Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Moved Post

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Moved Post

Unread postby mploegmakers » June 12th, 2012, 11:32 am

Hi, I'm new here but I found this string on Google becouse I have the same problem..

I did what you said and this is what I got from FRST:

Maybe you could help me with the next step?

Scan result of Farbar Recovery Scan Tool Version: 11-06-2012
Ran by SYSTEM at 12-06-2012 17:08:52
Running from H:\
Windows 7 Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [167704 2011-08-09] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [392472 2011-08-09] (Intel Corporation)
HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [416024 2011-08-09] (Intel Corporation)
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-09] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe [1424896 2011-09-08] (IDT, Inc.)
HKLM\...\Run: [SetDefault] C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [43320 2011-09-30] (Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3508624 2011-12-27] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [500208 2010-03-05] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [343168 2011-08-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPQuickWebProxy] "C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe" [169528 2011-10-07] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-09-15] (EasyBits Software AS)
HKLM-x32\...\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3508624 2011-12-27] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [Reader Application Helper] C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe [892928 2012-01-31] (Sony Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin [402432 2010-07-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2011-06-09] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-09-26] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [] [x]
HKU\Petra\...\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s [937360 2011-12-27] (Samsung)
HKU\Petra\...\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [21392 2011-12-27] ()
HKU\Petra\...\Run: [Google Update] "C:\Users\Petra\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2012-02-11] (Google Inc.)
HKU\Petra\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4283256 2011-05-13] (Microsoft Corporation)
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
HKLM\...\InprocServer32: [Default-shell32] %SystemRoot%\system32\shell32.dll ATTENTION! ====> ZeroAccess
Startup: C:\Users\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)

==================== Services (Whitelisted) ======

2 ezSharedSvc; C:\Windows\SysWow64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS)
2 FPLService; "C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe" [260424 2011-08-18] (HP)
3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [206072 2010-10-12] (WildTangent, Inc.)
2 HP Support Assistant Service; "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" [86072 2011-09-09] (Hewlett-Packard Company)
2 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [26680 2011-07-11] (Hewlett-Packard Development Company, L.P.)
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
3 NisSrv; "C:\Program Files\Microsoft Security Client\NisSrv.exe" [291696 2012-03-26] (Microsoft Corporation)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [2656280 2011-02-01] (Intel Corporation)

========================== Drivers (Whitelisted) =============

3 clwvd; C:\Windows\System32\Drivers\clwvd.sys [31088 2010-07-28] (CyberLink Corporation)
3 Dot4Print; C:\Windows\System32\DRIVERS\Dot4Prt.sys [19968 2010-11-20] (Microsoft Corporation)
3 NVENETFD; C:\Windows\System32\DRIVERS\nvm62x64.sys [408960 2009-06-10] (NVIDIA Corporation)
3 ssadbus; C:\Windows\System32\Drivers\ssadbus.sys [157672 2011-12-07] (MCCI Corporation)
3 ssceserd; C:\Windows\System32\Drivers\ssceserd.sys [129024 2011-12-07] (MCCI Corporation)

========================== NetSvcs (Whitelisted) ===========


============ One Month Created Files and Folders ==============

2012-06-12 17:08 - 2012-06-12 17:09 - 00000000 ____D C:\FRST
2012-06-11 13:11 - 2012-06-11 18:27 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-11 10:25 - 2012-06-11 10:25 - 00000000 ____D C:\!KillBox
2012-06-11 10:24 - 2012-06-11 10:24 - 00000000 ____D C:\Users\Petra\AppData\Local\{C9D57D9A-F7BA-445B-9ADB-9D1139140275}
2012-06-11 10:22 - 2012-06-11 10:22 - 00000000 ____D C:\Users\Petra\AppData\Local\{91649688-EF59-42B7-AD75-F908A3023926}
2012-06-11 10:20 - 2012-06-11 10:20 - 00000020 ___SH C:\Users\Petra\ntuser.ini
2012-06-09 02:19 - 2012-06-11 10:51 - 00500062 ____A C:\Windows\ntbtlog.txt
2012-06-09 00:01 - 2012-06-09 00:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-09 00:01 - 2012-06-09 00:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-08 23:48 - 2012-06-08 23:48 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-08 23:45 - 2012-06-08 23:45 - 00062976 ___AH (ESET) C:\Windows\System32\proqPing64.dll
2012-06-08 23:45 - 2012-06-08 23:45 - 00056832 ___AH (ESET) C:\Windows\SysWOW64\proqPing.dll
2012-06-08 23:44 - 2012-06-08 23:54 - 00000000 ____D C:\Users\All Users\B7E858A7000177D2000BA999B4EB2367
2012-06-05 20:51 - 2012-06-11 18:27 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Omumf
2012-06-05 20:51 - 2012-06-05 20:51 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Sausac
2012-06-05 20:51 - 2012-06-05 20:51 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Aknoo
2012-06-05 02:32 - 2012-06-06 03:23 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Ruom
2012-06-05 02:32 - 2012-06-06 02:01 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Ypsa
2012-06-05 02:32 - 2012-06-05 02:32 - 00000000 ____D C:\Windows\Sun
2012-06-05 02:32 - 2012-06-05 02:32 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Sias
2012-05-28 22:21 - 2012-05-28 22:22 - 03500351 ____A C:\Users\Petra\Downloads\foto's.zip
2012-05-15 21:11 - 2012-05-15 21:11 - 00000000 ___AT C:\Windows\System32\HP_192.168.2.6_MY97H211T305C8

============ 3 Months Modified Files and Folders =============

2012-06-12 06:58 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-12 06:58 - 2009-07-13 20:51 - 00077370 ____A C:\Windows\setupact.log
2012-06-12 06:58 - 2009-07-13 20:45 - 00006144 _____ C:\Windows\System32\umstartup.etl
2012-06-12 03:23 - 2012-02-11 07:34 - 00000000 ____D C:\Users\Petra\Tracing
2012-06-12 03:22 - 2012-02-11 03:47 - 00001050 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-11 18:27 - 2012-06-11 13:11 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-11 18:27 - 2012-06-05 20:51 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Omumf
2012-06-11 10:51 - 2012-06-09 02:19 - 00500062 ____A C:\Windows\ntbtlog.txt
2012-06-11 10:25 - 2012-06-11 10:25 - 00000000 ____D C:\!KillBox
2012-06-11 10:24 - 2012-06-11 10:24 - 00000000 ____D C:\Users\Petra\AppData\Local\{C9D57D9A-F7BA-445B-9ADB-9D1139140275}
2012-06-11 10:24 - 2012-02-16 14:11 - 00000000 ____D C:\Users\Petra\AppData\Local\CrashDumps
2012-06-11 10:22 - 2012-06-11 10:22 - 00000000 ____D C:\Users\Petra\AppData\Local\{91649688-EF59-42B7-AD75-F908A3023926}
2012-06-11 10:20 - 2012-06-11 10:20 - 00000020 ___SH C:\Users\Petra\ntuser.ini
2012-06-11 10:20 - 2012-02-11 03:47 - 00001054 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-11 10:20 - 2012-02-10 05:48 - 00000000 ____D C:\users\Petra
2012-06-11 04:55 - 2012-02-11 03:45 - 00001066 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1120947554-887940989-635515387-1001UA.job
2012-06-11 04:55 - 2011-11-10 12:25 - 00706882 ____A C:\Windows\System32\perfh013.dat
2012-06-11 04:55 - 2011-11-10 12:25 - 00135872 ____A C:\Windows\System32\perfc013.dat
2012-06-11 04:55 - 2009-07-13 21:13 - 01564228 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-09 00:08 - 2011-12-11 16:35 - 01316523 ____A C:\Windows\WindowsUpdate.log
2012-06-09 00:04 - 2012-02-14 05:52 - 00001912 ____A C:\Windows\epplauncher.mif
2012-06-09 00:02 - 2009-07-13 20:45 - 00032064 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-09 00:02 - 2009-07-13 20:45 - 00032064 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-09 00:01 - 2012-06-09 00:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-09 00:01 - 2012-06-09 00:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-09 00:01 - 2012-02-14 05:52 - 01586950 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-08 23:54 - 2012-06-08 23:44 - 00000000 ____D C:\Users\All Users\B7E858A7000177D2000BA999B4EB2367
2012-06-08 23:48 - 2012-06-08 23:48 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-08 23:45 - 2012-06-08 23:45 - 00062976 ___AH (ESET) C:\Windows\System32\proqPing64.dll
2012-06-08 23:45 - 2012-06-08 23:45 - 00056832 ___AH (ESET) C:\Windows\SysWOW64\proqPing.dll
2012-06-08 22:55 - 2012-02-11 03:45 - 00001014 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1120947554-887940989-635515387-1001Core.job
2012-06-06 06:57 - 2012-04-19 02:04 - 00000000 ____D C:\Users\Petra\AppData\Local\CutePDF Writer
2012-06-06 06:57 - 2012-02-11 01:39 - 00000000 ____D C:\Users\Petra\Documents\DOGSAFE
2012-06-06 03:23 - 2012-06-05 02:32 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Ruom
2012-06-06 02:01 - 2012-06-05 02:32 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Ypsa
2012-06-05 20:51 - 2012-06-05 20:51 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Sausac
2012-06-05 20:51 - 2012-06-05 20:51 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Aknoo
2012-06-05 02:32 - 2012-06-05 02:32 - 00000000 ____D C:\Windows\Sun
2012-06-05 02:32 - 2012-06-05 02:32 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Sias
2012-06-03 12:03 - 2012-02-10 08:07 - 00000000 ____D C:\Users\Petra\AppData\Local\Windows Live
2012-06-03 11:44 - 2012-02-19 02:36 - 00000332 ____A C:\Windows\Tasks\HPCeeScheduleForPetra.job
2012-06-03 03:06 - 2012-02-11 02:11 - 00000000 ____D C:\Users\Petra\Documents\jibberish
2012-05-28 22:22 - 2012-05-28 22:21 - 03500351 ____A C:\Users\Petra\Downloads\foto's.zip
2012-05-23 20:55 - 2012-02-11 03:46 - 00002397 ____A C:\Users\Petra\Desktop\Google Chrome.lnk
2012-05-15 21:11 - 2012-05-15 21:11 - 00000000 ___AT C:\Windows\System32\HP_192.168.2.6_MY97H211T305C8
2012-05-12 05:26 - 2012-05-12 05:26 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-05-12 05:26 - 2012-05-12 05:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-10 01:51 - 2009-07-13 20:45 - 04974464 ____A C:\Windows\System32\FNTCACHE.DAT
2012-05-09 23:12 - 2012-02-16 23:53 - 57848688 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-05-09 23:12 - 2012-02-14 05:17 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-05-09 02:43 - 2012-05-09 02:43 - 00000000 ____D C:\Users\Petra\AppData\Local\ElevatedDiagnostics
2012-05-09 02:43 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2012-05-08 07:19 - 2012-02-10 06:53 - 00110664 ____A C:\Users\Petra\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-08 01:05 - 2012-02-16 00:05 - 00000000 ____D C:\Users\Petra\Documents\My Digital Editions
2012-05-07 23:57 - 2012-05-07 23:57 - 00002065 ____A C:\Users\Public\Desktop\Reader for PC.lnk
2012-05-07 23:57 - 2012-05-07 23:57 - 00000000 ____D C:\Program Files (x86)\Sony
2012-05-07 23:57 - 2012-02-11 04:15 - 00000000 ____D C:\Users\Petra\AppData\Local\Sony Corporation
2012-04-23 22:58 - 2012-04-23 22:58 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk
2012-04-23 22:58 - 2012-02-11 03:47 - 00000000 ____D C:\Program Files (x86)\Google
2012-04-19 02:00 - 2012-04-19 02:00 - 00000000 ____D C:\Program Files (x86)\GPLGS
2012-04-19 01:59 - 2012-04-19 01:59 - 00000000 ____D C:\Program Files (x86)\Acro Software
2012-04-16 06:20 - 2009-07-13 21:08 - 00032598 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-04-12 22:36 - 2012-02-14 05:31 - 00000000 ____D C:\Program Files\Adobe
2012-04-12 22:35 - 2011-11-10 04:22 - 00000000 ____D C:\Program Files (x86)\Adobe
2012-04-05 04:16 - 2012-02-10 09:32 - 00214372 ____A C:\Windows\hpoins39.dat
2012-04-05 04:16 - 2012-02-10 09:32 - 00001836 ____A C:\Users\All Users\hpzinstall.log
2012-04-05 04:14 - 2009-07-13 18:34 - 00000513 ____A C:\Windows\win.ini
2012-03-30 22:05 - 2012-05-09 20:41 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-03-30 20:39 - 2012-05-09 20:41 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-03-30 20:39 - 2012-05-09 20:41 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-03-30 19:10 - 2012-05-09 20:41 - 03146240 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-03-30 05:44 - 2009-09-25 02:33 - 00000000 ____D C:\Users\Petra\Documents\KC Oss
2012-03-30 03:35 - 2012-05-09 20:41 - 01918320 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-03-20 10:44 - 2012-03-20 10:44 - 00203888 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\MpFilter.sys
2012-03-20 10:44 - 2012-03-20 10:44 - 00098688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\NisDrvWFP.sys
2012-03-18 05:43 - 2012-03-18 05:43 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2012-03-17 23:40 - 2012-02-12 01:08 - 00000052 ____A C:\Windows\SysWOW64\DOErrors.log
2012-03-16 23:58 - 2012-05-09 20:41 - 00075120 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys
2012-03-16 02:33 - 2012-02-10 14:11 - 00000000 ____D C:\Users\Petra\AppData\Local\Adobe
2012-03-16 02:33 - 2012-02-10 07:00 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Adobe


ZeroAccess:
C:\Windows\Installer\{98db7c8a-ead7-da60-2a96-492e4f6dd608}
C:\Windows\Installer\{98db7c8a-ead7-da60-2a96-492e4f6dd608}\@
C:\Windows\Installer\{98db7c8a-ead7-da60-2a96-492e4f6dd608}\L
C:\Windows\Installer\{98db7c8a-ead7-da60-2a96-492e4f6dd608}\n
C:\Windows\Installer\{98db7c8a-ead7-da60-2a96-492e4f6dd608}\U

========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 014A9CB92514E27C0107614DF764BC06

C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2011-11-10 12:30] - [2011-11-10 12:30] - 0296320 ____A (Microsoft Corporation) DF8126BD41180351A093A3AD2FC8903B


==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

========================= Memory info ======================

Percentage of memory in use: 13%
Total physical RAM: 6091.86 MB
Available physical RAM: 5247.86 MB
Total Pagefile: 6090.01 MB
Available Pagefile: 5235.94 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

======================= Partitions =========================

1 Drive c: () (Fixed) (Total:440.66 GB) (Free:372.4 GB) NTFS ==>[System with boot components (obtained from reading drive)]
2 Drive e: (Recovery) (Fixed) (Total:20.93 GB) (Free:2.23 GB) NTFS
3 Drive f: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:1.08 GB) FAT32
5 Drive h: (USB MIKE) (Removable) (Total:1.86 GB) (Free:1.86 GB) FAT32
6 Drive x: (Boot) (Fixed) (Total:0.25 GB) (Free:0.25 GB) NTFS
7 Drive y: (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS ==>[System with boot components (obtained from reading drive)]

Schfnr. Status Grootte Vrij Dyn GPT
-------- ------------- ------- ------- --- ---
Schf 0 Online 465 GB 0 B
Schf 1 Online 1910 MB 0 B

DiskPart afsluiten...


==========================================================

Last Boot: 2012-06-07 21:23

======================= End Of Log ==========================
mploegmakers
Active Member
 
Posts: 1
Joined: June 12th, 2012, 11:26 am
Advertisement
Register to Remove

Re: Moved Post

Unread postby deltalima » June 12th, 2012, 3:01 pm

Please do not add to an existing topic.

You need to open a new thread with your problem.

May I draw your attention to THIS topic, which you should have read, that states what we need you to post, so we can help you.

If you still need help, please start a new thread an include your DDS logs:
  • DDS.txt.
  • Attach.txt.
  • Details of the problems you're experiencing.

If for any reason you can't run DDS, please let us know in your post.

This topic will now be closed.
User avatar
deltalima
Admin/Teacher
Admin/Teacher
 
Posts: 7614
Joined: February 28th, 2009, 4:38 pm
Location: UK


Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 407 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware