Mededeling

Collapse
No announcement yet.

Hijacktis log

Collapse
X
  •  
  • Tijd
  • Show
Clear All
new posts

  • Hijacktis log

    Dit is een hijackthis log van me andere pc... dus hetis niet dezelefde die ik hier eerder geplaats hebt in dit forum... We hebben erg veel last van pop upos en ikoontjes die we niet meer weg krijgen... ook is de pc erg traag. We hebben de pc gescand met Spybot en dat lukte wel.. ad-aware liep vast... Dit pc heeft windows 98 en het is pentium 3. Kunnen jullie hier naar kijken? Alvast bedankt!


    Logfile of HijackThis v1.99.0
    Scan saved at 13:25:07, on 2-1-05
    Platform: Windows 98 SE (Win9x 4.10.2222A)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\SPOOL32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\MSTASK.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\TASKMON.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\WINDOWS\STARTER.EXE
    C:\WINDOWS\SYSTEM\MSWHEEL.EXE
    C:\WINDOWS\SYSTEM\STIMON.EXE
    C:\WINDOWS\LOADQM.EXE
    C:\PROGRAM FILES\SUPPORT.COM\BIN\TGCMD.EXE
    C:\WINDOWS\SYSTEM\QTTASK.EXE
    C:\WINDOWS\SYSTEM\LVCOMS.EXE
    C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
    C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE
    C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\UNLOAD\HPQCMON.EXE
    C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WND.EXE
    C:\WINDOWS\EWUPDATER.EXE
    C:\PROGRAM FILES\MSN APPS\UPDATER\01.02.3000.1001\NL\MSNAPPAU.EXE
    C:\PROGRAM FILES\WINDOWS ADCONTROL\WINADCTL.EXE
    C:\WINDOWS\DIT.EXE
    C:\TKJVOWS.EXE
    C:\WINDOWS\SYSTEM\NTCPL.EXE
    C:\PROGRAM FILES\WINDOWS ADCONTROL\WINADALT.EXE
    C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WNF.EXE
    C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\LOGITECHDESKTOPMESSENGER.EXE
    C:\WINDOWS\RUNDLL32.EXE
    C:\WINDOWS\SYSTEM\DDHELP.EXE
    C:\PROGRAM FILES\MICROSOFT OFFICE\FINDFAST.EXE
    C:\PROGRAM FILES\MSWORKS\AGENDA\WKCALREM.EXE
    C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
    C:\PROGRAM FILES\MICROSOFT OFFICE\OSA.EXE
    C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
    C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOTDD01.EXE
    C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\PROGRAM FILES\ISTSVC\ISTSVC.EXE
    C:\WINDOWS\DESKTOP\ANOUK\HIJACKTHIS.EXE
    C:\WINDOWS\SYSTEM\PSTORES.EXE

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.hqmaurknipvxnmxchuuikxey.biz/yMg44sg6czBMQQoAYY7PPzNaOVLwKtukLqJyZs5BvPccGBi5Fvm6PUMnLM3yufRy.asp
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ckfuzewqmaynhalwe.net/yMg44sg6czAXdslgMKcjfAfj93JFxiqtVYuL4XadZKU.jsp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.rott.chello.nl:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
    R3 - Default URLSearchHook is missing
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
    O2 - BHO: (no name) - {ACB3E0B7-7D0C-40B7-99B3-3EEACDF86BFB} - C:\WINDOWS\MSLAGENT\4B_1,0,1,1_MSLAGENT.DLL (file missing)
    O2 - BHO: BHO Class - {C77E900A-FF55-400E-9BAA-E042C8212898} - C:\PROGRAM FILES\SIMPELINTERNET\EASYBAR\TOOLBARSTARTER.DLL
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\PROGRAM FILES\MSN APPS\MSN TOOLBAR\01.02.3000.1001\NL\MSNTB.DLL
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\PROGRAM FILES\MSN APPS\ST\01.02.3000.1002\EN-XU\STMAIN.DLL
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: (no name) - {D055B8AD-032B-F501-401F-2C42A64B212A} - C:\WINDOWS\APPLICATION DATA\DATE UPLOAD\TICK FLAG.EXE
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O3 - Toolbar: (no name) - {8FB0F3E2-5193-11d7-9F88-0050FC5441CB} - (no file)
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [Taakcontrole] c:\windows\taskmon.exe
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    O4 - HKLM\..\Run: [EnsoniqMixer] starter.exe
    O4 - HKLM\..\Run: [POINTER] C:\PROGRA~1\MICROS~1\POINT32.EXE
    O4 - HKLM\..\Run: [TIPS] C:\PROGRA~1\MICROS~1\TIPS\MOUSE\TIPS.EXE
    O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
    O4 - HKLM\..\Run: [AtiQiPcl] AtiQiPcl.exe
    O4 - HKLM\..\Run: [SNSMon] C:\PROGRAM FILES\SNAPNSHOT\NSYSMON.EXE
    O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
    O4 - HKLM\..\Run: [LoadQM] loadqm.exe
    O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server
    O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
    O4 - HKLM\..\Run: [LVComs] c:\windows\SYSTEM\LVComS.exe
    O4 - HKLM\..\Run: [LogitechGalleryRepair] c:\Program Files\Logitech\ImageStudio\ISStart.exe
    O4 - HKLM\..\Run: [LogitechImageStudioTray] c:\Program Files\Logitech\ImageStudio\LogiTray.exe
    O4 - HKLM\..\Run: [P2P NETWORKING] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE /AUTOSTART
    O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
    O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
    O4 - HKLM\..\Run: [tbeqtoi] rundll32 C:\WINDOWS\SYSTEM\tbeqtoi.dll,Init 1
    O4 - HKLM\..\Run: [ewupdater] C:\WINDOWS\EWUPDATER.EXE
    O4 - HKLM\..\Run: [easywww] C:\WINDOWS\iewww.exe
    O4 - HKLM\..\Run: [msnappau] "c:\program files\MSN Apps\Updater\01.02.3000.1001\nl\msnappau.exe"
    O4 - HKLM\..\Run: [Windows AdControl] C:\PROGRAM FILES\WINDOWS ADCONTROL\WINADCTL.EXE
    O4 - HKLM\..\Run: [sais] c:\program files\180solutions\sais.exe
    O4 - HKLM\..\Run: [grwful] C:\WINDOWS\grwful.exe
    O4 - HKLM\..\Run: [3dfx Tools] rundll32.exe 3dfxCmn.dll,UpdateRegSettings
    O4 - HKLM\..\Run: [Dit] Dit.exe
    O4 - HKLM\..\Run: [gWooNAf] C:\TKJVOWS.EXE
    O4 - HKLM\..\Run: [gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe] C:\TKJVOWS.EXE
    O4 - HKLM\..\Run: [live peak vga build] C:\WINDOWS\Application Data\proxy jugs live peak\readme memo.exe
    O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
    O4 - HKLM\..\Run: [NvCplD] C:\WINDOWS\SYSTEM\NTCPL.EXE
    O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [CAMP FOUR] C:\WINDOWS\APPLIC~1\NAMETI~1\sendsoap.exe
    O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
    O4 - Startup: Microsoft Office Snelzoeken.lnk = C:\Program Files\Microsoft Office\FINDFAST.EXE
    O4 - Startup: Microsoft Works Agenda-herinneringen.lnk = C:\Program Files\MSWorks\Agenda\WKCALREM.EXE
    O4 - Startup: Office Opstarten.lnk = C:\Program Files\Microsoft Office\OSA.EXE
    O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Startup: WinZip Quick Pick.lnk = C:\WINDOWS\CVT1.EXE
    O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
    O4 - Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {4E15D681-1D20-11D4-8B72-000021DA1956} - http://www.boyfun.nl/boyfun.exe
    O16 - DPF: {C9B08199-657A-468D-A26B-692137572131} (FFHostContainer Class) - http://www.focusfocus.com/download/windows/ffhost.cab
    O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcam.nxs.nl/activex/AxisCamControl.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
    O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
    O16 - DPF: {F630A6F3-F89E-4374-99CC-28A8AA003208} (SwitchPointLite Starter Class) - http://sls.switchpoint.com/Connect/switchpoint/Starter.cab
    O16 - DPF: {C58EFA10-2CC0-4C50-8C77-B326555EC1B7} (LaunchApp.clsDefault) - http://quickfix2.chello.nl/quickfix2/asp/LaunchApp.CAB
    O16 - DPF: {1D185838-009D-47C8-824B-B65B4854430E} (chelloInstall.Install) - http://quickfix2.chello.nl/quickfix2/asp/chelloInstall.CAB
    O16 - DPF: {072D3F2E-5FB6-11D3-B461-00C04FA35A21} (CFForm Runtime) - http://www.hollywoodpaws.com/CFIDE/classes/CFJava.cab
    O16 - DPF: {0FCD5A05-BCEC-4BB1-9ED3-88C289D87ABB} (Vacpro.netherland) - http://www.7adpower.com/dialer/netherland.CAB
    O16 - DPF: {018A066F-584A-422F-AC4C-0B1F5FE5C040} (VacPro.olanda_ver3) - http://www.advnt01.com/dialer/olanda_ver3.CAB
    O16 - DPF: {37802401-C7E2-11D7-8582-0048548470B6} (VRCLoader) - http://www.connectu.nl/download/vrcloader.cab
    O16 - DPF: {C36661D7-3590-45B1-80B5-520839E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/MaxisSimCity4PatcherX.cab
    O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
    O16 - DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} (SimCityX Control) - http://simcity.ea.com/play/classic/SimCityX.cab
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
    O16 - DPF: {F0BC061F-DAF9-4533-8011-53BCB4C10307} (Installations Assistent) - http://install.premiumzone.de/InstallationsAssistent.ocx
    O16 - DPF: {BCDB34A6-C1A6-4C89-9526-E84A579A0EF7} (VacPro.olanda_win98) - http://www9.advnt01.com/dialer/olanda_win98.CAB
    O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.netvenda.com/sites/games-nl/nl/games4.cab
    O18 - Protocol: offline-8876480 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw00 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw00s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw10 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw10s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw20 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw20s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw30 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw30s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw40 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw40s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw50 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw50s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw60 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw60s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw70 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw70s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw80 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw80s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw90 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw90s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwa0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwa0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwb0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwb0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwc0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwc0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwd0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwd0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwe0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwe0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwf0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwf0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwg0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwg0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwh0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwh0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwi0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwi0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwj0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwj0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwk0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwk0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwl0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwl0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwm0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwm0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwn0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwn0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwo0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwo0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwp0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwp0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwq0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwq0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwr0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwr0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bws0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bws0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwt0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwt0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwu0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwu0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwv0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwv0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bww0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bww0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwx0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwx0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwy0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwy0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwz0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwz0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw-0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw-0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw+0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bw+0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\GAPLUGPROTOCOL-8876480.DLL
    Last edited by Timz0r; 02-01-05, 15:11.

  • #2
    Dag Timz0r,


    1. Scan met HijackThis en vink de volgende items aan:

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.hqmaurknipvxnmxchuuikxey....MnLM3yufRy.asp
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ckfuzewqmaynhalwe.net/yMg...YuL4XadZKU.jsp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank

    R3 - Default URLSearchHook is missing

    O2 - BHO: (no name) - {ACB3E0B7-7D0C-40B7-99B3-3EEACDF86BFB} - C:\WINDOWS\MSLAGENT\4B_1,0,1,1_MSLAGENT.DLL (file missing)
    O2 - BHO: BHO Class - {C77E900A-FF55-400E-9BAA-E042C8212898} - C:\PROGRAM FILES\SIMPELINTERNET\EASYBAR\TOOLBARSTARTER.DLL
    O2 - BHO: (no name) - {D055B8AD-032B-F501-401F-2C42A64B212A} - C:\WINDOWS\APPLICATION DATA\DATE UPLOAD\TICK FLAG.EXE

    O3 - Toolbar: (no name) - {8FB0F3E2-5193-11d7-9F88-0050FC5441CB} - (no file)

    O4 - HKLM\..\Run: [P2P NETWORKING] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE /AUTOSTART
    O4 - HKLM\..\Run: [tbeqtoi] rundll32 C:\WINDOWS\SYSTEM\tbeqtoi.dll,Init 1
    O4 - HKLM\..\Run: [ewupdater] C:\WINDOWS\EWUPDATER.EXE
    O4 - HKLM\..\Run: [easywww] C:\WINDOWS\iewww.exe
    O4 - HKLM\..\Run: [Windows AdControl] C:\PROGRAM FILES\WINDOWS ADCONTROL\WINADCTL.EXE
    O4 - HKLM\..\Run: [sais] c:\program files\180solutions\sais.exe
    O4 - HKLM\..\Run: [grwful] C:\WINDOWS\grwful.exe
    O4 - HKLM\..\Run: [3dfx Tools] rundll32.exe 3dfxCmn.dll,UpdateRegSettings
    O4 - HKLM\..\Run: [gWooNAf] C:\TKJVOWS.EXE
    O4 - HKLM\..\Run: [gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe] C:\TKJVOWS.EXE
    O4 - HKLM\..\Run: [live peak vga build] C:\WINDOWS\Application Data\proxy jugs live peak\readme memo.exe
    O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
    O4 - HKLM\..\Run: [NvCplD] C:\WINDOWS\SYSTEM\NTCPL.EXE
    O4 - HKCU\..\Run: [CAMP FOUR] C:\WINDOWS\APPLIC~1\NAMETI~1\sendsoap.exe

    O16 - DPF: {4E15D681-1D20-11D4-8B72-000021DA1956} - http://www.boyfun.nl/boyfun.exe
    O16 - DPF: {C9B08199-657A-468D-A26B-692137572131} (FFHostContainer Class) - http://www.focusfocus.com/download/windows/ffhost.cab
    O16 - DPF: {F630A6F3-F89E-4374-99CC-28A8AA003208} (SwitchPointLite Starter Class) - http://sls.switchpoint.com/Connect/s...nt/Starter.cab
    O16 - DPF: {072D3F2E-5FB6-11D3-B461-00C04FA35A21} (CFForm Runtime) - http://www.hollywoodpaws.com/CFIDE/classes/CFJava.cab
    O16 - DPF: {0FCD5A05-BCEC-4BB1-9ED3-88C289D87ABB} (Vacpro.netherland) - http://www.7adpower.com/dialer/netherland.CAB
    O16 - DPF: {018A066F-584A-422F-AC4C-0B1F5FE5C040} (VacPro.olanda_ver3) - http://www.advnt01.com/dialer/olanda_ver3.CAB
    O16 - DPF: {37802401-C7E2-11D7-8582-0048548470B6} (VRCLoader) - http://www.connectu.nl/download/vrcloader.cab
    O16 - DPF: {F0BC061F-DAF9-4533-8011-53BCB4C10307} (Installations Assistent) - http://install.premiumzone.de/Instal...sAssistent.ocx
    O16 - DPF: {BCDB34A6-C1A6-4C89-9526-E84A579A0EF7} (VacPro.olanda_win98) - http://www9.advnt01.com/dialer/olanda_win98.CAB
    O16 - DPF: {91433D86-9F27-402C-B5E3-DEBDD122C339} - http://www.netvenda.com/sites/games-nl/nl/games4.cab
    Sluit alle vensters behalve HijackThis zelf en klik op "Fix checked".

    2. Herstart de pc in veilige modus.
    Mocht je niet weten hoe dat moet, kijk dan hier even: http://www.virushelp.nl/veilige_modus.htm

    Zorg ervoor dat verborgen bestanden en mappen worden weergegeven.
    Hier kun je lezen hoe dat moet: http://users.telenet.be/marcvn/spyware/1117602.htm

    Verwijder nu, in veilige modus dus, de volgende bestanden en mappen (voor zover nog aanwezig):

    Bestanden:
    C:\TKJVOWS.EXE
    C:\WINDOWS\EWUPDATER.EXE
    C:\WINDOWS\iewww.exe
    C:\WINDOWS\grwful.exe
    C:\WINDOWS\SYSTEM\NTCPL.EXE
    C:\WINDOWS\SYSTEM\tbeqtoi.dll

    Mappen:
    C:\WINDOWS\APPLICATION DATA\DATE UPLOAD
    C:\WINDOWS\Application Data\proxy jugs live peak
    C:\WINDOWS\Application Data\NAMETI...
    C:\WINDOWS\SYSTEM\P2P NETWORKING
    C:\PROGRAM FILES\WINDOWS ADCONTROL
    C:\PROGRAM FILES\ISTSVC
    C:\PROGRAM FILES\SIMPELINTERNET
    C:\PROGRAM FILES\180solutions

    (Sommige van deze bestanden en mappen zijn misschien al verdwenen.)

    3. Herstart de pc in 'normale modus'.

    4. Scan nu nog eens met AdAware SE en laat alles verwijderen wat wordt gevonden.
    Mocht AdAware weer vastlopen, start dan weer op in veilige modus en laat AdAware scannen.

    5. Start de pc opnieuw op.

    6. Maak een nieuw log en plaats dat hier.

    Comment


    • #3
      Ik heb alle stappen uitgevoerd en Ad-Aware gedraaid!

      Hier het nieuwe logje:

      Logfile of HijackThis v1.99.0
      Scan saved at 23:12:57, on 2-1-05
      Platform: Windows 98 SE (Win9x 4.10.2222A)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

      Running processes:
      C:\WINDOWS\SYSTEM\KERNEL32.DLL
      C:\WINDOWS\SYSTEM\MSGSRV32.EXE
      C:\WINDOWS\SYSTEM\MPREXE.EXE
      C:\WINDOWS\SYSTEM\mmtask.tsk
      C:\WINDOWS\SYSTEM\MSTASK.EXE
      C:\WINDOWS\EXPLORER.EXE
      C:\WINDOWS\TASKMON.EXE
      C:\WINDOWS\SYSTEM\SYSTRAY.EXE
      C:\WINDOWS\STARTER.EXE
      C:\WINDOWS\SYSTEM\STIMON.EXE
      C:\WINDOWS\LOADQM.EXE
      C:\PROGRAM FILES\SUPPORT.COM\BIN\TGCMD.EXE
      C:\WINDOWS\SYSTEM\QTTASK.EXE
      C:\WINDOWS\SYSTEM\LVCOMS.EXE
      C:\WINDOWS\SYSTEM\MSWHEEL.EXE
      C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
      C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\UNLOAD\HPQCMON.EXE
      C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WND.EXE
      C:\PROGRAM FILES\MSN APPS\UPDATER\01.02.3000.1001\NL\MSNAPPAU.EXE
      C:\WINDOWS\DIT.EXE
      C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\LOGITECHDESKTOPMESSENGER.EXE
      C:\PROGRAM FILES\MICROSOFT OFFICE\FINDFAST.EXE
      C:\PROGRAM FILES\MSWORKS\AGENDA\WKCALREM.EXE
      C:\PROGRAM FILES\MICROSOFT OFFICE\OSA.EXE
      C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WNF.EXE
      C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
      C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
      C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOTDD01.EXE
      C:\WINDOWS\SYSTEM\WMIEXE.EXE
      C:\WINDOWS\SYSTEM\DDHELP.EXE
      C:\WINDOWS\SYSTEM\SPOOL32.EXE
      C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
      C:\WINDOWS\DESKTOP\ANOUK\HIJACKTHIS.EXE

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bseffeticrmtvfhontmpra.com/yMg44sg6czBMQQoAYY7PPzNaOVLwKtukLqJyZs5BvPdtz340cUHZlUMnLM3yufRy.htm
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bhtlkiftosy.biz/yMg44sg6czAXdslgMKcjfFlfm66YKEGyVYuL4XadZKU.html
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Startpagina = file:///C:/Program%20Files/EnterOne/Portal/portal.html
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.rott.chello.nl:8080
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
      O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\PROGRAM FILES\MSN APPS\MSN TOOLBAR\01.02.3000.1001\NL\MSNTB.DLL
      O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\PROGRAM FILES\MSN APPS\ST\01.02.3000.1002\EN-XU\STMAIN.DLL
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
      O2 - BHO: (no name) - {D055B8AD-032B-F501-401F-2C42A64B212A} - C:\WINDOWS\APPLICATION DATA\DATE UPLOAD\CLOSE PART.EXE
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
      O4 - HKLM\..\Run: [Taakcontrole] c:\windows\taskmon.exe
      O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
      O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
      O4 - HKLM\..\Run: [EnsoniqMixer] starter.exe
      O4 - HKLM\..\Run: [POINTER] C:\PROGRA~1\MICROS~1\POINT32.EXE
      O4 - HKLM\..\Run: [TIPS] C:\PROGRA~1\MICROS~1\TIPS\MOUSE\TIPS.EXE
      O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
      O4 - HKLM\..\Run: [AtiQiPcl] AtiQiPcl.exe
      O4 - HKLM\..\Run: [SNSMon] C:\PROGRAM FILES\SNAPNSHOT\NSYSMON.EXE
      O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
      O4 - HKLM\..\Run: [LoadQM] loadqm.exe
      O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server
      O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
      O4 - HKLM\..\Run: [LVComs] c:\windows\SYSTEM\LVComS.exe
      O4 - HKLM\..\Run: [LogitechGalleryRepair] c:\Program Files\Logitech\ImageStudio\ISStart.exe
      O4 - HKLM\..\Run: [LogitechImageStudioTray] c:\Program Files\Logitech\ImageStudio\LogiTray.exe
      O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
      O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
      O4 - HKLM\..\Run: [msnappau] "c:\program files\MSN Apps\Updater\01.02.3000.1001\nl\msnappau.exe"
      O4 - HKLM\..\Run: [Dit] Dit.exe
      O4 - HKLM\..\Run: [gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe] C:\TKJVOWS.EXE
      O4 - HKLM\..\Run: [ewupdater] C:\WINDOWS\EWUPDATER.EXE
      O4 - HKLM\..\Run: [P2P NETWORKING] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE /AUTOSTART
      O4 - HKLM\..\Run: [NvCplD] C:\WINDOWS\SYSTEM\NTCPL.EXE
      O4 - HKLM\..\Run: [live peak vga build] C:\WINDOWS\Application Data\proxy jugs live peak\sizeless.exe
      O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
      O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
      O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
      O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
      O4 - HKCU\..\Run: [CAMP FOUR] C:\WINDOWS\APPLIC~1\NAMETI~1\sendsoap.exe
      O4 - Startup: Microsoft Office Snelzoeken.lnk = C:\Program Files\Microsoft Office\FINDFAST.EXE
      O4 - Startup: Microsoft Works Agenda-herinneringen.lnk = C:\Program Files\MSWorks\Agenda\WKCALREM.EXE
      O4 - Startup: Office Opstarten.lnk = C:\Program Files\Microsoft Office\OSA.EXE
      O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
      O4 - Startup: WinZip Quick Pick.lnk = C:\WINDOWS\CVT1.EXE
      O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
      O4 - Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
      O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
      O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
      O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
      O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcam.nxs.nl/activex/AxisCamControl.cab
      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
      O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
      O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
      O16 - DPF: {C58EFA10-2CC0-4C50-8C77-B326555EC1B7} (LaunchApp.clsDefault) - http://quickfix2.chello.nl/quickfix2/asp/LaunchApp.CAB
      O16 - DPF: {1D185838-009D-47C8-824B-B65B4854430E} (chelloInstall.Install) - http://quickfix2.chello.nl/quickfix2/asp/chelloInstall.CAB
      O16 - DPF: {C36661D7-3590-45B1-80B5-520839E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/MaxisSimCity4PatcherX.cab
      O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
      O16 - DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} (SimCityX Control) - http://simcity.ea.com/play/classic/SimCityX.cab
      O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
      O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
      O18 - Protocol: offline-8876480 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw00 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw00s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw10 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw10s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw20 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw20s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw30 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw30s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw40 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw40s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw50 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw50s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw60 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw60s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw70 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw70s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw80 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw80s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw90 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw90s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwa0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwa0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwb0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwb0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwc0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwc0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwd0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwd0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwe0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwe0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwf0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwf0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwg0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwg0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwh0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwh0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwi0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwi0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwj0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwj0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwk0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwk0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwl0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwl0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwm0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwm0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwn0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwn0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwo0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwo0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwp0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwp0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwq0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwq0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwr0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwr0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bws0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bws0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwt0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwt0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwu0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwu0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwv0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwv0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bww0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bww0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwx0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwx0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwy0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwy0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwz0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwz0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw-0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw-0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw+0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bw+0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
      O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\GAPLUGPROTOCOL-8876480.DLL

      Comment


      • #4
        Dat ziet er al beter uit.


        1. Scan met HijackThis en vink de volgende items aan:

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bseffeticrmtvfhontmpra.co...MnLM3yufRy.htm
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bhtlkiftosy.biz/yMg44sg6c...uL4XadZKU.html
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Startpagina = file:///C:/Program%20Files/EnterOne/Portal/portal.html

        O2 - BHO: (no name) - {D055B8AD-032B-F501-401F-2C42A64B212A} - C:\WINDOWS\APPLICATION DATA\DATE UPLOAD\CLOSE PART.EXE

        O4 - HKLM\..\Run: [gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe] C:\TKJVOWS.EXE
        O4 - HKLM\..\Run: [ewupdater] C:\WINDOWS\EWUPDATER.EXE
        O4 - HKLM\..\Run: [P2P NETWORKING] C:\WINDOWS\SYSTEM\P2P NETWORKING\P2P NETWORKING.EXE /AUTOSTART
        O4 - HKLM\..\Run: [NvCplD] C:\WINDOWS\SYSTEM\NTCPL.EXE
        O4 - HKLM\..\Run: [live peak vga build] C:\WINDOWS\Application Data\proxy jugs live peak\sizeless.exe
        O4 - HKCU\..\Run: [CAMP FOUR] C:\WINDOWS\APPLIC~1\NAMETI~1\sendsoap.exe
        Sluit alle vensters behalve HijackThis zelf en klik op "Fix checked".

        2. Herstart de pc in veilige modus.

        Verwijder (indien nog/weer aanwezig):

        C:\Program Files\EnterOne <- die map
        C:\WINDOWS\APPLICATION DATA\DATE UPLOAD <- die map
        C:\WINDOWS\APPLICATION DATA\proxy jugs live peak <- die map
        C:\WINDOWS\APPLICATION DATA\NAMETI~1 <- die map waar "sendsoap.exe" in zit

        3. Herstart de pc in 'normale modus'.

        4. Maak een nieuw log en plaats dat hier.

        Comment


        • #5
          Okeej... ik heb alle stappen uitgevoerd.

          Logfile of HijackThis v1.99.0
          Scan saved at 14:02:29, on 3-1-05
          Platform: Windows 98 SE (Win9x 4.10.2222A)
          MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

          Running processes:
          C:\WINDOWS\SYSTEM\KERNEL32.DLL
          C:\WINDOWS\SYSTEM\MSGSRV32.EXE
          C:\WINDOWS\SYSTEM\MPREXE.EXE
          C:\WINDOWS\SYSTEM\mmtask.tsk
          C:\WINDOWS\SYSTEM\MSTASK.EXE
          C:\WINDOWS\EXPLORER.EXE
          C:\WINDOWS\TASKMON.EXE
          C:\WINDOWS\SYSTEM\SYSTRAY.EXE
          C:\WINDOWS\STARTER.EXE
          C:\WINDOWS\SYSTEM\STIMON.EXE
          C:\WINDOWS\LOADQM.EXE
          C:\PROGRAM FILES\SUPPORT.COM\BIN\TGCMD.EXE
          C:\WINDOWS\SYSTEM\QTTASK.EXE
          C:\WINDOWS\SYSTEM\LVCOMS.EXE
          C:\WINDOWS\SYSTEM\MSWHEEL.EXE
          C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
          C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\UNLOAD\HPQCMON.EXE
          C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WND.EXE
          C:\PROGRAM FILES\MSN APPS\UPDATER\01.02.3000.1001\NL\MSNAPPAU.EXE
          C:\WINDOWS\DIT.EXE
          C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\LOGITECHDESKTOPMESSENGER.EXE
          C:\PROGRAM FILES\MICROSOFT OFFICE\FINDFAST.EXE
          C:\PROGRAM FILES\MSWORKS\AGENDA\WKCALREM.EXE
          C:\PROGRAM FILES\MICROSOFT OFFICE\OSA.EXE
          C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
          C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOTDD01.EXE
          C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WNF.EXE
          C:\WINDOWS\SYSTEM\DDHELP.EXE
          C:\WINDOWS\SYSTEM\WMIEXE.EXE
          C:\WINDOWS\SYSTEM\SPOOL32.EXE
          C:\WINDOWS\DESKTOP\ANOUK\HIJACKTHIS.EXE

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.ysdheygevsrchcwxbsqhqr.net/yMg44sg6czBMQQoAYY7PPzNaOVLwKtukLqJyZs5BvPdjLCiHqH8/Q0MnLM3yufRy.asp
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.rott.chello.nl:8080
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
          O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\PROGRAM FILES\MSN APPS\MSN TOOLBAR\01.02.3000.1001\NL\MSNTB.DLL
          O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\PROGRAM FILES\MSN APPS\ST\01.02.3000.1002\EN-XU\STMAIN.DLL
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
          O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
          O4 - HKLM\..\Run: [Taakcontrole] c:\windows\taskmon.exe
          O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
          O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
          O4 - HKLM\..\Run: [EnsoniqMixer] starter.exe
          O4 - HKLM\..\Run: [POINTER] C:\PROGRA~1\MICROS~1\POINT32.EXE
          O4 - HKLM\..\Run: [TIPS] C:\PROGRA~1\MICROS~1\TIPS\MOUSE\TIPS.EXE
          O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
          O4 - HKLM\..\Run: [AtiQiPcl] AtiQiPcl.exe
          O4 - HKLM\..\Run: [SNSMon] C:\PROGRAM FILES\SNAPNSHOT\NSYSMON.EXE
          O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
          O4 - HKLM\..\Run: [LoadQM] loadqm.exe
          O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server
          O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
          O4 - HKLM\..\Run: [LVComs] c:\windows\SYSTEM\LVComS.exe
          O4 - HKLM\..\Run: [LogitechGalleryRepair] c:\Program Files\Logitech\ImageStudio\ISStart.exe
          O4 - HKLM\..\Run: [LogitechImageStudioTray] c:\Program Files\Logitech\ImageStudio\LogiTray.exe
          O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
          O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
          O4 - HKLM\..\Run: [msnappau] "c:\program files\MSN Apps\Updater\01.02.3000.1001\nl\msnappau.exe"
          O4 - HKLM\..\Run: [Dit] Dit.exe
          O4 - HKLM\..\Run: [gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe] C:\TKJVOWS.EXE
          O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
          O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
          O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
          O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
          O4 - Startup: Microsoft Office Snelzoeken.lnk = C:\Program Files\Microsoft Office\FINDFAST.EXE
          O4 - Startup: Microsoft Works Agenda-herinneringen.lnk = C:\Program Files\MSWorks\Agenda\WKCALREM.EXE
          O4 - Startup: Office Opstarten.lnk = C:\Program Files\Microsoft Office\OSA.EXE
          O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
          O4 - Startup: WinZip Quick Pick.lnk = C:\WINDOWS\CVT1.EXE
          O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
          O4 - Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
          O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
          O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
          O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
          O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcam.nxs.nl/activex/AxisCamControl.cab
          O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
          O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
          O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
          O16 - DPF: {C58EFA10-2CC0-4C50-8C77-B326555EC1B7} (LaunchApp.clsDefault) - http://quickfix2.chello.nl/quickfix2/asp/LaunchApp.CAB
          O16 - DPF: {1D185838-009D-47C8-824B-B65B4854430E} (chelloInstall.Install) - http://quickfix2.chello.nl/quickfix2/asp/chelloInstall.CAB
          O16 - DPF: {C36661D7-3590-45B1-80B5-520839E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/MaxisSimCity4PatcherX.cab
          O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
          O16 - DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} (SimCityX Control) - http://simcity.ea.com/play/classic/SimCityX.cab
          O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
          O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
          O18 - Protocol: offline-8876480 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw00 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw00s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw10 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw10s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw20 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw20s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw30 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw30s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw40 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw40s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw50 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw50s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw60 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw60s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw70 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw70s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw80 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw80s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw90 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw90s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwa0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwa0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwb0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwb0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwc0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwc0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwd0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwd0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwe0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwe0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwf0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwf0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwg0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwg0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwh0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwh0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwi0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwi0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwj0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwj0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwk0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwk0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwl0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwl0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwm0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwm0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwn0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwn0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwo0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwo0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwp0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwp0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwq0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwq0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwr0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwr0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bws0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bws0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwt0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwt0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwu0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwu0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwv0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwv0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bww0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bww0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwx0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwx0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwy0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwy0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwz0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwz0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw-0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw-0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw+0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bw+0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
          O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\GAPLUGPROTOCOL-8876480.DLL

          Alvast bedankt!

          Comment


          • #6
            1. Start de register-editor (start -> uitvoeren -> intypen regedit -> OK).
            Navigeer naar HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
            Zoek bij die sleutel naar "gWoÈ80+¿ÔÇè]mú*àaîžC:\Program Files\ISTsvc\istsvc.exe" en verwijder dat.

            2. Scan met HijackThis en laat het volgende item fixen:

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.ysdheygevsrchcwxbsqhqr.ne...MnLM3yufRy.asp

            3. Start de pc opnieuw op.

            4. Maak een nieuw log en plaats dat hier.

            Comment


            • #7
              Ik heb de stappen uitgevoerd!

              Hier de nieuwe logje:

              Logfile of HijackThis v1.99.0
              Scan saved at 14:49:41, on 3-1-05
              Platform: Windows 98 SE (Win9x 4.10.2222A)
              MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

              Running processes:
              C:\WINDOWS\SYSTEM\KERNEL32.DLL
              C:\WINDOWS\SYSTEM\MSGSRV32.EXE
              C:\WINDOWS\SYSTEM\MPREXE.EXE
              C:\WINDOWS\SYSTEM\mmtask.tsk
              C:\WINDOWS\SYSTEM\MSTASK.EXE
              C:\WINDOWS\EXPLORER.EXE
              C:\WINDOWS\TASKMON.EXE
              C:\WINDOWS\SYSTEM\SYSTRAY.EXE
              C:\WINDOWS\STARTER.EXE
              C:\WINDOWS\SYSTEM\STIMON.EXE
              C:\WINDOWS\LOADQM.EXE
              C:\PROGRAM FILES\SUPPORT.COM\BIN\TGCMD.EXE
              C:\WINDOWS\SYSTEM\QTTASK.EXE
              C:\WINDOWS\SYSTEM\LVCOMS.EXE
              C:\PROGRAM FILES\LOGITECH\IMAGESTUDIO\LOGITRAY.EXE
              C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\UNLOAD\HPQCMON.EXE
              C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WND.EXE
              C:\PROGRAM FILES\MSN APPS\UPDATER\01.02.3000.1001\NL\MSNAPPAU.EXE
              C:\WINDOWS\SYSTEM\MSWHEEL.EXE
              C:\WINDOWS\DIT.EXE
              C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\LOGITECHDESKTOPMESSENGER.EXE
              C:\PROGRAM FILES\MICROSOFT OFFICE\FINDFAST.EXE
              C:\PROGRAM FILES\MSWORKS\AGENDA\WKCALREM.EXE
              C:\PROGRAM FILES\MICROSOFT OFFICE\OSA.EXE
              C:\PROGRAM FILES\HEWLETT-PACKARD\HP SHARE-TO-WEB\HPGS2WNF.EXE
              C:\PROGRAM FILES\WINDOWS MEDIA COMPONENTS\ENCODER\WMENCAGT.EXE
              C:\PROGRAM FILES\HEWLETT-PACKARD\DIGITAL IMAGING\BIN\HPOTDD01.EXE
              C:\WINDOWS\SYSTEM\WMIEXE.EXE
              C:\WINDOWS\SYSTEM\DDHELP.EXE
              C:\WINDOWS\SYSTEM\SPOOL32.EXE
              C:\WINDOWS\DESKTOP\ANOUK\HIJACKTHIS.EXE

              R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.rott.chello.nl:8080
              R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
              O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
              O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\PROGRAM FILES\MSN APPS\MSN TOOLBAR\01.02.3000.1001\NL\MSNTB.DLL
              O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\PROGRAM FILES\MSN APPS\ST\01.02.3000.1002\EN-XU\STMAIN.DLL
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
              O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
              O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
              O4 - HKLM\..\Run: [Taakcontrole] c:\windows\taskmon.exe
              O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
              O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
              O4 - HKLM\..\Run: [EnsoniqMixer] starter.exe
              O4 - HKLM\..\Run: [POINTER] C:\PROGRA~1\MICROS~1\POINT32.EXE
              O4 - HKLM\..\Run: [TIPS] C:\PROGRA~1\MICROS~1\TIPS\MOUSE\TIPS.EXE
              O4 - HKLM\..\Run: [AtiCwd32] Aticwd32.exe
              O4 - HKLM\..\Run: [AtiQiPcl] AtiQiPcl.exe
              O4 - HKLM\..\Run: [SNSMon] C:\PROGRAM FILES\SNAPNSHOT\NSYSMON.EXE
              O4 - HKLM\..\Run: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
              O4 - HKLM\..\Run: [LoadQM] loadqm.exe
              O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server
              O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\SYSTEM\QTTASK.EXE" -atboottime
              O4 - HKLM\..\Run: [LVComs] c:\windows\SYSTEM\LVComS.exe
              O4 - HKLM\..\Run: [LogitechGalleryRepair] c:\Program Files\Logitech\ImageStudio\ISStart.exe
              O4 - HKLM\..\Run: [LogitechImageStudioTray] c:\Program Files\Logitech\ImageStudio\LogiTray.exe
              O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
              O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
              O4 - HKLM\..\Run: [msnappau] "c:\program files\MSN Apps\Updater\01.02.3000.1001\nl\msnappau.exe"
              O4 - HKLM\..\Run: [Dit] Dit.exe
              O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
              O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
              O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
              O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
              O4 - HKCU\..\RunServices: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
              O4 - HKCU\..\RunServices: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SPYSWEEPER.EXE" /0
              O4 - Startup: Microsoft Office Snelzoeken.lnk = C:\Program Files\Microsoft Office\FINDFAST.EXE
              O4 - Startup: Microsoft Works Agenda-herinneringen.lnk = C:\Program Files\MSWorks\Agenda\WKCALREM.EXE
              O4 - Startup: Office Opstarten.lnk = C:\Program Files\Microsoft Office\OSA.EXE
              O4 - Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
              O4 - Startup: WinZip Quick Pick.lnk = C:\WINDOWS\CVT1.EXE
              O4 - Startup: Encoder Agent.lnk = C:\Program Files\Windows Media Components\Encoder\WMENCAGT.EXE
              O4 - Startup: hpoddt01.exe.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
              O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
              O12 - Plugin for .mp3: C:\PROGRA~1\INTERN~1\PLUGINS\npqtplugin4.dll
              O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
              O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcam.nxs.nl/activex/AxisCamControl.cab
              O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
              O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
              O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
              O16 - DPF: {C58EFA10-2CC0-4C50-8C77-B326555EC1B7} (LaunchApp.clsDefault) - http://quickfix2.chello.nl/quickfix2/asp/LaunchApp.CAB
              O16 - DPF: {1D185838-009D-47C8-824B-B65B4854430E} (chelloInstall.Install) - http://quickfix2.chello.nl/quickfix2/asp/chelloInstall.CAB
              O16 - DPF: {C36661D7-3590-45B1-80B5-520839E94DAD} (MaxisSimCity4PatcherX Control) - http://simcity.ea.com/update/MaxisSimCity4PatcherX.cab
              O16 - DPF: {54B52E52-8000-4413-BD67-FC7FE24B59F2} (EARTPatchX Class) - http://simcity.ea.com/update/EARTPX.cab
              O16 - DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} (SimCityX Control) - http://simcity.ea.com/play/classic/SimCityX.cab
              O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
              O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
              O18 - Protocol: offline-8876480 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw00 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw00s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw10 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw10s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw20 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw20s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw30 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw30s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw40 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw40s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw50 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw50s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw60 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw60s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw70 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw70s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw80 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw80s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw90 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw90s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwa0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwa0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwb0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwb0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwc0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwc0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwd0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwd0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwe0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwe0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwf0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwf0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwg0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwg0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwh0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwh0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwi0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwi0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwj0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwj0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwk0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwk0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwl0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwl0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwm0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwm0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwn0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwn0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwo0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwo0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwp0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwp0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwq0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwq0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwr0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwr0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bws0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bws0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwt0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwt0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwu0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwu0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwv0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwv0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bww0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bww0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwx0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwx0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwy0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwy0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwz0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwz0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw-0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw-0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw+0 - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bw+0s - {5EB4EE41-3611-11D9-8926-00010218F984} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BWPLUGPROTOCOL-8876480.DLL
              O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\GAPLUGPROTOCOL-8876480.DLL

              Alweer alvast bedankt!

              Comment


              • #8
                Die is schoon.

                Comment


                • #9
                  Hehe fijn! Bedankt voor je hulp!

                  Comment


                  • #10
                    Graag gedaan.

                    Gezien de forse hoeveelheid spyware die je had verzameld, kan het geen kwaad om eens wat preventieve maatregelen te nemen. Lees dit even: http://www.nucia.eu/forum/showthread.php?t=55

                    Comment

                    Sorry, you are not authorized to view this page
                    Working...
                    X
                    😀
                    🥰
                    🤢
                    😎
                    😡
                    👍
                    👎