Skip to main content

How To Remove Adaware

Comments

42 comments

  • Support
    Uninstallation guideline: [url="http://www.lavasoftsupport.com/index.php?showtopic=30850"]How to uninstall Ad-Aware 9.0[/url]



    But I don't think it is lousy.



    -----------

    I have moved the topic from the forum " Ad-Aware AE (Anniversary Edition)" to "General support", since you don't know which version of Ad-Aware you have.
    0
  • Customer
    [quote name='CeciliaB' post='128112' date='Jul 9 2011, 08:41 PM']Uninstallation guideline: [url="http://www.lavasoftsupport.com/index.php?showtopic=30850"]How to uninstall Ad-Aware 9.0[/url]



    But I don't think it is lousy.



    -----------

    I have moved the topic from the forum " Ad-Aware AE (Anniversary Edition)" to "General support", since you don't know which version of Ad-Aware you have.[/quote]



    I tried already to remove with Revo Uninstaller, the problem is that Ad-Aware of Lavasoft does not appear in the list of Revo.
    0
  • Support
    I hope you used the advanced mode of Revo.



    AppRemover is an uninstallation program specialized in removing antivirus and similar programs. Maybe that can help you.

    [url="http://www.appremover.com/"]http://www.appremover.com/[/url]



    Another solution is to make a system restore to a date before you deleted Ad-Aware files:

    Start - All programs - Accessories - System Tools
    0
  • Customer
    [quote name='CeciliaB' post='128120' date='Jul 10 2011, 07:45 PM']I hope you used the advanced mode of Revo.



    AppRemover is an uninstallation program specialized in removing antivirus and similar programs. Maybe that can help you.

    [url="http://www.appremover.com/"]http://www.appremover.com/[/url]



    Another solution is to make a system restore to a date before you deleted Ad-Aware files:

    Start - All programs - Accessories - System Tools[/quote]



    I used the advanced mode of Revo.

    I have downloaded appremover, but also there it does not appear.

    Not done a system restore yet.
    0
  • Support
    If the system restore doesn't work in normal mode, you can try to do it in safe mode.
    0
  • Customer
    [quote name='CeciliaB' post='128130' date='Jul 11 2011, 01:19 PM']If the system restore doesn't work in normal mode, you can try to do it in safe mode.[/quote]



    But why should I do a system restore? When Ad-Aware was compleet, the removal did not work either with Revo.

    Maybe you mean: and after that a new installation of Ad-Aware? Does the newest edition has a 'uninstall'option?
    0
  • Customer
    I also tried to uninstall Ad Aware using Revo but while uninstalling I got the message Ad Aware is running and close the program first and then try uninstall. But, I have close all the applications, restart the PC but I am getting the same problem? What is the reason for this error? can anyone help me about this?
    0
  • Support
    [quote name='Stephanie7' post='128160' date='Jul 12 2011, 10:01 AM']But why should I do a system restore? When Ad-Aware was compleet, the removal did not work either with Revo.

    Maybe you mean: and after that a new installation of Ad-Aware? Does the newest edition has a 'uninstall'option?[/quote]

    Sorry, I thought that Ad-Aware was working before you started to remove things. It is always easier for uninstallation programs to work if the program is complete. What was the problem before you started to remove things?
    0
  • Support
    [quote name='Chris13Foy' post='128163' date='Jul 12 2011, 11:48 AM']I also tried to uninstall Ad Aware using Revo but while uninstalling I got the message Ad Aware is running and close the program first and then try uninstall. But, I have close all the applications, restart the PC but I am getting the same problem? What is the reason for this error? can anyone help me about this?[/quote]

    Have you turned off Ad-Watch before running Revo, that is followed the instruction?

    [url="http://www.lavasoftsupport.com/index.php?showtopic=30850"]How to uninstall Ad-Aware 9.0[/url]
    0
  • Customer
    [quote name='CeciliaB' post='128166' date='Jul 12 2011, 02:16 PM']Sorry, I thought that Ad-Aware was working before you started to remove things. It is always easier for uninstallation programs to work if the program is complete. What was the problem before you started to remove things?[/quote]



    The problem was that there was no way to remove Ad-Aware so I tried to remove it by myself. I tried to remove registernames of Ad-Aware and Lavasoft. That did not work either. But I have removed something because Ad-Aware does not start up anymore.



    Why is there no uninstall option? Does the newest version has an uninstall option?
    0
  • Support
    After a successful installation Ad-Aware should be listed in "Control Panel" - "Add and remove programs" or "Programs and features" (depending on Windows version), and it should be possible to uninstall it just as other programs. But using Revo to uninstall Ad-Aware removes more than the standard Windows uninstallation.



    Is it possible to install Ad-Aware again? Then hopefully Ad-Aware should appear in the lists of programs that can be uninstalled.
    0
  • Customer
    [quote name='CeciliaB' post='128195' date='Jul 13 2011, 01:41 AM']After a successful installation Ad-Aware should be listed in "Control Panel" - "Add and remove programs" or "Programs and features" (depending on Windows version), and it should be possible to uninstall it just as other programs.[/quote]

    It should, but it is not. You don't believe me?



    [quote name='CeciliaB' post='128195' date='Jul 13 2011, 01:41 AM']But using Revo to uninstall Ad-Aware removes more than the standard Windows uninstallation.[/quote]

    Ad-Aware does not appear in the list of Revo. You don't believe?

    I don't say it again and again.



    [quote name='CeciliaB' post='128195' date='Jul 13 2011, 01:41 AM']Is it possible to install Ad-Aware again? Then hopefully Ad-Aware should appear in the lists of programs that can be uninstalled.[/quote]

    It appear in the list 'Software' but I am afraid the samething happen: it wil not be uninstalled.



    That's why I am asking why there is no 'uninstall' option in Ad-Aware itself. Like it used to be, a long time ago.
    0
  • Support
    Of course I believe you regarding your computer. I am just trying to figure out what has happened in you computer and explain how it is supposed to be.



    I don't work at Lavasoft and I don't know why they have removed a function.
    0
  • Customer
    [quote name='CeciliaB' post='128206' date='Jul 13 2011, 03:32 PM']Of course I believe you regarding your computer. I am just trying to figure out what has happened in you computer and explain how it is supposed to be.



    I don't work at Lavasoft and I don't know why they have removed a function.[/quote]



    In Programfiles I have removed everything one by one, but Shellext.dll is not removable.

    In Software there is no option 'remove' with Ad-aware.
    0
  • Customer
    [quote name='CeciliaB' post='128275' date='Jul 15 2011, 08:29 PM']You cannot remove shellext.dll since Windows is using it. I believe the file is taking care of the scanning item that is visible when you right-click a file. To be able to remove the file you must first remove that right-click menu item in the registry. If you delete the file but not the item in the registry Windows maybe starts hanging when you right-click a file. If you want to remove Ad-Aware manually you must start with removing all references to Ad-Aware in the registry, otherwise you might get different kind of error messages or other issues.[/quote]



    I tried to remove all the entries in the registry, but once I had deleted one thing, the next time it was there again. Like I said before, also deleting Ad-Aware and Lavasoft entries in the Registry is not possible!
    0
  • Support
    Seems that Ad-Aware is well protected against malicious programs that want to remove it.



    Well, you don't have many possibilities left now. Why not try a system restore or a new installation?



    We could see if there are any parts of Ad-Aware that still is running with DDS. Save DDS to your desktop: [url="http://download.bleepingcomputer.com/sUBs/dds.scr"]http://download.bleepingcomputer.com/sUBs/dds.scr[/url]



    Double-click on the DDS tool to run it.



    When finished, DDS will open two (2) logs:

    1. DDS.txt

    2. Attach.txt



    Save them to your desktop and paste their content into your answer.
    0
  • Support
    You cannot remove shellext.dll since Windows is using it. I believe the file is taking care of the scanning item that is visible when you right-click a file. To be able to remove the file you must first remove that right-click menu item in the registry. If you delete the file but not the item in the registry Windows maybe starts hanging when you right-click a file. If you want to remove Ad-Aware manually you must start with removing all references to Ad-Aware in the registry, otherwise you might get different kind of error messages or other issues.
    0
  • Customer
    [quote name='CeciliaB' post='128285' date='Jul 16 2011, 11:09 AM']Seems that Ad-Aware is well protected against malicious programs that want to remove it.



    Well, you don't have many possibilities left now. Why not try a system restore or a new installation?



    We could see if there are any parts of Ad-Aware that still is running with DDS. Save DDS to your desktop: [url="http://download.bleepingcomputer.com/sUBs/dds.scr"]http://download.bleepingcomputer.com/sUBs/dds.scr[/url]



    Double-click on the DDS tool to run it.



    When finished, DDS will open two (2) logs:

    1. DDS.txt

    2. Attach.txt



    Save them to your desktop and paste their content into your answer.[/quote]



    Here it is:



    DDS (Ver_2011-07-14.01) - NTFS_x86

    Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_26

    Run by gebruiker at 14:44:39 on 2011-07-16

    Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.2047.1240 [GMT 2:00]

    .

    AV: AVG Anti-Virus Free Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}

    .

    ============== Running Processes ================

    .

    \??\C:\PROGRA~1\AVG\AVG10\avgchsvx.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

    C:\Program Files\AVG\AVG10\avgwdsvc.exe

    C:\Program Files\Bonjour\mDNSResponder.exe

    C:\WINDOWS\system32\CTsvcCDA.exe

    C:\Program Files\Creative\Shared Files\CTDevSrv.exe

    C:\Program Files\Java\jre6\bin\jqs.exe

    C:\WINDOWS\system32\Tablet.exe

    C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

    C:\Program Files\AVG\AVG10\avgnsx.exe

    C:\WINDOWS\System32\alg.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\SOUNDMAN.EXE

    C:\WINDOWS\system32\ezSP_Px.exe

    C:\WINDOWS\system32\taskswitch.exe

    C:\WINDOWS\system32\rundll32.exe

    C:\Program Files\Brownie\BrstsWnd.exe

    C:\Program Files\Andrea Electronics\AudioCommander\AudioCommander.exe

    C:\Program Files\Andrea Electronics\AudioCommander\AEFltrs.exe

    C:\Program Files\Andrea Electronics\VoiceCenter\AndreaVC.exe

    C:\Program Files\AVG\AVG10\avgtray.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Common Files\Java\Java Update\jusched.exe

    C:\Program Files\Creative\Creative Media Lite\CTZDetec.exe

    C:\Program Files\Creative\Software Update 3\SoftAuto.exe

    C:\Program Files\Messenger\msmsgs.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\WebNoti\WebNoti.exe

    C:\Program Files\Brownie\brpjp04a.exe

    C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

    C:\Program Files\iPod\bin\iPodService.exe

    C:\Program Files\Outlook Express\msimn.exe

    \??\C:\PROGRA~1\AVG\AVG10\avgrsx.exe

    \??\C:\Program Files\AVG\AVG10\avgcsrvx.exe

    C:\Program Files\Mozilla Firefox\firefox.exe

    C:\WINDOWS\system32\wbem\wmiprvse.exe

    C:\WINDOWS\System32\svchost.exe -k netsvcs

    C:\WINDOWS\system32\svchost.exe -k NetworkService

    C:\WINDOWS\system32\svchost.exe -k LocalService

    C:\WINDOWS\system32\svchost.exe -k LocalService

    C:\WINDOWS\system32\svchost.exe -k bthsvcs

    C:\WINDOWS\system32\svchost.exe -k imgsvc

    .

    ============== Pseudo HJT Report ===============

    .

    uStart Page = hxxp://www.google.nl/

    uDefault_Search_URL = hxxp://www.google.com/ie

    uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8

    uProxyOverride = localhost;*.local

    uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

    BHO: Adobe PDF Reader Help bij koppelingen: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll

    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

    BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - c:\program files\avg\avg10\avgssie.dll

    BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.1.1309.3572\swg.dll

    BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll

    BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

    uRun: [CTZDetec.exe] "c:\program files\creative\creative media lite\CTZDetec.exe"

    uRun: [SoftAuto.exe] "c:\program files\creative\software update 3\SoftAuto.exe"

    uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background

    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe

    uRun: [WebNoti] c:\program files\webnoti\WebNoti.exe

    uRunOnce: [JWOSetup] JWOSetup.exe -u

    mRun: [SoundMan] SOUNDMAN.EXE

    mRun: [ezShieldProtector for Px] c:\windows\system32\ezSP_Px.exe

    mRun: [CoolSwitch] c:\windows\system32\taskswitch.exe

    mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent

    mRun: [BrStsWnd] c:\program files\brownie\BrstsWnd.exe Autorun

    mRun: [AudioCommander] "c:\program files\andrea electronics\audiocommander\AudioCommander.exe" /tray

    mRun: [AEFltrs] "c:\program files\andrea electronics\audiocommander\AEFltrs.exe" /NoDlg

    mRun: [VoiceCenter] "c:\program files\andrea electronics\voicecenter\AndreaVC.exe" /tray

    mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe

    mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime

    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"

    mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

    mRun: [JWOSetup] JWOSetup.exe -en

    mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"

    dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE

    uPolicies-Explorer: NoDriveTypeAutoRun = dword:323

    uPolicies-Explorer: NoDriveAutoRun = dword:67108863

    uPolicies-Explorer: NoDrives = dword:0

    mPolicies-Explorer: NoDriveAutoRun = dword:67108863

    mPolicies-Explorer: NoDriveTypeAutoRun = dword:323

    mPolicies-Explorer: NoDrives = dword:0

    mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1

    mPolicies-Explorer: NoDriveTypeAutoRun = dword:323

    mPolicies-Explorer: NoDriveAutoRun = dword:67108863

    IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200

    IE: E&xporteren naar Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000

    IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe

    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe

    .

    INFO: HKCU has more than 50 listed domains.

    If you wish to scan all of them, select the 'Force scan all domains' option.

    .

    .

    INFO: HKLM has more than 50 listed domains.

    If you wish to scan all of them, select the 'Force scan all domains' option.

    .

    DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} - hxxp://www.creative.com/su/ocx/15031/CTSUEng.cab

    DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204

    DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} - hxxp://download.ewido.net/ewidoOnlineScan.cab

    DPF: {1D185838-009D-47C8-824B-B65B4854430E} - hxxp://quickfix2.chello.nl/quickfix2/asp/chelloInstall.CAB

    DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} - hxxp://musicstore.connect.com/XSL/mb_us/html/activexplayer/SMALStreaming.cab

    DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdate/content/opuc2.cab

    DPF: {55027008-315F-4F45-BBC3-8BE119764741} - hxxp://static.slide.com/uploader/SlideImageUploader.cab

    DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://www.bitdefender.com/scan8/oscan8.cab

    DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://www.creative.com/softwareupdate/su/ocx/15101/CTSUEng.cab

    DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1124110007421

    DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab

    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

    DPF: {A796D216-2DE1-4EA8-BABB-FE6E7C959098} - hxxp://www.hp.com/cpso-support-new/SDD/hpsddObjSigned.cab

    DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - hxxp://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab

    DPF: {C58EFA10-2CC0-4C50-8C77-B326555EC1B7} - hxxp://quickfix2.chello.nl/quickfix2/asp/LaunchApp.CAB

    DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab

    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

    DPF: {D83C1BD1-DCBB-11D4-9425-0050BF33FA6E} - hxxp://www.cyclomedia.nl/download/components/CycloScopeLite.cab

    DPF: {DE22A7AB-A739-4C58-AD52-21F9CD6306B7} - hxxp://download.microsoft.com/download/7/E/6/7E6A8567-DFE4-4624-87C3-163549BE2704/clearadj.cab

    DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15111/CTPID.cab

    TCP: NameServer = 213.46.228.196 62.179.104.196

    TCP: Interfaces\{29AB6F71-67CE-43C7-9FD0-47A60B108259} : DHCPNameServer = 213.46.228.196 62.179.104.196

    Handler: ipp - <Clsid value has no data>

    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll

    Handler: msdaipp - <Clsid value has no data>

    Notify: AtiExtEvent - Ati2evxx.dll

    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

    mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "c:\program files\outlook express\setup50.exe" /APP:OE /CALLER:WINNT /user /install

    mASetup: {7790769C-0471-11d2-AF11-00C04FA35D02} - "c:\program files\outlook express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install

    IFEO: Your Image File Name Here without a path - ntsd -d

    .

    ================= FIREFOX ===================

    .

    FF - ProfilePath - c:\documents and settings\gebruiker\application data\mozilla\firefox\profilesa42b5n7.standaardgebruiker\

    FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig?hl=nl&t=3|http://www.google.com/search?hl=nl&client=ig&q=weather+Amsterdam

    FF - component: c:\program files\avg\avg10\firefox4\components\avgssff4.dll

    FF - component: c:\program files\avg\avg10\firefox4\components\avgssff5.dll

    FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll

    FF - plugin: c:\program files\google\google updater\2.4.1536.6592\npCIDetect13.dll

    FF - plugin: c:\program files\google\picasa3\npPicasa3.dll

    FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll

    FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll

    FF - Ext: IE View: {6e84150a-d526-41f1-a480-a67d3fed910d} - %profile%\extensions\{6e84150a-d526-41f1-a480-a67d3fed910d}

    FF - Ext: DownloadHelper: {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - %profile%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

    FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}

    FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

    FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\java\jre6\lib\deploy\jqs\ff

    FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension

    FF - Ext: AVG Safe Search: {1E73965B-8B48-48be-9C8D-68B920ABC1C4} - c:\program files\avg\avg10\Firefox4

    .

    ============= SERVICES / DRIVERS ===============

    .

    R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2010-9-13 22992]

    R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2010-9-7 32592]

    R0 fasttrak;fasttrak;c:\windows\system32\drivers\fasttrak.sys [2004-11-11 70656]

    R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-9-2 64288]

    R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [2004-11-11 77312]

    R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2010-9-7 248656]

    R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2010-9-7 34896]

    R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2010-9-7 297168]

    R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg10\identity protection\agent\bin\AVGIDSAgent.exe [2011-4-18 7398752]

    R2 avgwd;AVG WatchDog;c:\program files\avg\avg10\avgwdsvc.exe [2011-2-8 269520]

    R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2010-8-19 134480]

    R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2010-8-19 24144]

    R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2010-8-19 27216]

    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

    S2 Nmpdrv_N;Nmpdrv_N USB Controller Service; [x]

    S2 StarWindService;StarWind iSCSI Service;c:\program files\alcohol soft\alcohol 120\starwind\starwindservice.exe --> c:\program files\alcohol soft\alcohol 120\starwind\StarWindService.exe [?]

    S3 aeaudio2;AE USB Audio Driver2 (WDM);c:\windows\system32\drivers\AEAudio2.sys [2009-12-21 113664]

    S3 aeaudiol;AE USB Audio Driver-Lower (WDM);c:\windows\system32\drivers\AEAudioL.sys [2009-12-21 15104]

    S3 EMCR;EMCR;c:\windows\system32\drivers\emcr7sk.sys [2004-11-11 68224]

    S3 MusCAudio;MusCAudio;c:\windows\system32\drivers\MusCAudio.sys [2008-10-31 23096]

    S3 MusCVideo;MusCVideo;c:\windows\system32\drivers\MusCVideo.sys [2008-10-31 3768]

    S3 vaxscsi;vaxscsi;c:\windows\system32\drivers\vaxscsi.sys [2008-9-21 223128]

    S3 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2005-8-10 372816]

    S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]

    S4 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;"c:\program files\lavasoft\ad-aware\aawservice.exe" --> c:\program files\lavasoft\ad-aware\AAWService.exe [?]

    .

    =============== Created Last 30 ================

    .

    2011-07-08 12:08:56 -------- d-----w- c:\documents and settings\all users\application data\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}

    2011-07-08 12:02:50 -------- d-----w- c:\program files\Uniblue

    2011-07-08 12:02:39 -------- d-----w- c:\documents and settings\gebruiker\local settings\application data\PackageAware

    2011-07-08 09:30:51 -------- d-----w- c:\program files\VS Revo Group

    2011-06-29 18:39:51 -------- d-----w- c:\documents and settings\gebruiker\application data\Ambient Design

    2011-06-29 18:39:42 -------- d-----w- c:\program files\Ambient Design

    2011-06-27 14:18:00 -------- d-----w- c:\documents and settings\gebruiker\application data\inkscape

    2011-06-27 14:01:15 116736 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll

    2011-06-27 14:01:10 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll

    2011-06-27 14:01:09 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll

    2011-06-27 14:01:05 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe

    2011-06-27 14:01:00 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe

    2011-06-27 14:00:55 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe

    2011-06-27 14:00:49 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys

    2011-06-27 14:00:47 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys

    2011-06-27 14:00:43 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys

    2011-06-27 14:00:28 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys

    2011-06-27 14:00:25 154624 -c--a-w- c:\windows\system32\dllcache\wlluc48.sys

    2011-06-27 14:00:20 34890 -c--a-w- c:\windows\system32\dllcache\wlandrv2.sys

    2011-06-27 14:00:12 771581 -c--a-w- c:\windows\system32\dllcache\winacisa.sys

    2011-06-27 14:00:06 54272 -c--a-w- c:\windows\system32\dllcache\wiamsmud.dll

    2011-06-27 14:00:02 87040 -c--a-w- c:\windows\system32\dllcache\wiafbdrv.dll

    2011-06-27 13:58:54 687999 -c--a-w- c:\windows\system32\dllcache\usrwdxjs.sys

    2011-06-27 13:58:50 765884 -c--a-w- c:\windows\system32\dllcache\usrti.sys

    2011-06-27 13:58:45 113762 -c--a-w- c:\windows\system32\dllcache\usrpda.sys

    2011-06-27 13:58:41 7556 -c--a-w- c:\windows\system32\dllcache\usroslba.sys

    2011-06-27 13:58:36 224802 -c--a-w- c:\windows\system32\dllcache\usr1807a.sys

    2011-06-27 13:58:31 794399 -c--a-w- c:\windows\system32\dllcache\usr1806v.sys

    2011-06-27 13:58:26 793598 -c--a-w- c:\windows\system32\dllcache\usr1806.sys

    2011-06-27 13:58:20 794654 -c--a-w- c:\windows\system32\dllcache\usr1801.sys

    2011-06-27 13:58:17 32384 -c--a-w- c:\windows\system32\dllcache\usb101et.sys

    2011-06-27 13:58:10 94720 -c--a-w- c:\windows\system32\dllcache\umaxud32.dll

    2011-06-27 13:58:05 28160 -c--a-w- c:\windows\system32\dllcache\umaxu40.dll

    2011-06-27 13:58:00 26624 -c--a-w- c:\windows\system32\dllcache\umaxu22.dll

    2011-06-27 13:57:55 69632 -c--a-w- c:\windows\system32\dllcache\umaxu12.dll

    2011-06-27 13:57:49 50688 -c--a-w- c:\windows\system32\dllcache\umaxscan.dll

    2011-06-27 13:57:44 22912 -c--a-w- c:\windows\system32\dllcache\umaxpcls.sys

    2011-06-27 13:57:39 50176 -c--a-w- c:\windows\system32\dllcache\umaxp60.dll

    2011-06-27 13:57:34 47616 -c--a-w- c:\windows\system32\dllcache\umaxcam.dll

    2011-06-27 13:57:28 212480 -c--a-w- c:\windows\system32\dllcache\um54scan.dll

    2011-06-27 13:57:23 216576 -c--a-w- c:\windows\system32\dllcache\um34scan.dll

    2011-06-27 13:57:16 11520 -c--a-w- c:\windows\system32\dllcache\twotrack.sys

    2011-06-27 13:57:08 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys

    2011-06-27 13:57:02 525568 -c--a-w- c:\windows\system32\dllcache\tridxp.dll

    2011-06-27 13:56:57 159232 -c--a-w- c:\windows\system32\dllcache\tridkbm.sys

    2011-06-27 13:56:51 440576 -c--a-w- c:\windows\system32\dllcache\tridkb.dll

    2011-06-27 13:56:46 222336 -c--a-w- c:\windows\system32\dllcache\trid3dm.sys

    2011-06-27 13:56:40 315520 -c--a-w- c:\windows\system32\dllcache\trid3d.dll

    2011-06-27 13:56:34 34375 -c--a-w- c:\windows\system32\dllcache\tpro4.sys

    2011-06-27 13:56:29 43008 -c--a-w- c:\windows\system32\dllcache\tp4res.dll

    2011-06-27 13:56:27 82944 -c--a-w- c:\windows\system32\dllcache\tp4mon.exe

    2011-06-27 13:56:22 31744 -c--a-w- c:\windows\system32\dllcache\tp4.dll

    2011-06-27 13:56:15 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys

    2011-06-27 13:56:10 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys

    2011-06-27 13:56:05 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys

    2011-06-27 13:55:59 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys

    2011-06-27 13:55:51 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys

    2011-06-27 13:55:46 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll

    2011-06-27 13:55:44 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys

    2011-06-27 13:55:38 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys

    2011-06-27 13:55:34 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys

    2011-06-27 13:55:26 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys

    2011-06-27 13:55:19 7040 -c--a-w- c:\windows\system32\dllcache\tandqic.sys

    2011-06-27 13:55:15 36640 -c--a-w- c:\windows\system32\dllcache\t2r4mini.sys

    2011-06-27 13:55:10 172768 -c--a-w- c:\windows\system32\dllcache\t2r4disp.dll

    2011-06-27 13:55:01 94293 -c--a-w- c:\windows\system32\dllcache\sxports.dll

    2011-06-27 13:54:56 103936 -c--a-w- c:\windows\system32\dllcache\sx.sys

    2011-06-27 13:54:52 3968 -c--a-w- c:\windows\system32\dllcache\swusbflt.sys

    2011-06-27 13:54:47 10240 -c--a-w- c:\windows\system32\dllcache\swpidflt.dll

    2011-06-27 13:54:42 10240 -c--a-w- c:\windows\system32\dllcache\swpdflt2.dll

    2011-06-27 13:54:37 53760 -c--a-w- c:\windows\system32\dllcache\sw_wheel.dll

    2011-06-27 13:54:32 41472 -c--a-w- c:\windows\system32\dllcache\sw_effct.dll

    2011-06-27 13:54:25 155648 -c--a-w- c:\windows\system32\dllcache\stlnprop.dll

    2011-06-27 13:54:20 53248 -c--a-w- c:\windows\system32\dllcache\stlncoin.dll

    2011-06-27 13:54:15 286432 -c--a-w- c:\windows\system32\dllcache\stlnata.sys

    2011-06-27 13:54:09 16896 -c--a-w- c:\windows\system32\dllcache\stcusb.sys

    2011-06-27 13:54:03 48736 -c--a-w- c:\windows\system32\dllcache\srwlnd5.sys

    2011-06-27 13:53:57 99840 -c--a-w- c:\windows\system32\dllcache\srusd.dll

    2011-06-27 13:53:49 24660 -c--a-w- c:\windows\system32\dllcache\spxupchk.dll

    2011-06-27 13:53:42 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys

    2011-06-27 13:53:38 106584 -c--a-w- c:\windows\system32\dllcache\spdports.dll

    2011-06-27 13:53:31 7552 -c--a-w- c:\windows\system32\dllcache\sonypvu1.sys

    2011-06-27 13:53:27 37040 -c--a-w- c:\windows\system32\dllcache\sonypi.sys

    2011-06-27 13:53:22 114688 -c--a-w- c:\windows\system32\dllcache\sonypi.dll

    2011-06-27 13:53:17 20752 -c--a-w- c:\windows\system32\dllcache\sonync.sys

    2011-06-27 13:53:12 9600 -c--a-w- c:\windows\system32\dllcache\sonymc.sys

    2011-06-27 13:53:10 7552 -c--a-w- c:\windows\system32\dllcache\sonyait.sys

    2011-06-27 13:53:10 143422 -c--a-w- c:\windows\system32\dllcache\softkey.dll

    2011-06-27 13:53:04 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys

    2011-06-27 13:52:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys

    2011-06-27 13:52:46 147200 -c--a-w- c:\windows\system32\dllcache\smidispb.dll

    2011-06-27 13:52:39 25034 -c--a-w- c:\windows\system32\dllcache\smcpwr2n.sys

    2011-06-27 13:52:34 36425 -c--a-w- c:\windows\system32\dllcache\smcirda.sys

    2011-06-27 13:52:29 24576 -c--a-w- c:\windows\system32\dllcache\smc8000n.sys

    2011-06-27 13:52:24 6784 -c--a-w- c:\windows\system32\dllcache\smbhc.sys

    2011-06-27 13:52:22 6912 -c--a-w- c:\windows\system32\dllcache\smbclass.sys

    2011-06-27 13:52:21 16000 -c--a-w- c:\windows\system32\dllcache\smbbatt.sys

    2011-06-27 13:52:15 45568 -c--a-w- c:\windows\system32\dllcache\smb3w.dll

    2011-06-27 13:52:11 33792 -c--a-w- c:\windows\system32\dllcache\smb0w.dll

    2011-06-27 13:52:05 28672 -c--a-w- c:\windows\system32\dllcache\sma0w.dll

    2011-06-27 13:51:59 28160 -c--a-w- c:\windows\system32\dllcache\sm91w.dll

    2011-06-27 13:51:53 63547 -c--a-w- c:\windows\system32\dllcache\sla30nd5.sys

    2011-06-27 13:51:48 91294 -c--a-w- c:\windows\system32\dllcache\skfpwin.sys

    2011-06-27 13:51:43 95146 -c--a-w- c:\windows\system32\dllcache\sk98xwin.sys

    2011-06-27 13:51:39 157696 -c--a-w- c:\windows\system32\dllcache\sisv256.dll

    2011-06-27 13:51:34 50432 -c--a-w- c:\windows\system32\dllcache\sisv.sys

    2011-06-27 13:51:29 238592 -c--a-w- c:\windows\system32\dllcache\sisgrv.dll

    2011-06-27 13:51:24 104064 -c--a-w- c:\windows\system32\dllcache\sisgrp.sys

    2011-06-27 13:51:19 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll

    2011-06-27 13:51:13 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys

    2011-06-27 13:51:00 161760 -c--a-w- c:\windows\system32\dllcache\sgsmusb.sys

    2011-06-27 13:50:56 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys

    2011-06-27 13:50:51 98080 -c--a-w- c:\windows\system32\dllcache\sgiulnt5.sys

    2011-06-27 13:50:46 386560 -c--a-w- c:\windows\system32\dllcache\sgiul50.dll

    2011-06-27 13:50:41 36480 -c--a-w- c:\windows\system32\dllcache\sfmanm.sys

    2011-06-27 13:50:34 6912 -c--a-w- c:\windows\system32\dllcache\serscan.sys

    2011-06-27 13:50:29 18176 -c--a-w- c:\windows\system32\dllcache\sermouse.sys

    2011-06-27 13:50:22 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys

    2011-06-27 13:50:20 11520 -c--a-w- c:\windows\system32\dllcache\scsiscan.sys

    2011-06-27 13:50:16 11648 -c--a-w- c:\windows\system32\dllcache\scsiprnt.sys

    2011-06-27 13:50:09 17536 -c--a-w- c:\windows\system32\dllcache\scr111.sys

    2011-06-27 13:50:05 16768 -c--a-w- c:\windows\system32\dllcache\scmstcs.sys

    2011-06-27 13:50:00 23936 -c--a-w- c:\windows\system32\dllcache\sccmusbm.sys

    2011-06-27 13:48:59 166720 -c--a-w- c:\windows\system32\dllcache\s3m.sys

    2011-06-27 13:47:57 715210 -c--a-w- c:\windows\system32\dllcache\r2mdmkxx.sys

    2011-06-27 13:46:51 121344 -c--a-w- c:\windows\system32\dllcache\phvfwext.dll

    2011-06-27 13:45:56 29502 -c--a-w- c:\windows\system32\dllcache\pca200e.sys

    2011-06-27 13:44:58 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys

    2011-06-27 13:44:53 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys

    2011-06-27 13:44:44 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys

    2011-06-27 13:44:40 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll

    2011-06-27 13:44:32 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys

    2011-06-27 13:44:26 9472 -c--a-w- c:\windows\system32\dllcache\ntapm.sys

    2011-06-27 13:44:22 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys

    2011-06-27 13:44:20 28672 -c--a-w- c:\windows\system32\dllcache\nscirda.sys

    2011-06-27 13:44:14 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys

    2011-06-27 13:44:10 126080 -c--a-w- c:\windows\system32\dllcache\nm5a2wdm.sys

    2011-06-27 13:44:04 32840 -c--a-w- c:\windows\system32\dllcache\ngrpci.sys

    2011-06-27 13:44:03 132695 -c--a-w- c:\windows\system32\dllcache\netwlan5.sys

    2011-06-27 13:42:59 19968 -c--a-w- c:\windows\system32\dllcache\mxnic.sys

    2011-06-27 13:42:55 19968 -c--a-w- c:\windows\system32\dllcache\mxicfg.dll

    2011-06-27 13:42:51 229439 -c--a-w- c:\windows\system32\dllcache\multibox.dll

    2011-06-27 13:42:51 22016 -c--a-w- c:\windows\system32\dllcache\mxcard.sys

    2011-06-27 13:42:46 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys

    2011-06-27 13:42:38 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys

    2011-06-27 13:42:32 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys

    2011-06-27 13:42:23 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys

    2011-06-27 13:42:21 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys

    2011-06-27 13:42:20 98304 -c--a-w- c:\windows\system32\dllcache\msir3jp.dll

    2011-06-27 13:42:11 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys

    2011-06-27 13:42:07 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys

    2011-06-27 13:42:05 51200 -c--a-w- c:\windows\system32\dllcache\msdv.sys

    2011-06-27 13:40:59 20864 -c--a-w- c:\windows\system32\dllcache\lwadihid.sys

    2011-06-27 13:39:32 26624 -c--a-w- c:\windows\system32\dllcache\irstusb.sys

    2011-06-27 13:39:29 18688 -c--a-w- c:\windows\system32\dllcache\irsir.sys

    2011-06-27 13:39:25 23552 -c--a-w- c:\windows\system32\dllcache\irmk7.sys

    2011-06-27 13:39:24 88192 -c--a-w- c:\windows\system32\dllcache\irda.sys

    2011-06-27 13:39:18 45632 -c--a-w- c:\windows\system32\dllcache\ip5515.sys

    2011-06-27 13:39:14 90200 -c--a-w- c:\windows\system32\dllcache\io8ports.dll

    2011-06-27 13:39:11 38784 -c--a-w- c:\windows\system32\dllcache\io8.sys

    2011-06-27 13:39:07 13568 -c--a-w- c:\windows\system32\dllcache\inport.sys

    2011-06-27 13:39:04 471102 -c--a-w- c:\windows\system32\dllcache\imskdic.dll

    2011-06-27 13:39:03 59904 -c--a-w- c:\windows\system32\dllcache\imkrinst.exe

    2011-06-27 13:39:01 311359 -c--a-w- c:\windows\system32\dllcache\imepadsv.exe

    2011-06-27 13:39:00 44032 -c--a-w- c:\windows\system32\dllcache\imekrmig.exe

    2011-06-27 13:39:00 102463 -c--a-w- c:\windows\system32\dllcache\imepadsm.dll

    2011-06-27 13:37:55 488383 -c--a-w- c:\windows\system32\dllcache\hsf_v124.sys

    2011-06-27 13:36:58 32768 -c--a-w- c:\windows\system32\dllcache\hpgtmcro.dll

    2011-06-27 13:35:59 17536 -c--a-w- c:\windows\system32\dllcache\gpr400.sys

    2011-06-27 13:34:58 22090 -c--a-w- c:\windows\system32\dllcache\fem556n5.sys

    2011-06-27 13:33:59 114944 -c--a-w- c:\windows\system32\dllcache\epstw2k.sys

    2011-06-27 13:32:57 8320 -c--a-w- c:\windows\system32\dllcache\dlttape.sys

    2011-06-27 13:31:59 28160 -c--a-w- c:\windows\system32\dllcache\cyzports.dll

    2011-06-27 13:30:59 22044 -c--a-w- c:\windows\system32\dllcache\cem28n5.sys

    2011-06-27 13:29:59 66557 -c--a-w- c:\windows\system32\dllcache\bcm42u.sys

    2011-06-27 13:28:41 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll

    2011-06-27 13:18:34 -------- d-----w- c:\documents and settings\gebruiker\application data\Artweaver

    2011-06-27 13:18:24 -------- d-----w- c:\documents and settings\all users\application data\Artweaver

    2011-06-27 13:00:44 -------- d-----w- c:\documents and settings\gebruiker\local settings\application data\SmoothDraw

    2011-06-22 07:12:02 -------- d-----w- c:\program files\WebNoti

    2011-06-18 12:24:28 -------- d-----w- c:\documents and settings\gebruiker\application data\JustWrite Office

    2011-06-18 12:23:57 69632 ----a-w- c:\windows\system32\JWPath.dll

    2011-06-18 12:23:57 2076672 ----a-w- c:\windows\system32\CommandBars1030vc60.dll

    2011-06-18 11:48:02 1706800 ----a-w- c:\windows\system32\GdiPlus.dll

    2011-06-18 11:48:02 122128 ----a-w- c:\windows\system32\VB6IT.DLL

    2011-06-18 06:03:14 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

    2011-06-18 06:03:08 22712 ----a-w- c:\windows\system32\drivers\mbam.sys

    2011-06-18 06:03:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

    .

    ==================== Find3M ====================

    .

    2011-06-29 04:24:14 25992 ----a-w- c:\windows\system32\pgdfgsvc.exe

    2011-06-24 07:10:02 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

    2011-06-06 11:35:33 1859072 ----a-w- c:\windows\system32\win32k.sys

    2011-05-04 02:52:22 472808 ----a-w- c:\windows\system32\deployJava1.dll

    2011-05-04 00:25:49 73728 ----a-w- c:\windows\system32\javacpl.cpl

    2011-05-02 15:31:53 692736 ----a-w- c:\windows\system32\inetcomm.dll

    2011-04-29 17:25:06 151552 ----a-w- c:\windows\system32\schannel.dll

    2011-04-29 16:19:43 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys

    2011-04-26 11:07:50 33280 ----a-w- c:\windows\system32\csrsrv.dll

    2011-04-26 11:07:50 293888 ----a-w- c:\windows\system32\winsrv.dll

    2011-04-25 16:05:05 916480 ----a-w- c:\windows\system32\wininet.dll

    2011-04-25 16:05:04 43520 ----a-w- c:\windows\system32\licmgr10.dll

    2011-04-25 16:05:04 1469440 ------w- c:\windows\system32\inetcpl.cpl

    2011-04-25 12:01:33 385024 ----a-w- c:\windows\system32\html.iec

    2011-04-21 13:37:43 105472 ----a-w- c:\windows\system32\drivers\mup.sys

    .

    ============= FINISH: 14:45:45,00 ===============

    .

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

    IF REQUESTED, ZIP IT UP & ATTACH IT

    .

    DDS (Ver_2011-07-14.01)

    .

    Microsoft Windows XP Home Edition

    Boot Device: \Device\HarddiskVolume2

    Install Date: 16-4-2005 11:28:09

    System Uptime: 16-7-2011 10:40:26 (4 hours ago)

    .

    Motherboard: AOpen | | EZ65-II

    Processor: Intel® Pentium® 4 CPU 3.00GHz | Socket 478 | 2992/200mhz

    .

    ==== Disk Partitions =========================

    .

    A: is Removable

    C: is FIXED (NTFS) - 49 GiB total, 13,915 GiB free.

    D: is FIXED (NTFS) - 78 GiB total, 39,751 GiB free.

    E: is FIXED (NTFS) - 20 GiB total, 7,02 GiB free.

    F: is CDROM ()

    .

    ==== Disabled Device Manager Items =============

    .

    Class GUID:

    Description:

    Device ID: ROOT\VOBID_2000

    Manufacturer:

    Name:

    PNP Device ID: ROOT\VOBID_2000

    Service: vobid_2

    .

    Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}

    Description: WinDriver Virtual device

    Device ID: ROOT\WINDRIVER000

    Manufacturer: Jungo Ltd

    Name: WinDriver Virtual device

    PNP Device ID: ROOT\WINDRIVER000

    Service: WinDriver

    .

    ==== System Restore Points ===================

    .

    RP587: 28-5-2011 11:07:03 - Geïnstalleerd: iTunes

    RP588: 29-5-2011 18:33:32 - Controlepunt van systeem

    RP589: 1-6-2011 7:27:12 - Controlepunt van systeem

    RP590: 3-6-2011 10:29:46 - Controlepunt van systeem

    RP591: 4-6-2011 11:14:32 - Controlepunt van systeem

    RP592: 5-6-2011 18:22:05 - Controlepunt van systeem

    RP593: 6-6-2011 18:50:31 - Controlepunt van systeem

    RP594: 8-6-2011 8:42:15 - Controlepunt van systeem

    RP595: 9-6-2011 11:02:12 - Controlepunt van systeem

    RP596: 11-6-2011 15:50:57 - Controlepunt van systeem

    RP597: 14-6-2011 9:41:42 - Controlepunt van systeem

    RP598: 15-6-2011 10:39:01 - Software Distribution Service 3.0

    RP599: 16-6-2011 12:05:12 - Controlepunt van systeem

    RP600: 18-6-2011 13:47:48 - Geïnstalleerd JustWrite Office

    RP601: 18-6-2011 13:48:01 - Geïnstalleerd JustWrite Office

    RP602: 18-6-2011 14:23:50 - Geïnstalleerd Wacom JustWrite Office

    RP603: 18-6-2011 14:23:56 - Geïnstalleerd Wacom JustWrite Office

    RP604: 18-6-2011 14:32:27 - Verwijderd Wacom JustWrite Office

    RP605: 18-6-2011 14:32:43 - Verwijderd Wacom JustWrite Office

    RP606: 19-6-2011 19:22:05 - Controlepunt van systeem

    RP607: 22-6-2011 9:30:22 - Controlepunt van systeem

    RP608: 23-6-2011 9:37:11 - Controlepunt van systeem

    RP609: 24-6-2011 17:34:15 - Controlepunt van systeem

    RP610: 25-6-2011 18:34:57 - Controlepunt van systeem

    RP611: 27-6-2011 16:53:13 - Controlepunt van systeem

    RP612: 29-6-2011 5:58:42 - Software Distribution Service 3.0

    RP613: 29-6-2011 20:39:40 - Installed ArtRage 2 Starter Edition

    RP614: 29-6-2011 22:00:07 - Installed Akamai NetSession Interface

    RP615: 1-7-2011 21:36:24 - Controlepunt van systeem

    RP616: 2-7-2011 23:22:34 - Controlepunt van systeem

    RP617: 4-7-2011 9:31:57 - Controlepunt van systeem

    RP618: 6-7-2011 10:37:29 - Controlepunt van systeem

    RP619: 7-7-2011 12:12:11 - Installed Java(tm) 6 Update 26

    RP620: 9-7-2011 0:22:27 - Controlepunt van systeem

    RP621: 10-7-2011 9:14:17 - Controlepunt van systeem

    RP622: 12-7-2011 10:22:24 - Controlepunt van systeem

    RP623: 13-7-2011 12:03:48 - Controlepunt van systeem

    RP624: 13-7-2011 21:51:43 - Software Distribution Service 3.0

    RP625: 14-7-2011 23:11:42 - Controlepunt van systeem

    RP626: 16-7-2011 11:11:22 - Controlepunt van systeem

    .

    ==== Installed Programs ======================

    .

    7-Zip 4.57

    Adobe Flash Player 10 ActiveX

    Adobe Flash Player 10 Plugin

    Adobe Reader X (10.1.0) - Nederlands

    Alt-Tab Task Switcher Powertoy for Windows XP

    Andrea Electronics AudioCommander

    Andrea Electronics USB Audio

    Andrea Electronics VoiceCenter

    Apple Application Support

    Apple Mobile Device Support

    Apple Software Update

    ArtRage 2 Starter Edition

    ATI Display Driver

    Audacity 1.2.4

    Auslogics BoostSpeed

    Auslogics Disk Defrag

    Avanquest update

    AVG 2011

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB938127)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB942615)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB944533)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB950759)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB953838)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB956390)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB958215)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB960714)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB961260)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB963027)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB969897)

    Beveiligingsupdate voor Windows Internet Explorer 7 (KB972260)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2183461)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2360131)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2416400)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2482017)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2497640)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2510531)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2530548)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB2544521)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB971961)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB972260)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB974455)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB976325)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB978207)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB981332)

    Beveiligingsupdate voor Windows Internet Explorer 8 (KB982381)

    Beveiligingsupdate voor Windows Media Player (KB2378111)

    Beveiligingsupdate voor Windows Media Player (KB975558)

    Beveiligingsupdate voor Windows XP (KB2079403)

    Beveiligingsupdate voor Windows XP (KB2115168)

    Beveiligingsupdate voor Windows XP (KB2121546)

    Beveiligingsupdate voor Windows XP (KB2160329)

    Beveiligingsupdate voor Windows XP (KB2229593)

    Beveiligingsupdate voor Windows XP (KB2259922)

    Beveiligingsupdate voor Windows XP (KB2279986)

    Beveiligingsupdate voor Windows XP (KB2286198)

    Beveiligingsupdate voor Windows XP (KB2296011)

    Beveiligingsupdate voor Windows XP (KB2296199)

    Beveiligingsupdate voor Windows XP (KB2347290)

    Beveiligingsupdate voor Windows XP (KB2360937)

    Beveiligingsupdate voor Windows XP (KB2387149)

    Beveiligingsupdate voor Windows XP (KB2393802)

    Beveiligingsupdate voor Windows XP (KB2412687)

    Beveiligingsupdate voor Windows XP (KB2419632)

    Beveiligingsupdate voor Windows XP (KB2423089)

    Beveiligingsupdate voor Windows XP (KB2436673)

    Beveiligingsupdate voor Windows XP (KB2440591)

    Beveiligingsupdate voor Windows XP (KB2443105)

    Beveiligingsupdate voor Windows XP (KB2476490)

    Beveiligingsupdate voor Windows XP (KB2476687)

    Beveiligingsupdate voor Windows XP (KB2478960)

    Beveiligingsupdate voor Windows XP (KB2478971)

    Beveiligingsupdate voor Windows XP (KB2479628)

    Beveiligingsupdate voor Windows XP (KB2479943)

    Beveiligingsupdate voor Windows XP (KB2481109)

    Beveiligingsupdate voor Windows XP (KB2483185)

    Beveiligingsupdate voor Windows XP (KB2485376)

    Beveiligingsupdate voor Windows XP (KB2485663)

    Beveiligingsupdate voor Windows XP (KB2503658)

    Beveiligingsupdate voor Windows XP (KB2503665)

    Beveiligingsupdate voor Windows XP (KB2506212)

    Beveiligingsupdate voor Windows XP (KB2506223)

    Beveiligingsupdate voor Windows XP (KB2507618)

    Beveiligingsupdate voor Windows XP (KB2507938)

    Beveiligingsupdate voor Windows XP (KB2508272)

    Beveiligingsupdate voor Windows XP (KB2508429)

    Beveiligingsupdate voor Windows XP (KB2509553)

    Beveiligingsupdate voor Windows XP (KB2511455)

    Beveiligingsupdate voor Windows XP (KB2524375)

    Beveiligingsupdate voor Windows XP (KB2535512)

    Beveiligingsupdate voor Windows XP (KB2536276)

    Beveiligingsupdate voor Windows XP (KB2544893)

    Beveiligingsupdate voor Windows XP (KB2555917)

    Beveiligingsupdate voor Windows XP (KB979687)

    Beveiligingsupdate voor Windows XP (KB980436)

    Beveiligingsupdate voor Windows XP (KB981322)

    Beveiligingsupdate voor Windows XP (KB981852)

    Beveiligingsupdate voor Windows XP (KB981957)

    Beveiligingsupdate voor Windows XP (KB981997)

    Beveiligingsupdate voor Windows XP (KB982132)

    Beveiligingsupdate voor Windows XP (KB982214)

    Beveiligingsupdate voor Windows XP (KB982665)

    Beveiligingsupdate voor Windows XP (KB982802)

    Bonjour

    Brother HL-2140

    CCleaner

    Cimaware OfficeFIX 6

    Compatibility Pack for the 2007 Office system

    ConvertHelper 2.2

    Creative Media Lite

    Dataverbruik versie 1.4

    DivX Codec

    DivX Converter

    DivX Player

    DivX Plus DirectShow Filters

    DivX Web Player

    Dragon NaturallySpeaking 9

    EasyCleaner

    ESDNOW Software Protection Technology v1.0.0

    ESET Online Scanner v3

    Express Scribe

    FileZilla Client 3.5.0

    FLV Player 1.3.3

    GigaTribe 3.01.006

    Google Gmail Notifier

    Google Updater

    Grootwoordenboek Nederlands-Engels en Engels-Nederlands

    HijackThis 2.0.2

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)

    Hotfix voor Windows Internet Explorer 7 (KB947864)

    Hotfix voor Windows XP (KB2158563)

    Hotfix voor Windows XP (KB2443685)

    HP Driver Diagnostics

    iTunes

    Java Auto Updater

    Java(tm) 6 Update 26

    MadOnion.com/3DMark2001 SE

    Malwarebytes' Anti-Malware versie 1.51.0.1200

    MediaLife

    Microsoft .NET Framework 1.1

    Microsoft .NET Framework 1.1 Security Update (KB2416447)

    Microsoft .NET Framework 1.1 Security Update (KB979906)

    Microsoft .NET Framework 2.0 Service Pack 2

    Microsoft .NET Framework 3.0 Service Pack 2

    Microsoft .NET Framework 3.5 SP1

    Microsoft .NET Framework 4 Client Profile

    Microsoft .NET Framework 4 Client Profile NLD Language Pack

    Microsoft .NET Framework 4 Extended

    Microsoft .NET Framework 4 Extended NLD Language Pack

    Microsoft Application Error Reporting

    Microsoft Compression Client Pack 1.0 for Windows XP

    Microsoft Internationalized Domain Names Mitigation APIs

    Microsoft Kernel-Mode Driver Framework Feature Pack 1.5

    Microsoft National Language Support Downlevel APIs

    Microsoft Office File Validation Add-In

    Microsoft Office Professional Editie 2003

    Microsoft Silverlight

    Microsoft User-Mode Driver Framework Feature Pack 1.0

    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053

    Microsoft Visual C++ 2005 Redistributable

    Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148

    Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

    MiraScan V4.03

    Mozilla Firefox (3.6.18)

    MP3 Player Recovery Tool

    MSXML 4.0 SP2 (KB925672)

    MSXML 4.0 SP2 (KB927978)

    MSXML 4.0 SP2 (KB936181)

    MSXML 4.0 SP2 (KB954430)

    MSXML 4.0 SP2 (KB973688)

    MSXML 6.0 Parser (KB933579)

    neroxml

    NTREGOPT 1.1j

    Nvu 1.0

    OpenMG Limited Patch 4.7-07-14-05-01

    OpenMG Secure Module 4.7.00

    Paiq Web Notifier (verwijderen)

    Picasa 3

    Pocket RAR documentation

    PowerDVD

    QuickTime

    Realtek AC'97 Audio

    Revo Uninstaller 1.92

    ScanButton 3.0

    Security Update for CAPICOM (KB931906)

    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)

    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

    Security Update for Microsoft .NET Framework 4 Extended (KB2416472)

    Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2478663)

    Security Update for Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD (KB2518870)

    SonicStage 4.3

    SoulSeek Client 156c

    SpywareBlaster 4.4

    Taalpakket voor Microsoft .NET Framework 4 Client Profile - NLD

    Taalpakket voor Microsoft .NET Framework 4 Extended - NLD

    Tablet

    There and Back

    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)

    Update for Microsoft .NET Framework 4 Client Profile (KB2473228)

    Update voor Windows Internet Explorer 8 (KB972636)

    Update voor Windows Internet Explorer 8 (KB976662)

    Update voor Windows Internet Explorer 8 (KB976749)

    Update voor Windows Internet Explorer 8 (KB980182)

    Update voor Windows XP (KB2141007)

    Update voor Windows XP (KB2345886)

    Update voor Windows XP (KB2467659)

    Update voor Windows XP (KB2541763)

    Update voor Windows XP (KB971029)

    VC80CRTRedist - 8.0.50727.762

    VLC media player 1.1.7

    VoiceOver Kit

    WebFldrs XP

    Winamp

    Winamp Applicatie Detect

    Windows Defender Signatures

    Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray

    Windows Installer Clean Up

    Windows Internet Explorer 7

    Windows Internet Explorer 8

    Windows Media Format 11 runtime

    Windows Media Player 11

    Windows Media Player Firefox Plugin

    Windows XP Service Pack 3

    WinMX

    WinRAR

    .

    ==== End Of File ===========================
    0
  • Support
    R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-9-2 64288]

    That is the driver of Ad-Aware and it is still running. It maybe is Ad-Aware version 8. I don't have XP but I will try to remember how to disable a driver in XP. Tell me if you cannot follow the description (or if you have a problem with finding the right translation in your Dutch ? Windows).



    Right-click "My computer" and select "Manage".

    When "Computer Management" is displayed, select "Device Manager".

    Menu "Show" - "Show hidden units"

    Expand "Drivers that are not Plug and Play"

    Search for a driver named "Lbd" (or maybe something with Ad-Aware).

    Right-click "Lbd" and select "Properties".

    On the tab "Driver" change auto-start to "Disabled".

    Exit "Computer Management" and restart the computer.



    Check if it is possible to remove Ad-Aware entries in the registry now.



    PS. You have old Java versions installed in Firefox. Since they contain vulnerabilities they should be uninstalled or inactivated (Firefox - Tools - Add-ons, on one of the tabs).



    PS 2. If you installed Ad-Aware while AVG has been installed it is possible that AVG interfered with the installation. It is also possible that EasyCleaner or CCleaner has removed important registry entries of Ad-Aware.
    0
  • Customer
    [quote name='CeciliaB' post='128292' date='Jul 16 2011, 07:48 PM']R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-9-2 64288]

    That is the driver of Ad-Aware and it is still running. It maybe is Ad-Aware version 8. I don't have XP but I will try to remember how to disable a driver in XP. Tell me if you cannot follow the description (or if you have a problem with finding the right translation in your Dutch ? Windows).



    Right-click "My computer" and select "Manage".

    When "Computer Management" is displayed, select "Device Manager".

    Menu "Show" - "Show hidden units"

    Expand "Drivers that are not Plug and Play"

    Search for a driver named "Lbd" (or maybe something with Ad-Aware).

    Right-click "Lbd" and select "Properties".

    On the tab "Driver" change auto-start to "Disabled".

    Exit "Computer Management" and restart the computer.



    Check if it is possible to remove Ad-Aware entries in the registry now.



    PS. You have old Java versions installed in Firefox. Since they contain vulnerabilities they should be uninstalled or inactivated (Firefox - Tools - Add-ons, on one of the tabs).



    PS 2. If you installed Ad-Aware while AVG has been installed it is possible that AVG interfered with the installation. It is also possible that EasyCleaner or CCleaner has removed important registry entries of Ad-Aware.[/quote]



    At the list 'Drivers that are not Plug and Play' is no 'Lbd', Ad-Aware or Lavasoft.

    There are two things with an exclamation mark:

    'Nmpdr v - N USB Controller Service' and

    'WinDriver Virtual Device', I don't know if that's important.
    0
  • Support
    Search in the whole list then, since it is visible in DDS it has to be somewhere.
    0
  • Customer
    [quote name='CeciliaB' post='128315' date='Jul 18 2011, 02:52 PM']Search in the whole list then, since it is visible in DDS it has to be somewhere.[/quote]



    Really, nothing of Ad-Aware, Lavasoft or Lbd in the whole list.

    Maybe this is important: I have put a Hyackthis log on a computerforum and they found problems. I am now in a procedure to clean my computer.

    Shall I wait until that's ready and then again put a DDS-log here?
    0
  • Support
    Definitely best to remove Ad-Aware when the computer is clean.

    This is the topic you mean, isn't it?

    [url="http://forum.computertotaal.nl/phpBB2/viewtopic.php?p=1458674"]http://forum.computertotaal.nl/phpBB2/view...c.php?p=1458674[/url]

    But I can't see that they have found anything malicious in the logs. Now they use ComboFix to remove Lavasoft folders and I hope you don't get any issues when right-clicking files after that.
    0
  • Customer
    [quote name='CeciliaB' post='128327' date='Jul 19 2011, 01:14 AM']Definitely best to remove Ad-Aware when the computer is clean.

    This is the topic you mean, isn't it?

    [url="http://forum.computertotaal.nl/phpBB2/viewtopic.php?p=1458674"]http://forum.computertotaal.nl/phpBB2/view...c.php?p=1458674[/url]

    But I can't see that they have found anything malicious in the logs. Now they use ComboFix to remove Lavasoft folders and I hope you don't get any issues when right-clicking files after that.[/quote]



    Indeed, that's the one.

    Which files do you mean?
    0
  • Customer
    [quote name='CeciliaB' post='128333' date='Jul 19 2011, 11:34 AM']Deleting c:\program files\Lavasoft\Ad-Aware\ShellExt.dll without changing the register sometimes means that Windows needs a long time to display the menu when you right-click a file in "My computer" or "Windows Explorer".



    Abraham54 hasn't helped you with removing the Ad-Aware driver, it is still there in the last ComboFix log. It is possible to do that with ComboFix, even if I don't like to run ComboFix in computers that aren't infected due to the risks with ComboFix but since you already have run ComboFix I can give you instructions for that when you have finished the other topic. Or maybe you can ask Abraham54 to give you the instructions for removing the Lbd driver.[/quote]



    You may give me instructions for that, because Abraham cannot help me any further. And Ad-Aware is still in 'Software'
    0
  • Support
    Deleting c:\program files\Lavasoft\Ad-Aware\ShellExt.dll without changing the register sometimes means that Windows needs a long time to display the menu when you right-click a file in "My computer" or "Windows Explorer".



    Abraham54 hasn't helped you with removing the Ad-Aware driver, it is still there in the last ComboFix log. It is possible to do that with ComboFix, even if I don't like to run ComboFix in computers that aren't infected due to the risks with ComboFix but since you already have run ComboFix I can give you instructions for that when you have finished the other topic. Or maybe you can ask Abraham54 to give you the instructions for removing the Lbd driver.
    0
  • Support
    If you have uninstalled ComboFix according to Abraham54's instruction you have to download it again.

    [url="http://www.bleepingcomputer.com/combofix/how-to-use-combofix"]http://www.bleepingcomputer.com/combofix/how-to-use-combofix[/url]



    Copy all lines in the box:

    [code]Killall&#58;&#58;

    Driver&#58;&#58;

    Lbd[/code]

    and paste into Notepad.

    Save the file on the desktop with the name CFScript.



    Prepare the computer according to the instructions for running ComboFix.

    Drag CFScript with the mouse and drop it on top of the ComboFix icon on the Desktop, the program will start in a special way.

    Paste the new ComboFix log into your answer.



    I don't understand what you mean with this:

    "Is er niets te doen aan Ad-Aware in de softwarelijst?"

    What is "softwarelijst"?
    0
  • Customer
    [quote name='CeciliaB' post='128336' date='Jul 19 2011, 01:07 PM']If you have uninstalled ComboFix according to Abraham54's instruction you have to download it again.

    [url="http://www.bleepingcomputer.com/combofix/how-to-use-combofix"]http://www.bleepingcomputer.com/combofix/how-to-use-combofix[/url]



    Copy all lines in the box:

    [code]Killall&#58;&#58;

    Driver&#58;&#58;

    Lbd[/code]

    and paste into Notepad.

    Save the file on the desktop with the name CFScript.



    Prepare the computer according to the instructions for running ComboFix.

    Drag CFScript with the mouse and drop it on top of the ComboFix icon on the Desktop, the program will start in a special way.

    Paste the new ComboFix log into your answer.



    I don't understand what you mean with this:

    "Is er niets te doen aan Ad-Aware in de softwarelijst?"

    What is "softwarelijst"?[/quote]



    Thank you, I will do it in the evening.

    'Softwarelijst' is Software list. Ad-Aware is still visible in the list 'Software'.
    0
  • Customer
    [quote name='CeciliaB' post='128338' date='Jul 19 2011, 01:39 PM']You're welcome /smile.png' class='bbc_emoticon' alt=':)' />



    Where do you find this "Software list"?

    I cannot remember any list called "Software".[/quote]



    Controlpanel! In Windows XP it's called Software and in Windows Vista it's called 'Programmes and Features'
    0
  • Support
    You're welcome /smile.png' class='bbc_emoticon' alt=':)' />



    Where do you find this "Software list"?

    I cannot remember any list called "Software".
    0

Please sign in to leave a comment.