zZou iemand kunnen kijken naar dit dds bestand, ik heb een soort ratelende computer.Het is niet de harde schijf maar het lijkt erop dat er allemaal bestanden werken waarvan ik niks van weet.
DE computer is traag .
Alvast bedankt.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16635 BrowserJavaVersion: 10.25.2
Run by anja vink at 21:44:40 on 2013-07-16
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.3063.1554 [GMT 2:00]
.
AV: Norman Security Suite *Disabled/Updated* {D038CA80-26F3-90BF-94AA-03C4D945E661}
SP: Norman Security Suite *Disabled/Updated* {6B592B64-00C9-9F31-AE1A-38B6A2C2ACDC}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norman Security Suite *Disabled* {E8034BA5-6C9C-91E7-BFF5-AAF12796A11A}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\Norman\Npm\Bin\elogsvc.exe
C:\Program Files\Norman\Ngs\Bin\Nnf.exe
C:\Program Files\Norman\Ngs\Bin\Nprosec.exe
C:\Windows\system32\atiesrxx.exe
C:\Program Files\Norman\Npm\Bin\Zanda.exe
C:\Program Files\Norman\npm\bin\nvoy.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Prey\platform\windows\cronsvc.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
C:\Program Files\Norman\Npt\Bin\Npsvc32.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Bandoo\Bandoo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Norman\Npm\Bin\scheduler.exe
C:\Program Files\Norman\Npm\Bin\Njeeves.exe
C:\Program Files\Norman\nig\bin\nigsvc32.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\Norman\Npm\Bin\zlh.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
C:\Program Files\AirPort\APAgent.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
C:\Program Files\Samsung\Kies\Kies.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Norman\nig\bin\niguser.exe
C:\Program Files\Norman\npf\bin\npfsvc32.exe
C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Norman\Nse\Bin\NSESVC.EXE
C:\Program Files\Norman\Nvc\Bin\nvcoas.exe
C:\Program Files\Norman\Nvc\bin\nhs.exe
C:\Program Files\Norman\Nvc\Bin\cclaw.exe
C:\Program Files\Bandoo\BndCore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.startpagina.nl/
uSearch Bar = hxxp://www.bing.com/search?q={searchTerms}
uSearch Page = hxxp://www.bing.com/search?q={searchTerms}
uDefault_Page_URL = hxxp://www.aldi.com
uSearchAssistant = hxxp://www.bing.com/search?q={searchTerms}
mURLSearchHooks: {b80f591e-fe9a-46cf-a13e-180377240586} - <orphaned>
BHO: URL Blocker: {00e71626-0bef-11dc-8314-0800200c9a66} - c:\program files\norman\nig\bin\nigbho.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
BHO: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: {b80f591e-fe9a-46cf-a13e-180377240586} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: BandooIEPlugin Class: {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - c:\program files\bandoo\plugins\ie\ieplugin.dll
TB: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
TB: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
TB: <No Name>: {ae07101b-46d4-4a98-af68-0333ea26e113} - LocalServer32 - <no file>
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [KiesPDLR] c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [Java(TM) Platform SEHKCU] c:\users\anja vink\appdata\roaming\system32\taskmgr.exe
uRun: [NETGEARGenie] "c:\program files\netgear genie\bin\NETGEARGenie.exe" -mini -redirect
uRun: [KiesPreload] c:\program files\samsung\kies\Kies.exe /preload
uRun:
c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [RIMDeviceManager] c:\program files\common files\research in motion\rimdevicemanager\RIMDeviceManager.exe" -RunServer
mRun: [IAStorIcon] c:\program files\intel\intel(r) rapid storage technology\IAStorIcon.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [NUSB3MON] "c:\program files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"
mRun: [CLMLServer] "c:\program files\cyberlink\power2go\CLMLSvc.exe"
mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\logitech webcam software\LWS.exe" /hide
mRun: [Norman ZANDA] "c:\program files\norman\npm\bin\ZLH.EXE" /LOAD /SPLASH
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [RIMBBLaunchAgent.exe] c:\program files\common files\research in motion\usb drivers\RIMBBLaunchAgent.exe
mRun: [AirPort Base Station Agent] "c:\program files\airport\APAgent.exe"
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\users\anjavi~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\users\anjavi~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xporteren naar Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/1346-72745-17534-1/4
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab
TCP: NameServer = 10.0.0.1
TCP: Interfaces\{732048A9-7E8D-428F-9AF3-D5BE1F66BC7A} : DHCPNameServer = 10.0.0.1
TCP: Interfaces\{9A295CD5-A244-421C-A8EF-9E3A343737CB} : DHCPNameServer = 10.0.0.1
TCP: Interfaces\{9A295CD5-A244-421C-A8EF-9E3A343737CB}\E45445745414251343 : DHCPNameServer = 192.168.1.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\progra~1\bandoo\bndhook.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\28.0.1500.72\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\anja vink\appdata\roaming\mozilla\firefox\profiles\c7a3kp0r.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.startpagina.nl/
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\nero\browserplugin\npBrowserPlugin.dll
FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1168638.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
.
============= SERVICES / DRIVERS ===============
.
P2 NPFSvc32;Norman Personal Firewall Service;c:\program files\norman\npf\bin\npfsvc32.exe [2012-6-11 356904]
R0 RapportKELL;RapportKELL;c:\windows\system32\drivers\RapportKELL.sys [2013-4-30 102448]
R1 ALE_NF;Norman Network Filter ALE driver;c:\windows\system32\drivers\ale_nf.sys [2011-7-13 99088]
R1 NGS;Norman General Security Driver;c:\program files\norman\ngs\bin\ngs.sys [2012-6-11 26744]
R1 NPROSEC;Norman Security driver;c:\program files\norman\ngs\bin\nprosec.sys [2011-7-13 91136]
R1 RapportCerberus_53984;RapportCerberus_53984;c:\programdata\trusteer\rapport\store\exts\rapportcerber us\53984\RapportCerberus32_53984.sys [2013-6-23 317424]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2013-4-30 103120]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2013-4-30 174320]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-5-27 176128]
R2 CronService;Cron Service for Prey;c:\prey\platform\windows\cronsvc.exe [2012-11-29 23552]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\intel\intel(r) rapid storage technology\IAStorDataMgrSvc.exe [2010-8-30 13336]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2012-7-13 769432]
R2 Ndiskio;Ndiskio;c:\program files\norman\nse\bin\ndiskio.sys [2011-7-13 22880]
R2 NETGEARGenieDaemon;NETGEARGenieDaemon;c:\program files\netgear genie\bin\NETGEARGenieDaemon.exe [2012-9-25 195400]
R2 NHS;Norman Hash Server;c:\program files\norman\nvc\bin\nhs.exe [2013-2-12 793520]
R2 NNFSVC;Norman Network Filtering service;c:\program files\norman\ngs\bin\nnf.exe [2012-6-11 231216]
R2 Norman ZANDA;Norman ZANDA;c:\program files\norman\npm\bin\zanda.exe [2012-6-11 431320]
R2 NPROSECSVC;Norman Security service;c:\program files\norman\ngs\bin\nprosec.exe [2012-6-11 90144]
R2 npsvc32;Norman Privacy Service;c:\program files\norman\npt\bin\npsvc32.exe [2012-6-11 475864]
R2 nregsec;Norman Registry Security driver;c:\program files\norman\ngs\bin\nregsec.sys [2012-6-11 61496]
R2 NVOY;Norman Resource Provider;c:\program files\norman\npm\bin\nvoy.exe [2012-6-11 100936]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2013-4-30 1124632]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe [2012-10-2 3064000]
R3 NIG;Norman Intrusion Guard;c:\program files\norman\nig\bin\nigsvc32.exe [2012-6-11 373424]
R3 nsesvc;Norman Scanner Engine Service;c:\program files\norman\nse\bin\nsesvc.exe [2013-4-4 289048]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2010-4-27 64904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2010-4-27 146568]
R3 NvcMFlt;NvcMFlt;c:\windows\system32\drivers\nvcv32mf.sys [2012-9-12 48376]
R3 nvcoas;Norman Virus Control on-access component;c:\program files\norman\nvc\bin\nvcoas.exe [2012-7-4 287312]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2010-8-30 267880]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [2010-11-25 603240]
R3 Scheduler;Norman Scheduler Service;c:\program files\norman\npm\bin\scheduler.exe [2012-6-11 99312]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [2013-2-6 83864]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2012-4-7 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2012-3-8 1492840]
S3 netr73;Conceptronic RT73 stuurprogramma voor draadloze netwerken voor Vista;c:\windows\system32\drivers\netr73.sys [2009-6-10 545792]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [2013-2-6 181784]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-6-3 52224]
S3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\wat\WatAdminSvc.exe [2010-11-30 1343400]
S4 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-1-8 161536]
.
=============== Created Last 30 ================
.
2013-07-16 19:25:54 -------- d-----w- c:\users\anja vink\appdata\local\{A6759BA2-E827-4414-859F-2B08A164C68A}
2013-07-16 15:38:15 7143960 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{41356c8e-63f5-4561-afae-9de472586b6f}\mpengine.dll
2013-07-15 15:01:04 -------- d-----w- c:\users\anja vink\appdata\local\{63E2C08E-0B13-4FF5-9D10-D944EA63108D}
2013-07-14 08:48:41 -------- d-----w- c:\users\anja vink\appdata\local\{E9AB98DB-4AA2-48AE-AC2E-32AFFC43C5CD}
2013-07-13 09:23:41 -------- d-----w- c:\users\anja vink\appdata\local\{724459EB-D9F2-4142-83EE-DC606E04631B}
2013-07-12 21:23:16 -------- d-----w- c:\users\anja vink\appdata\local\{B82DA318-CEF7-4083-A466-BD29DEFD7DDA}
2013-07-12 09:22:50 -------- d-----w- c:\users\anja vink\appdata\local\{53BDA561-B884-46AE-BFC8-6D30F97A3B45}
2013-07-11 20:54:23 1620480 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-11 20:54:23 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-07-11 20:54:22 509440 ----a-w- c:\windows\system32\qedit.dll
2013-07-11 20:54:22 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-07-11 20:54:17 988672 ----a-w- c:\program files\windows journal\JNTFiltr.dll
2013-07-11 20:54:17 969216 ----a-w- c:\program files\windows journal\JNWDRV.dll
2013-07-11 20:54:17 936448 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2013-07-11 20:54:17 1221632 ----a-w- c:\program files\windows journal\NBDoc.DLL
2013-07-11 20:54:06 680960 ----a-w- c:\program files\windows defender\MpSvc.dll
2013-07-11 20:54:06 392704 ----a-w- c:\program files\windows defender\MpClient.dll
2013-07-11 20:54:06 224768 ----a-w- c:\program files\windows defender\MpCommu.dll
2013-07-11 20:27:22 -------- d-----w- c:\users\anja vink\appdata\local\Albelli Fotoboeken
2013-07-11 16:38:40 -------- d-----w- c:\users\anja vink\appdata\local\{6713C70F-DB2D-4185-B812-F97C67E901E0}
2013-07-09 15:15:39 -------- d-----w- c:\users\anja vink\appdata\local\{9957322D-9019-41A1-AE30-42B1AA218808}
2013-07-08 15:20:43 -------- d-----w- c:\users\anja vink\appdata\local\{AFEB214F-8994-4396-8425-2BF691CB5159}
2013-07-06 20:18:12 -------- d-----w- c:\users\anja vink\appdata\local\{4FD3069C-D99A-4D59-BB25-97B53B220B94}
2013-07-06 08:18:00 -------- d-----w- c:\users\anja vink\appdata\local\{4FD4B799-06EC-4D91-AD75-A69BEE5516E3}
2013-07-05 19:55:42 -------- d-----w- c:\users\anja vink\appdata\local\{A6763541-636D-4F53-9ED0-E3F3C4595A9F}
2013-07-04 14:15:28 -------- d-----w- c:\users\anja vink\appdata\local\{EADE6411-F02C-4EDD-A272-EA2FA1540C08}
2013-07-03 20:32:35 -------- d-----w- c:\users\anja vink\appdata\local\{5AAC1763-A63C-408F-9099-D5BD99B15B5F}
2013-07-02 18:57:16 -------- d-----w- c:\users\anja vink\appdata\local\{7F2073AB-3A63-41E2-BB16-F938B451476D}
2013-07-01 21:21:01 -------- d-----w- c:\program files\Medieval Software
2013-07-01 16:05:17 -------- d-----w- c:\users\anja vink\appdata\local\{6F3A763F-2BDD-4380-94AC-3699AD989703}
2013-06-30 14:14:52 -------- d-----w- c:\users\anja vink\appdata\local\{B39BD3F8-99AE-4BCD-AE12-953D1816ED6A}
2013-06-28 17:15:54 -------- d-----w- c:\users\anja vink\appdata\local\{957EFF73-53E2-43EB-8EB2-A4481FCDA178}
2013-06-27 11:41:09 -------- d-----w- c:\users\anja vink\appdata\local\{17073FD1-85E5-46F2-BD24-A2DE22D65184}
2013-06-26 15:08:43 -------- d-----w- c:\users\anja vink\appdata\local\{B0001EBA-7F66-4AD9-9840-379255038D6D}
2013-06-25 17:36:51 -------- d-----w- c:\users\anja vink\appdata\local\{5973E422-F0E4-47D7-8F44-9185EDE75C12}
2013-06-24 16:16:35 -------- d-----w- c:\users\anja vink\appdata\local\{83F0A825-772B-4B82-A2EE-4EC5FD4EA0DB}
2013-06-23 09:15:31 -------- d-----w- c:\users\anja vink\appdata\local\{896C4A2A-3B4D-49DC-9A31-41AA1273029C}
2013-06-22 21:25:10 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-06-22 21:24:35 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-06-22 11:39:28 -------- d-----w- c:\users\anja vink\appdata\local\{7A806967-3714-4A65-B94C-F5C09EBA8F87}
2013-06-21 23:39:03 -------- d-----w- c:\users\anja vink\appdata\local\{91B63B02-4AC1-46B5-AE2C-0771EA48470A}
2013-06-21 11:38:37 -------- d-----w- c:\users\anja vink\appdata\local\{AF24434B-E3EF-4C74-BA40-FD9B0FB399DF}
2013-06-20 16:29:01 -------- d-----w- c:\users\anja vink\appdata\local\{B96D464B-35CD-4F1D-917D-DE746B82BFCB}
2013-06-19 15:30:43 -------- d-----w- c:\users\anja vink\appdata\local\{1CB60CE6-4E0B-4A8F-9FDD-DCF4F3F412E5}
2013-06-18 18:14:59 -------- d-----w- c:\users\anja vink\appdata\local\{2B3E506B-4FA1-47CC-AAED-B720CCD3E3D5}
2013-06-17 17:38:11 -------- d-----w- c:\users\anja vink\appdata\local\{5928725E-5274-4DAB-BBB1-8E69FAB6EA1E}
.
==================== Find3M ====================
.
2013-07-16 19:44:29 29 ----a-w- c:\windows\system32\TempWmicBatchFile.bat
2013-06-22 21:24:29 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-06-12 17:38:41 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-06-12 17:38:41 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-11 23:43:37 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-06-11 23:43:00 2877440 ----a-w- c:\windows\system32\jscript9.dll
2013-06-11 23:42:58 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-06-11 23:42:58 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-06-11 22:51:45 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-06-07 02:37:52 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-05-13 04:45:55 140288 ----a-w- c:\windows\system32\cryptsvc.dll
2013-05-13 04:45:55 1160192 ----a-w- c:\windows\system32\crypt32.dll
2013-05-13 04:45:55 103936 ----a-w- c:\windows\system32\cryptnet.dll
2013-05-13 03:08:10 903168 ----a-w- c:\windows\system32\certutil.exe
2013-05-13 03:08:06 43008 ----a-w- c:\windows\system32\certenc.dll
2013-05-10 03:20:54 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-05-08 05:38:00 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-05-06 05:06:47 3968872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-05-06 05:06:47 3913576 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-02 00:06:08 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-05-01 01:59:12 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2013-05-01 01:59:12 69632 ----a-w- c:\windows\system32\QuickTime.qts
2013-04-29 23:28:50 102448 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2013-04-26 04:55:21 492544 ----a-w- c:\windows\system32\win32spl.dll
2013-04-25 23:30:32 1505280 ----a-w- c:\windows\system32\d3d11.dll
.
============= FINISH: 22:15:58,31 ===============
DE computer is traag .
Alvast bedankt.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16635 BrowserJavaVersion: 10.25.2
Run by anja vink at 21:44:40 on 2013-07-16
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.3063.1554 [GMT 2:00]
.
AV: Norman Security Suite *Disabled/Updated* {D038CA80-26F3-90BF-94AA-03C4D945E661}
SP: Norman Security Suite *Disabled/Updated* {6B592B64-00C9-9F31-AE1A-38B6A2C2ACDC}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norman Security Suite *Disabled* {E8034BA5-6C9C-91E7-BFF5-AAF12796A11A}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\Norman\Npm\Bin\elogsvc.exe
C:\Program Files\Norman\Ngs\Bin\Nnf.exe
C:\Program Files\Norman\Ngs\Bin\Nprosec.exe
C:\Windows\system32\atiesrxx.exe
C:\Program Files\Norman\Npm\Bin\Zanda.exe
C:\Program Files\Norman\npm\bin\nvoy.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Prey\platform\windows\cronsvc.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\NETGEAR Genie\bin\NETGEARGenieDaemon.exe
C:\Program Files\Norman\Npt\Bin\Npsvc32.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Bandoo\Bandoo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Norman\Npm\Bin\scheduler.exe
C:\Program Files\Norman\Npm\Bin\Njeeves.exe
C:\Program Files\Norman\nig\bin\nigsvc32.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\Norman\Npm\Bin\zlh.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
C:\Program Files\AirPort\APAgent.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files\NETGEAR Genie\bin\NETGEARGenie.exe
C:\Program Files\Samsung\Kies\Kies.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Norman\nig\bin\niguser.exe
C:\Program Files\Norman\npf\bin\npfsvc32.exe
C:\Program Files\NETGEAR Genie\bin\genie2_tray.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Norman\Nse\Bin\NSESVC.EXE
C:\Program Files\Norman\Nvc\Bin\nvcoas.exe
C:\Program Files\Norman\Nvc\bin\nhs.exe
C:\Program Files\Norman\Nvc\Bin\cclaw.exe
C:\Program Files\Bandoo\BndCore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.startpagina.nl/
uSearch Bar = hxxp://www.bing.com/search?q={searchTerms}
uSearch Page = hxxp://www.bing.com/search?q={searchTerms}
uDefault_Page_URL = hxxp://www.aldi.com
uSearchAssistant = hxxp://www.bing.com/search?q={searchTerms}
mURLSearchHooks: {b80f591e-fe9a-46cf-a13e-180377240586} - <orphaned>
BHO: URL Blocker: {00e71626-0bef-11dc-8314-0800200c9a66} - c:\program files\norman\nig\bin\nigbho.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
BHO: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: {b80f591e-fe9a-46cf-a13e-180377240586} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: BandooIEPlugin Class: {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - c:\program files\bandoo\plugins\ie\ieplugin.dll
TB: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
TB: Conduit Engine: {30F9B915-B755-4826-820B-08FBA6BD249D} - c:\program files\conduitengine\ConduitEngine.dll
TB: <No Name>: {ae07101b-46d4-4a98-af68-0333ea26e113} - LocalServer32 - <no file>
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [KiesPDLR] c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe
uRun: [Java(TM) Platform SEHKCU] c:\users\anja vink\appdata\roaming\system32\taskmgr.exe
uRun: [NETGEARGenie] "c:\program files\netgear genie\bin\NETGEARGenie.exe" -mini -redirect
uRun: [KiesPreload] c:\program files\samsung\kies\Kies.exe /preload
uRun:

uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [RIMDeviceManager] c:\program files\common files\research in motion\rimdevicemanager\RIMDeviceManager.exe" -RunServer
mRun: [IAStorIcon] c:\program files\intel\intel(r) rapid storage technology\IAStorIcon.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [NUSB3MON] "c:\program files\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"
mRun: [CLMLServer] "c:\program files\cyberlink\power2go\CLMLSvc.exe"
mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\logitech webcam software\LWS.exe" /hide
mRun: [Norman ZANDA] "c:\program files\norman\npm\bin\ZLH.EXE" /LOAD /SPLASH
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [RIMBBLaunchAgent.exe] c:\program files\common files\research in motion\usb drivers\RIMBBLaunchAgent.exe
mRun: [AirPort Base Station Agent] "c:\program files\airport\APAgent.exe"
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\users\anjavi~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\users\anjavi~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xporteren naar Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - http://rover.ebay.com/rover/1/1346-72745-17534-1/4
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab
TCP: NameServer = 10.0.0.1
TCP: Interfaces\{732048A9-7E8D-428F-9AF3-D5BE1F66BC7A} : DHCPNameServer = 10.0.0.1
TCP: Interfaces\{9A295CD5-A244-421C-A8EF-9E3A343737CB} : DHCPNameServer = 10.0.0.1
TCP: Interfaces\{9A295CD5-A244-421C-A8EF-9E3A343737CB}\E45445745414251343 : DHCPNameServer = 192.168.1.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\progra~1\bandoo\bndhook.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\28.0.1500.72\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\anja vink\appdata\roaming\mozilla\firefox\profiles\c7a3kp0r.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.startpagina.nl/
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\nero\browserplugin\npBrowserPlugin.dll
FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1168638.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
.
============= SERVICES / DRIVERS ===============
.
P2 NPFSvc32;Norman Personal Firewall Service;c:\program files\norman\npf\bin\npfsvc32.exe [2012-6-11 356904]
R0 RapportKELL;RapportKELL;c:\windows\system32\drivers\RapportKELL.sys [2013-4-30 102448]
R1 ALE_NF;Norman Network Filter ALE driver;c:\windows\system32\drivers\ale_nf.sys [2011-7-13 99088]
R1 NGS;Norman General Security Driver;c:\program files\norman\ngs\bin\ngs.sys [2012-6-11 26744]
R1 NPROSEC;Norman Security driver;c:\program files\norman\ngs\bin\nprosec.sys [2011-7-13 91136]
R1 RapportCerberus_53984;RapportCerberus_53984;c:\programdata\trusteer\rapport\store\exts\rapportcerber us\53984\RapportCerberus32_53984.sys [2013-6-23 317424]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2013-4-30 103120]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2013-4-30 174320]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-5-27 176128]
R2 CronService;Cron Service for Prey;c:\prey\platform\windows\cronsvc.exe [2012-11-29 23552]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\intel\intel(r) rapid storage technology\IAStorDataMgrSvc.exe [2010-8-30 13336]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2012-7-13 769432]
R2 Ndiskio;Ndiskio;c:\program files\norman\nse\bin\ndiskio.sys [2011-7-13 22880]
R2 NETGEARGenieDaemon;NETGEARGenieDaemon;c:\program files\netgear genie\bin\NETGEARGenieDaemon.exe [2012-9-25 195400]
R2 NHS;Norman Hash Server;c:\program files\norman\nvc\bin\nhs.exe [2013-2-12 793520]
R2 NNFSVC;Norman Network Filtering service;c:\program files\norman\ngs\bin\nnf.exe [2012-6-11 231216]
R2 Norman ZANDA;Norman ZANDA;c:\program files\norman\npm\bin\zanda.exe [2012-6-11 431320]
R2 NPROSECSVC;Norman Security service;c:\program files\norman\ngs\bin\nprosec.exe [2012-6-11 90144]
R2 npsvc32;Norman Privacy Service;c:\program files\norman\npt\bin\npsvc32.exe [2012-6-11 475864]
R2 nregsec;Norman Registry Security driver;c:\program files\norman\ngs\bin\nregsec.sys [2012-6-11 61496]
R2 NVOY;Norman Resource Provider;c:\program files\norman\npm\bin\nvoy.exe [2012-6-11 100936]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2013-4-30 1124632]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe [2012-10-2 3064000]
R3 NIG;Norman Intrusion Guard;c:\program files\norman\nig\bin\nigsvc32.exe [2012-6-11 373424]
R3 nsesvc;Norman Scanner Engine Service;c:\program files\norman\nse\bin\nsesvc.exe [2013-4-4 289048]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [2010-4-27 64904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [2010-4-27 146568]
R3 NvcMFlt;NvcMFlt;c:\windows\system32\drivers\nvcv32mf.sys [2012-9-12 48376]
R3 nvcoas;Norman Virus Control on-access component;c:\program files\norman\nvc\bin\nvcoas.exe [2012-7-4 287312]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2010-8-30 267880]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [2010-11-25 603240]
R3 Scheduler;Norman Scheduler Service;c:\program files\norman\npm\bin\scheduler.exe [2012-6-11 99312]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [2013-2-6 83864]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2012-4-7 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2012-3-8 1492840]
S3 netr73;Conceptronic RT73 stuurprogramma voor draadloze netwerken voor Vista;c:\windows\system32\drivers\netr73.sys [2009-6-10 545792]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [2013-2-6 181784]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-6-3 52224]
S3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\wat\WatAdminSvc.exe [2010-11-30 1343400]
S4 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-1-8 161536]
.
=============== Created Last 30 ================
.
2013-07-16 19:25:54 -------- d-----w- c:\users\anja vink\appdata\local\{A6759BA2-E827-4414-859F-2B08A164C68A}
2013-07-16 15:38:15 7143960 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{41356c8e-63f5-4561-afae-9de472586b6f}\mpengine.dll
2013-07-15 15:01:04 -------- d-----w- c:\users\anja vink\appdata\local\{63E2C08E-0B13-4FF5-9D10-D944EA63108D}
2013-07-14 08:48:41 -------- d-----w- c:\users\anja vink\appdata\local\{E9AB98DB-4AA2-48AE-AC2E-32AFFC43C5CD}
2013-07-13 09:23:41 -------- d-----w- c:\users\anja vink\appdata\local\{724459EB-D9F2-4142-83EE-DC606E04631B}
2013-07-12 21:23:16 -------- d-----w- c:\users\anja vink\appdata\local\{B82DA318-CEF7-4083-A466-BD29DEFD7DDA}
2013-07-12 09:22:50 -------- d-----w- c:\users\anja vink\appdata\local\{53BDA561-B884-46AE-BFC8-6D30F97A3B45}
2013-07-11 20:54:23 1620480 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-11 20:54:23 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-07-11 20:54:22 509440 ----a-w- c:\windows\system32\qedit.dll
2013-07-11 20:54:22 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-07-11 20:54:17 988672 ----a-w- c:\program files\windows journal\JNTFiltr.dll
2013-07-11 20:54:17 969216 ----a-w- c:\program files\windows journal\JNWDRV.dll
2013-07-11 20:54:17 936448 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2013-07-11 20:54:17 1221632 ----a-w- c:\program files\windows journal\NBDoc.DLL
2013-07-11 20:54:06 680960 ----a-w- c:\program files\windows defender\MpSvc.dll
2013-07-11 20:54:06 392704 ----a-w- c:\program files\windows defender\MpClient.dll
2013-07-11 20:54:06 224768 ----a-w- c:\program files\windows defender\MpCommu.dll
2013-07-11 20:27:22 -------- d-----w- c:\users\anja vink\appdata\local\Albelli Fotoboeken
2013-07-11 16:38:40 -------- d-----w- c:\users\anja vink\appdata\local\{6713C70F-DB2D-4185-B812-F97C67E901E0}
2013-07-09 15:15:39 -------- d-----w- c:\users\anja vink\appdata\local\{9957322D-9019-41A1-AE30-42B1AA218808}
2013-07-08 15:20:43 -------- d-----w- c:\users\anja vink\appdata\local\{AFEB214F-8994-4396-8425-2BF691CB5159}
2013-07-06 20:18:12 -------- d-----w- c:\users\anja vink\appdata\local\{4FD3069C-D99A-4D59-BB25-97B53B220B94}
2013-07-06 08:18:00 -------- d-----w- c:\users\anja vink\appdata\local\{4FD4B799-06EC-4D91-AD75-A69BEE5516E3}
2013-07-05 19:55:42 -------- d-----w- c:\users\anja vink\appdata\local\{A6763541-636D-4F53-9ED0-E3F3C4595A9F}
2013-07-04 14:15:28 -------- d-----w- c:\users\anja vink\appdata\local\{EADE6411-F02C-4EDD-A272-EA2FA1540C08}
2013-07-03 20:32:35 -------- d-----w- c:\users\anja vink\appdata\local\{5AAC1763-A63C-408F-9099-D5BD99B15B5F}
2013-07-02 18:57:16 -------- d-----w- c:\users\anja vink\appdata\local\{7F2073AB-3A63-41E2-BB16-F938B451476D}
2013-07-01 21:21:01 -------- d-----w- c:\program files\Medieval Software
2013-07-01 16:05:17 -------- d-----w- c:\users\anja vink\appdata\local\{6F3A763F-2BDD-4380-94AC-3699AD989703}
2013-06-30 14:14:52 -------- d-----w- c:\users\anja vink\appdata\local\{B39BD3F8-99AE-4BCD-AE12-953D1816ED6A}
2013-06-28 17:15:54 -------- d-----w- c:\users\anja vink\appdata\local\{957EFF73-53E2-43EB-8EB2-A4481FCDA178}
2013-06-27 11:41:09 -------- d-----w- c:\users\anja vink\appdata\local\{17073FD1-85E5-46F2-BD24-A2DE22D65184}
2013-06-26 15:08:43 -------- d-----w- c:\users\anja vink\appdata\local\{B0001EBA-7F66-4AD9-9840-379255038D6D}
2013-06-25 17:36:51 -------- d-----w- c:\users\anja vink\appdata\local\{5973E422-F0E4-47D7-8F44-9185EDE75C12}
2013-06-24 16:16:35 -------- d-----w- c:\users\anja vink\appdata\local\{83F0A825-772B-4B82-A2EE-4EC5FD4EA0DB}
2013-06-23 09:15:31 -------- d-----w- c:\users\anja vink\appdata\local\{896C4A2A-3B4D-49DC-9A31-41AA1273029C}
2013-06-22 21:25:10 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-06-22 21:24:35 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-06-22 11:39:28 -------- d-----w- c:\users\anja vink\appdata\local\{7A806967-3714-4A65-B94C-F5C09EBA8F87}
2013-06-21 23:39:03 -------- d-----w- c:\users\anja vink\appdata\local\{91B63B02-4AC1-46B5-AE2C-0771EA48470A}
2013-06-21 11:38:37 -------- d-----w- c:\users\anja vink\appdata\local\{AF24434B-E3EF-4C74-BA40-FD9B0FB399DF}
2013-06-20 16:29:01 -------- d-----w- c:\users\anja vink\appdata\local\{B96D464B-35CD-4F1D-917D-DE746B82BFCB}
2013-06-19 15:30:43 -------- d-----w- c:\users\anja vink\appdata\local\{1CB60CE6-4E0B-4A8F-9FDD-DCF4F3F412E5}
2013-06-18 18:14:59 -------- d-----w- c:\users\anja vink\appdata\local\{2B3E506B-4FA1-47CC-AAED-B720CCD3E3D5}
2013-06-17 17:38:11 -------- d-----w- c:\users\anja vink\appdata\local\{5928725E-5274-4DAB-BBB1-8E69FAB6EA1E}
.
==================== Find3M ====================
.
2013-07-16 19:44:29 29 ----a-w- c:\windows\system32\TempWmicBatchFile.bat
2013-06-22 21:24:29 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-06-12 17:38:41 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-06-12 17:38:41 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-11 23:43:37 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-06-11 23:43:00 2877440 ----a-w- c:\windows\system32\jscript9.dll
2013-06-11 23:42:58 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-06-11 23:42:58 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-06-11 22:51:45 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-06-07 02:37:52 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-05-13 04:45:55 140288 ----a-w- c:\windows\system32\cryptsvc.dll
2013-05-13 04:45:55 1160192 ----a-w- c:\windows\system32\crypt32.dll
2013-05-13 04:45:55 103936 ----a-w- c:\windows\system32\cryptnet.dll
2013-05-13 03:08:10 903168 ----a-w- c:\windows\system32\certutil.exe
2013-05-13 03:08:06 43008 ----a-w- c:\windows\system32\certenc.dll
2013-05-10 03:20:54 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-05-08 05:38:00 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-05-06 05:06:47 3968872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-05-06 05:06:47 3913576 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-02 00:06:08 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-05-01 01:59:12 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2013-05-01 01:59:12 69632 ----a-w- c:\windows\system32\QuickTime.qts
2013-04-29 23:28:50 102448 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2013-04-26 04:55:21 492544 ----a-w- c:\windows\system32\win32spl.dll
2013-04-25 23:30:32 1505280 ----a-w- c:\windows\system32\d3d11.dll
.
============= FINISH: 22:15:58,31 ===============
Comment