Mededeling

Collapse
No announcement yet.

Veel reclame op mijn laptop als ik op internet zit ( Chrome en internet explorer)

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Veel reclame op mijn laptop als ik op internet zit ( Chrome en internet explorer)

    Hallo,

    Zou iemand mij kunnen helpen met het probleem dat ik veel reclame heb op mijn laptop?
    Als ik bijvoorbeeld liedjes luister of ergens op klik komt er weer een nieuwe pagina binnen met een reclame site.
    Dit is zo met alle soorten internet die ik heb gedownload.
    Heb nog steeds Windows 7 Home Premium en ik geloof 32.

  • #2
    Hoi renskex en welkom op Nucia Security Forum,

    Voor we beginnen , wil ik even vriendelijk op de volgende richtlijnen wijzen:
    .
    • Log enkel in als beheerder met alle rechten.
    • Post je probleem niet in verscheidene fora. het komt je probleem niet ten goede en het is niet netjes tegenover de helpers.
    • Het opruimen van je systeem kan wat tijd in beslag nemen, wees geduldig.
    • Volg aandachtig de instructies die door mij worden gegeven.
    • Volg enkel het door mij gegeven advies op
    • Blijf bij het topic totdat ik gemeldt heb dat je PC clean is.
    • Als je iets niet weet of verstaat, vraag het dan even aub.
    • Installeer of deinstalleer géén software of hardware terwijl we met je probleem bezig zijn.
    • Ga ondertussen niet wat "anders" proberen, dat maakt het alleen maar moeilijker voor ons
    • Zet je emoticons (Smileys) uit als je logs plaatst aub .
    • De logs niet als bijlage, noch tussen codetags zetten aub.

    .
    Opmerking: Alle tools steeds uitvoeren als admin.
    De instructies die worden gegeven, zijn enkel geldig voor jouw PC.

    Stap 1:

    Malware scannen en verwijderen....

    Heb je MBAM reeds op je pc staan, moet je niet downloaden uiteraard.

    Download Malwarebytes Anti-Malware naar je bureaublad .

    Dubbelklik op mbam-setup.exe om het programma te installeren.

    Op het einde van de setup procedure, krijg je een scherm waar je op "Voltooien" moet klikken.
    Indien je MBAM niet wenst te evalueren, vink je de eerste optie uit en klik je dan pas op "Voltooien"

    KLIK HIER voor een vergroting! 
    Klik op de foto voor een vergroting...

    Zorg dat er na de installatie een vinkje is geplaatst bij:
    • Update MalwareBytes' Anti-Malware
    • Start MalwareBytes' Anti-Malware
    • Klik daarna op "Voltooien". Indien een update gevonden wordt, zal die gedownload en geïnstalleerd worden.



    Zodra het programma gestart is, ga je naar het tabblad "Instellingen".
    • Vink hier aan: "Sluit Internet Explorer tijdens verwijdering van malware".
    • Ga naar het tabblad "Updates" en Update MBAM.
    • Ga daarna naar het tabblad "Scanner", kies hier voor "VOLLEDIGE Scan".
    • Druk vervolgens op "Scannen" om de scan te starten.
    • Het scannen kan een tijdje duren, dus wees geduldig.
    • Wanneer de scan voltooid is, klik op OK, daarna "Bekijk Resultaten" om de resultaten te zien.
    • Zorg ervoor dat daar alles aangevinkt is, daarna klik op: "Verwijder geselecteerde".
    • Na het verwijderen zal een log openen en zal er gevraagd worden om de computer opnieuw op te starten.

    .
    Indien MBAM vraagt om een herstart, doe dit dan ook.
    Wanneer je de restart hebt gedaan, maak je een nieuwe snelle scan met MBAM.
    In dat geval post je dus de twee logs. Dus een tweede "snelle scan" log enkel indien de VOLLEDIGE scan "iets" gevonden heeft.

    De log wordt automatisch bewaard door MalwareBytes' Anti-Malware en kan je terugvinden door op de "Logs" tab te klikken in het programma.


    Bij problemen!!!

    .___________________________________________________________

    Stap 2:

    Controle op slechte toolbars...

    Download AdwCleaner by Xplode naar je Bureaublad.
    • Sluit alle openstaande vensters
    • Start AdwCleaner
    • Klik op Scan
    • Klik op Clean
    • KLIK HIER voor een vergroting! 

    Alle icoontjes verdwijnen van het Bureaublad,dit is normaal
    Je PC word opnieuw opgestart en er een opent logfile (C:\ AdwCleaner\AdwCleaner[xx].txt post de inhoud hier op het Forum.

    Enkel de log na de "clean" optie heb ik nodig.

    Vergeet niet om je "smileys" uit te schakelen.

    Als je Startpagina ook gehijackt was,stel dan de zoekmachine opnieuw in,deze word standaard door AdwCleaner terug gezet naar Google.com
    ___________________________________________________________

    Stap 3:

    Download DDS.com, DDS.scr of DDS.pif van één van deze locaties en plaats het op je bureaublad:


    DDS is een diagnosetool en maakt gebruik van scripts.
    Is het uitvoeren van scripts uitgeschakeld, dan schakel je dit weer in zodat er geen problemen optreden bij gebruik van DDS.


    Dubbelklik op DDS om de tool te starten. (afhankelijk van de download die je gekozen hebt kan dit het bestand DDS.com, DDS.scr of DDS.pif zijn)
    Wanneer het klaar is openen er twee logfiles: DDS.txt en Attach.txt
    Beide logfiles sla je op je bureaublad.

    Post de inhoud van DDS.txt.

    De inhoud Attach.txt moet je niet posten en Attach.txt moet je niet als bijlage toevoegen aan je post, tenzij ik er om vraag.


    ___________________________________________________________

    Stap 4:

    Download Security Check op je bureaublad via hier of hier

    Start Security Check
    Volg de Instructies in het scherm
    Aan het eind verschijnt een log ( checkup.txt )
    Plaats de inhoud ervan in je volgende antwoord.


    In je volgende posting, had ik graag de volgende logs gezien, gemaakt in de opgestelde volgorde:
    .
    • MBAM
    • AdwCleaner
    • DDS
    • checkup.txt

    .
    Deze logs NIET als bijlage of tussen codetags posten aub.
    (Desnoods in meerdere postingen.)

    Emphyrio
    Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
    E Dev * McAfee verwijderen. * Ccleaner * E-Peek

    Comment


    • #3
      Na stap 2.

      Na stap 2 :

      # AdwCleaner v3.023 - Report created 17/04/2014 at 09:24:16
      # Updated 01/04/2014 by Xplode
      # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
      # Username : hp - HP-HP
      # Running from : C:\Users\hp\Documents\Downloads\AdwCleaner.exe
      # Option : Clean

      ***** [ Services ] *****


      ***** [ Files / Folders ] *****

      Folder Deleted : C:\ProgramData\apn
      Folder Deleted : C:\ProgramData\Ask
      Folder Deleted : C:\ProgramData\Babylon
      Folder Deleted : C:\ProgramData\BabylonUpdater
      Folder Deleted : C:\ProgramData\boost_interprocess
      Folder Deleted : C:\ProgramData\Premium
      Folder Deleted : C:\ProgramData\SoftSafe
      Folder Deleted : C:\ProgramData\Tarma Installer
      Folder Deleted : C:\ProgramData\uniblue
      Folder Deleted : C:\ProgramData\WPM
      Folder Deleted : C:\ProgramData\Browse2SiAAvae
      Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
      Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TheBflix
      Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browse2SiAAvae
      Folder Deleted : C:\Program Files (x86)\Bench
      Folder Deleted : C:\Program Files (x86)\Conduit
      Folder Deleted : C:\Program Files (x86)\FindRight
      Folder Deleted : C:\Program Files (x86)\myfree codec
      Folder Deleted : C:\Program Files (x86)\pc speed up
      Folder Deleted : C:\Program Files (x86)\Windows iLivid Toolbar
      Folder Deleted : C:\Windows\SysWOW64\SearchProtect
      Folder Deleted : C:\Users\hp\AppData\Local\Conduit
      Folder Deleted : C:\Users\hp\AppData\Local\genienext
      Folder Deleted : C:\Users\hp\AppData\Local\Ilivid Player
      Folder Deleted : C:\Users\hp\AppData\Local\Mobogenie
      Folder Deleted : C:\Users\hp\AppData\Local\PackageAware
      Folder Deleted : C:\Users\hp\AppData\LocalLow\BabylonToolbar
      Folder Deleted : C:\Users\hp\AppData\LocalLow\Claro LTD
      Folder Deleted : C:\Users\hp\AppData\LocalLow\Conduit
      Folder Deleted : C:\Users\hp\AppData\LocalLow\searchquband
      Folder Deleted : C:\Users\hp\AppData\Roaming\Babylon
      Folder Deleted : C:\Users\hp\AppData\Roaming\DigitalSites
      Folder Deleted : C:\Users\hp\AppData\Roaming\NCdownloader
      Folder Deleted : C:\Users\hp\AppData\Roaming\PerformerSoft
      Folder Deleted : C:\Users\hp\AppData\Roaming\registry mechanic
      Folder Deleted : C:\Users\hp\AppData\Roaming\SupTab
      Folder Deleted : C:\Users\hp\AppData\Roaming\Systweak
      Folder Deleted : C:\Users\hp\AppData\Roaming\UpdaterEX
      Folder Deleted : C:\Users\hp\AppData\Roaming\Yontoo
      Folder Deleted : C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\lemilgpbnfoecfjhpfchannnnkeefjmj
      File Deleted : C:\Windows\System32\roboot64.exe
      File Deleted : C:\Windows\System32\Tasks\DealPlyUpdate
      File Deleted : C:\Windows\Tasks\Digital Sites.job
      File Deleted : C:\Windows\System32\Tasks\Digital Sites
      File Deleted : C:\Windows\Tasks\MySearchDial.job
      File Deleted : C:\Windows\System32\Tasks\MySearchDial
      File Deleted : C:\Windows\System32\Tasks\RegClean Pro
      File Deleted : C:\Windows\Tasks\UpdaterEX.job
      File Deleted : C:\Windows\System32\Tasks\UpdaterEX

      ***** [ Shortcuts ] *****

      Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
      Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
      Shortcut Disinfected : C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk

      ***** [ Registry ] *****

      Key Deleted : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
      Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
      Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph
      Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ppjemjejnnojomfekgbpbbnecicblllf
      Key Deleted : HKCU\Software\Google\Chrome\Extensions\lemilgpbnfoecfjhpfchannnnkeefjmj
      Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lemilgpbnfoecfjhpfchannnnkeefjmj
      Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BlockNSurf]
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
      Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
      Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
      Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
      Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Giant Savings_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\I Want This_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\softonic_ggl_1_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
      Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
      Key Deleted : HKCU\Software\5b4dfd1e66eef41
      Key Deleted : HKLM\SOFTWARE\5b4dfd1e66eef41
      Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2865317
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_atube-catcher_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_atube-catcher_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-live-messenger_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_minecraft-skinedit_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_minecraft-skinedit_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_minecraft_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_minecraft_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_msn-messenger_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_msn-messenger_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_realtek-hd-audio-drivers_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_realtek-hd-audio-drivers_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_the-sims-2-body-shop_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_the-sims-2-body-shop_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_tweetdeck_RASAPI32
      Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_voor_tweetdeck_RASMANCS
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
      Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220022442279}
      Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33333333-3333-3333-3333-330033443379}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550055445579}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660066446679}
      Key Deleted : HKLM\SOFTWARE\Classes\Interface\{77777777-7777-7777-7777-770077447779}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2CF0D01-7657-48AA-98C9-AE5E64757FCC}
      Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
      Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
      Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{16466D47-74A8-4928-B8B2-07CD79ABFC9F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{26D5CC0A-7A46-4D86-AF45-2EFA320B0C54}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D13AC8F-037E-40C5-ADA6-231BA74EA2F4}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{322EDCF5-9E7D-4021-8C67-F3FFE4961A38}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3E254398-828F-4D51-A39E-3F6B6D96A12C}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{442DAF0C-7EAD-48D9-ABEA-E0036470D6D5}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{58EB187D-24F8-4423-BD6C-655CE4C416BD}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6BEB066C-A791-4A21-B934-7783533FE888}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A07612DF-B1DD-484F-A1C3-36CA4CE919D2}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A76F97B2-2C56-456A-A29E-72741595C2E8}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B19D9D96-E59C-4936-B283-8A831CDB3A53}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BBA74401-6D6F-4BBD-9F65-E8623814F3BB}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D2F39980-399F-492E-8D88-5FF7CCB3B47F}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DC8AAABA-3F8B-4866-8B3A-D9368133A478}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E15519AE-99BE-42DD-BE60-FFC3C183F443}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550055445579}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660066446679}
      Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{77777777-7777-7777-7777-770077447779}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
      Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
      Key Deleted : HKCU\Software\APN PIP
      Key Deleted : HKCU\Software\bProtector
      Key Deleted : HKCU\Software\DealPly
      Key Deleted : HKCU\Software\dsiteproducts
      Key Deleted : HKCU\Software\IM
      Key Deleted : HKCU\Software\ImInstaller
      Key Deleted : HKCU\Software\PIP
      Key Deleted : HKCU\Software\systweak
      Key Deleted : HKCU\Software\UpdaterEX
      Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
      Key Deleted : HKCU\Software\AppDataLow\Software\Giant Savings
      Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
      Key Deleted : HKLM\Software\Babylon
      Key Deleted : HKLM\Software\Bandoo
      Key Deleted : HKLM\Software\Bench
      Key Deleted : HKLM\Software\Conduit
      Key Deleted : HKLM\Software\PIP
      Key Deleted : HKLM\Software\SP Global
      Key Deleted : HKLM\Software\SProtector
      Key Deleted : HKLM\Software\supTab
      Key Deleted : HKLM\Software\supWPM
      Key Deleted : HKLM\Software\systweak
      Key Deleted : HKLM\Software\Uniblue
      Key Deleted : HKLM\Software\Wpm
      Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
      Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}
      Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\PROGRA~3\BROWSE~1\261123~1.78\{16CDF~1\browsemngr.dll
      Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\PROGRA~3\PCPERF~1\22587~1.187\{61D8B~1\pcpmngr.dll

      ***** [ Browsers ] *****

      -\\ Internet Explorer v10.0.9200.16635

      Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
      Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
      Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
      Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
      Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

      -\\ Google Chrome v34.0.1847.116

      [ File : C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\preferences ]

      Deleted : homepage
      Deleted : icon_url
      Deleted : search_url
      Deleted : keyword

      *************************

      AdwCleaner[R0].txt - [25082 octets] - [17/04/2014 09:22:34]
      AdwCleaner[S0].txt - [23005 octets] - [17/04/2014 09:24:16]

      ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [23066 octets] ##########

      Comment


      • #4
        Na stap 3:

        DDS (Ver_2012-11-20.01) - NTFS_AMD64
        Internet Explorer: 10.0.9200.16635 BrowserJavaVersion: 10.25.2
        Run by hp at 9:30:25 on 2014-04-17
        Microsoft Windows 7 Home Premium 6.1.7601.1.1252.31.1043.18.2934.814 [GMT 2:00]
        .
        AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
        SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
        SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
        .
        ============== Running Processes ===============
        .
        C:\Windows\system32\lsm.exe
        C:\Windows\system32\svchost.exe -k DcomLaunch
        C:\Windows\system32\svchost.exe -k RPCSS
        c:\Program Files\Microsoft Security Client\MsMpEng.exe
        C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
        C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
        C:\Windows\system32\svchost.exe -k LocalService
        C:\Windows\system32\svchost.exe -k netsvcs
        C:\Windows\system32\svchost.exe -k NetworkService
        C:\Windows\system32\Dwm.exe
        C:\Windows\system32\WLANExt.exe
        C:\Windows\Explorer.EXE
        C:\Windows\System32\spoolsv.exe
        C:\Windows\system32\taskeng.exe
        C:\Windows\system32\taskhost.exe
        C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
        C:\Windows\system32\taskeng.exe
        C:\Program Files (x86)\Safer-Surf-soft\Safer-Surfw.exe
        C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
        C:\Windows\SysWOW64\ezSharedSvcHost.exe
        C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
        C:\Windows\System32\igfxtray.exe
        C:\Windows\System32\hkcmd.exe
        C:\Windows\System32\igfxpers.exe
        C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
        C:\Program Files\Microsoft Security Client\msseces.exe
        C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe
        C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
        C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
        C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
        C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe
        C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
        C:\Windows\system32\NOTEPAD.EXE
        C:\Program Files (x86)\Safer-Surf-soft\Safer-Surf157.exe
        C:\Windows\system32\svchost.exe -k imgsvc
        C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
        C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
        C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
        C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
        C:\Windows\system32\SearchIndexer.exe
        C:\Windows\servicing\TrustedInstaller.exe
        c:\Program Files\Microsoft Security Client\NisSrv.exe
        C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
        C:\Program Files\Windows Media Player\wmpnetwk.exe
        C:\Windows\system32\wbem\wmiprvse.exe
        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
        C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Windows\system32\SearchProtocolHost.exe
        C:\Windows\System32\svchost.exe -k LocalServicePeerNet
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
        C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe
        C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
        C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
        C:\Windows\system32\sppsvc.exe
        C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
        C:\Windows\system32\wbem\wmiprvse.exe
        C:\Windows\system32\wuauclt.exe
        C:\Windows\system32\SearchFilterHost.exe
        C:\Windows\System32\cscript.exe
        .
        ============== Pseudo HJT Report ===============
        .
        uStart Page = hxxp://www.google.com
        uDefault_Page_URL = hxxp://www.google.com
        uDefault_Search_URL = hxxp://www.google.com/ie
        mStart Page = hxxp://www.google.com
        mSearch Page = hxxp://www.google.com
        mDefault_Page_URL = hxxp://www.google.com
        mDefault_Search_URL = hxxp://www.google.com
        uProxyServer = hxxp=127.0.0.1:13828
        uSearchAssistant = hxxp://www.google.com/ie
        uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
        BHO: Search-NewTaebb: {06ACFB1C-254A-B15A-9152-C57EEA2D2123} -
        BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
        BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
        BHO: Aanmeldhulp voor Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        BHO: Search-NewTaebb: {9B540303-5333-F2AD-3D1A-368688CFAF8B} -
        BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
        BHO: Search-NewTaebb: {A26D8E9A-5390-DC9C-BD1A-063168383E3B} -
        BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
        BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
        uRun: [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe
        uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
        uRun: [uTorrent] "C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
        mRun: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
        mRun: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
        mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
        uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
        uPolicies-Explorer: NoDrives = dword:0
        mPolicies-Explorer: EnableShellExecuteHooks = dword:1
        mPolicies-Explorer: NoDrives = dword:0
        mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
        mPolicies-System: ConsentPromptBehaviorUser = dword:3
        mPolicies-System: EnableLUA = dword:0
        mPolicies-System: EnableUIADesktopToggle = dword:0
        mPolicies-System: PromptOnSecureDesktop = dword:0
        mPolicies-System: HideFastUserSwitching = dword:0
        IE: &Verzenden naar OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
        IE: E&xporteren naar Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
        IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
        IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
        IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
        IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
        DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
        DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/nl/uno1/GAME_UNO1.cab
        DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
        DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
        DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
        DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
        DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
        DPF: {DAF7E6E6-D53A-439A-B28D-12271406B8A9} - hxxp://mobileapps.blackberry.com/devicesoftware/AxLoader.cab
        DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} - hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
        TCP: NameServer = 192.168.2.254
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA} : DHCPNameServer = 192.168.2.254
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA}\14256573531393033324445323 : DHCPNameServer = 192.168.2.254
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA}\3596475636F6D6146414031303 : DHCPNameServer = 192.168.0.1
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA}\54947454E4141425D20534F5E4564777F627B6 : DHCPNameServer = 195.121.1.34 195.121.1.66
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA}\550534234323732373635393 : DHCPNameServer = 192.168.192.1
        TCP: Interfaces\{4E5B7351-C2E7-4F16-BC84-BD91B5EBBEEA}\841696A656D616027596D26496 : DHCPNameServer = 192.168.0.1
        Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
        Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
        AppInit_DLLs=
        SSODL: WebCheck - <orphaned>
        mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
        mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
        x64-mStart Page = hxxp://www.google.com
        x64-mSearch Page = hxxp://www.google.com
        x64-mDefault_Page_URL = hxxp://www.google.com
        x64-mDefault_Search_URL = hxxp://www.google.com
        x64-mSearchAssistant = hxxp://www.awesomehp.com/web/?type=ds&ts=1393689486&from=ild&uid=HitachiXHTS725025A9A364_100915PCK204VJJLY96JX&q={searchTerms}
        x64-mCustomizeSearch = hxxp://www.awesomehp.com/web/?type=ds&ts=1393689486&from=ild&uid=HitachiXHTS725025A9A364_100915PCK204VJJLY96JX&q={searchTerms}
        x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
        x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
        x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
        x64-Run: [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden
        x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
        x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
        x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
        x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
        x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
        x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
        x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
        x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
        x64-DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
        x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
        x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
        x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
        x64-Notify: igfxcui - igfxdev.dll
        x64-SSODL: WebCheck - <orphaned>
        .
        ============= SERVICES / DRIVERS ===============
        .
        R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-1-25 268512]
        R1 wStLib64;wStLib64;C:\Windows\System32\drivers\wStLib64.sys [2014-3-22 61112]
        R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
        R2 ezSharedSvc;Easybits Services for Windows;C:\Windows\System32\ezSharedSvcHost.exe --> C:\Windows\System32\ezSharedSvcHost.exe [?]
        R2 HP Wireless Assistant Service;HP Wireless Assistant Service;C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-6-18 103992]
        R2 HPWMISVC;HPWMISVC;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-2-15 34872]
        R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-9-30 13336]
        R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-1-20 133928]
        R2 Safer-Surf;Safer-Surf;C:\Program Files (x86)\Safer-Surf-soft\Safer-Surf157.exe [2014-3-23 194560]
        R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-9-30 2320920]
        R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-9-17 56344]
        R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-8-23 317440]
        R3 NisSrv;Microsoft Netwerkinspectie;C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-3-11 347872]
        S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
        S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
        S3 Bulk;HDJBulk;C:\Windows\System32\drivers\HDJBulk.sys [2012-10-6 232272]
        S3 cpudrv64;cpudrv64;C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [2011-6-2 17864]
        S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-6-20 48488]
        S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
        S3 HDJAsioK;HDJAsioK;C:\Windows\System32\drivers\HDJAsioK.sys [2012-10-6 304976]
        S3 HDJMidi;Hercules DJ Console Rmx MIDI;C:\Windows\System32\drivers\HDJMidi.sys [2012-10-6 253264]
        S3 hitmanpro37;HitmanPro 3.7 Support Driver;C:\Windows\System32\drivers\hitmanpro37.sys [2014-1-28 32512]
        S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
        S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-9-30 225280]
        S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-9-30 333928]
        S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-14 292864]
        S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-14 1485312]
        S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-14 740864]
        S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-21 59392]
        S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2011-8-2 51712]
        S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-5-4 1255736]
        S3 WSDScan;Ondersteuning voor WSD-scan via UMB;C:\Windows\System32\drivers\WSDScan.sys [2009-7-14 25088]
        S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120]
        S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
        .
        =============== Created Last 30 ================
        .
        2014-04-17 07:22:29 -------- d-----w- C:\AdwCleaner
        2014-04-16 15:58:34 10651696 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AE009837-2E34-43A9-A4CB-32327DB082DA}\mpengine.dll
        2014-04-14 13:59:10 27584 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
        2014-04-14 13:59:10 274880 ----a-w- C:\Windows\System32\drivers\msiscsi.sys
        2014-04-14 13:59:10 2048 ----a-w- C:\Windows\SysWow64\iologmsg.dll
        2014-04-14 13:59:10 2048 ----a-w- C:\Windows\System32\iologmsg.dll
        2014-04-14 13:59:10 190912 ----a-w- C:\Windows\System32\drivers\storport.sys
        2014-04-14 13:58:58 243712 ----a-w- C:\Windows\System32\wow64.dll
        2014-04-14 13:58:57 362496 ----a-w- C:\Windows\System32\wow64win.dll
        2014-04-14 13:58:57 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
        2014-04-14 13:58:53 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
        2014-04-14 13:58:53 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
        2014-04-14 13:58:53 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
        2014-04-14 13:58:52 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
        2014-04-14 13:58:51 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
        2014-04-14 13:58:51 2048 ----a-w- C:\Windows\SysWow64\user.exe
        2014-04-14 13:58:49 1684928 ----a-w- C:\Windows\System32\drivers\ntfs.sys
        2014-04-14 13:50:30 10521840 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
        2014-04-05 17:27:45 -------- d-----w- C:\Grown Ups 2 (2013) BRRip NL Subs DutchReleaseTeam
        2014-04-05 17:02:57 -------- d-----w- C:\Friends with Benefits (2011) R5 Nl subs DutchReleaseTeam [Komedie]
        2014-04-05 16:57:54 -------- d-----w- C:\Grown Ups 2 (2013) TS NL subs DutchReleaseTeam
        2014-04-05 16:56:29 -------- d-----w- C:\Grown.Ups.2010.NL-subs.xvid
        2014-04-05 16:47:33 -------- d-----w- C:\Love & Other Drugs
        2014-04-04 13:49:23 -------- d-----w- C:\Users\hp\AppData\Local\{B1F9297D-E9E6-4450-9C70-EAA913D079F3}
        2014-04-04 12:13:53 1031560 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{661860DA-06B6-4690-9E94-CCF909202525}\gapaengine.dll
        2014-03-27 16:21:59 -------- d-----w- C:\Users\hp\AppData\Local\{630038C6-58EC-48D3-9D97-253780DC64FC}
        2014-03-25 17:11:22 -------- d-----w- C:\The Vow (2012) BRRip NL subs DutchReleaseTeam
        2014-03-23 15:30:27 -------- d-----w- C:\Users\hp\AppData\Roaming\Plarium
        2014-03-23 15:30:13 -------- d-----w- C:\Users\hp\AppData\Roaming\StormFall598
        2014-03-23 15:30:08 -------- d-----w- C:\Program Files (x86)\Safer-Surf-soft
        2014-03-23 15:29:51 -------- d-----w- C:\Program Files (x86)\Image Converter
        2014-03-22 10:13:30 61112 ----a-w- C:\Windows\System32\drivers\wStLib64.sys
        .
        ==================== Find3M ====================
        .
        2014-03-15 14:13:42 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
        2014-03-15 14:13:42 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
        2014-03-11 07:52:30 133928 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys
        2014-03-04 09:17:05 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
        2014-02-07 01:23:30 3156480 ----a-w- C:\Windows\System32\win32k.sys
        2014-02-04 02:32:12 624128 ----a-w- C:\Windows\System32\qedit.dll
        2014-02-04 02:04:11 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
        2014-01-29 02:32:18 484864 ----a-w- C:\Windows\System32\wer.dll
        2014-01-29 02:06:47 381440 ----a-w- C:\Windows\SysWow64\wer.dll
        2014-01-28 16:42:47 32512 ----a-w- C:\Windows\System32\drivers\hitmanpro37.sys
        2014-01-28 02:32:46 228864 ----a-w- C:\Windows\System32\wwansvc.dll
        2014-01-24 23:19:42 268512 ----a-w- C:\Windows\System32\drivers\MpFilter.sys
        2014-01-19 07:33:29 270496 ------w- C:\Windows\System32\MpSigStub.exe
        2013-12-04 14:08:49 49940480 ----a-w- C:\Program Files (x86)\GUT759D.tmp
        .
        ============= FINISH: 9:32:43,43 ===============

        Comment


        • #5
          Als ik stap 4 wil downloaden komt er 404 Not found in een nieuwe tablad.

          Comment


          • #6
            Mag ik de log van MBAM uit Stap 1 aub?
            Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
            E Dev * McAfee verwijderen. * Ccleaner * E-Peek

            Comment


            • #7
              Oorspronkelijk geplaatst door Emphyrio Bekijk Berichten
              Mag ik de log van MBAM uit Stap 1 aub?
              Wil het lukken?
              Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
              E Dev * McAfee verwijderen. * Ccleaner * E-Peek

              Comment


              • #8
                Na stap 1 (Had hem al uitgevoerd moest hem nu nog is uitvoeren voor de code )

                Malwarebytes Anti-Malware 1.75.0.1300
                www.malwarebytes.org

                Databaseversie: v2014.04.16.09

                Windows 7 Service Pack 1 x64 NTFS
                Internet Explorer 10.0.9200.16635
                hp :: HP-HP [administrator]

                19-4-2014 14:51:14
                mbam-log-2014-04-19 (14-51-14).txt

                Scan type: Volledige scan (C:\|D:\|)
                Ingeschakelde scan opties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM
                Uitgeschakelde scan opties: P2P
                Objecten gescand: 456884
                Verstreken tijd: 2 uur/uren, 15 minuut/minuten, 19 seconde(n)

                Geheugenprocessen gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                Geheugenmodulen gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                Registersleutels gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                Registerwaarden gedetecteerd: 1
                HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings|ProxyServer (PUM.Bad.Proxy) -> Data: http=127.0.0.1:13828 -> Succesvol in quarantaine geplaatst en verwijderd.

                Registerdata gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                Mappen gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                Bestanden gedetecteerd: 0
                (Geen kwaadaardige objecten gedetecteerd)

                (einde)

                Comment


                • #9
                  Download Combofix naar je bureaublad.
                  (Dus niet naar een download map of temp map)

                  Extra nota... Zorg ervoor dat je Security software uitschakeld is tijdens het gebruik van Combofix.
                  Dit omdat deze scanners bepaalde componenten die Combofix gebruikt, onterecht zien als geïnfecteerd en Combofix zullen blokkeren.

                  Kijk hier indien je niet weet hoe je je Antivirus, Firewall en/of Antispywarescanner moet uitschakelen.

                  Sluit ALLE vensters, ook je browser en laat Combofix rustig zijn werk doen.
                  Open dus geen andere applicaties totdat Combofix de log heeft gepresenteert.

                  Als Combofix vraagt om een update, dan staat je dit toe.

                  Wanneer ComboFix klaar is met scannen, dit kan eventueel na een reboot zijn, opent er een logfile (combofix.txt).
                  Deze kan je vinden als C:\combofix.txt.

                  Post het Combofixlogje samen met een nieuw DDS logje in je volgende antwoord.

                  * OPMERKING: Indien je één van de onderstaande meldingen krijgt na het gebruik van ComboFix, herstart dan de computer.
                  • Er is geprobeerd een ongeldige bewerking uit te voeren op een registersleutel die is gemarkeerd voor verwijdering.
                  • Illegal operation attempted on a registry key that has been marked for deletion.
                  Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                  E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                  Comment


                  • #10
                    Wilt het lukken?
                    Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                    E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                    Comment


                    • #11
                      ik snap niet hoe je Security software uitschakeld tijdens het gebruik van Combofix.

                      Comment


                      • #12
                        Oorspronkelijk geplaatst door renskex Bekijk Berichten
                        ik snap niet hoe je Security software uitschakeld tijdens het gebruik van Combofix.
                        ...
                        Staat nochthans in de richtlijnen:
                        Oorspronkelijk geplaatst door Emphyrio Bekijk Berichten
                        Kijk hier indien je niet weet hoe je je Antivirus, Firewall en/of Antispywarescanner moet uitschakelen.
                        Als je had geklikt, kwam je het volgende te weten:
                        MICROSOFT SECURITY ESSENTIALS - How to temporarily disable Microsoft Security Essentials

                        Right-click on the MSE icon in the system tray and choose Open.
                        Click the Settings tab, then click Real Time Protection.
                        Uncheck the box next to "Turn on real time protection".
                        Click the "Save changes" button.
                        Exit MSE when done.
                        Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                        E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                        Comment


                        • #13
                          Wil het lukken?
                          Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                          E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                          Comment


                          • #14
                            Bij gebrek aan feedback zet ik dit topic op opgelost.

                            Indien er niet meer gereageerd wordt, zal binnen een 3-tal dagen deze thread automatisch verplaatst worden naar de sectie Opgeloste hijackthislogs en is een reactie niet meer mogelijk
                            Dit is gedaan om het forum netjes en overzichtelijk te houden.

                            Blijkt dat er toch nog problemen zijn, en je wil weer reageren in dit topic, dan stuur je me een privé bericht met verzoek om heropening.


                            Emphyrio
                            Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                            E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                            Comment

                            Sorry, you are not authorized to view this page
                            Working...
                            X