Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 24.02.2018 Gestart door rita (Beheerder) op ERWIN (24-02-2018 15:03:00) Gestart vanaf C:\Users\rita\Desktop Geladen Profielen: rita (Beschikbare Profielen: rita & Gast) Platform: Windows 10 Home Versie 1709 16299.125 (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: Edge) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\BrytonBridge2\BBService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe () C:\Program Files (x86)\BrytonBridge2\BBDaemon.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Facebook Inc.) C:\Users\rita\AppData\Local\Facebook\Update\FacebookUpdate.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe (© 2015 Microsoft Corporation) C:\Users\rita\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe () C:\Program Files (x86)\BrytonBridge2\BrytonBridge2.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Akamai Technologies, Inc.) C:\Users\rita\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\rita\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [706440 2015-09-28] (Alps Electric Co., Ltd.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [243496 2018-02-12] (AVAST Software) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-01-22] (Apple Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-02-28] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2018-01-05] (Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3567936 2018-02-08] (Dropbox, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== AANDACHT HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [Facebook Update] => C:\Users\rita\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-10-19] (Facebook Inc.) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [HP Officejet 4620 series (NET)] => C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [BingSvc] => C:\Users\rita\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10290608 2018-02-07] (Piriform Ltd) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [Akamai NetSession Interface] => C:\Users\rita\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2018-01-10] (Apple Inc.) HKU\S-1-5-21-455634102-3971962441-1493714179-1001\...\Policies\Explorer: [] HKU\S-1-5-21-455634102-3971962441-1493714179-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\DEAARD~1.SCR [10638336 2013-10-22] () Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BrytonBridge2.lnk [2017-02-18] ShortcutTarget: BrytonBridge2.lnk -> C:\Program Files (x86)\BrytonBridge2\BrytonBridge2.exe () Startup: C:\Users\rita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - .lnk [2017-09-29] ShortcutTarget: Inktwaarschuwingen controleren - .lnk -> (Geen bestand) Startup: C:\Users\rita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Inktwaarschuwingen controleren - HP Officejet 4620 series (netwerk).lnk [2017-09-29] ShortcutTarget: Inktwaarschuwingen controleren - HP Officejet 4620 series (netwerk).lnk -> (Geen bestand) ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) Hosts: Er zijn meer dan één item in Hosts. Zie Hosts deel van Addition.txt Tcpip\Parameters: [DhcpNameServer] 195.130.130.5 195.130.131.5 Tcpip\..\Interfaces\{a57513ea-3fa5-4418-8b52-f88f33c94c7a}: [DhcpNameServer] 10.104.7.160 10.123.172.17 Tcpip\..\Interfaces\{ccef640c-e12a-4f3e-9947-ec0eb061d6aa}: [DhcpNameServer] 195.130.130.5 195.130.131.5 Internet Explorer: ================== HKU\S-1-5-21-455634102-3971962441-1493714179-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SL5M&ocid=SL5MDHP&osmkt=nl-be HKU\S-1-5-21-455634102-3971962441-1493714179-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.google.com/ hxxp://www.kaagent.be/ SearchScopes: HKU\S-1-5-21-455634102-3971962441-1493714179-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie64.dll [2017-06-26] (Intel Security) BHO: Bing Bar Helper -> {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11] (Microsoft Corporation.) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH) BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-06-26] (Intel Security) BHO-x32: Bing Bar Helper -> {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11] (Microsoft Corporation.) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2018-02-04] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-21] (Oracle Corporation) BHO-x32: Geen Naam -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Geen bestand BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-21] (Oracle Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH) Toolbar: HKLM - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll [2014-03-11] (Microsoft Corporation.) Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie64.dll [2017-06-26] (Intel Security) Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll [2014-03-11] (Microsoft Corporation.) Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-06-26] (Intel Security) Toolbar: HKU\S-1-5-21-455634102-3971962441-1493714179-1001 -> Geen Naam - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Geen bestand Toolbar: HKU\S-1-5-21-455634102-3971962441-1493714179-1001 -> True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie64.dll [2017-06-26] (Intel Security) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-02-04] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2017-07-18] (Skype Technologies) FireFox: ======== FF DefaultProfile: 33xjo0yz.default-1452197924475-1517674752267 FF ProfilePath: C:\Users\rita\AppData\Roaming\Mozilla\Firefox\Profiles\33xjo0yz.default-1452197924475-1517674752267 [2018-02-24] FF Extension: (Avast Online Security) - C:\Users\rita\AppData\Roaming\Mozilla\Firefox\Profiles\33xjo0yz.default-1452197924475-1517674752267\Extensions\wrc@avast.com.xpi [2017-11-09] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-02-04] (Microsoft Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-21] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2018-01-20] (Microsoft Corporation) FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\rita\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-02-04] (RocketLife, LLP) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-455634102-3971962441-1493714179-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\rita\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-455634102-3971962441-1493714179-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\rita\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-455634102-3971962441-1493714179-1001: SkypePlugin -> C:\Users\rita\AppData\Local\SkypePlugin\7.7.0.219\npGatewayNpapi.dll [2015-09-23] (Skype Technologies S.A.) FF Plugin HKU\S-1-5-21-455634102-3971962441-1493714179-1001: SkypePlugin64 -> C:\Users\rita\AppData\Local\SkypePlugin\7.7.0.219\npGatewayNpapi-x64.dll [2015-09-23] (Skype Technologies S.A.) FF Plugin ProgramFiles/Appdata: C:\Users\rita\AppData\Roaming\mozilla\plugins\np-mswmp.dll [2009-09-25] (Microsoft Corporation) ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-02-28] (Advanced Micro Devices, Inc.) [Bestand niet getekend] R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [104840 2015-09-28] (Alps Electric Co., Ltd.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-01-05] (Apple Inc.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7564512 2018-02-12] (AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [300600 2018-02-12] (AVAST Software) R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [122728 2017-09-04] (AOMEI Tech Co., Ltd.) R2 BBService; C:\Program Files (x86)\BrytonBridge2\BBService.exe [68096 2014-03-03] () [Bestand niet getekend] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [7968424 2018-02-08] (Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-10-11] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-10-11] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2018-02-08] (Dropbox, Inc.) S3 DeviceFastLaneService; C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated) S3 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated) S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2013-03-22] (Dritek System INC.) S2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [1001920 2017-06-26] (McAfee, Inc.) S2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16928 2017-06-26] (McAfee, Inc.) S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [87760 2017-06-26] (McAfee, Inc.) R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [294168 2017-10-04] (Reason Software Company Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-08-01] (Atheros) [Bestand niet getekend] ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [81000 2017-03-27] () R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] () S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] () R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2017-09-01] () R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [192944 2018-02-12] (AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [321512 2017-12-22] (AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [199448 2017-12-22] (AVAST Software) R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343768 2017-12-22] (AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57696 2017-12-22] (AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [190440 2018-02-12] (AVAST Software) S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46968 2018-02-12] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [146648 2018-02-12] (AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110328 2018-02-12] (AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84368 2018-02-12] (AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1026696 2018-02-12] (AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [459952 2018-02-12] (AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [205464 2018-02-12] (AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [379448 2018-02-12] (AVAST Software) S3 AtiDCM; C:\AMD\WU-CCC2\ccc2_install\Support64\atdcm64a.sys [28416 2014-03-13] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices) S1 ccSet_NARA; C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2018-02-24] (Malwarebytes) R3 Ps2Kb2Hid; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736 2013-03-22] (Dritek System Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2018-02-24 15:03 - 2018-02-24 15:04 - 000022711 _____ C:\Users\rita\Desktop\FRST.txt 2018-02-24 15:02 - 2018-02-24 15:02 - 000000000 ____D C:\Users\rita\Desktop\FRST-OlderVersion 2018-02-24 08:36 - 2018-02-24 08:36 - 000000000 ___HD C:\OneDriveTemp 2018-02-23 20:31 - 2018-02-23 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2018-02-22 19:24 - 2018-02-22 19:36 - 000070236 _____ C:\Users\rita\Downloads\Addition.txt 2018-02-22 19:18 - 2018-02-24 15:03 - 000000000 ____D C:\FRST 2018-02-22 19:18 - 2018-02-22 19:36 - 000058324 _____ C:\Users\rita\Downloads\FRST.txt 2018-02-22 19:17 - 2018-02-24 15:02 - 002403328 _____ (Farbar) C:\Users\rita\Desktop\FRST64.exe 2018-02-22 07:07 - 2018-02-22 07:07 - 001129816 _____ (Google Inc.) C:\Users\rita\Downloads\ChromeSetup.exe 2018-02-21 21:52 - 2018-02-21 21:52 - 000001091 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2018-02-21 21:52 - 2018-02-21 21:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2018-02-21 21:52 - 2018-02-21 21:52 - 000000000 ____D C:\Program Files\VS Revo Group 2018-02-21 21:50 - 2018-02-21 21:50 - 007189760 _____ (VS Revo Group ) C:\Users\rita\Downloads\revosetup.exe 2018-02-20 19:32 - 2018-02-20 19:32 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2018-02-20 07:26 - 2018-02-20 07:26 - 000000000 ____D C:\ProgramData\Belgium Identity Card 2018-02-18 20:01 - 2018-02-20 18:25 - 000001024 ____H C:\SYSTAG.BIN 2018-02-18 20:00 - 2018-02-24 08:31 - 000000082 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2018-02-18 19:59 - 2018-02-18 22:16 - 000000000 ____D C:\ProgramData\AomeiBR 2018-02-18 19:59 - 2018-02-18 19:59 - 000001142 _____ C:\Users\Public\Desktop\AOMEI Backupper Standard.lnk 2018-02-18 19:59 - 2018-02-18 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper 2018-02-18 19:58 - 2018-02-24 08:31 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper 2018-02-18 19:58 - 2017-09-01 18:12 - 000038320 _____ C:\WINDOWS\system32\amwrtdrv.sys 2018-02-18 19:58 - 2016-12-21 22:54 - 000051120 _____ C:\WINDOWS\system32\ambakdrv.sys 2018-02-18 19:58 - 2016-12-21 22:52 - 000171952 _____ C:\WINDOWS\system32\ammntdrv.sys 2018-02-17 07:28 - 2018-02-17 07:28 - 000000000 ____D C:\ProgramData\ATI 2018-02-17 07:27 - 2018-02-17 07:27 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2018-02-17 07:22 - 2018-02-17 07:22 - 000000020 ___SH C:\Users\rita\ntuser.ini 2018-02-17 06:56 - 2018-02-24 15:02 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-02-17 06:56 - 2018-02-24 15:02 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-455634102-3971962441-1493714179-1001 2018-02-17 06:56 - 2018-02-24 15:02 - 000002588 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask 2018-02-17 06:56 - 2018-02-24 15:02 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-02-17 06:56 - 2018-02-24 15:02 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software 2018-02-17 06:56 - 2018-02-24 08:36 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2018-02-17 06:56 - 2018-02-24 08:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-02-17 06:56 - 2018-02-17 06:57 - 000003826 _____ C:\WINDOWS\System32\Tasks\ALUAgent 2018-02-17 06:56 - 2018-02-17 06:57 - 000003752 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-02-17 06:56 - 2018-02-17 06:57 - 000003598 _____ C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-455634102-3971962441-1493714179-1001UA 2018-02-17 06:56 - 2018-02-17 06:57 - 000003596 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA 2018-02-17 06:56 - 2018-02-17 06:57 - 000003562 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-02-17 06:56 - 2018-02-17 06:57 - 000003542 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2018-02-17 06:56 - 2018-02-17 06:57 - 000003448 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2018-02-17 06:56 - 2018-02-17 06:57 - 000003378 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F7D9DAEC-2F1E-45EF-AB58-4774D849598F} 2018-02-17 06:56 - 2018-02-17 06:57 - 000003372 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore 2018-02-17 06:56 - 2018-02-17 06:57 - 000003356 _____ C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-455634102-3971962441-1493714179-1001Core 2018-02-17 06:56 - 2018-02-17 06:57 - 000003338 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-02-17 06:56 - 2018-02-17 06:57 - 000003170 _____ C:\WINDOWS\System32\Tasks\Java Update Scheduler 2018-02-17 06:56 - 2018-02-17 06:57 - 000003142 _____ C:\WINDOWS\System32\Tasks\HP-Online updateprogramma 2018-02-17 06:56 - 2018-02-17 06:57 - 000002938 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-455634102-3971962441-1493714179-1001 2018-02-17 06:56 - 2018-02-17 06:57 - 000002936 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-455634102-3971962441-1493714179-500 2018-02-17 06:56 - 2018-02-17 06:57 - 000002854 _____ C:\WINDOWS\System32\Tasks\ALU 2018-02-17 06:56 - 2018-02-17 06:57 - 000002726 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP Officejet 4620 series 2018-02-17 06:56 - 2018-02-17 06:57 - 000002610 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2018-02-17 06:56 - 2018-02-17 06:57 - 000002454 _____ C:\WINDOWS\System32\Tasks\{7E363E3F-BDFC-43DD-B474-8063D18A6AF8} 2018-02-17 06:56 - 2018-02-17 06:57 - 000002340 _____ C:\WINDOWS\System32\Tasks\Power Management 2018-02-17 06:56 - 2018-02-17 06:57 - 000002312 _____ C:\WINDOWS\System32\Tasks\{1E01C950-A9E4-4FED-9CB1-364B33473B1A} 2018-02-17 06:56 - 2018-02-17 06:57 - 000002276 _____ C:\WINDOWS\System32\Tasks\{2522551F-65FB-4163-969D-21A79F1EE7AC} 2018-02-17 06:56 - 2018-02-17 06:57 - 000002240 _____ C:\WINDOWS\System32\Tasks\{863A6AB2-1D06-475D-8DA5-F6CFF2A87ADA} 2018-02-17 06:56 - 2018-02-17 06:56 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD 2018-02-17 06:56 - 2018-02-17 06:56 - 000000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-455634102-3971962441-1493714179-1001 2018-02-17 06:56 - 2018-02-17 06:56 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple 2018-02-17 06:49 - 2018-02-17 06:56 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2018-02-17 06:49 - 2018-02-17 06:56 - 000011433 _____ C:\WINDOWS\diagerr.xml 2018-02-17 06:37 - 2018-02-21 20:24 - 001890442 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-02-17 06:08 - 2018-02-17 06:08 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2018-02-17 06:02 - 2018-02-17 06:02 - 000000000 ____D C:\ProgramData\USOShared 2018-02-17 05:59 - 2018-02-24 08:26 - 000000000 ____D C:\Users\rita\AppData\Local\Packages 2018-02-17 05:57 - 2018-02-17 05:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2018-02-17 05:56 - 2018-02-17 07:22 - 000000000 ____D C:\Users\rita 2018-02-17 05:56 - 2018-02-17 06:34 - 000000000 ____D C:\Users\Gast 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Sjablonen 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Netwerkprinteromgeving 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Mijn documenten 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Menu Start 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Documents\Mijn video's 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Documents\Mijn muziek 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\Documents\Mijn afbeeldingen 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\rita\AppData\Local\Geschiedenis 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Sjablonen 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Netwerkprinteromgeving 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Mijn documenten 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Menu Start 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Documents\Mijn video's 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Documents\Mijn muziek 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\Documents\Mijn afbeeldingen 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2018-02-17 05:56 - 2018-02-17 05:56 - 000000000 _SHDL C:\Users\Gast\AppData\Local\Geschiedenis 2018-02-17 05:56 - 2018-02-17 05:54 - 000000000 ____D C:\Users\rita\AppData\Roaming\ATI 2018-02-17 05:56 - 2018-02-17 05:54 - 000000000 ____D C:\Users\rita\AppData\Local\ATI 2018-02-17 05:56 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Gast\AppData\Roaming\ATI 2018-02-17 05:56 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Gast\AppData\Local\ATI 2018-02-17 05:54 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Default\AppData\Roaming\ATI 2018-02-17 05:54 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Default\AppData\Local\ATI 2018-02-17 05:54 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Default User\AppData\Roaming\ATI 2018-02-17 05:54 - 2018-02-17 05:54 - 000000000 ____D C:\Users\Default User\AppData\Local\ATI 2018-02-17 05:53 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2018-02-17 05:49 - 2018-02-24 10:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-02-17 05:49 - 2018-02-17 06:27 - 000401552 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-02-17 05:40 - 2018-02-17 06:59 - 000000000 ____D C:\Windows.old 2018-02-17 04:40 - 2018-02-12 18:53 - 000459952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000379448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000205464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000192944 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000146648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000110328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000084368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2018-02-17 04:40 - 2018-02-12 18:53 - 000046968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2018-02-17 04:40 - 2018-02-12 18:52 - 001026696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2018-02-17 04:40 - 2017-12-22 12:01 - 000343768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbloga.sys 2018-02-17 04:40 - 2017-12-22 12:01 - 000321512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2018-02-17 04:40 - 2017-12-22 12:01 - 000199448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2018-02-17 04:40 - 2017-12-22 12:01 - 000057696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2018-02-17 04:39 - 2018-02-12 18:53 - 000380768 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2018-02-17 04:36 - 2018-02-17 05:41 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2018-02-17 04:29 - 2018-02-17 04:39 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2018-02-17 04:25 - 2018-02-17 04:42 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2018-02-17 04:24 - 2018-02-17 04:24 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-02-17 04:24 - 2018-02-17 04:24 - 000000000 ____D C:\Program Files\MSBuild 2018-02-17 04:24 - 2018-02-17 04:24 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-02-17 04:24 - 2018-02-17 04:24 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-02-17 04:20 - 2017-09-22 18:19 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2018-02-17 04:20 - 2017-09-22 18:19 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-02-17 04:20 - 2017-09-22 18:19 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2018-02-17 04:19 - 2017-09-28 15:50 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2018-02-17 04:19 - 2017-09-28 15:50 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2018-02-17 04:19 - 2017-09-28 15:50 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2018-02-17 03:41 - 2018-02-17 03:41 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2018-02-16 23:39 - 2018-02-18 19:36 - 000000000 ___DC C:\WINDOWS\Panther 2018-02-16 22:46 - 2018-02-22 21:02 - 000000000 ____D C:\ESD 2018-02-16 22:40 - 2018-02-16 22:40 - 000000000 ___HD C:\$Windows.~WS 2018-02-16 21:17 - 2018-02-17 05:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2018-02-16 21:17 - 2018-02-16 21:17 - 000001828 _____ C:\Users\Public\Desktop\iTunes.lnk 2018-02-16 21:07 - 2018-02-16 21:07 - 000000000 ____D C:\Users\rita\AppData\Roaming\Seagate 2018-02-12 20:45 - 2018-02-12 20:45 - 000060619 _____ C:\Users\rita\Downloads\BE69973128674978_2016-11-02_00153_083336(1).pdf 2018-02-12 20:42 - 2018-02-12 20:43 - 000060619 _____ C:\Users\rita\Downloads\BE69973128674978_2016-11-02_00153_083336.pdf 2018-02-11 21:57 - 2018-02-11 21:58 - 000000435 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2018-02-10 04:45 - 2018-02-17 05:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-02-08 21:10 - 2018-02-08 21:10 - 000051024 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2018-02-08 21:10 - 2018-02-08 21:10 - 000045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2018-02-08 21:10 - 2018-02-08 21:10 - 000045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2018-02-08 21:10 - 2018-02-08 21:10 - 000045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2018-02-06 05:58 - 2018-02-06 05:58 - 000000000 ___HD C:\Users\rita\MicrosoftEdgeBackups 2018-02-06 05:25 - 2018-02-06 05:25 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-02-06 05:02 - 2018-02-24 08:32 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2018-02-05 22:11 - 2018-02-05 22:28 - 000000036 _____ C:\WINDOWS\progress.ini 2018-02-05 21:48 - 2018-02-06 05:30 - 000000000 ___HD C:\$GetCurrent 2018-02-05 21:48 - 2018-02-05 21:48 - 000000743 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk 2018-02-05 21:48 - 2018-02-05 21:48 - 000000731 _____ C:\Users\rita\Desktop\Windows 10 Update Assistant.lnk 2018-02-05 21:47 - 2018-02-06 05:55 - 000000000 ____D C:\Windows10Upgrade 2018-02-04 21:21 - 2018-02-04 21:21 - 000000207 _____ C:\WINDOWS\tweaking.com-regbackup-ERWIN-Windows-10-Home-(64-bit).dat 2018-02-04 21:20 - 2018-02-04 21:20 - 000000000 ____D C:\RegBackup 2018-02-04 21:06 - 2018-02-04 21:06 - 000000000 ____D C:\Program Files (x86)\Tweaking.com 2018-02-04 20:52 - 2018-02-04 20:53 - 000692663 _____ C:\Users\rita\Downloads\Windows repair all in one.pdf 2018-01-25 17:56 - 2018-01-25 17:56 - 000571520 _____ C:\Users\rita\Downloads\Vlabel successierechten.pdf ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2018-02-24 15:02 - 2016-11-19 15:57 - 000000000 ____D C:\Users\rita\AppData\LocalLow\Mozilla 2018-02-24 12:03 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF 2018-02-24 11:18 - 2016-10-14 08:11 - 000000000 ____D C:\Users\rita\AppData\Local\Akamai 2018-02-24 08:36 - 2013-10-20 19:20 - 000000000 __RDO C:\Users\rita\SkyDrive 2018-02-24 08:33 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-02-24 08:31 - 2012-12-19 22:31 - 000000000 ____D C:\Program Files (x86)\WildGames 2018-02-24 08:30 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-02-24 07:49 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-02-24 07:47 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-02-24 04:25 - 2012-12-19 22:31 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2018-02-24 04:22 - 2013-08-31 14:47 - 000000000 ____D C:\Users\rita\AppData\Roaming\WildTangent 2018-02-24 04:22 - 2012-12-19 22:31 - 000000000 ____D C:\ProgramData\WildTangent 2018-02-23 21:02 - 2014-11-24 15:36 - 000000000 ____D C:\Program Files (x86)\Secunia 2018-02-23 20:59 - 2013-08-31 10:40 - 000000000 ____D C:\Users\rita\AppData\Local\Google 2018-02-23 20:59 - 2013-08-31 10:40 - 000000000 ____D C:\Program Files (x86)\Google 2018-02-22 21:22 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache 2018-02-22 07:04 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\appcompat 2018-02-21 22:19 - 2014-01-17 17:00 - 000000000 ____D C:\ProgramData\BrytonBridge 2018-02-21 22:03 - 2014-12-18 21:33 - 000000000 ____D C:\Users\rita\AppData\Roaming\Google 2018-02-21 20:24 - 2017-09-30 15:32 - 000839786 _____ C:\WINDOWS\system32\perfh013.dat 2018-02-21 20:24 - 2017-09-30 15:32 - 000165616 _____ C:\WINDOWS\system32\perfc013.dat 2018-02-21 20:15 - 2014-12-18 21:33 - 000000000 ____D C:\Program Files\Google 2018-02-21 20:12 - 2013-11-20 14:11 - 000000000 ____D C:\Program Files (x86)\Belgium Identity Card 2018-02-20 19:35 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-02-20 19:32 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-02-20 19:27 - 2016-12-09 12:12 - 000000000 ____D C:\Program Files\Microsoft Office 2018-02-20 17:42 - 2014-01-25 11:48 - 000000000 ____D C:\Program Files (x86)\Nokia 2018-02-20 06:50 - 2013-10-20 20:07 - 000000000 ____D C:\Users\rita\AppData\Roaming\Skype 2018-02-20 03:47 - 2014-01-25 11:52 - 000000000 ____D C:\ProgramData\Nokia 2018-02-20 03:46 - 2015-01-23 16:52 - 000000000 ____D C:\Users\rita\AppData\Roaming\Nokia Suite 2018-02-20 03:46 - 2014-05-12 13:26 - 000000000 ____D C:\Users\rita\AppData\Roaming\Nokia 2018-02-18 19:33 - 2016-07-16 10:42 - 000000875 _____ C:\Users\Public\Desktop\CCleaner.lnk 2018-02-18 18:35 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-02-17 07:27 - 2016-01-04 18:42 - 000000000 ____D C:\Users\rita\AppData\Local\PackageStaging 2018-02-17 07:24 - 2017-09-29 14:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-02-17 07:23 - 2017-03-10 19:43 - 000000000 ___RD C:\Users\rita\3D Objects 2018-02-17 07:23 - 2013-09-01 01:07 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-02-17 06:58 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\windows nt 2018-02-17 06:48 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Registration 2018-02-17 06:47 - 2013-10-20 19:06 - 000023076 _____ C:\WINDOWS\system32\emptyregdb.dat 2018-02-17 06:46 - 2017-09-29 14:46 - 000000000 __RSD C:\WINDOWS\media 2018-02-17 06:03 - 2015-02-08 17:03 - 000000000 ____D C:\Users\rita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP 2018-02-17 06:02 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\USOPrivate 2018-02-17 05:59 - 2013-09-24 21:03 - 000000000 ____D C:\Users\Gast\AppData\Local\Packages 2018-02-17 05:57 - 2017-07-21 10:00 - 000000000 ____D C:\ProgramData\AMD 2018-02-17 05:57 - 2017-07-21 10:00 - 000000000 ____D C:\Program Files\ATI Technologies 2018-02-17 05:56 - 2017-07-21 10:00 - 000000000 ____D C:\Program Files (x86)\ATI Technologies 2018-02-17 05:54 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2018-02-17 05:54 - 2017-07-21 09:59 - 000000000 ____D C:\Program Files\Apoint2K 2018-02-17 05:48 - 2017-09-29 14:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2018-02-17 05:41 - 2017-11-14 18:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-02-17 05:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2018-02-17 05:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2018-02-17 05:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\WCN 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\spool 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\InputMethod 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\IME 2018-02-17 05:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help 2018-02-17 05:41 - 2017-07-21 09:59 - 000000000 ____D C:\Program Files\CONEXANT 2018-02-17 05:41 - 2017-07-07 05:53 - 000000000 ____D C:\Program Files\UNP 2018-02-17 05:41 - 2017-03-04 13:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2018-02-17 05:41 - 2016-12-09 12:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-hulpprogramma's 2018-02-17 05:41 - 2016-01-04 19:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-02-17 05:41 - 2015-03-07 10:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky 2018-02-17 05:41 - 2015-01-05 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2018-02-17 05:41 - 2014-12-12 15:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutePDF 2018-02-17 05:41 - 2014-12-11 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2018-02-17 05:41 - 2014-11-24 16:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster 2018-02-17 05:41 - 2014-11-18 14:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2018-02-17 05:41 - 2014-04-04 15:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BrytonBridge2 2018-02-17 05:41 - 2014-02-25 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2018-02-17 05:41 - 2013-11-20 14:11 - 000000000 ____D C:\WINDOWS\SysWOW64\beidpp 2018-02-17 05:41 - 2013-09-01 04:49 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-02-17 05:41 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2018-02-17 05:41 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2018-02-17 05:41 - 2013-03-22 16:20 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 10 2018-02-17 05:41 - 2013-03-22 15:47 - 000000000 ____D C:\WINDOWS\SysWOW64\Atheros_L1e 2018-02-17 05:41 - 2013-03-22 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2018-02-17 05:41 - 2012-12-19 22:35 - 000000000 ____D C:\WINDOWS\oem 2018-02-17 05:41 - 2012-12-19 22:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell 2018-02-17 05:28 - 2017-09-29 14:49 - 000000000 ____D C:\WINDOWS\Setup 2018-02-17 05:15 - 2017-09-29 14:46 - 000000000 __RHD C:\Users\Public\Libraries 2018-02-17 05:13 - 2017-09-29 09:45 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2018-02-17 04:42 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2018-02-17 04:42 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2018-02-17 04:42 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2018-02-17 04:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2018-02-17 04:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-02-17 04:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2018-02-17 04:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2018-02-17 04:42 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2018-02-17 04:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\winrm 2018-02-17 04:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\slmgr 2018-02-17 04:41 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2018-02-17 04:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2018-02-17 04:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB 2018-02-17 04:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2018-02-17 04:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2018-02-17 04:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\IME 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\et-EE 2018-02-17 04:40 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\en-GB 2018-02-17 04:40 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism 2018-02-17 04:39 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2018-02-17 04:37 - 2012-12-19 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2018-02-17 04:36 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2018-02-17 04:36 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\system 2018-02-17 04:36 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2018-02-17 04:36 - 2017-07-21 09:58 - 000000000 ____D C:\Program Files\AMD 2018-02-17 04:24 - 2017-12-14 05:55 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2018-02-16 21:17 - 2015-02-07 13:24 - 000000000 ____D C:\Program Files\iTunes 2018-02-16 21:16 - 2015-02-07 13:24 - 000000000 ____D C:\Program Files\iPod 2018-02-16 20:33 - 2015-08-15 11:29 - 000002427 _____ C:\Users\rita\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-02-15 17:55 - 2017-10-11 20:16 - 130067560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-02-15 17:55 - 2013-09-01 04:49 - 130067560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-02-12 20:35 - 2015-07-15 15:11 - 000000000 ____D C:\Users\rita\AppData\Local\CutePDF Writer 2018-02-12 19:05 - 2016-12-30 21:23 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-02-12 19:05 - 2013-09-26 22:09 - 000001240 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-02-12 19:05 - 2013-09-26 22:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-02-12 18:55 - 2017-10-27 18:02 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2018-02-12 18:52 - 2017-12-20 19:31 - 000190440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys 2018-02-10 04:49 - 2014-09-25 11:26 - 000000000 ___RD C:\Users\rita\Dropbox 2018-02-10 04:47 - 2016-10-11 19:46 - 000000000 ____D C:\Program Files (x86)\Dropbox 2018-02-06 05:56 - 2015-08-15 11:08 - 000000000 ____D C:\Users\rita\AppData\Local\TileDataLayer 2018-02-04 23:26 - 2013-09-04 14:41 - 000548000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-02-03 17:29 - 2013-08-22 14:25 - 000001306 _____ C:\WINDOWS\system32\Drivers\etc\hosts_bak_16 2018-02-03 17:19 - 2015-07-22 19:24 - 000000000 ____D C:\Users\rita\Desktop\Oude Firefox-gegevens 2018-02-03 12:23 - 2018-01-13 09:12 - 000000000 ____D C:\Program Files\rempl 2018-02-03 12:06 - 2013-09-26 22:09 - 000001228 _____ C:\Users\Public\Desktop\Firefox.lnk 2018-02-02 21:37 - 2017-10-02 22:21 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-02-01 00:00 - 2017-04-06 18:30 - 000000000 ____D C:\Users\rita\Documents\ouders 2018-01-28 20:48 - 2016-10-14 09:00 - 000000000 ____D C:\Program Files\Common Files\Autodesk Shared 2018-01-28 20:48 - 2016-10-14 09:00 - 000000000 ____D C:\Program Files\Autodesk 2018-01-28 20:48 - 2016-10-14 08:40 - 000000000 ____D C:\ProgramData\Autodesk ==================== Bestanden in de root van sommige mappen ======= 2017-10-15 20:40 - 2017-10-15 20:40 - 000000259 _____ () C:\ProgramData\fontcacheev1.dat 2017-04-13 09:52 - 2017-04-13 09:52 - 007639040 _____ () C:\Program Files (x86)\GUT9B6D.tmp 2013-09-05 09:12 - 2018-01-15 22:15 - 000007168 _____ () C:\Users\rita\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-07-10 15:41 - 2014-07-10 15:41 - 000000017 _____ () C:\Users\rita\AppData\Local\resmon.resmoncfg ==================== Bamital & volsnap ====================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\WINDOWS\system32\winlogon.exe => Bestand is getekend C:\WINDOWS\system32\wininit.exe => Bestand is getekend C:\WINDOWS\explorer.exe => Bestand is getekend C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend C:\WINDOWS\system32\svchost.exe => Bestand is getekend C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend C:\WINDOWS\system32\services.exe => Bestand is getekend C:\WINDOWS\system32\User32.dll => Bestand is getekend C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend C:\WINDOWS\system32\userinit.exe => Bestand is getekend C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend C:\WINDOWS\system32\rpcss.dll => Bestand is getekend C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2018-02-17 05:49 ==================== Eind van FRST.txt ============================