Hallo,
Ik heb gedaan wat hierboven staat vermeld.
Mvg Jasper
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:16:35, on 13-3-2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
c:\windows\system32\smss.exe
c:\windows\system32\winlogon.exe
c:\windows\system32\services.exe
c:\windows\system32\lsass.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\spoolsv.exe
c:\program files\avira\antivir desktop\sched.exe
c:\program files\avira\antivir desktop\avguard.exe
c:\program files\bonjour\mdnsresponder.exe
c:\program files\common files\intervideo\regmgr\iviregmgr.exe
c:\program files\java\jre6\bin\jqs.exe
c:\program files\common files\protexis\license service\psiservice_2.exe
c:\windows\system32\svchost.exe
c:\windows\explorer.exe
c:\program files\avira\antivir desktop\avgnt.exe
c:\windows\soundman.exe
c:\windows\alcwzrd.exe
c:\program files\java\jre6\bin\jusched.exe
c:\program files\windows live\messenger\msnmsgr.exe
c:\program files\pando networks\media booster\pmb.exe
c:\windows\system32\ctfmon.exe
c:\program files\philips\gogear sa19xx device manager\main.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\trend micro\hijackthis\hijackthis.exe
r0 - hkcu\software\microsoft\internet explorer\main,start page = http://www.google.nl/
r1 - hklm\software\microsoft\internet explorer\main,default_page_url = http://go.microsoft.com/fwlink/?linkid=69157
r1 - hklm\software\microsoft\internet explorer\main,default_search_url = http://go.microsoft.com/fwlink/?linkid=54896
r1 - hklm\software\microsoft\internet explorer\main,search page = http://go.microsoft.com/fwlink/?linkid=54896
r0 - hklm\software\microsoft\internet explorer\main,start page = http://www.nixat.com/
r1 - hkcu\software\microsoft\windows\currentversion\int ernet settings,proxyoverride = *.local
o2 - bho: acroiehelperstub - {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
o2 - bho: (no name) - {5c255c8a-e604-49b4-9d64-90988571cecb} - (no file)
o2 - bho: windows live aanmelden - help - {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll
o2 - bho: java(tm) plug-in 2 ssv helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
o2 - bho: jqsiestartdetectorimpl - {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
o4 - hklm\..\run: [avgnt] c:\program files\avira\antivir desktop\avgnt.exe /min
o4 - hklm\..\run: [soundman] soundman.exe
o4 - hklm\..\run: [alcwzrd] alcwzrd.exe
o4 - hklm\..\run: [sunjavaupdatesched] c:\program files\java\jre6\bin\jusched.exe
o4 - hklm\..\run: [nerofiltercheck] c:\program files\common files\ahead\lib\nerocheck.exe
o4 - hklm\..\run: [adobe reader speed launcher] c:\program files\adobe\reader 9.0\reader\reader_sl.exe
o4 - hklm\..\run: [adobe arm] c:\program files\common files\adobe\arm\1.0\adobearm.exe
o4 - hklm\..\run: [quicktime task] c:\program files\quicktime\qttask.exe -atboottime
o4 - hklm\..\run: [combofix] "c:\combofix\cf14505.cfxxe" /c "c:\combofix\c.bat"
o4 - hkcu\..\run: [msnmsgr] c:\program files\windows live\messenger\msnmsgr.exe /background
o4 - hkcu\..\run: [pando media booster] c:\program files\pando networks\media booster\pmb.exe
o4 - hkcu\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe
o4 - hkus\s-1-5-18\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'system')
o4 - hkus\.default\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'default user')
o4 - global startup: philips sa19xx device manager.lnk = c:\program files\philips\gogear sa19xx device manager\main.exe
o8 - extra context menu item: e&xporteren naar microsoft excel - res://c:\progra~1\micros~2\office11\excel.exe/3000
o9 - extra button: (no name) - {5067a26b-1337-4436-8afe-ee169c2da79f} - c:\windows\system32\shdocvw.dll
o9 - extra 'tools' menuitem: skype add-on for internet explorer - {5067a26b-1337-4436-8afe-ee169c2da79f} - c:\windows\system32\shdocvw.dll
o9 - extra button: skype - {77bf5300-1474-4ec7-9980-d32b190e9b07} - c:\windows\system32\shdocvw.dll
o9 - extra button: onderzoek - {92780b25-18cc-41c8-b9be-3c9c571a8263} - c:\progra~1\micros~2\office11\refiebar.dll
o9 - extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra 'tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra button: messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o9 - extra 'tools' menuitem: windows messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o16 - dpf: {1e54d648-b804-468d-bc78-4affed8e262f} (system requirements lab) - http://www.nvidia.com/content/driverdownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
o16 - dpf: {20a60f0d-9afa-4515-a0fd-83bd84642501} (checkers class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
o16 - dpf: {40f576ad-8680-4f9e-9490-99d069cd665f} (system requirements lab class) - http://srtest-cdn.systemrequirementslab.com.s3.amazonaws.com/bin/sysreqlabdetect.cab
o16 - dpf: {5c051655-fcd5-4969-9182-770ea5aa5565} (solitaire showdown class) - http://messenger.zone.msn.com/binary/solitaireshowdown.cab56986.cab
o16 - dpf: {5d6f45b3-9043-443d-a792-115447494d24} (unoctrl class) - http://messenger.zone.msn.com/messengergamescontent/gamecontent/nl/uno1/game_uno1.cab
o16 - dpf: {67dabfbf-d0ab-41fa-9c46-cc0f21721616} (divxbrowserplugin object) - http://download.divx.com/player/divxbrowserplugin.cab
o16 - dpf: {c3f79a2b-b9b4-4a66-b012-3ee46475b072} (messengerstatsclient class) - http://messenger.zone.msn.com/binary/messengerstatspaclient.cab56907.cab
o16 - dpf: {c9a2cbf3-b7f9-463e-a690-82cc077dcfc6} (zemidetecthardware control) - http://www.4story.com/active_x/zemidetecthardware.cab
o16 - dpf: {e2883e8f-472f-4fb0-9522-ac9bf37916a7} - http://platformdl.adobe.com/nos/getplusplus/1.6/gp.cab
o16 - dpf: {f5a7706b-b9c0-4c89-a715-7a0c6b05dd48} (minesweeper flags class) - http://messenger.zone.msn.com/binary/minesweeper.cab56986.cab
o23 - service: avira antivir scheduler (antivirschedulerservice) - avira gmbh - c:\program files\avira\antivir desktop\sched.exe
o23 - service: avira antivir guard (antivirservice) - avira gmbh - c:\program files\avira\antivir desktop\avguard.exe
o23 - service: avira upgrade service (antivirupgradeservice) - unknown owner - c:\docume~1\jasper\locals~1\temp\avsetup_4ae47998\ basic\avupgsvc.exe (file missing)
o23 - service: bonjour-service (bonjour service) - apple inc. - c:\program files\bonjour\mdnsresponder.exe
o23 - service: google updateservice (gupdate) (gupdate) - google inc. - c:\program files\google\update\googleupdate.exe
o23 - service: installdriver table manager (idrivert) - macrovision corporation - c:\program files\common files\installshield\driver\1050\intel 32\idrivert.exe
o23 - service: iviregmgr - intervideo - c:\program files\common files\intervideo\regmgr\iviregmgr.exe
o23 - service: java quick starter (javaquickstarterservice) - sun microsystems, inc. - c:\program files\java\jre6\bin\jqs.exe
o23 - service: nbservice - nero ag - c:\program files\nero\nero 7\nero backitup\nbservice.exe
o23 - service: protexis licensing v2 (psi_svc_2) - protexis inc. - c:\program files\common files\protexis\license service\psiservice_2.exe
--
end of file - 7714 bytes
µTorrent
3DVIA player 5.0
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.3 - Nederlands
Adobe Shockwave Player 11.5
Apple Application Support
Avira AntiVir Personal - Free Antivirus
Bonjour
Compatibility Pack for the 2007 Office system
Easy DVD Player 2.0
Fable - The Lost Chapters
Fontlist
GoGear SA19xx Device Manager
Google Earth
Google Update Helper
GrabIt 1.7.2 Beta 4 (build 997)
Guild Wars
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Java(TM) 6 Update 16
LimeWire 5.4.8
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office Professional Editie 2003
Microsoft Silverlight
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.5.5)
MSN
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Nero 7 Ultra Edition
OGA Notifier 2.0.0048.0
Pando Media Booster
QuickPar 0.9
QuickTime
Realtek High Definition Audio Driver
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978706)
Segoe UI
Skype web features
Smarty Uninstaller Pro 2006
Spybot - Search & Destroy
System Requirements Lab
System Requirements Lab
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB973874)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB961503)
Update for Windows XP (KB973687)
Ventrilo Client
VentriloMIX
Victory media converter
Visual C++ 8.0 MFC (x86) WinSXS MSM
Visual C++ 8.0 MFC.Policy (x86) WinSXS MSM
VLC media player 1.0.5
Windows Internet Explorer 8
Windows Live - Hulpprogramma voor uploaden
Windows Live aanmeldhulp
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
WinRAR archiver
World of Warcraft
YouTube Downloader 2.5.3
MBAM LOG
malwarebytes' anti-malware 1.44
database versie: 3864
windows 5.1.2600 service pack 3
internet explorer 8.0.6001.18702
13-3-2010 21:13:12
mbam-log-2010-03-13 (21-13-12).txt
scan type: snelle scan
objecten gescand: 119212
verstreken tijd: 6 minute(s), 44 second(s)
geheugenprocessen geïnfecteerd: 0
geheugenmodulen geïnfecteerd: 0
registersleutels geïnfecteerd: 0
registerwaarden geïnfecteerd: 0
registerdata bestanden geïnfecteerd: 0
mappen geïnfecteerd: 0
bestanden geïnfecteerd: 0
geheugenprocessen geïnfecteerd:
(geen kwaadaardige items gevonden)
geheugenmodulen geïnfecteerd:
(geen kwaadaardige items gevonden)
registersleutels geïnfecteerd:
(geen kwaadaardige items gevonden)
registerwaarden geïnfecteerd:
(geen kwaadaardige items gevonden)
registerdata bestanden geïnfecteerd:
(geen kwaadaardige items gevonden)
mappen geïnfecteerd:
(geen kwaadaardige items gevonden)
bestanden geïnfecteerd:
(geen kwaadaardige items gevonden)