Mededeling

Collapse
No announcement yet.

Related Searches

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • Related Searches

    Na het updaten van Free Youtube download (programma dat ik vaak gebruik), krijg ik plots op iedere website (ook hier) related searches en verschillende pop ups. Op Google gezocht en daar gaf men dingen die ik moest verwijderen maar die in Revo Uninstaller niet staan. Ook niet in Programma's en onderdelen.
    Gescand met Malwarebytes, maar geen resultaat. HELP!!!
    Hier de scan:
    Malwarebytes Anti-Malware
    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 5/02/2015
    Scan Time: 19:28:04
    Logfile: 02-05-Logfile Adwcleaner.txt
    Administrator: Yes

    Version: 2.00.4.1028
    Malware Database: v2015.02.05.07
    Rootkit Database: v2015.02.03.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Self-protection: Disabled

    OS: Windows 7 Service Pack 1
    CPU: x64
    File System: NTFS
    User: Gebruiker

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 392551
    Time Elapsed: 9 min, 29 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 3
    Trojan.Agent, C:\Users\Gebruiker\AppData\Local\Temp\Quarantine.exe, Quarantined, [eeedf6246c1e87af6af448d3ed156e92],
    PUP.Optional.OpenCandy, C:\Users\Gebruiker\AppData\Local\Temp\is-0F7JT.tmp\OCSetupHlp.dll, Quarantined, [31aa1307bfcbad8952977e5a0ff68080],
    PUP.Optional.OpenCandy, C:\Users\Gebruiker\AppData\Local\Temp\is-32SL4.tmp\OCSetupHlp.dll, Quarantined, [0ad1c654fb8f6ec8f1f84c8cf015aa56],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
    Last edited by theo2602; 05-02-15, 18:38.

  • #2
    AdwCleaner:
    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 5/02/2015
    Scan Time: 19:28:04
    Logfile: 02-05-Logfile Adwcleaner.txt
    Administrator: Yes

    Version: 2.00.4.1028
    Malware Database: v2015.02.05.07
    Rootkit Database: v2015.02.03.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Self-protection: Disabled

    OS: Windows 7 Service Pack 1
    CPU: x64
    File System: NTFS
    User: Gebruiker

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 392551
    Time Elapsed: 9 min, 29 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Heuristics: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 3
    Trojan.Agent, C:\Users\Gebruiker\AppData\Local\Temp\Quarantine.exe, Quarantined, [eeedf6246c1e87af6af448d3ed156e92],
    PUP.Optional.OpenCandy, C:\Users\Gebruiker\AppData\Local\Temp\is-0F7JT.tmp\OCSetupHlp.dll, Quarantined, [31aa1307bfcbad8952977e5a0ff68080],
    PUP.Optional.OpenCandy, C:\Users\Gebruiker\AppData\Local\Temp\is-32SL4.tmp\OCSetupHlp.dll, Quarantined, [0ad1c654fb8f6ec8f1f84c8cf015aa56],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
    Last edited by theo2602; 05-02-15, 18:39.

    Comment


    • #3
      Hoi Theo,

      De eerste stap is het uitvoeren van deze richtlijn: !!! BELANGRIJK !!!: Lees dit eerst voor je een bericht plaatst!

      Post de gevraagde logjes.

      Emphyrio
      Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
      E Dev * McAfee verwijderen. * Ccleaner * E-Peek

      Comment


      • #4
        Sorry Emphyrio dat ik niet dadelijk uw raad ga uitvoeren, maar toen ik nu opstartte kwam er iets van Avast over foute dingen en moest ik klikken op uitvoeren. Nu heb ik die related searches niet meer! Ik zal dus even wachten of die nog terugkomen.
        Alvast bedankt.

        Comment


        • #5
          Om opnieuw geen topic te moeten openen, best toch mijn raad even opvolgen en de logs posten.
          Dit om zeker te zijn dat er geen resten achtergebleven zijn.
          Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
          E Dev * McAfee verwijderen. * Ccleaner * E-Peek

          Comment


          • #6
            Ik ben er wel wat bang voor, maar hier van Defrogger:
            defogger_disable by jpshortstuff (23.02.10.1)
            Log created at 08:51 on 06/02/2015 (Gebruiker)

            Checking for autostart values...
            HKCU\~\Run values retrieved.
            HKLM\~\Run values retrieved.

            Checking for services/drivers...
            SPTD -> Disabled (Service running -> reboot required)


            -=E.O.F=-

            Comment


            • #7
              Het is wel vervelend dat het onderwerp al verwijderd is, nu moet ik het steeds gaan zoeken.
              Wat Mbam betreft dat aangepaste scan vind ik nergens dus ook niet de aangepaste of rootkit

              Comment


              • #8
                Malewarebytes
                Malwarebytes Anti-Malware
                www.malwarebytes.org

                Scan Date: 6/02/2015
                Scan Time: 9:04:08
                Logfile: 02-05-Logfile Adwcleaner.txt
                Administrator: Yes

                Version: 2.00.4.1028
                Malware Database: v2015.02.06.03
                Rootkit Database: v2015.02.03.01
                License: Free
                Malware Protection: Disabled
                Malicious Website Protection: Disabled
                Self-protection: Disabled

                OS: Windows 7 Service Pack 1
                CPU: x64
                File System: NTFS
                User: Gebruiker

                Scan Type: Threat Scan
                Result: Completed
                Objects Scanned: 393216
                Time Elapsed: 9 min, 27 sec

                Memory: Enabled
                Startup: Enabled
                Filesystem: Enabled
                Archives: Enabled
                Rootkits: Disabled
                Heuristics: Enabled
                PUP: Enabled
                PUM: Enabled

                Processes: 0
                (No malicious items detected)

                Modules: 0
                (No malicious items detected)

                Registry Keys: 0
                (No malicious items detected)

                Registry Values: 0
                (No malicious items detected)

                Registry Data: 0
                (No malicious items detected)

                Folders: 0
                (No malicious items detected)

                Files: 0
                (No malicious items detected)

                Physical Sectors: 0
                (No malicious items detected)


                (end)

                Comment


                • #9
                  adware cleaner:
                  # AdwCleaner v4.110 - Logfile created 06/02/2015 at 09:18:23
                  # Updated 05/02/2015 by Xplode
                  # Database : 2015-02-05.2 [Server]
                  # Operating system : Windows 7 Ultimate Service Pack 1 (x64)
                  # Username : Gebruiker - GEBRUIK-GT38LFW
                  # Running from : C:\Users\Gebruiker\Desktop\adwcleaner_4.110.exe
                  # Option : Cleaning

                  ***** [ Services ] *****


                  ***** [ Files / Folders ] *****

                  Folder Deleted : C:\ProgramData\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
                  Folder Deleted : C:\Program Files (x86)\Common Files\d2d4a9d3-f3f1-4c52-8d3f-dddc91fe0602
                  File Deleted : C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\x0xpmqfe.default\Extensions\{27b7c23c-50cd-4b3c-a6c1-8e45175b2442}.xpi

                  ***** [ Scheduled tasks ] *****


                  ***** [ Shortcuts ] *****


                  ***** [ Registry ] *****

                  Key Deleted : HKCU\Software\DriverTuner_Init
                  Key Deleted : HKCU\Software\DriverTuner
                  Key Deleted : HKLM\SOFTWARE\PositiveFinds

                  ***** [ Web browsers ] *****

                  -\\ Internet Explorer v11.0.9600.17496


                  -\\ Mozilla Firefox v35.0.1 (x86 nl)


                  -\\ Google Chrome v


                  *************************

                  AdwCleaner[R3].txt - [5321 bytes] - [05/02/2015 17:53:08]
                  AdwCleaner[R4].txt - [5381 bytes] - [05/02/2015 19:29:15]
                  AdwCleaner[R5].txt - [1490 bytes] - [06/02/2015 09:16:46]
                  AdwCleaner[S2].txt - [5044 bytes] - [05/02/2015 19:40:08]
                  AdwCleaner[S3].txt - [1334 bytes] - [06/02/2015 09:18:23]

                  ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1393 bytes] ##########

                  Comment


                  • #10
                    Ik moet nu boodschappen doen ben dus even weg:
                    DDS
                    DDS (Ver_2012-11-20.01) - NTFS_AMD64
                    Internet Explorer: 11.0.9600.17496 BrowserJavaVersion: 11.31.2
                    Run by Gebruiker at 9:25:53 on 2015-02-06
                    Microsoft Windows 7 Ultimate 6.1.7601.1.1252.31.1043.18.4095.2257 [GMT 1:00]
                    .
                    AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
                    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
                    SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
                    FW: avast! Antivirus *Disabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
                    .
                    ============== Running Processes ===============
                    .
                    C:\Windows\system32\lsm.exe
                    C:\Windows\system32\svchost.exe -k DcomLaunch
                    C:\Windows\system32\nvvsvc.exe
                    C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
                    C:\Windows\system32\svchost.exe -k RPCSS
                    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
                    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
                    C:\Windows\system32\svchost.exe -k LocalService
                    C:\Windows\system32\svchost.exe -k netsvcs
                    C:\Windows\system32\svchost.exe -k NetworkService
                    C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
                    C:\Program Files\AVAST Software\Avast\AvastSvc.exe
                    C:\Windows\system32\WLANExt.exe
                    C:\Windows\system32\nvvsvc.exe
                    C:\Windows\system32\Dwm.exe
                    C:\Windows\Explorer.EXE
                    C:\Windows\System32\spoolsv.exe
                    C:\Windows\system32\taskhost.exe
                    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
                    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
                    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                    C:\Windows\system32\taskeng.exe
                    C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
                    C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe
                    C:\Program Files\Hewlett-Packard\HP Wireless Deluxe Desktop Combo\TSR\xDaemon.exe
                    C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe
                    C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
                    C:\Program Files\Windows Sidebar\sidebar.exe
                    C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
                    C:\Program Files (x86)\RLinkToolbox 3\RLinkToolbox.exe
                    C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe
                    C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
                    C:\Program Files (x86)\Skype\Phone\Skype.exe
                    C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe
                    C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
                    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
                    C:\Windows\SysWOW64\IoctlSvc.exe
                    C:\Program Files (x86)\LevelOne\Common\RaRegistry.exe
                    C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe
                    C:\Program Files (x86)\LevelOne\Common\RaRegistry64.exe
                    C:\Program Files\CyberLink\Shared files\RichVideo64.exe
                    C:\Users\Gebruiker\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
                    C:\Windows\system32\svchost.exe -k imgsvc
                    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
                    C:\Program Files (x86)\LevelOne\Common\RaUI.exe
                    C:\Program Files (x86)\SpywareGuard\sgmain.exe
                    C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
                    C:\HP\KBD\kbd.exe
                    C:\Program Files\AVAST Software\Avast\avastui.exe
                    C:\Program Files (x86)\SpywareGuard\sgbhp.exe
                    C:\Windows\system32\SearchIndexer.exe
                    C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
                    C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
                    C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
                    C:\Windows\System32\WUDFHost.exe
                    C:\Windows\system32\wbem\wmiprvse.exe
                    C:\Program Files\Windows Media Player\wmpnetwk.exe
                    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
                    C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
                    C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
                    C:\Windows\system32\wbem\unsecapp.exe
                    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                    C:\Windows\system32\wbem\wmiprvse.exe
                    C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
                    C:\Windows\system32\sppsvc.exe
                    C:\Windows\System32\svchost.exe -k secsvcs
                    C:\Windows\system32\vssvc.exe
                    C:\Windows\System32\svchost.exe -k swprv
                    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
                    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
                    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
                    C:\Windows\system32\SearchProtocolHost.exe
                    C:\Windows\system32\SearchFilterHost.exe
                    C:\Windows\System32\cscript.exe
                    .
                    ============== Pseudo HJT Report ===============
                    .
                    uStart Page = www.google.com
                    uSearch Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
                    mStart Page = www.google.com
                    mSearch Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
                    mDefault_Page_URL = www.google.com
                    uSearchAssistant = hxxp://www.google.com
                    mWinlogon: Userinit = userinit.exe,
                    BHO: SpywareGuardDLBLOCK.CBrowserHelper: {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files

                    (x86)\SpywareGuard\dlprotect.dll
                    BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft

                    Office\Office14\GROOVEEX.DLL
                    BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java

                    \jre1.8.0_31\bin\ssv.dll
                    BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast

                    \aswWebRepIE.dll
                    BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} -
                    BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files

                    (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                    BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} -
                    BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java

                    \jre1.8.0_31\bin\jp2ssv.dll
                    TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
                    uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib

                    \NMBgMonitor.exe"
                    uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                    uRun: [Gadwin PrintScreen (64-bit)] "C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe" /nosplash
                    uRun: [RLinkToolbox.exe] C:\Program Files (x86)\RLinkToolbox 3\RLinkToolbox.exe
                    uRun: [EPSON S22 Series] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIGEE.EXE /FU "C:\Windows\TEMP\E_SDE51.tmp"

                    /EF "HKCU"
                    uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
                    uRun: [FreeAC] C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe -autorun
                    uRun: [SkyDrive] "C:\Users\Gebruiker\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
                    mRun: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
                    mRun: [KBD] C:\HP\KBD\KBD.EXE
                    mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
                    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
                    StartupFolder: C:\Users\GEBRUI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SPYWAR~1.LNK - C:

                    \Program Files (x86)\SpywareGuard\sgmain.exe
                    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\WUA-0606.lnk - C:\Program Files

                    (x86)\LevelOne\Common\RaUI.exe
                    uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
                    uPolicies-Explorer: NoResolveTrack = dword:1
                    mPolicies-Explorer: NoActiveDesktop = dword:1
                    mPolicies-Explorer: NoActiveDesktopChanges = dword:1
                    mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
                    mPolicies-System: ConsentPromptBehaviorUser = dword:0
                    mPolicies-System: EnableLUA = dword:0
                    mPolicies-System: EnableUIADesktopToggle = dword:0
                    mPolicies-System: SoftwareSASGeneration = dword:1
                    IE: &Verzenden naar OneNote - C:\PROGRA~1\MICROS~4\Office14\ONBttnIE.dll/105
                    IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
                    IE: E&xporteren naar Microsoft Excel - C:\PROGRA~1\MICROS~4\Office14\EXCEL.EXE/3000
                    IE: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins

                    \freeytmp3downloader.htm
                    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files

                    (x86)\Microsoft Office\Office14\ONBttnIE.dll
                    IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files

                    (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
                    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files

                    (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                    .
                    INFO: HKCU has more than 50 listed domains.
                    If you wish to scan all of them, select the 'Force scan all domains' option.
                    .
                    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-

                    i586.cab
                    DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-

                    i586.cab
                    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_76-windows-

                    i586.cab
                    TCP: NameServer = 192.168.1.1
                    TCP: Interfaces\{7E2C063B-1F37-4C04-85E2-511BC36F30FE} : DHCPNameServer = 192.168.1.1
                    TCP: Interfaces\{99CA833F-3D36-4BCC-8F00-DA02E76AAAEC} : DHCPNameServer = 192.168.1.1
                    Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft

                    Shared\OFFICE14\MSOXMLMF.DLL
                    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype

                    \Skype4COM.dll
                    Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet

                    Explorer\SkypeIEPlugin.dll
                    SSODL: WebCheck - <orphaned>
                    SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft

                    Office\Office14\GROOVEEX.DLL
                    SEH: SpywareGuard.Handler - {81559C35-8464-49F7-BB0E-07A383BEF910} - C:\Program Files (x86)\SpywareGuard

                    \spywareguard.dll
                    x64-mStart Page = www.google.com
                    x64-mSearch Page = www.google.com
                    x64-mDefault_Page_URL = www.google.com
                    x64-mDefault_Search_URL = www.google.com
                    x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office

                    \Office14\GROOVEEX.DLL
                    x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java

                    \jre1.8.0_31\bin\ssv.dll
                    x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast

                    \aswWebRepIE64.dll
                    x64-BHO: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -
                    x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google

                    Toolbar\GoogleToolbar_64.dll
                    x64-BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files

                    (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
                    x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft

                    Office\Office14\URLREDIR.DLL
                    x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java

                    \jre1.8.0_31\bin\jp2ssv.dll
                    x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar

                    \GoogleToolbar_64.dll
                    x64-TB: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -
                    x64-Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
                    x64-Run: [HP Input Device Main Program] C:\Program Files\Hewlett-Packard\HP Wireless Deluxe Desktop Combo\TSR

                    \xDaemon.exe
                    x64-Run: [WrtMon.exe] C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe
                    x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files

                    \Microsoft Office\Office14\ONBttnIE.dll
                    x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files

                    \Microsoft Office\Office14\ONBttnIELinkedNotes.dll
                    x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files

                    (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
                    x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared

                    \OFFICE14\MSOXMLMF.DLL
                    x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
                    x64-Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet

                    Explorer x64\skypeieplugin.dll
                    x64-SSODL: WebCheck - <orphaned>
                    x64-STS: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
                    x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft

                    Office\Office14\GROOVEEX.DLL
                    .
                    ================= FIREFOX ===================
                    .
                    FF - ProfilePath - C:\Users\Gebruiker\AppData\Roaming\Mozilla\Firefox\Profiles\iihxbuw0.default-1417177976527\
                    FF - prefs.js: browser.search.defaulturl - hxxps://www.google.com/search/?trackid=sp-006
                    FF - prefs.js: browser.startup.homepage - hxxp://www.hln.be/hln/nl/957/Binnenland/index.dhtml
                    FF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL
                    FF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL
                    FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
                    FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
                    FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
                    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll
                    FF - plugin: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npdeployJava1.dll
                    FF - plugin: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll
                    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
                    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
                    FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1212152.dll
                    FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
                    .
                    ============= SERVICES / DRIVERS ===============
                    .
                    R0 Achernar;Achernar - SCSI Command Filter Drivers;C:\Windows\System32\drivers\Achernar.sys [2014-7-12 34104]
                    R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2014-6-20 65776]
                    R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2014-6-20 267632]
                    R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswsnx.sys [2014-6-20 1050432]
                    R1 aswSP;aswSP;C:\Windows\System32\drivers\aswsp.sys [2014-6-20 436624]
                    R2 aswHwid;avast! HardwareID;C:\Windows\System32\drivers\aswHwid.sys [2014-6-20 29208]
                    R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2014-6-20 83280]
                    R2 aswStm;aswStm;C:\Windows\System32\drivers\aswstm.sys [2014-6-20 116728]
                    R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-11 50344]
                    R2 c2cautoupdatesvc;Skype Click to Call Updater;C:\Program Files (x86)\Skype\Toolbars\AutoUpdate

                    \SkypeC2CAutoUpdateSvc.exe [2014-7-14 1390176]
                    R2 c2cpnrsvc;Skype Click to Call PNR Service;C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe

                    [2014-7-14 1767520]
                    R2 EPSON_EB_RPCV4_04;EPSON V5 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [2014-4-1

                    166400]
                    R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2014-4-1

                    128512]
                    R2 RalinkRegistryWriter;Ralink Registry Writer;C:\Program Files (x86)\LevelOne\Common\RaRegistry.exe [2014-12-3

                    193888]
                    R2 RalinkRegistryWriter64;Ralink Registry Writer 64;C:\Program Files (x86)\LevelOne\Common\RaRegistry64.exe

                    [2014-12-3 211808]
                    R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS);C:\Program Files\CyberLink\Shared files\RichVideo64.exe

                    [2014-11-4 390632]
                    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision

                    \nvSCPAPISvr.exe [2012-8-30 382312]
                    R2 VBoxAswDrv;VBoxAsw Support Driver;C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-11-11

                    271752]
                    R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller;C:\Windows\System32\drivers

                    \l160x64.sys [2009-10-13 61440]
                    R3 AvastVBoxSvc;AvastVBox COM Service;C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-11-11

                    4012248]
                    R3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\System32\drivers\lvrs64.sys [2012-9-21 351520]
                    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET

                    \Framework\v4.0.30319\mscorsvw.exe [2014-4-11 103608]
                    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET

                    \Framework64\v4.0.30319\mscorsvw.exe [2014-4-11 124088]
                    S2 KMService;KMService;C:\Windows\System32\srvany.exe --> C:\Windows\System32\srvany.exe [?]
                    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
                    S3 AndNetDiag;LGE AndroidNet USB Serial Port;C:\Windows\System32\drivers\lgandnetdiag64.sys [2015-1-31 30720]
                    S3 ANDNetModem;LGE AndroidNet USB Modem;C:\Windows\System32\drivers\lgandnetmodem64.sys [2015-1-31 37376]
                    S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-

                    12-10 114688]
                    S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9

                    174440]
                    S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014

                    -3-29 20992]
                    S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-3-29 59392]
                    S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-3-29

                    1255736]
                    .
                    =============== Created Last 30 ================
                    .
                    2015-02-06 07:16:23 11870360 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition

                    Updates\{0C306D83-250B-43AB-AC8C-D65C70B81193}\mpengine.dll
                    2015-02-05 18:21:36 -------- d-----w- C:\Program Files (x86)\Free Codec Pack
                    2015-02-05 18:21:23 -------- d-----w- C:\Program Files (x86)\DVDVideoSoft
                    2015-02-05 18:21:23 -------- d-----w- C:\Program Files (x86)\Common Files\DVDVideoSoft
                    2015-02-05 16:53:05 -------- d-----w- C:\AdwCleaner
                    2015-02-05 15:47:08 -------- d-----w- C:\Users\Gebruiker\AppData\Roaming\FreeYoutubeUploader
                    2015-02-01 13:05:43 -------- d--h--w- C:\OneDriveTemp
                    2015-02-01 11:46:38 -------- d-----w- C:\Program Files (x86)\Microsoft OneDrive
                    2015-02-01 11:46:37 -------- d-----r- C:\Users\Gebruiker\OneDrive
                    2015-02-01 11:46:25 -------- d-----w- C:\ProgramData\Microsoft OneDrive
                    2015-02-01 07:22:35 -------- d-----r- C:\Users\Gebruiker\Dropbox
                    2015-02-01 07:19:16 -------- d-----w- C:\Users\Gebruiker\AppData\Roaming\Dropbox
                    2015-01-31 17:08:52 655872 ----a-w- C:\Windows\SysWow64\msvcr90.dll
                    2015-01-31 17:08:52 568832 ----a-w- C:\Windows\SysWow64\msvcp90.dll
                    2015-01-31 17:08:52 224768 ----a-w- C:\Windows\SysWow64\msvcm90.dll
                    2015-01-31 17:08:41 53248 ----a-w- C:\Windows\SysWow64\CommonDL.dll
                    2015-01-31 17:08:41 44544 ----a-w- C:\Windows\SysWow64\msxml4a.dll
                    2015-01-31 17:08:28 -------- d-----w- C:\ProgramData\LGMOBILEAX
                    2015-01-31 17:02:14 37376 ----a-w- C:\Windows\System32\drivers\lgandnetmodem64.sys
                    2015-01-31 17:02:13 30720 ----a-w- C:\Windows\System32\drivers\lgandnetdiag64.sys
                    2015-01-31 17:02:10 -------- d-----w- C:\Program Files (x86)\LG Electronics
                    2015-01-24 14:56:53 -------- d-----w- C:\Users\Gebruiker\AppData\Local\GVOX
                    2015-01-24 14:50:03 90112 ----a-w- C:\Windows\unvise32.exe
                    2015-01-24 14:49:55 -------- d-----w- C:\Program Files\Encore 5
                    .
                    ==================== Find3M ====================
                    .
                    2015-02-06 08:04:05 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
                    2015-02-05 16:43:13 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
                    2015-02-05 16:43:13 701616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
                    2015-01-26 09:24:32 111016 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
                    2015-01-26 08:27:15 98216 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
                    2015-01-06 03:36:02 298120 ------w- C:\Windows\System32\MpSigStub.exe
                    2014-12-19 03:06:55 210432 ----a-w- C:\Windows\System32\profsvc.dll
                    2014-12-19 01:46:45 141312 ----a-w- C:\Windows\System32\drivers\mrxdav.sys
                    2014-12-13 05:09:01 144384 ----a-w- C:\Windows\System32\ieUnatt.exe
                    2014-12-13 03:33:44 115712 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
                    2014-12-12 05:35:10 5553592 ----a-w- C:\Windows\System32\ntoskrnl.exe
                    2014-12-12 05:31:49 503808 ----a-w- C:\Windows\System32\srcore.dll
                    2014-12-12 05:31:49 50176 ----a-w- C:\Windows\System32\srclient.dll
                    2014-12-12 05:31:22 296960 ----a-w- C:\Windows\System32\rstrui.exe
                    2014-12-12 05:11:44 3971512 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
                    2014-12-12 05:11:43 3916728 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
                    2014-12-12 05:07:44 43008 ----a-w- C:\Windows\SysWow64\srclient.dll
                    2014-12-11 17:47:12 52736 ----a-w- C:\Windows\System32\TSWbPrxy.exe
                    2014-12-06 04:17:27 303616 ----a-w- C:\Windows\System32\nlasvc.dll
                    2014-12-06 03:50:19 52224 ----a-w- C:\Windows\SysWow64\nlaapi.dll
                    2014-12-06 03:50:18 156672 ----a-w- C:\Windows\SysWow64\ncsi.dll
                    2014-11-22 08:18:20 1050432 ----a-w- C:\Windows\System32\drivers\aswsnx.sys
                    2014-11-22 03:06:23 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
                    2014-11-22 03:06:11 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
                    2014-11-22 02:50:39 66560 ----a-w- C:\Windows\System32\iesetup.dll
                    2014-11-22 02:50:10 580096 ----a-w- C:\Windows\System32\vbscript.dll
                    2014-11-22 02:49:54 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
                    2014-11-22 02:48:20 88064 ----a-w- C:\Windows\System32\MshtmlDac.dll
                    2014-11-22 02:35:29 114688 ----a-w- C:\Windows\System32\ieetwcollector.exe
                    2014-11-22 02:34:51 814080 ----a-w- C:\Windows\System32\jscript9diag.dll
                    2014-11-22 02:34:07 6039552 ----a-w- C:\Windows\System32\jscript9.dll
                    2014-11-22 02:26:31 968704 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
                    2014-11-22 02:20:44 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
                    2014-11-22 02:14:16 77824 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
                    2014-11-22 02:07:43 501248 ----a-w- C:\Windows\SysWow64\vbscript.dll
                    2014-11-22 02:07:17 62464 ----a-w- C:\Windows\SysWow64\iesetup.dll
                    2014-11-22 02:06:32 47616 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
                    2014-11-22 02:05:02 64000 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
                    2014-11-22 01:54:30 620032 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
                    2014-11-22 01:47:10 1359360 ----a-w- C:\Windows\System32\mshtmlmedia.dll
                    2014-11-22 01:46:58 2125312 ----a-w- C:\Windows\System32\inetcpl.cpl
                    2014-11-22 01:40:04 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
                    2014-11-22 01:29:26 4299264 ----a-w- C:\Windows\SysWow64\jscript9.dll
                    2014-11-22 01:28:21 2358272 ----a-w- C:\Windows\System32\wininet.dll
                    2014-11-22 01:22:49 2052096 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
                    2014-11-22 01:21:57 1155072 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
                    2014-11-22 01:00:20 1888256 ----a-w- C:\Windows\SysWow64\wininet.dll
                    2014-11-21 05:14:22 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
                    2014-11-21 05:14:12 93400 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
                    2014-11-21 05:14:08 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
                    2014-11-19 03:26:34 1614504 ----a-w- C:\Windows\System32\FM20.DLL
                    2014-11-11 07:46:48 83280 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
                    2014-11-11 07:46:48 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
                    2014-11-11 07:46:48 29208 ----a-w- C:\Windows\System32\drivers\aswHwid.sys
                    2014-11-11 07:46:48 267632 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
                    2014-11-11 07:46:48 116728 ----a-w- C:\Windows\System32\drivers\aswstm.sys
                    2014-11-11 07:46:47 93568 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
                    2014-11-11 07:46:46 43152 ----a-w- C:\Windows\avastSS.scr
                    2014-11-11 03:09:06 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
                    2014-11-11 03:08:52 241152 ----a-w- C:\Windows\System32\pku2u.dll
                    2014-11-11 03:08:48 728064 ----a-w- C:\Windows\System32\kerberos.dll
                    2014-11-11 02:44:45 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
                    2014-11-11 02:44:32 186880 ----a-w- C:\Windows\SysWow64\pku2u.dll
                    2014-11-11 02:44:25 550912 ----a-w- C:\Windows\SysWow64\kerberos.dll
                    2014-11-11 01:46:26 119296 ----a-w- C:\Windows\System32\drivers\tdx.sys
                    2014-11-10 09:46:26 233280 ----a-w- C:\Windows\apppatch\AppPatch64\VCLdr64.dll
                    .
                    ============= FINISH: 9:27:19,13 ===============

                    Comment


                    • #11
                      Ziet er goed uit, Theo

                      Download of Update Ccleaner

                      Start CCleaner op.
                      • Run Ccleaner en klik in de linkse kolom op Opties
                      • Selecteer het tabblad Geavanceerd
                      • Haal het vinkje weg voor Verwijder alleen bestanden in Windows Temp-systeemmap die ouder zijn dan 24 uur
                      • Selecteer het tabblad Instellingen
                      • Haal het vinkje weg bij "Computer automatisch schoonmaken...."
                      • Klik in de linkse kolom op Cleaner.
                      • Klik dan achtereenvolgens op Analyseer en Schoonmaken.
                      • Klik vervolgens in de linkse kolom op Register
                      • Klik op Scan naar problemen.
                      • Op de vraag of je een backup wil maken van het register, klik je "Ja".
                      • Als er fouten gevonden worden klik je op de middelste knop: Herstel alle geselecteerde fouten en OK

                      .


                      1) Je mag alle losse bestanden en tools die we hebben gebruikt verwijderen.

                      2) Om herbesmetting te vermijden, kan je deze tips eens nalezen:

                      Het voorkomen van spyware-infecties en browserhijacking en Hoe voorkom ik een nieuwe infectie?

                      3) Om je PC een snelle onderhoudbeurt te geven, kan je deze tips eens lezen: Handleiding voor een schone PC

                      4) Allerlei tips en hints kan je hier raadplegen.


                      Ik zet het topic op opgelost.

                      Indien er niet meer gereageerd wordt, zal binnen een 5-tal dagen deze thread automatisch verplaatst worden
                      naar de sectie Opgeloste hijackthislogs en is een reactie niet meer mogelijk
                      Dit is gedaan om het forum netjes en overzichtelijk te houden.

                      Blijkt dat er toch nog problemen zijn, en je wil weer reageren in dit topic, dan stuur je me een privé bericht met verzoek om heropening.



                      Hebben we je goed geholpen? Overweeg eens een (vrijblijvende) donatie aan Nucia

                      Emphyrio
                      Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                      E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                      Comment


                      • #12
                        Bedankt weer al eens, ik zou een sterretje geven, maar dat kan niet. Hopelijk tot lang....

                        Comment


                        • #13
                          Graag gedaan
                          Malware Research [email protected] (MBAM) ..... ASAP & Unite Member
                          E Dev * McAfee verwijderen. * Ccleaner * E-Peek

                          Comment

                          Sorry, you are not authorized to view this page
                          Working...
                          X