start CreateRestorePoint: RemoveProxy: CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{00BB2763-6A77-11D0-A535-00C04FD7D062}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{03C036F1-A186-11D0-824A-00AA005B4383}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Glowing Starter\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{06CBC9D1-92B8-41FA-B4A7-D841A0C13422}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{08244EE6-92F0-47F2-9FC9-929BAA2E7235}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Glowing Starter\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{0AF10CEC-2ECD-4B92-9581-34F6AE0637F3}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{0E5AAE11-A475-4C5B-AB00-C66DE400274E}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{104846AB-42B1-4E38-A80D-136F78C3F258}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{14074E0B-7216-4862-96E6-53CADA442A56}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{145B4335-FE2A-4927-A040-7C35AD3180EF}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{17CCA71B-ECD7-11D0-B908-00A0C9223196}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{18907F3B-9AFB-4F87-B764-F9A4E16A21B8}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1B544C20-FD0B-11CE-8C63-00AA0044B51E}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1C1800C1-3258-44C2-BE80-3DEADB6C5E39}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1E651CC0-B199-11D0-8212-00C04FC32C45}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1F486A52-3CB1-48FD-8F50-B8DC300D9F9D}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{1FDA955B-61FF-11DA-978C-0008744FAAB7}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Glowing Starter\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{280A3020-86CF-11D1-ABE6-00A0C905F375}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{30002E0C-C574-481E-A5DE-90AE54A79E10}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{336475D0-942A-11CE-A870-00AA002FEAB5}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{33D9A762-90C8-11D0-BD43-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{33FACFE0-A9BE-11D0-A520-00A0D10129C0}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{35786D3C-B075-49B9-88DD-029876E11C01}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{35B1D3BB-2D4E-4A7C-9AF0-F2F677AF7C30}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{375FF002-DD27-11D9-8F9C-0002B3988E81}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{3AE86B20-7BE8-11D1-ABE6-00A0C905F375}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{3D154A2D-D911-437E-A30C-5F56A9B7081D}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{3D6BE802-FC0D-4595-A304-E611F97089DC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{41937347-2ABA-4D4C-A4CA-6FE4F11F1BAC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{4315D437-5B8C-11D0-BD3B-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Glowing Starter\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{4DA9D034-1B99-4104-BAA8-6A42E5348FEE}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{4EFE2452-168A-11D1-BC76-00C04FB9453B}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{50EF4544-AC9F-4A8E-B21B-8A26180DB13F}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{53BD6B4E-3780-4693-AFC3-7161C2F3EE9C}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{5F6C1BA8-5330-422E-A368-572B244D3F87}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{603D3800-BD81-11D0-A3A5-00C04FD706EC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{62BE5D10-60EB-11D0-BD3B-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{640167B4-59B0-47A6-B335-A6B3C0695AEA}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{6746C347-576B-4F73-9012-CDFEEA251BC4}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{6A2E0670-28E4-11D0-A18C-00A0C9118956}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{6E682784-1ECA-4CF2-988D-96B6E89E9A4D}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{71F96385-DDD6-48D3-A0C1-AE06E8B055FB}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{720D4AC0-7533-11D0-A5D6-28DB04C10000}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{725F645B-EAED-4FC5-B1C5-D9AD0ACCBA5E}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{72EB61E0-8672-4303-9175-F2E4C68B2E7C}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{76765B11-3F95-4AF2-AC9D-EA55D8994F1A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{7EFC002A-071F-4CE7-B265-F4B4263D2FD2}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{807C1E6C-1D00-453F-B920-B61BB7CDD997}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{82C588E7-E54B-408C-9F8C-6AF9ADF6F1E9}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{860BB310-5D01-11D0-BD3B-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{88D96A06-F192-11D4-A65F-0040963251E5}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{896664F7-12E1-490F-8782-C0835AFD98FC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{8C38BFCC-8D4D-4A5A-885B-270A9B4B6003}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{9113A02D-00A3-46B9-BC5F-9C04DADDD5D7}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{934D4698-6A59-48F8-9F29-9FB30670320E}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{9AC9FBE1-E0A2-4AD6-B4EE-E212013EA917}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{9CFC2DF3-6BA3-46EF-A836-E519E81F0EC4}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{9DBD2C50-62AD-11D0-B806-00C04FD706EC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{A336CD3B-599C-4F70-A34D-E88EDE4B64C3}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{A4A1A128-768F-41E0-BF75-E4FDDD701CBA}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{AB9D6472-752F-43F6-B29E-61207BDA8E06}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{AFB6C280-2C41-11D3-8A60-0000F81E0E4A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{B155BDF8-02F0-451E-9A26-AE317CFD7779}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{B2952B16-0E07-4E5A-B993-58C52CB94CAE}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{B8967F85-58AE-4F46-9FB2-5D7904798F4B}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C100BEA3-D33A-4A4B-BF23-BBEF4663D017}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C6E13343-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C6E13344-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C6E13360-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C6E13370-30AC-11D0-A18C-00A0C9118956}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C72BE2EC-8E90-452C-B29A-AB8FF1C071FC}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{C90250F3-4D7D-4991-9B69-A5C5BC1C2AE6}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{CACAF262-9370-4615-A13B-9F5539DA4C0A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{CDA42200-BD88-11D0-BD4E-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{CFC399AF-D876-11D0-9C10-00C04FC99C8E}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Glowing Starter\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D3DCB472-7261-43CE-924B-0704BD730D5F}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D51BD5A1-7548-11CF-A520-0080C77EF58A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D51BD5A2-7548-11CF-A520-0080C77EF58A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D51BD5A3-7548-11CF-A520-0080C77EF58A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D58960BA-2EF3-4910-9E34-C911B1710180}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{DB4D8EF5-C2ED-4835-95A1-871C2327018A}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{DFFACDC5-679F-4156-8947-C5C76BC0B67F}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E0F158E1-CB04-11D0-BD4E-00A0C911CE86}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E1F1A0B8-BEEE-490D-BA7C-066C40B5E2B9}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E2B3C97F-6AE1-41AC-817A-F6F92166D7DD}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E30629D2-27E5-11CE-875D-00608CB78066}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E436EBB2-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E436EBB3-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{E436EBB5-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{ED233797-F47D-475E-9FCA-3D549E4DDAA4}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{EDB5F444-CB8D-445A-A523-EC5AB6EA33C7}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}\localserver32 -> C:\Users\GLOWIN~1\AppData\Local\Temp\230B0566313cA\temp\Mendel-Siddur-Mw Font Font.exe => Geen bestand CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{F562A2C8-E850-4F05-8E7A-E7192E4E6C23}\InprocServer32 -> geen bestandpad CustomCLSID: HKU\S-1-5-21-70928346-524487458-456366203-1000_Classes\CLSID\{FE841493-835C-4FA3-B6CC-B4B2D4719848}\InprocServer32 -> geen bestandpad ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> Geen bestand Task: {86A82879-A8D0-4660-9E8A-E0AA8E72FF71} - System32\Tasks\{37E3F796-3AA8-49C7-A3D4-42468BA665CC} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\BeestSavEFoorYou\BeestSavEFoorYou.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" "" C:\Program Files\BeestSavEFoorYou Task: {B4DA23B9-AEE5-45AD-991D-C1DE273E9D6E} - \updengine -> Geen bestand <==== AANDACHT Task: {C63E274F-D619-4BA5-BE71-49BF042528B0} - System32\Tasks\{5B30D282-9532-47D4-9C85-0263E03FA77A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\TTAAkaeTheCoupeon\TTAAkaeTheCoupeon.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" "" C:\Program Files\TTAAkaeTheCoupeon Task: {CF762F92-9DC0-43A7-AD8C-87BDB6965E9E} - System32\Tasks\{DCC8B0A9-616E-4E9C-B474-5AC2D28F6CB9} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\SaverExteNsiion\zm9avqQfZqsEAX.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" "" C:\Program Files\SaverExteNsiion HKU\S-1-5-21-70928346-524487458-456366203-1000\Software\Classes\exefile: <==== AANDACHT HKU\S-1-5-21-70928346-524487458-456366203-1000\Software\Classes\.exe: => <==== AANDACHT FirewallRules: [{166009B0-A8CF-40B1-95AD-B84CD72A3BDF}] => (Allow) C:\Users\Glowing Starter\AppData\Local\Temp\7zS0FD7\EasyInst.exe FirewallRules: [{910EA887-80BE-409A-AE24-40A0482E7766}] => (Allow) C:\Users\Glowing Starter\AppData\Local\Temp\7zS0FD7\EasyInst.exe HKLM\...\Run: [] => [X] HKU\S-1-5-21-70928346-524487458-456366203-1000\...0c966feabec1\InprocServer32: [Default-shell32] AANDACHT HKU\S-1-5-21-70928346-524487458-456366203-1000\...A8F59079A8D5}\localserver32: <==== AANDACHT ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Geen bestand) GroupPolicy: Restrictie - Chrome <==== AANDACHT SearchScopes: HKU\.DEFAULT -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL = SearchScopes: HKU\S-1-5-19 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL = SearchScopes: HKU\S-1-5-20 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL = SearchScopes: HKU\S-1-5-21-70928346-524487458-456366203-1000 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL = BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine\22.10.1.10\coIEPlg.dll [2017-08-24] (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-11] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-11] (Oracle Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.10.1.10\coIEPlg.dll [2017-08-24] (Symantec Corporation) FF ProfilePath: C:\Users\Glowing Starter\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\b106xsnh.default\Profiles\b106xsnh.default [niet gevonden] <==== AANDACHT C:\Users\Glowing Starter\AppData\Roaming\Mozilla\Firefox\naweriweentcofise FF NewTab: Mozilla\Firefox\Profiles\b106xsnh.default -> hxxp://www.trotux.com/?z=93b7f2eef6471b90f581af2g9z6mez5t3q8wez2qce&from=isr&uid=FUJITSUXMHZ2320BJXG2_K82BTA22643CTA22643CX&type=hp FF DefaultSearchEngine: Mozilla\Firefox\Profiles\b106xsnh.default -> trotux FF SelectedSearchEngine: Mozilla\Firefox\Profiles\b106xsnh.default -> trotux FF Homepage: Mozilla\Firefox\Profiles\b106xsnh.default -> hxxp://www.trotux.com/?z=93b7f2eef6471b90f581af2g9z6mez5t3q8wez2qce&from=isr&uid=FUJITSUXMHZ2320BJXG2_K82BTA22643CTA22643CX&type=hp FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.10.0.85\coFFAddon => niet gevonden FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-11] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-11] (Oracle Corporation) FF Plugin HKU\S-1-5-21-70928346-524487458-456366203-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Glowing Starter\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [Geen bestand] CHR Profile: C:\Users\Glowing Starter\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2016-09-27] <==== AANDACHT CHR Extension: (Google Drive) - C:\Users\Glowing Starter\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== AANDACHT CHR Extension: (Adblock Plus) - C:\Users\Glowing Starter\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-28] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== AANDACHT CHR Extension: (Google Wallet) - C:\Users\Glowing Starter\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-28] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== AANDACHT CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.10.1.10\Exts\Chrome.crx S2 EraserSvc11720; "C:\Program Files\Common Files\Symantec Shared\EENGINE\NS.exe" /h ccCommon [X] EmptyTemp: end