Hallo,Is iemand in de gelegenheid naar mijn log te kijken?De pc is traag en de standaard oplossingen helpen me niet verder. Ad-Aware en Spyboth gedaan ook de virusscanner is altijd up-to-date. Defragmenteren cleanup schijfopruiming etc. Wellicht draait er teveel op de achtergrond waarvan ik het bestaan niet weet of misschien is er toch iets mis?
Alvast hartelijk dank voor de moeite,Vriendelijke groet,MirandaLogfile of Trend Micro HijackThis v2.0.2Scan saved at 15:05:54 on 23-11-2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss exeC:\WINDOWS\system32\winlogon exeC:\WINDOWS\system32\services exeC:\WINDOWS\system32\lsass exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\System32\svchost exeC:\Program Files\Ad-Aware 2007\aawservice exeC:\WINDOWS\system32\spoolsv exeC:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins exeC:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc exeC:\Program Files\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer exeC:\WINDOWS\System32\svchost exeC:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM. EXEC:\Program Files\Softex\OmniPass\Omniserv exeC:\PROGRA~1\TRENDM~1\confine~2\PcCtlCom exeC:\Program Files\CyberLink\Shared Files\RichVideo exeC:\WINDOWS\system32\svchost exeC:\PROGRA~1\TRENDM~1\INTERN~2\Tmntsrv exeC:\PROGRA~1\TRENDM~1\INTERN~2\TmPfw exeC:\PROGRA~1\TRENDM~1\confine~2\tmproxy exeC:\PROGRA~1\COMMON~1\X10\Common\x10nets exeC:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\Explorer. EXEC:\WINDOWS\AGRSMMSG exeC:\Program Files\Synaptics\SynTP\SynTPEnh exeC:\Program Files\Home Cinema\PowerDVD\PDVDServ exeC:\Program Files\domiciliate Cinema\PowerCinema\PCMService exeC:\schedule Files\ATI Technologies\ATI. ACE\cli exeC:\WINDOWS\RTHDCPL. EXEC:\schedule Files\Softex\OmniPass\scureapp exeC:\Program Files\Launch Manager\LaunchAp exeC:\Program Files\open Manager\HotkeyApp exeC:\Program Files\Launch Manager\OSD exeC:\Program Files\Launch Manager\Wbutton exeC:\Program Files\Java\jre1.6.0_02\bin\jusched exeC:\PROGRA~1\TRENDM~1\INTERN~2\pccguide exeC:\WINDOWS\system32\ctfmon exeC:\PROGRAM FILES\MICROSOFT ACTIVESYNC\WCESCOMM. EXEC:\schedule Files\Messenger\msmsgs exeC:\Program Files\Windows Media Player\WMPNSCFG exeC:\Program Files\WIDCOMM\Bluetooth Software\BTTray exeC:\Program Files\FinePixViewer\QuickDCF exeC:\schedule Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08 exeC:\schedule Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01 exeC:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1. EXEC:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08 exeC:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08 exeC:\WINDOWS\system32\HPZipm12 exeC:\Program Files\ATI Technologies\ATI. ACE\cli exeC:\schedule Files\Internet Explorer\iexplore exeC:\Program Files\HijackThis\HijackThis exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = KoppelingenO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\schedule Files\Java\jre1.6.0_02\bin\ssv dllO4 - HKLM\..\Run: [High Definition Audio Property summon Shortcut] HDAShCut exeO4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel exeO4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG exeO4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh exeO4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG. EXE" /fail /RemAdvDef /Migration32O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst exe /SYNCO4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP. EXE /SYNCO4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP. EXE /IMENameO4 - HKLM\..\Run: [RemoteControl] "C:\schedule Files\Home Cinema\PowerDVD\PDVDServ exe"O4 - HKLM\..\Run: [InstantOn] "C:\Program Files\CyberLink\PowerCinema Linux\ion_lay exe /c "O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Home Cinema\PowerCinema\PCMService exe"O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI. ACE\cli exe" runtimeO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL. EXEO4 - HKLM\..\Run: [OmniPass] C:\schedule Files\Softex\OmniPass\scureapp exeO4 - HKLM\..\Run: [LaunchAp] "C:\Program Files\open Manager\LaunchAp exe"O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp exe"O4 - HKLM\..\Run: [CtrlVol] "C:\schedule Files\Launch Manager\CtrlVol exe"O4 - HKLM\..\Run: [LMgrOSD] "C:\Program Files\open Manager\OSD exe"O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton exe"O4 - HKLM\..\Run: [DXM6conjoin_981116] C:\WINDOWS\p_981116 exe /Q:AO4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE. EXE /AUTORUNO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched exe"O4 - HKLM\..\Run: [pccguide exe] C:\PROGRA~1\TRENDM~1\INTERN~2\pccguide exeO4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -kO4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\schedule Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy exe"O4 - HKCU\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\ctfmon exeO4 - HKCU\..\Run: [H/PC Connection Agent] "C:\schedule FILES\MICROSOFT ACTIVESYNC\WCESCOMM. EXE"O4 - HKCU\..\Run: [MSMSGS] "C:\schedule Files\Messenger\msmsgs exe" /backgroundO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Lokale service')O4 - HKUS\S-1-5-20\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Netwerkservice')O4 - HKUS\S-1-5-18\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'SYSTEM')O4 - HKUS\. DEFAULT\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Default user')O4 - Global Startup: BTTray lnk = ?O4 - Global Startup: Exif Launcher lnk = ?O4 - Global Startup: hp psc 1000 series lnk = ?O4 - Global Startup: hpoddt01 exe lnk = ?O4 - Global Startup: Microsoft Office OneNote 2003 Snel Starten lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM. EXEO4 - Global Startup: Printkey2000 lnk = C:\schedule Files\PrintKey2000\Printkey2000 exeO8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL. EXE/3000O8 - Extra context menu item: Verzenden naar &Bluetooth - C:\schedule Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx htmO9 - Extra add: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\schedule Files\Java\jre1.6.0_02\bin\ssv dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv dllO9 - Extra add: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw dllO9 - Extra add: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra add: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra 'Tools' menuitem: act Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR. DLLO9 - Extra add: @btrez dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie htmO9 - Extra 'Tools' menuitem: @btrez dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie htmO9 - Extra add: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO9 - Extra 'Tools' menuitem: Spybot - examine & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO9 - Extra add: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\schedule Files\Messenger\msmsgs exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs exeO14 - IERESET. INF: START_PAGE_URL=http://www aldi com/O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom categorise) - O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Ad-Aware 2007\aawservice exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx exeO23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\schedule Files\WIDCOMM\Bluetooth Software\bin\btwdins exeO23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc exeO23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\domiciliate Cinema\PowerCinema\Kernel\TV\CLSched exeO23 - Service: CyberLink Media Library Service - Cyberlink - C:\schedule Files\domiciliate Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer exeO23 - function: Softex OmniPass function (omniserv) - Softex Inc. - C:\schedule Files\Softex\OmniPass\Omniserv exeO23 - Service: Trend Micro Central hold back Component (PcCtlCom) - turn Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\PcCtlCom exeO23 - Service: Trend Micro Beveiliging tegen spyware (PcScnSrv) - turn Micro Inc. - C:\PROGRA~1\TRENDM~1\confine~2\PcScnSrv exeO23 - function: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12 exeO23 - Service: Cyberlink RichVideo function(CRVS) (RichVideo) - Unknown owner - C:\schedule Files\CyberLink\Shared Files\RichVideo exeO23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\Tmntsrv exeO23 - function: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\TmPfw exeO23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\tmproxy exeO23 - function: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets exe--End of file - 11129 bytes
go away Hijackthis op en kies voor 'Do a system scan only'Selecteer alleen de items die hieronder zijn genoemd:O4 - HKLM\..\Run: [DXM6conjoin_981116] C:\WINDOWS\p_981116 exe /Q:AO4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -kKlik op 'Fix checked' om de items te verwijderen. transfer: Sla het bestand op je bureaublad op daarna mag je het dubbelklikken. Je kunt het programma laten uitpakken naar je bureaublad. Open nu de map RVAXO op je bureaublad en dubbelklik RVAXO cmdEr zal een schermpje openen daarin zullen snel enkele regels over niet gevonden bestanden voorbijkomen dit is normaal. Mogelijk start er ook een uninstaller van een rogue scanner op sluit deze niet af maar volg eventuele aanwijzingen en laat deze zijn werk doen. Daarna zal je PC herstarten na de herstart opent het venster van RVAXO opnieuw. Laat deze lopen en wacht tot er een logfile opent. Deze is eventueel ook hier te vinden: C:\RVAXO-results logPost de inhoud in je volgende bericht tesamen met een nieuw logje van HijackThis. Herstarte je PC niet?Laat RVAXO nog een keer lopen en post dan het nieuwe logje: C:\rvaxo-results log
Dank voor het bericht. De log is:----------------RVAXO exe first run------------- Files open: Internet Security folder: C:\Program Files\Internet Security\tis14nl-trial exeC:\schedule Files\Internet Security\tis153nl_full exe Uninstallers Rogue scanners: Folders Found: Hosts-file was reset. If you use a custom hosts file please replace it... --------------RVAXO exe last run--------------- Files found: Internet Security folder: C:\Program Files\Internet Security\tis14nl-trial exeC:\schedule Files\Internet Security\tis153nl_beat exeFolders Found: --------------RVAXO exe finished---------------- en de nieuwe hijacklog is:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 14:56:58 on 1-12-2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss exeC:\WINDOWS\system32\winlogon exeC:\WINDOWS\system32\services exeC:\WINDOWS\system32\lsass exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\system32\svchost exeC:\WINDOWS\System32\svchost exeC:\Program Files\Ad-Aware 2007\aawservice exeC:\WINDOWS\system32\spoolsv exeC:\schedule Files\WIDCOMM\Bluetooth Software\bin\btwdins exeC:\Program Files\domiciliate Cinema\PowerCinema\Kernel\TV\CLCapSvc exeC:\Program Files\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer exeC:\WINDOWS\System32\svchost exeC:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM. EXEC:\Program Files\Softex\OmniPass\Omniserv exeC:\PROGRA~1\TRENDM~1\confine~2\PcCtlCom exeC:\PROGRA~1\TRENDM~1\INTERN~2\PcScnSrv exeC:\Program Files\CyberLink\Shared Files\RichVideo exeC:\WINDOWS\system32\svchost exeC:\PROGRA~1\TRENDM~1\INTERN~2\Tmntsrv exeC:\PROGRA~1\TRENDM~1\INTERN~2\TmPfw exeC:\PROGRA~1\TRENDM~1\INTERN~2\tmproxy exeC:\PROGRA~1\COMMON~1\X10\Common\x10nets exeC:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched exeC:\WINDOWS\system32\Ati2evxx exeC:\WINDOWS\Explorer. EXEC:\WINDOWS\AGRSMMSG exeC:\schedule Files\Synaptics\SynTP\SynTPEnh exeC:\Program Files\Home Cinema\PowerDVD\PDVDServ exeC:\schedule Files\domiciliate Cinema\PowerCinema\PCMService exeC:\schedule Files\ATI Technologies\ATI. ACE\cli exeC:\WINDOWS\RTHDCPL. EXEC:\Program Files\Softex\OmniPass\scureapp exeC:\Program Files\Launch Manager\LaunchAp exeC:\Program Files\Launch Manager\HotkeyApp exeC:\Program Files\open Manager\OSD exeC:\Program Files\Launch Manager\Wbutton exeC:\schedule Files\Java\jre1.6.0_02\bin\jusched exeC:\PROGRA~1\TRENDM~1\confine~2\pccguide exeC:\WINDOWS\system32\ctfmon exeC:\schedule FILES\MICROSOFT ACTIVESYNC\WCESCOMM. EXEC:\schedule Files\Messenger\msmsgs exeC:\Program Files\Windows Media Player\WMPNSCFG exeC:\schedule Files\WIDCOMM\Bluetooth Software\BTTray exeC:\schedule Files\FinePixViewer\QuickDCF exeC:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08 exeC:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01 exeC:\schedule Files\PrintKey2000\Printkey2000 exeC:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1. EXEC:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08 exeC:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08 exeC:\Program Files\ATI Technologies\ATI. ACE\cli exeC:\WINDOWS\system32\HPZipm12 exeC:\schedule Files\Internet Explorer\iexplore exeC:\WINDOWS\system32\notepad exeC:\schedule Files\HijackThis\HijackThis exeR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = KoppelingenO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO2 - BHO: SSVHelper categorise - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv dllO4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut exeO4 - HKLM\..\Run: [AzMixerSel] C:\schedule Files\Realtek\InstallShield\AzMixerSel exeO4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG exeO4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh exeO4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG. EXE" /Spoil /RemAdvDef /Migration32O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst exe /SYNCO4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP. EXE /SYNCO4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP. EXE /IMENameO4 - HKLM\..\Run: [RemoteControl] "C:\schedule Files\Home Cinema\PowerDVD\PDVDServ exe"O4 - HKLM\..\Run: [InstantOn] "C:\Program Files\CyberLink\PowerCinema Linux\ion_lay exe /c "O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Home Cinema\PowerCinema\PCMService exe"O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI. ACE\cli exe" runtimeO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL. EXEO4 - HKLM\..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp exeO4 - HKLM\..\Run: [LaunchAp] "C:\Program Files\Launch Manager\LaunchAp exe"O4 - HKLM\..\Run: [HotkeyApp] "C:\schedule Files\Launch Manager\HotkeyApp exe"O4 - HKLM\..\Run: [CtrlVol] "C:\Program Files\Launch Manager\CtrlVol exe"O4 - HKLM\..\Run: [LMgrOSD] "C:\Program Files\Launch Manager\OSD exe"O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\open Manager\Wbutton exe"O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE. EXE /AUTORUNO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched exe"O4 - HKLM\..\Run: [pccguide exe] C:\PROGRA~1\TRENDM~1\INTERN~2\pccguide exeO4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\schedule Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy exe"O4 - HKLM\..\RunOnce: [RVAXO] RVAXO batO4 - HKCU\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\ctfmon exeO4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRAM FILES\MICROSOFT ACTIVESYNC\WCESCOMM. EXE"O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs exe" /backgroundO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Lokale service')O4 - HKUS\S-1-5-20\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Netwerkservice')O4 - HKUS\S-1-5-18\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'SYSTEM')O4 - HKUS\. DEFAULT\..\Run: [CTFMON. EXE] C:\WINDOWS\system32\CTFMON. EXE (User 'Default user')O4 - Global Startup: BTTray lnk = ?O4 - Global Startup: Exif Launcher lnk = ?O4 - Global Startup: hp psc 1000 series lnk = ?O4 - Global Startup: hpoddt01 exe lnk = ?O4 - Global Startup: Microsoft Office OneNote 2003 Snel Starten lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM. EXEO4 - Global Startup: Printkey2000 lnk = C:\Program Files\PrintKey2000\Printkey2000 exeO8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL. EXE/3000O8 - Extra context menu item: Verzenden naar &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv dllO9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw dllO9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\schedule Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\schedule Files\Microsoft ActiveSync\INETREPL. DLLO9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR. DLLO9 - Extra add: @btrez dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\schedule Files\WIDCOMM\Bluetooth Software\btsendto_ie htmO9 - Extra 'Tools' menuitem: @btrez dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie htmO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO9 - Extra 'Tools' menuitem: Spybot - examine & undo Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs exeO14 - IERESET. INF: START_PAGE_URL=http://www aldi com/O15 - Trusted govern: O15 - Trusted govern: O15 - Trusted govern: O15 - Trusted Zone: O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine favor Validation Tool) - O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom categorise) - O23 - function: Ad-Aware 2007 function (aawservice) - Lavasoft AB - C:\Program Files\Ad-Aware 2007\aawservice exeO23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx exeO23 - function: Bluetooth function (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins exeO23 - Service: CyberLink Background Capture function (CBCS) (CLCapSvc) - Unknown owner - C:\schedule Files\domiciliate Cinema\PowerCinema\Kernel\TV\CLCapSvc exeO23 - function: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched exeO23 - function: CyberLink Media Library function - Cyberlink - C:\schedule Files\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer exeO23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Program Files\Softex\OmniPass\Omniserv exeO23 - Service: Trend Micro Central Control Component (PcCtlCom) - turn Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\PcCtlCom exeO23 - function: Trend Micro Beveiliging tegen spyware (PcScnSrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\PcScnSrv exeO23 - function: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12 exeO23 - function: Cyberlink RichVideo function(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo exeO23 - function: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\Tmntsrv exeO23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\TmPfw exeO23 - function: turn Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~2\tmproxy exeO23 - function: X10 Device communicate function (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets exe--End of file - 11154 bytesAlvast hartelijk dank,Miranda
Forex Groups - Tips on Trading
Related article:
http://www.nucia.nl/forum/showthread.php?t=31753
comments | Add comment | Report as Spam
|