• Hulpvragenden in dit forumonderdeel worden enkel geholpen door daartoe bevoegde teamleden.
    Dit is belangrijk, zodat de hulpvragende goed geholpen kan worden zonder (goedbedoelde) aanvullende berichten van andere leden.
    Reageren op andermans discussie is daarom uitgeschakeld.
  • De afgelopen dagen zijn er meerdere fora waarop bestaande accounts worden overgenomen door spammers. De gebruikersnamen en wachtwoorden zijn via een hack of een lek via andere sites buitgemaakt. Via have i been pwned? kan je controleren of jouw gegeven ook zijn buitgemaakt. Wijzig bij twijfel jouw wachtwoord of schakel de twee-staps-verificatie in.

Inaktief - virus check.

Status
Niet open voor verdere reacties.

Nikos

Banned
Lid geworden
21 sep 2005
Berichten
18.498
Waarderingsscore
0
Hey Kingpin, Abraham,

Een vriend heeft wat last van een virus infectie.
ik heb hem norman en avg al laten verwijderen en avira er op laten zetten.
edit: hij gebruikt firefox maar krijgt soms popups van ie (CiD.avert )
ook gescand met mbam:
Code:
Registersleutels genfecteerd:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{90b5a95a-afd5-4d11-b9bd-a69d53d22226} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8109fd3d-d891-4f80-8339-50a4913ace6f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0ac49246-419b-4ee0-8917-8818daad6a4e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99410cde-6f16-42ce-9d49-3807f78f0287} (Adware.180Solutions) -> Quarantined and deleted successfully.

Registerwaarden genfecteerd:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hpfsched (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.

Bestanden genfecteerd:
C:\WINDOWS\hpfsched.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
hijackthislogje:
[hjt]
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:28:46, on 13-3-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
c:\windows\system32\smss.exe
c:\windows\system32\winlogon.exe
c:\windows\system32\services.exe
c:\windows\system32\lsass.exe
c:\windows\system32\ati2evxx.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\svchost.exe
c:\windows\system32\ati2evxx.exe
c:\windows\explorer.exe
c:\windows\system32\spoolsv.exe
c:\program files\common files\logitech\lvmvfm\lvprcsrv.exe
c:\program files\avira\antivir personaledition classic\sched.exe
c:\windows\system32\rundll32.exe
c:\windows\system32\lvcomsx.exe
c:\program files\logitech\video\cameraassistant.exe
c:\windows\system32\elkctrl.exe
c:\program files\razer\habu\razerhid.exe
c:\program files\itunes\ituneshelper.exe
c:\program files\java\jre6\bin\jusched.exe
c:\program files\avira\antivir personaledition classic\avgnt.exe
c:\windows\system32\ctfmon.exe
c:\program files\microsoft activesync\wcescomm.exe
c:\program files\windows live\messenger\msnmsgr.exe
c:\program files\internet explorer\iexplore.exe
c:\program files\logitech\desktop messenger\8876480\program\logitechdesktopmessenger.exe
c:\progra~1\messen~1\msmsgs.exe
c:\progra~1\micros~4\rapimgr.exe
c:\program files\avira\antivir personaledition classic\avguard.exe
c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe
c:\windows\system32\cisvc.exe
c:\program files\java\jre6\bin\jqs.exe
c:\program files\common files\microsoft shared\vs7debug\mdm.exe
c:\windows\system32\svchost.exe
c:\program files\razer\habu\razertra.exe
c:\program files\razer\habu\razerofa.exe
c:\windows\system32\wuauclt.exe
c:\program files\ipod\bin\ipodservice.exe
c:\program files\windows live\messenger\usnsvc.exe
c:\documents and settings\eigenaar\bureaublad\hijackthis.exe

r1 - hkcu\software\microsoft\internet explorer\main,search page = [noparse]http://go.microsoft.com/fwlink/?linkid=54896[/noparse]
r0 - hkcu\software\microsoft\internet explorer\main,start page = [noparse]http://www.google.nl/[/noparse]
r1 - hklm\software\microsoft\internet explorer\main,default_page_url = [noparse]http://go.microsoft.com/fwlink/?linkid=69157[/noparse]
r1 - hklm\software\microsoft\internet explorer\main,default_search_url = [noparse]http://go.microsoft.com/fwlink/?linkid=54896[/noparse]
r1 - hklm\software\microsoft\internet explorer\main,search page = [noparse]http://go.microsoft.com/fwlink/?linkid=54896[/noparse]
r0 - hklm\software\microsoft\internet explorer\main,start page = [noparse]http://go.microsoft.com/fwlink/?linkid=69157[/noparse]
r1 - hkcu\software\microsoft\internet connection wizard,shellnext = [noparse]http://go.microsoft.com/fwlink/?linkid=74005[/noparse]
r1 - hkcu\software\microsoft\windows\currentversion\internet settings,autoconfigurl = [noparse]http://localhost:9100/proxy.pac[/noparse]
r0 - hkcu\software\microsoft\internet explorer\toolbar,linksfoldername = koppelingen
o2 - bho: nco 2.0 ie bho - {602adb0e-4aff-4217-8aa1-95dac4dfa408} - (no file)
o2 - bho: ssvhelper class - {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
o2 - bho: (no name) - {7e853d72-626a-48ec-a868-ba8d5e23e045} - (no file)
o2 - bho: windows live aanmelden - help - {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll
o2 - bho: java(tm) plug-in 2 ssv helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
o2 - bho: jqsiestartdetectorimpl - {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
o3 - toolbar: (no name) - {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - (no file)
o4 - hklm\..\run: [cmaudio] rundll32 cmicnfg.cpl,cmictrlwnd
o4 - hklm\..\run: [nerofiltercheck] c:\windows\system32\nerocheck.exe
o4 - hklm\..\run: [winampagent] c:\program files\winamp\winampa.exe
o4 - hklm\..\run: [lvcomsx] c:\windows\system32\lvcomsx.exe
o4 - hklm\..\run: [logitechcameraassistant] c:\program files\logitech\video\cameraassistant.exe
o4 - hklm\..\run: [logitechvideo[inspector]] c:\program files\logitech\video\installhelper.exe /inspect
o4 - hklm\..\run: [logitechcameraservice(e)] c:\windows\system32\elkctrl.exe /automation
o4 - hklm\..\run: [philipsdm] c:\program files\philips\philips device manager\bin\devicemanager.exe os_startup
o4 - hklm\..\run: [user bib mp3 plan] c:\documents and settings\all users\application data\amok copy user bib\glue admin.exe
o4 - hklm\..\run: [habu] c:\program files\razer\habu\razerhid.exe
o4 - hklm\..\run: [quicktime task] c:\program files\quicktime\qttask.exe -atboottime
o4 - hklm\..\run: [ituneshelper] c:\program files\itunes\ituneshelper.exe
o4 - hklm\..\run: [sunjavaupdatesched] c:\program files\java\jre6\bin\jusched.exe
o4 - hklm\..\run: [avgnt] c:\program files\avira\antivir personaledition classic\avgnt.exe /min
o4 - hklm\..\run: [kernelfaultcheck] %systemroot%\system32\dumprep 0 -k
o4 - hkcu\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe
o4 - hkcu\..\run: [spyware doctor] c:\program files\spyware doctor\swdoctor.exe /q
o4 - hkcu\..\run: [h/pc connection agent] c:\program files\microsoft activesync\wcescomm.exe
o4 - hkcu\..\run: [msnmsgr] c:\program files\windows live\messenger\msnmsgr.exe /background
o4 - hkcu\..\run: [ldm] c:\program files\logitech\desktop messenger\8876480\program\logitechdesktopmessenger.exe
o4 - hkcu\..\run: [msmsgs] c:\progra~1\messen~1\msmsgs.exe /background
o4 - hkus\s-1-5-19\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'lokale service')
o4 - hkus\s-1-5-20\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'netwerkservice')
o4 - hkus\s-1-5-18\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'system')
o4 - hkus\.default\..\run: [ctfmon.exe] c:\windows\system32\ctfmon.exe (user 'default user')
o4 - global startup: logitech desktop messenger.lnk = c:\program files\logitech\desktop messenger\8876480\program\ldmconf.exe
o4 - global startup: microsoft office.lnk = c:\program files\microsoft office\office10\osa.exe
o8 - extra context menu item: e&xport to microsoft excel - res://c:\progra~1\micros~3\office11\excel.exe/3000
o9 - extra button: (no name) - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre6\bin\jp2iexp.dll
o9 - extra 'tools' menuitem: sun java console - {08b0e5c0-4fcb-11cf-aaa5-00401c608501} - c:\program files\java\jre6\bin\jp2iexp.dll
o9 - extra button: spyware doctor - {2d663d1a-8670-49d9-a1a5-4c56b4e14e84} - c:\windows\system32\shdocvw.dll
o9 - extra button: create mobile favorite - {2eaf5bb1-070f-11d3-9307-00c04fae2d4f} - c:\progra~1\micros~4\inetrepl.dll
o9 - extra button: (no name) - {2eaf5bb2-070f-11d3-9307-00c04fae2d4f} - c:\progra~1\micros~4\inetrepl.dll
o9 - extra 'tools' menuitem: create mobile favorite... - {2eaf5bb2-070f-11d3-9307-00c04fae2d4f} - c:\progra~1\micros~4\inetrepl.dll
o9 - extra button: research - {92780b25-18cc-41c8-b9be-3c9c571a8263} - c:\progra~1\micros~3\office11\refiebar.dll
o9 - extra button: run imvu - {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\wearloga\menu start\programma's\imvu\run imvu.lnk (file missing)
o9 - extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra 'tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - c:\windows\network diagnostic\xpnetdiag.exe
o9 - extra button: messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o9 - extra 'tools' menuitem: windows messenger - {fb5f1910-f110-11d2-bb9e-00c04f795683} - c:\program files\messenger\msmsgs.exe
o10 - unknown file in winsock lsp: c:\windows\system32\nwprovau.dll
o16 - dpf: {17492023-c23a-453e-a040-c7c580bbf700} (windows genuine advantage validation tool) - [noparse]http://go.microsoft.com/fwlink/?linkid=39204[/noparse]
o18 - protocol: bw+0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw+0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw-0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw-0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw00 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw00s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw10 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw10s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw20 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw20s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw30 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw30s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw40 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw40s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw50 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw50s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw60 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw60s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw70 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw70s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw80 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw80s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw90 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bw90s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwa0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwa0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwb0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwb0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwc0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwc0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwd0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwd0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwe0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwe0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwf0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwf0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwfile-8876480 - {9462a756-7b47-47bc-8c80-c34b9b80b32b} - c:\program files\logitech\desktop messenger\8876480\program\gaplugprotocol-8876480.dll
o18 - protocol: bwg0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwg0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwh0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwh0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwi0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwi0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwj0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwj0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwk0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwk0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwl0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwl0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwm0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwm0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwn0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwn0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwo0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwo0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwp0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwp0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwq0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwq0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwr0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwr0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bws0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bws0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwt0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwt0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwu0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwu0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwv0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwv0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bww0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bww0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwx0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwx0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwy0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwy0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwz0 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: bwz0s - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o18 - protocol: offline-8876480 - {74989bef-b761-45ab-a288-ced490abcba0} - c:\program files\logitech\desktop messenger\8876480\program\bwplugprotocol-8876480.dll
o23 - service: avira antivir personal - free antivirus scheduler (antivirscheduler) - avira gmbh - c:\program files\avira\antivir personaledition classic\sched.exe
o23 - service: avira antivir personal - free antivirus guard (antivirservice) - avira gmbh - c:\program files\avira\antivir personaledition classic\avguard.exe
o23 - service: mobiel apple apparaat (apple mobile device) - apple inc. - c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe
o23 - service: ati hotkey poller - ati technologies inc. - c:\windows\system32\ati2evxx.exe
o23 - service: ati smart - unknown owner - c:\windows\system32\ati2sgag.exe
o23 - service: installdriver table manager (idrivert) - macrovision corporation - c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe
o23 - service: ipod-service (ipod service) - apple inc. - c:\program files\ipod\bin\ipodservice.exe
o23 - service: java quick starter (javaquickstarterservice) - sun microsystems, inc. - c:\program files\java\jre6\bin\jqs.exe
o23 - service: logitech process monitor (lvprcsrv) - logitech inc. - c:\program files\common files\logitech\lvmvfm\lvprcsrv.exe
o23 - service: pml driver hpz12 - hp - c:\windows\system32\hpzipm12.exe
--
end of file - 21154 bytes

[/hjt]


Uninstall list:
Ik laat hem Java unistalleren en de nieuwst er opzetten!
Code:
Adobe Flash Player 10 Plugin
Adobe Shockwave Player
Apple Mobile Device Support
Apple Software Update
ATI - Software Uninstall Utility
ATI Display Driver
Avira AntiVir Personal - Free Antivirus
Beveiligingsupdate for Windows Media Player 10 (KB936782)
Beveiligingsupdate for Windows XP (KB941569)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB938127)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB942615)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB944533)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB950759)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB953838)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB956390)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB958215)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB960714)
Beveiligingsupdate voor Windows Internet Explorer 7 (KB961260)
Beveiligingsupdate voor Windows Media Player (KB952069)
Beveiligingsupdate voor Windows Media Player 11 (KB936782)
Beveiligingsupdate voor Windows Media Player 11 (KB954154)
Beveiligingsupdate voor Windows XP (KB938464)
Beveiligingsupdate voor Windows XP (KB938464-v2)
Beveiligingsupdate voor Windows XP (KB946648)
Beveiligingsupdate voor Windows XP (KB950760)
Beveiligingsupdate voor Windows XP (KB950762)
Beveiligingsupdate voor Windows XP (KB950974)
Beveiligingsupdate voor Windows XP (KB951066)
Beveiligingsupdate voor Windows XP (KB951376)
Beveiligingsupdate voor Windows XP (KB951376-v2)
Beveiligingsupdate voor Windows XP (KB951698)
Beveiligingsupdate voor Windows XP (KB951748)
Beveiligingsupdate voor Windows XP (KB952954)
Beveiligingsupdate voor Windows XP (KB953155)
Beveiligingsupdate voor Windows XP (KB953839)
Beveiligingsupdate voor Windows XP (KB954211)
Beveiligingsupdate voor Windows XP (KB954459)
Beveiligingsupdate voor Windows XP (KB954600)
Beveiligingsupdate voor Windows XP (KB955069)
Beveiligingsupdate voor Windows XP (KB956391)
Beveiligingsupdate voor Windows XP (KB956802)
Beveiligingsupdate voor Windows XP (KB956803)
Beveiligingsupdate voor Windows XP (KB956841)
Beveiligingsupdate voor Windows XP (KB957095)
Beveiligingsupdate voor Windows XP (KB957097)
Beveiligingsupdate voor Windows XP (KB958644)
Beveiligingsupdate voor Windows XP (KB958687)
Beveiligingsupdate voor Windows XP (KB958690)
Beveiligingsupdate voor Windows XP (KB960225)
Beveiligingsupdate voor Windows XP (KB960715)
C-Media 3D Audio
C-Media WDM Audio Driver
Compatibility Pack for the 2007 Office system
EetMeter2002
Essentile update voor Windows Media Player 11 (KB959772)
Guitar Pro 5.1
Hema Album Software Advanced
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.0 (KB932471)
Hotfix voor Windows Internet Explorer 7 (KB947864)
Hotfix voor Windows Media Player 11 (KB939683)
Hotfix voor Windows XP (KB952287)
iTunes
Java(TM) 6 Update 10
Java(TM) 6 Update 2
Java(TM) 6 Update 3
Java(TM) 6 Update 5
Java(TM) 6 Update 7
Java(TM) SE Runtime Environment 6 Update 1
Logitech Desktop Messenger
Logitech QuickCam-software
Logitech Camera-stuurprogramma
Malwarebytes' Anti-Malware
Messenger Plus! Live & Sponsor (CiD)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Dutch Language Pack
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft .NET Framework 2.0 Language Pack - NLD
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft .NET Framework 3.0 Dutch Language Pack
Microsoft .NET Framework 3.0 Nederlands taalpakket
Microsoft .NET Framework 3.0 Service Pack 1
Microsoft ActiveSync 4.0
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Professional Edition 2003
Microsoft Outlook 2002
Microsoft Text-to-Speech Engine 4.0 (English)
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.0.7)
MSXML 4.0 SP2 (KB925672)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 6.0 Parser (KB933579)
MSXML4 Parser
MySpeed PC Lite Edition
Nero Suite
OpenOffice.org Installer 1.0
Pakket voor de provider van Microsoft Base-smartcardcryptografieservice
Pharaoh
Philips SA43XX Device Manager
PowerDVD
QuickTime
Razer Habu Config
SAT24 Screensaver
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Sierra Utilities
SwiftKit
TES Construction Set
TES Construction Set
Update voor Windows XP (KB951072-v2)
Update voor Windows XP (KB951978)
Update voor Windows XP (KB955839)
Update voor Windows XP (KB967715)
Windows Defender Signatures
Windows Driver Package - MOTOROLA (uisp) USB  (09/08/2006 1.2.0.0)
Windows Driver Package - Razer (HidUsb) HIDClass  (01/10/2007 1.00)
Windows Imaging Component
Windows Live aanmeldhulp
Windows Live installer
Windows Live Mail
Windows Live Messenger
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows Presentation Foundation
Windows Presentation Foundation Language Pack (NLD)
Windows Rights Management Client met Service Pack 2
Windows Workflow Foundation NL Language Pack
Windows XP Service Pack 3
WinRAR archiver
XML Paper Specification Shared Components Language Pack 1.0

Avira heeft rond de 160 dingen gevonden...
kijk nog even of ik daar ook een log van kan krijgen.
 
Re: virus check.

Avira logje:
Code:
Avira AntiVir Personal
Report file date: vrijdag 13 maart 2009  15:38

Scanning for 1296878 virus strains and unwanted programs.

Licensed to:      Avira AntiVir PersonalEdition Classic
Serial number:    0000149996-ADJIE-0001
Platform:         Windows XP
Windows version:  (Service Pack 3)  [5.1.2600]
Boot mode:        Normally booted
Username:         SYSTEM
Computer name:    *****

Version information:
BUILD.DAT     : 8.2.0.337      16934 Bytes  18-11-2008 13:05:00
AVSCAN.EXE    : 8.1.4.10      315649 Bytes  18-11-2008 08:21:26
AVSCAN.DLL    : 8.1.4.0        40705 Bytes   26-5-2008 07:56:40
LUKE.DLL      : 8.1.4.5       164097 Bytes   12-6-2008 12:44:19
LUKERES.DLL   : 8.1.4.0        12033 Bytes   26-5-2008 07:58:52
ANTIVIR0.VDF  : 7.1.0.0     15603712 Bytes  27-10-2008 11:30:36
ANTIVIR1.VDF  : 7.1.2.12     3336192 Bytes   11-2-2009 13:37:10
ANTIVIR2.VDF  : 7.1.2.152     749568 Bytes   11-3-2009 13:37:12
ANTIVIR3.VDF  : 7.1.2.168      56320 Bytes   13-3-2009 13:37:13
Engineversion : 8.2.0.114 
AEVDF.DLL     : 8.1.1.0       106868 Bytes   13-3-2009 13:37:21
AESCRIPT.DLL  : 8.1.1.63      364923 Bytes   13-3-2009 13:37:19
AESCN.DLL     : 8.1.1.8       127346 Bytes   13-3-2009 13:37:18
AERDL.DLL     : 8.1.1.3       438645 Bytes   4-11-2008 13:58:38
AEPACK.DLL    : 8.1.3.10      397686 Bytes   13-3-2009 13:37:17
AEOFFICE.DLL  : 8.1.0.36      196987 Bytes   13-3-2009 13:37:17
AEHEUR.DLL    : 8.1.0.104    1634679 Bytes   13-3-2009 13:37:16
AEHELP.DLL    : 8.1.2.2       119158 Bytes   13-3-2009 13:37:14
AEGEN.DLL     : 8.1.1.28      336244 Bytes   13-3-2009 13:37:14
AEEMU.DLL     : 8.1.0.9       393588 Bytes  14-10-2008 10:05:56
AECORE.DLL    : 8.1.6.6       176501 Bytes   13-3-2009 13:37:13
AEBB.DLL      : 8.1.0.3        53618 Bytes  14-10-2008 10:05:56
AVWINLL.DLL   : 1.0.0.12       15105 Bytes    9-7-2008 08:40:05
AVPREF.DLL    : 8.0.2.0        38657 Bytes   16-5-2008 09:28:01
AVREP.DLL     : 8.0.0.2        98344 Bytes   31-7-2008 12:02:15
AVREG.DLL     : 8.0.0.1        33537 Bytes    9-5-2008 11:26:40
AVARKT.DLL    : 1.0.0.23      307457 Bytes   12-2-2008 08:29:23
AVEVTLOG.DLL  : 8.0.0.16      119041 Bytes   12-6-2008 12:27:49
SQLITE3.DLL   : 3.3.17.1      339968 Bytes   22-1-2008 17:28:02
SMTPLIB.DLL   : 1.2.0.23       28929 Bytes   12-6-2008 12:49:40
NETNT.DLL     : 8.0.0.1         7937 Bytes   25-1-2008 12:05:10
RCIMAGE.DLL   : 8.0.0.51     2371841 Bytes   12-6-2008 13:48:07
RCTEXT.DLL    : 8.0.52.0       86273 Bytes   27-6-2008 13:34:37

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: C:\Program Files\Avira\AntiVir PersonalEdition Classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, 
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: vrijdag 13 maart 2009  15:38

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'cidaemon.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'razerofa.exe' - '1' Module(s) have been scanned
Scan process 'razertra.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'mdm.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'cisvc.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'rapimgr.exe' - '1' Module(s) have been scanned
Scan process 'msmsgs.exe' - '1' Module(s) have been scanned
Scan process 'LogitechDesktopMessenger.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'wcescomm.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'razerhid.exe' - '1' Module(s) have been scanned
Scan process 'ElkCtrl.exe' - '1' Module(s) have been scanned
Scan process 'CameraAssistant.exe' - '1' Module(s) have been scanned
Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'LVPrcSrv.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
46 processes with 46 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
    [INFO]      No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
    [INFO]      No virus was found!

Starting to scan the registry.
The registry was scanned ( '65' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
    [WARNING]   The file could not be opened!
C:\Documents and Settings\eigenaar\Local Settings\Temporary Internet Files\Content.IE5\OOLH1058\swflash[2].cab
    [0] Archive type: CAB (Microsoft)
    --> FP_AX_CAB_INSTALLER.exe
      [WARNING]   No further files can be extracted from this archive. The archive will be closed
C:\Program Files\Hitman Pro\downloads\sdsetup.exe
    [DETECTION] Contains recognition pattern of the DR/Keylogger.DQ.10 dropper
    [NOTE]      The file was moved to '4a2d72fd.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP430\A0146279.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7624.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP430\A0146296.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7627.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP430\A0146325.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7630.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP430\A0146341.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7649.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP431\A0146349.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb764f.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP431\A0146365.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7655.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP432\A0146398.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76a4.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP433\A0146403.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76bf.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP433\A0146418.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76c6.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP433\A0146434.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76d0.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP433\A0146446.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76d6.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP435\A0147467.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76e2.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP435\A0147484.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76ec.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP435\A0147498.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb76f5.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP435\A0147543.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7702.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP435\A0147555.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7704.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP436\A0147561.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb770a.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP436\A0147578.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7715.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP437\A0147600.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb771a.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP438\A0147605.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7724.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP438\A0147620.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7727.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP438\A0148622.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7729.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP438\A0149621.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb772b.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP439\A0149635.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb772f.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP439\A0149652.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7735.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP440\A0149672.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7739.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP440\A0150674.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb773d.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP441\A0150695.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb788b.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP441\A0150709.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb788d.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP442\A0150734.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7946.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP442\A0150749.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb7948.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP442\A0150763.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb794a.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP442\A0150781.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was moved to '49eb794c.qua'!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP443\A0150814.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP444\A0150834.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP444\A0150851.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP444\A0150872.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP445\A0151873.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP445\A0151892.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP446\A0151901.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP446\A0151918.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP446\A0151931.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP447\A0151944.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP447\A0151954.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP448\A0151979.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP448\A0152977.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP448\A0153977.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP449\A0153998.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP449\A0154022.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP450\A0154042.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP450\A0155020.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP450\A0156039.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP451\A0156067.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP452\A0156100.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP452\A0156124.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP453\A0156145.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP453\A0156167.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP454\A0156193.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP455\A0156217.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP455\A0156242.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP455\A0156260.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP455\A0156281.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP456\A0156324.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP456\A0156343.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP457\A0156366.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP457\A0156385.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP458\A0156413.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP459\A0156433.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP459\A0156452.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP460\A0156475.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP461\A0156498.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP461\A0156509.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP461\A0156522.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP461\A0156535.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP461\A0156565.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP462\A0157568.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP462\A0157580.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP462\A0158589.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP463\A0158610.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP463\A0159610.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP464\A0159636.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP464\A0159655.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP465\A0159680.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP466\A0159704.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP467\A0159741.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP467\A0160703.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP468\A0160732.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP469\A0160767.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP470\A0160795.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP470\A0160818.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP471\A0160833.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP471\A0160851.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP472\A0160862.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP472\A0160878.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP473\A0160931.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP474\A0160955.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP474\A0161950.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP475\A0161977.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP476\A0162149.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP477\A0162645.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP478\A0162683.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP479\A0162699.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP485\A0162929.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP486\A0163040.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP486\A0163057.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP488\A0163083.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP488\A0163102.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP489\A0163109.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP489\A0163125.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP489\A0163148.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP489\A0163168.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP489\A0163185.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP490\A0163194.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP490\A0164186.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP491\A0164197.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP491\A0164213.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP491\A0164232.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP492\A0164292.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP492\A0165317.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP492\A0165337.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP493\A0165359.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP493\A0165380.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP494\A0165400.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP495\A0165422.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP495\A0165437.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP496\A0165465.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP496\A0165481.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP497\A0165506.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP498\A0165530.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP499\A0165549.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP499\A0165563.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP499\A0165590.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP500\A0166610.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP501\A0167631.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP503\A0167657.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP503\A0168656.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP504\A0168696.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP504\A0169696.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP504\A0170696.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP505\A0170780.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP507\A0170803.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP508\A0170886.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP510\A0170907.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP510\A0170917.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP510\A0170930.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP510\A0171931.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP511\A0172012.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP513\A0172033.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP513\A0172043.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP522\A0172962.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP522\A0173981.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP523\A0174032.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP524\A0174052.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP524\A0174084.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP524\A0174117.exe
    [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
    [NOTE]      The file was deleted!
C:\System Volume Information\_restore{3BBE1644-ACD3-4134-B7AA-3C3CCD8D0336}\RP527\A0174261.exe
    [DETECTION] Is the TR/Trash.Gen Trojan
    [NOTE]      The file was deleted!


End of the scan: vrijdag 13 maart 2009  16:47
Used time:  1:09:35 Hour(s)

The scan has been done completely.

   6553 Scanning directories
 303577 Files were scanned
    157 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
    123 files were deleted
      0 files were repaired
     34 files were moved to quarantine
      0 files were renamed
      1 Files cannot be scanned
 303419 Files not concerned
   1580 Archives were scanned
      2 Warnings
    157 Notes
systeem herstel al geflushed
 
Re: virus check.

Hallo vriend, je bent even druk doende geweest.

Dan gaan we nu over op Combofix!

Let op: Combofix is vernieuwd!

Om Combofix te kunnen gebruiken geld het volgende!

- er mogen geen webbrowsers openstaan
- antivirus moet geheel gedeaktiveerd zijn
- aktieve mal- en spywarescanners moeten gedeaktiveerd zijn.

Niet in het aktieve Combofixvnster klikken dit zal Combofix doen bevriezen!

Combofix sluit de internet verbinding probeer deze tussentijds niet te herstellen!

Vistagebruikers starten Combofix op met Administratorrechten!

http://www.nationaalcomputerforum.nl/showpost.php?p=312118&postcount=3

Succes!
 
Re: virus check.

Wegens gebrek aan feedback, is dit topic gesloten.

Wil je het heropend hebben, neem comtact op met n van de forum moderatoren.
Voeg de url toe aan je aanvraag.

Heb je een nieuw probleem, start dan een nieuwe topic.

Bovenstaande betreft de originele poster. Anderen beginnen zelf een nieuwe topic.
 
Status
Niet open voor verdere reacties.
Steun Ons

Nieuwste berichten

Terug
Bovenaan