ik heb mijn pc onlangs in een winkel laten nakijken omdat hij niet meer wou opstarten. daar heeft men er een nieuwe windows versie opgezet (7 pro), omdat de versie die erop stond blijkbaar illegaal was, met als gevolg dat ik al mijn programma's kwijt ben. als ik nu met mijn pc werk start hij zeer traag op en lopen alle programma's regelmatig vast, als ik mijn antivirus (panda IS 2012) gebruik kan ik helemaal niet meer met de pc werken en het is ook niet meer mogelijk om systeemherstel uit te voeren. ik kan wel punten aanmaken maar na enkele minuten zijn die verdwenen. ik heb geprobeerd om sfc/scannow te gebruiken maar na 25% geeft hij aan dat hij de taak niet kan uit voeren.
ik heb combofix gedownload en zal het logje erbij plaatsen.
ik hoop dat jullie mij kunnen helpen
thnx pat2209
ik heb combofix gedownload en zal het logje erbij plaatsen.
ik hoop dat jullie mij kunnen helpen
Code:
ComboFix 12-01-21.02 - Patrick 23/01/2012 2:48.1.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.32.1043.18.3951.2864 [GMT 1:00]
Gestart vanuit: c:\users\Patrick\Downloads\ComboFix.exe
AV: Panda Internet Security 2012 *Disabled/Updated* {86971480-9989-6750-B122-681A86518D59}
FW: Panda Personal Firewall 2012 *Disabled* {BEAC95A5-D3E6-6608-9A7D-C12F7882CA22}
SP: Panda Internet Security 2012 *Disabled/Updated* {3DF6F564-BFB3-68DE-8B92-5368FDD6C7E4}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Nieuw herstelpunt werd aangemaakt
.
.
(((((((((((((((((((((((((((((((((( Andere Verwijderingen )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Mobistar Internet Everywhere\Mobistar Internet Everywhere.exe
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2011-12-23 to 2012-01-23 ))))))))))))))))))))))))))))))
.
.
2012-01-23 02:43 . 2012-01-23 02:43 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-23 01:16 . 2011-11-17 06:49 152432 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2012-01-23 01:16 . 2011-11-17 06:35 340992 ----a-w- c:\windows\system32\schannel.dll
2012-01-23 01:16 . 2011-11-17 06:35 1447936 ----a-w- c:\windows\system32\lsasrv.dll
2012-01-23 01:16 . 2011-11-17 06:49 95600 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-01-23 01:16 . 2011-11-17 06:44 459232 ----a-w- c:\windows\system32\drivers\cng.sys
2012-01-23 01:16 . 2011-11-17 06:35 395776 ----a-w- c:\windows\system32\webio.dll
2012-01-23 01:16 . 2011-11-17 06:35 29184 ----a-w- c:\windows\system32\sspisrv.dll
2012-01-23 01:16 . 2011-11-17 06:35 136192 ----a-w- c:\windows\system32\sspicli.dll
2012-01-23 01:16 . 2011-11-17 06:35 28160 ----a-w- c:\windows\system32\secur32.dll
2012-01-23 01:16 . 2011-11-17 06:33 31232 ----a-w- c:\windows\system32\lsass.exe
2012-01-22 23:48 . 2012-01-22 23:48 -------- d-----w- c:\users\Patrick\AppData\Roaming\Windows Live Writer
2012-01-22 23:48 . 2012-01-22 23:48 -------- d-----w- c:\users\Patrick\AppData\Local\Windows Live Writer
2012-01-22 13:34 . 2012-01-22 13:34 -------- d-----w- c:\program files\CCleaner
2012-01-21 19:29 . 2011-11-23 13:15 34624 ----a-w- c:\windows\system32\TURegOpt.exe
2012-01-21 19:29 . 2011-11-23 13:15 25920 ----a-w- c:\windows\system32\authuitu.dll
2012-01-21 19:29 . 2011-11-23 13:15 21312 ----a-w- c:\windows\SysWow64\authuitu.dll
2012-01-21 19:29 . 2012-01-21 19:29 -------- d-----w- c:\users\Patrick\AppData\Roaming\TuneUp Software
2012-01-21 19:29 . 2012-01-21 19:29 -------- d-----w- c:\program files (x86)\TuneUp Utilities 2012
2012-01-21 19:29 . 2012-01-21 19:29 -------- d-----w- c:\programdata\TuneUp Software
2012-01-21 19:29 . 2012-01-21 19:29 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2012-01-21 18:21 . 2012-01-21 18:21 -------- d-----w- c:\users\Patrick\AppData\Local\Downloaded Installations
2012-01-19 22:06 . 2012-01-23 01:40 -------- d-----w- c:\users\Patrick\Tracing
2012-01-19 21:56 . 2012-01-19 22:01 -------- d-----w- c:\program files (x86)\Windows Live
2012-01-19 21:56 . 2012-01-19 21:56 -------- d-----w- c:\program files\Windows Live
2012-01-19 21:56 . 2012-01-19 21:56 -------- d-----w- c:\windows\PCHEALTH
2012-01-19 21:56 . 2012-01-21 17:27 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2012-01-19 21:54 . 2012-01-19 21:54 -------- d-----w- c:\windows\system32\Macromed
2012-01-19 21:54 . 2012-01-22 23:47 -------- d-----w- c:\users\Patrick\AppData\Local\Windows Live
2012-01-19 21:54 . 2012-01-19 21:54 -------- d-----w- c:\program files (x86)\Common Files\Windows Live
2012-01-19 21:08 . 2011-11-17 06:41 1731920 ----a-w- c:\windows\system32\ntdll.dll
2012-01-19 19:31 . 2012-01-19 21:54 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-19 19:31 . 2012-01-19 19:31 -------- d-----w- c:\windows\SysWow64\Macromed
2012-01-19 19:21 . 2012-01-19 19:21 -------- d-----w- c:\users\Patrick\AppData\Local\Mozilla
2012-01-19 17:39 . 2011-10-26 05:25 1572864 ----a-w- c:\windows\system32\quartz.dll
2012-01-19 17:39 . 2011-10-26 05:25 366592 ----a-w- c:\windows\system32\qdvd.dll
2012-01-19 17:36 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-01-19 16:58 . 2012-01-19 16:58 -------- d-----w- c:\windows\system32\appmgmt
2012-01-19 16:11 . 2012-01-19 16:11 -------- d-----w- c:\users\Patrick\AppData\Roaming\Vodafone
2012-01-19 16:10 . 2010-12-30 12:19 28672 ----a-w- c:\windows\system32\drivers\ew_juextctrl.sys
2012-01-19 16:10 . 2010-12-30 12:19 196096 ----a-w- c:\windows\system32\drivers\ew_juwwanecm.sys
2012-01-19 16:10 . 2010-12-30 12:19 94208 ----a-w- c:\windows\system32\drivers\ew_jucdcacm.sys
2012-01-19 16:10 . 2010-12-30 12:19 85504 ----a-w- c:\windows\system32\drivers\ew_jubusenum.sys
2012-01-19 16:10 . 2010-12-30 12:19 117248 ----a-w- c:\windows\system32\drivers\ew_hwusbdev.sys
2012-01-19 16:09 . 2012-01-19 16:10 -------- d-----w- c:\programdata\Vodafone
2012-01-19 16:09 . 2012-01-19 16:09 -------- d-----w- c:\programdata\FLEXnet
2012-01-19 16:09 . 2012-01-19 16:09 -------- d-----w- c:\program files (x86)\Vodafone
2012-01-19 16:09 . 2012-01-19 16:09 -------- d-----w- c:\users\Patrick\AppData\Local\{D6C4D49F-0DF8-46DC-AE86-89DE19B4040D}
2012-01-19 15:58 . 2012-01-23 02:35 -------- d-----w- c:\program files (x86)\Mobistar Internet Everywhere
2012-01-19 13:05 . 2012-01-19 15:59 -------- d-----w- C:\OnlineUpdate
2012-01-19 13:05 . 2012-01-19 13:05 -------- d-----w- C:\log
2012-01-19 13:05 . 2012-01-19 13:06 -------- d-----w- c:\programdata\Mobistar Internet Everywhere
2012-01-19 11:53 . 2012-01-19 15:58 -------- d-----w- c:\programdata\DatacardService
2012-01-18 01:12 . 2012-01-18 01:12 -------- d-----w- c:\program files (x86)\Panda USB Vaccine
2012-01-16 21:27 . 2012-01-16 21:27 -------- d-----w- c:\programdata\Panda Software
2012-01-16 19:00 . 2012-01-16 19:00 -------- d-----w- c:\windows\FltMgr
2012-01-16 18:55 . 2012-01-16 18:55 15928 ----a-w- c:\windows\system32\drivers\COMFiltr.sys
2012-01-16 17:09 . 2012-01-18 01:42 -------- d-----w- c:\users\Patrick\AppData\Local\Microsoft Games
2012-01-16 17:09 . 2012-01-16 17:09 -------- d-----w- c:\program files\Microsoft Games
.
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-23 01:53 . 2012-01-21 18:30 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{BEE037D0-BC2D-41CE-8FA1-7455CCFD8CAB}\offreg.dll
2012-01-19 21:56 . 2011-03-28 17:36 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2012-01-06 05:15 . 2012-01-20 08:51 8602168 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{BEE037D0-BC2D-41CE-8FA1-7455CCFD8CAB}\mpengine.dll
2011-12-23 13:55 . 2011-12-23 13:55 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2011-12-23 10:27 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2011-12-23 10:27 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2011-12-23 08:36 . 2011-12-23 08:36 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-12-23 08:36 . 2011-12-23 08:36 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-12-23 08:36 . 2011-12-23 08:36 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2011-12-23 08:36 . 2011-12-23 08:36 85504 ----a-w- c:\windows\system32\iesetup.dll
2011-12-23 08:36 . 2011-12-23 08:36 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2011-12-23 08:36 . 2011-12-23 08:36 76800 ----a-w- c:\windows\system32\tdc.ocx
2011-12-23 08:36 . 2011-12-23 08:36 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2011-12-23 08:36 . 2011-12-23 08:36 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2011-12-23 08:36 . 2011-12-23 08:36 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2011-12-23 08:36 . 2011-12-23 08:36 603648 ----a-w- c:\windows\system32\vbscript.dll
2011-12-23 08:36 . 2011-12-23 08:36 49664 ----a-w- c:\windows\system32\imgutil.dll
2011-12-23 08:36 . 2011-12-23 08:36 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2011-12-23 08:36 . 2011-12-23 08:36 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-12-23 08:36 . 2011-12-23 08:36 448512 ----a-w- c:\windows\system32\html.iec
2011-12-23 08:36 . 2011-12-23 08:36 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2011-12-23 08:36 . 2011-12-23 08:36 367104 ----a-w- c:\windows\SysWow64\html.iec
2011-12-23 08:36 . 2011-12-23 08:36 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2011-12-23 08:36 . 2011-12-23 08:36 30720 ----a-w- c:\windows\system32\licmgr10.dll
2011-12-23 08:36 . 2011-12-23 08:36 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb
2011-12-23 08:36 . 2011-12-23 08:36 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2011-12-23 08:36 . 2011-12-23 08:36 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2011-12-23 08:36 . 2011-12-23 08:36 2309120 ----a-w- c:\windows\system32\jscript9.dll
2011-12-23 08:36 . 2011-12-23 08:36 222208 ----a-w- c:\windows\system32\msls31.dll
2011-12-23 08:36 . 2011-12-23 08:36 1798144 ----a-w- c:\windows\SysWow64\jscript9.dll
2011-12-23 08:36 . 2011-12-23 08:36 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2011-12-23 08:36 . 2011-12-23 08:36 165888 ----a-w- c:\windows\system32\iexpress.exe
2011-12-23 08:36 . 2011-12-23 08:36 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2011-12-23 08:36 . 2011-12-23 08:36 160256 ----a-w- c:\windows\system32\wextract.exe
2011-12-23 08:36 . 2011-12-23 08:36 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2011-12-23 08:36 . 2011-12-23 08:36 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2011-12-23 08:36 . 2011-12-23 08:36 1493504 ----a-w- c:\windows\system32\inetcpl.cpl
2011-12-23 08:36 . 2011-12-23 08:36 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2011-12-23 08:36 . 2011-12-23 08:36 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-12-23 08:36 . 2011-12-23 08:36 1390080 ----a-w- c:\windows\system32\wininet.dll
2011-12-23 08:36 . 2011-12-23 08:36 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-12-23 08:36 . 2011-12-23 08:36 12288 ----a-w- c:\windows\system32\mshta.exe
2011-12-23 08:36 . 2011-12-23 08:36 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2011-12-23 08:36 . 2011-12-23 08:36 114176 ----a-w- c:\windows\system32\admparse.dll
2011-12-23 08:36 . 2011-12-23 08:36 1127424 ----a-w- c:\windows\SysWow64\wininet.dll
2011-12-23 08:36 . 2011-12-23 08:36 111616 ----a-w- c:\windows\system32\iesysprep.dll
2011-12-23 08:36 . 2011-12-23 08:36 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2011-12-23 08:36 . 2011-12-23 08:36 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2011-11-24 04:52 . 2011-12-22 17:29 3145216 ----a-w- c:\windows\system32\win32k.sys
2011-11-19 14:01 . 2012-01-19 17:36 67072 ----a-w- c:\windows\SysWow64\packager.dll
2011-11-17 05:38 . 2012-01-19 21:08 1292080 ----a-w- c:\windows\SysWow64\ntdll.dll
2011-11-17 05:35 . 2012-01-23 01:16 314880 ----a-w- c:\windows\SysWow64\webio.dll
2011-11-17 05:34 . 2012-01-23 01:16 224768 ----a-w- c:\windows\SysWow64\schannel.dll
2011-11-17 05:34 . 2012-01-23 01:16 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2011-11-17 05:28 . 2012-01-23 01:16 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
2011-11-15 13:29 . 2011-12-22 17:29 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-11-05 05:32 . 2011-12-22 17:29 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-05 04:26 . 2011-12-22 17:29 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2011-10-26 05:21 . 2011-12-22 17:29 43520 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-26 04:32 . 2012-01-19 17:39 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2011-10-26 04:32 . 2012-01-19 17:39 1328128 ----a-w- c:\windows\SysWow64\quartz.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"APVXDWIN"="c:\program files (x86)\Panda Security\Panda Internet Security 2012\APVXDWIN.EXE" [2011-04-13 1000768]
"SCANINICIO"="c:\program files (x86)\Panda Security\Panda Internet Security 2012\Inicio.exe" [2011-02-02 70464]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [x]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys [x]
R3 huawei_wwanecm;huawei_wwanecm;c:\windows\system32\DRIVERS\ew_juwwanecm.sys [x]
R3 PavTPK.sys;PavTPK.sys;c:\windows\system32\PavTPK.sys [x]
R3 Prot6Flt;Prot6Flt;c:\windows\system32\DRIVERS\Prot6Flt.sys [x]
R3 RICOH SmartCard Reader;RICOH SmartCard Reader;c:\windows\system32\DRIVERS\rismcx64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Windows Activation Technologies-service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R4 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe [2009-03-01 89600]
R4 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
R4 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-02-25 227896]
R4 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [x]
R4 Mobistar Internet Everywhere. RunOuc;Mobistar Internet Everywhere. OUC;c:\program files (x86)\Mobistar Internet Everywhere\UpdateDog\ouc.exe [2012-01-19 234496]
R4 PskSvcRetail;Panda PSK service;c:\program files (x86)\Panda Security\Panda Internet Security 2012\PskSvc.exe [2010-08-16 28992]
R4 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-03-03 2320920]
R4 vcsFPService;Validity VCS Fingerprint Service;c:\windows\system32\vcsFPService.exe [2010-02-18 2045232]
S0 pavboot;Panda boot driver;c:\windows\system32\Drivers\pavboot64.sys [x]
S1 ShldFlt;Panda File Shield Driver;c:\windows\system32\DRIVERS\ShldFlt.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AmFSM;AmFSM;c:\windows\system32\DRIVERS\amm6460.sys [x]
S2 APPFLT;App Filter Plugin;c:\windows\system32\Drivers\APPFLT64.SYS [x]
S2 ComFiltr;Panda Anti-Dialer;c:\windows\system32\DRIVERS\COMFiltr.sys [x]
S2 DSAFLT;DSA Filter Plugin;c:\windows\system32\Drivers\DSAFLT64.SYS [x]
S2 FNETMON;NetMon Filter Plugin;c:\windows\system32\Drivers\fnetm64.SYS [x]
S2 IDSFLT;Ids Filter Plugin;c:\windows\system32\Drivers\IDSFLT64.SYS [x]
S2 NETFLTDI;Panda Net Driver [TDI Layer];c:\windows\system32\Drivers\NETTDI64.SYS [x]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2011-11-23 2118976]
S2 WNMFLT;Wifi Monitor Filter Plugin;c:\windows\system32\Drivers\WNMFLT64.SYS [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\DRIVERS\e1k62x64.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [x]
S3 NETIMFLT01060044;PANDA NDIS IM Filter Miniport v1.6.0.44;c:\windows\system32\DRIVERS\n64i1644.sys [x]
S3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series adapter stuurprogramma onder Windows 7 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x]
S3 rismcx64;RICOH Smart Card Reader;c:\windows\system32\DRIVERS\rismcx64.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2011-11-09 11856]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Bijkomende Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.be/
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: Interfaces\{FF36EF05-CB8A-4A3E-82C9-0F1DBF864985}: NameServer = 212.224.255.252 212.65.63.217
FF - ProfilePath - c:\users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\msu9wjj6.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.be/
FF - prefs.js: network.proxy.type - 0
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
------- Bestandsassociaties -------
.
JSEFile=c:\progra~2\PANDAS~1\PANDAI~1\PavScrip.exe "%1" %*
.
- - - - ORPHANS VERWIJDERD - - - -
.
Wow6432Node-HKCU-Run-Mobile Partner - c:\program files (x86)\Mobistar Internet Everywhere\Mobistar Internet Everywhere.exe
.
.
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_USERS\S-1-5-21-1373691362-4216085134-3846761065-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1373691362-4216085134-3846761065-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Voltooingstijd: 2012-01-23 04:06:19
ComboFix-quarantined-files.txt 2012-01-23 03:06
.
Pre-Run: 474.400.563.200 bytes beschikbaar
Post-Run: 474.777.985.024 bytes beschikbaar
.
- - End Of File - - 9DE6F97A8F83F596AAF33FBB5F7FBD45
Laatst bewerkt door een moderator: