Start:: CreateRestorePoint: IFEO\BigUpgrade_IU7.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\xmas.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe CHR HKLM\SOFTWARE\Policies\Google: Restrictie <==== AANDACHT URLSearchHook: HKLM-x32 -> Standaard = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {B94D2A9E-E529-4389-B8DE-4F50D087F0D1} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {95324e44-4b0a-47a9-8f77-9c6415e51c29} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {93a3111f-4f74-4ed8-895e-d9708497629e} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {26842a09-ffa8-4e2c-ae12-0c80f01c3295} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {0696f815-a3a9-490a-bb14-9ec3350b1276} - Geen bestand URLSearchHook: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 - (Geen Naam) - {7888381e-e4f0-48f5-a278-b48b0187d950} - Geen bestand SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {6ccbf86d-181d-4ac0-8079-26f4e4b403c1} URL = hxxp://int.search.tb.ask.com/search/GGmain.jhtml?p2=^B5J^xdm006^YYA^be&si=CNzgyrec28gCFQVuGwod5gkNSA&ptb=1ADA8AB5-22AC-49ED-BC51-E7547A05BEB4&ind=2015102409&n=781c05c9&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> {6ccbf86d-181d-4ac0-8079-26f4e4b403c1} URL = hxxp://int.search.tb.ask.com/search/GGmain.jhtml?p2=^B5J^xdm006^YYA^be&si=CNzgyrec28gCFQVuGwod5gkNSA&ptb=1ADA8AB5-22AC-49ED-BC51-E7547A05BEB4&ind=2015102409&n=781c05c9&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> {C04B7D22-5AEC-4561-8F49-27F6269208F6} URL = hxxp://www2.inbox.com/search/dispatcher.aspx?tp=bs&qkw={searchTerms}&tbid=82633&iwk=327&lng=en SearchScopes: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> {F847AAAA-7EF3-440F-B98C-9614902DD0AF} URL = hxxp://search.portaldosites.com/web/?utm_source=b&utm_medium=sfps&from=sfps&uid=WDCXWD5000BPVT-22HXZT3_WD-WXG1A71C2963C2963&ts=1374491526 BHO: Geen Naam -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> Geen bestand BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23] (IObit) Toolbar: HKLM - Geen Naam - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-30] (Google Inc.) Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {BA14329E-9550-4989-B3F2-9732E92D17CC} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {95324E44-4B0A-47A9-8F77-9C6415E51C29} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - Geen bestand Toolbar: HKU\S-1-5-21-640727465-3189055572-2841016168-1000 -> Geen Naam - {40F650B7-7625-4388-A39D-E7224D0A69B6} - Geen bestand Handler: butterscotchtoolbar - Geen CLSID Waarde FF NewTab: Mozilla\Firefox\Profiles\sixmbhkd.default -> hxxp://www.trovi.com/?gd=&ctid=CT3330371&octid=EB_ORIGINAL_CTID&ISID=36647504-4049-459b-8906-cd308f6b48c9&SearchSource=69&CUI=&SSPV=&Lay=1&UM=8&UP=SPF965C191-7921-4712-B097-DB8D04CE1B0B S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2016-10-28] (IObit) R3 cpuz143; C:\Windows\temp\cpuz143\cpuz143_x64.sys [48960 2018-04-25] (CPUID) 2018-04-25 16:03 - 2015-10-11 17:23 - 000000000 ____D C:\Users\Christine\AppData\Roaming\IObit 2018-04-04 20:43 - 2015-10-11 17:24 - 000000000 ____D C:\Users\Christine\AppData\LocalLow\IObit 2018-04-04 20:43 - 2015-10-11 17:23 - 000000000 ____D C:\ProgramData\IObit ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> Geen bestand ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit) ContextMenuHandlers1: [SpyEmergency] -> {2E9FFF5C-4375-494d-951F-098BAA42239E} => -> Geen bestand ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> Geen bestand ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> Geen bestand ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit) ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit) Task: {078D4E54-BA39-4E02-A4A0-472F7BD6FEEE} - \SmartDefrag4_Update -> Geen bestand <==== AANDACHT Task: {1B47EC60-EED7-43BE-9097-98E39333C841} - \Driver Booster SkipUAC (Christine) -> Geen bestand <==== AANDACHT Task: {629FF072-D496-4C52-878A-43C200E94E1D} - System32\Tasks\ASC10_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe Task: {7BDEED53-5721-4A9E-A49C-BAAA39659436} - System32\Tasks\ASC9_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe Task: {B64BD57A-4CEF-48CA-8018-4F7747866910} - System32\Tasks\Uninstaller_SkipUac_Christine => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-12-15] (IObit) Task: {D5EDFB14-A727-4DF7-AD66-F5B1705A11D1} - \SmartDefrag4_Startup -> Geen bestand <==== AANDACHT ShortcutWithArgument: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.portaldosites.com/?utm_source=b&utm_medium=sfps&from=sfps&uid=WDCXWD5000BPVT-22HXZT3_WD-WXG1A71C2963C2963&ts=1374491526 ShortcutWithArgument: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.portaldosites.com/?utm_source=b&utm_medium=sfps&from=sfps&uid=WDCXWD5000BPVT-22HXZT3_WD-WXG1A71C2963C2963&ts=1374491526 ShortcutWithArgument: C:\Users\Christine\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\617b47e4d05a8964\Aviator.lnk -> C:\Program Files (x86)\WhiteHat\Aviator\Application\Aviator.exe (The Aviator Authors) -> --profile-directory=Default AlternateDataStreams: C:\Windows\system32\Drivers\xlmfcubq.sys:changelist [492750] AlternateDataStreams: C:\ProgramData\Temp:373E1720 [126] AlternateDataStreams: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\BBC.website:TASKICON_0favicon_16-277267043 [1790] AlternateDataStreams: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\BBC.website:TASKICON_1favicon_16174074512 [1790] AlternateDataStreams: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\BBC.website:TASKICON_2favicon_16-862640922 [1790] AlternateDataStreams: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\BBC.website:TASKICON_3favicon_16-306776472 [1790] AlternateDataStreams: C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Start Menu\BBC.website:TASKICON_4favicon_16803684798 [1790] EmptyTemp: RemoveProxy: End::