Common\FSM32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\UPC SmartGuard\FSGUI\fsguidll.exe
C:\Program Files\UPC SmartGuard\FSAUA\program\fsus.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\UPC SmartGuard\Anti-Virus\fsav32.exe
C:\Carel\HijackThis(2).exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.arnhem.chello.nl:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O2 - BHO: CInterceptor Object - {38D3FE60-3D53-4F37-BB0E-C7A97A26A156} - C:\Program Files\Pando Networks\Pando\PandoIEPlugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\Bit Comet\BitComet\tools\BitCometBHO_1.1.11.30.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\Program Files\Copernic Agent\CopernicAgentExt.dll
O3 - Toolbar: Copernic Desktop Search 2 - {968631B6-4729-440D-9BF4-251F5593EC9A} - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand203000030.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [UPC] "C:\Program Files\UPC\bin\sprtcmd.exe" /P UPC
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\UPC SmartGuard\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\UPC SmartGuard\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Snelle start.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\Bit Comet\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Ouderlijk... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Ouderlijk... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\UPC SmartGuard\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\Bit Comet\BitComet\tools\BitCometBHO_1.1.11.30.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\upc smartguard\fsps\program\fslsp.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: ASF Agent (ASFAgent) - Intel Corporation - C:\Program Files\Intel\ASF Agent\ASFAgent.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\UPC SmartGuard\Common\FSMA32.EXE
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
Comment