Volledige versie bekijken : Infectie rogue + pc traag



Yakumo
8 August 2011, 13:26
Hallo

Ik had infectie van hijack rogue. Ik heb gecleand met mbam & tfc

Hierbij logje van Hijack This & mbam.

Alvast bedankt

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:20:40, on 8/08/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal


Running processes:
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\hijack\Trend Micro\HiJackThis\HiJackThis.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://be.msn.com/default.aspx?lang=nl-be&ocid=OIE9HP
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://be.msn.com/default.aspx?lang=nl-be&ocid=OIE9HP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer wordt aangeboden door MSN and Bing
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\SysWOW64\userinit.exe,
O1 - Hosts: 64.34.212.90 google.com
O1 - Hosts: 64.34.212.90 google.com.au
O1 - Hosts: 64.34.212.90 www.google.com.au (http://www.google.com.au)
O1 - Hosts: 64.34.212.90 google.be
O1 - Hosts: 64.34.212.90 www.google.be (http://www.google.be)
O1 - Hosts: 64.34.212.90 google.com.br
O1 - Hosts: 64.34.212.90 www.google.com.br (http://www.google.com.br)
O1 - Hosts: 64.34.212.90 google.ca
O1 - Hosts: 64.34.212.90 www.google.ca (http://www.google.ca)
O1 - Hosts: 64.34.212.90 google.ch
O1 - Hosts: 64.34.212.90 www.google.ch (http://www.google.ch)
O1 - Hosts: 64.34.212.90 google.de
O1 - Hosts: 64.34.212.90 www.google.de (http://www.google.de)
O1 - Hosts: 64.34.212.90 google.dk
O1 - Hosts: 64.34.212.90 www.google.dk (http://www.google.dk)
O1 - Hosts: 64.34.212.90 google.fr
O1 - Hosts: 64.34.212.90 www.google.fr (http://www.google.fr)
O1 - Hosts: 64.34.212.90 google.ie
O1 - Hosts: 64.34.212.90 www.google.ie (http://www.google.ie)
O1 - Hosts: 64.34.212.90 google.it
O1 - Hosts: 64.34.212.90 www.google.it (http://www.google.it)
O1 - Hosts: 64.34.212.90 google.co.jp
O1 - Hosts: 64.34.212.90 www.google.co.jp (http://www.google.co.jp)
O1 - Hosts: 64.34.212.90 google.nl
O1 - Hosts: 64.34.212.90 www.google.nl (http://www.google.nl)
O1 - Hosts: 64.34.212.90 google.no
O1 - Hosts: 64.34.212.90 www.google.no (http://www.google.no)
O1 - Hosts: 64.34.212.90 google.co.nz
O1 - Hosts: 64.34.212.90 www.google.co.nz (http://www.google.co.nz)
O1 - Hosts: 64.34.212.90 google.pl
O1 - Hosts: 64.34.212.90 www.google.pl (http://www.google.pl)
O1 - Hosts: 64.34.212.90 google.se
O1 - Hosts: 64.34.212.90 www.google.se (http://www.google.se)
O1 - Hosts: 64.34.212.90 google.co.uk
O1 - Hosts: 64.34.212.90 google.co.za
O1 - Hosts: 64.34.212.90 www.google.co.za (http://www.google.co.za)
O1 - Hosts: 64.34.212.90 www.bing.com (http://www.bing.com)
O1 - Hosts: 64.34.212.90 search.yahoo.com
O1 - Hosts: 64.34.212.90 www.search.yahoo.com (http://www.search.yahoo.com)
O1 - Hosts: 64.34.212.90 uk.search.yahoo.com
O1 - Hosts: 64.34.212.90 ca.search.yahoo.com
O1 - Hosts: 64.34.212.90 de.search.yahoo.com
O1 - Hosts: 64.34.212.90 fr.search.yahoo.com
O1 - Hosts: 64.34.212.90 au.search.yahoo.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: Aanmeldhulp voor Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.1 .lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183 CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\j2re1.4.1\bin\npjpi141.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\j2re1.4.1\bin\npjpi141.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)


--
End of file - 10447 bytes


ebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org (http://www.malwarebytes.org)


Databaseversie: 7408


Windows 6.1.7601 Service Pack 1
Internet Explorer 9.0.8112.16421


8/08/2011 13:25:19
mbam-log-2011-08-08 (13-25-19).txt


Scantype: Snelle scan
Objecten gescand: 170714
Verstreken tijd: 3 minuut/minuten, 37 seconde(n)


Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 0
Registerwaarden geïnfecteerd: 0
Registerdata geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 0


Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registersleutels geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registerwaarden geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registerdata geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Mappen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Bestanden geïnfecteerd:

Emphyrio
10 August 2011, 01:33
Hoi en welkom op Minatica,

Voor we beginnen , wil ik even vriendelijk op het volgende wijzen:


Post je probleem niet in verscheidene fora. het komt je probleem niet ten goede en het is niet netjes tegenover de helpers.
Het opruimen van je systeem kan wat tijd in beslag nemen, wees geduldig.
Blijf bij het topic totdat ik gemeldt heb dat je PC clean is.
De instructies die worden gegeven, zijn enkel geldig voor jouw PC.
Als je iets niet weet of verstaat, vraag het dan even aub.
Installeer of deinstalleer géén software of hardware terwijl we met je probleem bezig zijn.
Log enkel in als beheerder met alle rechten.
Zet je emoticons (Smileys) uit als je logs plaatst aub .
De logs niet als bijlage, noch tussen codetags zetten aub.
Ga ondertussen niet wat "anders" proberen, dat maakt het alleen maar moeilijker voor ons.

Opmerking: Indien je Vista of W7 hebt, alle tools steeds uitvoeren als admin.

Stap 1:


Download Hostperm.bat (http://download.bleepingcomputer.com/bats/hostsperm.bat) op je bureaublad.
Dubbelklik erop.
Eens het gestart is, zal een klein zwart venster openen en sluiten.
Dit is normaal.

Download HostsXpert (http://www.funkytoad.com/download/HostsXpert.zip ).
Unzip het programma.
Start het en klik op "Restore Microsoft Host file".
Klik op "OK" en sluit het programma af.


Stap 2:

Download DDS.com, DDS.scr of DDS.pif van één van deze locaties en plaats het op je bureaublad:

DDS - Techsupport download (http://www.techsupportforum.com/sectools/sUBs/dds).
DDS - Bleeping download (http://download.bleepingcomputer.com/sUBs/dds.scr).
DDS - Forospyware Download (http://www.forospyware.com/sUBs/dds).

DDS is een diagnosetool en maakt gebruik van scripts.
Is het uitvoeren van scripts uitgeschakeld, dan schakel je dit weer in zodat er geen problemen optreden bij gebruik van DDS.

Dubbelklik op DDS om de tool te starten. (afhankelijk van de download die je gekozen hebt kan dit het bestand DDS.com, DDS.scr of DDS.pif zijn)
Wanneer het klaar is openen er twee logfiles: DDS.txt en Attach.txt
Beide logfiles sla je op je bureaublad.

Post de inhoud van DDS.txt.

De inhoud Attach.txt moet je niet posten en Attach.txt moet je niet als bijlage toevoegen aan je post, tenzij ik er om vraag.


__________________________________________________ _________


In je volgende posting, had ik graag de volgende logs gezien,
gemaakt in de opgestelde volgorde:


MBAM
DDS

Emphyrio :)

Yakumo
10 August 2011, 11:00
Ok, ik heb alles uitgevoerd

Hierbij het logje van dds en daaronder MBAM

.
DDS (Ver_2011-06-23.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_22
Run by user at 10:45:44 on 2011-08-10
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.32.1043.18.2038.574 [GMT 2:00]
.
AV: Lavasoft Ad-Watch Live! Anti-Virus *Enabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
AV: AVG Internet Security 2011 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Internet Security 2011 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Lavasoft Ad-Watch Live! *Enabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
.
============== Running Processes ===============
.
C:\PROGRA~2\AVG\AVG10\avgchsva.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\AVG\AVG10\avgfws.exe
C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\AVG\AVG10\avgam.exe
C:\Program Files (x86)\AVG\AVG10\avgnsa.exe
C:\Program Files (x86)\AVG\AVG10\avgemca.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\PROGRA~2\AVG\AVG10\avgrsa.exe
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\prevhost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uWindow Title = Windows Internet Explorer wordt aangeboden door MSN and Bing
mWinlogon: Userinit=C:\Windows\SysWOW64\userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
BHO: Aanmeldhulp voor Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
StartupFolder: C:\Users\user\AppData\Roaming\MICROS~1\Windows\STA RTM~1\Programs\Startup\OPENOF~1.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
StartupFolder: C:\Users\user\AppData\Roaming\MICROS~1\Windows\STA RTM~1\Programs\Startup\OPENOF~2.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
uPolicies-explorer: DisallowRun = 1 (0x1)
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorUser = 2 (0x2)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183 CA64F05FDD98.dll/cmsidewiki.html
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - hxxp://www.nick.com/common/groove/gx/GrooveAX27.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game.zylom.com/activex/zylomgamesplayer.cab
DPF: {CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - hxxp://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 195.130.130.1 195.130.131.1
TCP: Interfaces\{2C258BA3-8870-4A3E-A9EA-AAA028B7AF68} : DhcpNameServer = 195.130.130.1 195.130.131.1
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
IFEO: image file execution options - svchost.exe
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{DBC80044-A445-435b-BC74-9C25C1C588A9}
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
IFEO-X64: image file execution options - svchost.exe
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Prof iles\lf4ibt5t.default\
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\j2re1.4.1\bin\NPJPI141.dll
FF - plugin: C:\Program Files (x86)\Virtools\3D Life Player\npvirtools.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSEH;AVGIDSEH;C:\Windows\system32\DRIVERS\AVGI DSEH.Sys --> C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [?]
R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\system32\DRIVERS\avgrkx64.sys --> C:\Windows\system32\DRIVERS\avgrkx64.sys [?]
R0 Lbd;Lbd;C:\Windows\system32\DRIVERS\Lbd.sys --> C:\Windows\system32\DRIVERS\Lbd.sys [?]
R1 Avgfwfd;AVG network filter service;C:\Windows\system32\DRIVERS\avgfwd6a.sys --> C:\Windows\system32\DRIVERS\avgfwd6a.sys [?]
R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\system32\DRIVERS\avgldx64.sys --> C:\Windows\system32\DRIVERS\avgldx64.sys [?]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\system32\DRIVERS\avgmfx64.sys --> C:\Windows\system32\DRIVERS\avgmfx64.sys [?]
R1 Avgtdia;AVG TDI Driver;C:\Windows\system32\DRIVERS\avgtdia.sys --> C:\Windows\system32\DRIVERS\avgtdia.sys [?]
R2 avgfws;AVG Firewall;C:\Program Files (x86)\AVG\AVG10\avgfws.exe [2011-3-9 2708024]
R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-4-18 7398752]
R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-2-8 269520]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-7-21 2151640]
R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\system32\DRIV ERS\AVGIDSDriver.Sys --> C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [?]
R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\system32\DRIV ERS\AVGIDSFilter.Sys --> C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [?]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys [2011-8-8 17152]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\ v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework6 4\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Updateservice (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2009-12-31 135664]
S3 gupdatem;Google Update-service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2009-12-31 135664]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsus bflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-08-09 10:03:16 472808 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
2011-08-09 10:03:15 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-08-09 07:28:16 -------- d-----w- C:\Users\user\AppData\Local\{01B14660-E09F-4C5C-BA88-ECE746E7BEDC}
2011-08-09 07:28:14 -------- d-----w- C:\Users\user\AppData\Local\{8EDE5D60-A6A2-459A-B305-EF34978FD3D9}
2011-08-08 11:15:39 18328 ----a-w- C:\ProgramData\Microsoft\IdentityCRL\production\pp crlconfig600.dll
2011-08-08 11:09:03 6260088 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\94e2d5d91cc55bb01\Silverlight.4.0.exe
2011-08-08 11:07:25 -------- d-----w- C:\Users\user\AppData\Local\{6D8B3AC2-3034-4308-BAF1-6B39ECFACC8D}
2011-08-08 11:07:21 -------- d-----w- C:\Users\user\AppData\Local\{AA6A35A0-64A3-473D-B917-90B61B30B571}
2011-08-08 10:43:01 -------- d-----w- C:\Program Files\CCleaner
2011-08-08 10:16:10 -------- d--h--w- C:\$AVG
2011-08-08 10:06:40 69376 ----a-w- C:\Windows\System32\drivers\Lbd.sys
2011-08-08 10:06:36 -------- d-----w- C:\Program Files (x86)\Lavasoft
2011-08-08 10:00:36 388096 ----a-r- C:\Users\user\AppData\Roaming\Microsoft\Installer\ {45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-08-08 10:00:36 -------- d-----w- C:\hijack
2011-08-08 09:42:04 -------- d-----w- C:\Users\user\AppData\Roaming\AVG10
2011-08-08 09:18:20 -------- d-----w- C:\Users\user\AppData\Local\{027CD202-EE42-4ACE-A555-26074455C559}
2011-08-08 09:18:19 -------- d-----w- C:\Users\user\AppData\Local\{C1360FCE-C60A-438A-9888-42985A9F4F4D}
2011-08-08 09:09:21 -------- d-----w- C:\Users\user\AppData\Roaming\Malwarebytes
2011-08-08 09:05:25 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-08-08 09:05:25 -------- d-----w- C:\ProgramData\Malwarebytes
2011-08-08 09:05:22 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-08-08 09:05:22 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-08-08 08:56:24 -------- d-----w- C:\Users\user\AppData\Local\{22B7796E-6AEC-4EE7-9E1D-5345EACC7E96}
2011-08-08 08:53:22 -------- d-----w- C:\Users\user\AppData\Local\{A091EF66-C613-4636-81CB-56E7FD2B3C38}
2011-08-08 08:42:45 -------- d-----w- C:\Users\user\AppData\Local\{C9860079-545D-4872-BA7C-B3B192F1C952}
2011-08-07 07:18:55 -------- d-----w- C:\Users\user\AppData\Local\{2498A200-B6E1-4D0A-A060-6CF5C5F48909}
2011-08-07 07:18:54 -------- d-----w- C:\Users\user\AppData\Local\{E0599381-8FD9-4A48-98F1-B31863501CF3}
2011-08-06 07:55:23 -------- d-----w- C:\Users\user\AppData\Local\{A4C34563-906C-46FD-85AD-3D635A1983E8}
2011-08-06 07:55:22 -------- d-----w- C:\Users\user\AppData\Local\{F2C7E12B-8D95-4ACD-9CEC-8BD66D6CD80A}
2011-08-05 22:26:59 -------- d-----w- C:\Users\user\AppData\Local\{21E7431B-7DFE-4ED0-80E9-A524E2AE7CDC}
2011-08-05 22:26:56 -------- d-----w- C:\Users\user\AppData\Local\{64B8015D-795F-408E-A6D3-6D10A28B2B3A}
2011-08-05 07:17:14 8578896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4EDD9AF1-3D2E-406F-80E0-FFEB96F25400}\mpengine.dll
2011-08-05 07:12:57 -------- d-----w- C:\Users\user\AppData\Local\{15EC9F24-9895-41C4-B45F-EABEE3425E03}
2011-08-04 11:29:54 -------- d-----w- C:\Users\user\AppData\Local\{36D43BF7-1FA3-450F-9FBF-85F4341D33FA}
2011-08-03 22:12:16 -------- d-----w- C:\Users\user\AppData\Local\{2FC1A3F2-D028-4BFC-A6A9-C66DF3B091A9}
2011-08-03 09:20:54 -------- d-----w- C:\Users\user\AppData\Local\{AFB145E8-A764-48F3-8435-3EB70698ECDB}
2011-07-31 10:11:55 -------- d-----w- C:\Users\user\AppData\Local\{6C38F4A3-E402-451D-BEEE-14B1A01A824F}
2011-07-30 10:26:38 -------- d-----w- C:\Users\user\AppData\Local\{6AAA25A4-BC97-4A2F-92BF-637203981A46}
2011-07-29 10:25:58 -------- d-----w- C:\Users\user\AppData\Local\{FB2E91E8-E705-4528-B10D-4AA1BD7748B2}
2011-07-28 07:06:08 -------- d-----w- C:\Users\user\AppData\Local\{54DB6972-DA15-461B-8768-222ECA5ECDC2}
2011-07-27 19:05:42 -------- d-----w- C:\Users\user\AppData\Local\{FAFB8192-246E-4F05-8C3F-99C212AD6CDA}
2011-07-27 07:11:21 -------- d-----w- C:\Windows\System32\SPReview
2011-07-27 07:10:12 -------- d-----w- C:\Windows\System32\EventProviders
2011-07-27 07:05:27 -------- d-----w- C:\Users\user\AppData\Local\{2A5994CB-7266-4CF5-BA10-05F336DDF5BD}
2011-07-26 11:48:09 -------- d-----w- C:\Users\user\AppData\Local\{4AFECA7E-8584-4CA8-91A7-8F1D5CD7EF12}
2011-07-25 07:58:06 -------- d-----w- C:\Users\user\AppData\Local\{0501E3E0-1591-4950-8570-F8248F918A76}
2011-07-25 04:22:59 -------- d-----w- C:\Users\user\AppData\Local\{D005D843-F23C-491C-A85D-9FAB5A730661}
2011-07-23 10:28:02 -------- d-----w- C:\Users\user\AppData\Local\{7ABA84FA-577D-46BA-9444-E8E3F3A2CABD}
2011-07-22 20:53:36 -------- d-----w- C:\Users\user\AppData\Local\{299682B3-6580-4979-B2CC-936307C034FB}
2011-07-22 07:55:32 -------- d-----w- C:\Users\user\AppData\Local\{6C185711-C7E2-4384-92F3-B037E2259EF9}
2011-07-21 17:11:11 -------- d-----w- C:\Users\user\AppData\Local\{56EE6D13-2D57-41DE-A61C-70B6AA5BE4CB}
2011-07-21 04:55:45 -------- d-----w- C:\Users\user\AppData\Local\{86BF3EA0-1E4E-4CA7-833A-594A28B893F2}
2011-07-20 09:12:19 -------- d-----w- C:\Users\user\AppData\Local\{49897BB1-B05C-4F18-B079-41BCBE65117F}
2011-07-19 09:02:03 -------- d-----w- C:\Users\user\AppData\Local\{A9AA5566-1044-484B-9E9C-F808F8799CB4}
2011-07-17 06:55:56 -------- d-----w- C:\Users\user\AppData\Local\{15A18317-5B9C-47AC-9055-EBDE4F9FF3B8}
2011-07-16 08:57:26 -------- d-----w- C:\Users\user\AppData\Local\{B7F29B9F-5743-48D1-BF4D-46E8802972A3}
2011-07-14 09:50:59 -------- d-----w- C:\Users\user\AppData\Local\{873E62F0-BC9D-4EEB-A641-F98EDF4AFED2}
2011-07-13 09:50:12 -------- d-----w- C:\Users\user\AppData\Local\{9CC7838A-6C4D-4670-BD80-E2F8518DBFDF}
2011-07-12 06:58:00 -------- d-----w- C:\Users\user\AppData\Local\{B9D6C520-0852-41A5-9ACC-6EEF2BD56A64}
2011-07-11 18:57:33 -------- d-----w- C:\Users\user\AppData\Local\{138D9AA0-EFE9-4F3E-8F86-18BA3FC0A879}
.
==================== Find3M ====================
.
2011-07-27 07:22:23 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-07-27 07:22:22 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-06-30 09:16:58 55384 ----a-w- C:\Windows\System32\drivers\SBREDrv.sys
2011-06-18 07:48:43 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-11 03:07:25 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-06-03 06:57:45 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-06-03 06:57:45 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-06-03 06:57:45 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-06-03 06:57:44 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-06-03 06:57:38 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-06-03 06:56:38 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-06-03 06:53:33 338944 ----a-w- C:\Windows\System32\conhost.exe
2011-06-03 06:00:53 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-06-03 05:57:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-06-03 05:57:33 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-06-03 05:56:12 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-06-03 05:56:11 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-06-03 03:53:31 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-06-03 03:53:31 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-06-03 03:48:32 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-06-03 03:48:31 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-06-03 03:48:31 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-06-03 03:48:31 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-05-24 17:14:10 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-05-13 14:03:34 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll
.
============= FINISH: 10:46:54,15 ===============


MBAM
Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org


Databaseversie: 7415


Windows 6.1.7601 Service Pack 1
Internet Explorer 9.0.8112.16421


10/08/2011 10:59:33
mbam-log-2011-08-10 (10-59-33).txt


Scantype: Snelle scan
Objecten gescand: 171295
Verstreken tijd: 3 minuut/minuten, 13 seconde(n)


Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 0
Registerwaarden geïnfecteerd: 0
Registerdata geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 0


Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registersleutels geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registerwaarden geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Registerdata geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Mappen geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)


Bestanden geïnfecteerd:
(Geen kwaadaardige objecten gedetecteerd)

Emphyrio
10 August 2011, 12:26
Zijn er nog problemen nu ?

Yakumo
10 August 2011, 13:27
Ik ondervind verder geen problemen meer.

Emphyrio
11 August 2011, 11:45
Prima :good:

Download of Update Ccleaner (http://www.piriform.com/ccleaner/download/slim)

Start CCleaner op.

Run Ccleaner en klik in de linkse kolom op Opties
Selecteer het tabblad Geavanceerd
Haal het vinkje weg voor Verwijder alleen bestanden in Windows Temp-systeemmap die ouder zijn dan 24 uur
Selecteer het tabblad Instellingen
Haal het vinkje weg bij "Computer automatisch schoonmaken...."
Klik in de linkse kolom op Cleaner.
Klik dan achtereenvolgens op Analyseer en Schoonmaken.
Klik vervolgens in de linkse kolom op Register
Klik op Scan naar problemen.
Als er fouten gevonden worden klik je op Herstel geselecteerde problemen en OK




1) Je mag alle losse bestanden en tools die we hebben gebruikt verwijderen.

2) Om herbesmetting te vermijden, kan je deze tips eens nalezen:

Het voorkomen van spyware-infecties en browserhijacking (http://www.nucia.eu/forum/showthread.php?t=55) en Hoe voorkom ik een nieuwe infectie? (http://users.telenet.be/marcvn/spyware/1564073.htm)

3) Om je PC een snelle onderhoudbeurt te geven, kan je deze tips eens lezen: Handleiding voor een schone PC (http://www.nucia.eu/forum/showthread.php?t=34281)

4) Allerlei tips en hints (http://www.emphyrio.be/index.html) kan je hier raadplegen.


Emphyrio :)