Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 27.01.2018 Gestart door Marijke (Beheerder) op LAPTOP-4FJD2SGS (29-01-2018 10:34:56) Gestart vanaf C:\Users\Marijke\Downloads Geladen Profielen: Marijke (Beschikbare Profielen: defaultuser0 & Marijke) Platform: Windows 10 Home Versie 1709 16299.125 (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: "C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe" -- "%1") Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki124757.inf_amd64_b607c305e0c4e0a1\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki124757.inf_amd64_b607c305e0c4e0a1\IntelCpHDCPSvc.exe (Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki124757.inf_amd64_b607c305e0c4e0a1\IntelCpHeciSvc.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (eVenture Limited) C:\Program Files (x86)\hide.me VPN\hidemesvc.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe (HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BsSentry.exe (CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki124757.inf_amd64_b607c305e0c4e0a1\igfxEM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardTray.exe (RuneApps) C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe (HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe (HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSATray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe (The CefSharp Authors) C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\CefSharp.BrowserSubprocess.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BgGameMon.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235944 2017-08-17] (Realtek Semiconductor) HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [231640 2016-09-20] (Realtek Semiconductor Corporation) HKLM\...\Run: [BullGuard] => C:\Program Files\BullGuard Ltd\BullGuard\BullGuardTray.exe [140216 2018-01-23] (BullGuard Ltd.) HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324600 2017-04-25] (HP) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [701984 2017-07-13] (HP Inc.) HKLM-x32\...\Run: [DSATray] => C:\Program Files (x86)\Intel Driver and Support Assistant\DsaTray.exe [131360 2018-01-17] (Intel) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [1660760 2017-06-26] (Realtek) HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9773272 2017-05-19] (Piriform Ltd) HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Run: [RuneApps Alt1] => C:\Users\Marijke\AppData\Local\Alt1Toolkit\app-1.4.5\Runeapps.Alt1.exe [1521664 2017-07-12] (RuneApps) HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Run: [HP OfficeJet 4650 series (NET)] => C:\Program Files\HP\HP OfficeJet 4650 series\Bin\ScanToPCActivationApp.exe [3770504 2017-04-06] (HP Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-01-26] ShortcutTarget: HP JumpStart Launch.lnk -> c:\Windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico () GroupPolicy: Restrictie <==== AANDACHT ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) ProxyServer: [S-1-5-21-4175743367-177076972-2086899918-1001] => 109.87.146.155:80 Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0415cfc8-5217-4ea4-baea-9ea6108ccfb7}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{09C3D709-0495-4602-864A-BA662C435BDC}: [DhcpNameServer] 109.201.137.37 109.201.137.38 Tcpip\..\Interfaces\{21a95efc-8dcf-474d-99c9-49e99b8af592}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2579b33a-3f04-44e4-ad28-0146658d5fb2}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-4175743367-177076972-2086899918-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.be/ HKU\S-1-5-21-4175743367-177076972-2086899918-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE SearchScopes: HKLM -> {29E4CD0C-B051-45BF-8ED8-52F08DFB2A5E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {29E4CD0C-B051-45BF-8ED8-52F08DFB2A5E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-4175743367-177076972-2086899918-1001 -> {29E4CD0C-B051-45BF-8ED8-52F08DFB2A5E} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-01-21] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2018-01-21] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05] (HP Inc.) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-01-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-19] (Oracle Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2018-01-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-19] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05] (HP Inc.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [antiphishing@bullguard] - c:\program files\bullguard ltd\bullguard\Files32\Antiphishing\FF\antiphishing@bullguard => niet gevonden FF HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - c:\program files\bullguard ltd\bullguard\Files32\Spamfilter\TbSpamfilter FF Extension: (BullGuard Antivirus) - c:\program files\bullguard ltd\bullguard\Files32\Spamfilter\TbSpamfilter [2017-10-29] [Verouderd] [ niet getekend] FF HKU\S-1-5-21-4175743367-177076972-2086899918-1001\...\Thunderbird\Extensions: [{380AE6CB-09B9-4373-B360-D01C2462A6E7}] - C:\Program Files\BullGuard Ltd\BullGuard\Files32\backup\thunderbirdbkplugin FF Extension: (BullGuard Backup) - C:\Program Files\BullGuard Ltd\BullGuard\Files32\backup\thunderbirdbkplugin [2017-10-29] [Verouderd] [ niet getekend] FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-19] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-19] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-01-21] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-01-21] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2016-09-01] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.be/" CHR Profile: C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default [2018-01-28] CHR Extension: (Presentaties) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-05] CHR Extension: (Documenten) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-18] CHR Extension: (Google Drive) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-31] CHR Extension: (YouTube) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-31] CHR Extension: (Adobe Acrobat) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-23] CHR Extension: (Spreadsheets) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-05] CHR Extension: (Offline Documenten) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-31] CHR Extension: (AdBlock) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-12-18] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22] CHR Extension: (Gmail) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-31] CHR Extension: (Chrome Media Router) - C:\Users\Marijke\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-18] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx StartMenuInternet: Google Chrome Beta - C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S2 BsBackup; C:\Program Files\BullGuard Ltd\BullGuard\BsBackup.dll [1579960 2018-01-23] (BullGuard Ltd.) R2 BsCache; C:\Program Files\BullGuard Ltd\BullGuard\BsCache.dll [275384 2018-01-23] (BullGuard Ltd.) R2 BsFileScan; C:\Program Files\BullGuard Ltd\BullGuard\BsFileScan.dll [515000 2018-01-23] (BullGuard Ltd.) R2 BsMailProxy; C:\Program Files\BullGuard Ltd\BullGuard\BsMailProxy\BsMailProxy.dll [6050744 2018-01-23] (BullGuard Ltd.) R2 BsMain; C:\Program Files\BullGuard Ltd\BullGuard\BsMain.dll [859064 2018-01-23] (BullGuard Ltd.) R2 BsNet; C:\Program Files\BullGuard Ltd\BullGuard\BsNet.dll [727992 2018-01-23] (BullGuard Ltd.) R3 BsScanner; C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe [324024 2018-01-23] (BullGuard Ltd.) R2 BsSentry; C:\Program Files\BullGuard Ltd\BullGuard\BsSentry.exe [455608 2018-01-23] (BullGuard Ltd.) R2 BsUpdate; C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe [411064 2018-01-23] (BullGuard Ltd.) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [125656 2016-09-20] (Realtek Semiconductor Corp.) S2 CG6Service; C:\Program Files\CyberGhost.Service.exe [76336 2016-11-28] (CyberGhost S.R.L) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [7780528 2018-01-15] (Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-23] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-05-23] (Dropbox, Inc.) S2 DSAService; C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [22304 2018-01-17] (Intel) R2 esifsvc; C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe [2210936 2017-07-28] (Intel Corporation) S2 FreeLAN Service; C:\Program Files\FreeLAN\bin\freelan.exe [3486720 2015-05-07] () [Bestand niet getekend] S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064 2016-09-01] (WildTangent) R2 hmevpnsvc; C:\Program Files (x86)\hide.me VPN\hidemesvc.exe [135840 2017-11-03] (eVenture Limited) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736 2016-10-05] (HP Inc.) [Bestand niet getekend] R2 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [332144 2017-11-21] (HP Inc.) R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc.) S2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc.) R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2016-09-20] (Nero AG) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [742704 2017-09-21] (Intel(R) Corporation) S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [668472 2017-09-21] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [196712 2017-04-24] (Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32384 2016-10-03] (The OpenVPN Project) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [Bestand niet getekend] R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-03-23] (CyberLink) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324584 2017-08-17] (Realtek Semiconductor) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R1 BdAgent; C:\WINDOWS\System32\DRIVERS\BdAgent.sys [174744 2017-03-20] (BullGuard Ltd.) R0 BdNet; C:\WINDOWS\System32\DRIVERS\BdNet.sys [155568 2017-06-26] (BullGuard Ltd.) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [84376 2017-11-15] (BullGuard Ltd.) R1 BdSpy; C:\WINDOWS\System32\DRIVERS\BdSpy.sys [94952 2017-03-20] (BullGuard Ltd.) R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [67976 2017-07-28] (Intel Corporation) R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [355208 2017-07-28] (Intel Corporation) R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2017-12-16] (Malwarebytes) R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [38216 2017-11-21] (SoftEther Corporation) S3 pmxdrv; C:\WINDOWS\system32\drivers\pmxdrv.sys [31152 2017-12-01] () S3 ptun0901; C:\WINDOWS\System32\drivers\ptun0901.sys [27136 2016-06-15] (The OpenVPN Project) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [954368 2017-07-28] (Realtek ) R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [723920 2017-07-20] (Realtek Semiconductor Corporation) S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [418784 2016-09-23] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [7895400 2017-11-07] (Realtek Semiconductor Corporation ) R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [51024 2017-11-21] (SoftEther Corporation) S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [41512 2018-01-11] () R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [55384 2017-08-18] (Synaptics Incorporated) S3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2017-09-06] (The OpenVPN Project) S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [46040 2017-08-24] (The OpenVPN Project) S3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2017-09-13] (The OpenVPN Project) R3 Trufos; C:\WINDOWS\System32\DRIVERS\Trufos.sys [485512 2017-03-20] (BitDefender S.R.L.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30368 2017-06-21] (HP) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2018-01-29 10:34 - 2018-01-29 10:38 - 000024013 _____ C:\Users\Marijke\Downloads\FRST.txt 2018-01-29 10:33 - 2018-01-29 10:34 - 000000000 ____D C:\FRST 2018-01-29 10:32 - 2018-01-29 10:32 - 002393088 _____ (Farbar) C:\Users\Marijke\Downloads\FRST64.exe 2018-01-29 10:31 - 2018-01-29 10:31 - 001388448 _____ C:\Users\Public\ASR.dat 2018-01-28 23:05 - 2018-01-28 23:05 - 002022912 _____ C:\Users\Marijke\Desktop\LoL Logs.zip 2018-01-28 23:04 - 2018-01-28 23:04 - 000000741 _____ C:\Users\Public\Desktop\League of Legends.lnk 2018-01-28 23:04 - 2018-01-28 23:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends 2018-01-28 22:54 - 2018-01-28 22:55 - 075661256 _____ (Riot Games, Inc) C:\Users\Marijke\Downloads\League%20of%20Legends%20installer%20EUW.exe 2018-01-28 19:36 - 2018-01-28 19:39 - 631008037 _____ C:\Users\Marijke\Downloads\windows10.0-kb4056892-x64_a41a378cf9ae609152b505c40e691ca1228e28ea.msu 2018-01-28 19:25 - 2018-01-28 19:25 - 000000639 _____ C:\Users\Marijke\Downloads\WindowsUpdateDiagnostic.diagcab 2018-01-28 19:15 - 2013-04-01 23:19 - 000574464 _____ (Realtek Semiconductor Corp. ) C:\WINDOWS\system32\rtl8723de.dll 2018-01-28 19:13 - 2018-01-28 19:13 - 000000372 _____ C:\WINDOWS\HPSetLog.txt 2018-01-28 19:11 - 2018-01-28 19:11 - 049926240 _____ (Hewlett-Packard Company ) C:\Users\Marijke\Downloads\sp82801.exe 2018-01-27 23:44 - 2018-01-27 23:44 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2018-01-27 23:39 - 2018-01-27 23:39 - 000000020 ___SH C:\Users\Marijke\ntuser.ini 2018-01-27 23:34 - 2018-01-29 10:29 - 000004202 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B502480C-8E82-44E8-BCA2-55062524A5EE} 2018-01-27 23:34 - 2018-01-28 21:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-01-27 23:34 - 2018-01-27 23:35 - 000003568 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA 2018-01-27 23:34 - 2018-01-27 23:35 - 000003502 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-01-27 23:34 - 2018-01-27 23:35 - 000002970 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2018-01-27 23:34 - 2018-01-27 23:35 - 000002812 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForMarijke 2018-01-27 23:34 - 2018-01-27 23:35 - 000002668 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP OfficeJet 4650 series 2018-01-27 23:34 - 2018-01-27 23:35 - 000002660 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP DeskJet 3630 series 2018-01-27 23:34 - 2018-01-27 23:35 - 000002320 _____ C:\WINDOWS\System32\Tasks\{7F7325E4-9AAC-4268-96CB-30C310C74DED} 2018-01-27 23:34 - 2018-01-27 23:35 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-01-27 23:34 - 2018-01-27 23:34 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2018-01-27 23:34 - 2018-01-27 23:34 - 000003344 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore 2018-01-27 23:34 - 2018-01-27 23:34 - 000003278 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-01-27 23:34 - 2018-01-27 23:34 - 000003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification 2018-01-27 23:34 - 2018-01-27 23:34 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4175743367-177076972-2086899918-1001 2018-01-27 23:34 - 2018-01-27 23:34 - 000002690 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_QUEENCREEK 2018-01-27 23:34 - 2018-01-27 23:34 - 000002604 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2018-01-27 23:34 - 2018-01-27 23:34 - 000002500 _____ C:\WINDOWS\System32\Tasks\HPEA3JOBS 2018-01-27 23:34 - 2018-01-27 23:34 - 000002488 _____ C:\WINDOWS\System32\Tasks\HPAudioSwitch 2018-01-27 23:34 - 2018-01-27 23:34 - 000002262 _____ C:\WINDOWS\System32\Tasks\DropboxOEM 2018-01-27 23:34 - 2018-01-27 23:34 - 000002252 _____ C:\WINDOWS\System32\Tasks\HPJumpStartProvider 2018-01-27 23:34 - 2018-01-27 23:34 - 000000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-4175743367-177076972-2086899918-1001 2018-01-27 23:34 - 2018-01-27 23:34 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform 2018-01-27 23:34 - 2018-01-27 23:34 - 000000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard 2018-01-27 23:34 - 2018-01-27 23:34 - 000000000 ____D C:\WINDOWS\System32\Tasks\BullGuard 2018-01-27 23:32 - 2018-01-27 23:33 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2018-01-27 23:32 - 2018-01-27 23:33 - 000011433 _____ C:\WINDOWS\diagerr.xml 2018-01-27 22:58 - 2018-01-27 22:58 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2018-01-27 22:56 - 2018-01-27 22:56 - 000000000 ____D C:\ProgramData\USOShared 2018-01-27 22:55 - 2018-01-27 22:55 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\Packages 2018-01-27 22:51 - 2018-01-27 22:54 - 000000000 ____D C:\Users\Marijke\AppData\Local\Packages 2018-01-27 22:50 - 2018-01-28 17:46 - 000000000 ____D C:\Users\Marijke 2018-01-27 22:50 - 2018-01-27 23:26 - 000000000 ____D C:\Users\defaultuser0 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Sjablonen 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Netwerkprinteromgeving 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Mijn documenten 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Menu Start 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Documents\Mijn video's 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Documents\Mijn muziek 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\Documents\Mijn afbeeldingen 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\Marijke\AppData\Local\Geschiedenis 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Sjablonen 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Netwerkprinteromgeving 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Mijn documenten 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Menu Start 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Mijn video's 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Mijn muziek 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Mijn afbeeldingen 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2018-01-27 22:50 - 2018-01-27 22:50 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Local\Geschiedenis 2018-01-27 22:49 - 2018-01-28 21:26 - 002229406 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-01-27 22:48 - 2018-01-27 22:48 - 000002065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk 2018-01-27 22:47 - 2017-10-12 00:27 - 000140280 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2018-01-27 22:47 - 2017-10-12 00:27 - 000116728 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2018-01-27 22:46 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2018-01-27 22:43 - 2018-01-28 21:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-01-27 22:43 - 2018-01-27 23:17 - 000485712 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-01-27 22:35 - 2018-01-27 23:38 - 000000000 ____D C:\Windows.old 2018-01-27 22:18 - 2018-01-23 16:36 - 000061880 _____ (BullGuard Ltd.) C:\WINDOWS\SysWOW64\BGLsp.dll 2018-01-27 22:18 - 2017-12-08 20:02 - 000152208 _____ (BullGuard Ltd.) C:\WINDOWS\SysWOW64\BgGamingMonitor.dll 2018-01-27 22:18 - 2017-11-15 16:24 - 000084376 _____ (BullGuard Ltd.) C:\WINDOWS\system32\Drivers\BdSentry.sys 2018-01-27 22:18 - 2017-06-26 20:59 - 000155568 _____ (BullGuard Ltd.) C:\WINDOWS\system32\Drivers\BdNet.sys 2018-01-27 22:18 - 2017-03-20 16:38 - 000174744 _____ (BullGuard Ltd.) C:\WINDOWS\system32\Drivers\BdAgent.sys 2018-01-27 22:18 - 2017-03-20 16:38 - 000094952 _____ (BullGuard Ltd.) C:\WINDOWS\system32\Drivers\BdSpy.sys 2018-01-27 22:17 - 2018-01-27 22:35 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2018-01-27 22:17 - 2018-01-23 16:36 - 000076728 _____ (BullGuard Ltd.) C:\WINDOWS\system32\BGLsp.dll 2018-01-27 22:17 - 2017-12-08 20:02 - 000171272 _____ (BullGuard Ltd.) C:\WINDOWS\system32\BgGamingMonitor.dll 2018-01-27 22:13 - 2018-01-27 22:17 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2018-01-27 22:10 - 2018-01-27 22:10 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2018-01-27 22:09 - 2018-01-27 22:09 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-01-27 22:09 - 2018-01-27 22:09 - 000000000 ____D C:\Program Files\MSBuild 2018-01-27 22:09 - 2018-01-27 22:09 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-01-27 22:09 - 2018-01-27 22:09 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-01-27 22:09 - 2018-01-27 22:09 - 000000000 ____D C:\inetpub 2018-01-27 22:06 - 2017-09-22 18:19 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2018-01-27 22:06 - 2017-09-22 18:19 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-01-27 22:06 - 2017-09-22 18:19 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2018-01-27 22:05 - 2017-09-28 15:50 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2018-01-27 22:05 - 2017-09-28 15:50 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2018-01-27 22:05 - 2017-09-28 15:50 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2018-01-27 21:42 - 2018-01-27 21:42 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2018-01-27 20:14 - 2018-01-28 19:34 - 000000000 ___DC C:\WINDOWS\Panther 2018-01-27 19:49 - 2018-01-27 20:14 - 000000000 ____D C:\ESD 2018-01-27 19:47 - 2018-01-27 19:47 - 018617536 _____ (Microsoft Corporation) C:\Users\Marijke\Downloads\MediaCreationTool.exe 2018-01-27 19:47 - 2018-01-27 19:47 - 000000000 ___HD C:\$Windows.~WS 2018-01-27 18:31 - 2018-01-27 18:31 - 000000072 ___SH C:\bootTel.dat 2018-01-27 18:28 - 2018-01-27 18:28 - 000000000 __SHD C:\found.000 2018-01-24 22:51 - 2018-01-24 22:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Faceless Internet Connection 2018-01-24 22:51 - 2018-01-24 22:51 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Faceless LLC 2018-01-24 22:25 - 2018-01-27 22:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows 2018-01-24 22:25 - 2018-01-24 22:44 - 000000000 ____D C:\ProgramData\Betternet 2018-01-24 22:25 - 2018-01-24 22:25 - 000000000 ____D C:\Program Files (x86)\OpenVPN 2018-01-24 22:20 - 2018-01-27 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeLAN 2018-01-24 22:20 - 2018-01-25 16:28 - 000000000 ____D C:\Program Files\FreeLAN 2018-01-24 20:14 - 2018-01-27 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hide.me VPN 2018-01-24 20:14 - 2018-01-25 22:33 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Hide.me 2018-01-24 20:14 - 2018-01-24 20:15 - 000000000 ____D C:\Program Files (x86)\hide.me VPN 2018-01-24 20:14 - 2018-01-24 20:14 - 000001101 _____ C:\Users\Public\Desktop\hide.me VPN.lnk 2018-01-24 20:11 - 2018-01-24 20:14 - 007037272 _____ (eVenture Limited ) C:\Users\Marijke\Downloads\Hide.me-Setup-1.3.2.exe 2018-01-24 19:13 - 2018-01-24 19:15 - 000000000 ____D C:\ProgramData\ProtonVPN 2018-01-24 19:11 - 2018-01-24 19:14 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\ProtonVPN AG 2018-01-24 17:36 - 2018-01-24 17:36 - 000000000 ____D C:\Users\Marijke\AppData\Local\Microsoft_Corporation 2018-01-24 17:16 - 2018-01-24 17:23 - 000000000 ____D C:\Program Files (x86)\Windscribe 2018-01-24 17:16 - 2018-01-24 17:16 - 000000000 ____D C:\Users\Marijke\AppData\Local\Windscribe 2018-01-24 17:16 - 2017-09-13 21:43 - 000054896 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tapwindscribe0901.sys 2018-01-24 17:14 - 2018-01-24 17:14 - 000000000 ____D C:\Users\Marijke\AppData\Local\KeepSolid Inc 2018-01-24 17:14 - 2018-01-24 17:14 - 000000000 ____D C:\Users\Marijke\.VPN Unlimited 2018-01-24 17:14 - 2018-01-24 17:14 - 000000000 ____D C:\Users\Marijke\.QtWebEngineProcess 2018-01-24 17:12 - 2018-01-24 22:09 - 000000000 ____D C:\Program Files (x86)\VPN Unlimited 2018-01-23 23:19 - 2018-01-24 17:23 - 000000000 ____D C:\Program Files (x86)\OpenVPN Technologies 2018-01-23 23:09 - 2018-01-25 17:18 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\TunnelBear 2018-01-23 23:09 - 2018-01-23 23:09 - 000000000 ____D C:\Users\Marijke\AppData\Local\IsolatedStorage 2018-01-23 22:13 - 2018-01-23 22:13 - 000001891 _____ C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberGhost 6.lnk 2018-01-23 22:13 - 2018-01-23 22:13 - 000000000 ____D C:\Users\Marijke\AppData\Local\CyberGhost 2018-01-23 22:12 - 2018-01-23 22:13 - 000007473 _____ C:\Program Files\CyberGhost.Service.InstallState 2018-01-23 22:12 - 2018-01-23 22:13 - 000001288 _____ C:\Program Files\CyberGhost.Service.InstallLog 2018-01-23 22:12 - 2018-01-23 22:13 - 000001283 _____ C:\Program Files\InstallUtil.InstallLog 2018-01-23 22:12 - 2016-11-28 18:06 - 000061216 _____ C:\Program Files\client.wyc 2018-01-23 22:12 - 2016-11-28 10:03 - 004723248 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Themes.cs.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 004723248 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Themes.CgTheme.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001703984 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Grid.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001580592 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Gauges.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001338416 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Grid.v15.2.Core.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000534064 _____ (Newtonsoft) C:\Program Files\Newtonsoft.Json.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000484400 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.LayoutControl.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000251440 _____ (First Floor Software) C:\Program Files\FirstFloor.ModernUI.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000216112 _____ () C:\Program Files\MobileConcepts45.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000140336 _____ (Simon Mourier) C:\Program Files\HtmlAgilityPack.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000095792 _____ () C:\Program Files\ZendeskApi.Client.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000075824 _____ () C:\Program Files\MPHelper.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000057904 _____ () C:\Program Files\ZendeskApi.Contracts.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000053808 _____ (hardcodet.net) C:\Program Files\Hardcodet.Wpf.TaskbarNotification.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000050736 _____ (Thomas Levesque) C:\Program Files\WpfAnimatedGif.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000047664 _____ (Microsoft Corporation) C:\Program Files\System.Windows.Interactivity.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 008266800 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Core.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 005205552 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Data.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 003724848 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Printing.v15.2.Core.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 002244144 _____ (The Legion of the Bouncy Castle Inc.) C:\Program Files\BouncyCastle.Crypto.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 001641984 _____ C:\Program Files\CyberGhost.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 001193008 _____ (CyberGhost S.R.L.) C:\Program Files\CyberGhost.exe 2018-01-23 22:12 - 2016-11-28 10:02 - 000476208 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Mvvm.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000419328 _____ C:\Program Files\MobileConcepts45.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000345461 _____ C:\Program Files\ARSoft.Tools.Net.xml 2018-01-23 22:12 - 2016-11-28 10:02 - 000324656 _____ (BugSplat, LLC) C:\Program Files\BsSndRpt.exe 2018-01-23 22:12 - 2016-11-28 10:02 - 000306736 _____ (Alexander Reinert) C:\Program Files\ARSoft.Tools.Net.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000257536 _____ C:\Program Files\CyberGhost.RESTCommunicator.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000255488 _____ C:\Program Files\FirstFloor.ModernUI.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000220672 _____ C:\Program Files\MPHelper.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000161280 _____ C:\Program Files\CyberGhost.Settings.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000119856 _____ () C:\Program Files\CyberGhost.RESTCommunicator.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000087552 _____ C:\Program Files\CyberGhost.Communication.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000076336 _____ (CyberGhost S.R.L) C:\Program Files\CyberGhost.Service.exe 2018-01-23 22:12 - 2016-11-28 10:02 - 000071168 _____ C:\Program Files\CyberGhost.VPNServices.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000068656 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.Settings.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000060928 _____ C:\Program Files\CyberGhost.Service.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000053296 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.VPNServices.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000050736 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.Communication.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000030208 _____ C:\Program Files\BugReporterV2.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000026160 _____ C:\Program Files\BugSplatDotNet.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000022064 _____ () C:\Program Files\BugReporterV2.exe 2018-01-23 22:12 - 2016-11-28 10:02 - 000013824 _____ C:\Program Files\PeLauncher.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000013360 _____ () C:\Program Files\PeLauncher.exe 2018-01-23 22:12 - 2016-11-28 10:01 - 000523221 _____ C:\Program Files\Newtonsoft.Json.xml 2018-01-23 22:12 - 2016-11-28 10:01 - 000251392 _____ C:\Program Files\HtmlAgilityPack.pdb 2018-01-23 22:12 - 2016-11-28 10:01 - 000123861 _____ C:\Program Files\HtmlAgilityPack.xml 2018-01-23 22:12 - 2016-11-28 10:01 - 000110080 _____ C:\Program Files\Hardcodet.Wpf.TaskbarNotification.pdb 2018-01-23 22:12 - 2016-11-28 10:01 - 000099328 _____ (BugSplat, LLC) C:\Program Files\BugSplatRc.dll 2018-01-23 22:12 - 2016-11-28 10:01 - 000001158 _____ C:\Program Files\CyberGhost.Settings.dll.config 2018-01-23 22:12 - 2016-11-28 10:01 - 000000535 _____ C:\Program Files\CyberGhost.Service.exe.config 2018-01-23 22:12 - 2016-11-28 10:01 - 000000511 _____ C:\Program Files\BugReporterV2.exe.config 2018-01-23 22:12 - 2016-11-28 10:01 - 000000466 _____ C:\Program Files\CyberGhost.exe.config 2018-01-23 22:12 - 2016-11-28 10:01 - 000000179 _____ C:\Program Files\PeLauncher.exe.config 2018-01-23 22:12 - 2016-11-28 10:00 - 000124416 _____ C:\Program Files\WpfAnimatedGif.pdb 2018-01-23 22:12 - 2016-11-28 10:00 - 000030208 _____ C:\Program Files\BugSplatDotNet.pdb 2018-01-23 22:12 - 2016-11-28 10:00 - 000005293 _____ C:\Program Files\BugSplatDotNet.xml 2018-01-23 22:12 - 2016-11-23 08:34 - 001216560 _____ C:\Program Files\unins000.exe 2018-01-23 22:12 - 2016-11-23 08:34 - 000107531 _____ C:\Program Files\unins000.dat 2018-01-23 22:12 - 2016-11-23 08:34 - 000022709 _____ C:\Program Files\unins000.msg 2018-01-23 22:12 - 2016-10-27 10:33 - 000247344 _____ (MobileConcepts GmbH) C:\Program Files\MobileConcepts.dll 2018-01-23 22:12 - 2012-09-06 01:04 - 000432040 _____ (wyDay) C:\Program Files\wyUpdate.exe 2018-01-23 21:15 - 2018-01-23 21:15 - 000000000 ____D C:\Program Files\TAP-Windows 2018-01-20 13:51 - 2018-01-27 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Hextech Repair Tool 2018-01-20 13:49 - 2018-01-20 13:49 - 053592064 _____ C:\Users\Marijke\Downloads\Hextech Repair Tool.msi 2018-01-19 18:56 - 2018-01-27 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver and Support Assistant 2018-01-19 18:55 - 2018-01-28 20:19 - 000000000 ____D C:\Program Files (x86)\Intel Driver and Support Assistant 2018-01-18 18:57 - 2018-01-27 23:34 - 000000372 _____ C:\WINDOWS\Tasks\HPCeeScheduleForMarijke.job 2018-01-10 15:21 - 2018-01-27 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-hulpprogramma's 2018-01-10 15:21 - 2018-01-10 15:21 - 000002549 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive voor Bedrijven.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002543 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype voor Bedrijven 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002528 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002479 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002466 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002466 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2018-01-10 15:21 - 2018-01-10 15:21 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2018-01-10 15:14 - 2018-01-10 15:14 - 001204224 _____ C:\Users\Marijke\Downloads\MicrosoftEasyFix50637.msi 2018-01-05 19:50 - 2018-01-05 20:03 - 2685585545 _____ C:\Users\Marijke\Downloads\Niet bevestigd 432577.crdownload 2018-01-05 17:13 - 2018-01-05 17:13 - 000002296 _____ C:\Users\Public\Desktop\HP DeskJet 3630 series.lnk 2018-01-05 17:05 - 2018-01-05 17:08 - 094076104 _____ C:\Users\Marijke\Downloads\DJ3630__Full_WebPack_1107.exe 2018-01-05 13:57 - 2018-01-05 13:58 - 005971872 _____ C:\Users\Marijke\Downloads\HPEasyStart_6_5_3442_26.exe ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2018-01-29 10:36 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-01-29 10:29 - 2017-05-30 08:40 - 000000000 ____D C:\ProgramData\BullGuard 2018-01-29 10:27 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-01-29 10:26 - 2017-05-23 15:31 - 000000000 __SHD C:\Users\Marijke\IntelGraphicsProfiles 2018-01-28 22:36 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-01-28 21:26 - 2017-09-30 15:32 - 000983478 _____ C:\WINDOWS\system32\perfh013.dat 2018-01-28 21:26 - 2017-09-30 15:32 - 000220140 _____ C:\WINDOWS\system32\perfc013.dat 2018-01-28 21:21 - 2017-10-07 16:16 - 000000000 ____D C:\Users\Marijke\AppData\Local\HTC MediaHub 2018-01-28 20:42 - 2017-06-03 16:36 - 000000000 ____D C:\Users\Marijke\AppData\Local\ElevatedDiagnostics 2018-01-28 19:16 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF 2018-01-28 19:12 - 2016-08-23 20:10 - 000000000 ____D C:\SWSETUP 2018-01-28 17:48 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-01-28 17:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-01-28 14:10 - 2017-08-18 13:08 - 000000000 ____D C:\Users\Marijke\AppData\Local\Jagex 2018-01-28 14:10 - 2017-08-18 13:07 - 000000000 ____D C:\ProgramData\Jagex 2018-01-28 14:03 - 2017-05-30 09:22 - 000000262 __RSH C:\ProgramData\ntuser.pol 2018-01-27 23:40 - 2017-11-16 19:49 - 000000000 ___RD C:\Users\Marijke\3D Objects 2018-01-27 23:40 - 2017-09-29 14:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-01-27 23:40 - 2016-07-29 13:33 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-01-27 23:36 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\windows nt 2018-01-27 23:31 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Registration 2018-01-27 23:30 - 2017-05-29 17:21 - 000023076 _____ C:\WINDOWS\system32\emptyregdb.dat 2018-01-27 23:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\ias 2018-01-27 23:28 - 2017-09-29 14:46 - 000000000 __RSD C:\WINDOWS\media 2018-01-27 23:12 - 2017-12-14 20:23 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-01-27 23:12 - 2017-08-02 11:28 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn-Time 2018-01-27 23:12 - 2017-06-18 19:07 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneApps 2018-01-27 23:12 - 2017-05-30 09:23 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BullGuard 2018-01-27 23:07 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-01-27 22:56 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2018-01-27 22:56 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2018-01-27 22:56 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\USOPrivate 2018-01-27 22:54 - 2017-09-30 12:44 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2018-01-27 22:49 - 2017-05-29 16:59 - 001971752 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2018-01-27 22:48 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2018-01-27 22:48 - 2017-05-29 16:57 - 000057556 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip 2018-01-27 22:47 - 2017-05-29 16:57 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2018-01-27 22:41 - 2017-09-29 14:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2018-01-27 22:35 - 2017-12-16 20:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2018-01-27 22:35 - 2017-12-14 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-01-27 22:35 - 2017-12-08 20:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-01-27 22:35 - 2017-10-24 21:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jagex 2018-01-27 22:35 - 2017-10-23 18:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2018-01-27 22:35 - 2017-10-09 19:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\spool 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-01-27 22:35 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-01-27 22:35 - 2017-09-09 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2018-01-27 22:35 - 2017-09-03 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader 2018-01-27 22:35 - 2017-08-08 19:40 - 000000000 ____D C:\WINDOWS\SysWOW64\beidpp 2018-01-27 22:35 - 2017-06-10 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-01-27 22:35 - 2017-05-30 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BullGuard 2018-01-27 22:35 - 2017-05-29 16:57 - 000000000 ____D C:\Program Files\Intel 2018-01-27 22:35 - 2017-05-23 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2018-01-27 22:35 - 2017-01-26 16:02 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2018-01-27 22:35 - 2017-01-26 15:39 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2018-01-27 22:35 - 2016-10-25 03:49 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2018-01-27 22:35 - 2016-07-16 12:47 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2018-01-27 22:34 - 2017-09-29 14:49 - 000000000 ____D C:\WINDOWS\Setup 2018-01-27 22:23 - 2017-09-29 14:46 - 000000000 __RHD C:\Users\Public\Libraries 2018-01-27 22:18 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-01-27 22:18 - 2017-07-28 11:03 - 000000000 ____D C:\WINDOWS\system32\Intel 2018-01-27 22:18 - 2017-05-29 16:57 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2018-01-27 22:17 - 2017-09-30 15:33 - 000000000 ____D C:\WINDOWS\OCR 2018-01-27 22:17 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\appcompat 2018-01-27 22:17 - 2017-07-27 18:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC 2018-01-27 22:17 - 2017-06-04 09:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2018-01-27 22:17 - 2017-05-29 16:57 - 000000000 ____D C:\Program Files\Realtek 2018-01-27 22:17 - 2017-05-29 16:56 - 000000000 ____D C:\Program Files\Synaptics 2018-01-27 22:10 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-01-27 22:10 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-01-27 22:09 - 2017-12-14 05:55 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2018-01-27 22:09 - 2017-09-29 14:43 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2018-01-27 22:09 - 2017-09-29 14:43 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2018-01-27 22:09 - 2017-09-29 14:43 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2018-01-27 22:09 - 2017-09-29 14:43 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2018-01-27 22:09 - 2017-09-29 14:42 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2018-01-27 22:09 - 2017-09-29 14:42 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2018-01-27 22:09 - 2017-09-29 14:42 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2018-01-27 22:09 - 2017-09-29 14:42 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2018-01-27 22:08 - 2017-09-29 14:43 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll 2018-01-25 18:20 - 2017-09-18 21:20 - 000000526 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2018-01-25 17:18 - 2016-10-25 03:51 - 000000000 ____D C:\ProgramData\Package Cache 2018-01-24 22:24 - 2017-07-27 18:11 - 000000000 ____D C:\Users\Marijke\AppData\Local\Downloaded Installations 2018-01-24 19:53 - 2017-09-29 17:51 - 000002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome Bèta.lnk 2018-01-24 19:53 - 2017-09-29 17:51 - 000002342 _____ C:\Users\Public\Desktop\Google Chrome Bèta.lnk 2018-01-23 23:22 - 2017-09-09 09:21 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\vlc 2018-01-23 18:35 - 2017-11-15 20:03 - 000000000 ____D C:\Users\Marijke\Documents\Runescape 2018-01-21 14:34 - 2016-10-25 03:53 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-01-20 13:51 - 2017-09-19 18:27 - 000000000 ____D C:\Riot Games 2018-01-20 11:03 - 2017-05-23 15:36 - 000000000 ____D C:\Program Files (x86)\Java 2018-01-19 19:22 - 2017-05-23 15:36 - 000000000 ____D C:\ProgramData\Oracle 2018-01-19 19:16 - 2017-05-23 15:36 - 000097344 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2018-01-19 18:58 - 2017-09-27 13:39 - 000000000 ____D C:\Program Files\Intel Driver and Support Assistant 2018-01-14 17:19 - 2017-09-30 12:44 - 000002250 _____ C:\Users\Marijke\Desktop\Discord.lnk 2018-01-14 17:19 - 2017-09-30 12:44 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\discord 2018-01-14 17:19 - 2017-09-30 12:44 - 000000000 ____D C:\Users\Marijke\AppData\Local\Discord 2018-01-11 01:25 - 2017-09-20 14:23 - 000041512 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys 2018-01-10 15:16 - 2017-05-24 12:29 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-01-10 14:52 - 2017-10-11 13:11 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-01-10 14:35 - 2017-05-24 12:28 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-01-10 14:08 - 2017-05-23 15:34 - 000002396 _____ C:\Users\Marijke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-01-10 14:08 - 2017-05-23 15:34 - 000000000 ___RD C:\Users\Marijke\OneDrive 2018-01-09 20:17 - 2017-10-07 16:15 - 000002111 _____ C:\Users\Public\Desktop\HTC Sync Manager.lnk 2018-01-06 14:18 - 2017-09-09 18:40 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-01-06 14:18 - 2017-09-09 18:40 - 000002287 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-01-05 19:06 - 2017-05-23 15:34 - 000000000 ____D C:\Users\Marijke\AppData\Roaming\Skype 2018-01-05 17:12 - 2017-05-29 16:55 - 000000000 ____D C:\Program Files (x86)\HP 2018-01-05 17:12 - 2016-10-25 03:48 - 000000000 ____D C:\ProgramData\HP 2018-01-05 14:02 - 2017-06-04 09:01 - 000000000 ____D C:\Users\Marijke\AppData\Local\HP ==================== Bestanden in de root van sommige mappen ======= 2018-01-29 10:31 - 2018-01-29 10:31 - 001388448 _____ () C:\Users\Public\ASR.dat 2018-01-23 22:12 - 2016-11-28 10:02 - 000306736 _____ (Alexander Reinert) C:\Program Files\ARSoft.Tools.Net.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000345461 _____ () C:\Program Files\ARSoft.Tools.Net.xml 2018-01-23 22:12 - 2016-11-28 10:02 - 002244144 _____ (The Legion of the Bouncy Castle Inc.) C:\Program Files\BouncyCastle.Crypto.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000324656 _____ (BugSplat, LLC) C:\Program Files\BsSndRpt.exe 2018-01-23 22:12 - 2016-11-28 10:02 - 000022064 _____ () C:\Program Files\BugReporterV2.exe 2018-01-23 22:12 - 2016-11-28 10:01 - 000000511 _____ () C:\Program Files\BugReporterV2.exe.config 2018-01-23 22:12 - 2016-11-28 10:02 - 000030208 _____ () C:\Program Files\BugReporterV2.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000026160 _____ () C:\Program Files\BugSplatDotNet.dll 2018-01-23 22:12 - 2016-11-28 10:00 - 000030208 _____ () C:\Program Files\BugSplatDotNet.pdb 2018-01-23 22:12 - 2016-11-28 10:00 - 000005293 _____ () C:\Program Files\BugSplatDotNet.xml 2018-01-23 22:12 - 2016-11-28 10:01 - 000099328 _____ (BugSplat, LLC) C:\Program Files\BugSplatRc.dll 2018-01-23 22:12 - 2016-11-28 18:19 - 000033522 _____ () C:\Program Files\CGLogo.ico 2018-01-23 22:12 - 2016-11-28 18:06 - 000061216 _____ () C:\Program Files\client.wyc 2018-01-23 22:12 - 2016-11-28 10:02 - 000050736 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.Communication.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000087552 _____ () C:\Program Files\CyberGhost.Communication.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 001193008 _____ (CyberGhost S.R.L.) C:\Program Files\CyberGhost.exe 2018-01-23 22:12 - 2016-11-28 10:01 - 000000466 _____ () C:\Program Files\CyberGhost.exe.config 2018-01-23 22:12 - 2016-11-28 10:02 - 001641984 _____ () C:\Program Files\CyberGhost.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000119856 _____ () C:\Program Files\CyberGhost.RESTCommunicator.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000257536 _____ () C:\Program Files\CyberGhost.RESTCommunicator.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000076336 _____ (CyberGhost S.R.L) C:\Program Files\CyberGhost.Service.exe 2018-01-23 22:12 - 2016-11-28 10:01 - 000000535 _____ () C:\Program Files\CyberGhost.Service.exe.config 2018-01-23 22:12 - 2018-01-23 22:13 - 000001288 _____ () C:\Program Files\CyberGhost.Service.InstallLog 2018-01-23 22:12 - 2018-01-23 22:13 - 000007473 _____ () C:\Program Files\CyberGhost.Service.InstallState 2018-01-23 22:12 - 2016-11-28 10:02 - 000060928 _____ () C:\Program Files\CyberGhost.Service.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000068656 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.Settings.dll 2018-01-23 22:12 - 2016-11-28 10:01 - 000001158 _____ () C:\Program Files\CyberGhost.Settings.dll.config 2018-01-23 22:12 - 2016-11-28 10:02 - 000161280 _____ () C:\Program Files\CyberGhost.Settings.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 000053296 _____ (MobileConcepts GmbH) C:\Program Files\CyberGhost.VPNServices.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000071168 _____ () C:\Program Files\CyberGhost.VPNServices.pdb 2018-01-23 22:12 - 2016-11-28 10:02 - 005205552 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Data.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000476208 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Mvvm.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 003724848 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Printing.v15.2.Core.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 008266800 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Core.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001580592 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Gauges.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001338416 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Grid.v15.2.Core.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 001703984 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Grid.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000484400 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.LayoutControl.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 004723248 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Themes.CgTheme.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 004723248 _____ (Developer Express Inc.) C:\Program Files\DevExpress.Xpf.Themes.cs.v15.2.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000251440 _____ (First Floor Software) C:\Program Files\FirstFloor.ModernUI.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000255488 _____ () C:\Program Files\FirstFloor.ModernUI.pdb 2018-01-23 22:12 - 2016-11-28 10:03 - 000053808 _____ (hardcodet.net) C:\Program Files\Hardcodet.Wpf.TaskbarNotification.dll 2018-01-23 22:12 - 2016-11-28 10:01 - 000110080 _____ () C:\Program Files\Hardcodet.Wpf.TaskbarNotification.pdb 2018-01-23 22:12 - 2016-11-28 10:03 - 000140336 _____ (Simon Mourier) C:\Program Files\HtmlAgilityPack.dll 2018-01-23 22:12 - 2016-11-28 10:01 - 000251392 _____ () C:\Program Files\HtmlAgilityPack.pdb 2018-01-23 22:12 - 2016-11-28 10:01 - 000123861 _____ () C:\Program Files\HtmlAgilityPack.xml 2018-01-23 22:12 - 2018-01-23 22:13 - 000001283 _____ () C:\Program Files\InstallUtil.InstallLog 2018-01-23 22:12 - 2016-10-27 10:33 - 000247344 _____ (MobileConcepts GmbH) C:\Program Files\MobileConcepts.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000216112 _____ () C:\Program Files\MobileConcepts45.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000419328 _____ () C:\Program Files\MobileConcepts45.pdb 2018-01-23 22:12 - 2016-11-28 10:03 - 000075824 _____ () C:\Program Files\MPHelper.dll 2018-01-23 22:12 - 2016-11-28 10:02 - 000220672 _____ () C:\Program Files\MPHelper.pdb 2018-01-23 22:12 - 2016-11-28 10:03 - 000534064 _____ (Newtonsoft) C:\Program Files\Newtonsoft.Json.dll 2018-01-23 22:12 - 2016-11-28 10:01 - 000523221 _____ () C:\Program Files\Newtonsoft.Json.xml 2018-01-23 22:12 - 2016-11-28 10:02 - 000013360 _____ () C:\Program Files\PeLauncher.exe 2018-01-23 22:12 - 2016-11-28 10:01 - 000000179 _____ () C:\Program Files\PeLauncher.exe.config 2018-01-23 22:12 - 2016-11-28 10:02 - 000013824 _____ () C:\Program Files\PeLauncher.pdb 2018-01-23 22:12 - 2016-11-28 10:03 - 000047664 _____ (Microsoft Corporation) C:\Program Files\System.Windows.Interactivity.dll 2018-01-23 22:12 - 2016-11-23 08:34 - 000107531 _____ () C:\Program Files\unins000.dat 2018-01-23 22:12 - 2016-11-23 08:34 - 001216560 _____ () C:\Program Files\unins000.exe 2018-01-23 22:12 - 2016-11-23 08:34 - 000022709 _____ () C:\Program Files\unins000.msg 2018-01-23 22:12 - 2016-11-28 10:03 - 000050736 _____ (Thomas Levesque) C:\Program Files\WpfAnimatedGif.dll 2018-01-23 22:12 - 2016-11-28 10:00 - 000124416 _____ () C:\Program Files\WpfAnimatedGif.pdb 2018-01-23 22:12 - 2012-09-06 01:04 - 000432040 _____ (wyDay) C:\Program Files\wyUpdate.exe 2018-01-23 22:12 - 2016-11-28 10:03 - 000095792 _____ () C:\Program Files\ZendeskApi.Client.dll 2018-01-23 22:12 - 2016-11-28 10:03 - 000057904 _____ () C:\Program Files\ZendeskApi.Contracts.dll 2017-05-23 15:31 - 2018-01-29 10:27 - 002103527 _____ () C:\Users\Marijke\AppData\Local\BTServer.log ==================== Bamital & volsnap ====================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\WINDOWS\system32\winlogon.exe => Bestand is getekend C:\WINDOWS\system32\wininit.exe => Bestand is getekend C:\WINDOWS\explorer.exe => Bestand is getekend C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend C:\WINDOWS\system32\svchost.exe => Bestand is getekend C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend C:\WINDOWS\system32\services.exe => Bestand is getekend C:\WINDOWS\system32\User32.dll => Bestand is getekend C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend C:\WINDOWS\system32\userinit.exe => Bestand is getekend C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend C:\WINDOWS\system32\rpcss.dll => Bestand is getekend C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2018-01-27 22:43 ==================== Eind van FRST.txt ============================