Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 17-08-2016 Gestart door Jive1 (Beheerder) op JIVE1-PC1 (18-08-2016 07:24:28) Gestart vanaf C:\Users\Jive1\Desktop Geladen Profielen: Jive1 (Beschikbare Profielen: Jive1 & DefaultAppPool) Platform: Windows 10 Home Versie 1607 (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: Edge) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe (SuperBoost Software) C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe (IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.102.0_x64__kzf8qxf38zg5c\SkypeHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (BullGuard Ltd.) C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Fred's Software) C:\Program Files (x86)\PrintKey2000\Printkey2000.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe (SuperBoost Software) C:\Program Files (x86)\SuperBoost\Superb Game Boost\SuperbGameBoostMain.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe ==================== Register (gefilterd) =========================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16408320 2015-12-04] (Realtek Semiconductor) HKLM\...\Run: [BullGuard] => C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe [1457432 2016-07-25] (BullGuard Ltd.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2015-09-24] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2015-09-24] (Adobe Systems Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2016-03-18] (Apple Inc.) HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5969184 2016-06-20] (IObit) HKU\S-1-5-21-1164007602-1762807489-4250781742-1000\...\Run: [BitTorrent] => C:\Users\Jive1\AppData\Roaming\BitTorrent\BitTorrent.exe [2140680 2016-08-16] (BitTorrent Inc.) HKU\S-1-5-21-1164007602-1762807489-4250781742-1000\...\Run: [Advanced SystemCare 9] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2022688 2016-04-26] (IObit) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Geen bestand ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Geen bestand ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Geen bestand ShellIconOverlayIdentifiers: [BackupOverlayErr] -> {8749448C-D907-45BF-A842-4D3898894AC8} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2016-07-25] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlayInProgress] -> {3FFBF330-7839-476B-BE14-2C8597CE11B6} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2016-07-25] (BullGuard Ltd.) ShellIconOverlayIdentifiers: [BackupOverlaySynced] -> {C62CF4DB-48CB-4B03-BFD0-30A29125FA49} => C:\Program Files\BullGuard Ltd\BullGuard\BackupShellHook.dll [2016-07-25] (BullGuard Ltd.) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Geen bestand ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Geen bestand ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Geen bestand Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Printkey2000.lnk [2016-03-02] ShortcutTarget: Printkey2000.lnk -> C:\Program Files (x86)\PrintKey2000\Printkey2000.exe (Fred's Software) ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{cc51fe0d-6dfd-43b6-98b7-2b86b0def6e9}: [DhcpNameServer] 192.168.1.1 ManualProxies: Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1164007602-1762807489-4250781742-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.be/ SearchScopes: HKU\S-1-5-21-1164007602-1762807489-4250781742-1000 -> DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = SearchScopes: HKU\S-1-5-21-1164007602-1762807489-4250781742-1000 -> {C58BF88F-74E1-447D-BDCF-8FF7E12660E7} URL = hxxp://www.google.nl/search?hl=nl&q={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-01] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-11] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-29] (Oracle Corporation) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-29] (Oracle Corporation) BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-09-24] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-1164007602-1762807489-4250781742-1000 -> Geen Naam - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Geen bestand Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-01] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-01] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-01] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-01] (Microsoft Corporation) FireFox: ======== FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-29] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-29] (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-01] (Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-09-24] (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1164007602-1762807489-4250781742-1000: SkypePlugin -> C:\Users\Jive1\AppData\Local\SkypePlugin\7.21.0.159\npGatewayNpapi.dll [2016-07-07] (Skype Technologies S.A.) FF Plugin HKU\S-1-5-21-1164007602-1762807489-4250781742-1000: SkypePlugin64 -> C:\Users\Jive1\AppData\Local\SkypePlugin\7.21.0.159\npGatewayNpapi-x64.dll [2016-07-07] (Skype Technologies S.A.) FF Extension: Belgium eID - C:\Program Files (x86)\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be [2016-07-12] FF HKLM-x32\...\Firefox\Extensions: [antiphishing@bullguard] - C:\Program Files\BullGuard Ltd\BullGuard\Files32\Antiphishing\FF\antiphishing@bullguard => niet gevonden FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2016-02-20] [ niet getekend] FF HKLM-x32\...\Firefox\Extensions: [belgiumeid@eid.belgium.be] - C:\Program Files (x86)\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be FF HKU\S-1-5-21-1164007602-1762807489-4250781742-1000\...\Thunderbird\Extensions: [{380AE6CB-09B9-4373-B360-D01C2462A6E7}] - C:\Program Files\BullGuard Ltd\BullGuard\Files32\backup\thunderbirdbkplugin FF Extension: BullGuard Backup - C:\Program Files\BullGuard Ltd\BullGuard\Files32\backup\thunderbirdbkplugin [2016-02-16] [ niet getekend] FF HKU\S-1-5-21-1164007602-1762807489-4250781742-1000\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - C:\Program Files\BullGuard Ltd\BullGuard\Files32\Spamfilter\TbSpamfilter FF Extension: BullGuard Spamfilter - C:\Program Files\BullGuard Ltd\BullGuard\Files32\Spamfilter\TbSpamfilter [2016-02-16] [ niet getekend] Chrome: ======= CHR Profile: C:\Users\Jive1\AppData\Local\Google\Chrome\User Data\Default ==================== Services (gefilterd) ======================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AdvancedSystemCareService9; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240 2016-01-05] (IObit) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) R2 BsBackup; C:\Program Files\BullGuard Ltd\BullGuard\BsBackup.dll [1370392 2016-07-25] (BullGuard Ltd.) R2 BsBhvScan; C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe [706328 2016-08-16] (BullGuard Ltd.) R2 BsCache; c:\program files\bullguard ltd\bullguard\BsCache.dll [176920 2016-07-25] (BullGuard Ltd.) R2 BsFileScan; c:\program files\bullguard ltd\bullguard\BsFileScan.dll [478488 2016-07-25] (BullGuard Ltd.) R2 BsFire; c:\program files\bullguard ltd\bullguard\BsFire.dll [825112 2016-07-25] (BullGuard Ltd.) R2 BsMailProxy; c:\program files\bullguard ltd\bullguard\BsMailProxy\BsMailProxy.dll [5575960 2016-08-02] (BullGuard Ltd.) R2 BsMain; C:\Program Files\BullGuard Ltd\BullGuard\BsMain.dll [609560 2016-07-25] (BullGuard Ltd.) R2 BsScanner; C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe [310040 2016-07-25] (BullGuard Ltd.) R2 BsUpdate; C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe [399128 2016-07-25] (BullGuard Ltd.) S2 CDPUserSvc; C:\Windows\System32\CDPUserSvc.dll [337408 2016-07-16] (Microsoft Corporation) R2 CDPUserSvc_10e9116; C:\WINDOWS\system32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R2 CDPUserSvc_10e9116; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2950856 2016-07-31] (Microsoft Corporation) S3 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () S3 FrameServer; C:\Windows\system32\FrameServer.dll [803840 2016-07-16] (Microsoft Corporation) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200 2016-01-23] (NVIDIA Corporation) S3 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [191688 2016-05-25] () S3 HvHost; C:\Windows\System32\hvhostsvc.dll [67584 2016-07-16] (Microsoft Corporation) R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1597728 2016-06-13] (IObit) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-06-14] (IObit) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-23] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288 2016-01-23] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736 2016-01-23] (NVIDIA Corporation) R3 RmSvc; C:\Windows\System32\RMapi.dll [141312 2016-07-16] (Microsoft Corporation) R2 sgbupt; C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe [2600256 2016-04-21] (SuperBoost Software) S4 shpamsvc; C:\Windows\system32\Windows.SharedPC.AccountManager.dll [161792 2016-07-16] (Microsoft Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Bestand niet getekend] S3 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [117400 2016-06-08] () R3 TimeBrokerSvc; C:\Windows\System32\TimeBrokerServer.dll [177664 2016-07-16] (Microsoft Corporation) S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () S3 vmicrdv; C:\Windows\System32\icsvcext.dll [349696 2016-07-16] (Microsoft Corporation) S3 vmicvss; C:\Windows\System32\icsvcext.dll [349696 2016-07-16] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) S3 wisvc; C:\Windows\system32\flightsettings.dll [614912 2016-07-16] (Microsoft Corporation) S3 WpnUserService; C:\Windows\System32\WpnUserService.dll [74240 2016-07-16] (Microsoft Corporation) S3 WpnUserService_10e9116; C:\WINDOWS\system32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) S3 WpnUserService_10e9116; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) ===================== Drivers (gefilterd) ========================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R3 A38CCID; C:\Windows\system32\DRIVERS\a38ccid.sys [82480 2015-08-19] (Advanced Card Systems Ltd.) S3 AcpiDev; C:\Windows\System32\drivers\AcpiDev.sys [18432 2016-07-16] (Microsoft Corporation) R1 afw; C:\Windows\system32\DRIVERS\afw.sys [52904 2016-01-13] (Agnitum Ltd.) R3 afwcore; C:\Windows\System32\DRIVERS\afwcore.sys [465072 2016-01-13] (Agnitum Ltd.) S3 applockerfltr; C:\Windows\System32\drivers\applockerfltr.sys [15360 2016-07-16] (Microsoft Corporation) S0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [533856 2016-07-16] (QLogic Corporation) R1 BdAgent; C:\Windows\System32\DRIVERS\BdAgent.sys [117184 2016-01-13] (BullGuard Ltd.) R3 BdNet; C:\Windows\System32\drivers\BdNet.sys [51856 2016-01-13] (BullGuard Ltd.) R1 BdSpy; C:\Windows\System32\drivers\BdSpy.sys [76728 2016-01-13] (BullGuard Ltd.) S3 cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [346976 2016-07-16] (Chelsio Communications) S3 cht4vbd; C:\Windows\System32\drivers\cht4vx64.sys [2104160 2016-07-16] (Chelsio Communications) R2 clreg; C:\Windows\System32\drivers\registry.sys [70144 2016-07-16] (Microsoft Corporation) S3 cpuz138; C:\Users\Jive1\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [27320 2016-08-14] (CPUID) S3 hvservice; C:\Windows\System32\drivers\hvservice.sys [73568 2016-07-16] (Microsoft Corporation) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-02-29] (REALiX(tm)) S3 iagpio; C:\Windows\System32\drivers\iagpio.sys [33280 2016-07-16] (Intel(R) Corporation) S3 iaLPSS2i_GPIO2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [64512 2016-07-16] (Intel Corporation) R3 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22208 2016-04-01] (IObit) S3 IndirectKmd; C:\Windows\System32\drivers\IndirectKmd.sys [35840 2016-07-16] (Microsoft Corporation) S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [36568 2013-09-30] (IObit) R0 iorate; C:\Windows\System32\drivers\iorate.sys [45920 2016-07-16] (Microsoft Corporation) S3 ITKVar; I:\000-Te installeren Software\00-Bios\itkvar64.sys [17176 2016-06-23] (Intel Corporation) R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185600 2015-10-08] (Intel Corporation) R3 MxEFLF; C:\Windows\System32\drivers\MxEFLF64.sys [113480 2010-11-04] (Matrox Graphics Inc.) R3 MxEFUF; C:\Windows\System32\drivers\MxEFUF64.sys [143688 2010-11-04] (Matrox Graphics Inc.) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R1 NovaShieldFilterDriver; C:\Windows\System32\DRIVERS\NSKernel.sys [276144 2016-07-25] (BullGuard Ltd.) S1 NovaShieldTDIDriver; C:\Windows\System32\DRIVERS\NSNetmon.sys [26776 2016-01-13] (BullGuard Ltd.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-01-23] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [56384 2016-07-08] (NVIDIA Corporation) S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58720 2016-07-16] (Avago Technologies) R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2016-01-11] (IObit.com) S0 scmbus; C:\Windows\System32\drivers\scmbus.sys [88416 2016-07-16] (Microsoft Corporation) S3 scmdisk0101; C:\Windows\System32\drivers\scmdisk0101.sys [123904 2016-07-16] (Microsoft Corporation) S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2015-06-04] () R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21360 2016-03-22] (IObit) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-09-22] (Synaptics Incorporated) S3 UcmTcpciCx0101; C:\Windows\System32\Drivers\UcmTcpciCx.sys [108544 2016-07-16] (Microsoft Corporation) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 vmgid; C:\Windows\System32\drivers\vmgid.sys [10240 2016-07-16] (Microsoft Corporation) R0 volume; C:\Windows\System32\drivers\volume.sys [16224 2016-07-16] (Microsoft Corporation) R2 wcifs; C:\Windows\system32\drivers\wcifs.sys [119648 2016-07-16] (Microsoft Corporation) R2 wcnfs; C:\Windows\system32\drivers\wcnfs.sys [66560 2016-07-16] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) U3 idsvc; geen ImagePath ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) NETSVC: shpamsvc -> C:\Windows\system32\Windows.SharedPC.AccountManager.dll (Microsoft Corporation) NETSVC: wisvc -> C:\Windows\system32\flightsettings.dll (Microsoft Corporation) NETSVC: WpnService -> C:\Windows\system32\WpnService.dll (Microsoft Corporation) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2016-08-18 07:24 - 2016-08-18 07:25 - 00023047 _____ C:\Users\Jive1\Desktop\FRST.txt 2016-08-18 07:21 - 2016-08-18 07:24 - 00000000 ____D C:\FRST 2016-08-18 07:21 - 2016-08-18 07:21 - 02394624 _____ (Farbar) C:\Users\Jive1\Desktop\FRST64.exe 2016-08-18 07:15 - 2016-08-18 07:15 - 00000000 ___HD C:\OneDriveTemp 2016-08-17 11:52 - 2016-08-17 12:42 - 00000000 ____D C:\AdwCleaner 2016-08-17 11:05 - 2016-08-17 11:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IFSD Irish Scenery 2016-08-17 10:54 - 2016-08-17 13:08 - 00000000 ____D C:\Program Files (x86)\Qickqerkige 2016-08-17 10:54 - 2016-08-17 11:23 - 00000000 ____D C:\Program Files (x86)\SoSoEasySvc 2016-08-17 10:54 - 2016-08-17 10:54 - 00000000 ___HD C:\Program Files (x86)\9ae2904 2016-08-17 10:54 - 2016-08-17 10:54 - 00000000 ____D C:\Users\Jive1\AppData\Local\pfercultckariwardgrzeward 2016-08-17 10:54 - 2016-08-17 10:54 - 00000000 ____D C:\ProgramData\AVAST Software 2016-08-15 14:29 - 2016-08-15 14:29 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2016-08-15 14:29 - 2016-08-15 14:29 - 00000000 ____D C:\Program Files\Unlocker 2016-08-15 11:06 - 2016-08-15 11:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2016-08-14 14:11 - 2016-08-14 14:11 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Base Marambio FS2002 Scenery enhancement 2016-08-14 07:45 - 2016-08-14 07:45 - 00003370 _____ C:\WINDOWS\System32\Tasks\Driver Booster Scheduler 2016-08-14 07:45 - 2016-08-14 07:45 - 00003014 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Jive1) 2016-08-12 11:09 - 2016-08-12 11:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DS Development 2016-08-12 11:09 - 2016-08-12 11:09 - 00000000 ____D C:\Program Files (x86)\DS Development 2016-08-12 11:08 - 2016-08-12 11:09 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\DS Development 2016-08-12 11:08 - 2016-08-12 11:09 - 00000000 ____D C:\ProgramData\DS Development 2016-08-11 16:11 - 2016-08-11 16:11 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\german antarctic research Neumayer Station III 2016-08-11 14:41 - 2016-08-11 18:20 - 1526419193 _____ C:\Users\Jive1\Downloads\VFR Photographic Scenery Vol4.rar 2016-08-11 14:35 - 2016-08-11 18:20 - 1442647920 _____ C:\Users\Jive1\Downloads\VFR Photographic Scenery Vol3.rar 2016-08-11 08:09 - 2016-08-11 08:09 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2016-08-10 12:45 - 2016-08-10 12:45 - 00000262 __RSH C:\ProgramData\ntuser.pol 2016-08-10 12:40 - 2016-08-10 12:41 - 00000000 ____D C:\Users\Jive1\AppData\Local\SkypePlugin 2016-08-10 12:38 - 2016-08-02 10:48 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-08-10 12:38 - 2016-08-02 10:44 - 00151232 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-08-10 12:38 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2016-08-10 12:38 - 2016-08-02 10:21 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2016-08-10 12:38 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-08-10 12:38 - 2016-08-02 09:58 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-08-10 12:38 - 2016-08-02 09:55 - 03617280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-08-10 12:38 - 2016-08-02 06:51 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-08-10 12:38 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2016-08-10 12:38 - 2016-08-02 06:39 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2016-08-10 12:38 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2016-08-10 12:38 - 2016-08-02 06:37 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-08-10 12:38 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-08-10 12:38 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-08-10 12:38 - 2016-08-02 06:28 - 19423232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-08-10 12:38 - 2016-08-02 06:27 - 07623168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-08-10 12:38 - 2016-08-02 06:25 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2016-08-10 12:38 - 2016-08-02 06:25 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-08-10 12:38 - 2016-08-02 06:23 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-08-10 12:38 - 2016-08-02 06:13 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-08-10 12:38 - 2016-08-02 06:09 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2016-08-10 12:37 - 2016-08-02 10:58 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-08-10 12:37 - 2016-08-02 10:53 - 02745224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-08-10 12:37 - 2016-08-02 10:52 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-08-10 12:37 - 2016-08-02 10:48 - 00241496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-08-10 12:37 - 2016-08-02 10:23 - 22572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-08-10 12:37 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2016-08-10 12:37 - 2016-08-02 10:20 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-08-10 12:37 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2016-08-10 12:37 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-08-10 12:37 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2016-08-10 12:37 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-08-10 12:37 - 2016-08-02 10:12 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-08-10 12:37 - 2016-08-02 10:11 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-08-10 12:37 - 2016-08-02 10:11 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-08-10 12:37 - 2016-08-02 10:10 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-08-10 12:37 - 2016-08-02 10:09 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-08-10 12:37 - 2016-08-02 10:07 - 23682048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-08-10 12:37 - 2016-08-02 10:07 - 09125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-08-10 12:37 - 2016-08-02 10:03 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-08-10 12:37 - 2016-08-02 10:00 - 05511168 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2016-08-10 12:37 - 2016-08-02 09:59 - 08124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-08-10 12:37 - 2016-08-02 09:57 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-08-10 12:37 - 2016-08-02 09:56 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-08-10 12:37 - 2016-08-02 09:56 - 01785856 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-08-10 12:37 - 2016-08-02 09:56 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-08-10 12:37 - 2016-08-02 09:55 - 01508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-08-10 12:37 - 2016-08-02 09:52 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2016-08-10 12:37 - 2016-08-02 06:56 - 02251440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-08-10 12:37 - 2016-08-02 06:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-08-10 12:37 - 2016-08-02 06:26 - 19417600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-08-10 12:37 - 2016-08-02 06:26 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-08-10 12:37 - 2016-08-02 06:16 - 06044672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-08-10 12:37 - 2016-08-02 06:13 - 01600512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-08-10 12:37 - 2016-08-02 06:12 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-08-09 20:57 - 2016-08-09 20:57 - 00002426 _____ C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-08-09 20:56 - 2016-08-09 20:56 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-08-09 20:51 - 2016-08-10 07:16 - 00000000 ____D C:\Users\Jive1\AppData\Local\ConnectedDevicesPlatform 2016-08-09 20:51 - 2016-08-09 20:51 - 00000020 ___SH C:\Users\Jive1\ntuser.ini 2016-08-09 20:35 - 2016-08-15 09:18 - 00000000 ___DC C:\WINDOWS\Panther 2016-08-09 20:31 - 2016-08-09 20:31 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-08-09 20:31 - 2016-08-09 20:31 - 01708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 01265424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 01260384 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00843104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-08-09 20:31 - 2016-08-09 20:31 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-08-09 20:31 - 2016-08-09 20:31 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-08-09 20:31 - 2016-08-09 20:31 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2016-08-09 20:31 - 2016-07-15 20:29 - 05739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2016-08-09 20:31 - 2016-07-15 20:29 - 02629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2016-08-09 20:31 - 2016-07-15 20:14 - 06354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2016-08-09 20:31 - 2016-07-15 19:45 - 02629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2016-08-09 20:31 - 2016-07-15 19:29 - 05489664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2016-08-09 20:30 - 2016-08-09 20:30 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\WINDOWS\system32\msmq 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\Program Files\MSBuild 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-08-09 20:28 - 2016-08-09 20:28 - 00000000 ____D C:\inetpub 2016-08-09 20:27 - 2016-05-25 15:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-08-09 20:27 - 2016-05-25 15:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-08-09 20:27 - 2016-05-25 15:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-08-09 20:27 - 2016-05-25 12:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2016-08-09 20:27 - 2016-05-25 12:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-08-09 20:27 - 2016-05-25 12:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2016-08-09 20:16 - 2016-08-09 20:16 - 00000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2016-08-09 20:10 - 2016-08-09 20:10 - 00000000 ____D C:\ProgramData\USOShared 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Sjablonen 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Netwerkprinteromgeving 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Mijn documenten 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Menu Start 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Documents\Mijn video's 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Documents\Mijn muziek 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\Documents\Mijn afbeeldingen 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default\AppData\Local\Geschiedenis 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default User\Documents\Mijn video's 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default User\Documents\Mijn muziek 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default User\Documents\Mijn afbeeldingen 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2016-08-09 20:09 - 2016-08-09 20:09 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Geschiedenis 2016-08-09 20:07 - 2016-08-09 20:08 - 00011433 _____ C:\WINDOWS\diagwrn.xml 2016-08-09 20:07 - 2016-08-09 20:08 - 00011433 _____ C:\WINDOWS\diagerr.xml 2016-08-09 20:02 - 2016-08-17 13:09 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-08-09 20:02 - 2016-08-09 20:02 - 00003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-08-09 20:02 - 2016-08-09 20:02 - 00003330 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{C74E1B2B-95A6-457E-9AD5-66A550C8FDBD} 2016-08-09 20:02 - 2016-08-09 20:02 - 00002688 _____ C:\WINDOWS\System32\Tasks\SmartDefrag_AutoAnalyze 2016-08-09 20:02 - 2016-08-09 20:02 - 00002570 _____ C:\WINDOWS\System32\Tasks\SuperbGameBoost 2016-08-09 20:02 - 2016-08-09 20:02 - 00002496 _____ C:\WINDOWS\System32\Tasks\ASC9_PerformanceMonitor 2016-08-09 20:02 - 2016-08-09 20:02 - 00002450 _____ C:\WINDOWS\System32\Tasks\SmartDefrag_Startup 2016-08-09 20:02 - 2016-08-09 20:02 - 00002446 _____ C:\WINDOWS\System32\Tasks\SmartDefrag_Update 2016-08-09 20:02 - 2016-08-09 20:02 - 00002232 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Jive1 2016-08-09 20:02 - 2016-08-09 20:02 - 00002178 _____ C:\WINDOWS\System32\Tasks\ASC9_SkipUac_Jive1 2016-08-09 20:02 - 2016-08-09 20:02 - 00002110 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_WILLAMETTE 2016-08-09 20:02 - 2016-08-09 20:02 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD 2016-08-09 20:02 - 2016-08-09 20:02 - 00000000 ____D C:\WINDOWS\System32\Tasks\Intel 2016-08-09 20:02 - 2016-08-09 20:02 - 00000000 ____D C:\WINDOWS\System32\Tasks\BullGuard 2016-08-09 20:02 - 2016-08-09 20:02 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple 2016-08-09 20:02 - 2016-04-27 11:27 - 00003988 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-08-09 20:02 - 2016-04-27 11:27 - 00003454 _____ C:\WINDOWS\System32\Tasks\adu 2016-08-09 20:02 - 2016-04-27 11:27 - 00003246 _____ C:\WINDOWS\System32\Tasks\{4CB7AF9E-CEEE-4534-8034-C1FC727B8D17} 2016-08-09 20:02 - 2016-04-27 11:27 - 00003122 _____ C:\WINDOWS\System32\Tasks\AdvancedDriverUpdater 2016-08-09 20:02 - 2016-04-27 11:27 - 00003048 _____ C:\WINDOWS\System32\Tasks\{F3345C3D-A7E2-4679-B1E5-14060B02C511} 2016-08-09 19:58 - 2016-08-17 13:08 - 00435080 _____ C:\WINDOWS\system32\config\afw_db.conf 2016-08-09 19:58 - 2016-08-17 13:08 - 00000356 _____ C:\WINDOWS\system32\config\afw_hm.conf 2016-08-09 19:53 - 2016-08-09 19:53 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-08-09 19:53 - 2016-08-09 19:53 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs 2016-08-09 19:53 - 2016-08-09 19:53 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs 2016-08-09 19:48 - 2016-08-09 19:48 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2016-08-09 19:47 - 2016-08-09 19:55 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2016-08-09 19:45 - 2016-08-11 08:09 - 00000000 ____D C:\Users\DefaultAppPool 2016-08-09 19:45 - 2016-08-10 12:45 - 00000000 ____D C:\Users\Jive1 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Sjablonen 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Netwerkprinteromgeving 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Mijn documenten 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Menu Start 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Documents\Mijn video's 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Documents\Mijn muziek 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\Documents\Mijn afbeeldingen 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\Jive1\AppData\Local\Geschiedenis 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Sjablonen 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Netwerkprinteromgeving 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Mijn documenten 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Start 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Mijn video's 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Mijn muziek 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Mijn afbeeldingen 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programma's 2016-08-09 19:45 - 2016-08-09 19:45 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Geschiedenis 2016-08-09 19:44 - 2016-08-10 13:05 - 01806610 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-08-09 19:44 - 2016-08-09 19:44 - 01658132 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2016-08-09 19:41 - 2016-08-09 19:41 - 00000000 ____D C:\Program Files\Common Files\logishrd 2016-08-09 19:39 - 2016-08-11 17:38 - 00000000 ____D C:\ProgramData\NVIDIA 2016-08-09 19:39 - 2016-08-09 19:48 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-08-09 19:39 - 2016-08-09 19:39 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2016-08-09 19:39 - 2016-08-09 19:39 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2016-08-09 19:39 - 2016-08-09 19:39 - 00000000 ____D C:\WINDOWS\system32\DAX2 2016-08-09 19:39 - 2016-08-09 19:39 - 00000000 ____D C:\Program Files\Realtek 2016-08-09 19:39 - 2016-07-16 13:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 06348344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 02454976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 01352760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-08-09 19:39 - 2016-05-20 04:08 - 00533560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2016-08-09 19:39 - 2016-05-20 04:08 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-08-09 19:39 - 2016-05-18 10:37 - 06448223 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-08-09 19:38 - 2016-08-09 19:48 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-08-09 19:38 - 2016-08-09 19:48 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2016-08-09 19:38 - 2016-08-09 19:38 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2016-08-09 19:38 - 2016-08-09 19:38 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2016-08-09 19:38 - 2016-08-09 19:38 - 00000000 ____D C:\Program Files\Synaptics 2016-08-09 19:36 - 2016-08-17 17:23 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-08-09 19:36 - 2016-08-10 12:44 - 05032904 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-08-09 19:36 - 2016-08-09 19:36 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2016-08-09 18:24 - 2016-08-09 18:26 - 00000036 _____ C:\WINDOWS\progress.ini 2016-08-09 18:06 - 2016-08-16 13:36 - 00000000 ____D C:\Windows10Upgrade 2016-08-09 18:06 - 2016-08-12 16:32 - 00000788 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10-upgradeassistent.lnk 2016-08-09 18:06 - 2016-08-12 16:32 - 00000776 _____ C:\Users\Jive1\Desktop\Windows 10-upgradeassistent.lnk 2016-08-09 18:06 - 2016-08-09 20:51 - 00000000 ___HD C:\$GetCurrent 2016-08-07 07:19 - 2016-08-07 07:20 - 00000298 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_Jive1.job 2016-08-06 16:00 - 2016-08-06 16:00 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-08-06 09:06 - 2016-08-06 09:06 - 00000000 ____D C:\Users\Jive1\AppData\LocalLow\Dashlane 2016-08-06 09:05 - 2016-08-14 07:22 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Dashlane 2016-08-05 17:40 - 2016-08-05 17:40 - 05456295 _____ C:\Users\Jive1\Desktop\Molenbergavond.eml 2016-08-05 07:16 - 2016-03-25 14:33 - 00128288 _____ (IObit) C:\WINDOWS\system32\IObitSmartDefragExtension.dll 2016-08-04 07:24 - 2016-08-14 07:22 - 00000000 ____D C:\Program Files (x86)\Dashlane 2016-08-04 07:23 - 2016-08-09 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2016-08-04 07:23 - 2016-08-04 07:23 - 00001299 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk 2016-08-04 07:22 - 2016-08-04 07:22 - 00001276 _____ C:\Users\Public\Desktop\Smart Defrag 5.lnk 2016-08-02 10:47 - 2016-08-09 19:46 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FSRoads 2016-08-01 13:50 - 2016-08-03 18:23 - 327984259 _____ C:\Users\Jive1\Downloads\FS2004 World Sceneries - Amazonia - Brasilia - Fernando de Noronha - Goiania - Wonderful Rio.rar 2016-08-01 11:15 - 2016-08-01 18:19 - 289821716 _____ C:\Users\Jive1\Downloads\Flight Simulator 2004 - Add Ons Pack - Best Aircraft.zip 2016-07-31 18:18 - 2016-08-01 11:16 - 00000000 ____D C:\Users\Jive1\Downloads\raimondo Taburet 2016-07-27 15:42 - 2016-07-27 15:42 - 00000687 _____ C:\Users\Jive1\AppData\LocalLow\wbk10FC.tmp 2016-07-25 15:37 - 2016-07-25 15:36 - 00169656 _____ (BullGuard Ltd.) C:\WINDOWS\system32\BgGamingMonitor.dll 2016-07-25 15:37 - 2016-07-25 15:36 - 00148008 _____ (BullGuard Ltd.) C:\WINDOWS\SysWOW64\BgGamingMonitor.dll 2016-07-25 15:37 - 2016-07-25 15:36 - 00076568 _____ (BullGuard Ltd.) C:\WINDOWS\system32\BGLsp.dll 2016-07-25 15:37 - 2016-07-25 15:36 - 00061720 _____ (BullGuard Ltd.) C:\WINDOWS\SysWOW64\BGLsp.dll 2016-07-23 13:48 - 2016-07-23 13:48 - 00005559 _____ C:\Users\Jive1\Documents\3x7.odt 2016-07-23 10:06 - 2016-07-23 10:06 - 00000000 ___SD C:\Users\Jive1\Documents\Mijn gegevensbronnen 2016-07-21 09:16 - 2016-07-21 10:49 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Military AI Works - 1st Anniversary Airshow 2016-07-19 15:36 - 2016-07-19 15:36 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FREEflow Bahamas ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2016-08-18 07:23 - 2016-02-16 19:19 - 00000000 ____D C:\ProgramData\BullGuard 2016-08-18 07:15 - 2016-02-17 12:32 - 00000000 ____D C:\Users\Jive1\Documents\Outlook-bestanden 2016-08-18 07:15 - 2016-02-17 10:08 - 00000000 ___RD C:\Users\Jive1\OneDrive 2016-08-17 18:16 - 2016-02-17 14:54 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\BitTorrent 2016-08-17 17:34 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-08-17 13:14 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-08-17 13:09 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\security 2016-08-17 13:08 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2016-08-17 12:45 - 2016-04-18 10:44 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-08-17 12:34 - 2016-02-16 19:41 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\BullGuard 2016-08-17 11:04 - 2016-02-22 12:32 - 00729088 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe 2016-08-17 07:53 - 2016-02-16 16:28 - 00000000 ____D C:\Users\Jive1\AppData\Local\ElevatedDiagnostics 2016-08-17 07:52 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-08-17 07:23 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-17 07:15 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-08-16 18:35 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2016-08-16 18:15 - 2016-02-21 08:59 - 00000000 ____D C:\Users\Jive1\Documents\Flight Simulator Files 2016-08-16 13:06 - 2016-05-31 19:55 - 00000000 ____D C:\Users\Jive1\AppData\Local\Packages 2016-08-15 11:06 - 2016-02-29 12:44 - 00000000 ____D C:\ProgramData\IObit 2016-08-15 11:06 - 2016-02-29 12:44 - 00000000 ____D C:\Program Files (x86)\IObit 2016-08-14 07:40 - 2016-03-09 16:10 - 00007607 _____ C:\Users\Jive1\AppData\Local\Resmon.ResmonCfg 2016-08-13 19:53 - 2016-02-29 12:45 - 00000000 ____D C:\ProgramData\ProductData 2016-08-13 08:08 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-08-11 07:39 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-08-11 07:38 - 2016-02-17 10:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-08-10 13:05 - 2016-07-17 00:15 - 00648910 _____ C:\WINDOWS\system32\perfh013.dat 2016-08-10 13:05 - 2016-07-17 00:15 - 00138312 _____ C:\WINDOWS\system32\perfc013.dat 2016-08-10 12:46 - 2016-02-13 15:33 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-08-10 12:42 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-08-10 12:41 - 2016-04-29 09:09 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-08-10 12:38 - 2016-04-29 09:09 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-08-09 20:35 - 2016-07-16 13:49 - 00000000 ____D C:\WINDOWS\Setup 2016-08-09 20:35 - 2016-07-16 13:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-08-09 20:31 - 2016-07-17 00:15 - 00000000 ____D C:\WINDOWS\OCR 2016-08-09 20:28 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2016-08-09 20:28 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2016-08-09 20:28 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-08-09 20:28 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-08-09 20:28 - 2016-07-16 13:44 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2016-08-09 20:28 - 2016-07-16 13:44 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2016-08-09 20:28 - 2016-07-16 13:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2016-08-09 20:28 - 2016-07-16 13:44 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2016-08-09 20:27 - 2016-07-16 13:44 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2016-08-09 20:27 - 2016-07-16 13:44 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll 2016-08-09 20:27 - 2016-07-16 13:44 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2016-08-09 20:27 - 2016-07-16 13:43 - 01414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2016-08-09 20:27 - 2016-07-16 13:43 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2016-08-09 20:27 - 2016-07-16 13:43 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2016-08-09 20:27 - 2016-07-16 13:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2016-08-09 20:27 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2016-08-09 20:27 - 2016-07-16 13:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2016-08-09 20:27 - 2016-07-16 13:43 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2016-08-09 20:27 - 2016-07-16 13:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2016-08-09 20:27 - 2016-07-16 13:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2016-08-09 20:10 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\USOPrivate 2016-08-09 20:09 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows NT 2016-08-09 20:09 - 2016-07-16 08:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2016-08-09 20:07 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Registration 2016-08-09 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-08-09 20:06 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2016-08-09 20:02 - 2016-05-31 19:41 - 00023076 _____ C:\WINDOWS\system32\emptyregdb.dat 2016-08-09 20:01 - 2016-07-16 13:47 - 00000000 __RSD C:\WINDOWS\Media 2016-08-09 20:01 - 2016-07-16 13:47 - 00000000 __RHD C:\Users\Public\Libraries 2016-08-09 19:55 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-08-09 19:55 - 2016-07-08 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2016-08-09 19:55 - 2016-07-08 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 2016-08-09 19:55 - 2016-07-08 17:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 2016-08-09 19:55 - 2016-07-06 13:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite 2016-08-09 19:55 - 2016-07-05 08:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility 2016-08-09 19:55 - 2016-07-04 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2016-08-09 19:55 - 2016-06-20 07:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2016-08-09 19:55 - 2016-06-16 11:38 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft BlueScreenView 2016-08-09 19:55 - 2016-06-05 07:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FS Real Time 2016-08-09 19:55 - 2016-05-31 19:58 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BullGuard 2016-08-09 19:55 - 2016-05-08 10:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IFly Jets - The 737NG for FS2004 2016-08-09 19:55 - 2016-05-01 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DM Flight Sim 2016-08-09 19:55 - 2016-05-01 15:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shockwave 3D Lights Redux FS9 2016-08-09 19:55 - 2016-05-01 10:04 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FSCargo 2016-08-09 19:55 - 2016-05-01 09:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSCargo 2016-08-09 19:55 - 2016-04-18 16:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZ Scenery Library 2016-08-09 19:55 - 2016-04-10 11:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ActiveSky 6 2016-08-09 19:55 - 2016-04-10 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSNavigator for FS2004 2016-08-09 19:55 - 2016-03-26 08:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-08-09 19:55 - 2016-03-26 08:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2016-08-09 19:55 - 2016-03-15 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2016-08-09 19:55 - 2016-03-02 10:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintKey2000 2016-08-09 19:55 - 2016-02-28 10:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2016-08-09 19:55 - 2016-02-27 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft 2016-08-09 19:55 - 2016-02-23 08:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.1 2016-08-09 19:55 - 2016-02-21 08:56 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2016-08-09 19:55 - 2016-02-20 17:05 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WS_FTP 2016-08-09 19:55 - 2016-02-20 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alleycode 2016-08-09 19:55 - 2016-02-20 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2 2016-08-09 19:55 - 2016-02-20 11:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6 2016-08-09 19:55 - 2016-02-18 17:01 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2016-08-09 19:55 - 2016-02-17 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinImage 2016-08-09 19:55 - 2016-02-17 14:14 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-08-09 19:55 - 2016-02-17 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-08-09 19:55 - 2016-02-16 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BullGuard 2016-08-09 19:55 - 2016-02-16 18:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-08-09 19:55 - 2016-02-16 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-08-09 19:53 - 2015-10-30 08:28 - 00000000 ____D C:\Users\Default.migrated 2016-08-09 19:49 - 2016-07-17 00:15 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2016-08-09 19:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2016-08-09 19:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2016-08-09 19:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-08-09 19:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\spool 2016-08-09 19:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\IME 2016-08-09 19:49 - 2016-06-13 09:51 - 00000000 ____D C:\WINDOWS\SysWOW64\beidpp 2016-08-09 19:48 - 2016-07-16 13:47 - 00000000 __SHD C:\Program Files\Windows Sidebar 2016-08-09 19:48 - 2016-07-16 13:47 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2016-08-09 19:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\schemas 2016-08-09 19:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2016-08-09 19:48 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-08-09 19:48 - 2016-07-13 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Curaçao - Hato Intl' Airport 2016-08-09 19:48 - 2016-07-09 11:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BluePrint Simulations 2016-08-09 19:48 - 2016-07-09 08:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2016-08-09 19:48 - 2016-07-09 08:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Superb Game Boost 2016-08-09 19:48 - 2016-06-13 09:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID 2016-08-09 19:48 - 2016-05-15 11:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UK2000 Scenery 2016-08-09 19:48 - 2016-05-14 10:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACG 2016-08-09 19:48 - 2016-04-25 13:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wilco Publishing 2016-08-09 19:48 - 2016-04-18 10:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-08-09 19:48 - 2016-04-10 07:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games 2016-08-09 19:48 - 2016-03-21 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSGenesis 2016-08-09 19:48 - 2016-03-21 17:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\France VFR 2016-08-09 19:48 - 2016-03-20 09:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jeppesen 2016-08-09 19:48 - 2016-03-12 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Aviation 2016-08-09 19:48 - 2016-03-05 12:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-08-09 19:48 - 2016-02-22 12:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flight One Software 2016-08-09 19:48 - 2011-04-12 15:10 - 00000000 ___RD C:\Users\Public\Recorded TV 2016-08-09 19:48 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games 2016-08-09 19:47 - 2009-07-14 05:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2016-08-09 19:46 - 2016-07-16 10:14 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imagine Simulation 2016-08-09 19:46 - 2016-07-15 11:13 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FREEflow Bermuda 2016-08-09 19:46 - 2016-04-25 13:46 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wilco Publishing 2016-08-09 19:46 - 2016-03-21 17:33 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\France VFR 2016-08-09 19:46 - 2016-03-12 09:25 - 00000000 ____D C:\Users\Jive1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Digital Aviation 2016-08-09 19:43 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-08-09 19:41 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\PrintDialog 2016-08-09 19:41 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\MiracastView 2016-08-09 19:39 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Help 2016-08-09 19:39 - 2015-05-02 15:23 - 00000000 ____D C:\temp 2016-08-07 18:09 - 2016-07-14 07:47 - 00000258 _____ C:\WINDOWS\Tasks\ASC9_SkipUac_Jive1.job 2016-08-05 17:59 - 2016-02-16 16:09 - 00000000 ____D C:\Users\Jive1\AppData\Local\VirtualStore 2016-08-02 13:42 - 2009-07-14 04:34 - 00000614 _____ C:\WINDOWS\win.ini 2016-08-01 14:09 - 2016-06-01 16:56 - 00104712 _____ C:\Users\Jive1\Downloads\alaska_north_slope_4 (2).zip.kznh9yy.partial 2016-08-01 14:09 - 2016-06-01 16:51 - 00099116 _____ C:\Users\Jive1\Downloads\alaska_north_slope_4.zip.0njx8kg.partial 2016-07-25 15:36 - 2016-01-13 10:07 - 00276144 _____ (BullGuard Ltd.) C:\WINDOWS\system32\Drivers\NSKernel.sys 2016-07-23 09:07 - 2016-04-10 10:47 - 00000000 ____D C:\Users\Jive1\AppData\Local\Microsoft Help 2016-07-23 07:20 - 2016-02-20 11:22 - 00000000 ____D C:\Program Files (x86)\Adobe ==================== Bestanden in de root van sommige mappen ======= 2016-03-06 11:56 - 2016-03-06 15:25 - 0000028 _____ () C:\Users\Jive1\AppData\Roaming\PanelUpdater.cfg 2016-05-24 17:58 - 2016-05-24 17:58 - 0001456 _____ () C:\Users\Jive1\AppData\Local\Adobe Opslaan voor web 13.0 Prefs 2016-03-09 16:10 - 2016-08-14 07:40 - 0007607 _____ () C:\Users\Jive1\AppData\Local\Resmon.ResmonCfg 2016-02-27 14:49 - 2016-02-27 14:49 - 0001349 _____ () C:\Users\Jive1\AppData\Local\Temp - Snelkoppeling.lnk 2016-08-09 19:39 - 2016-08-09 19:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Sommige bestanden in TEMP: ==================== C:\Users\Jive1\AppData\Local\Temp\3qkCdUR7kb.exe C:\Users\Jive1\AppData\Local\Temp\hD2j8L0UuF.exe C:\Users\Jive1\AppData\Local\Temp\iNDdUQlTq1.exe C:\Users\Jive1\AppData\Local\Temp\oq52jhieZf.exe C:\Users\Jive1\AppData\Local\Temp\Quarantine.exe C:\Users\Jive1\AppData\Local\Temp\Windows10Upgrade.exe C:\Users\Jive1\AppData\Local\Temp\xFtWEXn47d.exe ==================== Bamital & volsnap ================= (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\WINDOWS\system32\winlogon.exe => Bestand is getekend C:\WINDOWS\system32\wininit.exe => Bestand is getekend C:\WINDOWS\explorer.exe => Bestand is getekend C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend C:\WINDOWS\system32\svchost.exe => Bestand is getekend C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend C:\WINDOWS\system32\services.exe => Bestand is getekend C:\WINDOWS\system32\User32.dll => Bestand is getekend C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend C:\WINDOWS\system32\userinit.exe => Bestand is getekend C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend C:\WINDOWS\system32\rpcss.dll => Bestand is getekend C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2016-08-09 19:36 ==================== Eind van FRST.txt ============================