ComboFix 09-07-14.08 - Administrator 19-07-2009 13:41.2.2 - NTFSx86 MINIMAL
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.2047.1773 [GMT 2:00]
Gestart vanuit: d:\ny\ComboFix.exe
gebruikte Opdracht switches :: d:\ny\CFScript.txt
AV: ESET NOD32 Antivirus 4.0 *On-access scanning enabled* (Updated)
{E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
WAARSCHUWING - DE RECOVERY CONSOLE IS NIET OP DIT SYSTEEM GEINSTALLEERD !!
.
(((((((((((((((((((( Bestanden Gemaakt van 2009-06-19 to 2009-07-19 ))))))))))))))))))))))))))))))
.
2009-07-19 11:13 . 2009-07-19 11:13 -------- d-----w- c:\program files\CCleaner
2009-07-19 10:06 . 2009-07-19 10:06 -------- d-----w- c:\documents and
settings\Administrator\Application Data\Malwarebytes
2009-07-19 10:06 . 2009-07-13 11:36 38160 ----a-w-
c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-19 10:06 . 2009-07-19 10:06 -------- d-----w- c:\documents and settings\All
Users\Application Data\Malwarebytes
2009-07-19 10:06 . 2009-07-13 11:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-07-19 10:06 . 2009-07-19 10:06 -------- d-----w- c:\program files\Malwarebytes'
Anti-Malware
2009-07-19 08:03 . 2008-07-02 15:34 102664 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2009-07-18 22:03 . 2009-07-18 22:03 -------- d-----w- c:\documents and settings\All
Users\Application Data\CA
2009-07-18 11:38 . 2009-07-18 11:38 109 --sha-w- c:\windows\system32\1290018971.dat
2009-07-18 11:37 . 2009-07-19 11:09 -------- d-----w- c:\documents and settings\All
Users\Application Data\15696714
2009-07-18 02:11 . 2009-07-18 02:11 -------- d-----w- c:\documents and settings\Michelle\Local
Settings\Application Data\Temp
2009-07-14 22:24 . 2009-07-14 22:24 -------- d---a-w- c:\program files\IncaBall Screen Saver
2009-07-14 22:24 . 2009-07-14 22:24 237568 ----a-w- c:\windows\IncaBallCave.scr
2009-07-13 17:06 . 2009-07-14 09:09 -------- d-----w- c:\program files\GamesBar
2009-07-13 17:06 . 2009-07-14 09:09 -------- d-----w- c:\program files\Gamenext
2009-07-13 17:06 . 2009-07-13 17:06 -------- d-----w- c:\program files\Oberon Media
2009-07-13 17:06 . 2009-07-13 17:06 -------- d-----w- c:\program files\Common Files\Oberon
Media
2009-07-12 20:22 . 2009-07-12 21:17 -------- d-----w- c:\program files\Inca Ball
2009-07-09 17:53 . 2009-07-09 19:09 -------- d-----w- c:\program files\Playrix Games
2009-07-07 11:22 . 2009-07-15 11:01 -------- d-----w- c:\documents and settings\Michelle\Local
Settings\Application Data\SecondLife
2009-07-01 06:56 . 2009-07-17 15:29 664 ----a-w- c:\windows\system32\d3d9caps.dat
2009-06-30 14:22 . 2009-06-30 14:22 -------- d-----w- c:\documents and settings\All
Users\Application Data\Motive
2009-06-30 12:22 . 2009-06-30 12:22 -------- d-----w- c:\documents and
settings\Michelle\Application Data\Motive
2009-06-30 12:21 . 2009-06-30 14:22 -------- d-----w- c:\program files\Thuishelp
2009-06-20 20:23 . 2009-06-20 20:23 -------- d-----w- c:\documents and
settings\NetworkService\Local Settings\Application Data\Google
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-17 12:27 . 2007-05-09 16:11 -------- d-----w- c:\documents and
settings\Michelle\Application Data\uTorrent
2009-07-14 05:54 . 2009-02-01 00:32 -------- d---a-w- c:\documents and settings\All
Users\Application Data\TEMP
2009-07-13 17:20 . 2008-10-27 17:27 97 ----a-w- c:\windows\popcinfo.dat
2009-07-09 22:51 . 2007-06-14 12:41 -------- d-----w- c:\program files\Omerta Script
2009-07-09 19:13 . 2008-10-11 23:15 -------- d-----w- c:\program files\ReflexiveArcade
2009-07-07 11:22 . 2007-04-23 21:12 -------- d-----w- c:\documents and
settings\Michelle\Application Data\SecondLife
2009-06-24 00:25 . 2009-05-28 10:55 -------- d-----w- c:\program files\Pidgin
2009-06-24 00:25 . 2009-05-28 10:56 -------- d-----w- c:\documents and
settings\Michelle\Application Data\.purple
2009-06-22 20:34 . 2009-05-28 10:57 -------- d-----w- c:\documents and
settings\Michelle\Application Data\gtk-2.0
2009-06-18 20:53 . 2009-06-18 20:53 2141 ----a-w- c:\documents and
settings\Michelle\Application Data\.purple\certificates\x509\tls_peers\omega.contacts.msn.com
2009-06-17 22:44 . 2007-05-20 10:30 -------- d-----w- c:\program files\Google
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\UNINST_Uninstall_G_408FFBEED62349E0
8B232864A94D2864.exe
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutOGL_EB071909B9884F8CBF3D611
5D4ADEE5E.exe
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ShortcutDX_EB071909B9884F8CBF3D6115
D4ADEE5E.exe
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe1_407B9B5CDAC54F44A75
6B57CAB4E6A8B.exe
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\googleearth.exe_407B9B5CDAC54F44A756
B57CAB4E6A8B.exe
2009-06-17 22:44 . 2009-06-17 22:44 25214 ----a-r- c:\documents and
settings\Michelle\Application
Data\Microsoft\Installer\{CC016F21-3970-11DE-B878-005056806466}\ARPPRODUCTICON.exe
2009-06-17 22:44 . 2008-08-18 14:03 -------- d-----w- c:\documents and settings\All
Users\Application Data\Google Updater
2009-06-14 22:40 . 2008-06-23 13:45 -------- d-----w- c:\program files\DivX
2009-06-14 22:40 . 2008-03-12 12:53 -------- d-----w- c:\program files\Digital Image Tool 1.1
2009-06-13 19:54 . 2009-06-13 19:53 -------- d-----w- c:\program files\QuickTime
2009-06-10 22:14 . 2009-06-10 14:30 -------- d-----w- c:\program files\aMSN
2009-06-10 08:41 . 2009-06-10 08:41 -------- d-----w- c:\program files\MSBuild
2009-06-09 13:21 . 2007-05-20 10:32 -------- d-----w- c:\documents and settings\All
Users\Application Data\Skype
2009-06-09 09:38 . 2009-06-09 09:38 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-06-09 09:38 . 2009-06-09 09:38 -------- d-----w- c:\documents and
settings\Michelle\Application Data\skypePM
2009-06-07 21:19 . 2009-05-27 19:30 -------- d-----w- c:\program files\Microsoft
2009-06-07 21:19 . 2009-06-07 21:19 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-06-05 00:06 . 2009-06-05 00:06 -------- d-----w- c:\program files\Common Files\Adobe AIR
2009-06-05 00:05 . 2008-02-13 12:49 -------- d-----w- c:\program files\Common Files\Adobe
2009-06-01 10:44 . 2009-06-01 10:44 -------- d-----w- c:\program files\Microsoft Silverlight
2009-06-01 04:36 . 2009-06-01 04:36 2165 ----a-w- c:\documents and
settings\Michelle\Application Data\.purple\certificates\x509\tls_peers\rsi.hotmail.com
2009-05-29 17:30 . 2009-05-29 17:30 2145 ----a-w- c:\documents and
settings\Michelle\Application Data\.purple\certificates\x509\tls_peers\ows.messenger.msn.com
2009-05-28 15:10 . 2009-05-28 15:10 -------- d-----w- c:\documents and
settings\Michelle\Application Data\acccore
2009-05-28 15:10 . 2009-05-28 15:10 -------- d-----w- c:\documents and settings\All
Users\Application Data\AOL OCP
2009-05-28 15:10 . 2009-05-28 15:10 -------- d-----w- c:\documents and settings\All
Users\Application Data\AOL
2009-05-28 15:10 . 2009-05-28 15:10 -------- d-----w- c:\program files\Viewpoint
2009-05-28 15:10 . 2009-05-28 15:10 -------- d-----w- c:\documents and settings\All
Users\Application Data\Viewpoint
2009-05-28 15:09 . 2009-05-28 15:09 -------- d-----w- c:\program files\Common Files\AOL
2009-05-28 12:42 . 2009-05-28 12:42 -------- d-----w- c:\program files\Reference Assemblies
2009-05-28 10:57 . 2009-05-28 10:57 2099 ----a-w- c:\documents and
settings\Michelle\Application Data\.purple\certificates\x509\tls_peers\login.live.com
2009-05-28 10:55 . 2009-05-28 10:55 -------- d-----w- c:\program files\Common Files\GTK
2009-05-27 22:29 . 2008-05-03 22:22 -------- d-----w- c:\documents and
settings\Michelle\Application Data\Zylom
2009-05-27 19:31 . 2009-05-27 19:31 -------- d-----w- c:\program files\Windows Live
2009-05-27 14:30 . 2004-08-04 12:00 86370 ----a-w- c:\windows\system32\perfc013.dat
2009-05-27 14:30 . 2004-08-04 12:00 499244 ----a-w- c:\windows\system32\perfh013.dat
2009-05-27 14:21 . 2009-05-27 14:21 -------- d-----w- c:\program files\Common Files\Windows
Live
2009-05-27 13:55 . 2009-05-27 13:55 -------- d-----w- c:\program files\VS Revo Group
2009-05-27 11:49 . 2009-05-27 11:49 -------- d-----w- c:\program files\Microsoft SQL Server
Compact Edition
2009-05-27 10:09 . 2008-07-02 15:28 -------- d-----w- c:\program files\Sun
2009-05-27 10:06 . 2009-01-31 20:29 -------- d-----w- c:\program files\Panda Security
2009-05-27 10:02 . 2008-12-30 16:55 -------- d-----w- c:\program files\Nufsoft
2009-05-25 22:17 . 2009-05-25 22:16 -------- d-----w- c:\program files\SecondLife
2009-05-25 14:32 . 2009-05-25 14:32 -------- d-----w- c:\documents and
settings\Michelle\Application Data\DivX
2009-05-25 13:45 . 2009-05-25 13:45 1629024 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Resources.dll
2009-05-25 13:45 . 2009-05-25 13:46 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-05-25 13:45 . 2009-05-25 13:45 73064 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe
2009-05-25 13:45 . 2009-05-25 13:45 64160 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys
2009-05-25 13:45 . 2009-05-25 13:45 40288 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll
2009-05-25 13:45 . 2009-05-25 13:45 212848 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll
2009-05-25 13:45 . 2009-05-25 13:45 632680 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\CEAPI.dll
2009-05-25 13:45 . 2009-05-25 13:45 539512 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe
2009-05-25 13:45 . 2009-05-25 13:45 552808 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe
2009-05-25 13:45 . 2009-05-25 13:45 2324808 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-Aware.exe
2009-05-25 13:45 . 2009-05-25 13:45 626000 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\AAWWSC.exe
2009-05-25 13:45 . 2009-05-25 13:45 953168 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\AAWService.exe
2009-05-25 13:45 . 2009-05-25 13:45 516440 ----a-w- c:\documents and settings\All
Users\Application Data\Lavasoft\Ad-Aware\Update\AAWTray.exe
2009-05-25 13:44 . 2009-05-25 13:44 -------- dc-h--w- c:\documents and settings\All
Users\Application Data\{83C91755-2546-441D-AC40-9A6B4B860800}
2009-05-25 13:44 . 2009-01-26 11:44 -------- d-----w- c:\documents and settings\All
Users\Application Data\Lavasoft
2009-05-24 23:35 . 2009-05-24 23:35 -------- d-----w- c:\program files\ESET
2009-05-24 23:35 . 2009-05-24 23:35 -------- d-----w- c:\documents and settings\All
Users\Application Data\ESET
2009-05-24 17:16 . 2009-05-24 17:16 -------- d-----w- c:\program files\Common Files\DivX
Shared
2009-05-24 14:00 . 2009-05-24 14:00 -------- d-----w- c:\program files\Alwil Software
2009-05-24 13:51 . 2008-10-11 23:18 -------- d-----w- c:\program files\BoontyGames
2009-05-24 13:49 . 2009-05-21 00:07 -------- d-----w- c:\program files\GameHouse
2009-05-24 10:37 . 2007-04-23 20:03 -------- d--h--w- c:\program files\InstallShield Installation
Information
2009-05-21 00:03 . 2009-05-21 00:03 -------- d-----w- c:\program files\Trymedia
2009-05-20 22:46 . 2009-05-20 22:46 -------- d-----w- c:\documents and settings\All
Users\Application Data\Trymedia
2009-05-07 15:34 . 2004-08-04 12:00 347136 ----a-w- c:\windows\system32\localspl.dll
2009-04-29 04:49 . 2004-08-04 12:00 827392 ----a-w- c:\windows\system32\wininet.dll
2009-04-29 04:49 . 2009-05-24 16:48 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-06-13 17:25 . 2009-05-27 13:17 134648 ----a-w- c:\program files\mozilla
firefox\components\brwsrcmp.dll
2009-02-24 19:34 . 2009-02-24 19:34 1044480 ----a-w- c:\program files\mozilla
firefox\plugins\libdivx.dll
2009-02-24 19:34 . 2009-02-24 19:34 200704 ----a-w- c:\program files\mozilla
firefox\plugins\ssldivx.dll
2007-08-27 19:44 . 2007-08-27 19:44 23 --sha-w- c:\windows\system32\deeaebcff_d.dll
.
------- Sigcheck -------
- 2006-04-20 12:18 360576 B2220C618B42A2212A59D91EBD6FC4B4
c:\windows\$hf_mig$\KB917953\SP2QFE\tcpip.sys
- 2007-10-30 16:53 360832 64798ECFA43D78C7178375FCDD16D8C8
c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
[7] 2008-06-20 10:44 360960 744E57C99232201AE98C49168B918F48
c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[7] 2008-06-20 11:51 361600 9AEFA14BD6B182D61E3119FA5F436D3D
c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[7] 2008-06-20 11:59 361600 AD978A1B783B5719720CFF204B666C8E
c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
- 2008-04-13 19:20 361344 ACCF5A9A1FFAA490F33DBA1C632B95E1
c:\windows\ServicePackFiles\i386\tcpip.sys
- 2008-06-20 11:51 361600 9425B72F40257B45D45D24773273DAD0
c:\windows\system32\dllcache\tcpip.sys
- 2008-06-20 11:51 361600 9425B72F40257B45D45D24773273DAD0
c:\windows\system32\drivers\tcpip.sys
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-08-11 7630848]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2009-02-06 2021400]
"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-05-25 516440]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27
35696]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-01-05 413696]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-08-11 1519616]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2007-11-15 08:10 72208 ----a-w- c:\program files\Common Files\Logitech\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware
Service]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"=
"c:\\Program Files\\utorrent\\utorrent.exe"=
"c:\\Program Files\\Omerta Script\\mirc.exe"=
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"c:\\Program Files\\aMSN\\bin\\wish.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [25-5-2009 15:46 64160]
R0 xfilt;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfilt.sys [23-4-2007 21:44 11264]
S1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [6-2-2009 14:23 106208]
S1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [6-2-2009 14:24 93336]
S1 SDManager;SDManager;\??\c:\program files\SpywareDetector\SDManager.sys --> c:\program
files\SpywareDetector\SDManager.sys [?]
S2 AppToService_TuDienHND;AppToService
TuDienHND;c:\vietnam\TuDienHND\3rdparty\basta\AppToService.exe [23-11-2007 18:23 45056]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [6-2-2009 14:23 727720]
S2 fssfltr;FssFltr;c:\windows\system32\DRIVERS\fssfltr_tdi.sys --> c:\windows\system32\DRIVERS\fssfltr_tdi.sys
[?]
S2 gupdate1c9ef9d1ccfed64;Google Updateservice (gupdate1c9ef9d1ccfed64);c:\program
files\Google\Update\GoogleUpdate.exe [18-6-2009 0:44 133104]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program
files\Lavasoft\Ad-Aware\AAWService.exe [18-1-2009 23:34 953168]
S3 fsssvc;Windows Live Family Safety;"c:\program files\Windows Live\Family Safety\fsssvc.exe" --> c:\program
files\Windows Live\Family Safety\fsssvc.exe [?]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\program files\NOS\bin\getPlus_HelperSvc.exe --> c:\program
files\NOS\bin\getPlus_HelperSvc.exe [?]
S3 LCcfltr;Logitech USB Filter Driver;c:\windows\system32\drivers\LCcfltr.sys [23-4-2007 22:33 14095]
S3 ovt530;TM507A USB Camera;c:\windows\system32\drivers\ov530vid.sys [11-7-2007 0:30 161792]
.
Inhoud van de 'Gedeelde Taken' map
2009-07-13 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-01-18 13:45]
2009-07-18 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
2009-07-19 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-05-28 22:43]
2009-07-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-17 22:43]
2009-07-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-17 22:43]
.
.
------- Bijkomende Scan -------
.
mStart Page =
hxxp://www.cooxer.com/DPF: {E6BB2089-163F-466B-812A-748096614DFD} -
hxxp://cainternetsecurity.net/scanner/cascanner.cabFF - ProfilePath -
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-07-19 13:51
Windows 5.1.2600 Service Pack 3 NTFS
scannen van verborgen processen ...
scannen van verborgen autostart items ...
scannen van verborgen bestanden ...
Scan succesvol afgerond
verborgen bestanden: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AppToService_TuDienHND]
"ImagePath"="c:\vietnam\TuDienHND\3rdparty\basta\AppToService.exe /sys
\"C:/vietnam/TuDienHND/3rdparty/jre/bin/jrew.exe\" /Arguments:\"-mx64m -cp vietdict.jar
vietdict.server.vietdictserver\" /Directory:\"c:/vietnam/tudienhnd\" /Name:\"tudienhnd\" /Startup:A"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{95808DC4-FA4A-4c74-92FE-5B863F82066B}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD\000.fcl"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
- - - - - - - > 'winlogon.exe'(244)
c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
c:\program files\common files\logitech\bluetooth\LBTServ.dll
.
Voltooingstijd: 2009-07-19 13:56 - machine werd herstart
ComboFix-quarantined-files.txt 2009-07-19 11:56
ComboFix2.txt 2009-07-19 11:37
Pre-Run: 33.357.324.288 bytes beschikbaar
Post-Run: 33.325.600.768 bytes beschikbaar
223 --- E O F --- 2009-07-18 20:01