start CreateRestorePoint: CloseProcesses: CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Gebruiker\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => Geen bestand CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Gebruiker\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Geen bestand AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1 AlternateDataStreams: C:\Program Files\Classic Shell:Win32App_1 AlternateDataStreams: C:\Program Files\GIMP 2:Win32App_1 AlternateDataStreams: C:\Program Files\iTunes:Win32App_1 AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App_1 AlternateDataStreams: C:\Program Files\onOne Software:Win32App_1 AlternateDataStreams: C:\Program Files\Paint.NET:Win32App_1 AlternateDataStreams: C:\Program Files\WinRAR:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Blurry Video Clearer Free:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Epson Software:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Extreme Thumbnail Generator:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\FileZilla FTP Client:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\HP:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\LibreOffice 5:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft Office:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Microsoft SQL Server Compact Edition:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Minecraft:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Mozilla Firefox:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Mozilla Thunderbird:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\OpenOffice 4:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Origin:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Spybot - Search & Destroy 2:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\TotalImageConverter:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Web Album Generator:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\Windows Live:Win32App_1 AlternateDataStreams: C:\Program Files (x86)\ZHPFix:Win32App_1 AlternateDataStreams: C:\WINDOWS\SysWOW64\Adobe:Win32App_1 AlternateDataStreams: C:\ProgramData\HP:Win32App_1 AlternateDataStreams: C:\ProgramData\HP Product Assistant:Win32App_1 AlternateDataStreams: C:\Users\Gebruiker\SkyDrive:ms-properties IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\123simsen.com -> www.123simsen.com Winlogon\Notify\igfxcui: igfxdev.dll [X] HKU\S-1-5-21-2083432871-1646923358-3950239412-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => Geen bestand ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => Geen bestand ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => Geen bestand ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => Geen bestand SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Geen bestand Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll Geen bestand FF NewTab: about:newtab FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-05-20] C:\WINDOWS\system32\Drivers\EsgScanner.sys C:\Program Files\Common Files\AV C:\ProgramData\Spybot - Search & Destroy C:\Program Files (x86)\Spybot - Search & Destroy 2 C:\WINDOWS\System32\Tasks\Safer-Networking C:\Users\Gebruiker\Downloads\spybot-2.4.exe Hosts: EmptyTemp: RemoveProxy: end