Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 05-02-2022 Gestart door declercq (Beheerder) op GILBERTDECLERCQ (Hewlett-Packard 500-206eb) (05-02-2022 13:04:19) Gestart vanaf C:\Users\declercq\OneDrive\Bureaublad Geladen Profielen: declercq Platform: Microsoft Windows 10 Home Versie 20H2 19042.1466 (X64) Taal: Nederlands (Nederland) Standaardbrowser: Edge Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Advanced Micro Devices, Inc. -> ) C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe (Corel Corporation -> Corel Corporation) C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe (Corel Corporation -> Corel Corporation) C:\Program Files\WinZip Smart Monitor\WinZipSmartMonitor.exe (Corel Corporation -> WinZip Computing) C:\Program Files (x86)\WinZip Courier\wzwmcgcnm.exe (Corel Corporation -> WinZip Computing) C:\Program Files (x86)\WinZip Courier\wzwmcgcnm64.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzSyncHelper64.exe (Google LLC -> ) C:\Program Files\Google\Drive File Stream\54.0.3.0\crashpad_handler.exe <2> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe <7> (Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (IDT, Inc.) [Bestand niet getekend] C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.) [Bestand niet getekend] C:\Program Files\IDT\WDM\sttray64.exe (Integrated Device Technology Inc. -> Hewlett-Packard) [Bestand niet getekend] C:\Program Files\IDT\WDM\Beats64.exe (Microsoft Corporation -> © 2015 Microsoft Corporation) C:\Users\declercq\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <23> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\declercq\AppData\Local\Microsoft\OneDrive\22.012.0116.0001\FileCoAuth.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.12013.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (NortonLifeLock Inc. -> Broadcom) C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\NortonSecurity.exe <2> (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\nsWscSvc.exe (NortonLifeLock Inc. -> Symantec Corporation) C:\Program Files\Norton Utilities\x64\LBGovernor.exe ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe /hideui (Geen bestand) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe (Geen bestand) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe (Geen bestand) HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [41664 2013-11-20] (Integrated Device Technology Inc. -> Hewlett-Packard) [Bestand niet getekend] HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8027016 2016-09-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-20] (IDT, Inc.) [Bestand niet getekend] HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436704 2020-09-28] (Corel Corporation -> WinZip Computing, S.L.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2268232 2018-07-03] (APN LLC -> APN) HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [571392 2011-10-30] (Nikon Corporation) [Bestand niet getekend] HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft, Inc. -> ArcSoft Inc.) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5819104 2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Google Update] => C:\Users\declercq\AppData\Local\Google\Update\1.3.36.122\GoogleUpdateCore.exe [223816 2022-01-21] (Google LLC -> Google LLC) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [BingSvc] => C:\Users\declercq\AppData\Local\Microsoft\BingSvc\BingSvc.exe [145504 2020-09-30] (Microsoft Corporation -> © 2015 Microsoft Corporation) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [51656320 2016-04-08] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [com.proximus.proximuscloud] => C:\Users\declercq\AppData\Local\ProximusCloud\app-21.4.12\Proximus Cloud.exe [2114256 2021-08-16] (Synchronoss Technologies, Inc -> Proximus) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\Run: [MicrosoftEdgeAutoLaunch_4EE674C4DA729B54CE9A1378DB702C96] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-3409791781-31244116-3819798477-1001\...\MountPoints2: {dac3d0a9-e554-11eb-85ee-9cb654f8ebd3} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe [55330648 2022-01-11] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\hpfpp092: C:\Windows\System32\spool\prtprocs\x64\hpfpp092.dll [249856 2009-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [404992 2013-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\...\Print\Monitors\PCL hpf3l092.dll: C:\WINDOWS\system32\hpf3l092.dll [136704 2009-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-25] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{AC76BA86-0000-0000-7760-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat DC\Esl\Aiod.dll [2021-12-24] (Adobe Inc. -> Adobe Systems, Inc.) HKLM\Software\...\Authentication\Credential Providers: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll HKLM\Software\...\Authentication\Credential Provider Filters: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2017-05-03] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2021-09-04] ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () [Bestand niet getekend] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk [2021-05-11] ShortcutTarget: WinZip Preloader.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Cloud.lnk [2018-11-01] ShortcutTarget: Cloud.lnk -> C:\Users\declercq\AppData\Local\F-Secure\Cloud\Application\Cloud.exe (F-Secure Corporation -> F-Secure Corporation) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EOS Utility.lnk [2021-09-04] ShortcutTarget: EOS Utility.lnk -> C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe (Canon INC.) [Bestand niet getekend] Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hpqtra08.exe [2011-04-29] (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk [2021-05-04] ShortcutTarget: Verzenden naar OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WinZip SyncHelper.lnk [2019-06-03] ShortcutTarget: WinZip SyncHelper.lnk -> C:\Program Files\WinZip\WzSyncHelper64.exe (Corel Corporation -> WinZip Computing) ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {094D63F9-406C-4E59-938F-5F7B5318845E} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {1A31FDA9-C907-40E4-B697-DBC40BECFDAE} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {1C09E5F6-7970-4E8A-80AF-1D64E514A319} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {1FA67983-F19F-4ED7-A512-EF8274EF3EBB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-22] (Google Inc -> Google Inc.) Task: {20CCDBEC-B292-4DFA-B7E6-68A4284E822F} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2353000 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {273AF670-22BF-4B43-8B1B-B48C70F10977} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {32F11BB6-DAEA-4CFF-8FFE-A766059B2445} - System32\Tasks\Norton Utility\Live Boost Process Governor => C:\Program Files\Norton Utilities\x64\LBGovernor.exe [1050096 2022-01-25] (NortonLifeLock Inc. -> Symantec Corporation) Task: {38E0FD6A-EDC8-4946-AF6B-18103560D61C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) Task: {3AD7AB78-ADC0-4A21-A9C1-AB847060246C} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {490BA6E6-CCD9-4FCF-8201-C0F7A1BCD321} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138584 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) Task: {5810D8B4-22B5-4144-8760-583AC2228B74} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {58CB48D4-E968-4901-B5D3-10CBE8D24FF9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.) Task: {69EA6975-E132-4D2C-9DA1-DC5D26E71628} - System32\Tasks\Norton Utility\AutomaticCare => C:\Program Files\Norton Utilities\NUP.exe [3632112 2022-01-25] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {74771ABC-B616-46E5-A677-0DE303D32E47} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1617384 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) Task: {757A7E35-7A7F-4C44-A617-E4A8A3AD8F2E} - System32\Tasks\{7DE10D9B-BFDC-46B3-ADD6-2CE4DC5E554E} => C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\HPConnectedMusic\Uninstall.exe" Task: {84C00DE7-74EF-4207-9A1F-86C768E7E90B} - System32\Tasks\CLVDLauncher => c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008 2013-03-12] (CyberLink Corp. -> CyberLink Corp.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {8D4BD7C9-297E-457A-AB61-C82D3C14B2D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.) Task: {979B9417-C825-4918-89F9-1CE6B28A739E} - \Norton Security with Backup\Norton Security Online Error Processor -> Geen bestand <==== AANDACHT Task: {9990F6F7-82F4-4403-9DB0-86DB16A44E95} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001UA => C:\Users\declercq\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {99D7A8B0-700F-4501-BF66-BF1E1DAAA006} - System32\Tasks\Norton Security with Backup\Norton Security Online Autofix => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.8.62\SymErr.exe /ui (Geen bestand) Task: {9F4327D5-B801-404C-B5A0-091C8A0FEA5A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-04-22] (Google Inc -> Google Inc.) Task: {AA9E2095-B5C6-4438-B52E-B7332F1139CE} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {AD4A1962-7E29-4E61-B4EE-9D2DE880C371} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) Task: {B7CA0848-B8A7-48DD-9500-B5BBE8E9F45C} - System32\Tasks\Norton Security with Backup\Norton Security Online Error Analyzer => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.8.62\SymErr.exe /analyze (Geen bestand) Task: {BB4F6CB7-91EC-49F0-924F-FA115C14292F} - System32\Tasks\Start WinZip System Utilities Suite Update => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {C02E8CA5-9517-42FD-A54C-C38DAE948C18} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138584 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) Task: {C88FEB2A-0F4C-4E7F-B96B-6D4F9FEB08F2} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink Corp. -> CyberLink) Task: {CAF99501-CEA7-4CCE-BC2F-C85376EB5CBB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001Core => C:\Users\declercq\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D19BFD21-0FA4-4917-83AE-182DBC44A142} - System32\Tasks\HPCeeScheduleFordeclercq => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard) Task: {DAAC6698-36F1-4B16-8B73-68F724B0BDCF} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {DACFB88C-108F-456F-B617-F188D761D5DC} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\WSCStub.exe [646520 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {DD3ADD16-CD8F-4FCE-A814-D23A87276A7D} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-09-28] (Corel Corporation -> Corel Corporation) Task: {E2F7BEB1-D476-4DC0-AAAA-D341794348F2} - System32\Tasks\Start WinZip System Utilities Suite for GILBERTDECLERCQ@declercq(logon) => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {F3FFCD27-AE27-423A-981E-36C9858A58EF} - System32\Tasks\Start WinZip System Utilities Suite Schedule => C:\Program Files\WinZip System Utilities Suite\WinZip System Utilities Suite.exe [12727056 2021-04-22] (Corel Corporation -> Corel Corporation) Task: {F5725E23-12B4-4FB7-9336-A5B445810F3B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.) (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleFordeclercq.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{25b260f6-d7e9-4585-9852-6278f53ed948}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{29787e9d-5c06-4ce1-ac6a-829c896ce0ca}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3c8b9a49-8b80-481f-a746-83e29bd511a2}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{618c1991-9c69-468b-b689-fd7cd4d71432}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{61f7a05b-cfea-4147-a69f-21b46e029220}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6962b675-058c-4f8b-bbd2-3af7fa71e421}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6f64b7e0-9b0d-4f26-b8c0-dfebeb829ace}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\declercq\Downloads Edge Notifications: HKU\S-1-5-21-3409791781-31244116-3819798477-1001 -> hxxps://www.facebook.com; hxxps://mail.google.com; hxxps://web.skype.com; hxxps://preview.web.skype.com Edge Extension: (Geen Naam) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [niet gevonden] Edge Extension: (Geen Naam) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [niet gevonden] Edge Extension: (Pin It Button) -> EdgeExtension_PinterestPinItButton_xnkra2w3aecd0 => C:\Program Files\WindowsApps\Pinterest.PinItButton_1.39.5.0_neutral__xnkra2w3aecd0 [2021-10-08] Edge Extension: (Norton Password Manager) -> EdgeExtension_SymantecCorporation5478111E43ACF_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.5478111E43ACF_6.6.1.0_neutral__v68kp9n051hdp [niet gevonden] Edge Extension: (Norton Safe Web) -> EdgeExtension_SymantecCorporationNortonSafeWeb_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.NortonSafeWeb_3.11.0.0_neutral__v68kp9n051hdp [niet gevonden] Edge Extension: (Geen Naam) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [niet gevonden] Edge Extension: (Geen Naam) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [niet gevonden] Edge DefaultProfile: Default Edge Profile: C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-05] Edge Notifications: Default -> hxxps://helena.care; hxxps://my.norton.com; hxxps://order.dominos.be; hxxps://outlook.live.com; hxxps://thewinningplace.com; hxxps://vtm.be; hxxps://www.facebook.com; hxxps://www.hln.be; hxxps://www.ibood.com; hxxps://www.instagram.com; hxxps://www.koopjedeal.nl; hxxps://www.medion.com; hxxps://www.soo-healthy.com; hxxps://www.streamz.be; hxxps://www.unigro.be; hxxps://www.vrt.be; hxxps://www.wielerflits.nl; hxxps://www.zdnet.com Edge HomePage: Default -> hxxp://www.google.com/ Edge StartupUrls: Default -> "hxxp://microsoft/" Edge NewTab: Default -> Not-active:"chrome-extension://dnflpnhpbffehddplcdlohealbgbbamk/ntp1.html", Not-active:"chrome-extension://edlkcjfhiofedjdnbagmjhmkemmnnggg/ntp1.html" Edge DefaultSearchURL: Default -> hxxps://searchsafe.norton.com/search?omnisearch=yes&q={searchTerms} Edge DefaultSearchKeyword: Default -> nortonsafe Edge DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=nl&q={searchTerms} Edge Extension: (Google Translate) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-01-21] Edge Extension: (Norton Safe Web) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdaafgjhhjkdplpffldcncdignokfkbo [2021-10-22] Edge Extension: (PDFConverterHQ) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dnflpnhpbffehddplcdlohealbgbbamk [2020-06-10] Edge Extension: (MyRadioAccess) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\edlkcjfhiofedjdnbagmjhmkemmnnggg [2020-06-14] Edge Extension: (Microsoft Automatisch doorvoeren) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fiedbfgcleddlbcmgdigjgdfcggjcion [2022-02-01] Edge Extension: (Microsoft-editor: spelling-en grammaticacontrole) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hokifickgkhplphjiodbggjmoafhignh [2022-01-17] Edge Extension: (Pinterest-bewaarknop) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jfcjijcigimhjjdimpghneggnegiphhh [2020-01-27] Edge Extension: (Connective signing extension) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2020-05-06] Edge Extension: (Norton Password Manager) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcccdlklhahfmobgpnilndimkankpnkg [2021-10-30] Edge Extension: (WinZip Courier) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lomojjnmhlhdepbfoknpkenickajcphi [2021-05-11] Edge Extension: (eID Edge Extension) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mjiffldffjokfhokbjanjgjmeabmhflb [2021-12-18] Edge Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2021-12-27] Edge Extension: (Norton Home Page) - C:\Users\declercq\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\okplngpklcjmpdemleibnhidjihcobef [2021-12-21] FireFox: ======== FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-04-27] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-02-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-01-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default [2022-02-05] CHR Notifications: Default -> hxxps://androidworld.be; hxxps://calendar.google.com; hxxps://mail.google.com; hxxps://sporza.be; hxxps://voetbalprimeur.pushengage.com; hxxps://vtm.be; hxxps://www.facebook.com; hxxps://www.hln.be; hxxps://www.kookfans.nl; hxxps://www.pc-helpforum.be CHR HomePage: Default -> msn.com CHR StartupUrls: Default -> "hxxps://www.google.be/" CHR NewTab: Default -> Active:"chrome-extension://mhffmephdchhhbfjmdpoaldedhhdanbn/homePageRedirect.html", Not-active:"chrome-extension://ejbdobdndcjhdmljipngpeoekdinlohe/homePageRedirect.html", Not-active:"chrome-extension://gfoabcdjalmeenbjjngidappmppchblc/homePageRedirect.html" CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?omnisearch=yes&q={searchTerms} CHR DefaultSearchKeyword: Default -> nortonsafe CHR Extension: (Presentaties) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Norton Password Manager) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\admmjipmmciaobhojoghlmleefbicajg [2021-11-30] CHR Extension: (Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Google Drive) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-04] CHR Extension: (eID Chrome Extension) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbdaodnaecdijpajecpncpdomgcoakc [2021-12-20] CHR Extension: (YouTube) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Spotify - Music for every moment) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnkjkdjlofllcpbemipjbcpfnglbgieh [2017-07-15] CHR Extension: (PDFConverterHQ) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnflpnhpbffehddplcdlohealbgbbamk [2020-06-18] CHR Extension: (MyRadioAccess) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\edlkcjfhiofedjdnbagmjhmkemmnnggg [2020-06-18] CHR Extension: (Norton Home Page for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe [2018-09-21] CHR Extension: (Norton Safe Search) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogpedgkejfmehnklhahflpmplhiceal [2020-06-05] CHR Extension: (Spreadsheets) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Norton Safe Web) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnpbeacklnhmkkilekogeiekaglbmmka [2021-10-09] CHR Extension: (Norton Home Page for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfoabcdjalmeenbjjngidappmppchblc [2017-04-26] CHR Extension: (Offline Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-25] CHR Extension: (Vertalen.nu) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\giapagjeblcapfphboclikepoeelhgkj [2015-04-22] CHR Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbmobhkkblcgdifigjglcjneplefbkmh [2017-04-26] CHR Extension: (Connective signing extension) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\kclpjmhngbacampgcdojmiedamjbgjjm [2019-11-13] CHR Extension: (WinZip Courier) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\lomojjnmhlhdepbfoknpkenickajcphi [2021-05-29] CHR Extension: (Norton Home Page) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhffmephdchhhbfjmdpoaldedhhdanbn [2022-01-13] CHR Extension: (Norton Safe) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2022-01-13] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Extension: (Deezer) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\npfkoakaabdallkcdbpkkhfilkkngakh [2014-12-13] CHR Extension: (Browsec VPN - Free VPN for Chrome) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\omghfjlpggmjjaagoclmmobgdodcjboh [2022-01-31] CHR Extension: (Gmail) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-04] CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-02-05] CHR Profile: C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile [2022-02-05] CHR Extension: (Google Presentaties) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-25] CHR Extension: (Google Documenten) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-25] CHR Extension: (Google Drive) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-25] CHR Extension: (YouTube) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-25] CHR Extension: (Google Search) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-25] CHR Extension: (Google Spreadsheets) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-25] CHR Extension: (Gmail) - C:\Users\declercq\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-25] CHR HKLM\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2018-07-02] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKU\S-1-5-21-3409791781-31244116-3819798477-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] CHR HKU\S-1-5-21-3409791781-31244116-3819798477-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2018-07-02] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] CHR HKLM-x32\...\Chrome\Extension: [lomojjnmhlhdepbfoknpkenickajcphi] - C:\Program Files (x86)\WinZip Courier\wzwmcgc.crx [2021-03-22] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft, Inc. -> ArcSoft Inc.) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2016-09-16] (Advanced Micro Devices, Inc. -> ) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.) S3 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) S3 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2839296 2015-05-06] (Acer Incorporated -> Acer Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12124536 2022-02-04] (Microsoft Corporation -> Microsoft Corporation) S3 CyberLink PowerDVD 12 Media Server Monitor Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-08-12] (CyberLink Corp. -> CyberLink) S3 CyberLink PowerDVD 12 Media Server Service; c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-08-12] (CyberLink Corp. -> CyberLink) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-08-22] (HP Inc. -> HP Inc.) R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Bestand niet getekend] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Bestand niet getekend] R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] R2 NortonSecurity; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\NortonSecurity.exe [343336 2021-12-13] (NortonLifeLock Inc. -> Broadcom) R2 nsWscSvc; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\Engine\22.21.11.46\nsWscSvc.exe [1059176 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-11-20] (IDT, Inc.) [Bestand niet getekend] S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-31] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-31] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinZip Smart Monitor Service; C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe [1463592 2020-10-22] (Corel Corporation -> Corel Corporation) S2 Cachedrv server; "C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe" [X] S2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [X] ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [31992 2015-08-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R1 BHDrvx64; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\Definitions\BASHDefs\20220203.011\BHDrvx64.sys [2018784 2021-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\ccSetx64.sys [192256 2021-12-13] (Symantec Corporation -> Symantec Corporation) R3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [509904 2021-11-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145376 2021-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R1 googledrivefs3688; C:\WINDOWS\System32\DRIVERS\googledrivefs3688.sys [381456 2021-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R1 IDSVia64; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\Definitions\IPSDefs\20220204.061\IDSvia64.sys [1480144 2021-09-29] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 nsvst_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\nsvst.sys [56080 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) S3 ObDrvMonPCRSrv; C:\Program Files (x86)\Outbyte\PC Repair\DrvMonX64.sys [186544 2021-06-30] (Outbyte Computing Pty Ltd -> Outbyte) R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SRTSP64.SYS [892600 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SRTSPX64.SYS [48824 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2013-11-20] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SYMEFASI64.SYS [2030768 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\SymELAM.sys [31984 2021-12-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [93120 2021-09-17] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymEvnt; C:\Program Files\Norton Security\{1093FBFC-B00B-44EB-AAB2-83EF84D24F1C}\NortonData\22.20.5.39\SymPlatform\SymEvnt.sys [712432 2021-07-13] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\Ironx64.SYS [319152 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\symnets.sys [575344 2021-12-13] (Symantec Corporation -> Symantec Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-01-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-01-31] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-31] (Microsoft Windows -> Microsoft Corporation) R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\16150B0.02E\wpCtrlDrv.sys [1015760 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-05 12:39 - 2022-02-05 12:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2022-02-04 17:25 - 2022-02-04 17:25 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2022-02-04 13:36 - 2021-10-08 11:00 - 000167544 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudmdm.sys 2022-02-02 16:17 - 2022-02-05 13:05 - 000000000 ____D C:\FRST 2022-01-27 16:27 - 2022-01-27 16:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Outbyte 2022-01-27 16:27 - 2022-01-27 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outbyte 2022-01-27 16:26 - 2022-01-27 16:26 - 000000000 ____D C:\ProgramData\Outbyte 2022-01-25 11:08 - 2022-01-25 11:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 2022-01-21 17:41 - 2022-01-21 17:41 - 000002401 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Messenger.lnk 2022-01-21 17:41 - 2022-01-21 17:41 - 000000000 ____D C:\Users\declercq\AppData\LocalLow\Messenger 2022-01-21 17:41 - 2022-01-21 17:41 - 000000000 ____D C:\Users\declercq\AppData\Local\messenger-updater 2022-01-21 17:38 - 2022-01-21 17:41 - 033556752 _____ (Facebook, Inc.) C:\Users\declercq\Messenger.134.0.0.11.118.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-01-13 14:08 - 2022-01-13 14:08 - 000011797 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-01-13 13:18 - 2022-01-13 13:18 - 000000000 ___HD C:\$WinREAgent ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-02-05 12:58 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-02-05 12:47 - 2021-12-28 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton 360 2022-02-05 12:47 - 2014-10-24 17:04 - 000000000 ____D C:\Program Files (x86)\Google 2022-02-05 12:32 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-02-05 12:12 - 2021-05-29 14:22 - 000000000 ____D C:\Users\declercq\AppData\LocalLow\Norton 2022-02-05 12:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-02-05 12:09 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-02-05 12:08 - 2018-11-06 16:55 - 000000000 ___RD C:\Users\declercq\OneDrive 2022-02-05 12:08 - 2014-10-23 22:53 - 000000000 ____D C:\Users\declercq\AppData\Local\CrashDumps 2022-02-05 12:06 - 2020-09-21 19:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-02-05 12:06 - 2020-09-21 19:28 - 000008192 ___SH C:\DumpStack.log.tmp 2022-02-05 12:06 - 2019-08-15 11:03 - 000000356 _____ C:\WINDOWS\Tasks\HPCeeScheduleFordeclercq.job 2022-02-05 12:05 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-02-05 12:02 - 2015-08-07 13:15 - 000000000 ____D C:\Users\declercq\AppData\LocalLow\Temp 2022-02-05 11:56 - 2021-09-17 11:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security with Backup 2022-02-05 11:56 - 2020-10-16 19:30 - 000002555 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NMBS - Dienstregeling, Biljetten, Abonnementen en Tarieven.lnk 2022-02-05 11:56 - 2020-10-16 19:30 - 000002549 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Noodweer _ online weerblog _ natuur _ onweer en bliksem (1).lnk 2022-02-05 11:56 - 2020-10-16 19:30 - 000002533 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uitvaartzorg D'Hondt - Begrafenissen Oudenaarde (1).lnk 2022-02-05 11:56 - 2020-10-16 19:30 - 000002529 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Het weer in BelgiË _ onze verwachtingen - KMI (1).lnk 2022-02-05 11:56 - 2020-10-16 19:30 - 000002503 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wikipedia, de vrije encyclopedie (1).lnk 2022-02-05 11:56 - 2020-09-21 10:07 - 000000000 ____D C:\Users\declercq 2022-02-05 11:56 - 2020-07-24 16:59 - 000002493 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Welkom bij Domino's Friends.lnk 2022-02-05 11:56 - 2020-07-21 17:10 - 000002497 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Home _ KMSK Deinze.lnk 2022-02-05 11:56 - 2020-07-21 17:05 - 000002505 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eetgelegenheden _ Stad Oudenaarde.lnk 2022-02-05 11:56 - 2020-07-21 17:04 - 000003103 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brasserie Priorij Van Elsegem - Kleine Markt Oudenaarde - Een oase van Gezelligheid.lnk 2022-02-05 11:56 - 2020-07-21 17:03 - 000002523 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taverne restaurant Ter Biestmolen te Zwalm.lnk 2022-02-05 11:56 - 2020-07-21 17:01 - 000002473 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Home - Zwalmkoets.lnk 2022-02-05 11:56 - 2020-07-21 17:00 - 000002505 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brasserie Noordhof Drongen - Home.lnk 2022-02-05 11:56 - 2020-07-21 16:57 - 000002693 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\t'Veer Oudenaarde.lnk 2022-02-05 11:56 - 2020-07-21 16:55 - 000002615 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\de afspanning.lnk 2022-02-05 11:56 - 2020-07-20 17:29 - 000002699 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\European Disability Card _ Een kaart om de toegang van personen met een handicap tot cultuur, sport en vrijetijdsbesteding te verg.lnk 2022-02-05 11:56 - 2020-07-20 17:28 - 000002701 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Handicap - Sociale Zekerheid.lnk 2022-02-05 11:56 - 2020-07-20 17:27 - 000002585 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handicap & invaliditeit - Parkeerkaart personen met een handicap - Burger.lnk 2022-02-05 11:56 - 2020-07-20 17:20 - 000002569 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Informatie en onlinediensten voor burgers – socialezekerheid.be _.lnk 2022-02-05 11:56 - 2020-07-20 17:16 - 000002457 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\my minfin.lnk 2022-02-05 11:56 - 2020-07-20 17:11 - 000002531 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Witte Gids - De eerste Telefoongids van BelgiË.lnk 2022-02-05 11:56 - 2020-07-20 15:52 - 000002477 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mijn eBox - Kaarten.lnk 2022-02-05 11:56 - 2020-07-19 11:01 - 000002891 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Restaurant Foodbart Deinze - Innocent salads, guilty burgers, soep - wraps.lnk 2022-02-05 11:56 - 2020-07-19 11:00 - 000002503 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Weekendmenu _ Restaurants Colmar.lnk 2022-02-05 11:56 - 2020-07-19 10:58 - 000002885 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brasserie Astene _ De wachtzaal_ eten, drinken, brasserie fietsroute, menu.lnk 2022-02-05 11:56 - 2020-02-18 17:15 - 000002463 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YouTube Music.lnk 2022-02-05 11:56 - 2020-01-27 19:59 - 000002547 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Noodweer _ online weerblog _ natuur _ onweer en bliksem.lnk 2022-02-05 11:56 - 2020-01-27 19:59 - 000002531 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uitvaartzorg D'Hondt - Begrafenissen Oudenaarde.lnk 2022-02-05 11:56 - 2020-01-27 19:59 - 000002527 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Het weer in BelgiË _ onze verwachtingen - KMI.lnk 2022-02-05 11:56 - 2020-01-27 19:59 - 000002501 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wikipedia, de vrije encyclopedie.lnk 2022-02-05 11:55 - 2021-07-10 20:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Utility 2022-02-05 11:48 - 2020-01-31 11:28 - 000000000 ____D C:\Program Files (x86)\NortonInstaller 2022-02-05 11:48 - 2014-10-23 19:44 - 000000000 ____D C:\ProgramData\Norton 2022-02-05 11:46 - 2020-01-27 19:59 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-05 11:46 - 2014-11-10 23:20 - 000000000 ____D C:\Program Files (x86)\Java 2022-02-04 19:41 - 2020-09-21 19:28 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-02-04 18:31 - 2020-09-21 19:50 - 000003260 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleFordeclercq 2022-02-04 18:24 - 2021-07-22 19:12 - 002220872 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-02-04 18:24 - 2019-12-07 16:12 - 000929526 _____ C:\WINDOWS\system32\perfh013.dat 2022-02-04 18:24 - 2019-12-07 16:12 - 000210726 _____ C:\WINDOWS\system32\perfc013.dat 2022-02-04 14:26 - 2018-12-31 18:52 - 000000000 ____D C:\Program Files\Microsoft Office 2022-02-04 13:38 - 2021-05-11 16:51 - 000000000 ____D C:\Program Files\WinZip System Utilities Suite 2022-02-04 13:37 - 2021-12-13 10:54 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3409791781-31244116-3819798477-1001 2022-02-04 13:37 - 2021-03-16 11:14 - 000002443 _____ C:\Users\declercq\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-02-04 13:37 - 2020-09-21 19:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3409791781-31244116-3819798477-1001 2022-02-02 15:50 - 2014-10-26 09:48 - 000000000 ____D C:\Users\declercq\AppData\Roaming\HpUpdate 2022-02-01 11:17 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-01-31 17:28 - 2021-08-23 13:15 - 000000000 ____D C:\Users\declercq\AppData\Local\Messenger 2022-01-31 17:28 - 2020-03-10 17:22 - 000000000 ____D C:\Users\declercq\AppData\Roaming\Messenger 2022-01-26 11:19 - 2020-09-21 19:50 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-01-26 11:19 - 2020-09-21 19:50 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-01-25 11:08 - 2021-09-09 18:45 - 000000000 ____D C:\Program Files\Norton Utilities 2022-01-25 11:08 - 2021-07-10 20:43 - 000000000 ____D C:\Users\declercq\AppData\Local\Norton 2022-01-25 10:49 - 2020-01-08 20:49 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-01-25 10:42 - 2020-09-21 19:50 - 000003578 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-01-25 10:42 - 2020-09-21 19:50 - 000003454 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-01-21 15:18 - 2020-09-21 19:50 - 000003840 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001UA 2022-01-21 15:18 - 2020-09-21 19:50 - 000003572 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3409791781-31244116-3819798477-1001Core 2022-01-19 17:10 - 2020-12-29 18:08 - 000035669 _____ C:\Users\declercq\OneDrive\Documenten\Eenvoudig maandbudget2 (1).xlsx 2022-01-13 18:16 - 2017-12-03 00:13 - 000000000 ____D C:\Users\declercq\AppData\Local\Packages 2022-01-13 15:55 - 2020-09-21 19:50 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-01-13 15:54 - 2015-08-17 10:06 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-01-13 15:33 - 2020-09-21 19:28 - 000481520 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-01-13 15:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-01-13 14:15 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-01-13 13:28 - 2021-05-11 19:26 - 000002121 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2022-01-13 13:28 - 2021-05-11 19:26 - 000002110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-01-13 13:03 - 2021-09-22 16:30 - 000002024 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2022-01-13 11:08 - 2014-10-22 20:04 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-01-13 11:00 - 2014-10-22 20:04 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-01-11 17:02 - 2015-03-09 22:00 - 000000000 ____D C:\Users\declercq\AppData\Local\ElevatedDiagnostics ==================== Bestanden in de root van sommige mappen ======== 2022-01-21 17:38 - 2022-01-21 17:41 - 033556752 _____ (Facebook, Inc.) C:\Users\declercq\Messenger.134.0.0.11.118.exe 2018-07-20 17:57 - 2018-09-17 13:39 - 049879736 _____ (Nationaal Intermutualistisch College) C:\Users\declercq\PatientHealthViewer_windows_6.1.3.exe 2015-08-07 17:21 - 2015-08-07 17:21 - 000000000 _____ () C:\Program Files (x86)\Common Files\AMD 2014-12-01 22:07 - 2014-12-01 22:07 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\Bass Amp 2014-12-01 22:08 - 2014-12-01 22:08 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\Bass Reduction 2014-12-01 22:07 - 2014-12-01 22:07 - 000000268 ___RH () C:\Users\declercq\AppData\Roaming\BookService 2015-11-27 17:52 - 2015-11-27 17:52 - 000003584 _____ () C:\Users\declercq\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2021-05-11 19:26 - 2021-05-11 19:26 - 000000410 _____ () C:\Users\declercq\AppData\Local\oobelibMkey.log 2015-09-05 16:24 - 2019-01-29 16:35 - 000007628 _____ () C:\Users\declercq\AppData\Local\Resmon.ResmonCfg 2021-05-04 16:04 - 2021-05-04 16:04 - 002529622 _____ () C:\Users\declercq\AppData\Local\[j0002]-[p01].bmp ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================