Fix resultaat van Farbar Recovery Scan Tool (x64) Versie: 02-07-2016 Gestart door Ikke (2016-07-07 18:59:02) Run:1 Gestart vanaf C:\Users\Ikke\Desktop Geladen Profielen: Ikke (Beschikbare Profielen: Ikke & DefaultAppPool) Boot Modus: Normal ============================================== fixlist inhoud: ***************** start CreateRestorePoint: CloseProcesses: Task: {0627FC9D-827F-4528-9DA0-04C06FADF59E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {189435D6-D078-442C-96EA-2540A9397BDD} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK Task: {23A37C5C-2707-49D9-AC12-18EED39A55D5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {3365D437-FB7B-45F3-8CFA-04C3E446BAF3} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {290C9BB3-76AB-4830-A474-AEA2CB2BCE80} - System32\Tasks\KuaiZip_Update => C:\Program Files\¿ìѹ\X86\Update.exe [2016-07-03] (Shanghai Guangle Network Technology Ltd) <==== AANDACHT Task: {4CE8CF76-E14B-4185-BBB0-58D6EFB345A0} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {6DD809CF-E068-49F1-B939-3D28DF8389C4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {71C5C32B-CEF9-450F-9937-C4444A348EB4} - System32\Tasks\BrowserDefendert => Sc.exe start BrowserDefendert <==== AANDACHT Task: {874CBCD4-59CF-4180-ACF5-1F6C084B933F} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {9C315F58-82DE-4BE5-8F44-5579104E9CD2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {B01805C4-86E2-4FFD-AC9B-6274CA618189} - System32\Tasks\ttwifi => C:\Program Files (x86)\ttwifi\tiantianwifi.exe <==== AANDACHT Task: {EDAEE7B8-4049-4EF9-99C0-AF0466616616} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {EF635968-66F5-42F0-BE68-3B809C6D671C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {FF6D9AED-DA9C-4039-BE19-A8DD7C9B0563} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT WMI_ActiveScriptEventConsumer_ASEC: <===== AANDACHT Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk -> hxxp://navsmart.infoIC:\Users\Ikke\AppData\Local\Smartbar\Application\SmartbarShortcutIcon.ico (Geen bestand) Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> hxxp://navsmart.info` (Geen bestand) Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> hxxp://navsmart.info (Geen bestand) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bezoek eBay.be.lnk -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cnnb&locale=nl_be&bd=all&c=1014C:\Program Files (x86)\Online Services\eBay\ebay.ico (Geen bestand) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> hxxp://navsmart.info (Geen bestand) Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> hxxp://navsmart.info (Geen bestand) ShortcutWithArgument: C:\Users\Ikke\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Ikke\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://navsmart.info ShortcutWithArgument: C:\Users\Ikke\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Ikke\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://navsmart.info ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\Ikke\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://navsmart.info AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\ProgramData\Temp:373E1720 [118] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com FirewallRules: [{4503FB0F-5DC1-4331-9592-CE9938D38149}] => (Allow) C:\Users\Ikke\AppData\Local\Temp\7zS4E5E.tmp\SymNRT.exe FirewallRules: [{35B0CF5D-0C0D-4A9B-AA8C-266281594ED7}] => (Allow) C:\Users\Ikke\AppData\Local\Temp\7zS4E5E.tmp\SymNRT.exe FirewallRules: [{63E3B00F-A402-48C0-A275-EE203C337F54}] => (Allow) C:\Program Files (x86)\WandouLabs\wandoujia2.exe FirewallRules: [{05118E30-1073-424E-83C7-262283A628AA}] => (Allow) C:\Program Files (x86)\WandouLabs\wandoujia2.exe FirewallRules: [{A2980D4C-4018-49D2-8673-B73B15D57C05}] => (Allow) C:\Users\Ikke\AppData\Local\Temp\10267\inst_buychannel_37.exe FirewallRules: [{38E82375-23A4-43B7-B059-045E9F5B676C}] => (Allow) C:\Users\Ikke\AppData\Local\Temp\10267\inst_buychannel_37.exe FirewallRules: [{63EA07DA-26E3-4078-8298-F9EDD285AC9D}] => (Allow) C:\Program Files (x86)\Wifisrv\helptool.exe FirewallRules: [{11DDE17E-7BBC-46BB-A75D-B78B561788A6}] => (Allow) C:\Program Files (x86)\Wifisrv\YunExplorer.exe FirewallRules: [{6E2DE687-B06D-4500-95CF-248C78546E31}] => (Allow) C:\Program Files (x86)\Wifisrv\WifiService.exe FirewallRules: [{DE9D2571-C52C-4B5E-A03C-432D2EDF8491}] => (Allow) C:\Program Files (x86)\Wifisrv\160WiFi.exe FirewallRules: [{8F4B79B4-A822-42DE-8D0C-BA2C0BC21FBB}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{83AFC1A1-882D-4D3D-B62E-41E90FC3C7F5}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{01A2B546-8134-4DBE-9CA6-A986C823390B}] => (Allow) C:\Program Files (x86)\LuDaShi\Utils\mininews.exe FirewallRules: [{AE21FA3A-15E6-4CA5-9A57-01C227A9FC27}] => (Allow) C:\Program Files (x86)\LuDaShi\Utils\mininews.exe FirewallRules: [{F2AB0A68-9498-41E4-895A-EA5C99B6D833}] => (Allow) C:\Program Files (x86)\Wifisrv\\WifiService.exe HKLM\...\Run: [WINCOMQFS] => "C:\Program Files (x86)\mpck\wincom_QFS.exe" HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [EYAN] => C:\Users\Ikke\AppData\Roaming\THREADAPP.exe HKU\S-1-5-21-793420487-3973914027-3052291673-1001\...\Run: [svchost0] => C:\Program Files (x86)\UCBrowser\Application\UUC0789.exe ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => C:\Program Files\¿ìѹ\X64\KZipShell.dll [2016-07-03] () GroupPolicy: Restrictie - Chrome <======= AANDACHT HKU\S-1-5-21-793420487-3973914027-3052291673-1001\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=7617002710D447A0&affID=121564&tsp=4965 SearchScopes: HKU\S-1-5-21-793420487-3973914027-3052291673-1001 -> bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKU\S-1-5-21-793420487-3973914027-3052291673-1001 -> {1C669CAD-8AC7-4564-90F8-61C743291DB6} URL = CHR StartupUrls: areraiedchegoghqituty -> "search.mpc.am" CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - R2 KuaizipUpdateChecker; C:\Program Files\¿ìѹ\X86\kuaizipUpdateChecker.dll [219072 2016-07-03] () S2 shnCldchr.exe; "C:\Program Files (x86)\Qerlegherzerk\shnCldchr.exe" {C25DA384-2010-45A4-A1ED-BFA540D4789B} {9DC74CD5-24EA-4ADE-9C42-608A8CE17116} [X] S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-07-03] () S3 ComputerZ_x64; \??\C:\Program Files (x86)\LuDaShi\ComputerZ_x64.sys [X] U3 idsvc; geen ImagePath NETSVCx32: HpSvc -> geen bestandpad. C:\WINDOWS\system32\Drivers\EsgScanner.sys C:\Users\Ikke\Downloads\SpyHunter-Installer.exe C:\Program Files (x86)\Qerlegherzerk C:\Program Files (x86)\UCBrowser C:\Users\Ikke\AppData\Roaming\THREADAPP.exe C:\Program Files (x86)\mpck C:\Program Files (x86)\LuDaShi C:\Program Files (x86)\Wifisrv C:\Program Files (x86)\WandouLabs C:\Program Files\¿ìѹ C:\Program Files (x86)\ttwifi C:\Users\Ikke\AppData\Roaming\ludashi C:\Users\Ikke\AppData\Roaming\MCorp C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC C:\WINDOWS\system32\Drivers\cdmsnrootw_s.sys C:\Users\Ikke\AppData\Roaming\lockhomepage 2C:\Users\Ikke\AppData\Roaming\xdo.zip C:\Users\Ikke\AppData\Roaming\Kuaizip C:\WINDOWS\system32\Drivers\KuaiZipDrive.sys C:\WINDOWS\System32\Tasks\KuaiZip_Update C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\¿ìѹ.lnk C:\Users\Ikke\AppData\Roaming\Softlink C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UC??? C:\Program Files\ZipTool C:\Users\Ikke\AppData\Roaming\usbboxlite_4001_o_8209_hn.exe C:\Users\Ikke\AppData\Local\app C:\Users\Ikke\AppData\Local\UCBrowser C:\Users\Ikke\AppData\Local\tuto_monetize_120160702 C:\Users\Ikke\AppData\Local\csdi_monetize_120160702 C:\Users\Ikke\AppData\Roaming\160wifi_wcid-6089.exe C:\WINDOWS\system32\Drivers\ucguard.sys C:\Users\Ikke\AppData\Local\Apps\2.0 C:\WINDOWS\system32\Drivers\MPCKpt.sys C:\WINDOWS\System32\Tasks\ttwifi C:\Users\Ikke\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk C:\WINDOWS\system32\Drivers\etc\hp.bak C:\Users\Ikke\AppData\Roaming\Checkers C:\WINDOWS\System32\Tasks\Shanot Cloud C:\Users\Ikke\AppData\Local\vefershcoobasyphijaent C:\WINDOWS\PCHEALTH C:\Program Files (x86)\GUTEF9E.tmp C:\Users\Ikke\AppData\Roaming\160wifi_wcid-6089.exe Hosts: EmptyTemp: end ***************** Herstelpunt is succesfol gemaakt. Proces succesvol afgesloten. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0627FC9D-827F-4528-9DA0-04C06FADF59E}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0627FC9D-827F-4528-9DA0-04C06FADF59E}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{189435D6-D078-442C-96EA-2540A9397BDD}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{189435D6-D078-442C-96EA-2540A9397BDD}" => sleutel is succesvol verwijderd. C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask => is succesvol verplaatst. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateExplorerShellUnelevatedTask" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{23A37C5C-2707-49D9-AC12-18EED39A55D5}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23A37C5C-2707-49D9-AC12-18EED39A55D5}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3365D437-FB7B-45F3-8CFA-04C3E446BAF3}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3365D437-FB7B-45F3-8CFA-04C3E446BAF3}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{290C9BB3-76AB-4830-A474-AEA2CB2BCE80}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{290C9BB3-76AB-4830-A474-AEA2CB2BCE80}" => sleutel is succesvol verwijderd. C:\WINDOWS\System32\Tasks\KuaiZip_Update => is succesvol verplaatst. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\KuaiZip_Update" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4CE8CF76-E14B-4185-BBB0-58D6EFB345A0}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CE8CF76-E14B-4185-BBB0-58D6EFB345A0}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6DD809CF-E068-49F1-B939-3D28DF8389C4}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6DD809CF-E068-49F1-B939-3D28DF8389C4}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{71C5C32B-CEF9-450F-9937-C4444A348EB4}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71C5C32B-CEF9-450F-9937-C4444A348EB4}" => sleutel is succesvol verwijderd. C:\WINDOWS\System32\Tasks\BrowserDefendert => is succesvol verplaatst. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BrowserDefendert" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{874CBCD4-59CF-4180-ACF5-1F6C084B933F}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{874CBCD4-59CF-4180-ACF5-1F6C084B933F}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9C315F58-82DE-4BE5-8F44-5579104E9CD2}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C315F58-82DE-4BE5-8F44-5579104E9CD2}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B01805C4-86E2-4FFD-AC9B-6274CA618189}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B01805C4-86E2-4FFD-AC9B-6274CA618189}" => sleutel is succesvol verwijderd. C:\WINDOWS\System32\Tasks\ttwifi => is succesvol verplaatst. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ttwifi" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EDAEE7B8-4049-4EF9-99C0-AF0466616616}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EDAEE7B8-4049-4EF9-99C0-AF0466616616}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF635968-66F5-42F0-BE68-3B809C6D671C}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF635968-66F5-42F0-BE68-3B809C6D671C}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FF6D9AED-DA9C-4039-BE19-A8DD7C9B0563}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FF6D9AED-DA9C-4039-BE19-A8DD7C9B0563}" => sleutel is succesvol verwijderd. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => sleutel is succesvol verwijderd. WMI_ActiveScriptEventConsumer_ASEC: <===== AANDACHT => is succesvol verwijderd. Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk -> hxxp://navsmart.infoIC:\Users\Ikke\AppData\Local\Smartbar\Application\SmartbarShortcutIcon.ico (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> hxxp://navsmart.info` (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. Shortcut: C:\Users\Ikke\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> hxxp://navsmart.info (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bezoek eBay.be.lnk -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cnnb&locale=nl_be&bd=all&c=1014C:\Program Files (x86)\Online Services\eBay\ebay.ico (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> hxxp://navsmart.info (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> hxxp://navsmart.info (Geen bestand) => Fout: Geen automatische fix gevonden voor dit item. C:\Users\Ikke\Desktop\Google Chrome.lnk => snelkoppeling argument is succesvol verwijderd.. C:\Users\Ikke\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => snelkoppeling argument is succesvol verwijderd.. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk => snelkoppeling argument is succesvol verwijderd.. C:\ProgramData\Reprise => ":wupeogjxldtlfudivq`qsp`27hfm" ADS is succesvol verwijderd.. C:\ProgramData\Temp => ":373E1720" ADS is succesvol verwijderd.. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart" => sleutel is succesvol verwijderd. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart" => sleutel is succesvol verwijderd. 127.0.0.1 down.baidu2016.com => Fout: Geen automatische fix gevonden voor dit item. 127.0.0.1 123.sogou.com => Fout: Geen automatische fix gevonden voor dit item. 127.0.0.1 www.czzsyzgm.com => Fout: Geen automatische fix gevonden voor dit item. 127.0.0.1 www.czzsyzxl.com => Fout: Geen automatische fix gevonden voor dit item. 127.0.0.1 union.baidu2019.com => Fout: Geen automatische fix gevonden voor dit item. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4503FB0F-5DC1-4331-9592-CE9938D38149} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{35B0CF5D-0C0D-4A9B-AA8C-266281594ED7} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63E3B00F-A402-48C0-A275-EE203C337F54} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{05118E30-1073-424E-83C7-262283A628AA} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A2980D4C-4018-49D2-8673-B73B15D57C05} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{38E82375-23A4-43B7-B059-045E9F5B676C} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63EA07DA-26E3-4078-8298-F9EDD285AC9D} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{11DDE17E-7BBC-46BB-A75D-B78B561788A6} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6E2DE687-B06D-4500-95CF-248C78546E31} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DE9D2571-C52C-4B5E-A03C-432D2EDF8491} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8F4B79B4-A822-42DE-8D0C-BA2C0BC21FBB} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{83AFC1A1-882D-4D3D-B62E-41E90FC3C7F5} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{01A2B546-8134-4DBE-9CA6-A986C823390B} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE21FA3A-15E6-4CA5-9A57-01C227A9FC27} => waarde is succesvol verwijderd. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F2AB0A68-9498-41E4-895A-EA5C99B6D833} => waarde is succesvol verwijderd. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\WINCOMQFS => waarde is succesvol verwijderd. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => waarde is succesvol verwijderd. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\EYAN => waarde is succesvol verwijderd. HKU\S-1-5-21-793420487-3973914027-3052291673-1001\Software\Microsoft\Windows\CurrentVersion\Run\\svchost0 => waarde is succesvol verwijderd. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\KzShlobj" => sleutel is succesvol verwijderd. "HKCR\CLSID\{AAA0C5B8-933F-4200-93AD-B143D7FFF9F2}" => sleutel is succesvol verwijderd. C:\WINDOWS\system32\GroupPolicy\Machine => is succesvol verplaatst. C:\WINDOWS\system32\GroupPolicy\GPT.ini => is succesvol verplaatst. C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => is succesvol verplaatst. HKU\S-1-5-21-793420487-3973914027-3052291673-1001\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => waarde is succesvol verwijderd. HKU\S-1-5-21-793420487-3973914027-3052291673-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => waarde is succesvol verwijderd. "HKU\S-1-5-21-793420487-3973914027-3052291673-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1C669CAD-8AC7-4564-90F8-61C743291DB6}" => sleutel is succesvol verwijderd. HKCR\CLSID\{1C669CAD-8AC7-4564-90F8-61C743291DB6} => sleutel niet gevonden. Chrome StartupUrls => is succesvol verwijderd. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj" => sleutel is succesvol verwijderd. KuaizipUpdateChecker => dienst is succesvol verwijderd. shnCldchr.exe => dienst is succesvol verwijderd. EsgScanner => dienst is succesvol verwijderd. ComputerZ_x64 => dienst is succesvol verwijderd. idsvc => dienst is succesvol verwijderd. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs HpSvc => is succesvol verwijderd.