Start:: CreateRestorePoint: CloseProcesses: HKLM-x32\...\Run: [] => [X] Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-3845518409-3654752349-4073796428-1001\...\MountPoints2: {035bc918-c539-11e8-857f-7085c254fdce} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3845518409-3654752349-4073796428-1001\...\MountPoints2: {035bcb81-c539-11e8-857f-7085c254fdce} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3845518409-3654752349-4073796428-1001\...\MountPoints2: {b244e61d-bb03-11e8-8568-7085c254fdce} - "E:\HiSuiteDownLoader.exe" GroupPolicy: Restrictie ? <==== AANDACHT U3 aswbdisk; geen ImagePath 2018-12-30 14:09 - 2018-12-30 14:09 - 000000000 ____D C:\WINDOWS\LastGood.Tmp ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Geen bestand ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Geen bestand ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Geen bestand ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Geen bestand ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Geen bestand ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Geen bestand Shortcut: C:\Users\jiv1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TropicalSim\Porto Airport FS9\Add LPPR2014 to FS9 Library.lnk -> D:\Install\lppr2014cfg.bat (Geen bestand) AlternateDataStreams: C:\ProgramData\TEMP:A1D5C6AA [124] IE trusted site: HKU\S-1-5-21-3845518409-3654752349-4073796428-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3845518409-3654752349-4073796428-1001\...\webcompanion.com -> hxxp://webcompanion.com Hosts: EmptyTemp: End::