start CreateRestorePoint: AVG 2014 (HKLM\...\{B93627CF-447B-4036-9621-9864D40F92C2}) (Version: 14.0.4015 - AVG Technologies) Hidden ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Geen bestand ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> Geen bestand ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> Geen bestand ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> Geen bestand ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => -> Geen bestand ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Geen bestand Task: {2E53C895-D7B5-4CB1-BD58-E8D450920923} - System32\Tasks\0316tbUpdateInfo => C:\ProgramData\Avg_Update_0316tb\0316tb_{C7EC7F04-EFB1-4D6F-B234-7E1E215A6B30}.exe C:\ProgramData\Avg_Update_0316tb Task: C:\Windows\Tasks\0316tbUpdateInfo.job => C:\ProgramData\Avg_Update_0316tb\0316tb_{C7EC7F04-EFB1-4D6F-B234-7E1E215A6B30}.exe Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe C:\Program Files (x86)\Glary Utilities 5 BootExecute: autocheck autochk * ᖣ﮽߾Ѐ䰁 SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111205299 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111205299 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111210182 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111210182 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={4817D360-555C-4DA3-8AD3-ABC83F1FC8EC}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716wt&pr=sa&d=2016-08-04 09:49:11&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} BHO-x32: Geen Naam -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Geen bestand Toolbar: HKLM - Geen Naam - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Geen bestand Toolbar: HKLM-x32 - Geen Naam - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002 -> Geen Naam - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002 -> Geen Naam - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002 -> Geen Naam - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111205299 -> Geen Naam - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111205299 -> Geen Naam - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111205299 -> Geen Naam - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111210182 -> Geen Naam - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111210182 -> Geen Naam - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Geen bestand Toolbar: HKU\S-1-5-21-3980786996-424854653-323187991-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04092018111210182 -> Geen Naam - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Geen bestand FF Homepage: Mozilla\Firefox\Profiles\lhua3kvr.default -> hxxps://mysearch.avg.com?cid={2171752D-AEEF-4085-BA64-BB1B2E27D47F}&mid=d4e79eee235a47d2883bd16f6b201ea3-1f58ed96950e7018898be075a351696e4e8eacd0&lang=en&ds=rc011&coid=avgtbdisrc&cmpid=0615tb&pr=sa&d=2015-03-26 11:52:11&v=19.3.0.491&pid=safeguard&sg=&sap=hp FF Extension: (AVG Web TuneUp) - C:\Users\4606\AppData\Roaming\Mozilla\Firefox\Profiles\lhua3kvr.default\Extensions\avg@toolbar.xpi [2018-04-07] FF SearchPlugin: C:\Users\4606\AppData\Roaming\Mozilla\Firefox\Profiles\lhua3kvr.default\searchplugins\avg-secure-search.xml [2018-04-07] FF Plugin: @microsoft.com/GENUINE -> disabled [Geen bestand] FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [Geen bestand] C:\Program Files (x86)\Common Files\AVG Secure Search FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [Geen bestand] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Geen bestand] CHR HomePage: Profile 1 -> mysearch.avg.com CHR StartupUrls: Profile 1 -> "hxxps://www.google.be/" CHR DefaultSearchURL: Profile 1 -> hxxps://mysearch.avg.com/search?rvt=1&sap=dsp&q={searchTerms} CHR DefaultSearchKeyword: Profile 1 -> hxxps://mysearch.avg.com CHR DefaultSuggestURL: Profile 1 -> hxxps://toolbar.avg.com/acp?q={searchTerms}&o=1 CHR Extension: (AVG Secure Search) - C:\Users\4606\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2018-04-07] CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Internet Security\Engine\22.6.0.142\Exts\Chrome.crx S1 BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160316.006\BHDrvx64.sys [X] S1 IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160323.001\IDSvia64.sys [X] S3 NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160324.003\ENG64.SYS [X] S3 NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160324.003\EX64.SYS [X] 2018-04-07 15:29 - 2016-08-04 09:49 - 000000000 ____D C:\Users\4606\AppData\Local\AVG Web TuneUp 2018-04-07 15:29 - 2016-08-04 09:49 - 000000000 ____D C:\ProgramData\AVG Web TuneUp 2018-04-07 13:34 - 2014-02-25 15:08 - 001326512 _____ (Ask.com) C:\Users\4606\AppData\Local\Temp\Offercast_AVIRAV7_.exe EmptyTemp: end