Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 24-03-2022 Gestart door Alain (Beheerder) op NEW-PC (ASUS System Product Name) (24-03-2022 17:22:15) Gestart vanaf C:\Users\Eigenaar\Downloads Geladen Profielen: Alain Platform: Microsoft Windows 10 Pro Versie 21H2 19044.1586 (X64) Taal: Nederlands (Nederland) Standaardbrowser: FF Boot Modus: Normal ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, zal het proces worden gesloten. Het bestand zal niet worden verplaatst.) (C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe ->) (CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (explorer.exe ->) (GRASS VALLEY K.K. -> Grass Valley K.K.) C:\Program Files\Grass Valley\GV LicenseManager\AppMaintainer.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Luis Cobian, CobianSoft) [Bestand niet getekend] C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <29> (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe (services.exe ->) (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe (services.exe ->) (CobianSoft, Luis Cobian) [Bestand niet getekend] C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe (services.exe ->) (Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe (services.exe ->) (GuinpinSoft inc) [Bestand niet getekend] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_648d50545868bf91\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Luis Cobian, CobianSoft) [Bestand niet getekend] C:\Program Files (x86)\Cobian Backup 11\cbService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe (services.exe ->) (NortonLifeLock Inc. -> NortonLifelock Inc.) C:\Program Files\Norton Security\Engine\22.22.2.10\NortonSecurity.exe <2> (services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.22.2.10\nsWscSvc.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Plarium Global Ltd -> ) C:\Users\Eigenaar\AppData\Local\Plarium\PlariumPlay\6.9.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe (services.exe ->) (Popcorn Time) [Bestand niet getekend] C:\Program Files (x86)\Popcorn Time\Updater.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (TechSmith Corporation -> TechSmith Corporation) C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe (services.exe ->) (TEFINCOM S.A. -> TEFINCOM S.A.) C:\Program Files\NordVPN\nordvpn-service.exe (services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\ProgramData\Wondershare\Service\InstallAssistService.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> ==================== Register (gefilterd) =================== (Als een item is opgenomen in de fixlist, zal het registeritem worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1140000 2022-03-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM-x32\...\Run: [Cobian Backup 11 interface] => C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe [4407808 2013-03-07] (Luis Cobian, CobianSoft) [Bestand niet getekend] HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) HKLM-x32\...\Run: [TrayProcess] => C:\Program Files (x86)\EaseUS\Todo Backup\bin\TrayProcess.exe [1413768 2021-07-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [Codec Settings UAC Manager] => C:\WINDOWS\SysWOW64\Codecs\CodecUACManager.exe [71816 2021-01-18] (Cole Williams Software Limited -> ) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode (Geen bestand) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode (Geen bestand) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35093120 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\Run: [AutoPlayService] => C:\Program Files (x86)\Apeaksoft Studio\Apeaksoft Blu-ray Player\AutoPlayService.exe [39400 2021-06-30] (Keysun Software Co.,Ltd -> ) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31190360 2021-10-06] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\Run: [PlariumPlay] => C:\Users\Eigenaar\AppData\Local\Plarium\PlariumPlay\PlariumPlay --args -run-with-os (Geen bestand) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\Run: [DigipassNativeBridge] => C:\Users\Eigenaar\AppData\Local\OneSpan\NativeBridge\digipass-nativebridge-monitor.exe [111384 2021-10-11] (OneSpan North America Inc. -> VASCO Data Security) HKU\S-1-5-21-387179814-2990267870-3396875002-1001\...\MountPoints2: {c3aa7868-df07-11eb-83d1-806e6f6e6963} - "I:\SETUP95.EXE" HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.3.0\GoogleDriveFS.exe --startup_mode (Geen bestand) HKLM\...\Windows x64\Print Processors\Canon TS8100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDO.DLL [482816 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS8100 series: C:\WINDOWS\system32\CNMLMDO.DLL [1302016 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk [2021-11-06] ShortcutTarget: CodecPackTrayMenu.lnk -> C:\Windows\SysWOW64\Codecs\TrayMenu.exe (Cole Williams Software Limited -> ) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GV LicenseManager.lnk [2021-11-05] ShortcutTarget: GV LicenseManager.lnk -> C:\Program Files\Grass Valley\GV LicenseManager\AppMaintainer.exe (GRASS VALLEY K.K. -> Grass Valley K.K.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GV Video IO Hardware Driver.lnk [2022-02-06] ShortcutTarget: GV Video IO Hardware Driver.lnk -> C:\Program Files\Grass Valley\Video IO HW Driver\StormDiag.exe (GRASS VALLEY K.K. -> Grass Valley K.K.) ==================== Geplande Taken (gefilterd) ============ (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) Task: {04455CE2-55F5-4D49-9017-00636EDAB04F} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {16B5E795-B02D-424F-ABCD-F8D2F00294E8} - System32\Tasks\NCH Software\VideoPadSevenDays => C:\Program Files (x86)\NCH Software\VideoPad\VideoPad.exe [11718640 2022-01-14] (NCH Software, Inc. -> NCH Software) Task: {2252D328-4D31-4BA3-BCCE-2F2403F03845} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {33A2E61C-0FB4-4838-9430-C3F5B0238B87} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\Engine\22.20.5.39\SymErr.exe /ui (Geen bestand) Task: {4FC0C11D-BB24-4271-B429-67474AE0758E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {594725B4-AAC7-4B74-8B3A-7CFEEF82D307} - System32\Tasks\TechSmith Updater => C:\Program Files (x86)\Common Files\TechSmith Shared\Updater\TSCUpdClt.exe [70712 2017-05-12] (TechSmith Corporation -> TechSmith Corporation) Task: {5A8CDE5F-996F-4F5F-B17A-8C59B5F0589A} - System32\Tasks\CreateExplorerShellUnelevatedTask => c:\windows\explorer.exe /NOUACCHECK Task: {5DA6E335-9A63-445E-A6AD-7E73A315DAA6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6481872 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {5EE71146-BB11-4FC0-81C6-D040F6C56068} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [110968 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {61040C19-204F-4F07-B893-30526AFB1C22} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) Task: {77350C13-1F70-469A-B471-77C5303BFCBA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {82064389-B788-425E-877F-354B55C5ABF4} - System32\Tasks\Norton Security\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {8AD20E37-F1FD-4018-A375-2AEEDFC06195} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {918F4F7F-3182-4BD0-9A0B-C12C4DD39090} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe -mode=scheduled (Geen bestand) Task: {969B329F-C399-4968-ADA4-CE2C198E3A29} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9A110B19-7EF3-4C08-A794-E2279539B9A7} - System32\Tasks\NCH Software\VideoPadCacheDeleteAll => C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe [11718640 2022-01-14] (NCH Software, Inc. -> NCH Software) Task: {9D5A8702-166E-4A89-95F6-EFDA182D89BF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [110968 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {A447230C-6C57-4286-9788-86428ED70EB3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580696 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {AB144DBC-E3B0-4E5B-AE50-71B0E83A5015} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580696 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {AC1D977D-A130-4071-83B9-FD5A7813C27E} - System32\Tasks\CCleanerSkipUAC - Alain => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {B1C4A43A-FCDC-45C8-BE47-55C3634D244C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B4276F14-40AE-4659-ADE2-732CB257ECC0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-11] (Google LLC -> Google LLC) Task: {B4EF7D73-C770-4EE8-98D5-1DBF67B57F06} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2353000 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {B50C081A-27AB-4E48-B60E-27449E3EA660} - System32\Tasks\AdobeAAMUpdater-1.0-NEW-PC-Alain => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {BA49D996-BCD3-431F-98E5-07AB29BC2046} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-09-10] (Piriform Software Ltd -> Piriform) Task: {BE2F809F-25E2-4151-9E40-8C81122D7BC8} - System32\Tasks\NCH Software\VideoPadNotifyInstalledReminder => C:\Program Files (x86)\NCH Software\VideoPad\VideoPad.exe [11718640 2022-01-14] (NCH Software, Inc. -> NCH Software) Task: {C0F14DEE-9378-4FB6-8906-3EBDB7F1C144} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-11] (Google LLC -> Google LLC) Task: {C1182881-B636-4F3E-BF49-A0337448062B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C2AA2AB8-4592-4A78-84AF-8276364577E5} - System32\Tasks\PostponeDeviceSetupToast_S-1-5-21-387179814-2990267870-3396875002-1001_0 => {5ded83ef-1e99-48cf-bf83-676d2a6db408} C:\Windows\System32\oobe\UserOOBE.dll [417280 2022-03-11] (Microsoft Windows -> Microsoft Corporation) Task: {CEE28F27-4D3E-4596-9F3F-D691FEF8E25E} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.5.39\SymErr.exe /analyze (Geen bestand) Task: {D0F55E82-42A8-4A84-B3FE-A7015E20BAE8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6481872 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {D380D8AF-FB1A-4EFA-82CB-F8357109E3C5} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2022-01-30] () [Bestand niet getekend] Task: {D3C2D2DF-339D-47A2-A0FF-54677048177C} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {DE7C5BB2-3A17-4509-A0DD-EB2BDEDE1F78} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.22.2.10\WSCStub.exe [646520 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {E19185B1-BD51-478B-8D66-58989C387A29} - System32\Tasks\Norton Security\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {EC2658DC-CC10-411D-9438-8F8AAD15E3C4} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\Engine\22.20.5.39\SymErr.exe /submit (Geen bestand) Task: {FDA5D792-B4F9-4970-A737-EBF384DB68D2} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [26968 2021-10-06] (Garmin International, Inc. -> ) (Als een item is opgenomen in de fixlist, wordt de taak (job) bestand verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist en een registeritem is, wordt het verwijderd of hersteld naar de standaard.) Hosts: Er is meer dan één item in Hosts. Zie Hosts deel van Addition.txt Tcpip\Parameters: [DhcpNameServer] 195.130.131.5 195.130.130.5 Tcpip\..\Interfaces\{ef3d0efa-2dcc-4f09-9802-56cf5bf07a26}: [DhcpNameServer] 195.130.131.5 195.130.130.5 Edge: ======= DownloadDir: C:\Users\Eigenaar\Downloads Edge DefaultProfile: Default Edge Profile: C:\Users\Eigenaar\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-23] Edge DownloadDir: Default -> C:\Users\Eigenaar\Downloads Edge Notifications: Default -> hxxps://www.facebook.com Edge HomePage: Default -> hxxp://178.116.208.117:8910/ Edge StartupUrls: Default -> "hxxps://mail.telenet.be/zimbra/mail?client=advanced#1" Edge Extension: (AdBlock - de beste advertentieblokker) - C:\Users\Eigenaar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2022-03-15] FireFox: ======== FF DefaultProfile: 1pn7qx90.default FF ProfilePath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\1pn7qx90.default [2021-10-17] FF ProfilePath: C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506 [2022-03-24] FF Homepage: Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506 -> hxxps://mail.telenet.be/zimbra/mail?client=advanced#1 FF Extension: (Gfycat - Click to GIF) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\@gfycat-creator.xpi [2021-11-03] FF Extension: (Firefox DevTools ADB Extension) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\adb@mozilla.org.xpi [2022-01-24] [UpdateUrl:hxxps://ftp.mozilla.org/pub/labs/devtools/adb-extension/win32/update.json] FF Extension: (eID België) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\belgiumeid@eid.belgium.be.xpi [2022-01-17] FF Extension: (Toggle Animated Gif) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\{68e413c3-f9d1-4dbe-b5d4-2405f5b2506c}.xpi [2021-11-03] FF Extension: (Logitech SetPoint) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\{84380428-8c9d-4bdf-913d-b2c34d6562d9}.xpi [2021-11-03] FF Extension: (Adblock Plus - gratis adblocker) - C:\Users\Eigenaar\AppData\Roaming\Mozilla\Firefox\Profiles\2ugwel8w.default-release-1635911952506\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-11-24] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-01] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Geen bestand] FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Bestand niet getekend] FF Plugin-x32: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-10-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-10-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Bestand niet getekend] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Bestand niet getekend] FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [Geen bestand] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01] Opera: ======= OPR Profile: C:\Users\Eigenaar\AppData\Roaming\Opera Software\Opera Stable [2022-03-11] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Eigenaar\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-11-06] OPR Extension: (Amazon Assistant Promotion) - C:\Users\Eigenaar\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-11-06] ==================== Services (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842480 2021-08-08] (Adobe Inc. -> Adobe Inc.) S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [Bestand niet getekend] R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe [9728 2022-01-02] (GuinpinSoft inc) [Bestand niet getekend] R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [153736 2017-03-02] (Canon Inc. -> CANON INC.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11649952 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) R2 CobianBackup11; C:\Program Files (x86)\Cobian Backup 11\cbService.exe [1131008 2013-03-07] (Luis Cobian, CobianSoft) [Bestand niet getekend] R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [43656 2021-07-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> ) R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [277688 2021-04-21] (TEFINCOM S.A. -> TEFINCOM S.A.) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.22.2.10\NortonSecurity.exe [344888 2022-03-04] (NortonLifeLock Inc. -> NortonLifelock Inc.) R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.22.2.10\nsWscSvc.exe [1059176 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R2 Plarium Play Client Service; C:\Users\Eigenaar\AppData\Local\Plarium\PlariumPlay\6.9.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe [98936 2022-03-01] (Plarium Global Ltd -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6228008 2022-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TechSmith Uploader Service; C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3658832 2019-06-28] (TechSmith Corporation -> TechSmith Corporation) R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2020-08-27] (Popcorn Time) [Bestand niet getekend] R3 VssEaseusProvider; C:\WINDOWS\system32\dllhost.exe /Processid:{2CD8DEF0-94DD-47DA-89E9-7F5B7DD677EB} [21312 2021-04-09] (Microsoft Windows -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe [3046608 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe [132504 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WMIRegistrationService; C:\WINDOWS\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe [538736 2022-03-07] (Intel Corporation -> Intel Corporation) R2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [262880 2021-12-09] (Wondershare Technology Co.,Ltd -> Wondershare) S2 CityKorneB; C:\Program Files (x86)\Common Files\CityKorneB\CityKorneB.exe -StartService [X] ===================== Drivers (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R1 Asusgio2; C:\Windows\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> ) R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.20.5.39\Definitions\BASHDefs\20220323.011\BHDrvx64.sys [2018784 2021-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Bestand niet getekend] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Bestand niet getekend] R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\ccSetx64.sys [184312 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [509904 2021-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Bestand niet getekend] R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145376 2021-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R0 EUBAKUP; C:\WINDOWS\System32\drivers\eubakup.sys [74296 2021-04-25] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [54328 2021-04-25] (Microsoft Windows Hardware Compatibility Publisher -> ) R1 EUDSKACS; C:\WINDOWS\system32\drivers\eudskacs.sys [22784 2021-04-25] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) R1 EUFDDISK; C:\WINDOWS\system32\drivers\EuFdDisk.sys [341760 2021-04-25] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.20.5.39\Definitions\IPSDefs\20220323.001\IDSvia64.sys [1515512 2022-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [21208 2020-12-11] (北京铠信神州科技有限责任公司 -> ) R0 mvs91xx; C:\WINDOWS\System32\drivers\mvs91xx.sys [342760 2021-07-07] (Marvell Semiconductor, Inc. -> Marvell Semiconductor, Inc.) S3 NDivert; C:\WINDOWS\System32\drivers\NDivert.sys [105184 2021-02-05] (TEFINCOM S.A. -> ) R3 nlwt; C:\WINDOWS\system32\DRIVERS\nlwt.sys [39360 2021-03-21] (TEFINCOM S.A. -> WireGuard LLC) R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [38608 2020-12-14] (TEFINCOM S.A. -> TEFINCOM S.A.) S3 nsvst_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\nsvst.sys [56080 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R3 PCWinSoft; C:\WINDOWS\System32\drivers\scrcamhrdrv_x64.sys [241800 2012-10-11] (PCWinSoft Systems Informatica Ltda -> Windows (R) Server 2003 DDK provider) R2 PfFilter; C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys [56032 2020-04-16] (IObit Information Technology -> IObit Information Technology) S3 RSUSBCCID; C:\WINDOWS\system32\DRIVERS\RtsUCcid.sys [62400 2017-12-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) R1 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\SRTSP64.SYS [892600 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\SRTSPX64.SYS [48824 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\SYMEFASI64.SYS [2030768 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\SymELAM.sys [31984 2022-03-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [93152 2021-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.20.5.39\SymPlatform\SymEvnt.sys [712432 2021-07-13] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\Ironx64.SYS [319152 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\symnets.sys [575344 2022-03-04] (Symantec Corporation -> Symantec Corporation) S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2017-04-20] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project) S3 VascoCCIDFlt; C:\WINDOWS\System32\drivers\VascoCCIDFlt.sys [13312 2013-06-26] (VASCO Data Security) [Bestand niet getekend] S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [439544 2022-03-15] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-03-15] (Microsoft Windows -> Microsoft Corporation) S3 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616020.00A\wpCtrlDrv.sys [1015760 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) U3 aswbdisk; geen ImagePath ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt het uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een maand (aangemaakt) (gefilterd) ========= (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-03-24 17:21 - 2022-03-24 17:22 - 000035680 _____ C:\Users\Eigenaar\Downloads\FRST.txt 2022-03-24 17:20 - 2022-03-24 17:21 - 002365440 _____ (Farbar) C:\Users\Eigenaar\Downloads\FRST64.exe 2022-03-24 16:48 - 2022-03-24 16:48 - 006890984 _____ (NCH Software) C:\Users\Eigenaar\Downloads\VideoPadVideoEditor.exe 2022-03-24 16:48 - 2022-03-24 16:48 - 000002123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Suite.lnk 2022-03-24 16:48 - 2022-03-24 16:48 - 000001359 _____ C:\Users\Public\Desktop\NCH Suite.lnk 2022-03-24 16:48 - 2022-03-24 16:48 - 000001343 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Videobewerker.lnk 2022-03-24 16:48 - 2022-03-24 16:48 - 000000000 ____D C:\Users\Eigenaar\NCH Software Suite 2022-03-24 16:48 - 2022-03-24 16:48 - 000000000 ____D C:\Program Files (x86)\NCH Software 2022-03-24 11:05 - 2022-03-24 11:05 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2022-03-24 08:05 - 2022-03-24 08:05 - 000170165 _____ C:\Users\Eigenaar\Downloads\RKMaddensHendrik-SITE-1647861600.pdf 2022-03-24 05:55 - 2022-03-24 05:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-03-23 16:09 - 2022-03-23 16:09 - 000004036 _____ C:\WINDOWS\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-387179814-2990267870-3396875002-1001_0 2022-03-23 16:01 - 2022-03-23 16:01 - 000000000 ____D C:\Program Files\Malwarebytes 2022-03-23 10:43 - 2022-03-23 10:44 - 000436086 _____ C:\WINDOWS\ntbtlog.txt 2022-03-23 07:46 - 2022-03-23 07:46 - 000105396 _____ C:\Users\Eigenaar\Downloads\413141752 - Pattyn Alain Camiel.PDF 2022-03-22 14:21 - 2022-03-22 14:21 - 000000000 ____D C:\WINDOWS\system32\gf2engine 2022-03-22 09:36 - 2022-03-22 09:36 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\FeelingApp 2022-03-20 14:04 - 2022-03-20 14:04 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\WhatsApp 2022-03-19 06:41 - 2022-03-19 06:42 - 599093248 ____N C:\Users\Eigenaar\Documents\France.avi.exe 2022-03-19 06:41 - 2022-03-19 06:42 - 000000005 ____N C:\Users\Eigenaar\Documents\it2.dat 2022-03-19 06:39 - 2022-03-19 06:39 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\HOME 2022-03-19 06:38 - 2022-03-19 06:38 - 000985394 ____N C:\Users\Eigenaar\Downloads\Videopasswordprotectionpro26-ir83ns.zip 2022-03-18 09:02 - 2022-03-18 09:02 - 000858524 ____N C:\Users\Eigenaar\Downloads\menukaart-bellis.pdf 2022-03-16 13:38 - 2022-03-16 13:38 - 000039249 ____N C:\Users\Eigenaar\Downloads\7ed2c498d2e9445ebfce6ae40458d226.pdf 2022-03-15 11:24 - 2022-03-15 11:24 - 000001665 _____ C:\Users\Public\Desktop\Armikrog.lnk 2022-03-15 11:24 - 2022-03-15 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com 2022-03-15 11:22 - 2022-03-15 11:24 - 000000000 ____D C:\Users\Eigenaar\AppData\LocalLow\PencilTestStudios 2022-03-15 11:22 - 2022-03-15 11:22 - 000000000 ____D C:\GOG Games 2022-03-15 10:24 - 2022-03-15 10:24 - 014269160 ____N C:\Users\Eigenaar\Downloads\dji-mavic-mini-2-fly-more-combo.pdf 2022-03-15 07:54 - 2022-03-15 07:54 - 006346016 ____N (OneSpan Inc.) C:\Users\Eigenaar\Downloads\digipass-nativebridge-installer.exe 2022-03-14 17:35 - 2022-03-14 17:41 - 000000000 ____D C:\Users\Eigenaar\Documents\Sony PMB 2022-03-14 17:33 - 2022-03-14 17:54 - 000000000 ____D C:\ProgramData\Sony Corporation 2022-03-14 14:02 - 2022-03-14 14:02 - 000865631 ____N C:\Users\Eigenaar\Downloads\doc000057401(1).pdf 2022-03-11 07:59 - 2022-03-11 07:59 - 000195584 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2022-03-11 07:58 - 2022-03-11 07:58 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-03-11 07:58 - 2022-03-11 07:58 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2022-03-11 07:58 - 2022-03-11 07:58 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe 2022-03-11 07:58 - 2022-03-11 07:58 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2022-03-11 07:58 - 2022-03-11 07:58 - 000011911 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-03-11 07:53 - 2022-03-11 07:53 - 000000000 ___HD C:\$WinREAgent 2022-03-11 06:37 - 2022-03-12 08:18 - 000000000 ____D C:\Users\Eigenaar\Downloads\Drone doc 2022-03-08 09:33 - 2022-03-24 09:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security 2022-03-08 09:22 - 2022-03-08 09:28 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security 2022-03-08 09:22 - 2022-03-08 09:22 - 000003376 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration 2022-03-08 09:04 - 2022-03-08 09:26 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Coolmuster 2022-03-08 09:04 - 2022-03-08 09:05 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Coolmuster 2022-03-08 09:04 - 2022-03-08 09:04 - 000000000 ____D C:\Program Files (x86)\Coolmuster 2022-03-07 16:01 - 2022-03-07 16:01 - 001545424 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorAC.sys 2022-03-07 16:01 - 2022-03-07 16:01 - 000028352 _____ (Intel Corporation) C:\WINDOWS\system32\RstMwEventLogMsg.dll 2022-03-07 16:00 - 2022-03-07 16:00 - 001145464 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll 2022-03-07 16:00 - 2022-03-07 16:00 - 000854104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll 2022-03-07 16:00 - 2022-03-07 16:00 - 000468776 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 027889576 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 020629912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 001887392 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-03-07 15:58 - 2022-03-07 15:58 - 001887392 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-03-07 15:58 - 2022-03-07 15:58 - 001464992 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-03-07 15:58 - 2022-03-07 15:58 - 001464992 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-03-07 15:58 - 2022-03-07 15:58 - 001323760 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 001323760 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 001043176 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 001043176 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000943472 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000703224 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000588128 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000499136 _____ (Intel) C:\WINDOWS\system32\libvpl.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000453032 _____ C:\WINDOWS\system32\ze_tracing_layer.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000448392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000431936 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000375720 _____ C:\WINDOWS\system32\ze_loader.dll 2022-03-07 15:58 - 2022-03-07 15:58 - 000142240 _____ C:\WINDOWS\system32\ze_validation_layer.dll 2022-03-07 15:57 - 2022-03-07 15:57 - 000500136 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-03-07 15:57 - 2022-03-07 15:57 - 000361880 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-03-07 15:57 - 2022-03-07 15:57 - 000209944 _____ C:\WINDOWS\system32\ControlLib.dll 2022-03-07 15:57 - 2022-03-07 15:57 - 000166024 _____ C:\WINDOWS\system32\ControlLib32.dll 2022-03-07 09:39 - 2022-03-07 09:39 - 004268574 ____N C:\Users\Eigenaar\Downloads\XenArmorAllInOneKeyFinderProPersonal2021-db26sg.zip 2022-03-01 17:14 - 2022-03-01 17:17 - 000000000 ____D C:\Users\Eigenaar\Documents\the Neverhood 2022-03-01 16:07 - 2022-03-01 16:07 - 000000837 ____N C:\Users\Eigenaar\Desktop\ScummVM.lnk 2022-03-01 16:05 - 2022-03-01 16:06 - 089123520 ____N (The ScummVM Team ) C:\Users\Eigenaar\Downloads\scummvm-2.5.1-win32.exe 2022-03-01 15:45 - 2022-03-01 15:45 - 000000000 ____D C:\Program Files (x86)\DreamWorks Interactive 2022-03-01 15:38 - 2022-03-02 05:08 - 000000000 ____D C:\Program Files (x86)\The Neverhood Restoration Project 2022-03-01 15:38 - 2022-03-01 15:38 - 000528722 _____ (Pyroneous ) C:\Users\Eigenaar\Downloads\setup.exe 2022-03-01 15:21 - 2022-03-01 15:21 - 000000000 ___HD C:\$WINDOWS.~BT 2022-03-01 08:40 - 2022-03-01 08:40 - 000000000 ____D C:\Users\Eigenaar\AppData\LocalLow\mrJK 2022-03-01 08:39 - 2022-03-01 08:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Taiga Car Driver 2022-02-28 16:20 - 2022-02-28 16:20 - 000072431 ____N C:\Users\Eigenaar\Downloads\voorstel Engie.pdf 2022-02-26 11:07 - 2022-02-26 11:07 - 011944407 ____N C:\Users\Eigenaar\Downloads\GV_EDIUS_X_20200903_NL_Pro.pdf 2022-02-26 11:07 - 2022-02-26 11:07 - 011944407 ____N C:\Users\Eigenaar\Downloads\GV_EDIUS_X_20200903_NL_Pro(3).pdf 2022-02-26 11:07 - 2022-02-26 11:07 - 011944407 ____N C:\Users\Eigenaar\Downloads\GV_EDIUS_X_20200903_NL_Pro(2).pdf 2022-02-26 11:07 - 2022-02-26 11:07 - 011944407 ____N C:\Users\Eigenaar\Downloads\GV_EDIUS_X_20200903_NL_Pro(1).pdf 2022-02-26 11:06 - 2022-02-26 11:06 - 045994742 ____N C:\Users\Eigenaar\Downloads\GV_EDIUS_X_20200903_EN_Pro.pdf 2022-02-26 09:48 - 2022-02-26 09:48 - 000523616 ____N C:\Users\Eigenaar\Downloads\Australie_2020.pdf 2022-02-26 09:44 - 2022-02-26 09:46 - 000000000 ____D C:\Program Files (x86)\AnyVid 2022-02-26 09:44 - 2022-02-26 09:44 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\AnyVid 2022-02-26 09:43 - 2022-02-26 09:43 - 117924319 ____N C:\Users\Eigenaar\Downloads\AmoyShareAnyVid1006-do93sy.zip 2022-02-25 09:04 - 2022-02-25 09:04 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Techieware 2022-02-25 09:04 - 2022-02-25 09:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverTechie 2022-02-25 09:04 - 2022-02-25 09:04 - 000000000 ____D C:\Program Files\DriverTechie 2022-02-25 09:01 - 2022-02-25 09:01 - 010141935 ____N C:\Users\Eigenaar\Downloads\DriverTechie101-db28sh.zip 2022-02-25 06:46 - 2022-02-25 06:46 - 000000000 ____D C:\SWTOOLS 2022-02-24 16:16 - 2022-02-24 16:16 - 000400969 ____N C:\Users\Eigenaar\Downloads\2022-02-09 Tariefkaart en algemene voorwaarden Mega PART(3).pdf 2022-02-24 16:16 - 2022-02-24 16:16 - 000400969 ____N C:\Users\Eigenaar\Downloads\2022-02-09 Tariefkaart en algemene voorwaarden Mega PART(2).pdf 2022-02-24 16:16 - 2022-02-24 16:16 - 000400969 ____N C:\Users\Eigenaar\Downloads\2022-02-09 Tariefkaart en algemene voorwaarden Mega PART(1).pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(9).pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(8).pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(7).pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(10).pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000156496 ____N C:\Users\Eigenaar\Downloads\ElectricityQuotations-NL.pdf 2022-02-24 16:15 - 2022-02-24 16:15 - 000156496 ____N C:\Users\Eigenaar\Downloads\ElectricityQuotations-NL(1).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL.pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(6).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(5).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(4).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(3).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(2).pdf 2022-02-24 16:13 - 2022-02-24 16:13 - 000489980 ____N C:\Users\Eigenaar\Downloads\GasQuotations-NL(1).pdf 2022-02-24 16:12 - 2022-02-24 16:12 - 000400969 ____N C:\Users\Eigenaar\Downloads\2022-02-09 Tariefkaart en algemene voorwaarden Mega PART.pdf 2022-02-23 16:25 - 2022-02-23 16:25 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\ElevatedDiagnostics 2022-02-23 16:12 - 2022-02-23 16:12 - 000000000 ____D C:\Users\Eigenaar\Tracing 2022-02-23 16:07 - 2022-02-23 16:07 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\OneDrive 2022-02-23 12:44 - 2022-02-23 12:44 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Neos Eureka S.r.l 2022-02-23 10:22 - 2022-02-23 10:22 - 000113853 ____N C:\Users\Eigenaar\Downloads\Kwitantie_betalingen_van_22-02-2022.pdf 2022-02-23 05:37 - 2022-02-23 05:37 - 000170479 ____N C:\Users\Eigenaar\Downloads\149542530.PDF 2022-02-23 05:36 - 2022-02-23 05:36 - 000110977 ____N C:\Users\Eigenaar\Downloads\161431410.PDF ==================== Een maand (gewijzigd) ================== (Als een item is opgenomen in de fixlist, wordt de map of het bestand verplaatst.) 2022-03-24 17:22 - 2021-10-17 05:29 - 000000000 ____D C:\FRST 2022-03-24 17:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\registration 2022-03-24 17:15 - 2020-12-12 15:07 - 000000000 ____D C:\Users\Eigenaar\Desktop\VIDEO 2022-03-24 17:09 - 2020-12-21 13:33 - 000000000 ____D C:\Users\Eigenaar\Documents\Outlook-bestanden 2022-03-24 17:09 - 2020-12-16 11:12 - 1921672192 _____ C:\Users\Eigenaar\Documents\alain.pattyn@telenet.be.pst 2022-03-24 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-24 16:56 - 2020-12-11 12:15 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-24 16:55 - 2021-11-05 16:49 - 000000000 ____D C:\WINDOWS\system32\Tasks\NCH Software 2022-03-24 16:53 - 2021-05-19 15:56 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\NCH Software 2022-03-24 16:48 - 2021-11-05 16:24 - 000000000 ____D C:\Users\Eigenaar 2022-03-24 16:48 - 2021-05-19 15:56 - 000000000 ____D C:\ProgramData\NCH Software 2022-03-24 15:41 - 2022-02-12 06:28 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-03-24 15:40 - 2020-12-11 14:34 - 000000000 ____D C:\Users\Eigenaar\AppData\LocalLow\Mozilla 2022-03-24 12:01 - 2020-12-11 12:24 - 000000000 ____D C:\ProgramData\NVIDIA 2022-03-24 11:16 - 2021-11-05 16:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-03-24 05:55 - 2021-08-17 07:10 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-03-24 05:55 - 2021-08-17 07:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-03-24 05:55 - 2021-06-05 08:39 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-03-24 05:33 - 2020-12-11 18:12 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\Packages 2022-03-24 05:23 - 2021-08-08 15:16 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\Adobe 2022-03-24 05:23 - 2020-12-13 06:59 - 000000000 ____D C:\Program Files\CCleaner 2022-03-23 16:16 - 2021-11-05 16:55 - 001836372 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-03-23 16:16 - 2019-12-07 16:14 - 000810158 _____ C:\WINDOWS\system32\perfh013.dat 2022-03-23 16:16 - 2019-12-07 16:14 - 000163134 _____ C:\WINDOWS\system32\perfc013.dat 2022-03-23 16:16 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-03-23 16:11 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-03-23 16:09 - 2021-11-05 16:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-03-23 16:09 - 2020-12-11 18:40 - 000000000 ____D C:\Intel 2022-03-23 16:08 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-03-23 10:44 - 2021-11-05 15:51 - 000000000 ___DC C:\WINDOWS\Panther 2022-03-23 10:43 - 2021-08-07 16:10 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2022-03-23 09:02 - 2021-11-06 11:54 - 000000000 ____D C:\ProgramData\Avast Software 2022-03-22 16:50 - 2021-02-27 06:43 - 000000000 ____D C:\Users\Eigenaar\Documents\Legacy Charts 2022-03-22 06:20 - 2020-12-14 17:23 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\WhatsApp 2022-03-21 07:52 - 2020-12-11 16:09 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\CrashDumps 2022-03-21 06:34 - 2022-01-28 05:50 - 000000000 ____D C:\Users\Eigenaar\Downloads\PopcornTime 2022-03-20 14:06 - 2019-12-07 10:03 - 000016384 _____ C:\WINDOWS\system32\config\ELAM 2022-03-20 14:04 - 2022-01-20 05:54 - 000002212 ____N C:\Users\Eigenaar\Desktop\WhatsApp.lnk 2022-03-20 14:04 - 2020-12-14 17:23 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2022-03-20 14:04 - 2020-12-14 17:23 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\SquirrelTemp 2022-03-20 06:02 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-20 06:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-03-19 05:26 - 2021-11-05 04:49 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-03-16 17:15 - 2020-12-14 08:25 - 000000000 ____D C:\Users\Eigenaar\Desktop\Audio 2022-03-15 20:17 - 2020-12-11 14:52 - 001855292 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2022-03-15 14:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-03-15 09:57 - 2021-01-31 14:07 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\dvdcss 2022-03-15 09:44 - 2021-05-03 08:55 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\MPC-HC 2022-03-15 08:50 - 2021-02-24 09:03 - 000000000 ____D C:\ProgramData\Tipard Studio 2022-03-15 08:50 - 2021-02-24 09:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tipard 2022-03-15 08:50 - 2021-02-24 09:03 - 000000000 ____D C:\Program Files (x86)\Tipard Studio 2022-03-15 08:49 - 2021-02-24 09:04 - 000000000 ____D C:\Users\Eigenaar\Documents\Tipard Studio 2022-03-15 08:38 - 2021-02-24 09:04 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\Tipard Studio 2022-03-15 07:57 - 2020-12-11 14:22 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-03-15 06:57 - 2020-12-11 18:04 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-03-14 17:54 - 2020-12-13 07:46 - 000000000 ____D C:\Program Files (x86)\Sony 2022-03-14 17:34 - 2021-04-12 15:36 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Sony Corporation 2022-03-13 05:48 - 2021-07-16 08:15 - 000000000 ____D C:\Users\Eigenaar\AppData\LocalLow\Norton 2022-03-12 06:07 - 2021-12-13 13:28 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-387179814-2990267870-3396875002-1001 2022-03-12 06:07 - 2021-11-05 16:49 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-387179814-2990267870-3396875002-1001 2022-03-12 06:07 - 2021-11-05 16:24 - 000002390 _____ C:\Users\Eigenaar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-03-11 08:06 - 2021-11-05 16:46 - 005223304 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-03-11 08:05 - 2019-12-07 16:17 - 000000000 ___SD C:\WINDOWS\system32\AppV 2022-03-11 08:05 - 2019-12-07 16:17 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-03-11 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-03-11 08:05 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2022-03-11 08:00 - 2020-12-12 03:49 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-03-11 08:00 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-03-11 07:58 - 2021-11-05 16:51 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-03-11 07:53 - 2020-12-12 03:50 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-03-11 07:51 - 2020-12-12 03:50 - 145666720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-03-11 06:54 - 2020-12-18 14:59 - 000000000 __RDL C:\Users\Eigenaar\iCloudDrive 2022-03-10 05:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-03-10 05:32 - 2020-12-23 06:10 - 000000000 ____D C:\Users\Eigenaar\Documents\Snagit 2022-03-10 04:42 - 2021-11-18 05:24 - 000003580 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7d25cb3f93cde 2022-03-10 04:42 - 2021-11-05 16:49 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-09 15:32 - 2020-12-11 12:13 - 000000000 ____D C:\Users\Eigenaar\AppData\Local\PlaceholderTileLogoFolder 2022-03-08 09:53 - 2020-12-11 15:08 - 000000000 ____D C:\Program Files\Common Files\AV 2022-03-08 09:28 - 2021-08-09 05:31 - 000002420 _____ C:\Users\Public\Desktop\Norton Security.lnk 2022-03-08 09:22 - 2020-12-11 14:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\NGCx64 2022-03-07 16:00 - 2020-12-11 18:33 - 001140000 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe 2022-03-07 16:00 - 2020-12-11 18:33 - 000224264 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2022-03-07 11:46 - 2020-12-13 09:43 - 000000000 ____D C:\Users\Eigenaar\Desktop\TOOLS 2022-03-07 09:41 - 2021-08-23 10:51 - 000000508 _____ C:\ProgramData\Microsoft\Windows\Start Menu\XenArmor All-In-One Key Finder Pro.lnk 2022-03-07 09:41 - 2021-08-23 10:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllInOneKeyFinderPro 2022-03-06 14:00 - 2022-01-17 06:47 - 000021981 ____N C:\Users\Eigenaar\Documents\Facebook vrienden.xlsx 2022-03-06 09:35 - 2021-07-22 04:25 - 000013824 _____ C:\Users\Eigenaar\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2022-03-03 16:31 - 2020-12-13 07:51 - 000000000 ____D C:\ProgramData\CanonIJPLM 2022-03-01 16:07 - 2021-12-29 16:08 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\ScummVM 2022-03-01 16:07 - 2021-12-29 16:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScummVM 2022-03-01 16:07 - 2021-12-29 16:08 - 000000000 ____D C:\Program Files\ScummVM 2022-03-01 15:21 - 2021-11-05 16:56 - 000001908 _____ C:\WINDOWS\diagwrn.xml 2022-03-01 15:21 - 2021-11-05 16:56 - 000001908 _____ C:\WINDOWS\diagerr.xml 2022-02-28 16:12 - 2021-08-08 15:16 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Adobe 2022-02-28 06:40 - 2020-12-27 06:41 - 000000000 ____D C:\Users\Eigenaar\AppData\Roaming\Youtomato 2022-02-25 06:51 - 2020-12-11 18:33 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2022-02-23 17:07 - 2020-12-11 18:14 - 000000000 __RDL C:\Users\Eigenaar\OneDrive ==================== Bestanden in de root van sommige mappen ======== 2017-01-14 12:37 - 2017-01-14 12:37 - 002174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2020-12-16 10:40 - 2022-03-16 07:40 - 000100065 _____ () C:\Users\Eigenaar\AppData\Roaming\.BEID_0.log 2021-01-04 17:30 - 2022-03-24 15:40 - 000011632 _____ () C:\Users\Eigenaar\AppData\Roaming\.BEID_1.log 2021-08-04 10:49 - 2021-08-04 10:49 - 000000012 _____ () C:\Users\Eigenaar\AppData\Roaming\2457fe3357cbf1220231e8917326f70f 2021-08-04 14:26 - 2021-08-04 14:26 - 000000012 _____ () C:\Users\Eigenaar\AppData\Roaming\67fa1b1ba5b0ed2fad9c840a61e47ada 2020-12-22 06:15 - 2020-12-22 06:20 - 000041345 _____ () C:\Users\Eigenaar\AppData\Roaming\Door komma's gescheiden waarden.ADR 2021-09-29 10:11 - 2021-11-25 13:53 - 000000112 _____ () C:\Users\Eigenaar\AppData\Roaming\JP2K CS6-voorkeuren 2021-10-11 15:21 - 2021-10-11 16:02 - 000000301 _____ () C:\Users\Eigenaar\AppData\Local\config.ini 2021-07-22 04:25 - 2022-03-06 09:35 - 000013824 _____ () C:\Users\Eigenaar\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2020-12-14 05:34 - 2021-08-08 12:50 - 000000410 _____ () C:\Users\Eigenaar\AppData\Local\oobelibMkey.log 2021-11-15 14:42 - 2021-12-15 08:06 - 000075767 _____ () C:\Users\Eigenaar\AppData\Local\PlariumPlay.log 2021-10-11 15:21 - 2021-10-11 16:01 - 000000000 _____ () C:\Users\Eigenaar\AppData\Local\simedit.log 2021-10-30 09:14 - 2021-10-30 09:15 - 003212320 _____ () C:\Users\Eigenaar\AppData\Local\usbdrvtemp.7zz ==================== SigCheck ============================ (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) ==================== Einde van FRST.txt ========================