Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 19-02-2017 Gestart door melle (Beheerder) op MELLE (20-02-2017 10:29:11) Gestart vanaf C:\Users\melle\Desktop Geladen Profielen: melle (Beschikbare Profielen: melle) Platform: Windows 10 Home Versie 1607 (X64) Taal: Nederlands (Nederland) Internet Explorer Versie 11 (Standaardbrowser: IE) Boot Modus: Normal Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processen (gefilterd) ================= (Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.) (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe () C:\Windows\runSW.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe (Microsoft Corporation) C:\Windows\System32\CastSrv.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Saitek) C:\Program Files\Saitek\SD6\Software\ProfilerU.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe (Saitek) C:\Program Files\Saitek\SD6\Software\SaiMfd.exe () C:\Program Files (x86)\Realtek\Realtek Bluetooth\SkypePlugin.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet Pro 8610\Bin\HPNetworkCommunicatorCom.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.11.109.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11610.1001.25.0_x64__8wekyb3d8bbwe\WinStore.App.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe ==================== Register (gefilterd) ==================== (Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16152792 2015-07-17] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-07-27] (Intel Corporation) HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [228568 2015-01-15] (Realtek Semiconductor Corporation) HKLM\...\Run: [ProfilerU] => C:\Program Files\Saitek\SD6\Software\ProfilerU.exe [347648 2007-07-12] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\Saitek\SD6\Software\SaiMfd.exe [194560 2007-07-12] (Saitek) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-10-05] (Microsoft Corporation) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110008 2015-05-26] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [499128 2015-05-26] (CyberLink Corp.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1 HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-595942859-672628744-3623613245-1003\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2857248 2016-08-23] (Valve Corporation) HKU\S-1-5-21-595942859-672628744-3623613245-1003\...\Run: [HP Officejet Pro 8610 (NET)] => C:\Program Files\HP\HP Officejet Pro 8610\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett-Packard Development Company, LP) HKU\S-1-5-21-595942859-672628744-3623613245-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd) HKU\S-1-5-18\...\Run: [] => [X] ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ==================== Internet (gefilterd) ==================== (Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.) Tcpip\Parameters: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{0c421127-621e-4ced-810d-ac97f1b0966c}: [NameServer] 8.8.8.8,7.8.8.8 Tcpip\..\Interfaces\{26b11a49-585f-4b43-a90c-9af3c3d7b25b}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{a54a8c13-deb1-4624-aba3-ffd45251da6c}: [DhcpNameServer] 192.168.2.254 Tcpip\..\Interfaces\{c03882fb-5e0a-4348-8bab-32ef6cad1c66}: [NameServer] 8.8.8.8,8.8.8.7 Tcpip\..\Interfaces\{c03882fb-5e0a-4348-8bab-32ef6cad1c66}: [DhcpNameServer] 192.168.2.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-595942859-672628744-3623613245-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE SearchScopes: HKU\S-1-5-21-595942859-672628744-3623613245-1003 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-12-28] (Microsoft Corporation) BHO: Geen Naam -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Geen bestand BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-01-10] (Google Inc.) BHO: Geen Naam -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> Geen bestand BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-12-28] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-20] (Oracle Corporation) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-01-10] (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-20] (Oracle Corporation) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-01-10] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-01-10] (Google Inc.) Handler: dssrequest - Geen CLSID Waarde Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-28] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-28] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-28] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-28] (Microsoft Corporation) Handler: sacore - Geen CLSID Waarde FireFox: ======== FF DefaultProfile: 7cuw44yi.default FF ProfilePath: C:\Users\melle\AppData\Roaming\Mozilla\Firefox\Profiles\7cuw44yi.default [2017-02-20] FF Extension: (Geen Naam) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [niet gevonden] FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-20] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-12-28] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\melle\AppData\Local\Google\Chrome\User Data\Default [2017-02-19] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\melle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-15] CHR Extension: (Chrome Media Router) - C:\Users\melle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-15] ==================== Services (gefilterd) ==================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-01-19] (Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) R2 AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [41176 2015-03-02] (Realtek Semiconductor Corporation) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [108248 2015-03-06] () R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3699904 2016-12-28] (Microsoft Corporation) S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [227104 2016-08-21] (EasyAntiCheat Ltd) S3 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-07-27] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Bestand niet getekend] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Bestand niet getekend] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Bestand niet getekend] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-22] (Intel Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-01-20] (NVIDIA Corporation) R2 RunSwUSB; C:\Windows\runSW.exe [44760 2014-12-12] () R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [117400 2016-06-08] () S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18232 2016-06-13] (Intel(R) Corporation) ===================== Drivers (gefilterd) ====================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) R3 BthAudioHF; C:\WINDOWS\system32\drivers\RtkHfp.sys [94936 2013-06-27] (Realtek Semiconductor Corporation) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [29264 2016-06-09] (Intel Corporation) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmowu.inf_amd64_d9a9717036d407d3\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-01-20] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [47672 2017-01-06] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [887552 2015-07-15] (Realtek ) R3 RtkA2dp; C:\WINDOWS\system32\drivers\RtkA2dp.sys [177880 2014-05-21] (Realtek Semiconductor Corporation) R3 RtkAvrcp; C:\WINDOWS\System32\drivers\RtkAvrcp.sys [59608 2014-05-23] (Realtek Semiconductor Corporation) R3 RtkAvrcpCtrlr; C:\WINDOWS\System32\drivers\RtkAvrcpCtrlr.sys [69848 2013-06-21] (Realtek Semiconductor Corporation) R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [624944 2016-03-11] (Realtek Semiconductor Corporation) R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [5195776 2016-07-16] (Realtek Semiconductor Corporation ) R3 SaiH0763; C:\WINDOWS\system32\DRIVERS\SaiH0763.sys [176256 2007-07-13] (Saitek) R3 SaiH0BAC; C:\WINDOWS\system32\DRIVERS\SaiH0BAC.sys [176128 2007-07-13] (Saitek) R3 SaiMini; C:\WINDOWS\System32\drivers\SaiMini.sys [16000 2007-07-13] (Saitek) R3 SaiNtBus; C:\WINDOWS\system32\drivers\SaiBus.sys [40832 2007-07-13] (Saitek) S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [163644 2016-10-25] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Bestand niet getekend] S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2015-06-04] () S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 MBAMProtection; \??\C:\WINDOWS\system32\drivers\mbam.sys [X] S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X] ==================== NetSvcs (gefilterd) =================== (Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.) ==================== Een Maand Aangemaakt bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2017-02-20 10:29 - 2017-02-20 10:29 - 00019879 _____ C:\Users\melle\Desktop\FRST.txt 2017-02-20 10:28 - 2017-02-20 10:29 - 00000000 ____D C:\FRST 2017-02-20 10:27 - 2017-02-20 10:28 - 02422784 _____ (Farbar) C:\Users\melle\Desktop\FRST64.exe 2017-02-20 09:46 - 2017-02-20 09:46 - 00000000 ___HD C:\$SysReset 2017-02-19 16:11 - 2017-02-19 16:11 - 00000000 ____D C:\Users\melle\AppData\Local\NetworkTiles 2017-02-19 14:50 - 2017-02-19 14:31 - 00024064 _____ C:\WINDOWS\zoek-delete.exe 2017-02-19 14:45 - 2017-02-19 14:45 - 00001315 _____ C:\Users\melle\Desktop\Google Chrome.lnk 2017-02-18 16:04 - 2017-02-18 16:04 - 01309184 _____ C:\Users\melle\Desktop\zoek.exe 2017-02-18 16:03 - 2017-02-19 14:45 - 00000000 ____D C:\zoek_backup 2017-02-17 17:51 - 2017-02-18 19:07 - 00000138 _____ C:\TO.PS1 2017-02-17 17:44 - 2017-02-17 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hoppie 2017-02-17 17:44 - 2017-02-17 17:44 - 00000000 ____D C:\Program Files (x86)\Hoppie 2017-02-17 17:43 - 2017-02-17 17:44 - 05662208 _____ ( ) C:\Users\melle\Downloads\acars-msfs-1.1-install.exe 2017-02-17 15:32 - 2017-02-17 15:32 - 00000000 ____D C:\rsit 2017-02-17 15:32 - 2017-02-17 15:32 - 00000000 ____D C:\Program Files\trend micro 2017-02-17 15:31 - 2017-02-17 15:32 - 01222144 _____ C:\Users\melle\Desktop\RSITx64.exe 2017-02-16 19:07 - 2017-02-16 19:11 - 55566792 _____ (Malwarebytes ) C:\Users\melle\Downloads\mb3-setup-consumer-3.0.6.1469.exe 2017-02-16 17:59 - 2017-02-16 17:59 - 05487408 _____ (Malwarebytes ) C:\Users\melle\Downloads\Niet bevestigd 67770.crdownload 2017-02-16 17:41 - 2017-02-16 17:41 - 09261616 _____ (Piriform Ltd) C:\Users\melle\Downloads\ccsetup527.exe 2017-02-16 17:40 - 2017-02-16 17:40 - 00017776 _____ C:\Users\melle\Documents\cc_20170216_173958.reg 2017-02-16 17:40 - 2017-02-16 17:40 - 00001802 _____ C:\Users\melle\Documents\cc_20170216_174013.reg 2017-02-16 17:28 - 2017-02-16 17:31 - 36915544 _____ (Microsoft Corporation) C:\Users\melle\Downloads\BOIE9_NLNL_VIS64.exe 2017-02-15 17:18 - 2017-02-20 09:22 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-02-15 17:17 - 2017-02-19 17:57 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-02-15 16:43 - 2017-02-20 09:23 - 00000000 ____D C:\AdwCleaner 2017-02-15 16:43 - 2017-02-15 16:43 - 04015056 _____ C:\Users\melle\Downloads\adwcleaner_6.043.exe 2017-02-15 16:33 - 2017-02-16 16:55 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2017-02-15 13:04 - 2017-02-15 13:04 - 00000000 _____ C:\autoexec.bat 2017-02-14 18:34 - 2017-02-14 18:34 - 00010574 _____ C:\Users\melle\Documents\14-02-2017.reg 2017-02-14 18:34 - 2017-02-14 18:34 - 00001162 _____ C:\Users\melle\Documents\cc_20170214_183429.reg 2017-02-14 11:42 - 2017-02-14 09:10 - 03449304 _____ (AVG Technologies CZ, s.r.o.) C:\Users\melle\Desktop\AVG_Protection_Free_1606.exe 2017-02-14 11:42 - 2017-02-14 09:08 - 55566792 _____ (Malwarebytes ) C:\Users\melle\Desktop\mb3-setup-consumer-3.0.6.1469.exe 2017-02-14 08:47 - 2017-02-14 08:47 - 00000000 ____D C:\WINDOWS\pss 2017-02-14 08:41 - 2017-02-14 08:44 - 00000000 ____D C:\Users\melle\AppData\Local\Bafuwardckerguge 2017-02-14 08:39 - 2017-02-14 08:39 - 00000000 ____D C:\Users\melle\AppData\Roaming\CyberLink 2017-02-13 10:51 - 2017-02-13 10:52 - 31675840 _____ (NVIDIA Corporation) C:\Users\melle\Downloads\378.49-desktop-win10-64bit-international-whql.exe.part 2017-02-11 15:29 - 2017-02-11 15:29 - 11663807 _____ C:\Users\melle\Downloads\FS9 KLM 900.zip 2017-02-11 11:24 - 2017-02-11 11:24 - 00000000 ___RD C:\Users\melle\Documents\Scanned Documents 2017-02-11 11:24 - 2017-02-11 11:24 - 00000000 ____D C:\Users\melle\Documents\Fax 2017-02-10 21:28 - 2017-02-10 21:28 - 00002138 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2017-02-10 21:28 - 2016-12-29 13:28 - 00133056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2017-02-10 21:28 - 2016-09-09 19:25 - 00269600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2017-02-10 21:28 - 2016-09-09 19:25 - 00261920 _____ C:\WINDOWS\system32\vulkan-1.dll 2017-02-10 21:28 - 2016-09-09 19:25 - 00110880 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2017-02-10 21:28 - 2016-09-09 19:24 - 00125216 _____ C:\WINDOWS\system32\vulkaninfo.exe 2017-02-10 21:26 - 2017-02-10 21:28 - 00000000 ____D C:\WINDOWS\LastGood 2017-02-09 21:58 - 2017-02-09 21:58 - 23976901 _____ C:\Users\melle\Documents\1-2017 (4).cmr 2017-02-09 21:02 - 2017-02-09 21:02 - 23974335 _____ C:\Users\melle\Downloads\1-2017 (4).cma 2017-02-09 18:02 - 2017-02-09 18:02 - 24696771 _____ C:\Users\melle\Documents\3-2017 (2).cmr 2017-02-09 18:01 - 2017-02-09 18:01 - 24691928 _____ C:\Users\melle\Downloads\3-2017 (2).cma 2017-02-09 18:00 - 2017-02-09 18:00 - 26335177 _____ C:\Users\melle\Documents\4-2017 (1).cmr 2017-02-09 17:56 - 2017-02-09 17:57 - 26330897 _____ C:\Users\melle\Downloads\4-2017 (1).cma 2017-02-09 17:56 - 2017-02-09 17:56 - 24697656 _____ C:\Users\melle\Documents\3-2017 (1).cmr 2017-02-09 17:54 - 2017-02-09 17:54 - 26727844 _____ C:\Users\melle\Documents\2-2017 (1).cmr 2017-02-09 17:54 - 2017-02-09 17:54 - 24691928 _____ C:\Users\melle\Downloads\3-2017 (1).cma 2017-02-09 17:51 - 2017-02-09 17:52 - 26724214 _____ C:\Users\melle\Downloads\2-2017 (1).cma 2017-02-09 17:50 - 2017-02-09 17:50 - 23978010 _____ C:\Users\melle\Documents\1-2017 (3).cmr 2017-02-09 17:47 - 2017-02-09 17:48 - 23974335 _____ C:\Users\melle\Downloads\1-2017 (3).cma 2017-02-09 17:47 - 2017-02-09 17:47 - 28827389 _____ C:\Users\melle\Documents\5-2017.cmr 2017-02-09 17:34 - 2017-02-09 17:34 - 28822041 _____ C:\Users\melle\Downloads\5-2017.cma 2017-02-09 17:25 - 2017-02-09 17:26 - 26330897 _____ C:\Users\melle\Downloads\4-2017.cma 2017-02-09 17:19 - 2017-02-09 17:19 - 24691928 _____ C:\Users\melle\Downloads\3-2017.cma 2017-02-09 17:10 - 2017-02-09 17:11 - 26724214 _____ C:\Users\melle\Downloads\2-2017.cma 2017-02-09 17:01 - 2017-02-09 17:01 - 23974335 _____ C:\Users\melle\Downloads\1-2017 (2).cma 2017-02-09 11:42 - 2017-02-09 11:42 - 23974335 _____ C:\Users\melle\Downloads\1-2017 (1).cma 2017-02-09 11:39 - 2017-02-09 11:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMA Coach 6 2017-02-09 11:39 - 2017-02-09 11:39 - 00000000 ____D C:\ProgramData\CMA 2017-02-09 11:39 - 2017-02-09 11:39 - 00000000 ____D C:\Program Files (x86)\CMA 2017-02-09 11:38 - 2017-02-09 11:42 - 00000000 ____D C:\Users\melle\AppData\Local\CMA 2017-02-08 12:56 - 2017-02-08 12:56 - 01083904 _____ (Squared 5) C:\Users\melle\Downloads\MPEG_Streamclip.exe 2017-02-08 12:52 - 2017-02-08 12:53 - 63597785 _____ C:\Users\melle\Downloads\Virtual Desktop.zip 2017-02-06 09:26 - 2017-02-06 09:26 - 00021464 _____ C:\Users\melle\Downloads\4gb_patch.zip 2017-02-06 09:25 - 2016-05-31 15:33 - 00516096 _____ (Microsoft Corporation) C:\Users\melle\Documents\kopie fs9.exe 2017-02-05 21:04 - 2017-02-05 21:05 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2017-02-05 21:02 - 2016-12-12 04:03 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2017-02-05 21:02 - 2016-12-12 04:03 - 00000669 _____ C:\WINDOWS\system32\nv-vk64.json 2017-02-05 20:55 - 2017-02-05 21:00 - 393367376 _____ (NVIDIA Corporation) C:\Users\melle\Downloads\376.33-desktop-win10-64bit-international-whql.exe 2017-02-05 20:40 - 2017-02-05 20:40 - 00001450 _____ C:\Users\melle\Documents\cc_20170205_203959.reg 2017-02-05 19:47 - 2017-02-05 19:47 - 01932769 _____ C:\Users\melle\Downloads\ProcessExplorer.zip 2017-02-05 19:47 - 2017-02-05 19:47 - 00000000 ____D C:\Users\melle\Downloads\ProcessExplorer 2017-02-05 14:06 - 2017-02-05 14:07 - 23974335 _____ C:\Users\melle\Downloads\1-2017.cma 2017-02-05 13:52 - 2017-02-15 16:39 - 00000000 ____D C:\Users\melle\AppData\LocalLow\Mozilla 2017-02-05 13:50 - 2017-02-05 13:50 - 00245472 _____ C:\Users\melle\Downloads\Firefox Setup Stub 51.0.1.exe 2017-02-03 20:39 - 2017-02-15 17:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2017-02-03 20:39 - 2017-02-03 20:39 - 00002225 _____ C:\Users\Public\Desktop\Google Earth.lnk 2017-02-03 16:19 - 2017-02-03 16:19 - 00004412 _____ C:\Users\melle\Documents\cc_20170203_161915.reg 2017-01-31 15:07 - 2017-01-31 15:07 - 00184610 _____ C:\Users\melle\Documents\MELLE.txt 2017-01-30 18:53 - 2017-01-30 18:53 - 00031297 _____ C:\Users\melle\Downloads\2017-01-30 KL1849.kml 2017-01-30 16:32 - 2017-01-30 16:32 - 00014668 _____ C:\Users\melle\Downloads\152931-OFP.pdf 2017-01-30 16:32 - 2017-01-30 16:32 - 00014668 _____ C:\Users\melle\Downloads\152931-OFP (1).pdf 2017-01-28 13:09 - 2017-01-28 13:09 - 00024090 _____ C:\Users\melle\Downloads\2017-01-28 KL1764.kml 2017-01-28 11:37 - 2017-01-28 11:37 - 00012089 _____ C:\Users\melle\Downloads\152282-OFP.pdf 2017-01-28 11:29 - 2017-01-28 11:29 - 00022979 _____ C:\Users\melle\Downloads\2017-01-28 KL1763.kml 2017-01-28 09:55 - 2017-01-28 09:55 - 00012135 _____ C:\Users\melle\Downloads\152253-OFP.pdf 2017-01-28 09:51 - 2017-01-28 09:51 - 00024970 _____ C:\Users\melle\Downloads\2016-12-24 KL1772 (1).kml 2017-01-27 15:00 - 2017-01-27 15:01 - 15983412 _____ C:\Users\melle\Downloads\iFly738_tuifly_haribo_gold.zip 2017-01-27 12:07 - 2017-01-27 12:07 - 00007704 _____ C:\Users\melle\Documents\cc_20170127_120726.reg 2017-01-26 16:28 - 2017-01-26 16:29 - 00000000 ____D C:\Users\melle\Documents\Geluidsopnamen 2017-01-25 17:28 - 2017-01-25 17:28 - 11755282 _____ C:\Users\melle\Downloads\B738 Austrian.zip 2017-01-25 16:49 - 2016-12-21 08:08 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2017-01-25 16:49 - 2016-12-21 05:44 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2017-01-24 17:45 - 2017-01-24 17:45 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsignce9df6110af7a692 2017-01-24 17:45 - 2017-01-24 17:45 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsignba81bcfa79ebb38d 2017-01-24 17:43 - 2017-01-24 17:43 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign9ccfcc7815373a29 2017-01-24 17:39 - 2017-01-24 17:39 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign30c3444f6eef627b 2017-01-24 17:34 - 2017-01-24 17:34 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsigne2ed1a841c7a9160 2017-01-24 17:29 - 2017-01-24 17:29 - 00000000 ____D C:\Users\melle\AppData\LocalLow\Adobe 2017-01-24 17:28 - 2017-01-24 17:28 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsignf0203d266316d18d 2017-01-24 17:23 - 2017-01-24 17:23 - 00000000 ___RD C:\Users\melle\Creative Cloud Files 2017-01-24 17:23 - 2017-01-24 17:23 - 00000000 ____D C:\ProgramData\boost_interprocess 2017-01-24 17:21 - 2017-01-24 17:21 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign6cffc9ba8ac25f86 2017-01-24 17:21 - 2017-01-24 17:21 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign2350dd09d885598d 2017-01-24 17:20 - 2017-01-24 17:20 - 00003650 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-melledvroome@gmail.com 2017-01-24 17:20 - 2017-01-24 17:20 - 00000000 ____D C:\Users\melle\Documents\Adobe 2017-01-24 17:20 - 2017-01-24 17:20 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign97b58a676ea9f878 2017-01-24 17:20 - 2017-01-24 17:20 - 00000000 ____D C:\Users\melle\AppData\Local\Tempzxpsign1b4e19064e0beb46 2017-01-24 17:07 - 2017-01-24 20:07 - 00000000 ____D C:\ProgramData\Adobe 2017-01-24 17:02 - 2017-01-24 17:34 - 00000000 ____D C:\Users\melle\AppData\Local\Adobe 2017-01-24 17:02 - 2017-01-24 17:02 - 02030352 _____ (Adobe Systems Incorporated) C:\Users\melle\Downloads\Photoshop_Set-Up.exe 2017-01-24 16:25 - 2017-01-20 17:38 - 01985080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437849.dll 2017-01-24 16:25 - 2017-01-20 17:38 - 01591352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437849.dll 2017-01-24 09:15 - 2016-07-15 19:29 - 05739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2017-01-24 09:15 - 2016-07-15 19:29 - 02629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2017-01-24 09:15 - 2016-07-15 19:14 - 06354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2017-01-24 09:15 - 2016-07-15 18:45 - 02629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2017-01-24 09:15 - 2016-07-15 18:29 - 05489664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2017-01-22 14:15 - 2017-01-22 14:15 - 00000000 ____D C:\Users\melle\Downloads\AS_MEGA-AIRPORT-VIENNA-X_FS2004 2017-01-22 14:14 - 2017-01-22 14:15 - 56289025 _____ C:\Users\melle\Downloads\AS_MEGA-AIRPORT-VIENNA-X_FS2004.zip 2017-01-22 10:51 - 2017-01-22 10:54 - 00000000 ____D C:\Users\melle\Downloads\isdproject_-_liml2004 2017-01-22 10:49 - 2017-01-22 10:49 - 09351956 _____ C:\Users\melle\Downloads\isdproject_-_liml2004.zip 2017-01-21 14:49 - 2017-01-21 14:49 - 10662911 _____ C:\Users\melle\Downloads\Ifly_flydubai738.zip ==================== Een Maand Gewijzigd bestanden en mappen ======== (Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.) 2017-02-20 10:26 - 2017-01-10 09:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-20 10:26 - 2017-01-10 09:27 - 00000000 ____D C:\ProgramData\Oracle 2017-02-20 10:26 - 2017-01-10 09:27 - 00000000 ____D C:\Program Files (x86)\Java 2017-02-20 10:25 - 2017-01-10 09:28 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2017-02-20 10:24 - 2016-10-05 18:50 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-02-20 09:50 - 2016-06-08 14:51 - 00000000 ____D C:\Users\melle\AppData\Local\CrashDumps 2017-02-20 09:38 - 2016-07-19 15:51 - 00000000 ____D C:\Users\melle\AppData\Local\ElevatedDiagnostics 2017-02-20 09:21 - 2016-10-05 18:55 - 00000000 ____D C:\ProgramData\NVIDIA 2017-02-19 20:56 - 2016-07-09 20:39 - 00000000 ____D C:\Users\melle\Documents\Flight Simulator Files 2017-02-19 20:18 - 2016-07-02 16:18 - 00001144 _____ C:\Users\melle\Desktop\Active Sky Evolution.lnk 2017-02-19 17:56 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2017-02-19 15:15 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2017-02-18 16:25 - 2016-10-05 18:50 - 00347400 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-02-17 22:02 - 2016-10-05 18:58 - 00000000 ____D C:\Users\melle 2017-02-17 17:44 - 2016-05-31 14:24 - 00000000 ____D C:\Users\melle\AppData\Local\VirtualStore 2017-02-17 17:20 - 2016-05-31 14:35 - 00001426 _____ C:\Users\melle\Desktop\nativelog.txt 2017-02-17 17:20 - 2016-05-31 14:31 - 00000000 ____D C:\Users\melle\AppData\Roaming\.minecraft 2017-02-17 15:11 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2017-02-16 19:03 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-02-15 17:13 - 2016-06-01 18:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Environment Xtreme for FS2004 2017-02-15 16:41 - 2016-09-09 14:17 - 00000000 ____D C:\Program Files (x86)\Opera 2017-02-15 16:39 - 2016-07-09 11:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-02-15 15:36 - 2016-09-22 16:28 - 00000000 ____D C:\Program Files (x86)\Euro Truck Simulator 2 2017-02-14 20:23 - 2016-07-24 10:34 - 00000000 ____D C:\Users\melle\Documents\Euro Truck Simulator 2 2017-02-14 11:49 - 2017-01-10 09:31 - 00002296 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-02-14 11:49 - 2017-01-10 09:31 - 00002284 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-02-14 11:49 - 2016-09-09 14:19 - 00002328 _____ C:\Users\Public\Desktop\Opera.lnk 2017-02-14 11:49 - 2016-09-09 14:19 - 00002268 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2017-02-14 09:27 - 2016-08-19 15:54 - 00007598 _____ C:\Users\melle\AppData\Local\Resmon.ResmonCfg 2017-02-14 08:46 - 2016-09-01 18:29 - 00000000 ____D C:\Users\melle\AppData\Local\Apps\2.0 2017-02-11 09:20 - 2016-05-31 14:29 - 00000000 ____D C:\Program Files (x86)\Minecraft 2017-02-10 21:28 - 2016-10-05 18:55 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-02-10 21:28 - 2016-06-07 19:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-02-10 21:28 - 2016-06-07 19:56 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2017-02-10 16:01 - 2016-10-06 15:22 - 00000000 ____D C:\Users\melle\AppData\Local\Deployment 2017-02-09 11:39 - 2015-07-25 18:19 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-02-08 18:39 - 2016-10-05 19:13 - 00003950 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1473427140 2017-02-05 21:04 - 2016-10-05 18:55 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-02-05 20:53 - 2016-06-07 19:58 - 00000000 ____D C:\Users\melle\AppData\Local\NVIDIA Corporation 2017-02-05 20:51 - 2016-10-05 19:27 - 00485090 _____ C:\WINDOWS\system32\perfh007.dat 2017-02-05 20:51 - 2016-10-05 19:27 - 00136668 _____ C:\WINDOWS\system32\perfc007.dat 2017-02-05 20:51 - 2016-07-16 23:15 - 00730304 _____ C:\WINDOWS\system32\perfh013.dat 2017-02-05 20:51 - 2016-07-16 23:15 - 00152874 _____ C:\WINDOWS\system32\perfc013.dat 2017-02-05 20:51 - 2015-07-25 18:00 - 02519606 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-02-05 20:47 - 2016-12-16 13:51 - 00004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003884 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 19:13 - 00003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-02-05 20:47 - 2016-10-05 18:55 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-02-05 20:47 - 2016-09-17 10:16 - 00001489 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2017-01-30 17:09 - 2016-11-08 18:44 - 00000000 ____D C:\Users\melle\AppData\Local\ACARSng 2017-01-26 21:02 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-01-24 20:07 - 2016-05-31 14:24 - 00000000 ____D C:\Users\melle\AppData\Roaming\Adobe 2017-01-24 09:15 - 2016-07-16 23:15 - 00000000 ____D C:\WINDOWS\OCR 2017-01-22 14:19 - 2016-06-03 06:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlyTampa ==================== Bestanden in de root van sommige mappen ======= 2005-08-26 13:10 - 2003-07-16 21:52 - 0000620 _____ () C:\Program Files (x86)\Beech Baron.acv 2005-08-26 13:10 - 2003-07-16 22:20 - 0000623 _____ () C:\Program Files (x86)\Beech King Air.acv 2005-08-26 13:09 - 2003-07-17 21:28 - 0000616 _____ () C:\Program Files (x86)\Bell Jet Ranger.acv 2005-08-26 13:09 - 2003-07-17 20:26 - 0000632 _____ () C:\Program Files (x86)\Boeing 737.acv 2005-08-26 13:09 - 2003-07-17 20:39 - 0000627 _____ () C:\Program Files (x86)\Boeing 747.acv 2005-08-26 13:09 - 2003-07-17 20:43 - 0000628 _____ () C:\Program Files (x86)\Boeing 777.acv 2005-08-26 13:09 - 2003-07-17 21:04 - 0000630 _____ () C:\Program Files (x86)\Cessna 172 .acv 2005-08-26 13:09 - 2003-07-17 21:05 - 0000634 _____ () C:\Program Files (x86)\Cessna 182 .acv 2005-08-26 13:09 - 2003-07-17 21:18 - 0000621 _____ () C:\Program Files (x86)\Cessna Caravan.acv 2005-08-26 13:10 - 2003-07-16 23:07 - 0000629 _____ () C:\Program Files (x86)\Curtiss.acv 2005-08-26 13:10 - 2003-07-16 20:44 - 0000617 _____ () C:\Program Files (x86)\De Haviland.acv 2005-08-26 13:10 - 2003-07-16 23:55 - 0000618 _____ () C:\Program Files (x86)\Douglas DC3.acv 2005-08-26 13:09 - 2003-07-17 21:35 - 0000619 _____ () C:\Program Files (x86)\Extra 300.acv 2005-08-26 13:10 - 2003-07-16 20:11 - 0000614 _____ () C:\Program Files (x86)\Ford Tri Motor.acv 2005-08-26 13:10 - 2003-07-17 00:25 - 0000608 _____ () C:\Program Files (x86)\Lear 45.acv 2005-08-26 13:10 - 2003-07-15 23:22 - 0000618 _____ () C:\Program Files (x86)\Lockeed Vega.acv 2005-08-26 13:10 - 2003-07-15 23:45 - 0000624 _____ () C:\Program Files (x86)\Mooney.acv 2008-07-18 17:52 - 2008-07-19 12:24 - 0010954 _____ () C:\Program Files (x86)\PaintInfo.txt 2005-08-26 13:10 - 2003-07-16 20:27 - 0000623 _____ () C:\Program Files (x86)\Piper Cub.acv 2005-08-26 13:10 - 2003-07-15 21:09 - 0000615 _____ () C:\Program Files (x86)\Robinson R22.acv 2005-08-26 13:10 - 2003-07-16 23:26 - 0000636 _____ () C:\Program Files (x86)\Ryan.acv 2005-08-26 13:10 - 2003-07-16 00:00 - 0000616 _____ () C:\Program Files (x86)\Schweitzer.acv 2016-12-05 19:52 - 2016-12-05 19:55 - 0122238 _____ () C:\Program Files (x86)\Uninstal.exe 2005-08-26 13:10 - 2003-07-16 23:38 - 0000626 _____ () C:\Program Files (x86)\Vickers.acv 2005-08-26 13:10 - 2003-07-16 20:22 - 0000631 _____ () C:\Program Files (x86)\Wright Brothers.acv 2017-02-19 17:56 - 2017-02-20 09:19 - 0009478 _____ () C:\Users\melle\AppData\Local\BTServer.log 2016-08-19 15:54 - 2017-02-14 09:27 - 0007598 _____ () C:\Users\melle\AppData\Local\Resmon.ResmonCfg 2016-06-06 14:20 - 2016-06-06 14:20 - 0000057 _____ () C:\ProgramData\Ament.ini 2016-10-05 18:54 - 2016-10-05 18:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2016-12-16 13:52 - 2017-01-17 12:00 - 0010941 _____ () C:\ProgramData\NvTelemetryContainer.log 2016-12-16 13:52 - 2017-01-12 09:20 - 0005110 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1 2015-09-21 22:04 - 2015-09-21 22:04 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2015-09-21 22:03 - 2015-09-21 22:03 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2015-09-21 22:03 - 2015-09-21 22:04 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log 2015-09-21 22:02 - 2015-09-21 22:03 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log 2015-09-21 22:03 - 2015-09-21 22:03 - 0000110 _____ () C:\ProgramData\{E3D04529-6EDB-11D8-A372-0050BAE317E1}.log ==================== Bamital & volsnap ====================== (Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.) C:\WINDOWS\system32\winlogon.exe => Bestand is getekend C:\WINDOWS\system32\wininit.exe => Bestand is getekend C:\WINDOWS\explorer.exe => Bestand is getekend C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend C:\WINDOWS\system32\svchost.exe => Bestand is getekend C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend C:\WINDOWS\system32\services.exe => Bestand is getekend C:\WINDOWS\system32\User32.dll => Bestand is getekend C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend C:\WINDOWS\system32\userinit.exe => Bestand is getekend C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend C:\WINDOWS\system32\rpcss.dll => Bestand is getekend C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend LastRegBack: 2017-02-15 17:33 ==================== Eind van FRST.txt ============================