Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 30-01-2022 Gestart door declercq (Beheerder) op GILBERTDECLERCQ (Hewlett-Packard 500-206eb) (02-02-2022 16:19:13) Gestart vanaf C:\Users\declercq\OneDrive\Bureaublad Geladen Profielen: declercq Platform: Microsoft Windows 10 Home Versie 20H2 19042.1466 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Edge Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Advanced Micro Devices, Inc. -> ) C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe (Corel Corporation -> Corel Corporation) C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe (Corel Corporation -> Corel Corporation) C:\Program Files\WinZip Smart Monitor\WinZipSmartMonitor.exe (Corel Corporation -> WinZip Computing) C:\Program Files (x86)\WinZip Courier\wzwmcgcnm.exe (Corel Corporation -> WinZip Computing) C:\Program Files (x86)\WinZip Courier\wzwmcgcnm64.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzSyncHelper64.exe (Google LLC -> ) C:\Program Files\Google\Drive File Stream\54.0.3.0\crashpad_handler.exe <4> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe <7> (Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (IDT, Inc.) [Bestand niet getekend] C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.) [Bestand niet getekend] C:\Program Files\IDT\WDM\sttray64.exe (Integrated Device Technology Inc. -> Hewlett-Packard) [Bestand niet getekend] C:\Program Files\IDT\WDM\Beats64.exe (Microsoft Corporation -> © 2015 Microsoft Corporation) C:\Users\declercq\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <38> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\declercq\AppData\Local\Microsoft\OneDrive\22.002.0103.0004\FileCoAuth.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (NortonLifeLock Inc. -> Broadcom) C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\NortonSecurity.exe <2> (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\nsWscSvc.exe (NortonLifeLock Inc. -> Symantec Corporation) C:\Program Files\Norton Utilities\x64\LBGovernor.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2793016 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [154680 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [154680 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [41664 2013-11-20] (Integrated Device Technology Inc. -> Hewlett-Packard) [Bestand niet getekend] HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8027016 2016-09-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-20] (IDT, Inc.) [Bestand niet getekend] HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436704 2020-09-28] (Corel Corporation -> WinZip Computing, S.L.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2268232 2018-07-03] (APN LLC -> APN) HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [571392 2011-10-30] (Nikon Corporation) [Bestand niet getekend] HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft, Inc. -> ArcSoft Inc.) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5819104 2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-06-09] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Google Update] => C:\Users\declercq\AppData\Local\Google\Update\1.3.36.122\GoogleUpdateCore.exe [223816 2022-01-21] (Google LLC -> Google LLC) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [BingSvc] => C:\Users\declercq\AppData\Local\Microsoft\BingSvc\BingSvc.exe [145504 2020-09-30] (Microsoft Corporation -> © 2015 Microsoft Corporation) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [51656320 2016-04-08] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [com.proximus.proximuscloud] => C:\Users\declercq\AppData\Local\ProximusCloud\app-21.4.12\Proximus Cloud.exe [2114256 2021-08-16] (Synchronoss Technologies, Inc -> Proximus) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [com.messenger] => "C:\Users\declercq\AppData\Local\Programs\Messenger\Messenger.exe" messenger://openAtLogin (Geen bestand) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [MicrosoftEdgeAutoLaunch_4EE674C4DA729B54CE9A1378DB702C96] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\MountPoints2: {dac3d0a9-e554-11eb-85ee-9cb654f8ebd3} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\hpfpp092: C:\Windows\System32\spool\prtprocs\x64\hpfpp092.dll [249856 2009-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [404992 2013-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\...\Print\Monitors\PCL hpf3l092.dll: C:\WINDOWS\system32\hpf3l092.dll [136704 2009-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-25] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{AC76BA86-0000-0000-7760-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat DC\Esl\Aiod.dll [2021-12-24] (Adobe Inc. -> Adobe Systems, Inc.) HKLM\Software\...\Authentication\Credential Providers: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2013-09-05] (Softex Inc..) [Bestand niet getekend] HKLM\Software\...\Authentication\Credential Provider Filters: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2013-09-05] (Softex Inc..) [Bestand niet getekend] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2017-05-03] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2021-09-04] ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () [Bestand niet getekend] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk [2021-05-11] ShortcutTarget: WinZip Preloader.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Cloud.lnk [2018-11-01] ShortcutTarget: Cloud.lnk -> C:\Users\declercq\AppData\Local\F-Secure\Cloud\Application\Cloud.exe (F-Secure Corporation -> F-Secure Corporation) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EOS Utility.lnk [2021-09-04] ShortcutTarget: EOS Utility.lnk -> C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe (Canon INC.) [Bestand niet getekend] Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hpqtra08.exe [2011-04-29] (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk [2021-05-04] ShortcutTarget: Verzenden naar OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WinZip SyncHelper.lnk [2019-06-03] ShortcutTarget: WinZip SyncHelper.lnk -> C:\Program Files\WinZip\WzSyncHelper64.exe (Corel Corporation -> WinZip Computing) ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {03E61879-F37E-4606-833A-40DC85F204F6} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {11F8AB5D-39EA-4CBD-8BAF-A1849D4B957D} - System32\Tasks\TUDsDownloader => C:\Program Files\Norton Utilities Premium\activesync.exe -appexecutable nup.exe -tuds (Geen bestand) Task: {13080B8E-6DE5-47A5-A281-0C1D354E66BC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138592 2022-01-17] (Microsoft Corporation -> Microsoft Corporation) Task: {1A31FDA9-C907-40E4-B697-DBC40BECFDAE} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {1AC51C34-4693-4298-AC95-73EBC229D1C0} - System32\Tasks\DistromaticSearchProtect-hourly => C:\Program Files (x86)\Amazon Browser Settings\AmznSearchProtect.exe --start --launcher=hourly-task (Geen bestand) <==== AANDACHT Task: {1C09E5F6-7970-4E8A-80AF-1D64E514A319} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {1C3BB90A-8E5B-45A2-87DF-0A3729976D8F} - System32\Tasks\Norton Utility\ActiveSync-NortonUtility => C:\Program Files\Norton Utilities\ActiveBridge.exe -appexecutable NUP.exe -ammode (Geen bestand) Task: {1FA67983-F19F-4ED7-A512-EF8274EF3EBB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-22] (Google Inc -> Google Inc.) Task: {273AF670-22BF-4B43-8B1B-B48C70F10977} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {2AB51305-A5BD-4FE3-9DF7-0ECDA48B6EBF} - System32\Tasks\Outbyte\PC Repair\Start PC Repair оn logon => C:\Program Files (x86)\Outbyte\PC Repair\PCRepair.exe [9509768 2021-12-02] (Outbyte Computing Pty Ltd -> Outbyte) <==== AANDACHT Task: {32759CE7-6459-41CC-8119-6BB803F5787E} - System32\Tasks\Norton Security Scan for declercq => C:\Program Files (x86)\Norton Security Scan\Engine\4.6.1.179\Nss.exe [848912 2019-02-15] (Symantec Corporation -> Symantec Corporation) Task: {32F11BB6-DAEA-4CFF-8FFE-A766059B2445} - System32\Tasks\Norton Utility\Live Boost Process Governor => C:\Program Files\Norton Utilities\x64\LBGovernor.exe [1050096 2022-01-25] (NortonLifeLock Inc. -> Symantec Corporation) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe join (Geen bestand) Task: {3AD7AB78-ADC0-4A21-A9C1-AB847060246C} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {46B1921F-3BBC-40F1-8A96-08B996B54F8A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {4D5EF471-F9BB-426E-B9E4-E7FB9F69952B} - System32\Tasks\Outbyte\PC Repair\NewDeceptors => C:\Program Files (x86)\Outbyte\PC Repair\PCRepair.exe [9509768 2021-12-02] (Outbyte Computing Pty Ltd -> Outbyte) <==== AANDACHT Task: {53A95569-CF60-49CA-AC1B-64267A4AAAF2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138592 2022-01-17] (Microsoft Corporation -> Microsoft Corporation) Task: {572D581F-021E-475D-B93D-780A2E630150} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22844272 2022-01-10] (Microsoft Corporation -> Microsoft Corporation) Task: {5810D8B4-22B5-4144-8760-583AC2228B74} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {58CB48D4-E968-4901-B5D3-10CBE8D24FF9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.) Task: {69EA6975-E132-4D2C-9DA1-DC5D26E71628} - System32\Tasks\Norton Utility\AutomaticCare => C:\Program Files\Norton Utilities\NUP.exe [3632112 2022-01-25] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {7392AF78-E077-4769-9DF7-95C5DE93F53B} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {74771ABC-B616-46E5-A677-0DE303D32E47} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1613720 2022-01-17] (Microsoft Corporation -> Microsoft Corporation) Task: {757A7E35-7A7F-4C44-A617-E4A8A3AD8F2E} - System32\Tasks\{7DE10D9B-BFDC-46B3-ADD6-2CE4DC5E554E} => C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\HPConnectedMusic\Uninstall.exe" Task: {768AA709-BA60-48B4-8BA7-9F0E70CDE06F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: {76B5A14C-7EFB-4877-B763-F1C01EC65879} - System32\Tasks\{77E179D0-E811-476A-B6A1-DBF3284B9C73} => C:\windows\system32\pcalua.exe -a "C:\Program Files\Reimage\Reimage Repair\uninst.exe" Task: {84B9886D-63ED-46B4-8AD7-3B6C45921F50} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {84C00DE7-74EF-4207-9A1F-86C768E7E90B} - System32\Tasks\CLVDLauncher => c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008 2013-03-12] (CyberLink Corp. -> CyberLink Corp.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {8D4BD7C9-297E-457A-AB61-C82D3C14B2D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.) Task: {8E262FD8-55F5-48DA-85D2-EA29D05F8995} - \WPD\SqmUpload_S-1-5-21-3409791781-31244116-3819798477-1001 -> Geen bestand <==== AANDACHT Task: {8F3CE4B8-43CC-4920-9466-2A85E1E0FB5A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22844272 2022-01-10] (Microsoft Corporation -> Microsoft Corporation) Task: {90FE4C8B-608A-443C-A478-D26CCDBC0963} - \Microsoft\Windows\UNP\RunCampaignManager -> Geen bestand <==== AANDACHT Task: {979B9417-C825-4918-89F9-1CE6B28A739E} - System32\Tasks\Norton Security with Backup\Norton Security Online Error Processor => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.8.62\SymErr.exe /submit (Geen bestand) Task: {9990F6F7-82F4-4403-9DB0-86DB16A44E95} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001UA => C:\Users\declercq\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {99D7A8B0-700F-4501-BF66-BF1E1DAAA006} - System32\Tasks\Norton Security with Backup\Norton Security Online Autofix => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.8.62\SymErr.exe /ui (Geen bestand) Task: {9EEED81B-C471-4706-B462-6E30D98447DA} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe /launch (Geen bestand) Task: {9F4327D5-B801-404C-B5A0-091C8A0FEA5A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-22] (Google Inc -> Google Inc.) Task: {A019374E-7396-40F7-838B-BFCD89077942} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2353000 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {A79D77A7-C020-43B1-86EF-967AE06D4240} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {AA9E2095-B5C6-4438-B52E-B7332F1139CE} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {B5B57777-F4CF-4776-BF29-6A9F1562AA4A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {B7CA0848-B8A7-48DD-9500-B5BBE8E9F45C} - System32\Tasks\Norton Security with Backup\Norton Security Online Error Analyzer => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.8.62\SymErr.exe /analyze (Geen bestand) Task: {B9713625-4F52-4760-9DA9-095CC1BBD883} - System32\Tasks\DistromaticSearchProtect-logon => C:\Program Files (x86)\Amazon Browser Settings\AmznSearchProtect.exe --start --launcher=logon-task (Geen bestand) <==== AANDACHT Task: {BB4F6CB7-91EC-49F0-924F-FA115C14292F} - System32\Tasks\Start WinZip System Utilities Suite Update => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {C8041C26-3BF0-401F-A96C-BCA1E0F0C20E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {C88FEB2A-0F4C-4E7F-B96B-6D4F9FEB08F2} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink Corp. -> CyberLink) Task: {CAF99501-CEA7-4CCE-BC2F-C85376EB5CBB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001Core => C:\Users\declercq\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D19BFD21-0FA4-4917-83AE-182DBC44A142} - System32\Tasks\HPCeeScheduleFordeclercq => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard) Task: {D97E386A-898D-429C-B25C-E566B535F2FB} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {DAAC6698-36F1-4B16-8B73-68F724B0BDCF} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {DACFB88C-108F-456F-B617-F188D761D5DC} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\WSCStub.exe [646520 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {DD3ADD16-CD8F-4FCE-A814-D23A87276A7D} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {E0A9E4BD-D1A4-4969-A1A6-F4CD5137FC5A} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {E2F7BEB1-D476-4DC0-AAAA-D341794348F2} - System32\Tasks\Start WinZip System Utilities Suite for GILBERTDECLERCQ@declercq(logon) => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {EB8FFEB2-8551-4F94-986F-3A35EFDF86BE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {EE61B7C7-C938-4800-8BD0-2662063FFDBC} - \Optimize Start Menu Cache Files-S-1-5-21-3409791781-31244116-3819798477-1001 -> Geen bestand <==== AANDACHT Task: {F3FFCD27-AE27-423A-981E-36C9858A58EF} - System32\Tasks\Start WinZip System Utilities Suite Schedule => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {F5725E23-12B4-4FB7-9336-A5B445810F3B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.) Task: {F973CC42-A6CE-4AF1-A0A6-859314953E5B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleFordeclercq.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{25b260f6-d7e9-4585-9852-6278f53ed948}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{29787e9d-5c06-4ce1-ac6a-829c896ce0ca}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3c8b9a49-8b80-481f-a746-83e29bd511a2}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{618c1991-9c69-468b-b689-fd7cd4d71432}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{61f7a05b-cfea-4147-a69f-21b46e029220}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6962b675-058c-4f8b-bbd2-3af7fa71e421}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6f64b7e0-9b0d-4f26-b8c0-dfebeb829ace}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\declercq\Downloads Edge Notifications: HKU\S-1-5-21-3409791781-31244116-3819798477-1001 -> hxxps://www.facebook.com; hxxps://mail.google.com; hxxps://web.skype.com; hxxps://preview.web.skype.com Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Pin It Button) -> EdgeExtension_PinterestPinItButton_xnkra2w3aecd0 => C:\Program Files\WindowsApps\Pinterest.PinItButton_1.39.5.0_neutral__xnkra2w3aecd0 [2021-10-08] Edge Extension: (Norton Password Manager) -> EdgeExtension_SymantecCorporation5478111E43ACF_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.5478111E43ACF_6.6.1.0_neutral__v68kp9n051hdp [niet gevonden] Edge Extension: (Norton Safe Web) -> EdgeExtension_SymantecCorporationNortonSafeWeb_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.NortonSafeWeb_3.11.0.0_neutral__v68kp9n051hdp [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] Edge DefaultProfile: Default Edge Profile: C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-02] Edge Notifications: Default -> hxxps://helena.care; hxxps://my.norton.com; hxxps://order.dominos.be; hxxps://outlook.live.com; hxxps://thewinningplace.com; hxxps://vtm.be; hxxps://www.facebook.com; hxxps://www.hln.be; hxxps://www.ibood.com; hxxps://www.instagram.com; hxxps://www.koopjedeal.nl; hxxps://www.medion.com; hxxps://www.soo-healthy.com; hxxps://www.streamz.be; hxxps://www.unigro.be; hxxps://www.vrt.be; hxxps://www.wielerflits.nl; hxxps://www.zdnet.com Edge HomePage: Default -> hxxp://www.google.com/ Edge StartupUrls: Default -> "hxxp://microsoft/" Edge NewTab: Default -> Not-active:"chrome-extension://dnflpnhpbffehddplcdlohealbgbbamk/ntp1.html", Not-active:"chrome-extension://edlkcjfhiofedjdnbagmjhmkemmnnggg/ntp1.html" Edge DefaultSearchURL: Default -> hxxps://searchsafe.norton.com/search?omnisearch=yes&q={searchTerms} Edge DefaultSearchKeyword: Default -> nortonsafe Edge DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=nl&q={searchTerms} Edge Extension: (Google Translate) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-01-21] Edge Extension: (Norton Safe Web) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdaafgjhhjkdplpffldcncdignokfkbo [2021-10-22] Edge Extension: (PDFConverterHQ) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dnflpnhpbffehddplcdlohealbgbbamk [2020-06-10] Edge Extension: (MyRadioAccess) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\edlkcjfhiofedjdnbagmjhmkemmnnggg [2020-06-14] Edge Extension: (Microsoft Automatisch doorvoeren) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fiedbfgcleddlbcmgdigjgdfcggjcion [2022-02-01] Edge Extension: (Microsoft-editor: spelling-en grammaticacontrole) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hokifickgkhplphjiodbggjmoafhignh [2022-01-17] Edge Extension: (Pinterest-bewaarknop) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jfcjijcigimhjjdimpghneggnegiphhh [2020-01-27] Edge Extension: (Connective signing extension) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2020-05-06] Edge Extension: (Norton Password Manager) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcccdlklhahfmobgpnilndimkankpnkg [2021-10-30] Edge Extension: (WinZip Courier) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lomojjnmhlhdepbfoknpkenickajcphi [2021-05-11] Edge Extension: (eID Edge Extension) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mjiffldffjokfhokbjanjgjmeabmhflb [2021-12-18] Edge Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2021-12-27] Edge Extension: (Norton Home Page) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\okplngpklcjmpdemleibnhidjihcobef [2021-12-21] FireFox: ======== FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-04-27] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-08-03] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-08-03] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-01-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Users\declercq\Desktop\Picasa3\npPicasa3.dll [Geen bestand] FF Plugin-x32: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-08-03] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-08-03] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-01-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default [2022-02-02] CHR Notifications: Default -> hxxps://androidworld.be; hxxps://calendar.google.com; hxxps://mail.google.com; hxxps://sporza.be; hxxps://voetbalprimeur.pushengage.com; hxxps://vtm.be; hxxps://www.facebook.com; hxxps://www.hln.be; hxxps://www.kookfans.nl; hxxps://www.pc-helpforum.be CHR HomePage: Default -> msn.com CHR StartupUrls: Default -> "hxxps://www.google.be/" CHR NewTab: Default -> Active:"chrome-extension://mhffmephdchhhbfjmdpoaldedhhdanbn/homePageRedirect.html", Not-active:"chrome-extension://ejbdobdndcjhdmljipngpeoekdinlohe/homePageRedirect.html", Not-active:"chrome-extension://gfoabcdjalmeenbjjngidappmppchblc/homePageRedirect.html" CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?omnisearch=yes&q={searchTerms} CHR DefaultSearchKeyword: Default -> nortonsafe CHR Extension: (Presentaties) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Norton Password Manager) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\admmjipmmciaobhojoghlmleefbicajg [2021-11-30] CHR Extension: (Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Google Drive) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-04] CHR Extension: (eID Chrome Extension) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc [2021-12-20] CHR Extension: (YouTube) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Spotify - Music for every moment) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2017-07-15] CHR Extension: (PDFConverterHQ) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnflpnhpbffehddplcdlohealbgbbamk [2020-06-18] CHR Extension: (MyRadioAccess) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\edlkcjfhiofedjdnbagmjhmkemmnnggg [2020-06-18] CHR Extension: (Norton Home Page for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe [2018-09-21] CHR Extension: (Norton Safe Search) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogpedgkejfmehnklhahflpmplhiceal [2020-06-05] CHR Extension: (Spreadsheets) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Norton Safe Web) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnpbeacklnhmkkilekogeiekaglbmmka [2021-10-09] CHR Extension: (Norton Home Page for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfoabcdjalmeenbjjngidappmppchblc [2017-04-26] CHR Extension: (Offline Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-25] CHR Extension: (Vertalen.nu) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\giapagjeblcapfphboclikepoeelhgkj [2015-04-22] CHR Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbmobhkkblcgdifigjglcjneplefbkmh [2017-04-26] CHR Extension: (Connective signing extension) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2019-11-13] CHR Extension: (WinZip Courier) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\lomojjnmhlhdepbfoknpkenickajcphi [2021-05-29] CHR Extension: (Norton Home Page) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhffmephdchhhbfjmdpoaldedhhdanbn [2022-01-13] CHR Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2022-01-13] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Extension: (Deezer) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\npfkoakaabdallkcdbpkkhfilkkngakh [2014-12-13] CHR Extension: (Browsec VPN - Free VPN for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\omghfjlpggmjjaagoclmmobgdodcjboh [2022-01-31] CHR Extension: (Gmail) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-04] CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-11-17] CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile [2020-11-17] CHR Extension: (Google Presentaties) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-25] CHR Extension: (Google Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-25] CHR Extension: (Google Drive) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-25] CHR Extension: (YouTube) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-25] CHR Extension: (Google Search) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-25] CHR Extension: (Google Spreadsheets) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-25] CHR Extension: (Gmail) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-25] CHR HKLM\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2018-07-02] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKU\S-1-5-21-3409791781-31244116-3819798477-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] CHR HKU\S-1-5-21-3409791781-31244116-3819798477-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2018-07-02] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] CHR HKLM-x32\...\Chrome\Extension: [lomojjnmhlhdepbfoknpkenickajcphi] - C:\Program Files (x86)\WinZip Courier\wzwmcgc.crx [2021-03-22] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft, Inc. -> ArcSoft Inc.) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2016-09-16] (Advanced Micro Devices, Inc. -> ) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.) S3 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) S3 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) S3 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [194632 2018-05-15] (APN LLC -> APN LLC.) S2 Cachedrv server; C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [109568 2013-09-05] () [Bestand niet getekend] R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2839296 2015-05-06] (Acer Incorporated -> Acer Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12119432 2022-01-10] (Microsoft Corporation -> Microsoft Corporation) S3 CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-08-12] (CyberLink Corp. -> CyberLink) S3 CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-08-12] (CyberLink Corp. -> CyberLink) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-08-22] (HP Inc. -> HP Inc.) R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Bestand niet getekend] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Bestand niet getekend] S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] R2 NortonSecurity; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\NortonSecurity.exe [343336 2021-12-13] (NortonLifeLock Inc. -> Broadcom) R2 nsWscSvc; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\nsWscSvc.exe [1059176 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) S2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [87552 2013-09-05] (Softex Inc.) [Bestand niet getekend] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-11-20] (IDT, Inc.) [Bestand niet getekend] S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-31] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-31] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinZip Smart Monitor Service; C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe [1463592 2020-10-22] (Corel Corporation -> Corel Corporation) ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [31992 2015-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R0 B12EA549; C:\WINDOWS\System32\drivers\B12EA549.sys [478392 2016-09-11] (Kaspersky Lab -> Kaspersky Lab ZAO) R1 BHDrvx64; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\Definitions\BASHDefs\20220201.011\BHDrvx64.sys [2018784 2021-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Bestand niet getekend] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Bestand niet getekend] R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\ccSetx64.sys [192256 2021-12-13] (Symantec Corporation -> Symantec Corporation) R3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [509904 2021-11-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145376 2021-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R1 googledrivefs3688; C:\WINDOWS\System32\DRIVERS\googledrivefs3688.sys [381456 2021-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R1 IDSVia64; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\Definitions\IPSDefs\20220201.061\IDSvia64.sys [1480144 2021-09-29] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 nsvst_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\nsvst.sys [56080 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SRTSP64.SYS [892600 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SRTSPX64.SYS [48824 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2013-11-20] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SYMEFASI64.SYS [2030768 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SymELAM.sys [31984 2021-12-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [93120 2021-09-17] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymEvnt; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\SymPlatform\SymEvnt.sys [712432 2021-07-13] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\Ironx64.SYS [319152 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\symnets.sys [575344 2021-12-13] (Symantec Corporation -> Symantec Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-01-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-01-31] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-31] (Microsoft Windows -> Microsoft Corporation) R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\wpCtrlDrv.sys [1015760 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-02 16:17 - 2022-02-02 16:20 - 000000000 ____D C:\FRST 2022-02-02 15:16 - 2022-02-02 15:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2022-01-27 16:27 - 2022-01-27 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Outbyte 2022-01-27 16:27 - 2022-01-27 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outbyte 2022-01-27 16:26 - 2022-01-27 16:26 - 000000000 ____D C:\ProgramData\Outbyte 2022-01-27 16:24 - 2022-01-27 16:26 - 022958832 _____ (Outbyte) C:\Users\declercq\mfc100u_dll-outbyte-pc-repair.exe 2022-01-25 11:08 - 2022-01-25 11:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 2022-01-21 17:41 - 2022-01-21 17:41 - 000002401 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2022-01-21 17:41 - 2022-01-21 17:41 - 000000000 ____D C:\Users\declercq\AppData\LocalLow\Messenger 2022-01-21 17:41 - 2022-01-21 17:41 - 000000000 ____D C:\Users\declercq\AppData\Local\messenger-updater 2022-01-21 17:38 - 2022-01-21 17:41 - 033556752 _____ (Facebook, Inc.) C:\Users\declercq\Messenger.134.0.0.11.118.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000011797 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-01-13 13:18 - 2022-01-13 13:18 - 000000000 ___HD C:\$WinREAgent ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-02 16:07 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-02-02 15:59 - 2014-10-23 22:53 - 000000000 ____D C:\Users\declercq\AppData\Local\CrashDumps 2022-02-02 15:50 - 2014-10-26 09:48 - 000000000 ____D C:\Users\declercq\AppData\Roaming\HpUpdate 2022-02-02 15:47 - 2014-10-24 17:04 - 000000000 ____D C:\Program Files (x86)\Google 2022-02-02 15:08 - 2020-09-21 19:28 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-02-02 14:52 - 2021-12-28 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton 360 2022-02-02 14:39 - 2018-11-06 16:55 - 000000000 ___RD C:\Users\declercq\OneDrive 2022-02-01 11:17 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-02-01 11:12 - 2020-09-21 19:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-02-01 11:12 - 2020-09-21 19:28 - 000008192 ___SH C:\DumpStack.log.tmp 2022-02-01 11:12 - 2019-08-15 11:03 - 000000356 _____ C:\WINDOWS\Tasks\HPCeeScheduleFordeclercq.job 2022-02-01 11:11 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-01-31 17:28 - 2021-08-23 13:15 - 000000000 ____D C:\Users\declercq\AppData\Local\Messenger 2022-01-31 17:28 - 2020-03-10 17:22 - 000000000 ____D C:\Users\declercq\AppData\Roaming\Messenger 2022-01-31 12:42 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-01-31 12:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-01-31 12:31 - 2020-09-21 19:50 - 000003260 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleFordeclercq 2022-01-31 11:41 - 2020-01-27 19:59 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-01-27 16:26 - 2020-09-21 10:07 - 000000000 ____D C:\Users\declercq 2022-01-26 11:19 - 2020-09-21 19:50 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-01-26 11:19 - 2020-09-21 19:50 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-01-25 11:08 - 2021-09-09 18:45 - 000000000 ____D C:\Program Files\Norton Utilities 2022-01-25 11:08 - 2021-07-10 20:43 - 000000000 ____D C:\Users\declercq\AppData\Local\Norton 2022-01-25 10:49 - 2020-01-08 20:49 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-01-25 10:47 - 2021-05-29 14:22 - 000000000 ____D C:\Users\declercq\AppData\LocalLow\Norton 2022-01-25 10:42 - 2020-09-21 19:50 - 000003578 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-01-25 10:42 - 2020-09-21 19:50 - 000003454 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-01-21 15:18 - 2020-09-21 19:50 - 000003840 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001UA 2022-01-21 15:18 - 2020-09-21 19:50 - 000003572 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001Core 2022-01-19 18:10 - 2021-05-11 16:51 - 000000000 ____D C:\Program Files\WinZip System Utilities Suite 2022-01-19 17:10 - 2020-12-29 18:08 - 000035669 _____ C:\Users\declercq\OneDrive\Documenten\Eenvoudig maandbudget2 (1).xlsx 2022-01-19 14:38 - 2021-12-13 10:54 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3409791781-31244116-3819798477-1001 2022-01-19 14:38 - 2021-03-16 11:14 - 000002443 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-01-19 14:38 - 2020-09-21 19:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3409791781-31244116-3819798477-1001 2022-01-17 12:39 - 2021-07-22 19:12 - 002212742 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-01-17 12:39 - 2019-12-07 16:12 - 000926502 _____ C:\WINDOWS\system32\perfh013.dat 2022-01-17 12:39 - 2019-12-07 16:12 - 000209596 _____ C:\WINDOWS\system32\perfc013.dat 2022-01-17 11:04 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-01-17 11:03 - 2018-12-31 18:52 - 000000000 ____D C:\Program Files\Microsoft Office 2022-01-13 18:16 - 2017-12-03 00:13 - 000000000 ____D C:\Users\declercq\AppData\Local\Packages 2022-01-13 15:55 - 2020-09-21 19:50 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-01-13 15:54 - 2015-08-17 10:06 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-01-13 15:33 - 2020-09-21 19:28 - 000481520 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-01-13 14:15 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-01-13 13:28 - 2021-05-11 19:26 - 000002121 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2022-01-13 13:28 - 2021-05-11 19:26 - 000002110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-01-13 13:03 - 2021-09-22 16:30 - 000002024 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2022-01-13 11:08 - 2014-10-22 20:04 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-01-13 11:00 - 2014-10-22 20:04 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-01-11 17:02 - 2015-03-09 22:00 - 000000000 ____D C:\Users\declercq\AppData\Local\ElevatedDiagnostics ==================== Bestanden in de root van sommige mappen ======== 2022-01-21 17:38 - 2022-01-21 17:41 - 033556752 _____ (Facebook, Inc.) C:\Users\declercq\Messenger.134.0.0.11.118.exe 2022-01-27 16:24 - 2022-01-27 16:26 - 022958832 _____ (Outbyte) C:\Users\declercq\mfc100u_dll-outbyte-pc-repair.exe 2018-07-20 17:57 - 2018-09-17 13:39 - 049879736 _____ (Nationaal Intermutualistisch College) C:\Users\declercq\PatientHealthViewer_windows_6.1.3.exe 2015-08-07 17:21 - 2015-08-07 17:21 - 000000000 _____ () C:\Program Files (x86)\Common Files\AMD 2014-12-01 22:07 - 2014-12-01 22:07 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\Bass Amp 2014-12-01 22:08 - 2014-12-01 22:08 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\Bass Reduction 2014-12-01 22:07 - 2014-12-01 22:07 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\BookService 2015-11-27 17:52 - 2015-11-27 17:52 - 000003584 _____ () C:\Users\declercq\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2021-05-11 19:26 - 2021-05-11 19:26 - 000000410 _____ () C:\Users\declercq\AppData\Local\oobelibMkey.log 2015-09-05 16:24 - 2019-01-29 16:35 - 000007628 _____ () C:\Users\declercq\AppData\Local\Resmon.ResmonCfg 2021-05-04 16:04 - 2021-05-04 16:04 - 002529622 _____ () C:\Users\declercq\AppData\Local\[j0002]-[p01].bmp ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================