Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie:29-05-2016 02 Gestart door M. Aarden (Beheerder) op PA7RA (01-06-2016 13:56:26) Gestart vanaf C:\Users\M. Aarden\Downloads Geladen Profielen: M. Aarden (Beschikbare Profielen: M. Aarden) Platform: Windows 10 Home (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: Chrome) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe (NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Hewlett-Packard Company) C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe (Thinking Man Software) D:\Ham\D4\D4.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe (arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\WINDOWS\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Piriform Ltd) C:\Program Files\Speccy\Speccy64.exe (microHAM) D:\Ham\MicroHAM\bin\urouter.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Telegram Messenger LLP) C:\Users\M. Aarden\AppData\Roaming\Telegram Desktop\Telegram.exe (Thinking Man Software) D:\Ham\D4\D4.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (N2AMG) D:\Ham\DXLab Suite\DXLauncher\DXLabLauncher.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (AA6YQ) D:\Ham\DXLab Suite\Commander\CI-V Commander.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (AA6YQ) D:\Ham\DXLab Suite\DXKeeper\DXKeeper.exe (Microsoft Corporation) C:\WINDOWS\splwow64.exe (AA6YQ) D:\Ham\DXLab Suite\DXView\DXView.exe (Afreet Software, Inc.) D:\Ham\DX Atlas\DxAtlas.exe (AA6YQ) D:\Ham\DXLab Suite\SpotCollector\SpotCollector.exe (Volker Rose) D:\Ham\SpotSpy\SpotSpy.exe () D:\Ham\CwSkimmer\CwSkimmer.exe () D:\Ham\CwSkimmer\CwSkimmer.exe () C:\Program Files (x86)\Afreet\OmniRig\OmniRig.exe (YO3DMU) D:\Ham\PstRotatorAz\PstRotatorAz.exe () D:\Ham\FOC\FOC Award Manager\FOC Award Manager.exe (AA6YQ) D:\Ham\DXLab Suite\PathFinder\Pathfinder510.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46361.0_x64__8wekyb3d8bbwe\HxMail.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46361.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\WindowsFeedback_cw5n1h2txyewy\FeedbackApp.Windows.exe (Microsoft Corporation) C:\WINDOWS\System32\WWAHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-05-02] (NVIDIA Corporation) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-04-11] (Intel Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Corel Update Helper] => c:\Program Files\Corel\Corel PaintShop Pro X8 (64-bit)\pua.exe [2012104 2015-11-27] (Corel Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-09-16] (Intel Corporation) HKLM-x32\...\Run: [Dimension4] => D:\Ham\D4\D4.exe [355840 2013-11-27] (Thinking Man Software) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation) HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.) HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\...\Run: [Speccy] => C:\Program Files\Speccy\Speccy64.exe [7067048 2015-12-02] (Piriform Ltd) HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\...\Run: [microHAM_urouter] => D:\Ham\MicroHAM\bin\urouter.exe [15590400 2016-05-11] (microHAM) HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8698584 2016-04-15] (Piriform Ltd) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Geen bestand ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => Geen bestand ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => Geen bestand ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Geen bestand ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Geen bestand ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Geen bestand Startup: C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Telegram.lnk [2016-04-10] ShortcutTarget: Telegram.lnk -> C:\Users\M. Aarden\AppData\Roaming\Telegram Desktop\Telegram.exe (Telegram Messenger LLP) Startup: C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verzenden naar OneNote.lnk [2016-02-24] ShortcutTarget: Verzenden naar OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) Hosts: Er zijn meer dan één item in Hosts. Zie Hosts deel van Addition.txt Tcpip\Parameters: [DhcpNameServer] 195.121.1.34 195.121.1.66 Tcpip\..\Interfaces\{73617c46-06f0-4993-9613-964046e6e058}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{a3946eda-6adf-498e-8f67-96dd4cff3ca9}: [DhcpNameServer] 195.121.1.34 195.121.1.66 Tcpip\..\Interfaces\{f83ca7a8-eed2-40be-b69f-72629da3c976}: [DhcpNameServer] 195.121.1.34 195.121.1.66 Internet Explorer: ================== HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://syb.msn.com HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.qrz.com/lookup/pa7ra SearchScopes: HKLM -> DefaultScope {0B91EBA6-68AC-4C66-A674-571535A53FED} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM -> {0B91EBA6-68AC-4C66-A674-571535A53FED} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM -> {E0B3C5C9-3606-4DE9-BEBF-20C0BB1509B5} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {0B91EBA6-68AC-4C66-A674-571535A53FED} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM-x32 -> {0B91EBA6-68AC-4C66-A674-571535A53FED} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKLM-x32 -> {E0B3C5C9-3606-4DE9-BEBF-20C0BB1509B5} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSBTDF&pc=MASB&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2248465578-4050456022-1077846344-1001 -> {0B91EBA6-68AC-4C66-A674-571535A53FED} URL = SearchScopes: HKU\S-1-5-21-2248465578-4050456022-1077846344-1001 -> {BA1EDFB6-8EA0-4CE3-B400-824CB08F2156} URL = hxxp://www.google.nl/search?hl=nl&q={searchTerms} SearchScopes: HKU\S-1-5-21-2248465578-4050456022-1077846344-1001 -> {E0B3C5C9-3606-4DE9-BEBF-20C0BB1509B5} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-03-15] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-04-13] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation) BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-01-15] (pdfforge GmbH) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-05-11] (Oracle Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-04-13] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-05-11] (Oracle Corporation) Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-01-15] (pdfforge GmbH) Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2016-01-04] (Belarc, Inc.) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-04-12] (Microsoft Corporation) FireFox: ======== FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-05-11] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-05-11] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-12-08] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-05-20] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-03] (Adobe Systems Inc.) FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-01-15] (pdfforge GmbH) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-12-08] (Microsoft Corporation) FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension FF Extension: PDF Architect 4 Creator - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-02-21] [ niet getekend] Chrome: ======= CHR HomePage: Default -> hxxps://lotw.arrl.org/lotwuser/default CHR StartupUrls: Default -> "hxxps://www.qrz.com/lookup/pa7ra" CHR Plugin: (Widevine Content Decryption Module) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.866\_platform_specific\win_x86\widevinecdmadapter.dll => Geen bestand CHR Plugin: (Shockwave Flash) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\PepperFlash\21.0.0.182\pepflashplayer.dll => Geen bestand CHR Profile: C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Presentaties) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-20] CHR Extension: (CookiesOK) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\afmkbjoakcacgljcdccofbffloabfbni [2016-02-20] CHR Extension: (Google Documenten) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-20] CHR Extension: (Google Drive) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-20] CHR Extension: (YouTube) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-20] CHR Extension: (Google Search) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-20] CHR Extension: (Google Spreadsheets) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-20] CHR Extension: (Offline Documenten) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2016-05-25] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03] CHR Extension: (CoastalAir-20) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfncmbjabnpldlfbnmhnhblapoibfbei [2016-05-26] CHR Extension: (Gmail) - C:\Users\M. Aarden\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-20] CHR HKU\S-1-5-21-2248465578-4050456022-1077846344-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Services (gefilterd) ======================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 Dimension4; D:\Ham\D4\D4.exe [355840 2013-11-27] (Thinking Man Software) [Bestand niet getekend] R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2519904 2016-05-20] (ESET) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-05-02] (NVIDIA Corporation) R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) [Bestand niet getekend] R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-27] (HP) [Bestand niet getekend] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28736 2016-03-16] (Hewlett-Packard Company) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-04-11] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Bestand niet getekend] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-05-02] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-05-02] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-05-02] (NVIDIA Corporation) S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH) S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH) R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-01-15] (pdfforge GmbH) R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Bestand niet getekend] S3 PSEXESVC; C:\windows\PSEXESVC.EXE [95496 2016-02-19] (Sysinternals) R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2013-09-13] (arvato digital services llc) S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1072296 2016-05-11] (Enigma Software Group USA, LLC.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Drivers (gefilterd) ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R3 com0com; C:\Windows\System32\drivers\com0com.sys [76800 2011-01-25] (Vyacheslav Frolov) R3 cpuz138; C:\Users\M67EE~1.AAR\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [27320 2016-05-31] (CPUID) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-05-14] (Samsung Electronics Co., Ltd.) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264552 2016-03-21] (ESET) S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [14976 2015-11-27] (ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186784 2015-11-27] (ESET) R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [170792 2016-03-21] (ESET) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-05-11] () R3 evserial7; C:\Windows\System32\drivers\evserial7.sys [71472 2012-05-23] (ELTIMA Software) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-05-02] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [936192 2016-03-21] (Realtek ) R3 rtwlane_13; C:\Windows\System32\drivers\rtwlane_13.sys [3749888 2015-07-10] (Realtek Semiconductor Corporation ) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () R3 VSBC7; C:\Windows\System32\drivers\evsbc7.sys [36656 2012-05-23] (ELTIMA Software) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2016-06-01 13:30 - 2016-06-01 13:56 - 00025620 _____ C:\Users\M. Aarden\Downloads\FRST.txt 2016-06-01 13:30 - 2016-06-01 13:56 - 00000000 ____D C:\FRST 2016-06-01 13:29 - 2016-06-01 13:29 - 02383872 _____ (Farbar) C:\Users\M. Aarden\Downloads\FRST64.exe 2016-06-01 13:28 - 2016-06-01 13:28 - 00016148 _____ C:\WINDOWS\system32\PA7RA_M. Aarden_HistoryPrediction.bin 2016-06-01 09:02 - 2016-06-01 09:02 - 00005216 _____ C:\Users\M. Aarden\Desktop\cc_20160601_090216.reg 2016-05-31 22:00 - 2016-05-31 22:01 - 00000000 ___HD C:\Users\M. Aarden\Desktop\Corel Automatisch behouden 2016-05-31 20:46 - 2016-05-31 20:46 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2016-05-31 20:46 - 2016-05-31 20:46 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2016-05-31 20:42 - 2016-05-31 20:42 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2016-05-30 22:17 - 2016-05-30 22:17 - 00000806 _____ C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MozBackup.lnk 2016-05-30 18:33 - 2016-05-30 18:48 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Thunderbird 2016-05-30 18:33 - 2016-05-30 18:33 - 00001289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2016-05-30 18:33 - 2016-05-30 18:33 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Thunderbird 2016-05-30 18:33 - 2016-05-30 18:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2016-05-30 17:27 - 2016-05-30 17:27 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Windows Live Writer 2016-05-30 17:27 - 2016-05-30 17:27 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Windows Live Writer 2016-05-26 18:38 - 2016-05-26 18:38 - 00000000 ____D C:\Users\M. Aarden\Documents\Corel PaintShop Pro X8 Script Guide 2016-05-26 18:37 - 2016-05-26 18:37 - 00000000 ____D C:\ProgramData\Protexis 2016-05-26 18:33 - 2016-05-26 18:33 - 00000110 _____ C:\WINDOWS\wininit.ini 2016-05-26 18:32 - 2016-05-26 18:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel FastFlick 2016-05-26 18:28 - 2016-05-26 18:28 - 00000000 ____D C:\Program Files\Corel 2016-05-26 18:27 - 2016-05-26 18:32 - 00000000 ____D C:\Program Files (x86)\Corel 2016-05-26 18:27 - 2016-05-26 18:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X8 2016-05-25 23:22 - 2016-05-30 16:58 - 00000000 ____D C:\Users\M. Aarden\Documents\Outlook-bestanden 2016-05-23 22:52 - 2016-05-20 03:57 - 00113208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2016-05-23 22:51 - 2016-05-23 22:52 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-05-23 22:50 - 2016-05-21 23:09 - 01581624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco64.dll 2016-05-23 22:50 - 2016-05-21 23:09 - 00046024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 39977920 _____ C:\WINDOWS\system32\nvcompiler.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 35117112 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 31639096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 25401280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 21802816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 21346520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 18145256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 17740664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 17379520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 10642912 _____ C:\WINDOWS\system32\nvptxJitCompiler.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 08733280 _____ C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 02791360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 02419768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 01922496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436822.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 01573432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436822.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00985024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00909760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00787200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00772152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00708032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00669952 _____ C:\WINDOWS\system32\nvfatbinaryLoader.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00632664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00565208 _____ C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00549240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00452616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00423360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00385080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00379480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00377792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00346560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00315936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00178136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00155952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00153416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00131768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2016-05-23 22:50 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2016-05-23 22:50 - 2016-05-20 10:03 - 00000594 _____ C:\WINDOWS\system32\nv-vk64.json 2016-05-22 09:38 - 2016-05-22 09:38 - 00000626 _____ C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Radio.lnk 2016-05-21 08:18 - 2016-05-21 08:18 - 45547244 _____ C:\Users\M. Aarden\Downloads\Pim Aarden -The Circle-.mp4 2016-05-20 19:03 - 2016-05-20 19:03 - 00000000 ____D C:\Users\M. Aarden\Desktop\Radio 2016-05-18 22:32 - 2016-05-18 22:32 - 00000810 _____ C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Global QSL Graphic Editor.lnk 2016-05-14 16:22 - 2016-05-14 16:22 - 00129152 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus.sys 2016-05-14 16:21 - 2016-05-14 16:21 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2016-05-14 08:38 - 2016-05-10 06:05 - 01924152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436519.dll 2016-05-14 08:38 - 2016-05-10 06:05 - 01573432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436519.dll 2016-05-14 08:35 - 2016-04-14 07:38 - 00113216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2016-05-14 08:35 - 2016-04-14 07:38 - 00102976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2016-05-12 19:26 - 2016-05-12 19:29 - 00000000 ____D C:\ProgramData\HitmanPro 2016-05-11 16:34 - 2016-05-11 16:34 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Sun 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\Users\M. Aarden\AppData\LocalLow\Sun 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\Users\M. Aarden\AppData\LocalLow\Oracle 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\Users\M. Aarden\.oracle_jre_usage 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\ProgramData\Oracle 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-05-11 16:34 - 2016-05-11 16:34 - 00000000 ____D C:\Program Files (x86)\Java 2016-05-11 15:44 - 2016-05-11 15:44 - 00001588 _____ C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter.lnk 2016-05-11 13:37 - 2016-05-11 13:37 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Enigma Software Group 2016-05-11 13:36 - 2016-05-11 13:36 - 00022704 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys 2016-05-11 08:40 - 2016-04-22 07:52 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-11 08:40 - 2016-04-22 07:44 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-05-11 08:40 - 2016-04-15 09:21 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-11 08:40 - 2016-04-15 08:43 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-05-11 08:40 - 2016-04-15 08:18 - 24593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-11 08:40 - 2016-04-15 08:14 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-05-11 08:40 - 2016-04-15 08:06 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-11 08:40 - 2016-04-15 08:05 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-11 08:40 - 2016-04-15 08:01 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-11 08:40 - 2016-04-15 08:01 - 01381376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-11 08:40 - 2016-04-15 07:59 - 04791808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-11 08:40 - 2016-04-15 07:55 - 19325952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-05-11 08:40 - 2016-04-15 07:42 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-05-11 08:40 - 2016-04-15 07:39 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-05-11 08:40 - 2016-04-09 12:58 - 01365584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-05-11 08:40 - 2016-04-09 12:53 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-05-11 08:40 - 2016-04-09 12:52 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-05-11 08:40 - 2016-04-09 12:52 - 00502504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2016-05-11 08:40 - 2016-04-09 12:12 - 08021856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-11 08:40 - 2016-04-09 12:10 - 01824872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-11 08:40 - 2016-04-09 12:10 - 00609976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-11 08:40 - 2016-04-09 12:06 - 01981280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-11 08:40 - 2016-04-09 12:05 - 01199368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-11 08:40 - 2016-04-09 12:05 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-11 08:40 - 2016-04-09 12:04 - 02430304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-05-11 08:40 - 2016-04-09 12:04 - 01592360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-11 08:40 - 2016-04-09 11:50 - 01515936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-05-11 08:40 - 2016-04-09 11:04 - 01780352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-11 08:40 - 2016-04-09 10:13 - 05160960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-05-11 08:40 - 2016-04-09 10:09 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-05-11 08:40 - 2016-04-09 10:09 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-05-11 08:40 - 2016-04-09 10:09 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-05-11 08:40 - 2016-04-09 09:55 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-05-11 08:40 - 2016-04-09 09:54 - 00768000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-05-11 08:40 - 2016-04-09 09:52 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2016-05-11 08:40 - 2016-04-09 09:38 - 00464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-05-11 08:40 - 2016-04-09 09:22 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-05-11 08:40 - 2016-04-09 09:18 - 11264000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-05-11 08:40 - 2016-04-09 09:18 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-05-11 08:40 - 2016-04-09 09:14 - 18798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-05-11 08:40 - 2016-04-09 09:10 - 12504576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-11 08:40 - 2016-04-09 09:09 - 06788608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-11 08:40 - 2016-04-09 09:06 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-11 08:40 - 2016-04-09 09:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-11 08:40 - 2016-04-09 09:05 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-05-11 08:40 - 2016-04-09 08:43 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-11 08:40 - 2016-04-09 08:42 - 00950272 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-11 08:40 - 2016-04-09 08:41 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2016-05-11 08:40 - 2016-04-09 08:27 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-11 08:40 - 2016-04-09 08:13 - 21859328 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-11 08:40 - 2016-04-09 08:02 - 07521280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-09 21:06 - 2016-05-09 21:06 - 00000000 ___DL C:\Users\M. Aarden\AppData\LocalLow\PlayReady 2016-05-09 19:29 - 2016-05-09 19:29 - 00000516 _____ C:\Users\M. Aarden\AppData\Roaming\Microsoft\Windows\Start Menu\PA7RA - Callsign Lookup by QRZ.COM.website 2016-05-09 18:45 - 2016-05-09 18:45 - 00000000 ____D C:\AdwCleaner 2016-05-09 18:09 - 2016-05-09 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-05-09 18:09 - 2016-05-09 18:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-05-09 18:09 - 2016-05-09 18:09 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-05-09 18:09 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-05-09 18:09 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-05-09 18:09 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-05-09 14:12 - 2016-05-09 14:12 - 00002858 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2016-05-09 14:12 - 2016-05-09 14:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2016-05-09 14:12 - 2016-05-09 14:12 - 00000000 ____D C:\Program Files\CCleaner 2016-05-08 21:08 - 2016-05-08 21:08 - 00000000 ____D C:\Program Files\Enigma Software Group 2016-05-08 21:01 - 2016-05-08 21:01 - 00000000 _____ C:\autoexec.bat 2016-05-08 21:00 - 2016-05-08 21:00 - 00000000 ____D C:\sh4ldr 2016-05-08 15:29 - 2016-05-22 09:55 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-05-06 08:45 - 2016-04-27 16:33 - 01922496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436510.dll 2016-05-06 08:45 - 2016-04-27 16:33 - 01573432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436510.dll 2016-05-04 04:23 - 2016-05-04 04:23 - 00129824 _____ C:\WINDOWS\SysWOW64\vulkan-1-1-0-11-1.dll 2016-05-04 04:22 - 2016-05-04 04:22 - 00130848 _____ C:\WINDOWS\system32\vulkan-1-1-0-11-1.dll 2016-05-04 04:22 - 2016-05-04 04:22 - 00045344 _____ C:\WINDOWS\system32\vulkaninfo-1-1-0-11-1.exe 2016-05-04 04:22 - 2016-05-04 04:22 - 00040224 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-11-1.exe ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2016-06-01 13:52 - 2016-02-20 12:51 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Skype 2016-06-01 13:02 - 2016-02-20 13:02 - 00001076 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-01 09:02 - 2016-02-20 13:02 - 00001072 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-01 08:57 - 2016-02-21 13:14 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\CrashDumps 2016-06-01 08:57 - 2015-07-10 13:02 - 00000000 ____D C:\WINDOWS\INF 2016-06-01 08:55 - 2016-02-19 16:53 - 00004190 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{44C0E581-7B9A-450F-B3F3-51809A987135} 2016-06-01 08:54 - 2016-02-20 15:49 - 00000000 ____D C:\ProgramData\TEMP 2016-06-01 08:52 - 2016-04-09 08:09 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\Telegram Desktop 2016-05-31 20:37 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-05-31 20:32 - 2015-07-10 13:04 - 00000000 ___HD C:\Program Files\WindowsApps 2016-05-30 18:33 - 2016-02-21 13:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-05-30 14:32 - 2016-02-20 17:43 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Microsoft Help 2016-05-29 14:04 - 2016-02-19 14:39 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Packages 2016-05-27 13:39 - 2016-02-21 14:56 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\WSJT-X 2016-05-27 11:50 - 2016-02-20 12:51 - 00000000 ____D C:\ProgramData\Skype 2016-05-26 21:28 - 2016-02-19 19:19 - 01841982 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-05-26 21:28 - 2015-07-10 18:09 - 00814236 _____ C:\WINDOWS\system32\perfh013.dat 2016-05-26 21:28 - 2015-07-10 18:09 - 00158520 _____ C:\WINDOWS\system32\perfc013.dat 2016-05-26 21:20 - 2016-02-19 19:10 - 00000000 ____D C:\ProgramData\NVIDIA 2016-05-26 21:20 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-05-26 21:20 - 2015-07-10 14:20 - 00375528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-05-26 21:19 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-05-26 18:32 - 2016-02-20 21:24 - 00000000 ____D C:\ProgramData\Corel 2016-05-26 18:28 - 2016-02-21 09:46 - 00000000 ____D C:\Users\M. Aarden\Documents\Corel PaintShop Pro 2016-05-26 18:28 - 2016-02-21 09:46 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Corel PaintShop Pro 2016-05-26 18:27 - 2016-02-19 16:57 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-25 21:55 - 2016-02-19 19:11 - 00000000 ____D C:\Users\M. Aarden 2016-05-25 21:54 - 2016-02-20 13:02 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Google 2016-05-25 21:54 - 2016-02-20 13:02 - 00000000 ____D C:\Program Files (x86)\Google 2016-05-25 20:54 - 2016-02-22 21:26 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\TeamViewer 2016-05-25 11:58 - 2016-02-20 18:47 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\TrustedQSL 2016-05-23 22:52 - 2016-02-19 19:10 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-05-23 22:52 - 2016-02-19 16:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-05-23 22:51 - 2016-03-07 22:23 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-05-22 23:02 - 2015-08-29 01:31 - 13509184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2016-05-22 22:27 - 2016-02-22 21:26 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-05-21 23:09 - 2015-11-10 03:48 - 00141256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2016-05-21 08:30 - 2016-02-22 20:12 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-05-20 18:06 - 2016-02-20 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Omni-Rig 2016-05-20 18:06 - 2016-02-20 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CW Skimmer 2016-05-20 18:05 - 2016-03-09 09:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DX Atlas 2016-05-20 10:03 - 2015-08-29 01:31 - 20305768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2016-05-20 10:03 - 2015-08-29 01:31 - 17662432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2016-05-20 10:03 - 2015-08-29 01:31 - 14410024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2016-05-20 10:03 - 2015-08-29 01:31 - 03811440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2016-05-20 10:03 - 2015-08-29 01:31 - 03371648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2016-05-20 10:03 - 2015-08-07 09:10 - 00040084 _____ C:\WINDOWS\system32\nvinfo.pb 2016-05-20 04:08 - 2016-02-19 19:10 - 06348344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-05-20 04:08 - 2016-02-19 19:10 - 02454976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2016-05-20 04:08 - 2016-02-19 19:10 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-05-20 04:08 - 2016-02-19 19:10 - 01352760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-05-20 04:08 - 2016-02-19 19:10 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-05-20 04:08 - 2016-02-19 19:10 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-05-20 04:08 - 2016-02-19 16:58 - 00533560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2016-05-20 04:08 - 2016-02-19 16:58 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2016-05-18 10:37 - 2016-02-19 19:10 - 06448223 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-05-14 08:40 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-14 08:35 - 2016-02-19 14:47 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\NVIDIA 2016-05-13 16:03 - 2016-02-20 13:02 - 00002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-12 20:19 - 2016-02-20 12:51 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-05-11 21:50 - 2015-07-10 13:06 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-05-11 21:50 - 2015-07-10 13:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-05-11 18:42 - 2016-02-20 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\microHAM 2016-05-11 18:22 - 2016-02-22 20:12 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-05-11 17:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache 2016-05-11 13:54 - 2015-07-10 18:11 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-11 09:19 - 2014-03-11 11:13 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-05-11 09:14 - 2014-03-11 11:13 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-11 08:57 - 2016-02-20 13:02 - 00004134 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-05-11 08:57 - 2016-02-20 13:02 - 00003902 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-05-08 15:05 - 2016-03-24 10:49 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\HP 2016-05-08 15:05 - 2016-03-09 21:35 - 00000000 ____D C:\Program Files\Speccy 2016-05-08 15:05 - 2016-02-28 15:34 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\Howard_Grams,_K7JNX 2016-05-08 15:05 - 2016-02-20 18:54 - 00000000 ____D C:\Program Files (x86)\Afreet 2016-05-08 15:05 - 2016-02-20 15:29 - 00000000 ____D C:\Users\M. Aarden\AppData\Roaming\IrfanView 2016-05-08 15:05 - 2016-02-19 19:10 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-05-08 15:05 - 2016-02-19 19:10 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2016-05-08 15:05 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\registration 2016-05-08 15:05 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Help 2016-05-08 13:53 - 2016-02-20 17:13 - 00000000 ____D C:\Users\M. Aarden\AppData\LocalLow\Google 2016-05-08 08:32 - 2016-02-28 11:10 - 00000000 ____D C:\Users\M. Aarden\AppData\Local\ElevatedDiagnostics 2016-05-04 04:23 - 2016-03-15 18:25 - 00129824 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2016-05-04 04:22 - 2016-03-15 18:25 - 00130848 _____ C:\WINDOWS\system32\vulkan-1.dll 2016-05-04 04:22 - 2016-03-15 18:25 - 00045344 _____ C:\WINDOWS\system32\vulkaninfo.exe 2016-05-04 04:22 - 2016-03-15 18:25 - 00040224 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2016-05-03 18:05 - 2016-04-02 19:29 - 00000000 ____D C:\Program Files\PDFCreator 2016-05-02 07:39 - 2016-02-19 16:58 - 01377800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2016-05-02 07:39 - 2016-02-19 16:58 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2016-05-02 07:38 - 2016-02-19 16:58 - 01767944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2016-05-02 07:38 - 2016-02-19 16:58 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2016-05-02 07:38 - 2016-02-19 16:58 - 00112032 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll ==================== Bestanden in de root van sommige mappen ======= 2016-02-28 14:49 - 2016-02-28 14:49 - 0003584 _____ () C:\Users\M. Aarden\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-04-09 13:02 - 2014-04-09 13:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Sommige bestanden in TEMP: ==================== C:\Users\M. Aarden\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap ================= (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\WINDOWS\system32\winlogon.exe => Bestand is getekend C:\WINDOWS\system32\wininit.exe => Bestand is getekend C:\WINDOWS\explorer.exe => Bestand is getekend C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend C:\WINDOWS\system32\svchost.exe => Bestand is getekend C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend C:\WINDOWS\system32\services.exe => Bestand is getekend C:\WINDOWS\system32\User32.dll => Bestand is getekend C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend C:\WINDOWS\system32\userinit.exe => Bestand is getekend C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend C:\WINDOWS\system32\rpcss.dll => Bestand is getekend C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2016-05-30 17:13 ==================== Eind van FRST.txt ============================