![]() |
|
#1
|
|||
|
|||
|
Hoi,
Ik heb een probleem met mijn computer en hoop dat iemand misschien een idee wat er zou veroorzaken hebben. Af en toe zal ik hoor geluiden van dieren (kat spinnen, schapen bahing, enz.) of een man lachen. Ik heb de computer gescand met verschillende antivirus-en antispyware-programma's, maar nog steeds niet kunt vinden van de oorzaak. Ik hoopte dat iemand misschien een idee wat de mogelijke oorzaak te hebben. Thanks:) |
|
#2
|
|||
|
|||
|
Denkt u dat het verband is malware?
We kunnen een snelle blik te zien. Download en hernoemen HijackThis (HJT)
Please post de HJT log in het volgende antwoord. |
|
#3
|
||||||||||||
|
||||||||||||
|
eerlijke doen dat maakte me aan het lachen bij de gedachte
(id love my computer bah)alleen om stellingen te bevestigen zijn niet afkomstig van buiten toch? Hebt u gecontroleerd welk proces 'zich voordoen wanneer het gebeurt is er software die wanneer ze dat doet advertentie misschien op een website?
__________________
__________________
De temperatuur in deze appeltaart is meer dan 1000 graden.
Als ik knijp, een straal van gesmolten Bramley Apple zal spuiten uit. Kunnen gaan uw weg; kunnen gaan mijne. Hoe dan ook, een van ons is going down! Mijn Systeem: Van mij
|
|
#4
|
||||||||||||
|
||||||||||||
|
Ik verhuisde dit als er sprake is malware die dit doet ...
__________________
Mijn Systeem: Hybr! D
|
|
#5
|
|||
|
|||
|
Firefox, MSN IM, GoogleTalk, AIM, YIM en ik hebben meestal lopen de hele tijd.
|
|
#6
|
|||
|
|||
|
Ok, maar hoop dat mijn huisgenoot niet iets downloaden mag niet van de lol
Hier is de log Logbestand van Trend Micro HijackThis v2.0.2 Scan saved at 12:30:19, op 1.24.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Draaiende processen: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ System32 \ WLTRYSVC.EXE C: \ WINDOWS \ System32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ explorer.exe C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Program Files \ Google \ Google Talk \ googletalk.exe C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ jusched.exe C: \ Program Files \ Unlocker \ UnlockerAssistant.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Program Files \ AIM6 \ aim6.exe C: \ Program Files \ AdwareAlert \ AdwareAlert.exe C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Program Files \ MSN Messenger \ msnmsgr.exe C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe C: \ Program Files \ AIM6 \ aolsoftware.exe C: \ Program Files \ MSN Messenger \ usnsvc.exe C: \ Program Files \ Mozilla Firefox \ firefox.exe C: \ Program Files \ Trend Micro \ HijackThis \ sniper.exe.exe C: \ WINDOWS \ system32 \ rundll32.exe C: \ WINDOWS \ system32 \ NOTEPAD.EXE R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://cm.my.yahoo.com/ R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. lokale O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Zoeken \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll O2 - BHO: (geen naam) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (geen file) O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Program Files \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Program Files \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] "C: \ Program Files \ Internet Explorer \ Plugins \ cxsrrs.exe O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Program Files \ AIM6 \ aim6.exe" / d locale = nl-NL ee: / / AOL / imApp O4 - HKLM \ .. \ Run: [AdwareAlert] "C: \ Program Files \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe" stille O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ MSN Messenger \ msnmsgr.exe" / achtergrond O4 - Startup: Yahoo! Widgets.lnk = C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe O8 - Extra context menu item: E & xporteren naar Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra button: (geen naam) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_03 \ bin \ ssv.dll O9 - Extra button: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O9 - Extra button: Onderzoek - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra button: (geen naam) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Program Files \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812 O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.exe O23 - Service: Macromedia Licensing Service - Onbekende eigenaar - C: \ Program Files \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - symantec - C: \ Program Files \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Onbekende eigenaar - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE -- End of file - 9405 bytes |
|
#7
|
|||
|
|||
|
Is AdwareAlert een betaalde versie? Zo niet ga dan naar add / programma's te verwijderen en verwijderen.
Open HijackThis en selecteer Doe een systeemscan alleen. Plaats een vinkje naast de volgende vermeldingen: O2 - BHO: (geen naam) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (geen file) O2 - BHO: (no name) - (DB35C569-5624-4CFC-8043-E5139F55A073) - (no file) Sluit alle vensters behalve HijackThis en klik op Fix gecontroleerd. Afsluiten HijackThis. ---------- Oudere versies van Java hebben kwetsbaarheden die malware kunt gebruiken om uw systeem te infecteren. Stap 1 Ga naar http://java.sun.com/javase/downloads/index.jsp Op de Sun Java pagina ga naar de 4e downloaden. ![]() Klik op de knop en bewaar het installatieprogramma op het bureaublad.Dubbelklik op het installatieprogramma van het bureaublad en volg de instructies om de installatie te voltooien. Stap 2 Ga naar Start > Control Panel > Toevoegen / Verwijderen programma's Verwijder alle oudere versies van Java. Verwijder het item met Java Runtime Environment (JRE of J2SE) in de naam.Niet verwijderen Java 6 Update 4 Herstart uw computer zodra alle Java-componenten zijn verwijderd. Dubbelklik op Mijn Computer op het bureaublad, Zoek deze map: C: \ Program Files \Java Open het Java-map en verwijder alle submappen behalve de jre1.6.0_04 map die zojuist is gemaakt door de nieuwste Java-installatie. ---------- Dan start je een nieuwe HJT scan en post het log. |
|
#8
|
|||
|
|||
|
Ja, Adware Alert betaalde versie, moet ik nog nodig om het te verwijderen?
|
|
#9
|
|||
|
|||
|
Nee, je hoeft niet, maar het is niet een van mijn favorieten.
Ga je gang en doe de andere stappen en vervolgens de volgende twee hieronder beschreven. Ga naar dit bericht doen stappen twee en drie. Toen na de log van SAS en een nieuwe een HJT log. |
|
#10
|
|||
|
|||
|
Ok hier is het HJT log
Logbestand van Trend Micro HijackThis v2.0.2 Scan saved at 4:43:41 PM, op 1.24.2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Draaiende processen: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ winlogon.exe C: \ WINDOWS \ system32 \ Services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ WINDOWS \ System32 \ WLTRYSVC.EXE C: \ WINDOWS \ System32 \ bcmwltry.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe C: \ WINDOWS \ explorer.exe C: \ WINDOWS \ system32 \ WLTRAY.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Program Files \ Google \ Google Talk \ googletalk.exe C: \ Program Files \ Unlocker \ UnlockerAssistant.exe C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Program Files \ AIM6 \ aim6.exe C: \ Program Files \ AdwareAlert \ AdwareAlert.exe C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe C: \ Program Files \ MSN Messenger \ msnmsgr.exe C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe C: \ Program Files \ AIM6 \ aolsoftware.exe C: \ Program Files \ Mozilla Firefox \ firefox.exe C: \ WINDOWS \ system32 \ notepad.exe C: \ Program Files \ MSN Messenger \ usnsvc.exe C: \ Program Files \ Trend Micro \ HijackThis \ sniper.exe.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://cm.my.yahoo.com/ R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Internet Connection Wizard, ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. lokale O2 - BHO: & Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: Yahoo! IE Suggest - (5A263CF7-56A6-4D68-A8CF-345BE45BC911) - C: \ Program Files \ Yahoo! \ Zoeken \ YSearchSuggest.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 2.1.615.5858 \ sw g.dll O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ installs \ CPN \ yt.dll O4 - HKLM \ .. \ Run: [Broadcom Wireless Manager UI] C: \ WINDOWS \ system32 \ WLTRAY.exe O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxhkcmd] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [DVDLauncher] "C: \ Program Files \ CyberLink \ PowerDVD \ DVDLauncher.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [vptray] C: \ PROGRA ~ 1 \ SYMANT ~ 1 \ VPTray.exe O4 - HKLM \ .. \ Run: [googletalk] C: \ Program Files \ Google \ Google Talk \ googletalk.exe / autostart O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Program Files \ Unlocker \ UnlockerAssistant.exe" O4 - HKLM \ .. \ Run: [OpenGLv32] "C: \ Program Files \ Internet Explorer \ Plugins \ cxsrrs.exe O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe" O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [Aim6] "C: \ Program Files \ AIM6 \ aim6.exe" / d locale = nl-NL ee: / / AOL / imApp O4 - HKLM \ .. \ Run: [AdwareAlert] "C: \ Program Files \ AdwareAlert \ AdwareAlert.exe-boot O4 - HKCU \ .. \ Run: [Yahoo! Pager] "C: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe" stille O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ MSN Messenger \ msnmsgr.exe" / achtergrond O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - Startup: Yahoo! Widgets.lnk = C: \ Program Files \ Yahoo! \ Widgets \ YahooWidgets.exe O8 - Extra context menu item: E & xporteren naar Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ EXCEL.EXE/3000 O9 - Extra button: (geen naam) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra button: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O9 - Extra button: Onderzoek - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office11 \ REFIEBAR.DLL O9 - Extra button: (geen naam) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O16 - DPF: (001EE746-A1F9-460E-80AD-269E088D6A01) (Infotl Control) -- http://shop.ebrary.com/support/plugins/ebraryRdr.cab O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (Installation Support) - C: \ Program Files \ Yahoo! \ Common \ Yinsthelper.dll O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1168008961000 O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://www.update.microsoft.com/micr...?1183542882812 O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: AdwareAlert Scanning Engine (AdwareAlertSrv) - Unknown owner - C: \ Program Files \ AdwareAlert \ AdwareAlertSrv.srv.exe O23 - Service: Apple Mobile Device - Apple, Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Autodesk Licensing Service - Autodesk - C: \ Program Files \ Common Files \ Autodesk Shared \ Service \ AdskScSrv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ DefWatch.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.exe O23 - Service: Macromedia Licensing Service - Onbekende eigenaar - C: \ Program Files \ Common Files \ Macromedia Shared \ Service \ Macromedia Licensing.exe O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C: \ Program Files \ Autodesk \ 3dsMax8 \ mentalray \ satellite \ raysat_ 3dsmax8server.exe O23 - Service: SAVRoam (SavRoam) - symantec - C: \ Program Files \ Symantec AntiVirus \ SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C: \ Program Files \ Symantec AntiVirus \ Rtvscan.exe O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Onbekende eigenaar - C: \ WINDOWS \ System32 \ WLTRYSVC.EXE -- End of file - 9366 bytes en het SAS Aanmelden SUPERAntiSpyware Scan Log http://www.superantispyware.com Gegenereerd 01.24.2008 om 04:21 PM Toepassing Versie: 3-9-1008 Core Rules Database Version: 3387 Trace Rules Database Version: 1381 Scan type: Volledige Scan Total Scan Time: 02:02:14 Geheugen gescande items: 543 Geheugen bedreigingen gedetecteerd: 0 Register objecten gescand: 7022 Griffie bedreigingen gedetecteerd: 18 Bestand objecten gescand: 91621 Bestand gedetecteerde bedreigingen: 179 Adware.Tracking Cookie C: \ Documents and Settings \ Amber \ Cookies \ @ amber atwola [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber interclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.burstnet [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eztracks.aavalue [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ar.atwola [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber precisionclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber apmebf [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@stats.sellmosoft [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber maxserving [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ehg-pcsecurityshield.hitbox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.euroclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@www.incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber Casalemedia [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber reclame [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@tremor.adbureau [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber DoubleClick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber screensaversandwallpa persfree [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@statse.webtrendslive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber microsoftwlsearchcrm. 112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber loading [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@csi.valueclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber adinterax [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber Mediaplex [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad2.adnetinteractive [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber Hitbox [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@server2.bkvtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@msnlivefavorites.112. 2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@adopt.specificclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber atdmt [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber directtrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber adlegend [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber fastclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber imrworldwide [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@i.screensavers [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@pub.visicommedia [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@angleinteractive.dire cttrack [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber AdTech [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.vlaze [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber tribalfusion [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.glispa [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.diet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.zanox [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@richmedia.yahoo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@media.adrevolver [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@perf.overture [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@thumbplay.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber microsoftwlmessengerm kt.112.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber mywebsearch [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber redorbit [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@eas.apm.emediate [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber roiservice [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber xiti [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.bridgetrack [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber questionmarket [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber collectieve-media [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@login.tracking101 [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber burstnet [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftwlmailmkt.11 2.2o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber [1 cpvfeed]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber Zedo [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@ads.pointroll [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber specificclick [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber revsci [2]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber @ serving-sys [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ amber@microsoftoffice.112.2 o7 [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber incentaclick [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber azjmp [1]. Txt C: \ Documents and Settings \ Amber \ Cookies \ @ amber adrevolver [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ 2o7 [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ adver reclame [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ apmeb f [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ administrator@ar.at Wola [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ atdmt [2]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ atwol a [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ doubl eclick [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ rand. ru4 [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ media plexe [1]. Txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ perf. ouverture [1]. txt C: \ Documents and Settings \ Administrator \ Cookies \ beheerder @ revsc i [2]. Txt Unclassified.SpywareBot (geen bedreiging) HKU \ S-1-5-21-782665702-2079865073-2220674083-1007 \ Software \ SpywareBot HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Setup Versie HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: App Path HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # InstallLocation HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Icon Groep HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Gebruiker HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Selected Taken HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Inno Setup: Geselecteerd Taken HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # DisplayName HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # DisplayIcon HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # UninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # QuietUninstallString HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Demo Versie HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # Uitgever HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # NoModify HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # NoRepair HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uni nstall \ SpywareBot_is1 # InstallDate C: \ Program Files \ SpywareBot \ DataBase.ref C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532630_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-4-1183532711_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-5-1183618812_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups \ 2007-7-8-1183878034_hosts C: \ Program Files \ SpywareBot \ HOSTS Backups C: \ Program Files \ SpywareBot \ Launcher.exe C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_31_59.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_18.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_42_32.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_31.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_45_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_54_57.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_09_55_06.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_04_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_13.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_10_38_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_20_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_42.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_22_47.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_25_29.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_56.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_11_31_57.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_42.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_15_52_44.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_09.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_11.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_05_16_27_12.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_46.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_08_48.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_46.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_46_48.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_43.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_44.log C: \ Program Files \ SpywareBot \ Log \ log_2007_01_08_08_58_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_03.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_22_17_15_07.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_10.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_10_17.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_15.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_28_18.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_33_58.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_34_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_13.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_24_09_35_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_06_27_09_09_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_37.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_39.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_17_33_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_00_52.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_01_21_01_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_00.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_03_01.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_55.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_03_04_56.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_41.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_04_08_14_45.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_34.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_36.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_05_22_23_43.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_03_00_08.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_22_16.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_08_23_22.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_23.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_53_27.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_08_20_54_28.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_05.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_09.log C: \ Program Files \ SpywareBot \ Log \ log_2007_07_10_22_05_24.log C: \ Program Files \ SpywareBot \ Inloggen C: \ Program Files \ SpywareBot \ Quarantine C: \ Program Files \ SpywareBot \ Registry Backups C: \ Program Files \ SpywareBot \ Scheduler.exe C: \ Program Files \ SpywareBot \ Settings \ CustomScan.stg C: \ Program Files \ SpywareBot \ Settings \ IgnoreList.stg C: \ Program Files \ SpywareBot \ Settings \ ScanInfo.stg C: \ Program Files \ SpywareBot \ Settings \ ScanResults.stg C: \ Program Files \ SpywareBot \ Settings \ SelectedFolders.stg C: \ Program Files \ SpywareBot \ Settings \ Settings.stg C: \ Program Files \ SpywareBot \ Settings C: \ Program Files \ SpywareBot \ SpywareBot.dll C: \ Program Files \ SpywareBot \ SpywareBot.exe C: \ Program Files \ SpywareBot \ SpywareBot.url C: \ Program Files \ SpywareBot \ unins000.dat C: \ Program Files \ SpywareBot \ unins000.exe C: \ Program Files \ SpywareBot C: \ Documents and Settings \ All Users \ Start Menu \ Programs \ SpywareBot \ SpywareBot op de Web.lnk C: \ Documents and Settings \ All Users \ Start Menu \ Programs \ SpywareBot \ SpywareBot.lnk C: \ Documents and Settings \ All Users \ Start Menu \ Programs \ SpywareBot \ Uninstall SpywareBot.lnk C: \ Documents and Settings \ All Users \ Start Menu \ Programs \ SpywareBot Adware.Lop C: \ SYSTEM VOLUME Information \ _restore (F02BDCB2-9AAA-42A6-9E59-C24093E0AD6C) \ RP186 \ A0139352.EXE |