start CreateRestorePoint: 8F0eb7 AVG Security Toolbar Java 8 Update 131 CustomCLSID: HKU\S-1-5-21-2493349215-1570600307-3789144642-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Klaas\AppData\Local\Citrix\GoToMeeting\5174\G2MOutlookAddin64.dll => Geen bestand ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Geen bestand Task: {02A7DB9C-38D1-4FB9-A10D-D048C565E402} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Geen bestand <==== AANDACHT Task: {17EB8003-C8F2-4C1B-9B67-F7CC3B8EE52C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Geen bestand <==== AANDACHT Task: {493D6D56-C0B8-42FA-AFD2-05DBBBA3B970} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Geen bestand <==== AANDACHT Task: {6B9FC834-1491-428F-ADF2-FE5AD5CA650F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Geen bestand <==== AANDACHT Task: {7A8D6DF5-B8C8-47BB-93E5-6161217A82A1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Geen bestand <==== AANDACHT Task: {853D299D-0B9E-4C54-BA0F-0776D7071E99} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Geen bestand <==== AANDACHT Task: {98F5AD43-03C5-4F9B-9655-0F284DA6D86B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Geen bestand <==== AANDACHT Task: {A7E7450E-0A0E-4E85-8AD0-0AA23C18361F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Geen bestand <==== AANDACHT Task: {B2213D8C-27A7-4ED0-8527-D0737E9629E9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Geen bestand <==== AANDACHT Task: {C3B5C6FE-7804-4151-B40E-94EDB45841CE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Geen bestand <==== AANDACHT Task: {DD272B36-4E05-4097-BF86-576744BFD8BC} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Geen bestand <==== AANDACHT Task: {EFE7C9D6-6018-446E-AE81-12210147845C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Geen bestand <==== AANDACHT Task: C:\WINDOWS\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe C:\ProgramData\AVG January 2013 Campaign 2013-01-23 10:00 - 2015-12-10 17:37 - 002573712 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe C:\Program Files (x86)\AVG Secure Search 2015-12-10 17:37 - 2015-12-10 17:37 - 000528272 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.1.0\log4cplusU.dll C:\Program Files (x86)\Common Files\AVG Secure Search HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2573712 2015-12-10] () HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=dsites_14_13_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtB0D0CtAzyyC0Ezz0AtBzzzytN0D0Tzu0SzztCyEtN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyByB0FyDtDtA0F0AtGyE0ByD0CtG0EtAtB0EtGyEyE0CtDtGtAyEyDtA0DyEtCzzyE0Fzz0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC0BtAyE0EtDyBtAtG0D0E0CyBtGtC0AtDzztGtAyByD0CtGtDyE0DzzyCyBzztC0FtAyDtC2Q&cr=978233499&ir= SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=dsites_14_13_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtB0D0CtAzyyC0Ezz0AtBzzzytN0D0Tzu0SzztCyEtN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyByB0FyDtDtA0F0AtGyE0ByD0CtG0EtAtB0EtGyEyE0CtDtGtAyEyDtA0DyEtCzzyE0Fzz0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC0BtAyE0EtDyBtAtG0D0E0CyBtGtC0AtDzztGtAyByD0CtGtDyE0DzzyCyBzztC0FtAyDtC2Q&cr=978233499&ir= SearchScopes: HKU\S-1-5-21-2493349215-1570600307-3789144642-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={6BD77AAA-9D91-4ADE-9B3D-84A5340E0131}&mid=60f0eef556a047d0b530d16f6b277f1b-741224f0a7a57dd84a6832d6fee417c03b212c87&lang=nl&ds=AVG&pr=fr&d=2013-01-23 09:00:08&v=15.3.0.11&pid=avg&sg=0&sap=dsp&q={searchTerms} BHO-x32: AVG Security Toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Secure Search\18.1.9.786\AVG Secure Search_toolbar.dll [2014-08-25] (AVG Secure Search) Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.9.786\AVG Secure Search_toolbar.dll [2014-08-25] (AVG Secure Search) Toolbar: HKU\S-1-5-21-2493349215-1570600307-3789144642-1000 -> Geen Naam - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Geen bestand Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\19.1.0\ViProtocol.dll [2015-12-10] (AVG Secure Search) FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.9.0.230 FF Extension: (Geen Naam) - C:\ProgramData\AVG Secure Search\FireFoxExt\18.9.0.230 [2015-12-10] [ niet getekend] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml [2015-12-10] C:\ProgramData\AVG Secure Search FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\19.1.0\\npsitesafety.dll [Geen bestand] CHR HomePage: Default -> hxxp://start.mysearchdial.com/?f=1&a=dsites_14_13_ff&cd=2XzuyEtN2Y1L1QzutDtDtByCtB0D0CtAzyyC0Ezz0AtBzzzytN0D0Tzu0SzztCyEtN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyByB0FyDtDtA0F0AtGyE0ByD0CtG0EtAtB0EtGyEyE0CtDtGtAyEyDtA0DyEtCzzyE0Fzz0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StC0BtAyE0EtDyBtAtG0D0E0CyBtGtC0AtDzztGtAyByD0CtGtDyE0DzzyCyBzztC0FtAyDtC2Q&cr=978233499&ir= CHR Extension: (AVG SafePrice) - C:\Users\Klaas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2017-08-25] CHR Extension: (AVG Security Toolbar) - C:\Users\Klaas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2014-04-30] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx [2014-04-28] S4 vToolbarUpdater19.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.1.0\ToolbarUpdater.exe [1864592 2015-12-10] (AVG Secure Search) 2013-06-27 10:44 - 2014-06-22 21:55 - 000003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2017-08-29 16:20 - 2017-07-25 09:48 - 000002258 _____ C:\WINDOWS\System32\Tasks\ROC_REG_JAN_DELETE EmptyTemp: end