Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 20-08-2017 Gestart door Maarten (Beheerder) op MSI_MAARTEN (27-08-2017 15:34:45) Gestart vanaf C:\Users\Maarten\AppData\Local\Microsoft\Windows\INetCache\IE\R1AQFUE2 Geladen Profielen: Maarten (Beschikbare Profielen: Maarten) Platform: Windows 8.1 (Update) (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: IE) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Rivet Networks) C:\Program Files\Killer Networking\Network Manager\KillerService.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (Portrait Displays, Inc.) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorService.exe (MSI) C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\nsbu.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\nsbu.exe () C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe (Portrait Displays, Inc.) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColor.exe () C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSISvc32.exe (Portrait Displays, Inc) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorHelper.exe () C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSISvc64.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-Agent.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Gaming Center\Dragon Gaming Center.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Rivet Networks) C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (MSI) C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe (SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe () C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ==================== Register (gefilterd) ==================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322712 2014-10-09] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8458456 2015-05-11] (Realtek Semiconductor) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [299008 2015-04-13] (MSI) HKLM\...\Run: [NahimicMSIUILauncher] => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [170976 2015-02-25] () HKLM\...\Run: [MsiTrueColor] => C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColor.exe [3719920 2015-03-23] (Portrait Displays, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2857640 2015-05-11] (Synaptics Incorporated) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp.) HKLM-x32\...\Run: [SUPER CHARGER] => C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe [1047536 2014-02-21] (MSI) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1679360 2012-02-28] (Wondershare) HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776 2016-11-16] () HKLM-x32\...\Run: [DelaypluginInstall] => C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe HKLM-x32\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe HKU\S-1-5-21-623375149-4281091350-820470362-1001\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\Bluestacks\HD-Agent.exe [161336 2017-08-16] (BlueStack Systems, Inc.) HKU\S-1-5-21-623375149-4281091350-820470362-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27815896 2017-07-28] (Skype Technologies S.A.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-05-13] ShortcutTarget: Killer Network Manager.lnk -> C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe (Rivet Networks) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2015-05-13] ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS) Startup: C:\Users\Maarten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - HP ENVY 4500 series.lnk [2017-06-20] ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) Hosts: 127.0.0.1 local.connectme.us Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{AA6F4991-E160-41AB-8F89-0E3402BF2843}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-623375149-4281091350-820470362-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.be/ HKU\S-1-5-21-623375149-4281091350-820470362-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-623375149-4281091350-820470362-1001 -> DefaultScope {3A4D5AD9-5FB9-419B-ADB9-D9AEE325C88F} URL = SearchScopes: HKU\S-1-5-21-623375149-4281091350-820470362-1001 -> {3A4D5AD9-5FB9-419B-ADB9-D9AEE325C88F} URL = SearchScopes: HKU\S-1-5-21-623375149-4281091350-820470362-1001 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11913&l=dis&prt=NSBU&chn=1000&geo=BE&ver=22.10.0.85&locale=nl_BE&guid=721C081E-F5E5-493D-ADBF-BBDDD08EBB5C&doi=2016-09-01&gct=kwd&qsrc=2869 BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll => Geen bestand BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-08-23] (Microsoft Corporation) BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security with Backup\Engine32\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security with Backup\Engine32\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Toolbar: HKU\S-1-5-21-623375149-4281091350-820470362-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL Geen bestand Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL Geen bestand Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL Geen bestand Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL Geen bestand Handler: WSWSVCUchrome - Geen CLSID Waarde FireFox: ======== FF ProfilePath: C:\Users\Maarten\AppData\Roaming\Mozilla\Firefox\Profiles\9l7m6mz8.default-1487328223150 [2017-08-27] FF Homepage: Mozilla\Firefox\Profiles\9l7m6mz8.default-1487328223150 -> hxxps://www.google.be/?gws_rd=ssl FF Extension: (Video DownloadHelper) - C:\Users\Maarten\AppData\Roaming\Mozilla\Firefox\Profiles\9l7m6mz8.default-1487328223150\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-08-20] FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NSBU_22.7.0.76\coFFAddon FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NSBU_22.7.0.76\coFFAddon [2017-07-27] FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NSBU_22.7.0.76\coFFAddon FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll [2017-08-08] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_151.dll [2017-08-08] () FF Plugin-x32: @asperasoft.com/AsperaConnect -> C:\Program Files (x86)\Aspera\Aspera Connect\lib\3.7.0\npasperaweb_3.7.0.138427.dll [Geen bestand] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Geen bestand] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [Geen bestand] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [Geen bestand] FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-04-01] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [Geen bestand] FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [Geen bestand] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [Geen bestand] FF Plugin HKU\S-1-5-21-623375149-4281091350-820470362-1001: @citrixonline.com/appdetectorplugin -> C:\Users\Maarten\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2017-06-19] (Citrix Online) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-07-31] CHR Profile: C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-08-20] CHR Extension: (Google Presentaties) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-07-31] CHR Extension: (Google Documenten) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-07-31] CHR Extension: (Google Drive) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-31] CHR Extension: (YouTube) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-31] CHR Extension: (Norton Security Toolbar) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2017-07-31] CHR Extension: (Google Spreadsheets) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-07-31] CHR Extension: (Offline Documenten) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-08-03] CHR Extension: (Norton Identity Safe) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iikflkcanblccfahdhdonehdalibjnif [2017-07-31] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-31] CHR Extension: (Gmail) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-31] CHR Extension: (Chrome Media Router) - C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-31] CHR Profile: C:\Users\Maarten\AppData\Local\Google\Chrome\User Data\System Profile [2017-07-31] CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\Exts\Chrome.crx [2017-07-25] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\Exts\Chrome.crx [2017-07-25] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.) S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [387128 2017-08-16] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [369720 2017-08-16] (BlueStack Systems, Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4424392 2017-08-12] (Microsoft Corporation) S3 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [805632 2016-11-17] () R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [Bestand niet getekend] S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [Bestand niet getekend] R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18584 2014-10-09] (Intel Corporation) S2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [129224 2015-05-11] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344184 2017-01-24] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2014-10-03] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [156960 2015-02-25] (Intel Corporation) R2 Killer Service V2; C:\Program Files\Killer Networking\Network Manager\KillerService.exe [393216 2015-04-11] (Rivet Networks) [Bestand niet getekend] R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2015-04-13] (Micro-Star International Co., Ltd.) [Bestand niet getekend] R2 MsiTrueColorService; C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorService.exe [175344 2015-03-23] (Portrait Displays, Inc.) R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe [162800 2014-02-21] (MSI) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-03-19] () S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4278112 2013-08-02] (Symantec Corporation) R2 NSBU; C:\Program Files (x86)\Norton Security with Backup\Engine\22.10.0.85\NSBU.exe [326144 2017-07-15] (Symantec Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-10] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-10] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-10] (NVIDIA Corporation) R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2017-02-10] (NVIDIA Corporation) R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [156928 2016-11-17] () S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [805632 2016-11-17] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2015-03-19] (Intel® Corporation) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.3.1.204\WsAppService.exe [X] ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [100912 2015-04-06] (Rivet Networks, LLC.) R1 BHDrvx64; C:\Program Files (x86)\Norton Security with Backup\NortonData\22.7.0.76\Definitions\BASHDefs\20170821.001\BHDrvx64.sys [1862816 2017-06-28] (Symantec Corporation) S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2017-06-21] (Bluestack System Inc. ) R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [142136 2015-01-13] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1448248 2015-01-13] (Motorola Solutions, Inc.) S3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation) R1 ccSet_NSBU; C:\Windows\system32\drivers\NSBUx64\160A000.055\ccSetx64.sys [187520 2017-07-14] (Symantec Corporation) R3 debutfilter; C:\Windows\system32\DRIVERS\debutfilterx64.sys [34512 2017-01-12] () R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [508032 2017-06-29] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [158336 2017-06-29] (Symantec Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [254192 2015-05-11] (Intel Corporation) R1 IDSVia64; C:\Program Files (x86)\Norton Security with Backup\NortonData\22.7.0.76\Definitions\IPSDefs\20170825.001\IDSvia64.sys [1056920 2017-08-01] (Symantec Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [130224 2014-03-27] (Qualcomm Atheros, Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-02-25] (Intel Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3497240 2015-03-23] (Intel Corporation) R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\SUPER CHARGER\NTIOLib_X64.sys [13368 2012-10-26] (MSI) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-02-10] (NVIDIA Corporation) S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [19616 2015-05-11] (Windows (R) Win 7 DDK provider) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46016 2017-02-10] (NVIDIA Corporation) S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-10-18] () S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30376 2015-05-11] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31400 2015-05-11] (Synaptics Incorporated) R3 SRTSP; C:\Windows\System32\Drivers\NSBUx64\160A000.055\SRTSP64.SYS [810136 2017-07-14] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NSBUx64\160A000.055\SRTSPX64.SYS [49304 2017-07-14] (Symantec Corporation) R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [25088 2015-04-14] (SteelSeries ApS) R3 sshid; C:\Windows\System32\drivers\sshid.sys [51400 2016-05-27] (SteelSeries ApS) R3 ssps2; C:\Windows\System32\drivers\ssps2.sys [24040 2015-04-14] (SteelSeries ApS) R0 SymEFASI; C:\Windows\System32\drivers\NSBUx64\160A000.055\SYMEFASI64.SYS [1868416 2017-07-14] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NSBUx64\160A000.055\SymELAM.sys [24608 2017-05-11] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [102568 2017-07-25] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NSBUx64\160A000.055\Ironx64.SYS [301288 2017-07-14] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NSBUx64\160A000.055\SYMNETS.SYS [566912 2017-07-14] (Symantec Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) R3 WINIO; C:\Program Files (x86)\MSI\Dragon Gaming Center\winio64.sys [15160 2010-06-07] () S3 WsAudioDevice_383; C:\Windows\system32\drivers\VirtualAudio.sys [31080 2015-02-02] (Wondershare) S3 WsAudio_Device(1); C:\Windows\system32\drivers\VirtualAudio1.sys [31080 2015-08-03] (Wondershare) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2017-08-27 15:34 - 2017-08-27 15:34 - 000000000 ____D C:\FRST 2017-08-27 15:29 - 2017-08-27 15:29 - 000000000 ____D C:\Windows\System32\Tasks\Remediation 2017-08-27 15:17 - 2017-08-27 15:17 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\audacity 2017-08-27 15:17 - 2017-08-27 15:17 - 000000000 ____D C:\Users\Maarten\AppData\Local\Audacity 2017-08-27 15:16 - 2017-08-27 15:17 - 000000000 ____D C:\Program Files (x86)\Audacity 2017-08-27 15:16 - 2017-08-27 15:16 - 000001041 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2017-08-27 15:16 - 2017-08-27 15:16 - 000001029 _____ C:\Users\Public\Desktop\Audacity.lnk 2017-08-27 13:51 - 2017-08-27 13:59 - 665515497 _____ C:\Users\Maarten\Downloads\The Show Must Go On - Aflevering 4.mp4 2017-08-27 13:51 - 2017-08-27 13:59 - 574985968 _____ C:\Users\Maarten\Downloads\The Show Must Go On - Aflevering 5.mp4 2017-08-27 13:10 - 2017-08-27 13:36 - 681335191 _____ C:\Users\Maarten\Downloads\The Show Must Go On - Aflevering 3.mp4 2017-08-27 13:00 - 2017-08-26 23:54 - 033126478 _____ C:\Users\Maarten\Downloads\TVDownloader_v1.12.exe 2017-08-27 13:00 - 2017-08-26 14:01 - 000005160 _____ C:\Users\Maarten\Downloads\readme.txt 2017-08-27 12:59 - 2017-08-27 12:59 - 032834946 _____ C:\Users\Maarten\Downloads\TVDownloader1.12special.zip 2017-08-26 23:19 - 2017-08-26 23:19 - 000000000 ____D C:\Users\Maarten\Downloads\Teeveedownloader 2017-08-26 16:07 - 2017-08-27 15:10 - 000000000 ____D C:\Program Files (x86)\Bluestacks 2017-08-24 22:26 - 2017-08-24 23:03 - 3878476658 _____ C:\Users\Maarten\Downloads\Aflevering 6.zip 2017-08-23 18:12 - 2017-08-23 19:08 - 3988737575 _____ C:\Users\Maarten\Downloads\Aflevering 4.zip 2017-08-20 19:47 - 2017-08-20 19:47 - 000000000 ____D C:\Users\Maarten\dwhelper 2017-08-19 17:59 - 2017-08-19 17:59 - 000008379 _____ C:\Users\Maarten\Documents\Mastercard.xlsx 2017-08-17 01:22 - 2017-08-17 01:37 - 2645371299 _____ C:\Users\Maarten\Downloads\BASTA_WP00021684_bGSCPmjM_hires.mp4 2017-08-16 18:22 - 2017-08-17 18:00 - 2612947069 _____ C:\Users\Maarten\Downloads\SAMSON_AIM00322058_1ynPtm8K_hires (fullframe and trimmed).mp4 2017-08-09 17:46 - 2017-08-02 05:17 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-08-09 17:46 - 2017-07-21 15:40 - 000518144 _____ C:\Windows\SysWOW64\msjetoledb40.dll 2017-08-09 17:46 - 2017-07-21 15:40 - 000290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjtes40.dll 2017-08-09 17:46 - 2017-07-15 12:10 - 000536688 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2017-08-09 17:46 - 2017-07-15 12:10 - 000140016 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2017-08-09 17:46 - 2017-07-15 12:06 - 000449840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2017-08-09 17:46 - 2017-07-15 12:06 - 000136832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2017-08-09 17:46 - 2017-07-14 22:08 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2017-08-09 17:46 - 2017-07-14 20:44 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2017-08-09 17:46 - 2017-07-14 08:49 - 025733632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-08-09 17:46 - 2017-07-14 08:44 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-08-09 17:46 - 2017-07-14 08:19 - 000817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-08-09 17:46 - 2017-07-14 07:35 - 005981184 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-08-09 17:46 - 2017-07-14 07:26 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-08-09 17:46 - 2017-07-14 07:10 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2017-08-09 17:46 - 2017-07-14 06:40 - 015254016 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-08-09 17:46 - 2017-07-14 06:23 - 003240960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-08-09 17:46 - 2017-07-14 06:07 - 001545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-08-09 17:46 - 2017-07-14 05:58 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2017-08-09 17:46 - 2017-07-14 04:54 - 020270080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-08-09 17:46 - 2017-07-14 04:48 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2017-08-09 17:46 - 2017-07-14 04:38 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2017-08-09 17:46 - 2017-07-14 04:17 - 004546048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-08-09 17:46 - 2017-07-14 04:17 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-08-09 17:46 - 2017-07-14 04:12 - 000693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2017-08-09 17:46 - 2017-07-14 04:09 - 013663744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2017-08-09 17:46 - 2017-07-14 03:53 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2017-08-09 17:46 - 2017-07-14 03:50 - 001314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2017-08-09 17:46 - 2017-07-14 03:48 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2017-08-09 17:46 - 2017-07-08 22:14 - 000376672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2017-08-09 17:46 - 2017-07-08 21:12 - 004169728 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-08-09 17:46 - 2017-07-08 19:45 - 007078912 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2017-08-09 17:46 - 2017-07-08 19:05 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2017-08-09 17:46 - 2017-07-08 18:39 - 005274624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2017-08-09 17:46 - 2017-07-08 18:37 - 007797248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2017-08-09 17:46 - 2017-07-08 18:23 - 002749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2017-08-09 17:46 - 2017-07-08 17:59 - 005270016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2017-08-09 17:46 - 2017-07-08 05:46 - 000377688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys 2017-08-09 17:46 - 2017-07-08 05:16 - 007440728 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-08-09 17:46 - 2017-07-08 05:16 - 001674520 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2017-08-09 17:46 - 2017-07-08 05:16 - 001534072 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2017-08-09 17:46 - 2017-07-08 05:16 - 001499920 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2017-08-09 17:46 - 2017-07-08 05:16 - 001370328 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2017-08-09 17:46 - 2017-07-08 05:16 - 000086360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2017-08-09 17:46 - 2017-07-01 15:47 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswdat10.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000616448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstext40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll 2017-08-09 17:46 - 2017-07-01 15:47 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter40.dll 2017-08-09 17:46 - 2017-06-24 18:46 - 000424448 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2017-08-09 17:46 - 2017-06-24 18:16 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll 2017-08-09 17:46 - 2017-06-15 16:17 - 002551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2017-08-09 17:46 - 2017-06-15 16:16 - 001920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2017-08-09 17:46 - 2017-06-13 19:51 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2017-08-09 17:46 - 2017-06-13 19:23 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2017-08-09 17:46 - 2017-06-13 19:19 - 000383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll 2017-08-09 17:46 - 2017-06-13 19:16 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll 2017-08-09 17:46 - 2017-06-13 19:11 - 000238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2017-08-09 17:46 - 2017-06-13 19:07 - 000304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2017-08-09 17:46 - 2017-06-13 16:17 - 000656384 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2017-08-09 17:46 - 2017-06-13 16:16 - 000252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2017-08-09 17:46 - 2017-06-13 11:47 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2017-08-09 17:46 - 2017-06-13 11:09 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2017-08-09 17:46 - 2017-06-13 10:22 - 001436160 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-08-09 17:46 - 2017-06-13 10:16 - 000445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2017-08-09 17:46 - 2017-06-13 10:10 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2017-08-09 17:46 - 2017-06-13 10:07 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2017-08-09 17:46 - 2017-06-13 10:03 - 000302080 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2017-08-09 17:46 - 2017-06-13 09:54 - 000374272 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2017-08-09 17:46 - 2017-06-13 09:50 - 001547264 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2017-08-09 17:46 - 2017-06-12 02:14 - 000276320 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2017-08-09 17:46 - 2017-06-11 22:13 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll 2017-08-09 17:46 - 2017-06-11 22:11 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2017-08-09 17:46 - 2017-06-11 22:02 - 002778112 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2017-08-09 17:46 - 2017-06-11 22:02 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2017-08-09 17:46 - 2017-06-11 21:52 - 002463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2017-08-09 17:46 - 2017-06-09 15:47 - 000448629 _____ C:\Windows\system32\ApnDatabase.xml 2017-08-09 17:46 - 2017-06-08 19:01 - 001737600 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2017-08-09 17:46 - 2017-06-08 19:01 - 001502000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2017-08-09 17:46 - 2017-06-08 03:48 - 002457936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-08-09 17:46 - 2017-06-07 06:25 - 000428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-08-09 17:46 - 2017-06-06 20:38 - 000607232 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2017-08-09 17:46 - 2017-06-06 19:44 - 000530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2017-08-09 17:46 - 2017-05-27 18:42 - 001115136 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2017-08-09 17:46 - 2017-05-27 18:38 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll 2017-07-31 22:21 - 2017-08-14 23:29 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-31 22:21 - 2017-08-14 23:29 - 000002233 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-07-31 22:21 - 2017-07-31 22:21 - 000003488 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2017-07-31 22:21 - 2017-07-31 22:21 - 000003360 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2017-07-31 22:20 - 2017-07-31 22:21 - 000000000 ____D C:\Users\Maarten\AppData\Local\Deployment 2017-07-31 22:20 - 2017-07-31 22:20 - 000000000 ____D C:\Users\Maarten\AppData\Local\Apps\2.0 ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2017-08-27 15:33 - 2016-09-04 21:10 - 000000000 ____D C:\Users\Maarten\AppData\Local\CrashDumps 2017-08-27 15:33 - 2016-08-17 11:19 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\Skype 2017-08-27 15:32 - 2016-07-28 16:48 - 000000000 __SHD C:\Users\Maarten\IntelGraphicsProfiles 2017-08-27 15:32 - 2015-05-13 22:49 - 000000000 ____D C:\ProgramData\NVIDIA 2017-08-27 15:32 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2017-08-27 15:27 - 2016-07-28 16:54 - 000003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-623375149-4281091350-820470362-1001 2017-08-27 15:03 - 2017-03-06 20:17 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\GemistDownloader 2017-08-27 15:03 - 2014-11-06 04:24 - 000808640 _____ C:\Windows\system32\perfh013.dat 2017-08-27 15:03 - 2014-11-06 04:24 - 000163044 _____ C:\Windows\system32\perfc013.dat 2017-08-27 15:03 - 2014-03-18 12:03 - 001829340 _____ C:\Windows\system32\PerfStringBackup.INI 2017-08-27 15:03 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf 2017-08-27 14:37 - 2017-06-19 23:10 - 000000570 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-623375149-4281091350-820470362-1001.job 2017-08-27 14:25 - 2017-06-19 23:10 - 000000666 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-623375149-4281091350-820470362-1001.job 2017-08-27 14:14 - 2016-09-05 23:47 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\Telegram Desktop 2017-08-27 14:06 - 2017-06-03 19:16 - 000000000 ____D C:\Program Files (x86)\Apple Software Update 2017-08-27 14:06 - 2017-02-21 19:00 - 000000000 ____D C:\Program Files (x86)\Intel Driver Update Utility 2017-08-27 14:06 - 2016-12-05 22:28 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-08-27 14:02 - 2016-09-10 18:10 - 001163264 ___SH C:\Users\Maarten\Downloads\Thumbs.db 2017-08-27 12:53 - 2016-07-28 16:57 - 000003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{045A9F34-67F9-4B7E-AF83-AFF909B2CF3A} 2017-08-27 00:07 - 2016-12-08 19:07 - 000000000 ____D C:\Users\Maarten\AppData\LocalLow\Mozilla 2017-08-26 16:09 - 2016-09-08 23:08 - 000000000 ____D C:\Users\Maarten\AppData\Local\Bluestacks 2017-08-26 16:09 - 2016-09-08 23:08 - 000000000 ____D C:\ProgramData\BlueStacksSetup 2017-08-26 16:08 - 2017-06-22 12:05 - 000000000 ____D C:\ProgramData\Bluestacks 2017-08-26 16:08 - 2016-10-20 19:43 - 000001561 _____ C:\Users\Public\Desktop\BlueStacks.lnk 2017-08-26 16:08 - 2016-10-20 19:43 - 000001561 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk 2017-08-26 15:41 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI 2017-08-26 02:42 - 2016-07-28 16:48 - 000000000 ____D C:\Users\Maarten 2017-08-24 23:21 - 2014-11-06 18:16 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2017-08-24 23:05 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\ELAM 2017-08-23 22:44 - 2017-07-09 21:45 - 000000000 ____D C:\Users\Maarten\AppData\Local\GoToMeeting 2017-08-23 22:44 - 2017-06-19 23:10 - 000003676 _____ C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-623375149-4281091350-820470362-1001 2017-08-23 22:44 - 2017-06-19 23:10 - 000003580 _____ C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-623375149-4281091350-820470362-1001 2017-08-23 17:52 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-08-22 22:26 - 2016-09-24 23:57 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\vlc 2017-08-22 20:49 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\NDF 2017-08-22 17:44 - 2017-07-18 23:50 - 000003182 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-623375149-4281091350-820470362-1001 2017-08-22 17:44 - 2016-07-30 22:34 - 000002377 _____ C:\Users\Maarten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive voor Bedrijven.lnk 2017-08-22 17:44 - 2016-07-28 17:20 - 000003190 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-623375149-4281091350-820470362-1001 2017-08-19 21:43 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness 2017-08-16 00:28 - 2016-07-28 16:48 - 000000000 ____D C:\Users\Maarten\AppData\Local\Packages 2017-08-11 19:09 - 2016-07-28 17:55 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-08-11 04:36 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache 2017-08-10 15:49 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps 2017-08-10 13:03 - 2013-08-22 16:44 - 000443744 _____ C:\Windows\system32\FNTCACHE.DAT 2017-08-10 05:31 - 2016-09-01 11:32 - 000000000 ____D C:\Windows\system32\MRT 2017-08-10 05:30 - 2016-09-01 11:32 - 140394280 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-08-09 21:51 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp 2017-08-08 22:49 - 2017-04-18 18:20 - 000004594 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2017-08-08 22:49 - 2016-09-22 02:28 - 000004398 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-08-08 22:49 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2017-08-08 22:49 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\Macromed 2017-08-08 18:30 - 2016-07-28 17:55 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2017-08-07 19:08 - 2016-09-10 22:28 - 000000000 ____D C:\ProgramData\Skype 2017-07-31 22:21 - 2016-09-22 03:14 - 000000000 ____D C:\Program Files (x86)\Google 2017-07-30 20:08 - 2016-09-24 23:57 - 000000000 ____D C:\Users\Maarten\AppData\Roaming\dvdcss 2017-07-29 02:03 - 2016-12-17 17:43 - 000835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-07-29 02:03 - 2016-12-17 17:43 - 000177648 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl ==================== Bestanden in de root van sommige mappen ======= 2016-12-20 20:14 - 2016-12-20 20:24 - 000000905 _____ () C:\Users\Maarten\AppData\Roaming\trace_FilterInstaller.1.txt 2016-12-20 20:14 - 2016-12-20 20:14 - 000001167 _____ () C:\Users\Maarten\AppData\Roaming\trace_FilterInstaller.2.txt 2016-12-20 20:14 - 2017-01-12 00:11 - 000001167 _____ () C:\Users\Maarten\AppData\Roaming\trace_FilterInstaller.txt 2016-12-20 20:14 - 2017-01-12 00:11 - 000000000 _____ () C:\Users\Maarten\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2017-03-19 17:48 - 2017-03-19 17:48 - 000000552 _____ () C:\Users\Maarten\AppData\Local\TroubleshooterConfig.json 2016-07-28 17:21 - 2016-07-28 17:21 - 000000057 _____ () C:\ProgramData\Ament.ini 2015-05-13 22:50 - 2015-05-13 22:50 - 000000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ====================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\Windows\system32\winlogon.exe => Bestand is getekend C:\Windows\system32\wininit.exe => Bestand is getekend C:\Windows\explorer.exe => Bestand is getekend C:\Windows\SysWOW64\explorer.exe => Bestand is getekend C:\Windows\system32\svchost.exe => Bestand is getekend C:\Windows\SysWOW64\svchost.exe => Bestand is getekend C:\Windows\system32\services.exe => Bestand is getekend C:\Windows\system32\User32.dll => Bestand is getekend C:\Windows\SysWOW64\User32.dll => Bestand is getekend C:\Windows\system32\userinit.exe => Bestand is getekend C:\Windows\SysWOW64\userinit.exe => Bestand is getekend C:\Windows\system32\rpcss.dll => Bestand is getekend C:\Windows\system32\dnsapi.dll => Bestand is getekend C:\Windows\SysWOW64\dnsapi.dll => Bestand is getekend C:\Windows\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2017-08-22 20:07 ==================== Eind van FRST.txt ============================