start CreateRestorePoint: HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239592 2017-10-06] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AVGUI.exe] => "C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe" /gui HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== AANDACHT S3 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [8602992 2017-09-11] (ReimageŽ) S2 AVG Antivirus; "C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe" [X] S3 avgbIDSAgent; "C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe" [X] S3 avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [166624 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [314640 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [192584 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [336896 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [51336 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [39424 2017-10-09] (AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [140192 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [102792 2017-10-09] (AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [76832 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [1012952 2017-10-09] (AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [579584 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [193768 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [355856 2017-10-09] (AVG Technologies CZ, s.r.o.) S3 cpuz140; \??\C:\Users\ivan\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== AANDACHT 2017-10-28 10:36 - 2017-10-28 10:36 - 007986864 _____ ( ) C:\Users\ivan\Downloads\AVG_Remover.exe 2017-10-27 11:00 - 2017-10-27 11:00 - 000842746 _____ C:\Users\ivan\Desktop\AvgInstallLog.cab 2017-10-27 10:42 - 2017-10-27 10:42 - 008388608 ___SH C:\tmpgfile.sys 2017-10-27 10:33 - 2017-10-30 11:16 - 000000000 ____D C:\AVG_Remover 2017-10-23 13:56 - 2017-10-23 13:56 - 000004330 _____ C:\WINDOWS\System32\Tasks\ReimageUpdater 2017-10-23 13:55 - 2017-10-26 14:05 - 000000000 ____D C:\rei 2017-10-23 13:55 - 2017-10-26 14:05 - 000000000 ____D C:\Program Files\Reimage 2017-10-23 13:55 - 2017-10-25 08:16 - 000000000 ____D C:\ProgramData\Reimage Protector 2017-10-09 10:06 - 2017-10-09 10:05 - 000402608 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe 2017-10-30 11:16 - 2017-09-08 13:22 - 000000000 ____D C:\Users\ivan\AppData\Roaming\AVG 2017-10-27 15:06 - 2017-09-08 13:19 - 000000000 ____D C:\Program Files (x86)\AVG 2017-10-27 15:06 - 2017-09-08 13:17 - 000000000 ____D C:\ProgramData\Avg 2017-10-26 10:37 - 2017-09-08 13:17 - 000000000 ____D C:\Users\ivan\AppData\Local\Avg 2017-10-23 14:08 - 2017-09-18 13:29 - 000000140 _____ C:\WINDOWS\Reimage.ini 2017-10-09 10:05 - 2017-09-08 13:21 - 001012952 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000579584 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000355856 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000336896 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbloga.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000314640 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdrivera.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000193768 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000192584 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsha.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000166624 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbdiska.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000140192 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000102792 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000076832 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000051336 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniva.sys 2017-10-09 10:05 - 2017-09-08 13:21 - 000039424 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgHwid.sys C:\Program Files\Reimage ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => -> Geen bestand ContextMenuHandlers1: [SAScanShlExt] -> {94243EC1-AEE5-4d44-A6CF-6407ED967FED} => -> Geen bestand ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Geen bestand Task: {10EDBF1F-C784-468A-A730-A6D180AEF7F7} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2017-09-11] (ReimageŽ) <==== AANDACHT Task: {C9C01AB1-8D8A-45CA-939B-6E2ACE39F4EC} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe EmptyTemp: Reboot: end