![]() |
|
#1
| |||
| |||
| mijn computer is een soort van nieuw, maar het blijft crashen. gebeurde al vele malen. toen ik inloggen op het scherm doet bewegen. de crusser blijft in dezelfde positie. Ik probeerde swithing het af, maar het doet SWTICH af. Ik moest het om dat te gebeuren loskoppelen. soms doesnt crash, maar het is 50/50. i dont weet wat te doen als ik een newbie ben ![]() hier is de hijact dit log Logbestand van Trend Micro HijackThis v2.0.2 Scan saved at 00:51:31, op 22/02/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Draaiende processen: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ WINDOWS \ system32 \ ZoneLabs \ vsmon.exe C: \ WINDOWS \ explorer.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgamsvr.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgupsvc.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgemc.exe C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLCapSvc.exe C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLSched.exe C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLServer.exe C: \ WINDOWS \ eHome \ ehRecvr.exe C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLService.exe C: \ WINDOWS \ eHome \ ehSched.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe C: \ WINDOWS \ system32 \ inetsrv \ Inetinfo.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcIp.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcLog.exe C: \ WINDOWS \ system32 \ nvsvc32.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcAppFlt.ex e C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe C: \ WINDOWS \ system32 \ Dllhost.exe C: \ WINDOWS \ ehome \ ehtray.exe C: \ Program Files \ QuickTime \ qttask.exe C: \ Program Files \ CyberLink \ PowerCinema \ PCMService.exe C: \ WINDOWS \ eHome \ ehmsas.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nTrayFw.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ WINDOWS \ System32 \ svchost.exe C: \ WINDOWS \ system32 \ RUNDLL32.EXE C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgcc.exe C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe C: \ Program Files \ Common Files \ LightScribe \ LightScribeControlPanel.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexingService.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexStoreSvr.exe C: \ Program Files \ KWorld Multimedia \ TV Tuner Card Utilities \ HMCP3XCtl.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ WINDOWS \ system32 \ wuauclt.exe C: \ WINDOWS \ system32 \ wpabaln.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.rd.yahoo.com/customize/yco...search/ie.html R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://uk.rd.yahoo.com/customize/yco...//uk.yahoo.com R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.meshcomputers.com R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL, (Default) = http://uk.rd.yahoo.com/customize/yco...//uk.yahoo.com R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O2 - BHO: AcroIEHlprObj Class - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Adobe \ Acrobat 7.0 \ ActiveX \ AcroIEHelper.dll O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O2 - BHO: ZoneAlarm Spy Blocker BHO - (F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA) - C: \ Program Files \ ZoneAlarmSB \ bar \ 1.bin \ SPYBLOCK.DLL O3 - Toolbar: ZoneAlarm Spy Blocker - (F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA) - C: \ Program Files \ ZoneAlarmSB \ bar \ 1.bin \ SPYBLOCK.DLL O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O4 - HKLM \ .. \ Run: [ehTray] C: \ WINDOWS \ ehome \ ehtray.exe O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime O4 - HKLM \ .. \ Run: [PCMService] "C: \ Program Files \ CyberLink \ PowerCinema \ PCMService.exe" O4 - HKLM \ .. \ Run: [afstandsbediening] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [(1290A33C-85F5-4164-A1BE-7DD299D4986A)] "C: \ Program Files \ CyberLink \ PowerBackup \ PBKScheduler.exe" O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot O4 - HKLM \ .. \ Run: [Ptipbmf] rundll32.exe ptipbmf.dll, SetWriteCacheMode O4 - HKLM \ .. \ Run: [nTrayFw] C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nTrayFw.exe O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [SkyTel] SkyTel.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [NvCplDaemon] RUNDLL32.EXE C: \ WINDOWS \ system32 \ NvCpl.dll, NvStartup O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install O4 - HKLM \ .. \ Run: [NvMediaCenter] RUNDLL32.EXE C: \ WINDOWS \ system32 \ NvMcTray.dll, NvTaskbarInit O4 - HKLM \ .. \ Run: [JMB36X Configure] C: \ WINDOWS \ system32 \ JMRaidTool.exe boot O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ Program Files \ Common Files \ Ahead \ Lib \ NeroCheck.exe O4 - HKLM \ .. \ Run: [AVG7_CC] C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgcc.exe / STARTUP O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ZoneAlarm Client] "C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe" O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe" / achtergrond O4 - HKCU \ .. \ Run: [Center Agent] C: \ Program Files \ KWorld Multimedia \ HyperMediaCenter \ DTVR \ Scheduled.exe O4 - HKCU \ .. \ Run: [LightScribe Control Panel] C: \ Program Files \ Common Files \ LightScribe \ LightScribeControlPanel.exe verborgen O4 - HKCU \ .. \ Run: [BgMonitor_ (79662E04-7C6C-4d9f-84C7-88D8A56B10AA)] "C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe" O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-19 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-19 \ .. \ Run: [AVG7_Run] C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgw.exe / RunOnce (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-20 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'NETWORK SERVICE') O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: Remote Control.lnk = C: \ Program Files \ KWorld Multimedia \ TV Tuner Card Utilities \ HMCP3XCtl.exe O8 - Extra context menu item: E & xporteren naar Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra button: (geen naam) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra button: Onderzoek - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra button: (geen naam) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O9 - Extra 'Tools' MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.meshcomputers.com O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - Grisoft, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - Grisoft, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - Grisoft, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgemc.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Onbekende eigenaar - C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Onbekende eigenaar - C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLSched.exe O23 - Service: CyberLink Media Library Service - Cyberlink - C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLServer.exe O23 - Service: ForceWare Intelligent Application Manager (IAM) - Onbekende eigenaar - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcAppFlt.ex e O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: NBService - Nero AG - C: \ Program Files \ Nero \ Nero 7 \ Nero BackItUp \ NBService.exe O23 - Service: NMIndexingService - Nero AG - C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexingService.exe O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcIp.exe O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcLog.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ WINDOWS \ system32 \ nvsvc32.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C: \ WINDOWS \ system32 \ ZoneLabs \ vsmon.exe -- End of file - 10194 bytes |
|
#2
| |||
| |||
| i dont know als het een virus probleem of een hardware probleem? |
|
#3
| |||
| |||
| Heb je gedaan de gebruikelijke en gecontroleerd voor stof opbouw rond de CPU heatsink etc? |
|
#4
| |||
| |||
| Citaat:
Ik ben een newbie en niet helemaal zeker wat cpu heatsink is.bedankt |
|
#5
| ||||||||||||
| ||||||||||||
| Kun je opstarten in veilige modus? .... (Tik herhaaldelijk op F8 tijdens het opstarten up)
__________________
Mijn Systeem: Home Bouw
|
|
#6
| |||
| |||
| Het HijackThis log is schoon. Heeft u installeert niets nieuws rond de tijd begon dit gebeurt? Misschien zelfs een week of zo voordat het gebeurt voor de eerste keer. |
|
#7
| |||
| |||
| glazenwasser, Zone Alarm, Spybot en Norton anti virus |
|
#8
| |||
| |||
| Wat was alles schoongemaakt met glazenwasser en deed het starten na het gebruik ervan? Zone Alarm of Norton zijn niet de meest efficiënte op de middelen, kan het deze ook. |
|
#9
| |||
| |||
| Citaat:
En een CPU heatsink is de grote metalen ding met een ventilator boven op het moederbord de CPU koel te houden. |
|
#10
| |||
| |||
| sorry i mean gem. Ik zal controleren de ventilator uit. in plaats van zone alarm wat zouden jullie aanbevelen. |
![]() |
|
| Bladwijzers |
Gelijkaardige Draden | ||||
| Draad | Thread Starter | Forum | Antwoorden | Last Post |
| Computer Crashing HELP! | waterpijp | Algemeen Hardware Chat | 10 | 8 november 2009 18:09 |
| Alle games crashen - Help alstublieft (computer-tech) | jonia | PC & Gaming Console | 1 | 24 mei 2009 11:49 |
| Computer constant Crashing | topxx | Algemeen Hardware Chat | 9 | 19 mrt 2009 02:18 |
| Computer crasht tijdens Gaming | icu222much | Algemene programmatuurnoot Chat | 9 | 15 nov 2008 07:26 |
| Crashen computer Grrr, stiekeme verdenking zijn in verband met mijn ram | Robbie | CPUs, Moederborden & RAM | 14 | De 8 maart 2008 11:17 |
| Thread Tools | |
| |