Volledige versie bekijken : Vertraagde pc (ErrorSafe en ?)



kasparh
21 March 2007, 16:11
hallo,

Ben bezig op een PC met heel veel vertraging.
Liep al AVG en Hitman Pro en CCleaner, maar er blijven pop-ups en dergelijke komen.

Kan iemand eens kijken naar dit logje:

Logfile of HijackThis v1.99.1
Scan saved at 15:06:54, on 21/03/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINXP\System32\smss.exe
C:\WINXP\system32\winlogon.exe
C:\WINXP\system32\services.exe
C:\WINXP\system32\lsass.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\System32\svchost.exe
C:\WINXP\system32\spoolsv.exe
C:\WINXP\Explorer.EXE
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINXP\system32\crypserv.exe
C:\WINXP\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Internet Security\pmsnrr.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Nikon\NkView6\NkvMon.exe
C:\WiV-map\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.telenet.be
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Startpagina = file:///C:/Program%20Files/First2Enter/Portal/portal.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\SYSTEM\blank.htm
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINXP\System32\msdxm.ocx
O3 - Toolbar: Protection Bar - {84938242-5C5B-4A55-B6B9-A1507543B418} - C:\Program Files\Internet Security\iesplugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [AQ3HelperStartUp] C:\PROGRA~1\AQUATI~1\AQ3HEL~1.EXE /partner AQ3
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINXP\System32\spool\drivers\w32x86\3\hpztsb09. exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView6\NkvMon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.telenet.be
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {9B4AA442-9EBF-11D5-8C11-0050DA4957F5} - http://www.pornocams.nl/pornofilms.exe
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: C:\WINXP\System32\wmfhotfix.dll
O20 - Winlogon Notify: WRNotifier - C:\WINXP\SYSTEM32\WRLogonNTF.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Crypkey License - Unknown owner - C:\WINXP\SYSTEM32\crypserv.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINXP\System32\spool\drivers\w32x86\3\HPBPRO.EX E
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

Alvast bedankt!

groetjes,

kaspar h

gotenks
22 March 2007, 10:20
Hey kasparh,

ik ga je logje bekijken dus even geduld.
Zodra ik een fix heb, plaats ik deze hier ;)


Gotenks

gotenks
22 March 2007, 20:05
Hey kasparh,

* Ga naar Start => Configuratiescherm => Software en verwijder volgende programma’s, indien aanwezig:


Portal
Switch
Protection Bar
AQ3Helper

* Start Hijackthis => klik op “Do a system scan only” en vink volgende regels aan, indien aanwezig:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Startpagina = file:///C:/Program%20Files/First2Ent...al/portal.html
O3 - Toolbar: Protection Bar - {84938242-5C5B-4A55-B6B9-A1507543B418} - C:\Program Files\Internet Security\iesplugin.dll
O4 - HKLM\..\Run: [AQ3HelperStartUp] C:\PROGRA~1\AQUATI~1\AQ3HEL~1.EXE /partner AQ3
O16 - DPF: {9B4AA442-9EBF-11D5-8C11-0050DA4957F5} - http://www.pornocams.nl/pornofilms.exe

* Sluit nu alle open vensters en browsers, behalve Hijackthis, en klik op "Fix checked".

* Download en installeer AVG Anti-Spyware (http://www.ewido.net/en/download/).
Na de installatie, open AVG Anti-Spyware:
* onder "Status", klik op Change state naast "Resident shield". (wijzig van active naar inactive!)
* onder "Update", klik op de Start update knop.
* onder "Scanner", tab "Settings":- onder "How to act?", klik op "Recommended actions" en selecteer Quarantine. (ZEER BELANGRIJK!)
* onder "Reports", selecteer Automatically generate report after every scan en verwijder het vinkje bij Only if threats were foundSluit AVG Anti-Spyware. Laat het nog niet scannen.* Start je computer op in VEILIGE MODUS (http://users.pandora.be/marcvn/spyware/1378056.htm)

* Verwijder nu volgende mappen, indien aanwezig:


C:\Program Files\First2Enter => deze hele map
C:\Program Files\Internet Security => deze hele map
C:\Program Files\AQ3Helper => deze hele map

* Start AVG Anti-Spyware.* Klik op Scan en kies Complete System Scan.
Na de scan; volg onderstaande instructies :
BELANGRIJK : Klik niet op de "Save Scan Report" knop vooraleer je de "Apply all Actions" knop hebt aangeklikt !
* Draag er zorg voor dat Set all elements to: op Quarantine staat (1),
zoniet klik op de link en kies Quarantine in de popup menu. (2)
(Dit geldt niet voor cookies, deze worden onveranderlijk gedelete !)
* Onderaan het venster klik op de Apply all Actions knop. (3)
http://home.scarlet.be/~topalex/ewidoscan.jpg
* Wanneer je de melding krijgt 'All actions have been applied', klik je onderaan op de knop Save Report.
* Klik in het menu bovenaan op Reports. Kopieer het rapport van de scan en plaats dat hier in je volgende bericht samen met een nieuw Hijackthis logje.

kasparh
15 April 2007, 18:15
Hey Gotenks,

Alvast bedankt.
Het duurde wat langer dan voorzien voor ik weer aan deze pc zat, maar hier komt het avg-logje:

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 17:26:05 15/04/2007
+ Scan result:

HKLM\SYSTEM\CurrentControlSet\Enum\USB\Vid_03f0&Pid_5911&MI_03\5&1a772767&0&0003\Device Parameters -> Adware.BrilliantDigital : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/EGGCEngine.dll -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/EGIEProcess.dll -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/EGNSEngine.dll -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/GMT.exe -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/GatorRes.dll -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/GatorStubSetup.exe -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/egIEEngine.dll -> Adware.Gator : Cleaned with backup (quarantined).
C:\FOUND.023\FILE0001.CHK/gtrawbm.fil -> Adware.Gator : Cleaned with backup (quarantined).
C:\Program Files\Common Files\GMT\gtrawbm.fil -> Adware.Gator : Cleaned with backup (quarantined).
C:\Program Files\Common Files\trsldtco\perpacum\omauocmt.exe -> Adware.Gator : Cleaned with backup (quarantined).
C:\Program Files\Common Files\trsldtco\tfdprprumn\bsasodsae.exe -> Adware.Gator : Cleaned with backup (quarantined).
HKU\S-1-5-21-527237240-1957994488-1708537768-1003\Software\Internet Security -> Adware.Generic : Cleaned with backup (quarantined).
HKU\S-1-5-21-527237240-1957994488-1708537768-1003\Software\Httper -> Adware.Httper : Cleaned with backup (quarantined).
HKU\S-1-5-21-527237240-1957994488-1708537768-1003\Software\Httper\Settings -> Adware.Httper : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\Internet Explorer Security Plugin 2006 -> Adware.IntCodec : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\Internet Security Add-On -> Adware.IntCodec : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\Public Messenger ver 2.03 -> Adware.IntCodec : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\pol icies\AMeOpt -> Adware.InternetOptimizer : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP530\A0207436.exe -> Downloader.Zlob.atl : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0207313.exe -> Downloader.Zlob.atn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP530\A0207435.exe -> Downloader.Zlob.atn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP530\A0207437.dll -> Downloader.Zlob.atn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0206961.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0206970.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0207040.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP532\A0210191.exe -> Downloader.Zlob.bpn : Cleaned with backup (quarantined).
C:\Documents and Settings\Windows XP\Cookies\windows xp@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@abett erinternet[1].txt -> TrackingCookie.Abetterinternet : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@bfast[2].txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@cliks[1].txt -> TrackingCookie.Cliks : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@cpvfeed[3].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@stat.onestat[2].txt -> TrackingCookie.Onestat : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Windows XP\Cookies\windows xp@m.webtrends[2].txt -> TrackingCookie.Webtrends : Cleaned.
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0207052.exe -> Trojan.Dialer.cp : Cleaned with backup (quarantined).
C:\WINXP\SYSTEM32\run_21.exe -> Trojan.Dialer.cp : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{A5FC55DF-E823-43F1-8B04-F6707172D8F7}\RP525\A0206959.dll -> Trojan.Dialer.cs : Cleaned with backup (quarantined).
C:\WINXP\SYSTEM32\web.exe -> Trojan.Dialer.dd : Cleaned with backup (quarantined).

::Report end



En hier het HJT-logje:

Logfile of HijackThis v1.99.1
Scan saved at 18:12:06, on 15/04/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINXP\System32\smss.exe
C:\WINXP\system32\winlogon.exe
C:\WINXP\system32\services.exe
C:\WINXP\system32\lsass.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\System32\svchost.exe
C:\WINXP\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINXP\system32\crypserv.exe
C:\WINXP\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINXP\Explorer.EXE
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Nikon\NkView6\NkvMon.exe
C:\WINXP\system32\NOTEPAD.EXE
C:\WiV-map\hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.telenet.be
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINXP\SYSTEM\blank.htm
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINXP\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINXP\System32\spool\drivers\w32x86\3\hpztsb09. exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView6\NkvMon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.telenet.be
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: C:\WINXP\System32\wmfhotfix.dll
O20 - Winlogon Notify: WRNotifier - C:\WINXP\SYSTEM32\WRLogonNTF.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Crypkey License - Unknown owner - C:\WINXP\SYSTEM32\crypserv.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINXP\System32\spool\drivers\w32x86\3\HPBPRO.EX E
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

Alvast dank om dit verder na te zien.

Groeten,

Kaspar H

gotenks
15 April 2007, 19:18
Hey,

je logje ziet er goed uit nu ;)
Heb je nog enige problemen?

kasparh
15 April 2007, 22:56
Nee, ziet er allemaal goed uit en systeem loopt hééééééééééééééél
wat vlotter.

Nogmaals bedankt! :good:

Kaspar H

gotenks
16 April 2007, 00:20
Geen probleem ;) Hieronder staan nog enkele tips die je kunt volgen om problemen in de toekomst te vermijden:

1. Installeer alvast volgende GRATIS programmatjes indien je ze nog niet hebt:

Spywareblaster: http://www.javacoolsoftware.com/spywareblaster.html
Ad-Aware SE: http://www.majorgeeks.com/download506.html
Spybot: Search & Destroy: http://www.safer-networking.org/en/index.html

2. Tijdens het surfen, klik niet overal klakkeloos op ja als je dit gevraagd wordt... doe dit enkel wanneer je het volledig vertrouwt.
En kies eventueel een alternatieve browser zoals:

Opera: http://www.opera.com/
Firefox: http://www.mozilla.org/products/firefox/

3. En ik raad je ook aan om af en toe een online virusscan uit te voeren. housecall en/of Bitdefender. Want, wat de ene scanner niet kan vinden, kan een andere misschien wel.
Zorg er ook voor dat je virusscanner die op je systeem geïnstalleerd is altijd up to date is

Housecall: http://housecall.trendmicro.com/
BitDefender: http://www.bitdefender.com/scan/licence.php

4. Breng geregeld ook eens een bezoekje aan: http://windowsupdate.microsoft.com/

5. Bekijk ook eens deze 2 filmpjes.. Heel interessant:
http://www2.trosradar.nl/mediaplayer...&mode=dossier#
http://www.benedelman.org/spyware/security-111804.wmv


Meer preventietips zijn ook op volgende sites te vinden:

http://www.bluemedicine.be
http://users.telenet.be/marcvn/spyware
How did I get infected in the first place (article by TonyKlein)
Het voorkomen van spyware-infecties en browserhijacking