Ga naar inhoud
  • 0

Configuratiescherm software kapot na spyware


Anoniem2

Vraag

Hoi,\r\n\r\nHet onderdeel software heeft in de lijst een hele rare gekleurde balken blauw zwart en wit ertussen staan. Dit neemt ong 3 kwart van de lijst in. De Spyware heb ik eraf gehaalt met Spybot Search and Destroy maar er zit nog steeds wat troep op want ik krijg extra witte schermen als ik Internet Explorer open, iemand die even kan helpen :D\r\n\r\nJim
Link naar reactie

Aanbevolen berichten

  • 0
Meeste is eraf alleen nog software en er komt nog een leeg venstertje als ik IE open maar voor 1x.\r\nHier logfile:\r\n\r\nLogfile of Trend Micro HijackThis v2.0.2\r\nScan saved at 22:04:17, on 13-10-2007\r\nPlatform: Windows XP SP2 (WinNT 5.01.2600)\r\nMSIE: Internet Explorer v7.00 (7.00.6000.16544)\r\nBoot mode: Normal\r\n\r\nRunning processes:\r\nC:\\WINDOWS\\System32\\smss.exe\r\nC:\\WINDOWS\\system32\\winlogon.exe\r\nC:\\WINDOWS\\system32\\services.exe\r\nC:\\WINDOWS\\system32\\lsass.exe\r\nC:\\WINDOWS\\system32\\Ati2evxx.exe\r\nC:\\WINDOWS\\system32\\svchost.exe\r\nC:\\WINDOWS\\System32\\svchost.exe\r\nC:\\Program Files\\Common Files\\Symantec Shared\\ccSetMgr.exe\r\nC:\\Program Files\\Common Files\\Symantec Shared\\ccEvtMgr.exe\r\nC:\\WINDOWS\\system32\\spoolsv.exe\r\nC:\\WINDOWS\\system32\\Ati2evxx.exe\r\nC:\\WINDOWS\\Explorer.EXE\r\nC:\\WINDOWS\\SOUNDMAN.EXE\r\nC:\\WINDOWS\\ALCWZRD.EXE\r\nC:\\Program Files\\Symantec AntiVirus\\DefWatch.exe\r\nC:\\WINDOWS\\ALCMTR.EXE\r\nC:\\WINDOWS\\system32\\carpserv.exe\r\nC:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe\r\nC:\\Program Files\\CA\\SharedComponents\\CA_LIC\\LogWatNT.exe\r\nC:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\r\nC:\\Program Files\\Eset\\nod32krn.exe\r\nC:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\r\nC:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\r\nC:\\WINDOWS\\system32\\svchost.exe\r\nC:\\PROGRA~1\\SYMANT~1\\VPTray.exe\r\nC:\\Program Files\\iTunes\\iTunesHelper.exe\r\nC:\\Program Files\\Symantec AntiVirus\\Rtvscan.exe\r\nC:\\Program Files\\QuickTime\\qttask.exe\r\nC:\\Program Files\\ATI Multimedia\\main\\launchpd.exe\r\nC:\\Program Files\\ATI Multimedia\\main\\ATIDtct.EXE\r\nC:\\Program Files\\ATI Multimedia\\RemCtrl\\ATIRW.exe\r\nC:\\Program Files\\Messenger\\msmsgs.exe\r\nC:\\WINDOWS\\system32\\ctfmon.exe\r\nC:\\WINDOWS\\system32\\rundll32.exe\r\nC:\\Program Files\\MSN Messenger\\msnmsgr.exe\r\nC:\\Program Files\\iPod\\bin\\iPodService.exe\r\nC:\\WINDOWS\\system32\\wuauclt.exe\r\nC:\\Program Files\\Internet Explorer\\iexplore.exe\r\nC:\\WINDOWS\\system32\\rundll32.exe\r\nC:\\Program Files\\Internet Explorer\\iexplore.exe\r\nC:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WLLoginProxy.exe\r\nC:\\Program Files\\PeDevice\\PeDev.exe\r\nC:\\Program Files\\Trend Micro\\HijackThis\\HijackThis.exe\r\n\r\nR0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = [url]http://www.google.nl/[/url]\r\nR1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = [url]http://go.microsoft.com/fwlink/?LinkId=69157[/url]\r\nR1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url]\r\nR1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url]\r\nR0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = [url]http://go.microsoft.com/fwlink/?LinkId=69157[/url]\r\nR0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = Koppelingen\r\nO2 - BHO: (no name) - {308C2316-B0D2-C427-F540-E82B2E978F9D} - C:\\WINDOWS\\system32\\ckpktnsw.dll\r\nO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\\PROGRA~1\\SPYBOT~1\\SDHelper.dll\r\nO2 - BHO: (no name) - {696210AA-D566-FD92-491B-8D8DCB25859F} - (no file)\r\nO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll\r\nO2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)\r\nO2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll\r\nO2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)\r\nO2 - BHO: (no name) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - (no file)\r\nO2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\\Program Files\\Windows Live Toolbar\\msntb.dll\r\nO2 - BHO: PEDEV_IEListener Class - {E1412445-4FF8-410e-8D24-F2CF86B171A4} - C:\\Program Files\\PeDevice\\PeDev.dll\r\nO3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\\Program Files\\Windows Live Toolbar\\msntb.dll\r\nO3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)\r\nO4 - HKLM\\..\\Run: [Snelkoppeling naar eigenschappenvenster voor High Definition Audio] HDAudPropShortcut.exe\r\nO4 - HKLM\\..\\Run: [SoundMan] SOUNDMAN.EXE\r\nO4 - HKLM\\..\\Run: [AlcWzrd] ALCWZRD.EXE\r\nO4 - HKLM\\..\\Run: [Alcmtr] ALCMTR.EXE\r\nO4 - HKLM\\..\\Run: [CARPService] carpserv.exe\r\nO4 - HKLM\\..\\Run: [ATIPTA] C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe\r\nO4 - HKLM\\..\\Run: [PinnacleDriverCheck] C:\\WINDOWS\\system32\\PSDrvCheck.exe -CheckReg\r\nO4 - HKLM\\..\\Run: [NeroFilterCheck] C:\\WINDOWS\\system32\\NeroCheck.exe\r\nO4 - HKLM\\..\\Run: [MessengerPlus3] \"C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\"\r\nO4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"\r\nO4 - HKLM\\..\\Run: [ccApp] \"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\"\r\nO4 - HKLM\\..\\Run: [vptray] C:\\PROGRA~1\\SYMANT~1\\VPTray.exe\r\nO4 - HKLM\\..\\Run: [iTunesHelper] \"C:\\Program Files\\iTunes\\iTunesHelper.exe\"\r\nO4 - HKLM\\..\\Run: [QuickTime Task] \"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime\r\nO4 - HKLM\\..\\Run: [{F88156D0-0C8B-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C8B-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\r\nO4 - HKLM\\..\\Run: [{F88156D0-0C80-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C80-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\r\nO4 - HKCU\\..\\Run: [ATI Launchpad] \"C:\\Program Files\\ATI Multimedia\\main\\launchpd.exe\"\r\nO4 - HKCU\\..\\Run: [ATI DeviceDetect] C:\\Program Files\\ATI Multimedia\\main\\ATIDtct.EXE\r\nO4 - HKCU\\..\\Run: [ATI Remote Control] C:\\Program Files\\ATI Multimedia\\RemCtrl\\ATIRW.exe\r\nO4 - HKCU\\..\\Run: [MSMSGS] \"C:\\Program Files\\Messenger\\msmsgs.exe\" /background\r\nO4 - HKCU\\..\\Run: [MessengerPlus3] \"C:\\Program Files\\MessengerPlus! 3\\MsgPlus.exe\" /WinStart\r\nO4 - HKCU\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\ctfmon.exe\r\nO4 - HKCU\\..\\Run: [msnmsgr] \"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background\r\nO4 - HKUS\\S-1-5-19\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\CTFMON.EXE (User \'Lokale service\')\r\nO4 - HKUS\\S-1-5-20\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\CTFMON.EXE (User \'Netwerkservice\')\r\nO4 - HKUS\\S-1-5-18\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\CTFMON.EXE (User \'SYSTEM\')\r\nO4 - HKUS\\.DEFAULT\\..\\Run: [CTFMON.EXE] C:\\WINDOWS\\system32\\CTFMON.EXE (User \'Default user\')\r\nO8 - Extra context menu item: &Windows Live Search - res://C:\\Program Files\\Windows Live Toolbar\\msntb.dll/search.htm\r\nO8 - Extra context menu item: Add to Windows &Live Favorites - [url]http://favorites.live.com/quickadd.aspx[/url]\r\nO8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\\PROGRA~1\\MICROS~4\\OFFICE11\\EXCEL.EXE/3000\r\nO8 - Extra context menu item: Openen in een nieuwe achtergrondtab - res://C:\\Program Files\\Windows Live Toolbar\\Components\\nl-nl\\msntabres.dll.mui/229?9e3b031891ea454592e95dc3a42fe750\r\nO8 - Extra context menu item: Openen in een nieuwe voorgrondtab - res://C:\\Program Files\\Windows Live Toolbar\\Components\\nl-nl\\msntabres.dll.mui/230?9e3b031891ea454592e95dc3a42fe750\r\nO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll\r\nO9 - Extra \'Tools\' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll\r\nO9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\\PROGRA~1\\SPYWAR~2\\tools\\iesdpb.dll\r\nO9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\\Program Files\\ATI Multimedia\\tv\\EXPLBAR.DLL\r\nO9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~1\\MICROS~4\\OFFICE11\\REFIEBAR.DLL
Link naar reactie
  • 0
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\\Program Files\\Common Files\\Microsoft Shared\\Encarta Search Bar\\ENCSBAR.DLL\r\nO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\\PROGRA~1\\SPYBOT~1\\SDHelper.dll\r\nO9 - Extra \'Tools\' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\\PROGRA~1\\SPYBOT~1\\SDHelper.dll\r\nO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe\r\nO9 - Extra \'Tools\' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe\r\nO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\\Program Files\\Messenger\\msmsgs.exe\r\nO9 - Extra \'Tools\' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\\Program Files\\Messenger\\msmsgs.exe\r\nO10 - Unknown file in Winsock LSP: c:\\windows\\system32\\nwprovau.dll\r\nO14 - IERESET.INF: START_PAGE_URL=http://www.targa.co.uk\r\nO16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - [url]http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab[/url]\r\nO16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - [url]http://www.eset.eu/buxus/docs/OnlineScanner.cab[/url]\r\nO16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]\r\nO23 - Service: Ati HotKey Poller - Unknown owner - C:\\WINDOWS\\system32\\Ati2evxx.exe\r\nO23 - Service: ATI Smart - Unknown owner - C:\\WINDOWS\\system32\\ati2sgag.exe\r\nO23 - Service: CA License Client (CA_LIC_CLNT) - Computer Associates - C:\\Program Files\\CA\\SharedComponents\\CA_LIC\\lic98rmt.exe\r\nO23 - Service: CA License Server (CA_LIC_SRVR) - Computer Associates - C:\\Program Files\\CA\\SharedComponents\\CA_LIC\\lic98rmtd.exe\r\nO23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\\Program Files\\Common Files\\Symantec Shared\\ccEvtMgr.exe\r\nO23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\\Program Files\\Common Files\\Symantec Shared\\ccPwdSvc.exe\r\nO23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\\Program Files\\Common Files\\Symantec Shared\\ccSetMgr.exe\r\nO23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\\Program Files\\Symantec AntiVirus\\DefWatch.exe\r\nO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\\Program Files\\Common Files\\InstallShield\\Driver\\11\\Intel 32\\IDriverT.exe\r\nO23 - Service: iPodService - Apple Computer, Inc. - C:\\Program Files\\iPod\\bin\\iPodService.exe\r\nO23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\\Program Files\\CA\\SharedComponents\\CA_LIC\\LogWatNT.exe\r\nO23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\\Program Files\\Eset\\nod32krn.exe\r\nO23 - Service: SAVRoam (SavRoam) - symantec - C:\\Program Files\\Symantec AntiVirus\\SavRoam.exe\r\nO23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\\Program Files\\Spyware Doctor\\sdhelp.exe\r\nO23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\\Program Files\\Common Files\\Symantec Shared\\SNDSrvc.exe\r\nO23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\\Program Files\\Webroot\\Spy Sweeper\\WRSSSDK.exe\r\nO23 - Service: Symantec AntiVirus - Symantec Corporation - C:\\Program Files\\Symantec AntiVirus\\Rtvscan.exe\r\nO23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\\PROGRA~1\\ATIMUL~1\\RemCtrl\\x10nets.exe (file missing)\r\nO24 - Desktop Component 1: Een moment geduld a.u.b. - [url]http://www.tiscali.nl/content/clicks/clickout.asp?id=236[/url]\r\n\r\n--\r\nEnd of file - 11248 bytes\r\n\r\nZover ik kan zien zit er wel wat troep doorheen zoals een NOD32 die niet draait :p
Link naar reactie
  • 0
Foute boel;\n \nO2 - BHO: (no name) - {308C2316-B0D2-C427-F540-E82B2E978F9D} - C:\\WINDOWS\\system32\\ckpktnsw.dll\n \nO2 - BHO: PEDEV_IEListener Class - {E1412445-4FF8-410e-8D24-F2CF86B171A4} - C:\\Program Files\\PeDevice\\PeDev.dll\n \nO4 - HKLM\\..\\Run: [{F88156D0-0C8B-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C8B-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\nO4 - HKLM\\..\\Run: [{F88156D0-0C80-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C80-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\n \n \n \n \n \nControleer het bestand C:\\Program Files\\PeDevice\\PeDev.exe eens op [URL=\"http://www.virustotal.com\"]www.virustotal.com[/URL]
Link naar reactie
  • 0
[FONT=Verdana][COLOR=#000000]Download [URL=\"http://download.bleepingcomputer.com/sUBs/ComboFix.exe\"]Combofix[/URL] naar je Bureaublad[/COLOR][/FONT]\n[FONT=Verdana][/FONT]\n[FONT=Verdana][COLOR=#000000]Dubbelklik op Combofix.exe [/COLOR][/FONT]\n[FONT=Verdana][COLOR=#000000]Volg de instructies, aanvaard de disclaimer door \"1\" (continue) te typen. [/COLOR][/FONT]\n[FONT=Verdana][COLOR=#000000]Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.[/COLOR][/FONT]\n[FONT=Verdana][/FONT]\n[FONT=Verdana][COLOR=#000000]Wanneer de fix voltooid is en na herstart, zal de log combofix.txt openen. [/COLOR][/FONT]\n[FONT=Verdana][COLOR=#000000]Plaats deze log in je volgende post.[/COLOR][/FONT]
Link naar reactie
  • 0
[QUOTE=ctrlaltdelete;348028]Foute boel;\r\n \r\nO2 - BHO: (no name) - {308C2316-B0D2-C427-F540-E82B2E978F9D} - C:\\WINDOWS\\system32\\ckpktnsw.dll\r\n \r\nO2 - BHO: PEDEV_IEListener Class - {E1412445-4FF8-410e-8D24-F2CF86B171A4} - C:\\Program Files\\PeDevice\\PeDev.dll\r\n \r\nO4 - HKLM\\..\\Run: [{F88156D0-0C8B-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C8B-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\r\nO4 - HKLM\\..\\Run: [{F88156D0-0C80-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C80-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\r\n \r\n \r\n \r\n \r\n \r\nControleer het bestand C:\\Program Files\\PeDevice\\PeDev.exe eens op [URL=\"http://www.virustotal.com\"]www.virustotal.com[/URL][/QUOTE]\r\n\r\nYup die had ik zelf ook al gespot was Adware is er nu af ;)
Link naar reactie
  • 0
[QUOTE=Argus;348048][FONT=Verdana][COLOR=#000000]Download [URL=\"http://download.bleepingcomputer.com/sUBs/ComboFix.exe\"]Combofix[/URL] naar je Bureaublad[/COLOR][/FONT]\r\n\r\n[FONT=Verdana][COLOR=#000000]Dubbelklik op Combofix.exe [/COLOR][/FONT]\r\n[FONT=Verdana][COLOR=#000000]Volg de instructies, aanvaard de disclaimer door \"1\" (continue) te typen. [/COLOR][/FONT]\r\n[FONT=Verdana][COLOR=#000000]Tijdens het runnen van de fix, NIET in het venster klikken, want dit zal je pc doen vasthangen.[/COLOR][/FONT]\r\n\r\n[FONT=Verdana][COLOR=#000000]Wanneer de fix voltooid is en na herstart, zal de log combofix.txt openen. [/COLOR][/FONT]\r\n[FONT=Verdana][COLOR=#000000]Plaats deze log in je volgende post.[/COLOR][/FONT][/QUOTE]\r\n\r\nKomt voor elkaar :D
Link naar reactie
  • 0
Naast Symantec Antivirus staat er ook nog eTrust van CA op de pc\nAls je Ca eTrust niet via Software kunt verwijderen probeer het dan met [URL=\"http://download.microsoft.com/download/e/9/d/e9d80355-7ab4-45b8-80e8-983a48d5e1bd/msicuu2.exe\"]CleanUp van Microsoft[/URL]\nOok voor NOD32 is er een [URL=\"http://www.hitmanpro.nl/nod32removal.exe\"]Remove Tool [/URL]als het niet via Software wil
Link naar reactie
  • 0
[COLOR=black][FONT=Verdana]Verwijder van [/FONT][/COLOR][COLOR=black][FONT=Verdana]C:\\[B]qoobox[/B]\\[/FONT][/COLOR][B][COLOR=black][FONT=Verdana]Prullenbak leegmaken [/FONT][/COLOR][/B][COLOR=black][/COLOR]\n[COLOR=black][FONT=Verdana][FONT=\'Courier New\']Verwijder tevens C:\\WINDOWS\\Tasks\\[B]AE37476F9180F867.job[/B][/FONT] [/FONT][/COLOR]\n[COLOR=black][/COLOR] \n[COLOR=black][FONT=Verdana][COLOR=black][FONT=Arial]Sluit alle open vensters.\nStart HijackThis nog een keer en plaats een vinkje bij de volgende items:[/FONT][/COLOR]\n[COLOR=black][/COLOR]\n[COLOR=#333333][FONT=Arial]O2 - BHO: (no name) - {308C2316-B0D2-C427-F540-E82B2E978F9D} - C:\\WINDOWS\\system32\\ckpktnsw.dll[/FONT][/COLOR]\n[COLOR=#333333][FONT=Arial]O2 - BHO: (no name) - {696210AA-D566-FD92-491B-8D8DCB25859F} - (no file)[/FONT][/COLOR]\n[COLOR=#333333][FONT=Arial]O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)[/FONT][/COLOR]\n[COLOR=#333333][FONT=Arial]O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)\nO2 - BHO: (no name) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - (no file)[/FONT][/COLOR]\n[COLOR=#333333][FONT=Arial]O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)[/FONT][/COLOR]\n[COLOR=#333333][FONT=Arial]O4 - HKLM\\..\\Run: [{F88156D0-0C8B-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C8B-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411\nO4 - HKLM\\..\\Run: [{F88156D0-0C80-1043-1005-04040915001f}] \"C:\\Program Files\\Common Files\\{F88156D0-0C80-1043-1005-04040915001f}\\Update.exe\" mc-110-12-0001411[/FONT][/COLOR]\n[COLOR=black][/COLOR]\n[COLOR=black][FONT=Arial]Klik daarna op \"Fix checked\" en sluit HijackThis af[/FONT][/COLOR]\n \nPost een nieuw log van HJ\n[/FONT][/COLOR] \n[COLOR=black][/COLOR] \n[COLOR=black][/COLOR]
Link naar reactie

Om een reactie te plaatsen, moet je eerst inloggen

Gast
Antwoord op deze vraag...

×   Geplakt als verrijkte tekst.   Herstel opmaak

  Er zijn maximaal 75 emoji toegestaan.

×   Je link werd automatisch ingevoegd.   Tonen als normale link

×   Je vorige inhoud werd hersteld.   Leeg de tekstverwerker

×   Je kunt afbeeldingen niet direct plakken. Upload of voeg afbeeldingen vanaf een URL in

  • Populaire leden

    Er is nog niemand die deze week reputatie heeft ontvangen.

  • Leden

    Geen leden om te tonen

×
×
  • Nieuwe aanmaken...